strongswan.git
2021-05-05 Tobias Brunnergithub: Fix installation of Python dependencies
2021-05-05 Tobias Brunnerandroid: Avoid lint errors when determining column...
2021-05-05 Tobias Brunnerbacktrace: The BFD API changed in newer versions
2021-05-04 Noel Kuntzeopenssl: Fix OpenSSL version check for EC_POINT_set_aff...
2021-05-04 Noel Kuntzeforecast: Restrict strncpy() call
2021-05-04 Tobias BrunnerMerge branch 'doxygen-fixes'
2021-04-15 Noel KuntzeDoxyfile.in: Remove deprecated variables 326/head
2021-04-14 Noel Kuntzedoxygen: Fix documentation problems
2021-03-31 Andreas SteffenVersion bump to 5.9.3dr1 5.9.3dr1
2021-03-30 Andreas Steffentesting: Migrated p2pnat/medsrv-psk scenario to vici
2021-03-30 Andreas Steffentesting: Migrated p2pnat/behind-same-nat scenario to...
2021-03-30 Andreas Steffentesting: Store mars credentials in the swanctl directory
2021-03-30 Andreas Steffentesting: Migrated redirect-active scenario to vici
2021-03-30 Andreas Steffentesting: Migrated ha/both-active scenario to vici
2021-03-30 Andreas Steffentesting: Migrated ha/active-passive scenario to vici
2021-03-23 Andreas Steffentesting: Switched PTS measurements to /usr/sbin
2021-03-20 Andreas Steffenwolfssl: Support SHAKE_256
2021-03-20 Andreas Steffenwolfssl: Support SHA3
2021-03-20 Andreas Steffenwolfssl: Support AES_ECB
2021-03-19 Andreas Steffenopenssl: Migrate from deprecated EC_POINT_[set|get...
2021-03-17 Petr Gotthardlibcharon: Include libtpmtss in monolithic build
2021-03-07 Andreas Steffentesting: Bump guest kernel to Linux 5.11
2021-02-26 Andreas SteffenVersion bump to 5.9.2 5.9.2
2021-02-23 Tobias BrunnerMerge branch 'sha2-no-trunc'
2021-02-23 Tobias Brunnersave-keys: Fix length of AES-GCM with 12-byte ICV
2021-02-23 Michał Skalskisave-keys: Add support for full-length HMAC-SHA256...
2021-02-23 Michał Skalskikernel-netlink: Add support for full-length HMAC-SHA2...
2021-02-23 Michał Skalskikeymat: Add support for full-length HMAC-SHA2 algorithms
2021-02-23 Michał Skalskiaf-alg: Fix typo in algorithm mapping for full-size...
2021-02-21 Andreas SteffenVersion bump to 5.9.2rc2 5.9.2rc2
2021-02-21 Andreas Steffentesting: Use TLS 1.3 in TNC PT-TLS tests
2021-02-19 Andreas Steffentesting: Added mgf1 plugin to load statement
2021-02-18 Andreas SteffenMerge branch 'tls-fixes' 5.9.2rc1
2021-02-18 Andreas SteffenVersion bump to 5.9.2rc1
2021-02-18 Tobias Brunnerpt-tls-server: Make TLS client authentication optional...
2021-02-18 Tobias Brunnertls-test: Add option to make client authentication...
2021-02-18 Tobias Brunnertls-server: Add flag that makes client authentication...
2021-02-18 Tobias Brunnerlibtls: Add control flags and replace GENERIC_NULLOK...
2021-02-18 Tobias Brunnerpt-tls-server: Explicitly request client authentication...
2021-02-18 Tobias Brunnertls-server: Use subject DN as peer identity if it was...
2021-02-18 Tobias Brunnertesting: Adapt some checks as SHA-384 is now preferred...
2021-02-18 Tobias Brunnertls-eap: Only servers conclude EAP method after process...
2021-02-18 Stefan Berghoferike-sa: Properly set timing info for delete after rekeying
2021-02-17 Tobias BrunnerNEWS: Add news for 5.9.2
2021-02-16 Tobias Brunnerdhcp: Properly initialize struct when binding to interface
2021-02-16 Tobias Brunnerpts: Don't rely on BIOS event buffer to be null terminated
2021-02-16 Tobias Brunnertls-crypto: Fix potential memory leak
2021-02-16 Tobias Brunnerike-sa-manager: Ensure we were able to create a new...
