IPsec implementation with IKEv1 and IKEv2 keying protocols
Maintenance and bugfix release.
- Only use NSS's certificateUsageIPsec, not certificateUsageSSL
- fix CISCO's split support (requires cisco-split=yes)
- share-lease=yes|no (default yes) to share XAUTH/ModeCfg lease IP on multiple connections
- CRL code maintenance
- Remove unused _stackmanager
- Merge addconn and whack parsers
Originally written by Paul Wouters in:
|
||
---|---|---|
.fmf | ||
plans | ||
.gitignore | ||
changelog | ||
ci.fmf | ||
gating.yaml | ||
libreswan-4.6-ikev1-policy-defaults-to-drop.patch | ||
libreswan-4.12-libcap-ng.patch | ||
libreswan-4.15-ipsec_import.patch | ||
libreswan-4.15-netlink-extack.patch | ||
libreswan-4.15-ondemand-tcp.patch | ||
libreswan-5.1-opt-protoport.patch | ||
libreswan-5.1-pexpect-negotiating-ike-sa.patch | ||
libreswan-5.1-rereadsecrets.patch | ||
libreswan-5.1-whack-ctlsocket.patch | ||
libreswan-5.2-pexpect-no-ike-sa-for-orphan-child.patch | ||
LIBRESWAN-OpenPGP-KEY.txt | ||
libreswan.spec | ||
sources |