strongswan/src
Ruslan N. Marchenko b638c131de dnscert: Add DNS CERT support for pubkey authentication
Add DNSSEC protected CERT RR delivered certificate authentication.
The new dnscert plugin is based on the ipseckey plugin and relies on the
existing PEM decoder as well as x509 and PGP parsers.  As such the plugin
expects PEM encoded PKIX(x509) or PGP(GPG) certificate payloads.

The plugin is targeted to improve interoperability with Racoon, which
supports this type of authentication, ignoring in-stream certificates
and using only DNS provided certificates for FQDN IDs.
2013-10-11 15:45:42 +02:00
..
_copyright automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
_updown updown: Install forwarding rules with the actually used protocol 2013-10-11 10:15:22 +02:00
_updown_espmark updown: remove description of unsupported PLUTO_ variables 2013-08-08 14:48:32 +02:00
charon automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
charon-cmd Build generated man pages via configure script 2013-09-13 14:32:51 +02:00
charon-nm ike: support multiple addresses, ranges and subnets in IKE address config 2013-09-04 10:38:37 +02:00
charon-tkm kernel: Use a time_t to report use time in query_policy() 2013-10-11 10:23:17 +02:00
checksum Moved tnc-tnccs, tnc-imc, tnccs-11, tnccs-20 and tnccs-dynamic libcharon plugins to libtnccs 2013-08-15 23:34:22 +02:00
conftest conftest: Don't load plugins incrementally 2013-09-13 11:44:04 +02:00
dumm automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
frontends kernel: Use a time_t to report use time in query_policy() 2013-10-11 10:23:17 +02:00
include jhash.h is not part of the distribution anymore. 2011-08-02 16:14:16 +02:00
ipsec pki: Install pki(1) as utility directly in $prefix/bin 2013-09-13 15:07:36 +02:00
libcharon dnscert: Add DNS CERT support for pubkey authentication 2013-10-11 15:45:42 +02:00
libfast Build all shared libraries with -no-undefined and link them properly 2013-09-12 01:44:49 +02:00
libhydra kernel-netlink: Allow setting firewall marks on routing rule 2013-10-11 15:32:44 +02:00
libimcv Build all IMC/IMVs with -no-undefined 2013-09-12 01:44:50 +02:00
libipsec libipsec: Enforce byte/packet lifetimes on SAs 2013-10-11 10:23:18 +02:00
libpts Build all IMC/IMVs with -no-undefined 2013-09-12 01:44:50 +02:00
libpttls Build all shared libraries with -no-undefined and link them properly 2013-09-12 01:44:49 +02:00
libradius Build all shared libraries with -no-undefined and link them properly 2013-09-12 01:44:49 +02:00
libsimaka Build all shared libraries with -no-undefined and link them properly 2013-09-12 01:44:49 +02:00
libstrongswan unbound: Add support for DLV (DNSSEC Lookaside Validation) 2013-10-11 15:45:25 +02:00
libtls Build all shared libraries with -no-undefined and link them properly 2013-09-12 01:44:49 +02:00
libtnccs Keep a copy of the tnccs instance for PT-TLS handover 2013-10-09 19:03:07 +02:00
libtncif automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
manager automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
medsrv automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
openac automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
pki ignore *.1 manpage files 2013-09-17 10:58:53 +02:00
pool database: Add support for serializable transactions 2013-10-11 15:29:10 +02:00
pt-tls-client pt-tls-client: Report loaded plugins 2013-09-12 01:44:49 +02:00
scepclient automake: replace INCLUDES by AM_CPPFLAGS 2013-07-18 14:59:19 +02:00
starter ipsec_types: Add utility function to parse mark_t from strings 2013-10-11 15:32:44 +02:00
stroke starter: Add an 'ah' keyword for Authentication Header Security Associations 2013-10-11 10:15:20 +02:00
Makefile.am pool: Move the pool utility to its own directory in src 2013-10-11 15:16:05 +02:00
strongswan.conf Remove plugin load directives from default strongswan.conf 2010-07-13 14:28:11 +02:00