Commit Graph

  • 4b9b4dc956 Merge branch 'vici-stuck' Tobias Brunner 2021-06-21 09:59:28 +0200
  • eec3bdb04a vici: Signal waiting threads when skipping disconnected connections Tobias Brunner 2021-05-07 15:32:49 +0200
  • b0e2187b6b vici: Signal waiting threads when removing a connection entry Tobias Brunner 2021-05-07 10:53:57 +0200
  • 030e80957d kernel-netlink: Don't wait for VIPs to disappear during de-initialization Tobias Brunner 2021-06-10 11:34:37 +0200
  • 0fc8cf0013 NEWS: Add news for 5.9.3 Tobias Brunner 2021-06-18 10:31:31 +0200
  • 859dedeab7 testing: Update Anet to version 0.4.2 Adrian-Ken Rueegsegger 2021-06-16 18:27:23 +0200
  • d7a9e723f3 charon-tkm: Remove useless checks when deriving IKE keys Stefan Berghofer 2020-03-04 17:58:21 +0100
  • 22e7900718 charon-tkm: Delegate encryption/decryption of IKE traffic to TKM Stefan Berghofer 2019-07-23 12:42:26 +0200
  • 6537be9c8d pkcs11: Change how unavailable attributes like CKA_TRUSTED are handled Tobias Brunner 2021-05-20 16:52:49 +0200
  • a90716cd4d receiver: Avoid division by 0 after system start if CLOCK_MONOTONIC is used Tobias Brunner 2021-06-08 15:33:36 +0200
  • 8dbf40d19a charon-nm: Simplify certificate enumeration and allow IDs other than DNs Tobias Brunner 2021-06-09 16:36:57 +0200
  • ae71f8357d dhcp: Move log messages for received packets Tobias Brunner 2021-05-28 09:14:59 +0200
  • 4e29d6fac1 bus: Extend and reorder arguments of ike_derived_keys() hook Thomas Egerer 2021-06-01 14:36:21 +0200
  • 9c85a52956 Version bump to 5.9.3dr3 5.9.3dr3 Andreas Steffen 2021-06-04 09:28:12 +0200
  • e166423856 ikev1: Fix flags so NAT Vendor IDs are sent again Tobias Brunner 2021-06-04 09:12:33 +0200
  • cc4338267e testing: Added openssl-ikev2/net2net-sha3-rsa-cert scenario Andreas Steffen 2021-06-03 12:27:16 +0200
  • 5688e631e3 openssl: Support SHA-3 based RSA_EMSA_PKCS1 signatures Andreas Steffen 2021-06-03 12:24:19 +0200
  • de5ca4021a testing: Test wolfssl plugin Andreas Steffen 2021-06-03 10:22:59 +0200
  • 8bbd7bbd36 wolfssl: Full support of SHA3 signatures Andreas Steffen 2021-06-01 20:13:20 +0200
  • e0044e5f48 credential_factory: Store name of plugin registering a builder Andreas Steffen 2021-05-30 06:32:50 +0200
  • 62c5ef035c wolfssl: Set RSA key type Andreas Steffen 2021-05-30 12:39:59 +0200
  • d654117c66 ccm: Destroy IV generator on crypter creation failure Marius Tomaschewski 2021-04-22 12:47:18 +0200
  • a82f13e7ce dhcp: Log MAC address when sending DISCOVER message Tobias Brunner 2021-05-07 16:17:54 +0200
  • 6c49ddfbca ike: Add additional Vendor IDs for third-party implementations Noel Kuntze 2021-05-10 13:03:36 +0200
  • d415673565 Version bump to 5.9.3dr2 5.9.3dr2 Andreas Steffen 2021-05-21 10:00:41 +0200
  • 7c5a2974b9 testing: Reorganizing IKEv1 and IKEv2 examples Andreas Steffen 2021-04-04 10:45:46 +0200
  • db93938297 notify-payload: Update reference for notify types for PPKs Tobias Brunner 2021-05-11 14:27:08 +0200
  • c13a1c2829 Don't report current text in parser error messages Tobias Brunner 2021-05-10 14:55:45 +0200
  • cf6a164108 testing: Replace kvm with qemu-system-x86_64 Noel Kuntze 2021-04-22 16:33:34 +0200
  • 1eb2d149db testing: Use host-passthrough CPU mode for all KVM guests Tobias Brunner 2021-05-04 15:40:45 +0200
  • d4c337a42f Use Botan 2.18.0 for tests Tobias Brunner 2021-05-07 14:48:17 +0200
  • f0c25960ed openssl: Consider authorityKeyIdentifier in issued_by() Adrian-Ken Rueegsegger 2021-04-14 15:34:29 +0200
  • 027c5c9dcb x509: Consider authorityKeyIdentifier in issued_by() Adrian-Ken Rueegsegger 2021-04-14 15:20:27 +0200
