diff options
| author | Richard Purdie <richard@openedhand.com> | 2005-08-31 10:45:47 +0000 |
|---|---|---|
| committer | Richard Purdie <richard@openedhand.com> | 2005-08-31 10:45:47 +0000 |
| commit | 4b46c1f6e891b1ddd5968536440b888661fade3e (patch) | |
| tree | e0ba2c1f56f61b868bf746da5c4feabb25b800b2 /openembedded/packages/dropbear | |
| download | poky-4b46c1f6e891b1ddd5968536440b888661fade3e.tar.gz | |
Initial population
git-svn-id: https://svn.o-hand.com/repos/poky@1 311d38ba-8fff-0310-9ca6-ca027cbcb966
Diffstat (limited to 'openembedded/packages/dropbear')
6 files changed, 266 insertions, 0 deletions
diff --git a/openembedded/packages/dropbear/dropbear-0.46/allow-nopw.patch b/openembedded/packages/dropbear/dropbear-0.46/allow-nopw.patch new file mode 100644 index 0000000000..1a709b8da0 --- /dev/null +++ b/openembedded/packages/dropbear/dropbear-0.46/allow-nopw.patch | |||
| @@ -0,0 +1,37 @@ | |||
| 1 | diff -Nurd dropbear-0.45/svr-auth.c dropbear-0.45.patched/svr-auth.c | ||
| 2 | --- dropbear-0.45/svr-auth.c 2005-03-06 20:27:02.000000000 -0800 | ||
| 3 | +++ dropbear-0.45.patched/svr-auth.c 2005-03-08 15:22:43.998592744 -0800 | ||
| 4 | @@ -237,6 +237,7 @@ | ||
| 5 | } | ||
| 6 | |||
| 7 | /* check for an empty password */ | ||
| 8 | +#ifdef DISALLOW_EMPTY_PW | ||
| 9 | if (ses.authstate.pw->pw_passwd[0] == '\0') { | ||
| 10 | TRACE(("leave checkusername: empty pword")) | ||
| 11 | dropbear_log(LOG_WARNING, "user '%s' has blank password, rejected", | ||
| 12 | @@ -244,7 +245,7 @@ | ||
| 13 | send_msg_userauth_failure(0, 1); | ||
| 14 | return DROPBEAR_FAILURE; | ||
| 15 | } | ||
| 16 | - | ||
| 17 | +#endif | ||
| 18 | TRACE(("shell is %s", ses.authstate.pw->pw_shell)) | ||
| 19 | |||
| 20 | /* check that the shell is set */ | ||
| 21 | diff -Nurd dropbear-0.45/svr-authpasswd.c dropbear-0.45.patched/svr-authpasswd.c | ||
| 22 | --- dropbear-0.45/svr-authpasswd.c 2005-03-06 20:27:02.000000000 -0800 | ||
| 23 | +++ dropbear-0.45.patched/svr-authpasswd.c 2005-03-08 15:22:44.010591023 -0800 | ||
| 24 | @@ -64,9 +64,13 @@ | ||
| 25 | * since the shadow password may differ to that tested | ||
| 26 | * in auth.c */ | ||
| 27 | if (passwdcrypt[0] == '\0') { | ||
| 28 | +#ifdef DISALLOW_EMPTY_PASSWD | ||
| 29 | dropbear_log(LOG_WARNING, "user '%s' has blank password, rejected", | ||
| 30 | ses.authstate.printableuser); | ||
| 31 | send_msg_userauth_failure(0, 1); | ||
| 32 | +#else | ||
| 33 | + send_msg_userauth_success(); | ||
| 34 | +#endif | ||
| 35 | return; | ||
| 36 | } | ||
| 37 | |||
