-
Tue Jan 29 2019 EL Errata <el-errata_ww@oracle.com> - 3.25-4.1.0.1
- add libreswan-oracle.patch to detect Oracle Linux distro
-
Fri Jan 11 2019 Paul Wouters <pwouters@redhat.com> - 3.25-4.1
- Resolves: rhbz#1665369 libreswan 3.25 in FIPS mode is incorrectly rejecting X.509 public keys that are >= 3072 bits [rhel-7.6.z]
-
Tue Jan 08 2019 Paul Wouters <pwouters@redhat.com> - 3.25-4
- Resolves: rhbz#1660536 libreswan assertion failed when OAKLEY_KEY_LENGTH is zero for IKE using AES_CBC
- Resolves: rhbz#1660544 config: recursive include check doesn't work
- Resolves: rhbz#1660542 Libreswan crash upon receiving ISAKMP_NEXT_D with appended ISAKMP_NEXT_N
- Resolves: rhbz#1664244 [abrt] [faf] libreswan: strncpy(): /usr/libexec/ipsec/pluto killed by 11
-
Mon Dec 03 2018 Paul Wouters <pwouters@redhat.com> - 3.25-3
- Resolves: rhbz#1655440 Unable to verify certificate with non-empty Extended Key Usage which does not include serverAuth or clientAuth
-
Mon Jul 02 2018 Paul Wouters <pwouters@redhat.com> - 3.25-2
- Resolves: rhbz#1597322 Relax deleting IKE SA's and IPsec SA's to avoid interop issues with third party VPN vendors
-
Wed Jun 27 2018 Paul Wouters <pwouters@redhat.com> - 3.25-1
- Resolves: rhbz#1591817 rebase libreswan to 3.25
- Resolves: rhbz#1536404 CERT_PKCS7_WRAPPED_X509 error
- Resolves: rhbz#1544143 ipsec newhostkey fails in FIPS mode when RSA key is generated
- Resolves: rhbz#1574011 libreswan is missing a Requires: unbound-libs >= 1.6.6
-
Fri Apr 27 2018 Paul Wouters <pwouters@redhat.com> - 3.23-4
- Resolves: rhbz#1544143 ipsec newhostkey fails in FIPS mode when RSA key is generated
- Resolves: rhbz#1553406 IKEv2 liveness false positive on IKEv2 idle connections causes tunnel to be restarted
- Resolves: rhbz#1572425 shared IKE SA leads to rekey interop issues
-
Wed Feb 07 2018 Paul Wouters <pwouters@redhat.com> - 3.23-3
- Resolves: rhbz#1471553 libreswan postquantum preshared key (PPK) support [IANA update]
-
Tue Feb 06 2018 Paul Wouters <pwouters@redhat.com> - 3.23-2
- Resolves: rhbz#1457904 rebase libreswan to 3.23 [updated]
- Resolves: rhbz#1375750 SECCOMP support for libreswan [updated]
-
Thu Jan 25 2018 Paul Wouters <pwouters@redhat.com> - 3.23-1
- Resolves: rhbz#1457904 rebase libreswan to 3.23 [updated]