1 |
# $Id: e-smith-base.spec,v 1.46 2013/10/01 02:44:01 mrjhb3 Exp $ |
# $Id: e-smith-base.spec,v 1.107 2018/12/17 12:01:03 jcrisp Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - base module |
Summary: e-smith server and gateway - base module |
4 |
%define name e-smith-base |
%define name e-smith-base |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.4.0 |
%define version 5.6.0 |
7 |
%define release 45 |
%define release 36 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
11 |
Group: Networking/Daemons |
Group: Networking/Daemons |
12 |
Source: %{name}-%{version}.tar.xz |
Source: %{name}-%{version}.tar.xz |
13 |
Patch0: e-smith-base-5.4.0-runlevel_4.patch |
Patch1: e-smith-base-5.6.0-console.patch |
14 |
Patch1: e-smith-base-5.4.0-local_event.patch |
Patch2: e-smith-base-5.6.0_added_verification_of_pptp_clients_against_dhcp.patch |
15 |
Patch2: e-smith-base-5.4.0-noapmd.patch |
Patch3: e-smith-base-5.6.0_console_verification_dhcp_vs_pptp.patch |
16 |
Patch3: e-smith-base-5.4.0-rsysloglink.patch |
Patch4: e-smith-base-5.6.0_remove_10runparts_for_anacron_compatibility.patch |
17 |
Patch4: e-smith-base-5.4.0-optimize_user_modify_unix.patch |
Patch5: e-smith-base-5.6.0-mdevent.patch |
18 |
Patch5: e-smith-base-5.4.0-user_modify_in_bootstrap.patch |
Patch6: e-smith-base-5.6.0-pppoe_after_post_upgrade.patch |
19 |
Patch6: e-smith-base-5.4.0-pppoeMlimit.patch |
Patch7: e-smith-base-5.6.0-symlink_udev-post.patch |
20 |
Patch7: e-smith-base-5.4.0-microcode.patch |
Patch8: e-smith-base-5.6.0-detect_conf_change_single_nic.patch |
21 |
Patch8: e-smith-base-5.4.0-PostUpgradeRestore.patch |
Patch9: e-smith-base-5.6.0-service_runlevel_4.patch |
22 |
Patch9: e-smith-base-5.4.0-inittab.patch |
Patch10: e-smith-base-5.6.0-ensure_apache_alias_www.patch |
23 |
Patch10: e-smith-base-5.4.0-pwauth.patch |
Patch11: e-smith-base-5.6.0-specify_dhcpd_configuration_file.patch |
24 |
Patch11: e-smith-base-5.4.0-uidgid.patch |
Patch12: e-smith-base-5.6.0-default_to_no_on_quit_console_app.patch |
25 |
Patch12: e-smith-base-5.4.0-fixwww.patch |
Patch13: e-smith-base-5.6.0-only_reset_access_for_private_server.patch |
26 |
Patch13: e-smith-base-5.4.0-SystemName.patch |
Patch14: e-smith-base-5.6.0-only_fire_ip_change_on_wan.patch |
27 |
Patch14: e-smith-base-5.4.0-existing_hwaddr.patch |
Patch15: e-smith-base-5.6.0-dummy_nic.patch |
28 |
Patch15: e-smith-base-5.4.0-remove_syslogd_templates.patch |
Patch16: e-smith-base-5.6.0-disable_selinux.patch |
29 |
Patch16: e-smith-base-5.4.0-rsyslog_templates.patch |
Patch17: e-smith-base-5.6.0_sha256_cert.patch |
30 |
Patch17: e-smith-base-5.4.0-rsyslog_db.patch |
Patch18: e-smith-base-5.6.0-update_mime_types.patch |
31 |
Patch18: e-smith-base-5.4.0-rsyslog.conf.patch |
Patch19: e-smith-base-5.6.0-ssl_update.patch |
32 |
Patch19: e-smith-base-5.4.0-rate_limit.patch |
Patch20: e-smith-base-5.6.0-reload_ssl_when_renew_cert.patch |
33 |
Patch20: e-smith-base-5.4.0-no_modprobe.patch |
Patch21: e-smith-base-5.6.0-display_http_server_manager.patch |
34 |
Patch21: e-smith-base-5.4.0-more_rsyslog.patch |
Patch22: e-smith-base-5.6.0-add_forward_column.patch |
35 |
Patch22: e-smith-base-5.4.0-ConsoleBackupText.patch |
Patch23: e-smith-base-5.6.0-allow_32bits_mask.patch |
