extra/strongswan to 5.9.12-1

This commit is contained in:
Kevin Mihelich 2023-11-21 18:16:50 +00:00
parent e17e19dab1
commit 5f90f04fe1
4 changed files with 135 additions and 50 deletions

113
extra/strongswan/.SRCINFO Normal file
View file

@ -0,0 +1,113 @@
pkgbase = strongswan
pkgdesc = Open source IPsec implementation
pkgver = 5.9.12
pkgrel = 1
url = https://www.strongswan.org
arch = x86_64
license = GPL2
makedepends = libnm
makedepends = systemd
makedepends = python
makedepends = ruby
makedepends = mariadb
makedepends = python-setuptools
depends = curl
depends = gmp
depends = iproute2
depends = openssl
depends = sqlite
depends = libcap
depends = systemd-libs
depends = pam
optdepends = libnm: for networkmanager support
optdepends = mariadb: MySQL support
optdepends = ruby: Ruby support
optdepends = python: Python support
optdepends = resolvconf: Resolveplugin
optdepends = openldap: LDAP support
backup = etc/ipsec.conf
backup = etc/ipsec.secrets
backup = etc/swanctl/swanctl.conf
backup = etc/strongswan.conf
backup = etc/strongswan.d/charon-logging.conf
backup = etc/strongswan.d/charon.conf
backup = etc/strongswan.d/pki.conf
backup = etc/strongswan.d/pool.conf
backup = etc/strongswan.d/scepclient.conf
backup = etc/strongswan.d/starter.conf
backup = etc/strongswan.d/swanctl.conf
backup = etc/strongswan.d/charon/aesni.conf
backup = etc/strongswan.d/charon/attr-sql.conf
backup = etc/strongswan.d/charon/attr.conf
backup = etc/strongswan.d/charon/bliss.conf
backup = etc/strongswan.d/charon/chapoly.conf
backup = etc/strongswan.d/charon/cmac.conf
backup = etc/strongswan.d/charon/connmark.conf
backup = etc/strongswan.d/charon/constraints.conf
backup = etc/strongswan.d/charon/curl.conf
backup = etc/strongswan.d/charon/des.conf
backup = etc/strongswan.d/charon/dhcp.conf
backup = etc/strongswan.d/charon/dnskey.conf
backup = etc/strongswan.d/charon/eap-aka-3gpp2.conf
backup = etc/strongswan.d/charon/eap-aka.conf
backup = etc/strongswan.d/charon/eap-gtc.conf
backup = etc/strongswan.d/charon/eap-identity.conf
backup = etc/strongswan.d/charon/eap-md5.conf
backup = etc/strongswan.d/charon/eap-mschapv2.conf
backup = etc/strongswan.d/charon/eap-radius.conf
backup = etc/strongswan.d/charon/eap-sim-file.conf
backup = etc/strongswan.d/charon/eap-sim.conf
backup = etc/strongswan.d/charon/eap-simaka-pseudonym.conf
backup = etc/strongswan.d/charon/eap-simaka-reauth.conf
backup = etc/strongswan.d/charon/eap-tls.conf
backup = etc/strongswan.d/charon/ext-auth.conf
backup = etc/strongswan.d/charon/farp.conf
backup = etc/strongswan.d/charon/fips-prf.conf
backup = etc/strongswan.d/charon/forecast.conf
backup = etc/strongswan.d/charon/gmp.conf
backup = etc/strongswan.d/charon/ha.conf
backup = etc/strongswan.d/charon/hmac.conf
backup = etc/strongswan.d/charon/kernel-netlink.conf
backup = etc/strongswan.d/charon/md5.conf
backup = etc/strongswan.d/charon/mgf1.conf
backup = etc/strongswan.d/charon/nonce.conf
backup = etc/strongswan.d/charon/newhope.conf
backup = etc/strongswan.d/charon/ntru.conf
backup = etc/strongswan.d/charon/openssl.conf
backup = etc/strongswan.d/charon/pem.conf
backup = etc/strongswan.d/charon/pgp.conf
backup = etc/strongswan.d/charon/pkcs1.conf
backup = etc/strongswan.d/charon/pkcs12.conf
backup = etc/strongswan.d/charon/pkcs7.conf
backup = etc/strongswan.d/charon/pkcs8.conf
backup = etc/strongswan.d/charon/pubkey.conf
backup = etc/strongswan.d/charon/random.conf
backup = etc/strongswan.d/charon/rc2.conf
backup = etc/strongswan.d/charon/resolve.conf
backup = etc/strongswan.d/charon/revocation.conf
backup = etc/strongswan.d/charon/sha1.conf
backup = etc/strongswan.d/charon/sha2.conf
backup = etc/strongswan.d/charon/sha3.conf
backup = etc/strongswan.d/charon/socket-default.conf
backup = etc/strongswan.d/charon/sql.conf
backup = etc/strongswan.d/charon/sqlite.conf
backup = etc/strongswan.d/charon/sshkey.conf
backup = etc/strongswan.d/charon/stroke.conf
backup = etc/strongswan.d/charon/updown.conf
backup = etc/strongswan.d/charon/vici.conf
backup = etc/strongswan.d/charon/x509.conf
backup = etc/strongswan.d/charon/xauth-eap.conf
backup = etc/strongswan.d/charon/xauth-generic.conf
backup = etc/strongswan.d/charon/xcbc.conf
backup = etc/strongswan.d/charon/unity.conf
backup = etc/strongswan.d/charon/curve25519.conf
backup = etc/strongswan.d/charon/bypass-lan.conf
source = https://download.strongswan.org/strongswan-5.9.12.tar.bz2
source = https://download.strongswan.org/strongswan-5.9.12.tar.bz2.sig
source = configure_ac.patch
validpgpkeys = 948F158A4E76A27BF3D07532DF42C170B34DBA77
sha512sums = f8a731329e9c0e4693fe7cf7195f687e6e48c1254cc93804385b23f6e23e27fb4a235e12d8f3e77960793b951a3a7213395c4179e8d2f3891221f13b0e032e38
sha512sums = SKIP
sha512sums = 645f6e3c9df8634ac06cbafc314ad46ede45b5412140c20236d25187a7405a5a941f74c52ca3ee3cc3a8e97d7af88b22209cae854d6e99f0ad9c489db78026c4
pkgname = strongswan

