summaryrefslogtreecommitdiff
path: root/sbin
AgeCommit message (Collapse)Author
2001-06-08Set SADB_X_POLICYFLAGS_POLICY for flows we add/delete.Angelos D. Keromytis
2001-06-08Fix a typo (perfomance -> performance) and lots of section shuffling;Aaron Campbell
mpech@prosoft.org.lv
2001-06-07Sync with the new options from NetBSD. Also fix gold card WEP description,Todd C. Miller
it is 104-bit, not 128-bit.
2001-06-07o alphabetize getopt() options and wi_opt()Todd C. Miller
o print max data len, microwave oven robustness, roaming mode from NetBSD o endian fixes from NetBSD o print card and firmware info, adapted from wi_get_id() o Some minor KNF
2001-06-07Print the right port on error message.Angelos D. Keromytis
2001-06-07Actually, using ACQUIRE can cause lowering of security policy levelAngelos D. Keromytis
for outgoing policies -- so, just use USE on the remote.
2001-06-07Ingress flows should be ACQUIRE, not REQUIRE.Angelos D. Keromytis
2001-06-07log_error -> log_printAngelos D. Keromytis
2001-06-07Actually, don't re-insert X509 certs which we acquired from our storeAngelos D. Keromytis
-- just translate them to KeyNote.
2001-06-07No need to allocate/free X509 policy information -- the certs areAngelos D. Keromytis
converted as needed, and the CA certs are irrelevant.
2001-06-07Get rid of useless x509_policy_asserts[]Angelos D. Keromytis
2001-06-07Get rid of the main policy session (unnecessary).Angelos D. Keromytis
2001-06-07Add an X509 cert in the policy session even if it was found in ourAngelos D. Keromytis
local repository.
2001-06-07Correctly initialize the policy_id field on SA structures, such thatAngelos D. Keromytis
failed SAs don't cause the default policy context to be free'ed (and thus cause no end of trouble in establishing further Phase 1 SAs)
2001-06-07Add some log_print()Angelos D. Keromytis
2001-06-06NUL-terminate passphrase.Angelos D. Keromytis
2001-06-05PF_KEY identity extensions are NUL-terminated. Now, also calculateHakan Olsson
the length properly.
2001-06-05Alphabetize SEE ALSO entries; mpech@prosoft.org.lvAaron Campbell
2001-06-05Remove BUGS section, as the only bug mentioned there was removedAngelos D. Keromytis
earlier today :-)
2001-06-05Correctly initialize remote ID when using prefix.Angelos D. Keromytis
2001-06-05Print the correct expected Remote ID valueAngelos D. Keromytis
2001-06-05Oops, typo.Angelos D. Keromytis
2001-06-05Use pf_key_v2_convert_id() instead of repeating code for the IDs;Angelos D. Keromytis
log_error() cleanup.
2001-06-05Style.Angelos D. Keromytis
2001-06-05log_error() cleanupAngelos D. Keromytis
2001-06-05Don't use log_error() in vain.Angelos D. Keromytis
2001-06-05Don't use log_error() if it's an internal error.Angelos D. Keromytis
2001-06-05Enforce Remote-ID specified in Phase 1 peer section (whether manuallyAngelos D. Keromytis
or dynamically specified).
2001-06-05SADB_IDENTTYPE_PREFIX support (only for fully-specified hosts), plusAngelos D. Keromytis
punctuation. niklas@ ok
2001-06-05Bad niklas, re-committed redundant code.Angelos D. Keromytis
2001-06-05Style issues and commentaryNiklas Hallqvist
2001-06-05Add back check for found/not found public key to use for verificationAngelos D. Keromytis
(somehow was dropped during the previous commit).
2001-06-05License clarification from David Mazieres, ok deraadt@Peter Valchev
2001-06-05Dynamically allocate conn, as this is given to the exchange; cleanupAngelos D. Keromytis
conf space on failure to establish dynamic SA. ok niklas@
2001-06-05portability; unused function on non-openbsd platformJun-ichiro itojun Hagino
2001-06-05Make our pfkeyv2.h more RFC2367 compliant. Also fix some backwardsNiklas Hallqvist
compatibility problems in isakmpd, at least 2.8 stable can compile current isakmpd now. angelos@ ok
2001-06-05Deal with an unclear license by replacing the file with a PDNiklas Hallqvist
one, which also have a real implementation instead of stubs :-)
2001-06-04Add wscons support for vax. -mojMats O Jansson
2001-06-04Add support for vax lk201 keyboard. Add code to check if new variants orMats O Jansson
encodings exists in kernel. If so suggest to rebuild kbd(1). -moj
2001-06-04return from main() don't exitMichael Shalayeff
2001-06-03remove comment on bim.. Missed in last commit.Eric Jackson
2001-06-03remove 'bim', which was used for the now non-existant pc532 port.Eric Jackson
deraadt@ OK
2001-06-03kern.nprocsAngelos D. Keromytis
2001-06-03Add kern.fscale and kern.ccpuAngelos D. Keromytis
2001-06-02Various swapctl(8) improvements:Miod Vallat
- don't print an error message when trying to enable swap on an already active swap point. - better handling of -t option. - silently ignores swap points which are neither block devices nor regular files, and don't consider swap points not starting with /dev/ as valid block devices, when invoked with -A. Work by deraadt@ and myself, ok millert@
2001-06-01missing option in getopt vs casesMichael Shalayeff
return vs exit err vs perror+exit a few times spaces
2001-06-01make listall immune to supuh long names; after deraadtificationMichael Shalayeff
2001-06-01duh, main returnsMichael Shalayeff
2001-06-01do not use strlen after strlcpyMichael Shalayeff
2001-05-31If we're passed keys and certs to use, put them in the conf space.Angelos D. Keromytis
Send back keys/certs the peer has sent us during Phase 1.