]>
Commit | Line | Data |
---|---|---|
2ed2934f | 1 | # |
2ca913e8 | 2 | # Conditional build: |
f6c7fa07 JB |
3 | %bcond_without chroot # without chrooted user environment support |
4 | %bcond_with gnome # with gnome-askpass (GNOME 1.x) utility | |
cd53fc87 | 5 | %bcond_without gtk # without GTK+ (2.x) |
9cfed0b2 | 6 | %bcond_with ldap # with ldap support |
f6c7fa07 | 7 | %bcond_without libedit # without libedit (editline/history support in sftp client) |
9cfed0b2 | 8 | %bcond_without kerberos5 # without kerberos5 support |
70329622 | 9 | %bcond_without selinux # build without SELinux support |
088aab43 | 10 | %bcond_with hpn # with High Performance SSH/SCP - HPN-SSH (see patch comment) |
11 | %bcond_with hpn_none # with hpn (above) and '-z' none cipher option | |
cef904f1 | 12 | # |
088aab43 | 13 | %if %{with hpn_none} |
ae65c44e | 14 | %undefine with_hpn |
088aab43 | 15 | %endif |
cef904f1 JB |
16 | # gtk2-based gnome-askpass means no gnome1-based |
17 | %{?with_gtk:%undefine with_gnome} | |
52000378 | 18 | Summary: OpenSSH free Secure Shell (SSH) implementation |
25e16946 ER |
19 | Summary(de.UTF-8): OpenSSH - freie Implementation der Secure Shell (SSH) |
20 | Summary(es.UTF-8): Implementación libre de SSH | |
21 | Summary(fr.UTF-8): Implémentation libre du shell sécurisé OpenSSH (SSH) | |
22 | Summary(it.UTF-8): Implementazione gratuita OpenSSH della Secure Shell | |
23 | Summary(pl.UTF-8): Publicznie dostępna implementacja bezpiecznego shella (SSH) | |
24 | Summary(pt.UTF-8): Implementação livre OpenSSH do protocolo 'Secure Shell' (SSH) | |
25 | Summary(pt_BR.UTF-8): Implementação livre do SSH | |
26 | Summary(ru.UTF-8): OpenSSH - свободная реализация протокола Secure Shell (SSH) | |
27 | Summary(uk.UTF-8): OpenSSH - вільна реалізація протоколу Secure Shell (SSH) | |
52000378 | 28 | Name: openssh |
85d5b11e | 29 | Version: 4.6p1 |
8a7ba6eb | 30 | Release: 2%{?with_hpn:hpn}%{?with_hpn_none:hpn_none} |
f5fc6a92 | 31 | Epoch: 2 |
5d1c7089 | 32 | License: BSD |
33 | Group: Applications/Networking | |
ecf377a3 | 34 | Source0: ftp://ftp.ca.openbsd.org/pub/OpenBSD/OpenSSH/portable/%{name}-%{version}.tar.gz |
85d5b11e | 35 | # Source0-md5: 6a7fa99f44d9e1b5b04d15256e1405bb |
9b7a7aca | 36 | Source1: %{name}d.conf |
37 | Source2: %{name}.conf | |
e9cfdffe | 38 | Source3: %{name}d.init |
39 | Source4: %{name}d.pamd | |
9b7a7aca | 40 | Source5: %{name}.sysconfig |
ec00afd0 | 41 | Source6: passwd.pamd |
0a069c2e | 42 | Source7: http://www.mif.pg.gda.pl/homepages/ankry/man-PLD/%{name}-non-english-man-pages.tar.bz2 |
2b7669a6 | 43 | # Source7-md5: 66943d481cc422512b537bcc2c7400d1 |
f92e73b9 | 44 | Source11: ssh-agent.sh |
45 | Source12: ssh-agent.conf | |
89eac7b5 | 46 | Patch0: %{name}-no_libnsl.patch |
1aca01a4 | 47 | Patch2: %{name}-linux-ipv6.patch |
956d8002 | 48 | Patch3: %{name}-pam_misc.patch |
e78fa962 | 49 | Patch4: %{name}-sigpipe.patch |
bb72f814 | 50 | # http://www.opendarwin.org/projects/openssh-lpk/ |
8db4df15 | 51 | Patch5: %{name}-lpk-4.3p1-0.3.7.patch |
69fe0cc7 | 52 | Patch6: %{name}-heimdal.patch |
ee174ac9 | 53 | Patch7: %{name}-pam-conv.patch |
9cfed0b2 | 54 | # http://chrootssh.sourceforge.net/download/osshChroot-3.7.1p2.diff |
55 | Patch8: %{name}-chroot.patch | |
3cc83ce8 | 56 | Patch9: %{name}-selinux.patch |
d5dc421b | 57 | # HPN patches rediffed due sigpipe patch. |
0a069c2e | 58 | # High Performance SSH/SCP - HPN-SSH - http://www.psc.edu/networking/projects/hpn-ssh/ |
088aab43 | 59 | # http://www.psc.edu/networking/projects/hpn-ssh/openssh-4.2p1-hpn11.diff |
64f1c35c | 60 | Patch10: %{name}-4.3p1-hpn11.patch |
088aab43 | 61 | # Adds HPN (see p11) and an undocumented -z none cipher flag |
62 | # http://www.psc.edu/networking/projects/hpn-ssh/openssh-4.2p1-hpn11-none.diff | |
64f1c35c JB |
63 | Patch11: %{name}-4.3p1-hpn11-none.patch |
64 | Patch12: %{name}-include.patch | |
e9cfdffe | 65 | URL: http://www.openssh.com/ |
0a069c2e | 66 | BuildRequires: %{__perl} |
92d612e6 | 67 | BuildRequires: autoconf |
8f12ae30 | 68 | BuildRequires: automake |
9cfed0b2 | 69 | %{?with_gnome:BuildRequires: gnome-libs-devel} |
70 | %{?with_gtk:BuildRequires: gtk+2-devel} | |
c1e0ba67 | 71 | %{?with_kerberos5:BuildRequires: heimdal-devel >= 0.7} |
f6c7fa07 | 72 | %{?with_libedit:BuildRequires: libedit-devel} |
70329622 | 73 | %{?with_selinux:BuildRequires: libselinux-devel} |
a14c109c | 74 | BuildRequires: libwrap-devel |
9cfed0b2 | 75 | %{?with_ldap:BuildRequires: openldap-devel} |
b12dd014 | 76 | BuildRequires: openssl-devel >= 0.9.7d |
