2014-12-06 18:02:43 -05:00
|
|
|
|
;;; GNU Guix --- Functional package management for GNU
|
|
|
|
|
;;; Copyright © 2014 Ludovic Courtès <ludo@gnu.org>
|
2016-02-18 03:49:11 -05:00
|
|
|
|
;;; Copyright © 2016 Efraim Flashner <efraim@flashner.co.il>
|
2016-10-22 12:04:24 -04:00
|
|
|
|
;;; Copyright © 2016 Mike Gerwitz <mtg@gnu.org>
|
2016-10-24 11:00:31 -04:00
|
|
|
|
;;; Copyright © 2016 Marius Bakke <mbakke@fastmail.com>
|
2017-04-26 14:37:10 -04:00
|
|
|
|
;;; Copyright © 2017 Thomas Danckaert <post@thomasdanckaert.be>
|
2021-01-05 21:30:30 -05:00
|
|
|
|
;;; Copyright © 2017–2021 Tobias Geerinckx-Rice <me@tobias.gr>
|
2019-10-27 02:01:00 -04:00
|
|
|
|
;;; Copyright © 2017, 2019 Ricardo Wurmus <rekado@elephly.net>
|
2019-04-18 04:52:31 -04:00
|
|
|
|
;;; Copyright © 2018, 2019 Chris Marusich <cmmarusich@gmail.com>
|
2018-08-09 09:49:03 -04:00
|
|
|
|
;;; Copyright © 2018 Arun Isaac <arunisaac@systemreboot.net>
|
2020-11-06 14:16:43 -05:00
|
|
|
|
;;; Copyright © 2020 Raphaël Mélotte <raphael.melotte@mind.be>
|
2014-12-06 18:02:43 -05:00
|
|
|
|
;;;
|
|
|
|
|
;;; This file is part of GNU Guix.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is free software; you can redistribute it and/or modify it
|
|
|
|
|
;;; under the terms of the GNU General Public License as published by
|
|
|
|
|
;;; the Free Software Foundation; either version 3 of the License, or (at
|
|
|
|
|
;;; your option) any later version.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is distributed in the hope that it will be useful, but
|
|
|
|
|
;;; WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
|
;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
|
;;; GNU General Public License for more details.
|
|
|
|
|
;;;
|
|
|
|
|
;;; You should have received a copy of the GNU General Public License
|
|
|
|
|
;;; along with GNU Guix. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
|
|
2016-10-26 02:33:24 -04:00
|
|
|
|
(define-module (gnu packages security-token)
|
2014-12-06 18:02:43 -05:00
|
|
|
|
#:use-module (gnu packages)
|
2016-10-26 06:00:58 -04:00
|
|
|
|
#:use-module ((guix licenses) #:prefix license:)
|
2014-12-06 18:02:43 -05:00
|
|
|
|
#:use-module (guix packages)
|
|
|
|
|
#:use-module (guix download)
|
2019-04-18 05:50:33 -04:00
|
|
|
|
#:use-module (guix gexp)
|
2018-06-22 15:08:52 -04:00
|
|
|
|
#:use-module (guix git-download)
|
2014-12-06 18:02:43 -05:00
|
|
|
|
#:use-module (guix build-system gnu)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (guix build-system glib-or-gtk)
|
2019-04-18 04:52:31 -04:00
|
|
|
|
#:use-module (guix build-system python)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages autotools)
|
2019-10-27 02:01:00 -04:00
|
|
|
|
#:use-module (gnu packages base)
|
2016-10-22 12:04:24 -04:00
|
|
|
|
#:use-module (gnu packages curl)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
#:use-module (gnu packages check)
|
2018-04-28 03:49:35 -04:00
|
|
|
|
#:use-module (gnu packages docbook)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
#:use-module (gnu packages documentation)
|
2019-04-18 05:50:33 -04:00
|
|
|
|
#:use-module (gnu packages dns)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages gettext)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
#:use-module (gnu packages graphviz)
|
2020-11-06 14:16:43 -05:00
|
|
|
|
#:use-module (gnu packages gnupg)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages gtk)
|
2016-10-24 11:00:31 -04:00
|
|
|
|
#:use-module (gnu packages libusb)
|
2016-10-22 12:04:24 -04:00
|
|
|
|
#:use-module (gnu packages linux)
|
2014-12-06 18:02:43 -05:00
|
|
|
|
#:use-module (gnu packages man)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages networking)
|
|
|
|
|
#:use-module (gnu packages cyrus-sasl)
|
2018-08-15 08:52:58 -04:00
|
|
|
|
#:use-module (gnu packages popt)
|
2018-04-28 03:49:35 -04:00
|
|
|
|
#:use-module (gnu packages readline)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages tls)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
#:use-module (gnu packages tex)
|
2016-10-22 12:04:24 -04:00
|
|
|
|
#:use-module (gnu packages perl)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages pkg-config)
|
2019-04-18 04:52:31 -04:00
|
|
|
|
#:use-module (gnu packages python)
|
2019-04-18 05:50:33 -04:00
|
|
|
|
#:use-module (gnu packages python-crypto)
|
|
|
|
|
#:use-module (gnu packages python-xyz)
|
2019-04-18 04:52:31 -04:00
|
|
|
|
#:use-module (gnu packages swig)
|
2018-12-09 19:34:03 -05:00
|
|
|
|
#:use-module (gnu packages web)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
#:use-module (gnu packages xml))
|
2014-12-06 18:02:43 -05:00
|
|
|
|
|
2016-10-24 11:00:31 -04:00
|
|
|
|
(define-public ccid
|
|
|
|
|
(package
|
|
|
|
|
(name "ccid")
|
2021-02-07 17:26:46 -05:00
|
|
|
|
(version "1.4.34")
|
2016-10-24 11:00:31 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
2020-07-23 19:00:48 -04:00
|
|
|
|
(uri (string-append "https://ccid.apdu.fr/files/ccid-"
|
|
|
|
|
version ".tar.bz2"))
|
2016-10-24 11:00:31 -04:00
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2021-02-07 17:26:46 -05:00
|
|
|
|
"02mlbpnsvy6jgwpz0jk5lh27y3cn2bsyz9xini7898m9b5dn9xz6"))))
|
2016-10-24 11:00:31 -04:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:configure-flags (list (string-append "--enable-usbdropdir=" %output
|
|
|
|
|
"/pcsc/drivers"))
|
|
|
|
|
#:phases
|
|
|
|
|
(modify-phases %standard-phases
|
|
|
|
|
(add-after 'unpack 'patch-Makefile
|
|
|
|
|
(lambda _
|
|
|
|
|
(substitute* "src/Makefile.in"
|
|
|
|
|
(("/bin/echo") (which "echo")))
|
|
|
|
|
#t)))))
|
|
|
|
|
(native-inputs
|
2021-01-01 04:53:21 -05:00
|
|
|
|
`(("perl" ,perl)
|
2016-10-24 11:00:31 -04:00
|
|
|
|
("pkg-config" ,pkg-config)))
|
|
|
|
|
(inputs
|
2021-01-01 04:53:21 -05:00
|
|
|
|
`(("libusb" ,libusb)
|
|
|
|
|
("pcsc-lite" ,pcsc-lite)))
|
2018-06-04 12:19:43 -04:00
|
|
|
|
(home-page "https://ccid.apdu.fr/")
|
2016-10-24 11:00:31 -04:00
|
|
|
|
(synopsis "PC/SC driver for USB smart card devices")
|
|
|
|
|
(description
|
|
|
|
|
"This package provides a PC/SC IFD handler implementation for devices
|
|
|
|
|
compliant with the CCID and ICCD protocols. It supports a wide range of
|
|
|
|
|
readers and is needed to communicate with such devices through the
|
|
|
|
|
@command{pcscd} resource manager.")
