Commit graph

8831 commits

Author SHA1 Message Date
wiz
f69f1557e4 Reset maintainer on his request. 2008-12-30 09:33:59 +00:00
markd
066af62504 Fix quoting chars in popen variables expansion
(http://secunia.com/advisories/33227/)
patch from 2.0.4beta2.  Bump PKGREVISION.
2008-12-29 08:48:45 +00:00
adrianp
e1c7784ba8 Abandon MAINTAINER. 2008-12-28 17:44:37 +00:00
obache
436e982b8b * Marked as DESTDIR support, and remove redundant slashes.
* Change to use BUILD_DIRS instead of custom do-build target.
2008-12-28 12:49:25 +00:00
kim
cc2c20fcca Grrr, cannot patch next to RCS id strings, so use sed instead. 2008-12-28 08:56:59 +00:00
kim
02faf31054 Fix the "pam" option to leave out PAM when it is not wanted.
Add an "inet6" option for enabling IPv6 support.
Add a "ban" option for enabling mod_ban.
Make the "wrap" option compile all binaries successfully.
Fix generating language catalog with older versions of msgfmt.
2008-12-28 08:42:01 +00:00
hasso
281c87b07e Make it work on DragonFly. Slightly modified patch from PR 40155. 2008-12-26 21:41:40 +00:00
hasso
3daddb5522 Needs msgfmt. 2008-12-25 06:57:38 +00:00
hasso
a49e36357a Make it build on DragonFly. 2008-12-25 05:33:20 +00:00
jmcneill
0926a9a82f Fix build with XFree86. 2008-12-24 03:05:16 +00:00
adrianp
128f469144 Fix for http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5081 2008-12-23 12:08:17 +00:00
obache
678915fe8d * Need OpenSSL to build.
* Ensure to use BSD_MAKEFILE and pass appropriate CFLAGS.

Fixes PR 40171.
2008-12-23 11:22:05 +00:00
hasso
0df3b92042 Make it compile in DragonFly and possibly help other platforms. 2008-12-23 02:08:05 +00:00
adrianp
dcc148d307 Despite supporting --sysconfdir isc-dhcp hard sets the location of
configuration files and binaries in a number of cases.  This should hopefully
fix them all.  Without this patch they look in /etc only and fail to start
if the file is not present.
2008-12-21 21:24:08 +00:00
obache
0fb8300af8 Update tor to 0.2.0.32.
Based on PR 40241 by Taylor R Campbell.
While here, add DESTDIR support.

Changes in version 0.2.0.32 - 2008-11-20
  o Security fixes:
    - The "User" and "Group" config options did not clear the
      supplementary group entries for the Tor process. The "User" option
      is now more robust, and we now set the groups to the specified
      user's primary group. The "Group" option is now ignored. For more
      detailed logging on credential switching, set CREDENTIAL_LOG_LEVEL
      in common/compat.c to LOG_NOTICE or higher. Patch by Jacob Appelbaum
      and Steven Murdoch. Bugfix on 0.0.2pre14. Fixes bug 848 and 857.
    - The "ClientDNSRejectInternalAddresses" config option wasn't being
      consistently obeyed: if an exit relay refuses a stream because its
      exit policy doesn't allow it, we would remember what IP address
      the relay said the destination address resolves to, even if it's
      an internal IP address. Bugfix on 0.2.0.7-alpha; patch by rovv.

  o Major bugfixes:
    - Fix a DOS opportunity during the voting signature collection process
      at directory authorities. Spotted by rovv. Bugfix on 0.2.0.x.

  o Major bugfixes (hidden services):
    - When fetching v0 and v2 rendezvous service descriptors in parallel,
      we were failing the whole hidden service request when the v0
      descriptor fetch fails, even if the v2 fetch is still pending and
      might succeed. Similarly, if the last v2 fetch fails, we were
      failing the whole hidden service request even if a v0 fetch is
      still pending. Fixes bug 814. Bugfix on 0.2.0.10-alpha.
    - When extending a circuit to a hidden service directory to upload a
      rendezvous descriptor using a BEGIN_DIR cell, almost 1/6 of all
      requests failed, because the router descriptor has not been
      downloaded yet. In these cases, do not attempt to upload the
      rendezvous descriptor, but wait until the router descriptor is
      downloaded and retry. Likewise, do not attempt to fetch a rendezvous
      descriptor from a hidden service directory for which the router
      descriptor has not yet been downloaded. Fixes bug 767. Bugfix
      on 0.2.0.10-alpha.

