From nobody Wed Nov 01 12:08:48 2023 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4SL5Q83gCrz50M6l; Wed, 1 Nov 2023 12:08:48 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4SL5Q8392Qz4CYW; Wed, 1 Nov 2023 12:08:48 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1698840528; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=YkwHPSvmKN496CEmrX8+/2yR49Wgk0Wm/O1og2KySrk=; b=Et1zqHKxoOhKjfI9ET1dpIJseRGUFu6xZJpkIMe1paKhrkQC80fsACaoreF1unmuLq84t2 +Lz9wieCNkCjF4FgtG+hrulo85lTEtfbLenkm8ldvBbjyKkRYK9CNc8Xw//lrCz67paZ8g XnBBhXmWVW646KPC3rRRTUgDPsi3YN9LaCsER8RCrgfEqjpVAh+iQpORT3Na3yMHwjcEt5 t/bjV/90MBn3NojJzcKSdv3Y5/YgbtynlaA4Mgni2DRJJ1q8GzjLGeR69Gf54hV2jLGnBM r2YgarQEAkPHLjFw2eM63Kr0dfmq0r8JfEJpNdDyZU6qCW1xFvEVk4weck/5Dw== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1698840528; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=YkwHPSvmKN496CEmrX8+/2yR49Wgk0Wm/O1og2KySrk=; b=l6Yv9Co77RBcyBam8Otnfj02tSj5H+0LBZPHNIGUlc1OU46gtVx9V/OE1BERWZdKXYQilr LFXTMNYHejNnYd1OXOc8+c38TBlIKS7fShlMnK7EPr8Ax+vl9CWKNepsxOG1IwzS0E75+U WbahJs7Y7gNViHg17rSTIyOhmMbAkz4E/USltHpCp+JG7J8yd4fRtN9qx3MaiGo/lpezhY zxNshcGCXUT0zWwsH8SiljxWxKgksVYSmantEVXr3Cy9TId5vM3sWyy9WussUk6TqbNG49 3WnbnxUa4X5Uqd5JbEwGSCnCQG6xgK9pqPNL+N16YcdfunKxdgUX9vgVIqhNng== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1698840528; a=rsa-sha256; cv=none; b=F3WSlBmOnR5IsnHeXteAiIGSoi+vJNKxRarKChfirHOlTBMAI2m9uGw9GEGDTdyEVkcUAI cPTDhlH+aXo9Yf47QZU6QwUam2NRcXP1D5t9JZe1Or/+Orde1lYkM2RpTGAdnooVlbBcv+ R0B60Pc7a7Nzdyo3SlFiOT95d72buNlCGuRd1gCeOmvlKdkbCJ0sucYKavPK8J5VxQWY6r nVgQWx4Y8uvxXTSeu1672iK8qor56WS/b1pOFLjdje+Ws7wnjAISbM0utd5yjSOEOMDBmQ 1t/zYjh/4f0Ub8b8eUFJn5wnDZIE1DY2/OdI4/M+UsojSZzeRJT8LXK3Ps5l8A== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4SL5Q82Gb4zltF; Wed, 1 Nov 2023 12:08:48 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 3A1C8mrv067065; Wed, 1 Nov 2023 12:08:48 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 3A1C8mtn067062; Wed, 1 Nov 2023 12:08:48 GMT (envelope-from git) Date: Wed, 1 Nov 2023 12:08:48 GMT Message-Id: <202311011208.3A1C8mtn067062@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-branches@FreeBSD.org From: Renato Botelho Subject: git: 005d8c15b802 - 2023Q4 - security/sudo: Fix build with openssl from ports List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-all@freebsd.org X-BeenThere: dev-commits-ports-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: garga X-Git-Repository: ports X-Git-Refname: refs/heads/2023Q4 X-Git-Reftype: branch X-Git-Commit: 005d8c15b8027330dd27d66caaf97dc8a85f034a Auto-Submitted: auto-generated The branch 2023Q4 has been updated by garga: URL: https://cgit.FreeBSD.org/ports/commit/?id=005d8c15b8027330dd27d66caaf97dc8a85f034a commit 005d8c15b8027330dd27d66caaf97dc8a85f034a Author: Renato Botelho AuthorDate: 2023-10-31 22:07:56 +0000 Commit: Renato Botelho CommitDate: 2023-11-01 12:08:44 +0000 security/sudo: Fix build with openssl from ports Since SSL support is being changed and sudo can be built without it, add a new SSL option, on by default. When option is enabled, use --enable-openssl=${OPENSSLBASE} to make sure it consumes desired OpenSSL implementation. Also add pkgconfig dependency because configure script rely on it to detect openssl details. PR: 274753 Reported by: tburns@hrsd.com Sponsored by: Rubicon Communications, LLC ("Netgate") (cherry picked from commit dbc4e4daf752173acb868fc595ae9fa42f972aef) --- security/sudo/Makefile | 11 ++++++++--- 1 file changed, 8 insertions(+), 3 deletions(-) diff --git a/security/sudo/Makefile b/security/sudo/Makefile index 35419c29ad14..c3267fce9a29 100644 --- a/security/sudo/Makefile +++ b/security/sudo/Makefile @@ -1,5 +1,6 @@ PORTNAME= sudo PORTVERSION= 1.9.14p3 +PORTREVISION= 1 CATEGORIES= security MASTER_SITES= SUDO @@ -12,7 +13,7 @@ LICENSE_NAME= Sudo license LICENSE_FILE= ${WRKSRC}/LICENSE.md LICENSE_PERMS= dist-mirror dist-sell pkg-mirror pkg-sell auto-accept -USES= cpe libtool +USES= cpe libtool pkgconfig CPE_VENDOR= todd_miller USE_LDCONFIG= yes GNU_CONFIGURE= yes @@ -29,8 +30,8 @@ LDFLAGS+= -lgcc PORTSCOUT= ignore:1 OPTIONS_DEFINE= AUDIT DISABLE_AUTH DISABLE_ROOT_SUDO DOCS EXAMPLES \ - INSULTS LDAP NLS NOARGS_SHELL OPIE PAM PYTHON -OPTIONS_DEFAULT= AUDIT PAM + INSULTS LDAP NLS NOARGS_SHELL OPIE PAM PYTHON SSL +OPTIONS_DEFAULT= AUDIT PAM SSL OPTIONS_RADIO= KERBEROS SSSD OPTIONS_RADIO_KERBEROS= GSSAPI_BASE GSSAPI_HEIMDAL GSSAPI_MIT OPTIONS_RADIO_SSSD= SSSD SSSD_DEVEL @@ -44,6 +45,7 @@ KERBEROS_DESC= Enable Kerberos 5 authentication (no PAM support) NOARGS_SHELL_DESC= Run a shell if no arguments are given OPIE_DESC= Enable one-time passwords (no PAM support) PYTHON_DESC= Enable python plugin support +SSL_DESC= Use OpenSSL TLS and SHA2 functions SSSD_DESC= Enable SSSD backend support. SSSD_DEVEL_DESC= Enable SSSD-devel backend support. @@ -81,6 +83,9 @@ PAM_CONFIGURE_ON= --with-pam PYTHON_USES= python PYTHON_CONFIGURE_ENABLE=python +SSL_USES= ssl +SSL_CONFIGURE_ON= --enable-openssl=${OPENSSLBASE} + SSSD_RUN_DEPENDS= sssd:security/sssd SSSD_CONFIGURE_ON= --with-sssd