|
|
|
|
|
(license license:lgpl2.1+)))
|
|
|
|
|
|
2017-04-26 14:37:10 -04:00
|
|
|
|
(define-public eid-mw
|
|
|
|
|
(package
|
|
|
|
|
(name "eid-mw")
|
2021-03-12 18:49:09 -05:00
|
|
|
|
(version "5.0.14")
|
2018-06-22 15:08:52 -04:00
|
|
|
|
(source
|
|
|
|
|
(origin
|
|
|
|
|
(method git-fetch)
|
|
|
|
|
(uri (git-reference
|
|
|
|
|
(url "https://github.com/Fedict/eid-mw")
|
|
|
|
|
(commit (string-append "v" version))))
|
2019-04-30 10:34:34 -04:00
|
|
|
|
(file-name (git-file-name name version))
|
2018-06-22 15:08:52 -04:00
|
|
|
|
(sha256
|
2021-03-12 18:49:09 -05:00
|
|
|
|
(base32 "1hyxsbxjjn9hh5p7jlcfb5yplf3n8dg49dfgi8fjp95phis3gbd4"))))
|
2017-04-26 14:37:10 -04:00
|
|
|
|
(build-system glib-or-gtk-build-system)
|
2017-11-16 18:26:42 -05:00
|
|
|
|
(native-inputs
|
2017-04-26 14:37:10 -04:00
|
|
|
|
`(("autoconf" ,autoconf)
|
2020-11-06 14:16:43 -05:00
|
|
|
|
("autoconf-archive" ,autoconf-archive)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
("automake" ,automake)
|
2020-04-04 09:48:44 -04:00
|
|
|
|
("gettext" ,gettext-minimal)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
("libtool" ,libtool)
|
2020-11-06 14:16:43 -05:00
|
|
|
|
("libassuan" ,libassuan)
|
2017-04-26 14:37:10 -04:00
|
|
|
|
("pkg-config" ,pkg-config)
|
|
|
|
|
("perl" ,perl)))
|
|
|
|
|
(inputs
|
|
|
|
|
`(("curl" ,curl)
|
|
|
|
|
("openssl" ,openssl)
|
|
|
|
|
("gtk+" ,gtk+)
|
|
|
|
|
("pcsc-lite" ,pcsc-lite)
|
|
|
|
|
("p11-kit" ,p11-kit)
|
|
|
|
|
("libproxy" ,libproxy)
|
|
|
|
|
("libxml2" ,libxml2)
|
|
|
|
|
("cyrus-sasl" ,cyrus-sasl)))
|
|
|
|
|
(arguments
|
2021-01-05 21:34:54 -05:00
|
|
|
|
`(#:configure-flags
|
|
|
|
|
(list "--disable-static")
|
|
|
|
|
#:phases
|
2017-04-26 14:37:10 -04:00
|
|
|
|
(modify-phases %standard-phases
|
2020-11-11 11:46:18 -05:00
|
|
|
|
(replace 'bootstrap
|
2018-06-22 15:06:15 -04:00
|
|
|
|
(lambda _
|
|
|
|
|
;; configure.ac relies on ‘git --describe’ to get the version.
|
|
|
|
|
;; Patch it to just return the real version number directly.
|
|
|
|
|
(substitute* "scripts/build-aux/genver.sh"
|
|
|
|
|
(("/bin/sh") (which "sh"))
|
2020-05-27 20:24:14 -04:00
|
|
|
|
(("^(GITDESC=).*" _ match) (string-append match ,version "\n")))
|
2020-11-06 14:16:20 -05:00
|
|
|
|
(invoke "sh" "./bootstrap.sh")))
|
|
|
|
|
(add-after 'unpack 'make-reproducible
|
|
|
|
|
(lambda _
|
|
|
|
|
(substitute* "scripts/mac/create-vers.sh"
|
|
|
|
|
(("NOW=.*")
|
|
|
|
|
"NOW=1970-01-01\n"))
|
2020-11-06 14:16:43 -05:00
|
|
|
|
#t))
|
|
|
|
|
;; Remove failing test that was removed upstream after version 5.0.8.
|
|
|
|
|
;; See: https://github.com/Fedict/eid-mw/commit/3d1187b1b61118b9ae97607903d3d2fc0bad7518
|
|
|
|
|
(add-before 'check 'remove-failing-test
|
|
|
|
|
(lambda _
|
|
|
|
|
(substitute* "tests/unit/Makefile.am"
|
|
|
|
|
(("sign_state ordering cardcom_common")
|
|
|
|
|
"sign_state ordering #cardcom_common"))
|
|
|
|
|
#t))
|
|
|
|
|
)))
|
2017-04-26 14:37:10 -04:00
|
|
|
|
(synopsis "Belgian eID Middleware")
|
|
|
|
|
(description "The Belgian eID Middleware is required to authenticate with
|
|
|
|
|
online services using the Belgian electronic identity card.")
|
|
|
|
|
(home-page "https://github.com/Fedict/eid-mw")
|
|
|
|
|
(license license:lgpl3)))
|
|
|
|
|
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(define-public libyubikey
|
|
|
|
|
(package
|
|
|
|
|
(name "libyubikey")
|
2016-02-18 03:49:11 -05:00
|
|
|
|
(version "1.13")
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://developers.yubico.com/yubico-c/Releases/"
|
|
|
|
|
name "-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2016-02-18 03:49:11 -05:00
|
|
|
|
"009l3k2zyn06dbrlja2d4p2vfnzjhlcqxi88v02mlrnb17mx1v84"))))
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(synopsis "Development kit for the YubiKey authentication device")
|
|
|
|
|
(description
|
|
|
|
|
"This package contains a C library and command-line tools that make up
|
|
|
|
|
the low-level development kit for the Yubico YubiKey authentication device.")
|
|
|
|
|
(home-page "https://developers.yubico.com/yubico-c/")
|
2016-10-26 06:00:58 -04:00
|
|
|
|
(license license:bsd-2)))
|
2014-12-06 18:02:43 -05:00
|
|
|
|
|
2020-04-14 15:29:27 -04:00
|
|
|
|
(define-public softhsm
|
|
|
|
|
(package
|
|
|
|
|
(name "softhsm")
|
|
|
|
|
(version "2.6.1")
|
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://dist.opendnssec.org/source/"
|
|
|
|
|
"softhsm-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
|
|
|
|
"1wkmyi6n3z2pak1cj5yk6v6bv9w0m24skycya48iikab0mrr8931"))))
|
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
'(#:configure-flags '("--disable-gost"))) ; TODO Missing the OpenSSL
|
|
|
|
|
; engine for GOST
|
|
|
|
|
(inputs
|
|
|
|
|
`(("openssl" ,openssl)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("pkg-config" ,pkg-config)
|
|
|
|
|
("cppunit" ,cppunit)))
|
|
|
|
|
(synopsis "Software implementation of a generic cryptographic device")
|
|
|
|
|
(description
|
|
|
|
|
"SoftHSM 2 is a software implementation of a generic cryptographic device
|
|
|
|
|
with a PKCS #11 Cryptographic Token Interface.")
