Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Properly handle situation if no resolver plugins are loaded | Tobias Brunner | 2013-04-01 | 2 | -4/+7 | |
| | ||||||
* | fixed capability metadata | Andreas Steffen | 2013-03-31 | 1 | -1/+2 | |
| | ||||||
* | renamed tnc_ifmap2 plugin to tnc_ifmap | Andreas Steffen | 2013-03-31 | 11 | -180/+180 | |
| | ||||||
* | removed obsoleted tnc_ifmap plugin | Andreas Steffen | 2013-03-31 | 8 | -1344/+0 | |
| | ||||||
* | implemented http basic authentication | Andreas Steffen | 2013-03-31 | 3 | -46/+80 | |
| | ||||||
* | parse IF-MAP server URI | Andreas Steffen | 2013-03-31 | 3 | -41/+105 | |
| | ||||||
* | implemented publish_enforcement_report and endSession methods | Andreas Steffen | 2013-03-30 | 1 | -6/+58 | |
| | ||||||
* | implemented publish_ike_sa method | Andreas Steffen | 2013-03-30 | 1 | -6/+252 | |
| | ||||||
* | ifmap message type is known | Andreas Steffen | 2013-03-30 | 3 | -12/+7 | |
| | ||||||
* | implemented publish_device_ip method | Andreas Steffen | 2013-03-30 | 1 | -13/+132 | |
| | ||||||
* | added IF-MAP SOAP error handling | Andreas Steffen | 2013-03-30 | 1 | -9/+32 | |
| | ||||||
* | created tnc_ifmap2_soap_msg class | Andreas Steffen | 2013-03-29 | 4 | -220/+343 | |
| | ||||||
* | implement NewSession and PurgePublisher messages using the libxml2 library | Andreas Steffen | 2013-03-29 | 3 | -79/+265 | |
| | ||||||
* | set up a new IF-MAP session | Andreas Steffen | 2013-03-29 | 9 | -0/+884 | |
| | ||||||
* | fixed typo | Andreas Steffen | 2013-03-27 | 1 | -1/+1 | |
| | ||||||
* | Fixed Doxygen comment in eap_radius plugin | Tobias Brunner | 2013-03-27 | 1 | -2/+3 | |
| | ||||||
* | Fix detection and use of netinet/ip6.h on FreeBSD | Tobias Brunner | 2013-03-27 | 1 | -0/+1 | |
| | ||||||
* | Make some private functions in plugins static | Tobias Brunner | 2013-03-27 | 2 | -5/+5 | |
| | | | | Fixes monolithic build. | |||||
* | libpts: Cast first argument for %.*s to int | Tobias Brunner | 2013-03-25 | 1 | -1/+1 | |
| | ||||||
* | error-notify: Close file descriptors in case clients are still connected | Tobias Brunner | 2013-03-25 | 1 | -0/+6 | |
| | ||||||
* | libpttls: Destroy reader when handling errors during SASL | Tobias Brunner | 2013-03-25 | 1 | -0/+2 | |
| | ||||||
* | pacman: Define gen_time out of the loop | Tobias Brunner | 2013-03-25 | 1 | -1/+2 | |
| | | | | It gets assigned if count==3 but only used later when count >= 7. | |||||
* | ipseckey: NULL pointer dereference fixed in error case | Tobias Brunner | 2013-03-25 | 1 | -0/+1 | |
| | ||||||
* | Fixed some typos, courtesy of codespell | Tobias Brunner | 2013-03-25 | 4 | -5/+5 | |
| | ||||||
* | enforce singular of packets | Andreas Steffen | 2013-03-22 | 1 | -4/+6 | |
| | ||||||
* | asprintf(3) requires _GNU_SOURCE to be defined5.0.3rc1 | Tobias Brunner | 2013-03-22 | 1 | -0/+2 | |
| | ||||||
* | Use proper integer types when handling TLS exchanges | Tobias Brunner | 2013-03-22 | 1 | -5/+6 | |
| | | | | tls_t.build takes a size_t argument not a ssize_t. | |||||
* | Check return value of asprintf(3) when converting AR identity | Tobias Brunner | 2013-03-22 | 1 | -2/+4 | |
| | | | | | Using chunk_t.ptr as target was also not optimal as it resulted in a compiler warning. | |||||
* | Switch encoding of AR Identity Value from binary to UTF-8 | Andreas Steffen | 2013-03-22 | 14 | -118/+123 | |
| | ||||||