92d612e6 | 77 | BuildRequires: pam-devel |
9cfed0b2 | 78 | %{?with_gtk:BuildRequires: pkgconfig} |
9be30b5d | 79 | BuildRequires: rpmbuild(macros) >= 1.318 |
a14c109c | 80 | BuildRequires: zlib-devel |
680fc8d4 | 81 | Requires: filesystem >= 3.0-11 |
d38368b3 | 82 | Requires: pam >= 0.99.7.1 |
f937b661 | 83 | Obsoletes: ssh |
05fbd2e9 | 84 | BuildRoot: %{tmpdir}/%{name}-%{version}-root-%(id -u -n) |
52000378 | 85 | |
b7b47957 | 86 | %define _sysconfdir /etc/ssh |
1dd7cf18 | 87 | %define _libexecdir %{_libdir}/%{name} |
a14c109c | 88 | %define _privsepdir /usr/share/empty |
6fe24471 AF |
89 | |
90 | %description | |
91 | Ssh (Secure Shell) a program for logging into a remote machine and for | |
11530f15 | 92 | executing commands in a remote machine. It is intended to replace |
93 | rlogin and rsh, and provide secure encrypted communications between | |
94 | two untrusted hosts over an insecure network. X11 connections and | |
95 | arbitrary TCP/IP ports can also be forwarded over the secure channel. | |
6fe24471 | 96 | |
11530f15 | 97 | OpenSSH is OpenBSD's rework of the last free version of SSH, bringing |
98 | it up to date in terms of security and features, as well as removing | |
99 | all patented algorithms to seperate libraries (OpenSSL). | |
6fe24471 | 100 | |
11530f15 | 101 | This package includes the core files necessary for both the OpenSSH |
102 | client and server. To make this package useful, you should also | |
103 | install openssh-clients, openssh-server, or both. | |
088aab43 | 104 | %if %{with hpn} || %{with hpn_none} |
0a069c2e ER |
105 | This release includes High Performance SSH/SCP patches from |
106 | http://www.psc.edu/networking/projects/hpn-ssh/ which are supposed | |
088aab43 | 107 | to increase throughput on fast connections with high RTT (20-150 msec). |
108 | See the website for '-w' values for your connection and /proc/sys TCP | |
109 | values. BTW. in a LAN you have got generally RTT < 1 msec. | |
110 | %endif | |
111 | %if %{with hpn_none} | |
112 | It also includes an undocumented '-z' option which switches | |
0a069c2e ER |
113 | the cipher to none after authentication is completed. Data is |
114 | still secured from tampering and corruption in transit through | |
088aab43 | 115 | the use of the Message Authentication Code (MAC). |
0a069c2e ER |
116 | This option will significantly reduce the number of cpu cycles used |
117 | by the SSH/SCP process. This may allow some users to see significant | |
118 | improvement in (sniffable) data tranfer rates. | |
088aab43 | 119 | %endif |
6fe24471 | 120 | |
84ae85a3 | 121 | %description -l de.UTF-8 |
aebfac88 JB |
122 | OpenSSH (Secure Shell) stellt den Zugang zu anderen Rechnern her. Es |
123 | ersetzt telnet, rlogin, rexec und rsh und stellt eine sichere, | |
84ae85a3 JR |
124 | verschlüsselte Verbindung zwischen zwei nicht vertrauenswürdigen Hosts |
125 | über eine unsicheres Netzwerk her. X11 Verbindungen und beliebige | |
126 | andere TCP/IP Ports können ebenso über den sicheren Channel | |
aebfac88 JB |
127 | weitergeleitet werden. |
128 | ||
84ae85a3 JR |
129 | %description -l es.UTF-8 |
130 | SSH es un programa para accesar y ejecutar órdenes en computadores | |
131 | remotos. Sustituye rlogin y rsh, y suministra un canal de comunicación | |
6c34819e | 132 | seguro entre dos servidores en una red insegura. Conexiones X11 y |
84ae85a3 | 133 | puertas TCP/IP arbitrárias también pueden ser usadas por el canal |
6c34819e | 134 | seguro. |
135 | ||
136 | OpenSSH es el resultado del trabajo del equipo de OpenBSD para | |
84ae85a3 JR |
137 | continuar la última versión gratuita de SSH, actualizándolo en |
138 | términos de seguridad y recursos,así también eliminando todos los | |
139 | algoritmos patentados y colocándolos en bibliotecas separadas | |
6c34819e | 140 | (OpenSSL). |
141 | ||
142 | Este paquete contiene "port" para Linux de OpenSSH. Se debe instalar | |
84ae85a3 | 143 | también el paquete openssh-clients u openssh-server o ambos. |
6c34819e | 144 | |
84ae85a3 JR |
145 | %description -l fr.UTF-8 |
146 | OpenSSH (Secure Shell) fournit un accès à un système distant. Il | |
aebfac88 | 147 | remplace telnet, rlogin, rexec et rsh, tout en assurant des |
84ae85a3 JR |
148 | communications cryptées securisées entre deux hôtes non fiabilisés sur |
149 | un réseau non sécurisé. Des connexions X11 et des ports TCP/IP | |
150 | arbitraires peuvent également être transmis sur le canal sécurisé. | |
aebfac88 | 151 | |