|
|
|
|
|
(home-page "https://www.opendnssec.org/softhsm/")
|
|
|
|
|
(license license:bsd-2)))
|
|
|
|
|
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(define-public pcsc-lite
|
|
|
|
|
(package
|
|
|
|
|
(name "pcsc-lite")
|
2020-07-23 19:01:20 -04:00
|
|
|
|
(version "1.9.0")
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
2020-01-09 22:28:07 -05:00
|
|
|
|
(uri (string-append "https://pcsclite.apdu.fr/files/"
|
|
|
|
|
"pcsc-lite-" version ".tar.bz2"))
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2020-07-23 19:01:20 -04:00
|
|
|
|
"1y9f9zipnrmgiw0mxrvcgky8vfrcmg6zh40gbln5a93i2c1x8j01"))))
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
2017-12-18 19:20:44 -05:00
|
|
|
|
`(#:configure-flags '("--enable-usbdropdir=/var/lib/pcsc/drivers"
|
|
|
|
|
"--disable-libsystemd")))
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(native-inputs
|
|
|
|
|
`(("perl" ,perl) ; for pod2man
|
|
|
|
|
("pkg-config" ,pkg-config)))
|
|
|
|
|
(inputs
|
|
|
|
|
`(("libudev" ,eudev)))
|
2018-06-04 12:19:43 -04:00
|
|
|
|
(home-page "https://pcsclite.apdu.fr/")
|
2016-10-22 12:04:24 -04:00
|
|
|
|
(synopsis "Middleware to access a smart card using PC/SC")
|
|
|
|
|
(description
|
|
|
|
|
"pcsc-lite provides an interface to communicate with smartcards and
|
|
|
|
|
readers using the SCard API. pcsc-lite is used to connect to the PC/SC daemon
|
|
|
|
|
from a client application and provide access to the desired reader.")
|
|
|
|
|
(license (list license:bsd-3 ; pcsc-lite
|
|
|
|
|
license:isc ; src/strlcat.c src/strlcpy.c
|
|
|
|
|
license:gpl3+)))) ; src/spy/*
|
|
|
|
|
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(define-public ykclient
|
|
|
|
|
(package
|
|
|
|
|
(name "ykclient")
|
2016-02-18 03:50:46 -05:00
|
|
|
|
(version "2.15")
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://developers.yubico.com/yubico-c-client/Releases/"
|
|
|
|
|
name "-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2016-02-18 03:50:46 -05:00
|
|
|
|
"05jhx9waj3pl120ddnwap1v3bjrnbfhvf3lxs2xmhpcmwzpwsqgl"))))
|
2014-12-06 18:02:43 -05:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
|
|
|
|
|
;; There's just one test, and it requires network access to access
|
|
|
|
|
;; yubico.com, so skip it.
|
|
|
|
|
(arguments '(#:tests? #f))
|
|
|
|
|
|
|
|
|
|
(native-inputs `(("pkg-config" ,pkg-config)
|
|
|
|
|
("help2man" ,help2man)))
|
|
|
|
|
(inputs `(("curl" ,curl)))
|
|
|
|
|
(synopsis "C library to validate one-time-password YubiKeys")
|
|
|
|
|
(description
|
|
|
|
|
"YubiKey C Client Library (libykclient) is a C library used to validate a
|
|
|
|
|
one-time-password (OTP) YubiKey against Yubico’s servers. See the Yubico
|
|
|
|
|
website for more information about Yubico and the YubiKey.")
|
|
|
|
|
(home-page "https://developers.yubico.com/yubico-c-client/")
|
2016-10-26 06:00:58 -04:00
|
|
|
|
(license license:bsd-2)))
|
2018-04-28 03:49:35 -04:00
|
|
|
|
|
|
|
|
|
(define-public opensc
|
|
|
|
|
(package
|
|
|
|
|
(name "opensc")
|
2020-11-25 18:59:39 -05:00
|
|
|
|
(version "0.21.0")
|
2018-04-28 03:49:35 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://github.com/OpenSC/OpenSC/releases/download/"
|
|
|
|
|
version "/opensc-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2020-11-25 18:59:39 -05:00
|
|
|
|
"0pijycjwpll9zn83dazgsh8n9ywq0z1ragjsd1sqv3abrcfvpyrb"))))
|
2018-04-28 03:49:35 -04:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:phases
|
|
|
|
|
(modify-phases %standard-phases
|
|
|
|
|
;; By setting an absolute path here, we arrange for OpenSC to
|
|
|
|
|
;; successfully dlopen libpcsclite.so.1 by default. The user can
|
|
|
|
|
;; still override this if they want to, by specifying a custom OpenSC
|
|
|
|
|
;; configuration file at runtime.
|
|
|
|
|
(add-after 'unpack 'set-default-libpcsclite.so.1-path
|
|
|
|
|
(lambda* (#:key inputs #:allow-other-keys)
|
|
|
|
|
(let ((libpcsclite (string-append (assoc-ref inputs "pcsc-lite")
|
|
|
|
|
"/lib/libpcsclite.so.1")))
|
|
|
|
|
(substitute* "configure"
|
|
|
|
|
(("DEFAULT_PCSC_PROVIDER=\"libpcsclite\\.so\\.1\"")
|
|
|
|
|
(string-append
|
|
|
|
|
"DEFAULT_PCSC_PROVIDER=\"" libpcsclite "\"")))
|
2020-01-10 07:26:06 -05:00
|
|
|
|
#t))))))
|
2018-04-28 03:49:35 -04:00
|
|
|
|
(inputs
|
|
|
|
|
`(("readline" ,readline)
|
|
|
|
|
("openssl" ,openssl)
|
|
|
|
|
("pcsc-lite" ,pcsc-lite)
|
|
|
|
|
("ccid" ,ccid)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("libxslt" ,libxslt)
|
|
|
|
|
("docbook-xsl" ,docbook-xsl)
|
|
|
|
|
("pkg-config" ,pkg-config)))
|
|
|
|
|
(home-page "https://github.com/OpenSC/OpenSC/wiki")
|
|
|
|
|
(synopsis "Tools and libraries related to smart cards")
|
|
|
|
|
(description
|
|
|
|
|
"OpenSC is a set of software tools and libraries to work with smart
|
|
|
|
|
cards, with the focus on smart cards with cryptographic capabilities. OpenSC
|
|
|
|
|
facilitate the use of smart cards in security applications such as
|
|
|
|
|
authentication, encryption and digital signatures. OpenSC implements the PKCS
|
|
|
|
|
#15 standard and the PKCS #11 API.")