diff --git a/openembedded/packages/dropbear/dropbear-0.46/configure.patch b/openembedded/packages/dropbear/dropbear-0.46/configure.patch new file mode 100644 index 0000000000..9ae84b2604 --- /dev/null +++ b/openembedded/packages/dropbear/dropbear-0.46/configure.patch | |||
| @@ -0,0 +1,27 @@ | |||
| 1 | diff -Nurd dropbear-0.45/configure.in dropbear-0.45.patched/configure.in | ||
| 2 | --- dropbear-0.45/configure.in 2005-03-06 20:27:02.000000000 -0800 | ||
| 3 | +++ dropbear-0.45.patched/configure.in 2005-03-08 15:22:44.040586721 -0800 | ||
| 4 | @@ -161,15 +161,20 @@ | ||
| 5 | AC_MSG_RESULT(Not using openpty) | ||
| 6 | else | ||
| 7 | AC_MSG_RESULT(Using openpty if available) | ||
| 8 | - AC_SEARCH_LIBS(openpty, util, [AC_DEFINE(HAVE_OPENPTY,,Have openpty() function)]) | ||
| 9 | + AC_SEARCH_LIBS(openpty, util, [dropbear_cv_func_have_openpty=yes]) | ||
| 10 | fi | ||
| 11 | ], | ||
| 12 | [ | ||
| 13 | AC_MSG_RESULT(Using openpty if available) | ||
| 14 | - AC_SEARCH_LIBS(openpty, util, [AC_DEFINE(HAVE_OPENPTY)]) | ||
| 15 | + AC_SEARCH_LIBS(openpty, util, [dropbear_cv_func_have_openpty=yes]) | ||
| 16 | ] | ||
| 17 | ) | ||
| 18 | - | ||
| 19 | + | ||
| 20 | +if test "x$dropbear_cv_func_have_openpty" = "xyes"; then | ||
| 21 | + AC_DEFINE(HAVE_OPENPTY,,Have openpty() function) | ||
| 22 | + no_ptc_check=yes | ||
| 23 | + no_ptmx_check=yes | ||
| 24 | +fi | ||
| 25 | |||
| 26 | AC_ARG_ENABLE(syslog, | ||
| 27 | [ --disable-syslog Don't include syslog support], | ||
diff --git a/openembedded/packages/dropbear/dropbear-0.46/fix-2kb-keys.patch b/openembedded/packages/dropbear/dropbear-0.46/fix-2kb-keys.patch new file mode 100644 index 0000000000..ba2b19d44a --- /dev/null +++ b/openembedded/packages/dropbear/dropbear-0.46/fix-2kb-keys.patch | |||
| @@ -0,0 +1,11 @@ | |||
| 1 | diff -Nurd dropbear-0.45/kex.h dropbear-0.45.patched/kex.h | ||
| 2 | --- dropbear-0.45/kex.h 2005-03-06 20:27:02.000000000 -0800 | ||
| 3 | +++ dropbear-0.45.patched/kex.h 2005-03-08 15:22:44.064583279 -0800 | ||
| 4 | @@ -64,6 +64,6 @@ | ||
| 5 | |||
| 6 | }; | ||
| 7 | |||
| 8 | -#define MAX_KEXHASHBUF 2000 | ||
| 9 | +#define MAX_KEXHASHBUF 3000 | ||
| 10 | |||
| 11 | #endif /* _KEX_H_ */ | ||
diff --git a/openembedded/packages/dropbear/dropbear-0.46/urandom-xauth-changes-to-options.h.patch b/openembedded/packages/dropbear/dropbear-0.46/urandom-xauth-changes-to-options.h.patch new file mode 100644 index 0000000000..e2b1dd5da5 --- /dev/null +++ b/openembedded/packages/dropbear/dropbear-0.46/urandom-xauth-changes-to-options.h.patch | |||
| @@ -0,0 +1,21 @@ | |||
| 1 | diff -Nurd dropbear-0.45/options.h dropbear-0.45.patched/options.h | ||
| 2 | --- dropbear-0.45/options.h 2005-03-06 20:27:02.000000000 -0800 | ||
