Commit Graph

86 Commits

Author SHA1 Message Date
sturm
95b2d10495 restrict link() and symlink() 2004-11-21 11:38:04 +00:00
mbalmer
bce2473cd5 Added uid/gid _vilter for mail/smtp-vilter.
ok naddy@, alek@
2004-11-17 10:45:25 +00:00
sturm
78074d531a add _maradns 2004-11-14 11:59:31 +00:00
sturm
7a4d2974e7 sparc64.p -> localhost 2004-11-14 11:56:07 +00:00
alek
0caade6762 User and group _xcept are now created automagically.
looks good pvalchev@
2004-11-13 01:52:25 +00:00
pvalchev
0a88d9c9c2 amd64.ports is now SMP 2004-11-07 18:32:01 +00:00
espie
63f4447086 avoid more get*_r functions until we decide upon an API... 2004-10-21 20:47:38 +00:00
espie
4ddb942744 getservbyname_r doesn't work/ doesn't have a prototype/ will vanish soon
from libc.

Make sure we don't pick it up in the interim.
2004-10-13 17:23:38 +00:00
jolan
c20baa5bed +_nostromo 2004-10-13 06:29:22 +00:00
espie
dfe26ec92e prime autoconf scripts with useful stuff.
okay naddy@
2004-10-03 09:50:44 +00:00
jolan
df8ad03ef6 scanlogd is auto now 2004-09-28 01:57:51 +00:00
naddy
1db4c1063b Changes for symon 2.65 - 2.67:
- removed netiso depends
- _symon uid 535, 525 never made it into ports/infrastructure/db/user.list
- ntp clockadjusts no longer trigger extra measurements
- daemon parts ported to freebsd/netbsd/linux

From: Willem Dijkstra <wpd@xs4all.nl>
2004-09-21 16:44:04 +00:00
brad
e12fe83b57 mips stuff 2004-08-11 20:45:38 +00:00
pvalchev
aa821a5387 sparc cluster too 2004-08-10 20:57:03 +00:00
sturm
02a925a3c7 Distributed Package Build is a helper script to permit several hosts
working together in doing a bulk package build.

ok pvalchev@, espie@
2004-08-10 20:54:38 +00:00
espie
364cdb1dee Add perl documentation directories. 2004-08-04 16:26:42 +00:00
xsa
c9544845f2 + _zope for www/zope 2004-08-03 10:17:50 +00:00
brad
350f1c87d9 sync with CVS as of today, adds luna88k and removes pegasos. 2004-06-15 04:06:26 +00:00
sturm
67a6ca5fda honour TMPDIR and PKG_TMPDIR in systrace policies
prodded by jolan@
2004-05-31 12:27:07 +00:00
jakob
043b234ca3 _jabberd 2004-05-29 13:08:54 +00:00
dhartmei
1f479b8766 milter-spamd is a sendmail milter plugin that passes mails through
SpamAssassin's spamd, rejecting mails inline that are considered
spam. ok sturm@
2004-05-24 07:35:47 +00:00
grange
f7ae4fc70a _cnupm user for net/cnupm
ok pval@
2004-05-13 06:52:12 +00:00
sturm
5a70af0a5f according to Niels, execve needs "true then permit" in order for emulation
changes to work correctly. This allows fixes for emulation issues with
some linux-compat ports (jdk, netscape).
2004-05-01 14:23:27 +00:00
robert
ca9b819469 Add the _vscan user/group (used by mail/amavisd-new); ok jolan@ 2004-04-30 21:32:56 +00:00
sturm
1f4d6d2e3b permit closefrom() 2004-04-24 07:17:44 +00:00
marcm
52c519feda Ok, actually commit the changes to user.list this time. 2004-02-21 06:16:58 +00:00
jakob
765d22c660 add user for security/stunnel 2004-02-16 12:04:29 +00:00
brad
1884bf6660 sync with CVS as of today, now includes entries for AMD64 and CATS. 2004-02-16 10:01:12 +00:00
sturm
8cae9bc0af permit fswrite to empty filename, syscalls are supposed to fail on this 2004-01-31 11:40:39 +00:00
sturm
403f6f070b permit osigaltstack 2004-01-24 13:02:11 +00:00
sturm
449fce82f8 more 2004-01-18 11:12:24 +00:00
sturm
77310a5629 don't log permitted bind() and connect()
permit connect() to /dev/log
2004-01-15 22:41:37 +00:00
sturm
b326e8c555 permit msync() and setreuid() 2004-01-14 19:54:09 +00:00
dhartmei
ad9e816cd5 update to 0.9, drop privileges to user _milter-regex.
note: local socket changed to /var/spool/milter-regex/spool, adjust
sendmail.cf/.mc accordingly when updating:

-`S=unix:/var/spool/milter-regex, T=S:30s;R:2m'
+`S=unix:/var/spool/milter-regex/sock, T=S:30s;R:2m'
2004-01-07 14:57:34 +00:00
sturm
0afcb3ce68 use WRKDIR instead of WRKOBJDIR for systrace, as the latter is not defined
unconditionally

found by Michael Coulter <mjc at bitz dot ca>
2004-01-04 09:07:19 +00:00
jolan
4144c08861 no need for ${PORTSDIR}/{cdrom,ftp}-packages anymore
ok pval sturm
2004-01-04 08:01:10 +00:00
sturm
d15dcf1e2c +_tomcat 2003-12-15 22:33:57 +00:00
david
376e947e23 +_quagga 2003-12-11 19:05:38 +00:00
sturm
acfab03a8c +compat_43_ogetpagesize and compat_43_olseek to allow systrace'd build
of archivers/rar on i386
+setgroups
2003-11-27 20:01:49 +00:00
kevlo
03ccfcbace +_mail 2003-11-03 06:14:07 +00:00
brad
231f90d5d2 add pegasos 2003-10-31 06:13:22 +00:00
pvalchev
71a69fd1d6 add missing /var/games; ok espie nikolay 2003-10-16 15:38:50 +00:00
sturm
7d49a4123d - _mixmaster 2003-09-29 20:23:41 +00:00
pvalchev
577a7d34de delete; i386-only list superceded with data under infrastructure/plist/ 2003-09-23 01:32:12 +00:00
pvalchev
13fc8444b0 sync to my lists, this is probably going to close to what 3.4 will have 2003-09-06 05:11:11 +00:00
sturm
a9836ab377 +getpeername
ok naddy@
2003-08-24 20:38:25 +00:00
pvalchev
af2cc467d1 remove unzels with bad licenses that cannot go to the CD 2003-08-09 20:22:36 +00:00
pvalchev
6eb4275ce4 update 2003-08-09 17:48:21 +00:00
sturm
16ce58292a this makes our build infrastructure systrace aware
original idea from jsyn@, discussed and first tests at c2k3

Warning!
- this commit is different from all patches sent around, please remove
  them before updating
- due to a few bugs in systrace this is currently not ready for the casual
  porter and several ports will fail to build, you've been warned

The idea of this patch is to help a porter when developing a new port.
With systrace the configure, build and fake stages are not allowed to
open network connections or write outside some well defined directories.
This way misbehaving programs will be noticed due to logfile entries in
/var/log/messages and the port can be fixed. There is generally no need
for endusers to use this, as the checksum ensures that ports in the
future will behave the same as they did when porting. :)

To activate systrace'd port building, set USE_SYSTRACE=Yes (e.g. in
/etc/mk.conf)

tested by some people, ok espie@
2003-07-28 17:17:04 +00:00
jolan
03feeb8ee3 +_ffproxy 2003-07-25 04:59:54 +00:00