84ae85a3 | 152 | %description -l it.UTF-8 |
aebfac88 JB |
153 | OpenSSH (Secure Shell) fornisce l'accesso ad un sistema remoto. |
154 | Sostituisce telnet, rlogin, rexec, e rsh, e fornisce comunicazioni | |
155 | sicure e crittate tra due host non fidati su una rete non sicura. Le | |
156 | connessioni X11 ad una porta TCP/IP arbitraria possono essere | |
157 | inoltrate attraverso un canale sicuro. | |
158 | ||
84ae85a3 JR |
159 | %description -l pl.UTF-8 |
160 | Ssh (Secure Shell) to program służący do logowania się na zdalną | |
161 | maszynę i uruchamiania na niej aplikacji. W zamierzeniu openssh ma | |
162 | zastąpić rlogin, rsh i dostarczyć bezpieczne, szyfrowane połączenie | |
163 | pomiędzy dwoma hostami. | |
93e2d77c | 164 | |
84ae85a3 JR |
165 | Ten pakiet zawiera podstawowe pliki potrzebne zarówno po stronie |
166 | klienta jak i serwera OpenSSH. Aby był użyteczny, trzeba zainstalować | |
167 | co najmniej jeden z pakietów: openssh-clients lub openssh-server. | |
088aab43 | 168 | %if %{with hpn} || %{with hpn_none} |
84ae85a3 JR |
169 | Ta wersja zawiera łaty z projektu High Performance SSH/SCP |
170 | http://www.psc.edu/networking/projects/hpn-ssh/, które mają na celu | |
171 | zwiększenie przepustowości transmisji dla szybkich połączeń | |
172 | z dużym RTT (20-150 msec). Na stronie projektu znaleźć można | |
173 | odpowednie dla danego połączenia wartości parametru '-w' oraz | |
174 | opcje /proc/sys dla TCP. Nawiasem mówiąc w sieciach LAN RTT < 1 msec. | |
088aab43 | 175 | %endif |
176 | %if %{with hpn_none} | |
84ae85a3 JR |
177 | Obsługiwana jest również nieudokumentowana opcja '-z' odpowiedzialna |
178 | za wyłączenie szyfrowania danych po zakończeniu procesu uwierzytelniania. | |
179 | Dane są zabezpieczone przed modyfikacją lub uszkodzeniem przez | |
088aab43 | 180 | stosowanie Message Authentication Code (MAC). |
84ae85a3 JR |
181 | Opcja ta znacznie redukuje liczbę cykli procesora zużywanych przez |
182 | procesy SSH/SCP. W wybranych zastosowaniach może ona wpłynąć | |
183 | na wyraźne przyspieszenie (podsłuchiwalnej) transmisji danych. | |
088aab43 | 184 | %endif |
aebfac88 | 185 | |
84ae85a3 | 186 | %description -l pt.UTF-8 |
aebfac88 | 187 | OpenSSH (Secure Shell) fornece acesso a um sistema remoto. Substitui o |
84ae85a3 JR |
188 | telnet, rlogin, rexec, e o rsh e fornece comunicações seguras e |
189 | cifradas entre duas máquinas sem confiança mútua sobre uma rede | |
190 | insegura. Ligações X11 e portos TCP/IP arbitrários também poder ser | |
aebfac88 JB |
191 | reenviados pelo canal seguro. |
192 | ||
84ae85a3 JR |
193 | %description -l pt_BR.UTF-8 |
194 | SSH é um programa para acessar e executar comandos em máquinas | |
195 | remotas. Ele substitui rlogin e rsh, e provem um canal de comunicação | |
196 | seguro entre dois hosts em uma rede insegura. Conexões X11 e portas | |
197 | TCP/IP arbitrárias também podem ser usadas pelo canal seguro. | |
6c34819e | 198 | |
84ae85a3 JR |
199 | OpenSSH é o resultado do trabalho da equipe do OpenBSD em continuar a |
200 | última versão gratuita do SSH, atualizando-o em termos de segurança e | |
6c34819e | 201 | recursos, assim como removendo todos os algoritmos patenteados e |
202 | colocando-os em bibliotecas separadas (OpenSSL). | |
203 | ||
84ae85a3 JR |
204 | Esse pacote contém o "port" pra Linux do OpenSSH. Você deve instalar |
205 | também ou o pacote openssh-clients, ou o openssh-server, ou ambos. | |
206 | ||
207 | %description -l ru.UTF-8 | |
208 | Ssh (Secure Shell) - это программа для "захода" (login) на удаленную | |
209 | машину и для выполнения команд на удаленной машине. Она предназначена | |
210 | для замены rlogin и rsh и обеспечивает безопасную шифрованную | |
211 | коммуникацию между двумя хостами в сети, являющейся небезопасной. | |
212 | Соединения X11 и любые порты TCP/IP могут также быть проведены через | |
213 | безопасный канал. | |
214 | ||
215 | OpenSSH - это переделка командой разработчиков OpenBSD последней | |
216 | свободной версии SSH, доведенная до современного состояния в терминах | |
217 | уровня безопасности и поддерживаемых возможностей. Все патентованные | |
218 | алгоритмы вынесены в отдельные библиотеки (OpenSSL). | |
219 | ||
220 | Этот пакет содержит файлы, необходимые как для клиента, так и для | |
221 | сервера OpenSSH. Вам нужно будет установить еще openssh-clients, | |
222 | openssh-server, или оба пакета. | |
223 | ||
224 | %description -l uk.UTF-8 | |
