1 |
# $Id: e-smith-ldap.spec,v 1.45 2010/09/25 18:38:04 slords Exp $ |
# $Id: e-smith-ldap.spec,v 1.91 2012/11/13 18:23:21 vip-ire Exp $ |
2 |
|
|
3 |
Summary: e-smith server and gateway - LDAP module |
Summary: e-smith server and gateway - LDAP module |
4 |
%define name e-smith-ldap |
%define name e-smith-ldap |
5 |
Name: %{name} |
Name: %{name} |
6 |
%define version 5.2.0 |
%define version 5.2.0 |
7 |
%define release 35 |
%define release 79 |
8 |
Version: %{version} |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
Release: %{release}%{?dist} |
10 |
License: GPL |
License: GPL |
44 |
Patch31: e-smith-ldap-5.2.0-rename_old_record.patch |
Patch31: e-smith-ldap-5.2.0-rename_old_record.patch |
45 |
Patch32: e-smith-ldap-5.2.0-add_ibay_machine.patch |
Patch32: e-smith-ldap-5.2.0-add_ibay_machine.patch |
46 |
Patch33: e-smith-ldap-5.2.0-rename_old_record_fix.patch |
Patch33: e-smith-ldap-5.2.0-rename_old_record_fix.patch |
47 |
|
Patch34: e-smith-ldap-5.2.0-rename_old_record_fix2.patch |
48 |
|
Patch35: e-smith-ldap-5.2.0-delete_extra_items.patch |
49 |
|
Patch36: e-smith-ldap-5.2.0-ldif_template.patch |
50 |
|
Patch37: e-smith-ldap-5.2.0-fix_ldap_delete.patch |
51 |
|
Patch38: e-smith-ldap-5.2.0-better_ldif.patch |
52 |
|
Patch39: e-smith-ldap-5.2.0-ldap_update_several_groups.patch |
53 |
|
Patch40: e-smith-ldap-5.2.0-anonymous_acl.patch |
54 |
|
Patch41: e-smith-ldap-5.2.0-users_acl.patch |
55 |
|
Patch42: e-smith-ldap-5.2.0-toggle_anonymous_access.patch |
56 |
|
Patch43: e-smith-ldap-5.2.0-fix_anonymous_toggle.patch |
57 |
|
Patch44: e-smith-ldap-5.2.0-link_ldap_update.patch |
58 |
|
Patch45: e-smith-ldap-5.2.0-update_group_membership_on_delete.patch |
59 |
|
Patch46: e-smith-ldap-5.2.0-ldap_update_later.patch |
60 |
|
Patch47: e-smith-ldap-5.2.0-allow_authenticated_users_to_read_attrs.patch |
61 |
|
Patch48: e-smith-ldap-5.2.0-add_nobody_and_shared_in_ldap.patch |
62 |
|
Patch49: e-smith-ldap-5.2.0-fix_nobody_and_shared_group.patch |
63 |
|
Patch50: e-smith-ldap-5.2.0-add_www_move_nobody.patch |
64 |
|
Patch51: e-smith-ldap-5.2.0-fix_ldap_update.patch |
65 |
|
Patch52: e-smith-ldap-5.2.0-ldap-init-script.patch |
66 |
|
Patch53: e-smith-ldap-5.2.0-enable_ldap_init.patch |
67 |
|
Patch54: e-smith-ldap-5.2.0-ldap-auth.patch |
68 |
|
Patch55: e-smith-ldap-5.2.0-unix-cleanup.patch |
69 |
|
Patch56: e-smith-ldap-5.2.0-group-attrs.patch |
70 |
|
Patch57: e-smith-ldap-5.2.0-simple-ldap-update.patch |
71 |
|
Patch58: e-smith-ldap-5.2.0-fixe_ldif_templates.patch |
72 |
|
Patch59: e-smith-ldap-5.2.0-locked-passwd.patch |
73 |
|
Patch60: e-smith-ldap-5.2.0-startup-order.patch |
74 |
|
Patch61: e-smith-ldap-5.2.0-remove_bogus_junk.patch |
75 |
|
Patch62: e-smith-ldap-5.2.0-ldapmodify.patch |
76 |
|
Patch63: e-smith-ldap-5.2.0-fix-department.patch |
77 |
|
Patch64: e-smith-ldap-5.2.0-update-ldap-later.patch |
78 |
|
Patch65: e-smith-ldap-5.2.0-ldap-init.patch |
79 |
|
Patch66: e-smith-ldap-5.2.0-replace-logic.patch |
80 |
|
Patch67: e-smith-ldap-5.2.0-dont_set_gecos_in_ldap.patch |
81 |
|
Patch68: e-smith-ldap-5.2.0-check_slapd.conf_syntax.patch |
82 |
|
Patch69: e-smith-ldap-5.2.0-remove_bdb_logs.patch |
83 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
84 |
BuildArchitectures: noarch |
BuildArchitectures: noarch |
85 |
Requires: e-smith-base |
Requires: e-smith-base |
86 |
Requires: e-smith-lib >= 1.15.1-16 |
Requires: e-smith-lib >= 1.15.1-16 |
87 |
Requires: openldap >= 2.0.0, perl(Net::LDAP) |
Requires: openldap >= 2.0.0 |
88 |
|
Requires: openldap-clients |
89 |
|
Requires: openldap-servers |
90 |
|
Requires: perl(Net::LDAP) |
91 |
Requires: e-smith-formmagick >= 1.4.0-9 |
Requires: e-smith-formmagick >= 1.4.0-9 |
92 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
93 |
AutoReqProv: no |
AutoReqProv: no |
96 |
e-smith server and gateway software - LDAP module. |
e-smith server and gateway software - LDAP module. |
97 |
|
|
98 |
%changelog |
%changelog |
99 |
|
* Thu Feb 7 2013 Charlie Brady <charlie_brady@mitel.com> 5.2.0-79.sme |
100 |
|
- Add missing dependency on openldap-servers [SME: 7233] |
101 |
|
|
102 |
|
* Tue Nov 13 2012 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-78.sme |
103 |
|
- Fix removing old BDB log files [SME: 7166] |
104 |
|
|
105 |
|
* Tue Nov 13 2012 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-77.sme |
106 |
|
- Remove unused BDB log files [SME: 7166] |
107 |
|
|
108 |
|
* Mon Mar 14 2011 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-76.sme |
109 |
|
- Check slapd.conf syntax before trying to dump the database [SME: 6452] |
110 |
|
|
111 |
|
* Mon Mar 14 2011 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-75.sme |
112 |
|
- Stop using gecos attribute in LDAP [SME: 6539] |
113 |
|
|
114 |
|
* Wed Dec 1 2010 Shad L. Lords <slord@mail.com> 5.2.0-74.sme |
115 |
|
- Fix replace logic in ldif-fix [SME: 6423] |
116 |
|
|
117 |
|
* Wed Dec 1 2010 Shad L. Lords <slord@mail.com> 5.2.0-73.sme |
118 |
|
- Fix permissions on ldif-fix script [SME: 6244] |
119 |
|
|
120 |
|
* Wed Dec 1 2010 Shad L. Lords <slord@mail.com> 5.2.0-72.sme |
121 |
|
- Replace convert_ldif with ldif-fix script [SME: 6244] |
122 |
|
- Remove ldif template and expansion [SME: 6421] |
123 |
|
- Simplify ldap-update call by calling ldif-fix [SME: 6422] |
124 |
|
|
125 |
|
* Tue Nov 30 2010 Shad L. Lords <slord@mail.com> 5.2.0-71.sme |
126 |
|
- Update ldap database later to pick up samba group maps [SME: 6419] |
127 |
|
|
128 |
|
* Tue Nov 30 2010 Shad L. Lords <slord@mail.com> 5.2.0-70.sme |
129 |
|
- Use correct field (Dept) for ou ldap field [SME: 6417] |
130 |
|
|
131 |
|
* Tue Nov 30 2010 Shad L. Lords <slord@mail.com> 5.2.0-69.sme |
132 |
|
- Add rfc2739.schem back in and include in config so upgrades work [SME: 5159] |
133 |
|
|
134 |
|
* Tue Nov 30 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-68.sme |
135 |
|
- Use ldapmodify to load ldif, add -a if no changetype [SME: 6413] |
136 |
|
|
137 |
|
* Tue Nov 23 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-67.sme |
138 |
|
- Remove bogus junk attribute from ldif templates [SME: 6396] |
139 |
|
|
140 |
|
* Mon Nov 22 2010 Shad L. Lords <slord@mail.com> 5.2.0-66.sme |
141 |
|
- Change startup order for ldap [SME: 6390] |
142 |
|
|
143 |
|
* Thu Nov 11 2010 Shad L. Lords <slord@mail.com> 5.2.0-65.sme |
144 |
|
- Store locked password instead of expired password [SME: 6360] |
145 |
|
|
146 |
|
* Wed Nov 10 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-64.sme |
147 |
|
- Fixed ldif templates error [SME: 6356] |
148 |
|
|
149 |
|
* Mon Nov 8 2010 Shad L. Lords <slords@mail.com> 5.2.0-63.sme |
150 |
|
- Simplify ldap-update for most events [SME: 6354] |
151 |
|
|
152 |
|
* Fri Nov 5 2010 Shad L. Lords <slords@mail.com> 5.2.0-62.sme |
153 |
|
- Adjust call to ldap-update later create/modify/delete [SME: 6284] |
154 |
|
|
155 |
|
* Thu Nov 4 2010 Shad L. Lords <slords@mail.com> 5.2.0-61.sme |
156 |
|
- Apply correct patch for group descriptions/password [SME: 6337] |
157 |
|
|
158 |
|
* Thu Nov 4 2010 Shad L. Lords <slords@mail.com> 5.2.0-60.sme |
159 |
|
- groups don't have password, some don't have description [SME: 6337] |
160 |
|
|
161 |
|
* Tue Nov 2 2010 Shad L. Lords <slords@mail.com> 5.2.0-59.sme |
162 |
|
- Remove unix users/groups if ldap is master [SME: 6325] |
163 |
|
|
164 |
|
* Tue Nov 2 2010 Shad L. Lords <slords@mail.com> 5.2.0-58.sme |
165 |
|
- Disable ldap-delete if ldap is master [SME: 6324] |
166 |
|
|
167 |
|
* Tue Nov 02 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-57.sme |
168 |
|
- Enable the new ldap.init service [SME: 6231] |
169 |
|
|
170 |
|
* Sat Oct 30 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-56.sme |
171 |
|
- Fix a small typo in reset-ldap-bootstrap [SME: 6231] |
172 |
|
|
173 |
|
* Fri Oct 29 2010 Shad L. Lords <slords@mail.com> 5.2.0-55.sme |
174 |
|
- Add ldap.init script to allow update on reconfig/reboot [SME: 6231] |
175 |
|
|
176 |
|
* Thu Oct 28 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-54.sme |
177 |
|
- Fix minor errors in ldap-update [SME: 6312] |
178 |
|
|
179 |
|
* Wed Oct 27 2010 Shad L. Lords <slords@mail.com> 5.2.0-53.sme |
180 |
|
- Add www user/group to ldap [SME: 6312] |
181 |
|
|
182 |
|
* Wed Oct 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-52.sme |
183 |
|
- Fixes for nobody and shared groups [SME: 6310] |
184 |
|
|
185 |
|
* Wed Oct 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-51.sme |
186 |
|
- Add nobody and shared groups in LDAP [SME: 6310] |
187 |
|
|
188 |
|
* Thu Oct 14 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-50.sme |
189 |
|
- Allow authenticated users to read posixAccount and shadowAccount attrs [SME: 6254] |
190 |
|
|
191 |
|
* Wed Oct 13 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-49.sme |
192 |
|
- call ldap-update later during group and user creation [SME: 6284] |
193 |
|
|
194 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-48.sme |
195 |
|
- Update group membership for deleted accounts [SME: 6276] |
196 |
|
|
197 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-47.sme |
198 |
|
- Don't call ldap-update on deleted accounts [SME: 6239] |
199 |
|
|
200 |
|
* Thu Oct 7 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-46.sme |
201 |
|
- Link ldap-update scripts in needed events [SME: 6239] |
202 |
|
|
203 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-45.sme |
204 |
|
- Fix toggle anonymous access [SME: 6255] |
205 |
|
|
206 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-44.sme |
207 |
|
- Toggle anonymous access with AnonymousAccess property [SME: 6255] |
208 |
|
|
209 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-43.sme |
210 |
|
- Allow authenticated users to see more than just their own entry [SME: 6079] |
211 |
|
|
212 |
|
* Sat Oct 2 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-42.sme |
213 |
|
- Deny access to some attributes for anonymous users [SME: 6254] |
214 |
|
|
215 |
|
* Mon Sep 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-41.sme |
216 |
|
- Add ldap-update support for several accounts [SME: 6249] |
217 |
|
|
218 |
|
* Mon Sep 27 2010 Shad L. Lords <slords@mail.com> 5.2.0-40.sme |
219 |
|
- Make ldif template create single hash [SME: 6240] |
220 |
|
|
221 |
|
* Mon Sep 27 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-39.sme |
222 |
|
- Fix ldap-delete script [SME: 6238] |
223 |
|
|
224 |
|
* Sun Sep 26 2010 Shad L. Lords <slords@mail.com> 5.2.0-38.sme |
225 |
|
- Update ldif template to match stored data [SME: 6240] |
226 |
|
|
227 |
|
* Sun Sep 26 2010 Shad L. Lords <slords@mail.com> 5.2.0-37.sme |
228 |
|
- Delete all ldap objects that we now create [SME: 6238] |
229 |
|
|
230 |
|
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-36.sme |
