Commit Graph
100 Commits
Author SHA1 Message Date
Andreas Steffen f5da63e937 correct debug 2007-09-02 15:59:59 +00:00
Andreas Steffen 8c4339bdd2 added mobike option to man page 2007-09-02 11:44:32 +00:00
Andreas Steffen 3eac4dfdda added new features 2007-09-02 11:24:53 +00:00
Andreas Steffen 0e3073608d re-introduced the XAUTH_VID compile option 2007-09-02 11:13:24 +00:00
Andreas Steffen cfee19c26c added bitnames for POLICY_BEET and POLICY_MOBIKE flags 2007-08-29 13:17:30 +00:00
Andreas Steffen cdc70899a8 change ipsec route table in UML scenarios 2007-08-29 13:03:34 +00:00
Andreas Steffen 0886e64022 updated index.txt.old 2007-08-29 12:50:26 +00:00
Andreas Steffen c5dfb88ab8 _updown removed from distribution 2007-08-29 11:59:52 +00:00
Andreas Steffen bdc0b55b72 included the FIPS integrity test in LICENSE, CREDITS and NEWs 2007-08-29 11:04:55 +00:00
Andreas Steffen 0bc5a23023 renamed integrity check to integrity test 2007-08-29 10:36:08 +00:00
Andreas Steffen d3250f74af cosmetics 2007-08-29 10:31:37 +00:00
Andreas Steffen 32be2ec599 fixed 64 bit issue (size_t is 32 bit) 2007-08-29 10:30:17 +00:00
Andreas Steffen ab13376877 fips_verify_hmac_signature() now returns a boolean status 2007-08-29 09:43:02 +00:00
Andreas Steffen df29e8f745 SHA-1 HMAC signature is now computed over concatenation of TEXT and RODATA segments 2007-08-29 09:13:08 +00:00
Andreas Steffen fa50e4df48 compute SHA-1 HMAC over libstrongswan TEXT segment for the time being 2007-08-29 08:54:53 +00:00
Andreas Steffen ef5f65626f change self_test to self-test 2007-08-29 07:03:47 +00:00
Andreas Steffen d8b45dcdd2 build fips_signer and fips_signature with USE_INTEGRITY_TEST condition only 2007-08-29 07:02:13 +00:00
Andreas Steffen 2fb15ac606 changed interface of fips_verify_hmac_signature 2007-08-29 05:43:45 +00:00
Andreas Steffen 90bcf8b286 free hmac_signature string after use 2007-08-29 05:43:05 +00:00
Andreas Steffen d64b48a80b beautification 2007-08-29 05:42:22 +00:00
Andreas Steffen 55434a1ba5 started implementation of libstrongswan code integrity check 2007-08-29 00:37:10 +00:00
Andreas Steffen 0e54968584 defined ietfAttr_create_from_string() 2007-08-29 00:35:51 +00:00
Andreas Steffen bf422b1664 fixed typo 2007-08-28 09:59:53 +00:00
Andreas Steffen 12fe0e60df set ignore properties 2007-08-28 07:02:51 +00:00
Andreas Steffen 52d39feb81 set ignore properties 2007-08-28 07:02:23 +00:00
Andreas Steffen 8234dd1216 testing/do-tests is made from do-tests.in by inserting actual routing table 2007-08-28 06:40:39 +00:00
Andreas Steffen 35800a11ee testing/do-tests is made from do-tests.in by inserting actual routing table 2007-08-28 06:38:04 +00:00
Andreas Steffen 9ee1111d8b added --enable-integrity-test and --disable-self-test options 2007-08-28 06:36:31 +00:00
Andreas Steffen 9a63ddd84d initiated support of caIssuers accessLocation 2007-08-17 08:01:10 +00:00
Andreas Steffen 2a48f47406 required CA is that.ca not this.ca 2007-08-17 07:22:04 +00:00
Andreas Steffen 2133593696 matching_request instead of matching_trust must go into the metric 2007-08-17 07:21:26 +00:00
Andreas Steffen 0f9f19f54e fixed maximum path length info in match_requested_ca() 2007-08-17 07:20:27 +00:00
