6 |
#%%dump |
#%%dump |
7 |
|
|
8 |
%define name rkhunter |
%define name rkhunter |
9 |
%define ver 1.3.0 |
%define ver 1.3.2 |
10 |
%define rel 1 |
%define rel 1 |
11 |
%define epoch 0 |
%define epoch 0 |
12 |
|
|
29 |
Group: Applications/System |
Group: Applications/System |
30 |
Source0: %{name}-%{version}.tar.gz |
Source0: %{name}-%{version}.tar.gz |
31 |
Patch0: rkhunter-installer.patch |
Patch0: rkhunter-installer.patch |
32 |
|
Patch1: rkhunter-nolib.patch |
33 |
BuildArch: noarch |
BuildArch: noarch |
34 |
Requires: filesystem, bash, grep, findutils, net-tools, coreutils, e2fsprogs, modutils, procps, binutils, wget, perl |
Requires: filesystem, bash, grep, findutils, net-tools, coreutils, e2fsprogs, modutils, procps, binutils, wget, perl |
35 |
Provides: %{name} |
Provides: %{name} |
55 |
%prep |
%prep |
56 |
%setup -q |
%setup -q |
57 |
%patch0 -p1 |
%patch0 -p1 |
58 |
|
%patch1 -p1 |
59 |
|
|
60 |
%build |
%build |
61 |
|
|
62 |
%install |
%install |
63 |
|
MANPATH="" |
64 |
|
export MANPATH |
65 |
|
|
66 |
sh ./installer.sh --layout RPM --install |
sh ./installer.sh --layout RPM --install |
67 |
|
|
68 |
sed -i 's_#ALLOWPROCLISTEN=/sbin/dhclient_ALLOWPROCLISTEN=/sbin/dhclient_' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
sed -i 's_#ALLOWPROCLISTEN=/sbin/dhclient_ALLOWPROCLISTEN=/sbin/dhclient_' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
69 |
|
sed -i 's_#ALLOWPROCLISTEN=/usr/sbin/pppoe_ALLOWPROCLISTEN=/sbin/pppoe_' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
70 |
sed -i 's_#ALLOWHIDDENFILE=/usr/share/man/man1/..1.gz_ALLOWHIDDENFILE=/usr/share/man/man1/..1.gz_' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
sed -i 's_#ALLOWHIDDENFILE=/usr/share/man/man1/..1.gz_ALLOWHIDDENFILE=/usr/share/man/man1/..1.gz_' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
71 |
|
sed -i '/#ALLOWPROCLISTEN=\/usr\/bin\/dhcpcd/iALLOWPROCLISTEN=\/usr\/sbin\/dhcpd' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
72 |
sed -i '/#ALLOWPROCDELFILE=\/usr\/sbin\/mysqld/aALLOWPROCDELFILE=\/usr\/sbin\/httpd' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
sed -i '/#ALLOWPROCDELFILE=\/usr\/sbin\/mysqld/aALLOWPROCDELFILE=\/usr\/sbin\/httpd' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
73 |
|
sed -i '/ALLOWPROCDELFILE=\/usr\/sbin\/httpd/aALLOWPROCDELFILE=\/usr\/sbin\/asterisk' ${RPM_BUILD_ROOT}%{_sysconfdir}/%{name}.conf |
74 |
|
|
75 |
# Make a cron.daily file to mail us the reports |
# Make a cron.daily file to mail us the reports |
76 |
%{__mkdir} -p "${RPM_BUILD_ROOT}/%{_sysconfdir}/cron.daily" |
%{__mkdir} -p "${RPM_BUILD_ROOT}/%{_sysconfdir}/cron.daily" |
77 |
%{__cat} > "${RPM_BUILD_ROOT}/%{_sysconfdir}/cron.daily/01-rkhunter" <<EOF |
%{__cat} > "${RPM_BUILD_ROOT}/%{_sysconfdir}/cron.daily/01-rkhunter" <<EOF |
78 |
#!/bin/sh |
#!/bin/sh |
79 |
%{_bindir}/rkhunter --cronjob --update --disable apps,system_commands --rwo |
%{_bindir}/rkhunter --cronjob --update --disable apps,suspscan,system_commands --rwo |
80 |
exit 0 |
exit 0 |
81 |
EOF |
EOF |
82 |
%{__chmod} a+rwx,g-w,o-rwx ${RPM_BUILD_ROOT}%{_sysconfdir}/cron.daily/01-rkhunter |
%{__chmod} a+rwx,g-w,o-rwx ${RPM_BUILD_ROOT}%{_sysconfdir}/cron.daily/01-rkhunter |
