Sync from SUSE:SLFO:Main perl-IO-Socket-SSL revision cf797afc5d891e8eaa1582b776a360b9
This commit is contained in:
parent
c190c45b17
commit
f8ead98efc
BIN
IO-Socket-SSL-2.084.tar.gz
(Stored with Git LFS)
BIN
IO-Socket-SSL-2.084.tar.gz
(Stored with Git LFS)
Binary file not shown.
BIN
IO-Socket-SSL-2.089.tar.gz
(Stored with Git LFS)
Normal file
BIN
IO-Socket-SSL-2.089.tar.gz
(Stored with Git LFS)
Normal file
Binary file not shown.
@ -1,5 +1,4 @@
|
|||||||
patches:
|
#patches:
|
||||||
perl-IO-Socket-SSL-use-system-default-cipher-list.patch: -p1 PATCH-FIX-UPSTREAM (bsc1200295) perl-IO-Socket-SSL doesn't follow system "PROFILE=SYSTEM" openSSL ciphers - https://git.centos.org/rpms/perl-IO-Socket-SSL/blob/e0b0ae04f5cdb41b1f29cb7d76c23abba7ac35e9/f/SOURCES/IO-Socket-SSL-2.066-use-system-default-cipher-list.patch
|
|
||||||
ignore_requires: Mozilla::CA
|
ignore_requires: Mozilla::CA
|
||||||
prep: |-
|
prep: |-
|
||||||
rm README.Win32
|
rm README.Win32
|
||||||
|
@ -1,23 +0,0 @@
|
|||||||
From 7c0798d6de3467603dff42253448e36aded7f5ac Mon Sep 17 00:00:00 2001
|
|
||||||
From: Steffen Ullrich <github@maulwuff.de>
|
|
||||||
Date: Fri, 22 Dec 2023 08:07:20 +0100
|
|
||||||
Subject: [PATCH] fixed test fail #147 with OpenSSL 3.2
|
|
||||||
|
|
||||||
---
|
|
||||||
t/core.t | 3 ++-
|
|
||||||
1 file changed, 2 insertions(+), 1 deletion(-)
|
|
||||||
|
|
||||||
diff --git a/t/core.t b/t/core.t
|
|
||||||
index e194811..22d78fb 100755
|
|
||||||
--- a/t/core.t
|
|
||||||
+++ b/t/core.t
|
|
||||||
@@ -74,7 +74,8 @@ unless (fork) {
|
|
||||||
LocalAddr => $localip,
|
|
||||||
);
|
|
||||||
print $client "Test\n";
|
|
||||||
- is( <$client>, "This server is SSL only", "Client non-SSL connection");
|
|
||||||
+
|
|
||||||
+ like( <$client>, qr/This server is SSL only/, "Client non-SSL connection");
|
|
||||||
close $client;
|
|
||||||
|
|
||||||
$client = IO::Socket::SSL->new(
|
|
@ -1,34 +0,0 @@
|
|||||||
Index: IO-Socket-SSL-2.074/lib/IO/Socket/SSL.pm
|
|
||||||
===================================================================
|
|
||||||
--- IO-Socket-SSL-2.074.orig/lib/IO/Socket/SSL.pm
|
|
||||||
+++ IO-Socket-SSL-2.074/lib/IO/Socket/SSL.pm
|
|
||||||
@@ -205,8 +205,10 @@ my %DEFAULT_SSL_ARGS = (
|
|
||||||
SSL_npn_protocols => undef, # meaning depends whether on server or client side
|
|
||||||
SSL_alpn_protocols => undef, # list of protocols we'll accept/send, for example ['http/1.1','spdy/3.1']
|
|
||||||
|
|
||||||
- # rely on system default but be sure to disable some definitely bad ones
|
|
||||||
- SSL_cipher_list => 'DEFAULT !EXP !MEDIUM !LOW !eNULL !aNULL !RC4 !DES !MD5 !PSK !SRP',
|
|
||||||
+ # Use system-wide default cipher list to support use of system-wide
|
|
||||||
+ # crypto policy (#1076390, #1127577, CPAN RT#97816)
|
|
||||||
+ # https://fedoraproject.org/wiki/Changes/CryptoPolicy
|
|
||||||
+ SSL_cipher_list => 'PROFILE=SYSTEM',
|
|
||||||
);
|
|
||||||
|
|
||||||
my %DEFAULT_SSL_CLIENT_ARGS = (
|
|
||||||
Index: IO-Socket-SSL-2.074/lib/IO/Socket/SSL.pod
|
|
||||||
===================================================================
|
|
||||||
--- IO-Socket-SSL-2.074.orig/lib/IO/Socket/SSL.pod
|
|
||||||
+++ IO-Socket-SSL-2.074/lib/IO/Socket/SSL.pod
|
|
||||||
@@ -1070,9 +1070,8 @@ ciphers for TLS 1.2 and lower. See the O
|
|
||||||
for more details.