36 |
Patch23: e-smith-base-5.4.0-NICBonding.patch |
Patch24: e-smith-base-5.6.0-ip_route_syntax.patch |
37 |
Patch24: e-smith-base-5.4.0-rename_pam_ldap_conf.patch |
Patch25: e-smith-base-5.8.0-expand_route_bond0.patch |
38 |
Patch25: e-smith-base-5.4.0-fix_bash-in_run_pppoe_conf.patch |
Patch26: e-smith-base-5.6.0.bz10520.xinet-cleaning.patch |
39 |
Patch26: e-smith-base-5.4.0-StartService.patch |
Patch27: e-smith-base-5.6.0-modify-default-city.patch |
40 |
Patch27: e-smith-base-5.4.0-rcesmith-removal.patch |
Patch28: e-smith-base-5.6.0.bz10455.dhcpd-posttransaction.patch |
41 |
Patch28: e-smith-base-5.4.0-add_template_to_ssl.pem.patch |
|
|
Patch29: e-smith-base-5.4.0-init-accounts.patch |
|
|
Patch30: e-smith-base-5.4.0-do_not_remove_utf8.patch |
|
|
Patch31: e-smith-base-5.4.0-space_lf_on_receive.patch |
|
|
Patch32: e-smith-base-5.4.0-disable_ipv6.patch |
|
|
Patch33: e-smith-base-5.4.0-fix_group_create_with_ldap_auth.patch |
|
|
Patch34: e-smith-base-5.4.0-OldSystemName.patch |
|
|
Patch35: e-smith-base-5.4.0-OldServerName.patch |
|
|
Patch36: e-smith-base-5.4.0-ConsoleBackupCompressionLevel.patch |
|
|
Patch37: e-smith-base-5.4.0-ConsoleBackupBetterText.patch |
|
|
Patch38: e-smith-base-5.4.0-pwauth_ibay.patch |
|
|
Patch39: e-smith-base-5.4.0-manageRAID.patch |
|
42 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
43 |
BuildArch: noarch |
BuildArch: noarch |
44 |
Requires: pwauth |
Requires: pwauth |
54 |
Requires: perl(Net::IPv4Addr) |
Requires: perl(Net::IPv4Addr) |
55 |
Requires: /usr/sbin/irqbalance |
Requires: /usr/sbin/irqbalance |
56 |
Requires: /usr/sbin/cpuspeed |
Requires: /usr/sbin/cpuspeed |
|
Requires: /sbin/microcode_ctl |
|
57 |
Requires: /usr/sbin/smartd |
Requires: /usr/sbin/smartd |
58 |
Requires: dbus |
Requires: dbus |
59 |
Requires: hal |
Requires: hal |
86 |
e-smith server and gateway software - base module. |
e-smith server and gateway software - base module. |
87 |
|
|
88 |
%changelog |
%changelog |
89 |
|
* Sat Jan 26 2019 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-36.sme |
90 |
|
- fix unwanted start of non SME dhcpd deamon on update [SME: 10455] |
91 |
|
|
92 |
|
* Sun Nov 25 2018 John Crisp <jcrisp@safeandsoundit.co.uk> 5.6.0-35.sme |
93 |
|
- modify the default city and company [SME: 8168] |
94 |
|
|
95 |
|
* Tue Feb 13 2018 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-34.sme |
96 |
|
- cleaning xinetd.conf fragment out of the package [SME: 10520] |
97 |
|
|
98 |
|
* Wed Nov 15 2017 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-33.sme |
99 |
|
- revert previous change, wrong package |
100 |
|
|
101 |
|
* Wed Nov 15 2017 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-32.sme |
102 |
|
- added post transaction rule for ntp [SME: 10454] |
103 |
|
- backport of SME10 [SME: 10190] |
104 |
|
- thank you to Stefano Zamboni for this work |
105 |
|
|
106 |
|
* Thu May 4 2017 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-31.sme |
107 |
|
- Backport from sme10: Expand route-bond0 when nic bonding is enabled |
108 |
|
[SME: 10270] |
109 |
|
|
110 |
|
* Thu Feb 9 2017 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-30.sme |
111 |
|
- Use ip route syntax to define routes to local network [SME: 9905] |
