mirror of
https://github.com/gentoo-mirror/gentoo.git
synced 2026-09-24 04:59:14 -07:00
net-dns/unbound: drop old
Package-Manager: Portage-2.3.51, Repoman-2.3.12 Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>
This commit is contained in:
@@ -1,12 +1,2 @@
|
||||
DIST unbound-1.5.1.tar.gz 4805176 BLAKE2B f8c1f69d028ec61c5821926efb6c8311270b0e73b82315c96d7c8a832d86c80560187a44917325947658b4dc5695036c07b752910277d3871e5d8a8f382082c1 SHA512 85d7069cf47709aceb7d9457c8befb1b327adfb098d8aa98082fc9bf710274e8ba86b56d796c86917639bb7e57ab5c40af1bc79090de038c6375be2c3877e0c4
|
||||
DIST unbound-1.5.10.tar.gz 4941299 BLAKE2B 500c732403e627bdd037d622b509210f5c357da55f04713de3d02959d9480f85d48669007e11e03ab05ca75c4733642e32be013b5c28078c535b7da578f32bb6 SHA512 1c413886a12d4b626e03e076da6b9ccbcc8fd4769649fef8895eca74199bc22aec33c026e777524e8fe0327045a194f79b52282fe40674a9fb15cac58c4493f6
|
||||
DIST unbound-1.6.3.tar.gz 5381240 BLAKE2B eb10c20a7e7ddc106f5ec9552e516b329bdf74e2bd9dee25514e306d1e961f0d1f4eccefeb97f23ebce73b2022efcad1e3402af0ed863e5fef071076530b0248 SHA512 1d84fcc4c4b2a2b5cce6540cf252ff964f4acae3b6567c61cee69b76c6cee3e00270b1f7cc7ad83a2754afb33cc199c8b6e8116e5b587811714398b1d34de8a3
|
||||
DIST unbound-1.6.4.tar.gz 5477897 BLAKE2B b78c80e9a18649f6a12da820f15915f0508f4f01d93aa316fa413452545c93fd80a82f93f265291787210f90b888704671f840e12b1b13852c3a2aa017b4cf50 SHA512 1abf50552c97b304884f07372f9fb05f9f30354647cf5299192deac81fa28a41d89d84ee092baef644a6069d0f545d36e7e814c9b8f83f21a7a53572d9a91907
|
||||
DIST unbound-1.6.6.tar.gz 5460482 BLAKE2B af0d9ca0e5eeaebc3a2023dc7179a3bc80952d0e4c75ae92035ace648952f0ec1d0760aeb9d5104dda1abea2498a15f668b610c39ad79e86774c376647c94613 SHA512 910fd0956b8828d3db0511a85bf6ab6c4c3982f17c70ccb7123d1de1650d24c2906bc29ac4ea83fd7d95d8af29e2cbc88df666f365e51296f552292ef9753016
|
||||
DIST unbound-1.6.7.tar.gz 5466931 BLAKE2B 57a051d5ac6d7fbc3d51613305651987670d0f50fbebf661505b42b6c8980543b34b52a4f9ca9e6ee4dbad59d9acf547b78cf35a691d0c00884da979ae22d8c4 SHA512 6e3d1a057081252183343d0d1b8ace742ab15e8f5244e61287340f49289d7449bed93fbfdaa3194c0e99ca23948f4b33038f75af5c5b26c938004d06fc3031e0
|
||||
DIST unbound-1.6.8.tar.gz 5467536 BLAKE2B 06caffbd905c339b3d0667382114bb3e5d5da90988402c8f488f789f9bf6ab87377e6a26aa083a7e9ba3d023f37d3eeba1e069adf8a8a266b23fb8361aeb6e26 SHA512 653d88d5dbc8cf25f7261e4a9869b6591843c7ff27b5d63f979a94505daafbbb61e05d46bedd2d01230355d5f08dd9fe14ed04c5c7340f3f27581b61ad6edfa3
