1 |
# $Id: e-smith-ldap.spec,v 1.25 2010/02/03 10:00:33 dungog Exp $ |
# $Id: e-smith-ldap.spec,v 1.72 2010/11/05 01:39:52 slords Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - LDAP module |
Summary: e-smith server and gateway - LDAP module |
4 |
%define name e-smith-ldap |
%define name e-smith-ldap |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.2.0 |
%define version 5.2.0 |
7 |
%define release 14 |
%define release 61 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
21 |
Patch8: %{name}-%{version}-attributes.patch |
Patch8: %{name}-%{version}-attributes.patch |
22 |
Patch9: %{name}-%{version}-mailboxRelatedObject.patch |
Patch9: %{name}-%{version}-mailboxRelatedObject.patch |
23 |
Patch10: %{name}-%{version}-force_ssl_tls_for_auth.patch |
Patch10: %{name}-%{version}-force_ssl_tls_for_auth.patch |
24 |
|
Patch11: %{name}-%{version}-sme8b-db.patch |
25 |
|
Patch12: %{name}-%{version}-admin_user2.patch |
26 |
|
Patch13: %{name}-%{version}-ibay_password.patch |
27 |
|
Patch14: %{name}-%{version}-fix-indention.patch |
28 |
|
Patch15: %{name}-%{version}-email-domain-change.patch |
29 |
|
Patch16: %{name}-%{version}-update-admin.patch |
30 |
|
Patch17: %{name}-%{version}-empty_group.patch |
31 |
|
Patch18: e-smith-ldap-5.2.0-ldap_logs.patch |
32 |
|
Patch19: e-smith-ldap-5.2.0-force_enabled.patch |
33 |
|
Patch20: e-smith-ldap-5.2.0-index_memberuid.patch |
34 |
|
Patch21: e-smith-ldap-5.2.0-expand_slapd_on_ldap_update.patch |
35 |
|
Patch22: e-smith-ldap-5.2.0-split_acl_templates.patch |
36 |
|
Patch23: e-smith-ldap-5.2.0-exop.patch |
37 |
|
Patch24: e-smith-ldap-5.2.0-dump_ldif.patch |
38 |
|
Patch25: e-smith-ldap-5.2.0-add_computers_ou.patch |
39 |
|
Patch26: e-smith-ldap-5.2.0-add_posixaccount_attr_in_ldap.patch |
40 |
|
Patch27: e-smith-ldap-5.2.0-full_path_to_config.patch |
41 |
|
Patch28: e-smith-ldap-5.2.0-add_samba_attr_in_ldap.patch |
42 |
|
Patch29: e-smith-ldap-5.2.0-code_cleanup.patch |
43 |
|
Patch30: e-smith-ldap-5.2.0-base_oid.patch |
44 |
|
Patch31: e-smith-ldap-5.2.0-rename_old_record.patch |
45 |
|
Patch32: e-smith-ldap-5.2.0-add_ibay_machine.patch |
46 |
|
Patch33: e-smith-ldap-5.2.0-rename_old_record_fix.patch |
47 |
|
Patch34: e-smith-ldap-5.2.0-rename_old_record_fix2.patch |
48 |
|
Patch35: e-smith-ldap-5.2.0-delete_extra_items.patch |
49 |
|
Patch36: e-smith-ldap-5.2.0-ldif_template.patch |
50 |
|
Patch37: e-smith-ldap-5.2.0-fix_ldap_delete.patch |
51 |
|
Patch38: e-smith-ldap-5.2.0-better_ldif.patch |
52 |
|
Patch39: e-smith-ldap-5.2.0-ldap_update_several_groups.patch |
53 |
|
Patch40: e-smith-ldap-5.2.0-anonymous_acl.patch |
54 |
|
Patch41: e-smith-ldap-5.2.0-users_acl.patch |
55 |
|
Patch42: e-smith-ldap-5.2.0-toggle_anonymous_access.patch |
56 |
|
Patch43: e-smith-ldap-5.2.0-fix_anonymous_toggle.patch |
57 |
|
Patch44: e-smith-ldap-5.2.0-link_ldap_update.patch |
58 |
|
Patch45: e-smith-ldap-5.2.0-update_group_membership_on_delete.patch |
59 |
|
Patch46: e-smith-ldap-5.2.0-ldap_update_later.patch |
60 |
|
Patch47: e-smith-ldap-5.2.0-allow_authenticated_users_to_read_attrs.patch |
61 |