225 | Ssh (Secure Shell) - це програма для "заходу" (login) до віддаленої | |
226 | машини та для виконання команд на віддаленій машині. Вона призначена | |
227 | для заміни rlogin та rsh і забезпечує безпечну шифровану комунікацію | |
228 | між двома хостами в мережі, яка не є безпечною. З'єднання X11 та | |
229 | довільні порти TCP/IP можуть також бути проведені через безпечний | |
230 | канал. | |
231 | ||
232 | OpenSSH - це переробка командою розробників OpenBSD останньої вільної | |
233 | версії SSH, доведена до сучасного стану в термінах рівня безпеки та | |
234 | підтримуваних можливостей. Всі патентовані алгоритми винесені до | |
235 | окремих бібліотек (OpenSSL). | |
236 | ||
237 | Цей пакет містить файли, необхідні як для клієнта, так і для сервера | |
238 | OpenSSH. Вам потрібно буде ще встановити openssh-clients, | |
239 | openssh-server, чи обидва пакети. | |
cb086001 | 240 | |
52000378 AF |
241 | %package clients |
242 | Summary: OpenSSH Secure Shell protocol clients | |
25e16946 ER |
243 | Summary(es.UTF-8): Clientes de OpenSSH |
244 | Summary(pl.UTF-8): Klienci protokołu Secure Shell | |
245 | Summary(pt_BR.UTF-8): Clientes do OpenSSH | |
246 | Summary(ru.UTF-8): OpenSSH - клиенты протокола Secure Shell | |
247 | Summary(uk.UTF-8): OpenSSH - клієнти протоколу Secure Shell | |
52000378 | 248 | Group: Applications/Networking |
96f686c2 | 249 | Requires: %{name} = %{epoch}:%{version}-%{release} |
96f686c2 | 250 | Provides: ssh-clients |
a14c109c | 251 | Obsoletes: ssh-clients |
6fe24471 | 252 | |
52000378 AF |
253 | %description clients |
254 | Ssh (Secure Shell) a program for logging into a remote machine and for | |
11530f15 | 255 | executing commands in a remote machine. It is intended to replace |
256 | rlogin and rsh, and provide secure encrypted communications between | |
257 | two untrusted hosts over an insecure network. X11 connections and | |
258 | arbitrary TCP/IP ports can also be forwarded over the secure channel. | |
6fe24471 | 259 | |
11530f15 | 260 | OpenSSH is OpenBSD's rework of the last free version of SSH, bringing |
261 | it up to date in terms of security and features, as well as removing | |
262 | all patented algorithms to seperate libraries (OpenSSL). | |
52000378 | 263 | |
11530f15 | 264 | This package includes the clients necessary to make encrypted |
265 | connections to SSH servers. | |
52000378 | 266 | |
84ae85a3 | 267 | %description clients -l es.UTF-8 |
6c34819e | 268 | Este paquete incluye los clientes que se necesitan para hacer |
269 | conexiones codificadas con servidores SSH. | |
270 | ||
84ae85a3 JR |
271 | %description clients -l pl.UTF-8 |
272 | Ssh (Secure Shell) to program służący do logowania się na zdalną | |
273 | maszynę i uruchamiania na niej aplikacji. W zamierzeniu openssh ma | |
274 | zastąpić rlogin, rsh i dostarczyć bezpieczne, szyfrowane połączenie | |
275 | pomiędzy dwoma hostami. | |
93e2d77c | 276 | |
84ae85a3 | 277 | Ten pakiet zawiera klientów służących do łączenia się z serwerami SSH. |
93e2d77c | 278 | |
84ae85a3 JR |
279 | %description clients -l pt_BR.UTF-8 |
280 | Esse pacote inclui os clientes necessários para fazer conexões | |
6c34819e | 281 | encriptadas com servidores SSH. |
282 | ||
84ae85a3 JR |
283 | %description clients -l ru.UTF-8 |
284 | Ssh (Secure Shell) - это программа для "захода" (login) на удаленную | |
285 | машину и для выполнения команд на удаленной машине. | |
cb086001 | 286 | |
84ae85a3 JR |
287 | Этот пакет содержит программы-клиенты, необходимые для установления |
288 | зашифрованных соединений с серверами SSH. | |
cb086001 | 289 | |
84ae85a3 JR |
290 | %description clients -l uk.UTF-8 |
291 | Ssh (Secure Shell) - це програма для "заходу" (login) до віддаленої | |
292 | машини та для виконання команд на віддаленій машині. | |
cb086001 | 293 | |
84ae85a3 JR |
294 | Цей пакет містить програми-клієнти, необхідні для встановлення |
295 | зашифрованих з'єднань з серверами SSH. | |
cb086001 | 296 | |
8a7ba6eb AM |
297 | %package clients-agent-profile_d |
298 | Summary: OpenSSH Secure Shell agent init script | |
4944be5f | 299 | Summary(pl.UTF-8): Skrypt startowy agenta OpenSSH |
8a7ba6eb AM |
300 | Group: Applications/Networking |
301 | Requires: %{name}-clients = %{epoch}:%{version}-%{release} | |
302 | ||
303 | %description clients-agent-profile_d | |
304 | profile.d scripts for starting SSH agent. | |
305 | ||
4944be5f JB |
306 | %description clients-agent-profile_d -l pl.UTF-8 |
307 | Skrypty profile.d do uruchamiania agenta SSH. | |
308 | ||
8a7ba6eb AM |