|
|
|
|
|
(license license:lgpl2.1+)))
|
2018-04-28 06:44:09 -04:00
|
|
|
|
|
|
|
|
|
(define-public yubico-piv-tool
|
|
|
|
|
(package
|
|
|
|
|
(name "yubico-piv-tool")
|
2018-08-22 21:05:35 -04:00
|
|
|
|
(version "1.6.1")
|
2018-04-28 06:44:09 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://developers.yubico.com/yubico-piv-tool/Releases/"
|
|
|
|
|
name "-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2018-08-22 21:05:35 -04:00
|
|
|
|
"10xgdc51xvszkxmsvqnbjs8ixxz7rfnfahh3wn8glllynmszbhwi"))))
|
2018-04-28 06:44:09 -04:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(inputs
|
2018-08-15 08:52:58 -04:00
|
|
|
|
`(("gengetopt" ,gengetopt)
|
|
|
|
|
("perl" ,perl)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
("pcsc-lite" ,pcsc-lite)
|
|
|
|
|
("openssl" ,openssl)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("doxygen" ,doxygen)
|
|
|
|
|
("graphviz" ,graphviz)
|
2018-08-15 08:52:58 -04:00
|
|
|
|
("help2man" ,help2man)
|
2018-04-28 06:44:09 -04:00
|
|
|
|
("check" ,check)
|
|
|
|
|
("texlive-bin" ,texlive-bin)
|
|
|
|
|
("pkg-config" ,pkg-config)))
|
|
|
|
|
(home-page "https://developers.yubico.com/yubico-piv-tool/")
|
|
|
|
|
(synopsis "Interact with the PIV application on a YubiKey")
|
|
|
|
|
(description
|
|
|
|
|
"The Yubico PIV tool is used for interacting with the Privilege and
|
|
|
|
|
Identification Card (PIV) application on a YubiKey. With it you may generate
|
|
|
|
|
keys on the device, import keys and certificates, create certificate requests,
|
|
|
|
|
and other operations. It includes a library and a command-line tool.")
|
|
|
|
|
;; The file ykcs11/pkcs11.h also declares an additional, very short free
|
|
|
|
|
;; license for that one file. Please see it for details. The vast
|
|
|
|
|
;; majority of files are licensed under bsd-2.
|
|
|
|
|
(license license:bsd-2)))
|
2018-12-09 19:34:03 -05:00
|
|
|
|
|
|
|
|
|
(define-public yubikey-personalization
|
|
|
|
|
(package
|
|
|
|
|
(name "yubikey-personalization")
|
2021-05-17 14:47:34 -04:00
|
|
|
|
(version "1.20.0")
|
2018-12-09 19:34:03 -05:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://developers.yubico.com/" name
|
|
|
|
|
"/Releases/ykpers-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2021-05-17 14:48:00 -04:00
|
|
|
|
"14wvlwqnwj0gllkpvfqiy8ns938bwvjsz8x1hmymmx32m074vj0f"))
|
|
|
|
|
(modules '((guix build utils)))
|
|
|
|
|
(snippet
|
|
|
|
|
;; Fix build with GCC 10, remove for versions > 1.20.0.
|
|
|
|
|
'(begin
|
|
|
|
|
(substitute* "ykpers-args.h"
|
|
|
|
|
(("^const char")
|
|
|
|
|
"extern const char"))))))
|
2018-12-09 19:34:03 -05:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
'(#:configure-flags (list (string-append "--with-udevrulesdir="
|
|
|
|
|
(assoc-ref %outputs "out")
|
|
|
|
|
"/lib/udev/rules.d"))))
|
|
|
|
|
(inputs
|
2020-05-14 16:54:27 -04:00
|
|
|
|
`(("json-c" ,json-c-0.13)
|
2018-12-09 19:34:03 -05:00
|
|
|
|
("libusb" ,libusb)
|
|
|
|
|
;; The library "libyubikey" is also known as "yubico-c".
|
|
|
|
|
("libyubikey" ,libyubikey)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("pkg-config" ,pkg-config)
|
|
|
|
|
("eudev" ,eudev)))
|
|
|
|
|
(home-page "https://developers.yubico.com/yubikey-personalization/")
|
|
|
|
|
(synopsis "Library and tools to personalize YubiKeys")
|
|
|
|
|
(description
|
|
|
|
|
"The YubiKey Personalization package contains a C library and command
|
|
|
|
|
line tools for personalizing YubiKeys. You can use these to set an AES key,
|
|
|
|
|
retrieve a YubiKey's serial number, and so forth.")
|
|
|
|
|
(license license:bsd-2)))
|
2019-04-18 04:52:31 -04:00
|
|
|
|
|
|
|
|
|
(define-public python-pyscard
|
|
|
|
|
(package
|
|
|
|
|
(name "python-pyscard")
|
2019-08-23 19:07:04 -04:00
|
|
|
|
(version "1.9.9")
|
2019-04-18 04:52:31 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
;; The maintainer publishes releases on various sites, but
|
|
|
|
|
;; SourceForge is apparently the only one with a signed release.
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"mirror://sourceforge/pyscard/pyscard/pyscard%20"
|
|
|
|
|
version "/pyscard-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2019-08-23 19:07:04 -04:00
|
|
|
|
"082cjkbxadaz2jb4rbhr0mkrirzlqyqhcf3r823qb0q1k50ybgg6"))))
|
2019-04-18 04:52:31 -04:00
|
|
|
|
(build-system python-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:phases
|
|
|
|
|
(modify-phases %standard-phases
|
|
|
|
|
;; Tell pyscard where to find the PCSC include directory.
|
|
|
|
|
(add-after 'unpack 'patch-platform-include-dirs
|
|
|
|
|
(lambda* (#:key inputs #:allow-other-keys)
|
|
|
|
|
(let ((pcsc-include-dir (string-append
|
|
|
|
|
(assoc-ref inputs "pcsc-lite")
|
|
|
|
|
"/include/PCSC")))
|
|
|
|
|
(substitute* "setup.py"
|
|
|
|
|
(("platform_include_dirs = \\[.*?\\]")
|
|
|
|
|
(string-append
|
|
|
|
|
"platform_include_dirs = ['" pcsc-include-dir "']")))
|
|
|
|
|
#t)))
|
|
|
|
|
;; pyscard wants to dlopen libpcsclite, so tell it where it is.
|
|
|
|
|
(add-after 'unpack 'patch-dlopen
|
|
|
|
|
(lambda* (#:key inputs #:allow-other-keys)
|
|
|
|
|
(substitute* "smartcard/scard/winscarddll.c"
|
|
|
|
|
(("lib = \"libpcsclite\\.so\\.1\";")
|
|
|
|
|
(simple-format #f
|
|
|
|
|
"lib = \"~a\";"
|
|
|
|
|
(string-append (assoc-ref inputs "pcsc-lite")
|
|
|
|
|
"/lib/libpcsclite.so.1"))))
|
|
|
|
|
#t)))))
|
|
|
|
|
(inputs
|
|
|
|
|
`(("pcsc-lite" ,pcsc-lite)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("swig" ,swig)))
|
|
|
|
|
(home-page "https://github.com/LudovicRousseau/pyscard")
|
|
|
|
|
(synopsis "Smart card library for Python")
|
|
|
|
|
(description
|
|
|
|
|
"The pyscard smart card library is a framework for building smart card
|
|
|
|
|
aware applications in Python. The smart card module is built on top of the
|
|
|
|
|
PCSC API Python wrapper module.")
