Martin Willi
|
6de7cf4e2f
|
fixed SPI byte order
|
2007-03-21 16:09:27 +00:00 |
|
Martin Willi
|
eef0859043
|
fixed child rekey collision
implemented ike rekey collision
|
2007-03-21 14:42:49 +00:00 |
|
Martin Willi
|
195ada0b4b
|
handling of CHILD_SA rekeying collisions
|
2007-03-21 09:25:36 +00:00 |
|
Martin Willi
|
403f8fd300
|
fixed inproper delete of CHILD_SA
|
2007-03-21 07:01:14 +00:00 |
|
Martin Willi
|
128ca073d2
|
prevent from initiating to %any
|
2007-03-21 07:00:04 +00:00 |
|
Martin Willi
|
0f33e8264a
|
fixed some exchange collisions (except IKE/CHILD rekeying)
|
2007-03-20 16:13:21 +00:00 |
|
Martin Willi
|
e70d5576fa
|
fixed statusall rekey time jitter bug (again)
|
2007-03-20 14:56:41 +00:00 |
|
Martin Willi
|
39a268b867
|
fixed CHILD_SA rekeying time in statusall
|
2007-03-20 12:29:42 +00:00 |
|
Martin Willi
|
37c6ebb78b
|
fixed nat detection bug
|
2007-03-20 12:25:08 +00:00 |
|
Martin Willi
|
fdb9b2bdde
|
respecting "keyingtries" parameter on IKE_SA setup
|
2007-03-20 08:16:16 +00:00 |
|
Martin Willi
|
1edf116cfd
|
cleanups
fixed reset()
|
2007-03-20 08:15:53 +00:00 |
|
Martin Willi
|
44cd2bf0fa
|
not installing a route when policy gets updated
|
2007-03-20 08:15:18 +00:00 |
|
Martin Willi
|
a1e5881c42
|
renamed keyingtries attribute
|
2007-03-20 08:14:18 +00:00 |
|
Martin Willi
|
755bdcc274
|
adjusted loglevels
|
2007-03-20 08:13:54 +00:00 |
|
Martin Willi
|
e59bd409ab
|
always update reqid on policy install, fixes dpdaction=hold issue
|
2007-03-19 10:00:56 +00:00 |
|
Martin Willi
|
ccf96c7e43
|
EAP-SIM cleanups
|
2007-03-19 09:59:17 +00:00 |
|
Martin Willi
|
e05a0b765a
|
fixed CHILD_SA rekeying/delete bug on 64bit machines
removed obsolete methods in delete_payload
|
2007-03-19 08:04:37 +00:00 |
|
Martin Willi
|
d560c849e3
|
added --with-sim-reader option to configure script
some cleanups in eap_sim
|
2007-03-14 15:39:45 +00:00 |
|
Martin Willi
|
c105696d1c
|
removed dublicated code in eap_authenticator
|
2007-03-14 15:25:00 +00:00 |
|
Martin Willi
|
1e93d77153
|
version number selection fix
some cleanups
|
2007-03-14 11:20:34 +00:00 |
|
Martin Willi
|
edfabed069
|
cleaned up and fixed DPD handling code
|
2007-03-14 11:07:12 +00:00 |
|
Martin Willi
|
b857118bd7
|
removed cfg-payload dns test code
|
2007-03-14 11:04:31 +00:00 |
|
Martin Willi
|
b0f24449dd
|
added EAP-SIM authentication
client side only
uses an external SIM reader library specified with SIM_READER_LIB
untested
|
2007-03-13 15:01:02 +00:00 |
|
Martin Willi
|
d2940fd78c
|
not detaching from bus when IKE_SA_INIT is retried
|
2007-03-13 14:55:53 +00:00 |
|
Martin Willi
|
7cec30ad8d
|
added AES-192/256 proposals to IKE
|
2007-03-13 14:55:03 +00:00 |
|
Martin Willi
|
3bc0b1a88d
|
added generic EAP_IDENTITY client implementation using peers IKEv2 ID
|
2007-03-13 14:54:24 +00:00 |
|
Andreas Steffen
|
db0f828413
|