|
Patch48: e-smith-ldap-5.2.0-add_nobody_and_shared_in_ldap.patch |
62 |
|
Patch49: e-smith-ldap-5.2.0-fix_nobody_and_shared_group.patch |
63 |
|
Patch50: e-smith-ldap-5.2.0-add_www_move_nobody.patch |
64 |
|
Patch51: e-smith-ldap-5.2.0-fix_ldap_update.patch |
65 |
|
Patch52: e-smith-ldap-5.2.0-ldap-init-script.patch |
66 |
|
Patch53: e-smith-ldap-5.2.0-enable_ldap_init.patch |
67 |
|
Patch54: e-smith-ldap-5.2.0-ldap-auth.patch |
68 |
|
Patch55: e-smith-ldap-5.2.0-unix-cleanup.patch |
69 |
|
Patch56: e-smith-ldap-5.2.0-group-attrs.patch |
70 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
71 |
BuildArchitectures: noarch |
BuildArchitectures: noarch |
72 |
Requires: e-smith-base |
Requires: e-smith-base |
73 |
Requires: e-smith-lib >= 1.15.1-16 |
Requires: e-smith-lib >= 1.15.1-16 |
74 |
Requires: openldap >= 2.0.0, perl(Net::LDAP) |
Requires: openldap >= 2.0.0 |
75 |
|
Requires: openldap-clients |
76 |
|
Requires: perl(Net::LDAP) |
77 |
Requires: e-smith-formmagick >= 1.4.0-9 |
Requires: e-smith-formmagick >= 1.4.0-9 |
78 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
79 |
AutoReqProv: no |
AutoReqProv: no |
82 |
e-smith server and gateway software - LDAP module. |
e-smith server and gateway software - LDAP module. |
83 |
|
|
84 |
%changelog |
%changelog |
85 |
|
* Thu Nov 4 2010 Shad L. Lords <slords@mail.com> 5.2.0-61.sme |
86 |
|
- Apply correct patch for group descriptions/password [SME: 6337] |
87 |
|
|
88 |
|
* Thu Nov 4 2010 Shad L. Lords <slords@mail.com> 5.2.0-60.sme |
89 |
|
- groups don't have password, some don't have description [SME: 6337] |
90 |
|
|
91 |
|
* Tue Nov 2 2010 Shad L. Lords <slords@mail.com> 5.2.0-59.sme |
92 |
|
- Remove unix users/groups if ldap is master [SME: 6325] |
93 |
|
|
94 |
|
* Tue Nov 2 2010 Shad L. Lords <slords@mail.com> 5.2.0-58.sme |
95 |
|
- Disable ldap-delete if ldap is master [SME: 6324] |
96 |
|
|
97 |
|
* Tue Nov 02 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-57.sme |
98 |
|
- Enable the new ldap.init service [SME: 6231] |
99 |
|
|
100 |
|
* Sat Oct 30 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-56.sme |
101 |
|
- Fix a small typo in reset-ldap-bootstrap [SME: 6231] |
102 |
|
|
103 |
|
* Fri Oct 29 2010 Shad L. Lords <slords@mail.com> 5.2.0-55.sme |
104 |
|
- Add ldap.init script to allow update on reconfig/reboot [SME: 6231] |
105 |
|
|
106 |
|
* Thu Oct 28 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-54.sme |
107 |
|
- Fix minor errors in ldap-update [SME: 6312] |
108 |
|
|
109 |
|
* Wed Oct 27 2010 Shad L. Lords <slords@mail.com> 5.2.0-53.sme |
110 |
|
- Add www user/group to ldap [SME: 6312] |
111 |
|
|
112 |
|
* Wed Oct 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-52.sme |
113 |
|
- Fixes for nobody and shared groups [SME: 6310] |
114 |
|
|
115 |
|
* Wed Oct 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-51.sme |
116 |
|
- Add nobody and shared groups in LDAP [SME: 6310] |
117 |
|
|
118 |
|
* Thu Oct 14 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-50.sme |
119 |
|
