| Commit message (Expand) | Author | Age | Files | Lines |
* | Support DH groups 19 to 21 and 25 to 30, just like iked(8) does. | mpi | 2017-10-27 | 1 | -5/+9 |
* | More "(<blah> *)0" -> NULL, avoiding any stdarg functions. | krw | 2016-03-16 | 1 | -2/+2 |
* | Remove plain DES encryption from IPsec. | naddy | 2015-12-09 | 1 | -7/+7 |
* | <stdlib.h> is included, so do not need to cast result from | deraadt | 2015-08-20 | 1 | -10/+7 |
* | Whole bunch of (unsigned char) casts carefully added for ctype calls. | deraadt | 2013-11-22 | 1 | -5/+5 |
* | remove excessive includes | deraadt | 2013-03-21 | 1 | -2/+2 |
* | Support additional MODP DH groups in the Phase 1 and Phase 2. | mikeb | 2012-07-13 | 1 | -3/+4 |
* | enable use of AES-{192,256}-CTR, and explicitly of AES-128-CTR, for IPsec ESP | naddy | 2012-06-30 | 1 | -2/+7 |
* | Support for use of AES-GCM-16 (as AESGCM) and ENCR_NULL_AUTH_AES_GMAC | mikeb | 2010-09-22 | 1 | -8/+23 |
* | fixup keylength for aes-128-cbc in quickmode | deraadt | 2010-08-04 | 1 | -2/+2 |
* | Define default configurations for AES-192 and AES-256. From Mitja Muzenic | hshoexer | 2008-02-17 | 1 | -8/+23 |
* | Let conf_trans_node() set all parts of the node, so that we don't | moritz | 2007-06-01 | 1 | -70/+26 |
* | Free allocated node in conf_set_now() before failing, | moritz | 2007-04-22 | 1 | -4/+2 |
* | There's no point in checking ptr for NULL before doing free(ptr) | moritz | 2007-04-16 | 1 | -45/+23 |
* | isakmpd bits for ESP+NULL encryption. This is useful, when AH can | hshoexer | 2007-02-19 | 1 | -3/+3 |
* | Properly define quick mode suites for AH. With naddy. | hshoexer | 2006-08-29 | 1 | -6/+22 |
* | Make deletion of SAs on shutdown optional. The default behaviour | hshoexer | 2006-06-10 | 1 | -1/+3 |
* | Allow isakmpd to use a different private rsa key per isakmp ID. Hans wrote this a long time ago, I synced it to -current and tested. | msf | 2006-06-10 | 1 | -1/+3 |
* | This shouldn't have been commited yet. | hshoexer | 2006-06-10 | 1 | -3/+1 |
* | support sha2 for main mode hmacs and aesctr for quick mode encryption. | hshoexer | 2006-06-10 | 1 | -10/+19 |
* | add group15/modp3072 to default configurations. | hshoexer | 2006-05-27 | 1 | -5/+6 |
* | remove some unused functions and an unused variable found by lint. | hshoexer | 2005-12-28 | 1 | -86/+1 |
* | use snprintf; ok cloder. also looked at by a few other people | deraadt | 2005-11-14 | 1 | -15/+6 |
* | Make sure to always load at least the default configuration values. Fixes a | hshoexer | 2005-08-02 | 1 | -10/+10 |
* | Handle strdup returning NULL. OK hshoexer | cloder | 2005-05-26 | 1 | -4/+22 |
* | Make deterministic randomness (only ever used for testing) a compile-time | cloder | 2005-04-08 | 1 | -3/+1 |
* | keynote and policy always compiled in | deraadt | 2005-04-08 | 1 | -3/+1 |
* | un-ifdef USE_BLOWFISH | deraadt | 2005-04-08 | 1 | -2/+2 |
* | knf, ok cloder | deraadt | 2005-04-06 | 1 | -3/+3 |
* | Always compile X509 support. Almost everyone uses it. Makes the code | cloder | 2005-04-05 | 1 | -3/+1 |
* | spacing; ok cloder | deraadt | 2005-04-04 | 1 | -3/+3 |
* | reset config line numbers, when daemon gets reinitialized. | moritz | 2005-03-15 | 1 | -6/+5 |
* | Avoid memory leak if strdup should fail. | cloder | 2005-03-10 | 1 | -3/+7 |
* | Allow the Address, Network, or Netmask values of the <IPsec-ID> to be | mcbride | 2004-12-14 | 1 | -2/+2 |
* | spacing | deraadt | 2004-08-08 | 1 | -4/+4 |
* | Less noise while debugging. | ho | 2004-07-29 | 1 | -5/+5 |
* | Keynote policy checking can now be disabled by "-K" switch and config tag | hshoexer | 2004-06-25 | 1 | -1/+2 |
* | avoid stat before open | hshoexer | 2004-06-14 | 1 | -14/+12 |
* | KNF, style, 80c, etc. hshoexer@ ok | ho | 2004-06-14 | 1 | -8/+11 |
* | Style nits. hshoexer@ ok | ho | 2004-06-09 | 1 | -2/+2 |
* | Some more KNF, no binary change. | hshoexer | 2004-05-14 | 1 | -129/+135 |
* | Make sure KEY_LENGTH attribute is present when checking AES proposals, | ho | 2004-04-23 | 1 | -172/+130 |
* | more knf; ok hshoexer | deraadt | 2004-04-15 | 1 | -104/+118 |
* | knf | deraadt | 2004-04-15 | 1 | -47/+51 |
* | partial move to KNF. More to come. This has happened because there | deraadt | 2004-04-15 | 1 | -896/+867 |
* | Add missing bits to make already present privsep code work. Enable privsep. | hshoexer | 2004-03-19 | 1 | -2/+2 |
* | Add group 14 (modp2048) to predefined suites. Manpage also updated. | hshoexer | 2004-02-27 | 1 | -5/+5 |
* | small typos fixed. | hshoexer | 2004-01-06 | 1 | -5/+6 |
* | A couple of nits. deraadt@ ok. | ho | 2003-09-02 | 1 | -2/+2 |
* | support AES in phase 1, too. switch to OpenSSL EVP interface; | markus | 2003-08-28 | 1 | -3/+3 |