aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
* esc() is only used if dladdr(3) is available5.0.3dr3Tobias Brunner2013-03-081-12/+13
* Fix maximum size of a mem_pool_tTobias Brunner2013-03-071-2/+2
* New Android release after adding translations and Cert/EAP authenticationTobias Brunner2013-03-071-3/+3
* android: Add support for combined certificate and EAP authenticationTobias Brunner2013-03-077-34/+63
* Merge branch 'pt-tls'Martin Willi2013-03-0721-69/+1077
|\
| * If TLS peer authentication not required, the client does nonetheless, allow i...Martin Willi2013-03-061-4/+19
| * Support different authentication schemes for PT-TLSMartin Willi2013-02-285-6/+71
| * Request a TLS client certificate even if no peer identity is givenMartin Willi2013-02-281-5/+1
| * Wrap tls_t.get_{server,peer}_id methods in tls_socket_tMartin Willi2013-02-282-0/+28
| * Delegate tls_t.get_{peer,server}_id to handshake layerMartin Willi2013-02-287-29/+78
| * Implement a SASL PLAIN mechanism using shared secretsMartin Willi2013-02-284-0/+224
| * Implement SASL authentication in PT-TLS clientMartin Willi2013-02-281-11/+191
| * Implement SASL authentication in PT-TLS serverMartin Willi2013-02-281-5/+236
| * Define PT-TLS SASL result codesMartin Willi2013-02-281-0/+11
| * Define an interface for SASL mechanisms and provide a static factoryMartin Willi2013-02-283-1/+193
| * Pass a client identity to pt_tls_client, usable for TLS or SASL authenticationMartin Willi2013-02-282-7/+21
| * Don't close underlying file descriptor before destroying a tls_socketMartin Willi2013-02-281-1/+4
* | As Quick Mode initiator, select a subset of the proposed and the returned TSMartin Willi2013-03-071-4/+11
* | added some otherNames OIDsAndreas Steffen2013-03-061-0/+6
* | Fix some apidoc in mem_pool.hMartin Willi2013-03-061-3/+3
* | instead of cloning use extract_buf() methodAndreas Steffen2013-03-0434-35/+35
* | Don't invoke addr2line if dladdr() did not yield a filenameMartin Willi2013-03-041-1/+1
* | When receiving critical signals, additionally log backtraces to syslog/filesMartin Willi2013-03-041-0/+1
* | backtrace_t.log() takes a NULL file pointer to log to registered dbg() hookMartin Willi2013-03-042-33/+71
* | Don't use color escapes when printing backtraces to a non-TTY fileMartin Willi2013-03-041-11/+20
* | Add a utility function to resolve TTY color escape codes dynamicallyMartin Willi2013-03-042-0/+103
* | make TNC Access Requestor ID available to IMVsAndreas Steffen2013-03-039-42/+130
* | added getpwuid_r and initgroups to whitelistAndreas Steffen2013-03-031-0/+2
* | third parameter was not copiedAndreas Steffen2013-03-021-1/+1
* | Fixed Doxygen comments after scanning complete src directoryTobias Brunner2013-03-0296-183/+221
* | Removed backend for old Android frontend patchTobias Brunner2013-03-0212-923/+82
* | added ERX_SUPPORTED IKEv2 NotifyAndreas Steffen2013-03-022-7/+11
* | added some new TCG IF-M message subtypes and attributesAndreas Steffen2013-03-024-4/+36
* | android: Mitigate race condition on reauthenticationTobias Brunner2013-03-011-0/+4
* | openssl: The EVP GCM interface requires at least OpenSSL 1.0.1Tobias Brunner2013-03-012-0/+8
* | Merge branch 'multi-eap'Martin Willi2013-03-012-28/+50
|\ \
| * | Apply a mutual EAP auth_cfg not before the EAP method completesMartin Willi2013-02-262-1/+18
| * | Be a little more verbose why a peer_cfg is inacceptableMartin Willi2013-02-261-8/+16
| * | Refactor auth_cfg applying to a common functionMartin Willi2013-02-261-20/+17
| |/
* | Merge branch 'multi-cert'Martin Willi2013-03-013-27/+109
|\ \
| * | After merging the used trustchain with config, move used certificate to frontMartin Willi2013-01-181-0/+24
| * | Try to build a trustchain for all configured certificates before enforcing oneMartin Willi2013-01-181-1/+29
| * | Load multiple comma seperarated certificates in the leftcert optionMartin Willi2013-01-181-15/+32
| * | Make AUTH_RULE_SUBJECT cert multi-valuedMartin Willi2013-01-181-11/+24
* | | Merge branch 'systime'Martin Willi2013-03-018-10/+521
|\ \ \
| * | | systime-fix disables certificate lifetime validation if system time not syncedMartin Willi2013-02-194-0/+326
| * | | Add a stub for systime-fix, a plugin handling certificate lifetimes gracefullyMartin Willi2013-02-194-0/+126
| * | | Add a cert_validator hook allowing plugins to provide custom lifetime checkingMartin Willi2013-02-192-10/+64
| * | | Make cert_validator_t.validate optional to implementMartin Willi2013-02-192-0/+5
* | | | Merge branch 'ikev1-rekeying'Martin Willi2013-03-012-0/+25
|\ \ \ \