1 |
vip-ire |
1.17 |
# $Id: smeserver-coova-chilli.spec,v 1.16 2008/09/04 13:58:06 slords Exp $ |
2 |
slords |
1.7 |
# Authority: vip-ire |
3 |
|
|
# Name: Daniel Berteaud |
4 |
|
|
|
5 |
slords |
1.1 |
Summary: Coova-Chilli, a captive portal based on ChilliSpot configured for SME server |
6 |
|
|
%define name smeserver-coova-chilli |
7 |
|
|
Name: %{name} |
8 |
slords |
1.15 |
%define version 0.2 |
9 |
vip-ire |
1.17 |
%define release 3 |
10 |
slords |
1.1 |
Version: %{version} |
11 |
vip-ire |
1.5 |
Release: %{release}%{?dist} |
12 |
vip-ire |
1.4 |
License: GPL |
13 |
slords |
1.1 |
Group: Networking/Remote access |
14 |
|
|
Source: %{name}-%{version}.tar.gz |
15 |
|
|
URL: http://sme.firewall-services.com |
16 |
|
|
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
17 |
|
|
BuildArchitectures: noarch |
18 |
vip-ire |
1.6 |
BuildRequires: e-smith-devtools |
19 |
snetram |
1.8 |
Requires: e-smith-release >= 7.0 |
20 |
|
|
Requires: openssl |
21 |
|
|
Requires: coova-chilli |
22 |
vip-ire |
1.10 |
Requires: e-smith-radiusd >= 1.0.0-18 |
23 |
vip-ire |
1.3 |
|
24 |
slords |
1.15 |
Patch1: smeserver-coova-chilli-0.2-guest_uplink_downlink.patch |
25 |
|
|
Patch2: smeserver-coova-chilli-0.2-guest_access.patch |
26 |
vip-ire |
1.17 |
Patch3: smeserver-coova-chilli-0.2-chilli_ip.patch |
27 |
|
|
Patch4: smeserver-coova-chilli-0.2-radius_timeout.patch |
28 |
|
|
Patch5: smeserver-coova-chilli-0.2-guest_access2.patch |
29 |
slords |
1.1 |
|
30 |
|
|
%description |
31 |
|
|
This package allow you to configure a third interface |
32 |
|
|
(eth2). Just plug a WiFi AP on it, and you'll have |
33 |
|
|
a secured captive portal. Users will be redirected |
34 |
|
|
on a logon page and they'll have to enter credentials |
35 |
|
|
(sme accounts) before the server allows them. By default, |
36 |
vip-ire |
1.5 |
they'll only have web access if they are members of the group "chilli" |
37 |
|
|
This contrib will only work in server&gateway mode |
38 |
slords |
1.1 |
|
39 |
|
|
%changelog |
40 |
vip-ire |
1.17 |
* Fri Sep 5 2008 Daniel B. <daniel@firewall-services.com> 0.2-3 |
41 |
|
|
- Chilli IP computed with NetAddr::IP |
42 |
|
|
- Radius timeout set to 3 sec |
43 |
|
|
- syntax error in radius users template fixed (for guest access) |
44 |
|
|
|
45 |
slords |
1.15 |
* Thu Sep 3 2008 Daniel B. <daniel@firewall-services.com> 0.2-2 |
46 |
vip-ire |
1.17 |
- Bug fix for guest access |
47 |
slords |
1.15 |
|
48 |
|
|
* Tue Sep 2 2008 Daniel B. <daniel@firewall-services.com> 0.2-1 |
49 |
|
|
- uplink and downlink for guest account are configurable via db keys |
50 |
|
|
|
51 |
|
|
* Tue Sep 2 2008 Daniel B. <daniel@firewall-services.com> 0.2-0 |
52 |
|
|
- Login page is a CGI, with a server-manager login page look |
53 |
|
|
- Guest Access can be enabled with guestAccess key (enabled/isabled) |
54 |
|
|
- merge patchs in main package |
55 |
|
|
|
56 |
vip-ire |
1.14 |
* Mon Sep 01 2008 Daniel B. <daniel@firewall-services.com> 0.1-8 |
57 |
|
|
- Fix uamallowed not working (since bypass_auth_with_squid_fix patch) |
58 |
|
|
- Add WebRequests key (use of squid or direct connexions, default to direct) |
59 |
|
|
- disable radconf in /etc/chilli/config |
60 |
|
|
- possible to disable https (enabled by default in AllowedOutgoing) |
61 |
|
|
- add tcp:static.sourceforge.net:80 in uamallowed so daloradius homepage is displayed correctly |
62 |
|
|
- add radiustimeout directive so authentication errors display the standard message quickly |
63 |
|
|
|
64 |
snetram |
1.13 |
* Thu Aug 28 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 0.1-7 |
65 |
