1 |
# $Id: e-smith-radiusd.spec,v 1.23 2021/11/15 17:12:22 jpp Exp $ |
2 |
|
3 |
Summary: e-smith server and gateway - configure PPTP inbound VPN |
4 |
%define name e-smith-radiusd |
5 |
Name: %{name} |
6 |
%define version 2.6.0 |
7 |
%define release 21 |
8 |
Version: %{version} |
9 |
Release: %{release}%{?dist} |
10 |
License: GPL |
11 |
Group: Networking/Daemons |
12 |
Source: %{name}-%{version}.tar.xz |
13 |
Patch0: e-smith-radiusd-2.6.0-freeradius3.patch |
14 |
Patch1: e-smith-radiusd-2.6.0-freeradius3bis.patch |
15 |
Patch2: e-smith-radiusd-2.6.0-freeradius3ter.patch |
16 |
Patch3: e-smith-radiusd-2.6.0-bz10853.patch |
17 |
Patch4: e-smith-radiusd-2.6.0-bz11113-bz11155-systemd-update.patch |
18 |
Patch5: e-smith-radiusd-2.6.0-bz11302.patch |
19 |
Patch6: e-smith-radiusd-2.6.0-bz11602-ssl-template.patch |
20 |
Patch7: e-smith-radiusd-2.6.0-bz11718-WAP-auth.patch |
21 |
Patch8: e-smith-radiusd-2.6.0-bz11719-LDAP-auth.patch |
22 |
Patch9: e-smith-radiusd-2.6.0-bz11735-PAP-auth.patch |
23 |
Patch10: e-smith-radiusd-2.6.0-bz11735-add_DB_prop_PAP_auth.patch |
24 |
Patch11: e-smith-radiusd-2.6.0-bz11736-startuperror.patch |
25 |
|
26 |
BuildRoot: /var/tmp/%{name}-%{version}-%{release}-buildroot |
27 |
Requires: e-smith-base >= 4.13.16-27 |
28 |
Requires: e-smith-lib >= 1.15.1-16 |
29 |
Requires: freeradius >= 2.1.12 |
30 |
Requires: freeradius-ldap >= 2.1.12 |
31 |
Requires: radiusclient-ng >= 0.5.6 |
32 |
Obsoletes: radiusclient <= 0.3.2 |
33 |
BuildRequires: e-smith-devtools >= 1.13.1-03 |
34 |
BuildArchitectures: noarch |
35 |
%define stunnelid 451 |
36 |
|
37 |
%description |
38 |
e-smith server and gateway - configure radius server |
39 |
|
40 |
%changelog |
41 |
* Thu Nov 18 2021 Terry Fage <tfage@yahoo.com.au> 2.6.0-21.sme |
42 |
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
43 |
- patch was blank, populate and apply [SME: 11736] |
44 |
|
45 |
* Mon Nov 15 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-20.sme |
46 |
- fix startup informational message Duplicate Auth-Type 'REJECT' [SME: 11736] |
47 |
|
48 |
* Mon Nov 08 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-19.sme |
49 |
- add db property PAP-auth [SME: 11735] |
50 |
|
51 |
* Sat Nov 06 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-18.sme |
52 |
- add/fix PAP-auth patch [SME: 11735] |
53 |
|
54 |
* Thu Nov 04 2021 John H. Bennett III <bennettj@johnbennettservices.com> 2.6.0-17.sme |
55 |
- fix WAP-auth patch [SME: 11718] |
56 |
- fix LDAP-auth patch [SME: 11719] |
57 |
|
58 |
* Mon Aug 23 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-16.sme |
59 |
- fix ssl template metadata patch [SME: 11680] |
60 |
|
61 |
* Wed Jun 02 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-15.sme |
62 |
- remove services2adjust in bootstrap-console-save event, this put systemd in a loop [SME: 11602] |
63 |
|
64 |
* Mon May 31 2021 Jean-Philippe Pialasse <tests@pialasse.com> 2.6.0-14.sme |
65 |
- ssl pem using template in place of copy [SME: 11602] |
