Andreas Steffen
|
04933ea74e
|
added ikev2/alg-3des-md5 scenario
|
2009-12-08 12:54:42 +01:00 |
|
Andreas Steffen
|
7868162b35
|
added RFC-conforming ikev2/sha2 scenarios
|
2009-11-26 23:48:29 +01:00 |
|
Andreas Steffen
|
68db91ca32
|
adapted ikev2/alg-aes-xcbc scenario
|
2009-11-26 23:46:27 +01:00 |
|
Andreas Steffen
|
6ae43b9333
|
mixed fingerprint / userid
|
2009-11-11 11:17:59 +01:00 |
|
Andreas Steffen
|
262af16179
|
accept PGP v3 or v4 fingerprint as alternative to PGP user_id
|
2009-11-09 23:15:17 +01:00 |
|
Andreas Steffen
|
b25311fbe2
|
added ikev2/net2net-pgp-v3 scenario
|
2009-11-08 23:49:04 +01:00 |
|
Andreas Steffen
|
bc662125c2
|
removed nocrsend=yes statement
|
2009-11-08 23:48:26 +01:00 |
|
Andreas Steffen
|
2846e51a5b
|
added ikev2/net2net-pgp-v4 scenario
|
2009-11-08 23:23:45 +01:00 |
|
Andreas Steffen
|
16dca5c2f2
|
moved multi-level-ca-pathlen scenario
|
2009-11-04 23:43:43 +01:00 |
|
Andreas Steffen
|
4c68a85a75
|
implemented path length constraint checkinf for IKEv2
|
2009-11-04 23:37:15 +01:00 |
|
Andreas Steffen
|
32c8b1847b
|
renamed multi-level-pathlen scenario to multi-level-ca-pathlen
|
2009-11-04 18:18:43 +01:00 |
|
Andreas Steffen
|
cd36095e38
|
added ikev1/multi-level-pathlen scenario
|
2009-11-04 18:15:26 +01:00 |
|
Andreas Steffen
|
c95671cec2
|
implemented path length constraint checking for IKEv1
|
2009-11-04 18:10:31 +01:00 |
|
Andreas Steffen
|
c51b78eb2a
|
hyphenate eap-radius
|
2009-10-17 09:23:09 +02:00 |
|
Andreas Steffen
|
601e2a6986
|
added ipv6/net2net-ip4-in-ip6-ikev1 and ipv6/net2net-ip4-in-ip6-ikev1 scenarios
|
2009-10-16 15:04:17 +02:00 |
|
Andreas Steffen
|
50a82b419e
|
corrected description of ikev1/ip-pool-db scenario
|
2009-10-15 15:25:36 +02:00 |
|
Martin Willi
|
f48ceeb1d1
|
Renamed plugin configuration sections to the actual plugin name
|
2009-10-15 10:36:17 +02:00 |
|
Martin Willi
|
c4d53fe06b
|
Streamlined EAP plugins to use a dash between eap-method, as used in all other places
|
2009-10-15 10:36:17 +02:00 |
|
Andreas Steffen
|
ffe6f83272
|
added ikev1/ip-pool-db-push scenario
|
2009-10-14 21:35:43 +02:00 |
|
Andreas Steffen
|
f4c4e78296
|
added ikev1/ip-pool-db scenario
|
2009-10-14 14:51:12 +02:00 |
|
Andreas Steffen
|
32bc430591
|
fixed inconsistent triplets.dat files
|
2009-10-14 11:08:01 +02:00 |
|
Andreas Steffen
|
247794827e
|
move SQL-based pool functionality to new attr-sql libstrongswan plugin
|
2009-10-13 17:02:29 +02:00 |
|
Andreas Steffen
|
4c8bb47abd
|
check provenance of nameserver entry
|
2009-10-13 13:58:43 +02:00 |
|
Andreas Steffen
|
cb7817a64b
|
scepclient now requires x509 plugin
|
2009-10-12 19:56:21 +02:00 |
|
Andreas Steffen
|
3fe152f275
|
sql/rw-eap-aka-rsa scenario requires eapaka-3gpp2 plugin
|
2009-10-12 19:50:44 +02:00 |
