strongswan.org
Wiki/Project Management
Downloads
Gitweb
projects
/
strongswan.git
/ history
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
restrict PA-TNC messages to maximum size
[strongswan.git]
/
src
/
libcharon
/
2012-07-12
Andreas Steffen
restrict PA-TNC messages to maximum size
tree
|
commitdiff
2012-07-12
Tobias Brunner
Avoid that any % characters (e.g. in %any) are evaluate...
tree
|
commitdiff
2012-07-11
Andreas Steffen
removed unused variables
tree
|
commitdiff
2012-07-11
Andreas Steffen
fixed logging of unsupported TNCCS version
tree
|
commitdiff
2012-07-11
Andreas Steffen
PB-TNC Client sends empty CLOSE batch only in DECIDED...
tree
|
commitdiff
2012-07-11
Andreas Steffen
have_recommendation() accepts NULL arguments
tree
|
commitdiff
2012-07-11
Andreas Steffen
send empty SDATA batch if no recommendation is availabl...
tree
|
commitdiff
2012-07-11
Andreas Steffen
moved batch size calculation into pb_tnc_batch_t
tree
|
commitdiff
2012-07-11
Andreas Steffen
make maximum PB-TNC batch size configurable
tree
|
commitdiff
2012-07-11
Andreas Steffen
limit the size of a PB-TNC batch to the maximum EAP...
tree
|
commitdiff
2012-07-11
Andreas Steffen
eliminate message length field in EAP-TNC
tree
|
commitdiff
2012-07-11
Andreas Steffen
due to single fragment, total length does not have...
tree
|
commitdiff
2012-07-11
Andreas Steffen
EAP-TNC does not support fragmentation
tree
|
commitdiff
2012-07-10
Martin Willi
Send cert request based on peers configured authenticat...
tree
|
commitdiff
2012-07-09
Martin Willi
Don't send CERTREQs when initiating aggressive mode PSK
tree
|
commitdiff
2012-07-04
Martin Willi
Refactored heavily #ifdefd capability code to its own...
tree
|
commitdiff
2012-07-04
Tobias Brunner
Use spin locks to update IKE_SAs in controller_t
tree
|
commitdiff
2012-07-04
Tobias Brunner
Fixed job handling in controller_t
tree
|
commitdiff
2012-06-29
Martin Willi
As a responder, don't start a TRANSACTION request if...
tree
|
commitdiff
2012-06-28
Andreas Steffen
IMCs and IMVs might depend on X.509 certificates or...
tree
|
commitdiff
2012-06-28
Martin Willi
Show some uname() info in "ipsec statusall"
tree
|
commitdiff
2012-06-27
Tobias Brunner
libcharon also requires kernel interfaces and a socket...
tree
|
commitdiff
2012-06-27
Martin Willi
Defer quick mode initiation if we expect a mode config...
tree
|
commitdiff
2012-06-27
Martin Willi
Queue a mode config task as responder if we need a...
tree
|
commitdiff
2012-06-27
Martin Willi
Add basic support for XAuth responder authentication
tree
|
commitdiff
2012-06-27
Martin Willi
Map XAuth responder authentication methods between...
tree
|
commitdiff
2012-06-27
Martin Willi
Show remote EAP/XAuth identity in "statusall" on a...
tree
|
commitdiff
2012-06-27
Tobias Brunner
Use static plugin features in libcharon to define essen...
tree
|
commitdiff
2012-06-26
Martin Willi
Ignore a received %any virtual IP for installation
tree
|
commitdiff
2012-06-26
Tobias Brunner
Also build charon's IKEv1 implementation on Android
tree
|
commitdiff
2012-06-26
Tobias Brunner
Missing source file added to libcharon's Android.mk
tree
|
commitdiff
2012-06-25
Tobias Brunner
Make rescheduling a job more predictable
tree
|
commitdiff
2012-06-25
Tobias Brunner
Centralized thread cancellation in processor_t
tree
|
commitdiff
2012-06-25
Tobias Brunner
Give processor_t more control over the lifecycle of...
