<feed xmlns='http://www.w3.org/2005/Atom'>
<title>radsecproxy.git/ChangeLog, branch proxy-state</title>
<subtitle>RADIUS proxy with support for TLS RadSec</subtitle>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/'/>
<entry>
<title>Update ChangeLog with two older bug fixes.</title>
<updated>2013-08-27T11:35:51+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-27T11:35:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=0c80ef364c03dfe35d4e3231ad216ca1ad7063cf'/>
<id>0c80ef364c03dfe35d4e3231ad216ca1ad7063cf</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Don't mention a version number in ChangeLog in the master branch.</title>
<updated>2013-08-27T11:20:28+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-27T11:20:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=c39550a6c6b8e792c870aa63bed2467d5a9aaacd'/>
<id>c39550a6c6b8e792c870aa63bed2467d5a9aaacd</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Time out on TLS clients not closing the connection properly.</title>
<updated>2013-08-26T15:02:07+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-26T15:02:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=25e21cd0c2a8e7b6afee116fbcbc1adaf337adaf'/>
<id>25e21cd0c2a8e7b6afee116fbcbc1adaf337adaf</id>
<content type='text'>
Patch by Fabian Mauchle.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Patch by Fabian Mauchle.
</pre>
</div>
</content>
</entry>
<entry>
<title>When timing out while reading from a TLS server, shutdown the socket properly.</title>
<updated>2013-08-26T14:52:40+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-26T14:52:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=5c4b0c31393221c74367c8b2a33ef127bdb9e59c'/>
<id>5c4b0c31393221c74367c8b2a33ef127bdb9e59c</id>
<content type='text'>
Also signal the "client writer" (clientwr()).
Together, this should result in TLS connections being cleaned up properly.

Patch by Fabian Mauchle.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Also signal the "client writer" (clientwr()).
Together, this should result in TLS connections being cleaned up properly.

Patch by Fabian Mauchle.
</pre>
</div>
</content>
</entry>
<entry>
<title>Don't free struct clsrvconf members rewritein and rewriteout.</title>
<updated>2013-08-26T13:37:15+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-26T13:32:13+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=1335ec42794cf5007bdab487423aef15358637a2'/>
<id>1335ec42794cf5007bdab487423aef15358637a2</id>
<content type='text'>
They are pointers into static struct hash *rewriteconfs and should
live forever.

Patch by Fabian Mauchle.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
They are pointers into static struct hash *rewriteconfs and should
live forever.

Patch by Fabian Mauchle.
</pre>
</div>
</content>
</entry>
<entry>
<title>Update ChangeLog with the last three bug fixes/ehancements.</title>
<updated>2013-08-26T13:04:28+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordberg.se</email>
</author>
<published>2013-08-26T13:04:28+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=974aa9012abcfd3050271dba9d4d38856892b5ca'/>
<id>974aa9012abcfd3050271dba9d4d38856892b5ca</id>
<content type='text'>
Also, in a lame attempt att giving credit for last commit where I
failed at doing that:

  4920ff44 is a patch from Fabian Mauchle.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Also, in a lame attempt att giving credit for last commit where I
failed at doing that:

  4920ff44 is a patch from Fabian Mauchle.
</pre>
</div>
</content>
</entry>
<entry>
<title>Update ChangeLog entry for 1.6.2 with correct CVE id.</title>
<updated>2012-11-01T08:02:42+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordu.net</email>
</author>
<published>2012-11-01T08:02:42+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=ac15aa5d5b9a307cad3b689c73796326a744eb45'/>
<id>ac15aa5d5b9a307cad3b689c73796326a744eb45</id>
<content type='text'>
1.6.2 is already released but correct ChangeLog info is good.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
1.6.2 is already released but correct ChangeLog info is good.
</pre>
</div>
</content>
</entry>
<entry>
<title>Mention CVE number in ChangeLog.</title>
<updated>2012-10-25T11:46:00+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordu.net</email>
</author>
<published>2012-10-25T11:41:24+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=2f452345f3e599de9a25dd3b1954367bb9098b4f'/>
<id>2f452345f3e599de9a25dd3b1954367bb9098b4f</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>radsecproxy-1.6.2</title>
<updated>2012-10-25T11:21:57+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@nordu.net</email>
</author>
<published>2012-10-25T11:21:57+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=73f53fee4a00c083c353362da26514d6d6d5c2e6'/>
<id>73f53fee4a00c083c353362da26514d6d6d5c2e6</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>Don't mix up pre- and post-handshake verification of DTLS clients.</title>
<updated>2012-10-22T16:13:45+00:00</updated>
<author>
<name>Linus Nordberg</name>
<email>linus@torproject.org</email>
</author>
<published>2012-10-19T21:23:04+00:00</published>
<link rel='alternate' type='text/html' href='https://git.sunet.se/radsecproxy.git/commit/?id=3682c935facf5ccd7fa600644bbb76957155c680'/>
<id>3682c935facf5ccd7fa600644bbb76957155c680</id>
<content type='text'>
Commit db965c9b addressed TLS clients only.

When verifying DTLS clients, don't consider config blocks with CA
settings ('tls') which differ from the one used for verifying the
certificate chain.

Original issue reported and analysed by Ralf Paffrath. DTLS being
vulnerable reported by Raphael Geisser.

Addresses issue RADSECPROXY-43, CVE-2012-4523.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Commit db965c9b addressed TLS clients only.

When verifying DTLS clients, don't consider config blocks with CA
settings ('tls') which differ from the one used for verifying the
certificate chain.

Original issue reported and analysed by Ralf Paffrath. DTLS being
vulnerable reported by Raphael Geisser.

Addresses issue RADSECPROXY-43, CVE-2012-4523.
</pre>
</div>
</content>
</entry>
</feed>
