LINUX.ORG.RU

История изменений

Исправление nexfwall, (текущая версия) :

Пришлось откатить OpenSSL на прежнюю версию. Но! Спустя время прилетел апдейт из Evergreen с той же самой версией OpenSSL, и с ней - работает!

Потому что OBS. Как только в Evergreen обновили openssl, всё вокруг было поставлено на пересборку с новой openssl(всё, что от неё зависит).

К тому же, у этих двух пакетов разные патчи в поставке:

[nexfwall@VPCYB1S1R-OS00 ~]$ rpmdiff openssl-1.0.1p-71.1.src.rpm openssl-1.0.2g-278.1.src.rpm
S.5.....    URL
added       0001-Axe-builtin-printf-implementation-use-glibc-instead.patch
added       0001-libcrypto-Hide-library-private-symbols.patch
S.5.......T 0005-libssl-Hide-library-private-symbols.patch
added       README-FIPS.txt
added       README.SUSE
removed     README.SuSE
removed     VIA_padlock_support_on_64systems.patch
S.5.......T baselibs.conf
added       bsc936563_hack.patch
S.5.......T bug610223.patch
S.5.......T compression_methods_switch.patch
S.5.......T merge_from_0.9.8k.patch
S.5.......T openssl-1.0.0-c_rehash-compat.diff
added       openssl-1.0.1e-add-suse-default-cipher.patch
added       openssl-1.0.1e-add-test-suse-default-cipher-suite.patch
S.5.......T openssl-1.0.1e-truststore.diff
removed     openssl-1.0.1n-default-paths.patch
removed     openssl-1.0.1p.tar.gz
removed     openssl-1.0.1p.tar.gz.asc
added       openssl-1.0.2a-default-paths.patch
added       openssl-1.0.2a-fips-ctor.patch
added       openssl-1.0.2a-fips-ec.patch
added       openssl-1.0.2a-ipv6-apps.patch
added       openssl-1.0.2a-new-fips-reqs.patch
added       openssl-1.0.2a-padlock64.patch
added       openssl-1.0.2e-fips.patch
added       openssl-1.0.2g.tar.gz
added       openssl-1.0.2g.tar.gz.asc
removed     openssl-CVE-2015-1794.patch
removed     openssl-CVE-2015-1794_2.patch
removed     openssl-CVE-2015-3194.patch
removed     openssl-CVE-2015-3195.patch
removed     openssl-CVE-2015-3197.patch
removed     openssl-CVE-2016-0701.patch
removed     openssl-CVE-2016-0702.patch
removed     openssl-CVE-2016-0702_2.patch
removed     openssl-CVE-2016-0702_3.patch
removed     openssl-CVE-2016-0705.patch
removed     openssl-CVE-2016-0797.patch
removed     openssl-CVE-2016-0798.patch
removed     openssl-CVE-2016-0799.patch
removed     openssl-CVE-2016-0800.patch
added       openssl-fips-hidden.patch
S.5.......T openssl-fix-pod-syntax.diff
added       openssl-gcc-attributes.patch
added       openssl-missing_FIPS_ec_group_new_by_curve_name.patch
added       openssl-no-egd.patch
S.5.......T openssl-ocloexec.patch
S.5.......T openssl-pkgconfig.patch
S.5.......T openssl.changes
added       openssl.keyring
S.5.......T openssl.spec

Научись собирать под CentOS 5 используя Mock

[nexfwall@VPCYB1S1R-OS00 ~]$ ls /etc/mock/epel-5-*
/etc/mock/epel-5-i386.cfg  /etc/mock/epel-5-ppc.cfg  /etc/mock/epel-5-x86_64.cfg

Исходная версия nexfwall, :

Пришлось откатить OpenSSL на прежнюю версию. Но! Спустя время прилетел апдейт из Evergreen с той же самой версией OpenSSL, и с ней - работает!

Потому что OBS. Как только в Evergreen обновили openssl, всё вокруг было поставлено на пересборку с новой openssl(всё, что от неё зависит).

К тому же, у этих двух пакетов разные патчи в поставке:

[nexfwall@VPCYB1S1R-OS00 ~]$ rpmdiff openssl-1.0.1p-71.1.src.rpm openssl-1.0.2g-278.1.src.rpm
S.5.....    URL
added       0001-Axe-builtin-printf-implementation-use-glibc-instead.patch
added       0001-libcrypto-Hide-library-private-symbols.patch
S.5.......T 0005-libssl-Hide-library-private-symbols.patch
added       README-FIPS.txt
added       README.SUSE
removed     README.SuSE
removed     VIA_padlock_support_on_64systems.patch
S.5.......T baselibs.conf
added       bsc936563_hack.patch
S.5.......T bug610223.patch
S.5.......T compression_methods_switch.patch
S.5.......T merge_from_0.9.8k.patch
S.5.......T openssl-1.0.0-c_rehash-compat.diff
added       openssl-1.0.1e-add-suse-default-cipher.patch
added       openssl-1.0.1e-add-test-suse-default-cipher-suite.patch
S.5.......T openssl-1.0.1e-truststore.diff
removed     openssl-1.0.1n-default-paths.patch
removed     openssl-1.0.1p.tar.gz
removed     openssl-1.0.1p.tar.gz.asc
added       openssl-1.0.2a-default-paths.patch
added       openssl-1.0.2a-fips-ctor.patch
added       openssl-1.0.2a-fips-ec.patch
added       openssl-1.0.2a-ipv6-apps.patch
added       openssl-1.0.2a-new-fips-reqs.patch
added       openssl-1.0.2a-padlock64.patch
added       openssl-1.0.2e-fips.patch
added       openssl-1.0.2g.tar.gz
added       openssl-1.0.2g.tar.gz.asc
removed     openssl-CVE-2015-1794.patch
removed     openssl-CVE-2015-1794_2.patch
removed     openssl-CVE-2015-3194.patch
removed     openssl-CVE-2015-3195.patch
removed     openssl-CVE-2015-3197.patch
removed     openssl-CVE-2016-0701.patch
removed     openssl-CVE-2016-0702.patch
removed     openssl-CVE-2016-0702_2.patch
removed     openssl-CVE-2016-0702_3.patch
removed     openssl-CVE-2016-0705.patch
removed     openssl-CVE-2016-0797.patch
removed     openssl-CVE-2016-0798.patch
removed     openssl-CVE-2016-0799.patch
removed     openssl-CVE-2016-0800.patch
added       openssl-fips-hidden.patch
S.5.......T openssl-fix-pod-syntax.diff
added       openssl-gcc-attributes.patch
added       openssl-missing_FIPS_ec_group_new_by_curve_name.patch
added       openssl-no-egd.patch
S.5.......T openssl-ocloexec.patch
S.5.......T openssl-pkgconfig.patch
S.5.......T openssl.changes
added       openssl.keyring
S.5.......T openssl.spec