2010-09-09 Andreas Steffenfixed memory leak
2010-09-09 Martin WilliCompare subject against all key identifiers in has_subj...
2010-09-09 Andreas Steffenhas_subject() now resolves ID_KEY_IDs
2010-09-09 Martin WilliDo not change cipherspec while we have buffered handsha...
2010-09-09 Andreas Steffenadded ikev1/net2net-same-nets scenario
2010-09-09 Tobias BrunnerConditional exclusion of tls_test script completed.
2010-09-09 Tobias BrunnerFixed typo.
2010-09-09 Andreas Steffendebug output of inbound and outbound TNCCS batches
2010-09-09 Andreas Steffensupport non EAP-TTLS conformant RADIUS-type attribute...
2010-09-09 Tobias BrunnerFixed copy/paste error.
2010-09-09 Andreas Steffenadded explanatory comments
2010-09-08 Andreas Steffensend well-formed TNCCS-Batch
2010-09-08 Andreas Steffenmax max_message_count configurable and move it into...
2010-09-08 Andreas Steffenhandle TLS_PURPOSE_EAP_TNC
2010-09-08 Martin WilliAdded a simple led plugin to control Linux LEDs based...
2010-09-08 Andreas Steffenmoved tls_t existance test into tls_eap_create() again
2010-09-08 Andreas Steffengeneralized tls_eap_t to support EAP_TNC wrapping the...
2010-09-08 Martin WilliRead the compression type byte for EC groups, only
2010-09-08 Andreas Steffenadded non-standard SERPENT and TWOFISH support to kerne...
2010-09-07 Andreas Steffenadded openssl-ikev2/rw-eap-tls-only scenario
2010-09-07 Andreas Steffenadded qcStatements OID
2010-09-07 Martin WilliFixed typos
2010-09-07 Martin WilliBuild tls_test script only if TLS stack is enabled
2010-09-07 Martin WilliAdded PKCS#11 NEWS
2010-09-07 Martin WilliAdded (EAP-)TLS NEWS
2010-09-06 Martin WilliInclude ec_point_format extension in ClientHello
2010-09-06 Martin WilliAdded TLS specific EC point formats
2010-09-06 Martin WilliRenamed ecp_format to ansi_format, as point formats...
2010-09-06 Martin WilliEnable the random plugin for scripts
2010-09-06 Martin WilliAccept TLS records with zero-length plaintext
2010-09-06 Martin WilliAdded strongswan.conf option to filter for specific...
2010-09-06 Martin WilliAdded strongswan.conf options to filter cipher suites...
2010-09-06 Martin WilliRegister missing AUTH_HMAC_SHA384 algorithm without...
2010-09-06 Martin WilliFixed key type in TLS_ECDHE_RSA_WITH_3DES_EDE_CBC_SHA
2010-09-06 Martin WilliPrepend point format to ECDH public key
2010-09-06 Martin WilliLog the selected (EC)DH group
2010-09-06 Martin WilliParse unsupported TLS Hello extensions properly
2010-09-06 Martin WilliAdded TLS extension identifiers from RFC 3546
2010-09-06 Tobias BrunnerOf course, mark is also supported by pluto.
2010-09-06 Tobias Brunnermark_in and mark_out are also supported by pluto.
2010-09-03 Martin WilliDo not propose (EC)DHE suites if we do not support...
2010-09-03 Martin WilliOffer only algorithms/suites we have a registered publi...
2010-09-03 Martin WilliAdded a final flag to builder registration to enumerate...
2010-09-03 Martin WilliFixed key type of ECDHE_RSA groups
2010-09-03 Martin WilliUse a dynamic curve enumerator to list/convert TLS...
2010-09-03 Martin WilliUse ECDH group check where appropriate
2010-09-03 Martin WilliAdded a generic function to check if a DH group is...
2010-09-03 Martin WilliAdd ECDHE enabled cipher suites, including ECDSA variants
2010-09-03 Martin WilliAdded support for a non-truncated SHA384 HMAC variant...
