aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
...
* stroke: Support public key constraints for EAP methodsMartin Willi2015-03-031-1/+8
* eap-ttls: Support EAP auth information getter in EAP-TTLSMartin Willi2015-03-031-0/+7
* eap-tls: Support EAP auth information getter in EAP-TLSMartin Willi2015-03-031-0/+7
* libtls: Add getters for TLS handshake authentication detailsMartin Willi2015-03-037-0/+49
* libtls: Merge trustchain auth verification details done during TLS handhsakeMartin Willi2015-03-032-0/+2
* ikev2: Merge EAP client authentication details if EAP methods provides themMartin Willi2015-03-031-0/+7
* eap: Add an optional authentication details getter to the EAP method interfaceMartin Willi2015-03-031-0/+12
* ipsec: Update rereadcacerts/aacerts command description in manpageMartin Willi2015-03-031-6/+9
* stroke: Serve ca section CA certificates directly, not over central CA setMartin Willi2015-03-033-5/+85
* mem-cred: Add a method to unify certificate references, without adding itMartin Willi2015-03-032-0/+31
* stroke: Purge existing CA/AA certificates during rereadMartin Willi2015-03-031-0/+4
* stroke: Use separate credential sets for CA/AA certificatesMartin Willi2015-03-031-3/+21
* stroke: Refactor load_certdir functionMartin Willi2015-03-031-108/+158
* vici: Don't use a default rand_time larger than half of rekey/reauth_timeMartin Willi2015-03-031-3/+11
* vici: If a IKE reauth_time is configured, disable the default rekey_timeMartin Willi2015-03-032-2/+19
* ikev2: Schedule a timeout for the delete message following passive IKE rekeyingMartin Willi2015-03-031-0/+6
* kernel-netlink: Respect kernel routing priorities for IKE routesMartin Willi2015-03-031-2/+15
* enum: Extend printf hook to print flagsThomas Egerer2015-03-033-8/+286
* unit-tests: Don't fail host_create_from_dns() test if IPv6 not supportedMartin Willi2015-03-021-4/+10
* bliss: Add generated Huffman codes to the repositoryTobias Brunner2015-03-025-14/+860
* Fixed a memory leak in the attribute segmentation codeAndreas Steffen2015-02-273-4/+4
* vici: Support ruby gem out-of-tree buildsMartin Willi2015-02-271-1/+3
* ha: Always install the CHILD_SAs with the inbound flag set to FALSEMartin Willi2015-02-271-2/+2
* Updated Ubuntu 14.04 kernel versionAndreas Steffen2015-02-271-1/+1
* Fixed compiler warningsAndreas Steffen2015-02-271-2/+3
* Allow SHA256 and SHA384 data hash for BLISS signatures.Andreas Steffen2015-02-2616-42/+129
* unit-tests: Completed BLISS testsAndreas Steffen2015-02-256-16/+668
* Check for null pointer before applying memwipe()Andreas Steffen2015-02-251-4/+10
* Implemented improved BLISS-B signature algorithmAndreas Steffen2015-02-257-47/+356
* host-resolver: Do not cancel threads waiting for new queries during cleanupMartin Willi2015-02-241-6/+8
* host-resolver: Disable resolver thread cancellation by defaultMartin Willi2015-02-241-0/+3
* unit-tests: Add host_create_from_dns() test cases resolving "localhost"Martin Willi2015-02-241-0/+42
* plugin-loader: Do not unload libraries during dlclose(), if supportedMartin Willi2015-02-241-1/+9
* unit-tests: Accept numerical protocol/port numbers in traffic selector testsMartin Willi2015-02-231-11/+16
* forecast: Explicitly cast sockaddr to fix compiler warningTobias Brunner2015-02-231-1/+1
* configure: Use pkg-config to detect libiptc used by connmark/forecastTobias Brunner2015-02-232-4/+4
* openssl: Return the proper IV length for OpenSSL cryptersTobias Brunner2015-02-231-1/+1
* forecast: Add the broadcast/multicast forwarding plugin called forecastMartin Willi2015-02-208-0/+1479
* ipsec-types: Support the %unique mark valueMartin Willi2015-02-202-5/+15
* connmark: Add CONNMARK rules to select correct output SA based on conntrackMartin Willi2015-02-204-0/+611
* bus: Add an ike_update() hook invoked when peer endpoints changeMartin Willi2015-02-204-0/+50
* connmark: Add a plugin stubMartin Willi2015-02-204-0/+150
* load-tester: Support initiating XAuth authenticationMartin Willi2015-02-201-0/+22
* mem-pool: Pass the remote IKE address, to re-acquire() an address during reauthMartin Willi2015-02-206-51/+87
* ikev2: Schedule a make-before-break completion task to delete old IKE_SAMartin Willi2015-02-208-1/+174
* ikev2: Allow task to skip exchange by setting undefined exchange typeMartin Willi2015-02-201-0/+5
* ikev2: Trigger make-before-break reauthentication instead of reauth taskMartin Willi2015-02-202-2/+79
* ike-sa-manager: Use IKEv1 uniqueness reauthentication detection for IKEv2, tooMartin Willi2015-02-201-12/+8
* attribute-handler: Pass full IKE_SA to handler backendsMartin Willi2015-02-2010-79/+61
* attribute-provider: Pass full IKE_SA to provider backendsMartin Willi2015-02-2010-65/+55