index
:
tteras/strongswan
master
tteras
tteras-release
tteras' strongSwan tree
gitolite
about
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
path:
root
/
src
Commit message (
Expand
)
Author
Age
Files
Lines
...
*
Newer CRLs replace older versions of the CRL in the cache
Andreas Steffen
2016-10-26
1
-0
/
+39
*
connmark: Add CAP_NET_RAW to capabilities keep list
Tim Kent
2016-10-25
1
-0
/
+6
*
nm: Enable IKE fragmentation
Tobias Brunner
2016-10-20
1
-1
/
+1
*
added XOF dependencies of bliss and ntru plugins
Andreas Steffen
2016-10-18
2
-4
/
+26
*
newhope: Fix Doxygen group name
Tobias Brunner
2016-10-14
1
-1
/
+1
*
libnttfft: Fix Doxygen group
Tobias Brunner
2016-10-14
1
-1
/
+3
*
Fixed some typos, courtesy of codespell
Tobias Brunner
2016-10-14
2
-3
/
+3
*
newhope: Properly release allocated arrays if RNG can't be created
Tobias Brunner
2016-10-14
1
-8
/
+8
*
nm: Add D-Bus policy to the distribution
Tobias Brunner
2016-10-14
1
-0
/
+2
*
nm: Version bump to 1.4.1
Tobias Brunner
2016-10-14
2
-1
/
+6
*
kernel-netlink: Fix get_route() interface determination
Christophe Gouault
2016-10-12
1
-2
/
+2
*
Save both base and delta CRLs to disk
Andreas Steffen
2016-10-11
2
-2
/
+9
*
vici: strongswan.conf cache_crls = yes saves fetched CRLs to disk
Andreas Steffen
2016-10-11
6
-4
/
+83
*
mem-cred: Support storing a delta CRL together with its base
Tobias Brunner
2016-10-11
1
-8
/
+30
*
revocation: Cache valid CRL also if certificate is revoked
Tobias Brunner
2016-10-11
1
-10
/
+25
*
pki: Don't remove zero bytes in CRL serials anymore
Tobias Brunner
2016-10-11
1
-6
/
+7
*
pki: Use serial of base CRL for delta CRLs
Tobias Brunner
2016-10-11
1
-1
/
+4
*
openssl: Fix AES-GCM with BoringSSL
Tobias Brunner
2016-10-11
1
-3
/
+3
*
android: Identifiers for SHA2-base RSA signature schemes got renamed
Tobias Brunner
2016-10-11
1
-4
/
+4
*
android: MGF1 implementation was moved to a plugin
Tobias Brunner
2016-10-11
1
-2
/
+1
*
ldap: Fix crash in case of empty LDAP response for CRL fetch
Yannick CANN
2016-10-06
1
-2
/
+1
*
libimcv: Add Debian 8.6 to database
Tobias Brunner
2016-10-05
1
-0
/
+18
*
task-manager: Only trigger retransmit cleared alert if there was at least one...
Tobias Brunner
2016-10-05
2
-2
/
+2
*
unit-tests: Enable optional logging in libcharon unit tests
Tobias Brunner
2016-10-05
1
-0
/
+17
*
unit-tests: Add more tests for proposal creation
Tobias Brunner
2016-10-05
1
-8
/
+62
*
proposal: Correctly add AES-GMAC for AH proposals
Tobias Brunner
2016-10-05
1
-0
/
+41
*
proposal: Enforce separate proposals for AEAD and classic encryption algorithms
Tobias Brunner
2016-10-05
1
-16
/
+22
*
proposal: Make sure there is a PRF defined in IKE proposals
Tobias Brunner
2016-10-05
1
-14
/
+34
*
proposal: Make DH groups mandatory in IKE proposals parsed from strings
Tobias Brunner
2016-10-05
2
-21
/
+40
*
ikev2: Respond with NO_PROPOSAL_CHOSEN if proposal without DH group was selected
Tobias Brunner
2016-10-05
1
-0
/
+1
*
kernel-netlink: Consider RTA_SRC when looking for a source address
Tobias Brunner
2016-10-05
1
-52
/
+134
*
swanctl: Add 'private' directory/section to load any type of private key
Tobias Brunner
2016-10-05
4
-5
/
+26
*
pki: Add generic 'priv' key type that loads any type of private key
Tobias Brunner
2016-10-05
12
-28
/
+59
*
openssl: Add a generic private key loader
Tobias Brunner
2016-10-05
7
-18
/
+129
*
pkcs1: Support building of KEY_ANY private keys
Tobias Brunner
2016-10-05
2
-5
/
+73
*
pki: Drop -priv suffix to specify private key types
Tobias Brunner
2016-10-05
4
-16
/
+23
*
ikev2: Only add NAT-D notifies to DPDs as initiator
Tobias Brunner
2016-10-04
1
-8
/
+15
*
pkcs11: Look for the CKA_ID of the cert if it doesn't match the subjectKeyId
Raphael Geissert
2016-10-04
1
-4
/
+152
*
nm: Make global CA directory configurable
Tobias Brunner
2016-10-04
1
-1
/
+2
*
ikev1: Activate task to delete the IKE_SA in state IKE_REKEYING
Tobias Brunner
2016-10-04
1
-0
/
+8
*
ikev1: Delete Quick Mode SAs before the ISAKMP SA
Tobias Brunner
2016-10-04
1
-2
/
+2
*
ikev1: Send DELETE for rekeyed IKE_SAs
Tobias Brunner
2016-10-04
1
-9
/
+5
*
starter: Install an empty ipsec.secrets file
Tobias Brunner
2016-10-04
2
-1
/
+3
*
starter: Don't generate a key/certificate if ipsec.secrets does not exist
Tobias Brunner
2016-10-04
2
-70
/
+0
*
watcher: Avoid allocations due to enumerators
Tobias Brunner
2016-10-04
1
-37
/
+83
*
vici: Enable IKE fragmentation by default
Tobias Brunner
2016-10-04
2
-4
/
+4
*
starter: Enable IKE fragmentation by default
Tobias Brunner
2016-10-04
1
-0
/
+1
*
ike: Set default IKE fragment size to 1280
Tobias Brunner
2016-10-04
1
-1
/
+1
*
ikev2: Send derived CHILD_SA keys to the bus
Tobias Brunner
2016-10-04
1
-26
/
+43
*
ikev2: Send derived IKE_SA keys to bus
Tobias Brunner
2016-10-04
1
-26
/
+30
[prev]
[next]