Commit Graph

  • 6f6f7b8de2 [server] update fw_config_init() to allow access stanza key information to be zeroed out upon error (#93) Michael Rash 2013-07-06 15:05:09 -04:00
  • cb61fd886d [server] minor header formating update Michael Rash 2013-07-06 14:53:04 -04:00
  • 4ff518d54a [server] zero out access stanza key information before exit (in support of #93) Michael Rash 2013-07-06 14:52:46 -04:00
  • ff8a3ef3a4 Another change. Franck Joncourt 2013-06-30 22:38:41 +02:00
  • 9d7feb52f6 Merge remote-tracking branch 'upstream/master' Franck Joncourt 2013-06-30 22:22:34 +02:00
  • c2e1a00154 s/GNU Public/GNU General Public/g Franck Joncourt 2013-06-30 22:21:22 +02:00
  • ce10734c3a Added LICENSE section and a link to the fwknop tutorial Michael Rash 2013-06-30 16:12:29 -04:00
  • a792e8bf4e minor man page documentation updates (added twitter reference) Michael Rash 2013-06-30 15:55:01 -04:00
  • f1e946cf02 updated README to include the introduction from the fwknop man page Michael Rash 2013-06-30 15:52:47 -04:00
  • f55b89c867 [libfko] Have 'make install' run ldconfig if basic fwknop/fwknopd -h exec fails Michael Rash 2013-06-30 14:50:12 -04:00
  • 8ed088051e [libfko] fix a few 'Overfull \hbox' errors in libfko .pdf generation Michael Rash 2013-06-29 10:39:07 -04:00
  • 5a4a8a5baa [server] convert several LOG_INFO messages to LOG_DEBUG Michael Rash 2013-06-27 22:15:39 -04:00
  • 7eacb5ba5a Merge remote-tracking branch 'fjoncourt/master' Michael Rash 2013-06-27 21:55:58 -04:00
  • 5a0700eb46 * Mentionned the VERBOSE variable in fwknopd.conf. * Made sure the -v command line switch overrides the value of the VERBOSE variable set in an fwknopd.conf file. Franck Joncourt 2013-06-25 22:04:54 +02:00
  • 10fdbb509c s/VERBOSITY/VERBOSE/g on the server side for consistency purposes. Franck Joncourt 2013-06-25 21:56:53 +02:00
  • 7fde3949da Fixed use of --verbose command line switch. Franck Joncourt 2013-06-24 23:15:50 +02:00
  • 5db1eeb268 Interim commit to add a VERBOSE variable to fwknopd. Franck Joncourt 2013-06-20 23:33:04 +02:00
  • 25058f9d13 [test suite] bug fix for rotate digest cache tests Michael Rash 2013-06-27 21:26:49 -04:00
  • 1a9c8914df bumped VERSION file to fwknop-2.5 Michael Rash 2013-06-27 21:26:31 -04:00
  • 37b624ac8b bump version to 2.5, minor fwknopd -S exit status update Michael Rash 2013-06-27 21:21:10 -04:00
  • 47a7ffe22b Merge remote-tracking branch 'upstream/master' Franck Joncourt 2013-06-25 23:03:28 +02:00
  • 5413d1c48c * Mentionned the VERBOSE variable in fwknopd.conf. * Made sure the -v command line switch overrides the value of the VERBOSE variable set in an fwknopd.conf file. Franck Joncourt 2013-06-25 22:04:54 +02:00
  • 4525a7e57c s/VERBOSITY/VERBOSE/g on the server side for consistency purposes. Franck Joncourt 2013-06-25 21:56:53 +02:00
  • 07f96f86f8 Fixed use of --verbose command line switch. Franck Joncourt 2013-06-24 23:15:50 +02:00
  • 2812897666 ChangeLog 2.5 updates Michael Rash 2013-06-21 21:37:23 -04:00
  • d125146c37 [server] minor --help update to include cipherdyne.org URL Michael Rash 2013-06-21 21:11:23 -04:00
  • 371036bad0 [client] re-use encryption/HMAC keys in --test mode Michael Rash 2013-06-21 21:08:38 -04:00
  • 6b132862fd [client] minor man page backwards compatibility wording tweak Michael Rash 2013-06-20 22:12:29 -04:00
  • 047513710a [client] add GPG_NO_SIGNING_PW to --save-rc-stanza functionality Michael Rash 2013-06-20 22:11:42 -04:00
  • afd6f6b23c Interim commit to add a VERBOSE variable to fwknopd. Franck Joncourt 2013-06-20 23:33:04 +02:00
  • 1d17c4093b added fwknoprc gpg signing pw test conf files to Makefile.am Michael Rash 2013-06-19 23:47:04 -04:00
  • 68acbaadc4 remove newline chars from log_msg() calls Michael Rash 2013-06-19 23:42:58 -04:00
  • 13626a2a74 [test suite] added tests for KEY synonym GPG_SIGNING_PW Michael Rash 2013-06-19 23:41:37 -04:00
  • 54c26ede6e [libfko] defensive coding update to quiet minor CLANG static analyzer false positives Michael Rash 2013-06-19 23:38:37 -04:00
