Commit Graph

239 Commits

Author SHA1 Message Date
Pavel Šimerda
b5963e1653 Merge remote-tracking branch 'origin/el6'
Conflicts:
	.gitignore
	libstrongswan-plugin.patch
	libstrongswan-settings-debug.patch
	sources
	strongswan-init.patch
	strongswan-pts-ecp-disable.patch
	strongswan.spec
2014-01-07 15:41:33 +01:00
Pavel Šimerda
e7d4f90452 Merge remote-tracking branch 'origin/f18'
Conflicts:
	strongswan.spec
2014-01-07 15:09:19 +01:00
Pavel Šimerda
19f4b38c81 Merge remote-tracking branch 'origin/f19' 2014-01-07 15:04:35 +01:00
Pavel Šimerda
9febdcf251 Merge remote-tracking branch 'origin/f20' 2014-01-07 15:04:14 +01:00
Avesh Agarwal
1ca0c0e019 Resolves: 973315
- Resolves: 1036844
2013-12-02 16:11:46 -05:00
Avesh Agarwal
4fa580f8cd Resolves: 973315
- Resolves: 1036844
2013-12-02 16:07:57 -05:00
Avesh Agarwal
5f86e09419 Resolves: 973315
- Resolves: 1036844
2013-12-02 15:52:52 -05:00
Avesh Agarwal
1c9aa914d8 Support for PT-TLS (RFC 6876)
- Support for SWID IMC/IMV
- Support for command line IKE client charon-cmd
- Changed location of pki to /usr/bin
- Added swid tags files
- Added man pages for pki and charon-cmd
- Renamed pki to strongswan-pki to avoid conflict with
  pki-core/pki-tools package.
- Update local patches
- Fixes CVE-2013-6075
- Fixes CVE-2013-6076
- Fixed autoconf/automake issue as configure.ac got changed
  and it required running autoreconf during the build process.
- added strongswan signature file to the sources.
- Fixed initialization crash of IMV and IMC particularly
  attestation imv/imc as libstrongswas was not getting
  initialized.
- Enabled fips support
- Enabled TNC's ifmap support
- Enabled TNC's pdp support
- Fixed hardocded package name in this spec file
2013-11-01 15:25:00 -04:00
Avesh Agarwal
285d7534b8 Support for PT-TLS (RFC 6876)
- Support for SWID IMC/IMV
- Support for command line IKE client charon-cmd
- Changed location of pki to /usr/bin
- Added swid tags files
- Added man pages for pki and charon-cmd
- Renamed pki to strongswan-pki to avoid conflict with
  pki-core/pki-tools package.
- Update local patches
- Fixes CVE-2013-6075
- Fixes CVE-2013-6076
- Fixed autoconf/automake issue as configure.ac got changed
  and it required running autoreconf during the build process.
- added strongswan signature file to the sources.
2013-11-01 15:09:30 -04:00
Avesh Agarwal
2cef5e58a7 Support for PT-TLS (RFC 6876)
- Support for SWID IMC/IMV
- Support for command line IKE client charon-cmd
- Changed location of pki to /usr/bin
- Added swid tags files
- Added man pages for pki and charon-cmd
- Renamed pki to strongswan-pki to avoid conflict with
  pki-core/pki-tools package.
- Update local patches
- Fixes CVE-2013-6075
- Fixes CVE-2013-6076
- Fixed autoconf/automake issue as configure.ac got changed
  and it required running autoreconf during the build process.
- added strongswan signature file to the sources.
2013-11-01 15:08:47 -04:00
Avesh Agarwal
b43681bf1b Support for PT-TLS (RFC 6876)
- Support for SWID IMC/IMV
- Support for command line IKE client charon-cmd
- Changed location of pki to /usr/bin
- Added swid tags files
- Added man pages for pki and charon-cmd
- Renamed pki to strongswan-pki to avoid conflict with
  pki-core/pki-tools package.
- Update local patches
- Fixes CVE-2013-6075
- Fixes CVE-2013-6076
- Fixed autoconf/automake issue as configure.ac got changed
  and it required running autoreconf during the build process.
- added strongswan signature file to the sources.
2013-11-01 15:04:43 -04:00
Avesh Agarwal
710e5ac471 Support for PT-TLS (RFC 6876)
- Support for SWID IMC/IMV
- Support for command line IKE client charon-cmd
- Changed location of pki to /usr/bin
- Added swid tags files
- Added man pages for pki and charon-cmd
- Renamed pki to strongswan-pki to avoid conflict with
  pki-core/pki-tools package.
