Martin Willi
|
02ffd89642
|
decreased plugin load verbosity
|
2008-05-13 09:14:36 +00:00 |
|
Martin Willi
|
5dc317192a
|
support for left bounded padding in %H and %D
|
2008-05-09 12:25:39 +00:00 |
|
Martin Willi
|
e69f33f6e2
|
whitelisted gmtime_r
|
2008-05-09 12:24:11 +00:00 |
|
Martin Willi
|
9f9903a3b3
|
supporting width modifier in identification_t printf hook (e.g. %30D)
cleanups in host_t %H printf hook
|
2008-05-09 11:34:58 +00:00 |
|
Martin Willi
|
0f074a4344
|
implemented append mode for xcbc, testcase
|
2008-05-08 14:51:37 +00:00 |
|
Martin Willi
|
affd7a90ba
|
moved RAW public key support to a separate plugin (pubkey)
|
2008-05-08 13:16:42 +00:00 |
|
Martin Willi
|
240e727fde
|
renamed PRF_AES128_CBC to PRF_AES128_XCBC
|
2008-05-08 12:43:27 +00:00 |
|
Martin Willi
|
25b12c696b
|
replaced --with-gid/uid by --with-group/user
using named users, groups
fixed capability dropping in pluto
|
2008-05-08 10:58:04 +00:00 |
|
Martin Willi
|
f8277a8370
|
added configure check and support for sqlite3 libraries without sqlite3_prepare_v2
|
2008-05-07 14:41:13 +00:00 |
|
Martin Willi
|
4ce78f9356
|
fixed 3DES encryption
|
2008-05-07 11:54:30 +00:00 |
|
Martin Willi
|
86ab5636c2
|
support for @#hex ID_KEY_ID identification_t
|
2008-05-06 13:45:14 +00:00 |
|
Martin Willi
|
c963c4bc15
|
fixed parsing of openssl format public keys
|
2008-05-06 12:56:36 +00:00 |
|
Martin Willi
|
cc0cb93553
|
printf "width" support for hosts (e.g. %15H)
|
2008-05-05 08:31:43 +00:00 |
|
Martin Willi
|
6c90949f18
|
resetting old scheduling policy correctly in free() hook
|
2008-05-05 07:40:21 +00:00 |
|
Martin Willi
|
27d04e055d
|
implemented XCBC algorithms (signer, prf) for IKE on top of a crypter
supporting ike=...-aesxcbc-... in ipsec.conf
added AUTH_AES_XCBC_96 and PRF_AES128_CBC to default IKE proposal
AES XCBC testcase
|
2008-04-30 14:26:24 +00:00 |
|
Martin Willi
|
f5475fa440
|
crypter_t api supports in-place encryption using NULL as output parameter
|
2008-04-30 14:02:25 +00:00 |
|
Tobias Brunner
|
d691080cfc
|
simplified the OpenSSL crypter a bit
|
2008-04-30 09:24:22 +00:00 |
|
Tobias Brunner
|
87aa386df1
|
simplified the OpenSSL hasher a bit
|
2008-04-30 09:23:13 +00:00 |
|
Tobias Brunner
|
bc75840fb1
|
OpenSSL hasher does not need an internal buffer anymore
|
2008-04-30 08:54:36 +00:00 |
|
Tobias Brunner
|
ae7e837c30
|
adding diffie hellman with OpenSSL
|
2008-04-29 15:42:34 +00:00 |
|
Tobias Brunner
|
4eda3aa223
|
use SHA-1 as preferred hasher in the OpenSSL plugin
|
2008-04-29 09:13:14 +00:00 |
|
Andreas Steffen
|
5c7c23cc03
|
set Id keyword
|
2008-04-28 18:44:21 +00:00 |
|
Andreas Steffen
|
e8a680d94a
|
cosmetics
|
2008-04-28 16:02:53 +00:00 |
|
Andreas Steffen
|
460025e253
|
introduced ASN1_EXIT command in ASN.1 object syntax definition
|
2008-04-28 16:00:52 +00:00 |
|
Tobias Brunner
|
63cdbca211
|
added wrapper for OpenSSL hashers
|
2008-04-28 15:56:44 +00:00 |
|
Tobias Brunner
|
a733b30276
|
algo lookup corrected
|
2008-04-28 15:26:38 +00:00 |
|
Tobias Brunner
|
3b34019f58
|
made algo struct static
|
2008-04-28 14:52:58 +00:00 |
|
Tobias Brunner
|
b61aa33599
|
typos
|
2008-04-28 14:32:18 +00:00 |
|
Tobias Brunner
|
17353034f3
|
added a wrapper plugin for OpenSSL crypters (AES, 3DES, Blowfish etc.)
