Click on a directory to enter that directory. Click on a file to display its revision history and to get a chance to display diffs between revisions.
Current directory: [local] / src / sbin / isakmpd
Current tag: OPENBSD_5_8
File | Rev. | Age | Author | Last log entry |
---|---|---|---|---|
Parent Directory | ||||
apps/ | ||||
features/ | ||||
regress/ | ||||
samples/ | ||||
sysdep/ | ||||
BUGS | 1.15 | 18 years | hshoexer | Big spelling cleanup, no binary change. From david@ |
DESIGN-NOTES | 1.25 | 18 years | hshoexer | Big spelling cleanup, no binary change. From david@ |
Makefile | 1.84 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
QUESTIONS | 1.5 | 20 years | jmc | updated URL from Jared Yanovich; |
README | 1.19 | 21 years | kjell | typo: noneheless->nontheless |
TO-DO | 1.26 | 20 years | markus | support AES in phase 1, too. switch to OpenSSL EVP interface; with Hans-Joerg.Ho... |
app.c | 1.13 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
app.h | 1.7 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
attribute.c | 1.12 | 19 years | cloder | Make deterministic randomness (only ever used for testing) a compile-time option... |
attribute.h | 1.6 | 20 years | hshoexer | Some more KNF, no binary change. ok ho@ |
cert.c | 1.33 | 11 years | deraadt | remove excessive includes |
cert.h | 1.16 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
conf.c | 1.103 | 10 years | deraadt | Whole bunch of (unsigned char) casts carefully added for ctype calls. Careful se... |
conf.h | 1.34 | 17 years | hshoexer | Make SA deletion on shutdown the default again. Use -S for failover situations ... |
connection.c | 1.37 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
connection.h | 1.5 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
constants.c | 1.10 | 19 years | cloder | Make deterministic randomness (only ever used for testing) a compile-time option... |
constants.h | 1.6 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
cookie.c | 1.16 | 10 years | deraadt | Remove a mid-layer which acts like arc4random isn't fairly standard. ok mikeb |
cookie.h | 1.7 | 20 years | hshoexer | Some more KNF, no binary change. ok ho@ |
crypto.c | 1.32 | 11 years | deraadt | remove excessive includes |
crypto.h | 1.20 | 13 years | mikeb | convert to fuse cast from the libcrypto. with a simplification nit from blamber... |
dh.c | 1.19 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
dh.h | 1.9 | 9 years | reyk | Sync dh.[ch] from iked. The files are identical, so any change in either iked o... |
dnssec.c | 1.24 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
dnssec.h | 1.7 | 20 years | hshoexer | Some more KNF, no binary change. ok ho@ |
doi.c | 1.11 | 11 years | deraadt | remove excessive includes |
doi.h | 1.15 | 19 years | deraadt | USE_DEBUG is bye bye |
dpd.c | 1.18 | 10 years | deraadt | Remove a mid-layer which acts like arc4random isn't fairly standard. ok mikeb |
dpd.h | 1.3 | 18 years | markus | don't send DPD messages before the exchange is finialized, otherwise we have a r... |
exchange.c | 1.136 | 9 years | mikeb | Log if we refuse to continue the exchange when another one that corresponds to t... |
exchange.h | 1.34 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
exchange_num.cst | 1.5 | 18 years | hshoexer | Big spelling cleanup, no binary change. From david@ |
field.c | 1.20 | 9 years | millert | Do not assume that asprintf() clears the pointer on failure, which is non-portab... |
field.h | 1.6 | 20 years | hshoexer | More KNF. Mainly spaces and line-wraps, no binary change. ok ho@ |
genconstants.sh | 1.13 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
genfields.sh | 1.10 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
hash.c | 1.23 | 11 years | deraadt | remove excessive includes |
hash.h | 1.8 | 17 years | hshoexer | support sha2 for main mode hmacs and aesctr for quick mode encryption. ok markus... |
if.c | 1.25 | 19 years | cloder | Make deterministic randomness (only ever used for testing) a compile-time option... |
if.h | 1.7 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
ike_aggressive.c | 1.11 | 13 years | reyk | Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small... |
ike_aggressive.h | 1.5 | 20 years | hshoexer | More KNF. Mainly spaces and line-wraps, no binary change. ok ho@ |
ike_auth.c | 1.113 | 9 years | jsg | No need to do "size = (size_t)sb.st_size" both before and after a fstat() call. ... |
ike_auth.h | 1.5 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
ike_main_mode.c | 1.17 | 13 years | reyk | Replace the hand-crafted Diffie-Hellman implementation in isakmpd with the small... |
ike_main_mode.h | 1.6 | 20 years | hshoexer | More KNF. Mainly spaces and line-wraps, no binary change. ok ho@ |
ike_phase_1.c | 1.74 | 9 years | tedu | convert bcmp to memcmp ok doug millert miod |
ike_phase_1.h | 1.4 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
ike_quick_mode.c | 1.108 | 9 years | deraadt | obvious reallocarray() conversions |
ike_quick_mode.h | 1.6 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
init.c | 1.41 | 11 years | deraadt | remove old backwards random junk ok mikeb |
init.h | 1.6 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
ipsec.c | 1.143 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
ipsec.h | 1.26 | 18 years | hshoexer | Big whitespace cleanup. |
ipsec_doi.h | 1.8 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
