diff options
author | Bjarke Istrup Pedersen <gurligebis@gentoo.org> | 2015-06-06 16:11:33 +0000 |
---|---|---|
committer | Bjarke Istrup Pedersen <gurligebis@gentoo.org> | 2015-06-06 16:11:33 +0000 |
commit | c1f789f83b4b3329f2ed3b67b711a25ff47e57b0 (patch) | |
tree | 8639bf3f4af7a176d48d9fb9598288ee33fb6043 /net-misc/strongswan | |
parent | Add github to remote-id in metadata.xml (diff) | |
download | historical-c1f789f83b4b3329f2ed3b67b711a25ff47e57b0.tar.gz historical-c1f789f83b4b3329f2ed3b67b711a25ff47e57b0.tar.bz2 historical-c1f789f83b4b3329f2ed3b67b711a25ff47e57b0.zip |
Removing old version, wrt. bug #536226
Package-Manager: portage-2.2.20/cvs/Linux x86_64
Manifest-Sign-Key: 0x15AE484C
Diffstat (limited to 'net-misc/strongswan')
-rw-r--r-- | net-misc/strongswan/ChangeLog | 5 | ||||
-rw-r--r-- | net-misc/strongswan/Manifest | 10 | ||||
-rw-r--r-- | net-misc/strongswan/strongswan-5.1.3.ebuild | 271 |
3 files changed, 8 insertions, 278 deletions
diff --git a/net-misc/strongswan/ChangeLog b/net-misc/strongswan/ChangeLog index a404dbbfd1ab..c74600abb94b 100644 --- a/net-misc/strongswan/ChangeLog +++ b/net-misc/strongswan/ChangeLog @@ -1,6 +1,9 @@ # ChangeLog for net-misc/strongswan # Copyright 1999-2015 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/net-misc/strongswan/ChangeLog,v 1.153 2015/04/01 12:08:48 gurligebis Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-misc/strongswan/ChangeLog,v 1.154 2015/06/06 16:11:32 gurligebis Exp $ + + 06 Jun 2015; <gurligebis@gentoo.org> -strongswan-5.1.3.ebuild: + Removing old version, wrt. bug #536226 *strongswan-5.3.0 (01 Apr 2015) diff --git a/net-misc/strongswan/Manifest b/net-misc/strongswan/Manifest index 3ef226efdb1e..541b70af9b73 100644 --- a/net-misc/strongswan/Manifest +++ b/net-misc/strongswan/Manifest @@ -2,18 +2,16 @@ Hash: SHA256 AUX ipsec 450 SHA256 c579fb596ef504b0707db0bc54a986b5f7e88d021e102478d26867434c8f8ecf SHA512 8a1b0610d4d7f1772cfa85bac4819946f3462ee063b4b1d47023a81fd650e6183a71b9a79d098d5394765cb9a6deedb91942885501af916c27fad2886226e5b9 WHIRLPOOL eb7ca1ad4f7db0bf1c41100bcacbf43235159a26be0744141531db112408875ecc93d59845f2585c23b83cc81a39d23e8374026609e7442eef6adff217cc3592 -DIST strongswan-5.1.3.tar.bz2 3807212 SHA256 84e46d5ce801e1b874e2bfba8d21dbd78b432e23b7fb1f4f2d637359e7a183a8 SHA512 05f4afbf778de54c593692a8117a5fae05c0539cdb7545bc53657deb32d09bec7e0aef07d509dc682af15d57adf569242715447bc1a87785c1f80a21076cb8cb WHIRLPOOL f808f47879504c09364ad326e404555f60754980f728121de80d41645e06bf740b2814eb39ae8a3d9239b83de68978d3281ac6f2fdfd68d1c14ac3447c9f9c6b DIST strongswan-5.2.2.tar.bz2 4169095 SHA256 cf2fbfdf200a5eced796f00dc11fea67ce477d38c54d5f073ac6c51618b172f4 SHA512 80ae5551d16e8ddcff71426c1ec996388f32cec8a027f722e8f5151cdd67f09d65705a702ff8c3f2702dca6470e525eb2af2459f7ced9d5923570a331491d534 WHIRLPOOL e968131c6372111154f3b0f376ebbfa35668ba21bab8bd179f48130822e257eb5c3fcd80b80a341fd7489dcd023718ccf15921575c42ea8d7656b7bd2485a1d5 