2010-09-03 Martin WilliSelect private key based on received cipher suites
2010-09-03 Martin WilliSupport for EC curve Hello extension, EC curve fallback
2010-09-03 Martin WilliAdded server support for ECDHE key exchange
2010-09-03 Martin WilliAdded client support for ECDHE key exchange
2010-09-03 Martin WilliAdded TLS EC curve type and name identifiers
2010-09-03 Andreas Steffenfixed typo
2010-09-03 Andreas Steffenupdown script variable is called PLUTO_UDP_ENC
2010-09-03 Tobias BrunnerFixed left-/rightnexthop ipsec.conf options.
2010-09-03 Martin WilliCheck for queued TLS alerts after each handshake part
2010-09-03 Martin WilliAdded support for MODP_CUSTOM to gcrypt plugin
2010-09-03 Martin WilliAdded support for MODP_CUSTOM to openssl plugin
2010-09-03 Andreas Steffenadapted debug options
2010-09-03 Andreas Steffenadapted debug options
2010-09-02 Andreas Steffenremoved redundant debug output
2010-09-02 Andreas Steffenversion bump to 4.5.0dr2
2010-09-02 Andreas Steffenoptimized FreeRadius scenarios for debug output
2010-09-02 Andreas Steffenadded ikev2/rw-eap-tnc-radius scenario
2010-09-02 Andreas Steffenadded radius init script mit increased debugging
2010-09-02 Andreas Steffendisplay configuration and log of FreeRadius servers
2010-09-02 Martin WilliAdd DHE enabled RSA variants to the supported TLS suites
2010-09-02 Martin WilliAdded TLS server side support for DHE suites
2010-09-02 Martin WilliAdded TLS client side support for DHE suites
2010-09-02 Martin WilliStore a MODP group we use for each TLS suite
2010-09-02 Martin WilliAdded support for MODP_CUSTOM to gmp plugin
2010-09-02 Martin WilliAdded a MODP_CUSTOM DH group which takes g and p as...
2010-09-02 Martin WilliImplemented "signature algorithm" hello extension
2010-09-02 Martin WilliAdded TLS extension identifiers
2010-09-02 Martin WilliAdded generic TLS data sign/verify, hash/sig algorithm...
2010-09-02 Martin WilliContinue with a randomized premaster if decryption...
2010-09-02 Tobias Brunnerpluto: Removed unused lifetime from raw_eroute.
2010-09-02 Tobias Brunnerpluto: Added support for statically configured reqids.
2010-09-02 Tobias Brunnertesting: Added ikev1 xfrm mark scenarios.
2010-09-02 Tobias Brunnerpluto: Make marks available in updown script.
2010-09-02 Tobias Brunnerpluto: Fixed comparison of connections, if marks are...
2010-09-02 Tobias Brunnerpluto: Store xfrm marks on connection and use them...
2010-09-02 Tobias Brunnerstarter: Some whitespace cleanup.
2010-09-02 Tobias Brunnerpluto: Added PLUTO_UDP_ENC argument to updown script.
2010-09-02 Tobias Brunnerpluto: Return value fixed.
2010-09-02 Tobias Brunnerpluto: Removed bare shunt table.
2010-09-02 Tobias BrunnerDo not install routes for pluto.
2010-09-02 Tobias Brunnerpluto: Handle changed NAT mappings via libhydra's kerne...
2010-09-02 Tobias Brunnerpluto: Removed no_klips flag (--noklips option).
2010-09-02 Tobias Brunnerpluto: Removed references to KLIPS from documentation...
2010-09-02 Tobias Brunnerpluto: Added --debug-kernel as alias for --debug-klips.
2010-09-02 Tobias Brunnerpluto: Replaced DBG_KLIPS with DBG_KERNEL.
2010-09-02 Tobias Brunnerpluto: Removed the KLIPS preprocessor flag.
2010-09-02 Tobias Brunnerpluto: Removed unneeded kernel abstractions.
2010-09-02 Tobias Brunnerpluto: Completely removed struct kernel_ops.
2010-09-02 Tobias Brunnerpluto: Refactored PF_KEY capabilities registration.
2010-09-02 Tobias Brunnerpluto: Removed unneeded functions from PF_KEY interface.
2010-09-02 Tobias Brunnerpluto: Completely removed orphaned_holds.