- Allow authenticated users to read posixAccount and shadowAccount attrs [SME: 6254] |
120 |
|
|
121 |
|
* Wed Oct 13 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-49.sme |
122 |
|
- call ldap-update later during group and user creation [SME: 6284] |
123 |
|
|
124 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-48.sme |
125 |
|
- Update group membership for deleted accounts [SME: 6276] |
126 |
|
|
127 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-47.sme |
128 |
|
- Don't call ldap-update on deleted accounts [SME: 6239] |
129 |
|
|
130 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-46.sme |
131 |
|
- Link ldap-update scripts in needed events [SME: 6239] |
132 |
|
|
133 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-45.sme |
134 |
|
- Fix toggle anonymous access [SME: 6255] |
135 |
|
|
136 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-44.sme |
137 |
|
- Toggle anonymous access with AnonymousAccess property [SME: 6255] |
138 |
|
|
139 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-43.sme |
140 |
|
- Allow authenticated users to see more than just their own entry [SME: 6079] |
141 |
|
|
142 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-42.sme |
143 |
|
- Deny access to some attributes for anonymous users [SME: 6254] |
144 |
|
|
145 |
|
* Mon Sep 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-41.sme |
146 |
|
- Add ldap-update support for several accounts [SME: 6249] |
147 |
|
|
148 |
|
* Mon Sep 27 2010 Shad L. Lords <slords@mail.com> 5.2.0-40.sme |
149 |
|
- Make ldif template create single hash [SME: 6240] |
150 |
|
|
151 |
|
* Mon Sep 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-39.sme |
152 |
|
- Fix ldap-delete script [SME: 6238] |
153 |
|
|
154 |
|
* Sun Sep 26 2010 Shad L. Lords <slords@mail.com> 5.2.0-38.sme |
155 |
|
- Update ldif template to match stored data [SME: 6240] |
156 |
|
|
157 |
|
* Sun Sep 26 2010 Shad L. Lords <slords@mail.com> 5.2.0-37.sme |
158 |
|
- Delete all ldap objects that we now create [SME: 6238] |
159 |
|
|
160 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-36.sme |
161 |
|
- Ensure required attributes are present for rename [SME: 6235] |
162 |
|
|
163 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-35.sme |
164 |
|
- Fix old record lookups from sme7 [SME: 6235] |
165 |
|
|
166 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-34.sme |
167 |
|
- Add ibay and machine accounts into ldap [SME: 6236] |
168 |
|
|
169 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-33.sme |
170 |
|
- Rename old ldap record from sme7 if exists [SME: 6235] |
171 |
|
|
172 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-32.sme |
173 |
|
- Fix/add base ou entries needed for new schema [SME: 6234] |
174 |
|
|
175 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-31.sme |
176 |
|
- Rewrite ldap-update to make adding classes easier [SME: 6233] |
177 |
|
|
178 |
|
* Fri Sep 24 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-30.sme |
179 |
|
- Add sambaSamAccount attributes in LDAP [SME: 6232] |
180 |
|
|
181 |
|