  • 97c9158378 openssl: Bring CRL issued_by() in line with x509 plugin Adrian-Ken Rueegsegger 2021-04-14 13:45:30 +0200
  • 9f468f454a ike: Set DCSP on keepalive packets Adrian-Ken Rueegsegger 2021-03-09 18:07:34 +0100
  • 546f61d3c8 openssl: Add support for AES in CCM mode Tobias Brunner 2021-05-04 18:19:57 +0200
  • 5191c2b063 testing: Make sure $SHAREDDIR exists before mounting it Noel Kuntze 2021-04-22 14:28:34 +0200
  • a730873211 github: Fix python build and checks on older Ubuntu releases Tobias Brunner 2021-05-05 18:46:49 +0200
  • 9535c3f778 wolfssl: Properly handle failure to initialize SHAKE_256 Tobias Brunner 2021-05-06 11:03:19 +0200
  • 2f650e085b github: Don't fail LGTM test with an error if variables are missing Tobias Brunner 2021-05-05 18:56:58 +0200
  • 260e7b55f6 github: Fail LGTM test if required environment variables aren't set Noel Kuntze 2021-04-15 14:49:19 +0200
  • cd7b80e869 github: Make LGTM project ID configurable via environment variable Tobias Brunner 2021-05-05 16:39:26 +0200
  • f830e71457 github: Fail sonarcloud test if required environment variables aren't set Noel Kuntze 2021-04-17 07:22:39 +0200
  • c603704bb3 github: Always upload lint results from Android build Tobias Brunner 2021-05-05 14:30:36 +0200
  • 742e0f213c github: Fix build on Ubuntu 20.04 and add a job for 18.04 Tobias Brunner 2021-05-05 10:25:05 +0200
  • eca1b81682 github: Fix installation of Python dependencies Tobias Brunner 2021-05-05 18:07:47 +0200
  • 6405653da2 android: Avoid lint errors when determining column indices Tobias Brunner 2021-05-05 16:09:37 +0200
  • f0a20dd2b8 backtrace: The BFD API changed in newer versions Tobias Brunner 2021-05-05 11:37:21 +0200
  • 1de13f9037 openssl: Fix OpenSSL version check for EC_POINT_set_affine_coordinates Noel Kuntze 2021-04-15 16:23:18 +0200
  • e9a55abce4 forecast: Restrict strncpy() call Noel Kuntze 2021-04-17 05:02:01 +0200
  • 2b89676157 Merge branch 'doxygen-fixes' Tobias Brunner 2021-05-04 14:39:56 +0200
  • 4886a2c7d8
    Doxyfile.in: Remove deprecated variables Noel Kuntze 2021-04-15 00:33:23 +0200
  • a11efc5214
    doxygen: Fix documentation problems Noel Kuntze 2021-04-15 00:17:59 +0200
  • 09df86c033 Version bump to 5.9.3dr1 5.9.3dr1 Andreas Steffen 2021-03-31 09:59:55 +0200
  • 66ba50b217 testing: Migrated p2pnat/medsrv-psk scenario to vici Andreas Steffen 2021-03-30 22:05:49 +0200
  • 03e1272ff2 testing: Migrated p2pnat/behind-same-nat scenario to vici Andreas Steffen 2021-03-30 18:54:47 +0200
  • 68154033bb testing: Store mars credentials in the swanctl directory Andreas Steffen 2021-03-28 15:11:28 +0200
  • 2cbf7da51a testing: Migrated redirect-active scenario to vici Andreas Steffen 2021-03-28 15:07:41 +0200
  • 511b860916 testing: Migrated ha/both-active scenario to vici Andreas Steffen 2021-03-27 22:15:13 +0100
  • 5c22e94f0f testing: Migrated ha/active-passive scenario to vici Andreas Steffen 2021-03-27 14:44:47 +0100
  • 737f7fce51 testing: Switched PTS measurements to /usr/sbin Andreas Steffen 2021-03-23 10:49:32 +0100
  • f412c97648 wolfssl: Support SHAKE_256 Andreas Steffen 2021-03-19 07:18:59 +0100
  • a91eb3eb96 wolfssl: Support SHA3 Andreas Steffen 2021-03-18 07:58:21 +0100
  • b57215ba2b wolfssl: Support AES_ECB Andreas Steffen 2021-03-18 07:28:00 +0100
  • bd323ae6c8 openssl: Migrate from deprecated EC_POINT_[set|get]_affine_coordinates_GFp() functions Andreas Steffen 2021-03-19 08:50:27 +0100
  • c5eac9c390 libcharon: Include libtpmtss in monolithic build Petr Gotthard 2021-03-17 12:14:47 +0100
