Age | Commit message (Collapse) | Author |
|
last message we sent out. In case we initiated the exchange, one possible
and common reason is a network level problem (pf, routing, whatnot), if
we're the responder, there is also the possibility we were scanned by
something like ike-scan. markus@ ok.
|
|
where applicable.
|
|
data during rekeying. From Jean-Francois Dive.
|
|
|
|
|
|
|
|
D. Keromytis and Niels Provos.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Niels Provos.
|
|
- some mdoc fixes
|
|
|
|
|
|
rescinded 22 July 1999. Proofed by myself and Theo.
|
|
/var/tmp and /var/run. Opens in /etc/isakmpd/ are read-only. Any other
path is invalid. markus@ ok.
|
|
|
|
active connections.
|
|
|
|
value. Switching to sockaddr_storage makes interface rescanning work
properly. niklas@ ok.
|
|
process only. Various cleanup and bugfixes.
markus@ ok
|
|
various tweaks by me. niklas@ ok.
|
|
|
|
Style.
|
|
ok ho@
|
|
HUP signal (or "R" to the FIFO) will also renegotiate all Phase 2 SAs,
i.e all connections.
ok niklas@, tested and ok kjell@.
|
|
setsockopt(..., IP_IPSEC_LOCAL_AUTH, ...) start working.
|
|
|
|
|
|
|
|
|
|
There are some kinks left, so keep it default disabled for now.
markus@ says ok to commit.
|
|
|
|
Use "%.*s" as suggested by Niklas.
ok ho@. Lost by kjell. oked ho@. lost by kjell again. oked ho@
|
|
Replace with a comment about needing keynote for policy.
|
|
Linux IPSec.
|
|
|
|
|
|
|
|
|
|
notifications, ISAKMP EAP code and types, plus fix an old typo.
|
|
|
|
Add BLOCK_SIZE attribute
Rename IPSEC_ESP_AES -> IPSEC_ESP_AES_128_CBC.
|
|
|