Andreas Steffen
1ecb0b8133
Version bump to 5.9.4rc1
2021-10-12 08:54:03 +02:00
Andreas Steffen
740038e401
Version bump to 5.9.4dr3
2021-10-04 15:47:05 +02:00
Andreas Steffen
1b21a00fa7
Version bump to 5.9.4dr2
2021-09-21 14:18:16 +02:00
Andreas Steffen
3e2841572b
testing: Switch to Python 3
...
Both swidGenerator and strongTNC were migrated to Python 3.
This allows to migrate all testing scripts to Python 3, too.
2021-09-21 09:47:43 +02:00
Andreas Steffen
91896264b2
sec-updater: Use latest versions
2021-09-09 22:54:38 +02:00
Andreas Steffen
d23ca7f345
os_info: Parse /etc/os-release first
2021-09-09 22:54:38 +02:00
Andreas Steffen
0eb1d6c0e6
Version bump to 5.9.4dr1
2021-08-22 10:55:37 +02:00
Andreas Steffen
4817d5ed0d
Version bump to 5.9.3
2021-07-06 14:00:39 +02:00
Andreas Steffen
a09a905e1d
vici: Suppress trailing nul character
2021-07-06 12:06:23 +02:00
Andreas Steffen
30fab57124
Version bump to 5.9.3rc1
2021-06-24 09:18:54 +02:00
Andreas Steffen
4baca5ca80
testing: Fixed ikev2/farp scenario
2021-06-22 12:32:35 +02:00
Andreas Steffen
dbd1534875
Version bump to 5.9.3dr4
2021-06-22 10:33:07 +02:00
Andreas Steffen
eba2622587
testing: Migrate ikev2-stroke-bye scenarios to vici
2021-06-22 10:23:06 +02:00
Andreas Steffen
706c58b291
testing: Fixed pretest script of ikev1/rw-psk-aggressive scenario
2021-06-21 12:03:36 +02:00
Andreas Steffen
9c85a52956
Version bump to 5.9.3dr3
2021-06-04 09:28:17 +02:00
Andreas Steffen
cc4338267e
testing: Added openssl-ikev2/net2net-sha3-rsa-cert scenario
2021-06-03 14:20:06 +02:00
Andreas Steffen
5688e631e3
openssl: Support SHA-3 based RSA_EMSA_PKCS1 signatures
2021-06-03 14:20:06 +02:00
Andreas Steffen
de5ca4021a
testing: Test wolfssl plugin
2021-06-03 10:22:59 +02:00
Andreas Steffen
8bbd7bbd36
wolfssl: Full support of SHA3 signatures
2021-06-03 10:20:18 +02:00
Andreas Steffen
e0044e5f48
credential_factory: Store name of plugin registering a builder
2021-06-01 21:12:46 +02:00
Andreas Steffen
62c5ef035c
wolfssl: Set RSA key type
2021-05-30 12:40:08 +02:00
Andreas Steffen
d415673565
Version bump to 5.9.3dr2
2021-05-21 10:00:41 +02:00
Andreas Steffen
7c5a2974b9
testing: Reorganizing IKEv1 and IKEv2 examples
...
For documentation purposes the new folders ikev1-algs, ikev2-algs,
ikev1-multi-ca and ikev2-multi-ca have been created. Most of the
test cases have now been converted to the vici interface. The
remaining legacy stroke scenarios yet to be converted have been put
into the ikev2-stroke-bye folder.
For documentation purposes some legacy stroke scenarios will be kept
in the ikev1-stroke, ikev2-stroke and ipv6-stroke folders.
2021-05-21 09:42:50 +02:00
Andreas Steffen
09df86c033
Version bump to 5.9.3dr1
2021-03-31 09:59:55 +02:00
Andreas Steffen
66ba50b217
testing: Migrated p2pnat/medsrv-psk scenario to vici
2021-03-30 22:12:00 +02:00
Andreas Steffen
03e1272ff2
testing: Migrated p2pnat/behind-same-nat scenario to vici
2021-03-30 22:12:00 +02:00
Andreas Steffen
68154033bb
testing: Store mars credentials in the swanctl directory
2021-03-30 22:12:00 +02:00
Andreas Steffen
2cbf7da51a
testing: Migrated redirect-active scenario to vici
2021-03-30 22:12:00 +02:00
Andreas Steffen
511b860916
testing: Migrated ha/both-active scenario to vici
2021-03-30 18:57:49 +02:00
Andreas Steffen
5c22e94f0f
testing: Migrated ha/active-passive scenario to vici
2021-03-30 18:57:49 +02:00
Andreas Steffen
737f7fce51
testing: Switched PTS measurements to /usr/sbin
...
Due to Debian 10 linking /bin to /usr/bin which drastically
increased the number of files in /bin, the PTS measurement
was switched to /usr/sbin with a lesser number of files.