112 |
|
|
113 |
|
* Tue Sep 13 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-29.sme |
114 |
|
- Allow /32 masks on the external interface, in which case we don't |
115 |
|
check if the gateway is on the correct network) [SME: 9765] |
116 |
|
|
117 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-28.sme |
118 |
|
- Add a column to display forwarding address [SME: 9174] |
119 |
|
|
120 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-27.sme |
121 |
|
- Correctly display http URL to the server-manager in the console [SME: 9163] |
122 |
|
|
123 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-26.sme |
124 |
|
- Fire ssl-update event when default cert is renewed [SME: 2257] |
125 |
|
|
126 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-25.sme |
127 |
|
- Expand /home/e-smith/ssl.pem/pem during ssl-update [SME: 9152] |
128 |
|
|
129 |
|
* Tue Sep 30 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-24.sme |
130 |
|
- Update /etc/mime.types templates [SME: 9078] |
131 |
|
|
132 |
|
* Mon Aug 24 2015 Charlie Brady <charlie_brady@mitel.com> 5.6.0-23.sme |
133 |
|
- Use sha256 algorithm for signature of SSL cert. [SME: 8615] |
134 |
|
|
135 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-22.sme |
136 |
|
- Fix including /etc/selinux directory [SME: 8954] |
137 |
|
|
138 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-21.sme |
139 |
|
- Add templates for /etc/selinux/config [SME: 8954] |
140 |
|
|
141 |
|
* Thu Jun 11 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-20.sme |
142 |
|
- Add dummy NIC support as InternalInterface [SME: 7200] |
143 |
|
|
144 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-19.sme |
145 |
|
- Only fire the ip-change event when IP is assigned to WAN nic |
146 |
|
(Code by Charlie Brady and John Crisp) [SME: 8896] |
147 |
|
|
148 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-18.sme |
149 |
|
- Only reset service access when switching to or from private server mode |
150 |
|
(Code by Charlie Brady) [SME: 8879] |
151 |
|
|
152 |
|
* Sun Jan 11 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-17.sme |
153 |
|
- When quiting the console app with unsaved changes set the default selected |
154 |
|
- answer to NO Hsing-Foo Wang <hsingfoo@gmail.com> [SME: 8616] |
155 |
|
|
156 |
|
* Tue Jan 6 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-16.sme |
157 |
|
- Added a comment to specify the real configuration file of dhcpd [SME: 8386] |
158 |
|
|
159 |
|
* Sat Jan 3 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-15.sme |
160 |
|
- Modified the patch of daniel e-smith-base-5.6.0-ensure_apache_alias_www.patch |
161 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
162 |
|
|
163 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-13.sme |
164 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
165 |
|
|
166 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-12.sme |
167 |
|
- Check were running runlevel 4, not 7 in service wrapper [SME: 8637] |
168 |
|
|
169 |
|
* Sun Sep 21 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-11.sme |
170 |
|
- Correctly update NIC configuration on single NIC systems [SME: 8561] |
171 |
|
|
172 |
|
* Wed Sep 10 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-10.sme |
