Commit Graph

5939 Commits

Author SHA1 Message Date
Florian Eckert 46b2593ce4 mwan3: mwan3rtmon interrupt sleep on signal (trap) event
Sleep will be aborted if a signal is send to this process.

Signed-off-by: Florian Eckert <fe@dev.tdt.de>
2019-01-14 08:28:55 +01:00
Florian Eckert 10cadcb2af mwan3: set interface unknown to offline
Signed-off-by: Florian Eckert <fe@dev.tdt.de>
2019-01-14 08:28:53 +01:00
Florian Eckert 9362ef30ff mwan3: fix initial_state offline issue
Signed-off-by: Florian Eckert <fe@dev.tdt.de>
2019-01-14 08:28:52 +01:00
Florian Eckert a974558cfa mwan3: add syslog debug possibility to rules
Signed-off-by: Florian Eckert <fe@dev.tdt.de>
2019-01-14 08:28:50 +01:00
Hannu Nyman 567471714e Merge pull request #7918 from LLE8/add-lynx-package
lynx: add package
2019-01-13 21:25:59 +02:00
Leonid Esman d267b62b09 lynx: defined package maintainer, added more download sites
Signed-off-by: Leonid Esman <leonid.esman@gmail.com>
2019-01-13 22:01:21 +03:00
Hannu Nyman b93cf12f46 Merge pull request #7871 from cshoredaniel/pr-add-radicale2
Radicale 2.x as radicale2
2019-01-13 13:20:04 +02:00
Hannu Nyman 882b497753 Merge pull request #7910 from cshoredaniel/pr-nut-fsd-bug
nut: Prevent FSD when not specifically requested
2019-01-13 09:45:43 +02:00
Deng Qingfang 7ce7898d13 bind: update to 9.11.5-P1
For changes in 9.11.5-P1 see https://ftp.isc.org/isc/bind9/9.11.5-P1/CHANGES

Signed-off-by: Deng Qingfang <dengqf6@mail2.sysu.edu.cn>
2019-01-12 21:26:32 -08:00
Hannu Nyman 43221fc249 Merge pull request #7806 from iamperson347/patch-3
stubby: Remove iamperson347 from maintainer
2019-01-12 11:48:20 +02:00
Hannu Nyman 1fadeeaedd Merge pull request #7932 from val-kulkov/samba4-package
samba4: add mandatory option per CVE-2018-16853
2019-01-11 22:47:21 +02:00
Hannu Nyman a55164ab59 Merge pull request #7942 from val-kulkov/subversion-package
subversion: bump to the latest stable bugfix release
2019-01-11 22:46:18 +02:00
Joseph Benden 4ddc31ba2a aircrack-ng: Update to 1.5.2
Signed-off-by: Joseph Benden <joe@benden.us>
2019-01-11 12:24:53 -07:00
Rosen Penev 338646ffc7 wget: Fix compilation without deprecated OpenSSL 1.1 APIs
The configure script uses a deprecated function to check for libssl. I tried patching configure.ac
and adding PKG_FIXUP:=autoreconf but that causes a different error. This is the simplest fix.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-11 17:28:45 +01:00
Val Kulkov 00f7f607b0 subversion: bump to the latest stable bugfix release
Update to Apache Subversion 1.11.1.

Signed-off-by: Val Kulkov <val.kulkov@gmail.com>
2019-01-11 11:14:46 -05:00
Jan Pavlinec f422a6fe49 irssi: update to version 1.1.2
Fixes
CVE-2019-5882 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-5882

Changes
-add PKG_CPE_ID
-add license info

Signed-off-by: Jan Pavlinec <jan.pavlinec@nic.cz>
2019-01-11 17:10:27 +01:00
David Yang 0bda3d9a83 lighttpd: Fix dependencies among auth mods
lighttpd-mod-auth has to be installed with lighttpd-mod-authn_file,
otherwise an error will appear even when auth.backend is not "plain".

