1 |
# $Id: e-smith-base.spec,v 1.49 2013/11/30 10:57:56 vip-ire Exp $ |
# $Id: e-smith-base.spec,v 1.99 2016/01/31 21:55:35 vip-ire Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - base module |
Summary: e-smith server and gateway - base module |
4 |
%define name e-smith-base |
%define name e-smith-base |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.4.0 |
%define version 5.6.0 |
7 |
%define release 48 |
%define release 28 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
11 |
Group: Networking/Daemons |
Group: Networking/Daemons |
12 |
Source: %{name}-%{version}.tar.xz |
Source: %{name}-%{version}.tar.xz |
13 |
Patch0: e-smith-base-5.4.0-runlevel_4.patch |
Patch1: e-smith-base-5.6.0-console.patch |
14 |
Patch1: e-smith-base-5.4.0-local_event.patch |
Patch2: e-smith-base-5.6.0_added_verification_of_pptp_clients_against_dhcp.patch |
15 |
Patch2: e-smith-base-5.4.0-noapmd.patch |
Patch3: e-smith-base-5.6.0_console_verification_dhcp_vs_pptp.patch |
16 |
Patch3: e-smith-base-5.4.0-rsysloglink.patch |
Patch4: e-smith-base-5.6.0_remove_10runparts_for_anacron_compatibility.patch |
17 |
Patch4: e-smith-base-5.4.0-optimize_user_modify_unix.patch |
Patch5: e-smith-base-5.6.0-mdevent.patch |
18 |
Patch5: e-smith-base-5.4.0-user_modify_in_bootstrap.patch |
Patch6: e-smith-base-5.6.0-pppoe_after_post_upgrade.patch |
19 |
Patch6: e-smith-base-5.4.0-pppoeMlimit.patch |
Patch7: e-smith-base-5.6.0-symlink_udev-post.patch |
20 |
Patch7: e-smith-base-5.4.0-microcode.patch |
Patch8: e-smith-base-5.6.0-detect_conf_change_single_nic.patch |
21 |
Patch8: e-smith-base-5.4.0-PostUpgradeRestore.patch |
Patch9: e-smith-base-5.6.0-service_runlevel_4.patch |
22 |
Patch9: e-smith-base-5.4.0-inittab.patch |
Patch10: e-smith-base-5.6.0-ensure_apache_alias_www.patch |
23 |
Patch10: e-smith-base-5.4.0-pwauth.patch |
Patch11: e-smith-base-5.6.0-specify_dhcpd_configuration_file.patch |
24 |
Patch11: e-smith-base-5.4.0-uidgid.patch |
Patch12: e-smith-base-5.6.0-default_to_no_on_quit_console_app.patch |
25 |
Patch12: e-smith-base-5.4.0-fixwww.patch |
Patch13: e-smith-base-5.6.0-only_reset_access_for_private_server.patch |
26 |
Patch13: e-smith-base-5.4.0-SystemName.patch |
Patch14: e-smith-base-5.6.0-only_fire_ip_change_on_wan.patch |
27 |
Patch14: e-smith-base-5.4.0-existing_hwaddr.patch |
Patch15: e-smith-base-5.6.0-dummy_nic.patch |
28 |
Patch15: e-smith-base-5.4.0-remove_syslogd_templates.patch |
Patch16: e-smith-base-5.6.0-disable_selinux.patch |
29 |
Patch16: e-smith-base-5.4.0-rsyslog_templates.patch |
Patch17: e-smith-base-5.6.0_sha256_cert.patch |
30 |
Patch17: e-smith-base-5.4.0-rsyslog_db.patch |
Patch18: e-smith-base-5.6.0-update_mime_types.patch |
31 |
Patch18: e-smith-base-5.4.0-rsyslog.conf.patch |
Patch19: e-smith-base-5.6.0-ssl_update.patch |
32 |
Patch19: e-smith-base-5.4.0-rate_limit.patch |
Patch20: e-smith-base-5.6.0-reload_ssl_when_renew_cert.patch |
33 |
Patch20: e-smith-base-5.4.0-no_modprobe.patch |
Patch21: e-smith-base-5.6.0-display_http_server_manager.patch |
34 |
Patch21: e-smith-base-5.4.0-more_rsyslog.patch |
Patch22: e-smith-base-5.6.0-add_forward_column.patch |
|
Patch22: e-smith-base-5.4.0-ConsoleBackupText.patch |
|
|
Patch23: e-smith-base-5.4.0-NICBonding.patch |
|
|
Patch24: e-smith-base-5.4.0-rename_pam_ldap_conf.patch |
|
|
Patch25: e-smith-base-5.4.0-fix_bash-in_run_pppoe_conf.patch |
|
|
Patch26: e-smith-base-5.4.0-StartService.patch |
|
|
Patch27: e-smith-base-5.4.0-rcesmith-removal.patch |
|
|
Patch28: e-smith-base-5.4.0-add_template_to_ssl.pem.patch |
|
|
Patch29: e-smith-base-5.4.0-init-accounts.patch |
|
|
