Commit Graph

  • f7f97d3f30 [server] firewalld reports 'success' as a string upon command success in contrast to iptables Michael Rash 2014-09-03 23:15:34 -04:00
  • 4fe549c451 added feature: firewalld Gerry Reno 2014-08-31 21:13:42 -04:00
  • 2da57da0cb more changes for firewalld Gerry Reno 2014-08-31 16:13:46 -04:00
  • ac82b1ced2 more changes for firewalld Gerry Reno 2014-08-31 13:51:08 -04:00
  • d47ebb602a more changes for firewalld Gerry Reno 2014-08-31 02:23:39 -04:00
  • 25d252c11a more changes for firewalld Gerry Reno 2014-08-31 00:29:17 -04:00
  • e54383b518 first cut at firewalld Gerry Reno 2014-08-31 00:06:37 -04:00
  • ea64f15ae7 added .gitignore Gerry Reno 2014-08-30 19:09:02 -04:00
  • 73186e511a Added WIN32 definitions for popen (_popen) and pclose (_pclose) to accommodate the call to wget on Windows-based systems. Damien Stuart 2014-08-30 16:18:46 -04:00
  • 8cec7eaeee Merge branch 'master' of ssh://github.com/mrash/fwknop Michael Rash 2014-08-26 23:23:31 -04:00
  • 4aacf32f3b Merge pull request #127 from g-reno/android-keypreserve Michael Rash 2014-08-26 23:22:15 -04:00
  • eb0e8eb6a1 fwknopd man page updates for access.conf vars Michael Rash 2014-08-26 23:21:14 -04:00
  • 934d764159 Minor update. Franck Joncourt 2014-08-24 21:14:45 +02:00
  • 306dd0f685 First layout to add c unit testing support to fwknop. Franck Joncourt 2014-08-24 21:05:44 +02:00
  • 00a057a09d ChangeLog update for FCS bug fix Michael Rash 2014-08-21 21:15:09 -04:00
  • dfcfb2e47b minor code restructure for Ethernet FCS header processing Michael Rash 2014-08-21 21:08:27 -04:00
  • e04f3fef21 added Ethernet FCS header test with pcap contributed by Bill Stubs Michael Rash 2014-08-21 21:07:52 -04:00
  • ba9078d990 Merge branch 'beaglebone_libpcap_workaround' of https://github.com/stubbsw/fwknop into stubbsw-beaglebone_libpcap_workaround Michael Rash 2014-08-21 20:44:48 -04:00
  • 813e4e0575 restore keys from prefs when app is launched Gerry Reno 2014-08-21 18:16:00 -04:00
  • 2c0606f2b8 pcap of spa with Ethernet FCS stubbsw 2014-08-21 07:04:55 -04:00
  • e4eb984869 Merge pull request #125 from stubbsw/beaglebone_libpcap_workaround Michael Rash 2014-08-20 23:20:40 -04:00
  • 19f31c3e23 update to indicate Ethernet FCS support vs. bug stubbsw 2014-08-19 06:54:18 -04:00
  • b98579ab8f workaround libpcap 4 extra bytes stubbsw 2014-08-17 11:50:56 -04:00
  • 36489b5222 append gdbm change to all changes since 2.6.2 Michael Rash 2014-07-28 22:41:56 -04:00
  • 5befed6bae removed gdbm/gdbm-devel dependencies for the RPM, bumped libfko to 2.0.3 for the RPM Michael Rash 2014-07-28 22:40:13 -04:00
  • 96e16cf6f4 extended ChangeLog.git to include libfko version bump Michael Rash 2014-07-28 22:28:46 -04:00
  • 71b97b6cad bumped libfko version to 2.0.3 Michael Rash 2014-07-28 21:46:32 -04:00
  • 67ca2f69ea changes since 2.6.2 to ChangeLog.git Michael Rash 2014-07-27 23:20:55 -04:00
  • 03000dde5d bumped version to 2.6.3 in preparation for release Michael Rash 2014-07-27 23:03:11 -04:00
  • fa154259d5 [test suite] added FreeBSD-10.0 and OpenBSD-5.5 compatibility tests Michael Rash 2014-07-27 22:56:15 -04:00
  • 24ccf03a90 added configure_max_coverage.sh helper script Michael Rash 2014-07-27 22:40:04 -04:00
  • 655abf6f0b [test suite] WGET_CMD and RESOLVE_HTTP_ONLY fwknoprc test coverage Michael Rash 2014-07-27 22:31:49 -04:00
  • 7f830e0239 revert gpg trustdb.gpg update from test suite Michael Rash 2014-07-27 22:10:01 -04:00
  • b06447384e [client] have autoconf resolve the absolute path to wget for SSL IP resolution Michael Rash 2014-07-27 22:03:58 -04:00
  • 4fcd5b317a [server] fix shift operation bug in SOURCE subnet processing spotted by Coverity Michael Rash 2014-07-26 23:43:48 -04:00
