History log of /illumos-gate/usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecconf.c (Results 1 – 13 of 13)
Revision Date Author Comments
# bbf21555 26-Feb-2022 Richard Lowe

14443 resection manual pages per IPD4
Reviewed by: Toomas Soome <tsoome@me.com>
Reviewed by: Robert Mustacchi <rm@fingolfin.org>
Reviewed by: Peter Tribble <peter.tribble@gmail.com>
R

14443 resection manual pages per IPD4
Reviewed by: Toomas Soome <tsoome@me.com>
Reviewed by: Robert Mustacchi <rm@fingolfin.org>
Reviewed by: Peter Tribble <peter.tribble@gmail.com>
Reviewed by: Andy Fiddaman <andy@omnios.org>
Approved by: Dan McDonald <danmcd@joyent.com>

show more ...


# 95c74518 23-Jan-2019 Toomas Soome

11296 cmd-inet: NULL pointer errors
Reviewed by: Andy Stormont <astormont@racktopsystems.com>
Reviewed by: Garrett D'Amore <garrett@damore.org>
Approved by: Garrett D'Amore <garrett@damor

11296 cmd-inet: NULL pointer errors
Reviewed by: Andy Stormont <astormont@racktopsystems.com>
Reviewed by: Garrett D'Amore <garrett@damore.org>
Approved by: Garrett D'Amore <garrett@damore.org>

show more ...


# f02131e0 21-Jun-2010 Vladimir Kotal

6945640 ipseckey won't create SA between ipv6 link-local and multicast address; dumps core instead
6949084 pfp_delete_rule() has use-after-free problem


# 130b5e38 12-Apr-2010 Dan McDonald

6440625 ipsecconf: unresolvable address should give specific error message
6925293 ipsecconf(1M) needs a receive-buffer increase for SPD_DUMP
6925300 combined-mode check in ipsecconf(1M) is i

6440625 ipsecconf: unresolvable address should give specific error message
6925293 ipsecconf(1M) needs a receive-buffer increase for SPD_DUMP
6925300 combined-mode check in ipsecconf(1M) is inaccurate, will fail with libumem
6925307 combined-mode ciphers shouldn't expand with encr_auth_algs when "any" is present.

show more ...


# 5033e0ce 08-Dec-2009 Mark Fenwick

6665041 refresh of svc:/network/ipsec/policy merges when it should replace


# d0115d88 20-Nov-2009 Mark Fenwick

6900753 Calls to dump_key in ikeadm.c could be refactored
6896962 ipsecconf incorrectly parses misconfigured hyphenated tokens
6898695 ipsecalgs -s causes kernel buffer corruption
6440628

6900753 Calls to dump_key in ikeadm.c could be refactored
6896962 ipsecconf incorrectly parses misconfigured hyphenated tokens
6898695 ipsecalgs -s causes kernel buffer corruption
6440628 ipseckey should ensure that argument is a file before parsing

show more ...


# 628b0c67 21-Oct-2009 Mark Fenwick

PSARC 2009/513 Changes to IPsec ESP to support Combined mode ciphers
6704686 IPsec/ESP needs to support Combined mode ciphers
6704682 IPsec/ESP should use AES-CCM
6884664 IPsec/ESP should

PSARC 2009/513 Changes to IPsec ESP to support Combined mode ciphers
6704686 IPsec/ESP needs to support Combined mode ciphers
6704682 IPsec/ESP should use AES-CCM
6884664 IPsec/ESP should support AES-GCM Mode
6840342 ipsecalgs out of memory error
6764184 tab instead of space in sadb.h

show more ...


# a7d394f6 24-Aug-2009 Dan McDonald

6869318 ipsecconf(1M) should warn users that encryption without authentication is bad.


# a13e0a0c 23-Jul-2008 pwernau

6728988 ipsecconf -l doesn't deal with unresolvable hosts when local hostname is fully qualified


# 3abcb969 19-Nov-2007 pwernau

6629735 file descriptor leak causes ipsecconf to core dump with many rules
6629812 ipsecconf can core dump when it can't open its internal policy file


# d5751483 23-Sep-2007 markfen

6601982 ipsecconf(1m) may ignore errors in configuration file


# eec550ad 14-Jun-2007 pwernau

6568747 ipsecconf has assert failure with port ranges
6569360 ipsecconf tries to put lipstick on a pig


# e3320f40 15-May-2007 markfen

PSARC 2007/200 - Dedicated SMF services for IPsec/IKE
6185380 IPsec should be a separate (set) of smf(5) services
6440610 missing preshared remoteid line causes in.iked core dump on reading c

PSARC 2007/200 - Dedicated SMF services for IPsec/IKE
6185380 IPsec should be a separate (set) of smf(5) services
6440610 missing preshared remoteid line causes in.iked core dump on reading config
6462741 ipsecconf should have an option to check config file syntax
6467954 ipseckey exit code on failure inconsistent
6468456 ipsecconf uses strcpy()
6479903 in.iked with SMF should use _enter_daemon_lock()
6488927 ipseckey(1M) could do a better job of dealing with multiple errors
6497802 in.iked should use smf(5) properties instead of /etc/default/ipsec
6519836 ipseckey, ipsecconf require uid == 0, but configured to use profile
6529086 ipsec utilities can't deal with large files
6538478 Timestamp in in.iked debug output does not understand daylight savings time
6542255 in.iked can dump core when forced to load a new ike.preshared file with ikeadm.
6543263 ikeadm uses strcpy()
6543267 ipseckey uses strcpy()
6544087 memory leak with preshared key reloading

--HG--
rename : usr/src/cmd/cmd-inet/usr.sbin/ikeadm.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikeadm.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ikecert.sh => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikecert.sh
rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecalgs.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecalgs.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecconf.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecconf.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ipseckey.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipseckey.c

show more ...