|
|
||||||
|
|
||||||
Unless you fail to contact your peer because of no shared ciphers it is
|
|
||||||
-recommended to leave this option at the default setting, which uses the system
|
|
||||||
-default but disables some insecure ciphers which might still be enabled on older
|
|
||||||
-systems.
|
|
||||||
+recommended to leave this option at the default setting, which honors the
|
|
||||||
+system-wide PROFILE=SYSTEM cipher list.
|
|
||||||
|
|
||||||
In case different cipher lists are needed for different SNI hosts a hash can be
|
|
||||||
given with the host as key and the cipher suite as value, similar to
|
|
||||||
|
|
@ -1,3 +1,72 @@
|
|||||||
|
-------------------------------------------------------------------
|
||||||
|
Sat Aug 31 05:33:49 UTC 2024 - Tina Müller <timueller+perl@suse.de>
|
||||||
|
|
||||||
|
- updated to 2.89.0 (2.089)
|
||||||
|
see /usr/share/doc/packages/perl-IO-Socket-SSL/Changes
|
||||||
|
|
||||||
|
2.089 2024/08/29
|
||||||
|
- new option SSL_force_fingerprint to enforce fingerprint matching even if
|
||||||
|
certificate validation would be successful without
|
||||||
|
- document _get_ssl_object and _get_ctx_object for cases, where direct use of
|
||||||
|
Net::SSLeay functions is needed
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Sun Jul 14 16:02:28 UTC 2024 - Tina Müller <tina.mueller@suse.com>
|
||||||
|
|
||||||
|
- Remove patches 80315ed1a6a0b7968ce26284ed81b56c0ab288d9.patch,
|
||||||
|
perl-IO-Socket-SSL-use-system-default-cipher-list.patch (fixed upstream)
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Sun Jul 14 05:31:32 UTC 2024 - Tina Müller <timueller+perl@suse.de>
|
||||||
|
|
||||||
|
- updated to 2.88.0 (2.088)
|
||||||
|
see /usr/share/doc/packages/perl-IO-Socket-SSL/Changes
|
||||||
|
|
||||||
|
2.088 2024/07/14
|
||||||
|
- minor fixes for use on ancient versions of perl and for building with
|
||||||
|
newer versions of openssl
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Thu Jul 11 14:38:31 UTC 2024 - Dirk Stoecker <opensuse@dstoecker.de>
|
||||||
|
|
||||||
|
- add 80315ed1a6a0b7968ce26284ed81b56c0ab288d9.patch to fix a error
|
||||||
|
introduced in version 2.087
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Tue Jul 9 05:30:33 UTC 2024 - Tina Müller <timueller+perl@suse.de>
|
||||||
|
|
||||||
|
- updated to 2.87.0 (2.087)
|
||||||
|
see /usr/share/doc/packages/perl-IO-Socket-SSL/Changes
|
||||||
|
|
||||||
|
2.087 2024/07/08
|
||||||
|
- support for PSK, see SSL_psk in documentation
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Wed Jul 3 16:49:59 UTC 2024 - Tina Müller <tina.mueller@suse.com>
|
||||||
|
|
||||||
|
- updated to 2.86.0 (2.086)
|
||||||
|
see /usr/share/doc/packages/perl-IO-Socket-SSL/Changes
|
||||||
|
|
||||||
|
2.086 2024/07/03
|
||||||
|
- internal optimzation: implement _touch_entry in session cache instead
|
||||||
|
of using del+add.