  • 134f4c6cfb Merge branch 'libfiu_fault_injection' Michael Rash 2014-07-25 17:44:27 -04:00
  • 59718f1a36 [client] Updated IP resolution mode -R to use SSL Michael Rash 2014-07-25 17:42:06 -04:00
  • e1608b90fe [client] call freeaddrinfo() early after iterating through getaddrinfo() results Michael Rash 2014-07-22 22:35:43 -04:00
  • 5fadf56af4 added extras/coverity/ directory for Coverity script Michael Rash 2014-07-22 22:05:29 -04:00
  • 666d150aff [client] make close() on socket handle more intuitive (resolves 'double close' bugs flagged by Coverity) Michael Rash 2014-07-22 22:04:44 -04:00
  • 73490209f7 [test suite] add access.conf file path to a few basic tests Michael Rash 2014-07-22 18:56:12 -04:00
  • 3df08e3c0e [test suite] handle PF on FreeBSD Michael Rash 2014-07-22 18:48:54 -04:00
  • eed3418996 [test suite] update wrapper Makefile gcc -> cc Michael Rash 2014-07-22 18:40:29 -04:00
  • 9470b3ce21 [test suite] README update to include --enable-complete mode Michael Rash 2014-07-21 23:59:44 -04:00
  • 7df1186c66 fixed several socket handle leaks under error conditions spotted by Coverity Michael Rash 2014-07-21 23:55:08 -04:00
  • 7d5b75886c added lcov coverage link Michael Rash 2014-07-19 17:26:15 -04:00
  • b2117e6fe7 ChangeLog updates Michael Rash 2014-07-19 17:18:59 -04:00
  • 641866deff [server] minor update print -> fprintf for PF firewall interface Michael Rash 2014-07-19 16:40:59 -04:00
  • 764d9ca26d fix gcc -Wstrlcpy-strlcat-size warnings Michael Rash 2014-07-19 16:30:53 -04:00
  • ec54b4fd11 fixed README paths Michael Rash 2014-07-19 16:30:00 -04:00
  • 2012d2d7d1 fixed README paths Michael Rash 2014-07-19 16:22:42 -04:00
  • 74428adae6 [server] Bug fix for PF firewalls without ALTQ support on FreeBSD. Michael Rash 2014-07-18 20:54:11 -04:00
  • 51506db24c minor README.md summary update Michael Rash 2014-07-11 22:41:32 -05:00
  • 6fe1107bbf minor README.md formating updates Michael Rash 2014-07-11 22:29:13 -05:00
  • f7004cec62 Merge pull request #122 from steakknife/convert_readme Michael Rash 2014-07-11 09:43:50 -05:00
  • 3d504cfc17 readme -> md Barry Allard 2014-07-08 19:09:29 -07:00
  • 3bd1d0742e [test suite] add --gpg-home-dir arg to GPG test Michael Rash 2014-07-07 22:55:34 -05:00
  • 7e1346c49a [test suite] add variable expansion and fwknopd override tests Michael Rash 2014-07-07 22:50:24 -05:00
  • 824ebe94f8 [test suite] run interrupt signal test against foreground fwknopd process Michael Rash 2014-07-07 22:41:17 -05:00
  • 1dccab0fc8 [server] handle signal vars in dedicated function Michael Rash 2014-07-07 22:37:08 -05:00
  • 3c06948414 [server] alert the user when config file variable expansion references invalid var Michael Rash 2014-07-07 22:30:49 -05:00
  • 0e5c4644fc [test suite] add GPG test for a manually altered SPA packet Michael Rash 2014-07-07 22:16:47 -05:00
  • 1b47173906 [test suite] add SYSLOG_FACILITY tests Michael Rash 2014-07-07 21:35:27 -05:00
  • 5c54ef00ad [server] refactor main() into a more natural breakdown of functions Michael Rash 2014-07-07 21:34:45 -05:00
  • 9f2e01eb01 [server] Fix uninitialized value usage after proper SPA authentication/decryption Michael Rash 2014-07-07 21:27:53 -05:00
  • 5474ced90b [test suite] extend invalid sniff interface test to include promisc mode Michael Rash 2014-07-05 23:10:26 -05:00
  • 77eb1a763f [test suite] add invalid sniff interface test Michael Rash 2014-07-05 22:44:40 -05:00
  • f0285ae2b5 [test suite] add invalid gpg sig ID list Michael Rash 2014-07-04 20:05:54 -04:00
  • ffa77a9e54 [test suite] add GPG_DISABLE_SIG test Michael Rash 2014-07-04 19:54:56 -04:00
