summaryrefslogtreecommitdiff
path: root/debian
diff options
context:
space:
mode:
Diffstat (limited to 'debian')
-rw-r--r--debian/changelog4
-rw-r--r--debian/control2
-rwxr-xr-xdebian/rules2
3 files changed, 2 insertions, 6 deletions
diff --git a/debian/changelog b/debian/changelog
index 7b28e67e6..1af3b66e5 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -2,10 +2,6 @@ strongswan (4.4.0-1) unstable; urgency=low
* New upstream release, now with a high-availability plugin.
* Enable building of ha, dhcp, and farp plugins.
- * Enable capability dropping (now depends on libcap). Switching
- user to new system user strongswan (with nogroup) after startup
- is still disabled until this can be integrated with build-time
- determination of uid.
-- Rene Mayrhofer <rmayr@debian.org> Tue, 25 May 2010 21:03:52 +0200
diff --git a/debian/control b/debian/control
index 13e92cb75..3059290f3 100644
--- a/debian/control
+++ b/debian/control
@@ -11,7 +11,7 @@ Build-Depends: debhelper (>= 7.1), libtool, libgmp3-dev,
libpam0g-dev, libkrb5-dev, bison, flex, bzip2, po-debconf,
hardening-wrapper, network-manager-dev, libfcgi-dev, clearsilver-dev,
libxml2-dev, libsqlite3-dev, network-manager-dev (>= 0.7),
- libnm-glib-vpn-dev (>= 0.7), libnm-util-dev (>= 0.7), gperf, libcap-dev
+ libnm-glib-vpn-dev (>= 0.7), libnm-util-dev (>= 0.7), gperf
Homepage: http://www.strongswan.org
Package: strongswan
diff --git a/debian/rules b/debian/rules
index dee0a6c96..63df0f756 100755
--- a/debian/rules
+++ b/debian/rules
@@ -12,7 +12,6 @@ export DEB_BUILD_HARDENING=1
CONFIGUREARGS := --prefix=/usr --sysconfdir=/etc --localstatedir=/var \
--libexecdir=/usr/lib \
- --with-capabilities=libcap \
--enable-ldap --enable-curl \
--enable-nonblocking --enable-thread \
--enable-smartcard --enable-cisco-quirks \
@@ -23,6 +22,7 @@ CONFIGUREARGS := --prefix=/usr --sysconfdir=/etc --localstatedir=/var \
--enable-eap-gtc --enable-eap-aka --enable-eap-mschapv2 \
--enable-sql --enable-integrity-test \
--enable-nm --enable-ha --enable-dhcp --enable-farp
+ # --with-capabilities=libcap \
# --with-user=strongswan --with-group=nogroup \
# --enable-kernel-pfkey --enable-kernel-klips \
# Could enable --enable-nat-transport, but this is actually insecure,