summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2018-04-13finalize changelogYves-Alexis Perez
2018-04-11d/rules: drop parallel and autoreconf from dh, done with compat 10Yves-Alexis Perez
2018-04-11d/compat bumped to 10Yves-Alexis Perez
2018-04-11d/control: drop b-d on n-m-dev and make libnm-dev linux-anyYves-Alexis Perez
closes: #895434
2018-02-22charon-nm: Fix building list of DNS/MDNS servers with libnmYves-Alexis Perez
2018-02-20release strongSwan 5.6.2-1Yves-Alexis Perez
2018-02-20finalize changelogYves-Alexis Perez
2018-02-20install tpm_extendpcr binary in libstrongswan-extra-pluginsYves-Alexis Perez
2018-02-20d/control: update build-deps for libnm portYves-Alexis Perez
closes: #862885
2018-02-20d/control: move Vcs to salsaYves-Alexis Perez
2018-02-20New upstream version 5.6.2Yves-Alexis Perez
2018-01-03strongswan-libcharon: add bypass-lan pluginYves-Alexis Perez
not loaded by default
2018-01-01d/control: remove Romain Françoise from uploadersYves-Alexis Perez
2017-12-18Merge remote-tracking branch 'origin/master'Yves-Alexis Perez
2017-12-18release strongSwan 5.6.1-3Yves-Alexis Perez
2017-12-17update standards version to 4.1.2.Yves-Alexis Perez
2017-12-17move updown plugin from -starter to -libcharon. closes: #884578Yves-Alexis Perez
2017-11-30changelog updateYves-Alexis Perez
2017-11-30d/NEWS: add information about disabled algorithmsYves-Alexis Perez
closes: #883072
2017-11-23release strongSwan 5.6.1-2Yves-Alexis Perez
2017-11-23move counters plugin from -starter to -libcharon. closes: #882431Yves-Alexis Perez
2017-11-21release strongSwan 5.6.1-1Yves-Alexis Perez
2017-11-21debian/control: replace dh-systemd build-dep by updated build-dep onYves-Alexis Perez
debhelper
2017-11-21debian/control: update standards version to 4.1.1Yves-Alexis Perez
2017-11-21debian/libstrongswan-extra-plugins.install: install tpm pluginYves-Alexis Perez
2017-11-21debian/libstrongswan.install: install MGF1 pluginYves-Alexis Perez
needed for RSASSA-PSS signatures support when using the gmp plugin
2017-11-21debian/strongswan-starter.install: install counters pluginYves-Alexis Perez
2017-11-21debian/rules: explicitly enable tpm pluginYves-Alexis Perez
2017-11-21update changelog for new upstream versionYves-Alexis Perez
2017-11-21Update upstream source from tag 'upstream/5.6.1'Yves-Alexis Perez
Update to upstream version '5.6.1' with Debian dir 3996fc7d7b19a96b252a7fcbac12c94452d1e7d7
2017-11-21New upstream version 5.6.1Yves-Alexis Perez
2017-10-19Remove transitional packagesYves-Alexis Perez
* debian/control: - remove strongswan-ike{,v1,v2} packages. closes: #878979
2017-09-03release strongSwan 5.6.0-2Yves-Alexis Perez
2017-09-03only use dh_missing --fail-missing when doing an architecture dependentYves-Alexis Perez
packages.
2017-09-03release strongSwan 5.6.0-1Yves-Alexis Perez
2017-09-03add lintian overrides for private keys directories using 700 permissions.Yves-Alexis Perez
2017-09-03install pt-tls-client in /u/b and also install its manpage.Yves-Alexis Perez
2017-09-01remove patch, included upstreamYves-Alexis Perez
2017-09-01fix insufficient input validation in gmp plugin, which can cause a denial of ↵Yves-Alexis Perez
service vulnerability (CVE-2017-11185) closes: #872155
2017-09-01New upstream release.Yves-Alexis Perez
2017-09-01New upstream version 5.6.0Yves-Alexis Perez
2017-09-01Updated version 5.6.0 from 'upstream/5.6.0'Yves-Alexis Perez
with Debian dir e138a03837a338ec35cc53a33de19381770a5f0c
2017-06-30replace DEB_BUILD_* by DEB_HOST_* when needed, fix FTCBFS, for example when ↵Yves-Alexis Perez
building for ppc64el on x86. Thanks Helmut Grohne. closes: #866669
2017-06-30Install AppArmor profiles for /usr/sbin/swanctl and /usr/sbin/charon-systemd.Gerald Turner
The AppArmor profile for charon-systemd was copied from the existing profile for /usr/lib/ipsec/charon without much scrutiny other than testing basic IPsec tunnels (no fancy plugin options were tested). It appears that the team at Canonical that had written the /usr/lib/ipsec/charon policy had done extensive testing with several plugins, and it seems likely that applying the same profile to charon-systemd will allow those plugins to continue to work. The AppArmor profile for swanctl was written from scratch and well tested. It turns out that swanctl unnecessarily loads plugins by default, so a bit of frivolous access has been granted.
2017-06-30Install /etc/strongswan.d/charon-systemd.conf with charon-systemd packageYves-Alexis Perez
* debian/patches: - 02_configure-Install-charon-systemd.conf added, cherry-picked from upstream to install configuration to output logging information to the journal. * debian/charon-systemd.install: - install charon-systemd.conf files, thanks Gerald Tuner. closes: #866325
2017-06-30restrict permissions on swanctl folder containing private materialYves-Alexis Perez
2017-06-30install the whole /etc/swanctl folder, including (empty) subfolders.Yves-Alexis Perez
2017-06-30Use dh_missing to catch uninstalled filesYves-Alexis Perez
* debian/rules: - remove .la files before install - don't call dh_install with --fail-missing - override dh_missing with --fail-missing to catch uninstalled files.
2017-06-28release strongSwan 5.5.3-2Yves-Alexis Perez
2017-06-28fix typo in long descriptionsYves-Alexis Perez