Commit graph

100 commits

Author SHA1 Message Date
bodea
e5d919edc7 initial converion of liran's "Practical VPNs" to docbook 2006-04-24 15:19:41 +00:00
bodea
5dacb3cdf5 only poll clifd if successfully bound 2006-04-23 23:18:30 +00:00
bodea
4f866369ea don't shutdown on TerminateReq, wait for CDN 2006-04-18 06:00:07 +00:00
bodea
b089008c05 add Acct-Terminate-Cause to RADIUS stop records 2006-04-13 11:14:35 +00:00
bodea
42bf2e312d set source address for DAE responses 2006-04-05 02:13:48 +00:00
bodea
eb37aeee8e send nsctl responses back using the correct source address 2006-04-05 01:45:57 +00:00
bodea
af5792cb6a fix IPCP length test to allow Terminate-Request (4 bytes) 2006-03-27 03:01:08 +00:00
bodea
133cd2a337 decrease ip_conntrack_tcp_timeout_established to 5hrs 2006-02-23 01:07:23 +00:00
bodea
995bae51b1 validate source of RADIUS packets 2006-02-17 13:27:07 +00:00
bodea
810e88371a correct addition of single IP to pool 2006-01-19 20:55:03 +00:00
bodea
b2bd965594 send configured magic-no in LCP EchoReq when LCP is opened 2005-12-20 04:57:16 +00:00
bodea
31e24f76ce fix session MRU, tunnel MTU 2005-12-19 06:08:42 +00:00
bodea
e68cca06cf reduce logging of LCP EchoReply packets 2005-12-15 14:18:16 +00:00
bodea
e4ea4838f8 drop backtrace 2005-12-14 02:19:15 +00:00
bodea
6ec70a632b run PLUGIN_RADIUS_ACCOUNT for Start records 2005-12-09 00:43:17 +00:00
bodea
fc94b60b05 - Reject unknown/unconfigured protocols on the master.
- Sanity check MRU before using in ppp_code_rej, protoreject.
2005-12-07 05:21:37 +00:00
bodea
560fad4be9 unused: sessiont.{ns,nr} 2005-12-05 14:10:42 +00:00
bodea
b84553c1d7 fix IPCP negotiation of secondary DNS server 2005-12-04 13:06:49 +00:00
bodea
d1789f28d0 use License header, fix BuildRoot 2005-11-25 04:55:38 +00:00
bodea
41d3f66458 add test/ping-sweep 2005-11-25 02:18:40 +00:00
bodea
4bbf91e608 set MTU on tunnel interface so the kernel will re-fragment large packets to within MRU 2005-11-17 07:35:35 +00:00
bodea
0dc8fc58d5 fix fragment handling in ip_filter 2005-11-14 08:38:02 +00:00
bodea
4caf4199d1 - Reset restart counters correctly.
- Reset timers on sending ConfigReq.
- Only send one RADIUS Start record, even if IPCP is restarted.
2005-11-04 14:41:50 +00:00
bodea
149c87a729 add Framed-Route entries to RADIUS records 2005-10-19 03:09:29 +00:00
bodea
fcad08f613 fix LCP Echo frequency 2005-10-18 07:19:28 +00:00
bodea
a97b3720a4 add intercept-capture script 2005-10-12 07:16:13 +00:00
bodea
8604240114 don't send tunnel HELLO when there are pending control messages 2005-10-11 07:06:56 +00:00
foonly
f333003786 Fix RADIUS authentication on DAE responses. 2005-10-11 02:27:40 +00:00
bodea
c463b012b7 fix Calling-Station-Id in RADIUS accounting records 2005-09-30 13:13:26 +00:00
bodea
05ea15956a move code from signal handlers into mainloop, avoiding a race
condition when forking CLI
2005-09-19 00:29:12 +00:00
bodea
2d7d819bfa fix protocol-reject 2005-09-16 12:13:22 +00:00
bodea
42af131396 - Add l2tp_mtu configuration option, used to define MRU, MSS.
- Adjust TCP MSS options in SYN and SYN,ACK packets to avoid
  fragmentation of tcp packets.
2005-09-16 05:04:28 +00:00
bodea
667a8bc420 make MRU configurable, NAK config requests for larger values 2005-09-15 09:34:46 +00:00
bodea
59706a5394 fix code-reject/protocol-reject 2005-09-13 14:23:07 +00:00
bodea
1e198ac0e2 any traffic on a tunnel resets lastrec, not just control messages 2005-09-12 05:16:42 +00:00
bodea
a4bf68528c restart BGP on receipt of CEASE 2005-09-02 23:39:34 +00:00
bodea
75ba8921cf bug fix 2005-09-01 06:59:06 +00:00
bodea
3646374c82 avoid Code-Reject loop 2005-08-31 12:38:38 +00:00
bodea
e8a19e982b fix parsing of protocol rej 2005-08-29 03:21:14 +00:00
bodea
3efd4f877a drop level of "Unexpected CHAP message" log 2005-08-24 23:44:08 +00:00
bodea
447f820899 fail IPCP negotiation only on ConfigRej of IP-Address 2005-08-17 03:56:27 +00:00
bodea
aacba76c8d re-instate local md5.[ch] due to issues with linking openssl to GPL code 2005-08-10 07:25:23 +00:00
bodea
e91dac99cf fix generateload 2005-08-02 11:48:44 +00:00
bodea
afc8f4c6c0 - Replace flags used for LCP/IPCP with state machine.
- Use openssl MD5, fix DAE vector (Alex Kiernan).
2005-07-31 10:04:09 +00:00
bodea
4f253feef0 add DAE support (PoD/CoA) from Vladislav Bjelic 2005-06-28 14:48:17 +00:00
bodea
a997e47395 clear cluster_master on election so that slaves will accept a new master 2005-06-27 04:52:54 +00:00
bodea
05628d832a Don't resend IPCP while still in progress 2005-06-24 07:05:03 +00:00
bodea
89fc6e54f0 Always initialise PRNG.
Sanity check length of random_vector.
2005-06-14 03:36:16 +00:00
bodea
3cdac878d7 - Don't send CDN for each session when shutting down tunnels (this is
implicit).
- Move tunnel shutdown from SIGQUIT signal handler to be run once from
  still_busy().  Reject new tunnels/sessions while in the process of
  shutting down.
2005-06-12 06:10:29 +00:00
bodea
ec4de7f8c5 Include endpoint address in accounting dump files.
Convert mainloop to use epoll rather than select.
2005-06-04 15:42:35 +00:00