strongswan.git
9 years agoMigrated thread_value_t to INIT/METHOD macros.
Tobias Brunner [Mon, 3 Oct 2011 12:57:07 +0000 (14:57 +0200)]
Migrated thread_value_t to INIT/METHOD macros.

9 years agoMigrated attribute_manager to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 10:23:31 +0000 (12:23 +0200)]
Migrated attribute_manager to INIT/METHOD macros

9 years agocosmetics
Andreas Steffen [Sun, 2 Oct 2011 10:09:55 +0000 (12:09 +0200)]
cosmetics

9 years agoMigrated host to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 10:09:33 +0000 (12:09 +0200)]
Migrated host to INIT/METHOD macros

9 years agoMigrated traffic_selector to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 09:52:52 +0000 (11:52 +0200)]
Migrated traffic_selector to INIT/METHOD macros

9 years agoMigrated database_factory to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 09:37:50 +0000 (11:37 +0200)]
Migrated database_factory to INIT/METHOD macros

9 years agoMigrated crypto/prf_plus to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 09:27:38 +0000 (11:27 +0200)]
Migrated crypto/prf_plus to INIT/METHOD macros

9 years agoMigrated crypto/pkcs9 to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 09:21:23 +0000 (11:21 +0200)]
Migrated crypto/pkcs9 to INIT/METHOD macros

9 years agoMigrated crypto/pkcs7 to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 09:11:46 +0000 (11:11 +0200)]
Migrated crypto/pkcs7  to INIT/METHOD macros

9 years agoMigrated cred_encoding to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 08:55:08 +0000 (10:55 +0200)]
Migrated cred_encoding  to INIT/METHOD macros

9 years agoMigrated auth_cfg to INIT/METHOD macros
Andreas Steffen [Sun, 2 Oct 2011 08:42:01 +0000 (10:42 +0200)]
Migrated auth_cfg  to INIT/METHOD macros

9 years agoMigrated sql_attribute to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 21:35:32 +0000 (23:35 +0200)]
Migrated sql_attribute to INIT/METHOD macros

9 years agoMigrated netlink_socket to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 21:24:51 +0000 (23:24 +0200)]
Migrated netlink_socket to INIT/METHOD macros

9 years agoMigrated resolve_handler to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 21:15:49 +0000 (23:15 +0200)]
Migrated resolve_handler to INIT/METHOD macros

9 years agoMigrated ietf_attributes to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 20:46:43 +0000 (22:46 +0200)]
Migrated ietf_attributes to INIT/METHOD macros

9 years agoMigrated shared_key to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 20:17:38 +0000 (22:17 +0200)]
Migrated shared_key to INIT/METHOD macros

9 years agoMigrated auth_cfg_wrapper to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 20:10:30 +0000 (22:10 +0200)]
Migrated auth_cfg_wrapper to INIT/METHOD macros

9 years agoMigrated cert_cache to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 20:04:22 +0000 (22:04 +0200)]
Migrated cert_cache to INIT/METHOD macros

9 years agoMigrated ocsp_response_wrapper to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 19:48:31 +0000 (21:48 +0200)]
Migrated ocsp_response_wrapper to INIT/METHOD macros

9 years agoMigrated pgp_cert to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 19:35:20 +0000 (21:35 +0200)]
Migrated pgp_cert to INIT/METHOD macros

9 years agoMigrated x509_pkcs10 to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 14:47:36 +0000 (16:47 +0200)]
Migrated x509_pkcs10 to INIT/METHOD macros

9 years agoMigrated x509_ocsp_response to INIT/METHOD macros
Andreas Steffen [Thu, 29 Sep 2011 05:50:32 +0000 (07:50 +0200)]
Migrated x509_ocsp_response to INIT/METHOD macros

9 years agoMigrated x509_ocsp_request to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 18:58:15 +0000 (20:58 +0200)]
Migrated x509_ocsp_request to INIT/METHOD macros

