Martin Willi
|
62a27ba347
|
Encode multiple IKEv1 proposals in a single transform substructure
|
2012-03-20 17:30:48 +01:00 |
|
Martin Willi
|
f9450fc9f7
|
Remove public sa_payload.add_proposal() method
|
2012-03-20 17:30:48 +01:00 |
|
Martin Willi
|
cd89f1a074
|
Only add the first algorithm of a kind to IKEv1 transforms
|
2012-03-20 17:30:48 +01:00 |
|
Martin Willi
|
f5c0096086
|
Hardcode some SA lifetimes until we can configure them dynamically
|
2012-03-20 17:30:48 +01:00 |
|
Tobias Brunner
|
4c6dfbb26b
|
Added missing comma after ME_CONNECT declaration.
|
2012-03-20 17:30:48 +01:00 |
|
Tobias Brunner
|
8c5e78ae4f
|
Fixed creation of endpoint notifies.
|
2012-03-20 17:30:48 +01:00 |
|
Tobias Brunner
|
21da1087a5
|
Fixed diagram of IKEv1 encrypted "payload".
|
2012-03-20 17:30:47 +01:00 |
|
Martin Willi
|
cc9629d87c
|
Partially implemented IKEv1 ESP proposal en-/decoding
|
2012-03-20 17:30:47 +01:00 |
|
Martin Willi
|
e1f9d6476e
|
Register HASH_V1 in payload factory
|
2012-03-20 17:30:46 +01:00 |
|
Martin Willi
|
7fcd26f4fc
|
Fix payload length of id_payload created from a traffic selector
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
42a69b05ab
|
String for ENCRYPTED_DATA fixed.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
780ce7724d
|
Strings for ENCRYPTED_V1 payload added.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
d66199884f
|
Set flags on message according to IKE version when parsing header.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
c92f2cf36d
|
Encrypt IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
477e856a15
|
Decrypt IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
6f5f8ee4b5
|
Use modified encryption payload to encrypt/decrypt complete IKEv1 messages.
|
2012-03-20 17:30:46 +01:00 |
|
Tobias Brunner
|
0cec72df40
|
Provide keymat_t to message_t to encrypt/decrypt data.
|
2012-03-20 17:30:45 +01:00 |
|
Tobias Brunner
|
50d493808c
|
Avoid compiler warnings due to extended enums.
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
3bd5fcc832
|
Print message ID as unsigned integer
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
9e40e3e9fa
|
Added message encoding rules for quick mode
|
2012-03-20 17:30:45 +01:00 |
|
Martin Willi
|
cbb6d765bc
|
Fixed length calculation of delete payload
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
4ea258538e
|
Update header length after each parsed rule, as it might change when parsing SPI size
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
5789320f5c
|
Fix rule selection in transform substructure
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
5f1aef65ce
|
Fixed proposal numbering check in sa_payload
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
c311d22d0f
|
Don't clone chunk in message.get_packet_data
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
31fc14e394
|
Verify IKEv1 nonce size, send 32 byte nonces
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
e4a8fd72cb
|
Added IKEv1 ID payload <-> traffic selector conversion functions
|
2012-03-20 17:30:44 +01:00 |
|
Martin Willi
|
72b3146092
|
Re-enable static inclusion of PSK auth method into IKEv1 proposal
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
cf6cd5aa4b
|
Added IKEv1 support to delete payload
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
04ee2b7fed
|
Added IKEv1 support to notify payload
|
2012-03-20 17:30:43 +01:00 |
|
Martin Willi
|
f62a7c7c71
|
Use a generic list encoding rule we can use to specify the wrapped payload type
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
95a26523af
|
Use a generic encoding type for all variable length chunks
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
ee50a29385
|
Implemented IKEv1 hash payload
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
2a36037ec7
|
Extended ID payload for (non-TS) IKEv1 use
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
38fb67fbf1
|
Add a payload.get_header_length() method, remove header length definitions
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
e9b55b8325
|
Simplify signature of get_encoding_rules(), make all rules static
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
683d83ed3e
|
Extended KE payload for IKEv1 support
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
bcfb0f4096
|
Extended nonce payload for IKEv1 support
|
2012-03-20 17:30:42 +01:00 |
|
Martin Willi
|
717333da98
|
Add fixed PSK authentication method to IKEv1 proposal for now
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
3a470f3035
|
Added limiting encoding of IKEv1 SA payloads
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
2bcd51b389
|
Added SA payload IKEv1 encoding types to generator
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
bce8d3be11
|
Don't set IKEv2 only header flags when using IKEv1
|
2012-03-20 17:30:41 +01:00 |
|
Martin Willi
|
da8cadbd93
|
Set default IKE header initiator flag in IKEv2 only
|
2012-03-20 17:30:41 +01:00 |
|
Tobias Brunner
|
354ac9579f
|
Compile error fixed.
|
2012-03-20 17:30:41 +01:00 |
|
Tobias Brunner
|
7f56cf1a65
|
Message parsing slightly refactored, allows parsing of unencrypted IKEv1 messages.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
4ed52db2bb
|
Allow creation of message_t objects for IKEv1 packets.
|
2012-03-20 17:30:40 +01:00 |
|
Tobias Brunner
|
8a2d079d78
|
Certificate request payloads can be sent in pretty much any IKEv1 message.
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
1bf2971ff2
|
Implemented limited payload parsing for IKEv1 SA payloads
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
3f6d1b13a7
|
Added additional IKEv1 payload and encoding identifiers
|
2012-03-20 17:30:40 +01:00 |
|
Martin Willi
|
b0b9d18593
|
Extend sa_payload for IKEv1 support
|
2012-03-20 17:30:40 +01:00 |
|