  (plugin.c.229) dlopen() failed for: /usr/lib/lighttpd/mod_authn_file.so Error loading shared library /usr/lib/lighttpd/mod_authn_file.so: No such file or directory

Signed-off-by: David Yang <mmyangfl@gmail.com>
2019-01-11 21:03:32 +08:00
Nikos Mavrogiannopoulos 561401ad43 openconnect: updated to 8.01
Signed-off-by: Nikos Mavrogiannopoulos <nmav@gnutls.org>
2019-01-10 22:16:36 +01:00
Nikos Mavrogiannopoulos 8d814dec45 ocserv: updated to 0.12.2
Signed-off-by: Nikos Mavrogiannopoulos <nmav@gnutls.org>
2019-01-10 21:30:50 +01:00
Val Kulkov d12521c169 samba4: add mandatory option per CVE-2018-16853
Since 4.9.3, Samba AD-DC with MIT Kerberos will refuse to build unless
--with-experimental-mit-ad-dc is provided to the configure command.

The mandatory requirement was introduced in response to a report that
a user in a Samba AD domain can crash the KDC when Samba is built in
the non-default MIT Kerberos configuration:
https://www.samba.org/samba/security/CVE-2018-16853.html

This requirement was introduced in Samba commit
c5370a4349d381ba3b64b063dc28a2c54cfacdfc.

Signed-off-by: Val Kulkov <val.kulkov@gmail.com>
2019-01-10 13:34:30 -05:00
Andy Walsh 298ec8af05 softethervpn5: fix client, bridge pkg installation
* fix launcher.sh installation for client, bridge
* link libreadline as static for host helper (hamcorebuilder)

Signed-off-by: Andy Walsh <andy.walsh44+github@gmail.com>
2019-01-10 12:03:05 +01:00
Hannu Nyman c05eb89d7d Merge pull request #7746 from cotequeiroz/softethervpn_rpath
softethervpn:  use hostpkg-installed libreadline, add name to build_dir
2019-01-10 00:28:24 +02:00
Rosen Penev 494ce7118a vpnc: Updated deprecated patch to include OpenSSL 1.1
Patch was only for 1.0.2. This adds 1.1 support.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-09 12:03:54 -08:00
Hannu Nyman 30c73ca5e6 Merge pull request #7895 from neheb/clam
clamav: Fix compilation without deprecated OpenSSL APIs
2019-01-09 21:16:04 +02:00
Hannu Nyman b6b17abb13 Merge pull request #7926 from gladiac1337/feature-haproxy-v1.8.17
haproxy: Update HAProxy to v1.8.17
2019-01-09 21:06:10 +02:00
Dirk Brenken 611dddb3fa Merge pull request #7930 from dibdot/adblock
adblock: update 3.6.2
2019-01-09 16:19:28 +01:00
Dirk Brenken 3233bb307b adblock: update 3.6.2
* enhance the query function to search in adblock backups as well,
  to get back the set of blocking lists sources for a certain domain
* add "Latest DNS Queries" report to commandline version as well
  (already in LuCI)
* made the tld compression (the error handling) more robust,
  remove the needless 'adb_forcesrt' option
* removed abandoned 'feodo' list source
* updated readme

Signed-off-by: Dirk Brenken <dev@brenken.org>
2019-01-09 12:40:45 +01:00
Christian Lachner ce5ab5ecec haproxy: Update HAProxy to v1.8.17
- Update haproxy download URL and hash
- This fixes CVE-2018-20615

Signed-off-by: Christian Lachner <gladiac@gmail.com>
2019-01-09 08:48:04 +01:00
Daniel F. Dickinson 615fa96f9c radicale2: Update CalDAV/CardDAV server to v2.x
Radicale 2.x adds support for many new clients,
bug-fixes, etc so add v2 of this application.

We do it as a separate package for those not
ready to switch (it's not an straight inplace
upgrade from 1.x).

We do however CONFLICT with 1.x as they can't
be run side-by-side on the same host (without
containers for somesuch).

Signed-off-by: Daniel F. Dickinson <cshored@thecshore.com>
2019-01-09 01:35:18 -05:00
Michael Heimpold 8cfbcfd757 ser2net: update to 3.5.1
Signed-off-by: Michael Heimpold <mhei@heimpold.de>
2019-01-08 23:13:08 +01:00
Leonid Esman 887182dce9 lynx: initial commit
Based on https://github.com/kyak/openwrt-packages/tree/master/lynx
Tested on TP-Link TL-MR3020 v3

