[arch-commits] Commit in strongswan/repos (4 files)
Felix Yan
felixonmars at gemini.archlinux.org
Sat Nov 13 20:22:09 UTC 2021
Date: Saturday, November 13, 2021 @ 20:22:09
Author: felixonmars
Revision: 1046064
archrelease: copy trunk to community-staging-x86_64
Added:
strongswan/repos/community-staging-x86_64/
strongswan/repos/community-staging-x86_64/PKGBUILD
(from rev 1046063, strongswan/trunk/PKGBUILD)
strongswan/repos/community-staging-x86_64/configure_ac.patch
(from rev 1046063, strongswan/trunk/configure_ac.patch)
strongswan/repos/community-staging-x86_64/strongswan.install
(from rev 1046063, strongswan/trunk/strongswan.install)
--------------------+
PKGBUILD | 125 +++++++++++++++++++++++++++++++++++++++++++++++++++
configure_ac.patch | 16 ++++++
strongswan.install | 16 ++++++
3 files changed, 157 insertions(+)
Copied: strongswan/repos/community-staging-x86_64/PKGBUILD (from rev 1046063, strongswan/trunk/PKGBUILD)
===================================================================
--- community-staging-x86_64/PKGBUILD (rev 0)
+++ community-staging-x86_64/PKGBUILD 2021-11-13 20:22:09 UTC (rev 1046064)
@@ -0,0 +1,125 @@
+# Maintainer : Christian Rebischke <Chris.Rebischke at archlinux.org>
+# Contributor: dkorzhevin <dkorzhevin at gmail dot com>
+# Contributor: Thermi <noel [at] familie-kuntze dot de>
+# Contributor: nikicat <develniks at gmail dot com>
+# Contributor: danilo <gezuru at gmail dot com>
+# Contributor: Jason Begley <jayray at digitalgoat dot com>
+# Contributor: Ray Kohler <ataraxia937 at gmail dot com>
+# Contributor: Daniel Riedemann <daniel.riedemann [at] googlemail [dot] com>
+# Contributor: 458italia <svenskaparadox [at] gmail dot com>
+# Contributor: Thermi <noel [at] familie-kuntze dot com>
+
+pkgname=strongswan
+pkgver=5.9.4
+pkgrel=2
+pkgdesc='Open source IPsec implementation'
+url='https://www.strongswan.org'
+license=('GPL2')
+arch=('x86_64')
+makedepends=('libnm' 'systemd' 'python' 'ruby' 'mariadb' 'python-setuptools')
+depends=('curl' 'gmp' 'iproute2' 'openssl' 'sqlite' 'libcap' 'systemd-libs' 'pam')
+optdepends=('libnm: for networkmanager support'
+ 'mariadb: MySQL support'
+ 'ruby: Ruby support'
+ 'python: Python support'
+ 'resolvconf: Resolveplugin'
+ 'openldap: LDAP support')
+# TODO: move to package() and use find
+backup=(
+ etc/ipsec.conf
+ etc/ipsec.secrets
+ etc/swanctl/swanctl.conf
+ etc/strongswan.conf
+ etc/strongswan.d/{charon-logging.conf,charon.conf,pki.conf,pool.conf,scepclient.conf,starter.conf,swanctl.conf}
+ etc/strongswan.d/charon/{aesni.conf,attr-sql.conf,attr.conf,bliss.conf,chapoly.conf,cmac.conf,connmark.conf,constraints.conf,curl.conf,des.conf,dhcp.conf,dnskey.conf,eap-aka-3gpp2.conf,eap-aka.conf,eap-gtc.conf,eap-identity.conf,eap-md5.conf,eap-mschapv2.conf,eap-radius.conf,eap-sim-file.conf,eap-sim.conf,eap-simaka-pseudonym.conf,eap-simaka-reauth.conf,eap-tls.conf,ext-auth.conf,farp.conf,fips-prf.conf,forecast.conf,gmp.conf,ha.conf,hmac.conf,kernel-netlink.conf,md5.conf,mgf1.conf,nonce.conf,newhope.conf,ntru.conf,openssl.conf,pem.conf,pgp.conf,pkcs1.conf,pkcs12.conf,pkcs7.conf,pkcs8.conf,pubkey.conf,random.conf,rc2.conf,resolve.conf,revocation.conf,sha1.conf,sha2.conf,sha3.conf,socket-default.conf,sql.conf,sqlite.conf,sshkey.conf,stroke.conf,updown.conf,vici.conf,x509.conf,xauth-eap.conf,xauth-generic.conf,xcbc.conf,unity.conf,curve25519.conf,bypass-lan.conf})
+source=("https://download.strongswan.org/strongswan-${pkgver}.tar.bz2"{,.sig}
+ 'configure_ac.patch')
+validpgpkeys=("948F158A4E76A27BF3D07532DF42C170B34DBA77")
+sha512sums=('796356c1d5c1ad410f0ed944ab4a131076d26f120ec6fa57796fe4060b0741201199625883ddc9ebd8a7ad299495f073cec76a6780ebd8f375605aae16750cf3'
+ 'SKIP'
+ '0e2c818f2f620410dda949d9016a4c1a686bf2946acb3b42a729b2376c077f4dad6762fe8d2f736c213c4895c1fbd60c0d654a1c36f72d06f58ba7cff635bc74')
+install=strongswan.install
+
