Commit Graph
100 Commits
Author SHA1 Message Date
Andreas Steffen 2ba6a53414 added missing header files 2009-06-24 00:07:36 +02:00
Andreas Steffen 71e725d325 use get_proposal_token() for algorithm selection 2009-06-20 12:09:36 +02:00
Andreas Steffen c4963c92ac version bump to 4.3.3 2009-06-19 17:00:34 +02:00
Andreas Steffen 126f2130fb added info about two DoS fixes 2009-06-18 19:29:16 +02:00
Andreas Steffen 1ea31180a0 HASH_MD2 is not implemented yet in gcrypt 2009-06-18 10:03:05 +02:00
Andreas Steffen 3d7250d472 added test vector for NULL encryption 2009-06-18 09:59:24 +02:00
Andreas Steffen c233bb932a added test vector for NULL encryption 2009-06-18 09:42:05 +02:00
Andreas Steffen 21142d40d1 added md2 and md4 test vectors 2009-06-18 09:32:57 +02:00
Andreas Steffen 6561694796 added 2 des test vectors 2009-06-18 08:23:51 +02:00
Andreas Steffen 420bfb4fb5 added gcrypt-ikev2/alg-camellia scenario 2009-06-18 07:48:38 +02:00
Andreas Steffen 0e9ded6838 removed serpent and twofish plugins - use gcrypt instead 2009-06-18 07:27:40 +02:00
Andreas Steffen 9709520a84 moved alg-serpent and alg-twofish scenarios to gcrypt-ikev1 2009-06-18 07:15:51 +02:00
Andreas Steffen 8caf7711c9 fixed typo 2009-06-18 05:56:02 +02:00
Andreas Steffen bfab805898 removed superfluous print argument 2009-06-17 22:54:57 +02:00
Andreas Steffen e1101d5994 added 2 RC5 test vectors 2009-06-17 22:34:03 +02:00
Andreas Steffen ed65740846 added 2 IDEA test vectors 2009-06-17 21:53:30 +02:00
Andreas Steffen 364786b69f added 6 serpent test vectors 2009-06-17 21:37:26 +02:00
Andreas Steffen 142b7326a6 added 3 Twofish test vectors 2009-06-17 15:50:27 +02:00
Andreas Steffen a36c082da6 added one CAST-128 test vector 2009-06-17 15:24:20 +02:00
Andreas Steffen 1db85f2cc7 corrected ASN.1 encoding of OID node 2009-06-17 15:08:03 +02:00
Andreas Steffen 46ec53098e added Camellia encryption support to scepclient 2009-06-17 14:42:57 +02:00
Andreas Steffen 61bfc3acae added 6 Camellia test vectors 2009-06-17 14:22:00 +02:00
Andreas Steffen 22511bbd34 added 6 Camellia test vectors 2009-06-17 14:21:34 +02:00
Andreas Steffen c3fcdd9322 added 2 3DES-CBC and 3 AES-CBC test vectors 2009-06-17 00:08:44 +02:00
Andreas Steffen bd33859fb8 some more scenario adaptations 2009-06-16 21:03:13 +02:00
Andreas Steffen c8db70156d test-vector support in rw-cert scenarios 2009-06-16 20:53:41 +02:00
Andreas Steffen e0b09f8e76 added two gcrypt scenarios 2009-06-16 18:47:28 +02:00
Andreas Steffen 9e533e3d8e --enable-test-vectors and --enable-gcrypt in UML scenarios 2009-06-16 18:06:16 +02:00
Andreas Steffen 280effc034 moved ike_alg descriptions to crypto.c 2009-06-16 18:06:16 +02:00
Andreas Steffen b07ffa2490 reformatted crypto_test output 2009-06-16 14:58:49 +02:00
Andreas Steffen b32af12051 pluto supports ECP DH groups and ECDSA authentication 2009-06-16 11:23:40 +02:00
Andreas Steffen 5fa879238b initiator now checks for private key much earlier 2009-06-16 07:59:31 +02:00
Andreas Steffen 0002de3b98 adaptations of UML scenarios to 4.3.2 2009-06-16 07:33:22 +02:00
Andreas Steffen cd312fcc43 remove whitespace 2009-06-15 19:30:44 +02:00
