Revisions of apache2-mod_nss
Ana Guerrero (anag+factory)
accepted
request 1181893
from
Petr Gajdos (pgajdos)
(revision 37)
- drop unmaintained apache-rex usage
Dominique Leuenberger (dimstar_suse)
accepted
request 851861
from
Petr Gajdos (pgajdos)
(revision 36)
- use apache rpm macros
Dominique Leuenberger (dimstar_suse)
accepted
request 814638
from
Petr Gajdos (pgajdos)
(revision 35)
- Add -fcommon in order to fix building with GCC10 (forwarded request 813442 from polslinux)
Dominique Leuenberger (dimstar_suse)
accepted
request 805249
from
Petr Gajdos (pgajdos)
(revision 34)
- Set the minimal apache version to 2.4.18 which is required since 1.0.18 (mod_nss needs conn_rec->master field) (forwarded request 802933 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 713601
from
Factory Maintainer (factory-maintainer)
(revision 32)
Automatic submission by obs-autosubmit
Dominique Leuenberger (dimstar_suse)
accepted
request 655362
from
Vítězslav Čížek (vitezslav_cizek)
(revision 31)
Dominique Leuenberger (dimstar_suse)
accepted
request 592034
from
Vítězslav Čížek (vitezslav_cizek)
(revision 30)
Dominique Leuenberger (dimstar_suse)
accepted
request 588675
from
Vítězslav Čížek (vitezslav_cizek)
(revision 29)
- Use fixed upstream 1.0.16 tarball * https://pagure.io/mod_nss/issue/44 (forwarded request 588674 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 585105
from
Petr Gajdos (pgajdos)
(revision 28)
- Since the update to NSS 3.35, the default NSS certificate database format changed from Berkley DB to SQLite - use %license tag - Update to 1.0.15 * Try to auto-detect the NSS database format if not specified * Update nss_pcache.8 man page to drop directory and prefix * When a token is configured in password file only authenticate once * Return an error when NSSPassPhraseDialog is invalid * Move 3DES ciphers down from HIGH to MEDIUM to match OpenSSL 1.0.2k+ * Add -Werror=implicit-function-declaration to CFLAGS * Handle group membership when testing for file permissions * NSS system-wide policy now disables SSLv3, don't use it in tests * Add missing error messages for libssl errors * Fix doc typo in SSL_[SERVER|CLIENT]_SAN_IPaddr env variable name * When including additional test config use specific extension * Fix the TLS Session ID cache * Make an invalid protocol setting fatal * Don't use same NSS db in nss_pcache as mod_nss, use NSS_NoDB_Init() * Add info log message when FIPS is enabled * Add AES-256 and drop DES, CAST128, SKIPJACK as wrapping key types * Fix removal of CR from PEM certificates * Add OCSP caching and timeout tuning knobs * Check the NSS database directory permissions as well as the files inside it for read access on startup. * Add in simple aliases for ciphers to fix those that don't follow the pattern (dhe_rsa_aes_128_sha256, dhe_rsa_aes_256_sha256) and those with typos (camelia_128_sha, camelia_256_sha) * Fix semaphore leak (forwarded request 584463 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 560006
from
Factory Maintainer (factory-maintainer)
(revision 27)
Automatic submission by obs-autosubmit
Dominique Leuenberger (dimstar_suse)
accepted
request 556377
from
Petr Gajdos (pgajdos)
(revision 26)
- Fix NSS database startup permission check (bsc#1057776) * add 0001-Handle-group-membership-when-testing-for-file-permis.patch (forwarded request 556094 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 555875
from
Petr Gajdos (pgajdos)
(revision 25)
- drop obsolete mod_nss-dont_disable_SSLV2.patch * bump up minimal NSS version to 3.25, which we now have everywhere - Require iproute2 for ss, which is used by gencert to gather noise (bsc#998183) (forwarded request 555075 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 536370
from
Vítězslav Čížek (vitezslav_cizek)
(revision 24)
1
Dominique Leuenberger (dimstar_suse)
accepted
request 433553
from
Vítězslav Čížek (vitezslav_cizek)
(revision 23)
1
Dominique Leuenberger (dimstar_suse)
accepted
request 428095
from
Petr Gajdos (pgajdos)
(revision 22)
- don't disable SSLV2, because it doesn't work with NSS 3.24 (boo#993642) * add mod_nss-dont_disable_SSLV2.patch - remove deprecated NSSSessionCacheTimeout option from mod_nss.conf.in (bsc#998176) - change ownership of the gencert generated NSS database so apache can read it (bsc#998180) * add mod_nss-gencert-correct-ownership.patch - use correct configuration path in mod_nss.conf.in (bsc#996282) - remove %post migration code from the old alias directory - generate dummy certificates if there aren't any in mod_nss.d (forwarded request 427944 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 416355
from
Petr Gajdos (pgajdos)
(revision 21)
- use systemd-ask-password to prompt for a certificate passphrase (bsc#972968) * drop obsolete mod_nss-bnc863518-reopen_dev_tty.diff (forwarded request 415922 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 390637
from
Petr Gajdos (pgajdos)
(revision 20)
- update to 1.0.14 (fixes boo#973996) * OpenSSL ciphers stopped parsing at +, CVE-2016-3099 * Created valgrind suppression files to ease debugging * Implement SSL_PPTYPE_FILTER to call executables to get the key password pins. Can be used to prompt with systemd. * Improvements to migrate.pl - drop mod_nss_migrate.pl and use upstream migrate script instead * add mod_nss-migrate.patch (forwarded request 390295 from vitezslav_cizek)
Dominique Leuenberger (dimstar_suse)
accepted
request 381888
from
Cristian Rodríguez (elvigia)
(revision 19)
1
Dominique Leuenberger (dimstar_suse)
accepted
request 355019
from
Factory Maintainer (factory-maintainer)
(revision 18)
Automatic submission by obs-autosubmit
Displaying revisions 1 - 20 of 37