strongswan.org
Wiki/Project Management
Downloads
Gitweb
projects
/
strongswan.git
/ history
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
Version bump to 5.9.7dr1
[strongswan.git]
/
src
/
libcharon
/
2022-05-10
Tobias Brunner
adopt-children-job: Avoid reordering CHILD_SAs
tree
|
commitdiff
2022-05-10
Xiao Liang
quick-mode: Remove outbound SA/policy of rekeyed CHILD_SA
tree
|
commitdiff
2022-05-06
Tobias Brunner
keymat_v2: Fix error message if KDF can't be created
tree
|
commitdiff
2022-04-25
Tobias Brunner
Use mallinfo2() if available
tree
|
commitdiff
2022-04-20
Tobias Brunner
ikev2: Maintain labels during make-before-break reauthe...
tree
|
commitdiff
2022-04-14
Tobias Brunner
Merge branch 'ikev2-kdf-modularization'
tree
|
commitdiff
2022-04-14
Tobias Brunner
keymat_v2: Use plugin-provided KDF_PRF to derive SKEYSEED
tree
|
commitdiff
2022-04-14
Tobias Brunner
unit-tests: Hand out an actual shared secret and pubkey...
tree
|
commitdiff
2022-04-14
Tobias Brunner
keymat_v1: Derive CHILD_SA keys without using prf_plus_t
tree
|
commitdiff
2022-04-14
Tobias Brunner
keymat_v2: Use plugin-provided prf+ to derive keys
tree
|
commitdiff
2022-04-14
Tobias Brunner
keymat_v2: Refactor CHILD_SA key derivation so it only...
tree
|
commitdiff
2022-04-14
Tobias Brunner
keymat_v2: Refactor IKE key derivation so it only needs...
tree
|
commitdiff
2022-04-14
Tobias Brunner
vici: Report registered KDFs
tree
|
commitdiff
2022-04-14
Tobias Brunner
stroke: List registered KDFs
tree
|
commitdiff
2022-04-14
Tobias Brunner
Merge branch 'labeled-ipsec'
tree
|
commitdiff
2022-04-14
Tobias Brunner
vici: Add options to only return specific CHILD_SAs...
tree
|
commitdiff
2022-04-14
Tobias Brunner
vici: Report security label on CHILD_SA, policies and...
tree
|
commitdiff
2022-04-14
Tobias Brunner
vici: Make security labels and mode configurable
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-netlink: Forward labels from acquires
tree
|
commitdiff
2022-04-14
Tobias Brunner
trap-manager: Add support to handle acquires with secur...
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-handler: Log security label received with acquire
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-interface: Optionally pass security label with...
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike-sa: Accept optional security label when initiating...
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-rekey: Maintain security label during rekeying
tree
|
commitdiff
2022-04-14
Tobias Brunner
selinux: Add plugin to install trap policies with gener...
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike-sa: Add helper to determine an IKE_SA's dynamic...
tree
|
commitdiff
2022-04-14
Tobias Brunner
trap-manager: Add facility to install externally manage...
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-sa: Allocate a new reqid if dynamic traffic selec...
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-netlink: Allow reqid updates for policies again
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-interface: Add support to change the reqid in...
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-wfp: Use new UDP ports in update_sa()
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-sa: Support dynamically updating trap policies
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-create: Add support to handle security labels
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-create: Consider security label when comparing...
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-sa: Add support for security labels
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-interface: Optionally consider security label...
tree
|
commitdiff
2022-04-14
Tobias Brunner
peer-cfg: Consider security labels when selecting child...
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-cfg: Add method to select a security label
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-cfg: Add optional security label and mode
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-netlink: Add support for optional security label...
tree
|
commitdiff
2022-04-14
Tobias Brunner
encoding: Remove unused TS_TYPE and ADDRESS encodings
tree
|
commitdiff
2022-04-14
Tobias Brunner
ts-payload: Add support for TS of type TS_SECLABEL
tree
|
commitdiff
2022-04-14
Tobias Brunner
traffic-selector-substructure: Add support for TS_SECLABEL
tree
|
commitdiff
2022-04-14
Tobias Brunner
traffic-selector: Add TS_SECLABEL type
tree
|
commitdiff
2022-04-14
Tobias Brunner
vici: Make combination of 'trap' and 'start' configurable
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike: Treat action_t as flags so 'start' and 'trap'...
tree
|
commitdiff
2022-04-14
Tobias Brunner
enum: Allow specifying the name used when none of the...
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-create: Abort initiating a duplicate CHILD_SA
tree
|
commitdiff
2022-04-14
Tobias Brunner
child-create: Just abort CREATE_CHILD_SA request if...
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-listener: Use a struct to pass data from acquires
tree
|
commitdiff
2022-04-14
Tobias Brunner
kernel-netlink: Read protocol of acquire not from template
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike-sa: Use a struct to pass optional arguments when...
