platform/upstream/openconnect.git
15 years agoClean up Makefile detection of gtk/gconf, check for openssl includes
David Woodhouse [Wed, 3 Jun 2009 09:47:10 +0000 (10:47 +0100)]
Clean up Makefile detection of gtk/gconf, check for openssl includes

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up warning seen on MacOS build
David Woodhouse [Wed, 3 Jun 2009 09:46:42 +0000 (10:46 +0100)]
Clean up warning seen on MacOS build

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoFix printf format for st_size
David Woodhouse [Wed, 3 Jun 2009 08:40:06 +0000 (09:40 +0100)]
Fix printf format for st_size

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRemove GNUism from Makefile by printing new version in version.sh
David Woodhouse [Wed, 3 Jun 2009 08:37:09 +0000 (09:37 +0100)]
Remove GNUism from Makefile by printing new version in version.sh

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up version.sh
David Woodhouse [Wed, 3 Jun 2009 08:05:09 +0000 (09:05 +0100)]
Clean up version.sh

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRemove bashisms from version.sh
David Woodhouse [Tue, 2 Jun 2009 22:38:46 +0000 (23:38 +0100)]
Remove bashisms from version.sh

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoGrab focus on first widget which needs entry in the form
David Woodhouse [Tue, 2 Jun 2009 21:49:25 +0000 (22:49 +0100)]
Grab focus on first widget which needs entry in the form

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAbort if certificate load fails, rather than continuing anyway
David Woodhouse [Tue, 2 Jun 2009 16:41:22 +0000 (17:41 +0100)]
Abort if certificate load fails, rather than continuing anyway

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoOnly save form entries if not cancelled.. and if they're non-NULL
David Woodhouse [Tue, 2 Jun 2009 16:35:47 +0000 (17:35 +0100)]
Only save form entries if not cancelled.. and if they're non-NULL

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoUse fingerprint for comparing certificates, not signature
David Woodhouse [Tue, 2 Jun 2009 16:26:28 +0000 (17:26 +0100)]
Use fingerprint for comparing certificates, not signature

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoupdate compatibility notes
David Woodhouse [Tue, 2 Jun 2009 12:20:21 +0000 (13:20 +0100)]
update compatibility notes

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agochangelog update
David Woodhouse [Tue, 2 Jun 2009 10:59:39 +0000 (11:59 +0100)]
changelog update

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoMore OpenSSL-0.9.7 compatibility
David Woodhouse [Tue, 2 Jun 2009 10:56:04 +0000 (11:56 +0100)]
More OpenSSL-0.9.7 compatibility

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up certificate purpose workaround
David Woodhouse [Tue, 2 Jun 2009 10:54:41 +0000 (11:54 +0100)]
Clean up certificate purpose workaround

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoBuild against old OpenSSL without DTLS support (OSX, OpenBSD)
David Woodhouse [Tue, 2 Jun 2009 10:51:34 +0000 (11:51 +0100)]
Build against old OpenSSL without DTLS support (OSX, OpenBSD)

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoInclude <arpa/inet.h> for ntohl()
David Woodhouse [Mon, 1 Jun 2009 19:53:19 +0000 (20:53 +0100)]
Include <arpa/inet.h> for ntohl()

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoInclude appropriate headers for statfs() on FreeBSD and OSX
David Woodhouse [Mon, 1 Jun 2009 19:40:01 +0000 (20:40 +0100)]
Include appropriate headers for statfs() on FreeBSD and OSX

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoDiscard all but Legacy IP packets on VPN transmit
David Woodhouse [Mon, 1 Jun 2009 18:05:35 +0000 (19:05 +0100)]
Discard all but Legacy IP packets on VPN transmit

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoWeird tun prefix is only OpenBSD
David Woodhouse [Mon, 1 Jun 2009 17:58:57 +0000 (18:58 +0100)]
Weird tun prefix is only OpenBSD

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle tun prefixing with AF_INET on BSD
David Woodhouse [Mon, 1 Jun 2009 17:41:46 +0000 (18:41 +0100)]
Handle tun prefixing with AF_INET on BSD