Andreas Steffen ebde1a7ddd consistent display of strongSwan version 2009-06-13 16:03:08 +02:00
Andreas Steffen 2b92fc9880 test_vectors.h is part of the distribution 2009-06-13 15:17:24 +02:00
Andreas Steffen c71f212627 renamed OAKLEY_ECDSA_512 to OAKLEY_ECDSA_512 2009-06-13 15:16:49 +02:00
Andreas Steffen 1930cb22ff updated pluto.load configuration in ikev1 scenarios 2009-06-13 08:56:05 +02:00
Andreas Steffen c035d44c0e fixed evaltest.dat 2009-06-13 08:49:03 +02:00
Andreas Steffen d90ea16030 reduced debug level in ikev2/alg-blowfish scenario 2009-06-13 08:44:50 +02:00
Andreas Steffen 80873f2c5e added openssl-ikev1/ecdsa-certs scenario 2009-06-13 08:43:34 +02:00
Andreas Steffen 0005269132 ECDSA 256 and 384 certificates for moon 2009-06-13 07:28:47 +02:00
Andreas Steffen 8df811146d fixed broken XAUTH authentication 2009-06-12 21:04:48 +02:00
Andreas Steffen b34862b14e not restricted to RSA public keys 2009-06-12 20:17:02 +02:00
Andreas Steffen 37c9f11f11 load_private_key() loads all kinds of keys 2009-06-12 20:09:00 +02:00
Andreas Steffen 3c5a2342b4 ASN.1 parsing of RSA public key not needed anymore 2009-06-12 20:06:39 +02:00
Andreas Steffen 11e6d28533 pluto supports ECDSA authentication 2009-06-12 19:59:49 +02:00
Andreas Steffen eca36f44de split openssl scenarios into openssl-ikev1 and openssl-ikev2 2009-06-12 19:59:48 +02:00
Andreas Steffen 355bab380c additional check in case of non-positive months 2009-06-10 15:33:39 +02:00
Andreas Steffen dfa5fb0358 implemented IKEv1 RSA signing in openssl_rsa_private_key.c 2009-06-10 15:29:57 +02:00
Andreas Steffen 29bbfc11ee implemented IKEv1 signature verification in openssl_rsa_public_key.c 2009-06-10 13:43:51 +02:00
Andreas Steffen c04bf43363 fixed typo in asn1.c 2009-06-10 12:00:26 +02:00
Andreas Steffen 95c00dfcf9 fixed DoS vulnerability in the parsing of ASN.1 time strings 2009-06-10 11:39:17 +02:00
Andreas Steffen b29832c74f fixed DoS vulnerability in the parsing of distinguished names 2009-06-09 22:03:33 +02:00
Andreas Steffen 2d870072fa asn1_integer() ensures correct DER encoding of ASN1_INTEGER (two's complement) 2009-06-09 13:27:59 +02:00
Andreas Steffen a038ef2bb1 renamed listing of IKEv1 authentication algorithms 2009-06-09 11:43:08 +02:00
Andreas Steffen 3d2745110e more concise listing of ESP algorithms 2009-06-09 11:03:35 +02:00
Andreas Steffen 527960de0f activated INTEGRITY_TEST option in pluto 2009-06-09 11:03:35 +02:00
Andreas Steffen d615ffdcf3 implement gmp_rsa_private_key.decrypt() 2009-06-09 11:03:35 +02:00
Andreas Steffen c50ff68d0c implemented gmp_rsa_public_key.encrypt() method 2009-06-09 11:03:35 +02:00
Andreas Steffen 290b2359c2 some fixes in pkcs7.c 2009-06-09 11:03:35 +02:00
Andreas Steffen 23d7e76788 hooray, pluto and scepclient do not depend on libgmp anymore 2009-06-09 11:03:34 +02:00
Andreas Steffen 4ca4efb28f update strongswan.conf for pluto and scepclient 2009-06-09 11:03:34 +02:00
Andreas Steffen 53df4793d4 pkcs7.c also uses signature_scheme_from_oid() 2009-06-09 11:03:34 +02:00
Andreas Steffen f3e87f5935 created signature_scheme_from_oid() helper function 2009-06-09 11:03:34 +02:00
Andreas Steffen 9410aa262a hardened OpenPGP parser 2009-06-09 11:03:34 +02:00