  o Minor bugfixes:
    - Fix several infrequent memory leaks spotted by Coverity.
    - When testing for libevent functions, set the LDFLAGS variable
      correctly. Found by Riastradh.
    - Avoid a bug where the FastFirstHopPK 0 option would keep Tor from
      bootstrapping with tunneled directory connections. Bugfix on
      0.1.2.5-alpha. Fixes bug 797. Found by Erwin Lam.
    - When asked to connect to A.B.exit:80, if we don't know the IP for A
      and we know that server B rejects most-but-not all connections to
      port 80, we would previously reject the connection. Now, we assume
      the user knows what they were asking for. Fixes bug 752. Bugfix
      on 0.0.9rc5. Diagnosed by BarkerJr.
    - If we overrun our per-second write limits a little, count this as
      having used up our write allocation for the second, and choke
      outgoing directory writes. Previously, we had only counted this when
      we had met our limits precisely. Fixes bug 824. Patch from by rovv.
      Bugfix on 0.2.0.x (??).
    - Remove the old v2 directory authority 'lefkada' from the default
      list. It has been gone for many months.
    - Stop doing unaligned memory access that generated bus errors on
      sparc64. Bugfix on 0.2.0.10-alpha. Fixes bug 862.
    - Make USR2 log-level switch take effect immediately. Bugfix on
      0.1.2.8-beta.

  o Minor bugfixes (controller):
    - Make DNS resolved events into "CLOSED", not "FAILED". Bugfix on
      0.1.2.5-alpha. Fix by Robert Hogan. Resolves bug 807.
2008-12-21 11:10:27 +00:00
obache
97bf58f7f7 Broken INSTALL script was removed.
No need to remove superfluous directory now.
2008-12-21 11:01:59 +00:00
wiz
2f7f51f185 Add avahi option, and enable it by default.
Bump PKGREVISION.
2008-12-21 11:00:37 +00:00
obache
6d54586480 Re-remove redundant and broken INSTALL script.
It was removed as part of fix PR 37195,
but re-added when merged new version from pkgsrc-wip.
2008-12-21 10:41:52 +00:00
ahoka
0b988a4273 Honour SYSCONFDIR. 2008-12-20 23:51:39 +00:00
he
e9d8836ddb Update from version 0.710.08nb3 to 0.710.08nb4.
Pkgsrc updates:
 o Actually, there were a lot of missing dependencies on other
   perl modules in this package.  Add them.
2008-12-20 21:48:23 +00:00
jmcneill
a0918b1fb6 + gnome-vfs-dns-sd 2008-12-20 21:21:57 +00:00
jmcneill
50bf8c7167 Import gnome-vfs-dns-sd version 2.24.0.
GNOME VFS provides an abstraction layer of the file system; applications
use this layer to access many different protocols and simulate that they
are part of the local file system.

This package provides the dns-sd module for GNOME VFS, which allows it to
discover sftp, webdav, and ftp services advertised with multicast DNS.
2008-12-20 21:21:08 +00:00
jmcneill
5685077bea Add avahi support, bump PKGREVISION. 2008-12-20 20:29:42 +00:00
reed
c24153e498 Add to very short DESCR. 2008-12-20 18:54:18 +00:00
wiz
b4cba9972c + avahi. 2008-12-20 17:37:17 +00:00
wiz
0458939a92 Initial import of avahi-0.6.23, packaged for pkgsrc-wip by Adrian Portelli,
then majorly reworked by myself. You can blame us both now ;)

Avahi is an Implementation the DNS Service Discovery and Multicast DNS
specifications for Zeroconf Computing. It uses D-BUS for communication
between user applications and a system daemon. The daemon is used to
coordinate application efforts in caching replies, necessary to minimize
the traffic imposed on networks.
2008-12-20 17:36:14 +00:00
adrianp
1ae672bd35 Update to 2.1.3
This should fix PR#39952
MAKE_JOBS_SAFE=no

05 December 2008 - Version 2.1.3 has been released.

The focus of this release is stability.

Feature Improvements
* Allow running with user=radiusd and binding to secure sockets.
* Start sending Status-Server "are you alive" messages earlier, which helps with proxying multiple realms to a home server.
* Removed thread pool code from rlm_perl. It's not necessary.
* Added example Perl configuration to raddb/modules/perl
* Force OpenSSL to support certificates with SHA256. This seems to be necessary for WiMAX certs.

Bug Fixes
* Fix Debian patch to allow it to build.
* Fix potential NULL dereference in debugging mode on certain platforms for TTLS and PEAP inner tunnels.
* Fix uninitialized memory in handling of vendor definitions
* Fix parsing of quoted (but non-string) attributes in the users< file.
* Initialize unknown NAS IP to 255.255.255.255, rather than 0.0.0.0
* use SUN_LEN in control socket, to avoid truncation on some platforms.
* Correct internal handling of debug condition to prevent it from being over-written.
* Check return code of regcomp in unlang, so that invalid regular expressions are caught rather than mishandled.
* Make rlm_sql use <ltdl.h>. Addresses bug #610.
* Document list "type = status" better. Closes bug #580.
* Set "default days" for certificates, because OpenSSL won't do it. This closes bug #615.
* Reference correct list in example raddb/modules/ldap. Closes #596.
* Increase default schema size for Acct-Session-Id to 64. Closes #540.
* Fix use of temporary files in dialup-admin. Closes #605 and addresses CVE-2008-4474.
* Addressed a number of minor issues found by Coverity.
* Added DHCP option 150 to the dictionary. Closes #618.