|
||||
DIST unbound-1.7.0.tar.gz 5538228 BLAKE2B a825e2cbef74b3a78f9802056d6f0992f77e0d40d4d28889c98b9ffa224ec3281b6873eab59134dcca8dc56bdd17202b3817dd28ab30d0a0bb72d749426b7675 SHA512 49b07643da2a89d8ceedce1295f550f74a76f4f11c2df54df55e9c42f03bad1b133789c7b36fb3c4f37d6b331ac302ecfd1249e8ebaaa4333beda8fa250b61d9
|
||||
DIST unbound-1.7.1.tar.gz 5565938 BLAKE2B 423dde8a13ea3539d86eade96507e6cdb4ac816393e99f58b4e0dc74a79c31bae57c87924ef737a567cc338d02d672f6c059c86d2f28a634f06e5f9a339f4260 SHA512 99a68abf1f60f6ea80cf2973906df44da9c577d8cac969824af1ce9ca385a2e84dd684937480da87cb73c7dc41ad5c00b0013ec74103eadb8fd7dc6f98a89255
|
||||
DIST unbound-1.7.3.tar.gz 5570604 BLAKE2B 93a4e7cc0e13b3da1057ce4e4518ab2363f03bff7c820095ed30b5fccd2f4245cfade6bf68a424a090967053c7fd727f33352c9e8004bb05d907a878d69c2517 SHA512 34b2e93660e519b2eccefef26a6c7ac09fa3312384cc3bc449ff2b10743bd86bfeb36ec19d35eb913f8d0a3d91ad7923260a66fc799f28b0a2cc06741d80f27a
|
||||
DIST unbound-1.8.0.tar.gz 5609213 BLAKE2B 41e464df60e03d502f13758e75f9143658b2a496c4fad69804d9d404e23a8d4b5480cc09048197f8593e37feffdffaea33b18a06d864d0d35e986169b49f42e4 SHA512 6c46f5b86b5bd98a7b549b660173d487e59e65385cebd7bc29429b4fee69f2b490651a409c57b072b9b604fa98e289fa82eeecfea8779900038c25b28a6bd064
|
||||
DIST unbound-1.8.1.tar.gz 5610191 BLAKE2B 15118f5940b4362dd515f8b335c8a39fc5ef1d3fbf0c20efbf0097342fabb4890eae0527f8b00ace181a425b413882db962b63d329f664cf12649d4d6ec8e5ea SHA512 1872a980e06258d28d2bc7f69a4c56fc07e03e4c9856161e89abc28527fff5812a47ea9927fd362bca690e3a87b95046ac96c8beeccaeb8596458f140c33b217
|
||||
|
||||
@@ -1,72 +0,0 @@
|
||||
From 858da540f70a4411ad8fbe7144cef6ce9da18f89 Mon Sep 17 00:00:00 2001
|
||||
From: wouter <wouter@be551aaa-1e26-0410-a405-d3ace91eadb9>
|
||||
Date: Mon, 5 Jan 2015 13:51:22 +0000
|
||||
Subject: [PATCH] - Fix #634: fix fail to start on Linux LTS 3.14.X, ignores
|
||||
missing IP_MTU_DISCOVER OMIT option.
|
||||
|
||||
--- a/services/listen_dnsport.c
|
||||
+++ b/services/listen_dnsport.c
|
||||
@@ -368,29 +368,47 @@ create_udp_sock(int family, int socktype, struct sockaddr* addr,
|
||||
* (and also uses the interface mtu to determine the size of the packets).
|
||||
* So there won't be any EMSGSIZE error. Against DNS fragmentation attacks.
