1 |
# $Id: e-smith-base.spec,v 1.67 2014/03/24 03:14:48 wellsi Exp $ |
# $Id: e-smith-base.spec,v 1.104 2017/11/15 11:50:46 jpp Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - base module |
Summary: e-smith server and gateway - base module |
4 |
%define name e-smith-base |
%define name e-smith-base |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.6.0 |
%define version 5.6.0 |
7 |
%define release 3 |
%define release 33 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
11 |
Group: Networking/Daemons |
Group: Networking/Daemons |
12 |
Source: %{name}-%{version}.tar.xz |
Source: %{name}-%{version}.tar.xz |
13 |
Patch1: e-smith-base-5.6.0-console.patch |
Patch1: e-smith-base-5.6.0-console.patch |
14 |
|
Patch2: e-smith-base-5.6.0_added_verification_of_pptp_clients_against_dhcp.patch |
15 |
|
Patch3: e-smith-base-5.6.0_console_verification_dhcp_vs_pptp.patch |
16 |
|
Patch4: e-smith-base-5.6.0_remove_10runparts_for_anacron_compatibility.patch |
17 |
|
Patch5: e-smith-base-5.6.0-mdevent.patch |
18 |
|
Patch6: e-smith-base-5.6.0-pppoe_after_post_upgrade.patch |
19 |
|
Patch7: e-smith-base-5.6.0-symlink_udev-post.patch |
20 |
|
Patch8: e-smith-base-5.6.0-detect_conf_change_single_nic.patch |
21 |
|
Patch9: e-smith-base-5.6.0-service_runlevel_4.patch |
22 |
|
Patch10: e-smith-base-5.6.0-ensure_apache_alias_www.patch |
23 |
|
Patch11: e-smith-base-5.6.0-specify_dhcpd_configuration_file.patch |
24 |
|
Patch12: e-smith-base-5.6.0-default_to_no_on_quit_console_app.patch |
25 |
|
Patch13: e-smith-base-5.6.0-only_reset_access_for_private_server.patch |
26 |
|
Patch14: e-smith-base-5.6.0-only_fire_ip_change_on_wan.patch |
27 |
|
Patch15: e-smith-base-5.6.0-dummy_nic.patch |
28 |
|
Patch16: e-smith-base-5.6.0-disable_selinux.patch |
29 |
|
Patch17: e-smith-base-5.6.0_sha256_cert.patch |
30 |
|
Patch18: e-smith-base-5.6.0-update_mime_types.patch |
31 |
|
Patch19: e-smith-base-5.6.0-ssl_update.patch |
32 |
|
Patch20: e-smith-base-5.6.0-reload_ssl_when_renew_cert.patch |
33 |
|
Patch21: e-smith-base-5.6.0-display_http_server_manager.patch |
34 |
|
Patch22: e-smith-base-5.6.0-add_forward_column.patch |
35 |
|
Patch23: e-smith-base-5.6.0-allow_32bits_mask.patch |
36 |
|
Patch24: e-smith-base-5.6.0-ip_route_syntax.patch |
37 |
|
Patch25: e-smith-base-5.8.0-expand_route_bond0.patch |
38 |
|
|
39 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
40 |
BuildArch: noarch |
BuildArch: noarch |
41 |
Requires: pwauth |
Requires: pwauth |
51 |
Requires: perl(Net::IPv4Addr) |
Requires: perl(Net::IPv4Addr) |
52 |
Requires: /usr/sbin/irqbalance |
Requires: /usr/sbin/irqbalance |
53 |
Requires: /usr/sbin/cpuspeed |
Requires: /usr/sbin/cpuspeed |
|
Requires: /sbin/microcode_ctl |
|
54 |
Requires: /usr/sbin/smartd |
Requires: /usr/sbin/smartd |
55 |
Requires: dbus |
Requires: dbus |
56 |
Requires: hal |
Requires: hal |
83 |
e-smith server and gateway software - base module. |
e-smith server and gateway software - base module. |
84 |
|
|
85 |
%changelog |
%changelog |
86 |
|
* Wed Nov 15 2017 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-33.sme |
87 |
|
- revert previous change, wrong package |
88 |
|
|
89 |
|
* Wed Nov 15 2017 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-32.sme |
90 |
|
- added post transaction rule for ntp [SME: 10454] |
91 |
|
- backport of SME10 [SME: 10190] |
92 |
|
- thank you to Stefano Zamboni for this work |
93 |
|
|
94 |
|
* Thu May 4 2017 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-31.sme |
95 |
|