DIST strongswan-5.3.0.tar.bz2 4263420 SHA256 824da31a1ff89ac2500d56705e6f9ce06fe5260f9caaeb1da35ea13a8691d284 SHA512 1bb677e120b7b38942031a19b2c2caa8a55911ffc3220731fedd717efd6f80f937fd8e4e8d8e22ce638d49d548e9f5b1b043eede2550df2727a0242a08ef50e3 WHIRLPOOL 0670eab503773a08fbf7200cf5ae34896aa36b5047837d2fe224c982610cecb753fa0802484025c1f25fa19ef09abe587a36534d59cb984c59c083c85620daa5 -EBUILD strongswan-5.1.3.ebuild 8500 SHA256 03b24aa4875a3da05b4442c44f31ebd8482647b31cf0a4f3a2ac6e697c901b29 SHA512 a7339bcb0635c223173a7982111d58bf8f0da9cf245e57f23ecc91bcddb9c0c2b31d7792778f4d48992171f95063eb2e50c5a1627019215f5e9a8ace120a1947 WHIRLPOOL fb1d2e49682bbbb7f7313a540fe7205ef6f2e7ae8ad886e42b58e3538eebd2ce1213a54be0e94cd8fb696bda29a26a66c126c24fc69f5d91877efa6cd9e9914e EBUILD strongswan-5.2.2.ebuild 9336 SHA256 ab93c51fc4ae9e575017bb6e26a82757cf2ebd3e2640a65bc008fd06940ceebf SHA512 15f32d2e4d92c6377951d14eb898c3083b16967fa8261cfaa1e0ca12af5443d0ea96f88ca77d9bef598074cfdcda89b486c2f0896495f4e3fb3d44a85ef11696 WHIRLPOOL 411e63bbe3a1bbbcb9a97f774321032b6a05b28633a5951b3eacc6589507febafd3e8cac10ff4cf946a4457a7c24c85c6643ebc759ee95861d042c2a32771993 EBUILD strongswan-5.3.0.ebuild 9344 SHA256 a62af66ab248810f22d43ee0c1905af3e0a81d4ec92f2fdca9e2238ad6f7f2fd SHA512 1f5c72e7dc33c4d19f62e0fcc2e1a6b8afe104e3786c3439e204f8ad33e7dde4eef6a1dbd96cc017ae0fd9b93ae80030790c3591cb8d591760ca8278fc30a988 WHIRLPOOL c191e8a72388a4dd340fb6aeee0b860c6d3779d52431964b7c50a3602747f8348151dbd7d4b725cfbc2a143c382da610f762e1f306c048e1e097018644e5b6bf -MISC ChangeLog 25774 SHA256 835f5da306d343d8bedfe07c537da0a7e9a76c2aa3d2fb6be7689a787f524534 SHA512 0de65eb0f9b70bb96a7384b17abf4d8c6f451cd471d436a76853e2f80aae163b7dc9dd175a30d70e21a6596c848da8a5b55b6da64c45ba0b19c5691eaf64006b WHIRLPOOL 6c16ade88777d4ca69c2b81da5609580327b24520427ebc66afbb36250fe2339285a8fbaa53375aa8cdf3b587e80954fbe520ada357826e3f5b25ef7cff85cce +MISC ChangeLog 25881 SHA256 5a1157c64b74f921e059ac2fc0d0ed1b5d52a22859e759d7d55a7ac713475994 SHA512 8f667a22e08e55eedb1031090f96fdde6c10ac04c396b5aacc109594ed8d5af5c81b0939d53f839d8097037c17a5eddfd07913a5708cd94068a9539d1a7dbabf WHIRLPOOL 5f8463f7904ea4a05881d9e6a94feeb2259c91cf18c407ff028e1d7660c29b42d7e5312fa15c96618b1ee535a6aead9dcfecf73c40dbe257b7290dda8eee48ad MISC metadata.xml 4082 SHA256 c84116341eb57e8143b6aefd61d3aae6a9273ea292f3e8b10ac09f047fd09f17 SHA512 4981169950655d37b1975f77ea4aa4ce7be17a6c533605f635a8a0fe18a19fbe7df59a22db6c52bfbeddc43b94da91b03be3520408c044da5cbb3518c7db31fe WHIRLPOOL db0fe76527e8a9d6d67708735934cede289adb6d6bbff57b06bea2efbc29d4484342d0dec8720d09e33c99da1c8b41bba7f65be5a52efca8d5f3d124a93cbe46 -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 -iEYEAREIAAYFAlUb39EACgkQsR7PQhRXYEnemwCeIWRa3s3VYBmMBrRaukRMpsy4 -ib4An0IyQzLlYjRVzl4bhFdBPMBSeZe+ -=GlH0 +iEYEAREIAAYFAlVzG7UACgkQsR7PQhRXYEkwWACfX0nhZSXF7XTAA7Lsj4M+hnak +I1cAmwduhXtbYz04i2iI60B+X8K5Ye+m +=PI8F -----END PGP SIGNATURE----- diff --git a/net-misc/strongswan/strongswan-5.1.3.ebuild b/net-misc/strongswan/strongswan-5.1.3.ebuild deleted file mode 100644 index 4d2ce4feb1da..000000000000 --- a/net-misc/strongswan/strongswan-5.1.3.ebuild +++ /dev/null @@ -1,271 +0,0 @@ -# Copyright 1999-2014 Gentoo Foundation -# Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/net-misc/strongswan/strongswan-5.1.3.ebuild,v 1.7 2014/05/10 14:00:53 ago Exp $ - -EAPI=5 -inherit eutils linux-info systemd user - -DESCRIPTION="IPsec-based VPN solution focused on security and ease of use, supporting IKEv1/IKEv2 and MOBIKE" -HOMEPAGE="http://www.strongswan.org/" -SRC_URI="http://download.strongswan.org/${P}.tar.bz2" - -LICENSE="GPL-2 RSA DES" -SLOT="0" -KEYWORDS="amd64 arm ppc ~ppc64 x86" -IUSE="+caps curl +constraints debug dhcp eap farp gcrypt ldap mysql networkmanager +non-root +openssl sqlite pam" - -COMMON_DEPEND="!net-misc/openswan - >=dev-libs/gmp-4.1.5 - gcrypt? ( dev-libs/libgcrypt:0 ) - caps? ( sys-libs/libcap ) - curl? ( net-misc/curl ) - ldap? ( net-nds/openldap ) - openssl? ( >=dev-libs/openssl-0.9.8[-bindist] ) - mysql? ( virtual/mysql ) - sqlite? ( >=dev-db/sqlite-3.3.1 ) - networkmanager? ( net-misc/networkmanager ) - pam? ( sys-libs/pam )" -DEPEND="${COMMON_DEPEND} - virtual/linux-sources - sys-kernel/linux-headers" -RDEPEND="${COMMON_DEPEND} - virtual/logger - sys-apps/iproute2 - !net-misc/libreswan" - -UGID="ipsec" - -pkg_setup() { - linux-info_pkg_setup - elog "Linux kernel version: ${KV_FULL}" - - if ! kernel_is -ge 2 6 16; then - eerror - eerror "This ebuild currently only supports ${PN} with the" - eerror "native Linux 2.6 IPsec stack on kernels >= 2.6.16." - eerror - fi - - if kernel_is -lt 2 6 34; then - ewarn - ewarn "IMPORTANT KERNEL NOTES: Please read carefully..." - ewarn - - if kernel_is -lt 2 6 29; then - ewarn "[ < 2.6.29 ] Due to a missing kernel feature, you have to" - ewarn "include all required IPv6 modules even if you just intend" - ewarn "to run on IPv4 only." - ewarn - ewarn "This has been fixed with kernels >= 2.6.29." - ewarn - fi - - if kernel_is -lt 2 6 33; then - ewarn "[ < 2.6.33 ] Kernels prior to 2.6.33 include a non-standards" - ewarn "compliant implementation for SHA-2 HMAC support in ESP and" - ewarn "miss SHA384 and SHA512 HMAC support altogether." - ewarn - ewarn "If you need any of those features, please use kernel >= 2.6.33." - ewarn - fi - - if kernel_is -lt 2 6 34; then - ewarn "[ < 2.6.34 ] Support for the AES-GMAC authentification-only" - ewarn "ESP cipher is only included in kernels >= 2.6.34." - ewarn - ewarn "If you need it, please use kernel >= 2.6.34." - ewarn - fi - fi - - if use non-root; then - enewgroup ${UGID} - enewuser ${UGID} -1 -1 -1 ${UGID} - fi -} - -src_prepare() { - epatch_user -} - -src_configure() { - local myconf="" - - if use non-root; then - myconf="${myconf} --with-user=${UGID} --with-group=${UGID}" - fi - - # If a user has