forked from pool/libselinux
Marcus Meissner
eed1af708c
-update to 2.1.13 * audit2why: make sure path is nul terminated * utils: new file context regex compiler * label_file: use precompiled filecontext when possible * do not leak mmapfd * sefcontontext_compile: Add error handling to help debug problems in libsemanage. * man: make selinux.8 mention service man pages * audit2why: Fix segfault if finish() called twice * audit2why: do not leak on multiple init() calls * mode_to_security_class: interface to translate a mode_t in to a security class * audit2why: Cleanup audit2why analysys function * man: Fix program synopsis and function prototypes in man pages * man: Fix man pages formatting * man: Fix typo in man page * man: Add references and man page links to _raw function variants * Use ENOTSUP instead of EOPNOTSUPP for getfilecon functions * man: context_new(3): fix the return value description * selinux_status_open: handle error from sysconf * selinux_status_open: do not leak statusfd on exec * Fix errors found by coverity * Change boooleans.subs to booleans.subs_dist. * optimize set*con functions * pkg-config do not specifc ruby version * unmap file contexts on selabel_close() * do not leak file contexts with mmap'd backend * sefcontext_compile: do not leak fd on error * matchmediacon: do not leak fd * src/label_android_property: do not leak fd on error OBS-URL: https://build.opensuse.org/request/show/161739 OBS-URL: https://build.opensuse.org/package/show/security:SELinux/libselinux?expand=0&rev=63
132 lines
5.3 KiB
RPMSpec
132 lines
5.3 KiB
RPMSpec
#
|
|
# spec file for package libselinux-bindings
|
|
#
|
|
# Copyright (c) 2013 SUSE LINUX Products GmbH, Nuernberg, Germany.
|
|
#
|
|
# All modifications and additions to the file contributed by third parties
|
|
# remain the property of their copyright owners, unless otherwise agreed
|
|
# upon. The license for this file, and modifications and additions to the
|
|
# file, is the same license as for the pristine package itself (unless the
|
|
# license for the pristine package is not an Open Source License, in which
|
|
# case the license is the MIT License). An "Open Source License" is a
|
|
# license that conforms to the Open Source Definition (Version 1.9)
|
|
# published by the Open Source Initiative.
|
|
|
|
# Please submit bugfixes or comments via http://bugs.opensuse.org/
|
|
#
|
|
|
|
|
|
%define libsepol_ver 2.1.9
|
|
BuildRequires: libsepol-devel-static >= %{libsepol_ver}
|
|
BuildRequires: pcre-devel
|
|
BuildRequires: python-devel
|
|
BuildRequires: ruby-devel
|
|
BuildRequires: swig
|
|
|
|
Name: libselinux-bindings
|
|
Version: 2.1.13
|
|
Release: 0
|
|
Url: http://userspace.selinuxproject.org/
|
|
Summary: SELinux library and simple utilities
|
|
License: GPL-2.0 and SUSE-Public-Domain
|
|
Group: System/Libraries
|
|
Source: http://userspace.selinuxproject.org/releases/20120216/libselinux-%{version}.tgz
|
|
Source1: selinux-ready
|
|
Source2: baselibs.conf
|
|
Patch0: libselinux-rhat.patch
|
|
Patch1: libselinux-ruby.patch
|
|
BuildRoot: %{_tmppath}/%{name}-%{version}-build
|
|
|
|
%description
|
|
Security-enhanced Linux is a feature of the Linux(R) kernel and a
|
|
number of utilities with enhanced security functionality designed to
|
|
add mandatory access controls to Linux. The Security-enhanced Linux
|
|
kernel contains new architectural components originally developed to
|
|
improve the security of the Flask operating system. These architectural
|
|
components provide general support for the enforcement of many kinds of
|
|
mandatory access control policies, including those based on the
|
|
concepts of Type Enforcement(R), Role-based Access Control, and
|
|
Multi-level Security.
|
|
|
|
libselinux provides an API for SELinux applications to get and set
|
|
process and file security contexts and to obtain security policy
|
|
decisions. Required for any applications that use the SELinux API.
