Andreas Steffen
|
ae8715f956
|
attempt to achieve consistent debugging output
|
2008-03-19 12:06:38 +00:00 |
|
Martin Willi
|
d3a6993777
|
fixed shared key lookup in stroke
|
2008-03-19 10:24:51 +00:00 |
|
Martin Willi
|
3c448f019b
|
fixed peer_cfg lookup when omitting IDr
|
2008-03-19 10:08:59 +00:00 |
|
Martin Willi
|
081ae2eb61
|
fixed CRL check return value on revoked certificates
fixed possible refcounting bugs
generic return_null() implementation
|
2008-03-19 09:44:47 +00:00 |
|
Martin Willi
|
a40708e511
|
fixed compiler warning
|
2008-03-18 14:06:11 +00:00 |
|
Martin Willi
|
bed94c8aeb
|
added generic payload order rules for notifies
|
2008-03-18 12:45:23 +00:00 |
|
Martin Willi
|
7162be5772
|
fixed ike_cfg lookup in stroke
|
2008-03-18 12:40:41 +00:00 |
|
Martin Willi
|
4bfa63ed25
|
added false positive signature check
|
2008-03-18 12:25:39 +00:00 |
|
Martin Willi
|
18be601fcd
|
added missing test case file ([3607])
|
2008-03-18 12:16:36 +00:00 |
|
Martin Willi
|
d7c529f5a6
|
creating public key from RSA private key
RSA key generation and signature test
|
2008-03-18 12:13:51 +00:00 |
|
Andreas Steffen
|
8d49b51f8b
|
made is_newer() a certificate_t method
|
2008-03-18 10:36:08 +00:00 |
|
Martin Willi
|
50045c3b14
|
better normalized tables for SQL plugin (IDs)
|
2008-03-18 09:07:04 +00:00 |
|
Martin Willi
|
34e281ed32
|
enforcing x509_flags on certificate construction
|
2008-03-17 08:06:49 +00:00 |
|
Martin Willi
|
933f80c391
|
logging to SQL database
|
2008-03-15 14:17:09 +00:00 |
|
Martin Willi
|
72d68379dc
|
correctly unregister IKE_SA at the bus
|
2008-03-15 14:08:43 +00:00 |
|
Martin Willi
|
8d04f78d07
|
removed X509_PEER flag; flags are meant to read cert, not to store additional state in cert
removed x509_t.set_flags for the reason above
implemented a simple, generic shared_key_t
|
2008-03-14 15:11:29 +00:00 |
|
Martin Willi
|
39ea88f694
|
credential lookup in mysql/sqlite database
|
2008-03-14 15:06:42 +00:00 |
|
Martin Willi
|
9c410a8806
|
refactored buggy trustchain building, fixed refcount bug
|
2008-03-14 15:04:16 +00:00 |
|
Martin Willi
|
8f1596d606
|
SQL schema for MySQL and SQLite, test data
|
2008-03-14 07:39:01 +00:00 |
|
Tobias Brunner
|
df3462ddbe
|
two small fixes
|
2008-03-13 15:03:06 +00:00 |
|
Martin Willi
|
e42db695e2
|
fixed apidoc grouping
|
2008-03-13 14:53:57 +00:00 |
|
Martin Willi
|
419ee1072e
|
added NetworkManager prototype DBUS policy, applet config
|
2008-03-13 14:41:27 +00:00 |
|
Martin Willi
|
2d94fdfab7
|
added old and unmaintained prototype of NetworkManager applet and authenticator
|
2008-03-13 14:37:11 +00:00 |
|
Martin Willi
|
552cc11b1f
|
merged the modularization branch (credentials) back to trunk
|
2008-03-13 14:14:44 +00:00 |
|
Andreas Steffen
|
b48bdac20b
|
improved P2P_NAT debugging
|
2008-02-27 20:30:39 +00:00 |
|
Tobias Brunner
|
fb7e7dc484
|
refactored connect_manager_t to use the find functions on linked lists
|
2008-02-14 13:42:36 +00:00 |
|
Martin Willi
|
5bbac9ffff
|
split connections with different virtual IPs in different peer_cfgs
