strongswan 5.6.3-1ubuntu1 source package in Ubuntu

Changelog

strongswan (5.6.3-1ubuntu1) cosmic; urgency=medium

  * Merge with Debian unstable. Remaining changes:
    - Clean up d/strongswan-starter.postinst: section about runlevel changes
    - Clean up d/strongswan-starter.postinst: Removed entire section on
      opportunistic encryption disabling - this was never in strongSwan and
      won't be see upstream issue #2160.
    - d/rules: Removed patching ipsec.conf on build (not using the
      debconf-managed config.)
    - d/ipsec.secrets.proto: Removed ipsec.secrets.inc reference (was
      used for debconf-managed include of private key).
    - Mass enablement of extra plugins and features to allow a user to use
      strongswan for a variety of extra use cases without having to rebuild.
      + d/control: Add required additional build-deps
      + d/control: Mention addtionally enabled plugins
      + d/rules: Enable features at configure stage
      + d/libbstrongswan-extra-plugins.install: Add plugins (so, lib, conf)
      + d/libstrongswan.install: Add plugins (so, conf)
    - d/strongswan-starter.install: Install pool feature, which is useful since
      we have attr-sql plugin enabled as well using it.
    - Add plugin kernel-libipsec to allow the use of strongswan in containers
      via this userspace implementation (please do note that this is still
      considered experimental by upstream).
      + d/libcharon-extra-plugins.install: Add kernel-libipsec components
      + d/control: List kernel-libipsec plugin at extra plugins description
      + d/p/dont-load-kernel-libipsec-plugin-by-default.patch: As
        upstream recommends to not load kernel-libipsec by default.
    - Relocate tnc plugin
      + debian/libcharon-extra-plugins.install: Drop tnc from extra plugins
      + Add new subpackage for TNC in d/strongswan-tnc-* and d/control
    - d/libstrongswan.install: Reorder conf and .so alphabetically
    - d/libstrongswan.install: Add kernel-netlink configuration files
    - Complete the disabling of libfast; This was partially accepted in Debian,
      it is no more packaging medcli and medsrv, but still builds and
      mentions it.
      + d/rules: Add --disable-fast to avoid build time and dependencies
      + d/control: Remove medcli, medsrv from package description
    - d/control: Mention mgf1 plugin which is in libstrongswan now
    - Add now built (since 5.5.1) libraries libtpmtss and nttfft to
      libstrongswan-extra-plugins (no deps from default plugins).
    - d/control, d/libcharon-{extras,standard}-plugins.install: Move charon
      plugins for the most common use cases from extra-plugins into a new
      standard-plugins package. This will allow those use cases without pulling
      in too much more plugins (a bit like the tnc package). Recommend that
      package from strongswan-libcharon.
    - d/usr.sbin.charon-systemd: allow to contact mysql for sql and
      attr-sql plugins (LP #1766240)
    - d/usr.lib.ipsec.charon, d/usr/sbin/charon-systemd: Add support for
      usr-merge, thanks to Christian Ehrhardt. LP #1784023
  * Dropped:
    - d/usr.sbin.charon-systemd: allow systemd notifications (LP: #1765652)
      [Fixed in 5.6.3-1]

strongswan (5.6.3-1) unstable; urgency=medium

  * New upstream version 5.6.2
  * update charon-systemd AppArmor profile (closes: #896813)
  * New upstream version 5.6.3
    - fix a DoS vulnerability in the IKEv2 key derivation if the openssl
    plugin is used in FIPS mode and HMAC-MD5 is negotiated as PRF
    (CVE-2018-10811)
    - fix a vulnerability in the stroke plugin, which did not check the
    received length before reading a message from the control socket
    (CVE-2018-5388)
  * d/p/05_charon-nm-Fix-building-list-of-DNS-MDNS-servers-with removed

 -- Andreas Hasenack <email address hidden>  Thu, 23 Aug 2018 13:05:11 -0300

Upload details

Uploaded by:
Andreas Hasenack
Uploaded to:
Cosmic
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
strongswan_5.6.3.orig.tar.bz2 4.7 MiB c3c7dc8201f40625bba92ffd32eb602a8909210d8b3fac4d214c737ce079bf24
strongswan_5.6.3-1ubuntu1.debian.tar.xz 133.2 KiB e9c6d8fe5ef4057a3349d64cc7901501e01f6f0bd9d78195698ec0dd4443e34f
strongswan_5.6.3-1ubuntu1.dsc 3.8 KiB 8060b8ba729957e73c3761a6c33112f55a2f616f07bd4e603ed72f0dc37d2f56

Available diffs

View changes file

Binary packages built by this source

charon-cmd: No summary available for charon-cmd in ubuntu cosmic.

No description available for charon-cmd in ubuntu cosmic.

charon-cmd-dbgsym: No summary available for charon-cmd-dbgsym in ubuntu cosmic.

No description available for charon-cmd-dbgsym in ubuntu cosmic.

charon-systemd: No summary available for charon-systemd in ubuntu cosmic.

No description available for charon-systemd in ubuntu cosmic.

charon-systemd-dbgsym: No summary available for charon-systemd-dbgsym in ubuntu cosmic.

No description available for charon-systemd-dbgsym in ubuntu cosmic.

libcharon-extra-plugins: No summary available for libcharon-extra-plugins in ubuntu cosmic.

No description available for libcharon-extra-plugins in ubuntu cosmic.

libcharon-extra-plugins-dbgsym: No summary available for libcharon-extra-plugins-dbgsym in ubuntu cosmic.

No description available for libcharon-extra-plugins-dbgsym in ubuntu cosmic.

libcharon-standard-plugins: No summary available for libcharon-standard-plugins in ubuntu cosmic.

No description available for libcharon-standard-plugins in ubuntu cosmic.

libcharon-standard-plugins-dbgsym: No summary available for libcharon-standard-plugins-dbgsym in ubuntu cosmic.

No description available for libcharon-standard-plugins-dbgsym in ubuntu cosmic.

libstrongswan: No summary available for libstrongswan in ubuntu cosmic.

No description available for libstrongswan in ubuntu cosmic.

libstrongswan-dbgsym: No summary available for libstrongswan-dbgsym in ubuntu cosmic.

No description available for libstrongswan-dbgsym in ubuntu cosmic.

libstrongswan-extra-plugins: No summary available for libstrongswan-extra-plugins in ubuntu cosmic.

No description available for libstrongswan-extra-plugins in ubuntu cosmic.

libstrongswan-extra-plugins-dbgsym: No summary available for libstrongswan-extra-plugins-dbgsym in ubuntu cosmic.

No description available for libstrongswan-extra-plugins-dbgsym in ubuntu cosmic.

libstrongswan-standard-plugins: No summary available for libstrongswan-standard-plugins in ubuntu cosmic.

No description available for libstrongswan-standard-plugins in ubuntu cosmic.

libstrongswan-standard-plugins-dbgsym: No summary available for libstrongswan-standard-plugins-dbgsym in ubuntu cosmic.

No description available for libstrongswan-standard-plugins-dbgsym in ubuntu cosmic.

strongswan: No summary available for strongswan in ubuntu cosmic.

No description available for strongswan in ubuntu cosmic.

strongswan-charon: No summary available for strongswan-charon in ubuntu cosmic.

No description available for strongswan-charon in ubuntu cosmic.

strongswan-charon-dbgsym: No summary available for strongswan-charon-dbgsym in ubuntu cosmic.

No description available for strongswan-charon-dbgsym in ubuntu cosmic.

strongswan-libcharon: No summary available for strongswan-libcharon in ubuntu cosmic.

No description available for strongswan-libcharon in ubuntu cosmic.

strongswan-libcharon-dbgsym: No summary available for strongswan-libcharon-dbgsym in ubuntu cosmic.

No description available for strongswan-libcharon-dbgsym in ubuntu cosmic.

strongswan-nm: No summary available for strongswan-nm in ubuntu cosmic.

No description available for strongswan-nm in ubuntu cosmic.

strongswan-nm-dbgsym: No summary available for strongswan-nm-dbgsym in ubuntu cosmic.

No description available for strongswan-nm-dbgsym in ubuntu cosmic.

strongswan-pki: No summary available for strongswan-pki in ubuntu cosmic.

No description available for strongswan-pki in ubuntu cosmic.

strongswan-pki-dbgsym: No summary available for strongswan-pki-dbgsym in ubuntu cosmic.

No description available for strongswan-pki-dbgsym in ubuntu cosmic.

strongswan-scepclient: No summary available for strongswan-scepclient in ubuntu cosmic.

No description available for strongswan-scepclient in ubuntu cosmic.

strongswan-scepclient-dbgsym: No summary available for strongswan-scepclient-dbgsym in ubuntu cosmic.

No description available for strongswan-scepclient-dbgsym in ubuntu cosmic.

strongswan-starter: No summary available for strongswan-starter in ubuntu cosmic.

No description available for strongswan-starter in ubuntu cosmic.

strongswan-starter-dbgsym: No summary available for strongswan-starter-dbgsym in ubuntu cosmic.

No description available for strongswan-starter-dbgsym in ubuntu cosmic.

strongswan-swanctl: No summary available for strongswan-swanctl in ubuntu cosmic.

No description available for strongswan-swanctl in ubuntu cosmic.

strongswan-swanctl-dbgsym: No summary available for strongswan-swanctl-dbgsym in ubuntu cosmic.

No description available for strongswan-swanctl-dbgsym in ubuntu cosmic.

strongswan-tnc-base: No summary available for strongswan-tnc-base in ubuntu cosmic.

No description available for strongswan-tnc-base in ubuntu cosmic.

strongswan-tnc-base-dbgsym: No summary available for strongswan-tnc-base-dbgsym in ubuntu cosmic.

No description available for strongswan-tnc-base-dbgsym in ubuntu cosmic.

strongswan-tnc-client: No summary available for strongswan-tnc-client in ubuntu cosmic.

No description available for strongswan-tnc-client in ubuntu cosmic.

strongswan-tnc-client-dbgsym: No summary available for strongswan-tnc-client-dbgsym in ubuntu cosmic.

No description available for strongswan-tnc-client-dbgsym in ubuntu cosmic.

strongswan-tnc-ifmap: No summary available for strongswan-tnc-ifmap in ubuntu cosmic.

No description available for strongswan-tnc-ifmap in ubuntu cosmic.

strongswan-tnc-ifmap-dbgsym: No summary available for strongswan-tnc-ifmap-dbgsym in ubuntu cosmic.

No description available for strongswan-tnc-ifmap-dbgsym in ubuntu cosmic.

strongswan-tnc-pdp: No summary available for strongswan-tnc-pdp in ubuntu cosmic.

No description available for strongswan-tnc-pdp in ubuntu cosmic.

strongswan-tnc-pdp-dbgsym: No summary available for strongswan-tnc-pdp-dbgsym in ubuntu cosmic.

No description available for strongswan-tnc-pdp-dbgsym in ubuntu cosmic.

strongswan-tnc-server: No summary available for strongswan-tnc-server in ubuntu cosmic.

No description available for strongswan-tnc-server in ubuntu cosmic.

strongswan-tnc-server-dbgsym: No summary available for strongswan-tnc-server-dbgsym in ubuntu cosmic.

No description available for strongswan-tnc-server-dbgsym in ubuntu cosmic.