summaryrefslogtreecommitdiff
path: root/net-firewall/fwknop
diff options
context:
space:
mode:
authorroot <root@alpha.trunkmasters.com>2026-06-12 11:50:53 -0500
committerroot <root@alpha.trunkmasters.com>2026-06-12 11:50:53 -0500
commit290aebdea65a02557706eaeda477fef0437b6a48 (patch)
treef87a939169a508a2e943570501b64cc16b411cda /net-firewall/fwknop
parent6783ddcd4b73d9ce586a71770caed352bec93b16 (diff)
downloadbaldeagleos-repo-290aebdea65a02557706eaeda477fef0437b6a48.tar.gz
baldeagleos-repo-290aebdea65a02557706eaeda477fef0437b6a48.tar.xz
baldeagleos-repo-290aebdea65a02557706eaeda477fef0437b6a48.zip
Adding metadata
Diffstat (limited to 'net-firewall/fwknop')
-rw-r--r--net-firewall/fwknop/Manifest2
-rw-r--r--net-firewall/fwknop/files/fwknop-2.6.10_fno-common_fix.patch23
-rw-r--r--net-firewall/fwknop/files/fwknopd.confd21
-rw-r--r--net-firewall/fwknop/files/fwknopd.init91
-rw-r--r--net-firewall/fwknop/files/fwknopd.service12
-rw-r--r--net-firewall/fwknop/files/fwknopd.tmpfiles.conf1
-rw-r--r--net-firewall/fwknop/fwknop-2.6.11-r1.ebuild133
-rw-r--r--net-firewall/fwknop/metadata.xml25
8 files changed, 0 insertions, 308 deletions
diff --git a/net-firewall/fwknop/Manifest b/net-firewall/fwknop/Manifest
deleted file mode 100644
index ea35b29e7a7a..000000000000
--- a/net-firewall/fwknop/Manifest
+++ /dev/null
@@ -1,2 +0,0 @@
-DIST fwknop-2.6.11.tar.bz2 1812061 BLAKE2B 7cfb8abc95fd8aa8a8d6774507fe4dea8deacc5aa4c9f5874c39dc2a3ab0c413cf479632a34027c76180cecd0a4fbf11d8cac5fe77f48993932fab13ea740a0b SHA512 79ce0585d075dffe77143b4d6ec3f8653ddad5f46cfb596e9f373be0065bdace7efdfe9cd341ebfaa7232d39f905affa81325b569635c8a44095fd551debadd7
-DIST fwknop-2.6.11.tar.bz2.asc 195 BLAKE2B 56ea868bd31fc4d06e3e976042bd3969f2c8df5bcb1e6a12d87c5740eb39b2eaf1118620be260e94b07758f4bc875e58f6b63a7989cdc08a32f049aa208b57a3 SHA512 2902a9ccb1c82baa4a96af5841d21ac873b606876fe01e8fbcf2b1e2a89c75965477f574c62a6f261f2af4420038ea6d41ef66af57b79742527054593e3cd3d7
diff --git a/net-firewall/fwknop/files/fwknop-2.6.10_fno-common_fix.patch b/net-firewall/fwknop/files/fwknop-2.6.10_fno-common_fix.patch
deleted file mode 100644
index 9c144cc1eddd..000000000000
--- a/net-firewall/fwknop/files/fwknop-2.6.10_fno-common_fix.patch
+++ /dev/null
@@ -1,23 +0,0 @@
-From a87325b0816a79329cf0b4d4f9ebf247ead117db Mon Sep 17 00:00:00 2001
-From: Jakub Jelen <jjelen@redhat.com>
-Date: Mon, 10 Feb 2020 15:21:56 +0100
-Subject: [PATCH] Unbreak build with gcc10 (-fno-common)
-
-Signed-off-by: Jakub Jelen <jjelen@redhat.com>
----
- client/log_msg.h | 2 +-
- 1 file changed, 1 insertion(+), 1 deletion(-)
-
-diff --git a/client/log_msg.h b/client/log_msg.h
-index cc17716b..3dda1614 100644
---- a/client/log_msg.h
-+++ b/client/log_msg.h
-@@ -38,7 +38,7 @@ enum
- LOG_VERBOSITY_INFO, /*!< Constant to define a INFO message */
- LOG_VERBOSITY_DEBUG, /*!< Constant to define a DEBUG message */
- LOG_LAST_VERBOSITY
--} log_level_t;
-+};
-
- #define LOG_DEFAULT_VERBOSITY LOG_VERBOSITY_NORMAL /*!< Default verbosity to use */
-
diff --git a/net-firewall/fwknop/files/fwknopd.confd b/net-firewall/fwknop/files/fwknopd.confd
deleted file mode 100644
index 63bcd01dd82f..000000000000
--- a/net-firewall/fwknop/files/fwknopd.confd
+++ /dev/null
@@ -1,21 +0,0 @@
-# /etc/conf.d/fwknopd: config file for /etc/init.d/fwknopd
-
-# Path to the fwknopd config directory (needs to be an absolute path).
