1 |
# $Id: smeserver-openvpn-s2s.spec,v 1.2 2021/02/05 12:17:48 brianr Exp $ |
# $Id: smeserver-openvpn-s2s.spec,v 1.5 2021/03/31 20:54:55 jpp Exp $ |
2 |
# Authority: vip-ire |
# Authority: vip-ire |
3 |
# Name: Daniel Berteaud |
# Name: Daniel Berteaud |
4 |
|
|
6 |
%define name smeserver-openvpn-s2s |
%define name smeserver-openvpn-s2s |
7 |
Name: %{name} |
Name: %{name} |
8 |
%define version 0.2 |
%define version 0.2 |
9 |
%define release 10 |
%define release 13 |
10 |
Version: %{version} |
Version: %{version} |
11 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
12 |
License: GPL |
License: GPL |
34 |
to run openvpn in client or server mode for site to site tunnels |
to run openvpn in client or server mode for site to site tunnels |
35 |
|
|
36 |
%changelog |
%changelog |
37 |
* Tue Mar 30 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-10.sme |
* Thu Apr 01 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-13.sme |
38 |
|
- fix permission on log dir [SME: 11516] |
39 |
|
|
40 |
|
* Wed Mar 31 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-12.sme |
41 |
|
- fix typos [SME: 11498] |
42 |
|
|
43 |
|
* Tue Mar 30 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-11.sme |
44 |
- enforce better cipher with settings [SME: 11498] |
- enforce better cipher with settings [SME: 11498] |
45 |
- enforce better HMAC with setting [SME: 11498] |
- enforce better HMAC with setting [SME: 11498] |
46 |
- enforce TLS 1.2 or better with setting [SME: 11498] |
- enforce TLS 1.2 or better with setting [SME: 11498] |
181 |
--dir /etc/openvpn/s2s/pub 'attr(0755,root,root)' \ |
--dir /etc/openvpn/s2s/pub 'attr(0755,root,root)' \ |
182 |
--dir /etc/openvpn/s2s/priv 'attr(0750,root,root)' \ |
--dir /etc/openvpn/s2s/priv 'attr(0750,root,root)' \ |
183 |
--dir /etc/openvpn/s2s/tmp 'attr(0750,root,root)' \ |
--dir /etc/openvpn/s2s/tmp 'attr(0750,root,root)' \ |
184 |
--dir /var/log/openvpn-s2s 'attr(0770,root,nobody)' \ |
--dir /var/log/openvpn-s2s 'attr(0770,root,root)' \ |
185 |
--file /etc/openvpn/s2s/bin/up 'attr(4750,root,openvpn)' \ |
--file /etc/openvpn/s2s/bin/up 'attr(4750,root,openvpn)' \ |
186 |
> %{name}-%{version}-filelist |
> %{name}-%{version}-filelist |
187 |
|
|
196 |
if [ \! -c /etc/openvpn/s2s/dev/urandom ]; then |
if [ \! -c /etc/openvpn/s2s/dev/urandom ]; then |
197 |
mknod -m 0444 /etc/openvpn/s2s/dev/urandom c 1 9 |
mknod -m 0444 /etc/openvpn/s2s/dev/urandom c 1 9 |
198 |
fi |
fi |
199 |
|
#chown root:root /var/log/openvpn-s2s |
200 |
%preun |
%preun |
201 |
|
|