tree
|
commitdiff
2012-06-25
Andreas Steffen
support Cisco Unity VID
tree
|
commitdiff
2012-06-25
Martin Willi
Enforce uniqueids=keep based on XAuth identity
tree
|
commitdiff
2012-06-25
Martin Willi
Don't send XAUTH_OK if a hook prevents SA to establish
tree
|
commitdiff
2012-06-25
Martin Willi
Enforce uniqueids=keep only for non-XAuth Main/Agressiv...
tree
|
commitdiff
2012-06-25
Martin Willi
Show EAP/XAuth identity in "ipsec status", if available
tree
|
commitdiff
2012-06-25
Martin Willi
Use XAuth/EAP remote identity for uniqueness check
tree
|
commitdiff
2012-06-25
Martin Willi
Add missing XAuth name variable when complaining about...
tree
|
commitdiff
2012-06-22
Tobias Brunner
Fix SIGSEGV if kernel install fails during Quick Mode...
tree
|
commitdiff
2012-06-21
Tobias Brunner
Fixed compile error because of charon->name in certexpi...
tree
|
commitdiff
2012-06-20
Martin Willi
Select requested virtual IP family based on remote...
tree
|
commitdiff
2012-06-14
Martin Willi
Adopt children as XAuth initiator (which is IKE responder)
tree
|
commitdiff
2012-06-14
Martin Willi
Show what kind of *Swan we run in "ipsec status"
tree
|
commitdiff
2012-06-14
Martin Willi
Require a scary option to respond to Aggressive Mode...
tree
|
commitdiff
2012-06-13
Tobias Brunner
Use proper defines for IPV6_PKTINFO on Mac OS X Lion...
tree
|
commitdiff
2012-06-12
Martin Willi
Added signature scheme options left/rightauth
tree
|
commitdiff
2012-06-12
Martin Willi
certificate_t->issued_by takes an argument to receive...
tree
|
commitdiff
2012-06-09
Andreas Steffen
added missing parameter in get_my_addr() and get_other_...
tree
|
commitdiff
2012-06-08
Andreas Steffen
implemented the right|leftallowany feature
tree
|
commitdiff
2012-06-08
Martin Willi
Enforce uniqueness policy in IKEv1 main and aggressive...
tree
|
commitdiff
2012-06-08
Martin Willi
Try to rekey without KE exchange if peer returns INVALI...
tree
|
commitdiff
2012-06-08
Martin Willi
While checking for redundant quick modes, compare traff...
tree
|
commitdiff
2012-06-08
Martin Willi
Store shorter soft lifetime of in- and outbound SAs...
tree
|
commitdiff
2012-06-08
Martin Willi
Initiate quick mode rekeying with narrowed traffic...
tree
|
commitdiff
2012-06-08
Martin Willi
Use traffic selectors passed to quick mode constructor...
tree
|
commitdiff
2012-06-08
Martin Willi
Instead of rekeying, delete a quick mode if we have...
tree
|
commitdiff
2012-06-06
Martin Willi
As responder, enforce the same configuration while...
tree
|
commitdiff
2012-06-05
Martin Willi
Show expiration time of rekeyed CHILD_SAs in statusall
tree
|
commitdiff
2012-06-04
Tobias Brunner
Mark CHILD_SAs used for trap policies to uninstall...
tree
|
commitdiff
2012-05-30
Tobias Brunner
Avoid queueing more than one retry initiate job.
tree
|
commitdiff
2012-05-30
Tobias Brunner
Retry IKE_SA initiation if DNS resolution failed.
tree
|
commitdiff
2012-05-30
Tobias Brunner
Job added to re-initiate an IKE_SA.
tree
|
commitdiff
2012-05-25
Tobias Brunner
Fix MOBIKE address update if responder address changed.
tree
|
commitdiff
2012-05-25
Tobias Brunner
Resolve hosts before reauthenticating due to address...