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike: Don't reset optional CHILD_SA properties when...
tree
|
commitdiff
2022-04-14
Tobias Brunner
ike: Track unprocessed initial IKE messages like half...
tree
|
commitdiff
2022-04-14
Tobias Brunner
receiver: Add per-IP cookie threshold
tree
|
commitdiff
2022-04-14
Tobias Brunner
receiver: Use a time based limit to switch COOKIE secrets
tree
|
commitdiff
2022-03-15
Tobias Brunner
Merge branch 'pfkey-exclude-routes'
tree
|
commitdiff
2022-03-15
Tobias Brunner
kernel-pfkey: Don't install exclude routes for locally...
tree
|
commitdiff
2022-03-15
Tobias Brunner
kernel-pfkey: Only install exclude route if not routing...
tree
|
commitdiff
2022-03-14
Leon Romanovsky
kernel-netlink: Remove unimplemented XFRM_OFFLOAD_IPV6...
tree
|
commitdiff
2022-02-15
Tobias Brunner
Merge branch 'natd-fixes'
tree
|
commitdiff
2022-02-15
Tobias Brunner
ike-natd: Queue DPD after faking local NAT to check...
tree
|
commitdiff
2022-02-15
Tobias Brunner
ike-mobike: Make task a no-op if MOBIKE is not supported
tree
|
commitdiff
2022-02-15
Tobias Brunner
ike-natd: Fake NAT situation or disable NAT-D if source...
tree
|
commitdiff
2022-02-15
Thomas Egerer
ha: Streamline handling of conditions and extensions
tree
|
commitdiff
2022-02-15
Tobias Brunner
error-notify: Handle missing alerts
tree
|
commitdiff
2022-01-24
Martin Willi
sys-logger: Optionally support mapping strongSwan logle...
tree
|
commitdiff
2022-01-24
Martin Willi
addrblock: Allow limiting validation depth of issuer...
tree
|
commitdiff
2022-01-20
Tobias Brunner
eap-authenticator: Enforce failure if MSK generation...
tree
|
commitdiff
2022-01-20
Tobias Brunner
Fixed some typos, courtesy of codespell
tree
|
commitdiff
2022-01-14
Tobias Brunner
message: Add getter/setter for metadata handling
tree
|
commitdiff
2021-12-01
Tobias Brunner
child-rekey: Uninstall old outbound SA earlier on initi...
tree
|
commitdiff
2021-11-23
Tobias Brunner
vici: Fix check before applying identity to public...
tree
|
commitdiff
2021-11-17
Tobias Brunner
farp: Fix incompatible function types warning
tree
|
commitdiff
2021-11-17
Tobias Brunner
eap-radius: Fix incompatible function types warnings
tree
|
commitdiff
2021-11-09
Tobias Brunner
kernel-pfroute: Set lower MTU on TUN devices
tree
|
commitdiff
2021-11-03
Tobias Brunner
ike: Fix length of vendor ID Cisco VPN 3000 client
tree
|
commitdiff
2021-11-03
Volker Rümelin
ike: Fix prefix length and data of vendor ID Cisco...
tree
|
commitdiff
2021-11-03
Volker Rümelin
ikev1: Fix prefix length of vendor ID Cisco Unity
tree
|
commitdiff
2021-11-03
Volker Rümelin
ikev1: Fix prefix length of vendor ID MS NT5 ISAKMPOAKLEY
tree
|
commitdiff
2021-10-04
Tobias Brunner
stroke: Clear ipsec.secrets file from memory
tree
|
commitdiff
2021-10-04
Tobias Brunner
vici: Clear all request messages in case they contain...
tree
|
commitdiff
2021-10-04
Tobias Brunner
vici: Clear cached strings in case the message containe...
tree
|
commitdiff
2021-09-23
Tobias Brunner
kernel-pfkey: Wipe request/response messages when manag...
tree
|
commitdiff
2021-09-20
Tobias Brunner
keymat_v2: Properly wipe DH secret during IKE_SA rekeying
tree
|
commitdiff
2021-09-09
Tobias Brunner
vici: Update supported Python versions
tree
|
commitdiff
2021-09-02
Noel Kuntze
vici: Add DBG4 messages that print loaded shared keys...
tree
|
commitdiff
2021-08-24
Tobias Brunner
ike: Initiate new IKE_SA not until all children are...
tree
|
commitdiff
2021-08-24
Tobias Brunner
ikev2: Only request reauth during IKE_AUTH if active...
tree
|
commitdiff
2021-08-24
Tobias Brunner
ike-rekey: Respond with TEMPORARY_FAILURE while reauthe...
tree
|
commitdiff
2021-08-24
Tobias Brunner
ike: Don't rekey IKE_SA while reauthenticating
tree
|
commitdiff
2021-08-24
Tobias Brunner
ike-delete: Don't call reestablish() when reauthenticating
tree
|
commitdiff
2021-08-23
Tobias Brunner
Merge branch 'swanctl-ssh-public-keys'
tree
|
commitdiff
2021-08-23
Tobias Brunner
vici: Use the more generic BUILD_BLOB to parse certific...
tree
|
commitdiff
2021-08-11
Tobias Brunner
kernel-netlink: Initialize ifreq structs when detecting...
tree
|
commitdiff
2021-07-06
Andreas Steffen
vici: Suppress trailing nul character
tree
|
commitdiff
2021-06-25
Tobias Brunner
kernel-netlink: Fix theoretical memory leak when parsin...
tree
|
commitdiff
2021-06-25
Tobias Brunner
Fixed some typos, courtesy of codespell
tree
|
commitdiff
2021-06-21
Tobias Brunner
ike-mobike: Force MOBIKE update after NAT mappings...
tree
|
commitdiff
2021-06-21
Tobias Brunner
ike-sa: Log IKE endpoint changes
tree
|
commitdiff
next