Andreas Steffen 6a85215809 sort attributes alphabetically 2007-08-15 22:58:15 +00:00
Andreas Steffen cd15679122 added caIssuers OID 2007-08-15 09:46:40 +00:00
Andreas Steffen 1bce8ec70d corrected typo 2007-08-15 09:46:14 +00:00
Andreas Steffen 7cbe4a33e9 use symbolic shell variables in library paths 2007-08-15 08:40:16 +00:00
Andreas Steffen 96cc677c96 removed oid.txt and oid.pl in pluto subdir 2007-08-15 08:29:55 +00:00
Andreas Steffen 683d66fe93 aligned pluto/oid.txt to libstrongswan/asn1/oid.txt 2007-08-14 21:21:21 +00:00
Andreas Steffen 2d064166db added Microsof Encrypting File System Extended Key Usage OID 2007-08-14 21:13:53 +00:00
Andreas Steffen b086f62ca1 added Microsof Smartcard Logon Extended Key Usage OID 2007-08-14 21:05:40 +00:00
Andreas Steffen bb70071b26 finetuning of phase1 matching metrics 2007-08-14 19:15:01 +00:00
Andreas Steffen 929b9e367a append new attribute certs at the end 2007-08-14 13:04:36 +00:00
Andreas Steffen 06faefe43d adding attribute certficates to a chained list 2007-08-14 12:27:02 +00:00
Andreas Steffen efddbcb0b5 soft-limit treatment of unmatched certificate requests using a priority metric 2007-08-14 12:26:22 +00:00
Andreas Steffen 3c1100187f replaced hex_str() by fprintf(#B) for printing unknown OIDs 2007-08-14 12:24:35 +00:00
Andreas Steffen 9148e44b39 fixed bug occuring with multiple occurences of the same cacert on a smartcard 2007-08-13 07:47:47 +00:00
Andreas Steffen 8f687a7591 has_rsa_private_key() must also be protected by keys_mutex 2007-08-10 12:10:36 +00:00
Andreas Steffen c045d90a8e corrected debug output 2007-08-10 11:23:45 +00:00
Andreas Steffen dc481855bb set default to uml=false 2007-08-10 10:47:48 +00:00
Andreas Steffen 0dbc039ab5 added listaacerts,listacerts,rereadsecerts,rereadocspcerts,rereadaacerts,rereadacerts to stroke 2007-08-10 10:19:53 +00:00
Andreas Steffen 3f343ad67a fixed typo stroke keyword list 2007-08-10 10:00:59 +00:00
Andreas Steffen f872f9d17d ipsec stroke rereadsecrets|rereadaacerts|rereadacerts|listacerts supported 2007-08-10 09:19:58 +00:00
Andreas Steffen 8ff58b051c ipsec stroke rereadaacerts|rereadacerts supported 2007-08-10 09:17:34 +00:00
Andreas Steffen a74be4f7eb set STROKE_REREAD_FIRST to STROKE_REREAD_SECRETS 2007-08-10 08:49:20 +00:00
Andreas Steffen a027d51106 set STROKE_REREAD_FIRST to STROKE_REREAD_SECRETS 2007-08-10 08:49:03 +00:00
Andreas Steffen 138d7f9a79 added rereadsecrets keyword to stroke 2007-08-10 08:05:03 +00:00
Andreas Steffen 84db83336b support of ipsec rereadsecrets for stroke 2007-08-10 07:16:32 +00:00
Andreas Steffen 3dcf9dbd70 version bump to 4.1.6 2007-08-08 08:17:48 +00:00
Andreas Steffen 037575682a bug fix in linked_list deletion - instead of acerts destroyed certs twice 2007-08-08 06:02:59 +00:00
Andreas Steffen dce4600015 version bumps 2007-08-07 21:14:06 +00:00
Andreas Steffen f51d505e5e implemented listing of attribute certificates 2007-08-07 20:32:11 +00:00
Andreas Steffen 7ad634a2ef tolerate DNS lookup failures 2007-08-06 12:02:12 +00:00
Andreas Steffen d9f129eb1d separate the PSK IDs by spaces 2007-08-06 11:52:21 +00:00
Andreas Steffen afc51a247f debug info on preshared secrets 2007-08-06 11:05:11 +00:00
Andreas Steffen 1eef2ae8d2 added doxygen comments 2007-08-04 10:54:26 +00:00