|
|
|
|
|
(license license:lgpl2.1+)))
|
|
|
|
|
|
|
|
|
|
(define-public python2-pyscard
|
|
|
|
|
(package-with-python2 python-pyscard))
|
2019-04-18 05:32:37 -04:00
|
|
|
|
|
|
|
|
|
(define-public libu2f-host
|
|
|
|
|
(package
|
|
|
|
|
(name "libu2f-host")
|
2019-05-19 22:08:46 -04:00
|
|
|
|
(version "1.1.10")
|
2019-04-18 05:32:37 -04:00
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri
|
|
|
|
|
(string-append
|
|
|
|
|
"https://developers.yubico.com"
|
|
|
|
|
"/libu2f-host/Releases/libu2f-host-" version ".tar.xz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
2019-05-19 22:08:46 -04:00
|
|
|
|
"0vrivl1dwql6nfi48z6dy56fwy2z13d7abgahgrs2mcmqng7hra2"))))
|
2019-04-18 05:32:37 -04:00
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:configure-flags
|
|
|
|
|
(list "--enable-gtk-doc"
|
|
|
|
|
(string-append "--with-udevrulesdir="
|
|
|
|
|
(assoc-ref %outputs "out")
|
|
|
|
|
"/lib/udev/rules.d"))
|
|
|
|
|
#:phases
|
|
|
|
|
(modify-phases %standard-phases
|
|
|
|
|
(add-after 'unpack 'patch-docbook-xml
|
|
|
|
|
(lambda* (#:key inputs #:allow-other-keys)
|
|
|
|
|
;; Avoid a network connection attempt during the build.
|
|
|
|
|
(substitute* "gtk-doc/u2f-host-docs.xml"
|
|
|
|
|
(("http://www.oasis-open.org/docbook/xml/4.3/docbookx.dtd")
|
|
|
|
|
(string-append (assoc-ref inputs "docbook-xml")
|
|
|
|
|
"/xml/dtd/docbook/docbookx.dtd")))
|
|
|
|
|
#t)))))
|
|
|
|
|
(inputs
|
2020-05-14 16:54:27 -04:00
|
|
|
|
`(("json-c" ,json-c-0.13)
|
2019-04-18 05:32:37 -04:00
|
|
|
|
("hidapi" ,hidapi)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("help2man" ,help2man)
|
|
|
|
|
("gengetopt" ,gengetopt)
|
|
|
|
|
("pkg-config" ,pkg-config)
|
|
|
|
|
("gtk-doc" ,gtk-doc)
|
|
|
|
|
("docbook-xml" ,docbook-xml-4.3)
|
|
|
|
|
("eudev" ,eudev)))
|
|
|
|
|
(home-page "https://developers.yubico.com/libu2f-host/")
|
|
|
|
|
;; TRANSLATORS: The U2F protocol has a "server side" and a "host side".
|
|
|
|
|
(synopsis "U2F host-side C library and tool")
|
|
|
|
|
(description
|
|
|
|
|
"Libu2f-host provides a C library and command-line tool that implements
|
|
|
|
|
the host-side of the Universal 2nd Factor (U2F) protocol. There are APIs to
|
|
|
|
|
talk to a U2F device and perform the U2F Register and U2F Authenticate
|
|
|
|
|
operations.")
|
|
|
|
|
;; Most files are LGPLv2.1+, but some files are GPLv3+.
|
|
|
|
|
(license (list license:lgpl2.1+ license:gpl3+))))
|
2019-04-18 05:50:33 -04:00
|
|
|
|
|
2019-10-27 02:01:00 -04:00
|
|
|
|
(define-public libu2f-server
|
|
|
|
|
(package
|
|
|
|
|
(name "libu2f-server")
|
|
|
|
|
(version "1.1.0")
|
|
|
|
|
(source (origin
|
|
|
|
|
(method git-fetch)
|
|
|
|
|
(uri
|
|
|
|
|
(git-reference
|
gnu: Remove ".git" from "https://github/…/….git".
Until now, 'lookup-origin' and thus 'lookup-origin-revision' in (guix
swh) would sometimes return #f for these because the ".git" URLs are
redirects to the non-".git" URLs. Consequently, 'guix lint -c archival'
would keep saying "scheduled Software Heritage archival"; likewise, the
fallback download code would fail.
* gnu/packages/ada.scm,
gnu/packages/admin.scm,
gnu/packages/aidc.scm,
gnu/packages/algebra.scm,
gnu/packages/android.scm,
gnu/packages/animation.scm,
gnu/packages/arcan.scm,
gnu/packages/assembly.scm,
gnu/packages/audio.scm,
gnu/packages/authentication.scm,
gnu/packages/avr.scm,
gnu/packages/axoloti.scm,
gnu/packages/backup.scm,
gnu/packages/bash.scm,
gnu/packages/benchmark.scm,
gnu/packages/bioconductor.scm,
gnu/packages/bioinformatics.scm,
gnu/packages/bittorrent.scm,
gnu/packages/boost.scm,
gnu/packages/build-tools.scm,
gnu/packages/c.scm,
gnu/packages/calendar.scm,
gnu/packages/cdrom.scm,
gnu/packages/check.scm,
gnu/packages/chemistry.scm,
gnu/packages/chez.scm,
gnu/packages/clojure.scm,
gnu/packages/code.scm,
gnu/packages/compression.scm,
gnu/packages/compton.scm,
gnu/packages/coq.scm,
gnu/packages/cpp.scm,
gnu/packages/cran.scm,
gnu/packages/crypto.scm,
gnu/packages/curl.scm,
gnu/packages/databases.scm,
gnu/packages/datastructures.scm,
gnu/packages/debug.scm,
gnu/packages/disk.scm,
gnu/packages/distributed.scm,
gnu/packages/django.scm,
gnu/packages/dlang.scm,
gnu/packages/dns.scm,
gnu/packages/docker.scm,
gnu/packages/education.scm,
gnu/packages/efi.scm,
gnu/packages/elixir.scm,
gnu/packages/emacs-xyz.scm,
gnu/packages/embedded.scm,
gnu/packages/emulators.scm,
gnu/packages/engineering.scm,
gnu/packages/erlang.scm,
gnu/packages/fabric-management.scm,
gnu/packages/file-systems.scm,
gnu/packages/finance.scm,
gnu/packages/firmware.scm,
gnu/packages/flashing-tools.scm,
gnu/packages/fonts.scm,
gnu/packages/fontutils.scm,
gnu/packages/fpga.scm,
gnu/packages/game-development.scm,
gnu/packages/games.scm,
gnu/packages/genealogy.scm,
gnu/packages/genimage.scm,
gnu/packages/geo.scm,
gnu/packages/gimp.scm,
gnu/packages/gl.scm,
gnu/packages/gnome-xyz.scm,
gnu/packages/gnome.scm,
gnu/packages/gnuzilla.scm,
gnu/packages/golang.scm,
gnu/packages/gpodder.scm,
gnu/packages/graph.scm,
gnu/packages/graphics.scm,
gnu/packages/graphviz.scm,
gnu/packages/groff.scm,
gnu/packages/groovy.scm,
gnu/packages/gtk.scm,
gnu/packages/guile-xyz.scm,
gnu/packages/guile.scm,
