Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | testing: Added pfkey/compress test case | Tobias Brunner | 2014-04-24 | 9 | -0/+100 |
| | |||||
* | Handle tag separators | Andreas Steffen | 2014-04-15 | 1 | -1/+1 |
| | |||||
* | Renewed expired user certificate | Andreas Steffen | 2014-04-15 | 7 | -49/+75 |
| | |||||
* | Updated SWID scenarios | Andreas Steffen | 2014-04-15 | 6 | -4/+18 |
| | |||||
* | Implemented segmented SWID tag attributes on IMV side | Andreas Steffen | 2014-04-15 | 54 | -36/+101 |
| | |||||
* | Use python-based swidGenerator to generated SWID tags | Andreas Steffen | 2014-04-15 | 16 | -21/+46 |
| | |||||
* | Make Attestation IMV independent of OS IMV | Andreas Steffen | 2014-04-15 | 21 | -11/+310 |
| | |||||
* | Fixed pretest script in tnc/tnccs-20-pt-tls scenario | Andreas Steffen | 2014-04-04 | 1 | -1/+1 |
| | |||||
* | testing: Run 'conntrack -F' before all test scenarios | Tobias Brunner | 2014-04-02 | 28 | -41/+14 |
| | | | | This prevents failures due to remaining conntrack entries. | ||||
* | Test TLS AEAD cipher suites | Andreas Steffen | 2014-04-01 | 10 | -10/+17 |
| | |||||
* | Slightly edited evaltest of ikev2/ocsp-untrusted-cert scenario | Andreas Steffen | 2014-03-31 | 1 | -1/+1 |
| | |||||
* | revocation: Restrict OCSP signing to specific certificates | Martin Willi | 2014-03-31 | 2 | -3/+2 |
| | | | | | | | | | | | | | To avoid considering each cached OCSP response and evaluating its trustchain, we limit the certificates considered for OCSP signing to: - The issuing CA of the checked certificate - A directly delegated signer by the same CA, having the OCSP signer constraint - Any locally installed (trusted) certificate having the OCSP signer constraint The first two options cover the requirements from RFC 6960 2.6. For compatibility with non-conforming CAs, we allow the third option as exception, but require the installation of such certificates locally. | ||||
* | testing: Add an acert test that forces a fallback connection based on groups | Martin Willi | 2014-03-31 | 13 | -0/+199 |
| | |||||
* | testing: Add an acert test case sending attribute certificates inline | Martin Willi | 2014-03-31 | 18 | -0/+291 |
| | |||||
* | testing: Add an acert test using locally cached attribute certificates | Martin Willi | 2014-03-31 | 16 | -0/+239 |
| | |||||
* | testing: build strongSwan with acert plugin | Martin Willi | 2014-03-31 | 1 | -0/+1 |
| | |||||
* | Added libipsec/net2net-3des scenario | Andreas Steffen | 2014-03-28 | 11 | -0/+1521 |
| | |||||
* | Renewed self-signed OCSP signer certificate | Andreas Steffen | 2014-03-27 | 4 | -43/+45 |
| | |||||
* | Check that valid OCSP responses are received in the ikev2/ocsp-multi-level ↵ | Andreas Steffen | 2014-03-24 | 1 | -0/+4 |
| | | | | scenario | ||||
* | Updated expired certificates issued by the Research and Sales Intermediate CAs | Andreas Steffen | 2014-03-24 | 21 | -185/+295 |
| | |||||
* | Renewed revoked Research CA certificate5.1.3dr1 | Andreas Steffen | 2014-03-22 | 6 | -11/+37 |
| | |||||
* | Added openssl-ikev2/net2net-pgp-v3 scenario | Andreas Steffen | 2014-03-22 | 17 | -0/+208 |
| | |||||
* | Completed integration of ntru_crypto library into ntru plugin | Andreas Steffen | 2014-03-22 | 9 | -0/+128 |
| | |||||
