strongswan.org
Wiki/Project Management
Downloads
Gitweb
projects
/
strongswan.git
/ shortlog
commit
grep
author
committer
pickaxe
?
search:
re
summary
| shortlog |
log
|
commit
|
commitdiff
|
tree
first ⋅ prev ⋅
next
strongswan.git
2021-02-23
Michał Skalski
save-keys: Add support for full-length HMAC-SHA256...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-23
Michał Skalski
kernel-netlink: Add support for full-length HMAC-SHA2...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-23
Michał Skalski
keymat: Add support for full-length HMAC-SHA2 algorithms
commit
|
commitdiff
|
tree
|
snapshot
2021-02-23
Michał Skalski
af-alg: Fix typo in algorithm mapping for full-size...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-21
Andreas Steffen
Version bump to 5.9.2rc2
5.9.2rc2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-21
Andreas Steffen
testing: Use TLS 1.3 in TNC PT-TLS tests
commit
|
commitdiff
|
tree
|
snapshot
2021-02-19
Andreas Steffen
testing: Added mgf1 plugin to load statement
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Andreas Steffen
Merge branch 'tls-fixes'
5.9.2rc1
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Andreas Steffen
Version bump to 5.9.2rc1
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
pt-tls-server: Make TLS client authentication optional...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
tls-test: Add option to make client authentication...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
tls-server: Add flag that makes client authentication...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
libtls: Add control flags and replace GENERIC_NULLOK...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
pt-tls-server: Explicitly request client authentication...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
tls-server: Use subject DN as peer identity if it was...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
testing: Adapt some checks as SHA-384 is now preferred...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Tobias Brunner
tls-eap: Only servers conclude EAP method after process...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-18
Stefan Berghofer
ike-sa: Properly set timing info for delete after rekeying
commit
|
commitdiff
|
tree
|
snapshot
2021-02-17
Tobias Brunner
NEWS: Add news for 5.9.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Tobias Brunner
dhcp: Properly initialize struct when binding to interface
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Tobias Brunner
pts: Don't rely on BIOS event buffer to be null terminated
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Tobias Brunner
tls-crypto: Fix potential memory leak
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Tobias Brunner
ike-sa-manager: Ensure we were able to create a new...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Tobias Brunner
github: Bump wolfSSL to 4.7.0
commit
|
commitdiff
|
tree
|
snapshot
2021-02-16
Fedor Korotkov
cirrus: Use FreeBSD 12.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
Tobias Brunner
github: Fix emojis in templates
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
Tobias Brunner
github: Add security policy
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
Tobias Brunner
github: Add issue templates
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
René Fischer
botan: Use strongSwan's RNG interface in Botan plugin
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
Tobias Brunner
botan: Extract helper function to map RNG quality to...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-15
Tobias Brunner
botan: Look for Botan 3 in configure script
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ike-sa: Avoid possible integer underflow when schedulin...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ha: Register new IKE_SAs before calling inherit_post()
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ike-rekey: Register new IKE_SA before calling inherit_p...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ike-sa-manager: Add a method to register/check out...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ike-sa-manager: Rename checkout_new() to create_new()
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
Remove redundant calls to set peer config after checkin...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
ike-sa-manager: Make checkout_by_config() atomic
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
Merge branch 'tls13'
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-crypto: Simplify and extend cipher config filter
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
proposal: Add aliases for AES-GCM/CCM without explicit...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-server: Support x25519/448 for TLS 1.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-crypto: Fallback to any supported ECDH group
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-crypto: Don't filter suites with specific ECDH...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
diffie-hellman: Classify x25519 and x448 as ECDH methods
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Add signature scheme config file filter
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Rename DH group/key exchange method config...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
libtls: Increase default min version to 1.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-peer: Verify server selects the same cipher suite...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-server: Select cipher suite also when handling...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-server: Remove unused variable
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
libtls: Add downgrade protection for TLS 1.3 and TLS 1.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Shmulik Ladkani
tls-server: Optionally omit CAs in CertificateRequest...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-eap: Conclude EAP method also after processing...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
libtls: Only run socket tests with EdDSA keys if they...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-peer: Don't log anything if we are not sending...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-crypto: Only log modified TLS versions if successfu...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
libtls: Reduce default max version to 1.2
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
libtls: Make min/max TLS version configurable
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
test-hkdf: Add two test cases and restructure all tests
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-hkdf: Implement binder PSK generation
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-hkdf: Implement resumption key generation
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-peer: Mutual authentication support for TLS 1.3
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-peer: Derive application traffic keys after server...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-peer: Use private key enumeration also in TLS versi...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Share private key search between client...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-test: Add support to require/verify client certificates
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Mutual authentication support for TLS 1.3
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Terminate connection if peer certificate...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Make CertificateRequest conditional in...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Share trusted public key search between...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Move AEAD ownership to the protection layer
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-hkdf: Always use correct base key to derive finishe...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
libtls: Add unit tests for Ed25519 and Ed448 keys
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-test: Load keys of any type
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Support EdDSA keys with ECDSA cipher suites
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Consider supported signature algorithms...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Distinguish between signing and verifying...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Check if peer sent hash and signature algor...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Add missing signature scheme constants
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Fix invalid signature algorithm and support...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Support multiple client key shares
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
libtls: Add TLS version negotiation test cases
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Support HelloRetryRequest (HRR)
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Add support to configure DH groups to use
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
diffie-hellman: Add enum names that match proposal...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Generalizing DH group to TLS group mapping
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Support KeyUpdate requests and answers
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: Refactor writing of key share extensions
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-server: TLS 1.3 support for TLS server implementation
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Rename parameter to be more consistent
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Fix invalid signature algorithm list building
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
libtls: Add missing cipher suite and TLS extension...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Rework cipher suite preference order
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-server: Determine supported/configured suites and...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-crypto: Check if TLS versions and cipher suites...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Pascal Knecht
tls-peer: Don't initiate TLS connection if no cipher...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-test: Make plugin list configurable via environment...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-peer: Return INVALID_STATE after changing TLS 1...
commit
|
commitdiff
|
tree
|
snapshot
2021-02-12
Tobias Brunner
tls-crypto: Generate MSK for TLS 1.3
commit
|
commitdiff
|
tree
|
snapshot
next