2007-01-16 00:29:04 +01:00
|
|
|
|
#
|
2007-07-27 02:02:39 +02:00
|
|
|
|
# spec file for package pam_pkcs11 (Version 0.6.0)
|
2007-01-16 00:29:04 +01:00
|
|
|
|
#
|
2007-07-27 02:02:39 +02:00
|
|
|
|
# Copyright (c) 2007 SUSE LINUX Products GmbH, Nuernberg, Germany.
|
2007-01-16 00:29:04 +01:00
|
|
|
|
# This file and all modifications and additions to the pristine
|
|
|
|
|
# package are under the same license as the package itself.
|
|
|
|
|
#
|
|
|
|
|
# Please submit bugfixes or comments via http://bugs.opensuse.org/
|
|
|
|
|
#
|
|
|
|
|
|
|
|
|
|
# norootforbuild
|
|
|
|
|
|
|
|
|
|
Name: pam_pkcs11
|
2007-07-27 02:02:39 +02:00
|
|
|
|
Version: 0.6.0
|
2007-09-11 00:48:13 +02:00
|
|
|
|
Release: 16
|
2007-01-16 00:29:04 +01:00
|
|
|
|
URL: http://www.opensc-project.org/pam_pkcs11/
|
|
|
|
|
Group: Productivity/Security
|
2007-07-27 02:02:39 +02:00
|
|
|
|
License: LGPL v2 or later
|
|
|
|
|
Summary: PKCS #11 PAM Module
|
2007-01-16 00:29:04 +01:00
|
|
|
|
Source: %{name}-%{version}.tar.bz2
|
2007-08-03 22:28:44 +02:00
|
|
|
|
Source1: pam_pkcs11-common-auth-smartcard.pam
|
|
|
|
|
Source2: secutil.h
|
|
|
|
|
Patch: %{name}-mapfile-syntax.patch
|
|
|
|
|
Patch1: %{name}-0.5.3-nss-conf.patch
|
|
|
|
|
Patch2: %{name}-0.6.0-ms-upn-oid.patch
|
|
|
|
|
Patch3: %{name}-0.6.0-nss-autoconf.patch
|
|
|
|
|
Patch4: %{name}-msnickname.patch
|
|
|
|
|
Patch5: %{name}-implicit-declaration.patch
|
|
|
|
|
BuildRequires: curl-devel libopenssl-devel libxslt mozilla-nss-devel openldap2-devel openssl-devel pam-devel pcsc-lite-devel pkg-config
|
2007-01-16 00:29:04 +01:00
|
|
|
|
BuildRoot: %{_tmppath}/%{name}-%{version}-build
|
|
|
|
|
|
|
|
|
|
%description
|
2007-09-11 00:48:13 +02:00
|
|
|
|
This Linux PAM module allows X.509 a certificate-based user
|
2007-01-16 00:29:04 +01:00
|
|
|
|
authentication. The certificate and its dedicated private key are
|
2007-09-11 00:48:13 +02:00
|
|
|
|
thereby accessed by means of an appropriate PKCS #11 module. For the
|
2007-01-16 00:29:04 +01:00
|
|
|
|
verification of the users' certificates, locally stored CA certificates
|
2007-07-27 02:02:39 +02:00
|
|
|
|
as well as online or locally accessible CRLs are used.
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
2007-09-11 00:48:13 +02:00
|
|
|
|
Additionally, the package includes pam_pkcs11-related tools: *
|
|
|
|
|
pkcs11_eventmgr: Generates actions on card insert, removal, or
|
2007-07-27 02:02:39 +02:00
|
|
|
|
time-out events
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
2007-09-11 00:48:13 +02:00
|
|
|
|
* pklogin_finder: Gets the login name that maps to a certificate
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
2007-09-11 00:48:13 +02:00
|
|
|
|
* pkcs11_inspect: Inspects the contents of a certificate
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
2007-09-11 00:48:13 +02:00
|
|
|
|
* make_hash_links: Creates hash link directories for storing CAs and
|
2007-07-27 02:02:39 +02:00
|
|
|
|
CRLs
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Authors:
|
|
|
|
|
--------
|
|
|
|
|
Mario Strasser <mast@gmx.net>
|
|
|
|
|
Juan Antonio Martinez <jonsito@teleline.es>
|
|
|
|
|
Antti Tapaninen <aet@cc.hut.fi>
|
|
|
|
|
Timo Sirainen <tss@iki.fi>
|
|
|
|
|
Ludovic Rousseau <ludovic.rousseau@free.fr>
|
|
|
|
|
Andreas Jellinghaus <aj@dungeon.inka.de>
|
|
|
|
|
Dominik Fischer <dom_fischer@web.de>
|
|
|
|
|
Ville Skytt<EFBFBD> <vskytta@gmail.com>
|
|
|
|
|
|
|
|
|
|
%prep
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%setup -q
|
2007-08-03 22:28:44 +02:00
|
|
|
|
%patch
|
|
|
|
|
%patch1 -p1
|
|
|
|
|
%patch2 -p1
|
|
|
|
|
%patch3 -p1
|
|
|
|
|
%patch4 -p1
|
|
|
|
|
%patch5
|
|
|
|
|
cp -a %{S:1} common-auth-smartcard
|
|
|
|
|
cp -a %{S:2} src/common/
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
|
|
|
|
%build
|
|
|
|
|
