Commit graph

2062 commits

Author SHA1 Message Date
itojun
8fe68eb74f bump to 20040116a. missing ntohs() in info exchange fix. 2004-01-16 02:29:49 +00:00
cube
796b5386cc No patches are needed for that package, except for -current between Sept.,
16th 2003 and Jan., 6th 2004 when <sys/siginfo.h> included <sys/queue.h>
unconditionally.

Rework the patches so that they're used only in that case.
2004-01-15 14:10:51 +00:00
jlam
83532f92f6 Support a new yes/no variable "KERBEROS_PREFIX_CMDS" that can be used by
Kerberos implementation packages to decide whether to prefix certain
commands with a "k" to differentiate it from system tools with similar
names.  KERBEROS_PREFIX_CMDS defaults to "no".
2004-01-15 12:48:00 +00:00
grant
c1ba386ea1 kth-krb4: add CONFLICT on tnftp.
tnftp: add CONFLICT on lukemftp, kth-krb4.
2004-01-15 10:35:49 +00:00
itojun
cb805a8461 upgrade to 2004/1/14 tar.gz. fixes hash validation problem posted to bugtraq. 2004-01-14 09:22:22 +00:00
jlam
5389a1c2c7 This package should try to build samba2 if it needs a samba package
installed.
2004-01-13 20:45:50 +00:00
jlam
2569632971 Bump the version of security/cyrus-saslauthd to 2.1.17nb1: install the
saslcache and testsaslauthd programs that are useful to test and debug
the setup of saslauthd.
2004-01-13 09:03:15 +00:00
jlam
29903eb0aa Move the documentation into share/doc instead of using share/examples. 2004-01-13 08:13:42 +00:00
markd
f8c2eb7eb1 Fix build with gcc3. 2004-01-13 02:05:29 +00:00
jlam
18ec955c8a whitespace. 2004-01-13 00:00:32 +00:00
xtraeme
b4fbdeca7f Update to 1.0.4
Version 1.0.4 (04/01/2004)

- Changed handshake behaviour to send the lowest TLS version
  when an unsupported version was advertized. The current behaviour
  is to send the maximum version we support.
- certtool no longer asks the password in unencrypted private
  keys.
- The source is now compiled to use the reentrant libc functions.
2004-01-12 22:57:38 +00:00
jlam
3685c7774b bl3ify 2004-01-12 15:59:35 +00:00
drochner
94d670332b add a pkg for lsh-1.4.3, an alternative ssh2 client/server 2004-01-12 15:55:11 +00:00
cjep
1b39677b6e Remove unnecessary blank lines. 2004-01-12 09:46:04 +00:00
martti
a73e004fa9 Use correct Makefile.common 2004-01-12 07:59:28 +00:00
martti
6c1f64b114 Use correct Makefile.common 2004-01-12 07:31:52 +00:00
jlam
0ac69be3ed Note conflict with samba>=3.0, which installs its own pam-smbpass. 2004-01-12 04:56:35 +00:00
jlam
63d79814ef Note location of pidfile. 2004-01-12 04:52:34 +00:00
jlam
c4dd17d8b7 Update security/PAM to 0.77nb1:
Actually make this package honor PKG_SYSCONFDIR.  This package now looks
for /usr/pkg/etc/pam.conf if PKG_SYSCONFBASE != "/etc".
2004-01-12 04:31:09 +00:00
jlam
a542b62c6b Substitute for ROOT_USER in the rc.d script. 2004-01-12 04:12:58 +00:00
jlam
bf65a51eb8 Add MAINTAINER, HOMEPAGE, COMMENT. 2004-01-12 03:16:32 +00:00
jschauma
52d6dbeeaa Update to version 0.12, include new homepage and thusly fix problem seen
in agc's last bulk build.

Changes since 0.11:
- ZServerSSL with client certificate-based authentication rides again.
- Created Makefile for Python 2.3.
- Modified LICENCE: changed my name to the generic "the author" in the
all-caps disclaimer paragraph.
- Allow to save RSA key pair in the clear.
- ZServerSSL for Zope 2.7.
- Excluded RC5. IDEA was taken out several releases ago. This should
allow M2Crypto to build with stock OpenSSL on various Linuxen.
- Added ssl_set_tmp_dh_callback.
- Added ssl_set_tmp_rsa and ssl_set_tmp_rsa_callback to support weak-cipher
browsers.
- ZServerSSL exports SSL_CIPHER request header (a la mod_ssl) to Zope applications.
- Perform distutils's SWIG .i search path tweaking within setup.py. setup.py
should now work "out of the box".
- Allow using a passphrase callback in class SMIME. Thanks to Artur Frysiak
<wiget@pld-linux.org> for the patch.
- Added method get0_signers to class PKCS7, which retrieves signers' certificates
from a PKCS7 blob. Thanks again to Artur Frysiak.
- Added contrib/smimeplus.py, a high-level S/MIME interface, contributed by Bernard
Yue <bernie@3captus.com>. Thanks Bernard.
- Alias 'emailAddress' to 'Email' in X509.X509_Name.nid to support recent OpenSSL
convention.
2004-01-11 19:06:46 +00:00
jlam
0e60357705 Fix printing of daemon name if rc.subr isn't there. 2004-01-11 00:38:17 +00:00
jlam
489bc96215 bl3ify 2004-01-11 00:33:03 +00:00
xtraeme
012b8a7d98 s/bonobo-activation/libbonobo/ 2004-01-11 00:32:34 +00:00
jlam
a41e499e44 Note CONFLICT with forthcoming mit-krb5 package. 2004-01-11 00:00:28 +00:00
jlam
99ac5d408b Add a rc.d script to start the kdc daemon on the Kerberos master server. 2004-01-10 21:59:29 +00:00
jlam
c0a16733a6 Back out previous. This doesn't work as expected and needs more thought. 2004-01-10 21:35:26 +00:00
jlam
ca86c17d51 The buildlink3 wrappers automatically remove -I/usr/include/* from the
command line options.  We need -I/usr/include/krb5 to build against
heimdal, so symlink the headers in /usr/include/krb5 into ${BUILDLINK_DIR}
so they can be found.
2004-01-10 19:44:16 +00:00
jlam
3f2f920bfb Add and enable heimdal. 2004-01-10 14:57:21 +00:00
jlam
694ff19aff Initial import of heimdal-0.6 into security/heimdal.
Heimdal is a free implementation of Kerberos 5.