* | activate logging before loading plugins | Andreas Steffen | 2013-03-21 | 1 | -7/+7 | |
| | ||||||
* | Add a load-tester option to keep allocated external address until shutdown | Martin Willi | 2013-03-21 | 2 | -1/+50 | |
| | ||||||
* | android: No need to disable CMS explicitly | Tobias Brunner | 2013-03-20 | 1 | -1/+0 | |
| | | | | The version check introduced with 0d237763 should take care of it. | |||||
* | Allow up to 10 NAT-D payloads in IKEv1 messages | Tobias Brunner | 2013-03-20 | 1 | -1/+1 | |
| | ||||||
* | Avoid a race condition when reloading secrets from ipsec.secrets | Tobias Brunner | 2013-03-20 | 1 | -18/+25 | |
| | | | | | | | With the previous implementation that cleared the secrets in the active credential set and then loaded the secrets, IKE SA establishment would fail (as initiator or responder) if secrets are concurrently reloaded and the required secret was not yet loaded. | |||||
* | Add a method to replace all secrets in a mem_cred_t object | Tobias Brunner | 2013-03-20 | 2 | -5/+68 | |
| | ||||||
* | android: Build native libraries also for x86 | Tobias Brunner | 2013-03-20 | 3 | -2/+5 | |
| | | | | Requires an updated build script for Vstr. | |||||
* | android: libtnccs requires headers from libtls | Tobias Brunner | 2013-03-20 | 1 | -0/+1 | |
| | ||||||
* | android: Fix Android.mk for ipsec script | Tobias Brunner | 2013-03-20 | 1 | -1/+2 | |
| | ||||||
* | android: Remove/filter header files from LOCAL_SRC_FILES | Tobias Brunner | 2013-03-20 | 9 | -20/+36 | |
| | | | | This avoids huge warnings when building the native code. | |||||
* | android: Request and install an IPv6 DNS server | Tobias Brunner | 2013-03-20 | 2 | -9/+17 | |
| | ||||||
* | android: Also request a virtual IPv6 address and propose IPv6 TS | Tobias Brunner | 2013-03-20 | 3 | -23/+25 | |
| | | | | | This allows IPv6 over IPv4 but falls back nicely if we don't get a virtual IPv6 (or IPv4) address. | |||||
* | ipsec: Increased log level for message in case no outbound policy is found | Tobias Brunner | 2013-03-20 | 1 | -1/+1 | |
| | | | | | | | This might happen on Android if sockets are bound to the physical IP address but packets are still routed via TUN device. Since it seems to happen quite often (or for stuff that requires regular traffic) this hides these messages from the default log. | |||||
* | Add an option to autobalance a HA cluster automatically | Martin Willi | 2013-03-19 | 1 | -0/+59 | |
| | ||||||
* | Check if for some reason we handle a HA segment on both nodes | Martin Willi | 2013-03-19 | 1 | -1/+15 | |
| | ||||||
* | Acquire HA segment lock while sending heartbeat | Martin Willi | 2013-03-19 | 1 | -0/+2 | |
| | ||||||
* | Removed unused variable 'id' | Tobias Brunner | 2013-03-19 | 1 | -2/+1 | |
| | ||||||
* | Properly cleanup libmysql | Tobias Brunner | 2013-03-19 | 1 | -1/+1 | |
| | | | | Seems to work correctly with recent MySQL versions. | |||||
* | Use proper address family when adding multiple addresses to SQL pool | Tobias Brunner | 2013-03-19 | 1 | -0/+15 | |
| | ||||||
* | Ignore SQL-based IP address pools if their address family does not match | Tobias Brunner | 2013-03-19 | 1 | -10/+21 | |
| | ||||||
* | charon-nm: Add dependencies to CERT_DECODE and PRIVKEY plugin features | Tobias Brunner | 2013-03-19 | 1 | -0/+4 | |
| | | | | | | This ensures the NM-specific credential set is unloaded before any implementation of certificate/key objects, which causes a segmentation fault during shutdown. |