1 |
# $Id: e-smith-ldap.spec,v 1.25 2016/02/05 15:40:28 stephdl Exp $ |
# $Id: e-smith-ldap.spec,v 1.16 2021/06/03 14:36:13 jpp Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - LDAP module |
Summary: e-smith server and gateway - LDAP module |
4 |
%define name e-smith-ldap |
%define name e-smith-ldap |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.6.0 |
%define version 5.6.0 |
7 |
%define release 1 |
%define release 13 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
11 |
Group: Networking/Daemons |
Group: Networking/Daemons |
12 |
Source: %{name}-%{version}.tar.xz |
Source: %{name}-%{version}.tar.xz |
13 |
|
Patch0: e-smith-ldap-5.6.0-missing_shebang_ldap_init.patch |
14 |
|
Patch1: e-smith-ldap-5.6.0.bz9688.skipredirect.patch |
15 |
|
Patch2: e-smith-ldap-5.6.0-strong_encryption.patch |
16 |
|
Patch3: e-smith-ldap-5.6.0-bz10936-TLS-and-ciphers.patch |
17 |
|
Patch4: e-smith-ldap-5.6.0-bz11140-bz11099-bz11096-systemd-update.patch |
18 |
|
Patch5: e-smith-ldap-5.6.0-bz11480-timeoutstart.patch |
19 |
|
Patch6: e-smith-ldap-5.6.0-bz11595-ssl-template.patch |
20 |
|
Patch7: e-smith-ldap-5.6.0-bz11598.patch |
21 |
|
|
22 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
23 |
BuildArchitectures: noarch |
BuildArchitectures: noarch |
24 |
Requires: e-smith-base |
Requires: e-smith-base |
27 |
Requires: openldap-clients |
Requires: openldap-clients |
28 |
Requires: openldap-servers |
Requires: openldap-servers |
29 |
Requires: perl(Net::LDAP) |
Requires: perl(Net::LDAP) |
30 |
Requires: db4-utils |
Requires: libdb4-utils |
31 |
Requires: e-smith-formmagick >= 1.4.0-9 |
Requires: e-smith-formmagick >= 1.4.0-9 |
32 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
33 |
AutoReqProv: no |
AutoReqProv: no |
36 |
e-smith server and gateway software - LDAP module. |
e-smith server and gateway software - LDAP module. |
37 |
|
|
38 |
%changelog |
%changelog |
39 |
|
* Wed Jun 09 2021 Jean-Philippe Pialasse <tests@pialasse.com> 5.6.0-13.sme |
40 |
|
- fix ssl-update reload instead of restart ldap [SME: 11598] |
41 |
|
|
42 |
|
* Thu Jun 03 2021 Jean-Philippe Pialasse <tests@pialasse.com> 5.6.0-12.sme |
43 |
|
- fix wrong path for templates.metadata [SME: 11595] |
44 |
|
|
45 |
|
* Sun May 30 2021 Jean-Philippe Pialasse <tests@pialasse.com> 5.6.0-11.sme |
46 |
|
- use template for ssl pem [SME: 11595] |
47 |
|
|
48 |
|
* Sun Mar 21 2021 Jean-Philippe Pialasse <tests@pialasse.com> 5.6.0-10.sme |
49 |
|
- fix ldap failing to start on initial boot [SME: 11480] |
50 |
|
|
51 |
|
* Sat Jan 02 2021 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-9.sme |
52 |
|
- fix wrong alias to ldap.init [SME: 11301] |
53 |
|
|
54 |
|
* Fri Dec 11 2020 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-8.sme |
55 |
|
- add -update event [SME: 11140] |
56 |
|
- move ldap to systemd [SME: 11099] |
57 |
|
- move ldap.init to systemd [SME: 11096] |
58 |
|
|
59 |
|
* Sat May 02 2020 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-7.sme |
60 |
|
- New protocol default as TLSv1.2 [SME: 10936] |
61 |
|
New property TLSProtocolMin |
62 |
|
Ciphers are now ordered with stronger first |
63 |
|
|
64 |
|
* Thu Feb 23 2017 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-6.sme |
65 |
|
- Disable SSLv3, but keep the possibility to enable it again [SME: 10108] |
66 |
|
- Better default cipher suite, and honor global suite [SME: 10108] |
67 |
|
|
68 |
|
* Sun Jul 24 2016 Jean-Philipe Pialasse <tests@pialasse.com> 5.6.0-5.sme |
69 |
|
- systemd skip redirect [SME: 9688] |
70 |
|
- Eliminated rpmbuild "bogus date" warnings due to inconsistent weekday, |
71 |
|
by assuming the date is correct and changing the weekday. |
72 |
|
Fri Jun 01 2000 --> Fri May 26 2000 or Thu Jun 01 2000 or Fri Jun 02 2000 or .... |
73 |
|
Thu Aug 07 2001 --> Thu Aug 02 2001 or Tue Aug 07 2001 or Thu Aug 09 2001 or .... |
74 |
|
Tue Jun 10 2010 --> Tue Jun 08 2010 or Thu Jun 10 2010 or Tue Jun 15 2010 or .... |
75 |
|
|
76 |
|
* Thu May 12 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-4.sme |
77 |
|
- Add missing shebang in ldap.init script [SME: 9432] |
78 |
|
|
79 |
|
* Thu May 12 2016 Daniel Berteaud <daniel@firewall-services.com> 5.6.0-3.sme |
80 |
|
- Rebuild for [SME: 9393] |
81 |
|
|
82 |
|
* Fri Mar 18 2016 JP Pialasse <tests@pialasse.com> 5.6.0-2.sme |
83 |
|
- fix Requires db4-utils to libdb4-utils [SME: 9319] |
84 |
|
|
85 |
