aboutsummaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
* kernel-libipsec: Support query_sa() to report usage statisticsMartin Willi2013-10-111-1/+2
* libipsec: Support usage statistics and query_sa() on IPsec SAsMartin Willi2013-10-115-4/+102
* kernel: Use a time_t to report use time in query_policy()Martin Willi2013-10-1111-13/+13
* kernel: Use a time_t to report use time in query_sa()Martin Willi2013-10-1111-15/+15
* updown: Install forwarding rules with the actually used protocolMartin Willi2013-10-111-1/+1
* updown: Add a PLUTO_PROTO variable set to 'ah' or 'esp'Martin Willi2013-10-112-1/+6
* starter: Reject connections having both 'ah' and 'esp' keywords setMartin Willi2013-10-111-0/+9
* ike: Define keylength for aescmac algorithmMartin Willi2013-10-111-0/+1
* ikev1: Support parsing of AH+IPComp proposalsMartin Willi2013-10-111-9/+11
* starter: Remove obsolete 'auth' optionMartin Willi2013-10-115-7/+0
* ikev1: Accept more than two certificate payloadsMartin Willi2013-10-111-2/+2
* ikev1: Support en-/decoding of SA payloads with AH algorithmsMartin Willi2013-10-111-31/+99
* kernel-handler: Whitespace cleanupsMartin Willi2013-10-111-42/+38
* stroke: List proposals in statusall without leading '/' in AH SAsMartin Willi2013-10-111-1/+7
* ikev1: Delete quick modes with the negotiated SA protocolMartin Willi2013-10-111-1/+1
* trap-manager: Install trap with SA protocol of the first configured proposalMartin Willi2013-10-111-4/+12
* child-sa: Save protocol during SPI allocationMartin Willi2013-10-111-6/+3
* ikev1: Negotiate SPI with the first/negotiated proposal protocolMartin Willi2013-10-111-3/+18
* ikev2: Allocate SPI with the protocol of the first/negotiated proposalMartin Willi2013-10-111-2/+16
* proposal: Strip redundant integrity algos for ESP proposals onlyMartin Willi2013-10-111-16/+19
* stroke: Configure proposal with AH protocol if 'ah' option setMartin Willi2013-10-112-11/+16
* starter: Add an 'ah' keyword for Authentication Header Security AssociationsMartin Willi2013-10-116-0/+6
* Keep a copy of the tnccs instance for PT-TLS handoverAndreas Steffen2013-10-095-27/+144
* xauth-pam: Make trimming of email addresses optional5.1.1dr4Tobias Brunner2013-10-041-4/+9
* ikev1: Accept reauthentication attempts with a keep unique policy from same hostMartin Willi2013-09-301-6/+17
* ikev1: Don't log a reauthentication detection message if no children adoptedMartin Willi2013-09-301-2/+6
* ikev1: Delay a potential delete for a duplicate IKE_SA having a replace policyMartin Willi2013-09-301-8/+29
* eap-radius: Increase buffer for attributes sent in RADIUS accounting messagesTobias Brunner2013-09-271-1/+1
* openssl: Properly log FIPS mode when enabled via openssl.confTobias Brunner2013-09-271-5/+13
* android: New release after fixing remediation instructions regressionTobias Brunner2013-09-261-2/+2
* android: Change progress dialog handlingTobias Brunner2013-09-261-24/+41
* android: Clear remediation instructions when starting a new connectionTobias Brunner2013-09-261-0/+1
* starter: Don't ignore keyingtries with rekey=noTobias Brunner2013-09-261-1/+2
* load-tester: Fix crash if private key was not loaded successfullyTobias Brunner2013-09-241-1/+1
* printf-hook: Write to output stream instead of the FD directly when using VstrTobias Brunner2013-09-241-12/+12
* android: New release after improving recovery after connectivity changesTobias Brunner2013-09-231-2/+2
* android: Change state handling to display errors occurring while the app is h...Tobias Brunner2013-09-233-64/+56
* android: Don't update state fragments when they are not displayedTobias Brunner2013-09-232-2/+26
* ikev2: Force an update of the host addresses on the first responseTobias Brunner2013-09-231-11/+9
* ike-sa: Resolve hosts before reestablishing an IKE_SATobias Brunner2013-09-231-0/+2
* android: Several plugins were moved from libcharon to libtnccsTobias Brunner2013-09-232-29/+25
* android: Properly handle failures while initializing charonTobias Brunner2013-09-232-13/+23
* kernel-netlink: Allow to override xfrm_acq_expires valueAnsis Atteka2013-09-231-6/+10
* Implemented TCG/PB-PDP_Referral messageAndreas Steffen2013-09-175-13/+153
* Allow vendor-specific PB-TNC messagesAndreas Steffen2013-09-1723-138/+583
* ignore *.1 manpage filesAndreas Steffen2013-09-171-1/+1
* sshkey: Add support for parsing keys from filesTobias Brunner2013-09-131-1/+92
* sshkey: Add encoding for ECDSA keysTobias Brunner2013-09-131-0/+72
* openssl: Add support for generic encoding of EC public keysTobias Brunner2013-09-131-23/+13
* pki: --pub also accepts public keys (i.e. to convert them to a different format)Tobias Brunner2013-09-132-3/+18