Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 84902 - freebsd-crypto useflag patch (with sshd init script and other)
Summary: freebsd-crypto useflag patch (with sshd init script and other)
Status: RESOLVED CANTFIX
Alias: None
Product: Gentoo/Alt
Classification: Unclassified
Component: Other (show other bugs)
Hardware: All All
: High normal
Assignee: Gentoo/BSD Team
URL:
Whiteboard:
Keywords:
Depends on: 84898
Blocks:
  Show dependency tree
 
Reported: 2005-03-11 14:06 UTC by Diego Elio Pettenò (RETIRED)
Modified: 2006-04-12 10:49 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments
freebsd-crypto patch (freebsd-crypto.patch,4.14 KB, patch)
2005-03-11 14:06 UTC, Diego Elio Pettenò (RETIRED)
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Diego Elio Pettenò (RETIRED) gentoo-dev 2005-03-11 14:06:02 UTC
Ok this time a more interesting patch: crypto hasn't so much useflags (it could use idea, but it seems not to work for now), but openssh build can be disabled from within it.

This, added to virtual/ssh, allow to enable or disable ssh/sshd from this ebuild, and so allow to  use net-misc/openssh version, which is newer and (we hope) safer.

If ssh is being built, with this patch freebsd-crypto takes care of installing sshd init script and sshd pam config (took from spb's baselayout 0.7-r1, please don't re-emerge it after this package until spb removes sshd stuff from there or you will be without them :) ).

Please note if you want to use net-misc/openssh: it works well, but you must use the pam config file from this instead of the normal one, as the normal one will close you out. I'll investigate it a little bit when i'll know how pam works in both linux and here, as there seems to be some changes.

Also, as there should be some openssl drop in replacement using gnu-tls (or there will be one in the future, i bet), having a virtual/ssl could help us here, too.

HTH, Diego
Comment 1 Diego Elio Pettenò (RETIRED) gentoo-dev 2005-03-11 14:06:45 UTC
Created attachment 53212 [details, diff]
freebsd-crypto patch
Comment 2 Otavio Piske (RETIRED) gentoo-dev 2005-03-31 09:55:50 UTC
freebsd-crypto is broken. As we have discussed in #gentoo-bsd, we should just use whatever portage offer to us (openssh, openssl, heimdal, etc) and them manage to find a solution to pam issues[1]. A bug will be filled in the next days/weeks regarding this issue.

[1] http://article.gmane.org/gmane.linux.gentoo.bsd/6.