1 |
jpp |
1.25 |
# $Id: e-smith-radiusd.spec,v 1.24 2021/11/18 22:28:12 terryfage Exp $ |
2 |
stephdl |
1.1 |
|
3 |
|
|
Summary: e-smith server and gateway - configure PPTP inbound VPN |
4 |
|
|
%define name e-smith-radiusd |
5 |
|
|
Name: %{name} |
6 |
|
|
%define version 2.6.0 |
7 |
jpp |
1.25 |
%define release 22 |
8 |
stephdl |
1.1 |
Version: %{version} |
9 |
|
|
Release: %{release}%{?dist} |
10 |
|
|
License: GPL |
11 |
|
|
Group: Networking/Daemons |
12 |
|
|
Source: %{name}-%{version}.tar.xz |
13 |
unnilennium |
1.2 |
Patch0: e-smith-radiusd-2.6.0-freeradius3.patch |
14 |
unnilennium |
1.4 |
Patch1: e-smith-radiusd-2.6.0-freeradius3bis.patch |
15 |
unnilennium |
1.6 |
Patch2: e-smith-radiusd-2.6.0-freeradius3ter.patch |
16 |
jpp |
1.9 |
Patch3: e-smith-radiusd-2.6.0-bz10853.patch |
17 |
jpp |
1.10 |
Patch4: e-smith-radiusd-2.6.0-bz11113-bz11155-systemd-update.patch |
18 |
jpp |
1.16 |
Patch5: e-smith-radiusd-2.6.0-bz11302.patch |
19 |
jpp |
1.17 |
Patch6: e-smith-radiusd-2.6.0-bz11602-ssl-template.patch |
20 |
terryfage |
1.20 |
Patch7: e-smith-radiusd-2.6.0-bz11718-WAP-auth.patch |
21 |
|
|
Patch8: e-smith-radiusd-2.6.0-bz11719-LDAP-auth.patch |
22 |
terryfage |
1.21 |
Patch9: e-smith-radiusd-2.6.0-bz11735-PAP-auth.patch |
23 |
terryfage |
1.22 |
Patch10: e-smith-radiusd-2.6.0-bz11735-add_DB_prop_PAP_auth.patch |
24 |
jpp |
1.23 |
Patch11: e-smith-radiusd-2.6.0-bz11736-startuperror.patch |
25 |
jpp |
1.25 |
Patch12: e-smith-radiusd-2.6.0-bz11859-var-run-tmp-perms.patch |
26 |
jpp |
1.9 |
|
27 |
stephdl |
1.1 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
28 |
|
|
Requires: e-smith-base >= 4.13.16-27 |
29 |
|
|
Requires: e-smith-lib >= 1.15.1-16 |
30 |
|
|
Requires: freeradius >= 2.1.12 |
31 |
|
|
Requires: freeradius-ldap >= 2.1.12 |
32 |
|
|
Requires: radiusclient-ng >= 0.5.6 |
33 |
|
|
Obsoletes: radiusclient <= 0.3.2 |
34 |
|
|
BuildRequires: e-smith-devtools >= 1.13.1-03 |
35 |
|
|
BuildArchitectures: noarch |
36 |
|
|
%define stunnelid 451 |
37 |
|
|
|
38 |
|
|
%description |
39 |
|
|
e-smith server and gateway - configure radius server |
40 |
|
|
|
41 |
|
|
%changelog |
42 |
jpp |
1.25 |
* Thu Feb 17 2022 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-22.sme |
43 |
|
|
- workaround upstream missing definition of /var/run/radiusd/tmp [SME: 11859] |
44 |
|
|
|
45 |
terryfage |
1.24 |
* Thu Nov 18 2021 Terry Fage <tfage@yahoo.com.au> 2.6.0-21.sme |
46 |
|
|
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
47 |
|
|
- patch was blank, populate and apply [SME: 11736] |
48 |
|
|
|
49 |
jpp |
1.23 |
* Mon Nov 15 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-20.sme |
50 |
|
|
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
51 |
|
|
|
52 |
terryfage |
1.22 |
* Mon Nov 08 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-19.sme |
53 |
|
|
- add db property PAP-auth [SME: 11735] |
54 |
|
|
|
55 |
terryfage |
1.21 |
* Sat Nov 06 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-18.sme |
56 |
|
|
- add/fix PAP-auth patch [SME: 11735] |
57 |
|
|
|
58 |
terryfage |
1.20 |
* Thu Nov 04 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-17.sme |
59 |
|
|
- fix WAP-auth patch [SME: 11718] |
60 |
|
|
- fix LDAP-auth patch [SME: 11719] |
61 |
|
|
|
62 |
jpp |
1.19 |
* Mon Aug 23 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-16.sme |
63 |
|
|
- fix ssl template metadata patch [SME: 11680] |
64 |
|
|
|
65 |
jpp |
1.18 |
* Wed Jun 02 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-15.sme |
