Support multiple virtual IPs on peer_cfg and ike_sa classes
[strongswan.git] / src / libcharon / sa /
2012-08-30 Martin WilliSupport multiple virtual IPs on peer_cfg and ike_sa...
2012-08-20 Martin WilliRemove the unused second IKE_SA entry match function...
2012-08-20 Adrian-Ken RueegseggerAdd keymat_t constructor registration function
2012-08-13 Tobias BrunnerMerge branch 'android-app'
2012-08-13 Tobias BrunnerMerge branch 'android-ndk'
2012-08-10 Martin WilliUse actual daemon name to enable XAuth/PSK with aggress...
2012-08-08 Tobias BrunnerMoved packet_t to libstrongswan
2012-08-08 Tobias BrunnerIncrease log verbosity when sending NAT keep-alives
2012-08-08 Tobias BrunnerReplaced usages of CHARON_*_PORT with calls to get_port().
2012-08-08 Tobias BrunnerUse send_no_marker to send NAT keepalives.
2012-08-08 Tobias BrunnerMake the UDP ports charon listens for packets on (and...
2012-08-08 Martin WilliRemove queued IKEv1 message before processing it
2012-08-08 Tobias BrunnerInclude src address in hash of initial message for...
2012-08-03 Martin WilliBlock XAuth transaction on established IKE_SAs, but...
2012-08-02 Martin WilliReject initial exchange messages early once IKE_SA...
2012-07-31 Martin WilliLookup IKEv1 PSK even if the peer identity is not known
2012-07-26 Martin WilliDon't include acquiring packet traffic selectors in...
2012-07-26 Martin WilliImplement late peer config switching after XAuth authen...
2012-07-26 Martin WilliCheck if XAuth round complies to configured authenticat...
2012-07-26 Martin WilliMerge auth config items added from XAuth backends to...
2012-07-23 Martin WilliRelease leaking child config after uninstalling shunt...
2012-07-16 Martin WilliRefactored error handling in keymat_v1_t
2012-07-16 Martin WilliClean up error handling in keymat_v2_t
2012-07-16 Martin WilliCleaned up memory management and return values for...
2012-07-16 Martin WilliAdd a return value to hasher_t.allocate_hash()
2012-07-16 Martin WilliAdd a return value to keymat_v1_t.{get,update,confirm}_iv
2012-07-16 Martin WilliAdd a return value to crypter_t.set_key()
2012-07-16 Martin WilliAdd a return value to crypter_t.decrypt()
2012-07-16 Martin WilliAdd a return value to crypter_t.encrypt
2012-07-16 Tobias BrunnerCheck rng return value when generating ME CONNECT_ID...
2012-07-16 Tobias BrunnerCheck rng return value when generating IKEv1 message IDs
2012-07-16 Tobias BrunnerCheck rng return value when generating COOKIE2 during...
2012-07-16 Tobias BrunnerCheck rng return value when generating fake NAT detecti...
2012-07-16 Tobias BrunnerCheck rng return value when generating SPIs in ike_sa_m...
2012-07-16 Reto BuerkiNonce: Let get_nonce, allocate_nonce return boolean
2012-07-16 Martin WilliAdd a return value to prf_t.set_key()
2012-07-16 Martin WilliAdd a return value to prf_t.allocate_bytes()
2012-07-16 Martin WilliUse a bool return value in keymat_v1_t.get_hash_phase2()
2012-07-16 Martin WilliAdd a return value to keymat_v1_t.get_hash()
2012-07-16 Martin WilliAdd a return value to keymat_v2_t.get_auth_octets()
2012-07-16 Martin WilliAdd a return value to keymat_v2_t.get_psk_sig()
2012-07-16 Martin WilliAdd a return value to prf_t.get_bytes()
2012-07-16 Martin Williprf_plus_create() can return NULL on failure
2012-07-16 Martin WilliAdd a return value to prf_plus_t.allocate_bytes()
2012-07-16 Martin WilliAdd a return value to signer_t.set_key()
2012-07-16 Martin WilliAdd a return value to aead_t.set_key()
2012-07-16 Martin WilliAdd a return value to aead_t.encrypt()
2012-07-13 Tobias BrunnerSimplify NAT-D payload creation if UDP encapsulation...
2012-07-10 Martin WilliSend cert request based on peers configured authenticat...
2012-07-09 Martin WilliDon't send CERTREQs when initiating aggressive mode PSK
2012-06-29 Martin WilliAs a responder, don't start a TRANSACTION request if...
