History log of /illumos-gate/usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecconf.c
Revision Date Author Comments
95c745183e701047fab8e4753d4e8bc1dd1323e7 23-Jan-2019 Toomas Soome <tsoome@me.com> 11296 cmd-inet: NULL pointer errors
Reviewed by: Andy Stormont <astormont@racktopsystems.com>
Reviewed by: Garrett D'Amore <garrett@damore.org>
Approved by: Garrett D'Amore <garrett@damore.org>
f02131e024f67c2f5ecda4e85e852a0edb3cea0a 21-Jun-2010 Vladimir Kotal <Vladimir.Kotal@Sun.COM> 6945640 ipseckey won't create SA between ipv6 link-local and multicast address; dumps core instead
6949084 pfp_delete_rule() has use-after-free problem
130b5e38bdfa29b582f0012f56b88943152ef48c 12-Apr-2010 Dan McDonald <danmcd@opensolaris.org> 6440625 ipsecconf: unresolvable address should give specific error message
6925293 ipsecconf(1M) needs a receive-buffer increase for SPD_DUMP
6925300 combined-mode check in ipsecconf(1M) is inaccurate, will fail with libumem
6925307 combined-mode ciphers shouldn't expand with encr_auth_algs when "any" is present.
5033e0ced6ec7e35c5a686f180e3fa66088b9394 08-Dec-2009 Mark Fenwick <Mark.Fenwick@Sun.COM> 6665041 refresh of svc:/network/ipsec/policy merges when it should replace
d0115d88cdf265fa2cc0481f8a6db735be47f2b9 20-Nov-2009 Mark Fenwick <Mark.Fenwick@Sun.COM> 6900753 Calls to dump_key in ikeadm.c could be refactored
6896962 ipsecconf incorrectly parses misconfigured hyphenated tokens
6898695 ipsecalgs -s causes kernel buffer corruption
6440628 ipseckey should ensure that argument is a file before parsing
628b0c67908adce18522d53bb2bf8d6c3b321579 21-Oct-2009 Mark Fenwick <Mark.Fenwick@Sun.COM> PSARC 2009/513 Changes to IPsec ESP to support Combined mode ciphers
6704686 IPsec/ESP needs to support Combined mode ciphers
6704682 IPsec/ESP should use AES-CCM
6884664 IPsec/ESP should support AES-GCM Mode
6840342 ipsecalgs out of memory error
6764184 tab instead of space in sadb.h
a7d394f6d2557e96c229189f2a464f8349649b31 24-Aug-2009 Dan McDonald <danmcd@sun.com> 6869318 ipsecconf(1M) should warn users that encryption without authentication is bad.
a13e0a0cd16d8ea3e0e2518f07837b8998f59487 23-Jul-2008 pwernau <none@none> 6728988 ipsecconf -l doesn't deal with unresolvable hosts when local hostname is fully qualified
3abcb969a84282d264ee4b135cd8e228b9a21415 19-Nov-2007 pwernau <none@none> 6629735 file descriptor leak causes ipsecconf to core dump with many rules
6629812 ipsecconf can core dump when it can't open its internal policy file
d575148329be32c78dd705fae0689cf67990dc45 23-Sep-2007 markfen <none@none> 6601982 ipsecconf(1m) may ignore errors in configuration file
eec550ad2f530c1632be5098057d37d9dd05e98e 14-Jun-2007 pwernau <none@none> 6568747 ipsecconf has assert failure with port ranges
6569360 ipsecconf tries to put lipstick on a pig
e3320f40ba20e6851e73a3237eedf089700bf001 15-May-2007 markfen <none@none> PSARC 2007/200 - Dedicated SMF services for IPsec/IKE
6185380 IPsec should be a separate (set) of smf(5) services
6440610 missing preshared remoteid line causes in.iked core dump on reading config
6462741 ipsecconf should have an option to check config file syntax
6467954 ipseckey exit code on failure inconsistent
6468456 ipsecconf uses strcpy()
6479903 in.iked with SMF should use _enter_daemon_lock()
6488927 ipseckey(1M) could do a better job of dealing with multiple errors
6497802 in.iked should use smf(5) properties instead of /etc/default/ipsec
6519836 ipseckey, ipsecconf require uid == 0, but configured to use profile
6529086 ipsec utilities can't deal with large files
6538478 Timestamp in in.iked debug output does not understand daylight savings time
6542255 in.iked can dump core when forced to load a new ike.preshared file with ikeadm.
6543263 ikeadm uses strcpy()
6543267 ipseckey uses strcpy()
6544087 memory leak with preshared key reloading

rename : usr/src/cmd/cmd-inet/usr.sbin/ikeadm.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikeadm.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ikecert.sh => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ikecert.sh
rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecalgs.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecalgs.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ipsecconf.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipsecconf.c
rename : usr/src/cmd/cmd-inet/usr.sbin/ipseckey.c => usr/src/cmd/cmd-inet/usr.sbin/ipsecutils/ipseckey.c