Martin Willi
|
45819d7d49
|
fixed rightsourceip=%config scenarios
|
2008-04-14 07:18:16 +00:00 |
|
Andreas Steffen
|
fa89d4457a
|
use ip6tables in sql/rw-psk-ipv6 scenario
|
2008-04-14 06:10:10 +00:00 |
|
Andreas Steffen
|
acda610cbb
|
fixed suppression of cert requests in eap-sim and eap-aka scenarios
|
2008-04-14 04:33:17 +00:00 |
|
Andreas Steffen
|
ff41ca0dc4
|
host_srcip was not properly initialized in starterwhack.c
|
2008-04-13 21:42:44 +00:00 |
|
Andreas Steffen
|
743d9c7b20
|
added sql/rw-psk-ipv6 scenario
|
2008-04-13 19:50:15 +00:00 |
|
Andreas Steffen
|
09a01b5e51
|
added sql/rw-psk-rsa-split scenario
|
2008-04-13 19:49:20 +00:00 |
|
Andreas Steffen
|
b1bdfa4890
|
fixed disabling the sending of cert requests
|
2008-04-13 17:31:07 +00:00 |
|
Martin Willi
|
96926b006d
|
using dpd actions to enforce connection state
dpd actions a per child-, not peer ike-sa
|
2008-04-11 08:14:48 +00:00 |
|
Tobias Brunner
|
4a6474c2c3
|
enabling acquire for mediated connections
|
2008-04-10 12:51:04 +00:00 |
|
Tobias Brunner
|
78abba428f
|
enabling reauthentication on mediation connections
|
2008-04-10 08:42:27 +00:00 |
|
Tobias Brunner
|
4a03518112
|
fixing a problem if the mediation server initiates the rekeying
|
2008-04-10 07:24:30 +00:00 |
|
Tobias Brunner
|
22452f70fc
|
mediation connections should now properly rekey
|
2008-04-09 18:12:22 +00:00 |
|
Martin Willi
|
ad81e51afc
|
implemented a simple attribute provider for stroke
|
2008-04-09 12:56:20 +00:00 |
|
Martin Willi
|
cdcfe777f4
|
implementation of an CFG attribute framework, currently supporting virtual IPs
updated ipsec.conf sourceip parameter to support
CIDR notatation to serve from a pool
%poolname to query a separate (database?) pool
|
2008-04-09 12:54:47 +00:00 |
|
Tobias Brunner
|
4a96521965
|
signature in connectivity checks is now built with the message id in network byte order
|
2008-04-08 13:45:30 +00:00 |
|
Martin Willi
|
5df92bba51
|
changed force_encap to forceencaps
|
2008-04-08 12:53:36 +00:00 |
|
Tobias Brunner
|
1d295d1ffa
|
printing the checklist, two bugfixes
|
2008-04-08 12:31:27 +00:00 |
|
Tobias Brunner
|
6f186d7e2e
|
connect manager: restart the sender if it is not running anymore
|
2008-04-08 09:21:27 +00:00 |
|
Tobias Brunner
|
03e5336340
|
better logging for chunks in connect manager
|
2008-04-08 08:41:23 +00:00 |
|
Tobias Brunner
|
028a345c63
|
refactored callback data in connect manager
|
2008-04-08 08:33:15 +00:00 |
|
Martin Willi
|
f6e7c0f785
|
removed stale ocsp header
|
2008-04-08 06:27:04 +00:00 |
|
Tobias Brunner
|
6970925422
|
fast finishing connectivity checks on the initiators side
|
2008-04-07 15:45:37 +00:00 |
|
Tobias Brunner
|
dd563e60df
|
corrected the logging for retransmissions of connectivity checks
|
2008-04-07 14:45:39 +00:00 |
|
Tobias Brunner
|
b03c1d415c
|