|
||||
* FreeBSD already has same semantics without setting the option. */
|
||||
-# if defined(IP_PMTUDISC_OMIT)
|
||||
- int action = IP_PMTUDISC_OMIT;
|
||||
-# else
|
||||
- int action = IP_PMTUDISC_DONT;
|
||||
-# endif
|
||||
+ int omit_set = 0;
|
||||
+ int action;
|
||||
+# if defined(IP_PMTUDISC_OMIT)
|
||||
+ action = IP_PMTUDISC_OMIT;
|
||||
if (setsockopt(s, IPPROTO_IP, IP_MTU_DISCOVER,
|
||||
&action, (socklen_t)sizeof(action)) < 0) {
|
||||
- log_err("setsockopt(..., IP_MTU_DISCOVER, "
|
||||
-# if defined(IP_PMTUDISC_OMIT)
|
||||
- "IP_PMTUDISC_OMIT"
|
||||
+
|
||||
+ if (errno != EINVAL) {
|
||||
+ log_err("setsockopt(..., IP_MTU_DISCOVER, IP_PMTUDISC_OMIT...) failed: %s",
|
||||
+ strerror(errno));
|
||||
+
|
||||
+# ifndef USE_WINSOCK
|
||||
+ close(s);
|
||||
# else
|
||||
- "IP_PMTUDISC_DONT"
|
||||
+ closesocket(s);
|
||||
# endif
|
||||
- "...) failed: %s",
|
||||
- strerror(errno));
|
||||
+ *noproto = 0;
|
||||
+ *inuse = 0;
|
||||
+ return -1;
|
||||
+ }
|
||||
+ }
|
||||
+ else
|
||||
+ {
|
||||
+ omit_set = 1;
|
||||
+ }
|
||||
+# endif
|
||||
+ if (omit_set == 0) {
|
||||
+ action = IP_PMTUDISC_DONT;
|
||||
+ if (setsockopt(s, IPPROTO_IP, IP_MTU_DISCOVER,
|
||||
+ &action, (socklen_t)sizeof(action)) < 0) {
|
||||
+ log_err("setsockopt(..., IP_MTU_DISCOVER, IP_PMTUDISC_DONT...) failed: %s",
|
||||
+ strerror(errno));
|
||||
# ifndef USE_WINSOCK
|
||||
- close(s);
|
||||
+ close(s);
|
||||
# else
|
||||
- closesocket(s);
|
||||
+ closesocket(s);
|
||||
# endif
|
||||
- *noproto = 0;
|
||||
- *inuse = 0;
|
||||
- return -1;
|
||||
+ *noproto = 0;
|
||||
+ *inuse = 0;
|
||||
+ return -1;
|
||||
+ }
|
||||
}
|
||||
# elif defined(IP_DONTFRAG)
|
||||
int off = 0;
|
||||
@@ -1,12 +0,0 @@
|
||||
diff -Naur unbound-1.4.12.orig/doc/example.conf.in unbound-1.4.12/doc/example.conf.in
|
||||
--- unbound-1.4.12.orig/doc/example.conf.in 2011-07-14 17:33:37.000000000 +0900
|
||||
+++ unbound-1.4.12/doc/example.conf.in 2011-07-16 10:01:06.644402341 +0900
|
||||
@@ -334,7 +334,7 @@
|
||||
# with several entries, one file per entry.
|
||||
# Zone file format, with DS and DNSKEY entries.
|
||||
# Note this gets out of date, use auto-trust-anchor-file please.
|
||||
- # trust-anchor-file: ""
|
||||
+ # trust-anchor-file: "@UNBOUND_ROOTKEY_FILE@"
|
||||
|
||||
# Trusted key for validation. DS or DNSKEY. specify the RR on a
|
||||
# single line, surrounded by "". TTL is ignored. class is IN default.
|
||||
@@ -1,4 +0,0 @@
|
||||
# Settings should normally not need any changes.
|
||||
|
||||
# Location of the unbound configuration file. Leave empty for the default.
|
||||
#UNBOUND_CONFFILE="/etc/unbound/unbound.conf"
|
||||
@@ -1,55 +0,0 @@
|
||||
#!/sbin/openrc-run
|
||||
# Copyright 1999-2011 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
name="unbound daemon"
|
||||
extra_commands="configtest"
|
||||
extra_started_commands="reload"
|
||||
description="unbound is a Domain Name Server (DNS) that is used to resolve host names to IP address."
|
||||
description_configtest="Run syntax tests for configuration files only."
|
||||
description_reload="Kills all children and reloads the configuration."
|
||||
|
||||
|
||||
UNBOUND_BINARY=${UNBOUND_BINARY:-/usr/sbin/unbound}
|
||||
UNBOUND_CHECKCONF=${UNBOUND_CHECKCONF:-/usr/sbin/unbound-checkconf}
|
||||
UNBOUND_CONFFILE=${UNBOUND_CONFFILE:-/etc/unbound/${SVCNAME}.conf}
|
||||
|
||||
depend() {
|
||||
need net
|
||||
use logger
|
||||
provide dns
|
||||
after auth-dns
|
||||
}
|
||||
|
||||
checkconfig() {
|
||||
UNBOUND_PIDFILE=$("${UNBOUND_CHECKCONF}" -o pidfile "${UNBOUND_CONFFILE}")
|
||||
return $?
