summaryrefslogtreecommitdiffstats
path: root/regress/sbin/ipsecctl (follow)
Commit message (Expand)AuthorAgeFilesLines
* SA group has been renamed to bundle. Adapt test.bluhm2017-04-193-12/+12
* Add tests with the ipsec.conf SA bundle keyword.bluhm2017-04-145-10/+44
* Add tests for SA grouped in bundles.bluhm2017-03-235-2/+60
* Allow to override location of ipsecctl tool with IPSECCTL environment.bluhm2017-03-231-10/+11
* Adjust for the new default MODP groupmikeb2016-09-0260-1440/+1440
* Remove obsolete DES-CBC testsmikeb2016-09-0212-64/+0
* transform names cannot have commasmikeb2013-08-251-56/+56
* transform names cannot have commasmikeb2013-08-251-7/+7
* sync with transform-name-fixmarkus2012-09-1761-1401/+1401
* sync with recent ipsecctl changes/fixesmarkus2012-09-1563-222/+1845
* Rename "life" to "lifetime" to match iked.lteo2012-07-106-6/+6
* AES-CTR, AES-GCM, AES-GMAC are disallowed with manual SAsnaddy2012-07-0818-66/+50
* update regress for non-crypto flow 'type use' casederaadt2011-07-062-2/+2
* Retire Skipjackmikeb2010-10-0612-64/+0
* Various comment typos. 'wether' -> 'whether' (most popular), 'possiblity' ->krw2010-05-101-2/+2
* Add regress tests with IPv4 and IPv6 addresses for the srcid and/or dstid.jsing2009-08-0413-1/+158
* If the "peer" address is not specified or derived from "to" forbluhm2009-01-303-2/+122
* Remove ikefail10 ipsecctl regression test as it always fails. Itbluhm2009-01-293-12/+2
* Allow to specify ike and flow explicitly without peer. The anybluhm2009-01-285-3/+68
* Regression tests for source flow NAT support.mpf2009-01-205-3/+241
* Do not use "egress" keyword as it expands to an actual interface,hshoexer2009-01-192-87/+33
* add regression test for aes-{128,192,256} being used with main and quickhshoexer2008-12-223-2/+113
* Adopt to recent change: /32 now is treated as a network address.hshoexer2008-12-221-4/+6
* Isakmpd acquire mode did not work with a config generated frombluhm2008-07-0193-1716/+1716
* If multiple to addresses but no peer are given in an ike or flowbluhm2008-07-0115-24/+44
* Add a regression test for handling addresses with trailing '/32' and addresshshoexer2008-01-043-2/+21
* Add new "reached end of file while parsing quoted string" as expectedhshoexer2007-10-152-0/+2
* both 'proto 50' and 'proto esp' must work in flow specificationsmarkus2007-07-032-0/+6
* Do not crash when lists include the "any" keyword. Reported byhshoexer2007-05-103-2/+60
* move autodetection of the ID type to the parser. this way themarkus2007-03-163-2/+83
* We switched to aes cbc quite some time ago, so also use the correcthshoexer2007-03-1412-20/+20
* add a test for null encryptionhshoexer2007-02-192-0/+8
* we have to use '-k' now to show keys.hshoexer2007-02-191-3/+3
* previous commit to parse.y was undone. adopt these two regression tests.hshoexer2007-02-192-2/+2
* Adopt to recent change in parse.y (do not accept '\n' in quotedhshoexer2007-02-163-3/+3
* allow rule if there is at least _one_ matching address family combination.markus2007-01-103-2/+8
* don't pass -1 as a netmask; report vicviq at gmail.commarkus2007-01-043-2/+21
* wrong rid for protocolmarkus2006-11-305-5/+5
* sync: rmv to unregister ipsec connectionsmarkus2006-11-3040-0/+65
* sync: proto/port in lid/rid/connectionmarkus2006-11-309-87/+87
* fix typo for remote port; from Brian Candlermarkus2006-11-241-1/+1
* syncmarkus2006-11-2140-349/+0
* add comment on how to update the *.ok files; ok hshoexer@markus2006-11-161-1/+2
* Update to match improved address family check.mcbride2006-11-136-7/+7
* Adjust existing ikedel tests for aggressive mode support (we nowmcbride2006-11-0139-0/+63
* Remove bogus input line.hshoexer2006-10-312-3/+1
* Add some regression tests for odd ipsecctl behaviour noticed byhshoexer2006-10-3111-2/+52
* Test for an as yet unresolved problem:naddy2006-08-293-2/+6
* Add support for IKE AH rules to ipsecctl. Man page input by jmc@.naddy2006-08-299-3/+78
* tests similar to ike49 and ike50, but with ipv6 addresses.hshoexer2006-07-215-2/+44