- Update local patches
- Fixes CVE-2013-6075
- Fixes CVE-2013-6076
- Fixed autoconf/automake issue as configure.ac got changed
  and it required running autoreconf during the build process.
- added strongswan signature file to the sources.
2013-11-01 14:49:56 -04:00
Avesh Agarwal
07bd95ec67 Fixed initialization crash of IMV and IMC particularly
attestation imv/imc as libstrongswas was not getting
  initialized.
2013-09-12 13:23:21 -04:00
Avesh Agarwal
5c4f5c4a52 Fixed initialization crash of IMV and IMC particularly
attestation imv/imc as libstrongswas was not getting
  initialized.
2013-09-12 13:21:54 -04:00
Avesh Agarwal
764be31e95 Fixed initialization crash of IMV and IMC particularly
attestation imv/imc as libstrongswas was not getting
  initialized.
2013-09-12 13:18:45 -04:00
Avesh Agarwal
c5fe3b3899 Enabled fips support
- Enabled TNC's ifmap support
- Enabled TNC's pdp support
- Fixed hardocded package name in this spec file
2013-08-30 15:43:32 -04:00
Avesh Agarwal
d0792a1bf6 Enabled fips support
- Enabled TNC's ifmap support
- Enabled TNC's pdp support
- Fixed hardocded package name in this spec file
2013-08-30 15:41:45 -04:00
Avesh Agarwal
5c3c2f4422 Enabled fips support
- Enabled TNC's ifmap support
- Enabled TNC's pdp support
- Fixed hardocded package name in this spec file
2013-08-30 15:37:43 -04:00
Avesh Agarwal
c2f05ffb59 Fixed linker error when compilating malloc-speed that
lrt is missing. Did not have this problem on f19 and F20.
2013-08-07 17:06:40 -04:00
Avesh Agarwal
bc76bb8ca3 rhbz#981429: New upstream release
- Fixes CVE-2013-5018: rhbz#991216, rhbz#991215
- Fixes rhbz#991859 failed to build in rawhide
- Updated local patches and removed which are not needed
- Fixed errors around charon-nm
- Added plugins libstrongswan-pkcs12.so, libstrongswan-rc2.so,
  libstrongswan-sshkey.so
- Added utility imv_policy_manager
2013-08-07 16:28:08 -04:00
Avesh Agarwal
634a38ad93 rhbz#981429: New upstream release
- Fixes CVE-2013-5018: rhbz#991216, rhbz#991215
- Fixes rhbz#991859 failed to build in rawhide
- Updated local patches and removed which are not needed
- Fixed errors around charon-nm
- Added plugins libstrongswan-pkcs12.so, libstrongswan-rc2.so,
  libstrongswan-sshkey.so
- Added utility imv_policy_manager
2013-08-07 16:12:08 -04:00
Avesh Agarwal
80bb1ce4b2 rhbz#981429: New upstream release
- Fixes CVE-2013-5018: rhbz#991216, rhbz#991215
- Fixes rhbz#991859 failed to build in rawhide
- Updated local patches and removed which are not needed
- Fixed errors around charon-nm
- Added plugins libstrongswan-pkcs12.so, libstrongswan-rc2.so,
  libstrongswan-sshkey.so
- Added utility imv_policy_manager
2013-08-07 16:04:59 -04:00
Jamie Nguyen
12770476b6 Rename strongswan-NetworkManager to strongswan-charon-nm 2013-07-25 07:53:04 +01:00
Jamie Nguyen
79313db91f Rename strongswan-NetworkManager to strongswan-charon-nm 2013-07-25 07:52:41 +01:00
Jamie Nguyen
3bdb50eb15 Rename strongswan-NetworkManager to strongswan-charon-nm 2013-07-25 07:51:56 +01:00
Jamie Nguyen
b82295b178 Rename strongswan-NetworkManager to strongswan-charon-nm 2013-07-25 07:46:02 +01:00
Jamie Nguyen
492496d78f Conditionalize NM subpackage as NM on EL6 is too old 2013-07-15 23:58:06 +01:00
Jamie Nguyen
6106c07f9e Add /etc/strongswan/ipsec.d and missing subdirectories 2013-07-15 23:58:03 +01:00
Jamie Nguyen
79e547f661 Patch to change 'ipsec scepclient' to 'strongswan scepclient' 2013-07-15 23:58:00 +01:00
Jamie Nguyen
4db20548af Patch to change 'ipsec _updown' to 'strongswan _updown' 2013-07-15 23:57:54 +01:00
Jamie Nguyen
a011295026 Enable hardened_build as it meets the criteria (#984429) 2013-07-15 23:57:51 +01:00
Jamie Nguyen
e323196d1b NetworkManager subpackage is missing a license (#984490) 2013-07-15 23:57:47 +01:00
Jamie Nguyen
b8944e4e75 Update system related dependencies and scriptlets 2013-07-15 23:57:44 +01:00
Jamie Nguyen
2df6f4d197 Fix various minor rpmlint errors 2013-07-15 23:57:41 +01:00
Jamie Nguyen
70b72e4d7f Fix broken systemd unit file (#984300) 2013-07-15 23:57:38 +01:00
Jamie Nguyen
f3c41f08e2 %files section packages some files as directories (#984437) 2013-07-15 23:57:35 +01:00
Avesh Agarwal
e0b5ee21d4 Patch to fix a major crash issue when Freeradius loads
attestatiom-imv and does not initialize libstrongswan which
  causes crash due to calls to PTS algorithms probing APIs.
