mirror of
https://github.com/gentoo-mirror/gentoo.git
synced 2026-09-24 04:59:14 -07:00
net-misc/ntpsec: Remove vulnerable 1.2.0
Bug: https://bugs.gentoo.org/795321 Package-Manager: Portage-3.0.20, Repoman-3.0.3 Signed-off-by: Steve Arnold <nerdboy@gentoo.org>
This commit is contained in:
@@ -1,2 +1 @@
|
||||
DIST ntpsec-1.2.0.tar.gz 2625968 BLAKE2B 23ceae5a1f241fcf5a17801fec2f15f9b9d9d64a108bebe29bdc75196303091eaf0efee7df67ce10acefb7c8dba90ce1144a0c0c5432797d7659714d162f26bb SHA512 9e18b3ca2f786a1ea323ba2384b51cff3d862115cea1ae576fc98172c476ac5e7d0d0fc873e47be0b19b050204ea9ed49669d94e66eb94525068dd1b08a8ae71
|
||||
DIST ntpsec-1.2.1.tar.gz 2681237 BLAKE2B bfb2674131718dcf9f393e93d1148cfb6631591dbcce1ade91746586f261123b80b238393ac2a763fab119cd627f8eae4b006b023ad2b319e752db9eb4b04cc0 SHA512 0b8b0bda52d3025f6e9a06c00b1e0c25c595ada72b87ed0e5d3d6f77a034f557745156bc6d9a263c9876c041efffa38d42fa93ba8bfda31f67efbd842a726277
|
||||
|
||||
@@ -1,169 +0,0 @@
|
||||
# Copyright 1999-2021 Gentoo Authors
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=7
|
||||
|
||||
PYTHON_COMPAT=( python3_{7..9} )
|
||||
PYTHON_REQ_USE='threads(+)'
|
||||
DISTUTILS_USE_SETUPTOOLS=no
|
||||
|
||||
inherit distutils-r1 flag-o-matic waf-utils systemd
|
||||
|
||||
if [[ ${PV} == *9999* ]]; then
|
||||
inherit git-r3
|
||||
EGIT_REPO_URI="https://gitlab.com/NTPsec/ntpsec.git"
|
||||
else
|
||||
SRC_URI="ftp://ftp.ntpsec.org/pub/releases/${PN}-${PV}.tar.gz"
|
||||
RESTRICT="mirror"
|
||||
KEYWORDS="amd64 arm arm64 ~x86"
|
||||
fi
|
||||
|
||||
DESCRIPTION="The NTP reference implementation, refactored"
|
||||
HOMEPAGE="https://www.ntpsec.org/"
|
||||
|
||||
NTPSEC_REFCLOCK=(
|
||||
oncore trimble truetime gpsd jjy generic spectracom
|
||||
shm pps hpgps zyfer arbiter nmea neoclock modem
|
||||
local)
|
||||
|
||||
IUSE_NTPSEC_REFCLOCK=${NTPSEC_REFCLOCK[@]/#/rclock_}
|
||||
|
||||
LICENSE="HPND MIT BSD-2 BSD CC-BY-SA-4.0"
|
||||
SLOT="0"
|
||||
IUSE="${IUSE_NTPSEC_REFCLOCK} debug doc early gdb heat libbsd nist ntpviz samba seccomp smear tests" #ionice
|
||||
REQUIRED_USE="${PYTHON_REQUIRED_USE} nist? ( rclock_local )"
|
||||
|
||||
# net-misc/pps-tools oncore,pps
|
||||
CDEPEND="${PYTHON_DEPS}
|
||||
sys-libs/libcap
|
||||
dev-python/psutil[${PYTHON_USEDEP}]
|
||||
libbsd? ( dev-libs/libbsd:0= )
|
||||
dev-libs/openssl:0=
|
||||
seccomp? ( sys-libs/libseccomp )
|
||||
"
|
||||
RDEPEND="${CDEPEND}
|
||||
ntpviz? ( sci-visualization/gnuplot media-fonts/liberation-fonts )
|
||||
!net-misc/ntp
|
||||
!net-misc/openntpd
|
||||
acct-group/ntp
|
||||
acct-user/ntp
|
||||
"
|
||||
DEPEND="${CDEPEND}
|
||||
>=app-text/asciidoc-8.6.8
|
||||
dev-libs/libxslt
|
||||
app-text/docbook-xsl-stylesheets
|
||||
sys-devel/bison
|
||||
rclock_oncore? ( net-misc/pps-tools )
|
||||
rclock_pps? ( net-misc/pps-tools )
|
||||
"
|
||||
|
||||
PATCHES=(
|
||||
"${FILESDIR}/${PN}-1.1.8-fix-missing-scmp_sys-on-aarch64.patch"
|
||||
"${FILESDIR}/${PN}-1.1.9-remove-asciidoctor-from-config.patch"
|
||||
"${FILESDIR}/${PN}-1.2.0-move-newfstatat.patch"
|
||||
"${FILESDIR}/${PN}-1.2.0-seccomp.patch"
|
||||
)
|
||||
|
||||
WAF_BINARY="${S}/waf"
|
||||
|
||||
src_prepare() {
|
||||
default
|
||||
|
||||
# Remove autostripping of binaries
|
