#
41c215c2 |
| 19-Apr-2010 |
Paul Wernau <Paul.Wernau@Sun.COM> |
PSARC 2010/101 in.iked preshared key file extensions 6511591 Support at least remote-prefixes for preshared key entries
|
#
5d01c172 |
| 12-Apr-2010 |
Vladimir Kotal <Vladimir.Kotal@Sun.COM> |
PSARC 2010/102 ikeadm dump algs 6927650 provide the list of DH groups in ikeadm 6927657 provide the list of algorithms offered by iked for IKE in ikeadm
|
#
46c08a97 |
| 11-Mar-2010 |
Bill Sommerfeld <sommerfeld@sun.com> |
PSARC 2010/055 ECP and RFC5114 groups for IKE 6586320 RFC 4753 ECP groups needed for IKE 6900895 RFC 5114 ECP Diffie-Hellman groups 6897862 RFC 5114 integer modulus Diffie-Hellman groups
|
#
510c3f91 |
| 22-Dec-2009 |
Vladimir Kotal <Vladimir.Kotal@Sun.COM> |
6874992 in.iked does not use network byte order for IP address in sendto() call 6874983 ikedoor.h is not C++ safe 6885833 IPsec utilities should print lifetimes in human readable format 6889086 ikead
6874992 in.iked does not use network byte order for IP address in sendto() call 6874983 ikedoor.h is not C++ safe 6885833 IPsec utilities should print lifetimes in human readable format 6889086 ikeadm reports kilobyte lifetimes with wrong units 6898492 iked should enforce lower maximum values for lifetimes 6897711 iked debug output should be less confusing for average sysadmin 6902926 SOFT kilobyte expires for inbound SAs should make it to userland and be reacted upon
show more ...
|
#
5d3b8cb7 |
| 03-Nov-2009 |
Bill Sommerfeld <sommerfeld@sun.com> |
PSARC/2008/252 Labeled IPsec phase 1 6886771 Labeled IPsec phase 1 6808727 Alignment error panic in tsol_can_accept_raw() 6894979 nightly -0 + -p builds then destroys SUNW0on
|
#
dc739ced |
| 24-Apr-2009 |
Dan McDonald <danmcd@sun.com> |
6824443 Make in.iked a 64-bit process when possible.
|
#
c7777ac8 |
| 21-Jan-2009 |
Paul Wernau <Paul.Wernau@Sun.COM> |
PSARC 2008/525 ikeadm token login 6219638 in.iked(1m) should not have to read PKCS#11 pins off-disk 6780866 ikeadm should use authorizations
|
#
9c2c14ab |
| 30-Sep-2008 |
Thejaswini Singarajipura <Thejaswini.Singarajipura@Sun.COM> |
PSARC 2008/523 IPsec session failover 6398024 IPsec should support session failover across machines 6545486 PF_KEY needs to set an SA's sequence number
|
#
0358d3a6 |
| 01-Mar-2008 |
danmcd <none@none> |
PSARC 2008/014 SHA-2 support for IPsec and IKE 6586319 Need to enable SHA-256,384,512 support in AH, ESP, and IKE 6663271 sha2_mac_verify_atomic() function is missing SHA384 exceptions
|
#
1a6921e0 |
| 10-Oct-2007 |
markfen <none@none> |
6516622 ACQUIRE-specified lifetimes are now ignored by in.iked 6609988 superfluous debugging in isakmp_udp.c 6612767 Logfile time stamp for in.iked a bit OTT 6612771 Some in.iked messages contain inf
6516622 ACQUIRE-specified lifetimes are now ignored by in.iked 6609988 superfluous debugging in isakmp_udp.c 6612767 Logfile time stamp for in.iked a bit OTT 6612771 Some in.iked messages contain information thats no longer useful
show more ...
|
#
020bf065 |
| 26-Jul-2007 |
markfen <none@none> |
PSARC/2007/409 RFC 3526 Diffie-Hellman groups for IKE 4886779 RFC 3526 Diffie-Hellman groups for IKE
|
#
20dc9b2e |
| 07-Feb-2007 |
vk199839 <none@none> |
6520181 in.iked leaks memory when parsing config with duplicate encr_alg 6520196 ikeadm cannot configure keysizes 6520197 ikeadm should print keysizes of algorithms
|
#
0f2065cc |
| 12-Jul-2006 |
markfen <none@none> |
PSARC 2006/409 IKE configuration of SA lifetimes 5039559 IKE should use soft expires and aggressively negotiate new SAs 6412531 Comments in ssh-stubs.c are incorrect 6431529 update_assoc_lifetime() d
PSARC 2006/409 IKE configuration of SA lifetimes 5039559 IKE should use soft expires and aggressively negotiate new SAs 6412531 Comments in ssh-stubs.c are incorrect 6431529 update_assoc_lifetime() does not update SOFT lifetimes
show more ...
|
#
15b07f80 |
| 19-Oct-2005 |
pwernau <none@none> |
PSARC 2005/575 ikecert certlocal private key import into a keystore 6228358 ikecert certlocal -a should be allowed on a PKCS#11 token 6314433 in.iked needs to reject identical rule label additions 63
PSARC 2005/575 ikecert certlocal private key import into a keystore 6228358 ikecert certlocal -a should be allowed on a PKCS#11 token 6314433 in.iked needs to reject identical rule label additions 6314444 ikeadm add preshared got core dump with incomplete arguments 6331159 If the only pre-shared key is deleted, the IKE daemon can not add new keys from a file 6331246 certlocal -r should not delete public key 6333081 ike needs to reject identical preshared object additions 6334208 dumping preshared keys with different types can cause in.iked core dump 6334300 in.iked memory leak when referenced keystore certs do not exist 6337221 in.iked shouldn't treat a bad preshared key file as fatal 6338331 debug statement can cause in.iked crash as v6 responder
show more ...
|
#
7c478bd9 |
| 14-Jun-2005 |
stevel@tonic-gate <none@none> |
OpenSolaris Launch
|