--- rpms/smeserver-coova-chilli/contribs7/smeserver-coova-chilli.spec 2008/08/27 11:41:16 1.4 +++ rpms/smeserver-coova-chilli/contribs7/smeserver-coova-chilli.spec 2008/08/28 13:14:07 1.12 @@ -1,23 +1,35 @@ +# $Id: smeserver-coova-chilli.spec,v 1.11 2008/08/28 10:12:16 snetram Exp $ +# Authority: vip-ire +# Name: Daniel Berteaud + Summary: Coova-Chilli, a captive portal based on ChilliSpot configured for SME server %define name smeserver-coova-chilli Name: %{name} %define version 0.1 -%define release 2.el4.sme +%define release 6 Version: %{version} -Release: %{release} +Release: %{release}%{?dist} License: GPL Group: Networking/Remote access Source: %{name}-%{version}.tar.gz URL: http://sme.firewall-services.com -Packager: Daniel Berteaud BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot BuildArchitectures: noarch -Requires: e-smith-release >= 7.0 openssl coova-chilli +BuildRequires: e-smith-devtools +Requires: e-smith-release >= 7.0 +Requires: openssl +Requires: coova-chilli +Requires: e-smith-radiusd >= 1.0.0-18 Patch1: smeserver-coova-chilli-0.1-bypass_auth_with_squid_fix.patch Patch2: smeserver-coova-chilli-0.1-expand_masq_fix.patch Patch3: smeserver-coova-chilli-0.1-firewall2db.patch Patch4: smeserver-coova-chilli-0.1-loginPageDir.patch +Patch5: smeserver-coova-chilli-0.1-authTemplate.patch +Patch6: smeserver-coova-chilli-0.1-fixOUTreset.patch +Patch7: smeserver-coova-chilli-0.1-uamallowed.patch +Patch8: smeserver-coova-chilli-0.1-dnsparano.patch +Patch9: smeserver-coova-chilli-0.1-cmdsock.patch %description This package allow you to configure a third interface @@ -25,16 +37,35 @@ This package allow you to configure a th a secured captive portal. Users will be redirected on a logon page and they'll have to enter credentials (sme accounts) before the server allows them. By default, -they'll only have web access if they are members of the group "chilli" +they'll only have web access if they are members of the group "chilli" +This contrib will only work in server&gateway mode %changelog +*Thu Aug 28 2008 Daniel B. 0.1-6 +- split uamallowed (one per line) +- Add dnsparanoia directive +- correct cmdsock directive +- initialise default configuration db in the spec file + +* Thu Aug 28 2008 Jonathan Martens 0.1-5 +- Remove the reset of $OUT from the template + +* Thu Aug 28 2008 Daniel B. 0.1-4 +- Add template to enable auth module unix (replace the template-custom) +- Copy images to /opt/chilli/template before removing .rpmnew directory +- Correct dependency (e-smith-radiusd not esmith-radiusd) + +* Wed Aug 27 2008 Jonathan Martens 0.1-3 +- Split requirements to one per line +- Removed .rpmnew directory from package +- Removed the need for templates-custom as package now requires e-smith-radiusd >= 1.0.0-18 + * Tue Aug 26 2008 Daniel B. - [0.1-2] -- Most firewall customizations (for incomming and forwarded traffic from +- Most firewall customizations (for incomming and forwarded traffic from chilli network only) can be set through db commands (Patch3) - Outgoing DNS is allowed only for the two DNS servers configured -- Clean spec file, adn put php files in /opt/chilli (Patch4) - +- Clean spec file, and put php files in /opt/chilli (Patch4) * Tue Apr 15 2008 Daniel Berteaud - [0.1-1] @@ -51,10 +82,43 @@ they'll only have web access if they are %patch2 -p1 %patch3 -p1 %patch4 -p1 +%patch5 -p1 +%patch6 -p1 +%patch7 -p1 +%patch8 -p1 +%patch9 -p1 + +mv root/opt/chilli.rpmnew/template/images root/opt/chilli/template +rm -rf root/opt/chilli.rpmnew/ +rm -rf root/etc/e-smith/templates-custom/ +rm -rf root/etc/e-smith/db/configuration/defaults %build /usr/bin/perl createlinks +# Initialise db fragment +DEFAULT=root/etc/e-smith/db/configuration/defaults/chilli +mkdir -p $DEFAULT +echo 'service' > $DEFAULT/type +echo 'disabled' > $DEFAULT/status +echo 'private' > $DEFAULT/access +echo '900' > $DEFAULT/defidletimeout +echo '7200' > $DEFAULT/defsessiontimeout +echo 'eth2' > $DEFAULT/dhcpif +echo '212.73.209.226' > $DEFAULT/dns1 +echo '194.206.120.1' > $DEFAULT/dns2 +echo '10.1.0.0/255.255.255.0' > $DEFAULT/net +echo '3990' > $DEFAULT/TCPPort +echo 'tun0' > $DEFAULT/tundev +echo 'tcp:www.firewall-services.com:80,\ + tcp:coova.org:80,\ + tcp:smeserver.org:80,\ + tcp:sourceforge.net:80' > $DEFAULT/uamallowed +echo '' > $DEFAULT/RedirectToChilli +echo '' > $DEFAULT/AllowedServices +echo '' > $DEFAULT/AllowedOutgoing + + %install /bin/rm -rf $RPM_BUILD_ROOT (cd root ; /usr/bin/find . -depth -print | /bin/cpio -dump $RPM_BUILD_ROOT) @@ -80,18 +144,10 @@ they'll only have web access if they are %clean rm -rf $RPM_BUILD_ROOT -%pre - - -%post - %preun if [ $1 == 0 ]; then /sbin/e-smith/db configuration setprop chilli status disabled - /etc/rc.d/init.d/chilli stop > /dev/null 2>&1 - true + /etc/rc.d/init.d/chilli stop >& /dev/null || : fi -%postun -