9 years agoMigrated x509_ac to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 18:43:02 +0000 (20:43 +0200)]
Migrated x509_ac to INIT/METHOD macros

9 years agoDon't allocate extra memory to MAC the TLS header
Martin Willi [Wed, 28 Sep 2011 15:15:12 +0000 (17:15 +0200)]
Don't allocate extra memory to MAC the TLS header

9 years agoVerify TLS MAC even if padding is invalid to prevent timing attacks
Martin Willi [Wed, 28 Sep 2011 15:00:48 +0000 (17:00 +0200)]
Verify TLS MAC even if padding is invalid to prevent timing attacks

9 years agopluto: Handle SIGINT to terminate properly when run with --nofork in a console.
Tobias Brunner [Wed, 28 Sep 2011 11:50:15 +0000 (13:50 +0200)]
pluto: Handle SIGINT to terminate properly when run with --nofork in a console.

9 years agopluto: Check for processes with the PID stored in pluto.pid.
Tobias Brunner [Wed, 28 Sep 2011 11:52:03 +0000 (13:52 +0200)]
pluto: Check for processes with the PID stored in pluto.pid.

9 years agostarter: Check for processes with PIDs stored in pid files.
Tobias Brunner [Wed, 28 Sep 2011 10:07:19 +0000 (12:07 +0200)]
starter: Check for processes with PIDs stored in pid files.

9 years agoMake sure the PID read from charon.pid is null-terminated.
Tobias Brunner [Wed, 28 Sep 2011 10:01:47 +0000 (12:01 +0200)]
Make sure the PID read from charon.pid is null-terminated.

9 years agoMigrated sha1_prf to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 06:01:38 +0000 (08:01 +0200)]
Migrated sha1_prf to INIT/METHOD macros

9 years agouse specific reset method
Andreas Steffen [Wed, 28 Sep 2011 04:45:59 +0000 (06:45 +0200)]
use specific reset method

9 years agoMigrated sha2_hasher to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 02:41:45 +0000 (04:41 +0200)]
Migrated sha2_hasher to INIT/METHOD macros

9 years agoMigrated sha1_hasher to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 01:52:43 +0000 (03:52 +0200)]
Migrated sha1_hasher to INIT/METHOD macros

9 years agoMigrated md5_hasher to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 01:44:02 +0000 (03:44 +0200)]
Migrated md5_hasher to INIT/METHOD macros

9 years agoMigrated md4_hasher to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 01:39:04 +0000 (03:39 +0200)]
Migrated md4_hasher to INIT/METHOD macros

9 years agoMigrated pubkey_cert to INIT/METHOD macros
Andreas Steffen [Wed, 28 Sep 2011 01:28:43 +0000 (03:28 +0200)]
Migrated pubkey_cert to INIT/METHOD macros

9 years agoDocumented the strict flag (!) for ike and esp options in ipsec.conf.
Tobias Brunner [Mon, 26 Sep 2011 15:48:16 +0000 (17:48 +0200)]
Documented the strict flag (!) for ike and esp options in ipsec.conf.

9 years agoLoad eap-aka plugin before shared simaka helpers depending on it
Martin Willi [Mon, 26 Sep 2011 13:43:38 +0000 (13:43 +0000)]
Load eap-aka plugin before shared simaka helpers depending on it

9 years agoversion bump to 4.6.0dr4
Andreas Steffen [Tue, 13 Sep 2011 21:32:03 +0000 (23:32 +0200)]
version bump to 4.6.0dr4

9 years agoSend AT_NEXT_PSEUDONYM also if an AT_NEXT_REAUTH_ID is already added.
Tobias Brunner [Tue, 13 Sep 2011 09:09:07 +0000 (11:09 +0200)]
Send AT_NEXT_PSEUDONYM also if an AT_NEXT_REAUTH_ID is already added.

9 years agoPTS log group documented in man pages.
Tobias Brunner [Mon, 12 Sep 2011 13:05:43 +0000 (15:05 +0200)]
PTS log group documented in man pages.