-
-FWKNOPD_CONFDIR="/etc/fwknop"
-
-
-# Additional options to pass to fwknopd.
-# Refer to the fwknopd(8) manpage for more information.
-
-#FWKNOPD_OPTS=""
-
-
-# Pid file to use (needs to be an absolute path).
-
-#FWKNOPD_PIDFILE="/run/fwknop/fwknopd.pid"
-
-
-# Path to the fwknopd binary (needs to be an absolute path).
-
-#FWKNOPD_BINARY="/usr/sbin/fwknopd"
diff --git a/net-firewall/fwknop/files/fwknopd.init b/net-firewall/fwknop/files/fwknopd.init
deleted file mode 100644
index dda1bf03156e..000000000000
--- a/net-firewall/fwknop/files/fwknopd.init
+++ /dev/null
@@ -1,91 +0,0 @@
-#!/sbin/openrc-run
-# Copyright 1999-2016 Gentoo Foundation
-# Distributed under the terms of the GNU General Public License v2
-
-extra_commands="checkconfig"
-extra_started_commands="reload"
-
-: ${FWKNOPD_BINARY:=/usr/sbin/fwknopd}
-: ${FWKNOPD_CONFDIR:=/etc/fwknop}
-: ${FWKNOPD_CONFIG:=${FWKNOPD_CONFDIR}/fwknopd.conf}
-: ${FWKNOPD_PIDFILE:=/run/fwknop/${SVCNAME}.pid}
-
-depend() {
- after iptables ip6tables ebtables firewall
- use logger
- if [ "${rc_need+set}" = "set" ]; then
- : # Do nothing, the user has explicitly set rc_need
- elif [ -f "${FWKNOPD_CONFIG}" ]; then
- local x warn_intf
- for x in $(awk '/^[[:blank:]]*PCAP_INTF/{ sub(";$", ""); print $2 }' "${FWKNOPD_CONFIG}" 2>/dev/null); do
- warn_intf="${warn_intf} ${x}"
- done
- if [ -n "${warn_intf}" ]; then
- need net
- ewarn "You are binding an interface in PCAP_INTF statement in your fwknopd.conf!"
- ewarn "You must add rc_need=\"net.FOO\" to your /etc/conf.d/${SVCNAME},"
- ewarn "where FOO is the following interface(s):"
- ewarn "${warn_intf}"
- else
- # If PCAP_INTF and PCAP_FILE are not set, then fwknopd uses eth0
- if ! grep -q '^[[:blank:]]*PCAP_FILE' "${FWKNOPD_CONFIG}"; then
- need net
- ewarn "You are not binding any interface in PCAP_INTF statement in your fwknopd.conf,"
- ewarn "neither you are providing PCAP_FILE option. Thus fwknopd will listen on eth0."
- ewarn "You must add rc_need=\"net.eth0\" to your /etc/conf.d/${SVCNAME}."
- fi
- fi
- fi
-}
-
-checkconfig() {
- if [ ! -e "${FWKNOPD_CONFDIR}"/fwknopd.conf ]; then
- eerror "You need ${FWKNOPD_CONFDIR}/fwknopd.conf file to run fwknopd"
- eerror "Example is located at /etc/fwknop/fwknopd.conf.example"
- return 1
- fi
-
- if [ ! -e "${FWKNOPD_CONFDIR}"/access.conf ]; then
- eerror "You need ${FWKNOPD_CONFDIR}/access.conf file to run fwknopd"
- eerror "Example is located at /etc/fwknop/access.conf.example"
- return 1
- fi
-
- [ "${FWKNOPD_PIDFILE}" != "/run/fwknop/${SVCNAME}.pid" ] \
- && FWKNOPD_OPTS="${FWKNOPD_OPTS} --pid-file=${FWKNOPD_PIDFILE}"
-
- [ "${FWKNOPD_CONFDIR}" != "/etc/fwknop" ] \
- && FWKNOPD_OPTS="${FWKNOPD_OPTS} \
- --config=${FWKNOPD_CONFDIR}/fwknopd.conf \
- --access-file=${FWKNOPD_CONFDIR}/access.conf"
-
- return 0
-}
-
-start() {
- checkconfig || return 1
-
- ebegin "Starting ${SVCNAME}"
- start-stop-daemon --start \
- --exec ${FWKNOPD_BINARY} --pidfile ${FWKNOPD_PIDFILE} \
- -- ${FWKNOPD_OPTS}
- eend $?
