Nikos Mavrogiannopoulos
44bff9ce5e
.gitlab-ci.yml: corrected syntax
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-09 13:27:27 +01:00
Nikos Mavrogiannopoulos
39a86845cb
.gitlab-ci.yml: RPM/epel8: undo downstream patch
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-09 11:44:50 +01:00
Nikos Mavrogiannopoulos
9927fbe997
design.dia: updated to mention seccomp
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-09 11:35:30 +01:00
Nikos Mavrogiannopoulos
8defa73293
Merge branch 'tmp-updated-http-parser' into 'master'
...
Updated http-parser bundled library
See merge request openconnect/ocserv!245
2020-12-09 09:15:53 +00:00
Nikos Mavrogiannopoulos
5c53d5f82d
Updated bundled http-parser
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-09 09:31:07 +01:00
Nikos Mavrogiannopoulos
3702debb95
README.md: no longer recommend pcllib
...
It is a very small library that doesn't change, not used by
any other projects and we bundle it. Let's use the bundled
version by default.
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-09 09:29:45 +01:00
Nikos Mavrogiannopoulos
eaeac13962
Merge branch 'tmp-tests-no-need-root' into 'master'
...
tests: drain-server-fail: make sure it runs only when root
See merge request openconnect/ocserv!244
2020-12-06 21:57:56 +00:00
Nikos Mavrogiannopoulos
70150a856b
tests: drain-server-fail: make sure it runs only when root
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-06 22:14:38 +01:00
Nikos Mavrogiannopoulos
bbaf5125e1
released 1.1.2
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
1.1.2
2020-12-06 14:00:50 +01:00
Nikos Mavrogiannopoulos
3ba6b24379
Merge branch 'tmp-setrlimit' into 'master'
...
update_fd_limits: set fd limits for "unlimited" users to 8k
Closes #349
See merge request openconnect/ocserv!243
2020-12-06 12:59:51 +00:00
Nikos Mavrogiannopoulos
d08f4832e4
update_fd_limits: removed comment on future raise
...
This increases the maximum number of fds by 96 to allow up to
128 scripts being run when close to the maximum limit of clients.
Resolves : #349
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-03 23:52:32 +01:00
Nikos Mavrogiannopoulos
86138698fe
update_fd_limits: set fd limits for "unlimited" users to 8k
...
Relates: #349
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-03 23:42:14 +01:00
Nikos Mavrogiannopoulos
051a20dde9
Merge branch 'tmp-ubuntu' into 'master'
...
.gitlab-ci.yml: ubuntu: added seccomp check and enabled nuttcp tests
See merge request openconnect/ocserv!242
2020-12-03 10:40:57 +00:00
Russ Young
3055c15c96
Log changes to reduce logging noise
...
Signed-off-by: Russell Young <ruyoung@microsoft.com >
2020-12-03 10:58:22 +01:00
Nikos Mavrogiannopoulos
a2e2bf0053
.gitlab-ci.yml: ubuntu: enabled nuttcp tests
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-03 10:57:32 +01:00
Nikos Mavrogiannopoulos
2f0b1bba0d
Merge branch 'tmp-remove-listen-file' into 'master'
...
Removed the listen-clear-file config option
Closes #376
See merge request openconnect/ocserv!238
2020-12-03 09:50:18 +00:00
Nikos Mavrogiannopoulos
5cf457b425
Removed the listen-clear-file config option
...
This option was almost impossible to use in general and worked with
very few clients only (not including openconnect). That also meant that
it could not be tested. Removed to reduce maintenance to parameters
that are used in practice.
Resolves : #376
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-03 10:04:57 +01:00
Nikos Mavrogiannopoulos
6c9615618d
Merge branch 'tmp-coverity-fixes' into 'master'
...
Several fixes or annotations attributed to coverity scan
See merge request openconnect/ocserv!237
2020-12-03 09:00:59 +00:00
Alan Jowett
84dd1ace60
Merge branch 'coverity_fix' into 'master'
...
Fix coverity warning in forward_udp_to_owner
See merge request openconnect/ocserv!241
2020-12-02 20:43:39 +00:00
Alan Jowett
50ab40782a
Fix coverty warning in forward_udp_to_owner
...