2021-03-23 10:54:48 +01:00
Andreas Steffen
f412c97648
wolfssl: Support SHAKE_256
2021-03-20 11:19:12 +01:00
Andreas Steffen
a91eb3eb96
wolfssl: Support SHA3
2021-03-20 11:15:42 +01:00
Andreas Steffen
b57215ba2b
wolfssl: Support AES_ECB
2021-03-20 11:15:42 +01:00
Andreas Steffen
bd323ae6c8
openssl: Migrate from deprecated EC_POINT_[set|get]_affine_coordinates_GFp() functions
2021-03-19 08:50:27 +01:00
Andreas Steffen
6aef079f59
testing: Bump guest kernel to Linux 5.11
2021-03-07 14:39:44 +01:00
Andreas Steffen
87ba3a424d
Version bump to 5.9.2
2021-02-26 11:30:13 +01:00
Andreas Steffen
356f87355b
Version bump to 5.9.2rc2
2021-02-21 10:40:34 +01:00
Andreas Steffen
20c47af319
testing: Use TLS 1.3 in TNC PT-TLS tests
2021-02-21 09:48:34 +01:00
Andreas Steffen
9f55246018
testing: Added mgf1 plugin to load statement
2021-02-19 17:41:44 +01:00
Andreas Steffen
283b352cee
Merge branch 'tls-fixes'
2021-02-18 20:28:33 +01:00
Andreas Steffen
d08fa4bd0a
Version bump to 5.9.2rc1
2021-02-18 20:16:17 +01:00
Andreas Steffen
0d43b39931
testing: extended sleep time tkm/xfrmproxy tests
2021-02-12 09:44:00 +01:00
Andreas Steffen
ab58f95b12
Version bump to 5.9.2dr2
2021-02-12 08:17:54 +01:00
Andreas Steffen
fcb595f961
Version bump to 5.9.2dr1
2021-01-08 11:00:15 +01:00
Andreas Steffen
2889133cc0
imc_attestation: Fixed double free of tpm_version_info chunk
2021-01-08 11:00:15 +01:00
Andreas Steffen
08760dd927
tpm: Intel FW TPM always uses locality 0
2021-01-08 11:00:15 +01:00
Andreas Steffen
2ea1dac203
libimcv: Support symlinks introduced by usrmerge
...
Debian, Ubuntu, Fedora et. al. started to apply usrmerge to their
latest Linux distributions, i.e. /bin, /sbin, and /lib are now
symbolical links to /usr/bin, /usr/sbin, and /usr/lib, respectively.
Since executables and libraries are contained only once in Linux
packages (e.g. /bin/cp in coreutils but not /usr/bin/cp) this leads
to missing file measurments due to the symlinks when doing remote
attestation.
The new ita_attr_symlinks PA-TNC attribute fixes this problem by
collecting symbolic links pointing to directories on the client
platform.
2021-01-08 11:00:15 +01:00
Andreas Steffen
9b4a2322d6
libimcv: Evaluate IMA SHA-256 measurements
2021-01-08 11:00:15 +01:00
Andreas Steffen
f397fc02e9
configure: Fixed test for imv_swima
2020-12-24 13:08:49 +01:00
Andreas Steffen
0fc6767097
Version bump to 5.9.1
2020-11-10 20:45:13 +01:00
Andreas Steffen
d63e6156bb
Version bump to 5.9.1rc1
2020-11-01 18:45:34 +01:00
Andreas Steffen
f3d96b7bc9
Version bump to 5.9.1dr1
2020-10-07 16:54:32 +02:00
Andreas Steffen
3e5a528aec
tpm: Auto-detection of legacy TPM 2.0 devices
2020-10-07 16:54:32 +02:00
Andreas Steffen
3ef5b23903
pts: Variable size PCR banks
2020-10-07 16:54:32 +02:00
Andreas Steffen
56de4dc596
libtpmtss: Remove aik_blob debug output
2020-10-07 16:54:32 +02:00
Andreas Steffen
d647a8f91d
pts: Parse TPM 2.0 BIOS/EFI event log
2020-10-07 16:54:32 +02:00
Andreas Steffen
da1d7815ef
tpm: TPM 2.0 supports SHA3 and CMAC
2020-10-07 16:54:32 +02:00
Andreas Steffen
2205c75bad
Version bump to 5.9.0
2020-07-29 13:08:09 +02:00
Andreas Steffen
2eec7efd46
Version bump to 5.9.0rc1
2020-07-21 22:43:36 +02:00
Andreas Steffen
d470422974
Version bump to 5.9.0dr2
2020-06-14 12:15:44 +02:00
Andreas Steffen
12e4dbb231
Version bump to 5.9.0dr1
2020-06-06 15:02:42 +02:00
Andreas Steffen