already enabled db support, those plugins will - # most likely be desired as well. Besides they don't impose new - # dependencies and come at no cost (except for space). - if use mysql || use sqlite; then - myconf="${myconf} --enable-attr-sql --enable-sql" - fi - - # strongSwan builds and installs static libs by default which are - # useless to the user (and to strongSwan for that matter) because no - # header files or alike get installed... so disabling them is safe. - if use pam && use eap; then - myconf="${myconf} --enable-eap-gtc" - else - myconf="${myconf} --disable-eap-gtc" - fi - econf \ - --disable-static \ - --enable-ikev1 \ - --enable-ikev2 \ - $(use_with caps capabilities libcap) \ - $(use_enable curl) \ - $(use_enable constraints) \ - $(use_enable ldap) \ - $(use_enable debug leak-detective) \ - $(use_enable eap eap-sim) \ - $(use_enable eap eap-sim-file) \ - $(use_enable eap eap-simaka-sql) \ - $(use_enable eap eap-simaka-pseudonym) \ - $(use_enable eap eap-simaka-reauth) \ - $(use_enable eap eap-identity) \ - $(use_enable eap eap-md5) \ - $(use_enable eap eap-aka) \ - $(use_enable eap eap-aka-3gpp2) \ - $(use_enable eap eap-mschapv2) \ - $(use_enable eap eap-radius) \ - $(use_enable eap eap-tls) \ - $(use_enable openssl) \ - $(use_enable gcrypt) \ - $(use_enable mysql) \ - $(use_enable sqlite) \ - $(use_enable dhcp) \ - $(use_enable farp) \ - $(use_enable networkmanager nm) \ - "$(systemd_with_unitdir)" \ - ${myconf} -} - -src_install() { - emake DESTDIR="${D}" install - - doinitd "${FILESDIR}"/ipsec - - local dir_ugid - if use non-root; then - fowners ${UGID}:${UGID} \ - /etc/ipsec.conf \ - /etc/strongswan.conf - - dir_ugid="${UGID}" - else - dir_ugid="root" - fi - - diropts -m 0750 -o ${dir_ugid} -g ${dir_ugid} - dodir /etc/ipsec.d \ - /etc/ipsec.d/aacerts \ - /etc/ipsec.d/acerts \ - /etc/ipsec.d/cacerts \ - /etc/ipsec.d/certs \ - /etc/ipsec.d/crls \ - /etc/ipsec.d/ocspcerts \ - /etc/ipsec.d/private \ - /etc/ipsec.d/reqs - - dodoc NEWS README TODO || die - - # shared libs are used only internally and there are no static libs, - # so it's safe to get rid of the .la files - find "${D}" -name '*.la' -delete || die "Failed to remove .la files." -} - -pkg_preinst() { - has_version "<net-misc/strongswan-4.3.6-r1" - upgrade_from_leq_4_3_6=$(( !$? )) - - has_version "<net-misc/strongswan-4.3.6-r1[-caps]" - previous_4_3_6_with_caps=$(( !$? )) -} - -pkg_postinst() { - if ! use openssl && ! use gcrypt; then - elog - elog "${PN} has been compiled without both OpenSSL and libgcrypt support." - elog "Please note that this might effect availability and speed of some" - elog "cryptographic features. You are advised to enable the OpenSSL plugin." - elif ! use openssl; then - elog - elog "${PN} has been compiled without the OpenSSL plugin. This might effect" - elog "availability and speed of some cryptographic features. There will be" - elog "no support for Elliptic Curve Cryptography (Diffie-Hellman groups 19-21," - elog "25, 26) and ECDSA." - fi - - if [[ $upgrade_from_leq_4_3_6 == 1 ]]; then - chmod 0750 "${ROOT}"/etc/ipsec.d \ - "${ROOT}"/etc/ipsec.d/aacerts \ - "${ROOT}"/etc/ipsec.d/acerts \ - "${ROOT}"/etc/ipsec.d/cacerts \ - "${ROOT}"/etc/ipsec.d/certs \ - "${ROOT}"/etc/ipsec.d/crls \ - "${ROOT}"/etc/ipsec.d/ocspcerts \ - "${ROOT}"/etc/ipsec.d/private \ - "${ROOT}"/etc/ipsec.d/reqs - - ewarn - ewarn "The default permissions for /etc/ipsec.d/* have been tightened for" - ewarn "security reasons. Your system installed directories have been" - ewarn "updated accordingly. Please check if necessary." - ewarn - - if [[ $previous_4_3_6_with_caps == 1 ]]; then - if ! use non-root; then - ewarn - ewarn "IMPORTANT: You previously had ${PN} installed without root" - ewarn "privileges because it was implied by the 'caps' USE flag." - ewarn "This has been changed. If you want ${PN} with user privileges," - ewarn "you have to re-emerge it with the 'non-root' USE flag enabled." - ewarn - fi - fi - fi - if ! use caps && ! use non-root; then - ewarn - ewarn "You have decided to run ${PN} with root privileges and built it" - ewarn "without support for POSIX capability dropping. It is generally" - ewarn "strongly suggested that you reconsider- especially if you intend" - ewarn "to run ${PN} as server with a public ip address." - ewarn - ewarn "You should re-emerge ${PN} with at least the 'caps' USE flag enabled." - ewarn - fi - if use non-root; then - elog - elog "${PN} has been installed without superuser privileges (USE=non-root)." - elog "This imposes several limitations mainly to the IKEv1 daemon 'pluto'" - elog "but also a few to the IKEv2 daemon 'charon'." - elog - elog "Please carefully read: http://wiki.strongswan.org/wiki/nonRoot" - elog - elog "pluto uses a helper script by default to insert/remove routing and" - elog "policy rules upon connection start/stop which requires superuser" - elog "privileges. charon in contrast does this internally and can do so" - elog "even with reduced (user) privileges." - elog - elog "Thus if you require IKEv1 (pluto) or need to specify a custom updown" - elog "script to pluto or charon which requires superuser privileges, you" - elog "can work around this limitation by using sudo to grant the" - elog "user \"ipsec\" the appropriate rights." - elog "For example (the default case):" - elog "/etc/sudoers:" - elog " ipsec ALL=(ALL) NOPASSWD: SETENV: /usr/sbin/ipsec" - elog "Under the specific connection block in /etc/ipsec.conf:" - elog " leftupdown=\"sudo -E ipsec _updown iptables\"" - elog - fi - elog - elog "Make sure you have _all_ required kernel modules available including" - elog "the appropriate cryptographic algorithms. A list is available at:" - elog " http://wiki.strongswan.org/projects/strongswan/wiki/KernelModules" - elog - elog "The up-to-date manual is available online at:" - elog " http://wiki.strongswan.org/" - elog -} |