Commit graph

15 commits

Author SHA1 Message Date
Florian Smeets
321afa0824 now that gecko maintains security/nss also take this port into gecko custody
Discussed with:	brooks @ EuroBSDCon 2011
Approved by:	brooks
2011-10-08 21:37:44 +00:00
Matthias Andree
b9fbdfa4d8 Change extract program:
- Also work with HEAD (1.79) version of Mozilla's certdata.txt,
  reported by Daniel Stenberg.
- Add BSD 2-clause license.
- Die when certificates without trust block appear.
2011-09-04 15:11:48 +00:00
Matthias Andree
a784172628 See to proper version tags in the bundle .pem file. 2011-09-04 13:21:09 +00:00
Matthias Andree
0aaf4d7fb0 Security update: use newer Mozilla Builtin-Trust store
to revoke DigiNotar.nl trust.

Security fix: the modssl ca-bundle.pl script did not process
"untrusted" marks on certificates. Drop it and write a new
script in its place that does that.

Synch up with security/nss port to 3.12.11.

Not asking for maintainer approval because of multiple
timeouts in response to related PRs vs. security/[ca_root_]nss.
2011-09-04 13:08:49 +00:00
Brooks Davis
136d7ff9e9 Increase the size and verbosity of the comment that the versions used in
this port should track security/nss and www/apache13-modssl.

No functional impact.
2011-05-26 14:56:01 +00:00
Brooks Davis
5e1bb82021 Chase nss revision and update to 3.12.9.
PR:		ports/154961
Submitted by:	Niclas Zeising
2011-02-25 17:19:01 +00:00
Philip M. Gollucci
ff142f97f3 - fix file name ca-bundle.crt -> ca-root-nss.crt [1]
- Properly sub VERSION_NSS var [1]
- While here, update to 3.12.6 to sync with security/nss

PR:             ports/143584 [1]
Submitted by:   Kevin Kobb <kkobb@skylinecorp.com> [1]
Approved by:    maintainer timeout (brooks ; 209 days) [1]
2010-09-08 01:42:36 +00:00
Brooks Davis
10dd0dd7f1 Upgrade to 3.12.4.
PR:		ports/140609
Submitted by:	Tijl Coosemans <tijl at ulyssis dot org>
2009-12-08 19:28:24 +00:00
Brooks Davis
5c95bfc019 Add a comment documenting the fact that we track the versions of
security/nss and www/apach13-modssl.

PR:		ports/136093
2009-06-27 20:51:15 +00:00
Brooks Davis
22131d5509 o Fix port OPTION ETCSYMLINK which was not creating the proper link.
Instead of pointing to the crt file, it was pointing to the directory.
o Bump PORTREVISION

PR:		ports/121782
Submitted by:	lioux
Point hat to:	brooks
2008-03-17 16:00:45 +00:00
Brooks Davis
31f602c46a Add an option (defaulting to off since messing with files outside PREFIX is
to be avoided) to link the installed certificate bundle to /etc/ssh/cert.pem
2008-03-12 21:02:01 +00:00
Brooks Davis
cf5c0c34a9 Add text to pkg-descr:
This port directly tracks the version of NSS in the security/nss port.
2008-03-12 20:19:50 +00:00
Brooks Davis
2be3b6069d Chase nss version to 3.11.9 and modssl to 2.8.31-1.3.41. This
includes the changes:

Bug 411299, Add Identrust, Truktrust, SwissSign Roots
Bug 229335, Remove certificates that expired in August 2004 from tree
2008-03-12 19:39:58 +00:00
Brooks Davis
e731cca297 Update to NSS 3.11.7 to match security/nss.
8 new root certiticates added.
2007-07-11 17:07:13 +00:00
Brooks Davis
c12838c984 Add ca_root_nss:
Root certificates from certificate authorities included in the Mozilla
NSS library and thus in Firefox and Thunderbird.
2007-07-06 21:37:35 +00:00