3802 Commits

Author SHA1 Message Date
benoit
cca18e5222 Update to p5-Net-SSL-ExpireDate-1.12.
Tweak and ok ajacoutot@
2014-11-13 16:45:16 +00:00
ajacoutot
33cfb368c7 SECURITY update to gnutls-3.2.20. 2014-11-13 09:33:09 +00:00
dcoppa
3b81d85af4 Bugfix update to pcsc-lite-1.8.13 2014-11-11 08:13:28 +00:00
benoit
e18ed16557 Update lynis to 1.6.4.
ok gonzalo@ (maintainer)
2014-11-06 22:07:42 +00:00
dcoppa
f1e155f02f Respect our CFLAGS and remove default optimizations 2014-11-05 09:40:05 +00:00
sthen
c8c02a984b update to polarssl 1.3.9, security fixes (but note that nothing in the ports
tree currently uses this library)

   * Lowest common hash was selected from signature_algorithms extension in
     TLS 1.2 (found by Darren Bane) (introduced in 1.3.8).
   * Remotely-triggerable memory leak when parsing some X.509 certificates
     (server is not affected if it doesn't ask for a client certificate)
     (found using Codenomicon Defensics).
   * Remotely-triggerable memory leak when parsing crafted ClientHello
     (not affected if ECC support was compiled out) (found using Codenomicon
     Defensics).
2014-11-04 19:45:41 +00:00
sthen
4c4be795fc update to yubikey-personalization-gui 3.1.17 2014-11-02 21:55:36 +00:00
zhuk
20345466ed Unify my email in MAINTAINER lines to make portroach happy.
Kindly reminded by jasper@ a week (or two?) ago, sorry for slacking.
2014-11-02 10:33:50 +00:00
sthen
e6d561d9cf update to gpgme 1.5.1 2014-11-01 09:34:40 +00:00
jasper
8209e9a2f6 unify
ok jim@
2014-10-28 08:23:06 +00:00
gonzalo
8c44bfa2a4 Update for Stunnel to 5.06:
Security bugfixes

    OpenSSL DLLs updated to version 1.0.1j.
https://www.openssl.org/news/secadv_20141015.txt
    The insecure SSLv2 protocol is now disabled by default. It can be
enabled with "options = -NO_SSLv2".
    The insecure SSLv3 protocol is now disabled by default. It can be
enabled with "options = -NO_SSLv3".
    Default sslVersion changed to "all" (also in FIPS mode) to
autonegotiate the highest supported TLS version.

New features

    Added missing SSL options to match OpenSSL 1.0.1j.
    New "-options" commandline option to display the list of supported
SSL options.

Bugfixes

    Fixed FORK threading build regression bug.


OK gsoares@ (maintainer) OK schwarze@
2014-10-27 13:16:48 +00:00
jasper
3de35519f6 unify; ok MAINTAINER 2014-10-25 12:08:49 +00:00
bluhm
f37d7b7d2b update p5-IO-Socket-SSL to 2.002 2014-10-24 19:31:39 +00:00
dcoppa
f37db76fa1 sc-hsm: Prevent double-free crash if key generation fails
(upstream git commit 5279bfa2d14d2186b31189748bcf89d908f00512)
2014-10-24 13:44:00 +00:00
nigel
2080ce03ba Update version to 0.72 fix for LibreSSL, deependencies for p5-libww 6.08.
Ok sthen@
2014-10-23 20:02:40 +00:00
pea
31deda19ac Unify address. Spotted by jasper@
ok jasper@, landry@
2014-10-22 14:10:46 +00:00
gonzalo
531b45b193 unify email/name 2014-10-22 13:55:52 +00:00
jasper
94d669b0a8 unify maintainer addresses
ok giovanni@
2014-10-22 13:39:38 +00:00
jasper
04de2aa0e9 unify maintainer addresses
ok MAINTAINER
2014-10-22 13:08:35 +00:00
jasper
c084e6a275 switch to working maintainer address 2014-10-22 09:44:07 +00:00
gonzalo
37fe27badc Update for Lynis to 1.6.3:
http://cisofy.com/changelog/lynis/1.6.3/