66 |
|
67 |
* Sun Jan 03 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-13.sme |
68 |
- radiusd needs ldap started before [SME: 11302] |
69 |
|
70 |
* Sat Jan 02 2021 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-12.sme |
71 |
- add Restart=always [SME: 11113] |
72 |
change group of pem file to radiusd |
73 |
|
74 |
* Tue Dec 08 2020 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-11.sme |
75 |
- create -update event [SME: 11155] |
76 |
- move radiusd to systemd {SME: 11113] |
77 |
remove noise from spec file |
78 |
|
79 |
* Thu Dec 19 2019 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-9.sme |
80 |
- fix server restartting with virtual_server error [SME: 10853] |
81 |
|
82 |
* Tue Apr 12 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-8.sme |
83 |
- escaped {} characters in ldap template [SME: 9434] |
84 |
|
85 |
* Sun Apr 10 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-7.sme |
86 |
- fix typo [SME: 9434] |
87 |
|
88 |
* Wed Apr 06 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-6.sme |
89 |
- more adjustements regarding [SME: 9434] |
90 |
- e-smith-radiusd-2.6.0-freeradius3bis.patch |
91 |
- e-smith-radiusd-2.6.0-freeradius3ter.patch |
92 |
|
93 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-3.sme |
94 |
- fix directorie rpm ownership [SME: 9425] |
95 |
|
96 |
* Fri Apr 01 2016 Jean-Philipe Pialasse <tests@pialasse.com> 2.6.0-2.sme |
97 |
- updated syntax and conf files for freeradius3 server [SME: 9409] |
98 |
|
99 |
* Fri Feb 05 2016 stephane de Labrusse <stephdl@de-labrusse.fr> 2.6.0-1.sme |
100 |
- Initial release to sme10 |
101 |
|
102 |
* Sat Jun 8 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-10.sme |
103 |
- the config file is radiusclient.conf, not radiusclient-ng.conf [SME: 7546] |
104 |
|
105 |
* Thu Jun 6 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-9.sme |
106 |
- Add templates for radiusclient-ng.conf file to remove binaddr |
107 |
directive [SME: 7546] |
108 |
|
109 |
* Sun Apr 14 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-8.sme |
110 |
- Add directive to options.pptpd so that radius plugin can find the |
111 |
radiusclient configuration file. [SME: 7546] |
112 |
|
113 |
* Sat Apr 13 2013 Charlie Brady <charlie_brady@mitel.com> 2.4.0-7.sme |
114 |
- Fix permissions of /etc/radiusclient-ng/servers. [SME: 7548] |
115 |
|
116 |
* Mon Mar 11 2013 Shad L. Lords <slords@mail.com> 2.4.0-6.sme |
117 |
- Obsolete el5 version of radiusclient [SME: 7273] |
118 |
|
119 |
* Thu Feb 21 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-5.sme |
120 |
- Use the new listen directive instead of bind_address which is deprecated [SME: 7377] |
121 |
|
122 |
* Mon Feb 18 2013 Daniel Berteaud <daniel@firewall-services.com> 2.4.0-4.sme |
123 |
- Send log to stdout [SME: 7251] |
124 |
|
125 |
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-3.sme |
126 |
- Add requires for freeradius-ldap module [SME: 7252] |