- Backport from sme10: Expand route-bond0 when nic bonding is enabled |
96 |
|
[SME: 10270] |
97 |
|
|
98 |
|
* Thu Feb 9 2017 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-30.sme |
99 |
|
- Use ip route syntax to define routes to local network [SME: 9905] |
100 |
|
|
101 |
|
* Tue Sep 13 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-29.sme |
102 |
|
- Allow /32 masks on the external interface, in which case we don't |
103 |
|
check if the gateway is on the correct network) [SME: 9765] |
104 |
|
|
105 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-28.sme |
106 |
|
- Add a column to display forwarding address [SME: 9174] |
107 |
|
|
108 |
|
* Sun Jan 31 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-27.sme |
109 |
|
- Correctly display http URL to the server-manager in the console [SME: 9163] |
110 |
|
|
111 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-26.sme |
112 |
|
- Fire ssl-update event when default cert is renewed [SME: 2257] |
113 |
|
|
114 |
|
* Sun Jan 17 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-25.sme |
115 |
|
- Expand /home/e-smith/ssl.pem/pem during ssl-update [SME: 9152] |
116 |
|
|
117 |
|
* Tue Sep 30 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-24.sme |
118 |
|
- Update /etc/mime.types templates [SME: 9078] |
119 |
|
|
120 |
|
* Mon Aug 24 2015 Charlie Brady <charlie_brady@mitel.com> 5.6.0-23.sme |
121 |
|
- Use sha256 algorithm for signature of SSL cert. [SME: 8615] |
122 |
|
|
123 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-22.sme |
124 |
|
- Fix including /etc/selinux directory [SME: 8954] |
125 |
|
|
126 |
|
* Thu Jun 25 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-21.sme |
127 |
|
- Add templates for /etc/selinux/config [SME: 8954] |
128 |
|
|
129 |
|
* Thu Jun 11 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-20.sme |
130 |
|
- Add dummy NIC support as InternalInterface [SME: 7200] |
131 |
|
|
132 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-19.sme |
133 |
|
- Only fire the ip-change event when IP is assigned to WAN nic |
134 |
|
(Code by Charlie Brady and John Crisp) [SME: 8896] |
135 |
|
|
136 |
|
* Tue Mar 31 2015 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-18.sme |
137 |
|
- Only reset service access when switching to or from private server mode |
138 |
|
(Code by Charlie Brady) [SME: 8879] |
139 |
|
|
140 |
|
* Sun Jan 11 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-17.sme |
141 |
|
- When quiting the console app with unsaved changes set the default selected |
142 |
|
- answer to NO Hsing-Foo Wang <hsingfoo@gmail.com> [SME: 8616] |
143 |
|
|
144 |
|
* Tue Jan 6 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-16.sme |
145 |
|
- Added a comment to specify the real configuration file of dhcpd [SME: 8386] |
146 |
|
|
147 |
|
* Sat Jan 3 2015 Stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-15.sme |
148 |
|
- Modified the patch of daniel e-smith-base-5.6.0-ensure_apache_alias_www.patch |
149 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
150 |
|
|
151 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-13.sme |
152 |
|
- Ensure www group exists and that apache is an alias of www [SME: 8549] |
153 |
|
|
154 |
|
* Sun Nov 2 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-12.sme |
155 |
|
- Check were running runlevel 4, not 7 in service wrapper [SME: 8637] |
156 |
|
|
157 |
|
* Sun Sep 21 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-11.sme |
158 |
|
- Correctly update NIC configuration on single NIC systems [SME: 8561] |
159 |
