Andreas Steffen
|
12d68762f7
|
issue warning if sqlite finalize is missing
|
2012-10-26 13:22:02 +02:00 |
|
Martin Willi
|
828cefc313
|
Fix RSA encryption padding terminator in gmp plugin, broken with 5025135f
|
2012-10-24 20:26:10 +02:00 |
|
Tobias Brunner
|
f05b427265
|
Moved debug.[ch] to utils folder
|
2012-10-24 16:00:51 +02:00 |
|
Tobias Brunner
|
d5c143e5be
|
Moved enum_name_t to utils folder
|
2012-10-24 16:00:50 +02:00 |
|
Tobias Brunner
|
125b37af6d
|
Moved chunk_t to utils folder
|
2012-10-24 16:00:50 +02:00 |
|
Tobias Brunner
|
08944b68ac
|
Moved integrity_checker_t to utils folder
|
2012-10-24 16:00:50 +02:00 |
|
Tobias Brunner
|
12642a6831
|
Moved data structures to new collections subfolder
|
2012-10-24 16:00:49 +02:00 |
|
Martin Willi
|
712e81306f
|
PKCS#11 library search using keyid uses a fallback to look for certificates
|
2012-10-24 13:07:54 +02:00 |
|
Martin Willi
|
434902b302
|
Add a strongswan.conf option to disable loading of all certificates from a pkcs11 module
|
2012-10-24 13:07:53 +02:00 |
|
Martin Willi
|
36e47a409b
|
Explicit pkcs11 certificate loading can enforce a module and a slot
|
2012-10-24 13:07:53 +02:00 |
|
Martin Willi
|
5d4c27d077
|
Be less verbose if loading PKCS#11 certificate fails
|
2012-10-24 13:07:53 +02:00 |
|
Martin Willi
|
fbd3863571
|
Add a builder to load specific pkcs11 certificates by keyid
|
2012-10-24 13:07:52 +02:00 |
|
Martin Willi
|
ffe42fa405
|
If no pkcs11 public key for a private key found, search for a certificate
|
2012-10-24 13:07:52 +02:00 |
|
Martin Willi
|
44fdc62f82
|
Move pkcs11 public key lookup function declaration to header file
|
2012-10-24 13:07:52 +02:00 |
|
Tobias Brunner
|
3c4d383443
|
Added an option to reload certificates from PKCS#11 tokens on SIGHUP
|
2012-10-18 14:42:09 +02:00 |
|
Tobias Brunner
|
ca1c2ee281
|
Copy the name of pkcs11_library_t objects
Strings returned by settings_t.create_section_enumerator will be freed
when the config is reloaded.
|
2012-10-18 14:42:09 +02:00 |
|
Andreas Steffen
|
7f5675c8e5
|
check length of hex-encoded IV
|
2012-10-07 17:07:35 +02:00 |
|
Tobias Brunner
|
a05f3b2021
|
Make sure first argument is an int when using %.*s to print e.g. chunks
|
2012-09-28 18:01:49 +02:00 |
|
Tobias Brunner
|
10b116aa13
|
Properly initialize chunk for extension OID when parsing CRLs
|
2012-09-28 15:41:32 +02:00 |
|
Tobias Brunner
|
9fa335cb1b
|
Properly cleanup varargs in LDAP fetcher's set_option()
|
2012-09-28 15:13:17 +02:00 |
|
Tobias Brunner
|
b5835ee530
|
Properly cleanup varargs in enumerators of both SQL backends
|
2012-09-28 15:10:29 +02:00 |
|
Martin Willi
|
7b68cd9212
|
Add strongswan.conf runtime options for /dev/[u]random files
Fixes #221.
|
2012-09-10 17:07:51 +02:00 |
|
Tobias Brunner
|
3570c43968
|
openssl: Fix registration of the PUBKEY builder
libtls drops support for RSA suites if it does not find an RSA backend
(final builder for RSA public keys).
|
2012-08-18 17:49:57 +02:00 |
|
Tobias Brunner
|
a9f169f699
|
Don't require PLUGINDIR to be defined.