+# We don't build libipsec because it would get loaded before kernel-netlink and netkey, which
+# would case processing to be handled in user space. Also, the plugin is experimental. If you need it,
+# add --enable-libipsec and --enable-kernel-libipsec
+prepare() {
+ cd ${pkgname}-${pkgver}
+ patch -p1 -l <"${srcdir}/configure_ac.patch"
+ autoreconf -fiv
+}
+
+build() {
+ cd ${pkgname}-${pkgver}
+
+ ./configure --prefix=/usr \
+ --sbindir=/usr/bin \
+ --sysconfdir=/etc \
+ --libexecdir=/usr/lib \
+ --with-ipsecdir=/usr/lib/strongswan \
+ --with-nm-ca-dir=/etc/ssl/certs \
+ --enable-integrity-test \
+ --enable-sqlite \
+ --enable-pkcs11 \
+ --enable-openssl \
+ --enable-curl \
+ --enable-sql \
+ --enable-attr-sql \
+ --enable-farp \
+ --enable-dhcp \
+ --enable-eap-sim \
+ --enable-eap-sim-file \
+ --enable-eap-simaka-pseudonym \
+ --enable-eap-simaka-reauth \
+ --enable-eap-identity \
+ --enable-eap-md5 \
+ --enable-eap-gtc \
+ --enable-eap-aka \
+ --enable-eap-aka-3gpp2 \
+ --enable-eap-mschapv2 \
+ --enable-eap-radius \
+ --enable-xauth-eap \
+ --enable-ha \
+ --enable-vici \
+ --enable-swanctl \
+ --enable-systemd \
+ --enable-ext-auth \
+ --enable-mysql \
+ --enable-ldap \
+ --enable-cmd \
+ --enable-forecast \
+ --enable-connmark \
+ --enable-aesni \
+ --enable-eap-ttls \
+ --enable-radattr \
+ --enable-xauth-pam \
+ --enable-xauth-noauth \
+ --enable-eap-dynamic \
+ --enable-eap-peap \
+ --enable-eap-tls \
+ --enable-chapoly \
+ --enable-unity \
+ --with-capabilities=libcap \
+ --enable-newhope \
+ --enable-ntru \
+ --enable-mgf1 \
+ --enable-sha3 \
+ --enable-bliss \
+ --enable-dnscert \
+ --enable-nm \
+ --enable-agent \
+ --enable-bypass-lan \
+ --enable-ruby-gems \
+ --enable-python-eggs
+ make
+}
+
+package() {
+ cd ${pkgname}-${pkgver}
+ make DESTDIR="${pkgdir}" install
+ # this is not necessary anymore
+ #install -Dm644 "${pkgdir}/etc/dbus-1/system.d/nm-strongswan-service.conf" "${pkgdir}/usr/share/dbus-1/system.d/nm-strongswan-service.conf"
+ #rm -v "${pkgdir}/etc/dbus-1/system.d/nm-strongswan-service.conf"
+ # remove empty directory
+ #rmdir -v "${pkgdir}/etc/dbus-1/system.d"
+}
Copied: strongswan/repos/community-staging-x86_64/configure_ac.patch (from rev 1046063, strongswan/trunk/configure_ac.patch)
===================================================================
--- community-staging-x86_64/configure_ac.patch (rev 0)
+++ community-staging-x86_64/configure_ac.patch 2021-11-13 20:22:09 UTC (rev 1046064)
@@ -0,0 +1,16 @@
+--- a/configure.ac 2016-03-22 09:36:03.000000000 +0100
++++ b/configure.ac 2016-03-26 18:35:44.697586161 +0100
+@@ -946,10 +946,10 @@
+ PKG_CHECK_MODULES(systemd, [libsystemd >= 209],
+ [AC_SUBST(systemd_CFLAGS)
+ AC_SUBST(systemd_LIBS)],
+- [PKG_CHECK_MODULES(systemd_daemon, [libsystemd-daemon])
++ [PKG_CHECK_MODULES(systemd_daemon, [libsystemd])
+ AC_SUBST(systemd_daemon_CFLAGS)
+ AC_SUBST(systemd_daemon_LIBS)
+- PKG_CHECK_MODULES(systemd_journal, [libsystemd-journal])
++ PKG_CHECK_MODULES(systemd_journal, [libsystemd])
+ AC_SUBST(systemd_journal_CFLAGS)
+ AC_SUBST(systemd_journal_LIBS)]
+ )
+
Copied: strongswan/repos/community-staging-x86_64/strongswan.install (from rev 1046063, strongswan/trunk/strongswan.install)
===================================================================
--- community-staging-x86_64/strongswan.install (rev 0)
+++ community-staging-x86_64/strongswan.install 2021-11-13 20:22:09 UTC (rev 1046064)
@@ -0,0 +1,16 @@
+post_upgrade() {
+ if (($(vercmp 5.8.0-1 $2) > 0)); then
+ echo "
+ Strongswan 5.8.0-1 introduced new names for the systemd unit files:
+
+ strongswan.service got renamed to strongswan-starter.service
+ strongswan-swanctl.service got renamed to strongswan.service
+
+ If you use the legacy ipsec.conf, you need to enable
+ strongswan-starter.service from now on.
+
+ If you use swanctl, you need to enable strongswan.service from now on.
+ EOF
+ "
+ fi
+}
More information about the arch-commits
mailing list