-}
-
-stop() {
- if [ "${RC_CMD}" = "restart" ]; then
- checkconfig || return 1
- fi
-
- ebegin "Stopping ${SVCNAME}"
- start-stop-daemon --stop --pidfile ${FWKNOPD_PIDFILE}
- eend $?
-}
-
-reload() {
- checkconfig || return 1
-
- ebegin "Reloading ${SVCNAME} configuration"
- start-stop-daemon --signal HUP --pidfile ${FWKNOPD_PIDFILE}
- eend $?
-}
diff --git a/net-firewall/fwknop/files/fwknopd.service b/net-firewall/fwknop/files/fwknopd.service
deleted file mode 100644
index d2e8c3125200..000000000000
--- a/net-firewall/fwknop/files/fwknopd.service
+++ /dev/null
@@ -1,12 +0,0 @@
-[Unit]
-Description=Firewall Knock Operator Daemon
-After=network-online.target
-
-[Service]
-Type=forking
-PIDFile=/run/fwknop/fwknopd.pid
-ExecStart=/usr/sbin/fwknopd
-ExecReload=/bin/kill -HUP $MAINPID
-
-[Install]
-WantedBy=multi-user.target
diff --git a/net-firewall/fwknop/files/fwknopd.tmpfiles.conf b/net-firewall/fwknop/files/fwknopd.tmpfiles.conf
deleted file mode 100644
index b7cb3856b056..000000000000
--- a/net-firewall/fwknop/files/fwknopd.tmpfiles.conf
+++ /dev/null
@@ -1 +0,0 @@
-d /run/fwknop 0700 root root -
diff --git a/net-firewall/fwknop/fwknop-2.6.11-r1.ebuild b/net-firewall/fwknop/fwknop-2.6.11-r1.ebuild
deleted file mode 100644
index 15c36e2fcd9b..000000000000
--- a/net-firewall/fwknop/fwknop-2.6.11-r1.ebuild
+++ /dev/null
@@ -1,133 +0,0 @@
-# Copyright 1999-2024 Gentoo Authors
-# Distributed under the terms of the GNU General Public License v2
-
-EAPI=8
-
-VERIFY_SIG_OPENPGP_KEY_PATH=/usr/share/openpgp-keys/fwknop.gpg
-inherit autotools linux-info readme.gentoo-r1 systemd tmpfiles verify-sig
-
-DESCRIPTION="Single Packet Authorization and Port Knocking application"
-HOMEPAGE="https://www.cipherdyne.org/fwknop/"
-SRC_URI="
- https://www.cipherdyne.org/fwknop/download/${P}.tar.bz2
- verify-sig? ( https://www.cipherdyne.org/fwknop/download/${P}.tar.bz2.asc )
- "
-
-LICENSE="GPL-2+"
-SLOT="0"
-KEYWORDS="~amd64 ~x86"
-IUSE="+client extras firewalld gdbm gpg +iptables nfqueue +server static-libs udp-server"
-
-DEPEND="
- client? ( net-misc/wget[ssl] )
- firewalld? ( net-firewall/firewalld )
- gdbm? ( sys-libs/gdbm )
- gpg? (
- app-crypt/gpgme:=
- dev-libs/libassuan:=
- dev-libs/libgpg-error
- )
- iptables? ( net-firewall/iptables )
- nfqueue? ( net-libs/libnetfilter_queue )
- server? ( !nfqueue? ( !udp-server? ( net-libs/libpcap ) ) )
- verify-sig? ( sec-keys/openpgp-keys-fwknop )
-"
-RDEPEND="${DEPEND}"
-
-REQUIRED_USE="
- nfqueue? ( server )
- server? ( ^^ ( firewalld iptables ) )
- udp-server? ( server )
-"
-
-##PATCHES=( "${FILESDIR}/${PN}-2.6.10_fno-common_fix.patch" )
-
-DOCS=( AUTHORS ChangeLog README )
-
-DISABLE_AUTOFORMATTING=1
-DOC_CONTENTS="
-Example configuration files were installed to '${EPREFIX}/etc/fwknopd/'.
-Please edit them to suit your needs and then remove the .example suffix.
-
-fwknopd supports several backends: firewalld, iptables, ipfw, pf, ipf.