  • a2ff2a396c [server] call clean_exit() upon check_dir_path() error Michael Rash 2014-07-03 10:31:30 -04:00
  • 5ced103207 [test suite] minor test coverage addition for invalid locale setting Michael Rash 2014-07-03 10:17:52 -04:00
  • fed2da3bb0 [test suite] additional valgrind suppression for pcap-file processing Michael Rash 2014-07-03 08:52:48 -04:00
  • 43b770320a [server] Require sig ID's or fingerprints when sigs are validated Michael Rash 2014-06-29 18:46:19 -04:00
  • 77384a904e [server] add access.conf variable GPG_FINGERPRINT_ID Michael Rash 2014-06-29 17:07:55 -04:00
  • 11b9732c16 [server] Call clean_exit() from daemon parent process Michael Rash 2014-06-29 17:23:20 -04:00
  • e41e0f5aaf [test suite] added iptables OUTPUT chain test Michael Rash 2014-06-24 22:54:27 -04:00
  • a4615a76b5 [test suite] add Rjindael HMAC --no-ipt-check-support test for udp/53 Michael Rash 2014-06-23 18:27:22 -04:00
  • 125f99aa3b [test suite] updated --gdb mode to run the first found fwknop command from an output/*.test file Michael Rash 2014-06-23 18:21:29 -04:00
  • e0001e4a5d [server] call clean_exit() on expand_acc_string_list() error Michael Rash 2014-06-23 18:10:01 -04:00
  • 189d0ea0bc [server] call clean_exit() on add_acc_string() error Michael Rash 2014-06-23 18:02:57 -04:00
  • ff65274e28 [server] make sure clean_exit() is called on any add_acc_b64_string() errs Michael Rash 2014-06-20 19:35:02 -04:00
  • fd0805c57a [server] minor memory leak fix for invalid FORCE_NAT var in access.conf Michael Rash 2014-06-20 19:22:35 -04:00
  • 74440be653 [server] minor pointer typo fix Michael Rash 2014-06-16 23:08:50 -04:00
  • 3557158620 [test suite] add valgrind suppressions for libfiu Michael Rash 2014-06-15 23:10:02 -04:00
  • 389e55ddfc [test suite] consolidate valgrind success/failure criteria into a single function Michael Rash 2014-06-15 10:55:19 -04:00
  • 55a03f3392 [test suite] added suppressions to fko-wrapper/run_valgrind.sh Michael Rash 2014-06-15 10:34:52 -04:00
  • 4878607254 [libfko] removed fko_new_strdup() fault injection tag since fko_destroy() isn't called Michael Rash 2014-06-15 10:21:21 -04:00
  • 054793fd9e [server] check fiu_enable() return value in --fault-injection mode Michael Rash 2014-06-15 09:48:37 -04:00
  • 34f7ebd082 [test suite] added strtol_wrapper() fault injection tags Michael Rash 2014-06-15 09:41:43 -04:00
  • 42a20616b4 [libfko] additional fault injection additions with test suite support Michael Rash 2014-06-14 21:27:18 -04:00
  • c00a3e7b26 [test suite] additional fault injection tests Michael Rash 2014-06-12 20:29:54 -04:00
  • 13ca6261b3 [test suite] minor update to not parse crash messages out of crash test output file Michael Rash 2014-06-12 20:29:24 -04:00
  • 06ce514111 [test suite] add several fault injection tests Michael Rash 2014-06-12 00:02:18 -04:00
  • d8b2ae370a [test suite] always run crash check at the end of test run Michael Rash 2014-06-12 00:01:58 -04:00
  • e02750e666 [server] skip firewall rules check in --test mode Michael Rash 2014-06-12 00:01:12 -04:00
  • 410624a858 [libfko] free() temp buffer right after strdup() call, add libfiu fault injection tags Michael Rash 2014-06-12 00:00:40 -04:00
  • 816962982f [server] clean up fko_destroy() calls in main access stanza loop Michael Rash 2014-06-11 23:59:08 -04:00
  • b8ad48eaa9 [test suite] added fiu-run fault injection tests against the fwknopd server Michael Rash 2014-06-09 21:50:55 -04:00
  • 8d31de7295 [server] skip replay storage in --test mode (since we're not granting access anyway) Michael Rash 2014-06-09 20:48:23 -04:00
  • 70f70091b1 [server] skip fw initialization and cleanup in --test mode Michael Rash 2014-06-09 20:45:01 -04:00