110-scripts.patch 8.9 KB


  1. Index: openswan-2.4.8/programs/loggerfix
  2. ===================================================================
  3. --- /dev/null 1970-01-01 00:00:00.000000000 +0000
  4. +++ openswan-2.4.8/programs/loggerfix 2007-06-04 13:22:50.209222320 +0200
  5. @@ -0,0 +1,5 @@
  6. +#!/bin/sh
  7. +# use filename instead of /dev/null to log, but dont log to flash or ram
  8. +# pref. log to nfs mount
  9. +echo "$*" >> /dev/null
  10. +exit 0
  11. Index: openswan-2.4.8/programs/look/look.in
  12. ===================================================================
  13. --- openswan-2.4.8.orig/programs/look/look.in 2007-06-04 13:22:49.874273240 +0200
  14. +++ openswan-2.4.8/programs/look/look.in 2007-06-04 13:22:50.209222320 +0200
  15. @@ -84,7 +84,7 @@
  16. then
  17. pat="$pat|$defaultroutephys\$|$defaultroutevirt\$"
  18. else
  19. - for i in `echo "$IPSECinterfaces" | sed 's/=/ /'`
  20. + for i in `echo "$IPSECinterfaces" | tr '=' ' '`
  21. do
  22. pat="$pat|$i\$"
  23. done
  24. Index: openswan-2.4.8/programs/_plutorun/_plutorun.in
  25. ===================================================================
  26. --- openswan-2.4.8.orig/programs/_plutorun/_plutorun.in 2007-06-04 13:22:49.880272328 +0200
  27. +++ openswan-2.4.8/programs/_plutorun/_plutorun.in 2007-06-04 13:22:50.209222320 +0200
  28. @@ -147,7 +147,7 @@
  29. exit 1
  30. fi
  31. else
  32. - if test ! -w "`dirname $stderrlog`"
  33. + if test ! -w "`echo $stderrlog | sed -r 's/(^.*\/)(.*$)/\1/'`"
  34. then
  35. echo Cannot write to directory to create \"$stderrlog\".
  36. exit 1
  37. Index: openswan-2.4.8/programs/_realsetup/_realsetup.in
  38. ===================================================================
  39. --- openswan-2.4.8.orig/programs/_realsetup/_realsetup.in 2007-06-04 13:22:49.888271112 +0200
  40. +++ openswan-2.4.8/programs/_realsetup/_realsetup.in 2007-06-04 13:22:50.210222168 +0200
  41. @@ -232,7 +232,7 @@
  42. # misc pre-Pluto setup
  43. - perform test -d `dirname $subsyslock` "&&" touch $subsyslock
  44. + perform test -d `echo $subsyslock | sed -r 's/(^.*\/)(.*$)/\1/'` "&&" touch $subsyslock "&&" rm -f $subsyslock
  45. if test " $IPSECforwardcontrol" = " yes"
  46. then
  47. Index: openswan-2.4.8/programs/send-pr/send-pr.in
  48. ===================================================================
  49. --- openswan-2.4.8.orig/programs/send-pr/send-pr.in 2007-06-04 13:22:49.894270200 +0200
  50. +++ openswan-2.4.8/programs/send-pr/send-pr.in 2007-06-04 13:22:50.210222168 +0200
  51. @@ -402,7 +402,7 @@
  52. else
  53. if [ "$fieldname" != "Category" ]
  54. then
  55. - values=`${BINDIR}/query-pr --valid-values $fieldname | sed ':a;N;$!ba;s/\n/ /g' | sed 's/ *$//g;s/ / | /g;s/^/[ /;s/$/ ]/;'`
  56. + values=`${BINDIR}/query-pr --valid-values $fieldname | tr '\n' ' ' | sed 's/ *$//g;s/ / | /g;s/^/[ /;s/$/ ]/;'`
  57. valslen=`echo "$values" | wc -c`
  58. else
  59. values="choose from a category listed above"
  60. @@ -414,7 +414,7 @@
  61. else
  62. desc="<${values} (one line)>";
  63. fi
  64. - dpat=`echo "$desc" | sed 's/[][*+^$|\()&/]/./g'`
  65. + dpat=`echo "$desc" | tr '\]\[*+^$|\()&/' '............'`
  66. echo "/^>${fieldname}:/ s/${dpat}//" >> $FIXFIL
  67. fi
  68. echo "${fmtname}${desc}" >> $file
  69. @@ -425,7 +425,7 @@
  70. desc=" $default_val";
  71. else
