From cb2f73d10494730ba590096a1f24ebc6d0d61a9f Mon Sep 17 00:00:00 2001 From: V3n3RiX Date: Thu, 16 Jan 2025 06:41:40 +0000 Subject: gentoo auto-resync : 16:01:2025 - 06:41:40 --- net-vpn/Manifest.gz | Bin 8069 -> 8067 bytes net-vpn/strongswan/Manifest | 4 +- net-vpn/strongswan/metadata.xml | 54 ++++++++++++++++++++----- net-vpn/strongswan/strongswan-5.9.14-r1.ebuild | 10 +++-- 4 files changed, 53 insertions(+), 15 deletions(-) (limited to 'net-vpn') diff --git a/net-vpn/Manifest.gz b/net-vpn/Manifest.gz index 0086099eee12..ff1b31d73ae3 100644 Binary files a/net-vpn/Manifest.gz and b/net-vpn/Manifest.gz differ diff --git a/net-vpn/strongswan/Manifest b/net-vpn/strongswan/Manifest index 635c026b0b1b..92ef3fef95eb 100644 --- a/net-vpn/strongswan/Manifest +++ b/net-vpn/strongswan/Manifest @@ -2,6 +2,6 @@ AUX ipsec 451 BLAKE2B deb3fff7043e04c1630119bb0cbbd6fa9b6f15666131ac9744a32d35cf DIST strongswan-5.9.13.tar.bz2 4825644 BLAKE2B 1d60864a557cf14e84c62d4c04ae64eb24331e2576c157b276cf13691ac2a7f5d1b92925e4c3e6ab51dc1f6f64aeb7c60ffb16309673a9f78a73f652cb24da8c SHA512 a929c1fb2a5e7d3064f6cd0be76703198406dad981f4b345311a004c18aa3c12adcb49eb33705fe4c3c31daf556cef5906d8753f5d9fbff5a27b732f93d8f19f DIST strongswan-5.9.14.tar.bz2 4869709 BLAKE2B 8b64903cfa087d42ae0895e7c11a2fcbd9c6a4a4241548d947753e081a4a4e3c5946e5cf4bbd326840e596e51c61554146f007e6882f11c874454b9480f6f7a6 SHA512 e48bc9d215f9de6b54e24f7b4765d59aec4c615291d5c1f24f6a6d7da45dc8b17b2e0e150faf5fabb35e5d465abc5e6f6efa06cd002467067c5d7844ead359f6 EBUILD strongswan-5.9.13.ebuild 9561 BLAKE2B 0dcabee126d3aadc2a49383123a6c66c49cbdb16763fad1bb1546860c8dfa6aaf702b35532993f1f8c27c2989130a7aef7119250eea6496ba9eba35b0571cc18 SHA512 713e3ecd9649738592b53274db7f3aa0f1f2ae9a3680f574fa2655aa47e213684af29c4e8ce2d1634314f385fcde187230f83da43b4ead552f0a0c908cc471f9 -EBUILD strongswan-5.9.14-r1.ebuild 9575 BLAKE2B 09f40e5cceb5cdb2f3c913dd141e275b2fe1028632d1573efb4bf8113be0fa9f469b08d2f0c5f9d97aa63fca99e494973e43cb199ccfd4d3a3796115c863765a SHA512 fd3b6d73f28f8a79662f1f9f572cd81471726e82fea36fb0285492ee69b523766903d17a1f03bc7b9d7779e8e493f29182489d047f5b2c565b29403a20b646ab +EBUILD strongswan-5.9.14-r1.ebuild 9801 BLAKE2B 6c915593c05dfd3c7a7ac2ce7655414baa35867f6f05f784c0afbba69afd0a0d168d2627beb25f5300aea219a1731ca83d032fe02dd2100ee12cfa49c93a5a68 SHA512 946be6eca9958ecd795a6886610dc80cc0cceacb874f0c733e59984c7214e83d8cbc2e75cb895047f487baa39cac0dd32227aea8de737adcb664b7767f775b27 EBUILD strongswan-5.9.14.ebuild 9561 BLAKE2B 0dcabee126d3aadc2a49383123a6c66c49cbdb16763fad1bb1546860c8dfa6aaf702b35532993f1f8c27c2989130a7aef7119250eea6496ba9eba35b0571cc18 SHA512 713e3ecd9649738592b53274db7f3aa0f1f2ae9a3680f574fa2655aa47e213684af29c4e8ce2d1634314f385fcde187230f83da43b4ead552f0a0c908cc471f9 -MISC metadata.xml 5026 BLAKE2B eac79f326c6bea0184b8bbbf114516a961c935f5c61e68098e97272db416bf3df00385a5dcfc9979c5649c198e6bcae94eb84a0333ace3113c2f1270f57c43b0 SHA512 264e627aa71f9564e1a54a431fe5f0bacdde5bea5e99b89956c23e9e4c26d70dec70e8586846632dc8fc01baa72d7cf4923e616959e2bd034622663adc2d4ea2 +MISC metadata.xml 8084 BLAKE2B 85b8e8a7dcbea0ade3f1e07ad3c2fe29dcb1eddb28c83f1dd7c6d7ac07afa6813d785ca72f9c62f62ceba81afc67d2718e5082897da4787060a22f47a5bf7450 SHA512 84e02ca3870ed72f55db73d617a27888a326bdbabc059af8c0f2e74924bbfb5a3acb46c012a0884a03f19b14e7a2e67c0e5a8eade126bee4b9a680b50b30a0e6 diff --git a/net-vpn/strongswan/metadata.xml b/net-vpn/strongswan/metadata.xml index c81edb750eb7..780a710b9622 100644 --- a/net-vpn/strongswan/metadata.xml +++ b/net-vpn/strongswan/metadata.xml @@ -30,33 +30,69 @@ Force IKEv1/IKEv2 daemons to normal user privileges. This might impose some restrictions mainly to the IKEv1 daemon. Disable only if you really require superuser privileges. Enable dev-libs/openssl plugin which is required for Elliptic Curve Cryptography (DH groups 19-21,25,26) and ECDSA. Also provides 3DES, AES, Blowfish, Camellia, CAST, DES, IDEA and RC5 ciphers along with MD2, MD4, MD5 and SHA1/2 hash algorithms, RSA and DH groups 1,2,5,14-18 and 22-24(4.4+) dev-libs/openssl has to be compiled with USE="-bindist". Enable pkcs11 support + Enable support for X.509 attribute certificates Enable support for the addrblock crypto plugin + Enable support for the aes plugin Enable