Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Add isset check for strictcrlpolicy | Phil Davis | 2015-07-22 | 1 | -1/+1 |
| | | | | To be consistent with the checks in the rest of this code. | ||||
* | Add IPsec advanced option for strict CRL checking | Chris Buechler | 2015-07-22 | 1 | -0/+16 |
| | |||||
* | fix typo | Chris Buechler | 2015-07-22 | 1 | -1/+1 |
| | |||||
* | Handle IPsec Advanced Settings save before IPsec is enabled | Phil Davis | 2015-07-22 | 1 | -12/+18 |
| | | | | | | | | | | | | | If the Advanced Settings are saved before any other IPsec is set up then $config['ipsec'] can be just the empty string. As a result you can get: a) If you select some debug settings then those are not saved. The code to save those settings was only executed when $config['ipsec'] was already an array. Actually the code already did the necessary "if isset() then unset()" stuuf. So I just took the the "if is_array()" away from the code block. b) Some potential unset() can go wrong with errors like: Fatal error: Cannot unset string offsets in /usr/local/www/vpn_ipsec_settings.php on line 168 This is corrected by adding more "if (isset())" checks. Fixes Redmine #4865 Conflicts: usr/local/www/vpn_ipsec_settings.php | ||||
* | Encoding in vpn_ipsec_settings.php | jim-p | 2015-06-16 | 1 | -1/+1 |
| | |||||
* | Ticket #4655 well manually merge pull/1715. Thanks: Phil | Ermal LUÇI | 2015-06-15 | 1 | -3/+9 |
| | |||||
* | Ok another round of this which unbreaks input error validation messages | Ermal LUÇI | 2015-06-13 | 1 | -3/+6 |
| | |||||
* | Make this right finally :). Thanks-ti: Phil-davis | Ermal LUÇI | 2015-06-12 | 1 | -3/+2 |
| | |||||
* | Activate the redirection that for some reason got disabled | Ermal LUÇI | 2015-06-12 | 1 | -2/+2 |
| | |||||
* | Ticket #4655 Do not behave against the logic of checkbox and description. | Ermal LUÇI | 2015-06-11 | 1 | -2/+3 |
| | |||||
* | Show correct selection for noshuntlan option. Ticket #4655 | Chris Buechler | 2015-04-30 | 1 | -1/+1 |
| | |||||
* | Fix #4640 IPsec Auto-exclude LAN address toggles every time save is pressed. | Ermal LUÇI | 2015-04-20 | 1 | -1/+1 |
| | | | | Actually the GUI is displaying the opposite setting to what is in the config. When the user pressed save that opposite setting was saved, but then again it displays the opposite of the opposite... | ||||
* | Implement make bofre break feature avaliable on strongswan 5.3.0 useful for ↵ | Ermal LUÇI | 2015-04-18 | 1 | -0/+18 |
| | | | | IKEv2. Fixes #4626 | ||||
* | Fix up Ticket #4504 implementation. Match config style with other areas. Use ↵ | Chris Buechler | 2015-04-04 | 1 | -9/+9 |
| | | | | a config setting to disable, rather than enable, this functionality since it's enabled by default so the tag isn't necessary in the default config. Remove now unnecessary config upgrade code. | ||||
* | Fixes #4504 use correct key index | Ermal LUÇI | 2015-04-03 | 1 | -1/+1 |
| | |||||
* | Fixes #4504 Allow the bypass policy for LAN to be enabled and prevent ↵ | Ermal LUÇI | 2015-04-03 | 1 | -0/+16 |
| | | | | traffic sent to lan ip to go to the ipsec tunnel | ||||
* | Merge manually pull request #1593 | Ermal LUÇI | 2015-03-31 | 1 | -0/+1 |
| | |||||
* | clean up unique IDs text a bit. | Chris Buechler | 2015-03-11 | 1 | -2/+2 |
| | |||||
* | Don't enable interfaces_use by default. Add checkbox to enable on Advanced | Chris Buechler | 2015-03-10 | 1 | -0/+19 |
| | | | | | | | tab, in case there are scenarios where it's desirable. Ticket #4341 Conflicts: etc/inc/vpn.inc | ||||
* | Remove "Prefer old SA" option, and ignore it in all existing configurations. ↵ | Chris Buechler | 2015-03-03 | 1 | -18/+0 |
| | | | | Breaks things in many cases with strongSwan. For the very rare circumstances where this is actually desirable, it's just a sysctl that can be set in tunables. | ||||
* | Fixes #4359 Allow controlling uniqueids | Ermal LUÇI | 2015-01-31 | 1 | -0/+29 |
| | |||||
* | Fixes #4353 Identify when strongswan.conf needs a reload and restart ipsec ↵ | Ermal LUÇI | 2015-01-31 | 1 | -7/+21 |
| | | | | service. | ||||
* | Provide an advanced setting to be able to disable Unity Plugin(Cisco extensions) | Ermal LUÇI | 2015-01-07 | 1 | -0/+15 |
| | |||||
* | fix text | Chris Buechler | 2015-01-07 | 1 | -1/+1 |
| | |||||
* | fix spelling of compression | Chris Buechler | 2015-01-07 | 1 | -6/+6 |
| | |||||
* | Fixes #4182 by properly managing IPcomp on ipsec tunnels. | Ermal LUÇI | 2015-01-07 | 1 | -12/+9 |
| | | | | Also retires IPsec force reloading advanced sysctl since its useless nowdays with strongswan and remove its call on rc.newipsecdns. | ||||
* | Welcome 2015 | Renato Botelho | 2014-12-31 | 1 | -1/+1 |
| | |||||
* | Add input validation on vpn_ipsec_settings.php. Fixes #4052. | Chris Buechler | 2014-11-28 | 1 | -1/+57 |
| | |||||
* | Fixes #4039 remove the toggle from IPSec settings since its not anymore useful. | Ermal LUÇI | 2014-11-24 | 1 | -19/+0 |
| | |||||
* | Allow accept_unencrypted_mainmode_messages to be enabled if needed | Ermal | 2014-10-30 | 1 | -0/+18 |
| | |||||
* | get back to our standard RFC-defined capitalization of IPsec | Chris Buechler | 2014-10-02 | 1 | -4/+4 |
| | |||||
* | firewall_virtual_ip make the table sortable | PiBa-NL | 2014-09-28 | 1 | -1/+1 |
| | |||||
* | Merge pull request #1139 from ExolonDX/branch_master_02 | Renato Botelho | 2014-05-09 | 1 | -6/+7 |
|\ | |||||
| * | Tidy up "vpn_ipsec" XHTML | Colin Fleming | 2014-05-08 | 1 | -6/+7 |
| | | | | | | | | | | | | | | | | | | Add CDATA section to SCRIPTS Add SUMMARY to TABLES Update HTML Boolean operators Close INPUT and IMG tags and ALT to IMG tags Move NOWRAP into CLASS statement Deprecate ampersand in Anchor tags | ||||
* | | Some adjustments to the code for logging | Ermal | 2014-05-09 | 1 | -1/+1 |
|/ | |||||
* | Move the IPsec settings from System > Advanced, Misc tab to "Advanced ↵ | jim-p | 2014-04-25 | 1 | -0/+252 |
Settings" tab under VPN > IPsec. |