summaryrefslogtreecommitdiff
path: root/sbin
AgeCommit message (Collapse)Author
2000-02-01apps/certpatch/certpatch.8: Merge with EOM 1.4Niklas Hallqvist
apps/certpatch/certpatch.c: Merge with EOM 1.6 exchange.c: Merge with EOM 1.114 ike_quick_mode.c: Merge with EOM 1.110 ike_phase_1.c: Merge with EOM 1.16 ike_auth.c: Merge with EOM 1.41 ike_aggressive.c: Merge with EOM 1.4 libcrypto.c: Merge with EOM 1.10 libcrypto.h: Merge with EOM 1.10 isakmpd.8: Merge with EOM 1.19 isakmpd.c: Merge with EOM 1.42 ipsec.h: Merge with EOM 1.40 init.c: Merge with EOM 1.22 message.c: Merge with EOM 1.143 message.h: Merge with EOM 1.49 sa.c: Merge with EOM 1.98 sa.h: Merge with EOM 1.54 policy.c: Merge with EOM 1.14 pf_key_v2.c: Merge with EOM 1.36 x509.c: Merge with EOM 1.32 x509.h: Merge with EOM 1.9 udp.c: Merge with EOM 1.46 author: niklas Angelos copyrights
2000-01-31samples/VPN-east.conf: Merge with EOM 1.10Niklas Hallqvist
samples/VPN-west.conf: Merge with EOM 1.10 samples/singlehost-east.conf: Merge with EOM 1.7 samples/singlehost-west.conf: Merge with EOM 1.7 author: niklas Remove volume-based lifetimes on phase 1 SAs
2000-01-31ike_quick_mode.c: Merge with EOM 1.109Niklas Hallqvist
isakmpd.conf.5: Merge with EOM 1.38 message.c: Merge with EOM 1.142 pf_key_v2.c: Merge with EOM 1.35 x509.c: Merge with EOM 1.31 author: niklas (c) 2000
2000-01-31libcrypto.c: Merge with EOM 1.9Niklas Hallqvist
libcrypto.h: Merge with EOM 1.9 author: angelos Make x509_cert_init() able to re-initialize. author: angelos Add prototypes for a few more X509 SSL calls.
2000-01-31Merge with EOM 1.21Niklas Hallqvist
author: angelos Remove empty line. author: angelos Change the order of initializing x509 and policy (x509 depends on policy).
2000-01-31Merge with EOM 1.41Niklas Hallqvist
author: angelos Make x509_cert_init() able to re-initialize. author: angelos Reinitialize certificates as well.
2000-01-31Merge with EOM 1.30Niklas Hallqvist
author: angelos Make x509_cert_init() able to re-initialize. author: angelos Fix delegating to a CA.
2000-01-30Merge with EOM 1.108Niklas Hallqvist
author: niklas style
2000-01-30Merge with EOM 1.107Niklas Hallqvist
author: angelos Fix part of the problem with X509 certificates (delegating to the CA isn't working yet, but I know where the problem is -- upcoming commit later today).
2000-01-30RCS Id sync with EOMNiklas Hallqvist
2000-01-30Another oopsie :-)Niklas Hallqvist
2000-01-30Merge with EOM 1.140Niklas Hallqvist
author: niklas Also check that the exchange to be upgraded is phase 1
2000-01-30Merge with EOM 1.139Niklas Hallqvist
author: niklas Oops in last commit author: niklas Only upgrade exchanges that are still without a responder cookie
2000-01-30Merge with EOM 1.15Niklas Hallqvist
author: angelos Better logic. author: angelos Don't crash if Life is not present...
2000-01-30When looking up a filesystem in the mount table, check the path asTodd C. Miller
giving by the user in addition to what reapath() returns. Things that call mount(2) directly may use paths different than what realpath() returns but you still want to be able to umount them...
2000-01-27Merge with EOM 1.13Niklas Hallqvist
author: ho Bugfix for IPSEC_ID_USER_FQDN from <<Jorgen.Granstam@abc.se>. Apply similar to the IPSEC_ID_FQDN case plus fix the log messages.
