Commit graph

23 commits

Author SHA1 Message Date
Florian Smeets
42c98f4045 - Update to 3.13.5
- Convert to optionsng
2012-06-04 21:14:30 +00:00
Florian Smeets
d1ec39e75f update to 3.13.4 2012-04-14 21:09:51 +00:00
Florian Smeets
692b81883c Update to 3.13.3 2012-03-05 17:00:58 +00:00
Florian Smeets
89b7029586 Just overwrite the link if it still exists. That way we are sure that the link
points to the correct file and there is no reason trying to protect the link as
it would be deleted on deinstall anyway.

Suggested by:	dougb
2012-03-02 19:53:35 +00:00
Florian Smeets
cbe409d1f3 make sure installation does not fail if for whatever reason the symlink in
/etc/ssl is still there on (re)install phase with ETCSYMLINK option set.

Submitted by:	mi
2012-02-27 23:35:11 +00:00
Florian Smeets
a966a05ace update to 3.13.2 2012-02-20 21:41:44 +00:00
Florian Smeets
189491f2e8 - update to NSS_3_13_1_WITH_CKBI_1_88_RTM 2012-01-12 23:41:00 +00:00
Florian Smeets
1b4c26530c update to CKBI version 1.88 which includes the latest mozilla cert data 2011-12-28 22:16:13 +00:00
Florian Smeets
321afa0824 now that gecko maintains security/nss also take this port into gecko custody
Discussed with:	brooks @ EuroBSDCon 2011
Approved by:	brooks
2011-10-08 21:37:44 +00:00
Matthias Andree
b9fbdfa4d8 Change extract program:
- Also work with HEAD (1.79) version of Mozilla's certdata.txt,
  reported by Daniel Stenberg.
- Add BSD 2-clause license.
- Die when certificates without trust block appear.
2011-09-04 15:11:48 +00:00
Matthias Andree
a784172628 See to proper version tags in the bundle .pem file. 2011-09-04 13:21:09 +00:00
Matthias Andree
0aaf4d7fb0 Security update: use newer Mozilla Builtin-Trust store
to revoke DigiNotar.nl trust.

Security fix: the modssl ca-bundle.pl script did not process
"untrusted" marks on certificates. Drop it and write a new
script in its place that does that.

Synch up with security/nss port to 3.12.11.

Not asking for maintainer approval because of multiple
timeouts in response to related PRs vs. security/[ca_root_]nss.
2011-09-04 13:08:49 +00:00
Brooks Davis
136d7ff9e9 Increase the size and verbosity of the comment that the versions used in
this port should track security/nss and www/apache13-modssl.

No functional impact.
2011-05-26 14:56:01 +00:00
Brooks Davis
5e1bb82021 Chase nss revision and update to 3.12.9.
PR:		ports/154961
Submitted by:	Niclas Zeising
2011-02-25 17:19:01 +00:00
Philip M. Gollucci
ff142f97f3 - fix file name ca-bundle.crt -> ca-root-nss.crt [1]
- Properly sub VERSION_NSS var [1]
- While here, update to 3.12.6 to sync with security/nss

PR:             ports/143584 [1]
Submitted by:   Kevin Kobb <kkobb@skylinecorp.com> [1]
Approved by:    maintainer timeout (brooks ; 209 days) [1]
2010-09-08 01:42:36 +00:00
Brooks Davis
10dd0dd7f1 Upgrade to 3.12.4.
PR:		ports/140609
Submitted by:	Tijl Coosemans <tijl at ulyssis dot org>
2009-12-08 19:28:24 +00:00
Brooks Davis
5c95bfc019 Add a comment documenting the fact that we track the versions of
security/nss and www/apach13-modssl.

PR:		ports/136093
2009-06-27 20:51:15 +00:00
Brooks Davis
22131d5509 o Fix port OPTION ETCSYMLINK which was not creating the proper link.
Instead of pointing to the crt file, it was pointing to the directory.
o Bump PORTREVISION

PR:		ports/121782
Submitted by:	lioux
Point hat to:	brooks
2008-03-17 16:00:45 +00:00
Brooks Davis
31f602c46a Add an option (defaulting to off since messing with files outside PREFIX is
to be avoided) to link the installed certificate bundle to /etc/ssh/cert.pem
2008-03-12 21:02:01 +00:00
Brooks Davis
cf5c0c34a9 Add text to pkg-descr:
This port directly tracks the version of NSS in the security/nss port.
2008-03-12 20:19:50 +00:00
Brooks Davis
2be3b6069d Chase nss version to 3.11.9 and modssl to 2.8.31-1.3.41. This
includes the changes:

Bug 411299, Add Identrust, Truktrust, SwissSign Roots
Bug 229335, Remove certificates that expired in August 2004 from tree
2008-03-12 19:39:58 +00:00
Brooks Davis
e731cca297 Update to NSS 3.11.7 to match security/nss.
8 new root certiticates added.
2007-07-11 17:07:13 +00:00
Brooks Davis
c12838c984 Add ca_root_nss:
Root certificates from certificate authorities included in the Mozilla
NSS library and thus in Firefox and Thunderbird.
2007-07-06 21:37:35 +00:00