Andreas Steffen c146b2c8df pluto now requires pubkey plugin 2009-06-09 11:03:33 +02:00
Andreas Steffen 123fdf700a updated documentation on leftsendcert 2009-06-09 11:03:33 +02:00
Andreas Steffen b6f19a6ab4 used rsa coeff field in OpenPGP secret key payload 2009-06-09 11:03:33 +02:00
Andreas Steffen 1bb4d7dd79 fixed OpenPGPv3 fingerprint computation 2009-06-09 11:03:33 +02:00
Andreas Steffen d17a120598 fixed OpenPGP parsing 2009-06-09 11:03:33 +02:00
Andreas Steffen ca062e48ee moved PGP types to pgp/pgp.h 2009-06-09 11:03:33 +02:00
Andreas Steffen 8b799d55ce pluto and scepclient use private and public key plugins of libstrongswan 2009-06-09 11:03:32 +02:00
Andreas Steffen 14c408ee4a _updown script fix for ALT Linux, courtesy of Michael Shigorin 2009-05-29 08:10:02 +02:00
Andreas Steffen 5c1e8ca7ae missed keyid2sql.c 2009-05-28 15:50:05 +02:00
Andreas Steffen af1feed96a NO_CREDENTIAL_FACTORY compile option not needed anymore 2009-05-28 15:44:22 +02:00
Andreas Steffen e24aaddde0 hide credentials headers in credential_factory.h 2009-05-28 15:35:02 +02:00
Andreas Steffen 435e23e647 set parsed = TRUE before calling parse_certificate() 2009-05-27 09:52:53 +02:00
Andreas Steffen e0daac5536 fixed typo 2009-05-27 08:46:13 +02:00
Andreas Steffen ebb97511e6 dh_exponent_ansi_x9_42 is now a libstrongswan setting 2009-05-26 18:32:52 +02:00
Andreas Steffen 517895bd05 eliminated ipsec_policy.h 2009-05-26 17:19:26 +02:00
Andreas Steffen 0355a1320c show strongSwan version in pluto's statusall 2009-05-26 15:35:32 +02:00
Andreas Steffen f64d8240b2 resolve clone naming conflict with uclibc 2009-05-25 08:38:36 +02:00
Andreas Steffen 986b3122a9 removed optionsfrom.c from libfreeswan 2009-05-24 21:04:50 +02:00
Andreas Steffen 4a64f1d3ba whack uses optionsfrom from libstrongswan 2009-05-24 20:59:28 +02:00
Andreas Steffen c0bc85c5b6 cosmetics 2009-05-24 20:14:13 +02:00
Andreas Steffen 90df644ed6 suppress Routed Connections caption if list is empty 2009-05-24 20:06:55 +02:00
Andreas Steffen 7d858a9d3c pluto uses optionsfrom from libstrongswan 2009-05-24 20:03:01 +02:00
Andreas Steffen 96d42f445e pluto now needs the gmp plugin 2009-05-24 19:33:16 +02:00
Andreas Steffen b8f8b2f1ce load gmp plugin in ike scenarios 2009-05-24 18:16:00 +02:00
Andreas Steffen 5aab375958 added openssl/ikev1-alg-ecp-low and openssl/ikev1-alg-ecp-high scenarios 2009-05-24 18:12:31 +02:00
Andreas Steffen 8585af7acb KE payload of ECP groups has X and Y coordinates 2009-05-24 18:06:49 +02:00
Andreas Steffen 7bb47ea4f3 fixed typo 2009-05-24 16:48:58 +02:00
Andreas Steffen 727a56c633 added openssl/rw-cert-ikev1 scenario 2009-05-24 16:42:30 +02:00
Andreas Steffen a09d1c386a renamed some IKEv2 OpenSSL scenarios 2009-05-24 16:41:13 +02:00
Andreas Steffen bce979ae44 pluto now requires gmp plugin for DH functions 2009-05-24 16:11:24 +02:00
Andreas Steffen 52ccea657b use the Diffie-Hellman functionality of libstrongswan 2009-05-24 11:26:00 +02:00
Andreas Steffen 770b408902 cosmetics 2009-05-24 11:24:19 +02:00
Andreas Steffen 2799f19432 added dh group descriptions 2009-05-24 11:23:24 +02:00
Andreas Steffen 42bdf001f0 updated copyright statements 2009-05-22 17:25:32 +02:00