ipsec_fld.fld | 1.5 | 21 years | ho | Remove clauses 3 and 4. With approval from Niklas Hallqvist and Niels Provos. |
ipsec_num.cst | 1.19 | 11 years | naddy | enable use of AES-{192,256}-CTR, and explicitly of AES-128-CTR, for IPsec ESP ok... |
isakmp.h | 1.7 | 19 years | ho | NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok. |
isakmp_cfg.c | 1.39 | 10 years | deraadt | Remove a mid-layer which acts like arc4random isn't fairly standard. ok mikeb |
isakmp_cfg.h | 1.5 | 20 years | hshoexer | More KNF. Mainly spaces and line-wraps, no binary change. ok ho@ |
isakmp_doi.c | 1.26 | 13 years | todd | as determined 4 years ago, FortiGate needs DOI of 0 responses to DPD so, copy a ... |
isakmp_doi.h | 1.5 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
isakmp_fld.fld | 1.8 | 19 years | ho | NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok. |
isakmp_num.cst | 1.13 | 18 years | hshoexer | typo in comment |
isakmpd.8 | 1.116 | 9 years | schwarze | Tweak previous: Do not put punctuation on its own line, put it at the end of the... |
isakmpd.c | 1.102 | 9 years | deraadt | When getopt processing flags, many should be flag=1 instead of flag++ ok tedu mi... |
isakmpd.conf.5 | 1.131 | 9 years | schwarze | Arguments are just ".Ar", not ".Brq Ar" or even ".Ns { Ns Ar ... Ns }". The .Ar ... |
isakmpd.policy.5 | 1.46 | 11 years | mikeb | Support additional MODP DH groups in the Phase 1 and Phase 2. lteo@ noticed that... |
key.c | 1.25 | 17 years | moritz | Set pointer to NULL after freeing it, so callers of key_from_printable() are not... |
key.h | 1.8 | 18 years | cloder | Be cleaner about signed vs. unsigned when it's easy to do so. OK hshoexer |
libcrypto.h | 1.18 | 9 years | jsg | add additional includes required to build with -DOPENSSL_NO_DEPRECATED |
log.c | 1.62 | 9 years | lteo | Remove unnecessary netinet/in_systm.h include. ok millert@ |
log.h | 1.25 | 15 years | hshoexer | mark log_fatal() and monitor_exit() as __dead, as they do not return. |
message.c | 1.127 | 9 years | deraadt | obvious reallocarray() conversions |
message.h | 1.26 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
monitor.c | 1.73 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
monitor.h | 1.19 | 15 years | hshoexer | mark log_fatal() and monitor_exit() as __dead, as they do not return. |
monitor_fdpass.c | 1.16 | 16 years | deraadt | msg_controllen has to be CMSG_SPACE so that the kernel can account for each cmsg... |
nat_traversal.c | 1.22 | 9 years | krw | Nuke yet more obvious #include duplications. ok deraadt@ |
nat_traversal.h | 1.4 | 18 years | hshoexer | Use payload NAT-D or NAT-D-DRAFT according to NAT-T vendor ID advertised by the ... |
pf_key_v2.c | 1.194 | 9 years | mikeb | Remove unsupported SADB_X_IDENTTYPE_CONNECTION; OK markus, hshoexer |
pf_key_v2.h | 1.13 | 18 years | markus | export pf_key_v2_disable_sa() (unbreaks build) |
policy.c | 1.97 | 10 years | deraadt | Whole bunch of (unsigned char) casts carefully added for ctype calls. Careful se... |
policy.h | 1.17 | 16 years | tom | Allow key exchange with RSA signature authentication to work with Cisco IOS and ... |
prf.c | 1.16 | 11 years | deraadt | remove excessive includes |
prf.h | 1.10 | 20 years | deraadt | partial move to KNF. More to come. This has happened because there are a raft ... |
sa.c | 1.121 | 9 years | deraadt | obvious reallocarray() conversions |
sa.h | 1.52 | 9 years | mikeb | Remove bits of unfinished IPsec proxy support. DNS' KX records, anyone? ok mark... |
timer.c | 1.16 | 11 years | guenther | Stop assuming time_t is long ok deraadt@ |
timer.h | 1.8 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
transport.c | 1.36 | 11 years | deraadt | remove excessive includes |
transport.h | 1.19 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
udp.c | 1.95 | 15 years | bluhm | If isakmpd is started with -4 or -6, virtual_get_default() may return NULL. Thi... |
udp.h | 1.11 | 19 years | hshoexer | Zap -P option. It has never done anything. While there tweak descripton of -N.... |
udp_encap.c | 1.22 | 10 years | deraadt | improve randomization. remove some junk debugging features that are fundamental... |
udp_encap.h | 1.2 | 19 years | hshoexer | remove unused variable. |
ui.c | 1.56 | 9 years | tedu | memcpy abort found an overlap. from dsp at 2f30. ok deraadt |
ui.h | 1.8 | 17 years | mpf | Add a new UI command to force isakmpd into passive only mode. Will be used by sa... |
util.c | 1.68 | 10 years | deraadt | Remove a mid-layer which acts like arc4random isn't fairly standard. ok mikeb |
util.h | 1.32 | 10 years | deraadt | Remove a mid-layer which acts like arc4random isn't fairly standard. ok mikeb |
vendor.c | 1.5 | 12 years | markus | set the vendor string to OpenBSD-5.2; ok mikeb@ |
vendor.h | 1.2 | 17 years | pedro | typo in initial RCS tag ($OpenBSD: -> $OpenBSD$) |
virtual.c | 1.31 | 13 years | phessler | When binding to addresses, ignore any IP address not in the current routing doma... |
virtual.h | 1.1 | 19 years | ho | NAT-Traversal for isakmpd. Work in progress... hshoexer@ ok. |
x509.c | 1.118 | 9 years | deraadt | Replace <sys/param.h> with <limits.h> and other less dirty headers where possibl... |
x509.h | 1.22 | 16 years | tom | Allow key exchange with RSA signature authentication to work with Cisco IOS and ... |
libcrypto.c (in the Attic) [Hide] | 1.19 | 19 years | cloder | Make deterministic randomness (only ever used for testing) a compile-time option... |