respect different peer_cfg's when initiating a CHILD_SA within an existing IKE_SA
|
2008-02-05 12:39:30 +00:00 |
|
Andreas Steffen
|
663fedbe44
|
implemented IKEV2 EAP-SIM server and client test module that use triplets stored in a file. For details see the scenario 'ikev2/rw-eap-sim-rsa'
|
2008-02-04 14:52:06 +00:00 |
|
Martin Willi
|
3b1692c058
|
use identifiers in EAP_SUCCESS/EAP_FAILURE payloads
|
2008-02-04 11:43:10 +00:00 |
|
Andreas Steffen
|
071e037124
|
next_payload must be of type u_int8_t
|
2008-02-01 00:07:56 +00:00 |
|
Andreas Steffen
|
b0e40caafb
|
NAT-T conditions were not inherited during IKE_SA rekeying
|
2008-01-29 01:41:47 +00:00 |
|
Martin Willi
|
3a36ce1164
|
added missing hasher include
|
2008-01-03 10:42:21 +00:00 |
|
Martin Willi
|
b8461a37db
|
fixed EAP-MD5 to accept Name attribute in challenge
|
2007-12-18 10:44:44 +00:00 |
|
Martin Willi
|
0f806802ae
|
implemented Expanded EAP types to support vendor specific methods
|
2007-12-13 17:31:21 +00:00 |
|
Martin Willi
|
3243ac6d5e
|
fixed actual ID length when AT_IDENTITY gets padded
|
2007-12-13 14:39:38 +00:00 |
|
Martin Willi
|
26e2467692
|
ported EAP-AKA branch into trunk
|
2007-12-13 10:54:29 +00:00 |
|
Martin Willi
|
4b403e7672
|
merged EAP-MD5 into trunk
|
2007-12-12 14:29:10 +00:00 |
|
Martin Willi
|
f9d80d53c3
|
accept unknown attributes in config payloads
|
2007-12-09 19:43:41 +00:00 |
|
Martin Willi
|
3895125275
|
removed c++ style comments
fixed compiler warnings
|
2007-12-04 10:48:27 +00:00 |
|
Martin Willi
|
b8249ff5ed
|
fixed mobike/auth_lifetime in conjunction with p2p-natt
|
2007-12-04 10:05:36 +00:00 |
|
Andreas Steffen
|
addc4b3ce4
|
removed redundant server reflexive endpoint debug message
|
2007-12-04 00:45:00 +00:00 |
|
Andreas Steffen
|
3af513753a
|
improved P2P_ENDPOINT debugging
|
2007-12-03 23:06:17 +00:00 |
|
Martin Willi
|
cbfb2aff50
|
added more ./configure build options for
EAP-Identity module
ipsec tools (openac, scepclient)
optional charon/pluto build
charon stroke interface
|
2007-12-03 14:47:15 +00:00 |
|
Martin Willi
|
7805ad302d
|
moved AUTH_LIFETIME handling in its own task (cleaner separation, proper payload order)
|
2007-12-03 10:52:18 +00:00 |
|
Martin Willi
|
8e78e43220
|
added a "libcharon-" prefix to plugins to avoid conflicts
|
2007-12-03 09:03:22 +00:00 |
|
Martin Willi
|
733f336ad3
|
socket_t implementation withouth raw sockets
--disable-raw-socket configure option
prevents charon/pluto to run in parallel
|
2007-11-26 11:20:00 +00:00 |
|
Tobias Brunner
|
17d6e9aa00
|
improving [3361]: moved one of the added return values
|
2007-11-22 11:22:33 +00:00 |
|
Andreas Steffen
|
f210387a6b
|
added two return statements comitted by Marius Tomaschewski
|
2007-11-21 23:42:27 +00:00 |
|
Martin Willi
|
ee61471113
|
implemented RFC4478 (repeated authentication)
changed %V printf handler to take a time delta, %#V now takes two arguments
|
2007-11-20 12:06:40 +00:00 |
|
Martin Willi
|
7b36b734a4
|
fixed callback_job cancellation for threads waiting in the bus
|
2007-11-19 12:32:28 +00:00 |
|