OpenBSD CVS

src/sbin/isakmpd/


Click on a directory to enter that directory. Click on a file to display its revision history and to get a chance to display diffs between revisions.

Current directory: [local] / src / sbin / isakmpd


File Rev. Age Author Last log entry
[BACK] Parent Directory        
[DIR] apps/        
[DIR] features/        
[DIR] regress/        
[DIR] samples/        
[DIR] sysdep/        
[TXT] BUGS  1.16   6 years  mpi   Remove listing of fixed bugs. ok markus@
[TXT] DESIGN-NOTES  1.25   17 years  hshoexer   Big spelling cleanup, no binary change. From david@
[TXT] Makefile  1.90   2 years  tb   isakmpd: remove libcrypto.c All this does is a call to OpenSSL_add_all_algorith...
[TXT] QUESTIONS  1.5   20 years  jmc   updated URL from Jared Yanovich;
[TXT] README  1.20   7 years  tb   move links from http to https://www.openbsd.org/ ok beck
[TXT] TO-DO  1.26   20 years  markus   support AES in phase 1, too. switch to OpenSSL EVP interface; with Hans-Joerg.Ho...
[TXT] app.c  1.14   7 years  guenther   Stop assuming that in_{addr,port}_t are typedefed in <sys/types.h> and instead p...
[TXT] app.h  1.7   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] attribute.c  1.13   7 years  guenther   Stop assuming that in_{addr,port}_t are typedefed in <sys/types.h> and instead p...
[TXT] attribute.h  1.6   20 years  hshoexer   Some more KNF, no binary change. ok ho@
[TXT] cert.c  1.33   11 years  deraadt   remove excessive includes
[TXT] cert.h  1.16   9 years  deraadt   Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl...
[TXT] conf.c  1.107   6 years  mpi   Support DH groups 19 to 21 and 25 to 30, just like iked(8) does. ok visa@, mark...
[TXT] conf.h  1.34   17 years  hshoexer   Make SA deletion on shutdown the default again. Use -S for failover situations ...
[TXT] connection.c  1.41   6 years  mpi   Spacing, no object change.
[TXT] connection.h  1.5   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] constants.c  1.10   19 years  cloder   Make deterministic randomness (only ever used for testing) a compile-time option...
[TXT] constants.h  1.6   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] cookie.c  1.17   7 years  guenther   Stop assuming that in_{addr,port}_t are typedefed in <sys/types.h> and instead p...
[TXT] cookie.h  1.7   20 years  hshoexer   Some more KNF, no binary change. ok ho@
[TXT] crypto.c  1.35   6 years  mpi   Spacing, no object change.
[TXT] crypto.h  1.20   13 years  mikeb   convert to fuse cast from the libcrypto. with a simplification nit from blamber...
[TXT] dh.c  1.27   13 months  tb   Guard use of GROUP_EC2N with #ifndef OPENSSL_NO_EC2M This allows compiling isak...
[TXT] dh.h  1.10   6 years  patrick   In the final RFC 5903 the computation for the DH shared secret changed. Instead ...
[TXT] dnssec.c  1.28   2 years  deraadt   delete unneccessary arpa/nameser.h includes ok millert
[TXT] dnssec.h  1.7   20 years  hshoexer   Some more KNF, no binary change. ok ho@
[TXT] doi.c  1.11   11 years  deraadt   remove excessive includes
[TXT] doi.h  1.15   19 years  deraadt   USE_DEBUG is bye bye
[TXT] dpd.c  1.20   6 years  jca   Use clock_gettime(CLOCK_MONOTONIC) to schedule timers From Scott Cheloha, ok tb...
[TXT] dpd.h  1.3   18 years  markus   don't send DPD messages before the exchange is finialized, otherwise we have a r...
[TXT] exchange.c  1.142   6 years  mpi   Spacing, no object change.
[TXT] exchange.h  1.37   6 years  mpi   Spacing, no object change.
[TXT] exchange_num.cst  1.5   17 years  hshoexer   Big spelling cleanup, no binary change. From david@
[TXT] field.c  1.22   7 years  tom   Check return value of asprintf(), and don't use 0 as a char * Started by, and o...