2012-06-27 Martin WilliDefer quick mode initiation if we expect a mode config...
2012-06-27 Martin WilliQueue a mode config task as responder if we need a...
2012-06-27 Martin WilliAdd basic support for XAuth responder authentication
2012-06-26 Martin WilliIgnore a received %any virtual IP for installation
2012-06-25 Tobias BrunnerCentralized thread cancellation in processor_t
2012-06-25 Andreas Steffensupport Cisco Unity VID
2012-06-25 Martin WilliEnforce uniqueids=keep based on XAuth identity
2012-06-25 Martin WilliDon't send XAUTH_OK if a hook prevents SA to establish
2012-06-25 Martin WilliEnforce uniqueids=keep only for non-XAuth Main/Agressiv...
2012-06-25 Martin WilliUse XAuth/EAP remote identity for uniqueness check
2012-06-25 Martin WilliAdd missing XAuth name variable when complaining about...
2012-06-22 Tobias BrunnerFix SIGSEGV if kernel install fails during Quick Mode...
2012-06-14 Martin WilliAdopt children as XAuth initiator (which is IKE responder)
2012-06-14 Martin WilliRequire a scary option to respond to Aggressive Mode...
2012-06-08 Andreas Steffenimplemented the right|leftallowany feature
2012-06-08 Martin WilliEnforce uniqueness policy in IKEv1 main and aggressive...
2012-06-08 Martin WilliTry to rekey without KE exchange if peer returns INVALI...
2012-06-08 Martin WilliWhile checking for redundant quick modes, compare traff...
2012-06-08 Martin WilliStore shorter soft lifetime of in- and outbound SAs...
2012-06-08 Martin WilliInitiate quick mode rekeying with narrowed traffic...
2012-06-08 Martin WilliUse traffic selectors passed to quick mode constructor...
2012-06-08 Martin WilliInstead of rekeying, delete a quick mode if we have...
2012-06-06 Martin WilliAs responder, enforce the same configuration while...
2012-06-04 Tobias BrunnerMark CHILD_SAs used for trap policies to uninstall...
2012-05-30 Tobias BrunnerAvoid queueing more than one retry initiate job.
2012-05-30 Tobias BrunnerRetry IKE_SA initiation if DNS resolution failed.
2012-05-25 Tobias BrunnerFix MOBIKE address update if responder address changed.
2012-05-25 Tobias BrunnerResolve hosts before reauthenticating due to address...
2012-05-25 Tobias BrunnerDon't queue delete_ike_sa job when setting IKE_DELETING.
2012-05-25 Tobias BrunnerDuring reauthentication reestablish IKE_SA even if...
2012-05-25 Tobias BrunnerIntegrated main parts of IKE_REAUTH task into ike_sa_t...
2012-05-25 Tobias BrunnerFixed route lookup in case MOBIKE is not enabled.
2012-05-24 Tobias BrunnerAdded log message if peer does not accept/provide IPCom...
2012-05-24 Tobias BrunnerAdded support to negotiate IPComp during Quick Mode.
2012-05-24 Tobias BrunnerAdded support for IKEv1 IPComp proposals in SA payload.
2012-05-24 Tobias BrunnerFix memleak during Quick Mode in case no SPI can be...
2012-05-23 Martin WilliApply IDir before deriving keys as aggressive initiator
2012-05-23 Martin WilliUse received identity to look up PSK as aggressive...
2012-05-23 Martin WilliCheck if we actually have an initiating packet to free...
2012-05-21 Tobias BrunnerSwitch to alternative peer config in IKEv1 Main and...
2012-05-21 Martin WilliCancel pending retransmits when flushing active task...
2012-05-21 Martin WilliCancel active quick mode task when receiving INFORMATIO...
2012-05-21 Martin WilliFlush task queues explicitly, not implicitly if task...
2012-05-21 Martin WilliWrap task managers flush_queue() in IKE_SA
2012-05-21 Martin WilliMake task managers flush_queue() method public
2012-05-18 Tobias BrunnerRemove executable flag from source files.
2012-05-18 Tobias BrunnerUse separate Doxygen groups for IKEv1 and IKEv2 entitie...
2012-05-18 Adrian-Ken RueegseggerUse nonce_gen instead of rng to generate nonces
2012-05-18 Adrian-Ken RueegseggerAdd create_nonce_gen function to keymat interface
next