1 |
# $Id: smeserver-openvpn-s2s.spec,v 1.1 2021/02/04 16:21:25 brianr Exp $ |
# $Id: smeserver-openvpn-s2s.spec,v 1.9 2022/07/24 03:17:14 jpp Exp $ |
2 |
# Authority: vip-ire |
# Authority: vip-ire |
3 |
# Name: Daniel Berteaud |
# Name: Daniel Berteaud |
4 |
|
|
6 |
%define name smeserver-openvpn-s2s |
%define name smeserver-openvpn-s2s |
7 |
Name: %{name} |
Name: %{name} |
8 |
%define version 0.2 |
%define version 0.2 |
9 |
%define release 9 |
%define release 17 |
10 |
Version: %{version} |
Version: %{version} |
11 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
12 |
License: GPL |
License: GPL |
19 |
Patch3: smeserver-openvpn-s2s-0.2-fix_daemon_id_validation.patch |
Patch3: smeserver-openvpn-s2s-0.2-fix_daemon_id_validation.patch |
20 |
Patch4: smeserver-openvpn-s2s-0.2-locale-2017-12-02.patch |
Patch4: smeserver-openvpn-s2s-0.2-locale-2017-12-02.patch |
21 |
Patch5: smeserver-openvpn-s2s-0.2-Alter-for-systemd-startup.patch |
Patch5: smeserver-openvpn-s2s-0.2-Alter-for-systemd-startup.patch |
22 |
|
Patch6: smeserver-openvpn-s2s-0.2-sme10.patch |
23 |
|
Patch7: smeserver-openvpn-s2s-0.2-locale-2021-08-23.patch |
24 |
|
Patch8: smeserver-openvpn-s2s-0.2-locale-2021-09-08.patch |
25 |
|
Patch9: smeserver-openvpn-s2s-0.2-bz12019-backup.patch |
26 |
|
|
27 |
BuildArchitectures: noarch |
BuildArchitectures: noarch |
28 |
|
|
37 |
to run openvpn in client or server mode for site to site tunnels |
to run openvpn in client or server mode for site to site tunnels |
38 |
|
|
39 |
%changelog |
%changelog |
40 |
|
* Sat Jul 30 2022 Brian Read <brianr@bjsystems.co.uk> 0.2-17.sme |
41 |
|
- Re-build and link to latest devtools [SME: 11997] |
42 |
|
|
43 |
|
* Sat Jul 23 2022 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-16.sme |
44 |
|
- add to core backup [SME: 12019] |
45 |
|
|
46 |
|
* Wed Sep 08 2021 Terry Fage <terry.fage@gmail.com> 0.2-14.sme |
47 |
|
- apply locale 2021-09-08 patch |
48 |
|
|
49 |
|
* Mon Aug 23 2021 Terry Fage <terry.fage@gmail.com> 0.2-14.sme |
50 |
|
- apply locale 2021-08-23 patch |
51 |
|
|
52 |
|
* Thu Apr 01 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-13.sme |
53 |
|
- Re-build and link to latest devtools permission on log dir [SME: 11516] |
54 |
|
|
55 |
|
* Wed Mar 31 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-12.sme |
56 |
|
- Re-build and link to latest devtools typos [SME: 11498] |
57 |
|
|
58 |
|
* Tue Mar 30 2021 Jean-Philippe Pialasse <tests@pialasse.com> 0.2-11.sme |
59 |
|
- enforce better cipher with settings [SME: 11498] |
60 |
|
- enforce better HMAC with setting [SME: 11498] |
61 |
|
- enforce TLS 1.2 or better with setting [SME: 11498] |
62 |
|
- enforce strong TLS ciphers with setting [SME: 11498] |
63 |
|
- better list of vpn connections [SME: 11337] |
64 |
|
- allow soft reload of individual connection [SME: 11337] |
65 |
|
- Re-build and link to latest devtools incorect permission on private keys [SME: 11337] |
66 |
|
|
67 |
* Thu Feb 04 2021 Brian Read <brianr@bjsystems.co.uk> 0.2-9.sme |
* Thu Feb 04 2021 Brian Read <brianr@bjsystems.co.uk> 0.2-9.sme |
68 |
- Initial import to SME10 [SME: 11337] |
- Initial import to SME10 [SME: 11337] |
69 |
- Alter-for-systemd-startup |
- Alter-for-systemd-startup |
175 |
%patch3 -p1 |
%patch3 -p1 |
176 |
%patch4 -p1 |
%patch4 -p1 |
177 |
%patch5 -p1 |
%patch5 -p1 |
178 |
|
%patch6 -p1 |
179 |
|
%patch7 -p1 |
180 |
|
%patch8 -p1 |
181 |
|
%patch9 -p1 |
182 |
|
|
183 |
%build |
%build |
184 |
perl createlinks |
perl createlinks |
199 |
--dir /etc/openvpn/s2s/pub 'attr(0755,root,root)' \ |
--dir /etc/openvpn/s2s/pub 'attr(0755,root,root)' \ |
200 |
--dir /etc/openvpn/s2s/priv 'attr(0750,root,root)' \ |
--dir /etc/openvpn/s2s/priv 'attr(0750,root,root)' \ |
201 |
--dir /etc/openvpn/s2s/tmp 'attr(0750,root,root)' \ |
--dir /etc/openvpn/s2s/tmp 'attr(0750,root,root)' \ |
202 |
--dir /var/log/openvpn-s2s 'attr(0770,root,nobody)' \ |
--dir /var/log/openvpn-s2s 'attr(0770,root,root)' \ |
203 |
--file /etc/openvpn/s2s/bin/up 'attr(4750,root,openvpn)' \ |
--file /etc/openvpn/s2s/bin/up 'attr(4750,root,openvpn)' \ |
204 |
> %{name}-%{version}-filelist |
> %{name}-%{version}-filelist |
205 |
|
|
206 |
%files -f %{name}-%{version}-filelist |
%files -f %{name}-%{version}-filelist |
207 |
%defattr(-,root,root) |
%defattr(-,root,root) |
208 |
|
|
|
|
|
209 |
%clean |
%clean |
210 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
211 |
|
|
213 |
if [ \! -c /etc/openvpn/s2s/dev/urandom ]; then |
if [ \! -c /etc/openvpn/s2s/dev/urandom ]; then |
214 |
mknod -m 0444 /etc/openvpn/s2s/dev/urandom c 1 9 |
mknod -m 0444 /etc/openvpn/s2s/dev/urandom c 1 9 |
215 |
fi |
fi |
216 |
|
#chown root:root /var/log/openvpn-s2s |
217 |
%preun |
%preun |
|
|
|