Commit graph

7749 commits

Author SHA1 Message Date
wiz
6fc5436d11 Update to 2.014:
2.014 2015/05/05
- Utils::CERT_create - work around problems with authorityInfoAccess, where
  OpenSSL i2v does not create the same string as v2i expects
- Intercept - don't clone some specific extensions which make only sense with
  the original certificate
2015-05-06 07:45:15 +00:00
wiz
b8959045b3 Recursive PKGREVISION bump for libzip shlib major bump. 2015-05-04 21:14:24 +00:00
roy
a8e92b0595 Add patch to work with OpenSSH 6.8+ format. 2015-05-04 21:02:58 +00:00
wiz
de356eb17f Update to 2.013:
2.013 2015/05/01
- assign severities to internal error handling and make sure that follow-up
  errors like "configuration failed" or "certificate verify error" don't
  replace more specific "hostname verification failed" when reporting in
  sub errstr/$SSL_ERROR. see also RT#103423
- enhanced documentation thanks to Chase Whitener
  https://github.com/noxxi/p5-io-socket-ssl/pull/26
2015-05-03 09:58:01 +00:00
wen
f450bc77f0 Update to 0.21
Upstream changes:
0.19  Sun Feb  8 11:30:09 2015
        - fixed issue with OO crc64, #101999
        - remove Build.PL as it seems to have some issues with the XS support

0.20  Sun Feb  8 16:45:13 2015
          - removed debug code

0.21  Sat Feb 21 13:18:25 2015
          - new() throwing an error if an unsupported type is specified
2015-05-01 02:41:43 +00:00
wen
c69c8ca55b Update to 2.04
Upstream changes:
2014-04-28   Gisle Aas <gisle@ActiveState.com>

   Release 2.04

   No change.  I accidentally deleted the 2.03 dist from CPAN when trying
   to clean up old Digest-MD5 dists.
2015-05-01 02:35:37 +00:00
wiz
95353e1497 Update to 4.5:
* Noteworthy changes in release 4.5 (released 2015-04-29) [stable]
- Corrected an invalid memory access in octet string decoding.
  Reported by Hanno Böck.
2015-04-30 15:07:28 +00:00
christos
295f75e476 - fix false positive for netstat
- fix compilation mistake
2015-04-29 15:55:47 +00:00
tnn
92fd4d1de0 hppa -> hppa64 2015-04-28 14:38:45 +00:00
joerg
303014cf9d Needs libexecinfo on newer NetBSD. Needs pkg-config for autoreconf. 2015-04-27 23:55:28 +00:00
jperkin
87d1421140 Add u_int* compatibility defines for SunOS. 2015-04-27 13:52:01 +00:00
tnn
6a69e9522b Recursive revbump following MesaLib update, categories p through x. 2015-04-25 14:24:44 +00:00
wiz
6b03e744e2 Add comment to patch. 2015-04-25 13:49:49 +00:00
wiz
5d19657030 Fix packaging for python-3.x by using the same .so name for all
supported python versions (like py-cryptography). They are in
different paths anyway.

While here, sort PLIST and fix CONFLICTS line.

Bump PKGREVISION.
2015-04-25 13:48:50 +00:00
wen
75bf3b8705 Update to 0.24
Upstream changes:
0.24  Sat Jan 10 00:45:34 MST 2015
	- simplified shabits() routine (bitwise input buffering)
		-- slightly less efficient but easier to understand
	- minor documentation tweaks and additions

0.23  Sun Jan  4 05:36:30 MST 2015
	- updated to reflect Draft FIPS 202
		-- append domain separation bits to message
		-- implement SHAKE128 and SHAKE256 Extendable-Output
			Functions (XOFs)
2015-04-24 13:49:57 +00:00
dsainty
2ffa4eff86 Fix paths in two missed installed scripts.
The intention of zmsystemctl.pl is to use bin/pkexec to allow the apache user
to start and stop the ZoneMinder services on operating systems using systemd
and newer versions of Polkit than Pkgsrc currently has.

If the base OS doesn't use systemd (E.g. anything not Linux), this file
shouldn't be used anyway.

In Pkgsrc we ignore the potentially absent pkexec interpreter in this file.
If the base OS uses systemd, it probably also has pkexec in its base
installation.

Bump PKGREVISION.
2015-04-22 15:13:43 +00:00
wiz
9fb57ffe2d + py-service_identity 2015-04-20 07:30:03 +00:00
wiz
bd3b11b1a5 Import py34-service_identity-14.0.0 as security/py-service_identity.
service_identity aspires to give you all the tools you need for
verifying whether a certificate is valid for the intended purposes.