9 years agoDocument charon's default log levels in ipsec.conf(5).
Tobias Brunner [Mon, 12 Sep 2011 12:54:26 +0000 (14:54 +0200)]
Document charon's default log levels in ipsec.conf(5).

9 years agoReturn allocated variable in INIT()
Martin Willi [Thu, 19 May 2011 11:42:17 +0000 (13:42 +0200)]
Return allocated variable in INIT()

9 years agoClear traps during shutdown before unloading kernel plugins
Martin Willi [Wed, 29 Jun 2011 10:08:24 +0000 (12:08 +0200)]
Clear traps during shutdown before unloading kernel plugins

9 years agoDestroy kernel interface during deregistration, as the plugin goes afterwards
Martin Willi [Wed, 29 Jun 2011 09:59:43 +0000 (11:59 +0200)]
Destroy kernel interface during deregistration, as the plugin goes afterwards

9 years agoAdd missing semicolon
Martin Willi [Thu, 19 May 2011 11:41:31 +0000 (13:41 +0200)]
Add missing semicolon

9 years agoadded PTS debug class
Andreas Steffen [Sat, 10 Sep 2011 22:11:04 +0000 (00:11 +0200)]
added PTS debug class

9 years agoused request ID in message request output
Andreas Steffen [Sat, 10 Sep 2011 21:01:29 +0000 (23:01 +0200)]
used request ID in message request output

9 years agointroduced a PA-TNC attribute manager
Andreas Steffen [Sat, 10 Sep 2011 20:35:43 +0000 (22:35 +0200)]
introduced a PA-TNC attribute manager

9 years agocorrectly initialize error_code
Andreas Steffen [Sat, 10 Sep 2011 09:57:17 +0000 (11:57 +0200)]
correctly initialize error_code

9 years agodefine attr_info only once
Andreas Steffen [Sat, 10 Sep 2011 09:56:43 +0000 (11:56 +0200)]
define attr_info only once

9 years agoremoved whitespace
Andreas Steffen [Sat, 10 Sep 2011 09:34:52 +0000 (11:34 +0200)]
removed whitespace

9 years agodecoupled request ID from files table primary key
Andreas Steffen [Sat, 10 Sep 2011 09:24:39 +0000 (11:24 +0200)]
decoupled request ID from files table primary key

9 years agocosmetics
Andreas Steffen [Sat, 10 Sep 2011 09:02:19 +0000 (11:02 +0200)]
cosmetics

9 years agoproperly close Tspi_Context
Andreas Steffen [Sat, 10 Sep 2011 08:55:21 +0000 (10:55 +0200)]
properly close Tspi_Context

9 years agowhitelist glibc instead of TrouSerS functions
Andreas Steffen [Sat, 10 Sep 2011 08:54:33 +0000 (10:54 +0200)]
whitelist glibc instead of TrouSerS functions

9 years agodetermine machine architecture programmatically
Andreas Steffen [Fri, 9 Sep 2011 18:50:36 +0000 (20:50 +0200)]
determine machine architecture programmatically

9 years agodetermine version for various Linux releases
Andreas Steffen [Fri, 9 Sep 2011 17:18:40 +0000 (19:18 +0200)]
determine version for various Linux releases

9 years agoImplemented PTS attributes Request File Metadata, Unix-Style File Metadata
Sansar Choinyambuu [Fri, 9 Sep 2011 13:48:16 +0000 (15:48 +0200)]
Implemented PTS attributes Request File Metadata, Unix-Style File Metadata

9 years agoFile not Found, Invalid path, Invalid Delimiter PTS errors case checks implemented
Sansar Choinyambuu [Fri, 9 Sep 2011 09:23:19 +0000 (11:23 +0200)]
File not Found, Invalid path, Invalid Delimiter PTS errors case checks implemented

