Commit Graph
2447 Commits
Author SHA1 Message Date
Martin Willi 45819d7d49 fixed rightsourceip=%config scenarios 2008-04-14 07:18:16 +00:00
Andreas Steffen fa89d4457a use ip6tables in sql/rw-psk-ipv6 scenario 2008-04-14 06:10:10 +00:00
Andreas Steffen acda610cbb fixed suppression of cert requests in eap-sim and eap-aka scenarios 2008-04-14 04:33:17 +00:00
Andreas Steffen ff41ca0dc4 host_srcip was not properly initialized in starterwhack.c 2008-04-13 21:42:44 +00:00
Andreas Steffen 743d9c7b20 added sql/rw-psk-ipv6 scenario 2008-04-13 19:50:15 +00:00
Andreas Steffen 09a01b5e51 added sql/rw-psk-rsa-split scenario 2008-04-13 19:49:20 +00:00
Andreas Steffen b1bdfa4890 fixed disabling the sending of cert requests 2008-04-13 17:31:07 +00:00
Martin Willi 96926b006d using dpd actions to enforce connection state
dpd actions a per child-, not peer ike-sa
2008-04-11 08:14:48 +00:00
Tobias Brunner 4a6474c2c3 enabling acquire for mediated connections 2008-04-10 12:51:04 +00:00
Tobias Brunner 78abba428f enabling reauthentication on mediation connections 2008-04-10 08:42:27 +00:00
Tobias Brunner 4a03518112 fixing a problem if the mediation server initiates the rekeying 2008-04-10 07:24:30 +00:00
Tobias Brunner 22452f70fc mediation connections should now properly rekey 2008-04-09 18:12:22 +00:00
Martin Willi ad81e51afc implemented a simple attribute provider for stroke 2008-04-09 12:56:20 +00:00
Martin Willi cdcfe777f4 implementation of an CFG attribute framework, currently supporting virtual IPs
updated ipsec.conf sourceip parameter to support
	CIDR notatation to serve from a pool
	%poolname to query a separate (database?) pool
2008-04-09 12:54:47 +00:00
Tobias Brunner 4a96521965 signature in connectivity checks is now built with the message id in network byte order 2008-04-08 13:45:30 +00:00
Martin Willi 5df92bba51 changed force_encap to forceencaps 2008-04-08 12:53:36 +00:00
Tobias Brunner 1d295d1ffa printing the checklist, two bugfixes 2008-04-08 12:31:27 +00:00
Tobias Brunner 6f186d7e2e connect manager: restart the sender if it is not running anymore 2008-04-08 09:21:27 +00:00
Tobias Brunner 03e5336340 better logging for chunks in connect manager 2008-04-08 08:41:23 +00:00
Tobias Brunner 028a345c63 refactored callback data in connect manager 2008-04-08 08:33:15 +00:00
Martin Willi f6e7c0f785 removed stale ocsp header 2008-04-08 06:27:04 +00:00
Tobias Brunner 6970925422 fast finishing connectivity checks on the initiators side 2008-04-07 15:45:37 +00:00
Tobias Brunner dd563e60df corrected the logging for retransmissions of connectivity checks 2008-04-07 14:45:39 +00:00
Tobias Brunner b03c1d415c changed how retransmissions of connectivity checks are sent 2008-04-07 11:26:15 +00:00
Martin Willi 852abcd3a3 fixed doxygen groups to avoid recursion 2008-04-07 10:37:14 +00:00
Andreas Steffen 571ad29507 wildcard matching in shared secrets not implemented yet 2008-04-07 10:29:08 +00:00
Andreas Steffen e44612c878 added sql/rw-psk-ipv4 scenario 2008-04-07 10:24:49 +00:00
Tobias Brunner 70a568b015 fixing another memory leak 2008-04-07 09:36:52 +00:00
Andreas Steffen af9e3954e2 set accelerated rekeying defaults in ipsec.sql for UML scenarios 2008-04-07 09:10:58 +00:00
Andreas Steffen 2c0df332a9 added sql/rw-cert scenario 2008-04-07 08:57:46 +00:00
Martin Willi 1749642b15 use cert->equals() to filter out equal certificates in seperate instances 2008-04-07 08:48:08 +00:00
Martin Willi da5e7bdb4c try to cache the same instance of equal certificates 2008-04-07 08:44:43 +00:00
Martin Willi b5dbcc6270 compare certificates against full encoding to allow equality check of untrusted certs 2008-04-07 08:28:35 +00:00
Martin Willi 9caadea8c8 fixed bad cleanup which results in segfault if no issuer cert found, fixes #43 2008-04-07 08:06:02 +00:00
Andreas Steffen 6fbd3f1738 fixed path to ipsec.sql 2008-04-07 07:57:38 +00:00
Andreas Steffen 56bcc343ff ipsec.sql remains in /etc/ipsec.d 2008-04-07 07:25:04 +00:00
Andreas Steffen decfd8e546 moved strongswan.conf to /etc 2008-04-07 07:21:06 +00:00
Andreas Steffen 480297b883 cosmetics 2008-04-07 07:02:47 +00:00
Martin Willi ff867d062e added ./configure option --with-strongswan-conf=
defaults to /etc/strongswan.conf
2008-04-07 06:56:33 +00:00
Martin Willi 4071ad1e5b fixed segfault when opening a SQLite database fails 2008-04-07 06:49:13 +00:00
Andreas Steffen 096b7f6889 do-tests now lists strongswan.conf and ip xfrm policy|state 2008-04-07 06:14:21 +00:00
Martin Willi 8ec032fc62 added helper scripts to create SQL scripts 2008-04-07 06:06:42 +00:00
Andreas Steffen 84fc1abf7a added sql/net2net-psk scenario 2008-04-06 18:11:19 +00:00
Andreas Steffen b6032b2400 corrected description 2008-04-06 18:10:57 +00:00
Andreas Steffen f8ab4a8f76 log shared secret with debug level 4 2008-04-06 17:51:29 +00:00
Andreas Steffen b26fecefa0 disable mobike in sql/net2net-cert scenario 2008-04-06 12:53:57 +00:00
Andreas Steffen 1b247314fd default is hostaccess=no 2008-04-06 12:15:05 +00:00
Andreas Steffen bc722433be version bump to 4.2.1 2008-04-06 12:12:13 +00:00
Andreas Steffen 69813bd27f added sql/net2net-cert scenario 2008-04-06 12:06:33 +00:00
Andreas Steffen babaaa3c11 support of SQL databases in UML scenarios 2008-04-06 12:05:42 +00:00