Age | Commit message (Collapse) | Author | |
---|---|---|---|
2006-03-22 | No need to specify the DOI, make examples more consistent. | Hans-Joerg Hoexer | |
Suggested by david@ | |||
2006-03-20 | make sure the command fifo is ready before isakmpd returns. This | Hans-Joerg Hoexer | |
resolves a startup race when interacting with ipsecctl. Suggested by and discussed with moritz@ ok moritz@ | |||
2006-02-02 | Small cleanup to avoid gotos, from Andrey Matveev. | Hans-Joerg Hoexer | |
ok moritz@ | |||
2006-01-02 | clean up error paths using "goto", part 1. From Andrey Matveev <evol at | Hans-Joerg Hoexer | |
online dot ptt dot ru>. Thanks! | |||
2005-12-28 | remove some unused functions and an unused variable found by lint. | Hans-Joerg Hoexer | |
ok markus@ | |||
2005-12-21 | Userland programs should include <errno.h> not <sys/errno.h> | Todd C. Miller | |
OK deraadt@ | |||
2005-12-20 | let isakmpd(8) remove it's pid/fifo file on exit. | Moritz Jodeit | |
rework signal handling in the monitor process to let this work. testing and ok hshoexer@ | |||
2005-11-26 | get rid of some leftovers from a cleanup during c2k5. From Andrey Matveev | Hans-Joerg Hoexer | |
<evol at online dot ptt dot ru>, thanks! | |||
2005-11-17 | typo, ok hshoexer@ | Alexander von Gernler | |
2005-11-17 | add a free() which got lost in r1.104. ok hshoexer@ deraadt@ | Moritz Jodeit | |
2005-11-16 | Avoid printing a NULL string. ok hshoexer | Chad Loder | |
2005-11-15 | Be cleaner about signed vs. unsigned when it's easy to do so. OK hshoexer | Chad Loder | |
2005-11-15 | Add a new raw2hex function and yank out several pieces of code in other | Chad Loder | |
places that were doing this. Prodding deraadt. OK hshoexer. | |||
2005-11-14 | use snprintf; ok cloder. also looked at by a few other people | Theo de Raadt | |
2005-11-13 | zap unused variable and silence gcc. | Hans-Joerg Hoexer | |
From Mike Belopuhov <mkb at crypt dot org dot ru> Thanks! | |||
2005-10-27 | Do not touch LIST_* macro internals. | Hans-Joerg Hoexer | |
with otto@, ok ho@ | |||
2005-10-26 | don't send DPD messages before the exchange is finialized, otherwise | Markus Friedl | |
we have a race between DPD and exchange timeouts and both will release the SA and corrupt the SA list. ok hshoexer@, ho@ | |||
2005-10-25 | some small knf, ok ho@ | Hans-Joerg Hoexer | |
2005-10-25 | Do not send a message when no transport is available. | Hans-Joerg Hoexer | |
ok cloder ho | |||
2005-10-06 | improve examples and show how to use KEY_LENGTH. Slightly different fix than | Hans-Joerg Hoexer | |
proposed by sthen at spacehopper dot org, fixes pr 4522, thanks! ok and with jmc@ | |||
2005-09-23 | Document new UI commands | Hans-Joerg Hoexer | |
ok and help jmc@ | |||
2005-09-23 | Provide UI commands to delete phase 1 SAs. | Hans-Joerg Hoexer | |
Looks good mortiz@ | |||
2005-08-25 | read the information from the INADDR_ANY socket and do not loop if | Markus Friedl | |
a new IP appears (cf udp.c, rev 1.74), ok ho@ hshoexer@ cloder@ deraadt@ | |||
2005-08-23 | note that RSA_SIG should be part of the "Transforms" tag when setting | Jason McIntyre | |
up key- and cert-based authentication; problem found by andrew fresh; help/ok hshoexer@ | |||
2005-08-23 | `DSS' is unsupported, so remove references to it; | Jason McIntyre | |
ok hshoexer@ | |||
2005-08-09 | Normalize attribute values before comparison. Unbreaks interop with netscreen. | Hans-Joerg Hoexer | |
Noticed by Sean Knox. Testing by msf@, Sean Knox and others. Thanks! ok cloder@ msf@ | |||
2005-08-02 | Make sure to always load at least the default configuration values. Fixes a | Hans-Joerg Hoexer | |
problem noticed by Yaron Wahl, who also pointed out that problem. Thanks! ok mpf@ | |||
2005-07-25 | Use payload NAT-D or NAT-D-DRAFT according to NAT-T vendor ID advertised by the | Hans-Joerg Hoexer | |
peer. looks good ho | |||
2005-07-25 | output some more information on UI command "S" | Hans-Joerg Hoexer | |
ok ho@ | |||
2005-07-22 | spacing and tiny knf | Hans-Joerg Hoexer | |
2005-07-20 | revert one TAILQ_FOREACH conversion from r1.112 which was | Moritz Jodeit | |
wrong and broke some isakmpd setups. ok hshoexer@ | |||
2005-07-14 | fix some memleaks. ok hshoexer@ | Moritz Jodeit | |
2005-07-05 | fix comment | Hans-Joerg Hoexer | |
2005-07-05 | use correct function name in log message, tiny KNF | Hans-Joerg Hoexer | |
2005-06-26 | indentation/white space cleanup, no binary change | Hans-Joerg Hoexer | |
2005-06-25 | /* Fallthrough. */ -> /* FALLTHROUGH */ | Hans-Joerg Hoexer | |
now that's useable with lint | |||
2005-06-25 | typo in comment | Hans-Joerg Hoexer | |
2005-06-25 | Use correct local ID in phase 1 when using IPV[46]_ADDR. | Hans-Joerg Hoexer | |
Diff from st.sch at gmx.net | |||
2005-06-14 | add ENCAP_UDP_{TUNNEL,TRANSPORT} types according to rfc 3947 | Hans-Joerg Hoexer | |
ok markus | |||
2005-06-13 | Allow isakmpd to write a pid file when /var is a subdir (e.g. /usr/var) | Todd C. Miller | |
and not a mount point. | |||
2005-06-11 | grammar; | Jason McIntyre | |
2005-06-04 | undo last commit, all memory is already freed by udp_remove() | Hans-Joerg Hoexer | |
ok cloder | |||
2005-06-04 | Clarify that for -i/-R only paths beginning with /var/run are valid. | Hans-Joerg Hoexer | |
2005-06-02 | unbreak port floating, noticed by sean at obstacle9 dot com | Hans-Joerg Hoexer | |
ok cloder | |||
2005-06-02 | expand the section on pki: | Jason McIntyre | |
- list different methods available - document key-based method - move x509-based into its own section - add keynote stub section ok hshoexer@ | |||
2005-06-01 | Fix memory leak. OK hshoexer | Chad Loder | |
2005-06-01 | Fix memory leaks. OK hshoexer | Chad Loder | |
2005-06-01 | This file is outdated, everything needed for setting up PKI is in the man pages | Hans-Joerg Hoexer | |
now. noticed by david@ ok ho markus | |||
2005-05-31 | certpatch is gone, noticed by david@ | Hans-Joerg Hoexer | |
2005-05-28 | ooops | Hans-Joerg Hoexer | |