9 years agodue to a bug fix reverted to the previous RULE_CRL_VALIDATION check
Andreas Steffen [Fri, 9 Sep 2011 07:25:44 +0000 (09:25 +0200)]
due to a bug fix reverted to the previous RULE_CRL_VALIDATION check

9 years agoadded Gentoo UML file measurements
Andreas Steffen [Thu, 8 Sep 2011 17:32:19 +0000 (19:32 +0200)]
added Gentoo UML file measurements

9 years agoredirect stderr of command to /dev/null
Andreas Steffen [Thu, 8 Sep 2011 16:29:52 +0000 (18:29 +0200)]
redirect stderr of command to /dev/null

9 years agoadded leaky TrouSerS functions to whitelist
Andreas Steffen [Thu, 8 Sep 2011 16:22:43 +0000 (18:22 +0200)]
added leaky TrouSerS functions to whitelist

9 years agofixed memory leak
Andreas Steffen [Thu, 8 Sep 2011 16:21:49 +0000 (18:21 +0200)]
fixed memory leak

9 years agocheck if pts_credmgr exists
Andreas Steffen [Thu, 8 Sep 2011 15:28:07 +0000 (17:28 +0200)]
check if pts_credmgr exists

9 years agomove state change to head of section
Andreas Steffen [Thu, 8 Sep 2011 15:15:20 +0000 (17:15 +0200)]
move state change to head of section

9 years agocreated libpts
Andreas Steffen [Thu, 8 Sep 2011 10:05:55 +0000 (12:05 +0200)]
created libpts

9 years agocheck files in alphabetical order
Andreas Steffen [Wed, 7 Sep 2011 23:42:09 +0000 (01:42 +0200)]
check files in alphabetical order

9 years agolittle bug fix
Andreas Steffen [Wed, 7 Sep 2011 23:34:24 +0000 (01:34 +0200)]
little bug fix

9 years agobeautified AIK verification
Andreas Steffen [Wed, 7 Sep 2011 23:13:36 +0000 (01:13 +0200)]
beautified AIK verification

9 years agorefactored measurement verification
Andreas Steffen [Wed, 7 Sep 2011 22:49:19 +0000 (00:49 +0200)]
refactored measurement verification

9 years agorefactored file measurement request list
Andreas Steffen [Wed, 7 Sep 2011 20:39:03 +0000 (22:39 +0200)]
refactored file measurement request list

9 years agoAdded Check_Measurement function to pts_database instead of returning enumerator...
Sansar Choinyambuu [Wed, 7 Sep 2011 14:45:37 +0000 (16:45 +0200)]
Added Check_Measurement function to pts_database instead of returning enumerator over hashes
List of requested files/directories are kept within imv state now
Allocated memory for entries in files_in_dir_with_meas list

9 years agoAdded Check_Measurement function to pts_database instead of returning enumerator...
Sansar Choinyambuu [Wed, 7 Sep 2011 13:38:58 +0000 (15:38 +0200)]
Added Check_Measurement function to pts_database instead of returning enumerator over hashes
List of requested files/directories are kept within imv state now
Allocated memory for entries in files_in_dir_with_meas list

9 years agocheck if AIK certificate is trusted
Andreas Steffen [Wed, 7 Sep 2011 09:00:46 +0000 (11:00 +0200)]
check if AIK certificate is trusted

9 years agofixed typo
Andreas Steffen [Wed, 7 Sep 2011 08:43:28 +0000 (10:43 +0200)]
fixed typo

9 years agolexparser was not used
Andreas Steffen [Wed, 7 Sep 2011 07:44:59 +0000 (09:44 +0200)]
lexparser was not used

9 years agouse arch instead of uname -p
Andreas Steffen [Wed, 7 Sep 2011 07:02:47 +0000 (09:02 +0200)]
use arch instead of uname -p

9 years agoAdded destroy functions for linked lists
Sansar Choinyambuu [Wed, 7 Sep 2011 06:50:13 +0000 (08:50 +0200)]
Added destroy functions for linked lists