Patch30: e-smith-base-5.4.0-do_not_remove_utf8.patch |
|
|
Patch31: e-smith-base-5.4.0-space_lf_on_receive.patch |
|
|
Patch32: e-smith-base-5.4.0-disable_ipv6.patch |
|
|
Patch33: e-smith-base-5.4.0-fix_group_create_with_ldap_auth.patch |
|
|
Patch34: e-smith-base-5.4.0-OldSystemName.patch |
|
|
Patch35: e-smith-base-5.4.0-OldServerName.patch |
|
|
Patch36: e-smith-base-5.4.0-ConsoleBackupCompressionLevel.patch |
|
|
Patch37: e-smith-base-5.4.0-ConsoleBackupBetterText.patch |
|
|
Patch38: e-smith-base-5.4.0-pwauth_ibay.patch |
|
|
Patch39: e-smith-base-5.4.0-manageRAID.patch |
|
|
Patch40: e-smith-base-5.4.0-add_new_disk_to_raid1.patch |
|
|
Patch41: e-smith-base-5.4.0-remove_hwaddress.patch |
|
|
Patch42: e-smith-base-5.4.0-do_not_hardcode_nic_names.patch |
|
35 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
36 |
BuildArch: noarch |
BuildArch: noarch |
37 |
Requires: pwauth |
Requires: pwauth |
47 |
Requires: perl(Net::IPv4Addr) |
Requires: perl(Net::IPv4Addr) |
48 |
Requires: /usr/sbin/irqbalance |
Requires: /usr/sbin/irqbalance |
49 |
Requires: /usr/sbin/cpuspeed |
Requires: /usr/sbin/cpuspeed |
|
Requires: /sbin/microcode_ctl |
|
50 |
Requires: /usr/sbin/smartd |
Requires: /usr/sbin/smartd |
51 |
Requires: dbus |
Requires: dbus |
52 |
Requires: hal |
Requires: hal |
79 |
e-smith server and gateway software - base module. |
e-smith server and gateway software - base module. |
80 |
|
|
81 |
%changelog |
%changelog |
82 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-28.sme |
83 |
|
- Add a column to display forwarding address [SME: 9174] |
84 |
|
|
85 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-27.sme |
86 |
|
- Correctly display http URL to the server-manager in the console [SME: 9163] |
87 |
|
|
88 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-26.sme |
89 |
|
- Fire ssl-update event when default cert is renewed [SME: 2257] |
90 |
|
|
91 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-25.sme |
92 |
|
- Expand /home/e-smith/ssl.pem/pem during ssl-update [SME: 9152] |
93 |
|
|
94 |
|
* Tue Sep 30 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-24.sme |
95 |
|
- Update /etc/mime.types templates [SME: 9078] |
96 |
|
|
97 |
|
* Mon Aug 24 2015 Charlie Brady <charlie_brady@mitel.com> 5.6.0-23.sme |
98 |
|
- Use sha256 algorithm for signature of SSL cert. [SME: 8615] |
99 |
|
|
100 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-22.sme |
101 |
|
- Fix including /etc/selinux directory [SME: 8954] |
102 |
|
|
103 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-21.sme |
104 |
|
- Add templates for /etc/selinux/config [SME: 8954] |
105 |
|
|
106 |
|
* Thu Jun 11 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-20.sme |
107 |
|
- Add dummy NIC support as InternalInterface [SME: 7200] |
108 |
|
|
109 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-19.sme |
110 |
|
- Only fire the ip-change event when IP is assigned to WAN nic |
111 |
|
(Code by Charlie Brady and John Crisp) [SME: 8896] |
112 |
|
|
113 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-18.sme |
114 |
|
- Only reset service access when switching to or from private server mode |
115 |
|
(Code by Charlie Brady) [SME: 8879] |
116 |
|
|
117 |
|
* Sun Jan 11 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-17.sme |
118 |
|
- When quiting the console app with unsaved changes set the default selected |
119 |
|
- answer to NO Hsing-Foo Wang <hsingfoo@gmail.com> [SME: 8616] |
120 |
|
|
121 |
|
* Tue Jan 6 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-16.sme |
122 |
|