Signed-off-by: Leonid Esman <leonid.esman@gmail.com>
2019-01-09 00:02:18 +03:00
Jan Pavlinec f2196c46ea tor: update to version 0.3.4.10
Signed-off-by: Jan Pavlinec <jan.pavlinec@nic.cz>
2019-01-08 20:44:52 +01:00
Andy Walsh 159ab10ab2 softethervpn5: add new package softethervpn5
Signed-off-by: Andy Walsh <andy.walsh44+github@gmail.com>
2019-01-08 17:56:50 +01:00
Rosen Penev 18085ebccd radsecproxy: Fix compilation without deprecated OpenSSL 1.0.2 APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-08 15:19:00 +01:00
Hannu Nyman b9623e4496 Merge pull request #7863 from cshoredaniel/pr-nut-fix-slow-interfaces
nut: Fix procd crashloop no interfaces
2019-01-08 15:08:06 +02:00
Hannu Nyman 4d51267162 Merge pull request #7896 from neheb/lf
lftp: Fix compilation without deprecated OpenSSL APIs
2019-01-08 15:07:28 +02:00
Hannu Nyman 0ff2fe284d Merge pull request #7892 from neheb/sstp
sstp-client: Fix compilation without deprecated OpenSSL APIs
2019-01-08 15:05:29 +02:00
Toke Høiland-Jørgensen 71c7d30e00 acme: Remove 8192 bits certificate option
This is not supported by letsencrypt, so issuing the certificate will fail.
Instead, add 3072 bits as an intermediate option.

Signed-off-by: Toke Høiland-Jørgensen <toke@redhat.com>
2019-01-08 13:08:15 +01:00
Toke Høiland-Jørgensen 5a1f294667 acme: Support selecting ECC certificates from Luci
As pointed out by @andersk, acme.sh already supports ECC certificates, and
they can be set manually in the uci file, just not in Luci. Fix this by
changing the key size selector into a listbox, and adding ECC certs as
options.

Fixes #7825.

Signed-off-by: Toke Høiland-Jørgensen <toke@redhat.com>
2019-01-08 11:29:37 +01:00
Saverio Proto 0551b498e4 Merge pull request #7887 from neheb/patch-8
tinc: Fix to actually build without deprecated APIs
2019-01-08 11:10:35 +01:00
Daniel F. Dickinson cb06f02504 nut: Prevent FSD when not specifically requested
Under certain circumstances nutshutdown was causing a forced
shutdown of the UPS even though killpower was not indicated.
Prevent that.  Also clarify the logic for powering off server
by avoiding && || chains.

Signed-off-by: Daniel F. Dickinson <cshored@thecshore.com>
2019-01-08 04:07:01 -05:00
Hannu Nyman fdbb6f1117 Merge pull request #7874 from Ansuel/softup
softethervpn: update to latest release and rework makefile
2019-01-07 19:48:00 +02:00
Daniel F. Dickinson c8cc504efe nut: Fix procd crashloop no interfaces
Fix a crashloop under procd when attempting to bind
to any address when no interfaces are yet available.

Signed-off-by: Daniel F. Dickinson <cshored@thecshore.com>
2019-01-07 02:03:31 -05:00
Rosen Penev 99c54c97e4 inadyn: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:15:55 -08:00
Rosen Penev 3195ca7f76 lftp: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:12:45 -08:00
Rosen Penev 2c33e9f0eb clamav: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:09:23 -08:00
Deng Qingfang 05ed633739 shadowsocks-client: remove
It hasn't been maintained for years and doesn't have recent features such as AEAD crypto and IPv6.
(The "recent" update is fix compilation without deprecated OpenSSL APIs, which is made by Rosen Penev)
It has been superseded by shadowsocks-libev, which is recently maintained by community and has LuCI frontend.
Despite its smaller size, it depends on OpenSSL, which is way larger than MbedTLS, the one shadowsocks-libev used. Thus, it doesn't really fit in space-constrained devices.

Signed-off-by: Deng Qingfang <dengqf6@mail2.sysu.edu.cn>
2019-01-07 13:07:22 +08:00
Rosen Penev 3718caa64d spoofer: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:06:30 -08:00
Rosen Penev 0e4b4f66a2 squid: Fix compilation without OpenSSL ENGINE support
OpenSSL 1.1 includes the header but support has to be checked in another
way.

Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:02:59 -08:00
Rosen Penev ba9d0a08f2 sstp-client: Fix compilation without deprecated OpenSSL APIs
Signed-off-by: Rosen Penev <rosenp@gmail.com>
2019-01-06 21:00:47 -08:00