* | Merged libstrongswan options into charon section | Andreas Steffen | 2014-03-15 | 98 | -240/+41 |
| | |||||
* | strongswan.conf is not needed on RADIUS server alice | Andreas Steffen | 2014-03-15 | 2 | -0/+2 |
| | |||||
* | Disable mandatory ECP support for attestion | Andreas Steffen | 2014-03-07 | 18 | -0/+312 |
| | |||||
* | Added ikev2/lookip scenario | Andreas Steffen | 2014-02-17 | 12 | -1/+151 |
| | |||||
* | testing: Use installed PTS SQL schema and data instead of local copy | Tobias Brunner | 2014-02-12 | 6 | -1456/+8 |
| | |||||
* | testing: Use installed SQL schema instead of local copy | Tobias Brunner | 2014-02-12 | 25 | -334/+64 |
| | |||||
* | Fixed description of ikev1/rw-ntru-psk scenario | Andreas Steffen | 2014-02-12 | 1 | -1/+1 |
| | |||||
* | Updated test kvm tests to Linux 3.13 kernel | Andreas Steffen | 2014-02-12 | 2 | -3/+2050 |
| | |||||
* | Added ikev1/net2net-ntru-cert and ikev1/rw-ntru-psk scenarios | Andreas Steffen | 2014-02-12 | 23 | -0/+302 |
| | |||||
* | testing: Add ssh script to distribution | Tobias Brunner | 2014-02-12 | 1 | -1/+1 |
| | |||||
* | Added missing semicolon in SQL statements | Andreas Steffen | 2014-02-05 | 1 | -6/+6 |
| | |||||
* | Added Android 4.3.1 to products database table | Andreas Steffen | 2014-02-04 | 1 | -2/+14 |
| | |||||
* | Added new Android versions to PTS database | Andreas Steffen | 2014-02-04 | 1 | -0/+60 |
| | |||||
* | testing: Fetch the FreeRADIUS tarball from the "old" directory | Martin Willi | 2014-01-31 | 1 | -1/+1 |
| | | | | Fixes #483. | ||||
* | testing: Add ikev2/host2host-transport-nat scenario | Tobias Brunner | 2014-01-23 | 9 | -0/+146 |
| | |||||
* | testing: Add ipv6/rw-compress-ikev2 scenario | Tobias Brunner | 2014-01-23 | 9 | -0/+125 |
| | |||||
* | testing: Add ikev2/compress-nat scenario | Tobias Brunner | 2014-01-23 | 12 | -0/+187 |
| | |||||
* | testing: Enable firewall for ikev2/compress scenario | Tobias Brunner | 2014-01-23 | 8 | -7/+14 |
| | | | | | Additionally, send a regular (small) ping as the kernel does not compress small packets and handles those differently inbound. | ||||
* | Added TPMRA workitem support in PTS database | Andreas Steffen | 2014-01-16 | 1 | -0/+60 |
| | |||||
* | Starting with 3.1.7 kernel.org replaced bz2 with xz format | Andreas Steffen | 2014-01-15 | 2 | -5/+5 |
| | |||||
* | testing: Fix status output in build-baseimage script | Reto Buerki | 2013-12-04 | 1 | -1/+1 |
| | |||||
* | charon-tkm: Update integration tests | Reto Buerki | 2013-12-04 | 7 | -1/+49 |
| | |||||
* | Any of the four NTRU parameter sets can be selected | Andreas Steffen | 2013-11-27 | 1 | -0/+8 |
| | |||||
* | Added ikev2/net2net-ntru-cert and ikev2/rw-ntru-psk scenarios | Andreas Steffen | 2013-11-27 | 23 | -0/+284 |
| | |||||
* | Prototype implementation of IKE key exchange via NTRU encryption | Andreas Steffen | 2013-11-27 | 1 | -1/+2 |
| | |||||
* | testing: Config for Linux kernel 3.12 | Tobias Brunner | 2013-11-19 | 1 | -0/+2022 |
| | | | | | | | | The most significant change is that CONFIG_ACPI_PROC_EVENT is now finally removed (after being deprecated for a long time). So to successfully shutdown the guests via ACPI the CONFIG_INPUT_EVDEV option is now enabled. | ||||
* | Version bump to 5.1.1 | Andreas Steffen | 2013-10-31 | 2 | -4/+2009 |
| |