changed how retransmissions of connectivity checks are sent
|
2008-04-07 11:26:15 +00:00 |
|
Martin Willi
|
852abcd3a3
|
fixed doxygen groups to avoid recursion
|
2008-04-07 10:37:14 +00:00 |
|
Andreas Steffen
|
571ad29507
|
wildcard matching in shared secrets not implemented yet
|
2008-04-07 10:29:08 +00:00 |
|
Andreas Steffen
|
e44612c878
|
added sql/rw-psk-ipv4 scenario
|
2008-04-07 10:24:49 +00:00 |
|
Tobias Brunner
|
70a568b015
|
fixing another memory leak
|
2008-04-07 09:36:52 +00:00 |
|
Andreas Steffen
|
af9e3954e2
|
set accelerated rekeying defaults in ipsec.sql for UML scenarios
|
2008-04-07 09:10:58 +00:00 |
|
Andreas Steffen
|
2c0df332a9
|
added sql/rw-cert scenario
|
2008-04-07 08:57:46 +00:00 |
|
Martin Willi
|
1749642b15
|
use cert->equals() to filter out equal certificates in seperate instances
|
2008-04-07 08:48:08 +00:00 |
|
Martin Willi
|
da5e7bdb4c
|
try to cache the same instance of equal certificates
|
2008-04-07 08:44:43 +00:00 |
|
Martin Willi
|
b5dbcc6270
|
compare certificates against full encoding to allow equality check of untrusted certs
|
2008-04-07 08:28:35 +00:00 |
|
Martin Willi
|
9caadea8c8
|
fixed bad cleanup which results in segfault if no issuer cert found, fixes #43
|
2008-04-07 08:06:02 +00:00 |
|
Andreas Steffen
|
6fbd3f1738
|
fixed path to ipsec.sql
|
2008-04-07 07:57:38 +00:00 |
|
Andreas Steffen
|
56bcc343ff
|
ipsec.sql remains in /etc/ipsec.d
|
2008-04-07 07:25:04 +00:00 |
|
Andreas Steffen
|
decfd8e546
|
moved strongswan.conf to /etc
|
2008-04-07 07:21:06 +00:00 |
|
Andreas Steffen
|
480297b883
|
cosmetics
|
2008-04-07 07:02:47 +00:00 |
|
Martin Willi
|
ff867d062e
|
added ./configure option --with-strongswan-conf=
defaults to /etc/strongswan.conf
|
2008-04-07 06:56:33 +00:00 |
|
Martin Willi
|
4071ad1e5b
|
fixed segfault when opening a SQLite database fails
|
2008-04-07 06:49:13 +00:00 |
|
Andreas Steffen
|
096b7f6889
|
do-tests now lists strongswan.conf and ip xfrm policy|state
|
2008-04-07 06:14:21 +00:00 |
|
Martin Willi
|
8ec032fc62
|
added helper scripts to create SQL scripts
|
2008-04-07 06:06:42 +00:00 |
|
Andreas Steffen
|
84fc1abf7a
|
added sql/net2net-psk scenario
|
2008-04-06 18:11:19 +00:00 |
|
Andreas Steffen
|
b6032b2400
|
corrected description
|
2008-04-06 18:10:57 +00:00 |
|
Andreas Steffen
|
f8ab4a8f76
|
log shared secret with debug level 4
|
2008-04-06 17:51:29 +00:00 |
|
Andreas Steffen
|
b26fecefa0
|
disable mobike in sql/net2net-cert scenario
|
2008-04-06 12:53:57 +00:00 |
|
Andreas Steffen
|
1b247314fd
|
default is hostaccess=no
|
2008-04-06 12:15:05 +00:00 |
|
Andreas Steffen
|
bc722433be
|
version bump to 4.2.1
|
2008-04-06 12:12:13 +00:00 |
|
Andreas Steffen
|
69813bd27f
|
added sql/net2net-cert scenario
|
2008-04-06 12:06:33 +00:00 |
|
Andreas Steffen
|
babaaa3c11
|
support of SQL databases in UML scenarios
|
2008-04-06 12:05:42 +00:00 |
|