Age | Commit message (Collapse) | Author | |
---|---|---|---|
2016-01-24 | 0.12.105+vyos2+current1debian/0.12.105+vyos2+current1 | Kim Hagen | |
2015-12-16 | Fix build depends. | Thomas Jepp | |
2015-06-28 | 0.12.105+vyos2+lithium17debian/0.12.105+vyos2+lithium17 | Alex Harpin | |
2015-06-26 | vyatta-cfg-vpn: validate local address for vti based vpn connections | Alex Harpin | |
Validate the local address used for VTI based VPN connections to ensure only either an IPv4 or IPv6 address is used. Currently VTIs can only accept these for local addresses, other values will fail with extraneous error messages, trap these earlier in the configuation commit process for now. Bug #213 http://bugzilla.vyos.net/show_bug.cgi?id=213 | |||
2015-06-26 | 0.12.105+vyos2+lithium16debian/0.12.105+vyos2+lithium16 | Alex Harpin | |
2015-06-22 | vyatta-cfg-vpn: validate peer address for vti based vpn connections | Alex Harpin | |
Validate the peer address used for VTI based VPN connections to ensure only either an IPv4 or IPv6 address is used. Currently VTIs can only accept these for peer addresses, other values will fail with extraneous error messages, trap these earlier in the configuation commit process for now. Bug #359 http://bugzilla.vyos.net/show_bug.cgi?id=359 | |||
2015-06-18 | 0.12.105+vyos2+lithium15debian/0.12.105+vyos2+lithium15 | Alex Harpin | |
2015-06-18 | vyatta-cfg-vpn: vti interfaces remain link down after ipsec sa renewal | Alex Harpin | |
VTI interfaces can remain link down after IPSec SA expiry and renewal, leaving the actual IPSec tunnel up and active but the route relating to this VTI interface absent from the routing table; with the end result of no traffic passing through it without manual intervention. Earlier fixes for this issue in both bug #183 and bug #291 fixed one issue but introduced another, this commit fixes both scenarios. Bug #568 http://bugzilla.vyos.net/show_bug.cgi?id=568 | |||
2015-06-17 | vyatta-cfg-vpn: further tidy up of vyatta-vti-config.pl | Alex Harpin | |
Remove old comments and other minor tidying up / rearranging of scripts/vyatta-vti-config.pl | |||
2015-06-17 | vyatta-cfg-vpn: formatting changes for style consistency | Alex Harpin | |
Perltidy run on scripts/vyatta-vti-config.pl to have consistent identation levels and style throughout. | |||
2015-06-16 | 0.12.105+vyos2+lithium14debian/0.12.105+vyos2+lithium14 | Alex Harpin | |
2015-06-16 | vyatta-cfg-vpn: update dh_gencontrol with new development build flag | Alex Harpin | |
2015-06-14 | 0.12.105+vyos2+lithium13debian/0.12.105+vyos2+lithium13 | Daniil Baturin | |
2015-06-14 | Bug #504: add an option for pulling IPsec local id from the cert. | Daniil Baturin | |
2015-05-04 | 0.12.105+vyos2+lithium12debian/0.12.105+vyos2+lithium12 | Daniil Baturin | |
2015-05-04 | Bug #469: add options for AES-128/256-GCM mode. | Daniil Baturin | |
2015-04-02 | 0.12.105+vyos2+lithium11debian/0.12.105+vyos2+lithium11 | Alex Harpin | |
2015-02-16 | Move execution of nhrp script to "end" of ipsec config so it executes on all ↵ | Kim Hagen | |
changes made to the ipsec config | |||
2015-02-09 | 0.12.105+vyos2+lithium10debian/0.12.105+vyos2+lithium10 | Alex Harpin | |
2015-02-02 | Bug #367 - DMVPN Testing, but I do not see ESP traffic. | Kim Hagen | |
2015-01-19 | 0.12.105+vyos2+lithium9debian/0.12.105+vyos2+lithium9 | Daniil Baturin | |
2015-01-19 | Remove @ from the id/remote-id help string. It was never required. | Daniil Baturin | |
2015-01-19 | 0.12.105+vyos2+lithium8debian/0.12.105+vyos2+lithium8 | Daniil Baturin | |
2015-01-19 | Bug #348: remove unnecessary restrictions on the PSK format. | Daniil Baturin | |
2015-01-17 | 0.12.105+vyos2+lithium7debian/0.12.105+vyos2+lithium7 | Alex Harpin | |
2015-01-17 | vyatta-cfg-vpn: update pre-shared secret key help for single quotes | Alex Harpin | |