[TXT] field.h  1.6   19 years  hshoexer   More KNF. Mainly spaces and line-wraps, no binary change. ok ho@
[TXT] genconstants.sh  1.13   10 years  deraadt   improve randomization. remove some junk debugging features that are fundamental...
[TXT] genfields.sh  1.10   10 years  deraadt   improve randomization. remove some junk debugging features that are fundamental...
[TXT] hash.c  1.24   8 years  mmcc   A classic case for bzero() -> explicit_bzero() ok deraadt@
[TXT] hash.h  1.8   17 years  hshoexer   support sha2 for main mode hmacs and aesctr for quick mode encryption. ok markus...
[TXT] if.c  1.26   4 years  deraadt   When system calls indicate an error they return -1, not some arbitrary value < 0...
[TXT] if.h  1.7   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] ike_aggressive.c  1.13   6 years  mpi   Spacing, no object change.
[TXT] ike_aggressive.h  1.5   19 years  hshoexer   More KNF. Mainly spaces and line-wraps, no binary change. ok ho@
[TXT] ike_auth.c  1.118   3 years  tobhe   Fix shared DH secret length in log message. ok patrick@
[TXT] ike_auth.h  1.5   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] ike_main_mode.c  1.19   6 years  mpi   Spacing, no object change.
[TXT] ike_main_mode.h  1.6   19 years  hshoexer   More KNF. Mainly spaces and line-wraps, no binary change. ok ho@
[TXT] ike_phase_1.c  1.78   5 years  jsg   add missing braces implied by indentation ok millert@ mpi@
[TXT] ike_phase_1.h  1.4   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] ike_quick_mode.c  1.115   13 months  tb   Add missing NULL check after group_get() Otherwise dh_getlen() will dereference...
[TXT] ike_quick_mode.h  1.6   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] init.c  1.44   2 years  tb   isakmpd: remove libcrypto.c All this does is a call to OpenSSL_add_all_algorith...
[TXT] init.h  1.6   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] ipsec.c  1.154   4 months  tobhe   Don't unset the SA tag set by ipsec_sa_tag in ipsec_sa_iface. Fixes SA tagging a...
[TXT] ipsec.h  1.27   6 years  patrick   In the final RFC 5903 the computation for the DH shared secret changed. Instead ...
[TXT] ipsec_doi.h  1.8   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] ipsec_fld.fld  1.5   20 years  ho   Remove clauses 3 and 4. With approval from Niklas Hallqvist and Niels Provos.
[TXT] ipsec_num.cst  1.21   2 years  bluhm   After deleting hifn(4) the only provider for the LZS compression algorithm is go...
[TXT] isakmp.h  1.7   19 years  ho   NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok.
[TXT] isakmp_cfg.c  1.41   6 years  mpi   Spacing, no object change.
[TXT] isakmp_cfg.h  1.5   19 years  hshoexer   More KNF. Mainly spaces and line-wraps, no binary change. ok ho@
[TXT] isakmp_doi.c  1.26   13 years  todd   as determined 4 years ago, FortiGate needs DOI of 0 responses to DPD so, copy a ...
[TXT] isakmp_doi.h  1.5   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] isakmp_fld.fld  1.8   19 years  ho   NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok.
[TXT] isakmp_num.cst  1.13   18 years  hshoexer   typo in comment
[TXT] isakmpd.8  1.123   4 years  jmc   mop up for the pcap.3 rename; help/ok deraadt
[TXT] isakmpd.c  1.109   14 months  guenther   Delete obsolete /* ARGSUSED */ lint comments. ok miod@ millert@
[TXT] isakmpd.conf.5  1.139   9 months  dlg   have a go at documenting the Interface config statement. im not really happy wi...
[TXT] isakmpd.policy.5  1.51   2 years  jsg   remove please from manual pages ok jmc@ sthen@ millert@
[TXT] key.c  1.27   2 years  tb   isakmpd: remove #ifdefs for ancient OPENSSL_VERSIONs. No-one is going to build ...