|
|
|
|
|
|
|
|
%package -n python-selinux
|
|
Summary: SELinux library and simple utilities
|
|
License: SUSE-Public-Domain
|
|
Group: Development/Libraries/Python
|
|
Requires: libselinux1 = %{version}
|
|
Requires: python
|
|
|
|
%description -n python-selinux
|
|
Security-enhanced Linux is a feature of the Linux(R) kernel and a
|
|
number of utilities with enhanced security functionality designed to
|
|
add mandatory access controls to Linux. The Security-enhanced Linux
|
|
kernel contains new architectural components originally developed to
|
|
improve the security of the Flask operating system. These architectural
|
|
components provide general support for the enforcement of many kinds of
|
|
mandatory access control policies, including those based on the
|
|
concepts of Type Enforcement(R), Role-based Access Control, and
|
|
Multi-level Security.
|
|
|
|
libselinux provides an API for SELinux applications to get and set
|
|
process and file security contexts and to obtain security policy
|
|
decisions. Required for any applications that use the SELinux API.
|
|
|
|
|
|
|
|
%package -n ruby-selinux
|
|
Summary: SELinux library and simple utilities
|
|
License: SUSE-Public-Domain
|
|
Group: Development/Languages/Ruby
|
|
Requires: libselinux1 = %{version}
|
|
Requires: ruby
|
|
|
|
%description -n ruby-selinux
|
|
Security-enhanced Linux is a feature of the Linux(R) kernel and a
|
|
number of utilities with enhanced security functionality designed to
|
|
add mandatory access controls to Linux. The Security-enhanced Linux
|
|
kernel contains new architectural components originally developed to
|
|
improve the security of the Flask operating system. These architectural
|
|
components provide general support for the enforcement of many kinds of
|
|
mandatory access control policies, including those based on the
|
|
concepts of Type Enforcement(R), Role-based Access Control, and
|
|
Multi-level Security.
|
|
|
|
libselinux provides an API for SELinux applications to get and set
|
|
process and file security contexts and to obtain security policy
|
|
decisions. Required for any applications that use the SELinux API.
|
|
|
|
|
|
|
|
%prep
|
|
%setup -q -n libselinux-%{version}
|
|
%patch0 -p2
|
|
%patch1
|
|
|
|
%build
|
|
make %{?_smp_mflags} LIBDIR="%{_libdir}" CFLAGS="$RPM_OPT_FLAGS" -C src
|
|
make %{?_smp_mflags} LIBDIR="%{_libdir}" CFLAGS="$RPM_OPT_FLAGS" -C src swigify
|
|
make %{?_smp_mflags} LIBDIR="%{_libdir}" CFLAGS="$RPM_OPT_FLAGS" -C src pywrap
|
|
make %{?_smp_mflags} LIBDIR="%{_libdir}" CFLAGS="$RPM_OPT_FLAGS" -C src rubywrap
|
|
|
|
%install
|
|
make DESTDIR="$RPM_BUILD_ROOT" LIBDIR="$RPM_BUILD_ROOT%{_libdir}" SHLIBDIR="$RPM_BUILD_ROOT/%{_lib}" -C src install
|
|
make DESTDIR="$RPM_BUILD_ROOT" LIBDIR="$RPM_BUILD_ROOT%{_libdir}" SHLIBDIR="$RPM_BUILD_ROOT/%{_lib}" -C src install-pywrap
|
|
make DESTDIR="$RPM_BUILD_ROOT" LIBDIR="$RPM_BUILD_ROOT%{_libdir}" SHLIBDIR="$RPM_BUILD_ROOT/%{_lib}" -C src install-rubywrap
|
|
rm -rf $RPM_BUILD_ROOT/%{_lib} $RPM_BUILD_ROOT%{_libdir}/libselinux.* $RPM_BUILD_ROOT%{_libdir}/pkgconfig
|
|
|
|
%files -n python-selinux
|
|
%defattr(-,root,root,-)
|
|
%dir %{py_sitedir}/selinux
|
|
%{py_sitedir}/selinux/*
|
|
|
|
%files -n ruby-selinux
|
|
%defattr(-,root,root,-)
|
|
%{_libdir}/ruby/vendor_ruby/%{rb_ver}/%{rb_arch}/selinux.so
|
|
|
|
%changelog
|