Arne Fitzenreiter
2acac5421f
cyrus-sasl: Update to version 2.1.26
2015-03-19 19:18:49 +01:00
Arne Fitzenreiter
7f5795c65f
apache2: Update to version 2.2.29
2015-03-19 19:18:23 +01:00
Arne Fitzenreiter
c366dbb433
Merge branch 'master' into next
2015-03-17 14:09:05 +01:00
Arne Fitzenreiter
0fbf41404c
prepare core88.
2015-03-17 14:08:13 +01:00
Arne Fitzenreiter
c98cc4ae90
Merge branch 'master' into next
2015-03-17 14:05:56 +01:00
Arne Fitzenreiter
a810e7665e
core89: stop/start ipsec, rewrite ddns config with new cgi.
2015-03-17 14:03:31 +01:00
Arne Fitzenreiter
22ecf3100a
core89: add changed packages to updater.
2015-03-17 13:56:51 +01:00
Arne Fitzenreiter
3e0982277a
core89: remove all sqlite meta-data files.
2015-03-17 13:54:19 +01:00
Arne Fitzenreiter
20aa2ca562
move core88 to 89.
2015-03-17 13:50:38 +01:00
Dominik Hassler
e60cd3a404
use colour of destination network for DNAT
2015-03-13 14:33:47 +01:00
Michael Tremer
3d53eb68af
core88: Add collectd to updater
2015-03-12 13:25:29 +01:00
Michael Tremer
3b90253598
openssl-compat: Disable SSLv3 and SSLv2 as well
2015-03-12 13:14:26 +01:00
Michael Tremer
9029c9d056
Add more missing files of Core Update 88
2015-03-12 13:07:44 +01:00
Michael Tremer
e5f58910c5
dnsmasq: Import more patches from upstream
2015-03-12 12:59:36 +01:00
Michael Tremer
de7abd2cd5
dnsmasq: Enable DNSSEC timestamp feature
...
This disables DNSSEC until the system clock has been set correctly.
There is a circular dependency on working DNS and being able to
resolve DNS records in order to reach a time server. Systems without
a RTC or empty RTC battery will start up with time way in the past
in which all DNSSEC signatures are invalid.
2015-03-12 12:59:24 +01:00
Michael Tremer
6f67121767
core88: Add ddns.cgi to updater
2015-03-12 12:58:04 +01:00
Stefan Schantl
6409aa7e54
ddns.cgi: Add token handling for zzzz.io.
2015-03-12 12:57:36 +01:00
Michael Tremer
d0bd5afe1b
openssl: Disable SSLv3 and SSLv2 by default
...
This patch will disable SSLv3 and SSLv2 by default but leaves
the protocol compiled in into the library so that applications
can use it when they still need it (e.g. sslscan).
2015-03-12 12:55:40 +01:00
Michael Tremer
33bfe91f5b
Revert "openssl: Disable SSLv2 and SSLv3."
...
This reverts commit 98a5192ef2 .
2015-03-12 12:55:05 +01:00
Michael Tremer
dfea4f86c2
strongswan: Allow using AES-GCM in various configurations
2015-03-11 18:13:25 +01:00
Alexander Marx
2d0c7a9f7b
BUG10620: move reload of firewall.local to main()
2015-03-11 17:11:59 +01:00
Michael Tremer
becbf67de7
apache: Do not show loaded modules
...
The server header will show less information about the
modules of the apache daemon.
Fixes #10671
2015-03-11 15:42:08 +01:00
Bernhard Bitsch
ea40188f66
BUG10502: Fix wrong interfaces in firewall.log
...
Fix from BeBiMa
2015-03-11 13:53:36 +01:00
Michael Tremer
b8a97bd943
dnsmasq: Enable DNSSEC timestamp feature
...
This disables DNSSEC until the system clock has been set correctly.
There is a circular dependency on working DNS and being able to
resolve DNS records in order to reach a time server. Systems without
a RTC or empty RTC battery will start up with time way in the past
in which all DNSSEC signatures are invalid.