gnu/packages/hardware.scm,
gnu/packages/haskell-apps.scm,
gnu/packages/haskell-xyz.scm,
gnu/packages/hexedit.scm,
gnu/packages/i2p.scm,
gnu/packages/ibus.scm,
gnu/packages/image-processing.scm,
gnu/packages/image-viewers.scm,
gnu/packages/image.scm,
gnu/packages/ipfs.scm,
gnu/packages/java-graphics.scm,
gnu/packages/java-maths.scm,
gnu/packages/java.scm,
gnu/packages/javascript.scm,
gnu/packages/jrnl.scm,
gnu/packages/julia.scm,
gnu/packages/jupyter.scm,
gnu/packages/kodi.scm,
gnu/packages/language.scm,
gnu/packages/lego.scm,
gnu/packages/less.scm,
gnu/packages/libusb.scm,
gnu/packages/linux.scm,
gnu/packages/lirc.scm,
gnu/packages/lisp-xyz.scm,
gnu/packages/llvm.scm,
gnu/packages/logging.scm,
gnu/packages/lolcode.scm,
gnu/packages/lua.scm,
gnu/packages/lxde.scm,
gnu/packages/lxqt.scm,
gnu/packages/machine-learning.scm,
gnu/packages/mail.scm,
gnu/packages/markup.scm,
gnu/packages/maths.scm,
gnu/packages/maven.scm,
gnu/packages/mes.scm,
gnu/packages/messaging.scm,
gnu/packages/monitoring.scm,
gnu/packages/mpd.scm,
gnu/packages/music.scm,
gnu/packages/networking.scm,
gnu/packages/node-xyz.scm,
gnu/packages/ocaml.scm,
gnu/packages/ocr.scm,
gnu/packages/onc-rpc.scm,
gnu/packages/opencl.scm,
gnu/packages/opencog.scm,
gnu/packages/pantheon.scm,
gnu/packages/password-utils.scm,
gnu/packages/patchutils.scm,
gnu/packages/pdf.scm,
gnu/packages/perl6.scm,
gnu/packages/phabricator.scm,
gnu/packages/popt.scm,
gnu/packages/printers.scm,
gnu/packages/prolog.scm,
gnu/packages/protobuf.scm,
gnu/packages/pulseaudio.scm,
gnu/packages/python-crypto.scm,
gnu/packages/python-web.scm,
gnu/packages/python-xyz.scm,
gnu/packages/qt.scm,
gnu/packages/radio.scm,
gnu/packages/rails.scm,
gnu/packages/rdf.scm,
gnu/packages/rednotebook.scm,
gnu/packages/rpc.scm,
gnu/packages/rsync.scm,
gnu/packages/ruby.scm,
gnu/packages/rust.scm,
gnu/packages/scheme.scm,
gnu/packages/screen.scm,
gnu/packages/security-token.scm,
gnu/packages/selinux.scm,
gnu/packages/serialization.scm,
gnu/packages/shells.scm,
gnu/packages/shellutils.scm,
gnu/packages/simh.scm,
gnu/packages/sml.scm,
gnu/packages/ssh.scm,
gnu/packages/statistics.scm,
gnu/packages/stenography.scm,
gnu/packages/sync.scm,
gnu/packages/syncthing.scm,
gnu/packages/synergy.scm,
gnu/packages/telephony.scm,
gnu/packages/terminals.scm,
gnu/packages/tex.scm,
gnu/packages/texinfo.scm,
gnu/packages/text-editors.scm,
gnu/packages/textutils.scm,
gnu/packages/time.scm,
gnu/packages/tmux.scm,
gnu/packages/tor.scm,
gnu/packages/toys.scm,
gnu/packages/version-control.scm,
gnu/packages/video.scm,
gnu/packages/vim.scm,
gnu/packages/virtualization.scm,
gnu/packages/vlang.scm,
gnu/packages/vnc.scm,
gnu/packages/vpn.scm,
gnu/packages/web-browsers.scm,
gnu/packages/web.scm,
gnu/packages/wireservice.scm,
gnu/packages/wm.scm,
gnu/packages/wxwidgets.scm,
gnu/packages/xdisorg.scm,
gnu/packages/xml.scm,
gnu/packages/xorg.scm,
tests/lint.scm: Remove trailing ".git" from 'git-reference' URL.
2020-07-12 16:53:28 -04:00
|
|
|
|
(url "https://github.com/Yubico/libu2f-server")
|
2019-10-27 02:01:00 -04:00
|
|
|
|
(commit (string-append "libu2f-server-" version))))
|
|
|
|
|
(file-name (git-file-name name version))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
|
|
|
|
"1nmsfq372zza5y6j13ydincjf324bwfcjg950vykh166xkp6wiic"))))
|
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:configure-flags
|
|
|
|
|
(list "--enable-gtk-doc"
|
|
|
|
|
"--enable-tests")))
|
|
|
|
|
(inputs
|
2020-05-14 16:54:27 -04:00
|
|
|
|
`(("json-c" ,json-c-0.13)
|
2019-10-27 02:01:00 -04:00
|
|
|
|
("libressl" ,libressl)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("autoconf" ,autoconf)
|
|
|
|
|
("automake" ,automake)
|
|
|
|
|
("libtool" ,libtool)
|
|
|
|
|
("check" ,check)
|
|
|
|
|
("gengetopt" ,gengetopt)
|
|
|
|
|
("help2man" ,help2man)
|
|
|
|
|
("pkg-config" ,pkg-config)
|
|
|
|
|
("gtk-doc" ,gtk-doc)
|
|
|
|
|
("which" ,which)))
|
|
|
|
|
(home-page "https://developers.yubico.com/libu2f-server/")
|
|
|
|
|
;; TRANSLATORS: The U2F protocol has a "server side" and a "host side".
|
|
|
|
|
(synopsis "U2F server-side C library")
|
|
|
|
|
(description
|
|
|
|
|
"This is a C library that implements the server-side of the
|
|
|
|
|
@dfn{Universal 2nd Factor} (U2F) protocol. More precisely, it provides an API
|
|
|
|
|
for generating the JSON blobs required by U2F devices to perform the U2F
|
|
|
|
|
Registration and U2F Authentication operations, and functionality for
|
|
|
|
|
verifying the cryptographic operations.")
|
|
|
|
|
(license license:bsd-2)))
|
|
|
|
|
|
2019-10-27 12:04:06 -04:00
|
|
|
|
(define-public pam-u2f
|
|
|
|
|
(package
|
|
|
|
|
(name "pam-u2f")
|
|
|
|
|
(version "1.0.8")
|
|
|
|
|
(source (origin
|
|
|
|
|
(method git-fetch)
|
|
|
|
|
(uri
|
|
|
|
|
(git-reference
|
gnu: Remove ".git" from "https://github/…/….git".
Until now, 'lookup-origin' and thus 'lookup-origin-revision' in (guix
swh) would sometimes return #f for these because the ".git" URLs are
redirects to the non-".git" URLs. Consequently, 'guix lint -c archival'
would keep saying "scheduled Software Heritage archival"; likewise, the
fallback download code would fail.