|
|
160 |
|
* Wed Sep 10 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-10.sme |
161 |
|
- Symlink udev-post service in rc7 [SME: 8542] |
162 |
|
|
163 |
|
* Fri Jul 25 2014 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-9.sme |
164 |
|
- Fix PPPoE after a post-upgrade [SME: 8493] |
165 |
|
|
166 |
|
* Thu Jul 3 2014 Ian Wells <esmith@wellsi.com> 5.6.0-8.sme |
167 |
|
- Remove dependency on microcode_ctl [SME: 8468] |
168 |
|
|
169 |
|
* Sun May 11 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-7.sme |
170 |
|
- Prevent emailing about the normal, weekly, checks of RAID arrays, by Mark Casey |
171 |
|
- [SME: 7748] |
172 |
|
|
173 |
|
* Tue May 06 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-6.sme |
174 |
|
- remove /etc/e-smith/templates/etc/crontab/10runparts for anacron compatibility |
175 |
|
- [SME: 8364] |
176 |
|
|
177 |
|
* Wed Apr 23 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-5.sme |
178 |
|
- Add a verification in the console of number of pptp clients against ip allowed in dhcpd |
179 |
|
- [SME: 8312] |
180 |
|
|
181 |
|
* Sun Apr 6 2014 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-4.sme |
182 |
|
- Add a verification in remoteaccess panel of number of pptp clients against ip allowed in dhcpd |
183 |
|
- [SME: 8312] |
184 |
|
|
185 |
* Sat Apr 5 2014 Ian Wells <esmith@wellsi.com> 5.6.0-3.sme |
* Sat Apr 5 2014 Ian Wells <esmith@wellsi.com> 5.6.0-3.sme |
186 |
- Ensure console is run with taint checking [SME: 8311] |
- Ensure console is run with taint checking [SME: 8311] |
187 |
- Non-functional perl::Critic changes. |
- Non-functional perl::Critic changes. |
1813 |
%prep |
%prep |
1814 |
%setup |
%setup |
1815 |
%patch1 -p1 |
%patch1 -p1 |
1816 |
|
%patch2 -p1 |
1817 |
|
%patch3 -p1 |
1818 |
|
%patch4 -p1 |
1819 |
|
%patch5 -p1 |
1820 |
|
%patch6 -p1 |
1821 |
|
%patch7 -p1 |
1822 |
|
%patch8 -p1 |
1823 |
|
%patch9 -p1 |
1824 |
|
%patch10 -p1 |
1825 |
|
%patch11 -p1 |
1826 |
|
%patch12 -p1 |
1827 |
|
%patch13 -p1 |
1828 |
|
%patch14 -p1 |
1829 |
|
%patch15 -p1 |
1830 |
|
%patch16 -p1 |
1831 |
|
%patch17 -p1 |
1832 |
|
%patch18 -p1 |
1833 |
|
%patch19 -p1 |
1834 |
|
%patch20 -p1 |
1835 |
|
%patch21 -p1 |
1836 |
|
%patch22 -p1 |
1837 |
|
%patch23 -p1 |
1838 |
|
%patch24 -p1 |
1839 |
|
%patch25 -p1 |
1840 |
|
|
1841 |
%pre |
%pre |
1842 |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
/sbin/e-smith/create-system-user smelastsys 2999 \ |
1863 |
|
|
1864 |
%install |
%install |
1865 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
1866 |
|
mkdir -p $RPM_BUILD_ROOT/etc/selinux |
1867 |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
1868 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1869 |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
--file /etc/cron.daily/conf-mod_ssl 'attr(0544,root,root)' \ |
1915 |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
--dir /var/log/ippp 'attr(2750,smelog,smelog)' \ |
1916 |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
--dir /etc/e-smith/skel/user/.ssh 'attr(0700,root,root)' \ |
1917 |
--file /var/service/local/run 'attr(0750,root,root)' \ |
--file /var/service/local/run 'attr(0750,root,root)' \ |
1918 |
|
--file /etc/sysconfig/modules/dummy.modules 'attr(0755,root,root)' \ |
1919 |
|
--dir /etc/selinux 'attr(0755,root,root)' \ |
1920 |
> %{name}-%{version}-%{release}-filelist |
> %{name}-%{version}-%{release}-filelist |
1921 |
|
|
1922 |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |
mkdir -p $RPM_BUILD_ROOT/home/e-smith/db |