66 |
|
|
- remove services2adjust in bootstrap-console-save event, this put systemd in a loop [SME: 11602] |
67 |
|
|
|
68 |
jpp |
1.17 |
* Mon May 31 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-14.sme |
69 |
|
|
- ssl pem using template in place of copy [SME: 11602] |
70 |
|
|
|
71 |
jpp |
1.16 |
* Sun Jan 03 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-13.sme |
72 |
|
|
- radiusd needs ldap started before [SME: 11302] |
73 |
|
|
|
74 |
jpp |
1.15 |
* Sat Jan 02 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-12.sme |
75 |
|
|
- add Restart=always [SME: 11113] |
76 |
|
|
change group of pem file to radiusd |
77 |
|
|
|
78 |
jpp |
1.14 |
* Tue Dec 08 2020 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-11.sme |
79 |
jpp |
1.10 |
- create -update event [SME: 11155] |
80 |
jpp |
1.14 |
- move radiusd to systemd {SME: 11113] |
81 |
|
|
remove noise from spec file |
82 |
jpp |
1.10 |
|
83 |
jpp |
1.9 |
* Thu Dec 19 2019 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-9.sme |
84 |
|
|
- fix server restartting with virtual_server error [SME: 10853] |
85 |
|
|
|
86 |
unnilennium |
1.8 |
* Tue Apr 12 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-8.sme |
87 |
|
|
- escaped {} characters in ldap template [SME: 9434] |
88 |
|
|
|
89 |
unnilennium |
1.7 |
* Sun Apr 10 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-7.sme |
90 |
unnilennium |
1.8 |
- fix typo [SME: 9434] |
91 |
unnilennium |
1.7 |
|
92 |
unnilennium |
1.6 |
* Wed Apr 06 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-6.sme |
93 |
unnilennium |
1.8 |
- more adjustements regarding [SME: 9434] |
94 |
unnilennium |
1.4 |
- e-smith-radiusd-2.6.0-freeradius3bis.patch |
95 |
unnilennium |
1.6 |
- e-smith-radiusd-2.6.0-freeradius3ter.patch |
96 |
unnilennium |
1.4 |
|
97 |
unnilennium |
1.3 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-3.sme |
98 |
|
|
- fix directorie rpm ownership [SME: 9425] |
99 |
|
|
|
100 |
unnilennium |
1.2 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-2.sme |
101 |
|
|
- updated syntax and conf files for freeradius3 server [SME: 9409] |
102 |
|
|
|
103 |
stephdl |
1.1 |
* Fri Feb 05 2016 stephane de Labrusse <stephdl@de-labrusse.fr> 2.6.0-1.sme |
104 |
|
|
- Initial release to sme10 |
105 |
|
|
|
106 |
|
|
* Sat Jun 8 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-10.sme |
107 |
|
|
- the config file is radiusclient.conf, not radiusclient-ng.conf [SME: 7546] |
108 |
|
|
|
109 |
|
|
* Thu Jun 6 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-9.sme |
110 |
|
|
- Add templates for radiusclient-ng.conf file to remove binaddr |
111 |
|
|
directive [SME: 7546] |
112 |
|
|
|
113 |
|
|
* Sun Apr 14 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-8.sme |
114 |
|
|
- Add directive to options.pptpd so that radius plugin can find the |
115 |
|
|
radiusclient configuration file. [SME: 7546] |
116 |
|
|
|
117 |
|
|
* Sat Apr 13 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-7.sme |
118 |
|
|
- Fix permissions of /etc/radiusclient-ng/servers. [SME: 7548] |
119 |
|
|
|
120 |
|
|
* Mon Mar 11 2013 Shad L. Lords <slords@mail.com> 2.4.0-6.sme |
121 |
|
|
- Obsolete el5 version of radiusclient [SME: 7273] |
122 |
|
|
|
123 |
|
|
* Thu Feb 21 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-5.sme |
124 |
|
|
- Use the new listen directive instead of bind_address which is deprecated [SME: 7377] |
125 |
|
|
|
126 |
|
|
* Mon Feb 18 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-4.sme |