# LDAP_DEPRECATED required for for ldap_simple_bind_s(), ldap_search_s(), ldap_unbind_s()
|
2007-07-27 02:02:39 +02:00
|
|
|
|
# -fno-strict-aliasing required for pam_pkcs11-0.6.0:
|
|
|
|
|
export CFLAGS="$RPM_OPT_FLAGS -DLDAP_DEPRECATED -fno-strict-aliasing"
|
2007-08-03 22:28:44 +02:00
|
|
|
|
export CPPFLAGS="`pkg-config --cflags xulrunner-xpcom | sed 's: *:/system_wrappers&:g'`"
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%configure\
|
|
|
|
|
--datadir=%{_docdir}\
|
2007-08-03 22:28:44 +02:00
|
|
|
|
--with-nss\
|
2007-01-16 00:29:04 +01:00
|
|
|
|
--with-curl
|
2007-07-27 02:02:39 +02:00
|
|
|
|
make %{?jobs:-j%jobs}
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
|
|
|
|
%install
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%makeinstall
|
2007-01-16 00:29:04 +01:00
|
|
|
|
mkdir -p $RPM_BUILD_ROOT/%{_lib}
|
2007-07-27 02:02:39 +02:00
|
|
|
|
mv $RPM_BUILD_ROOT%{_libdir}/security $RPM_BUILD_ROOT/%{_lib}
|
|
|
|
|
rm $RPM_BUILD_ROOT%{_libdir}/pam_pkcs11/*.*a #$RPM_BUILD_ROOT/%{_lib}/security/*.*a
|
2007-01-16 00:29:04 +01:00
|
|
|
|
# Hardcoded defaults... no sysconfdir
|
2007-07-27 02:02:39 +02:00
|
|
|
|
install -dm 755 $RPM_BUILD_ROOT%{_sysconfdir}/pam_pkcs11/cacerts
|
|
|
|
|
install -dm 755 $RPM_BUILD_ROOT%{_sysconfdir}/pam_pkcs11/crls
|
2007-01-16 00:29:04 +01:00
|
|
|
|
cd etc
|
|
|
|
|
for conf in *.conf.example ; do
|
2007-07-27 02:02:39 +02:00
|
|
|
|
install -m 644 ${conf} $RPM_BUILD_ROOT%{_sysconfdir}/pam_pkcs11/${conf%.example}
|
2007-01-16 00:29:04 +01:00
|
|
|
|
done
|
|
|
|
|
cd ..
|
2007-07-27 02:02:39 +02:00
|
|
|
|
mkdir -p $RPM_BUILD_ROOT%{_docdir}/%{name}
|
2007-08-03 22:28:44 +02:00
|
|
|
|
cp -a AUTHORS COPYING ChangeLog ChangeLog.svn NEWS README TODO doc/pam_pkcs11.html doc/mappers_api.html doc/api doc/README.autologin doc/README.mappers $RPM_BUILD_ROOT%{_docdir}/%{name}
|
|
|
|
|
mkdir -p $RPM_BUILD_ROOT%{_sysconfdir}/pam.d
|
|
|
|
|
cp common-auth-smartcard $RPM_BUILD_ROOT%{_sysconfdir}/pam.d/
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%find_lang %{name}
|
2007-01-16 00:29:04 +01:00
|
|
|
|
|
|
|
|
|
%clean
|
|
|
|
|
rm -rf $RPM_BUILD_ROOT
|
|
|
|
|
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%files -f %{name}.lang
|
2007-01-16 00:29:04 +01:00
|
|
|
|
%defattr (-, root, root)
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%doc %{_docdir}/%{name}
|
|
|
|
|
%{_bindir}/*
|
|
|
|
|
%{_libdir}/pam_pkcs11
|
2007-01-16 00:29:04 +01:00
|
|
|
|
/%{_lib}/security/*.so
|
2007-07-27 02:02:39 +02:00
|
|
|
|
%doc %{_mandir}/man?/*.*
|
|
|
|
|
%dir %{_sysconfdir}/pam_pkcs11
|
|
|
|
|
%dir %{_sysconfdir}/pam_pkcs11/cacerts
|
|
|
|
|
%dir %{_sysconfdir}/pam_pkcs11/crls
|
|
|
|
|
%config(noreplace) %{_sysconfdir}/pam_pkcs11/*.conf
|
2007-08-03 22:28:44 +02:00
|
|
|
|
%config(noreplace) %{_sysconfdir}/pam.d/common-auth-smartcard
|
2007-07-27 02:02:39 +02:00
|
|
|
|
|
|
|
|
|
%changelog
|
2007-09-11 00:48:13 +02:00
|
|
|
|
* Thu Sep 06 2007 - jberkman@novell.com
|
|
|
|
|
- use the same directory for nssdb as the kerberos pkinit plugin
|
2007-08-03 22:28:44 +02:00
|
|
|
|
* Tue Jul 31 2007 - sbrabec@suse.cz
|
|
|
|
|
- Build with NSS instead of openssl.
|
|
|
|
|
- Applied patches from Jacob Berkman: MS UPN OID and NSS
|
|
|
|
|
configuration.
|
|
|
|
|
- Fixed implicit declaration.
|
2007-07-27 02:02:39 +02:00
|
|
|
|
* Thu Jul 26 2007 - sbrabec@suse.cz
|
|
|
|
|
- Updated to version 0.6.0:
|
|
|
|
|
* compiler warning fixes
|
|
|
|
|
* I18N support
|
|
|
|
|
* new configuration options
|
|
|
|
|
* support for new environment variables
|
|
|
|
|
* new tool pkcs11_setup
|
|
|
|
|
* support for the NSS crypto libraries (off by default)
|
|
|
|
|
* for more changes see ChangeLog.svn
|
2007-01-16 00:29:04 +01:00
|
|
|
|
* Fri May 12 2006 - sbrabec@suse.cz
|
|
|
|
|
- New SuSE package, version 0.5.3.
|