[TXT] key.h  1.8   18 years  cloder   Be cleaner about signed vs. unsigned when it's easy to do so. OK hshoexer
[TXT] libcrypto.h  1.19   2 years  tb   isakmpd: remove libcrypto.c All this does is a call to OpenSSL_add_all_algorith...
[TXT] log.c  1.65   2 weeks  florian   gmtime(3) / locatime(3) can fail when timestamps are way off. Add missing error...
[TXT] log.h  1.25   15 years  hshoexer   mark log_fatal() and monitor_exit() as __dead, as they do not return.
[TXT] message.c  1.129   8 years  yasuoka   Fix memory leak. Call proto_free() always to free proto. Diff from Yuuichi Some...
[TXT] message.h  1.29   6 years  mpi   Spacing, no object change.
[TXT] monitor.c  1.83   15 months  tb   isakmpd: add missing void to a function definition Fixes -Wstrict-prototype war...
[TXT] monitor.h  1.19   15 years  hshoexer   mark log_fatal() and monitor_exit() as __dead, as they do not return.
[TXT] monitor_fdpass.c  1.17   8 years  jca   Print ssize_t with %zd; ok deraadt@ mmcc@
[TXT] nat_traversal.c  1.25   6 years  jca   Use clock_gettime(CLOCK_MONOTONIC) to schedule timers From Scott Cheloha, ok tb...
[TXT] nat_traversal.h  1.4   18 years  hshoexer   Use payload NAT-D or NAT-D-DRAFT according to NAT-T vendor ID advertised by the ...
[TXT] pf_key_v2.c  1.205   9 months  dlg   support configuring interface SAs for route-based ipsec vpns. add "Interface NU...
[TXT] pf_key_v2.h  1.13   17 years  markus   export pf_key_v2_disable_sa() (unbreaks build)
[TXT] policy.c  1.103   2 weeks  florian   gmtime(3) / locatime(3) can fail when timestamps are way off. Add missing error...
[TXT] policy.h  1.17   16 years  tom   Allow key exchange with RSA signature authentication to work with Cisco IOS and ...
[TXT] prf.c  1.16   11 years  deraadt   remove excessive includes
[TXT] prf.h  1.10   20 years  deraadt   partial move to KNF. More to come. This has happened because there are a raft ...
[TXT] sa.c  1.125   2 years  guenther   When it's the possessive of 'it', it's spelled "its", without the apostrophe.
[TXT] sa.h  1.55   9 months  dlg   support configuring interface SAs for route-based ipsec vpns. add "Interface NU...
[TXT] timer.c  1.18   6 years  jca   Use clock_gettime(CLOCK_MONOTONIC) to schedule timers From Scott Cheloha, ok tb...
[TXT] timer.h  1.9   6 years  jca   Use clock_gettime(CLOCK_MONOTONIC) to schedule timers From Scott Cheloha, ok tb...
[TXT] transport.c  1.39   3 years  mortimer   Extern transport_list. Fixed compilation with -fno-common. ok deraadt@
[TXT] transport.h  1.24   2 years  guenther   When it's the possessive of 'it', it's spelled "its", without the apostrophe.
[TXT] udp.c  1.95   15 years  bluhm   If isakmpd is started with -4 or -6, virtual_get_default() may return NULL. Thi...
[TXT] udp.h  1.11   19 years  hshoexer   Zap -P option. It has never done anything. While there tweak descripton of -N....
[TXT] udp_encap.c  1.24   2 years  naddy   isakmpd: fix -Wunused-but-set-variable warnings ok guenther@
[TXT] udp_encap.h  1.2   19 years  hshoexer   remove unused variable.
[TXT] ui.c  1.58   2 years  deraadt   For open/openat, if the flags parameter does not contain O_CREAT, the 3rd (varia...
[TXT] ui.h  1.8   17 years  mpf   Add a new UI command to force isakmpd into passive only mode. Will be used by sa...
[TXT] util.c  1.72   4 years  deraadt   When system calls indicate an error they return -1, not some arbitrary value < 0...
[TXT] util.h  1.33   6 years  jca   Use clock_gettime(CLOCK_MONOTONIC) to schedule timers From Scott Cheloha, ok tb...
