#
bbf21555 |
| 26-Feb-2022 |
Richard Lowe <richlowe@richlowe.net> |
14443 resection manual pages per IPD4 Reviewed by: Toomas Soome <tsoome@me.com> Reviewed by: Robert Mustacchi <rm@fingolfin.org> Reviewed by: Peter Tribble <peter.tribble@gmail.com> Reviewed by: Andy
14443 resection manual pages per IPD4 Reviewed by: Toomas Soome <tsoome@me.com> Reviewed by: Robert Mustacchi <rm@fingolfin.org> Reviewed by: Peter Tribble <peter.tribble@gmail.com> Reviewed by: Andy Fiddaman <andy@omnios.org> Approved by: Dan McDonald <danmcd@joyent.com>
show more ...
|
#
95c74518 |
| 23-Jan-2019 |
Toomas Soome <tsoome@me.com> |
11296 cmd-inet: NULL pointer errors Reviewed by: Andy Stormont <astormont@racktopsystems.com> Reviewed by: Garrett D'Amore <garrett@damore.org> Approved by: Garrett D'Amore <garrett@damore.org>
|
#
f02131e0 |
| 21-Jun-2010 |
Vladimir Kotal <Vladimir.Kotal@Sun.COM> |
6945640 ipseckey won't create SA between ipv6 link-local and multicast address; dumps core instead 6949084 pfp_delete_rule() has use-after-free problem
|
#
130b5e38 |
| 12-Apr-2010 |
Dan McDonald <danmcd@opensolaris.org> |
6440625 ipsecconf: unresolvable address should give specific error message 6925293 ipsecconf(1M) needs a receive-buffer increase for SPD_DUMP 6925300 combined-mode check in ipsecconf(1M) is inaccurat
6440625 ipsecconf: unresolvable address should give specific error message 6925293 ipsecconf(1M) needs a receive-buffer increase for SPD_DUMP 6925300 combined-mode check in ipsecconf(1M) is inaccurate, will fail with libumem 6925307 combined-mode ciphers shouldn't expand with encr_auth_algs when "any" is present.
show more ...
|
#
5033e0ce |
| 08-Dec-2009 |
Mark Fenwick <Mark.Fenwick@Sun.COM> |
6665041 refresh of svc:/network/ipsec/policy merges when it should replace
|
#
d0115d88 |
| 20-Nov-2009 |
Mark Fenwick <Mark.Fenwick@Sun.COM> |
6900753 Calls to dump_key in ikeadm.c could be refactored 6896962 ipsecconf incorrectly parses misconfigured hyphenated tokens 6898695 ipsecalgs -s causes kernel buffer corruption 6440628 ipseckey sh
6900753 Calls to dump_key in ikeadm.c could be refactored 6896962 ipsecconf incorrectly parses misconfigured hyphenated tokens 6898695 ipsecalgs -s causes kernel buffer corruption 6440628 ipseckey should ensure that argument is a file before parsing
show more ...
|
#
628b0c67 |
| 21-Oct-2009 |
Mark Fenwick <Mark.Fenwick@Sun.COM> |
PSARC 2009/513 Changes to IPsec ESP to support Combined mode ciphers 6704686 IPsec/ESP needs to support Combined mode ciphers 6704682 IPsec/ESP should use AES-CCM 6884664 IPsec/ESP should support AES
PSARC 2009/513 Changes to IPsec ESP to support Combined mode ciphers 6704686 IPsec/ESP needs to support Combined mode ciphers 6704682 IPsec/ESP should use AES-CCM 6884664 IPsec/ESP should support AES-GCM Mode 6840342 ipsecalgs out of memory error 6764184 tab instead of space in sadb.h
show more ...
|
#
a7d394f6 |
| 24-Aug-2009 |
Dan McDonald <danmcd@sun.com> |
6869318 ipsecconf(1M) should warn users that encryption without authentication is bad.
|
#
a13e0a0c |
| 24-Jul-2008 |
pwernau <none@none> |
6728988 ipsecconf -l doesn't deal with unresolvable hosts when local hostname is fully qualified
|
#
3abcb969 |
| 19-Nov-2007 |
pwernau <none@none> |
6629735 file descriptor leak causes ipsecconf to core dump with many rules 6629812 ipsecconf can core dump when it can't open its internal policy file
|
#
d5751483 |
| 23-Sep-2007 |
markfen <none@none> |
6601982 ipsecconf(1m) may ignore errors in configuration file
|
#
eec550ad |
| 14-Jun-2007 |
pwernau <none@none> |
6568747 ipsecconf has assert failure with port ranges 6569360 ipsecconf tries to put lipstick on a pig
|
#
e3320f40 |
| 15-May-2007 |
markfen <none@none> |
PSARC 2007/200 - Dedicated SMF services for IPsec/IKE 6185380 IPsec should be a separate (set) of smf(5) services 6440610 missing preshared remoteid line causes in.iked core dump on reading config 64
PSARC 2007/200 - Dedicated SMF services for IPsec/IKE 6185380 IPsec should be a separate (set) of smf(5) services 6440610 missing preshared remoteid line causes in.iked core dump on reading config 6462741 ipsecconf should have an option to check config file syntax 6467954 ipseckey exit code on failure inconsistent 6468456 ipsecconf uses strcpy() 6479903 in.iked with SMF should use _enter_daemon_lock() 6488927 ipseckey(1M) could do a better job of dealing with multiple errors 6497802 in.iked should use smf(5) properties instead of /etc/default/ipsec 6519836 ipseckey, ipsecconf require uid == 0, but configured to use profile 6529086 ipsec utilities can't deal with large files 6538478 Timestamp in in.iked debug output does not understand daylight savings time 6542255 in.iked can dump core when forced to load a new ike.preshared file with ikeadm. 6543263 ikeadm uses strcpy() 6543267 ipseckey uses strcpy() 6544087 memory leak with preshared key reloading
--HG-- rename : usr/src/cmd/cmd-inet/usr.sbin/ikeadm.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikeadm.c rename : usr/src/cmd/cmd-inet/usr.sbin/ikecert.sh => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikecert.sh rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecalgs.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecalgs.c rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecconf.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecconf.c rename : usr/src/cmd/cmd-inet/usr.sbin/ipseckey.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipseckey.c
show more ...
|