View file

@ -13,7 +13,7 @@
# - remove --enable-aesni from configure
pkgname=strongswan
pkgver=5.9.11
pkgver=5.9.12
pkgrel=1
pkgdesc='Open source IPsec implementation'
url='https://www.strongswan.org'
@ -37,25 +37,19 @@ backup=(
etc/strongswan.d/charon/{aesni.conf,attr-sql.conf,attr.conf,bliss.conf,chapoly.conf,cmac.conf,connmark.conf,constraints.conf,curl.conf,des.conf,dhcp.conf,dnskey.conf,eap-aka-3gpp2.conf,eap-aka.conf,eap-gtc.conf,eap-identity.conf,eap-md5.conf,eap-mschapv2.conf,eap-radius.conf,eap-sim-file.conf,eap-sim.conf,eap-simaka-pseudonym.conf,eap-simaka-reauth.conf,eap-tls.conf,ext-auth.conf,farp.conf,fips-prf.conf,forecast.conf,gmp.conf,ha.conf,hmac.conf,kernel-netlink.conf,md5.conf,mgf1.conf,nonce.conf,newhope.conf,ntru.conf,openssl.conf,pem.conf,pgp.conf,pkcs1.conf,pkcs12.conf,pkcs7.conf,pkcs8.conf,pubkey.conf,random.conf,rc2.conf,resolve.conf,revocation.conf,sha1.conf,sha2.conf,sha3.conf,socket-default.conf,sql.conf,sqlite.conf,sshkey.conf,stroke.conf,updown.conf,vici.conf,x509.conf,xauth-eap.conf,xauth-generic.conf,xcbc.conf,unity.conf,curve25519.conf,bypass-lan.conf})
source=("https://download.strongswan.org/strongswan-${pkgver}.tar.bz2"{,.sig}
'configure_ac.patch')
validpgpkeys=("948F158A4E76A27BF3D07532DF42C170B34DBA77")
sha512sums=('d500523215f5ec5c5550c4d2c49060b350ae396d8c60170792c46775d04fc7a132aa70a6242145477753668351d26ed957e08903683ecc340aa8d84fb2ae5498'
sha512sums=('f8a731329e9c0e4693fe7cf7195f687e6e48c1254cc93804385b23f6e23e27fb4a235e12d8f3e77960793b951a3a7213395c4179e8d2f3891221f13b0e032e38'
'SKIP'
'0e2c818f2f620410dda949d9016a4c1a686bf2946acb3b42a729b2376c077f4dad6762fe8d2f736c213c4895c1fbd60c0d654a1c36f72d06f58ba7cff635bc74')
install=strongswan.install
#options=('debug' '!strip')
# We don't build libipsec because it would get loaded before kernel-netlink and netkey, which
# would case processing to be handled in user space. Also, the plugin is experimental. If you need it,
# add --enable-libipsec and --enable-kernel-libipsec
'645f6e3c9df8634ac06cbafc314ad46ede45b5412140c20236d25187a7405a5a941f74c52ca3ee3cc3a8e97d7af88b22209cae854d6e99f0ad9c489db78026c4')
prepare() {
cd ${pkgname}-${pkgver}
patch -p1 -l <"${srcdir}/configure_ac.patch"
patch -Np1 -i ../configure_ac.patch
autoreconf -fiv
}
build() {
cd ${pkgname}-${pkgver}
# CFLAGS="$CFLAGS -O2 -Wall"
./configure --prefix=/usr \
--sbindir=/usr/bin \
--sysconfdir=/etc \
@ -118,11 +112,6 @@ build() {
}
package() {
cd ${pkgname}-${pkgver}
make DESTDIR="${pkgdir}" install
# this is not necessary anymore
#install -Dm644 "${pkgdir}/etc/dbus-1/system.d/nm-strongswan-service.conf" "${pkgdir}/usr/share/dbus-1/system.d/nm-strongswan-service.conf"
#rm -v "${pkgdir}/etc/dbus-1/system.d/nm-strongswan-service.conf"
# remove empty directory
#rmdir -v "${pkgdir}/etc/dbus-1/system.d"
cd ${pkgname}-${pkgver}
make DESTDIR="${pkgdir}" install
}

