7151 Commits

Author SHA1 Message Date
tb
5ad581bcde security/py-M2Crypto: drop a bunch of patches that are no longer
necessary. Most of these code paths re-implement functions we have
had in libcrypto for a long time. Do warn on use of tls1_method:
if anything triggers this warning, we want to fix it!
2021-10-07 22:32:54 +00:00
pvk
33c7139f72 Update vault 1.8.2 -> 1.8.4
Changelog: https://github.com/hashicorp/vault/blob/main/CHANGELOG.md#184
2021-10-07 17:40:23 +00:00
sthen
580e522307 update to cvechecker-4.0, from Josh Grosse
there are some new compiler warnings due to incorrect use of strlcpy
(passing strlen of source as the length), the code appears to not
be worse than the previous strn* just that the compiler knows how
to warn about it now so I'm committing it anyway, but yeuw
2021-10-07 10:05:59 +00:00
landry
855227d16e security/rnp: set GIT_EXECUTABLE to true so that cmake doesnt barf if git isnt found
should fix a build failure seen by sthen@
2021-10-07 07:08:40 +00:00
tb
263232e0a7 security/py-tlsfuzzer: update to 20210929 2021-10-06 07:32:46 +00:00
tb
cd2676e0fd security/openssl-ruby-tests: update to 20210927 2021-10-06 07:32:15 +00:00
cwen
d77e1f4f4e neofetch, ccrypt: drop maintainership 2021-10-05 15:46:43 +00:00
landry
94fef63528 +rnp 2021-10-05 13:17:35 +00:00
landry
f55f6b2436 import security/rnp 0.15.2.
librnp is a cross-platform C++ library providing an implementation of
OpenPGP (RFC4880). Unlike GPGME, it is standalone and doesn't call out
to the gnupg binary.
RNP is a set of tools built using this library providing key management
and the usual encrypt/decrypt/sign/verify functions - it can replace
gnupg for some uses.

this is what thunderbird uses for all pgp work, and someday it will
link/build against this systemwide version.

DESCR from & ok sthen@
2021-10-05 13:17:02 +00:00
tb
edf0e9666d security/botan2: Use ISRG Root X1 instead of DST Root CA X3. Fixes
regress failures after DST Root CA X3 was removed fom cert.pem.

noted and tested by anton
ok bluhm
2021-10-05 05:32:30 +00:00
landry
50a7d74ddb security/nss: update to 3.71.
nothing much happend in this release, cf https://hg.mozilla.org/projects/nss
2021-10-04 06:35:17 +00:00
robert
97f64c634e update to 1.02 2021-10-03 21:28:40 +00:00
sthen
a24feaf3b5 update to clamav-0.103.3 2021-10-03 19:06:29 +00:00
tb
2f80debafe security/gnupg: avoid use of *printf %n. joint work with deraadt, with
input from edd
2021-09-21 19:14:37 +00:00
sthen
79acfd4b29 update to libsrtp-2.4.2, fixing typo introduced in the 2.4.1 update which
causes problems with SRTP sessions using AES-GCM-256 (wrong key length used,
SRTP_AES_ICM_256_KEY_LEN_WSALT vs SRTP_AES_GCM_256_KEY_LEN_WSALT).

no other change in this release.
2021-09-21 08:44:55 +00:00
rsadowski
fdc2aacbf2 Update qca to 2.3.4 2021-09-18 07:52:34 +00:00
sebastia
469158937e update: 6.2.0 -> 6.2.4
new options
speed improvements
bug fixes
important notice: this is the last version supporting OpenSSL 1.1
2021-09-17 12:28:14 +00:00
claudio
d341819ea8 Hook up libretls.
OK sthen@
2021-09-16 08:58:31 +00:00
pvk
4aa8adbc1c Update opendnssec 2.1.9 -> 2.1.10
Announcement: https://www.opendnssec.org/2021/09/opendnssec-2-1-10/
2021-09-16 07:45:23 +00:00
sebastia
54568afb14 update to 20210910 2021-09-13 23:01:58 +00:00
claudio
1eb37824de Add libretls to the openssl libs. This allows to use OpenSSL 1.1 libs
with programs like rpki-client to test interop.
This port is for testing purposes only!
With help and OK sthen@
2021-09-13 09:51:31 +00:00
tb
ffeaf6c806 Update openssl-ruby-tests to 20210912 2021-09-12 18:36:59 +00:00
naddy
2c5b2f3e94 security/libssh2: avoid printf %n in example code
The old code is also broken, as it passes a pointer to a variable
of a different size (on LP64).  There is no check for truncation,
but buf[] is 1MB in size.

