Commit Graph
2078 Commits
Author SHA1 Message Date
Tobias Brunner b8fa437fb7 adding MD4 and DES (ECB) to openssl plugin 2009-02-18 19:41:33 +00:00
Martin Willi d2ac1443d3 always encode EAP usernames as ID_KEY_ID 2009-02-18 15:03:33 +00:00
Martin Willi 2d887e8e08 removed unused extract_last_token() and the required memrchr implementation 2009-02-18 09:45:54 +00:00
Tobias Brunner abe1dafaa4 typo 2009-02-17 17:14:15 +00:00
Martin Willi 69eb1461ba use separate distribution tarballs for NetworkManager applet 2009-02-16 16:11:16 +00:00
Martin Willi 842e05d5de use a slightly adopted package versioning scheme
NM applet uses strongSwan independent versions
2009-02-16 16:05:30 +00:00
Andreas Steffen 2b1f5f3461 configuration of NBNS server assignment via strongswan.conf 2009-02-13 11:57:50 +00:00
Andreas Steffen 48f9a22b57 configuration of DNS server assignment via strongswan.conf 2009-02-12 09:02:15 +00:00
Andreas Steffen 6f1271855b [4859] caused crash when handling the %config case 2009-02-11 22:39:35 +00:00
Andreas Steffen 392f0e9446 corrected syntax 2009-02-11 16:45:14 +00:00
Andreas Steffen 16c6114ee7 this debug statement has only two arguments 2009-02-11 16:41:37 +00:00
Andreas Steffen a584a231b1 fixed a 64-bit issue with time_t printf hooks 2009-02-11 16:37:16 +00:00
Martin Willi b81d8cd3cc changed [4856] to dynamically choose traffic selector family 2009-02-11 13:09:52 +00:00
Martin Willi 8837080353 respect family when assigning pool addresses 2009-02-11 12:50:04 +00:00
Martin Willi 95f1735f87 send proper AUTHENTICATION_FAILED if EAP method is successful, but AUTH mismatches 2009-02-10 17:21:44 +00:00
Martin Willi 04a7a1c309 free unneeded retransmission packet when exchange completes 2009-02-09 10:45:51 +00:00
Andreas Steffen c59825fbfc support of dynamic/128 and %any6 2009-02-05 22:13:48 +00:00
Andreas Steffen 49971c4ce5 disable MOBIKE in load-tester 2009-02-05 10:10:20 +00:00
Andreas Steffen eeb1e2259d output pool name string rather than pool pointer 2009-01-28 00:37:11 +00:00
Andreas Steffen 9599ee1597 version bump to 4.2.12 2009-01-21 03:14:52 +00:00
Andreas Steffen 7d13e08dc4 added two Microsoft proprietary configuration attribute types 2009-01-20 22:55:13 +00:00
Andreas Steffen c369a5999b added notify message types used by RFC 4739 2009-01-19 12:32:42 +00:00
Andreas Steffen b59f154b09 proper initialization and disposal of keying material 2009-01-15 01:52:44 +00:00
Andreas Steffen 6f17bf83d5 fixed ESP NULL encryption 2009-01-15 00:34:42 +00:00
Andreas Steffen 67701cfdce fixed broken listing of connections in ipsec statusall 2009-01-14 08:10:16 +00:00
Andreas Steffen 356bbeca7d added eap=gtc option to ipsec.conf man page 2009-01-14 03:29:59 +00:00
Andreas Steffen 5a45a5d0bc disable DPD and sending of cert requests in load-tester 2009-01-14 00:13:21 +00:00
Andreas Steffen 3119fafd8d cosmetics 2009-01-13 06:50:55 +00:00
Andreas Steffen 04bcdc715d changed type definition of level from char* to int 2009-01-13 06:36:31 +00:00
Andreas Steffen 37fbc74121 hiding XFRM message names from netlink 2009-01-09 09:37:13 +00:00
Andreas Steffen 40d9388037 renamed chunk 2009-01-09 08:51:41 +00:00
Andreas Steffen 88db1fa3b4 refactored DBG3 output of sent XFRM messages 2009-01-09 08:46:31 +00:00
Andreas Steffen abc177e035 DBG3 output of sent XFRM messages 2009-01-09 08:27:17 +00:00
Andreas Steffen 05332cc4b3 added message for undefined ocsp status #4 2009-01-09 01:36:13 +00:00
Andreas Steffen 48032aed00 add a compatible memrchr() function if the platform does not support it (e.g. old glibc). Patch courtesy to Thomas Jarosch 2009-01-09 01:19:45 +00:00
Andreas Steffen 0519ca9099 version bump to 2.4.11 2009-01-08 22:23:42 +00:00
Andreas Steffen 01a8b40b99 fixed two bugs introduced by the stroke ip pool refactoring 2009-01-08 21:34:44 +00:00
Martin Willi d34030a810 increase nonce size to 32 bytes, required when using SHA384/512 PRFs 2008-12-31 08:58:49 +00:00
Martin Willi 12d4186f5c fixed a potential memory leak when reusing mobike task 2008-12-19 14:34:40 +00:00
Martin Willi f6035833fa RNG tests based on FIPS 140-1 2008-12-18 16:24:22 +00:00
Martin Willi 2241a29571 support for Padlock RNG 2008-12-18 16:21:05 +00:00
Martin Willi 5045eeba7b proper feature probing for padlock 2008-12-17 15:40:01 +00:00
Tobias Brunner f30150d3da correct use of calloc in hashtable_t 2008-12-17 09:56:05 +00:00
Martin Willi 9bcc9bb60e updated documentation
some minor cleanups
calloc does not need an additional memset(0)
2008-12-17 09:00:22 +00:00
Tobias Brunner 58464dd737 improved IKE_SA uniqueness check 2008-12-16 17:21:28 +00:00
Martin Willi 097e4b8ff9 purge certificates after IKE_AUTH response has been built 2008-12-16 15:48:36 +00:00
Martin Willi 764e8b2211 reimplemented certificate cache:
fixes unsafe certificate caching
	use fixed array instead of a list
	fine grained per-slot locking
	use cache hits for housekeeping
2008-12-15 15:41:48 +00:00
Martin Willi 482218f075 signal each entry condvar after enumeration, required if wait_for_entry is called 2008-12-15 09:19:04 +00:00
Martin Willi abfde23ae9 added an additional frame to lock profiling backtraces 2008-12-15 09:13:43 +00:00
Martin Willi 50901d2550 do not respawn cancelled threads if we are shutting down 2008-12-12 15:57:12 +00:00