Andreas Steffen
|
5175adee66
|
optimized FreeRadius scenarios for debug output
|
2010-09-02 22:19:37 +02:00 |
|
Andreas Steffen
|
0fb2980281
|
added ikev2/rw-eap-tnc-radius scenario
|
2010-09-02 22:19:37 +02:00 |
|
Andreas Steffen
|
c0cecc0a0e
|
added radius init script mit increased debugging
|
2010-09-02 22:19:37 +02:00 |
|
Andreas Steffen
|
f9cfb5c836
|
display configuration and log of FreeRadius servers
|
2010-09-02 22:19:37 +02:00 |
|
Martin Willi
|
ef0a8e5892
|
Add DHE enabled RSA variants to the supported TLS suites
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
f14358a9b5
|
Added TLS server side support for DHE suites
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
da3f4a9fd0
|
Added TLS client side support for DHE suites
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
35d9c15d5e
|
Store a MODP group we use for each TLS suite
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
08d8b9405b
|
Added support for MODP_CUSTOM to gmp plugin
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
0abd558a65
|
Added a MODP_CUSTOM DH group which takes g and p as constructor arguments
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
06109c4717
|
Implemented "signature algorithm" hello extension
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
731611c525
|
Added TLS extension identifiers
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
d29a82a9d4
|
Added generic TLS data sign/verify, hash/sig algorithm construction
|
2010-09-02 19:33:08 +02:00 |
|
Martin Willi
|
60c4b3b545
|
Continue with a randomized premaster if decryption failed / version mismatches
|
2010-09-02 19:33:08 +02:00 |
|
Tobias Brunner
|
1dfd6d18ff
|
pluto: Removed unused lifetime from raw_eroute.
|
2010-09-02 19:04:26 +02:00 |
|
Tobias Brunner
|
b5be105aaf
|
pluto: Added support for statically configured reqids.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
fe962bc788
|
testing: Added ikev1 xfrm mark scenarios.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
f8edbc22c7
|
pluto: Make marks available in updown script.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
190ee00c94
|
pluto: Fixed comparison of connections, if marks are specified.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
a280ba9525
|
pluto: Store xfrm marks on connection and use them when installing SAs and policies.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
a0d13f42e6
|
starter: Some whitespace cleanup.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
f23e7394ae
|
pluto: Added PLUTO_UDP_ENC argument to updown script.
This contains the remote UDP port in case of UDP encapsulated ESP.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
3251294ceb
|
pluto: Return value fixed.
|
2010-09-02 19:04:25 +02:00 |
|
Tobias Brunner
|
d499bdf393
|
pluto: Removed bare shunt table.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
b8bf01ddee
|
Do not install routes for pluto.
There are some incompatibilities with e.g. passthrough policies.
Pluto installs required source routes via updown script.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
76467e030c
|
pluto: Handle changed NAT mappings via libhydra's kernel interface.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
a0cbce9e7c
|
pluto: Removed no_klips flag (--noklips option).
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
eeca1b0466
|
pluto: Removed references to KLIPS from documentation, log messages and comments.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
6374671110
|
pluto: Added --debug-kernel as alias for --debug-klips.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
ebdbf28a4a
|
pluto: Replaced DBG_KLIPS with DBG_KERNEL.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
8dade8e6eb
|
pluto: Removed the KLIPS preprocessor flag.
|
2010-09-02 19:04:24 +02:00 |
|
Tobias Brunner
|
fc06e34e46
|
pluto: Removed unneeded kernel abstractions.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
36ff473016
|
pluto: Completely removed struct kernel_ops.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
296972aeaf
|
pluto: Refactored PF_KEY capabilities registration.
Although we use the kernel interface from libhydra we still need this to make
the available algorithms known to pluto.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
4f898afc22
|
pluto: Removed unneeded functions from PF_KEY interface.
We still use the algorithm registration.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
03ee9623f3
|
pluto: Completely removed orphaned_holds.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
f6697eadb9
|
Scheduler and processor have been moved to libstrongswan.
Also reverts 0c21dc000d3cd5c82eb22c4481e6459978456364 as the dependency
to libcharon is no longer required.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
44b4f0d06f
|
pluto: Install IN policy of a shunt eroute with protocol.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
9052216813
|
pluto: Fixed byte-order of ports in traffic selectors.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
80c0328eec
|
testing: Print output of 'make oldconfig' to STDOUT, besides logging it.
|
2010-09-02 19:04:23 +02:00 |
|
Tobias Brunner
|
f32c0ce7b6
|
testing: Only sleep after a host has actually been started.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
ad808bc2a2
|
testing: Build strongSwan a bit faster using make -j.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
38dd45c480
|
testing: Force the UML Kernel to x86.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
91ea48352c
|
testing: Adding kernel-netlink to pluto.load statements.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
cc9cfc2e11
|
testing: Added missing host alice to test.conf.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
06cdeac25f
|
Charon specific strongswan.conf options generalized.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
c6fd7549e8
|
pluto: Listen for kernel events via libhydra's kernel interface.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
40bbff5dbf
|
pluto: Adapted kernel.c to changed kernel interface.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
71b6d2ff5e
|
Adapted child_sa_t to changed kernel interface.
|
2010-09-02 19:04:22 +02:00 |
|
Tobias Brunner
|
34cf6def83
|
Fixing installation of trap policies (SPI=0) in kernel interface.
|
2010-09-02 19:04:21 +02:00 |
|