127 |
|
128 |
* Thu Feb 14 2013 Shad L. Lords <slords@mail.com> 2.4.0-2.sme |
129 |
- Update radiusclient to radiusclient-ng |
130 |
|
131 |
* Wed Feb 13 2013 Shad L. Lords <slords@mail.com> 2.4.0-1.sme |
132 |
- Roll new stream for sme9 |
133 |
|
134 |
* Mon Nov 1 2010 Shad L. Lords <slords@mail.com> 2.2.0-4.sme |
135 |
- Auth against ldap if it is master [SME: 6323] |
136 |
|
137 |
* Tue Oct 27 2010 Shad L. Lords <slords@mail.com> 2.2.0-3.sme |
138 |
- Add ldap as an auth type to radius [SME: 6313] |
139 |
|
140 |
* Tue Jun 2 2009 Shad L. Lords <slords@mail.com> 2.2.0-2.sme |
141 |
- Fix owner/perms for radius files [SME: 5317] |
142 |
|
143 |
* Tue Oct 7 2008 Shad L. Lords <slords@mail.com> 2.2.0-1.sme |
144 |
- Roll new stream to separate sme7/sme8 trees [SME: 4633] |
145 |
|
146 |
* Wed Aug 20 2008 Jonathan Martens <smeserver-contribs@snetram.nl> 1.0.0-18 |
147 |
- Allow for multiple auth modules in radiusd.conf [SME: 4166] |
148 |
|
149 |
* Sat Aug 09 2008 Gavin Weight <gweight@gmail.com> 1.0.0-17 |
150 |
- Remove the Requires kernel =>2.4 line. [SME: 4483] |
151 |
|
152 |
* Fri May 18 2007 Federico Simoncelli <federico.simoncelli@gmail.com> 1.0.0-16 |
153 |
- Added support for fixed ip addresses in the pptp vpn [SME: 1230] |
154 |
|
155 |
* Sun Apr 29 2007 Shad L. Lords <slords@mail.com> |
156 |
- Clean up spec so package can be built by koji/plague |
157 |
|
158 |
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
159 |
- Fix perms on servers file [SME: 2720] |
160 |
|
161 |
* Fri Apr 06 2007 Shad L. Lords <slords@mail.com> 1.0.0-14 |
162 |
- Fix perms on client.conf file [SME: 2708] |
163 |
|
164 |
* Wed Mar 07 2007 Shad L. Lords <slords@mail.com> 1.0.0-13 |
165 |
- Break up auth template to allow customization [SME: 2565] |
166 |
|
167 |
* Thu Dec 07 2006 Shad L. Lords <slords@mail.com> |
168 |
- Update to new release naming. No functional changes. |
169 |
- Make Packager generic |
170 |
|
171 |
* Wed Nov 30 2005 Gordon Rowell <gordonr@gormand.com.au> 1.0.0-12 |
172 |
- Bump release number only |
173 |
|
174 |
* Tue Sep 27 2005 Charlie Brady <charlieb@e-smith.com> |
175 |
- [1.0.0-11] |
176 |
- Fix run script so that output actually goes to the logger. [SF: 1280982] |
177 |
|
178 |
* Mon Sep 26 2005 Charlie Brady <charlieb@e-smith.com> |
179 |
- [1.0.0-10] |
180 |
- Make sure that the log/run script is executable, and that |
181 |
the log directory exists. [SF: 1280982] |
182 |
- Make sure that stunnel user exists, by making sure that |
183 |
%pre script works :-) (%stunnelid was not defined). |
184 |
|
185 |
* Mon Sep 26 2005 Gordon Rowell <gordonr@e-smith.com> |
186 |
- [1.0.0-9] |
187 |
- Add a log/run script [SF: 1280982] |
188 |
|
189 |
* Fri Sep 2 2005 Charlie Brady <charlieb@e-smith.com> |
190 |
- [1.0.0-8] |
191 |
- Make sure that stunnel user exists, by %pre script. |
192 |
|
193 |
* Mon Jul 18 2005 Charlie Brady <charlieb@e-smith.com> |
194 |
- [1.0.0-7] |
195 |