309 | %package clients-agent-xinitrc |
310 | Summary: OpenSSH Secure Shell agent init script | |
311 | Summary(pl.UTF-8): Skrypt inicjujący agenta ssh przez xinitrc | |
312 | Group: Applications/Networking | |
313 | Requires: %{name}-clients-agent-profile_d = %{epoch}:%{version}-%{release} | |
314 | Requires: xinitrc | |
315 | ||
316 | %description clients-agent-xinitrc | |
317 | xinitrc scripts for starting SSH agent. | |
318 | ||
4944be5f JB |
319 | %description clients-agent-xinitrc -l pl.UTF-8 |
320 | Skrypty xinitrc do uruchamiania agenta SSH. | |
8a7ba6eb | 321 | |
52000378 AF |
322 | %package server |
323 | Summary: OpenSSH Secure Shell protocol server (sshd) | |
25e16946 ER |
324 | Summary(de.UTF-8): OpenSSH Secure Shell Protocol-Server (sshd) |
325 | Summary(es.UTF-8): Servidor OpenSSH para comunicaciones codificadas | |
326 | Summary(fr.UTF-8): Serveur de protocole du shell sécurisé OpenSSH (sshd) | |
327 | Summary(it.UTF-8): Server OpenSSH per il protocollo Secure Shell (sshd) | |
328 | Summary(pl.UTF-8): Serwer protokołu Secure Shell (sshd) | |
329 | Summary(pt.UTF-8): Servidor do protocolo 'Secure Shell' OpenSSH (sshd) | |
330 | Summary(pt_BR.UTF-8): Servidor OpenSSH para comunicações encriptadas | |
331 | Summary(ru.UTF-8): OpenSSH - сервер протокола Secure Shell (sshd) | |
332 | Summary(uk.UTF-8): OpenSSH - сервер протоколу Secure Shell (sshd) | |
52000378 | 333 | Group: Networking/Daemons |
a14c109c | 334 | Requires(post): chkconfig >= 0.9 |
40cb2e83 | 335 | Requires(post): grep |
0a069c2e | 336 | Requires(post,preun): /sbin/chkconfig |
9b604401 | 337 | Requires(postun): /usr/sbin/userdel |
0a069c2e ER |
338 | Requires(pre): /bin/id |
339 | Requires(pre): /usr/sbin/useradd | |
340 | Requires: %{name} = %{epoch}:%{version}-%{release} | |
b5529f6f | 341 | Requires: /bin/login |
d38368b3 | 342 | Requires: pam >= 0.99.7.1 |
0a069c2e ER |
343 | Requires: rc-scripts >= 0.4.0.18 |
344 | Requires: util-linux | |
a35d5130 | 345 | Provides: ssh-server |
0a069c2e | 346 | Provides: user(sshd) |
52000378 AF |
347 | |
348 | %description server | |
349 | Ssh (Secure Shell) a program for logging into a remote machine and for | |
11530f15 | 350 | executing commands in a remote machine. It is intended to replace |
351 | rlogin and rsh, and provide secure encrypted communications between | |
352 | two untrusted hosts over an insecure network. X11 connections and | |
353 | arbitrary TCP/IP ports can also be forwarded over the secure channel. | |
52000378 | 354 | |
11530f15 | 355 | OpenSSH is OpenBSD's rework of the last free version of SSH, bringing |
356 | it up to date in terms of security and features, as well as removing | |
357 | all patented algorithms to seperate libraries (OpenSSL). | |
52000378 | 358 | |
11530f15 | 359 | This package contains the secure shell daemon. The sshd is the server |
360 | part of the secure shell protocol and allows ssh clients to connect to | |
361 | your host. | |
6fe24471 | 362 | |
84ae85a3 | 363 | %description server -l de.UTF-8 |
aebfac88 JB |
364 | Dieses Paket installiert den sshd, den Server-Teil der OpenSSH. |
365 | ||
84ae85a3 | 366 | %description server -l es.UTF-8 |
6c34819e | 367 | Este paquete contiene el servidor SSH. sshd es la parte servidor del |
368 | protocolo secure shell y permite que clientes ssh se conecten a su | |
369 | servidor. | |
370 | ||
84ae85a3 | 371 | %description server -l fr.UTF-8 |
aebfac88 JB |
372 | Ce paquetage installe le 'sshd', partie serveur de OpenSSH. |
373 | ||
84ae85a3 | 374 | %description server -l it.UTF-8 |
aebfac88 JB |
375 | Questo pacchetto installa sshd, il server di OpenSSH. |
376 | ||
84ae85a3 JR |
377 | %description server -l pl.UTF-8 |
378 | Ssh (Secure Shell) to program służący do logowania się na zdalną | |
379 | maszynę i uruchamiania na niej aplikacji. W zamierzeniu openssh ma | |
380 | zastąpić rlogin, rsh i dostarczyć bezpieczne, szyfrowane połączenie | |
381 | pomiędzy dwoma hostami. | |
93e2d77c | 382 | |
84ae85a3 | 383 | Ten pakiet zawiera serwer sshd (do którego mogą łączyć się klienci |
11530f15 | 384 | ssh). |
93e2d77c | 385 | |
84ae85a3 | 386 | %description server -l pt.UTF-8 |
aebfac88 JB |
387 | Este pacote intala o sshd, o servidor do OpenSSH. |
388 | ||
84ae85a3 JR |
389 | %description server -l pt_BR.UTF-8 |
390 | Esse pacote contém o servidor SSH. O sshd é a parte servidor do | |
6c34819e | 391 | protocolo secure shell e permite que clientes ssh se conectem ao seu |
392 | host. | |
393 | ||
84ae85a3 JR |