|
|
- Reverted moving of default db entries to SPEC file since common practice is to store them in files |
66 |
|
|
|
67 |
|
|
* Thu Aug 28 2008 Daniel B. <daniel@firewall-services.com> 0.1-6 |
68 |
vip-ire |
1.12 |
- split uamallowed (one per line) |
69 |
|
|
- Add dnsparanoia directive |
70 |
|
|
- correct cmdsock directive |
71 |
|
|
- initialise default configuration db in the spec file |
72 |
|
|
|
73 |
snetram |
1.11 |
* Thu Aug 28 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 0.1-5 |
74 |
|
|
- Remove the reset of $OUT from the template |
75 |
|
|
|
76 |
vip-ire |
1.9 |
* Thu Aug 28 2008 Daniel B. <daniel@firewall-services.com> 0.1-4 |
77 |
|
|
- Add template to enable auth module unix (replace the template-custom) |
78 |
|
|
- Copy images to /opt/chilli/template before removing .rpmnew directory |
79 |
vip-ire |
1.10 |
- Correct dependency (e-smith-radiusd not esmith-radiusd) |
80 |
vip-ire |
1.9 |
|
81 |
snetram |
1.8 |
* Wed Aug 27 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 0.1-3 |
82 |
|
|
- Split requirements to one per line |
83 |
|
|
- Removed .rpmnew directory from package |
84 |
vip-ire |
1.9 |
- Removed the need for templates-custom as package now requires e-smith-radiusd >= 1.0.0-18 |
85 |
snetram |
1.8 |
|
86 |
vip-ire |
1.3 |
* Tue Aug 26 2008 Daniel B. <daniel@firewall-services.com> |
87 |
|
|
- [0.1-2] |
88 |
vip-ire |
1.5 |
- Most firewall customizations (for incomming and forwarded traffic from |
89 |
vip-ire |
1.3 |
chilli network only) can be set through db commands (Patch3) |
90 |
|
|
- Outgoing DNS is allowed only for the two DNS servers configured |
91 |
vip-ire |
1.5 |
- Clean spec file, and put php files in /opt/chilli (Patch4) |
92 |
vip-ire |
1.3 |
|
93 |
slords |
1.1 |
* Tue Apr 15 2008 Daniel Berteaud <daniel@firewall-services.com> |
94 |
|
|
- [0.1-1] |
95 |
|
|
- security fixe: auth bypass with squid (patch1) |
96 |
|
|
- masq template not expanded (patch2) |
97 |
|
|
|
98 |
|
|
* Fri Apr 04 2008 Daniel Berteaud <daniel@firewall-services.com> |
99 |
|
|
- [0.1] |
100 |
|
|
- initiale release |
101 |
|
|
|
102 |
|
|
%prep |
103 |
|
|
%setup |
104 |
|
|
%patch1 -p1 |
105 |
|
|
%patch2 -p1 |
106 |
vip-ire |
1.17 |
%patch3 -p1 |
107 |
|
|
%patch4 -p1 |
108 |
|
|
%patch5 -p1 |
109 |
slords |
1.15 |
|
110 |
slords |
1.1 |
%build |
111 |
|
|
/usr/bin/perl createlinks |
112 |
|
|
|
113 |
|
|
%install |
114 |
|
|
/bin/rm -rf $RPM_BUILD_ROOT |
115 |
|
|
(cd root ; /usr/bin/find . -depth -print | /bin/cpio -dump $RPM_BUILD_ROOT) |
116 |
|
|
/bin/rm -f %{name}-%{version}-filelist |
117 |
|
|
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
118 |
|
|
--file /etc/chilli/conup.sh 'attr(0750,root,root)' \ |
119 |
|
|
--file /etc/chilli/condown.sh 'attr(0750,root,root)' \ |
120 |
slords |
1.15 |
--file /opt/chilli/cgi-bin/hotspotlogin.cgi 'attr(0750,root,www) %config(noreplace)' \ |
121 |
|
|
--file /opt/chilli/lang/hotspotlogin.fr.pl 'config(noreplace)' \ |
122 |
|
|
--file /opt/chilli/lang/hotspotlogin.en.pl 'config(noreplace)' \ |
123 |
|
|
--file /opt/chilli/css/sme.css 'config(noreplace)' \ |
124 |
slords |
1.1 |
> %{name}-%{version}-filelist |
125 |
|
|
|
126 |
|
|
%files -f %{name}-%{version}-filelist |
127 |
|
|
%defattr(-,root,root) |
128 |
|
|
|
129 |
|
|
%clean |
130 |
|
|
rm -rf $RPM_BUILD_ROOT |
131 |
|
|
|
132 |
|
|
%preun |
133 |
vip-ire |
1.3 |
|
134 |
slords |
1.1 |
if [ $1 == 0 ]; then |
135 |
|
|
/sbin/e-smith/db configuration setprop chilli status disabled |
136 |
slords |
1.7 |
/etc/rc.d/init.d/chilli stop >& /dev/null || : |
137 |
slords |
1.1 |
fi |
138 |
|
|
|