||||
sed -i -e '/Strip binaries/d' wscript || die
|
||||
if ! use libbsd ; then
|
||||
eapply "${FILESDIR}/${PN}-no-bsd.patch"
|
||||
fi
|
||||
# remove extra default pool servers
|
||||
sed -i '/use-pool/s/^/#/' "${S}"/etc/ntp.d/default.conf || die
|
||||
|
||||
python_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
is-flagq -flto* && filter-flags -flto* -fuse-linker-plugin
|
||||
|
||||
local string_127=""
|
||||
local rclocks="";
|
||||
local CLOCKSTRING=""
|
||||
|
||||
for refclock in ${NTPSEC_REFCLOCK[@]} ; do
|
||||
if use rclock_${refclock} ; then
|
||||
string_127+="$refclock,"
|
||||
fi
|
||||
done
|
||||
CLOCKSTRING="`echo ${string_127}|sed 's|,$||'`"
|
||||
|
||||
local myconf=(
|
||||
--nopyc
|
||||
--nopyo
|
||||
--enable-pylib ext
|
||||
--refclock="${CLOCKSTRING}"
|
||||
--build-epoch="$(date +%s)"
|
||||
$(use doc || echo "--disable-doc")
|
||||
$(use early && echo "--enable-early-droproot")
|
||||
$(use gdb && echo "--enable-debug-gdb")
|
||||
$(use samba && echo "--enable-mssntp")
|
||||
$(use seccomp && echo "--enable-seccomp")
|
||||
$(use smear && echo "--enable-leap-smear")
|
||||
$(use tests && echo "--alltests")
|
||||
$(use debug && echo "--enable-debug")
|
||||
)
|
||||
|
||||
python_configure() {
|
||||
waf-utils_src_configure "${myconf[@]}"
|
||||
}
|
||||
python_foreach_impl run_in_build_dir python_configure
|
||||
}
|
||||
|
||||
src_compile() {
|
||||
unset MAKEOPTS
|
||||
python_compile() {
|
||||
waf-utils_src_compile
|
||||
}
|
||||
python_foreach_impl run_in_build_dir python_compile
|
||||
}
|
||||
|
||||
src_install() {
|
||||
python_install() {
|
||||
waf-utils_src_install
|
||||
python_fix_shebang "${ED}"
|
||||
}
|
||||
python_foreach_impl run_in_build_dir python_install
|
||||
python_foreach_impl python_optimize
|
||||
|
||||
# Install heat generating scripts
|
||||
use heat && dosbin "${S}"/contrib/ntpheat{,usb}
|
||||
|
||||
# Install the openrc files
|
||||
newinitd "${FILESDIR}"/ntpd.rc-r2 ntp
|
||||
newconfd "${FILESDIR}"/ntpd.confd ntp
|
||||
|
||||
# Install the systemd unit file
|
||||
systemd_newunit "${FILESDIR}"/ntpd-r1.service ntpd.service
|
||||
|
||||
# Prepare a directory for the ntp.drift file
|
||||
mkdir -pv "${ED}"/var/lib/ntp
|
||||
chown ntp:ntp "${ED}"/var/lib/ntp
|
||||
chmod 770 "${ED}"/var/lib/ntp
|
||||
keepdir /var/lib/ntp
|
||||
|
||||
# Install a log rotate script
|
||||
mkdir -pv "${ED}"/etc/logrotate.d
|
||||
cp -v "${S}"/etc/logrotate-config.ntpd "${ED}"/etc/logrotate.d/ntpd
|
||||
|
||||
# Install the configuration file and sample configuration
|
||||
cp -v "${FILESDIR}"/ntp.conf "${ED}"/etc/ntp.conf
|
||||
cp -Rv "${S}"/etc/ntp.d/ "${ED}"/etc/
|
||||
|
||||
# move doc files to /usr/share/doc/"${P}"
|
||||
use doc && mv -v "${ED}"/usr/share/doc/"${PN}" "${ED}"/usr/share/doc/"${P}"/html
|
||||
}
|
||||
|
||||
pkg_postinst() {
|
||||
einfo "If you want to serve time on your local network, then"
|
||||
einfo "you should disable all the ref_clocks unless you have"
|
||||
einfo "one and can get stable time from it. Feel free to try"
|
||||
einfo "it but PPS probably won't work unless you have a UART"
|
||||
einfo "GPS that actually provides PPS messages."
|
||||
}
|
||||
Reference in New Issue
Block a user