394 | %description server -l ru.UTF-8 |
395 | Ssh (Secure Shell) - это программа для "захода" (login) на удаленную | |
396 | машину и для выполнения команд на удаленной машине. | |
cb086001 | 397 | |
84ae85a3 JR |
398 | Этот пакет содержит sshd - "демон" Secure Shell. sshd - это серверная |
399 | часть протокола Secure Shell, позволяющая клиентам ssh соединяться с | |
400 | вашим хостом. | |
cb086001 | 401 | |
84ae85a3 JR |
402 | %description server -l uk.UTF-8 |
403 | Ssh (Secure Shell) - це програма для "заходу" (login) до віддаленої | |
404 | машини та для виконання команд на віддаленій машині. | |
cb086001 | 405 | |
84ae85a3 JR |
406 | Цей пакет містить sshd - "демон" Secure Shell. sshd - це серверна |
407 | частина протоколу Secure Shell, яка дозволяє клієнтам ssh зв'язуватись | |
408 | з вашим хостом. | |
cb086001 | 409 | |
6e70f4f7 | 410 | %package gnome-askpass |
52000378 | 411 | Summary: OpenSSH GNOME passphrase dialog |
25e16946 ER |
412 | Summary(de.UTF-8): OpenSSH GNOME Passwort-Dialog |
413 | Summary(es.UTF-8): Diálogo para introducción de passphrase para GNOME | |
414 | Summary(fr.UTF-8): Dialogue pass-phrase GNOME d'OpenSSH | |
415 | Summary(it.UTF-8): Finestra di dialogo GNOME per la frase segreta di OpenSSH | |
416 | Summary(pl.UTF-8): Odpytywacz hasła OpenSSH dla GNOME | |
417 | Summary(pt.UTF-8): Diálogo de pedido de senha para GNOME do OpenSSH | |
418 | Summary(pt_BR.UTF-8): Diálogo para entrada de passphrase para GNOME | |
419 | Summary(ru.UTF-8): OpenSSH - диалог ввода ключевой фразы (passphrase) для GNOME | |
420 | Summary(uk.UTF-8): OpenSSH - діалог вводу ключової фрази (passphrase) для GNOME | |
52000378 | 421 | Group: Applications/Networking |
96f686c2 | 422 | Requires: %{name} = %{epoch}:%{version}-%{release} |
f937b661 | 423 | Obsoletes: openssh-askpass |
0a069c2e ER |
424 | Obsoletes: ssh-askpass |
425 | Obsoletes: ssh-extras | |
52000378 | 426 | |
6e70f4f7 | 427 | %description gnome-askpass |
52000378 | 428 | Ssh (Secure Shell) a program for logging into a remote machine and for |
11530f15 | 429 | executing commands in a remote machine. It is intended to replace |
430 | rlogin and rsh, and provide secure encrypted communications between | |
431 | two untrusted hosts over an insecure network. X11 connections and | |
432 | arbitrary TCP/IP ports can also be forwarded over the secure channel. | |
52000378 | 433 | |
11530f15 | 434 | OpenSSH is OpenBSD's rework of the last free version of SSH, bringing |
435 | it up to date in terms of security and features, as well as removing | |
436 | all patented algorithms to seperate libraries (OpenSSL). | |
52000378 AF |
437 | |
438 | This package contains the GNOME passphrase dialog. | |
439 | ||
84ae85a3 JR |
440 | %description gnome-askpass -l es.UTF-8 |
441 | Este paquete contiene un programa que abre una caja de diálogo para | |
6c34819e | 442 | entrada de passphrase en GNOME. |
443 | ||
84ae85a3 JR |
444 | %description gnome-askpass -l pl.UTF-8 |
445 | Ssh (Secure Shell) to program służący do logowania się na zdalną | |
446 | maszynę i uruchamiania na niej aplikacji. W zamierzeniu openssh ma | |
447 | zastąpić rlogin, rsh i dostarczyć bezpieczne, szyfrowane połączenie | |
448 | pomiędzy dwoma hostami. | |
93e2d77c | 449 | |
84ae85a3 | 450 | Ten pakiet zawiera ,,odpytywacz hasła'' dla GNOME. |
93e2d77c | 451 | |
84ae85a3 JR |
452 | %description gnome-askpass -l pt_BR.UTF-8 |
453 | Esse pacote contém um programa que abre uma caixa de diálogo para | |
6c34819e | 454 | entrada de passphrase no GNOME. |
455 | ||
84ae85a3 JR |
456 | %description gnome-askpass -l ru.UTF-8 |
457 | Ssh (Secure Shell) - это программа для "захода" (login) на удаленную | |
458 | машину и для выполнения команд на удаленной машине. | |
cb086001 | 459 | |
84ae85a3 | 460 | Этот пакет содержит диалог ввода ключевой фразы для использования под |
cb086001 | 461 | GNOME. |
462 | ||
84ae85a3 JR |
463 | %description gnome-askpass -l uk.UTF-8 |
464 | Ssh (Secure Shell) - це програма для "заходу" (login) до віддаленої | |
465 | машини та для виконання команд на віддаленій машині. | |
cb086001 | 466 | |
84ae85a3 | 467 | Цей пакет містить діалог вводу ключової фрази для використання під |
cb086001 | 468 | GNOME. |
469 | ||
52000378 | 470 | %prep |
ecf377a3 | 471 | %setup -q |
4946f6e5 | 472 | %patch0 -p1 |
1aca01a4 | 473 | %patch2 -p1 |
200ba837 | 474 | %patch3 -p1 |
bc8d94a6 | 475 | %patch4 -p1 |
9cfed0b2 | 476 | %{?with_ldap:%patch5 -p1} |
e8e3a0ee | 477 | %{?with_kerberos5:%patch6 -p1} |