Signed-off-by: Alan Jowett <alan.jowett@microsoft.com >
2020-12-02 12:58:56 -07:00
Nikos Mavrogiannopoulos
8000de58bd
handle_sec_auth_cont: corrected use of ps_status_to_str
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-01 21:03:29 +01:00
Nikos Mavrogiannopoulos
6805023bd3
handle_sec_auth_cont: print status in readable form
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-12-01 20:48:22 +01:00
Nikos Mavrogiannopoulos
b797d509fc
set_non_block: ensure we log errors
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:38:05 +01:00
Nikos Mavrogiannopoulos
d60cbf53c5
handle_commands_from_main: silence coverity
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:38:03 +01:00
Nikos Mavrogiannopoulos
9680622d86
handle_events_cmd: silence coverity
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:25:14 +01:00
Nikos Mavrogiannopoulos
65a0e595e5
gssapi_vhost_init: simplified
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:22:36 +01:00
Nikos Mavrogiannopoulos
6fe528ec4c
post_auth_handler: added error checking to cstp_printf
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:22:25 +01:00
Nikos Mavrogiannopoulos
57c0381269
send_stats_to_secmod: silence coverity
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:22:17 +01:00
Nikos Mavrogiannopoulos
56c6ab9cbf
_listen_unix_ports: error when remove fails
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:20:26 +01:00
Nikos Mavrogiannopoulos
4150c2251b
pam: silence coverity warning
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-26 14:20:22 +01:00
Nikos Mavrogiannopoulos
9d98e08aa1
Merge branch 'tmp-always-check-rnd' into 'master'
...
gnutls_rnd(): always check its return value
See merge request openconnect/ocserv!236
2020-11-19 22:04:23 +00:00
Nikos Mavrogiannopoulos
3be9234cb9
gnutls_rnd(): always check its return value
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-19 22:20:19 +01:00
Nikos Mavrogiannopoulos
fa73c53d46
Merge branch 'tmp-upgrade-ci-to-f33' into 'master'
...
Upgrade fedora CI to fedora33
See merge request openconnect/ocserv!235
2020-11-14 22:03:18 +00:00
Nikos Mavrogiannopoulos
7ee163ad2c
kerberos: fixes for fedora33 kdc
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-14 22:05:56 +01:00
Nikos Mavrogiannopoulos
6d8bcb4795
.gitlab-ci.yml: do not use --disable-maintainer-mode
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-12 16:55:01 +01:00
Nikos Mavrogiannopoulos
dfadd45b9b
Makefile: removed unused rules
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-11-12 16:37:25 +01:00
Alan Jowett
5b9fc73fd9
Merge branch 'issue360' into 'master'
...
Issue360 - Send disconnect reason with BanIP message
Closes #360
See merge request openconnect/ocserv!234
2020-11-06 22:30:21 +00:00
Alan Jowett
01a9815bdf
Set disconnect reason when updating ban-ip
...
Resolves : #360
Signed-off-by: Alan Jowett alan.jowett@microsoft.com
2020-11-06 13:16:32 -07:00
Nikos Mavrogiannopoulos
82fc1e4881
Merge branch 'tmp-enhance-syscalls' into 'master'
...
worker-privs: enhanced with syscalls used by socket wrapper
See merge request openconnect/ocserv!233
2020-11-01 22:27:55 +00:00
Nikos Mavrogiannopoulos
4afbf8fdb2
Merge branch 'tmp-init-snapshot' into 'master'
...
set_env_from_ws: ensure there are no uninitialized variables from snapshot
See merge request openconnect/ocserv!231
2020-11-01 21:39:29 +00:00
Nikos Mavrogiannopoulos
9521918143
worker-privs: allow new syscalls
...
This adds the syscalls used by socket wrapper as observed
in Fedora builders, as well as syscalls observed in different
platforms such as aarch64.
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-30 22:31:59 +01:00
Nikos Mavrogiannopoulos
d83a39da51
set_env_from_ws: ensure there are no uninitialized variables from snapshot
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-30 22:11:09 +01:00
Nikos Mavrogiannopoulos
940e489500
.gitlab-ci.yml: i386/Debian: do not run on schedules
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-21 16:30:09 +02:00
Nikos Mavrogiannopoulos
37856ba314
doc update
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-19 21:38:35 +02:00
Alan Jowett
73ebc58265
Merge branch 'issue359' into 'master'
...
Allow setup of new DTLS session while processing on old session
Closes #359
See merge request openconnect/ocserv!223
2020-10-19 17:21:33 +00:00
Alan Jowett
3436705a9c
Allow setup of new DTLS session while processing on old session
...
Resolves : #359
Signed-off-by: Alan Jowett alan.jowett@microsoft.com
2020-10-19 10:36:03 -06:00
Nikos Mavrogiannopoulos
c5d3e4f321
Merge branch 'tmp-inih-update' into 'master'
...
inih: increase the limit for a config line
Closes #364
See merge request openconnect/ocserv!230
2020-10-18 19:58:51 +00:00
Nikos Mavrogiannopoulos
b7575cc220
tests: fixed space after \
...
Also ensure that similar warnings are treated as errors
in CI.
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-18 21:15:40 +02:00
Nikos Mavrogiannopoulos
16bfb30586
inih: reintroduced INI_STOP_ON_FIRST_ERROR
...
This also introduces better error reporting to inih, and
handling of the errors received by inih.
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-18 21:05:08 +02:00
Nikos Mavrogiannopoulos
c49d981274
inih: updated to latest version
...
Signed-off-by: Nikos Mavrogiannopoulos <n.mavrogiannopoulos@gmail.com >
2020-10-18 21:05:05 +02:00