* Thu Sep 23 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-29.sme |
182 |
|
- Use full path to config in the run script [SME: 6222] |
183 |
|
|
184 |
|
* Thu Sep 23 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-28.sme |
185 |
|
- Add posixAccount attributes in LDAP [SME: 6074] |
186 |
|
|
187 |
|
* Thu Sep 23 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-27.sme |
188 |
|
- Create the Computers OU [SME: 6230] |
189 |
|
|
190 |
|
* Thu Sep 23 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-26.sme |
191 |
|
- Dump ldap data during the pre-backup event [SME: 6226] |
192 |
|
|
193 |
|
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-25.sme |
194 |
|
- Send slapd logs in /var/log/ldap (multilog) [SME: 6222] |
195 |
|
- Force the service to be enabled [SME: 6221] |
196 |
|
- Indexe memberUid attribute [SME: 6220] |
197 |
|
- Expand slapd.conf during ldap-update event [SME: 6224] |
198 |
|
- Split slapd ACL template [SME: 6225] |
199 |
|
- Prevent users from reading their password over a unsecured link [SME: 6252] |
200 |
|
- Use md5crypt hash when client requests exop [SME: 6223] |
201 |
|
|
202 |
|
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-24.sme |
203 |
|
- Restrict access to the ldif file [SME: 6217] |
204 |
|
|
205 |
|
* Tue Jun 10 2010 Jonathan Martens <smeserver-contribs@snetram.nl> 5.2.0-23.sme |
206 |
|
- Fix ldap-create errors when adding empty groups [SME: 5920] |
207 |
|
|
208 |
|
* Mon Jun 7 2010 Federico Simoncelli <federico.simoncelli@gmail.com> 5.2.0-22.sme |
209 |
|
- Update email addresses on domain change (thanks Daniel) [SME: 5984] |
210 |
|
- Update admin information (thanks Daniel) [SME: 6014] |
211 |
|
|
212 |
|
* Tue May 4 2010 Jonathan Martens <smeserver-contribs@snetram.nl> 5.2.0-21.sme |
213 |
|
- Fix indentation in S25ldap-update script [SME: 5914] |
214 |
|
|
215 |
|
* Fri Apr 30 2010 Filippo Carletti <filippo.carletti@gmail.com> 5.2.0-20.sme |
216 |
|
- Don't try to save ibay password to ldap [SME: 5906] |
217 |
|
|
218 |
|
* Mon Mar 1 2010 Daniel B. <daniel@firewall-services.com> 5.2.0-19.sme |
219 |
|
- Fix bug reference in spec file |
220 |
|
|
221 |
|
* Mon Mar 1 2010 Filippo Carletti <filippo.carletti@gmail.com> 5.2.0-18.sme |
222 |
|
- Fix admin user password change (Daniel B.) [SME: 5810] |
223 |
|
|
224 |
|
* Tue Feb 9 2010 Filippo Carletti <filippo.carletti@gmail.com> 5.2.0-17.sme |
225 |
|
- Init database if the ldif dump is empty (ie from sme8b) [SME: 5747] |
226 |
|
|
227 |
|
* Fri Feb 5 2010 Stephen Noble <support@dungog.net> 5.2.0-16.sme |
228 |
|
- revert re-init database [SME:5747] |
229 |
|
|
230 |
|
* Fri Feb 5 2010 Stephen Noble <support@dungog.net> 5.2.0-15.sme |
231 |
|
- re-init readonly database on post-upgrade [SME:5747] |
232 |
|
|
233 |
* Thu Feb 4 2010 Daniel B. <daniel@firewall-services.com> 5.2.0-14.sme |
* Thu Feb 4 2010 Daniel B. <daniel@firewall-services.com> 5.2.0-14.sme |
234 |
- Force SSL/TLS for remote authentication [SME: 5748] |
- Force SSL/TLS for remote authentication [SME: 5748] |
235 |
|
|
932 |
%patch8 -p1 |
%patch8 -p1 |
933 |
%patch9 -p1 |
%patch9 -p1 |