  72. desc=" <`${BINDIR}/query-pr --field-description $fieldname` (multiple lines)>";
  73. - dpat=`echo "$desc" | sed 's/[][*+^$|\()&/]/./g'`
  74. + dpat=`echo "$desc" | tr '\]\[*+^$|\()&/' '............'`
  75. echo "s/^${dpat}//" >> $FIXFIL
  76. fi
  77. echo "${fmtname}" >> $file;
  78. @@ -437,7 +437,7 @@
  79. desc="${default_val}"
  80. else
  81. desc="<`${BINDIR}/query-pr --field-description $fieldname` (one line)>"
  82. - dpat=`echo "$desc" | sed 's/[][*+^$|\()&/]/./g'`
  83. + dpat=`echo "$desc" | tr '\]\[*+^$|\()&/' '............'`
  84. echo "/^>${fieldname}:/ s/${dpat}//" >> $FIXFIL
  85. fi
  86. echo "${fmtname}${desc}" >> $file
  87. Index: openswan-2.4.8/programs/setup/setup.in
  88. ===================================================================
  89. --- openswan-2.4.8.orig/programs/setup/setup.in 2007-06-04 13:22:49.902268984 +0200
  90. +++ openswan-2.4.8/programs/setup/setup.in 2007-06-04 13:22:50.210222168 +0200
  91. @@ -117,12 +117,21 @@
  92. # do it
  93. case "$1" in
  94. start|--start|stop|--stop|_autostop|_autostart)
  95. - if test " `id -u`" != " 0"
  96. + if [ "x${USER}" != "xroot" ]
  97. then
  98. echo "permission denied (must be superuser)" |
  99. logger -s -p $IPSECsyslog -t ipsec_setup 2>&1
  100. exit 1
  101. fi
  102. + # make sure all required directories exist
  103. + if [ ! -d /var/run/pluto ]
  104. + then
  105. + mkdir -p /var/run/pluto
  106. + fi
  107. + if [ ! -d /var/lock/subsys ]
  108. + then
  109. + mkdir -p /var/lock/subsys
  110. + fi
  111. tmp=/var/run/pluto/ipsec_setup.st
  112. outtmp=/var/run/pluto/ipsec_setup.out
  113. (
  114. Index: openswan-2.4.8/programs/showhostkey/showhostkey.in
  115. ===================================================================
  116. --- openswan-2.4.8.orig/programs/showhostkey/showhostkey.in 2007-06-04 13:22:49.908268072 +0200
  117. +++ openswan-2.4.8/programs/showhostkey/showhostkey.in 2007-06-04 13:22:50.214221560 +0200
  118. @@ -63,7 +63,7 @@
  119. exit 1
  120. fi
  121. -host="`hostname --fqdn`"
  122. +host="`cat /proc/sys/kernel/hostname`"
  123. awk ' BEGIN {
  124. inkey = 0
  125. @@ -81,7 +81,7 @@
  126. os = "[ \t]*"
  127. x = "[^ \t]+"
  128. oc = "(#.*)?"
  129. - suffix = ":" os "[rR][sS][aA]" os "{" os oc "$"
  130. + suffix = ":" os "[rR][sS][aA]" os "[{]" os oc "$"
  131. if (id == "") {
  132. pat = "^" suffix
  133. printid = "default"
  134. Index: openswan-2.4.8/programs/starter/klips.c
  135. ===================================================================
  136. --- openswan-2.4.8.orig/programs/starter/klips.c 2007-06-04 13:22:49.914267160 +0200
  137. +++ openswan-2.4.8/programs/starter/klips.c 2007-06-04 13:22:50.214221560 +0200
  138. @@ -83,7 +83,7 @@
  139. if (stat(PROC_MODULES,&stb)==0) {
  140. unsetenv("MODPATH");
  141. unsetenv("MODULECONF");
  142. - system("depmod -a >/dev/null 2>&1 && modprobe ipsec");
  143. + system("depmod -a >/dev/null 2>&1 && insmod ipsec");
  144. }
  145. if (stat(PROC_IPSECVERSION,&stb)==0) {
  146. _klips_module_loaded = 1;
  147. Index: openswan-2.4.8/programs/starter/netkey.c
  148. ===================================================================
  149. --- openswan-2.4.8.orig/programs/starter/netkey.c 2007-06-04 13:22:49.920266248 +0200
  150. +++ openswan-2.4.8/programs/starter/netkey.c 2007-06-04 13:22:50.214221560 +0200