In the simplest case, this means host name verification.  However,
service_identity implements RFC 6125 fully and plans to add other
relevant RFCs too.
2015-04-20 07:29:44 +00:00
wiz
abb604ac77 Update to 2.0:
Allow configuring the GPG executable, improve documentation.
2015-04-19 18:41:48 +00:00
tnn
52b321bbb5 guard against undefined ABI 2015-04-19 09:02:02 +00:00
rodent
9e2921cf37 CONFLICT with py-py-bcrypt. They install some files in the same place. 2015-04-19 00:50:02 +00:00
rodent
73391ddb48 +py-py-bcrypt 2015-04-19 00:48:47 +00:00
rodent
300a2f9d02 Import py27-py-bcrypt-0.4 as security/py-py-bcrypt.
py-bcrypt is a Python wrapper of OpenBSD's Blowfish password hashing code, as
described in "A Future-Adaptable Password Scheme" by Niels Provos and David
Mazieres.

This system hashes passwords using a version of Bruce Schneier's Blowfish block
cipher with modifications designed to raise the cost of off-line password
cracking and frustrate fast hardware implementation. The computation cost of the
algorithm is parametised, so it can be increased as computers get faster. The
intent is to make a compromise of a password database less likely to result in
an attacker gaining knowledge of the plaintext passwords (e.g. using John the
Ripper).

As of py-bcrypt-0.4, this module can also be used as a Key Derivation Function
(KDF) to turn a password and salt into a cryptographic key.
2015-04-19 00:47:58 +00:00
dholland
c5db3aa83b added security/mozilla-rootcerts-openssl 2015-04-18 21:20:51 +00:00
dholland
28a72db5a4 Add mozilla-rootcerts-openssl.
It operates the mozilla-rootcerts installer script in order to allow
managing the resulting output openssl certs with the package tools.

Since openssl does not support more than one directory of certificates
(sheesh) this is an abusive package - it installs directly into the
openssl certs directory even though this is a sysconfig directory that
should normally only be touched using the config files infrastructure.
And, for native openssl, it's in the root /etc outside of $PREFIX.

Nonetheless, having this package is better than not having it.

Probably at some point this and the mozilla-rootcerts package should
be folded together in some fashion; but I didn't want to do that up
front, and in particular I didn't want to muck with the installer
script in mozilla-rootcerts any more than necessary to make this
package possible. This in particular prevented e.g. installing the
certs in share/ and symlinking them into the certs directory.

As things are, if you already have the certs installed manually you
can install this package over them cleanly, and thenceforth not have
to update them by hand.
2015-04-18 20:21:25 +00:00
dholland
69b63823bc Add support for -d destdir to the mozilla-rootcerts installer script. 2015-04-18 20:11:35 +00:00
adam
4606c07235 Revbump after updating devel/boost-libs 2015-04-17 15:52:56 +00:00
sevan
5c280a567a Re-introduce previous fix for building on Solaris SPARC, confirmed to resolve
issue on Solaris 10 SPARC.

pkg/26815
https://bugs.g10code.com/gnupg/issue1703

Reviewed by wiz@
2015-04-17 14:36:17 +00:00
gdt
14a78abc09 Demote docs tools to BUILD_DEPENDS.
sphinx and numpy-doc are not needed at runtime.
2015-04-14 21:09:48 +00:00
joerg
36ab4f9671 Since @ is used to start line comments on ARM, use % for the section
type when on ARM.
2015-04-14 14:23:14 +00:00
fhajny
ba05590337 Add p5-Authen-SASL-Authd 2015-04-14 13:28:25 +00:00
fhajny
bebb3a4e8a Import Authen::SASL::Authd 0.04 as security/p5-Authen-SASL-Authd.
Authen::SASL::Authd provides client authentication via Cyrus saslauthd or
Dovecot authentication daemon.
2015-04-14 13:27:55 +00:00
wiz
fe0d9a87aa Remove more references to python-2.6. 2015-04-14 11:40:31 +00:00
wiz
7907b5a830 Update to 0.9.1.
Noteworthy changes in version 0.9.1 (2015-03-18)
------------------------------------------------

 * Fixed build problems for systems without ncurses.

 * Reworked the option parser to allow building on systems without
   getopt_long.