|
||||
}
|
||||
|
||||
configtest() {
|
||||
ebegin "Checking ${SVCNAME} configuration"
|
||||
checkconfig
|
||||
eend $?
|
||||
}
|
||||
|
||||
start() {
|
||||
checkconfig || return $?
|
||||
ebegin "Starting ${SVCNAME}"
|
||||
start-stop-daemon --start --pidfile "${UNBOUND_PIDFILE}" \
|
||||
--exec "${UNBOUND_BINARY}" -- -c "${UNBOUND_CONFFILE}"
|
||||
eend $?
|
||||
}
|
||||
|
||||
stop() {
|
||||
checkconfig || return $?
|
||||
ebegin "Stopping ${SVCNAME}"
|
||||
start-stop-daemon --stop --pidfile "${UNBOUND_PIDFILE}"
|
||||
eend $?
|
||||
}
|
||||
|
||||
reload() {
|
||||
checkconfig || return $?
|
||||
ebegin "Reloading ${SVCNAME}"
|
||||
start-stop-daemon --signal HUP --pidfile "${UNBOUND_PIDFILE}"
|
||||
eend $?
|
||||
}
|
||||
@@ -1,122 +0,0 @@
|
||||
# Copyright 1999-2015 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha amd64 ~arm ~hppa ppc ppc64 x86"
|
||||
IUSE="debug dnstap +ecdsa gost python selinux static-libs test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}]
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? ( dev-libs/openssl:0[-bindist] )
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.4.12-gentoo.patch
|
||||
epatch "${FILESDIR}"/0001-fix-fail-to-start-on-Linux-LTS-3.14.X-ignore.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,124 +0,0 @@
|
||||
# Copyright 1999-2017 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="amd64 arm ~hppa ~mips ppc ppc64 x86"
|
||||
IUSE="debug dnstap +ecdsa gost libressl python selinux static-libs test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,130 +0,0 @@
|
||||
# Copyright 1999-2017 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,130 +0,0 @@
|
||||
# Copyright 1999-2017 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,130 +0,0 @@
|
||||
# Copyright 1999-2017 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,130 +0,0 @@
|
||||
# Copyright 1999-2017 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,156 +0,0 @@
|
||||
# Copyright 1999-2018 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
# improve security on existing installs (bug #641042)
|
||||
# as well as new installs where unbound homedir has just been created
|
||||
if [[ -d "${ROOT}/etc/unbound" ]]; then
|
||||
chown --no-dereference --from=unbound root "${ROOT}/etc/unbound"
|
||||
fi
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
|
||||
# create space for auto-trust-anchor-file...
|
||||
keepdir /etc/unbound/var
|
||||
# ... and point example config to it
|
||||
sed -i '/# auto-trust-anchor-file:/s,/etc/dnssec/root-anchors.txt,/etc/unbound/var/root-anchors.txt,' "${ED}/etc/unbound/unbound.conf"
|
||||
}
|
||||
|
||||
pkg_postinst() {
|
||||
# make var/ writable by unbound
|
||||
if [[ -d "${ROOT}/etc/unbound/var" ]]; then
|
||||
chown --no-dereference --from=root unbound: "${ROOT}/etc/unbound/var"
|
||||
fi
|
||||
einfo ""
|
||||
einfo "If you want unbound to automatically update the root-anchor file for DNSSEC validation"
|
||||
einfo "set 'auto-trust-anchor-file: /etc/unbound/var/root-anchors.txt' in /etc/unbound/unbound.conf"
|
||||
einfo "and run"
|
||||
einfo ""
|
||||
einfo " su -s /bin/sh -c '/usr/sbin/unbound-anchor -a /etc/unbound/var/root-anchors.txt' unbound"
|
||||
einfo ""
|
||||
einfo "as root to create it initially before starting unbound for the first time after enabling this."