|
Andreas Steffen
|
63c75a98eb
|
updated evaltest of ikev1/no-priv-key scenario
|
2009-10-12 19:48:20 +02:00 |
|
Andreas Steffen
|
3197a20a87
|
adapted ikev2/rw-eap-aka scenarios to eapaka-3gpp2 plugin
|
2009-10-11 00:35:01 +02:00 |
|
Andreas Steffen
|
9ea23c8f91
|
corrected ikev1/nat-two-rw evaltest.dat
|
2009-10-11 00:14:20 +02:00 |
|
Andreas Steffen
|
0da24e7d46
|
corrected evaltest.dat
|
2009-10-10 21:41:36 +02:00 |
|
Andreas Steffen
|
f3e9eae283
|
the ikev1 scenarios need the x509 plugin
|
2009-10-06 14:38:34 +02:00 |
|
Andreas Steffen
|
cf85e1319b
|
streamlined output from get_validity()
|
2009-10-06 14:22:27 +02:00 |
|
Andreas Steffen
|
fc12e3cd2e
|
pluto now uses x509 plugin for attribute certificate handling
|
2009-10-05 07:24:28 +02:00 |
|
Andreas Steffen
|
03a52ce4e5
|
created ikev1/mode-config-multiple scenario
|
2009-10-01 09:42:35 +02:00 |
|
Andreas Steffen
|
4b15ee8cd9
|
shortened file loading debug output
|
2009-09-22 12:33:13 +02:00 |
|
Martin Willi
|
91cb348cc2
|
CA certificates are looked up using the subjectPublicKeyInfo keyid
|
2009-09-21 18:13:25 +02:00 |
|
Andreas Steffen
|
8153be823b
|
plugin has been renamed to resolve
|
2009-09-20 22:03:23 +02:00 |
|
Andreas Steffen
|
03f096df7e
|
adapt evaltest.dat to changed debug output
|
2009-09-20 17:23:24 +02:00 |
|
Andreas Steffen
|
d7f2ffcf11
|
renewed certs in dynamic-initiator/dynamic-responder scenarios
|
2009-09-19 08:18:42 +02:00 |
|
Andreas Steffen
|
6aa8d2c8bb
|
use new certificates
|
2009-09-19 00:26:55 +02:00 |
|
Andreas Steffen
|
309b8b3956
|
keyids of renewed keys
|
2009-09-18 21:44:57 +02:00 |
|
Andreas Steffen
|
afcd0b9787
|
updated to renewed certs in SQL database
|
2009-09-18 21:22:37 +02:00 |
|
Martin Willi
|
9412bbfa7c
|
use subjectPublicKeyInfo hash for CA certificate lookup
|
2009-09-01 14:06:44 +02:00 |
|
Martin Willi
|
8f68b72424
|
sql/rw-rsa and sql/rw-rsa-keyid scenarios require the pubkey plugin
|
2009-09-01 11:34:09 +02:00 |
|
Andreas Steffen
|
52673c4348
|
generation of keyid requires pkcs1 plugin
|
2009-08-30 22:55:40 +02:00 |
|
Andreas Steffen
|
87cb92d944
|
renewed expiring strongSwan certicates for UML scenarios
|
2009-08-27 13:21:04 +02:00 |
|
Andreas Steffen
|
277627043e
|
pgp plugin required in ikev1/net2net-pgp-v3|v4 scenarios
|
2009-08-26 23:42:05 +02:00 |
|
Andreas Steffen
|
9df7699419
|
dnskey plugin required in ikev1/net2net-rsa scenario
|
2009-08-26 23:11:06 +02:00 |
|
Andreas Steffen
|
706c6abe70
|
ikev1 psk scenarios don't need pkcs1 and pem plugins
|
2009-08-26 22:46:39 +02:00 |
|
Andreas Steffen
|
51a9db85f4
|
streamlined file loading labels
|
2009-08-26 22:02:00 +02:00 |
|
Martin Willi
|
16db1207cf
|
keyids in SQL use ID_KEY_ID type with subjectPublicKey SHA1 hash
|
2009-08-26 11:23:55 +02:00 |
|