-You can set the desired backend via FIREWALL_EXE option in fwknopd.conf
-instead of the default one chosen at compile time.
-"
-
-pkg_setup() {
- linux-info_pkg_setup
-}
-
-src_prepare() {
- default_src_prepare
-
- # Install example configs with .example suffix.
- if use server; then
- sed -i -e 's|conf;|conf.example;|g' Makefile.am || die
- fi
-
- eautoreconf
-}
-
-src_configure() {
- local myeconfargs=(
- --localstatedir="${EPREFIX}/run"
- $(use_enable client)
- $(use_enable !gdbm file-cache)
- $(use_enable nfqueue nfq-capture)
- $(use_enable server)
- $(use_enable udp-server)
- $(use_with gpg gpgme)
- )
- use firewalld && myeconfargs+=(--with-firewalld="${EPREFIX}/usr/sbin/firewalld")
- use iptables && myeconfargs+=(--with-iptables="${EPREFIX}/sbin/iptables")
-
- econf "${myeconfargs[@]}"
-}
-
-src_install() {
- default_src_install
-
- if use extras; then
- dodoc extras/apparmor/usr.sbin.fwknopd
- dodoc extras/console-qr/console-qr.sh
- dodoc extras/fwknop-launcher/*
- fi
-
- if use server; then
- newinitd "${FILESDIR}/fwknopd.init" fwknopd
- newconfd "${FILESDIR}/fwknopd.confd" fwknopd
- systemd_dounit extras/systemd/fwknopd.service
- newtmpfiles "${FILESDIR}/fwknopd.tmpfiles.conf" fwknopd.conf
- readme.gentoo_create_doc
- fi
-
- find "${ED}" -type f -name "*.la" -delete || die
-
- if ! use static-libs ; then
- find "${ED}" -type f -name libfko.a -delete || die
- fi
-}
-
-pkg_postinst() {
- if use server; then
- readme.gentoo_print_elog
-
- tmpfiles_process fwknopd.conf
-
- if ! linux_config_exists || ! linux_chkconfig_present NETFILTER_XT_MATCH_COMMENT; then
- echo
- ewarn "fwknopd daemon relies on the 'comment' match in order to expire"
- ewarn "created firewall rules, which is an important security feature."
- ewarn "Please enable NETFILTER_XT_MATCH_COMMENT support in your kernel."
- echo
- fi
- if use nfqueue && \
- ! linux_config_exists || ! linux_chkconfig_present NETFILTER_XT_TARGET_NFQUEUE; then
- echo
- ewarn "fwknopd daemon relies on the 'NFQUEUE' target for NFQUEUE mode."
- ewarn "Please enable NETFILTER_XT_TARGET_NFQUEUE support in your kernel."
- echo
- fi
- fi
-}
diff --git a/net-firewall/fwknop/metadata.xml b/net-firewall/fwknop/metadata.xml
deleted file mode 100644
index fd5cf6dcd092..000000000000
--- a/net-firewall/fwknop/metadata.xml
+++ /dev/null
@@ -1,25 +0,0 @@
-<?xml version="1.0" encoding="UTF-8"?>
-<!DOCTYPE pkgmetadata SYSTEM "https://docs.baldeagleos.com/dtd/metadata.dtd">
-<pkgmetadata>
- <maintainer type="person" proxied="yes">
- <email>hlein@korelogic.com</email>
- <name>Hank Leininger</name>
- </maintainer>
- <maintainer type="project" proxied="proxy">
- <email>proxy-maint@gentoo.org</email>
- <name>Proxy Maintainers</name>
- </maintainer>
- <use>
- <flag name="client">Build fwknop client</flag>
- <flag name="extras">Install utility scripts and AppArmor policy for fwknopd</flag>
- <flag name="firewalld">Use <pkg>net-firewall/firewalld</pkg> as the default server backend</flag>
- <flag name="gdbm">Use <pkg>sys-libs/gdbm</pkg> to store fwknopd digest cache</flag>
- <flag name="gpg">Enable GPG support via <pkg>app-crypt/gpgme</pkg>
- </flag>
- <flag name="iptables">Use <pkg>net-firewall/iptables</pkg> as the default server backend</flag>
- <flag name="nfqueue">Enable UDP-only NFQUEUE server mode (no <pkg>net-libs/libpcap</pkg> dependency)</flag>
- <flag name="server">Build fwknopd server</flag>
- <flag name="udp-server">Enable UDP-only server mode (no <pkg>net-libs/libpcap</pkg> dependency)</flag>
- </use>
- <origin>baldeagleos-repo</origin>
-</pkgmetadata>