|
||||
einfo ""
|
||||
}
|
||||
@@ -1,130 +0,0 @@
|
||||
# Copyright 1999-2018 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
}
|
||||
@@ -1,156 +0,0 @@
|
||||
# Copyright 1999-2018 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
# improve security on existing installs (bug #641042)
|
||||
# as well as new installs where unbound homedir has just been created
|
||||
if [[ -d "${ROOT}/etc/unbound" ]]; then
|
||||
chown --no-dereference --from=unbound root "${ROOT}/etc/unbound"
|
||||
fi
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
|
||||
# create space for auto-trust-anchor-file...
|
||||
keepdir /etc/unbound/var
|
||||
# ... and point example config to it
|
||||
sed -i '/# auto-trust-anchor-file:/s,/etc/dnssec/root-anchors.txt,/etc/unbound/var/root-anchors.txt,' "${ED}/etc/unbound/unbound.conf"
|
||||
}
|
||||
|
||||
pkg_postinst() {
|
||||
# make var/ writable by unbound
|
||||
if [[ -d "${ROOT}/etc/unbound/var" ]]; then
|
||||
chown --no-dereference --from=root unbound: "${ROOT}/etc/unbound/var"
|
||||
fi
|
||||
einfo ""
|
||||
einfo "If you want unbound to automatically update the root-anchor file for DNSSEC validation"
|
||||
einfo "set 'auto-trust-anchor-file: /etc/unbound/var/root-anchors.txt' in /etc/unbound/unbound.conf"
|
||||
einfo "and run"
|
||||
einfo ""
|
||||
einfo " su -s /bin/sh -c '/usr/sbin/unbound-anchor -a /etc/unbound/var/root-anchors.txt' unbound"
|
||||
einfo ""
|
||||
einfo "as root to create it initially before starting unbound for the first time after enabling this."
|
||||
einfo ""
|
||||
}
|
||||
@@ -1,156 +0,0 @@
|
||||
# Copyright 1999-2018 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI=5
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit eutils flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="http://unbound.net/"
|
||||
SRC_URI="http://unbound.net/downloads/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0"
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )
|
||||
virtual/pkgconfig"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
# improve security on existing installs (bug #641042)
|
||||
# as well as new installs where unbound homedir has just been created
|
||||
if [[ -d "${ROOT}/etc/unbound" ]]; then
|
||||
chown --no-dereference --from=unbound root "${ROOT}/etc/unbound"
|
||||
fi
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
# To avoid below error messages, set 'trust-anchor-file' to same value in
|
||||
# 'auto-trust-anchor-file'.
|
||||
# [23109:0] error: Could not open autotrust file for writing,
|
||||
# /etc/dnssec/root-anchors.txt: Permission denied
|
||||
epatch "${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX}"/usr \
|
||||
--with-pidfile="${EPREFIX}"/var/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX}"/usr \
|
||||
--with-libexpat="${EPREFIX}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
prune_libtool_files --modules
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
|
||||
# create space for auto-trust-anchor-file...
|
||||
keepdir /etc/unbound/var
|
||||
# ... and point example config to it
|
||||
sed -i '/# auto-trust-anchor-file:/s,/etc/dnssec/root-anchors.txt,/etc/unbound/var/root-anchors.txt,' "${ED}/etc/unbound/unbound.conf"
|
||||
}
|
||||
|
||||
pkg_postinst() {
|
||||
# make var/ writable by unbound
|
||||
if [[ -d "${ROOT}/etc/unbound/var" ]]; then
|
||||
chown --no-dereference --from=root unbound: "${ROOT}/etc/unbound/var"
|
||||
fi
|
||||
einfo ""
|
||||
einfo "If you want unbound to automatically update the root-anchor file for DNSSEC validation"
|
||||
einfo "set 'auto-trust-anchor-file: /etc/unbound/var/root-anchors.txt' in /etc/unbound/unbound.conf"
|
||||
einfo "and run"
|
||||
einfo ""
|
||||
einfo " su -s /bin/sh -c '/usr/sbin/unbound-anchor -a /etc/unbound/var/root-anchors.txt' unbound"
|
||||
einfo ""
|
||||
einfo "as root to create it initially before starting unbound for the first time after enabling this."