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Fri Mar 22 19:12:44 UTC 2024 - Tina Müller <tina.mueller@suse.com>
|
||||||
|
|
||||||
|
- Remove perl-IO-Socket-SSL-Openssl32.patch, fixed upstream
|
||||||
|
|
||||||
|
-------------------------------------------------------------------
|
||||||
|
Tue Jan 23 03:07:53 UTC 2024 - Tina Müller <timueller+perl@suse.de>
|
||||||
|
|
||||||
|
- updated to 2.085
|
||||||
|
see /usr/share/doc/packages/perl-IO-Socket-SSL/Changes
|
||||||
|
|
||||||
|
2.085 2024/01/22
|
||||||
|
- #147 fix test which failed due to behavior changes in OpenSSL 3.2
|
||||||
|
- update PublicSuffix
|
||||||
|
- add examples for TLS JA3/JA4 fingerprinting to tls_fingerprint/
|
||||||
|
|
||||||
-------------------------------------------------------------------
|
-------------------------------------------------------------------
|
||||||
Fri Dec 22 08:44:13 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
Fri Dec 22 08:44:13 UTC 2023 - Pedro Monreal <pmonreal@suse.com>
|
||||||
|
|
||||||
|
@ -1,7 +1,7 @@
|
|||||||
#
|
#
|
||||||
# spec file for package perl-IO-Socket-SSL
|
# spec file for package perl-IO-Socket-SSL
|
||||||
#
|
#
|
||||||
# Copyright (c) 2023 SUSE LLC
|
# Copyright (c) 2024 SUSE LLC
|
||||||
#
|
#
|
||||||
# All modifications and additions to the file contributed by third parties
|
# All modifications and additions to the file contributed by third parties
|
||||||
# remain the property of their copyright owners, unless otherwise agreed
|
# remain the property of their copyright owners, unless otherwise agreed
|
||||||
@ -18,18 +18,15 @@
|
|||||||
|
|
||||||
%define cpan_name IO-Socket-SSL
|
%define cpan_name IO-Socket-SSL
|
||||||
Name: perl-IO-Socket-SSL
|
Name: perl-IO-Socket-SSL
|
||||||
Version: 2.84.0
|
Version: 2.89.0
|
||||||
Release: 0
|
Release: 0
|
||||||
%define cpan_version 2.084
|
# 2.089 -> normalize -> 2.89.0
|
||||||
|
%define cpan_version 2.089
|
||||||
License: Artistic-1.0 OR GPL-1.0-or-later
|
License: Artistic-1.0 OR GPL-1.0-or-later
|
||||||
Summary: Nearly transparent SSL encapsulation for IO::Socket::INET
|
Summary: Nearly transparent SSL encapsulation for IO::Socket::INET
|
||||||
URL: https://metacpan.org/release/%{cpan_name}
|
URL: https://metacpan.org/release/%{cpan_name}
|
||||||
Source0: https://cpan.metacpan.org/authors/id/S/SU/SULLR/%{cpan_name}-%{cpan_version}.tar.gz
|
Source0: https://cpan.metacpan.org/authors/id/S/SU/SULLR/%{cpan_name}-%{cpan_version}.tar.gz
|
||||||
Source1: cpanspec.yml
|
Source1: cpanspec.yml
|
||||||
# PATCH-FIX-UPSTREAM (bsc1200295) perl-IO-Socket-SSL doesn't follow system "PROFILE=SYSTEM" openSSL ciphers - https://git.centos.org/rpms/perl-IO-Socket-SSL/blob/e0b0ae04f5cdb41b1f29cb7d76c23abba7ac35e9/f/SOURCES/IO-Socket-SSL-2.066-use-system-default-cipher-list.patch
|