  • e3a2289d70 [client] man page update to include GPG_SIGNING_PW synonym for KEY variable in GPG mode Michael Rash 2013-06-19 23:37:19 -04:00
  • a2d16f8c5e [test suite] minor permission modification update to use %cf hash Michael Rash 2013-06-18 23:12:42 -04:00
  • 13173343ee [client] add GPG_ALLOW_NO_SIGNING_PW and --gpg-no-signing-pw Michael Rash 2013-06-18 22:51:22 -04:00
  • 21dc87ace5 [test suite] bug fix for missing file permission mods noticed by Franck Michael Rash 2013-06-18 22:50:10 -04:00
  • 2014cf767a Merge remote-tracking branch 'fjoncourt/master' Michael Rash 2013-06-18 22:48:33 -04:00
  • 5667d8e151 Fixed default verbosity to LOG_NOTICE rather than LOG_WARNING. Franck Joncourt 2013-06-18 22:12:41 +02:00
  • 2cc1ac65bc Replaced some uses of *fprintf(stderr* by *log_msg(LOG_ERR* in config_init.c Franck Joncourt 2013-06-17 12:31:07 +02:00
  • f418bc2187 Merge remote-tracking branch 'upstream/master' Franck Joncourt 2013-06-16 22:28:26 +02:00
  • 57cf6dc472 s/fprintf(stderr/log_msg(LOG_ERR/ Franck Joncourt 2013-06-16 22:16:41 +02:00
  • 84f8704949 Fix static_log_flag in the log_module. Franck Joncourt 2013-06-16 21:24:37 +02:00
  • 935565cd90 Fix log_msg(). Franck Joncourt 2013-06-16 21:16:25 +02:00
  • b48295c69b Interim commit to make the log_msg strategy. Franck Joncourt 2013-06-16 19:12:06 +02:00
  • afbf6d51c0 [client] minor man page backwards compatibility update to include better examples Michael Rash 2013-06-16 08:27:29 -04:00
  • b0c9ed52ba [test suite] bug fix for proper replay attack regex searching of test output, added several replay attack tests Michael Rash 2013-06-15 21:20:39 -04:00
  • 8155cf3331 [server] ensure 'Rule added' log messages are generated when create_rule() is called Michael Rash 2013-06-13 21:23:59 -04:00
  • c23d2d644f minor typo and format fixes Michael Rash 2013-06-13 21:22:58 -04:00
  • 1341601a66 [server] when log_msg() is called fflush() output to stderr (when stderr is used) Michael Rash 2013-06-13 21:21:40 -04:00
  • 48b2213780 [client] truncate args save file with open() Michael Rash 2013-06-13 21:20:11 -04:00
  • fc8a74131b [test suite] minor OS compatibility test re-order Michael Rash 2013-06-12 23:10:19 -04:00
  • ea0ecc8cbe [libfko] BYTEORDER macro update to 4321 or 1234 if all other methods fail Michael Rash 2013-06-12 23:09:55 -04:00
  • 12eab497c2 [test suite] added a few OS compatibility tests Michael Rash 2013-06-11 22:01:23 -04:00
  • ef8aa2e471 [test suite] minor bug fix to add 'iptables' to custom chain test titles Michael Rash 2013-06-10 22:38:55 -04:00
  • 978ddda337 bump version to 2.5-pre2 Michael Rash 2013-06-10 22:34:48 -04:00
  • ffeb285f7b [libfko] handle endian detection on PPC (and other) systems Michael Rash 2013-06-10 22:27:57 -04:00
  • 5c7f5f1b0b [libfko] use local strndup() if autoconf HAVE_STRNDUP not defined Michael Rash 2013-06-10 21:45:26 -04:00
  • 63ecfd54f2 added missing test suite conf/ files to Makefile.am Michael Rash 2013-06-10 21:21:52 -04:00
  • f9df2f6eca [test suite] additional --save-rc-stanza tests for vars not printed in fwknop client decode output Michael Rash 2013-06-10 21:18:37 -04:00
  • 0c19e5170a [test suite] added backwards compatibility tests with a dual usage key in access.conf Michael Rash 2013-06-10 21:16:33 -04:00
  • a3e06966b5 [client] minor man page wording update for backwards compatibility section Michael Rash 2013-06-10 21:14:09 -04:00
  • 46dadecf5a [client] minor man page tweak to use rc VERBOSE bool value (which is the default now) Michael Rash 2013-06-09 16:00:46 -04:00
  • 056fd44c24 [commit] default --verbose rc handling to bool Y/N values, but allow integers too when --verbose is given multiple times Michael Rash 2013-06-09 15:58:22 -04:00
  • dbfa2579a7 [client] minor man page tweak Michael Rash 2013-06-09 15:57:16 -04:00
  • 88e1e0e099 [test suite] added tests for setting gpg recipient, signer, and homedir via the client rc file Michael Rash 2013-06-09 15:27:19 -04:00