[TXT] vendor.c  1.6   6 years  patrick   In the final RFC 5903 the computation for the DH shared secret changed. Instead ...
[TXT] vendor.h  1.2   17 years  pedro   typo in initial RCS tag ($OpenBSD: -> $OpenBSD$)
[TXT] virtual.c  1.33   4 years  deraadt   When system calls indicate an error they return -1, not some arbitrary value < 0...
[TXT] virtual.h  1.1   19 years  ho   NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok.
[TXT] x509.c  1.126   2 weeks  florian   gmtime(3) / locatime(3) can fail when timestamps are way off. Add missing error...
[TXT] x509.h  1.22   16 years  tom   Allow key exchange with RSA signature authentication to work with Cisco IOS and ...
[TXT] GNUmakefile (in the Attic) [Hide]  1.14   19 years  deraadt   nothing uses this
[TXT] README.PKI (in the Attic) [Hide]  1.8   18 years  hshoexer   This file is outdated, everything needed for setting up PKI is in the man pages ...
[TXT] asn.c (in the Attic) [Hide]  1.9   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] asn.h (in the Attic) [Hide]  1.5   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] asn_useful.c (in the Attic) [Hide]  1.8   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] asn_useful.h (in the Attic) [Hide]  1.4   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] dyn.c (in the Attic) [Hide]  1.2   21 years  ho   The dlopen() stuff goes away.
[TXT] dyn.h (in the Attic) [Hide]  1.2   21 years  ho   The dlopen() stuff goes away.
[TXT] gmp_util.c (in the Attic) [Hide]  1.13   19 years  hshoexer   kill gmp
[TXT] gmp_util.h (in the Attic) [Hide]  1.9   19 years  hshoexer   kill gmp
[TXT] isakmpd.conf.sample (in the Attic) [Hide]  1.8   24 years  niklas   Merge with EOM 1.27 author: niklas Not a good sample anymore
[TXT] isakmpd_cert.sample (in the Attic) [Hide]  1.2   24 years  niklas   Remove bad examples of stuff we do not yet support in this version anyhow
[TXT] isakmpd_key.pub.sample (in the Attic) [Hide]  1.2   24 years  niklas   Remove bad examples of stuff we do not yet support in this version anyhow
[TXT] isakmpd_key.sample (in the Attic) [Hide]  1.2   24 years  niklas   Remove bad examples of stuff we do not yet support in this version anyhow
[TXT] libcrypto.c (in the Attic) [Hide]  1.20   2 years  tb   isakmpd: remove libcrypto.c All this does is a call to OpenSSL_add_all_algorith...
[TXT] math_2n.c (in the Attic) [Hide]  1.27   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_2n.h (in the Attic) [Hide]  1.10   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_ec2n.c (in the Attic) [Hide]  1.14   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_ec2n.h (in the Attic) [Hide]  1.8   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_group.c (in the Attic) [Hide]  1.33   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_group.h (in the Attic) [Hide]  1.13   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] math_mp.h (in the Attic) [Hide]  1.8   13 years  reyk   Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small...
[TXT] pf_encap.c (in the Attic) [Hide]  1.25   22 years  ho   Remove support for PF_ENCAP (deprecated since OpenBSD2.5).
[TXT] pf_encap.h (in the Attic) [Hide]  1.10   22 years  ho   Remove support for PF_ENCAP (deprecated since OpenBSD2.5).
[TXT] pkcs.c (in the Attic) [Hide]  1.11   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] pkcs.h (in the Attic) [Hide]  1.6   24 years  niklas   regress/x509/certificate.txt: Merge with EOM 1.4 asn_useful.h: Merge with EOM 1....
[TXT] sysdep-openbsd.c (in the Attic) [Hide]  1.4   25 years  niklas   Merge from the Ericsson repository
[TXT] sysdep.c (in the Attic) [Hide]  1.3   25 years  niklas   Merge from the Ericsson repository
[TXT] sysdep.h (in the Attic) [Hide]  1.26   10 years  deraadt   improve randomization. remove some junk debugging features that are fundamental...