173 |
|
- Symlink udev-post service in rc7 [SME: 8542] |
174 |
|
|
175 |
|
* Fri Jul 25 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-9.sme |
176 |
|
- Fix PPPoE after a post-upgrade [SME: 8493] |
177 |
|
|
178 |
|
* Thu Jul 3 2014 Ian Wells <esmith@wellsi.com> 5.6.0-8.sme |
179 |
|
- Remove dependency on microcode_ctl [SME: 8468] |
180 |
|
|
181 |
|
* Sun May 11 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-7.sme |
182 |
|
- Prevent emailing about the normal, weekly, checks of RAID arrays, by Mark Casey |
183 |
|
- [SME: 7748] |
184 |
|
|
185 |
|
* Tue May 06 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-6.sme |
186 |
|
- remove /etc/e-smith/templates/etc/crontab/10runparts for anacron compatibility |
187 |
|
- [SME: 8364] |
188 |
|
|
189 |
|
* Wed Apr 23 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-5.sme |
190 |
|
- Add a verification in the console of number of pptp clients against ip allowed in dhcpd |
191 |
|
- [SME: 8312] |
192 |
|
|
193 |
|
* Sun Apr 6 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-4.sme |
194 |
|
- Add a verification in remoteaccess panel of number of pptp clients against ip allowed in dhcpd |
195 |
|
- [SME: 8312] |
196 |
|
|
197 |
|
* Sat Apr 5 2014 Ian Wells <esmith@wellsi.com> 5.6.0-3.sme |
198 |
|
- Ensure console is run with taint checking [SME: 8311] |
199 |
|
- Non-functional perl::Critic changes. |
200 |
|
|
201 |
|
* Sun Mar 23 2014 Ian Wells <esmith@wellsi.com> 5.6.0-2.sme |
202 |
|
- Roll new stream to really remove obsolete images [SME: 7962] |
203 |
|
|
204 |
|
* Sun Mar 23 2014 Ian Wells <esmith@wellsi.com> 5.6.0-1.sme |
205 |
|
- Roll new stream to remove obsolete images [SME: 7962] |
206 |
|
|
207 |
|
* Thu Mar 20 2014 Ian Wells <esmith@wellsi.com> 5.4.0-62.sme |
208 |
|
- Move console backup to e-smith-backup [SME: 3324] |
209 |
|
|
210 |
|
* Sun Mar 16 2014 Ian Wells <esmith@wellsi.com> 5.4.0-61.sme |
211 |
|
- Remove support.pl from e-smith-base and move to smeserver-support [SME: 8264] |
212 |
|
|
213 |
|
* Sat Mar 15 2014 Ian Wells <esmith@wellsi.com> 5.4.0-60.sme |
214 |
|
- Console restore should reboot [SME: 8259] |
215 |
|
|
216 |
|
* Sat Mar 8 2014 Ian Wells <esmith@wellsi.com> 5.4.0-59.sme |
217 |
|
- Boostrap console should only offer restore if no password set [SME: 8259] |
218 |
|
|
219 |
|
* Thu Mar 6 2014 Ian Wells <esmith@wellsi.com> 5.4.0-58.sme |
220 |
|
- Add restore backup as a console item for freshly installed servers [SME: 8259] |
221 |
|
- Non-code changes to perform_restore.pm |
222 |
|
|
223 |
|
* Sun Feb 16 2014 Ian Wells <esmith@wellsi.com> 5.4.0-57.sme |
224 |
|
- Refer to removable media not CDROM in console restore [SME: 8214] |
225 |
|
|
226 |
|
* Tue Jan 28 2014 Ian Wells <esmith@wellsi.com> 5.4.0-56.sme |
227 |
|
- Remove insecure SSL ciphers [SME: 8138] |
228 |
|
|
229 |
|
* Sun Dec 15 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-55.sme |
230 |
|
- Restart rsyslog in logrotate event [SME: 8065] |
231 |
|
|
232 |
|
* Sun Dec 15 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-54.sme |
233 |
|
- Set smb ServerName if unset (patch from Ian Wells) [SME: 8030] |
234 |
|
|
235 |
|
* Mon Dec 9 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-53.sme |
