Component: ipsec
511 changelog entries across 207 version(s)
Releases by channel (stacked)
- added support for AVX optimized SHA acceleration;
- improved "H" (hw-aead) flag presence for accelerated SA's;
- improved configuration of IPsec proposal auth-algorithms;
- improved IKE payload processing;
- added hardware acceleration support for IPQ-6010;
- removed Blowfish and Camellia encryption algorithms for IKE;
- added "invalid-packets" counter for Installed SA's menu;
- fixed packet processing by hardware encryption engine on MMIPS devices;
- added "invalid-packets" counter for Installed SA's menu;
- fixed packet processing by hardware encryption engine on MMIPS devices;
- fixed IPsec IRQ initialization on startup on TILE;
- fixed printing of active peer statistics;
- fixed printing of active peer statistics;
- fixed IPsec IRQ initialization on startup on TILE;
- added hardware acceleration support for CCR2116;
- fixed "identities" menu emptying after RouterOS upgrade/reboot;
- fixed "identities" menu emptying after RouterOS upgrade/reboot;
- added hardware acceleration support for CCR2116;
- fixed hardware acceleration support for ARM and ARM64 devices;
- fixed software fallback mode for AES-192 on IPQ4018/IPQ4019;
- enabled hardware acceleration support for ARM and ARM64 devices;
- fixed hardware acceleration support for CHR;
- fixed memory leak when processing DHCP packets;
- improved SA update by SPI;
- improved system stability on CHR;
- improved system stability on MMIPS devices;
- improved SA update by SPI;
- improved SA update by SPI;
- fixed SA address parameter exporting;
- fixed SA address parameter exporting;
- fixed SA address parameter exporting;
- improved system stability on CHR;
- improved system stability on MMIPS devices;
- improved stability when processing IPv6 packets larger than interface MTU;
- improved stability when processing IPv6 packets larger than interface MTU;
- added SHA384 hash algorithm support for phase 1;
- do not kill connection when peer's "name" or "comment" is changed;
- fixed client certificate usage when certificate is renewed with SCEP;
- fixed multiple warning message display for peers;
- inactivate peer's policy on disconnect;
- refresh peer's DNS only when phase 1 is down;
- added SHA384 hash algorithm support for phase 1;
- refresh peer's DNS only when phase 1 is down;
- do not kill connection when peer's "name" or "comment" is changed;
- refresh peer's DNS only when phase 1 is down;