summaryrefslogtreecommitdiff
path: root/net/xfrm/xfrm_policy.c
AgeCommit message (Expand)AuthorFilesLines
2006-12-03[XFRM]: uninline xfrm_selector_match()Andrew Morton1-0/+34
2006-12-03SELinux: Fix SA selection semanticsVenkat Yekkirala1-1/+2
2006-10-12IPsec: fix handling of errors for socket policiesVenkat Yekkirala1-8/+18
2006-10-12IPsec: correct semantics for SELinux policy matchingVenkat Yekkirala1-3/+4
2006-10-12IPsec: propagate security module errors up from flow_cache_lookupJames Morris1-15/+53
2006-10-04[XFRM]: Clearing xfrm_policy_count[] to zero during flush is incorrect.David S. Miller1-2/+5
2006-09-23[XFRM]: Fix wildcard as tunnel sourcePatrick McHardy1-0/+21
2006-09-23[XFRM]: remove xerr_idxp from __xfrm_policy_check()James Morris1-7/+6
2006-09-23[NET]: Use SLAB_PANICAlexey Dobriyan1-3/+1
2006-09-23[XFRM]: Respect priority in policy lookups.David S. Miller1-9/+10
2006-09-23[XFRM]: Extract common hashing code into xfrm_hash.[ch]David S. Miller1-87/+8
2006-09-23[XFRM]: Hash policies when non-prefixed.David S. Miller1-140/+541
2006-09-23[XFRM]: Purge dst references to deleted SAs passively.David S. Miller1-1/+1
2006-09-23[XFRM]: Do not flush all bundles on SA insert.David S. Miller1-10/+0
2006-09-23[XFRM]: Add generation count to xfrm_state and xfrm_dst.David S. Miller1-0/+2
2006-09-23[XFRM]: Add sorting interface for state and template.Masahide NAKAMURA1-2/+14
2006-09-23[XFRM] POLICY: sub policy support.Masahide NAKAMURA1-36/+216
2006-09-23[XFRM]: Trace which secpath state is reject factor.Masahide NAKAMURA1-7/+48
2006-09-23[XFRM] IPV6: Restrict bundle reusingMasahide NAKAMURA1-2/+6
2006-09-23[XFRM]: Rename secpath_has_tunnel to secpath_has_nontransport.Masahide NAKAMURA1-3/+3
2006-09-23[XFRM]: Restrict authentication algorithm only when inbound transformation pr...Masahide NAKAMURA1-1/+2
2006-09-23[XFRM]: Add XFRM_MODE_xxx for future use.Masahide NAKAMURA1-5/+6
2006-09-23[MLSXFRM]: Add flow labelingVenkat Yekkirala1-2/+1
2006-09-23[MLSXFRM]: Flow based matching of xfrm policy and stateVenkat Yekkirala1-13/+15
2006-08-14[IPSEC]: Validate properly in xfrm_dst_check()David S. Miller1-3/+24
2006-07-22[NET]: Conversions from kmalloc+memset to k(z|c)alloc.Panagiotis Issaris1-2/+1
2006-06-30Remove obsolete #include <linux/config.h>Jörn Engel1-1/+0
2006-06-18[IPSEC] xfrm: Abstract out encapsulation modesHerbert Xu1-0/+83
2006-06-18[IPSEC] xfrm: Undo afinfo lock proliferationHerbert Xu1-24/+34
2006-04-30[XFRM]: fix incorrect xfrm_policy_afinfo_lock useIngo Molnar1-4/+4
2006-04-30[XFRM]: fix softirq-unsafe xfrm typemap->lock useIngo Molnar1-4/+4
2006-04-01[IPSEC]: Kill unused decap state structureHerbert Xu1-5/+5
2006-03-21[NET] sem2mutex: net/Arjan van de Ven1-2/+2
2006-03-21[XFRM]: Add some missing exports.David S. Miller1-0/+1
2006-03-21[IPSEC]: Sync series - policy expiresJamal Hadi Salim1-2/+2
2006-02-28[IPSEC]: Kill post_input hook and do NAT-T in esp_input directlyHerbert Xu1-7/+0
2006-02-24[NETFILTER]: Fix bridge netfilter related in xfrm_lookupPatrick McHardy1-3/+4
2006-02-20[XFRM]: Fix policy double putPatrick McHardy1-2/+0
2006-02-14[IPSEC]: Fix strange IPsec freeze.Herbert Xu1-1/+3
2006-02-08[PATCH] remove bogus asm/bug.h includes.Al Viro1-1/+0
2006-01-10[NET]: Change some "if (x) BUG();" to "BUG_ON(x);"Kris Katterjohn1-4/+2
2006-01-07[NETFILTER]: Handle NAT in IPsec policy checksPatrick McHardy1-0/+2
2006-01-07[NETFILTER]: Fix xfrm lookup in ip_route_me_harder/ip6_route_me_harderPatrick McHardy1-4/+5
2006-01-04[LSM-IPSec]: Security association restriction.Trent Jaeger1-34/+54
2005-12-22[IPSEC]: Fix policy updates missed by socketsDavid S. Miller1-1/+29
2005-12-20[IPSEC]: Perform SA switchover immediately.David S. Miller1-5/+14
2005-10-26[IPSEC]: Kill obsolete get_mss functionHerbert Xu1-43/+0
2005-10-09[PATCH] gfp flags annotations - part 1Al Viro1-1/+1
2005-10-05[IPSEC]: Document that policy direction is derived from the index.Herbert Xu1-2/+2
2005-10-05[XFRM]: fix sparse gfp nocast warningsRandy Dunlap1-1/+1