Kerberos is a system for authenticating users and services on a network.
It is built upon the assumption that the network is "unsafe".  Kerberos
is a trusted third-party service.  That means that there is a third
party (the Kerberos server) that is trusted by all the entities on the
network (users and services, usually called "principals").  All
principals share a secret password (or key) with the Kerberos server and
this enables principals to verify that the messages from the Kerberos
server are authentic.  Thus trusting the Kerberos server, users and
services can authenticate each other.
2004-01-10 14:56:44 +00:00
jlam
682212d643 Remove files listed in PLIST.ldap. 2004-01-10 01:27:00 +00:00
jlam
fe51e56c62 Don't install the LDAP_SASLAUTHD documentation file unless we are building
with support for LDAP.
2004-01-09 20:40:05 +00:00
jlam
7fa7bb10c3 Remove references to saslauthd from this package. 2004-01-09 20:35:03 +00:00
jlam
e6cd919ca9 Provide uint*_t datatypes for UINT* typedefs by including either
<stdint.h> or <inttypes.h>.  Fix suggested by the analysis in pkg
PR 22031.
2004-01-09 20:29:47 +00:00
jlam
b3823f43f2 Add and enable cyrus-saslauthd. 2004-01-09 19:47:39 +00:00
jlam
1ffd1b5f21 Initial import of cyrus-saslauthd-2.1.17 as security/cyrus-saslauthd.
saslauthd is a daemon process that handles plaintext authentication
requests on behalf of the Cyrus SASL library.  It may be compiled to
support authentication using getpwent, PAM, or an LDAP database.
2004-01-09 19:44:10 +00:00
jlam
ab147d0e74 Update cyrus-sasl2 to 2.1.15nb2. Changes from version 2.1.15nb1 are
splitting out the saslauthd daemon into a separate package,
security/cyrus-saslauthd.  This allows the saslauthd daemon to
support additional database backends for plaintext authentication
without adding unrelated dependencies to the cyrus-sasl2 package.
2004-01-09 19:37:48 +00:00
jlam
39b5cf574d bl3ify 2004-01-08 22:13:14 +00:00
jlam
4fb76c0ccb Adding a MESSAGE file noting where these packages search for plugins or
modules that may be added by other packages.
2004-01-08 19:18:00 +00:00
agc
0e62dfb3b8 Add and enable fragroute. 2004-01-08 17:56:32 +00:00
agc
09077a7922 Initial import of fragroute-1.2 into the NetBSD Packages Collection,
provided in PR 24022 by ISIHARA Takanori. This was taken from the
FreeBSD Packages Collection and ported to NetBSD by ISIHARA Takanori.

Additional fixes to make the package compile on NetBSD by myself,
along with fixes for the build infrastructure (since libevent is part
of NetBSD-current).

"Fragroute intercepts, modifies, and rewrites egress traffic destined
for a specified host, implementing most of the attacks described in the
Secure Networks "Insertion, Evasion, and Denial of Service: Eluding
Network Intrusion Detection" paper of January 1998.

It features a simple ruleset language to delay, duplicate, drop,
fragment, overlap, print, reorder, segment, source-route, or otherwise
monkey with all outbound packets destined for a target host, with
minimal support for randomized or probabilistic behaviour.

This tool was written in good faith to aid in the testing of network
intrusion detection systems, firewalls, and basic TCP/IP stack
behaviour. Please do not abuse this software."
2004-01-08 17:55:15 +00:00
jlam
3d57ea1af7 First cut at a common module.mk file to be included by PAM module packages. 2004-01-08 00:08:23 +00:00
jlam
727f2c9aa1 bl3ify 2004-01-08 00:07:26 +00:00
ben
e2f3e6a525 Convert to buildlink3. 2004-01-07 23:10:17 +00:00
ben
836543b802 Note rename of fp-netbsd-ws to fprot-workstation-bin. 2004-01-07 19:10:58 +00:00
ben
2b7ba69857 Add security/fprot-workstation-bin-4.3.1, which used to be fp-netbsd-ws.
This is the F-prot antivirus for home users.
2004-01-07 18:47:00 +00:00
ben
17dccc0d2f Remove fp-netbsd-ws in order to re-import as fprot-workstation-bin. 2004-01-07 18:45:11 +00:00
jlam
4b90d17ed9 From the log for rev. 1.1260 of bsd.pkg.mk:
"Package Makefiles should refer to PKG_SYSCONFBASEDIR instead of
 PKG_SYSCONFBASE when they want PKG_SYSCONFDIR stripped of
 PKG_SYSCONFSUBDIR.  This makes PKG_SYSCONFBASE=/etc work with pkgviews by
 installing all config files into /etc/packages/<pkg> instead of
 occasionally putting some directly into /etc."
2004-01-07 02:21:16 +00:00
reed
f15e3f4f9a Make PLIST work if different perl version is used (version was hard-coded
in PLIST.)
Use:
${PERL5_SITEARCH}
Instead of:
lib/perl5/site_perl/5.6.1/${MACHINE_ARCH}-${LOWER_OPSYS}
2004-01-06 17:28:16 +00:00