ok benoit@ sthen@
2021-09-11 14:54:06 +00:00
sthen
2f0e9664f0 update to py3-josepy-1.9.0 2021-09-10 08:23:51 +00:00
sthen
45e1e88c56 update to libsrtp-2.4.1 2021-09-10 08:22:34 +00:00
sthen
858ef5fb99 move security/py-PyNaCl devel/py-asn1 net/py-snmp to py3-only
ok benoit@ jasper@ kmos@
2021-09-09 19:35:38 +00:00
tb
5a073de71f openssl-ruby-tests: skip failing test when SKIP_CLIENT_CA_TEST is in the
environment.

ok beck bluhm
2021-09-09 14:57:22 +00:00
bluhm
ee93af7dd7 In OpenBSD we prefer arc4random(3) instead of /dev/urandom. The
former cannot fail, works in chroot and is resistant against file
descriptor exhaustion.  Override random source with a local patch.
OK wen heping
2021-09-09 11:53:11 +00:00
bluhm
3a48fd800d +p5-Crypt-Ed25519 2021-09-08 22:04:27 +00:00
bluhm
1eb9d023b8 import p5-Crypt-Ed25519 1.05
from wen heping; OK sthen@

Comment:
bare-bones Ed25519 public key signing/verification system

Description:
This module implements Ed25519 public key generation, message signing
and verification. It is a pretty bare-bones implementation that
implements the standard Ed25519 variant with SHA512 hash, as well as a
slower API compatible with the upcoming EdDSA RFC.
2021-09-08 22:01:30 +00:00
sthen
e4959dab81 move security/py-asn1crypto and textproc/py-iso8601 to py3-only, the py2
version of these was only used by py-cryptography which moved to py3-only.
2021-09-08 19:58:24 +00:00
sthen
926639171e now that py-paramiko is py3-only, we can update py-bcrypt to 3.2.0
which no longer supports py2.
2021-09-08 07:19:52 +00:00
tb
48b65d28b4 Update to OpenSSL 3.0.0, ok sthen
Includes a format string fix for 64 bit time_t.
2021-09-07 21:27:30 +00:00
tb
1c784f3b41 Update to tlsfuzzer 20210907 2021-09-07 21:26:02 +00:00
tb
32d608f037 openssl/sslscan: avoid printf %n, ok sthen
Note: OpenSSL still uses its own *printf() implementation, so this
would not result in a runtime failure.
2021-09-07 20:54:33 +00:00
sthen
5f42bd23dd build the rust parts of py-cryptography. many thanks to semarie@ for help
with this port and cargo.port.mk changes to accommodate this and tb@ for
sparc64 tests.
2021-09-06 20:56:50 +00:00
abieber
f651518a0d Update age to 1.0.0 \o/
Release notes here: https://github.com/FiloSottile/age/releases/tag/v1.0.0
2021-09-06 19:45:06 +00:00
robert
7122c59a85 unbreak previous patch 2021-09-06 11:00:06 +00:00
robert
288d3e7120 do not use %n in snprintf() 2021-09-06 10:59:24 +00:00
landry
6288da11fe security/nss: update to 3.70, will be required for gecko 93.
see https://hg.mozilla.org/projects/nss/file/tip/doc/rst/releases/nss_3_70.rst
2021-09-06 08:58:08 +00:00
pvk
859b577da4 Update vault 1.8.1 -> 1.8.2
Changelog: https://github.com/hashicorp/vault/blob/main/CHANGELOG.md#182
ok ajacoutot@
2021-09-04 10:29:07 +00:00
pvk
98d345c5a4 Update ssh-audit 2.4.0 -> 2.5.0
Changelog: https://github.com/jtesta/ssh-audit/releases/tag/v2.5.0
2021-09-03 23:10:48 +00:00
jeremy
b5da0994ab Switch default ruby version to 3.0
Add patches to a few ports to build with ruby 3.0, mostly -fdeclspec to
CFLAGS or CXXFLAGS.

Bump ports where the default version change causes a package change.

OK kmos@
2021-09-02 14:59:44 +00:00
ajacoutot
e43a44ebfc Missing BDEP on textproc/py-toml.
reported by naddy@ and exopi
2021-09-02 13:27:04 +00:00
sthen
18065a859b update to py3-gnupg-0.4.7 2021-09-02 13:07:56 +00:00
sthen
f15556b3de py3-only for py-scp py-nxos 2021-09-02 13:07:31 +00:00
sthen
4e67f44214 update to py-scp-0.13.6, add missing RDEP on paramiko, convert to py3 only 2021-09-02 13:06:03 +00:00
sebastia
4d54e5fd2c update to 2021-09-02 2021-09-02 10:48:48 +00:00
sebastia
c6ecc07ee8 drop MAINTAINER 2021-09-02 10:42:18 +00:00
sthen
a18eb8b192 update to py3-paramiko-2.7.2, ok aja@ benoit@ 2021-09-02 08:46:27 +00:00