|
||||
einfo ""
|
||||
}
|
||||
@@ -1,169 +0,0 @@
|
||||
# Copyright 1999-2018 Gentoo Foundation
|
||||
# Distributed under the terms of the GNU General Public License v2
|
||||
|
||||
EAPI="7"
|
||||
PYTHON_COMPAT=( python2_7 )
|
||||
|
||||
inherit autotools flag-o-matic multilib-minimal python-single-r1 systemd user
|
||||
|
||||
MY_P=${PN}-${PV/_/}
|
||||
DESCRIPTION="A validating, recursive and caching DNS resolver"
|
||||
HOMEPAGE="https://unbound.net/ https://nlnetlabs.nl/projects/unbound/about/"
|
||||
SRC_URI="https://nlnetlabs.nl/downloads/unbound/${MY_P}.tar.gz"
|
||||
|
||||
LICENSE="BSD GPL-2"
|
||||
SLOT="0/7" # ABI version of libunbound.so
|
||||
KEYWORDS="~alpha ~amd64 ~arm ~hppa ~mips ~ppc ~ppc64 ~x86"
|
||||
IUSE="debug dnscrypt dnstap +ecdsa gost libressl python selinux static-libs systemd test threads"
|
||||
REQUIRED_USE="python? ( ${PYTHON_REQUIRED_USE} )"
|
||||
|
||||
# Note: expat is needed by executable only but the Makefile is custom
|
||||
# and doesn't make it possible to easily install the library without
|
||||
# the executables. MULTILIB_USEDEP may be dropped once build system
|
||||
# is fixed.
|
||||
|
||||
CDEPEND=">=dev-libs/expat-2.1.0-r3[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/libevent-2.0.21:0=[${MULTILIB_USEDEP}]
|
||||
libressl? ( >=dev-libs/libressl-2.2.4:0[${MULTILIB_USEDEP}] )
|
||||
!libressl? ( >=dev-libs/openssl-1.0.1h-r2:0[${MULTILIB_USEDEP}] )
|
||||
dnscrypt? ( dev-libs/libsodium[${MULTILIB_USEDEP}] )
|
||||
dnstap? (
|
||||
dev-libs/fstrm[${MULTILIB_USEDEP}]
|
||||
>=dev-libs/protobuf-c-1.0.2-r1[${MULTILIB_USEDEP}]
|
||||
)
|
||||
ecdsa? (
|
||||
!libressl? ( dev-libs/openssl:0[-bindist] )
|
||||
)
|
||||
python? ( ${PYTHON_DEPS} )"
|
||||
|
||||
BDEPEND="virtual/pkgconfig"
|
||||
|
||||
DEPEND="${CDEPEND}
|
||||
python? ( dev-lang/swig )
|
||||
test? (
|
||||
net-dns/ldns-utils[examples]
|
||||
dev-util/splint
|
||||
app-text/wdiff
|
||||
)
|
||||
systemd? ( sys-apps/systemd )"
|
||||
|
||||
RDEPEND="${CDEPEND}
|
||||
net-dns/dnssec-root
|
||||
selinux? ( sec-policy/selinux-bind )"
|
||||
|
||||
# bug #347415
|
||||
RDEPEND="${RDEPEND}
|
||||
net-dns/dnssec-root"
|
||||
|
||||
PATCHES=(
|
||||
"${FILESDIR}"/${PN}-1.5.7-trust-anchor-file.patch
|
||||
"${FILESDIR}"/${PN}-1.6.3-pkg-config.patch
|
||||
)
|
||||
|
||||
S=${WORKDIR}/${MY_P}
|
||||
|
||||
pkg_setup() {
|
||||
enewgroup unbound
|
||||
enewuser unbound -1 -1 /etc/unbound unbound
|
||||
# improve security on existing installs (bug #641042)
|
||||
# as well as new installs where unbound homedir has just been created
|
||||
if [[ -d "${ROOT}/etc/unbound" ]]; then
|
||||
chown --no-dereference --from=unbound root "${ROOT}/etc/unbound"
|
||||
fi
|
||||
|
||||
use python && python-single-r1_pkg_setup
|
||||
}
|
||||
|
||||
src_prepare() {
|
||||
default
|
||||
|
||||
eautoreconf
|
||||
|
||||
# required for the python part
|
||||
multilib_copy_sources
|
||||
}
|
||||
|
||||
src_configure() {
|
||||
[[ ${CHOST} == *-darwin* ]] || append-ldflags -Wl,-z,noexecstack
|
||||