2000-01-27Merge with EOM 1.13Niklas Hallqvist
author: ho Bugfix. From <Jorgen.Granstam@abc.se>.
2000-01-27Merge with EOM 1.28Niklas Hallqvist
author: niklas -Wall friendly
2000-01-27Merge with EOM 1.27Niklas Hallqvist
author: niklas Fix cert ID hashing
2000-01-27Cheers from Canada (Montreal):Angelos D. Keromytis
Use the new ESP/AH flags for "old" ESP/AH.
2000-01-27Conform with the new changes with regards to new/old ESP/AHAngelos D. Keromytis
2000-01-26Merge with EOM 1.34Niklas Hallqvist
author: niklas style author: ho Lower the common {ADD,DEL}FLOW warnings to log_debug() on OpenBSD.
2000-01-26Merge with EOM 1.39Niklas Hallqvist
author: angelos Oops on previous PFS-policy patch. Small fixes in the manpages.
2000-01-26Merge with EOM 1.26Niklas Hallqvist
author: angelos GMTTimeOfDay and LocalTimeOfDay attributes, comment in x509.c. author: angelos Include files, in anticipation of the keynote.h changes.
2000-01-26Merge with EOM 1.32Niklas Hallqvist
date: 2000/01/25 13:35:24; author: niklas; state: Exp; lines: +8 -1 Do not assume ingress flows are available date: 2000/01/25 01:24:38; author: angelos; state: Exp; lines: +40 -1 We also allow the remote gateway to talk to the local subnet and the local gateway through the SAs setup. date: 2000/01/25 01:09:20; author: angelos; state: Exp; lines: +2 -2 Don't use REPLACE for ingress flows. date: 2000/01/24 23:28:39; author: angelos; state: Exp; lines: +30 -28 Delete ACL only for incoming SAs... date: 2000/01/23 22:56:43; author: angelos; state: Exp; lines: +2 -2 Send SA payload when deleting ingress flow. date: 2000/01/13 22:54:54; author: angelos; state: Exp; lines: +5 -1 Return on error from ingress flow establishment/deletion. date: 2000/01/13 22:53:21; author: angelos; state: Exp; lines: +25 -5 Interim ingress flows. date: 2000/01/13 06:48:27; author: angelos; state: Exp; lines: +37 -12 Establish (and delete) ingress flows. author: ho Unbreak. author: ho Compile under OpenBSD again. author: niklas Ugly KAME support, will be improved author: angelos Get rid of the LOCALFLOW flag. author: ho log_print -> log_debug for delete_spi: DELETE message. Plus log class typos.
2000-01-26Merge with EOM 1.6Niklas Hallqvist
author: ho Add Blowfish-main-mode and Blowfish-quick-mode, including suites, protocols and transforms for them. Add a policy file default, currently set to /etc/isakmpd/policy. Also, slightly more verbose comments for the quick mode transforms. author: ho Kill volume lifetimes for main mode. Add AH-SHA tranforms for quick mode, and 3DES-MD5 transform for main mode.
2000-01-26Merge with EOM 1.12Niklas Hallqvist
date: 2000/01/25 02:21:10; author: angelos; state: Exp; lines: +2 -2 Move the policy file location author: angelos GMTTimeOfDay and LocalTimeOfDay attributes, comment in x509.c. author: angelos Oops on previous PFS-policy patch. Small fixes in the manpages. author: angelos Add pfs keynote attribute. author: angelos Include files, in anticipation of the keynote.h changes.
2000-01-26Merge with EOM 1.2Niklas Hallqvist
author: niklas typo
2000-01-26Merge with EOM 1.28Niklas Hallqvist
author: angelos Manpage support in the Makefiles, mention in README. author: niklas Up-to-date author: niklas Typo + mail change for ho
2000-01-26Merge with EOM 1.115Niklas Hallqvist
author: ho Blowfish needs the KEY_LENGTH attribute accepted.