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoBuilds on OpenBSD
David Woodhouse [Mon, 1 Jun 2009 16:46:51 +0000 (17:46 +0100)]
Builds on OpenBSD

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoFix FSID handling on *BSD
David Woodhouse [Mon, 1 Jun 2009 16:41:47 +0000 (17:41 +0100)]
Fix FSID handling on *BSD

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoLink libcrypto
David Woodhouse [Mon, 1 Jun 2009 16:41:00 +0000 (17:41 +0100)]
Link libcrypto

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd another missing <string.h>
David Woodhouse [Mon, 1 Jun 2009 16:23:30 +0000 (17:23 +0100)]
Add another missing <string.h>

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoMove ifr declaration inside Linux-only block
David Woodhouse [Mon, 1 Jun 2009 16:20:36 +0000 (17:20 +0100)]
Move ifr declaration inside Linux-only block

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoInclude <string.h> where needed
David Woodhouse [Mon, 1 Jun 2009 16:17:00 +0000 (17:17 +0100)]
Include <string.h> where needed

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agofix size_t printf format
David Woodhouse [Mon, 1 Jun 2009 16:16:14 +0000 (17:16 +0100)]
fix size_t printf format

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoNo need for bash
David Woodhouse [Mon, 1 Jun 2009 15:52:12 +0000 (16:52 +0100)]
No need for bash

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoInclude ctype.h for isspace()
David Woodhouse [Mon, 1 Jun 2009 15:47:26 +0000 (16:47 +0100)]
Include ctype.h for isspace()

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoMore include file fixes for OpenBSD
David Woodhouse [Mon, 1 Jun 2009 15:44:34 +0000 (16:44 +0100)]
More include file fixes for OpenBSD

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRemove <sys/socket.h> from files which don't use it
David Woodhouse [Mon, 1 Jun 2009 15:41:42 +0000 (16:41 +0100)]
Remove <sys/socket.h> from files which don't use it

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRevamp certificate/privkey command line handling
David Woodhouse [Mon, 1 Jun 2009 14:37:41 +0000 (15:37 +0100)]
Revamp certificate/privkey command line handling

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up detection of TPM vs. PEM certificates
David Woodhouse [Mon, 1 Jun 2009 13:58:53 +0000 (14:58 +0100)]
Clean up detection of TPM vs. PEM certificates

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoSplit out load_tpm_certificate()
David Woodhouse [Mon, 1 Jun 2009 13:08:37 +0000 (14:08 +0100)]
Split out load_tpm_certificate()

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle detection of PKCS#12 certificates a bit better
David Woodhouse [Mon, 1 Jun 2009 13:07:18 +0000 (14:07 +0100)]
Handle detection of PKCS#12 certificates a bit better

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agochangelog update
David Woodhouse [Mon, 1 Jun 2009 00:14:50 +0000 (01:14 +0100)]
changelog update

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoUse correct get_issuer() function
David Woodhouse [Mon, 1 Jun 2009 00:14:02 +0000 (01:14 +0100)]
Use correct get_issuer() function

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAsk for PKCS#12 passphrase if we need it
David Woodhouse [Sun, 31 May 2009 21:18:43 +0000 (22:18 +0100)]
Ask for PKCS#12 passphrase if we need it

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoOnly use issuer certificate if X509_STORE_CTX_get1_issuer() succeeded.
David Woodhouse [Sun, 31 May 2009 20:39:09 +0000 (21:39 +0100)]
Only use issuer certificate if X509_STORE_CTX_get1_issuer() succeeded.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoWork around OpenSSL bug with certificate chains.
David Woodhouse [Sun, 31 May 2009 19:00:16 +0000 (20:00 +0100)]
Work around OpenSSL bug with certificate chains.