3273667b0b
Version bump to 5.8.4
2020-03-29 12:49:52 +02:00
Andreas Steffen
0728387ea9
Version bump to 5.8.3
2020-03-24 16:01:04 +01:00
Andreas Steffen
c88a4996fa
Version bump to 5.8.3rc1
2020-03-19 08:43:10 +01:00
Andreas Steffen
68e8fedccb
Version bump to 5.8.3dr1
2020-03-04 22:27:13 +01:00
Andreas Steffen
e5f18a46b7
Version bump to 5.8.2
2019-12-17 14:30:41 +01:00
Andreas Steffen
b9eade0ca2
Version bump to 5.8.2rc2
2019-12-16 22:11:43 +01:00
Andreas Steffen
c2d6ac1124
Version bump to 5.8.2rc1
2019-12-07 23:06:22 +01:00
Andreas Steffen
a43407df52
drbg: Don't generate more than 2^16 bytes
2019-11-28 21:29:26 +01:00
Andreas Steffen
86a4b95eac
drbg: Use AES_ECB encryption
2019-11-28 17:03:09 +01:00
Andreas Steffen
b7e840af5c
gcrypt: Added AES_ECB support
2019-11-28 17:03:09 +01:00
Andreas Steffen
a46e436e29
af-alg: Added AES_ECB support
2019-11-28 17:03:09 +01:00
Andreas Steffen
f884ee6497
aes: Added AES_ECB support
2019-11-28 17:03:09 +01:00
Andreas Steffen
6f44bd6fe8
openssl: Added AES_ECB support
2019-11-28 17:03:08 +01:00
Andreas Steffen
20f3d04b13
aesni: Added AES_ECB support
2019-11-28 17:03:08 +01:00
Andreas Steffen
11e9d2b8d1
drbg: The drbg instance owns the entropy rng
2019-11-28 09:55:56 +01:00
Andreas Steffen
ccaedf8761
Version bump to 5.8.2dr2
2019-11-26 22:36:55 +01:00
Andreas Steffen
4f4e026d3b
Version bump to 5.8.2dr1
2019-10-18 16:26:41 +02:00
Andreas Steffen
f05e9eebb0
testing: Added drbg plugin where required
2019-10-18 16:24:39 +02:00
Andreas Steffen
e36af6fc2f
gmp: Use NIST DRBG for RSA key pair generation
2019-10-18 16:24:39 +02:00
Andreas Steffen
ea41f759b3
stroke: List drbgs in list_algs
2019-10-18 16:24:39 +02:00
Andreas Steffen
c738704ab6
vici: List drbgs in get_algorithms
2019-10-16 16:46:24 +02:00
Andreas Steffen
6d3a743d90
ntru: Replaced ntru_drbg by drbg
2019-10-16 16:46:24 +02:00
Andreas Steffen
737375a2d2
drbg: Implemented NIST SP-800-90A DRBG
2019-10-16 16:46:24 +02:00
Andreas Steffen
1e38151b30
Version bump to 5.8.1
2019-09-02 14:39:16 +02:00
Andreas Steffen
7cfe85cc85
Version bump to 5.8.1rc2
2019-08-29 11:15:18 +02:00
Andreas Steffen
d2b771203f
Version bump to 5.8.1rc1
2019-08-28 16:38:40 +02:00
Andreas Steffen
ab1aa03bf5
Version bump to 5.8.1dr1
2019-06-26 17:32:33 +02:00
Andreas Steffen
55dd0361b8
Version bump to 5.8.0
2019-05-20 12:31:08 +02:00
Andreas Steffen
74ac0c9efd
Version bump to 5.8.0rc1
2019-05-10 12:55:48 +02:00
Andreas Steffen
47879ca638
testing: Use strongswan systemd service
2019-05-10 12:55:09 +02:00
Andreas Steffen
6d8e6ec61b
testing: Load PEM keys in ikev2/net2-net-rsa scenario
2019-05-10 12:54:28 +02:00
Andreas Steffen
c9d898c9f4
testing: Copy keys and certs to swanctl/rw-newhope-bliss scenario
2019-05-10 12:53:33 +02:00
Andreas Steffen
a89ad28b89
testing: Upgrade to Linux 5.1 kernel
2019-05-08 14:56:48 +02:00
Andreas Steffen
df6441a13f
pki: Allow inclusion of [unsupported] critical X.509 extension
2019-05-08 14:56:48 +02:00
Andreas Steffen
b213204b3b
testing: Updated build-certs script
2019-05-08 14:56:48 +02:00
Andreas Steffen
cfeae14b06
testing: Deleting dynamic test keys and certificates
2019-05-08 14:56:48 +02:00
Andreas Steffen
92c001f766
testing: Remove dynamic keys and certs from repository
2019-05-08 14:56:48 +02:00
Andreas Steffen
00f1d09729
testing: Build data.sql files for SQL test cases
2019-05-08 14:56:48 +02:00