New commits:
commit 22e1fac6e5415d91afb85da70e2f5ff61f2b8db7
Merge: ad7d8caa78 d4c91e00a8
Author: Andrew Cagney <cag...@gnu.org>
Date:   Sun Sep 21 11:03:03 2025 -0400

    Merge ikev2: don't bother with IKE_INTERMEDIATE when addke=none
    
    from RFC 9370
    
      If the responder selects NONE for some ADDKE Transform Types
      (provided they are proposed by the initiator), then any
      corresponding additional key exchanges MUST NOT take place.  both
      PPK and ML_KEM should test this
    
    close #2446 skip IKE_INTERMEDIATE when addke*=none is negotiated

commit d4c91e00a8c881c80a64467e6bc6d9a9ab0543b3
Author: Andrew Cagney <cag...@gnu.org>
Date:   Sun Sep 21 10:52:58 2025 -0400

    testing: add ikev2-ppk-intermediate-02-addke
    
    trying combinations of addke=alg/none; confirm PPK attaches
    to last IKE_INTERMEDIATE, or adds one if it's NONE.
    
    replace ikev2-ppk-intermediate-02-addke-modp8192-ml-kem-768

commit 7be2f9b5b6354aa7b83dbb0327d8f92ddb6baeb3
Author: Andrew Cagney <cag...@gnu.org>
Date:   Sun Sep 21 10:41:53 2025 -0400

    testing: add ikev2-intermediate-01-addke-connswitch
    
    after IKE_INTERMEDIATE switch from PSK to RSA
    
    replace ikev2-intermediate-01-addke-none-{rsa,psk} since addke=none
    was reduced to no IKE_INTERMEDIATE

commit bd00e2a8c399e395a58206e3fdd99e4fc20060ee
Author: Andrew Cagney <cag...@gnu.org>
Date:   Sun Sep 21 10:45:19 2025 -0400

    testing: expect ADDKE=NONE to be dropped

commit 851eb655568dfa4d5f11058c12afe725ae34abf1
Author: Andrew Cagney <cag...@gnu.org>
Date:   Sun Sep 21 09:53:32 2025 -0400

    ikev2: don't exchange ADDKE=none
    
    (except when there's some other reason)

_______________________________________________
Swan-commit mailing list -- swan-commit@lists.libreswan.org
To unsubscribe send an email to swan-commit-le...@lists.libreswan.org

Reply via email to