IPsec implementation with IKEv1 and IKEv2 keying protocols
Maintenance and bugfix release.
- Only use NSS's certificateUsageIPsec, not certificateUsageSSL
- fix CISCO's split support (requires cisco-split=yes)
- share-lease=yes|no (default yes) to share XAUTH/ModeCfg lease IP on multiple connections
- CRL code maintenance
- Remove unused _stackmanager
- Merge addconn and whack parsers
Originally written by Paul Wouters in:
|
||
|---|---|---|
| .fmf | ||
| plans | ||
| .gitignore | ||
| changelog | ||
| ci.fmf | ||
| gating.yaml | ||
| libreswan-4.6-ikev1-policy-defaults-to-drop.patch | ||
| libreswan-4.12-libcap-ng.patch | ||
| libreswan-4.15-ipsec_import.patch | ||
| libreswan-4.15-netlink-extack.patch | ||
| libreswan-4.15-ondemand-tcp.patch | ||
| libreswan-5.1-opt-protoport.patch | ||
| libreswan-5.1-pexpect-negotiating-ike-sa.patch | ||
| libreswan-5.1-rereadsecrets.patch | ||
| libreswan-5.1-whack-ctlsocket.patch | ||
| libreswan-5.2-pexpect-no-ike-sa-for-orphan-child.patch | ||
| LIBRESWAN-OpenPGP-KEY.txt | ||
| libreswan.spec | ||
| sources | ||