85 |
%post |
%post |
86 |
# Only do this on an initial install |
# Only do this on an initial install |
87 |
if [ $1 -eq 1 ]; then |
if [ $1 -eq 1 ]; then |
88 |
%{__cp} -p /etc/passwd /var/lib/rkhunter/tmp >/dev/null 2>&1 || : |
%{__cp} -p /etc/passwd /var/rkhunter/tmp >/dev/null 2>&1 || : |
89 |
%{__cp} -p /etc/group /var/lib/rkhunter/tmp >/dev/null 2>&1 || : |
%{__cp} -p /etc/group /var/rkhunter/tmp >/dev/null 2>&1 || : |
90 |
fi |
fi |
91 |
|
|
92 |
|
|
94 |
# Only do this when removing the RPM |
# Only do this when removing the RPM |
95 |
if [ $1 -eq 0 ]; then |
if [ $1 -eq 0 ]; then |
96 |
%{__rm} -f /var/log/rkhunter.log /var/log/rkhunter.log.old >/dev/null 2>&1 |
%{__rm} -f /var/log/rkhunter.log /var/log/rkhunter.log.old >/dev/null 2>&1 |
97 |
%{__rm} -rf /var/lib/rkhunter/* >/dev/null 2>&1 |
%{__rm} -rf /var/rkhunter/* >/dev/null 2>&1 |
98 |
fi |
fi |
99 |
|
|
100 |
|
|
119 |
%attr(644,root,root) %doc %{_prefix}/share/man/man8/%{name}.8.gz |
%attr(644,root,root) %doc %{_prefix}/share/man/man8/%{name}.8.gz |
120 |
%attr(755,root,root) %dir %{docdir} |
%attr(755,root,root) %dir %{docdir} |
121 |
%attr(644,root,root) %doc %{docdir}/* |
%attr(644,root,root) %doc %{docdir}/* |
122 |
%attr(750,root,root) %dir %{_var}/lib/%{name} |
%attr(750,root,root) %dir %{_var}/%{name} |
123 |
%attr(750,root,root) %dir %{_var}/lib/%{name}/db |
%attr(750,root,root) %dir %{_var}/%{name}/db |
124 |
%attr(640,root,root) %{_var}/lib/%{name}/db/*.dat |
%attr(640,root,root) %{_var}/%{name}/db/*.dat |
125 |
%attr(750,root,root) %dir %{_var}/lib/%{name}/db/i18n |
%attr(750,root,root) %dir %{_var}/%{name}/db/i18n |
126 |
%attr(640,root,root) %{_var}/lib/%{name}/db/i18n/* |
%attr(640,root,root) %{_var}/%{name}/db/i18n/* |
127 |
%attr(750,root,root) %dir %{_var}/lib/%{name}/tmp |
%attr(750,root,root) %dir %{_var}/%{name}/tmp |
128 |
%{_sysconfdir}/cron.daily/01-rkhunter |
%{_sysconfdir}/cron.daily/01-rkhunter |
129 |
|
|
130 |
|
|
131 |
%changelog |
%changelog |
132 |
|
* Fri Feb 29 2008 Shad L. Lords <slords@mail.com> 1.3.2-1 |
133 |
|
- Update to rkhunter v1.3.2 |
134 |
|
|
135 |
|
* Wed Jan 30 2008 Shad L. Lords <slords@mail.com> 1.3.0-6 |
136 |
|
- Fix asterisk to allow deleted files. [SME: 3795] |
137 |
|
|
138 |
|
* Tue Jan 29 2008 Shad L. Lords <slords@mail.com> 1.3.0-5 |
139 |
|
- Correct pppoe binary location. |
140 |
|
- Add asterisk binary to allow deleted files. [SME: 3795] |
141 |
|
|
142 |
|
* Mon Jan 7 2008 Shad L. Lords <slords@mail.com> 1.3.0-4 |
143 |
|
- Disable scan for suspicious files until fixed [SME: 3713] |
144 |
|
|
145 |
|
* Mon Dec 17 2007 Shad L. Lords <slords@mail.com> 1.3.0-3 |
146 |
|
- Change /var/lib to /var to be consistent with previous versions |
147 |
|
|
148 |
|
* Mon Dec 17 2007 Shad L. Lords <slords@mail.com> 1.3.0-2 |
149 |
|
- Add a few more services for sme tests |
150 |
|
|
151 |
* Mon Dec 17 2007 Shad L. Lords <slords@mail.com> 1.3.0-1 |
* Mon Dec 17 2007 Shad L. Lords <slords@mail.com> 1.3.0-1 |
152 |
- Fix installer to not install in local |
- Fix installer to not install in local |
153 |
- Set parameters for sme specific tests |
- Set parameters for sme specific tests |