934 |
%patch10 -p1 |
%patch10 -p1 |
935 |
|
%patch11 -p1 |
936 |
|
%patch12 -p1 |
937 |
|
%patch13 -p1 |
938 |
|
%patch14 -p1 |
939 |
|
%patch15 -p1 |
940 |
|
%patch16 -p1 |
941 |
|
%patch17 -p1 |
942 |
|
%patch18 -p1 |
943 |
|
%patch19 -p1 |
944 |
|
%patch20 -p1 |
945 |
|
%patch21 -p1 |
946 |
|
%patch22 -p1 |
947 |
|
%patch23 -p1 |
948 |
|
%patch24 -p1 |
949 |
|
%patch25 -p1 |
950 |
|
%patch26 -p1 |
951 |
|
%patch27 -p1 |
952 |
|
%patch28 -p1 |
953 |
|
%patch29 -p1 |
954 |
|
%patch30 -p1 |
955 |
|
%patch31 -p1 |
956 |
|
%patch32 -p1 |
957 |
|
%patch33 -p1 |
958 |
|
%patch34 -p1 |
959 |
|
%patch35 -p1 |
960 |
|
%patch36 -p1 |
961 |
|
%patch37 -p1 |
962 |
|
%patch38 -p1 |
963 |
|
%patch39 -p1 |
964 |
|
%patch40 -p1 |
965 |
|
%patch41 -p1 |
966 |
|
%patch42 -p1 |
967 |
|
%patch43 -p1 |
968 |
|
%patch44 -p1 |
969 |
|
%patch45 -p1 |
970 |
|
%patch46 -p1 |
971 |
|
%patch47 -p1 |
972 |
|
%patch48 -p1 |
973 |
|
%patch49 -p1 |
974 |
|
%patch50 -p1 |
975 |
|
%patch51 -p1 |
976 |
|
%patch52 -p1 |
977 |
|
%patch53 -p1 |
978 |
|
%patch54 -p1 |
979 |
|
%patch55 -p1 |
980 |
|
%patch56 -p1 |
981 |
|
|
982 |
%build |
%build |
983 |
mkdir -p root/etc/e-smith/tests |
mkdir -p root/etc/e-smith/tests |
984 |
perl createlinks |
perl createlinks |
985 |
mkdir -p root/etc/rc.d/rc7.d |
mkdir -p root/etc/rc.d/rc7.d |
986 |
ln -s /etc/rc.d/init.d/e-smith-service root/etc/rc.d/rc7.d/S80ldap |
ln -s /etc/rc.d/init.d/e-smith-service root/etc/rc.d/rc7.d/S77ldap |
987 |
mkdir -p root/home/e-smith/db/ldap |
mkdir -p root/home/e-smith/db/ldap |
988 |
|
|
989 |
mkdir -p root/etc/rc.d/init.d/supervise |
mkdir -p root/etc/rc.d/init.d/supervise |
994 |
touch root/var/service/ldap/down |
touch root/var/service/ldap/down |
995 |
|
|
996 |
mkdir -p root/var/log/bdb |
mkdir -p root/var/log/bdb |
997 |
|
mkdir -p root/var/log/ldap |
998 |
mkdir -p root/var/service/ldap/ssl |
mkdir -p root/var/service/ldap/ssl |
999 |
|
mkdir -p root/etc/e-smith/ldap/init |
1000 |
|
|
1001 |
%install |
%install |
1002 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
1004 |
rm -f %{name}-%{version}-%{release}-filelist |
rm -f %{name}-%{version}-%{release}-filelist |
1005 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1006 |
--file /var/service/ldap/run 'attr(0750,root,root)' \ |
--file /var/service/ldap/run 'attr(0750,root,root)' \ |
1007 |
|
--file /var/service/ldap/log/run 'attr(0750,root,root)' \ |
1008 |
--file /var/service/ldap/convert_ldif 'attr(0750,root,root)' \ |
--file /var/service/ldap/convert_ldif 'attr(0750,root,root)' \ |
1009 |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
1010 |
--file /var/service/ldap/control/1 'attr(0750,root,root)' \ |
--file /var/service/ldap/control/1 'attr(0750,root,root)' \ |
1011 |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |
1012 |
|
--dir /home/e-smith/db/ldap 'attr(0750,root,ldap)' \ |
1013 |
|
--dir /var/log/ldap 'attr(0750,smelog,smelog)' \ |
1014 |
> %{name}-%{version}-%{release}-filelist |
> %{name}-%{version}-%{release}-filelist |
1015 |
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
1016 |
|
|