127 |
|
|
- Send log to stdout [SME: 7251] |
128 |
|
|
|
129 |
|
|
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-3.sme |
130 |
|
|
- Add requires for freeradius-ldap module [SME: 7252] |
131 |
|
|
|
132 |
|
|
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-2.sme |
133 |
|
|
- Update radiusclient to radiusclient-ng |
134 |
|
|
|
135 |
|
|
* Wed Feb 13 2013 Shad L. Lords <slords@mail.com> 2.4.0-1.sme |
136 |
|
|
- Roll new stream for sme9 |
137 |
|
|
|
138 |
|
|
* Mon Nov 1 2010 Shad L. Lords <slords@mail.com> 2.2.0-4.sme |
139 |
|
|
- Auth against ldap if it is master [SME: 6323] |
140 |
|
|
|
141 |
|
|
* Tue Oct 27 2010 Shad L. Lords <slords@mail.com> 2.2.0-3.sme |
142 |
|
|
- Add ldap as an auth type to radius [SME: 6313] |
143 |
|
|
|
144 |
|
|
* Tue Jun 2 2009 Shad L. Lords <slords@mail.com> 2.2.0-2.sme |
145 |
|
|
- Fix owner/perms for radius files [SME: 5317] |
146 |
|
|
|
147 |
|
|
* Tue Oct 7 2008 Shad L. Lords <slords@mail.com> 2.2.0-1.sme |
148 |
|
|
- Roll new stream to separate sme7/sme8 trees [SME: 4633] |
149 |
|
|
|
150 |
|
|
* Wed Aug 20 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 1.0.0-18 |
151 |
|
|
- Allow for multiple auth modules in radiusd.conf [SME: 4166] |
152 |
|
|
|
153 |
|
|
* Sat Aug 09 2008 Gavin Weight <gweight@gmail.com> 1.0.0-17 |
154 |
|
|
- Remove the Requires kernel =>2.4 line. [SME: 4483] |
155 |
|
|
|
156 |
|
|
* Fri May 18 2007 Federico Simoncelli <federico.simoncelli@gmail.com> 1.0.0-16 |
157 |
|
|
- Added support for fixed ip addresses in the pptp vpn [SME: 1230] |
158 |
|
|
|
159 |
|
|
* Sun Apr 29 2007 Shad L. Lords <slords@mail.com> |
160 |
|
|
- Clean up spec so package can be built by koji/plague |
161 |
|
|
|
162 |
|
|
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
163 |
|
|
- Fix perms on servers file [SME: 2720] |
164 |
|
|
|
165 |
|
|
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
166 |
|
|
- Fix perms on client.conf file [SME: 2708] |
167 |
|
|
|
168 |
|
|
* Wed Mar 07 2007 Shad L. Lords <slords@mail.com> 1.0.0-13 |
169 |
|
|
- Break up auth template to allow customization [SME: 2565] |
170 |
|
|
|
171 |
|
|
* Thu Dec 07 2006 Shad L. Lords <slords@mail.com> |
172 |
|
|
- Update to new release naming. No functional changes. |
173 |
|
|
- Make Packager generic |
174 |
|
|
|
175 |
|
|
* Wed Nov 30 2005 Gordon Rowell <gordonr@gormand.com.au> 1.0.0-12 |
176 |
|
|
- Bump release number only |
177 |
|
|
|
178 |
|
|
* Tue Sep 27 2005 Charlie Brady <charlieb@e-smith.com> |
179 |
|
|
- [1.0.0-11] |
180 |
|
|
- Fix run script so that output actually goes to the logger. [SF: 1280982] |
181 |
|
|
|
182 |
|
|
* Mon Sep 26 2005 Charlie Brady <charlieb@e-smith.com> |
183 |
|
|
- [1.0.0-10] |
184 |
|
|
- Make sure that the log/run script is executable, and that |
185 |
|
|
the log directory exists. [SF: 1280982] |
186 |
|
|
- Make sure that stunnel user exists, by making sure that |
187 |
|
|
%pre script works :-) (%stunnelid was not defined). |
188 |
|
|
|
189 |
|
|
* Mon Sep 26 2005 Gordon Rowell <gordonr@e-smith.com> |
190 |
|
|
- [1.0.0-9] |
191 |
|
|
- Add a log/run script [SF: 1280982] |
192 |
|
|
|
193 |
|
|
* Fri Sep 2 2005 Charlie Brady <charlieb@e-smith.com> |
194 |
|
|
- [1.0.0-8] |
195 |
|
|
- Make sure that stunnel user exists, by %pre script. |
196 |
|
|
|
197 |
|
|
* Mon Jul 18 2005 Charlie Brady <charlieb@e-smith.com> |
198 |
|
|
- [1.0.0-7] |
199 |
|
|
- [More updates from Shad.] |
200 |
|
|
- Add accounting into radiusd |