multilib-minimal_src_configure
|
||||
}
|
||||
|
||||
multilib_src_configure() {
|
||||
econf \
|
||||
$(use_enable debug) \
|
||||
$(use_enable gost) \
|
||||
$(use_enable dnscrypt) \
|
||||
$(use_enable dnstap) \
|
||||
$(use_enable ecdsa) \
|
||||
$(use_enable static-libs static) \
|
||||
$(use_enable systemd) \
|
||||
$(multilib_native_use_with python pythonmodule) \
|
||||
$(multilib_native_use_with python pyunbound) \
|
||||
$(use_with threads pthreads) \
|
||||
--disable-flto \
|
||||
--disable-rpath \
|
||||
--with-libevent="${EPREFIX%/}"/usr \
|
||||
--with-pidfile="${EPREFIX%/}"/run/unbound.pid \
|
||||
--with-rootkey-file="${EPREFIX%/}"/etc/dnssec/root-anchors.txt \
|
||||
--with-ssl="${EPREFIX%/}"/usr \
|
||||
--with-libexpat="${EPREFIX%/}"/usr
|
||||
|
||||
# http://unbound.nlnetlabs.nl/pipermail/unbound-users/2011-April/001801.html
|
||||
# $(use_enable debug lock-checks) \
|
||||
# $(use_enable debug alloc-checks) \
|
||||
# $(use_enable debug alloc-lite) \
|
||||
# $(use_enable debug alloc-nonregional) \
|
||||
}
|
||||
|
||||
multilib_src_install_all() {
|
||||
use python && python_optimize
|
||||
|
||||
newinitd "${FILESDIR}"/unbound-r1.initd unbound
|
||||
newconfd "${FILESDIR}"/unbound-r1.confd unbound
|
||||
|
||||
systemd_dounit "${FILESDIR}"/unbound.service
|
||||
systemd_dounit "${FILESDIR}"/unbound.socket
|
||||
systemd_newunit "${FILESDIR}"/unbound_at.service "unbound@.service"
|
||||
systemd_dounit "${FILESDIR}"/unbound-anchor.service
|
||||
|
||||
dodoc doc/{README,CREDITS,TODO,Changelog,FEATURES}
|
||||
|
||||
# bug #315519
|
||||
dodoc contrib/unbound_munin_
|
||||
|
||||
docinto selinux
|
||||
dodoc contrib/selinux/*
|
||||
|
||||
exeinto /usr/share/${PN}
|
||||
doexe contrib/update-anchor.sh
|
||||
|
||||
# create space for auto-trust-anchor-file...
|
||||
keepdir /etc/unbound/var
|
||||
# ... and point example config to it
|
||||
sed -i \
|
||||
-e '/# auto-trust-anchor-file:/s,/etc/dnssec/root-anchors.txt,/etc/unbound/var/root-anchors.txt,' \
|
||||
"${ED%/}/etc/unbound/unbound.conf" || \
|
||||
die
|
||||
|
||||
find "${ED}" -name '*.la' -delete || die
|
||||
if ! use static-libs ; then
|
||||
find "${ED}" -name "*.a" -delete || die
|
||||
fi
|
||||
}
|
||||
|
||||
pkg_postinst() {
|
||||
# make var/ writable by unbound
|
||||
if [[ -d "${EROOT%/}/etc/unbound/var" ]]; then
|
||||
chown --no-dereference --from=root unbound: "${EROOT%/}/etc/unbound/var"
|
||||
fi
|
||||
|
||||
einfo ""
|
||||
einfo "If you want unbound to automatically update the root-anchor file for DNSSEC validation"
|
||||
einfo "set 'auto-trust-anchor-file: ${EROOT%/}/etc/unbound/var/root-anchors.txt' in ${EROOT%/}/etc/unbound/unbound.conf"
|
||||
einfo "and run"
|
||||
einfo ""
|
||||
einfo " su -s /bin/sh -c '${EROOT%/}/usr/sbin/unbound-anchor -a ${EROOT%/}/etc/unbound/var/root-anchors.txt' unbound"
|
||||
einfo ""
|
||||
einfo "as root to create it initially before starting unbound for the first time after enabling this."
|
||||
einfo ""
|
||||
}
|
||||
Reference in New Issue
Block a user