Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | testing: make curve25519 the default DH group | Andreas Steffen | 2016-11-14 | 2 | -6/+2 |
| | |||||
* | testing: Add expect-connection calls for all tests and hosts | Tobias Brunner | 2016-06-16 | 1 | -0/+1 |
| | | | | There are some exceptions (e.g. those that use auto=start or p2pnat). | ||||
* | testing: Update test scenarios for Debian jessie | Tobias Brunner | 2016-06-16 | 1 | -1/+1 |
| | | | | | | | The main difference is that ping now reports icmp_seq instead of icmp_req, so we match for icmp_.eq, which works with both releases. tcpdump now also reports port 4500 as ipsec-nat-t. | ||||
* | ikev1: Log successful authentication with signature scheme | Thomas Egerer | 2016-02-01 | 1 | -1/+1 |
| | | | | | | Output is now identical to that of the IKEv2 pubkey authenticator. Signed-off-by: Thomas Egerer <thomas.egerer@secunet.com> | ||||
* | testing: Remove nearly all sleep calls from pretest and posttest scripts | Tobias Brunner | 2015-11-09 | 1 | -2/+1 |
| | | | | | By consistently using the `expect-connection` helper we can avoid pretty much all previously needed calls to sleep. | ||||
* | configure: Load fetcher plugins after crypto base plugins | Martin Willi | 2014-09-24 | 1 | -1/+1 |
| | | | | | | | | | | Some fetcher plugins (such as curl) might build upon OpenSSL to implement HTTPS fetching. As we set (and can't unset) threading callbacks in our openssl plugin, we must ensure that OpenSSL functions don't get called after openssl plugin unloading. We achieve that by loading curl and all other fetcher plugins after the base crypto plugins, including openssl. | ||||
* | Merged libstrongswan options into charon section | Andreas Steffen | 2014-03-15 | 2 | -2/+3 |
| | |||||
* | strongswan.conf is not needed on RADIUS server alice | Andreas Steffen | 2014-03-15 | 1 | -0/+1 |
| | |||||
* | testing: enforce xauth-eap in ikev1/xauth-rsa-eap-md5-radius | Martin Willi | 2013-07-29 | 1 | -1/+1 |
| | | | | | As eap-radius now provides its own XAuth backend and eap-radius is loaded before xauth-eap, we have to enforce the exact XAuth backend to use. | ||||
* | Updated comments in test.conf of all tests | Tobias Brunner | 2013-01-17 | 1 | -4/+4 |
| | |||||
* | Renamed $UMLHOSTS to $VIRTHOSTS | Tobias Brunner | 2013-01-17 | 1 | -2/+2 |
| | |||||
* | converted all ikev1 iptables scenarios | Andreas Steffen | 2013-01-17 | 4 | -88/+36 |
| | |||||
* | Adapt test configurations | Reto Buerki | 2013-01-17 | 9 | -128/+3 |
| | | | | Adapt test configurations to the new Debian-based system. | ||||
* | rsasig is not recognized as authentication method | Andreas Steffen | 2012-06-18 | 2 | -4/+4 |
| | |||||
* | change ikev1/xauth scenarios to modern notation | Andreas Steffen | 2012-06-18 | 2 | -3/+6 |
| | |||||
* | removed plutostart parameter | Andreas Steffen | 2012-06-13 | 2 | -2/+0 |
| | |||||
* | added ikev1/xauth-rsa-eap-md5-radius scenario | Andreas Steffen | 2012-05-24 | 18 | -0/+392 |