Revisions of apache2-mod_nss

Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 851861 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 36)
- use apache rpm macros
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 814638 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 35)
- Add -fcommon in order to fix building with GCC10 (forwarded request 813442 from polslinux)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 805249 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 34)
- Set the minimal apache version to 2.4.18 which is required since
  1.0.18 (mod_nss needs conn_rec->master field) (forwarded request 802933 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 713601 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 32)
Automatic submission by obs-autosubmit
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 588675 from Vítězslav Čížek's avatar Vítězslav Čížek (vitezslav_cizek) (revision 29)
- Use fixed upstream 1.0.16 tarball
  * https://pagure.io/mod_nss/issue/44 (forwarded request 588674 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 585105 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 28)
- Since the update to NSS 3.35, the default NSS certificate
  database format changed from Berkley DB to SQLite
- use %license tag

- Update to 1.0.15
  * Try to auto-detect the NSS database format if not specified
  * Update nss_pcache.8 man page to drop directory and prefix
  * When a token is configured in password file only authenticate once
  * Return an error when NSSPassPhraseDialog is invalid
  * Move 3DES ciphers down from HIGH to MEDIUM to match OpenSSL 1.0.2k+
  * Add -Werror=implicit-function-declaration to CFLAGS
  * Handle group membership when testing for file permissions
  * NSS system-wide policy now disables SSLv3, don't use it in tests
  * Add missing error messages for libssl errors
  * Fix doc typo in SSL_[SERVER|CLIENT]_SAN_IPaddr env variable name
  * When including additional test config use specific extension
  * Fix the TLS Session ID cache
  * Make an invalid protocol setting fatal
  * Don't use same NSS db in nss_pcache as mod_nss, use NSS_NoDB_Init()
  * Add info log message when FIPS is enabled
      * Add AES-256 and drop DES, CAST128, SKIPJACK as wrapping key types
  * Fix removal of CR from PEM certificates
  * Add OCSP caching and timeout tuning knobs
  * Check the NSS database directory permissions as well as the files
    inside it for read access on startup.
  * Add in simple aliases for ciphers to fix those that
    don't follow the pattern (dhe_rsa_aes_128_sha256,
    dhe_rsa_aes_256_sha256) and those with typos
    (camelia_128_sha, camelia_256_sha)
  * Fix semaphore leak (forwarded request 584463 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 560006 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 27)
Automatic submission by obs-autosubmit
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 556377 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 26)
- Fix NSS database startup permission check (bsc#1057776)
  * add 0001-Handle-group-membership-when-testing-for-file-permis.patch (forwarded request 556094 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 555875 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 25)
- drop obsolete mod_nss-dont_disable_SSLV2.patch
  * bump up minimal NSS version to 3.25, which we now have everywhere
- Require iproute2 for ss, which is used by gencert to gather noise

  (bsc#998183) (forwarded request 555075 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 428095 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 22)
- don't disable SSLV2, because it doesn't work with NSS 3.24
  (boo#993642)
  * add mod_nss-dont_disable_SSLV2.patch
- remove deprecated NSSSessionCacheTimeout option from mod_nss.conf.in
  (bsc#998176)
- change ownership of the gencert generated NSS database so apache
  can read it (bsc#998180)
  * add mod_nss-gencert-correct-ownership.patch
- use correct configuration path in mod_nss.conf.in (bsc#996282)
- remove %post migration code from the old alias directory
- generate dummy certificates if there aren't any in mod_nss.d (forwarded request 427944 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 416355 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 21)
- use systemd-ask-password to prompt for a certificate passphrase
  (bsc#972968)
  * drop obsolete mod_nss-bnc863518-reopen_dev_tty.diff (forwarded request 415922 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 390637 from Petr Gajdos's avatar Petr Gajdos (pgajdos) (revision 20)
- update to 1.0.14 (fixes boo#973996)
  * OpenSSL ciphers stopped parsing at +, CVE-2016-3099
  * Created valgrind suppression files to ease debugging
  * Implement SSL_PPTYPE_FILTER to call executables to get
    the key password pins. Can be used to prompt with systemd.
  * Improvements to migrate.pl
- drop mod_nss_migrate.pl and use upstream migrate script instead
  * add mod_nss-migrate.patch (forwarded request 390295 from vitezslav_cizek)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 355019 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 18)
Automatic submission by obs-autosubmit
Displaying revisions 1 - 20 of 36
openSUSE Build Service is sponsored by