- Added a comment to specify the real configuration file of dhcpd [SME: 8386] |
123 |
|
|
124 |
|
* Sat Jan 3 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-15.sme |
125 |
|
- Modified the patch of daniel e-smith-base-5.6.0-ensure_apache_alias_www.patch |
126 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
127 |
|
|
128 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-13.sme |
129 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
130 |
|
|
131 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-12.sme |
132 |
|
- Check were running runlevel 4, not 7 in service wrapper [SME: 8637] |
133 |
|
|
134 |
|
* Sun Sep 21 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-11.sme |
135 |
|
- Correctly update NIC configuration on single NIC systems [SME: 8561] |
136 |
|
|
137 |
|
* Wed Sep 10 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-10.sme |
138 |
|
- Symlink udev-post service in rc7 [SME: 8542] |
139 |
|
|
140 |
|
* Fri Jul 25 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-9.sme |
141 |
|
- Fix PPPoE after a post-upgrade [SME: 8493] |
142 |
|
|
143 |
|
* Thu Jul 3 2014 Ian Wells <esmith@wellsi.com> 5.6.0-8.sme |
144 |
|
- Remove dependency on microcode_ctl [SME: 8468] |
145 |
|
|
146 |
|
* Sun May 11 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-7.sme |
147 |
|
- Prevent emailing about the normal, weekly, checks of RAID arrays, by Mark Casey |
148 |
|
- [SME: 7748] |
149 |
|
|
150 |
|
* Tue May 06 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-6.sme |
151 |
|
- remove /etc/e-smith/templates/etc/crontab/10runparts for anacron compatibility |
152 |
|
- [SME: 8364] |
153 |
|
|
154 |
|
* Wed Apr 23 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-5.sme |
155 |
|
- Add a verification in the console of number of pptp clients against ip allowed in dhcpd |
156 |
|
- [SME: 8312] |
157 |
|
|
158 |
|
* Sun Apr 6 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-4.sme |
159 |
|
- Add a verification in remoteaccess panel of number of pptp clients against ip allowed in dhcpd |
160 |
|
- [SME: 8312] |
161 |
|
|
162 |
|
* Sat Apr 5 2014 Ian Wells <esmith@wellsi.com> 5.6.0-3.sme |
163 |
|
- Ensure console is run with taint checking [SME: 8311] |
164 |
|
- Non-functional perl::Critic changes. |
165 |
|
|
166 |
|
* Sun Mar 23 2014 Ian Wells <esmith@wellsi.com> 5.6.0-2.sme |
167 |
|
- Roll new stream to really remove obsolete images [SME: 7962] |
168 |
|
|
169 |
|
* Sun Mar 23 2014 Ian Wells <esmith@wellsi.com> 5.6.0-1.sme |
170 |
|
- Roll new stream to remove obsolete images [SME: 7962] |
171 |
|
|
172 |
|
* Thu Mar 20 2014 Ian Wells <esmith@wellsi.com> 5.4.0-62.sme |
173 |
|
- Move console backup to e-smith-backup [SME: 3324] |
174 |
|
|
175 |
|
* Sun Mar 16 2014 Ian Wells <esmith@wellsi.com> 5.4.0-61.sme |
176 |
|
- Remove support.pl from e-smith-base and move to smeserver-support [SME: 8264] |
177 |
|
|
178 |
|
* Sat Mar 15 2014 Ian Wells <esmith@wellsi.com> 5.4.0-60.sme |
179 |
|
- Console restore should reboot [SME: 8259] |
180 |
|
|
181 |
|
* Sat Mar 8 2014 Ian Wells <esmith@wellsi.com> 5.4.0-59.sme |
182 |
|
- Boostrap console should only offer restore if no password set [SME: 8259] |
183 |
|
|
184 |
|
* Thu Mar 6 2014 Ian Wells <esmith@wellsi.com> 5.4.0-58.sme |
185 |
|
- Add restore backup as a console item for freshly installed servers [SME: 8259] |
186 |
|
- Non-code changes to perform_restore.pm |
187 |
|
|
188 |
|
* Sun Feb 16 2014 Ian Wells <esmith@wellsi.com> 5.4.0-57.sme |
189 |
|
- Refer to removable media not CDROM in console restore [SME: 8214] |
190 |
|
|
191 |
|
* Tue Jan 28 2014 Ian Wells <esmith@wellsi.com> 5.4.0-56.sme |