| 3 | +++ dropbear-0.45.patched/options.h 2005-03-08 15:25:09.368742090 -0800 | ||
| 4 | @@ -143,7 +143,7 @@ | ||
| 5 | * however significantly reduce the security of your ssh connections | ||
| 6 | * if the PRNG state becomes guessable - make sure you know what you are | ||
| 7 | * doing if you change this. */ | ||
| 8 | -#define DROPBEAR_RANDOM_DEV "/dev/random" | ||
| 9 | +#define DROPBEAR_RANDOM_DEV "/dev/urandom" | ||
| 10 | |||
| 11 | /* prngd must be manually set up to produce output */ | ||
| 12 | /*#define DROPBEAR_PRNGD_SOCKET "/var/run/dropbear-rng"*/ | ||
| 13 | @@ -167,7 +167,7 @@ | ||
| 14 | /* The command to invoke for xauth when using X11 forwarding. | ||
| 15 | * "-q" for quiet */ | ||
| 16 | #ifndef XAUTH_COMMAND | ||
| 17 | -#define XAUTH_COMMAND "/usr/X11R6/bin/xauth -q" | ||
| 18 | +#define XAUTH_COMMAND "xauth -q" | ||
| 19 | #endif | ||
| 20 | |||
| 21 | /* if you want to enable running an sftp server (such as the one included with | ||
diff --git a/openembedded/packages/dropbear/dropbear/init b/openembedded/packages/dropbear/dropbear/init new file mode 100755 index 0000000000..d019bdb4ba --- /dev/null +++ b/openembedded/packages/dropbear/dropbear/init | |||
| @@ -0,0 +1,98 @@ | |||
| 1 | #!/bin/sh | ||
| 2 | # | ||
| 3 | # Do not configure this file. Edit /etc/default/dropbear instead! | ||
| 4 | # | ||
| 5 | |||
| 6 | PATH=/usr/local/sbin:/usr/local/bin:/sbin:/bin:/usr/sbin:/usr/bin | ||
| 7 | DAEMON=/usr/sbin/dropbear | ||
| 8 | NAME=dropbear | ||
| 9 | DESC="Dropbear SSH server" | ||
| 10 | |||
| 11 | DROPBEAR_PORT=22 | ||
| 12 | DROPBEAR_EXTRA_ARGS= | ||
| 13 | NO_START=0 | ||
| 14 | |||
| 15 | set -e | ||
| 16 | |||
| 17 | test ! -r /etc/default/dropbear || . /etc/default/dropbear | ||
| 18 | test "$NO_START" = "0" || exit 0 | ||
| 19 | test -x "$DAEMON" || exit 0 | ||
| 20 | test ! -h /var/service/dropbear || exit 0 | ||
| 21 | |||
| 22 | readonly_rootfs=0 | ||
| 23 | for flag in `awk '{ if ($2 == "/") { split($4,FLAGS,",") } }; END { for (f in FLAGS) print FLAGS[f] }' </proc/mounts`; do | ||
| 24 | case $flag in | ||
| 25 | ro) | ||
| 26 | readonly_rootfs=1 | ||
| 27 | ;; | ||
| 28 | esac | ||
| 29 | done | ||
| 30 | |||
| 31 | if [ $readonly_rootfs = "1" ]; then | ||
| 32 | mkdir -p /var/lib/dropbear | ||
| 33 | DROPBEAR_RSAKEY_DEFAULT="/var/lib/dropbear/dropbear_rsa_host_key" | ||
| 34 | DROPBEAR_DSSKEY_DEFAULT="/var/lib/dropbear/dropbear_dss_host_key" | ||
| 35 | else | ||
| 36 | DROPBEAR_RSAKEY_DEFAULT="/etc/dropbear/dropbear_rsa_host_key" | ||
| 37 | DROPBEAR_DSSKEY_DEFAULT="/etc/dropbear/dropbear_dss_host_key" | ||
