Andreas Steffen
|
e8eef89718
|
Add features support to x509 plugin
|
2011-10-26 12:09:03 +02:00 |
|
Andreas Steffen
|
658ed38d74
|
Migrated x509_pkcs10 to INIT/METHOD macros
|
2011-09-29 16:47:36 +02:00 |
|
Andreas Steffen
|
3a4c3fdb93
|
Migrated x509_ocsp_response to INIT/METHOD macros
|
2011-09-29 07:50:32 +02:00 |
|
Andreas Steffen
|
fbe52bb008
|
Migrated x509_ocsp_request to INIT/METHOD macros
|
2011-09-28 20:58:15 +02:00 |
|
Andreas Steffen
|
6f07a5b46f
|
Migrated x509_ac to INIT/METHOD macros
|
2011-09-28 20:43:07 +02:00 |
|
Tobias Brunner
|
e26304348c
|
Replaced simple iterator usages.
|
2011-07-06 09:43:45 +02:00 |
|
Andreas Steffen
|
8af1e3606b
|
fixed loop error in parsing of OCSP basic responses
|
2011-04-26 12:32:19 +02:00 |
|
Martin Willi
|
c55818ebb0
|
Added a (not yet implemented) plugin_t method to reload plugin configuration
|
2011-04-15 10:07:13 +02:00 |
|
Martin Willi
|
787b5884aa
|
Added a get_name() function to plugin_t, create_plugin_enumerator enumerates over plugin_t
|
2011-04-15 10:07:12 +02:00 |
|
Andreas Steffen
|
4953a78a66
|
fixed parsing of X.509 certificatePolicies
|
2011-03-11 12:38:00 +01:00 |
|
Andreas Steffen
|
d390b3b901
|
[hopefully] fixed pathlen problem on ARM platforms
|
2011-02-10 15:51:18 +01:00 |
|
Tobias Brunner
|
84545f6e7c
|
Some typos fixed.
|
2011-02-07 11:39:41 +01:00 |
|
Andreas Steffen
|
c4fd3b2f42
|
introduced libstrongswan.x509.enforce_critical parameter
|
2011-02-05 09:01:18 +01:00 |
|
Tobias Brunner
|
6f61b32e52
|
Properly initialize variable 'critical'.
|
2011-02-04 18:02:49 +01:00 |
|
Martin Willi
|
b088fd4a76
|
Slightly renamed different policyConstraints to distinguish them better
|
2011-01-05 16:46:05 +01:00 |
|
Martin Willi
|
07eee80401
|
Added support for inhibitAnyPolicy constraint to x509 plugin
|
2011-01-05 16:46:05 +01:00 |
|
Martin Willi
|
b3d359e58f
|
Use a generic getter for all numerical X.509 constraints
|
2011-01-05 16:46:05 +01:00 |
|
Martin Willi
|
55e4d8982f
|
Added support for delta CRLs to x509 plugin
|
2011-01-05 16:46:03 +01:00 |
|
Martin Willi
|
1019cad161
|
Moved CRL distribution point building to an exportable function
|
2011-01-05 16:46:03 +01:00 |
|
Martin Willi
|
a6478a0402
|
Simplified format of x509 CRL URI parsing/enumerator
|
2011-01-05 16:46:03 +01:00 |
|
Martin Willi
|
51b7e9ce72
|
Respect enforce_critical setting in x509 plugin CRLs
|
2011-01-05 16:46:03 +01:00 |
|
Martin Willi
|
d14d3b31b8
|
Parse CRL extensions in a switch statement
|
2011-01-05 16:46:03 +01:00 |
|
Martin Willi
|
a742d97fb8
|
Added support for policyConstraints to x509 plugin
|
2011-01-05 16:46:02 +01:00 |
|
Martin Willi
|
5dba5852fc
|
Slightly renamed X509_NO_PATH_LEN_CONSTRAINT to use it for PolicyConstraints, too
|
2011-01-05 16:46:02 +01:00 |
|
Martin Willi
|
5a0caa4b3a
|
Added policyMappings support to x509 plugin
|
2011-01-05 16:46:02 +01:00 |
|
Martin Willi
|
20bd78106e
|
Added certificatePolicy support to x509 plugin