If it is not available, we just load monolithically built plugins.
|
2012-08-08 15:07:42 +02:00 |
|
Martin Willi
|
7c6d6b0d89
|
PEM loading soft-depends on MD5 only, as unencrypted files don't need MD5
Fixes #211.
|
2012-08-03 15:25:17 +02:00 |
|
Martin Willi
|
5d2698dd62
|
Add a SHA1 test vector forcing padding over block boundary
|
2012-07-18 15:10:29 +02:00 |
|
Martin Willi
|
610f90a8b9
|
Use centralized hasher names in openssl plugin
|
2012-07-17 17:32:00 +02:00 |
|
Martin Willi
|
082b0d7249
|
Support void return values in OpenSSL 0.9.8 HMAC functions
|
2012-07-17 10:58:53 +02:00 |
|
Martin Willi
|
3aca89c8e6
|
Resetting OpenSSL HMAC with NULL key reuses existing key
|
2012-07-16 14:55:07 +02:00 |
|
Martin Willi
|
9138f49e6a
|
Make sure HMAC_Init is called before HMAC_Update, fixes crash
|
2012-07-16 14:55:07 +02:00 |
|
Martin Willi
|
ae4411547a
|
Check and forward syscall errors in AF_ALG
|
2012-07-16 14:55:07 +02:00 |
|
Martin Willi
|
e3b2e900e6
|
Add a return value to hasher_t.reset()
|
2012-07-16 14:55:06 +02:00 |
|
Martin Willi
|
87dd205b61
|
Add a return value to hasher_t.allocate_hash()
|
2012-07-16 14:55:06 +02:00 |
|
Martin Willi
|
8bd6a30af1
|
Add a return value to hasher_t.get_hash()
|
2012-07-16 14:55:06 +02:00 |
|
Martin Willi
|
ce73fc19db
|
Add a return value to crypter_t.set_key()
|
2012-07-16 14:53:38 +02:00 |
|
Martin Willi
|
3b96189a2a
|
Add a return value to crypter_t.decrypt()
|
2012-07-16 14:53:38 +02:00 |
|
Martin Willi
|
e35abbe588
|
Add a return value to crypter_t.encrypt
|
2012-07-16 14:53:37 +02:00 |
|
Martin Willi
|
6ac8d861d9
|
Add a return value to mac_t.set_key()
|
2012-07-16 14:53:37 +02:00 |
|
Martin Willi
|
27e1eabbb5
|
Add a return value to mac_t.get_bytes()
|
2012-07-16 14:53:37 +02:00 |
|
Tobias Brunner
|
99dc3d2c15
|
Check rng return value when seeding OpenSSL RNG
|
2012-07-16 14:53:36 +02:00 |
|
Tobias Brunner
|
1f5291b1ce
|
Check rng return value when generating DH secret in gcrypt plugin
|
2012-07-16 14:53:36 +02:00 |
|
Tobias Brunner
|
5025135f70
|
Check rng return value when generating DH secrets and primes in gmp plugin
|
2012-07-16 14:53:35 +02:00 |
|
Tobias Brunner
|
ae56e1eb97
|
Check rng return value when generating OCSP nonces
|
2012-07-16 14:53:35 +02:00 |
|
Tobias Brunner
|
ce024c1662
|
Relay rng return value in nonce plugin
|
2012-07-16 14:53:34 +02:00 |
|
Tobias Brunner
|
39e807728e
|
RNGs' get_bytes and allocate_bytes return boolean
|
2012-07-16 14:53:34 +02:00 |
|
Reto Buerki
|
605985d122
|
Nonce: Let get_nonce, allocate_nonce return boolean
|
2012-07-16 14:53:34 +02:00 |
|
Martin Willi
|
f3ca96b2bf
|
Add a return value to prf_t.set_key()
|
2012-07-16 14:53:34 +02:00 |
|
Martin Willi
|
ecc080b393
|
Add a return value to prf_t.allocate_bytes()
|
2012-07-16 14:53:34 +02:00 |
|
Martin Willi
|
bc47488323
|
Add a return value to prf_t.get_bytes()
|
2012-07-16 14:53:33 +02:00 |
|
Martin Willi
|
2d56575d52
|
Add a return value to signer_t.set_key()
|
2012-07-16 14:53:33 +02:00 |
|