Timo Eissler
a0168f9fca
nmap: remove uninstall_ndiff from rootfile
...
Signed-off-by: Timo Eissler <timo.eissler@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-08 14:41:09 +01:00
Michael Tremer
b3ee263b07
QoS: Enable IMQ multi queueing
...
This increases throughput when QoS is activated
since now all available CPU cores will be used
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 19:12:06 +01:00
Michael Tremer
d0755f4cb2
Rootfile update
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 19:00:45 +01:00
Michael Tremer
e4d7dc1ea4
dhcp: Fix extracting bundled BIND package
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 12:52:10 +01:00
Marcel Lorenz
4a3940a15f
gcc: update to 4.9.4
...
This is only a bugfix release
https://gcc.gnu.org/gcc-4.9/changes.html
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:18:41 +01:00
Marcel Lorenz
a8c2aae946
mpfr: update to 3.1.5
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:16:37 +01:00
Marcel Lorenz
fcab4e5f18
gmp: update to 6.1.2
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:15:29 +01:00
Marcel Lorenz
a309f3b5c3
pcre: update to 8.40
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:14:13 +01:00
Marcel Lorenz
85ca3a529b
rrdtool: update to 1.6.0
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:13:29 +01:00
Marcel Lorenz
e9dae64ea1
pkg-config: update to 0.29.1
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:12:13 +01:00
Marcel Lorenz
f4574da97a
nmap: update to 7.40
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:11:23 +01:00
Marcel Lorenz
f155baa6f0
m4: update to 1.4.18
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:10:25 +01:00
Marcel Lorenz
e0e3f3a3e7
acpid: update to 2.0.28
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:06:46 +01:00
Marcel Lorenz
6c96150b45
unzip: update to 60
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:06:08 +01:00
Michael Tremer
49e3621c32
gzip: Drop patch that is no longer applied
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:04:34 +01:00
Marcel Lorenz
3b7a290523
gzip: update to 1.8
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 10:02:18 +01:00
Marcel Lorenz
361cc1bd0c
file: update to 5.30
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 09:57:50 +01:00
Matthias Fischer
176ba83d49
logwatch 7.4.3: next fix, output for 'lm_sensors' was missing
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-06 09:56:16 +01:00
Matthias Fischer
cd31b51ea5
logwatch 7.4.3: some more fixes for rootfile
...
Hi,
'eximstats', 'zz-sys' and 'resolver'-files were missing.
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 14:10:48 +01:00
Daniel Weismüller
2dbfc4020d
netsnmpd: added lmsensors and some other mibs
...
Signed-off-by: Daniel Weismüller <daniel.weismueller@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 12:23:32 +01:00
Michael Tremer
9bc2e596d0
IPsec: Include Curve 25519 in default proposal
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 12:16:52 +01:00
Michael Tremer
64056cae46
IPsec: Allow selecting Curve 25519 as group type
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 12:16:20 +01:00
Michael Tremer
1ef80c4352
strongswan: Update to version 5.5.2
...
Introduces support for Curve25519 for IKE as defined by RFC8031.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 12:08:39 +01:00
Michael Tremer
570d54fd84
IPsec: Drop SHA1 and MODP<=1536 from proposed ciphers
...
IPsec is still proposing to use SHA1 and MODP-1536 or MODP-1024
when initiating a connection. These are considered weak although
many off-the-shelf hardware is still using this as defaults.
This patch disables those algorithms and additionally changes
default behaviour to only accept the configured cipher suites.
This might create some interoperability issues, but increases
security of IPFire-to-IPFire IPsec connections.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 11:42:55 +01:00
Michael Tremer
4f6790a7e4
ipsecctrl: Reload IPsec block rules after connection is deleted
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 10:33:49 +01:00
Matthias Fischer
3fa1cb5f35
logwatch: Update to 7.4.3
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 10:08:24 +01:00
Matthias Fischer
9d8574996e
logwatch 7.4.1: another fix for rootfile
...
Hi,
similar to:
http://git.ipfire.org/?p=people/mfischer/ipfire-2.x.git;a=commit;h=9f46e637ac345509ff75248d1087b1bff117ff20
A missing '#' for "usr/share/logwatch/default.conf/services" in rootfile.