9 years agoadded strongswan.conf attributes for attestation IMC/IMV
Andreas Steffen [Wed, 7 Sep 2011 06:02:44 +0000 (08:02 +0200)]
added strongswan.conf attributes for attestation IMC/IMV

9 years agoallow to override platform info
Andreas Steffen [Wed, 7 Sep 2011 05:48:08 +0000 (07:48 +0200)]
allow to override platform info

9 years agocosmetics
Andreas Steffen [Wed, 7 Sep 2011 05:40:42 +0000 (07:40 +0200)]
cosmetics

9 years agochange measurement not found debug level
Andreas Steffen [Tue, 6 Sep 2011 23:14:26 +0000 (01:14 +0200)]
change measurement not found debug level

9 years agoget platform info from IMC
Andreas Steffen [Tue, 6 Sep 2011 22:48:25 +0000 (00:48 +0200)]
get platform info from IMC

9 years agoadded some more entries to file hashes database
Andreas Steffen [Mon, 5 Sep 2011 20:32:17 +0000 (22:32 +0200)]
added some more entries to file hashes database

9 years agoadded libxt_udp.so and libxt_tcp.so for Ubuntu 11.4 i686
Andreas Steffen [Mon, 5 Sep 2011 18:58:19 +0000 (20:58 +0200)]
added libxt_udp.so and libxt_tcp.so for Ubuntu 11.4 i686

9 years agoadded a PTS credential set
Andreas Steffen [Mon, 5 Sep 2011 16:19:50 +0000 (18:19 +0200)]
added a PTS credential set

9 years agoVerification of directory contents measurements implemented
Sansar Choinyambuu [Mon, 5 Sep 2011 15:52:31 +0000 (17:52 +0200)]
Verification of directory contents measurements implemented

9 years agoAdded measurements for libxt_udp.so and libxt_tcp.so to check dir measuring
Sansar Choinyambuu [Mon, 5 Sep 2011 15:51:37 +0000 (17:51 +0200)]
Added measurements for libxt_udp.so and libxt_tcp.so to check dir measuring

9 years agoAdded directory column with default value of zero into file_hashes table
Sansar Choinyambuu [Mon, 5 Sep 2011 15:50:49 +0000 (17:50 +0200)]
Added directory column with default value of zero into file_hashes table

9 years agoreverted aik_cert and aik_key parameters
Andreas Steffen [Mon, 5 Sep 2011 11:01:53 +0000 (13:01 +0200)]
reverted aik_cert and aik_key parameters

9 years agodebug output while loading AIK credentials
Andreas Steffen [Mon, 5 Sep 2011 10:44:54 +0000 (12:44 +0200)]
debug output while loading AIK credentials

9 years agofixed encoding of AIK certificates and public keys
Andreas Steffen [Mon, 5 Sep 2011 10:43:18 +0000 (12:43 +0200)]
fixed encoding of AIK certificates and public keys

9 years agomake encoding of CERT_TRUSTED_PUBKEY configurable
Andreas Steffen [Mon, 5 Sep 2011 10:42:22 +0000 (12:42 +0200)]
make encoding of CERT_TRUSTED_PUBKEY configurable

9 years agoInserted missing "!" mark
Sansar Choinyambuu [Mon, 5 Sep 2011 10:36:56 +0000 (12:36 +0200)]
Inserted missing "!" mark
Changed variable name for AIK cert, key paths in strongswan.conf

9 years agorefactored AIK functionality
Andreas Steffen [Mon, 5 Sep 2011 09:15:34 +0000 (11:15 +0200)]
refactored AIK functionality

9 years agoRemoved identity.c related references and variables
Sansar Choinyambuu [Mon, 5 Sep 2011 09:04:47 +0000 (11:04 +0200)]
Removed identity.c related references and variables

9 years agoDelete unnecessary fake_ek_cert header file
Sansar Choinyambuu [Mon, 5 Sep 2011 08:40:16 +0000 (10:40 +0200)]
Delete unnecessary fake_ek_cert header file