* Fri Feb 05 2016 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-1.sme |
* Fri Feb 05 2016 stephane de Labrusse <stephdl@de-labrusse.fr> 5.6.0-1.sme |
86 |
- Initial release to sme10 |
- Initial release to sme10 |
87 |
|
|
322 |
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-24.sme |
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-24.sme |
323 |
- Restrict access to the ldif file [SME: 6217] |
- Restrict access to the ldif file [SME: 6217] |
324 |
|
|
325 |
* Tue Jun 10 2010 Jonathan Martens <smeserver-contribs@snetram.nl> 5.2.0-23.sme |
* Thu Jun 10 2010 Jonathan Martens <smeserver-contribs@snetram.nl> 5.2.0-23.sme |
326 |
|
Tue Jun 10 2010 --> Tue Jun 08 2010 or Thu Jun 10 2010 or Tue Jun 15 2010 or .... |
327 |
- Fix ldap-create errors when adding empty groups [SME: 5920] |
- Fix ldap-create errors when adding empty groups [SME: 5920] |
328 |
|
|
329 |
* Mon Jun 7 2010 Federico Simoncelli <federico.simoncelli@gmail.com> 5.2.0-22.sme |
* Mon Jun 7 2010 Federico Simoncelli <federico.simoncelli@gmail.com> 5.2.0-22.sme |
863 |
- [4.3.1-01] |
- [4.3.1-01] |
864 |
- Rolled version number to 4.3.1-01. Includes patches upto 4.3.0-07. |
- Rolled version number to 4.3.1-01. Includes patches upto 4.3.0-07. |
865 |
|
|
866 |
* Thu Aug 07 2001 Charlie Brady <charlieb@e-smith.com> |
* Tue Aug 07 2001 Charlie Brady <charlieb@e-smith.com> |
867 |
- [4.3.0-07] |
- [4.3.0-07] |
868 |
- Break slapd.conf template into fragments, and include in-line |
- Break slapd.conf template into fragments, and include in-line |
869 |
at.conf and co.conf fragements, rather than use include feature. |
at.conf and co.conf fragements, rather than use include feature. |
1037 |
* Mon Jun 12 2000 Charlie Brady <charlieb@e-smith.net> |
* Mon Jun 12 2000 Charlie Brady <charlieb@e-smith.net> |
1038 |
- Use new multi-arg form of backgroundCommand. |
- Use new multi-arg form of backgroundCommand. |
1039 |
|
|
1040 |
* Fri Jun 1 2000 Charlie Brady <charlieb@e-smith.net> |
* Thu Jun 01 2000 Charlie Brady <charlieb@e-smith.net> |
1041 |
|
Fri Jun 01 2000 --> Fri May 26 2000 or Thu Jun 01 2000 or Fri Jun 02 2000 or .... |
1042 |
- First created - broken out of e-smith-base 4.0.11. |
- First created - broken out of e-smith-base 4.0.11. |
1043 |
|
|
1044 |
%prep |
%prep |
1045 |
%setup |
%setup |
1046 |
|
%patch0 -p1 |
1047 |
|
%patch1 -p1 |
1048 |
|
%patch2 -p1 |
1049 |
|
%patch3 -p1 |
1050 |
|
%patch4 -p1 |
1051 |
|
%patch5 -p1 |
1052 |
|
mkdir -p root/etc/openldap/ssl |
1053 |
|
rm -rf root/service root/var/service root/etc/rc.d/init.d/supervise |
1054 |
|
%patch6 -p1 |
1055 |
|
%patch7 -p1 |
1056 |
|
|
1057 |
%build |
%build |
1058 |
perl createlinks |
perl createlinks |
1062 |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
1063 |
rm -f %{name}-%{version}-%{release}-filelist |
rm -f %{name}-%{version}-%{release}-filelist |
1064 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1065 |
--file /var/service/ldap/run 'attr(0750,root,root)' \ |
--file /sbin/e-smith/systemd/ldap-certificate 'attr(0554,root,root)' \ |
1066 |
--file /var/service/ldap/log/run 'attr(0750,root,root)' \ |
--file /sbin/e-smith/systemd/ldap-prepare 'attr(0554,root,root)' \ |
1067 |
|
--file /sbin/e-smith/systemd/ldap-finish 'attr(0554,root,root)' \ |
1068 |
--file /var/service/ldap/ldif-fix 'attr(0750,root,root)' \ |
--file /var/service/ldap/ldif-fix 'attr(0750,root,root)' \ |
1069 |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
|
--file /var/service/ldap/control/1 'attr(0750,root,root)' \ |
|
1070 |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |
1071 |
--dir /home/e-smith/db/ldap 'attr(0750,root,ldap)' \ |
--dir /home/e-smith/db/ldap 'attr(0750,root,ldap)' \ |
1072 |
--dir /var/log/ldap 'attr(0750,smelog,smelog)' \ |
--dir /var/log/ldap 'attr(0750,smelog,smelog)' \ |
1073 |
|
--dir /etc/openldap/ssl 'attr(0750,root,ldap)' \ |
1074 |
> %{name}-%{version}-%{release}-filelist |
> %{name}-%{version}-%{release}-filelist |
1075 |
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
1076 |
|
|
1080 |
%files -f %{name}-%{version}-%{release}-filelist |
%files -f %{name}-%{version}-%{release}-filelist |
1081 |
%defattr(-,root,root) |
%defattr(-,root,root) |
1082 |
|
|
1083 |
|
%pre |
1084 |
|
if [ $1 -gt 1 ] ; then |
1085 |
|
if [ -e /var/service/ldap/run ] ; then |
1086 |
|
/usr/bin/sv d ldap |
1087 |
|
/usr/bin/sv d ldap/log |
1088 |
|
fi |
1089 |
|
fi |