201 |
|
|
- Let radius do its own normal logging |
202 |
|
|
|
203 |
|
|
* Tue Jul 12 2005 Charlie Brady <charlieb@e-smith.com> |
204 |
|
|
- [1.0.0-6] |
205 |
|
|
- Expand /etc/raddb/users in user-lock [SF: 1225995] |
206 |
|
|
- Expand sigterm in password-modify, ldap-update [SF: 1225995] |
207 |
|
|
|
208 |
|
|
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
209 |
|
|
- [1.0.0-5] |
210 |
|
|
- Expand /etc/raddb/users in password-modify event [SF: 1215401] |
211 |
|
|
|
212 |
|
|
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
213 |
|
|
- [1.0.0-4] |
214 |
|
|
- Add missing patch to allow local hosts to be radius clients. [SF: 1215401] |
215 |
|
|
|
216 |
|
|
* Thu Jun 16 2005 Charlie Brady <charlieb@e-smith.com> |
217 |
|
|
- [1.0.0-3] |
218 |
|
|
- Use e-smith-services startup symlink for radiusd, so that 'status' |
219 |
|
|
property is honoured. [SF: 1215401] |
220 |
|
|
|
221 |
|
|
* Tue Jun 14 2005 Charlie Brady <charlieb@e-smith.com> |
222 |
|
|
- [1.0.0-2] |
223 |
|
|
- Patches from Shad to automate radiusd startup, and to allow local hosts to |
224 |
|
|
be radius clients. [SF: 1215401] |
225 |
|
|
|
226 |
|
|
* Mon Jun 13 2005 Shad L. Lords <slords@mail.com> |
227 |
|
|
- [1.0.0-1] |
228 |
|
|
- initial |
229 |
|
|
|
230 |
|
|
%prep |
231 |
|
|
%setup |
232 |
unnilennium |
1.2 |
%patch0 -p1 |
233 |
unnilennium |
1.4 |
%patch1 -p1 |
234 |
unnilennium |
1.6 |
%patch2 -p1 |
235 |
jpp |
1.9 |
%patch3 -p1 |
236 |
jpp |
1.10 |
%patch4 -p1 |
237 |
jpp |
1.13 |
rm -rf root/service root/var/service root/var/log/radiusd |
238 |
|
|
mkdir -p root/var/log/stunnel/ssl |
239 |
jpp |
1.16 |
%patch5 -p1 |
240 |
jpp |
1.17 |
%patch6 -p1 |
241 |
terryfage |
1.20 |
%patch7 -p1 |
242 |
|
|
%patch8 -p1 |
243 |
terryfage |
1.21 |
%patch9 -p1 |
244 |
terryfage |
1.22 |
%patch10 -p1 |
245 |
jpp |
1.23 |
%patch11 -p1 |
246 |
jpp |
1.25 |
%patch12 -p1 |
247 |
stephdl |
1.1 |
|
248 |
|
|
%build |
249 |
|
|
perl createlinks |
250 |
|
|
|
251 |
|
|
%install |
252 |
|
|
rm -rf $RPM_BUILD_ROOT |
253 |
|
|
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
254 |
|
|
rm -f %{name}-%{version}-%{release}-filelist |
255 |
|
|
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
256 |
jpp |
1.10 |
--file /sbin/e-smith/systemd/radiusd-configure 'attr(0554,root,root)' \ |
257 |
|
|
--file /sbin/e-smith/systemd/radiusd-certificate 'attr(0554,root,root)' \ |
258 |
stephdl |
1.1 |
--dir /var/service/radiusd 'attr(01755,root,root)' \ |
259 |
jpp |
1.11 |
--dir /var/log/stunnel 'attr(0755,stunnel,stunnel)' \ |
260 |
|
|
--dir /var/log/stunnel/ssl 'attr(0755,stunnel,stunnel)' \ |
261 |
unnilennium |
1.3 |
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb/d' \ |
262 |
|
|
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb\/mods-enabled/d' \ |
263 |
stephdl |
1.1 |
> %{name}-%{version}-%{release}-filelist |
264 |
|
|
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
265 |
|
|
|
266 |
|
|
%pre |
267 |
|
|
/sbin/e-smith/create-system-user stunnel %{stunnelid} \ |
268 |
jpp |
1.11 |
'chrooted stunnel user user' /var/log/stunnel/ssl /bin/false |
269 |
jpp |
1.10 |
if [ $1 -gt 1 ] ; then |
270 |
|
|
if [ -e /var/service/radiusd/run ] ; then |
271 |
|
|
/usr/bin/sv d radiusd |
272 |
|
|
/usr/bin/sv d radiusd/log |
273 |
|
|
fi |
274 |
|
|
fi |
275 |
|
|
|
276 |
jpp |
1.11 |
|
277 |
|
|
%clean |
278 |
|
|
rm -rf $RPM_BUILD_ROOT |
279 |
|
|
|
280 |
|
|
%files -f %{name}-%{version}-%{release}-filelist |
281 |
|
|
%defattr(-,root,root) |