This will probably be RT#1942 -- OpenSSL will look up issuer
certificates by name, but there might be more than one certificate in
the trust chain with the same name, and it doesn't make sure it gets the
right one. The server suffers this bug too, which is why the client has
to submit the full trust chain with its own certificate.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoInclude only useful certificates from PKCS#12 file
David Woodhouse [Sun, 31 May 2009 18:38:27 +0000 (19:38 +0100)]
Include only useful certificates from PKCS#12 file

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd PKCS#12 support
David Woodhouse [Sun, 31 May 2009 14:33:56 +0000 (15:33 +0100)]
Add PKCS#12 support

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd option to generate PEM passphrase from fsid
David Woodhouse [Thu, 28 May 2009 19:24:53 +0000 (20:24 +0100)]
Add option to generate PEM passphrase from fsid

This is entirely stupid; some corporations have a policy which requires
that we make some token effort to 'prevent' people from moving
certificates from machine to machine -- even if it's trivially
bypassable.

So they accept idiotic nonsense like the 'non-exportable' flag in the
Windows certificate store (despite the existence of tools like Jailbreak
http://www.isecpartners.com/jailbreak.html) and they accept this stupid
trick to use a passphrase which is taken from the file system's fsid --
on the basis that if you copy the certificate file to another machine,
the fsid will be different and you might actually have to sober up and
spend more than 5 seconds thinking about it before you can use the
copied certificate.

Obviously you lose the protection of a _real_ passphrase, but that was
redundant anyway in the case where they use two-stage authentication and
ask for a RADIUS password after your certificate is accepted.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAllow PEM passphrase to be set on command line
David Woodhouse [Thu, 28 May 2009 16:09:41 +0000 (17:09 +0100)]
Allow PEM passphrase to be set on command line

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoTag version 1.40 v1.40
David Woodhouse [Wed, 27 May 2009 12:54:51 +0000 (13:54 +0100)]
Tag version 1.40

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoupdate changelog for 1.40
David Woodhouse [Wed, 27 May 2009 12:54:30 +0000 (13:54 +0100)]
update changelog for 1.40

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRetry passphrase entry when it's wrong
David Woodhouse [Wed, 27 May 2009 10:38:55 +0000 (11:38 +0100)]
Retry passphrase entry when it's wrong

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoReport SSL errors through vpninfo->progress()
David Woodhouse [Wed, 27 May 2009 10:19:50 +0000 (11:19 +0100)]
Report SSL errors through vpninfo->progress()

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoFix double-free of vpninfo->dtls_cipher
David Woodhouse [Wed, 27 May 2009 08:41:28 +0000 (09:41 +0100)]
Fix double-free of vpninfo->dtls_cipher

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoPass only the signature of the server's cert from NetworkManager.
David Woodhouse [Tue, 26 May 2009 18:00:21 +0000 (19:00 +0100)]
Pass only the signature of the server's cert from NetworkManager.

Since we run openconnect as an unprivileged user, it may not be able to
read the original trust chain and validate the certificate for itself.
But since the auth-dialog has already connected to the server and done
the authentication, it can just give us the known signature for the
certificate the server is using today...

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoReconnect after SSL write fails
David Woodhouse [Tue, 26 May 2009 17:59:58 +0000 (18:59 +0100)]
Reconnect after SSL write fails

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoTag version 1.30 v1.30
David Woodhouse [Wed, 13 May 2009 12:46:22 +0000 (13:46 +0100)]
Tag version 1.30

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agochangelog for 1.30 release
David Woodhouse [Wed, 13 May 2009 12:46:12 +0000 (13:46 +0100)]
changelog for 1.30 release

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd changelog entry for form saving
David Woodhouse [Sun, 10 May 2009 23:05:16 +0000 (00:05 +0100)]
Add changelog entry for form saving

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle dependencies on stuff like gconf/gtk better.
David Woodhouse [Sun, 10 May 2009 09:28:33 +0000 (10:28 +0100)]
Handle dependencies on stuff like gconf/gtk better.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAvoid duplicate form entries, especially in wrong order
David Woodhouse [Sat, 9 May 2009 16:45:37 +0000 (17:45 +0100)]
Avoid duplicate form entries, especially in wrong order

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoRemember form entries
David Woodhouse [Sat, 9 May 2009 16:16:12 +0000 (17:16 +0100)]
Remember form entries

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoEnsure prompt overrides are honoured for default selection
David Woodhouse [Sat, 9 May 2009 15:43:24 +0000 (16:43 +0100)]
Ensure prompt overrides are honoured for default selection