Andreas Steffen 2b49135d5e doxygen cosmetics 2007-08-04 07:32:37 +00:00
Andreas Steffen ca694c614d improved source routing table creation 2007-08-03 17:59:13 +00:00
Andreas Steffen f7b49faa51 ID_FQDN lost its @ prefix 2007-08-03 13:36:28 +00:00
Andreas Steffen dfcdae0335 recognize strongswan-2.8.7 VID 2007-08-03 11:34:44 +00:00
Andreas Steffen a263d322a1 re-introduced listing of nexthop in ipsec status 2007-08-03 11:16:43 +00:00
Andreas Steffen 90b21fde11 use cgecho for green output 2007-08-03 10:58:45 +00:00
Andreas Steffen d49cc7b383 check source routing table 100 2007-08-03 10:57:37 +00:00
Andreas Steffen 0698d91c31 re-introduced leftnexthop=%direct 2007-08-03 10:57:08 +00:00
Andreas Steffen 1f4357ca4d added routing table 50 for passthrough routes 2007-08-03 10:56:40 +00:00
Andreas Steffen f6f55adb3a use table 100 for source routing 2007-08-03 10:05:15 +00:00
Andreas Steffen ec11518d1b handle dns lookup failures 2007-08-02 18:38:28 +00:00
Andreas Steffen 70c5c34da7 corrected typo 2007-07-30 10:55:09 +00:00
Andreas Steffen db61efdbbb include default route also in src address evaluation 2007-07-13 09:00:39 +00:00
Andreas Steffen 018219ae3a include default route with missing dst field into route evaluation 2007-07-13 06:13:14 +00:00
Andreas Steffen 0761886051 added to ipsec.conf installation path 2007-07-11 16:22:02 +00:00
Andreas Steffen 92901c74f2 version bump to 4.1.5 2007-07-08 19:40:11 +00:00
Andreas Steffen c520944800 version bump to 4.1.5 2007-07-08 19:08:31 +00:00
Andreas Steffen 1fb704404b execute conntrack -F at the outset 2007-07-04 18:55:54 +00:00
Andreas Steffen 13763a385c suppress stderr in start-switches script 2007-07-04 18:50:21 +00:00
Andreas Steffen 0a46e963ff added three mobike scenarios 2007-07-04 17:39:10 +00:00
Andreas Steffen 01a08cb2e7 output crl uri as a printable string instead of a binary blob 2007-07-04 13:36:41 +00:00
Andreas Steffen ed0d8e8008 added entrustVersInfo OID 2007-07-04 12:11:38 +00:00
Andreas Steffen eea626ed25 describe eap option in ipsec.conf.5 man page 2007-07-04 05:42:58 +00:00
Andreas Steffen ae4388dca0 cosmetics 2007-07-04 05:42:09 +00:00
Andreas Steffen 4f22a3e339 removed the ipsec.conf version number 2007-07-04 05:41:51 +00:00
Andreas Steffen 959b01aca5 version bumps 2007-07-03 13:08:13 +00:00
Andreas Steffen 3ba90600f2 recognize strongswan-2.8.6 VID 2007-07-03 13:06:27 +00:00
Andreas Steffen a0a0bdd727 starter bug fix and pkcs11initargs patch by Robert Varga 2007-07-03 12:51:29 +00:00
Andreas Steffen dd0ee786db support of PKCS#11 init arguments required by NSS softoken, patch contributed by Robert Varga 2007-07-03 09:33:02 +00:00
Andreas Steffen e0e6137dd3 support of PKCS#11 init arguments required by NSS softoken, patch contributed by Robert Varga 2007-07-03 09:26:44 +00:00
Andreas Steffen bcac22f3a6 DBG1 level for 'peer supports MOBIKE' debug message 2007-07-02 20:13:15 +00:00
Andreas Steffen 561f88e306 fixed typo 2007-07-02 20:10:26 +00:00
Andreas Steffen 066518270f cosmetics 2007-07-02 17:56:04 +00:00
Andreas Steffen fdd32ee6e5 fix of the bug fix, courtesy of Robert Varga 2007-07-02 17:48:30 +00:00
Andreas Steffen 2f806bd866 bug fix courtesy of Robert Varga 2007-07-02 17:42:16 +00:00