  • 6aef079f59 testing: Bump guest kernel to Linux 5.11 Andreas Steffen 2021-03-07 14:39:44 +0100
  • 87ba3a424d Version bump to 5.9.2 5.9.2 Andreas Steffen 2021-02-26 11:30:13 +0100
  • 88c4d8cb22 Merge branch 'sha2-no-trunc' Tobias Brunner 2021-02-23 17:30:11 +0100
  • 875813c055 save-keys: Fix length of AES-GCM with 12-byte ICV Tobias Brunner 2021-02-23 15:28:36 +0100
  • b6b8880340 save-keys: Add support for full-length HMAC-SHA256 for ESP Michał Skalski 2021-02-22 16:41:23 +0100
  • c632aa7b31 kernel-netlink: Add support for full-length HMAC-SHA2 algorithms Michał Skalski 2021-02-05 06:59:13 +0100
  • aa6da3700a keymat: Add support for full-length HMAC-SHA2 algorithms Michał Skalski 2021-02-22 15:25:45 +0100
  • 7a8cd5d6d0 af-alg: Fix typo in algorithm mapping for full-size HMAC-SHA-256 Michał Skalski 2021-02-22 15:48:37 +0100
  • 356f87355b Version bump to 5.9.2rc2 5.9.2rc2 Andreas Steffen 2021-02-21 10:40:34 +0100
  • 20c47af319 testing: Use TLS 1.3 in TNC PT-TLS tests Andreas Steffen 2021-02-21 09:48:34 +0100
  • 9f55246018 testing: Added mgf1 plugin to load statement Andreas Steffen 2021-02-19 17:41:44 +0100
  • 283b352cee Merge branch 'tls-fixes' 5.9.2rc1 Andreas Steffen 2021-02-18 20:28:33 +0100
  • d08fa4bd0a Version bump to 5.9.2rc1 Andreas Steffen 2021-02-17 13:34:06 +0100
  • 48f4f9f667 pt-tls-server: Make TLS client authentication optional as appropriate Tobias Brunner 2021-02-18 15:41:52 +0100
  • 82116dba66 tls-test: Add option to make client authentication optional Tobias Brunner 2021-02-18 15:36:59 +0100
  • 760f3b730f tls-server: Add flag that makes client authentication optional Tobias Brunner 2021-02-18 15:10:42 +0100
  • 11a4687930 libtls: Add control flags and replace GENERIC_NULLOK purpose with one Tobias Brunner 2021-02-18 15:03:29 +0100
  • 602947d48a pt-tls-server: Explicitly request client authentication if necessary Tobias Brunner 2021-02-18 12:34:29 +0100
  • 4b7cfb252e tls-server: Use subject DN as peer identity if it was ID_ANY Tobias Brunner 2021-02-18 12:31:17 +0100
  • d5606ec350 testing: Adapt some checks as SHA-384 is now preferred for TLS signatures Tobias Brunner 2021-02-18 12:01:02 +0100
  • 024120f8ea tls-eap: Only servers conclude EAP method after processing packets Tobias Brunner 2021-02-18 10:46:56 +0100
  • f7613cb581 ike-sa: Properly set timing info for delete after rekeying Stefan Berghofer 2021-02-18 09:43:10 +0100
  • d65d4eab73 NEWS: Add news for 5.9.2 Tobias Brunner 2021-02-17 15:24:36 +0100
  • ff672c785b dhcp: Properly initialize struct when binding to interface Tobias Brunner 2021-02-16 15:22:18 +0100
  • fbb70c968b pts: Don't rely on BIOS event buffer to be null terminated Tobias Brunner 2021-02-16 15:15:38 +0100
  • 8384527ff5 tls-crypto: Fix potential memory leak Tobias Brunner 2021-02-16 14:50:50 +0100
  • f4258c56f5 ike-sa-manager: Ensure we were able to create a new IKE_SA Tobias Brunner 2021-02-16 14:43:52 +0100
  • cb85967655 github: Bump wolfSSL to 4.7.0 Tobias Brunner 2021-02-16 09:08:12 +0100
  • af9d2a8f1e cirrus: Use FreeBSD 12.2 Fedor Korotkov 2021-02-15 13:58:55 -0500
  • 7bd9c0c85e github: Fix emojis in templates Tobias Brunner 2021-02-15 15:30:03 +0100
  • 27544f7bd9 github: Add security policy Tobias Brunner 2021-01-21 17:10:22 +0100
  • ebf13f4caf github: Add issue templates Tobias Brunner 2021-01-21 16:19:25 +0100
  • 4261fcedec botan: Use strongSwan's RNG interface in Botan plugin René Fischer 2021-01-22 13:38:01 +0100
  • 5ffc1ec423 botan: Extract helper function to map RNG quality to Botan RNG names Tobias Brunner 2021-01-29 16:48:03 +0100