2021-02-16 Tobias Brunnergithub: Bump wolfSSL to 4.7.0
2021-02-16 Fedor Korotkovcirrus: Use FreeBSD 12.2
2021-02-15 Tobias Brunnergithub: Fix emojis in templates
2021-02-15 Tobias Brunnergithub: Add security policy
2021-02-15 Tobias Brunnergithub: Add issue templates
2021-02-15 René Fischerbotan: Use strongSwan's RNG interface in Botan plugin
2021-02-15 Tobias Brunnerbotan: Extract helper function to map RNG quality to...
2021-02-15 Tobias Brunnerbotan: Look for Botan 3 in configure script
2021-02-12 Tobias Brunnerike-sa: Avoid possible integer underflow when schedulin...
2021-02-12 Tobias Brunnerha: Register new IKE_SAs before calling inherit_post()
2021-02-12 Tobias Brunnerike-rekey: Register new IKE_SA before calling inherit_p...
2021-02-12 Tobias Brunnerike-sa-manager: Add a method to register/check out...
2021-02-12 Tobias Brunnerike-sa-manager: Rename checkout_new() to create_new()
2021-02-12 Tobias BrunnerRemove redundant calls to set peer config after checkin...
2021-02-12 Tobias Brunnerike-sa-manager: Make checkout_by_config() atomic
2021-02-12 Tobias BrunnerMerge branch 'tls13'
2021-02-12 Tobias Brunnertls-crypto: Simplify and extend cipher config filter
2021-02-12 Tobias Brunnerproposal: Add aliases for AES-GCM/CCM without explicit...
2021-02-12 Tobias Brunnertls-server: Support x25519/448 for TLS 1.2
2021-02-12 Tobias Brunnertls-crypto: Fallback to any supported ECDH group
2021-02-12 Tobias Brunnertls-crypto: Don't filter suites with specific ECDH...
2021-02-12 Tobias Brunnerdiffie-hellman: Classify x25519 and x448 as ECDH methods
2021-02-12 Pascal Knechttls-crypto: Add signature scheme config file filter
2021-02-12 Pascal Knechttls-crypto: Rename DH group/key exchange method config...
2021-02-12 Tobias Brunnerlibtls: Increase default min version to 1.2
2021-02-12 Tobias Brunnertls-peer: Verify server selects the same cipher suite...
2021-02-12 Tobias Brunnertls-server: Select cipher suite also when handling...
2021-02-12 Tobias Brunnertls-server: Remove unused variable
2021-02-12 Pascal Knechtlibtls: Add downgrade protection for TLS 1.3 and TLS 1.2
2021-02-12 Shmulik Ladkanitls-server: Optionally omit CAs in CertificateRequest...
2021-02-12 Tobias Brunnertls-eap: Conclude EAP method also after processing...
2021-02-12 Tobias Brunnerlibtls: Only run socket tests with EdDSA keys if they...
2021-02-12 Tobias Brunnertls-peer: Don't log anything if we are not sending...
2021-02-12 Tobias Brunnertls-crypto: Only log modified TLS versions if successfu...
2021-02-12 Tobias Brunnerlibtls: Reduce default max version to 1.2
2021-02-12 Tobias Brunnerlibtls: Make min/max TLS version configurable
2021-02-12 Pascal Knechttest-hkdf: Add two test cases and restructure all tests
2021-02-12 Pascal Knechttls-hkdf: Implement binder PSK generation
2021-02-12 Pascal Knechttls-hkdf: Implement resumption key generation
2021-02-12 Pascal Knechttls-peer: Mutual authentication support for TLS 1.3
2021-02-12 Pascal Knechttls-peer: Derive application traffic keys after server...
2021-02-12 Pascal Knechttls-peer: Use private key enumeration also in TLS versi...
2021-02-12 Pascal Knechttls-crypto: Share private key search between client...
2021-02-12 Pascal Knechttls-test: Add support to require/verify client certificates
2021-02-12 Pascal Knechttls-server: Mutual authentication support for TLS 1.3
2021-02-12 Pascal Knechttls-server: Terminate connection if peer certificate...
2021-02-12 Pascal Knechttls-server: Make CertificateRequest conditional in...
2021-02-12 Pascal Knechttls-server: Share trusted public key search between...
2021-02-12 Pascal Knechttls-crypto: Move AEAD ownership to the protection layer
2021-02-12 Pascal Knechttls-hkdf: Always use correct base key to derive finishe...
2021-02-12 Pascal Knechtlibtls: Add unit tests for Ed25519 and Ed448 keys
2021-02-12 Pascal Knechttls-test: Load keys of any type
next