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 10:08:21 +01:00
Matthias Fischer
31b34f9509
logwatch 7.4.1: fix for rootfile
...
Hi,
One missing '#' and all underlying 'services' in 'usr/share/logwatch/scripts/services'
are installed. 147 files are active, but it should be only 33.
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-05 10:08:20 +01:00
Arne Fitzenreiter
09f518fbb1
mpd: mpd needs opus libs
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2017-04-04 19:14:31 +02:00
Arne Fitzenreiter
af7e2f072f
Merge branch 'next'
2017-04-03 23:04:59 +02:00
Arne Fitzenreiter
7ea716b46b
core110: finish update
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2017-04-03 23:04:03 +02:00
Matthias Fischer
bffe0abd59
squid: Update to 3.5.25
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-03 20:28:12 +01:00
Matthias Fischer
24a80f0c22
squid 3.5.24: latest patches (14149-14153)
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-03 11:11:20 +01:00
Matthias Fischer
a5c0ef3679
squid 3.5.24: latest patches (14144-14148)
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-03 11:11:13 +01:00
Matthias Fischer
39e7154976
squid 3.5.24: latest patch (14143)
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-03 11:11:12 +01:00
Michael Tremer
183b23b5ca
DNS: Show DNSSEC status on index page if deavtivated
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-04-02 19:48:20 +01:00
Michael Tremer
73b3a1264f
core110: Ship updated ntp package
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:20:50 +01:00
Matthias Fischer
776363274f
ntp: Update to 4.2.8p10
...
"It addresses 6 medum- and 5 low-severity security issues, 4 informational security topics,
15 bugfixes, and contains other improvements over 4.2.8p9."
For a complete list, see:
http://support.ntp.org/bin/view/Main/SecurityNotice#Recent_Vulnerabilities
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:20:31 +01:00
Matthias Fischer
21094f574e
mpd 0.20.6: fixes for lfs-file
...
Package refused to build without initscript.
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:19:57 +01:00
Matthias Fischer
109b1914d1
motion 4.0.1: suggested new rootfile
...
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:19:25 +01:00
Matthias Fischer
baa8a93fd1
motion: Update to 4.0.1
...
'ffmpeg' seems to need this update.
Best,
Matthias
Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:19:23 +01:00
Michael Tremer
0be884d6b2
network: Create route to gateway
...
Some hosters have their gateway in a different subnet than
the RED interface is to save IPv4 address space.
This patch sets a host route to that gateway so that
IPFire can be installed in data centres that use such
technique.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:17:03 +01:00
Michael Tremer
2170bad5b9
setup: Allow setting netmask to 255.255.255.255
...
Some hosters require that the subnet mask of the RED network
is set to 255.255.255.255. This was not possible to save before.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 17:17:03 +01:00
Michael Tremer
4a0d69ca46
unbound: Increase memory size on even larger systems
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 10:29:03 +01:00
Michael Tremer
128db1a363
unbound: Double buffer size
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 10:25:39 +01:00
Michael Tremer
c20b20092f
unbound: Increase size of send/receive buffers
...
This will allow to not drop any packets when there is a
peak in queries
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 10:24:40 +01:00
Michael Tremer
5012e53c29
unbound: Re-use UDP sockets
...
This will make UDP queries faster
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 10:17:33 +01:00
Michael Tremer
0a7dca2c5f
unbound: Increase number of parallel queries
...
The parameters are the recommended values for libevent
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-28 10:16:56 +01:00
Marcel Lorenz
e0174da88b
mpd: update to 0.20.6
...
Signed-off-by: Marcel Lorenz <marcel.lorenz@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-25 11:09:50 +01:00
Michael Tremer
cda384a280
ipsec: Do not reject connections in on-demand mode
...
When an on-demand VPN connection is not up, the packets will
traverse the firewall and be rejected by the IPSECBLOCK chain
which will cause that an ICMP error message will be sent to
the client. If that does not happen and the packet is being
silently dropped, the client will retransmit and by then
the VPN connection will hopefully be up.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2017-03-24 13:24:42 +01:00