Updated the help for pre-shared secret key usage when special characters are used. These need to be enclosed in single quotes to stop them being expanded by the bash shell. Bug #451 http://bugzilla.vyos.net/show_bug.cgi?id=451 | |||
2014-12-26 | 0.12.105+vyos2+lithium6debian/0.12.105+vyos2+lithium6 | Alex Harpin | |
2014-12-26 | Update maintainer address | Alex Harpin | |
2014-12-19 | 0.12.105+vyos2+lithium5debian/0.12.105+vyos2+lithium5 | Daniil Baturin | |
2014-12-19 | Bug #415: use remote-id for peer ID unconditionally if it's set. | Daniil Baturin | |
2014-12-19 | Bug #414: quote the leftid value to avoid problems with non-alphanumeric ↵ | Daniil Baturin | |
characters. | |||
2014-12-18 | Merge pull request #11 from jhendryUK/ikev2_reauth_option | Daniil Baturin | |
Ikev2 reauth option | |||
2014-12-05 | 0.12.105+vyos2+lithium4debian/0.12.105+vyos2+lithium4 | Alex Harpin | |
2014-12-05 | vyatta-cfg-vpn: remove the cfgvti helper program | Alex Harpin | |
The cfgvti helper program was originally added for configuring VTIs. The functionality it provided is now included upstream in iproute, so it is no longer required following the previous commits for Bug #358. Bug #358 http://bugzilla.vyos.net/show_bug.cgi?id=358 | |||
2014-12-05 | 0.12.105+vyos2+lithium3debian/0.12.105+vyos2+lithium3 | Alex Harpin | |
2014-12-04 | vyatta-cfg-vpn: formatting changes for style consistency | Alex Harpin | |
Update lib/Vyatta/VPN/vtiIntf.pm to have consistent identation levels and style throughout. | |||
2014-12-04 | vyatta-cfg-vpn: reduce the vti mark base to prevent integer overflow | Alex Harpin | |
Reduce the vtiMarkBase value to prevent integer overflow on the created ip xfrm states and policies. | |||
2014-12-04 | vyatta-cfg-vpn: update vti creation in line with changes to strongswan | Alex Harpin | |
Update the VTI creation process to go along with the changes added to the vyatta-strongswan package, due to changes in the kernel vti module. This also removes the need for additional netfilter rules to ensure that packets are directed to the corresponding VTI. Bug #358 http://bugzilla.vyos.net/show_bug.cgi?id=358 | |||
2014-12-04 | vyatta-cfg-vpn: update parseVtiTun to account for vti changes | Alex Harpin | |
Update the parseVtiTun function to account for the new way of configuring VTIs. Bug #358 http://bugzilla.vyos.net/show_bug.cgi?id=358 | |||
2014-12-04 | vyatta-cfg-vpn: move scripts/vtiIntf.pm to lib/Vyatta/VPN/vtiIntf.pm | Alex Harpin | |
Move vtiIntf.pm to a more logical place, in line with all the other packages. | |||
2014-12-01 | Fixing syntax error in vpn-config.pl, fixing allowed parameters in the ↵ | Jason Hendry | |
per-tunnel ikev2-reauth node | |||
2014-12-01 | Exposing ikev2 reauth option in CLI, defaulting to 'no' | Jason Hendry | |
2014-10-29 | 0.12.105+vyos2+lithium2debian/0.12.105+vyos2+lithium2 | Daniil Baturin | |
2014-10-29 | Update changelog for the new branch. | Daniil Baturin | |
2014-10-19 | 0.12.105+vyos1+helium4debian/0.12.105+vyos1+helium4 | Daniil Baturin | |
2014-10-19 | Remove the VTI script after use. | Daniil Baturin | |
2014-10-08 | 0.12.105+vyos1+helium3debian/0.12.105+vyos1+helium3 | Daniil Baturin | |
2014-10-06 | Merge pull request #10 from cyclops8456/helium | Daniil Baturin | |
Commits for Bug #291 and Bug #332 | |||
2014-10-05 | vyatta-cfg-vpn: prevent duplicate local rsa key includes | Alex Harpin | |
Prevent duplicate include statements, for the local rsa keys, being added to the ipsec.secrets file when more than one VPN connection is configured. Bug #332 http://bugzilla.vyos.net/show_bug.cgi?id=332 | |||
2014-10-05 | vyatta-cfg-vpn: formatting changes for style consistency | Alex Harpin | |
Update scripts/vpn-config.pl to have consistent identation levels and style throughout. |