support for Intel AES-NI crypto plugin - Enable support for the bypass-lan plugin - Enable ChaCha20/Poly1305 AEAD implementation and ChaCha20 XOF plugin - Enable EAP Radius plugin - Enable multicast and broadcast forwarding plugin - Enable support for the led plugin - Enable support for the lookip plugin - Enable support for the systime-fix plugin - Enable support for the unity plugin - Enable support for the vici plugin + Enable support for the AF_ALG Linux kernel crypto API + Enable support for RSA/ECDSA private keys Enable support for the blowfish plugin + Enable support for the botan library plugin + Enable support for the bypass-lan plugin Enable support for the ccm plugin + Enable ChaCha20/Poly1305 AEAD implementation and ChaCha20 XOF plugin + Enable support for the cmac plugin Enable support for the ctr plugin + Enable support for X25519 DH group and Ed25519 public key uthentication + Enable DES/3DES cipher implementation + Enable support for parsing DNS public keys + Enable support for the drgb plugin + Enable EAP Radius plugin Enable support for the error-notify plugin + Enable support for local file:// URIs + Enable support for the fips-prf plugin + Enable multicast and broadcast forwarding plugin Enable support for the gcm plugin Enable support for the ha plugin + Enable support for the hmac plugin Enable support for the ipseckey plugin Enable support for the kdf plugin + Enable support for the led plugin + Enable support for the lookip plugin + Enable support for the md4 plugin + Enable support for the md5 plugin + Enable support for the mgf1 plugin Enable plugin that allows key exchange based on post-quantum computer New Hope algorithm + Enable support the nonce plugin Enable support for the ntru plugin + Enable OCSP responder accessing OpenXPKI MySQL/MariaDB certificate database Enable support for the padlock plugin + Enable support for the pem plugin + Enable support for the pgp plugin + Enable pkcs1 support + Enable pkcs12 support + Enable pkcs7 support + Enable pkcs8 support + Enable wrapper to handle raw public keys + Enable RNG support with /dev/[u]random + Enable plugin for RC2 support Enable support for the rdrand plugin + Enable X.509 CRL/OCSP revocation checking Enable plugin that saves IKE and/or ESP keys to files compatible with Wireshark (for debugging) + Enable plugin for SHA1 support + Enable plugin for SHA2 support + Enable plugin for SHA3 support + Enable libsoup based HTTP fetcher + Enable SSH key decoding routines + Enable support for the systime-fix plugin + Enable set of test vectors for various algorithms Enable support for the unbound plugin + Enable support for the unity plugin + Enable support for the vici plugin Enable support for the whitelist plugin + Enable plugin for advanced X.509 functionality Enable support for the xauth-noauth plugin + Enable support for XCBC plugin cpe:/a:strongswan:strongswan diff --git a/net-vpn/strongswan/strongswan-5.9.14-r1.ebuild b/net-vpn/strongswan/strongswan-5.9.14-r1.ebuild index 2e53e2a284f6..fc6826f18fb8 100644 --- a/net-vpn/strongswan/strongswan-5.9.14-r1.ebuild +++ b/net-vpn/strongswan/strongswan-5.9.14-r1.ebuild @@ -13,11 +13,13 @@ SLOT="0" KEYWORDS="~amd64 ~arm ~arm64 ~ppc ~ppc64 ~riscv ~x86" IUSE="+caps curl +constraints debug dhcp eap farp gcrypt +gmp ldap mysql networkmanager +non-root +openssl selinux sqlite systemd pam pkcs11" -STRONGSWAN_PLUGINS_STD="eap-radius gcm led lookip systime-fix unity vici" +STRONGSWAN_PLUGINS_STD="aes cmac curve25519 des dnskey drbg eap-radius fips-prf gcm hmac led lookip md5 nonce pem pgp +pkcs1 pkcs7 pkcs8 pkcs12 pubkey random rc2 revocation sha1 sha2 sshkey systime-fix unity vici x509 xcbc" STRONGSWAN_PLUGINS_OPT_DISABLE="kdf" -STRONGSWAN_PLUGINS_OPT="addrblock aesni blowfish bypass-lan ccm chapoly ctr error-notify forecast -ha ipseckey newhope ntru padlock rdrand save-keys unbound whitelist -xauth-noauth" +STRONGSWAN_PLUGINS_OPT="acert af-alg agent addrblock aesni botan blowfish bypass-lan +ccm chapoly ctr error-notify forecast files gcm ha ipseckey md4 mgf1 ntru newhope +openxpki padlock rdrand save-keys sha3 soup test-vectors unbound whitelist xauth-noauth" + for mod in $STRONGSWAN_PLUGINS_STD; do IUSE="${IUSE} +strongswan_plugins_${mod}" done -- cgit v1.2.3