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoUse form answers from gconf
David Woodhouse [Sat, 9 May 2009 15:23:48 +0000 (16:23 +0100)]
Use form answers from gconf

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAllow default settings for UI form elements to be set
David Woodhouse [Sat, 9 May 2009 15:14:40 +0000 (16:14 +0100)]
Allow default settings for UI form elements to be set

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoFix default result for combobox
David Woodhouse [Sat, 9 May 2009 15:13:49 +0000 (16:13 +0100)]
Fix default result for combobox

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoImport web page into git where it'll be easier to manage.
David Woodhouse [Sat, 9 May 2009 14:31:09 +0000 (15:31 +0100)]
Import web page into git where it'll be easier to manage.

Signed-off-by: David Woodhouse <dwmw2@infradead.org>
15 years agoFix up TODO list. We seem to have done everything that was in there before.
David Woodhouse [Sat, 9 May 2009 14:06:08 +0000 (15:06 +0100)]
Fix up TODO list. We seem to have done everything that was in there before.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoTag version 1.20 v1.20
David Woodhouse [Fri, 8 May 2009 18:56:06 +0000 (19:56 +0100)]
Tag version 1.20

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle parameters in messages
David Woodhouse [Fri, 8 May 2009 18:32:34 +0000 (19:32 +0100)]
Handle parameters in messages

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoshift message handling into separate function
David Woodhouse [Fri, 8 May 2009 18:02:51 +0000 (19:02 +0100)]
shift message handling into separate function

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoDon't set form->{banner,error,message} if it's empty
David Woodhouse [Fri, 8 May 2009 17:55:20 +0000 (18:55 +0100)]
Don't set form->{banner,error,message} if it's empty

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAbort when no login form opts
David Woodhouse [Fri, 8 May 2009 17:46:51 +0000 (18:46 +0100)]
Abort when no login form opts

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAsk user about authentication group
David Woodhouse [Fri, 8 May 2009 17:46:36 +0000 (18:46 +0100)]
Ask user about authentication group

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAllow auth group selection to be set on command line
David Woodhouse [Thu, 7 May 2009 19:48:00 +0000 (20:48 +0100)]
Allow auth group selection to be set on command line

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoapply configured username/password more selectively
David Woodhouse [Thu, 7 May 2009 19:32:12 +0000 (20:32 +0100)]
apply configured username/password more selectively

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoFix various bugs in split_{in,ex}clude list handling
David Woodhouse [Sat, 2 May 2009 11:21:24 +0000 (12:21 +0100)]
Fix various bugs in split_{in,ex}clude list handling

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoExpose all CSTP options to script
David Woodhouse [Wed, 29 Apr 2009 13:29:42 +0000 (14:29 +0100)]
Expose all CSTP options to script

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoSupport proxy autoconfiguration
David Woodhouse [Wed, 29 Apr 2009 13:04:26 +0000 (14:04 +0100)]
Support proxy autoconfiguration

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd processing of Split-Exclude headers from server
David Woodhouse [Wed, 29 Apr 2009 12:54:51 +0000 (13:54 +0100)]
Add processing of Split-Exclude headers from server

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd a command line option to continue in background after startup
Thomas Wood [Fri, 24 Apr 2009 19:22:33 +0000 (20:22 +0100)]
Add a command line option to continue in background after startup

[dwmw2: Don't add background flag to struct openconnect_info]
Signed-off-by: Thomas Wood <thomas.wood@intel.com>
Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoclean up printing of server disconnect message
David Woodhouse [Tue, 28 Apr 2009 15:18:47 +0000 (16:18 +0100)]
clean up printing of server disconnect message

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoDon't SEGV on empty selection
David Woodhouse [Fri, 24 Apr 2009 22:27:35 +0000 (23:27 +0100)]
Don't SEGV on empty selection

15 years agoAllow user to set DTLS ciphers
David Woodhouse [Fri, 24 Apr 2009 15:34:52 +0000 (16:34 +0100)]
Allow user to set DTLS ciphers

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle failure to agree DTLS cipher more gracefully
David Woodhouse [Fri, 24 Apr 2009 15:27:17 +0000 (16:27 +0100)]
Handle failure to agree DTLS cipher more gracefully