2000-01-26samples/singlehost-east.conf: Merge with EOM 1.6Niklas Hallqvist
samples/singlehost-west.conf: Merge with EOM 1.6 samples/VPN-west.conf: Merge with EOM 1.9 samples/VPN-east.conf: Merge with EOM 1.9 author: niklas Remove deprecated stayalive flags author: niklas Correct AH transform attributes
2000-01-26Merge with EOM 1.26Niklas Hallqvist
author: niklas Be kind to libcrypto DES
2000-01-26Merge with EOM 1.37Niklas Hallqvist
date: 2000/01/25 11:19:34; author: niklas; state: Exp; lines: +3 -3 useable->usable; from openbsd author: angelos Oops on previous PFS-policy patch. Small fixes in the manpages. author: angelos Default value for policy-file.
2000-01-26Merge with EOM 1.5Niklas Hallqvist
date: 2000/01/10 22:02:00; author: angelos; state: Exp; lines: +2 -2 Fix wrong memcpy()
2000-01-26Merge with EOM 1.18Niklas Hallqvist
2000-01-26Merge with EOM 1.45Niklas Hallqvist
date: 2000/01/25 06:51:20; author: angelos; state: Exp; lines: +2 -3 Unneeded variable. date: 2000/01/25 06:50:51; author: angelos; state: Exp; lines: +1 -27 Didn't realize there was a sysdep_cleartext() for setting the BYPASS flags for socket security levels. Remove reduntant setsockopt() code. date: 2000/01/11 04:47:41; author: angelos; state: Exp; lines: +30 -4 Set IPSEC_LEVEL_BYPASS on all our sockets, so IKE packets don't accidentally get encrypted.
2000-01-26Merge with EOM 1.106Niklas Hallqvist
date: 2000/01/24 22:55:46; author: angelos; state: Exp; lines: +2 -2 Fix typo. date: 2000/01/24 16:48:42; author: ho; state: Exp; lines: +12 -2 Log when check_policy() returns failure. (bitten by keynote once too often... sigh) author: angelos Typo. author: angelos Passphrases are encoded as "passphrase:xxxx" now, to distinguish between passphrases and logic labels. author: angelos Oops on previous PFS-policy patch. Small fixes in the manpages. author: angelos Include files, in anticipation of the keynote.h changes.
2000-01-26Merge with EOM 1.60Niklas Hallqvist
author: niklas Add FreeBSD support author: angelos Manpage support in the Makefiles, mention in README.
2000-01-26Merge with EOM 1.12Niklas Hallqvist
date: 2000/01/25 06:13:15; author: angelos; state: Exp; lines: +7 -4 Handle IPV4_ADDR as a Phase 1 ID
2000-01-26regress/exchange/def-i.1: Sync with EOMNiklas Hallqvist
regress/exchange/def-r.1: Sync with EOM isakmpd.policy.5: Sync with EOM .cvsignore: Add isakmpd.policy.cat5
2000-01-26isakmpd.c: Merge with EOM 1.39Niklas Hallqvist
init.c: Merge with EOM 1.19 author: angelos GMTTimeOfDay and LocalTimeOfDay attributes, comment in x509.c.
2000-01-26Merge with EOM 1.137Niklas Hallqvist
author: ho Log a reason for dropping the message. author: niklas Some systems need to cast iov_base
2000-01-26Merge with EOM 1.5Niklas Hallqvist
date: 2000/01/26 14:03:07; author: niklas; state: Exp; lines: +1 -1 Comment RCSId correctly author: angelos Passphrases are encoded as "passphrase:xxxx" now, to distinguish between passphrases and logic labels.
2000-01-26Merge with EOM 1.113Niklas Hallqvist
author: ho Lower common log message from log_print to log_debug 'level'. author: niklas style & wording
2000-01-25add ethernet MAC filtering capabilityJason Wright
also includes split of bridgeintr() with some optimizations for quicker frame handling
2000-01-24Correct Xrs. marc@snafu.orgKjell Wooding
2000-01-24correct Xrs. marc@snafu.org.Kjell Wooding
2000-01-23Send an SA payload when we're deleting an ingress flow.Angelos D. Keromytis
2000-01-22remove extra externs not needed because of unistd.h (rest of tree will be ↵Theo de Raadt
done later.. contact me if you want to help)
2000-01-22Spell it "usable", not "useable", for consistency across the man pages.Aaron Campbell