  • ac587f3c63 Merge branch 'master' of github.com:mrash/fwknop Michael Rash 2013-06-09 14:33:29 -04:00
  • 7a1bdea514 [server] fix 'Use of untrusted string value' bug found by Coverity Michael Rash 2013-06-09 14:28:17 -04:00
  • 3d688a5a08 Merge pull request #87 from fjoncourt/master Michael Rash 2013-06-06 20:22:55 -07:00
  • f491c41697 [server] minor addition of IPT_CHK_RULE_ARGS macro for iptables -C usage Michael Rash 2013-06-05 22:33:42 -04:00
  • 866e0a95d5 [server] minor bug fix to switch iptables comment match check to built-in INPUT chain Michael Rash 2013-06-05 21:46:51 -04:00
  • e515ba45fe Merge remote-tracking branch 'upstream/master' Franck Joncourt 2013-06-05 21:47:41 +02:00
  • 7dec26852a Updated fwknop manpage to document both the use of stdin and fd commands. Franck Joncourt 2013-06-05 21:38:26 +02:00
  • 17974a1c05 [server] comment additions regarding Coverity low priority TOCTOU issues Michael Rash 2013-06-04 22:17:59 -04:00
  • 59eb7fcf0f [extras] update spa-entropy.pl script to point fwknop client in gpg mode to the no-pw homedir Michael Rash 2013-06-04 21:17:15 -04:00
  • 8b62984887 Merge branch 'gpgme_autoconf_macro' Michael Rash 2013-06-03 21:59:26 -04:00
  • 7c4beabea0 a few HMAC doc updates to the libfko.texi file Michael Rash 2013-06-03 21:45:29 -04:00
  • 69ba2d7a06 fko-wrapper update to print fko_errstr() text, and to have one successful HMAC cycle Michael Rash 2013-06-03 20:54:40 -04:00
  • 66399fed1a Merge remote-tracking branch 'fjoncourt/master' Michael Rash 2013-06-02 22:54:23 -04:00
  • e7716b49c6 [test suite] minor bug fix to include the new legacy long key file in Makefile.am Michael Rash 2013-06-02 22:08:54 -04:00
  • 164888e075 [test suite] added backwards compatibility test for truncated keys longer > 16 chars Michael Rash 2013-06-02 21:19:19 -04:00
  • 583e1e02c7 Merge remote-tracking branch 'upstream/master' Franck Joncourt 2013-06-02 21:54:25 +02:00
  • 9fce10abd8 Adding support for reading encryption/key password from a file descriptor. Franck Joncourt 2013-06-02 21:36:17 +02:00
  • 2874205d05 started on libfko.texi function prototype and FKO error code documentation updates Michael Rash 2013-06-02 14:50:37 -04:00
  • 491e25a6bd restored the NEWS file since autoconf seems to need it Michael Rash 2013-06-02 14:29:37 -04:00
  • 382099e85a Updated copyright dates, removed NEWS file in favor of the ChangeLog Michael Rash 2013-06-02 14:07:01 -04:00
  • 1b41e606a7 Added backwards compatibility section to the client man page Michael Rash 2013-06-02 13:51:25 -04:00
  • 1c8d247887 ChangeLog update to mention the constant_runtime_cmp() change Michael Rash 2013-06-01 22:30:29 -04:00
  • af88af3e51 Merge branch 'hmac_timing_bug_fix' Michael Rash 2013-06-01 22:23:35 -04:00
  • b95292ef90 added fwknopd man page blurb for the ENABLE_PCAP_ANY_DIRECTION variable Michael Rash 2013-06-01 22:10:32 -04:00
  • 54872acfc3 Convert strncmp() calls to constant_runtime_cmp() at various places Michael Rash 2013-06-01 21:55:45 -04:00
  • f3af0d48c5 Interim commit to be able to load key from file descriptor (fd 0 for example). Franck Joncourt 2013-06-01 23:14:56 +02:00
  • 6706c53902 [libfko] HMAC comparison timing bug fix Michael Rash 2013-06-01 09:09:17 -04:00
  • 0f0f73636f [server] minor update to rename PCAP_ANY_DIRECTION -> ENABLE_PCAP_ANY_DIRECTION Michael Rash 2013-05-31 23:19:48 -04:00
  • 9b2cd9e2e5 [client] allow -D to be used in --save-rc-stanza mode if -n is not given Michael Rash 2013-05-31 23:01:47 -04:00
  • 32a6d05cdb added HMAC digests section to libfko info doc Michael Rash 2013-05-31 22:47:06 -04:00
  • 9cbb80d434 update man page in client/server directories to the latest Michael Rash 2013-05-31 21:36:49 -04:00
  • b4171fe90c [test suite] minor update to reduce logging noise in valgrind comparison test Michael Rash 2013-05-30 22:50:29 -04:00
  • b5c8146823 minor configure.ac typo fix for --help output Michael Rash 2013-05-30 22:42:13 -04:00