  151. @@ -75,7 +75,7 @@
  152. if (stat(PROC_MODULES,&stb)==0) {
  153. unsetenv("MODPATH");
  154. unsetenv("MODULECONF");
  155. - system("depmod -a >/dev/null 2>&1 && modprobe xfrm4_tunnel esp4 ah4 af_key");
  156. + system("depmod -a >/dev/null 2>&1 && insmod xfrm4_tunnel esp4 ah4 af_key");
  157. }
  158. if (stat(PROC_NETKEY,&stb)==0) {
  159. _netkey_module_loaded = 1;
  160. Index: openswan-2.4.8/programs/_startklips/_startklips.in
  161. ===================================================================
  162. --- openswan-2.4.8.orig/programs/_startklips/_startklips.in 2007-06-04 13:22:49.928265032 +0200
  163. +++ openswan-2.4.8/programs/_startklips/_startklips.in 2007-06-04 13:22:50.215221408 +0200
  164. @@ -272,16 +272,16 @@
  165. echo "FATAL ERROR: Both KLIPS and NETKEY IPsec code is present in kernel"
  166. exit
  167. fi
  168. -if test ! -f $ipsecversion && test ! -f $netkey && modprobe -qn ipsec
  169. +if test ! -f $ipsecversion && test ! -f $netkey
  170. then
  171. # statically compiled KLIPS/NETKEY not found; but there seems to be an ipsec module
  172. - modprobe ipsec 2> /dev/null
  173. + insmod -q ipsec 2> /dev/null
  174. fi
  175. -if test ! -f $ipsecversion && test ! -f $netkey && modprobe -qn af_key
  176. +if test ! -f $ipsecversion && test ! -f $netkey
  177. then
  178. # netkey should work then
  179. - modprobe af_key 2> /dev/null
  180. + insmod -q af_key 2> /dev/null
  181. fi
  182. if test ! -f $ipsecversion && test ! -f $netkey
  183. then
  184. @@ -294,27 +294,27 @@
  185. # modules shared between klips and netkey
  186. if test -f $modules
  187. then
  188. - # we modprobe hw_random so ipsec verify can complain about not using it
  189. - modprobe -q hw_random 2> /dev/null
  190. + # we insmod hw_random so ipsec verify can complain about not using it
  191. + insmod -q hw_random 2> /dev/null
  192. # padlock must load before aes module
  193. - modprobe -q padlock 2> /dev/null
  194. + insmod -q padlock 2> /dev/null
  195. # load the most common ciphers/algo's
  196. - modprobe -q sha256 2> /dev/null
  197. - modprobe -q sha1 2> /dev/null
  198. - modprobe -q md5 2> /dev/null
  199. - modprobe -q des 2> /dev/null
  200. - modprobe -q aes 2> /dev/null
  201. + insmod -q sha256 2> /dev/null
  202. + insmod -q sha1 2> /dev/null
  203. + insmod -q md5 2> /dev/null
  204. + insmod -q des 2> /dev/null
  205. + insmod -q aes 2> /dev/null
  206. if test -f $netkey
  207. then
  208. klips=false
  209. - modprobe -q ah4 2> /dev/null
  210. - modprobe -q esp4 2> /dev/null
  211. - modprobe -q ipcomp 2> /dev/null
  212. + insmod -q ah4 2> /dev/null
  213. + insmod -q esp4 2> /dev/null
  214. + insmod -q ipcomp 2> /dev/null
  215. # xfrm4_tunnel is needed by ipip and ipcomp
  216. - modprobe -q xfrm4_tunnel 2> /dev/null
  217. + insmod -q xfrm4_tunnel 2> /dev/null
  218. # xfrm_user contains netlink support for IPsec
  219. - modprobe -q xfrm_user 2> /dev/null
  220. + insmod -q xfrm_user 2> /dev/null
  221. fi
  222. if test ! -f $ipsecversion && $klips
  223. @@ -327,7 +327,7 @@
  224. fi
  225. unset MODPATH MODULECONF # no user overrides!
  226. depmod -a >/dev/null 2>&1
  227. - modprobe -v ipsec
  228. + insmod -v ipsec
  229. if test ! -f $ipsecversion
  230. then
  231. echo "kernel appears to lack IPsec support (neither CONFIG_KLIPS or CONFIG_NET_KEY are set)"