 * Fixed Qt4 build problems.
2015-04-12 14:50:43 +00:00
wiz
a4a2be988d Update to 0.8.2:
0.8.2 - 2015-04-10
~~~~~~~~~~~~~~~~~~

* Fixed a race condition when initializing the OpenSSL or CommonCrypto backends
  in a multi-threaded scenario.
2015-04-12 14:42:30 +00:00
wiz
b144bcc49e Update to 1.19:
Noteworthy changes in version 1.19 (2015-04-10) [C15/A15/R0]
-----------------------------------------------

 * New set of error codes for use with LDAP.

 * New options --help and --defines for gpg-error.

 * Allow building with gcc 5.

 * Interface changes relative to the 1.18 release:
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 GPG_ERR_LDAP_*                   NEW.
2015-04-12 14:25:26 +00:00
dsainty
c01631c02e Patch up some Linux-specific assumptions in the code.
Fixes build under NetBSD.

Bump PKGREVISION for switch to ffmpeg2, and some portability changes that
aren't expected to affect functionality.
2015-04-10 02:58:49 +00:00
dsainty
4d2fa06be3 New ZoneMinder supports the newer ffmpeg APIs, so switch the ffmpeg
dependency from ffmpeg010 to ffmpeg2.
2015-04-10 02:53:20 +00:00
ryoon
9ac7444af9 Update to 0.64
* Avoid compilation error on tolower and char type.

Changelog:
2015-02-28 PuTTY 0.64 released, fixing a SECURITY HOLE

PuTTY 0.64, released today, fixes a security hole in 0.63 and before:
private-key-not-wiped-2. Also diffie-hellman-range-check has been argued
to be a security hole. In addition to these and other less critical bug
fixes, 0.64 also supports the major new feature of sharing an SSH connection
between multiple instances of PuTTY and its tools, and a command-line and
config option to specify the expected host key(s).
2015-04-08 18:45:21 +00:00
dsainty
ebcdf25819 Recognise lower-case "netbsd" as BSD.
NB: This doesn't fix the threads portability issues yet for NetBSD, but gets
through configuration.
2015-04-07 12:54:36 +00:00
dsainty
627d46e099 NetBSD's tar (6.1) does an exit(1) on the source archive, complaining:
Invalid header, starting valid header search.

As a workaround: EXTRACT_USING=gtar
2015-04-07 12:32:59 +00:00
rodent
f15c9a1b79 Looks like py-six is required outside of tests option. 2015-04-06 13:09:53 +00:00
adam
9071d6b787 Revbump after updating textproc/icu 2015-04-06 08:17:13 +00:00
rodent
d356728116 Use += to GCC_REQD. Thanks to richard@. 2015-04-06 04:33:45 +00:00
rodent
337896381f Remove commented line. 2015-04-06 04:18:52 +00:00
rodent
38bb21210a GCC_REQD= 4.4, because 4.2 won't build this package on OpenBSD. 2015-04-06 04:00:34 +00:00
dsainty
3205b33802 Update ZoneMinder from 1.25.0 to 1.28.1.
Numerous changes, documented at:
 https://github.com/ZoneMinder/ZoneMinder/releases

Addresses two security advisories:

  https://github.com/ZoneMinder/ZoneMinder/releases/tag/v1.28.0
  http://secunia.com/advisories/62918/

Pkgsrc changes:

patch-src_zm_signal_h is no longer necessary because zm_signal.h uses
HAVE_EXECINFO_H.

patch-src_zmf_cpp appears to be applied upstream.

patch-configure_ac no longer needs to set PATH_BUILD to
PREFIX/share/zoneminder, so that zmupdate.pl can locate the database build
scripts as installed files.  Upstream has now implemented this via the
ZM_PATH_DATA entry in zm.conf, and adds a ZM_PATH_DATA/db subdirectory.

src/Makefile.am no longer setuid's zmfix, as zmfix was removed from
ZoneMinder 1.26.6.

The code now uses clock_gettime(), which on some systems (like Linux), calls
for -lrt.  Since the build system isn't aware of this, but Pkgsrc is, just set
PTHREAD_AUTO_VARS=yes.

The PHP code now uses PDO for DB access, but it looks like there are some
straggling dependencies on the raw MySQL driver, so both are pulled in.
2015-04-05 08:51:08 +00:00
rodent
0f46793598 Fix HOMEPAGE. Missed saving this change. 2015-04-04 21:50:51 +00:00
rodent
9a9393c210 Update to version 1.1.1. No public ChangeLog. Fixed HOMEPAGE and added
py-six and removed py-mock as dependencies for the tests option. Some
commits from the repo:

Enable coverage testing and require 100% coverage
Upgrade crypt_blowfish to 1.3
Removed usage of mock which wasn't really doing anything
2015-04-04 21:49:17 +00:00
mrg
1e4f788477 use --diable-assembler on armv4 systems. they're not supported. 2015-04-03 18:34:14 +00:00