2015-03-10 16:22:09 +01:00
Michael Tremer
61c6e9b71d
dnsmasq: Import more patches from upstream
2015-03-10 16:21:58 +01:00
Michael Tremer
a71beeb234
lang.pl: Always fall back to English
...
Fixes #10769
2015-03-10 00:06:12 +01:00
Michael Tremer
4e341f19b0
setup: Remove writing udev rules for network interfaces
2015-03-09 16:36:04 +01:00
Michael Tremer
600b99fb31
network: Configure device names from /var/ipfire/ethernet/settings
...
Instead of creating a copy of the configuration values and
for better extensibility, we will have udev execute a script
that parses /var/ipfire/ethernet/settings and will return the
correct name of the corresponding device (green0, blue0, ...).
2015-03-09 16:31:59 +01:00
Arne Fitzenreiter
42c545b1f5
set version to 2.17-core88.
2015-03-07 10:18:50 +01:00
Arne Fitzenreiter
4a0e9b6318
initskripts: rootfile update.
2015-03-07 10:17:17 +01:00
Arne Fitzenreiter
5604dc748d
backup: make include file parsing more robust.
2015-03-06 17:22:18 +01:00
Michael Tremer
2bf7ee4bdd
installer+setup: Update translations
2015-03-05 22:12:38 +01:00
Stefan Schantl
3f32eb94bf
ddns: Update to 007.
2015-03-05 19:37:47 +01:00
Michael Tremer
0f0e30dced
haproxy: New package
2015-03-05 14:48:16 +01:00
Michael Tremer
e0fe704b6e
Accidentially disabled nmap build
2015-03-05 13:44:50 +01:00
Michael Tremer
970cf33637
Move Core Update 86 and 87 files to oldcore directory
2015-03-05 12:55:32 +01:00
Michael Tremer
6bea9be4f4
clamav: Fix compiling
...
glibc headers were not correctly included
2015-03-05 12:54:22 +01:00
Michael Tremer
e5ca506304
ntfs-3g: Ship all user-space tools with the package
2015-03-04 23:59:43 +01:00
Michael Tremer
c651121f4d
Merge remote-tracking branch 'mfischer/ntfs-3g' into next
2015-03-04 23:58:58 +01:00
Michael Tremer
274ebe1d9d
Merge remote-tracking branch 'origin/master' into next
...
Conflicts:
config/rootfiles/packages/clamav
lfs/clamav
2015-03-04 23:58:47 +01:00
Michael Tremer
8d289021d3
strongswan: Update solution for strongswan bug #816
2015-03-04 23:54:10 +01:00
Michael Tremer
6644c1c7f2
dnsmasq: Import latest git version of dnsmasq
2015-03-04 23:27:27 +01:00
Daniel Weismüller
d7dac20c17
owncloud: updated to version 7.0.3
2015-03-04 16:37:07 +01:00
Michael Tremer
ea92da89c6
Merge remote-tracking branch 'amarx/BUG10756' into next
2015-03-03 21:13:46 +01:00
Michael Tremer
3ed94afdc8
teamspeak: Remove package
...
This is an old version any way and just used to download the
pre-compiled data from the servers of the vendor.
2015-03-03 21:11:34 +01:00
Michael Tremer
8392627c57
asterisk: sqlite is not an add-on package any more
2015-03-03 21:07:23 +01:00
Michael Tremer
c460d5c25e
logrotate: Fix an empty /etc/logrotate.d directory
...
Fixes #10625
2015-03-03 17:57:38 +01:00
Michael Tremer
80b0f82fef
Revert "pound: Allow to use legacy renegotiation."
...
This reverts commit 09e3b0fa35 .
2015-03-03 12:44:00 +01:00
Christoph Anderegg
165b25b2dc
vpnmain.cgi: Added inclusion of ipsec.user-post.conf to the end of ipsec.conf in order to allow connection parameters to be overwritten in ipsec.user.conf.
2015-03-03 11:16:47 +01:00
Michael Tremer
09e3b0fa35
pound: Allow to use legacy renegotiation.
2015-03-03 10:56:29 +01:00