e9a12f5f | 478 | #%patch7 -p1 |
64f1c35c JB |
479 | %patch8 -p1 |
480 | %patch9 -p1 | |
481 | %{?with_hpn:%patch10 -p1} | |
482 | %{?with_hpn_none:%patch11 -p1} | |
483 | %patch12 -p1 | |
52000378 AF |
484 | |
485 | %build | |
64f1c35c | 486 | cp /usr/share/automake/config.sub . |
0b24ec17 | 487 | %{__aclocal} |
5c76eb87 | 488 | %{__autoconf} |
1aaee2ef | 489 | %{?with_chroot:CPPFLAGS="-DCHROOT"} |
52000378 | 490 | %configure \ |
c59fae24 | 491 | PERL=%{__perl} \ |
ad852e00 | 492 | --with-dns \ |
41897191 AM |
493 | --with-pam \ |
494 | --with-mantype=man \ | |
f9bf943b | 495 | --with-md5-passwords \ |
4946f6e5 | 496 | --with-ipaddr-display \ |
f6c7fa07 | 497 | %{?with_libedit:--with-libedit} \ |
93e2d77c | 498 | --with-4in6 \ |
41897191 | 499 | --disable-suid-ssh \ |
06b95d40 | 500 | --with-tcp-wrappers \ |
9cfed0b2 | 501 | %{?with_ldap:--with-libs="-lldap -llber"} \ |
502 | %{?with_ldap:--with-cppflags="-DWITH_LDAP_PUBKEY"} \ | |
503 | %{?with_kerberos5:--with-kerberos5} \ | |
a14c109c | 504 | --with-privsep-path=%{_privsepdir} \ |
05fbd2e9 | 505 | --with-pid-dir=%{_localstatedir}/run \ |
c7963a12 JR |
506 | --with-xauth=/usr/bin/xauth \ |
507 | --enable-utmpx \ | |
508 | --enable-wtmpx | |
82f989ae | 509 | |
b8002dec | 510 | echo '#define LOGIN_PROGRAM "/bin/login"' >>config.h |
f9bf943b | 511 | |
100832a0 | 512 | %{__make} |
475ef6df | 513 | |
40cb2e83 | 514 | cd contrib |
9cfed0b2 | 515 | %if %{with gnome} |
40cb2e83 JB |
516 | %{__make} gnome-ssh-askpass1 \ |
517 | CC="%{__cc} %{rpmldflags} %{rpmcflags}" | |
518 | %endif | |
9cfed0b2 | 519 | %if %{with gtk} |
40cb2e83 JB |
520 | %{__make} gnome-ssh-askpass2 \ |
521 | CC="%{__cc} %{rpmldflags} %{rpmcflags}" | |
522 | %endif | |
6fe24471 AF |
523 | |
524 | %install | |
525 | rm -rf $RPM_BUILD_ROOT | |
1d1e6997 | 526 | install -d $RPM_BUILD_ROOT{%{_sysconfdir},/etc/{pam.d,rc.d/init.d,sysconfig,security,env.d}} \ |
9a2a459a | 527 | $RPM_BUILD_ROOT%{_libexecdir}/ssh |
8a7ba6eb | 528 | install -d $RPM_BUILD_ROOT/etc/{profile.d,X11/xinit/xinitrc.d} |
52000378 | 529 | |
9a2a459a PG |
530 | %{__make} install \ |
531 | DESTDIR=$RPM_BUILD_ROOT | |
0d32b20f | 532 | |
52000378 | 533 | install %{SOURCE4} $RPM_BUILD_ROOT/etc/pam.d/sshd |
ec00afd0 | 534 | install %{SOURCE6} $RPM_BUILD_ROOT/etc/pam.d/passwdssh |
52000378 | 535 | install %{SOURCE5} $RPM_BUILD_ROOT/etc/sysconfig/sshd |
b7b47957 | 536 | install %{SOURCE3} $RPM_BUILD_ROOT/etc/rc.d/init.d/sshd |
52000378 AF |
537 | install %{SOURCE2} $RPM_BUILD_ROOT%{_sysconfdir}/ssh_config |
538 | install %{SOURCE1} $RPM_BUILD_ROOT%{_sysconfdir}/sshd_config | |
0a069c2e | 539 | install %{SOURCE11} $RPM_BUILD_ROOT/etc/profile.d |
f92e73b9 | 540 | ln -sf /etc/profile.d/ssh-agent.sh $RPM_BUILD_ROOT/etc/X11/xinit/xinitrc.d/ssh-agent.sh |
0a069c2e | 541 | install %{SOURCE12} $RPM_BUILD_ROOT%{_sysconfdir} |
40cb2e83 | 542 | |
2b7669a6 | 543 | bzip2 -dc %{SOURCE7} | tar xf - -C $RPM_BUILD_ROOT%{_mandir} |
544 | ||
9cfed0b2 | 545 | %if %{with gnome} |
40cb2e83 JB |
546 | install contrib/gnome-ssh-askpass1 $RPM_BUILD_ROOT%{_libexecdir}/ssh/ssh-askpass |
547 | %endif | |
9cfed0b2 | 548 | %if %{with gtk} |
40cb2e83 | 549 | install contrib/gnome-ssh-askpass2 $RPM_BUILD_ROOT%{_libexecdir}/ssh/ssh-askpass |
1d1e6997 PG |
550 | %endif |
551 | %if %{with gnome} || %{with gtk} | |
552 | cat << EOF >$RPM_BUILD_ROOT/etc/env.d/GNOME_SSH_ASKPASS_GRAB_SERVER | |
553 | #GNOME_SSH_ASKPASS_GRAB_SERVER="true" | |
554 | EOF | |
555 | cat << EOF >$RPM_BUILD_ROOT/etc/env.d/GNOME_SSH_ASKPASS_GRAB_POINTER | |
556 | #GNOME_SSH_ASKPASS_GRAB_POINTER="true" | |
557 | EOF | |
4ae0bc0d | 558 | ln -s %{_libexecdir}/ssh/ssh-askpass $RPM_BUILD_ROOT%{_libexecdir}/ssh-askpass |
40cb2e83 | 559 | %endif |
6e70f4f7 | 560 | |
8e700b6b | 561 | rm -f $RPM_BUILD_ROOT%{_mandir}/man1/slogin.1 |
5f72fe6f | 562 | echo ".so ssh.1" > $RPM_BUILD_ROOT%{_mandir}/man1/slogin.1 |
41897191 | 563 | |
ffbc041f | 564 | touch $RPM_BUILD_ROOT/etc/security/blacklist.sshd |
643dc12f | 565 | |
35f35e3d | 566 | %if "%{_lib}" != "lib" |
b8002dec | 567 | find $RPM_BUILD_ROOT%{_sysconfdir} -type f -print0 | xargs -0 sed -i -e 's#%{_prefix}/lib#%{_libdir}#' |
d08f1072 | 568 | %endif |
569 | ||
b8002dec | 570 | cat << 'EOF' > $RPM_BUILD_ROOT/etc/env.d/SSH_ASKPASS |
1d1e6997 PG |
571 | #SSH_ASKPASS="%{_libexecdir}/ssh-askpass" |
572 | EOF | |
573 | ||
6fe24471 AF |
574 | %clean |
575 | rm -rf $RPM_BUILD_ROOT | |
576 | ||
b259ae2c ER |
577 | %post clients |
578 | %env_update | |
579 | ||