* gnu/packages/ada.scm,
gnu/packages/admin.scm,
gnu/packages/aidc.scm,
gnu/packages/algebra.scm,
gnu/packages/android.scm,
gnu/packages/animation.scm,
gnu/packages/arcan.scm,
gnu/packages/assembly.scm,
gnu/packages/audio.scm,
gnu/packages/authentication.scm,
gnu/packages/avr.scm,
gnu/packages/axoloti.scm,
gnu/packages/backup.scm,
gnu/packages/bash.scm,
gnu/packages/benchmark.scm,
gnu/packages/bioconductor.scm,
gnu/packages/bioinformatics.scm,
gnu/packages/bittorrent.scm,
gnu/packages/boost.scm,
gnu/packages/build-tools.scm,
gnu/packages/c.scm,
gnu/packages/calendar.scm,
gnu/packages/cdrom.scm,
gnu/packages/check.scm,
gnu/packages/chemistry.scm,
gnu/packages/chez.scm,
gnu/packages/clojure.scm,
gnu/packages/code.scm,
gnu/packages/compression.scm,
gnu/packages/compton.scm,
gnu/packages/coq.scm,
gnu/packages/cpp.scm,
gnu/packages/cran.scm,
gnu/packages/crypto.scm,
gnu/packages/curl.scm,
gnu/packages/databases.scm,
gnu/packages/datastructures.scm,
gnu/packages/debug.scm,
gnu/packages/disk.scm,
gnu/packages/distributed.scm,
gnu/packages/django.scm,
gnu/packages/dlang.scm,
gnu/packages/dns.scm,
gnu/packages/docker.scm,
gnu/packages/education.scm,
gnu/packages/efi.scm,
gnu/packages/elixir.scm,
gnu/packages/emacs-xyz.scm,
gnu/packages/embedded.scm,
gnu/packages/emulators.scm,
gnu/packages/engineering.scm,
gnu/packages/erlang.scm,
gnu/packages/fabric-management.scm,
gnu/packages/file-systems.scm,
gnu/packages/finance.scm,
gnu/packages/firmware.scm,
gnu/packages/flashing-tools.scm,
gnu/packages/fonts.scm,
gnu/packages/fontutils.scm,
gnu/packages/fpga.scm,
gnu/packages/game-development.scm,
gnu/packages/games.scm,
gnu/packages/genealogy.scm,
gnu/packages/genimage.scm,
gnu/packages/geo.scm,
gnu/packages/gimp.scm,
gnu/packages/gl.scm,
gnu/packages/gnome-xyz.scm,
gnu/packages/gnome.scm,
gnu/packages/gnuzilla.scm,
gnu/packages/golang.scm,
gnu/packages/gpodder.scm,
gnu/packages/graph.scm,
gnu/packages/graphics.scm,
gnu/packages/graphviz.scm,
gnu/packages/groff.scm,
gnu/packages/groovy.scm,
gnu/packages/gtk.scm,
gnu/packages/guile-xyz.scm,
gnu/packages/guile.scm,
gnu/packages/hardware.scm,
gnu/packages/haskell-apps.scm,
gnu/packages/haskell-xyz.scm,
gnu/packages/hexedit.scm,
gnu/packages/i2p.scm,
gnu/packages/ibus.scm,
gnu/packages/image-processing.scm,
gnu/packages/image-viewers.scm,
gnu/packages/image.scm,
gnu/packages/ipfs.scm,
gnu/packages/java-graphics.scm,
gnu/packages/java-maths.scm,
gnu/packages/java.scm,
gnu/packages/javascript.scm,
gnu/packages/jrnl.scm,
gnu/packages/julia.scm,
gnu/packages/jupyter.scm,
gnu/packages/kodi.scm,
gnu/packages/language.scm,
gnu/packages/lego.scm,
gnu/packages/less.scm,
gnu/packages/libusb.scm,
gnu/packages/linux.scm,
gnu/packages/lirc.scm,
gnu/packages/lisp-xyz.scm,
gnu/packages/llvm.scm,
gnu/packages/logging.scm,
gnu/packages/lolcode.scm,
gnu/packages/lua.scm,
gnu/packages/lxde.scm,
gnu/packages/lxqt.scm,
gnu/packages/machine-learning.scm,
gnu/packages/mail.scm,
gnu/packages/markup.scm,
gnu/packages/maths.scm,
gnu/packages/maven.scm,
gnu/packages/mes.scm,
gnu/packages/messaging.scm,
gnu/packages/monitoring.scm,
gnu/packages/mpd.scm,
gnu/packages/music.scm,
gnu/packages/networking.scm,
gnu/packages/node-xyz.scm,
gnu/packages/ocaml.scm,
gnu/packages/ocr.scm,
gnu/packages/onc-rpc.scm,
gnu/packages/opencl.scm,
gnu/packages/opencog.scm,
gnu/packages/pantheon.scm,
gnu/packages/password-utils.scm,
gnu/packages/patchutils.scm,
gnu/packages/pdf.scm,
gnu/packages/perl6.scm,
gnu/packages/phabricator.scm,
gnu/packages/popt.scm,
gnu/packages/printers.scm,
gnu/packages/prolog.scm,
gnu/packages/protobuf.scm,
gnu/packages/pulseaudio.scm,
gnu/packages/python-crypto.scm,
gnu/packages/python-web.scm,
gnu/packages/python-xyz.scm,
gnu/packages/qt.scm,
gnu/packages/radio.scm,
gnu/packages/rails.scm,
gnu/packages/rdf.scm,
gnu/packages/rednotebook.scm,
gnu/packages/rpc.scm,
gnu/packages/rsync.scm,
gnu/packages/ruby.scm,
gnu/packages/rust.scm,
gnu/packages/scheme.scm,
gnu/packages/screen.scm,
gnu/packages/security-token.scm,
gnu/packages/selinux.scm,
gnu/packages/serialization.scm,
gnu/packages/shells.scm,
gnu/packages/shellutils.scm,
gnu/packages/simh.scm,
gnu/packages/sml.scm,
gnu/packages/ssh.scm,
gnu/packages/statistics.scm,
gnu/packages/stenography.scm,
gnu/packages/sync.scm,
gnu/packages/syncthing.scm,
gnu/packages/synergy.scm,
gnu/packages/telephony.scm,
gnu/packages/terminals.scm,
gnu/packages/tex.scm,
gnu/packages/texinfo.scm,
gnu/packages/text-editors.scm,
gnu/packages/textutils.scm,
gnu/packages/time.scm,
gnu/packages/tmux.scm,
gnu/packages/tor.scm,
gnu/packages/toys.scm,
gnu/packages/version-control.scm,
gnu/packages/video.scm,
gnu/packages/vim.scm,
gnu/packages/virtualization.scm,
gnu/packages/vlang.scm,
gnu/packages/vnc.scm,
gnu/packages/vpn.scm,
gnu/packages/web-browsers.scm,
gnu/packages/web.scm,
gnu/packages/wireservice.scm,
gnu/packages/wm.scm,
gnu/packages/wxwidgets.scm,
gnu/packages/xdisorg.scm,
gnu/packages/xml.scm,
gnu/packages/xorg.scm,
tests/lint.scm: Remove trailing ".git" from 'git-reference' URL.