192 |
|
- Remove insecure SSL ciphers [SME: 8138] |
193 |
|
|
194 |
|
* Sun Dec 15 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-55.sme |
195 |
|
- Restart rsyslog in logrotate event [SME: 8065] |
196 |
|
|
197 |
|
* Sun Dec 15 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-54.sme |
198 |
|
- Set smb ServerName if unset (patch from Ian Wells) [SME: 8030] |
199 |
|
|
200 |
|
* Mon Dec 9 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-53.sme |
201 |
|
- Don't reload init in bootstrap-console-save and console-save [SME: 8050] |
202 |
|
|
203 |
|
* Mon Dec 9 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-52.sme |
204 |
|
- Re-add missing templates metadata for bond0 [SME: 7990] |
205 |
|
|
206 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-51.sme |
207 |
|
- Load the bonding module if NIC bonding is enabled [SME: 7996] |
208 |
|
|
209 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-50.sme |
210 |
|
- Define the udev-post service in the DB [SME: 7992] |
211 |
|
|
212 |
|
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-49.sme |
213 |
|
- Remove the "swap interface" feature [SME: 7993] |
214 |
|
|
215 |
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-48.sme |
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-48.sme |
216 |
- Do not hardcode NIC names to eth0 and eth1 [SME: 7990] |
- Do not hardcode NIC names to eth0 and eth1 [SME: 7990] |
217 |
|
- Remove obsolete VLAN code [SME: 7994] |
218 |
|
|
219 |
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-47.sme |
* Sat Nov 30 2013 Daniel Berteaud <daniel@firewall-services.com> 5.4.0-47.sme |
220 |
- Remove HWAddress prop from interfaces [SME: 7991] |
- Remove HWAddress prop from interfaces [SME: 7991] |
1789 |
|
|
1790 |
%prep |
%prep |
1791 |
%setup |
%setup |
|
%patch0 -p1 |
|
1792 |
%patch1 -p1 |
%patch1 -p1 |
1793 |
%patch2 -p1 |
%patch2 -p1 |
1794 |
%patch3 -p1 |
%patch3 -p1 |
1811 |
%patch20 -p1 |
%patch20 -p1 |
1812 |
%patch21 -p1 |
%patch21 -p1 |
1813 |
%patch22 -p1 |
%patch22 -p1 |
|
%patch23 -p1 |
|
|
%patch24 -p1 |
|
|
%patch25 -p1 |
|
|
%patch26 -p1 |
|
|
%patch27 -p1 |
|
|
%patch28 -p1 |
|
|
%patch29 -p1 |
|
|
%patch30 -p1 |
|
|
%patch31 -p1 |
|
|
%patch32 -p1 |
|
|
%patch33 -p1 |
|
|
%patch34 -p1 |
|
|
%patch35 -p1 |
|
|
%patch36 -p1 |
|
|
%patch37 -p1 |
|
|
%patch38 -p1 |
|
|
%patch39 -p1 |
|
|
%patch40 -p1 |
|
|
%patch41 -p1 |
|
|
%patch42 -p1 |
|
|
|
|
|
# We cannot remove an empy files or folders with a patch, see [SME: 7289] |
|
|
# We remove this because it contains an empty template-begin file |
|
|
rm -rf root/etc/e-smith/templates/etc/ldap.secret/ |
|
1814 |
|
|
1815 |
%pre |
%pre |
1816 |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
1837 |
|
|
1838 |
%install |
%install |
1839 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
1840 |
|
mkdir -p $RPM_BUILD_ROOT/etc/selinux |
1841 |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
1842 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1843 |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
1889 |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
1890 |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
1891 |
--file /var/service/local/run 'attr(0750,root,root)' \ |
--file /var/service/local/run 'attr(0750,root,root)' \ |
1892 |
|
--file /etc/sysconfig/modules/dummy.modules 'attr(0755,root,root)' \ |
1893 |
|
--dir /etc/selinux 'attr(0755,root,root)' \ |
1894 |
> %{name}-%{version}-%{release}-filelist |
> %{name}-%{version}-%{release}-filelist |
1895 |
|
|
1896 |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |