1 |
jpp |
1.18 |
# $Id: e-smith-radiusd.spec,v 1.17 2021/05/31 04:12:24 jpp Exp $ |
2 |
stephdl |
1.1 |
|
3 |
|
|
Summary: e-smith server and gateway - configure PPTP inbound VPN |
4 |
|
|
%define name e-smith-radiusd |
5 |
|
|
Name: %{name} |
6 |
|
|
%define version 2.6.0 |
7 |
jpp |
1.18 |
%define release 15 |
8 |
stephdl |
1.1 |
Version: %{version} |
9 |
|
|
Release: %{release}%{?dist} |
10 |
|
|
License: GPL |
11 |
|
|
Group: Networking/Daemons |
12 |
|
|
Source: %{name}-%{version}.tar.xz |
13 |
unnilennium |
1.2 |
Patch0: e-smith-radiusd-2.6.0-freeradius3.patch |
14 |
unnilennium |
1.4 |
Patch1: e-smith-radiusd-2.6.0-freeradius3bis.patch |
15 |
unnilennium |
1.6 |
Patch2: e-smith-radiusd-2.6.0-freeradius3ter.patch |
16 |
jpp |
1.9 |
Patch3: e-smith-radiusd-2.6.0-bz10853.patch |
17 |
jpp |
1.10 |
Patch4: e-smith-radiusd-2.6.0-bz11113-bz11155-systemd-update.patch |
18 |
jpp |
1.16 |
Patch5: e-smith-radiusd-2.6.0-bz11302.patch |
19 |
jpp |
1.17 |
Patch6: e-smith-radiusd-2.6.0-bz11602-ssl-template.patch |
20 |
jpp |
1.9 |
|
21 |
stephdl |
1.1 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
22 |
|
|
Requires: e-smith-base >= 4.13.16-27 |
23 |
|
|
Requires: e-smith-lib >= 1.15.1-16 |
24 |
|
|
Requires: freeradius >= 2.1.12 |
25 |
|
|
Requires: freeradius-ldap >= 2.1.12 |
26 |
|
|
Requires: radiusclient-ng >= 0.5.6 |
27 |
|
|
Obsoletes: radiusclient <= 0.3.2 |
28 |
|
|
BuildRequires: e-smith-devtools >= 1.13.1-03 |
29 |
|
|
BuildArchitectures: noarch |
30 |
|
|
%define stunnelid 451 |
31 |
|
|
|
32 |
|
|
%description |
33 |
|
|
e-smith server and gateway - configure radius server |
34 |
|
|
|
35 |
|
|
%changelog |
36 |
jpp |
1.18 |
* Wed Jun 02 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-15.sme |
37 |
|
|
- remove services2adjust in bootstrap-console-save event, this put systemd in a loop [SME: 11602] |
38 |
|
|
|
39 |
jpp |
1.17 |
* Mon May 31 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-14.sme |
40 |
|
|
- ssl pem using template in place of copy [SME: 11602] |
41 |
|
|
|
42 |
jpp |
1.16 |
* Sun Jan 03 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-13.sme |
43 |
|
|
- radiusd needs ldap started before [SME: 11302] |
44 |
|
|
|
45 |
jpp |
1.15 |
* Sat Jan 02 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-12.sme |
46 |
|
|
- add Restart=always [SME: 11113] |
47 |
|
|
change group of pem file to radiusd |
48 |
|
|
|
49 |
jpp |
1.14 |
* Tue Dec 08 2020 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-11.sme |
50 |
jpp |
1.10 |
- create -update event [SME: 11155] |
51 |
jpp |
1.14 |
- move radiusd to systemd {SME: 11113] |
52 |
|
|
remove noise from spec file |
53 |
jpp |
1.10 |
|
54 |
jpp |
1.9 |
* Thu Dec 19 2019 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-9.sme |
55 |
|
|
- fix server restartting with virtual_server error [SME: 10853] |
56 |
|
|
|
57 |
unnilennium |
1.8 |
* Tue Apr 12 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-8.sme |
58 |
|
|
- escaped {} characters in ldap template [SME: 9434] |
59 |
|
|
|
60 |
unnilennium |
1.7 |
* Sun Apr 10 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-7.sme |
61 |
unnilennium |
1.8 |
- fix typo [SME: 9434] |
62 |
unnilennium |
1.7 |
|
63 |
unnilennium |
1.6 |
* Wed Apr 06 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-6.sme |
64 |
unnilennium |
1.8 |
- more adjustements regarding [SME: 9434] |
65 |
unnilennium |
1.4 |
- e-smith-radiusd-2.6.0-freeradius3bis.patch |
66 |
unnilennium |
1.6 |
- e-smith-radiusd-2.6.0-freeradius3ter.patch |
67 |
unnilennium |
1.4 |
|
68 |
unnilennium |
1.3 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-3.sme |
69 |
|
|
- fix directorie rpm ownership [SME: 9425] |
70 |
|
|
|
71 |
unnilennium |
1.2 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-2.sme |
72 |
|
|
- updated syntax and conf files for freeradius3 server [SME: 9409] |
73 |
|
|
|
74 |
stephdl |
1.1 |
* Fri Feb 05 2016 stephane de Labrusse <stephdl@de-labrusse.fr> 2.6.0-1.sme |
75 |
|
|
- Initial release to sme10 |
76 |
|
|
|
77 |
|
|
* Sat Jun 8 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-10.sme |
78 |
|
|
- the config file is radiusclient.conf, not radiusclient-ng.conf [SME: 7546] |
79 |
|
|
|
80 |
|
|
* Thu Jun 6 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-9.sme |
81 |
|
|
- Add templates for radiusclient-ng.conf file to remove binaddr |
82 |
|
|
directive [SME: 7546] |
83 |
|
|
|
84 |
|
|
* Sun Apr 14 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-8.sme |
85 |
|
|
- Add directive to options.pptpd so that radius plugin can find the |
86 |
|
|
radiusclient configuration file. [SME: 7546] |
87 |
|
|
|
88 |
|
|
* Sat Apr 13 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-7.sme |
89 |
|
|
- Fix permissions of /etc/radiusclient-ng/servers. [SME: 7548] |
90 |
|
|
|
91 |
|
|
* Mon Mar 11 2013 Shad L. Lords <slords@mail.com> 2.4.0-6.sme |
92 |
|
|
- Obsolete el5 version of radiusclient [SME: 7273] |
93 |
|
|
|
94 |
|
|
* Thu Feb 21 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-5.sme |
95 |
|
|
- Use the new listen directive instead of bind_address which is deprecated [SME: 7377] |
96 |
|
|
|
97 |
|
|
* Mon Feb 18 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-4.sme |
98 |
|
|
- Send log to stdout [SME: 7251] |
99 |
|
|
|
100 |
|
|
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-3.sme |
101 |
|
|
- Add requires for freeradius-ldap module [SME: 7252] |
102 |
|
|
|
103 |
|
|
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-2.sme |
104 |
|
|
- Update radiusclient to radiusclient-ng |
105 |
|
|
|
106 |
|
|
* Wed Feb 13 2013 Shad L. Lords <slords@mail.com> 2.4.0-1.sme |
107 |
|
|
- Roll new stream for sme9 |
108 |
|
|
|
109 |
|
|
* Mon Nov 1 2010 Shad L. Lords <slords@mail.com> 2.2.0-4.sme |
110 |
|
|
- Auth against ldap if it is master [SME: 6323] |
111 |
|
|
|
112 |
|
|
* Tue Oct 27 2010 Shad L. Lords <slords@mail.com> 2.2.0-3.sme |
113 |
|
|
- Add ldap as an auth type to radius [SME: 6313] |
114 |
|
|
|
115 |
|
|
* Tue Jun 2 2009 Shad L. Lords <slords@mail.com> 2.2.0-2.sme |
116 |
|
|
- Fix owner/perms for radius files [SME: 5317] |
117 |
|
|
|
118 |
|
|
* Tue Oct 7 2008 Shad L. Lords <slords@mail.com> 2.2.0-1.sme |
119 |
|
|
- Roll new stream to separate sme7/sme8 trees [SME: 4633] |
120 |
|
|
|
121 |
|
|
* Wed Aug 20 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 1.0.0-18 |
122 |
|
|
- Allow for multiple auth modules in radiusd.conf [SME: 4166] |
123 |
|
|
|
124 |
|
|
* Sat Aug 09 2008 Gavin Weight <gweight@gmail.com> 1.0.0-17 |
125 |
|
|
- Remove the Requires kernel =>2.4 line. [SME: 4483] |
126 |
|
|
|
127 |
|
|
* Fri May 18 2007 Federico Simoncelli <federico.simoncelli@gmail.com> 1.0.0-16 |
128 |
|
|
- Added support for fixed ip addresses in the pptp vpn [SME: 1230] |
129 |
|
|
|
130 |
|
|
* Sun Apr 29 2007 Shad L. Lords <slords@mail.com> |
131 |
|
|
- Clean up spec so package can be built by koji/plague |
132 |
|
|
|
133 |
|
|
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
134 |
|
|
- Fix perms on servers file [SME: 2720] |
135 |
|
|
|
136 |
|
|
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
137 |
|
|
- Fix perms on client.conf file [SME: 2708] |
138 |
|
|
|
139 |
|
|
* Wed Mar 07 2007 Shad L. Lords <slords@mail.com> 1.0.0-13 |
140 |
|
|
- Break up auth template to allow customization [SME: 2565] |
141 |
|
|
|
142 |
|
|
* Thu Dec 07 2006 Shad L. Lords <slords@mail.com> |
143 |
|
|
- Update to new release naming. No functional changes. |
144 |
|
|
- Make Packager generic |
145 |
|
|
|
146 |
|
|
* Wed Nov 30 2005 Gordon Rowell <gordonr@gormand.com.au> 1.0.0-12 |
147 |
|
|
- Bump release number only |
148 |
|
|
|
149 |
|
|
* Tue Sep 27 2005 Charlie Brady <charlieb@e-smith.com> |
150 |
|
|
- [1.0.0-11] |
151 |
|
|
- Fix run script so that output actually goes to the logger. [SF: 1280982] |
152 |
|
|
|
153 |
|
|
* Mon Sep 26 2005 Charlie Brady <charlieb@e-smith.com> |
154 |
|
|
- [1.0.0-10] |
155 |
|
|
- Make sure that the log/run script is executable, and that |
156 |
|
|
the log directory exists. [SF: 1280982] |
157 |
|
|
- Make sure that stunnel user exists, by making sure that |
158 |
|
|
%pre script works :-) (%stunnelid was not defined). |
159 |
|
|
|
160 |
|
|
* Mon Sep 26 2005 Gordon Rowell <gordonr@e-smith.com> |
161 |
|
|
- [1.0.0-9] |
162 |
|
|
- Add a log/run script [SF: 1280982] |
163 |
|
|
|
164 |
|
|
* Fri Sep 2 2005 Charlie Brady <charlieb@e-smith.com> |
165 |
|
|
- [1.0.0-8] |
166 |
|
|
- Make sure that stunnel user exists, by %pre script. |
167 |
|
|
|
168 |
|
|
* Mon Jul 18 2005 Charlie Brady <charlieb@e-smith.com> |
169 |
|
|
- [1.0.0-7] |
170 |
|
|
- [More updates from Shad.] |
171 |
|
|
- Add accounting into radiusd |
172 |
|
|
- Let radius do its own normal logging |
173 |
|
|
|
174 |
|
|
* Tue Jul 12 2005 Charlie Brady <charlieb@e-smith.com> |
175 |
|
|
- [1.0.0-6] |
176 |
|
|
- Expand /etc/raddb/users in user-lock [SF: 1225995] |
177 |
|
|
- Expand sigterm in password-modify, ldap-update [SF: 1225995] |
178 |
|
|
|
179 |
|
|
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
180 |
|
|
- [1.0.0-5] |
181 |
|
|
- Expand /etc/raddb/users in password-modify event [SF: 1215401] |
182 |
|
|
|
183 |
|
|
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
184 |
|
|
- [1.0.0-4] |
185 |
|
|
- Add missing patch to allow local hosts to be radius clients. [SF: 1215401] |
186 |
|
|
|
187 |
|
|
* Thu Jun 16 2005 Charlie Brady <charlieb@e-smith.com> |
188 |
|
|
- [1.0.0-3] |
189 |
|
|
- Use e-smith-services startup symlink for radiusd, so that 'status' |
190 |
|
|
property is honoured. [SF: 1215401] |
191 |
|
|
|
192 |
|
|
* Tue Jun 14 2005 Charlie Brady <charlieb@e-smith.com> |
193 |
|
|
- [1.0.0-2] |
194 |
|
|
- Patches from Shad to automate radiusd startup, and to allow local hosts to |
195 |
|
|
be radius clients. [SF: 1215401] |
196 |
|
|
|
197 |
|
|
* Mon Jun 13 2005 Shad L. Lords <slords@mail.com> |
198 |
|
|
- [1.0.0-1] |
199 |
|
|
- initial |
200 |
|
|
|
201 |
|
|
%prep |
202 |
|
|
%setup |
203 |
unnilennium |
1.2 |
%patch0 -p1 |
204 |
unnilennium |
1.4 |
%patch1 -p1 |
205 |
unnilennium |
1.6 |
%patch2 -p1 |
206 |
jpp |
1.9 |
%patch3 -p1 |
207 |
jpp |
1.10 |
%patch4 -p1 |
208 |
jpp |
1.13 |
rm -rf root/service root/var/service root/var/log/radiusd |
209 |
|
|
mkdir -p root/var/log/stunnel/ssl |
210 |
jpp |
1.16 |
%patch5 -p1 |
211 |
jpp |
1.17 |
%patch6 -p1 |
212 |
stephdl |
1.1 |
|
213 |
|
|
%build |
214 |
|
|
perl createlinks |
215 |
|
|
|
216 |
|
|
%install |
217 |
|
|
rm -rf $RPM_BUILD_ROOT |
218 |
|
|
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
219 |
|
|
rm -f %{name}-%{version}-%{release}-filelist |
220 |
|
|
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
221 |
jpp |
1.10 |
--file /sbin/e-smith/systemd/radiusd-configure 'attr(0554,root,root)' \ |
222 |
|
|
--file /sbin/e-smith/systemd/radiusd-certificate 'attr(0554,root,root)' \ |
223 |
stephdl |
1.1 |
--dir /var/service/radiusd 'attr(01755,root,root)' \ |
224 |
jpp |
1.11 |
--dir /var/log/stunnel 'attr(0755,stunnel,stunnel)' \ |
225 |
|
|
--dir /var/log/stunnel/ssl 'attr(0755,stunnel,stunnel)' \ |
226 |
unnilennium |
1.3 |
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb/d' \ |
227 |
|
|
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb\/mods-enabled/d' \ |
228 |
stephdl |
1.1 |
> %{name}-%{version}-%{release}-filelist |
229 |
|
|
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
230 |
|
|
|
231 |
|
|
%pre |
232 |
|
|
/sbin/e-smith/create-system-user stunnel %{stunnelid} \ |
233 |
jpp |
1.11 |
'chrooted stunnel user user' /var/log/stunnel/ssl /bin/false |
234 |
jpp |
1.10 |
if [ $1 -gt 1 ] ; then |
235 |
|
|
if [ -e /var/service/radiusd/run ] ; then |
236 |
|
|
/usr/bin/sv d radiusd |
237 |
|
|
/usr/bin/sv d radiusd/log |
238 |
|
|
fi |
239 |
|
|
fi |
240 |
|
|
|
241 |
jpp |
1.11 |
|
242 |
|
|
%clean |
243 |
|
|
rm -rf $RPM_BUILD_ROOT |
244 |
|
|
|
245 |
|
|
%files -f %{name}-%{version}-%{release}-filelist |
246 |
|
|
%defattr(-,root,root) |
247 |
|
|
|
248 |
|
|
|