236 |
|
- Don't reload init in bootstrap-console-save and console-save [SME: 8050] |
237 |
|
|
238 |
|
* Mon Dec 9 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-52.sme |
239 |
|
- Re-add missing templates metadata for bond0 [SME: 7990] |
240 |
|
|
241 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-51.sme |
242 |
|
- Load the bonding module if NIC bonding is enabled [SME: 7996] |
243 |
|
|
244 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-50.sme |
245 |
|
- Define the udev-post service in the DB [SME: 7992] |
246 |
|
|
247 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-49.sme |
248 |
|
- Remove the "swap interface" feature [SME: 7993] |
249 |
|
|
250 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-48.sme |
251 |
|
- Do not hardcode NIC names to eth0 and eth1 [SME: 7990] |
252 |
|
- Remove obsolete VLAN code [SME: 7994] |
253 |
|
|
254 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-47.sme |
255 |
|
- Remove HWAddress prop from interfaces [SME: 7991] |
256 |
|
|
257 |
|
* Thu Nov 14 2013 Chris Burnat <devlist@burnat.com> 5.4.0-46.sme |
258 |
|
- Fix add_new_disk_to_raid1 (codes by Charlie Brady - patch by Terje Edseth) |
259 |
|
[SME: 7960] |
260 |
|
|
261 |
* Wed Oct 30 2013 Charlie Brady <charlie_brady@mitel.com> 5.4.0-45.sme |
* Wed Oct 30 2013 Charlie Brady <charlie_brady@mitel.com> 5.4.0-45.sme |
262 |
- Fix parsing issues with "manage RAID" menu option in the console. |
- Fix parsing issues with "manage RAID" menu option in the console. |
263 |
[SME: 7953] |
[SME: 7953] |
1824 |
|
|
1825 |
%prep |
%prep |
1826 |
%setup |
%setup |
|
%patch0 -p1 |
|
1827 |
%patch1 -p1 |
%patch1 -p1 |
1828 |
%patch2 -p1 |
%patch2 -p1 |
1829 |
%patch3 -p1 |
%patch3 -p1 |
1852 |
%patch26 -p1 |
%patch26 -p1 |
1853 |
%patch27 -p1 |
%patch27 -p1 |
1854 |
%patch28 -p1 |
%patch28 -p1 |
|
%patch29 -p1 |
|
|
%patch30 -p1 |
|
|
%patch31 -p1 |
|
|
%patch32 -p1 |
|
|
%patch33 -p1 |
|
|
%patch34 -p1 |
|
|
%patch35 -p1 |
|
|
%patch36 -p1 |
|
|
%patch37 -p1 |
|
|
%patch38 -p1 |
|
|
%patch39 -p1 |
|
|
|
|
|
# We cannot remove an empy files or folders with a patch, see [SME: 7289] |
|
|
# We remove this because it contains an empty template-begin file |
|
|
rm -rf root/etc/e-smith/templates/etc/ldap.secret/ |
|
1855 |
|
|
1856 |
%pre |
%pre |
1857 |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
1878 |
|
|
1879 |
%install |
%install |
1880 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
1881 |
|
mkdir -p $RPM_BUILD_ROOT/etc/selinux |
1882 |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
1883 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1884 |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
1930 |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
1931 |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
1932 |
--file /var/service/local/run 'attr(0750,root,root)' \ |
--file /var/service/local/run 'attr(0750,root,root)' \ |
1933 |
|
--file /etc/sysconfig/modules/dummy.modules 'attr(0755,root,root)' \ |
1934 |
|
--dir /etc/selinux 'attr(0755,root,root)' \ |
1935 |
> %{name}-%{version}-%{release}-filelist |
> %{name}-%{version}-%{release}-filelist |
1936 |
|
|
1937 |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |