Component: ike1
101 changelog entries across 67 version(s)
Releases by channel (stacked)
- fixed "aes-ctr" and "aes-gcm" encryption algorithms (introduced v6.41);
- do not accept "mode-config" reply more than once;
- display error message when peer requests "mode-config" when it is not configured;
- fixed “aes-ctr” and “aes-gcm” encryption algorithms (introduced v6.41);
- DPD retry interval set to 5 seconds;
- disallow peer creation using base mode;
- fixed crash on xauth if user does not exist;
- fixed memory corruption when IPv6 is used;
- improved stability on phase1 rekeying;
- release mismatched PH2 peer IDs;
- use /32 netmask if none provided by mode config;
- disallow peer creation using base mode;
- fixed crash after downgrade if DH groups 19,20,21 were used for phase1;
- fixed RSA authentication for Windows clients behind NAT;
- fixed crash after downgrade if DH groups 19,20,21 were used for phase1;
- fixed crash on xauth if user does not exist;
- fixed initiator ID comparison to NAT-OA;
- fixed RSA authentication for Windows clients behind NAT;
- remove PH1 and PH2 when "mode-config" exchange fails;
- fixed initiator ID comparison to NAT-OA;
- fixed crash on xauth message;
- fixed crash on xauth message;
- removed xauth login length limitation;
- fixed ph2 ID logging;
- fixed “xauth” Radius login;
- fixed responder xauth trailing null;
- fixed ph1 rekey in setups with mode-cfg;