Andreas Steffen
|
270bb348e3
|
pluto now supports SQL-based virtual IP pools
|
2009-10-14 14:30:14 +02:00 |
Martin Willi
|
7daf5226b7
|
removed trailing spaces ([[:space:]]+$)
|
2009-09-04 13:46:09 +02:00 |
Tobias Brunner
|
abff49a7ff
|
Handling of new lifetime limits added to stroke.
|
2009-09-01 12:53:44 +02:00 |
Martin Willi
|
750bbcf9a8
|
added support for %prompt-ing private key passhprases in strokes "ipsec secrets"
|
2009-08-26 11:23:50 +02:00 |
Tobias Brunner
|
26965b4ef3
|
OpenSolaris needs libsocket and libnsl for socket().
|
2009-08-14 14:50:53 +02:00 |
Tobias Brunner
|
cc396286e8
|
Defined some missing fixed-width int types on OpenSolaris.
|
2009-08-14 14:50:22 +02:00 |
Tobias Brunner
|
599d2bcea8
|
Revert "gperf under FreeBSD does not know the -m option."
This reverts commit 0ead254919 .
|
2009-07-16 15:15:09 +02:00 |
Tobias Brunner
|
0ead254919
|
gperf under FreeBSD does not know the -m option.
We could use AC_PATH_PROGS_FEATURE_CHECK (added in Autoconf 2.62) to check for this option.
|
2009-07-14 12:09:22 +02:00 |
Andreas Steffen
|
b75d6242c9
|
optimized gperf
|
2009-05-15 22:54:29 +02:00 |
Martin Willi
|
832427064c
|
added a "purgeike" command to stroke, deleting all IKE_SAs without a CHILD_SA
|
2009-05-15 11:02:56 +02:00 |
Tobias Brunner
|
8c5d72cd0b
|
removing svn keyword $Id$ from all files
|
2009-04-30 13:19:35 +00:00 |
Tobias Brunner
|
d24a74c5b4
|
merging changes from portability branch back to trunk
important change for developers: %Y replaces %D to print identities!
|
2009-04-30 11:37:54 +00:00 |
Martin Willi
|
466f11bfaf
|
added .gitignore files, ready for the switch
|
2009-04-30 07:42:30 +00:00 |
Martin Willi
|
a44bb9345f
|
merged multi-auth branch back into trunk
|
2009-04-14 10:34:24 +00:00 |
Martin Willi
|
6b83549d1a
|
list assigned leases using "ipsec leases"
|
2008-12-10 13:00:02 +00:00 |
Andreas Steffen
|
c117f24e61
|
renamed proxy to proxy_mode in stroke_msg.h
|
2008-11-11 07:28:52 +00:00 |
Andreas Steffen
|
d487b4b727
|
preliminary support of Mobile IPv6
|
2008-11-11 06:37:37 +00:00 |
Tobias Brunner
|
1adaa02bb2
|
merging kernel_pfkey plugin back from kernel-interface branch
|
2008-10-14 08:46:31 +00:00 |
Andreas Steffen
|
d1cbe55127
|
implemented ipsec listalgs as a stroke command
|
2008-10-08 07:00:13 +00:00 |
Martin Willi
|
9482208633
|
crypto_factory algorithm enumeration API
implementation of "ipsec listalgs"
|
2008-08-28 09:24:42 +00:00 |
Martin Willi
|
822901061b
|
ported parts of two-sim branch
eap_identity parameter to exchange in eap_identity
some auth_info/peer_cfg refactorings
fixed some bugs, introduced new ones
|
2008-08-22 10:44:51 +00:00 |
Andreas Steffen
|
556e426fd8
|
renamed STROKE_DOWNSRCIP to STROKE_DOWN_SRCIP
|
2008-07-01 13:47:26 +00:00 |
Martin Willi
|
131064995a
|
added a "ipsec down-srcip <start> [<end>]" command to terminate IKE_SAs by remote virtual ip
|
2008-07-01 12:48:56 +00:00 |
Tobias Brunner
|
d4aad55434
|
IPComp for IKEv2
|
2008-05-08 16:19:11 +00:00 |
Martin Willi
|
3444390241
|
supporting multiple comma seperated subnets in left/rightsubnet definition
e.g. leftsubnet=10.2.0.0/16,10.4.0.0/16
|
2008-04-25 12:41:37 +00:00 |
Tobias Brunner
|
6439267a8c
|
support for hash and URL encoded certificate payloads in charon
|
2008-04-18 11:24:45 +00:00 |
Martin Willi
|
b360e3933d
|
respecting ipsec.conf cachecrls= option
|
2008-04-17 15:01:57 +00:00 |
Martin Willi
|
0644ebd3de
|
implemented IKE_SA uniqueness using ipsec.conf uniqueids paramater
additionally supports a "keep" value to keep the old IKE_SA
|
2008-04-14 13:23:24 +00:00 |
Martin Willi
|
cdcfe777f4
|
implementation of an CFG attribute framework, currently supporting virtual IPs
updated ipsec.conf sourceip parameter to support
CIDR notatation to serve from a pool
%poolname to query a separate (database?) pool
|
2008-04-09 12:54:47 +00:00 |
Tobias Brunner
|
dc04b7c743
|
mediation extension adapted to the naming convention of the current version of the draft. note: the external interface (config, autotools) has not yet been changed
|
2008-03-26 18:40:19 +00:00 |
Martin Willi
|
552cc11b1f
|
merged the modularization branch (credentials) back to trunk
|
2008-03-13 14:14:44 +00:00 |
Martin Willi
|
0f806802ae
|
implemented Expanded EAP types to support vendor specific methods
|
2007-12-13 17:31:21 +00:00 |
Andreas Steffen
|
d41a77e45c
|
added RCSID
|
2007-10-08 20:12:25 +00:00 |
Tobias Brunner
|
d5cc175833
|
experimental P2P-NAT-T for IKEv2 merged back from branch
|
2007-10-03 15:10:41 +00:00 |
Martin Willi
|
9dae1bed00
|
implemented IKEv2 force_encap connection parameter
enforces UDP encapsulation by faking NAT detection payloads
to hurdle restrictive firewalls
|
2007-10-01 12:19:39 +00:00 |
Martin Willi
|
9164e49ac0
|
added mobike=yes|no connection option
yes: include mobike support notifies as initiator
no: only enable mobike as responder when initiator supports it
default: yes
|
2007-08-29 12:11:25 +00:00 |
Andreas Steffen
|
0dbc039ab5
|
added listaacerts,listacerts,rereadsecerts,rereadocspcerts,rereadaacerts,rereadacerts to stroke
|
2007-08-10 10:19:53 +00:00 |
Andreas Steffen
|
3f343ad67a
|
fixed typo stroke keyword list
|
2007-08-10 10:00:59 +00:00 |
Andreas Steffen
|
a74be4f7eb
|
set STROKE_REREAD_FIRST to STROKE_REREAD_SECRETS
|
2007-08-10 08:49:20 +00:00 |
Andreas Steffen
|
a027d51106
|
set STROKE_REREAD_FIRST to STROKE_REREAD_SECRETS
|
2007-08-10 08:49:03 +00:00 |
Andreas Steffen
|
138d7f9a79
|
added rereadsecrets keyword to stroke
|
2007-08-10 08:05:03 +00:00 |
Andreas Steffen
|
84db83336b
|
support of ipsec rereadsecrets for stroke
|
2007-08-10 07:16:32 +00:00 |
Andreas Steffen
|
3eb9630071
|
support of left|rightgroups parameter
|
2007-05-20 15:38:36 +00:00 |
Andreas Steffen
|
f9e0dc3e02
|
added listaacerts, listacerts, listgroups, rereadaacerts, and rereadacerts keywords
|
2007-04-14 17:33:02 +00:00 |
Martin Willi
|
0c8aba6771
|
added support for 0.0.0.0/0 traffic selectors
fixed routing to make correct 0.0.0.0/0 routes
|
2007-03-01 11:42:08 +00:00 |
Martin Willi
|
c60c7694d2
|
merged tasking branch into trunk
|
2007-02-28 14:04:36 +00:00 |
Andreas Steffen
|
f13570a0d6
|
support of ca info records
|
2007-02-23 15:13:33 +00:00 |
Andreas Steffen
|
34d7935ed4
|
added support of ca information records and ocsp keywords
|
2007-02-14 01:03:08 +00:00 |
Martin Willi
|
f27f6296e6
|
merged EAP framework from branch into trunk
includes a lot of other modifications
|
2007-02-12 15:56:47 +00:00 |
Martin Willi
|
7652be891c
|
added support for transport mode and (experimental!) BEET mode
support for the type=transport/tunnel parameter in charon
|
2006-12-21 14:35:17 +00:00 |