tree
|
commitdiff
2012-05-25
Tobias Brunner
Don't queue delete_ike_sa job when setting IKE_DELETING.
tree
|
commitdiff
2012-05-25
Tobias Brunner
During reauthentication reestablish IKE_SA even if...
tree
|
commitdiff
2012-05-25
Tobias Brunner
Integrated main parts of IKE_REAUTH task into ike_sa_t...
tree
|
commitdiff
2012-05-25
Tobias Brunner
Fixed route lookup in case MOBIKE is not enabled.
tree
|
commitdiff
2012-05-25
Tobias Brunner
Added encapsulation mode transform attribute to IPComp...
tree
|
commitdiff
2012-05-24
Tobias Brunner
Add an additional proposal without IPComp to SA payload.
tree
|
commitdiff
2012-05-24
Tobias Brunner
Added log message if peer does not accept/provide IPCom...
tree
|
commitdiff
2012-05-24
Tobias Brunner
Added support to negotiate IPComp during Quick Mode.
tree
|
commitdiff
2012-05-24
Tobias Brunner
Added support for IKEv1 IPComp proposals in SA payload.
tree
|
commitdiff
2012-05-24
Tobias Brunner
Added support for IKEv1 IPComp proposals in proposal...
tree
|
commitdiff
2012-05-24
Tobias Brunner
Fix memleak during Quick Mode in case no SPI can be...
tree
|
commitdiff
2012-05-24
Tobias Brunner
Properly filter IKEv1 proposals consisting of multiple...
tree
|
commitdiff
2012-05-23
Martin Willi
Apply IDir before deriving keys as aggressive initiator
tree
|
commitdiff
2012-05-23
Martin Willi
Use received identity to look up PSK as aggressive...
tree
|
commitdiff
2012-05-23
Martin Willi
Check if we actually have an initiating packet to free...
tree
|
commitdiff
2012-05-23
Andreas Steffen
list IKEv1 Aggressive Mode in ipsec statusall
tree
|
commitdiff
2012-05-21
Tobias Brunner
Switch to alternative peer config in IKEv1 Main and...
tree
|
commitdiff
2012-05-21
Martin Willi
Cancel pending retransmits when flushing active task...
tree
|
commitdiff
2012-05-21
Martin Willi
Cancel active quick mode task when receiving INFORMATIO...
tree
|
commitdiff
2012-05-21
Martin Willi
Flush task queues explicitly, not implicitly if task...
tree
|
commitdiff
2012-05-21
Martin Willi
Wrap task managers flush_queue() in IKE_SA
tree
|
commitdiff
2012-05-21
Martin Willi
Make task managers flush_queue() method public
tree
|
commitdiff
2012-05-21
Martin Willi
Fix IKEv1 DPD clear, destroying IKE_SA even if reestabl...
tree
|
commitdiff
2012-05-18
Tobias Brunner
Remove executable flag from source files.
tree
|
commitdiff
2012-05-18
Tobias Brunner
Use separate Doxygen groups for IKEv1 and IKEv2 entitie...
tree
|
commitdiff
2012-05-18
Tobias Brunner
Removed superfluous @param in bus.h.
tree
|
commitdiff
2012-05-18
Tobias Brunner
whitelist: Make sure listed IDs are null-terminated.
tree
|
commitdiff
2012-05-18
Tobias Brunner
List registered nonce generators in statusall output.
tree
|
commitdiff
2012-05-18
Adrian-Ken Rueegsegger
Use nonce_gen instead of rng to generate nonces
tree
|
commitdiff
2012-05-18
Adrian-Ken Rueegsegger
Add create_nonce_gen function to keymat interface
tree
|
commitdiff
2012-05-17
Andreas Steffen
make IKEv1 DPD timeout configurable in charon
tree
|
commitdiff
2012-05-15
Martin Willi
Moved IKEv1 DPD processing to task manager, fix sequenc...
tree
|
commitdiff
2012-05-15
Martin Willi
Consider inbound ESP as a sign of liveness for DPD...
tree
|
commitdiff
next