- [More updates from Shad.] |
196 |
- Add accounting into radiusd |
197 |
- Let radius do its own normal logging |
198 |
|
199 |
* Tue Jul 12 2005 Charlie Brady <charlieb@e-smith.com> |
200 |
- [1.0.0-6] |
201 |
- Expand /etc/raddb/users in user-lock [SF: 1225995] |
202 |
- Expand sigterm in password-modify, ldap-update [SF: 1225995] |
203 |
|
204 |
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
205 |
- [1.0.0-5] |
206 |
- Expand /etc/raddb/users in password-modify event [SF: 1215401] |
207 |
|
208 |
* Fri Jun 24 2005 Charlie Brady <charlieb@e-smith.com> |
209 |
- [1.0.0-4] |
210 |
- Add missing patch to allow local hosts to be radius clients. [SF: 1215401] |
211 |
|
212 |
* Thu Jun 16 2005 Charlie Brady <charlieb@e-smith.com> |
213 |
- [1.0.0-3] |
214 |
- Use e-smith-services startup symlink for radiusd, so that 'status' |
215 |
property is honoured. [SF: 1215401] |
216 |
|
217 |
* Tue Jun 14 2005 Charlie Brady <charlieb@e-smith.com> |
218 |
- [1.0.0-2] |
219 |
- Patches from Shad to automate radiusd startup, and to allow local hosts to |
220 |
be radius clients. [SF: 1215401] |
221 |
|
222 |
* Mon Jun 13 2005 Shad L. Lords <slords@mail.com> |
223 |
- [1.0.0-1] |
224 |
- initial |
225 |
|
226 |
%prep |
227 |
%setup |
228 |
%patch0 -p1 |
229 |
%patch1 -p1 |
230 |
%patch2 -p1 |
231 |
%patch3 -p1 |
232 |
%patch4 -p1 |
233 |
rm -rf root/service root/var/service root/var/log/radiusd |
234 |
mkdir -p root/var/log/stunnel/ssl |
235 |
%patch5 -p1 |
236 |
%patch6 -p1 |
237 |
%patch7 -p1 |
238 |
%patch8 -p1 |
239 |
%patch9 -p1 |
240 |
%patch10 -p1 |
241 |
%patch11 -p1 |
242 |
|
243 |
%build |
244 |
perl createlinks |
245 |
|
246 |
%install |
247 |
rm -rf $RPM_BUILD_ROOT |
248 |
(cd root ; find . -depth -print | cpio -dump $RPM_BUILD_ROOT) |
249 |
rm -f %{name}-%{version}-%{release}-filelist |
250 |
/sbin/e-smith/genfilelist $RPM_BUILD_ROOT \ |
251 |
--file /sbin/e-smith/systemd/radiusd-configure 'attr(0554,root,root)' \ |
252 |
--file /sbin/e-smith/systemd/radiusd-certificate 'attr(0554,root,root)' \ |
253 |
--dir /var/service/radiusd 'attr(01755,root,root)' \ |
254 |
--dir /var/log/stunnel 'attr(0755,stunnel,stunnel)' \ |
255 |
--dir /var/log/stunnel/ssl 'attr(0755,stunnel,stunnel)' \ |
256 |
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb/d' \ |
257 |
|sed -e '/%dir %attr(0755,root,root) \/etc\/raddb\/mods-enabled/d' \ |
258 |
> %{name}-%{version}-%{release}-filelist |
259 |
echo "%doc COPYING" >> %{name}-%{version}-%{release}-filelist |
260 |
|
261 |
%pre |
262 |
/sbin/e-smith/create-system-user stunnel %{stunnelid} \ |
263 |
'chrooted stunnel user user' /var/log/stunnel/ssl /bin/false |
264 |
if [ $1 -gt 1 ] ; then |
265 |
if [ -e /var/service/radiusd/run ] ; then |
266 |
/usr/bin/sv d radiusd |
267 |
/usr/bin/sv d radiusd/log |
268 |
fi |
269 |
fi |
270 |
|
271 |
|
272 |
%clean |
273 |
rm -rf $RPM_BUILD_ROOT |
274 |
|
275 |
%files -f %{name}-%{version}-%{release}-filelist |
276 |
%defattr(-,root,root) |