580 | %postun clients | |
581 | %env_update | |
582 | ||
583 | %post gnome-askpass | |
584 | %env_update | |
585 | ||
586 | %postun gnome-askpass | |
587 | %env_update | |
588 | ||
8a304ceb | 589 | %pre server |
0225d3b8 | 590 | %useradd -P %{name}-server -u 40 -d %{_privsepdir} -s /bin/false -c "OpenSSH PrivSep User" -g nobody sshd |
4c8ae2f8 | 591 | |
52000378 | 592 | %post server |
d7fde396 | 593 | /sbin/chkconfig --add sshd |
2c99507e | 594 | %service sshd reload "openssh daemon" |
40cb2e83 JB |
595 | if ! grep -qs ssh /etc/security/passwd.conf ; then |
596 | umask 022 | |
ec00afd0 JR |
597 | echo "ssh" >> /etc/security/passwd.conf |
598 | fi | |
6fe24471 | 599 | |
52000378 | 600 | %preun server |
d7fde396 | 601 | if [ "$1" = "0" ]; then |
b054de44 | 602 | %service sshd stop |
d7fde396 | 603 | /sbin/chkconfig --del sshd |
604 | fi | |
6fe24471 | 605 | |
9b604401 JB |
606 | %postun server |
607 | if [ "$1" = "0" ]; then | |
5f4ffc90 | 608 | %userremove sshd |
9b604401 JB |
609 | fi |
610 | ||
6fe24471 | 611 | %files |
52000378 | 612 | %defattr(644,root,root,755) |
7cc45b9b | 613 | %doc *.RNG TODO README OVERVIEW CREDITS Change* |
a6eef44c AM |
614 | %attr(755,root,root) %{_bindir}/ssh-key* |
615 | %{_mandir}/man1/ssh-key*.1* | |
52000378 | 616 | %dir %{_sysconfdir} |
9df62d0f | 617 | %dir %{_libexecdir} |
52000378 AF |
618 | |
619 | %files clients | |
620 | %defattr(644,root,root,755) | |
96f686c2 JB |
621 | %attr(755,root,root) %{_bindir}/ssh |
622 | %attr(755,root,root) %{_bindir}/slogin | |
623 | %attr(755,root,root) %{_bindir}/sftp | |
624 | %attr(755,root,root) %{_bindir}/ssh-agent | |
625 | %attr(755,root,root) %{_bindir}/ssh-add | |
626 | %attr(755,root,root) %{_bindir}/scp | |
794e0987 JB |
627 | %config(noreplace) %verify(not md5 mtime size) %{_sysconfdir}/ssh_config |
628 | %config(noreplace,missingok) %verify(not md5 mtime size) /etc/env.d/SSH_ASKPASS | |
52000378 AF |
629 | %{_mandir}/man1/scp.1* |
630 | %{_mandir}/man1/ssh.1* | |
41897191 | 631 | %{_mandir}/man1/slogin.1* |
a6eef44c | 632 | %{_mandir}/man1/sftp.1* |
52000378 AF |
633 | %{_mandir}/man1/ssh-agent.1* |
634 | %{_mandir}/man1/ssh-add.1* | |
902cef13 | 635 | %{_mandir}/man5/ssh_config.5* |
2b7669a6 | 636 | %lang(it) %{_mandir}/it/man1/ssh.1* |
637 | %lang(it) %{_mandir}/it/man5/ssh_config.5* | |
638 | %lang(pl) %{_mandir}/pl/man1/scp.1* | |
639 | %lang(zh_CN) %{_mandir}/zh_CN/man1/scp.1* | |
ec82f607 JB |
640 | |
641 | # for host-based auth (suid required for accessing private host key) | |
642 | #%attr(4755,root,root) %{_libexecdir}/ssh-keysign | |
643 | #%{_mandir}/man8/ssh-keysign.8* | |
52000378 | 644 | |
8a7ba6eb AM |
645 | %files clients-agent-profile_d |
646 | %defattr(644,root,root,755) | |
647 | %config(noreplace) %verify(not md5 mtime size) %{_sysconfdir}/ssh-agent.conf | |
648 | %attr(755,root,root) /etc/profile.d/ssh-agent.sh | |
649 | ||
650 | %files clients-agent-xinitrc | |
651 | %defattr(644,root,root,755) | |
652 | %attr(755,root,root) /etc/X11/xinit/xinitrc.d/ssh-agent.sh | |
653 | ||
52000378 AF |
654 | %files server |
655 | %defattr(644,root,root,755) | |
656 | %attr(755,root,root) %{_sbindir}/sshd | |
a6eef44c | 657 | %attr(755,root,root) %{_libexecdir}/sftp-server |
ad852e00 | 658 | %attr(755,root,root) %{_libexecdir}/ssh-keysign |
52000378 | 659 | %{_mandir}/man8/sshd.8* |
a6eef44c | 660 | %{_mandir}/man8/sftp-server.8* |
ad852e00 | 661 | %{_mandir}/man8/ssh-keysign.8* |
902cef13 | 662 | %{_mandir}/man5/sshd_config.5* |
794e0987 JB |
663 | %attr(640,root,root) %config(noreplace) %verify(not md5 mtime size) %{_sysconfdir}/sshd_config |
664 | %attr(640,root,root) %config(noreplace) %verify(not md5 mtime size) /etc/pam.d/sshd | |
634d69b4 | 665 | %attr(640,root,root) %{_sysconfdir}/moduli |
52000378 | 666 | %attr(754,root,root) /etc/rc.d/init.d/sshd |
794e0987 JB |
667 | %attr(640,root,root) %config(noreplace) %verify(not md5 mtime size) /etc/sysconfig/sshd |
668 | %attr(640,root,root) %config(noreplace) %verify(not md5 mtime size) /etc/security/blacklist.sshd | |
52000378 | 669 | |
0d32b20f | 670 | %if %{with gnome} || %{with gtk} |
40cb2e83 JB |
671 | %files gnome-askpass |
672 | %defattr(644,root,root,755) | |
794e0987 | 673 | %config(noreplace,missingok) %verify(not md5 mtime size) /etc/env.d/GNOME_SSH_ASKPASS* |
40cb2e83 JB |
674 | %dir %{_libexecdir}/ssh |
675 | %attr(755,root,root) %{_libexecdir}/ssh/ssh-askpass | |
4ae0bc0d | 676 | %attr(755,root,root) %{_libexecdir}/ssh-askpass |
40cb2e83 | 677 | %endif |