|
2011-01-05 16:46:02 +01:00 |
|
Martin Willi
|
7eeb37dea9
|
Added support for generating NameConstraints in x509 plugin
|
2011-01-05 16:46:00 +01:00 |
|
Martin Willi
|
7c325cee5c
|
Added support for parsing NameConstraints in x509 plugin
|
2011-01-05 16:46:00 +01:00 |
|
Martin Willi
|
dbfbbec368
|
Added name constraint enumerator to x509 interface
|
2011-01-05 16:46:00 +01:00 |
|
Martin Willi
|
a199ef15e6
|
Migrated x509_cert_t to INIT/METHOD macros
|
2011-01-05 16:46:00 +01:00 |
|
Martin Willi
|
6ffd9f88ce
|
Use subject, not issuer, of CRL issuing certificate
|
2011-01-05 16:45:56 +01:00 |
|
Martin Willi
|
dffb176f2b
|
CRLSign keyUsage or CA basicConstraint are sufficient for CRL validation
|
2011-01-05 16:45:56 +01:00 |
|
Martin Willi
|
ece5ac2271
|
Parse and encode crlSign keyUsage flag in x509 plugin
|
2011-01-05 16:45:56 +01:00 |
|
Martin Willi
|
4e508517d7
|
Added support for CRL Issuers to x509 and OpenSSL plugins
|
2011-01-05 16:45:55 +01:00 |
|
Andreas Steffen
|
36e4aa7b9e
|
Migrated x509_plugin_t to INIT/METHOD macros
|
2010-12-04 10:07:56 +01:00 |
|
Martin Willi
|
663e735553
|
Compare subject against all key identifiers in has_subject()
|
2010-09-09 17:46:20 +02:00 |
|
Andreas Steffen
|
f85f0c2795
|
has_subject() now resolves ID_KEY_IDs
|
2010-09-09 17:15:46 +02:00 |
|
Martin Willi
|
d987946e80
|
Added a final flag to builder registration to enumerate the actually supported algorithms
|
2010-09-03 18:09:48 +02:00 |
|
Martin Willi
|
772cba39e4
|
Parse UPN subjectAltNames in x509 plugin
|
2010-08-10 18:46:31 +02:00 |
|
Martin Willi
|
3429be9514
|
Use a dedicated build part for challenge passwords, BUILD_PASSPHRASE gets obsolete
|
2010-08-04 09:26:21 +02:00 |
|
Martin Willi
|
0406eeaacb
|
Support different encoding types in certificate.get_encoding()
|
2010-07-13 13:53:20 +02:00 |
|
Martin Willi
|
da9724e6d0
|
Renamed key_encod{ing,der}_t and constants, prepare for generic credential encoding
|
2010-07-13 11:29:35 +02:00 |
|
Martin Willi
|
7a74295e42
|
Select subjectAltName address family using address length in x509 plugin
|
2010-06-24 12:01:18 +02:00 |
|
Martin Willi
|
09f38ebe54
|
Use CAs subjectKeyIdentifier as CRLs authorityKeyIdentifier
|
2010-05-21 16:38:19 +02:00 |
|
Martin Willi
|
13c593f126
|
Added support for CRL generation to x509 plugin
|
2010-05-21 16:25:51 +02:00 |
|
Martin Willi
|
aab861608a
|
Removed is_newer() from certificate_t, obsoleting all implementations
|
2010-05-21 16:25:51 +02:00 |
|
Martin Willi
|
654218a31b
|
Migrated x509_crl_t to INIT/METHOD macros
|
2010-05-21 16:25:51 +02:00 |
|
Tobias Brunner
|
8b0e09103b
|
Adding DBG_LIB to all calls of libstrongswan's version of DBG*.
|
2010-04-06 12:47:40 +02:00 |
|
Andreas Steffen
|
ceeb9bac8b
|
critical keyUsage extension must be parsed
|
2010-03-07 20:51:34 +01:00 |
|
Andreas Steffen
|
1ec8f22de2
|
set Certificate Sign and CRL Sign flags in keyUsage extension if CA is true
|
2010-03-07 17:27:53 +01:00 |
|