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agohandle login button visibility
David Woodhouse [Wed, 22 Apr 2009 16:32:15 +0000 (17:32 +0100)]
handle login button visibility

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agosilence warning about do_override_label func
David Woodhouse [Wed, 22 Apr 2009 16:05:09 +0000 (17:05 +0100)]
silence warning about do_override_label func

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agohandle label overrides
David Woodhouse [Wed, 22 Apr 2009 15:56:43 +0000 (16:56 +0100)]
handle label overrides

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoprint banner/error/message only if they aren't empty
David Woodhouse [Wed, 22 Apr 2009 15:22:28 +0000 (16:22 +0100)]
print banner/error/message only if they aren't empty

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agohandle select opts in NM UI
David Woodhouse [Wed, 22 Apr 2009 15:21:48 +0000 (16:21 +0100)]
handle select opts in NM UI

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoStart at processing form directly instead of through OpenSSL UI
David Woodhouse [Wed, 22 Apr 2009 15:03:49 +0000 (16:03 +0100)]
Start at processing form directly instead of through OpenSSL UI

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agocreate ssl_box_add_info()
David Woodhouse [Wed, 22 Apr 2009 13:20:02 +0000 (14:20 +0100)]
create ssl_box_add_info()

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoDon't print banner/error/message when empty
David Woodhouse [Wed, 22 Apr 2009 13:16:42 +0000 (14:16 +0100)]
Don't print banner/error/message when empty

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAllow automatic vertical resize
David Woodhouse [Wed, 22 Apr 2009 13:04:45 +0000 (14:04 +0100)]
Allow automatic vertical resize

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAllow process_auth_form() to be overridden in vpninfo
David Woodhouse [Wed, 22 Apr 2009 12:52:26 +0000 (13:52 +0100)]
Allow process_auth_form() to be overridden in vpninfo

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agodrop request body args from process_form
David Woodhouse [Wed, 22 Apr 2009 12:49:37 +0000 (13:49 +0100)]
drop request body args from process_form

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAdd README.DTLS
David Woodhouse [Wed, 22 Apr 2009 12:48:10 +0000 (13:48 +0100)]
Add README.DTLS

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoremove 'verbose' variable
David Woodhouse [Wed, 22 Apr 2009 12:27:16 +0000 (13:27 +0100)]
remove 'verbose' variable

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up openconnect_obtain_cookie() return value
David Woodhouse [Wed, 22 Apr 2009 12:25:58 +0000 (13:25 +0100)]
Clean up openconnect_obtain_cookie() return value

Bring it into line with other things. Zero for success, 1 for
cancellation, and -errno for errors.

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoClean up parse_xml_response() and process_form() return values.
David Woodhouse [Wed, 22 Apr 2009 12:17:50 +0000 (13:17 +0100)]
Clean up parse_xml_response() and process_form() return values.

This was a mess; now it's simple. Return values are:
        0 when a form has been filled in and needs submitting
        1 for user cancellation
        2 when the xml indicated that login was already successful
        -errno for other errors

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agomove form definitions to openconnect.h
David Woodhouse [Wed, 22 Apr 2009 11:38:49 +0000 (12:38 +0100)]
move form definitions to openconnect.h

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoMove append_form_opts() up to avoid having to declare it first
David Woodhouse [Wed, 22 Apr 2009 11:34:24 +0000 (12:34 +0100)]
Move append_form_opts() up to avoid having to declare it first

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agorename form structures, basic documentation on string handling
David Woodhouse [Wed, 22 Apr 2009 11:17:05 +0000 (12:17 +0100)]
rename form structures, basic documentation on string handling

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoAll input types process after user-interaction now
David Woodhouse [Wed, 22 Apr 2009 11:12:26 +0000 (12:12 +0100)]
All input types process after user-interaction now

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>
15 years agoHandle choice in append_form_opts() too
David Woodhouse [Wed, 22 Apr 2009 10:12:14 +0000 (11:12 +0100)]
Handle choice in append_form_opts() too

Signed-off-by: David Woodhouse <David.Woodhouse@intel.com>