| 38 | fi | ||
| 39 | |||
| 40 | test -z "$DROPBEAR_BANNER" || \ | ||
| 41 | DROPBEAR_EXTRA_ARGS="$DROPBEAR_EXTRA_ARGS -b $DROPBEAR_BANNER" | ||
| 42 | test -n "$DROPBEAR_RSAKEY" || \ | ||
| 43 | DROPBEAR_RSAKEY=$DROPBEAR_RSAKEY_DEFAULT | ||
| 44 | test -n "$DROPBEAR_DSSKEY" || \ | ||
| 45 | DROPBEAR_DSSKEY=$DROPBEAR_DSSKEY_DEFAULT | ||
| 46 | test -n "$DROPBEAR_KEYTYPES" || \ | ||
| 47 | DROPBEAR_KEYTYPES="rsa" | ||
| 48 | |||
| 49 | gen_keys() { | ||
| 50 | for t in $DROPBEAR_KEYTYPES; do | ||
| 51 | case $t in | ||
| 52 | rsa) | ||
| 53 | test -f $DROPBEAR_RSAKEY || dropbearkey -t rsa -f $DROPBEAR_RSAKEY | ||
| 54 | ;; | ||
| 55 | dsa) | ||
| 56 | test -f $DROPBEAR_DSSKEY || dropbearkey -t dss -f $DROPBEAR_DSSKEY | ||
| 57 | ;; | ||
| 58 | esac | ||
| 59 | done | ||
| 60 | } | ||
| 61 | |||
| 62 | case "$1" in | ||
| 63 | start) | ||
| 64 | echo -n "Starting $DESC: " | ||
| 65 | gen_keys | ||
| 66 | KEY_ARGS="" | ||
| 67 | test -f $DROPBEAR_DSSKEY && KEY_ARGS="$KEY_ARGS -d $DROPBEAR_DSSKEY" | ||
| 68 | test -f $DROPBEAR_RSAKEY && KEY_ARGS="$KEY_ARGS -r $DROPBEAR_RSAKEY" | ||
| 69 | start-stop-daemon -S \ | ||
| 70 | -x "$DAEMON" -- $KEY_ARGS \ | ||
| 71 | -p "$DROPBEAR_PORT" $DROPBEAR_EXTRA_ARGS | ||
| 72 | echo "$NAME." | ||
| 73 | ;; | ||
| 74 | stop) | ||
| 75 | echo -n "Stopping $DESC: " | ||
| 76 | start-stop-daemon -K -x "$DAEMON" | ||
| 77 | echo "$NAME." | ||
| 78 | ;; | ||
| 79 | restart|force-reload) | ||
| 80 | echo -n "Restarting $DESC: " | ||
| 81 | start-stop-daemon -K -x "$DAEMON" | ||
| 82 | sleep 1 | ||
| 83 | KEY_ARGS="" | ||
| 84 | test -f $DROPBEAR_DSSKEY && KEY_ARGS="$KEY_ARGS -d $DROPBEAR_DSSKEY" | ||
| 85 | test -f $DROPBEAR_RSAKEY && KEY_ARGS="$KEY_ARGS -r $DROPBEAR_RSAKEY" | ||
| 86 | start-stop-daemon -S \ | ||
| 87 | -x "$DAEMON" -- $KEY_ARGS \ | ||
| 88 | -p "$DROPBEAR_PORT" $DROPBEAR_EXTRA_ARGS | ||
| 89 | echo "$NAME." | ||
| 90 | ;; | ||
| 91 | *) | ||
| 92 | N=/etc/init.d/$NAME | ||
| 93 | echo "Usage: $N {start|stop|restart|force-reload}" >&2 | ||
| 94 | exit 1 | ||
| 95 | ;; | ||
| 96 | esac | ||
| 97 | |||
| 98 | exit 0 | ||
diff --git a/openembedded/packages/dropbear/dropbear_0.46.bb b/openembedded/packages/dropbear/dropbear_0.46.bb new file mode 100644 index 0000000000..80373e3a1b --- /dev/null +++ b/openembedded/packages/dropbear/dropbear_0.46.bb | |||
| @@ -0,0 +1,72 @@ | |||
| 1 | DESCRIPTION = "Dropbear is a lightweight SSH and SCP Implementation" | ||
| 2 | HOMEPAGE = "http://matt.ucc.asn.au/dropbear/dropbear.html" | ||
| 3 | SECTION = "console/network" | ||
| 4 | LICENSE = "MIT" | ||
| 5 | DEPENDS = "zlib" | ||