Ok benoit@
2014-10-21 13:58:29 +00:00
bluhm
fa7e761610 update p5-IO-Socket-SSL to 2.000, this disables SSLv3 2014-10-17 19:12:00 +00:00
jasper
02802176a2 switch to rspec3
ok jeremy@
2014-10-17 18:34:17 +00:00
jasper
df707ed99e disable rspec2 tests for these ports as rspec2 will be removed shortly.
ok jeremy@
2014-10-17 17:03:26 +00:00
sthen
cc490281be add xca patches from sf bugs; notably http://sourceforge.net/p/xca/patches/14/
which unbreaks it with openssl 1.0.1i's stricter OID checks
2014-10-17 15:10:23 +00:00
sthen
17cbfe801f change xca's default hash to SHA 256 2014-10-17 14:53:55 +00:00
ajacoutot
799cbec8e1 Update to libgpg-error-1.17. 2014-10-16 09:27:14 +00:00
rpe
d5ecd4958c Update to 1.15.1
OK aja@, benoit@ (MAINTAINER)
2014-10-15 17:15:37 +00:00
sthen
e45e6daad9 update to openssl-1.0.1j, build with no-ssl3 2014-10-15 15:01:11 +00:00
henning
29524ae757 +p5-Crypt-OpenSSL-PKCS10 2014-10-14 11:30:04 +00:00
henning
8bef400532 Perl extension to OpenSSL's PKCS10 API, ok ajacoutot sthen 2014-10-14 11:29:07 +00:00
ajacoutot
49324b1f31 Update to gnutls-3.2.19. 2014-10-14 07:38:54 +00:00
jturner
32a51493c6 Update spiped to 1.4.2 2014-10-14 01:23:12 +00:00
bluhm
3d225835c4 update p5-IO-Socket-SSL 1.999 2014-10-13 23:03:28 +00:00
sthen
472c97a96a unnecessary param.h 2014-10-13 19:21:16 +00:00
landry
c354040f1d Update to nss 3.17.2, will be required by gecko 35 anyway (see #1075686)..
See
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.17_release_notes
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.17.1_release_notes
https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.17.2_release_notes
For the changes (note that 3.16.2.1 had the same fixes as 3.17.1)
2014-10-13 09:39:34 +00:00
dcoppa
849996751d Use the patch from upstream
(git commit 2d4e9c2eb811978a4097b7d249eca3c7e9c510e5)
2014-10-13 07:32:11 +00:00
ajacoutot
c63af2e942 Update to p11-kit-0.22.1. 2014-10-12 06:16:19 +00:00
dcoppa
2dc398aa7e Update to wpa_supplicant-2.3
tested by myself (wired 802.1x) and pascal@ (eduroam)

ok pascal@
2014-10-11 17:55:49 +00:00
ajacoutot
5a17b870f2 Trailing whitespace. 2014-10-08 12:06:21 +00:00
henning
5be12b5f82 p5-Crypt-CAST5_PP p5-Crypt-IDEA p5-Crypt-OpenPGP p5-Crypt-RIPEMD160 2014-10-08 11:32:04 +00:00
henning
bfe01e014d Crypt::OpenPGP is a pure-Perl implementation of the OpenPGP
standard. help sthen & landry, ok landry
2014-10-08 11:30:56 +00:00
henning
405383a6cd The Crypt::RIPEMD160 module allows you to use the RIPEMD160 Message Digest
algorithm from within Perl programs. help sthen & landry, ok landry
2014-10-08 11:30:16 +00:00
henning
2e02514d2e This perl extension is an implementation of the IDEA block cipher algorithm.
help sthen & landry, ok landry
2014-10-08 11:29:16 +00:00
henning
b7e4e6b9dd This module provides a pure Perl implementation of the CAST5 block cipher.
help landry & sthen, ok landry
2014-10-08 11:28:02 +00:00
jeremy
3a80a15912 Remove default building of rubinius (rbx-*) ports
We no longer build ruby 1.8 and ruby 1.9 ports by default, so it doesn't
make sense to build rubinius ports by default.

While here, make sure ruby gem extension ports use explicit flavors in
the category Makefiles.  And unlink devel/ruby-fastthread, no longer
used.

OK ajacoutot@
2014-10-08 02:05:42 +00:00
benoit
18f81b3e28 Update cracklib to 2.9.2. 2014-10-06 08:19:26 +00:00
ajacoutot
720b4cce66 Sync with what was committed upstream. 2014-10-06 06:34:38 +00:00
rpointel
24065a6597 configuration files is harcoded, so use ${SYSCONFDIR}.
ok aja@ (thanks).
2014-10-05 07:55:11 +00:00
ajacoutot
22b1919272 Update to p11-kit-0.22.0. 2014-10-04 16:46:10 +00:00