2020-07-12 16:53:28 -04:00
|
|
|
|
(url "https://github.com/Yubico/pam-u2f")
|
2019-10-27 12:04:06 -04:00
|
|
|
|
(commit (string-append "pam_u2f-" version))))
|
|
|
|
|
(file-name (git-file-name name version))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
|
|
|
|
"04d9davyi33gqbvga1rvh9fijp6f16mx2xmnn4n61rnhcn2jac98"))))
|
|
|
|
|
(build-system gnu-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:configure-flags
|
|
|
|
|
(list (string-append "--with-pam-dir="
|
|
|
|
|
(assoc-ref %outputs "out") "/lib/security"))))
|
|
|
|
|
(inputs
|
|
|
|
|
`(("libu2f-host" ,libu2f-host)
|
|
|
|
|
("libu2f-server" ,libu2f-server)
|
|
|
|
|
("linux-pam" ,linux-pam)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("autoconf" ,autoconf)
|
|
|
|
|
("automake" ,automake)
|
|
|
|
|
("libtool" ,libtool)
|
|
|
|
|
("asciidoc" ,asciidoc)
|
|
|
|
|
("pkg-config" ,pkg-config)))
|
|
|
|
|
(home-page "https://developers.yubico.com/pam-u2f/")
|
|
|
|
|
(synopsis "PAM module for U2F authentication")
|
|
|
|
|
(description
|
|
|
|
|
"This package provides a module implementing PAM over U2F, providing an
|
|
|
|
|
easy way to integrate the YubiKey (or other U2F compliant authenticators) into
|
|
|
|
|
your existing infrastructure.")
|
|
|
|
|
(license license:bsd-2)))
|
|
|
|
|
|
2019-04-18 05:50:33 -04:00
|
|
|
|
(define-public python-fido2
|
|
|
|
|
(package
|
|
|
|
|
(name "python-fido2")
|
|
|
|
|
(version "0.5.0")
|
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri
|
|
|
|
|
(string-append
|
|
|
|
|
"https://github.com/Yubico/python-fido2/releases/download/"
|
|
|
|
|
version "/fido2-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
|
|
|
|
"1pl8d2pr6jzqj4y9qiaddhjgnl92kikjxy0bgzm2jshkzzic8mp3"))
|
|
|
|
|
(snippet
|
|
|
|
|
;; Remove bundled dependency.
|
|
|
|
|
#~(delete-file "fido2/public_suffix_list.dat"))))
|
|
|
|
|
(build-system python-build-system)
|
|
|
|
|
(arguments
|
|
|
|
|
`(#:phases
|
|
|
|
|
(modify-phases %standard-phases
|
|
|
|
|
(add-after 'unpack 'install-public-suffix-list
|
|
|
|
|
(lambda* (#:key inputs #:allow-other-keys)
|
|
|
|
|
(copy-file
|
|
|
|
|
(string-append (assoc-ref inputs "public-suffix-list")
|
|
|
|
|
"/share/public-suffix-list-"
|
|
|
|
|
,(package-version public-suffix-list)
|
|
|
|
|
"/public_suffix_list.dat")
|
|
|
|
|
"fido2/public_suffix_list.dat")
|
|
|
|
|
#t)))))
|
|
|
|
|
(propagated-inputs
|
|
|
|
|
`(("python-cryptography" ,python-cryptography)
|
|
|
|
|
("python-six" ,python-six)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("python-mock" ,python-mock)
|
|
|
|
|
("python-pyfakefs" ,python-pyfakefs)
|
|
|
|
|
("public-suffix-list" ,public-suffix-list)))
|
|
|
|
|
(home-page "https://github.com/Yubico/python-fido2")
|
|
|
|
|
(synopsis "Python library for communicating with FIDO devices over USB")
|
|
|
|
|
(description
|
|
|
|
|
"This Python library provides functionality for communicating with a Fast
|
|
|
|
|
IDentity Online (FIDO) device over Universal Serial Bus (USB) as well as
|
|
|
|
|
verifying attestation and assertion signatures. It aims to support the FIDO
|
|
|
|
|
Universal 2nd Factor (U2F) and FIDO 2.0 protocols for communicating with a USB
|
|
|
|
|
authenticator via the Client-to-Authenticator Protocol (CTAP 1 and 2). In
|
|
|
|
|
addition to this low-level device access, classes defined in the
|
|
|
|
|
@code{fido2.client} and @code{fido2.server} modules implement higher level
|
|
|
|
|
operations which are useful when interfacing with an Authenticator, or when
|
|
|
|
|
implementing a Relying Party.")
|
|
|
|
|
;; python-fido2 contains some derivative files originally from pyu2f
|
|
|
|
|
;; (https://github.com/google/pyu2f). These files are licensed under the
|
|
|
|
|
;; Apache License, version 2.0. The maintainers have customized these
|
|
|
|
|
;; files for internal use, so they are not really a bundled dependency.
|
|
|
|
|
(license (list license:bsd-2 license:asl2.0))))
|
|
|
|
|
|
2019-04-18 06:21:41 -04:00
|
|
|
|
(define-public python-yubikey-manager
|
|
|
|
|
(package
|
|
|
|
|
(name "python-yubikey-manager")
|
|
|
|
|
(version "2.1.0")
|
|
|
|
|
(source (origin
|
|
|
|
|
(method url-fetch)
|
|
|
|
|
(uri (string-append
|
|
|
|
|
"https://developers.yubico.com/yubikey-manager/Releases"
|
|
|
|
|
"/yubikey-manager-" version ".tar.gz"))
|
|
|
|
|
(sha256
|
|
|
|
|
(base32
|
|
|
|
|
"11rsmcaj60k3y5m5gdhr2nbbz0w5dm3m04klyxz0fh5hnpcmr7fm"))))
|
|
|
|
|
(build-system python-build-system)
|
|
|
|
|
(propagated-inputs
|
|
|
|
|
`(("python-six" ,python-six)
|
|
|
|
|
("python-pyscard" ,python-pyscard)
|
|
|
|
|
("python-pyusb" ,python-pyusb)
|
|
|
|
|
("python-click" ,python-click)
|
|
|
|
|
("python-cryptography" ,python-cryptography)
|
|
|
|
|
("python-pyopenssl" ,python-pyopenssl)
|
|
|
|
|
("python-fido2" ,python-fido2)))
|
|
|
|
|
(inputs
|
|
|
|
|
`(("yubikey-personalization" ,yubikey-personalization)
|
|
|
|
|
("pcsc-lite" ,pcsc-lite)
|
|
|
|
|
("libusb" ,libusb)))
|
|
|
|
|
(native-inputs
|
|
|
|
|
`(("swig" ,swig)
|
|
|
|
|
("python-mock" ,python-mock)))
|
|
|
|
|
(home-page "https://developers.yubico.com/yubikey-manager/")
|
|
|
|
|
(synopsis "Command line tool and library for configuring a YubiKey")
|
|
|
|
|
(description
|
|
|
|
|
"Python library and command line tool for configuring a YubiKey. Note
|
|
|
|
|
that after installing this package, you might still need to add appropriate
|
|
|
|
|
udev rules to your system configuration to be able to configure the YubiKey as
|
|
|
|
|
an unprivileged user.")
|
|
|
|
|
(license license:bsd-2)))
|