| 6 | PR = "r3" | ||
| 7 | PROVIDES = "ssh sshd" | ||
| 8 | |||
| 9 | SRC_URI = "http://matt.ucc.asn.au/dropbear/releases/dropbear-${PV}.tar.bz2 \ | ||
| 10 | file://urandom-xauth-changes-to-options.h.patch;patch=1 \ | ||
| 11 | file://configure.patch;patch=1 \ | ||
| 12 | file://allow-nopw.patch \ | ||
| 13 | file://fix-2kb-keys.patch;patch=1 \ | ||
| 14 | file://init" | ||
| 15 | |||
| 16 | inherit autotools update-rc.d | ||
| 17 | |||
| 18 | INITSCRIPT_NAME = "dropbear" | ||
| 19 | INITSCRIPT_PARAMS = "defaults 10" | ||
| 20 | |||
| 21 | CFLAGS_prepend = "-I. " | ||
| 22 | LD = "${CC}" | ||
| 23 | |||
| 24 | SBINCOMMANDS = "dropbear dropbearkey dropbearconvert" | ||
| 25 | BINCOMMANDS = "dbclient ssh scp" | ||
| 26 | EXTRA_OEMAKE = 'MULTI=1 SCPPROGRESS=1 PROGRAMS="${SBINCOMMANDS} ${BINCOMMANDS}"' | ||
| 27 | |||
| 28 | do_configure_prepend() { | ||
| 29 | if [ "${DISTRO_TYPE}" == "debug" ]; then | ||
| 30 | patch -p1 < ${WORKDIR}/allow-nopw.patch | ||
| 31 | fi | ||
| 32 | } | ||
| 33 | |||
| 34 | do_install() { | ||
| 35 | install -d ${D}${sysconfdir} \ | ||
| 36 | ${D}${sysconfdir}/init.d \ | ||
| 37 | ${D}${sysconfdir}/default \ | ||
| 38 | ${D}${sysconfdir}/dropbear \ | ||
| 39 | ${D}${bindir} \ | ||
| 40 | ${D}${sbindir} \ | ||
| 41 | ${D}${localstatedir} | ||
| 42 | |||
| 43 | install -m 0755 dropbearmulti ${D}${sbindir}/ | ||
| 44 | ln -s ${sbindir}/dropbearmulti ${D}${bindir}/dbclient | ||
| 45 | |||
| 46 | for i in ${SBINCOMMANDS} | ||
| 47 | do | ||
| 48 | ln -s ./dropbearmulti ${D}${sbindir}/$i | ||
| 49 | done | ||
| 50 | cat ${WORKDIR}/init | sed -e 's,/etc,${sysconfdir},g' \ | ||
| 51 | -e 's,/usr/sbin,${sbindir},g' \ | ||
| 52 | -e 's,/var,${localstatedir},g' \ | ||
| 53 | -e 's,/usr/bin,${bindir},g' \ | ||
| 54 | -e 's,/usr,${prefix},g' > ${D}${sysconfdir}/init.d/dropbear | ||
| 55 | chmod 755 ${D}${sysconfdir}/init.d/dropbear | ||
| 56 | } | ||
| 57 | |||
| 58 | pkg_postinst () { | ||
| 59 | update-alternatives --install ${bindir}/scp scp ${sbindir}/dropbearmulti 20 | ||
| 60 | update-alternatives --install ${bindir}/ssh ssh ${sbindir}/dropbearmulti 20 | ||
| 61 | } | ||
| 62 | |||
| 63 | pkg_postrm_append () { | ||
| 64 | if [ -f "${sysconfdir}/dropbear/dropbear_rsa_host_key" ]; then | ||
| 65 | rm ${sysconfdir}/dropbear/dropbear_rsa_host_key | ||
| 66 | fi | ||
| 67 | if [ -f "${sysconfdir}/dropbear/dropbear_dss_host_key" ]; then | ||
| 68 | rm ${sysconfdir}/dropbear/dropbear_dss_host_key | ||
| 69 | fi | ||
| 70 | update-alternatives --remove ssh ${bindir}/dropbearmulti | ||
| 71 | update-alternatives --remove scp ${bindir}/dropbearmulti | ||
| 72 | } | ||
