aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
...
* libhydra: Remove empty unused libraryTobias Brunner2016-03-03110-534/+15
* libhydra: Move kernel interface to libcharonTobias Brunner2016-03-0369-358/+257
* libhydra: Move all kernel plugins to libcharonTobias Brunner2016-03-0327-28/+28
* ikev1: Send and verify IPv6 addresses correctlyTobias Brunner2016-03-032-26/+18
* ikev1: Allow immediate deletion of rekeyed CHILD_SAsTobias Brunner2016-03-031-1/+17
* ikev1: Avoid modifying local auth config when detecting pubkey methodTobias Brunner2016-03-031-1/+1
* forecast: Fix alignment when adding rulesTobias Brunner2016-03-031-114/+133
* connmark: Fix alignment when adding rulesTobias Brunner2016-03-031-160/+172
* ike: Keep track of send keepalive jobs to avoid scheduling more than one per ...Tobias Brunner2016-03-033-11/+24
* ike: Don't send NAT keepalives if we have no path to the other peerTobias Brunner2016-03-031-3/+9
* vici: Provide ports of local and remote IKE endpointsTobias Brunner2016-03-032-2/+9
* duplicheck: Include required headers for FreeBSDDenis Volpato Martins2016-03-031-0/+2
* charon: Add custom logger to daemonThomas Egerer2016-03-014-43/+336
* vici: Correctly document 'up' key for updown eventsTobias Brunner2016-03-011-4/+4
* ikev2: Use config value for sending of vendor IDsThomas Egerer2016-03-011-13/+43
* swanctl: Fix minor typos in documentationChris Patterson2016-02-291-3/+3
* ike-sa-manager: Store a reference to the thread that checked out an IKE_SATobias Brunner2016-02-171-13/+14
* Fix of the mutual TNC measurement use caseAndreas Steffen2016-02-162-20/+20
* kernel-netlink: Allow Netlink send buffer size to be configured via compile o...Tobias Brunner2016-02-121-3/+11
* utils: Add enum name for pseudo log group 'any'Tobias Brunner2016-02-052-12/+7
* libipsec: Pass the same data to del_policy() as to add_policy()Tobias Brunner2016-02-044-12/+17
* libipsec: Don't attempt deletion of any non-IPsec policiesTobias Brunner2016-02-041-1/+1
* ikev2: Add debug message about failed IKE authenticationThomas Egerer2016-02-021-0/+4
* ikev1: Log successful authentication with signature schemeThomas Egerer2016-02-011-1/+1
* peer-cfg: Set DPD timeout to at least DPD delayTobias Brunner2016-02-011-0/+4
* ikev1: Always enable charon.reuse_ikesaTobias Brunner2016-02-011-2/+2
* load-tester: Register kernel-ipsec implementation as plugin featureTobias Brunner2016-02-011-10/+11
* child-rekey: Suppress updown event when deleting redundant CHILD_SAsTobias Brunner2016-02-011-1/+10
* ha: Properly sync IKEv1 IV if gateway is initiatorTobias Brunner2016-02-011-12/+16
* ha: Add DH group to CHILD_ADD messageTobias Brunner2016-02-012-1/+12
* ha: Add DH group to IKE_ADD messageTobias Brunner2016-02-014-0/+16
* ike-sa-manager: Don't update entries for init messages after unlocking segmentTobias Brunner2016-02-011-3/+2
* unit-tests: The pseudonym RDN is now recognized, so use something more exoticTobias Brunner2016-01-281-3/+3
* Support pseudonym RDNAndreas Steffen2016-01-273-0/+5
* vici: Support multiple named raw ublic keysAndreas Steffen2016-01-101-15/+19
* swanctl: Load pubkeys with load-credsAndreas Steffen2016-01-092-6/+8
* vici: list-cert sends subject, not-before and not-after attributes for pubkeysAndreas Steffen2016-01-094-6/+65
* vici: Support of raw public keysAndreas Steffen2016-01-099-20/+110
* swanctl.conf: IKEv2 fragmentation supportedAndreas Steffen2016-01-091-8/+9
* vici: Enable transport encoding of CERT_TRUSTED_PUBKEY objectsAndreas Steffen2016-01-031-5/+8
* stroke: List DH groups for CHILD_SA proposalsTobias Brunner2015-12-211-23/+19
* vici: Use correct constant when checking for integrity algorithmTobias Brunner2015-12-211-1/+1
* vici: CHILD_SA proposals never contain a PRFTobias Brunner2015-12-211-5/+0
* configure: Support systemd >= 209Chris Patterson2015-12-211-2/+2
* vici: allow legacy shortcuts in cert queriesAndreas Steffen2015-12-191-10/+14
* Use 128 bit security in README.pod examplesAndreas Steffen2015-12-181-4/+4
* Improvements to the VICI Perl bindings by Andreas HofmeisterAndreas Hofmeister2015-12-184-189/+127
* Apply pubkey and signature constraints in vici pluginAndreas Steffen2015-12-174-115/+124
* 128 bit default security strength for IKE and ESP algorithmsAndreas Steffen2015-12-172-59/+159
* stroke: Fix --utc option for list* commandsTobias Brunner2015-12-171-2/+7