|
2008-04-28 14:25:19 +00:00 |
|
Andreas Steffen
|
c3628ebc35
|
optimized parser->success()
|
2008-04-26 11:08:36 +00:00 |
|
Andreas Steffen
|
df231f5488
|
ported ASN.1 changes to pkcs7
|
2008-04-26 10:20:51 +00:00 |
|
Andreas Steffen
|
f27e13e80f
|
doxygen fix for fips.h
|
2008-04-26 09:40:22 +00:00 |
|
Andreas Steffen
|
d3d7e46b8c
|
refactoring of the ASN.1 parser
|
2008-04-26 09:24:14 +00:00 |
|
Andreas Steffen
|
33eb3d4ab6
|
extract_token() now handles whitespace
|
2008-04-25 07:04:59 +00:00 |
|
Martin Willi
|
9213ad27c2
|
replaced freeswan ttodata by own chunk_{to|from}_{hex|base64} functions
|
2008-04-24 13:26:22 +00:00 |
|
Martin Willi
|
36d62fac65
|
experimental Padlock plugin supportin SHA1 and AES-128 for VIA C7 Esther
|
2008-04-22 08:44:56 +00:00 |
|
Martin Willi
|
4d18175997
|
removed status result from crypter interface to be consistent with other crypto interfaces
|
2008-04-22 07:14:24 +00:00 |
|
Tobias Brunner
|
ebb036feec
|
functions invoked on all linked list items now support up to five additional arguments
|
2008-04-18 11:48:53 +00:00 |
|
Tobias Brunner
|
6439267a8c
|
support for hash and URL encoded certificate payloads in charon
|
2008-04-18 11:24:45 +00:00 |
|
Tobias Brunner
|
eed87e1d76
|
typo
|
2008-04-18 10:58:36 +00:00 |
|
Martin Willi
|
72c882d8c0
|
cosmetics to chunk_write()
|
2008-04-17 14:06:37 +00:00 |
|
Martin Willi
|
233b853dfa
|
extended credential_set_t interface by a cache_cert() method
allows persistent or in-memory caching of fetched certificates
|
2008-04-17 11:22:37 +00:00 |
|
Martin Willi
|
f722fa31db
|
added error logging to sqlite plugin
|
2008-04-15 15:12:01 +00:00 |
|
Martin Willi
|
82d8368bd7
|
build plugins after daemon/libstrongswan
|
2008-04-15 07:57:01 +00:00 |
|
Martin Willi
|
6a365f0740
|
added API for random number generators, served through credential factory
ported randomizer_t to a rng_t on top of /dev/(u)random (plugin random)
|
2008-04-15 05:56:35 +00:00 |
|
Martin Willi
|
f6e7c0f785
|
removed stale ocsp header
|
2008-04-08 06:27:04 +00:00 |
|
Martin Willi
|
852abcd3a3
|
fixed doxygen groups to avoid recursion
|
2008-04-07 10:37:14 +00:00 |
|
Martin Willi
|
b5dbcc6270
|
compare certificates against full encoding to allow equality check of untrusted certs
|
2008-04-07 08:28:35 +00:00 |
|
Martin Willi
|
ff867d062e
|
added ./configure option --with-strongswan-conf=
defaults to /etc/strongswan.conf
|
2008-04-07 06:56:33 +00:00 |
|
Martin Willi
|
4071ad1e5b
|
fixed segfault when opening a SQLite database fails
|
2008-04-07 06:49:13 +00:00 |
|