  So this patch fixes the order of initialization. This issues
  does not occur with charon because libstrongswan gets
  initialized earlier.
- Patch that allows to outputs errors when there are permission
  issues when accessing strongswan.conf.
- Patch to make loading of modules configurable when libimcv
  is used in stand alone mode without charon with freeradius
  and wpa_supplicant.
2013-07-15 23:57:29 +01:00
Avesh Agarwal
8bc5b16e8f Enabled TNCCS 1.1 protocol
- Fixed libxm2-devel build dependency
- Patch to fix the issue with loading of plugins
2013-07-15 23:57:15 +01:00
Avesh Agarwal
84852c31c6 New upstream release
- Fixes fo CVE-2013-2944
- Enabled support for OS IMV/IMC
- Created and applied a patch to disable ECP in fedora, because
  Openssl in Fedora does not allow ECP_256 and ECP_384. It makes
  it non-compliant to TCG's PTS standard, but there is no choice
  right now. see redhat bz # 319901.
- Enabled Trousers support for TPM based operations.
2013-07-15 23:57:08 +01:00
Jamie Nguyen
57c8ac6121 Conditionalize NM subpackage as NM on EL6 is too old 2013-07-15 23:55:44 +01:00
Jamie Nguyen
eb2a5c3207 Add /etc/strongswan/ipsec.d and missing subdirectories 2013-07-15 23:55:41 +01:00
Jamie Nguyen
14b5569537 Patch to change 'ipsec scepclient' to 'strongswan scepclient' 2013-07-15 23:55:35 +01:00
Jamie Nguyen
c3373a94d4 Patch to change 'ipsec _updown' to 'strongswan _updown' 2013-07-15 23:55:30 +01:00
Jamie Nguyen
5938e69c34 Enable hardened_build as it meets the criteria (#984429) 2013-07-15 23:55:26 +01:00
Jamie Nguyen
2bc7306cfa NetworkManager subpackage is missing a license (#984490) 2013-07-15 23:55:22 +01:00
Jamie Nguyen
dd3ea59145 Update system related dependencies and scriptlets 2013-07-15 23:55:18 +01:00
Jamie Nguyen
2371a0b5d4 Fix various minor rpmlint errors 2013-07-15 23:55:15 +01:00
Jamie Nguyen
368db85874 Fix broken systemd unit file (#984300) 2013-07-15 23:55:10 +01:00
Jamie Nguyen
97fc73ef54 %files section packages some files as directories (#984437) 2013-07-15 23:55:00 +01:00
Avesh Agarwal
348f644df7 Patch to fix a major crash issue when Freeradius loads
attestatiom-imv and does not initialize libstrongswan which
  causes crash due to calls to PTS algorithms probing APIs.
  So this patch fixes the order of initialization. This issues
  does not occur with charon because libstrongswan gets
  initialized earlier.
- Patch that allows to outputs errors when there are permission
  issues when accessing strongswan.conf.
- Patch to make loading of modules configurable when libimcv
  is used in stand alone mode without charon with freeradius
  and wpa_supplicant.
2013-07-15 23:54:56 +01:00