diff options
author | Constanze Hausner <constanze@gentoo.org> | 2013-09-22 13:19:08 +0000 |
---|---|---|
committer | Constanze Hausner <constanze@gentoo.org> | 2013-09-22 13:19:08 +0000 |
commit | 52ff4aa8386fcf30a3392ffdbc0bf161d722969f (patch) | |
tree | d374d77baf4b2ebfc3e071273f0db8cfd099afd2 /net-firewall/shorewall6-lite | |
parent | Bugfix 459316 for 4.5.18; Thanks to Thomas D. (diff) | |
download | gentoo-2-52ff4aa8386fcf30a3392ffdbc0bf161d722969f.tar.gz gentoo-2-52ff4aa8386fcf30a3392ffdbc0bf161d722969f.tar.bz2 gentoo-2-52ff4aa8386fcf30a3392ffdbc0bf161d722969f.zip |
Bugfix 459316 for 4.5.18; Thanks to Thomas D.
(Portage version: 2.2.1/cvs/Linux x86_64, signed Manifest commit with key BB80F419010E3EC3)
Diffstat (limited to 'net-firewall/shorewall6-lite')
5 files changed, 199 insertions, 1 deletions
diff --git a/net-firewall/shorewall6-lite/ChangeLog b/net-firewall/shorewall6-lite/ChangeLog index 7378c572b6e3..5bdd8416a282 100644 --- a/net-firewall/shorewall6-lite/ChangeLog +++ b/net-firewall/shorewall6-lite/ChangeLog @@ -1,6 +1,14 @@ # ChangeLog for net-firewall/shorewall6-lite # Copyright 1999-2013 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/net-firewall/shorewall6-lite/ChangeLog,v 1.64 2013/08/29 19:04:47 constanze Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-firewall/shorewall6-lite/ChangeLog,v 1.65 2013/09/22 13:19:08 constanze Exp $ + +*shorewall6-lite-4.5.18-r1 (22 Sep 2013) + + 22 Sep 2013; Constanze Hausner <constanze@gentoo.org> + +files/4.5.18-r1/shorewall6-lite.initd, + +files/4.5.18-r1/shorewall6-lite.systemd, +files/4.5.18-r1/shorewallrc_new, + +shorewall6-lite-4.5.18-r1.ebuild: + Bugfix 459316 for 4.5.18; Thanks to Thomas D. 29 Aug 2013; Constanze Hausner <constanze@gentoo.org> metadata.xml: Added Thomas D. as new maintainer diff --git a/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.initd b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.initd new file mode 100644 index 000000000000..3f2e01f77e35 --- /dev/null +++ b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.initd @@ -0,0 +1,82 @@ +#!/sbin/runscript +# Copyright 1999-2013 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.initd,v 1.1 2013/09/22 13:19:08 constanze Exp $ + +description='The Shoreline Firewall 6 Lite, more commonly known as "Shorewall6 Lite", is' +description="${description} a high-level tool for configuring Netfilter." + +extra_commands="clear" +extra_started_commands="reset" + +description_clear="Clear will remove all rules and chains installed by" +description_clear="${description_clear} Shorewall6 Lite. The firewall is" +description_clear="${description_clear} then wide open and unprotected." + +description_reset="All the packet and byte counters in the firewall are reset." + +depend() { + need net + provide firewall + after ulogd +} + +status() { + local _retval + /sbin/shorewall6-lite status 1>/dev/null + _retval=$? + if [ ${_retval} = '0' ]; then + einfo 'status: started' + mark_service_started "${SVCNAME}" + return 0 + else + einfo 'status: stopped' + mark_service_stopped "${SVCNAME}" + return 3 + fi +} + +start() { + ebegin "Starting shorewall6-lite" + /sbin/shorewall6-lite start 1>/dev/null + eend $? +} + +stop() { + ebegin "Stopping shorewall6-lite" + /sbin/shorewall6-lite stop 1>/dev/null + eend $? +} + +restart() { + # shorewall comes with its own control script that includes a + # restart function, so refrain from calling svc_stop/svc_start + # here. Note that this comment is required to fix bug 55576; + # runscript.sh greps this script... (09 Jul 2004 agriffis) + + ebegin "Restarting shorewall6-lite" + /sbin/shorewall6-lite status 1>/dev/null + if [ $? != 0 ] ; then + svc_start + else + /sbin/shorewall6-lite restart 1>/dev/null + fi + eend $? +} + +clear() { + # clear will remove all the rules and bring the system to an unfirewalled + # state. (21 Nov 2004 eldad) + + ebegin "Clearing all shorewall6-lite rules and setting policy to ACCEPT" + /sbin/shorewall6-lite clear 1>/dev/null + eend $? +} + +reset() { + # reset the packet and byte counters in the firewall + + ebegin "Resetting the packet and byte counters in shorewall6-lite" + /sbin/shorewall6-lite reset 1>/dev/null + eend $? +} diff --git a/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.systemd b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.systemd new file mode 100644 index 000000000000..c34c688b137d --- /dev/null +++ b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewall6-lite.systemd @@ -0,0 +1,20 @@ +# +# The Shoreline Firewall (Shorewall) Packet Filtering Firewall - V4.4 +# +# Copyright 2011 Jonathan Underwood (jonathan.underwood@gmail.com) +# +[Unit] +Description=Shorewall IPv6 firewall (lite) +After=syslog.target +After=network.target + +[Service] +Type=oneshot +RemainAfterExit=yes +EnvironmentFile=/etc/shorewall6-lite +StandardOutput=syslog +ExecStart=/sbin/shorewall6-lite $OPTIONS start +ExecStop=/sbin/shorewall6-lite $OPTIONS stop + +[Install] +WantedBy=multi-user.target diff --git a/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewallrc_new b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewallrc_new new file mode 100644 index 000000000000..0f9301cfeb49 --- /dev/null +++ b/net-firewall/shorewall6-lite/files/4.5.18-r1/shorewallrc_new @@ -0,0 +1,22 @@ +# +# Gentoo Shorewall 4.5 rc file +# +BUILD= #Default is to detect the build system +HOST=linux #Generic Linux +PREFIX=@GENTOO_PORTAGE_EPREFIX@/usr #Top-level directory for shared files, libraries, etc. +SHAREDIR=${PREFIX}/share #Directory for arch-neutral files. +LIBEXECDIR=${PREFIX}/share #Directory for executable scripts. +PERLLIBDIR=${PREFIX}/share/shorewall #Directory to install Shorewall Perl module directory +CONFDIR=@GENTOO_PORTAGE_EPREFIX@/etc #Directory where subsystem configurations are installed +SBINDIR=@GENTOO_PORTAGE_EPREFIX@/sbin #Directory where system administration programs are installed +MANDIR=${PREFIX}/share/man #Directory where manpages are installed. +INITDIR=${CONFDIR}/init.d #Directory where SysV init scripts are installed. +INITFILE=${PRODUCT} #Name of the product's installed SysV init script +INITSOURCE=init.gentoo.sh #Name of the distributed file to be installed as the SysV init script +ANNOTATED= #If non-zero, annotated configuration files are installed +SYSTEMD=@GENTOO_PORTAGE_EPREFIX@/usr/lib/systemd/system #Directory where .service files are installed (systems running systemd only) +SYSCONFFILE= #Name of the distributed file to be installed in $SYSCONFDIR +SYSCONFDIR=${CONFDIR}/conf.d #Directory where SysV init parameter files are installed +SPARSE= #If non-empty, only install $PRODUCT/$PRODUCT.conf in $CONFDIR +VARLIB=@GENTOO_PORTAGE_EPREFIX@/var/lib #Directory where product variable data is stored. +VARDIR=${VARLIB}/${PRODUCT} #Directory where product variable data is stored. diff --git a/net-firewall/shorewall6-lite/shorewall6-lite-4.5.18-r1.ebuild b/net-firewall/shorewall6-lite/shorewall6-lite-4.5.18-r1.ebuild new file mode 100644 index 000000000000..b17cf51f3e80 --- /dev/null +++ b/net-firewall/shorewall6-lite/shorewall6-lite-4.5.18-r1.ebuild @@ -0,0 +1,66 @@ +# Copyright 1999-2013 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/net-firewall/shorewall6-lite/shorewall6-lite-4.5.18-r1.ebuild,v 1.1 2013/09/22 13:19:08 constanze Exp $ + +EAPI="5" + +inherit eutils linux-info prefix systemd versionator + +# Select version (stable, RC, Beta): +MY_PV_TREE=$(get_version_component_range 1-2) # for devel versions use "development/$(get_version_component_range 1-2)" +MY_PV_BASE=$(get_version_component_range 1-3) + +MY_PN="${PN/6-lite/}" +MY_P="${MY_PN}-${MY_PV_BASE}" +MY_P_DOCS="${MY_PN}-docs-html-${PV}" + +DESCRIPTION="An iptables-based firewall whose config is handled by a normal Shorewall6." +HOMEPAGE="http://www.shorewall.net/" +SRC_URI="http://www1.shorewall.net/pub/${MY_PN}/${MY_PV_TREE}/${MY_P}/${P}.tar.bz2 + doc? ( http://www1.shorewall.net/pub/${MY_PN}/${MY_PV_TREE}/${MY_P}/${MY_P_DOCS}.tar.bz2 )" + +LICENSE="GPL-2" +SLOT="0" +KEYWORDS="~alpha ~amd64 ~hppa ~sparc ~x86" +IUSE="doc" + +RDEPEND=">=net-firewall/iptables-1.4.0 + sys-apps/iproute2 + =net-firewall/shorewall-core-${PVR}" + +pkg_pretend() { + if kernel_is lt 2 6 25 ; then + die "${PN} requires at least kernel 2.6.25." + fi +} + +src_prepare() { + cp "${FILESDIR}"/${PVR}/shorewallrc_new "${S}"/shorewallrc.gentoo || die "Copying shorewallrc_new failed" + eprefixify "${S}"/shorewallrc.gentoo + + cp "${FILESDIR}"/${PVR}/${PN}.initd "${S}"/init.gentoo.sh || die "Copying shorewall.initd failed" + + epatch_user +} + +src_configure() { + :; +} + +src_compile() { + :; +} + +src_install() { + keepdir /var/lib/${PN} + + cd "${WORKDIR}/${P}" + DESTDIR="${D}" ./install.sh shorewallrc.gentoo || die "install.sh failed" + systemd_newunit "${FILESDIR}"/${PVR}/shorewall6-lite.systemd 'shorewall6-lite.service' + + dodoc changelog.txt releasenotes.txt + if use doc; then + cd "${WORKDIR}/${MY_P_DOCS}" + dohtml -r * + fi +} |