|
||||||
Patch0: perl-IO-Socket-SSL-use-system-default-cipher-list.patch
|
|
||||||
# PATCH-FIX-UPSTREAM (bsc#1218342) Fix the test t/core.t to build with OpenSSL 3.2.0
|
|
||||||
Patch1: perl-IO-Socket-SSL-Openssl32.patch
|
|
||||||
BuildArch: noarch
|
BuildArch: noarch
|
||||||
BuildRequires: perl
|
BuildRequires: perl
|
||||||
BuildRequires: perl-macros
|
BuildRequires: perl-macros
|
||||||
@ -37,7 +34,7 @@ BuildRequires: perl-macros
|
|||||||
BuildRequires: perl(Net::SSLeay) >= 1.46
|
BuildRequires: perl(Net::SSLeay) >= 1.46
|
||||||
#Requires: perl(Mozilla::CA)
|
#Requires: perl(Mozilla::CA)
|
||||||
Requires: perl(Net::SSLeay) >= 1.46
|
Requires: perl(Net::SSLeay) >= 1.46
|
||||||
Provides: perl(IO::Socket::SSL) = 2.84.0
|
Provides: perl(IO::Socket::SSL) = %{version}
|
||||||
Provides: perl(IO::Socket::SSL::Intercept) = 2.056
|
Provides: perl(IO::Socket::SSL::Intercept) = 2.056
|
||||||
Provides: perl(IO::Socket::SSL::OCSP_Cache)
|
Provides: perl(IO::Socket::SSL::OCSP_Cache)
|
||||||
Provides: perl(IO::Socket::SSL::OCSP_Resolver)
|
Provides: perl(IO::Socket::SSL::OCSP_Resolver)
|
||||||
@ -47,7 +44,7 @@ Provides: perl(IO::Socket::SSL::SSL_HANDLE)
|
|||||||
Provides: perl(IO::Socket::SSL::Session_Cache)
|
Provides: perl(IO::Socket::SSL::Session_Cache)
|
||||||
Provides: perl(IO::Socket::SSL::Trace)
|
Provides: perl(IO::Socket::SSL::Trace)
|
||||||
Provides: perl(IO::Socket::SSL::Utils) = 2.015
|
Provides: perl(IO::Socket::SSL::Utils) = 2.015
|
||||||
%define __perllib_provides /bin/true
|
%undefine __perllib_provides
|
||||||
%{perl_requires}
|
%{perl_requires}
|
||||||
|
|
||||||
%description
|
%description
|
||||||
@ -90,7 +87,7 @@ Additional documentation can be found in
|
|||||||
* * IO::Socket::SSL::Utils - Useful functions for certificates etc
|
* * IO::Socket::SSL::Utils - Useful functions for certificates etc
|
||||||
|
|
||||||
%prep
|
%prep
|
||||||
%autosetup -n %{cpan_name}-%{cpan_version} -p1
|
%autosetup -n %{cpan_name}-%{cpan_version}
|
||||||
|
|
||||||
find . -type f ! -path "*/t/*" ! -name "*.pl" ! -path "*/bin/*" ! -path "*/script/*" ! -path "*/scripts/*" ! -name "configure" -print0 | xargs -0 chmod 644
|
find . -type f ! -path "*/t/*" ! -name "*.pl" ! -path "*/bin/*" ! -path "*/script/*" ! -path "*/scripts/*" ! -name "configure" -print0 | xargs -0 chmod 644
|
||||||
|
|
||||||
@ -107,6 +104,6 @@ make test
|
|||||||
%perl_gen_filelist
|
%perl_gen_filelist
|
||||||
|
|
||||||
%files -f %{name}.files
|
%files -f %{name}.files
|
||||||
%doc BUGS Changes docs example README README.Win32
|
%doc BUGS Changes docs example README
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
Loading…
x
Reference in New Issue
Block a user