results from the single responses is stored in the corresponding certinfo_t structs
|
2007-03-12 13:42:31 +00:00 |
|
Andreas Steffen
|
7c1b9ab784
|
moved credential_store.h from charon/config/credentials to libstrongswan
|
2007-03-09 16:50:19 +00:00 |
|
Andreas Steffen
|
5455cf230f
|
fixed a certinfo_t memory leak in verify()
|
2007-03-09 14:59:28 +00:00 |
|
Andreas Steffen
|
1bcb84605f
|
ocsp signer certificate and ocsp response signature can be verified
|
2007-03-08 23:29:04 +00:00 |
|
Martin Willi
|
f5fbad4a62
|
fixed memleaks when using EAP authentication
fixed configuration payloads when using EAP
|
2007-03-08 22:56:14 +00:00 |
|
Martin Willi
|
5744d3e777
|
fixed payload order (again)
|
2007-03-08 20:21:17 +00:00 |
|
Martin Willi
|
1216db7e8b
|
including peers certificate when his certreq is empty
|
2007-03-08 20:19:24 +00:00 |
|
Martin Willi
|
e5a7f1cd08
|
implemented cookies as initiator
proper logging of notifies in IKE_SA setup
|
2007-03-08 20:18:39 +00:00 |
|
Martin Willi
|
bb32e76c3a
|
disabling routing for IPv6, does not work correctly
|
2007-03-08 20:17:34 +00:00 |
|
Andreas Steffen
|
162afac75f
|
fixed call of add_auth_certificate()
|
2007-03-08 19:44:14 +00:00 |
|
Andreas Steffen
|
33d108de22
|
generalized get_ca_certificate() to get_auth_certificate(auth_flags)
|
2007-03-08 18:56:43 +00:00 |
|
Andreas Steffen
|
54645fb275
|
added fetcher_finalize() to clean up libcurl
|
2007-03-08 17:00:32 +00:00 |
|
Martin Willi
|
8b8dd69dee
|
some cleanups
not installing %any DNS servers
|
2007-03-08 16:58:59 +00:00 |
|
Andreas Steffen
|
9149635ffa
|
support if ocsp signing certificates
|
2007-03-08 16:47:18 +00:00 |
|
Andreas Steffen
|
9f4039755d
|
support if ocsp signing certificates
|
2007-03-08 16:46:50 +00:00 |
|
Martin Willi
|
3b7fdcf6c6
|
fixed payload order in IKE_AUTH
|
2007-03-08 15:59:21 +00:00 |
|
Martin Willi
|
069f01cfef
|
removed SHA2 kernel proposals from default, the kernel doesn't support them yet
|
2007-03-08 15:18:51 +00:00 |
|
Martin Willi
|
f007a70055
|
allocation fixes, not complete
|
2007-03-08 14:41:30 +00:00 |
|
Martin Willi
|
2c7fe7f530
|
handling "No policy found" properly
|
2007-03-08 14:41:09 +00:00 |
|
Martin Willi
|
0cde6c412b
|
added more debugging output for policy lookup
returning a (dummy) policy even when TS does not match, so we can properly send a TS_UNACCEPTABLE
|
2007-03-08 14:40:15 +00:00 |
|
Martin Willi
|
9b8b3e5f5c
|
fixed CHILD_SA creation within existing IKE_SA
|
2007-03-08 12:28:10 +00:00 |
|
Martin Willi
|
49e8ac052d
|
ported changes from EAP branch, renabling EAP framework
|
2007-03-08 00:27:43 +00:00 |
|
Martin Willi
|
3c6337793f
|
added (not yet supported) sha2 algorithms to kernel
only adding a route if using tunnel mode
|
2007-03-08 00:17:57 +00:00 |
|
Martin Willi
|
9aa20fdae8
|
added SHA2 MAC and PRF to default proposal
|
2007-03-08 00:16:33 +00:00 |
|