04 December 2008 - Version 2.1.2 has been released.
    Due to packaging issues, 2.1.2 has been pulled from the net.
2008-12-19 22:49:18 +00:00
joerg
116294ff2c Add missing directories. 2008-12-19 12:53:48 +00:00
roy
a6b0026ba4 Update to dnsmasq-2.46
Noteable changes include:
   NetBSD-5 support
   Optional DBus and IPv6 support
   ISC leasefile support removed
   Support DHCP clients in multiple DNS domains
   Re-read /etc/resolv.conf when an "interface up" event occurs
2008-12-19 07:53:43 +00:00
he
efd2726613 Update from version 0.710.08nb2 to 0.710.08nb3.
Pkgsrc changes:
 o Add dependency on perl>=5.10 or p5-version.
   When pulled up to pkgsrc-2008Q3 this should fix PR#39773.
2008-12-18 20:56:09 +00:00
joerg
b1dcd1dd6f Needs pkg-config. Prefer bsdtar over gtar. Mark as destdir usable. 2008-12-18 17:31:09 +00:00
joerg
c1cc953ab4 DESTDIR support. Fix PLIST. Bump revision. 2008-12-18 15:21:54 +00:00
joerg
29a5e3e5a4 user-destdir support, fix build on netbsd-5+ 2008-12-18 13:55:24 +00:00
joerg
50af0740e7 Update to unbound-1.1.1:
- improve chroot handling
- even stricter validation
- support for blocking DNS rebinding attacks
- DLV support
- bugfixes

The package now uses the normal net/ldns package instead of the local
copy.
2008-12-17 18:14:01 +00:00
joerg
2950e11249 Update to drill-1.4.0:
Sync with ldns-1.4.0 release.

Add DESTDIR support.
2008-12-17 17:53:26 +00:00
joerg
ceca7b3521 Update to ldns-1.4.0:
- better TCP fallback, improved TSIG support
- namespace cleanup
- bugfixes

Require the new version and switch to normal runtime dependencies as it
is normally linked dynamically.
2008-12-17 17:52:33 +00:00
joerg
524f91692a Update to nsd-3.2.0:
- improved IXFR support
- support for hmac-sha1 and hmac-sha256 in TSIG
- selection of source ip for notifies and zone requests
- NSEC3 is enabled by default
- option to disable CHAOS version support
- bugfixes
2008-12-17 17:22:56 +00:00
tron
2f0c9868d2 Re-generate these patches because GNU patch doesn't accept them. 2008-12-16 16:49:52 +00:00
roy
249ffb2455 Satisfy pkglint 2008-12-16 15:49:14 +00:00
roy
45b961f66f Add openresolv 2008-12-16 15:13:15 +00:00
roy
cb1db98d41 /etc/resolv.conf is a file that holds the configuration for the local
resolution of domain names. Normally this file is either static or maintained
by a local daemon, normally a DHCP daemon. But what happens if more than one
thing wants to control the file? Say you have wired and wireless interfaces to
different subnets and run a VPN or two on top of that, how do you say which one
controls the file? It's also not as easy as just adding and removing the
nameservers each client knows about as different clients could add the same
nameservers.

Enter resolvconf, the middleman between the network configuration services and
/etc/resolv.conf. resolvconf itself is just a script that stores, removes and
lists a full resolv.conf generated for the interface. It then calls all the
helper scripts it knows about so it can configure the real /etc/resolv.conf
and optionally any local nameservers other can libc.
2008-12-16 14:57:58 +00:00
wiz
4a795c6835 Update to 0.8.12:
libIDL 0.8.12:

        * Fix the build with bison 2.4
2008-12-16 12:18:25 +00:00
roy
859756df61 An implementation of the Proxy ARP Daemon specified in RFC1027. 2008-12-15 15:55:42 +00:00
is
e4c56b0f59 Make this compile and run on non-NetBSD; tested (as client) on Solaris 10
in addition to NetBSD.
2008-12-15 15:37:56 +00:00
reed
c3d12a3bce Added net/wpa_supplicant 0.6.6 2008-12-11 21:21:14 +00:00
reed
216889d193 Import new package: wpa_supplicant.
Note this is the development version and this package is not marked
-devel.
(The version in NetBSD -current is also a development version.)
The patch is based on changes as seen in NetBSD's custom driver_netbsd.c
(as compared to driver_bsd.c).

The wpa_supplicant package provides a wireless client daemon that supports
WPA, WPA2 (IEEE 802.11i / RSN), and WEP.  It implements key
negotiation with a WPA Authenticator and it controls the roaming
and IEEE 802.11 authentication/association of the wlan driver.  It
supports several EAP authentication methods.

This package also includes the wpa_cli console frontend.
2008-12-11 21:18:41 +00:00
rhaen
b521147bc1 updated to 0.08
Changelog:
0.08    Mon Nov 17 18:39:11 UTC-4 2008
        added form_form_data_args method to support file uploads (ruz)
	reworked documentation (ruz)
2008-12-10 17:12:54 +00:00
obache
55288a14dc Update MASTER_SITES. 2008-12-09 05:07:49 +00:00
adrianp
533162f30a +barnyard 2008-12-08 23:24:15 +00:00
adrianp
d844e7d9eb Fast output system for snort 2008-12-08 23:23:26 +00:00