New commits: commit 22e1fac6e5415d91afb85da70e2f5ff61f2b8db7 Merge: ad7d8caa78 d4c91e00a8 Author: Andrew Cagney <cag...@gnu.org> Date: Sun Sep 21 11:03:03 2025 -0400
Merge ikev2: don't bother with IKE_INTERMEDIATE when addke=none from RFC 9370 If the responder selects NONE for some ADDKE Transform Types (provided they are proposed by the initiator), then any corresponding additional key exchanges MUST NOT take place. both PPK and ML_KEM should test this close #2446 skip IKE_INTERMEDIATE when addke*=none is negotiated commit d4c91e00a8c881c80a64467e6bc6d9a9ab0543b3 Author: Andrew Cagney <cag...@gnu.org> Date: Sun Sep 21 10:52:58 2025 -0400 testing: add ikev2-ppk-intermediate-02-addke trying combinations of addke=alg/none; confirm PPK attaches to last IKE_INTERMEDIATE, or adds one if it's NONE. replace ikev2-ppk-intermediate-02-addke-modp8192-ml-kem-768 commit 7be2f9b5b6354aa7b83dbb0327d8f92ddb6baeb3 Author: Andrew Cagney <cag...@gnu.org> Date: Sun Sep 21 10:41:53 2025 -0400 testing: add ikev2-intermediate-01-addke-connswitch after IKE_INTERMEDIATE switch from PSK to RSA replace ikev2-intermediate-01-addke-none-{rsa,psk} since addke=none was reduced to no IKE_INTERMEDIATE commit bd00e2a8c399e395a58206e3fdd99e4fc20060ee Author: Andrew Cagney <cag...@gnu.org> Date: Sun Sep 21 10:45:19 2025 -0400 testing: expect ADDKE=NONE to be dropped commit 851eb655568dfa4d5f11058c12afe725ae34abf1 Author: Andrew Cagney <cag...@gnu.org> Date: Sun Sep 21 09:53:32 2025 -0400 ikev2: don't exchange ADDKE=none (except when there's some other reason) _______________________________________________ Swan-commit mailing list -- swan-commit@lists.libreswan.org To unsubscribe send an email to swan-commit-le...@lists.libreswan.org