Martin Willi
|
e1f9d6476e
|
Register HASH_V1 in payload factory
|
2012-03-20 17:30:46 +01:00 |
|
Martin Willi
|
7fcd26f4fc
|
Fix payload length of id_payload created from a traffic selector
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
42a69b05ab
|
String for ENCRYPTED_DATA fixed.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
780ce7724d
|
Strings for ENCRYPTED_V1 payload added.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
d66199884f
|
Set flags on message according to IKE version when parsing header.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
c92f2cf36d
|
Encrypt IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
477e856a15
|
Decrypt IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
6f5f8ee4b5
|
Use modified encryption payload to encrypt/decrypt complete IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
0cec72df40
|
Provide keymat_t to message_t to encrypt/decrypt data.
|
2012-03-20 17:30:45 +01:00 |
|
Tobias Brunner
|
50d493808c
|
Avoid compiler warnings due to extended enums.
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
3bd5fcc832
|
Print message ID as unsigned integer
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
9e40e3e9fa
|
Added message encoding rules for quick mode
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
cbb6d765bc
|
Fixed length calculation of delete payload
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
4ea258538e
|
Update header length after each parsed rule, as it might change when parsing SPI size
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
5789320f5c
|
Fix rule selection in transform substructure
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
5f1aef65ce
|
Fixed proposal numbering check in sa_payload
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
c311d22d0f
|
Don't clone chunk in message.get_packet_data
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
31fc14e394
|
Verify IKEv1 nonce size, send 32 byte nonces
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
e4a8fd72cb
|
Added IKEv1 ID payload <-> traffic selector conversion functions
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
72b3146092
|
Re-enable static inclusion of PSK auth method into IKEv1 proposal
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
cf6cd5aa4b
|
Added IKEv1 support to delete payload
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
04ee2b7fed
|
Added IKEv1 support to notify payload
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
f62a7c7c71
|
Use a generic list encoding rule we can use to specify the wrapped payload type
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
95a26523af
|
Use a generic encoding type for all variable length chunks
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
ee50a29385
|
Implemented IKEv1 hash payload
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
2a36037ec7
|
Extended ID payload for (non-TS) IKEv1 use
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
38fb67fbf1
|
Add a payload.get_header_length() method, remove header length definitions
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
e9b55b8325
|
Simplify signature of get_encoding_rules(), make all rules static
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
683d83ed3e
|
Extended KE payload for IKEv1 support
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
bcfb0f4096
|
Extended nonce payload for IKEv1 support
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
717333da98
|
Add fixed PSK authentication method to IKEv1 proposal for now
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
3a470f3035
|
Added limiting encoding of IKEv1 SA payloads
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
2bcd51b389
|
Added SA payload IKEv1 encoding types to generator
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
bce8d3be11
|
Don't set IKEv2 only header flags when using IKEv1
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
da8cadbd93
|
Set default IKE header initiator flag in IKEv2 only
|
2012-03-20 17:30:41 +01:00 |
|
Tobias Brunner
|
354ac9579f
|
Compile error fixed.
|
2012-03-20 17:30:41 +01:00 |
|
Tobias Brunner
|
7f56cf1a65
|
Message parsing slightly refactored, allows parsing of unencrypted IKEv1 messages.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
4ed52db2bb
|
Allow creation of message_t objects for IKEv1 packets.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
8a2d079d78
|
Certificate request payloads can be sent in pretty much any IKEv1 message.
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
1bf2971ff2
|
Implemented limited payload parsing for IKEv1 SA payloads
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
3f6d1b13a7
|
Added additional IKEv1 payload and encoding identifiers
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
b0b9d18593
|
Extend sa_payload for IKEv1 support
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
8f3aea2f77
|
Message rules for IKEv1 INFORMATIONAL exchange added.
Since INFORMATIONAL "exchanges" are actually unidirectionally sent
message we don't have any responder rules.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
130c9a54c2
|
Message rules for IKEv1 AGGRESSIVE exchange added.
These are basically the same as for ID_PROT but no payloads are expected
to be encrypted (at least if using PSK or signatures for authentication).
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
6ba70ba8dd
|
Message rules for IKEv1 ID_PROT exchange added.
These rules are quite broad and cover main mode with at least PSK and
signature based authentication.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
fdb8421f36
|
Typo fixed.
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
837298c590
|
Use vendor id payload for IKEv1 payloads, too
|
2012-03-20 17:30:39 +01:00 |
|
Martin Willi
|
ecf854a00b
|
Added IKEv1 payload identifiers to "known" payload list
|
2012-03-20 17:30:39 +01:00 |
|
Martin Willi
|
e33b41e7b0
|
Added IKEv1 payload identifiers
|
2012-03-20 17:30:39 +01:00 |
|
Martin Willi
|
526b5afb45
|
Extended IKE header for IKEv1 support
|
2012-03-20 17:30:39 +01:00 |
|