Age | Commit message (Expand) | Author |
2006-08-31 | expand DESCRIPTION; input from ho hshoexer naddy | Jason McIntyre |
2006-08-31 | clarify an .Sh; agreed with hshoexer | Jason McIntyre |
2006-08-30 | can get EAGAIN when writing to the pfkey socket; same change as bgpd, | Henning Brauer |
2006-08-30 | cut down the examples; ok hshoexer | Jason McIntyre |
2006-08-30 | partial backout of last commit | Markus Friedl |
2006-08-30 | some tcp md5 bits; | Jason McIntyre |
2006-08-30 | comment out some comp stuff i missed earlier; | Jason McIntyre |
2006-08-30 | better wording for the key generation section; | Jason McIntyre |
2006-08-30 | kill more redundant text, and an oops; | Jason McIntyre |
2006-08-30 | remove some repeated text, and shuffle a little; | Jason McIntyre |
2006-08-30 | one more from ho; | Jason McIntyre |
2006-08-30 | correction; from ho | Jason McIntyre |
2006-08-30 | knock out some redundant text; from ho | Jason McIntyre |
2006-08-30 | put the PFS stuff in the right place; | Jason McIntyre |
2006-08-30 | actually use the right value for USER_FQDN | Mathieu Sauve-Frankel |
2006-08-30 | print extensions with type SADB_EXT_MAX, too; ok hshoexer, reyk, msf | Markus Friedl |
2006-08-30 | knock out ipcomp for now; | Jason McIntyre |
2006-08-30 | put this page into a better structure order | Jason McIntyre |
2006-08-29 | add support for ufqdn ids in ike rules | Mathieu Sauve-Frankel |
2006-08-29 | Add support for IKE AH rules to ipsecctl. Man page input by jmc@. | Christian Weisgerber |
2006-07-22 | corrections from alexey e. suslikov; | Jason McIntyre |
2006-07-21 | When no peer is specified, no peer address is defined, thus do not use it. | Hans-Joerg Hoexer |
2006-06-28 | document lists, prodded by david@ | Hans-Joerg Hoexer |
2006-06-18 | add group "none"; when choosen, pfs will be disabled. | Hans-Joerg Hoexer |
2006-06-16 | add a missing "force" | Hans-Joerg Hoexer |
2006-06-16 | report the correct line number on an error. Noticed by david@ | Hans-Joerg Hoexer |
2006-06-15 | be careful when touch the peer component of a rule. It is not | Hans-Joerg Hoexer |
2006-06-14 | recover list of key sizes from vpn(8); suggested by markus@, ok hshoexer@ | Christian Weisgerber |
2006-06-13 | For IKE, allow main mode SHA2 and quick mode AESCTR transforms, | Christian Weisgerber |
2006-06-12 | Fix a typo that prevented ipsecctl -ss from showing authentication | Christian Weisgerber |
2006-06-11 | the default encryption algorithm with static keying is AES-CBC now; ok hshoexer@ | Christian Weisgerber |
2006-06-11 | As naddy@ pointed out RFC 3686 discourages use of AESCTR for static | Hans-Joerg Hoexer |
2006-06-11 | Adopt to recent changes (mopd3072 is not the default anymore). | Hans-Joerg Hoexer |
2006-06-10 | Better error message when a key file can not be opened or the provided key is | Hans-Joerg Hoexer |
2006-06-10 | switch back to original defaults regarding DH groups. modp3072 is to | Hans-Joerg Hoexer |
2006-06-10 | knf & careful data freeing, regression tested by todd | Theo de Raadt |
2006-06-09 | simplify previous; | Jason McIntyre |
2006-06-08 | fix usage, make synopsis more pretty. noticed by david@ | Hans-Joerg Hoexer |
2006-06-08 | fix some indentation, noticed by david@ | Hans-Joerg Hoexer |
2006-06-08 | Add a transport mode specifier to ike rules. Tunnel mode remains the default. | Christian Weisgerber |
2006-06-08 | allocate enough storage via sockaddr_storage for sockaddr_in6, | Todd T. Fries |
2006-06-08 | Fix a typo: When testing for quick mode lifetimes, make sure to | Hans-Joerg Hoexer |
2006-06-08 | turns out this really doesn't break what is in the tree; ok hshoexer@ | Todd T. Fries |
2006-06-07 | make sure, we initialize unspecified keys and spis. Noticed by | Hans-Joerg Hoexer |
2006-06-07 | Do not yet expand the "any" keyword to v6 addresses. ok todd@ | Hans-Joerg Hoexer |
2006-06-07 | remove unused prototype, ok todd@ | Hans-Joerg Hoexer |
2006-06-02 | correct spelling of specified | David Krause |
2006-06-02 | exit(2) when loading of rules did work partially. ok markus@ | Hans-Joerg Hoexer |
2006-06-02 | document port modifiers in ike rules | Christian Weisgerber |
2006-06-02 | support tcp/udp port modifiers in ike rules | Christian Weisgerber |