231 |
|
- Ensure required attributes are present for rename [SME: 6235] |
232 |
|
|
233 |
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-35.sme |
* Sat Sep 25 2010 Shad L. Lords <slords@mail.com> 5.2.0-35.sme |
234 |
- Fix old record lookups from sme7 [SME: 6235] |
- Fix old record lookups from sme7 [SME: 6235] |
235 |
|
|
266 |
- Indexe memberUid attribute [SME: 6220] |
- Indexe memberUid attribute [SME: 6220] |
267 |
- Expand slapd.conf during ldap-update event [SME: 6224] |
- Expand slapd.conf during ldap-update event [SME: 6224] |
268 |
- Split slapd ACL template [SME: 6225] |
- Split slapd ACL template [SME: 6225] |
269 |
|
- Prevent users from reading their password over a unsecured link [SME: 6252] |
270 |
- Use md5crypt hash when client requests exop [SME: 6223] |
- Use md5crypt hash when client requests exop [SME: 6223] |
271 |
|
|
272 |
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-24.sme |
* Wed Sep 22 2010 Daniel Berteaud <daniel@firewall-services.com> 5.2.0-24.sme |
1025 |
%patch31 -p1 |
%patch31 -p1 |
1026 |
%patch32 -p1 |
%patch32 -p1 |
1027 |
%patch33 -p1 |
%patch33 -p1 |
1028 |
|
%patch34 -p1 |
1029 |
|
%patch35 -p1 |
1030 |
|
%patch36 -p1 |
1031 |
|
%patch37 -p1 |
1032 |
|
%patch38 -p1 |
1033 |
|
%patch39 -p1 |
1034 |
|
%patch40 -p1 |
1035 |
|
%patch41 -p1 |
1036 |
|
%patch42 -p1 |
1037 |
|
%patch43 -p1 |
1038 |
|
%patch44 -p1 |
1039 |
|
%patch45 -p1 |
1040 |
|
%patch46 -p1 |
1041 |
|
%patch47 -p1 |
1042 |
|
%patch48 -p1 |
1043 |
|
%patch49 -p1 |
1044 |
|
%patch50 -p1 |
1045 |
|
%patch51 -p1 |
1046 |
|
%patch52 -p1 |
1047 |
|
%patch53 -p1 |
1048 |
|
%patch54 -p1 |
1049 |
|
%patch55 -p1 |
1050 |
|
%patch56 -p1 |
1051 |
|
%patch57 -p1 |
1052 |
|
%patch58 -p1 |
1053 |
|
%patch59 -p1 |
1054 |
|
%patch60 -p1 |
1055 |
|
%patch61 -p1 |
1056 |
|
%patch62 -p1 |
1057 |
|
%patch63 -p1 |
1058 |
|
%patch64 -p1 |
1059 |
|
%patch65 -p1 |
1060 |
|
%patch66 -p1 |
1061 |
|
%patch67 -p1 |
1062 |
|
%patch68 -p1 |
1063 |
|
%patch69 -p1 |
1064 |
|
|
1065 |
%build |
%build |
1066 |
mkdir -p root/etc/e-smith/tests |
mkdir -p root/etc/e-smith/tests |
1067 |
perl createlinks |
perl createlinks |
|
mkdir -p root/etc/rc.d/rc7.d |
|
|
ln -s /etc/rc.d/init.d/e-smith-service root/etc/rc.d/rc7.d/S80ldap |
|
1068 |
mkdir -p root/home/e-smith/db/ldap |
mkdir -p root/home/e-smith/db/ldap |
1069 |
|
|
1070 |
mkdir -p root/etc/rc.d/init.d/supervise |
mkdir -p root/etc/rc.d/init.d/supervise |
1077 |
mkdir -p root/var/log/bdb |
mkdir -p root/var/log/bdb |
1078 |
mkdir -p root/var/log/ldap |
mkdir -p root/var/log/ldap |
1079 |
mkdir -p root/var/service/ldap/ssl |
mkdir -p root/var/service/ldap/ssl |
1080 |
|
mkdir -p root/etc/e-smith/ldap/init |
1081 |
|
|
1082 |
%install |
%install |
1083 |
rm -rf $RPM_BUILD_ROOT |
rm -rf $RPM_BUILD_ROOT |
1086 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
1087 |
--file /var/service/ldap/run 'attr(0750,root,root)' \ |
--file /var/service/ldap/run 'attr(0750,root,root)' \ |
1088 |
--file /var/service/ldap/log/run 'attr(0750,root,root)' \ |
--file /var/service/ldap/log/run 'attr(0750,root,root)' \ |
1089 |
--file /var/service/ldap/convert_ldif 'attr(0750,root,root)' \ |
--file /var/service/ldap/ldif-fix 'attr(0750,root,root)' \ |
1090 |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
--file /var/service/ldap/finish 'attr(0750,root,root)' \ |
1091 |
--file /var/service/ldap/control/1 'attr(0750,root,root)' \ |
--file /var/service/ldap/control/1 'attr(0750,root,root)' \ |
1092 |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |
--dir /var/log/bdb 'attr(0700,ldap,ldap)' \ |