View file

@ -1,16 +1,15 @@
--- a/configure.ac 2016-03-22 09:36:03.000000000 +0100
+++ b/configure.ac 2016-03-26 18:35:44.697586161 +0100
@@ -946,10 +946,10 @@
PKG_CHECK_MODULES(systemd, [libsystemd >= 209],
[AC_SUBST(systemd_CFLAGS)
AC_SUBST(systemd_LIBS)],
- [PKG_CHECK_MODULES(systemd_daemon, [libsystemd-daemon])
+ [PKG_CHECK_MODULES(systemd_daemon, [libsystemd])
AC_SUBST(systemd_daemon_CFLAGS)
AC_SUBST(systemd_daemon_LIBS)
- PKG_CHECK_MODULES(systemd_journal, [libsystemd-journal])
+ PKG_CHECK_MODULES(systemd_journal, [libsystemd])
AC_SUBST(systemd_journal_CFLAGS)
AC_SUBST(systemd_journal_LIBS)]
)
--- aaa/configure.ac 2023-11-20 12:09:33.000000000 +0100
+++ bbb/configure.ac 2023-11-21 14:24:57.505504890 +0100
@@ -1050,10 +1050,10 @@
PKG_CHECK_MODULES(systemd, [libsystemd >= 209],
[AC_SUBST(systemd_CFLAGS)
AC_SUBST(systemd_LIBS)],
- [PKG_CHECK_MODULES(systemd_daemon, [libsystemd-daemon])
+ [PKG_CHECK_MODULES(systemd_daemon, [libsystemd])
AC_SUBST(systemd_daemon_CFLAGS)
AC_SUBST(systemd_daemon_LIBS)
- PKG_CHECK_MODULES(systemd_journal, [libsystemd-journal])
+ PKG_CHECK_MODULES(systemd_journal, [libsystemd])
AC_SUBST(systemd_journal_CFLAGS)
AC_SUBST(systemd_journal_LIBS)]
)

View file

@ -1,16 +0,0 @@
post_upgrade() {
if (($(vercmp 5.8.0-1 $2) > 0)); then
echo "
Strongswan 5.8.0-1 introduced new names for the systemd unit files:
strongswan.service got renamed to strongswan-starter.service
strongswan-swanctl.service got renamed to strongswan.service
If you use the legacy ipsec.conf, you need to enable
strongswan-starter.service from now on.
If you use swanctl, you need to enable strongswan.service from now on.
EOF
"
fi
}