aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorStuart Shelton <stuart@shelton.me>2014-01-27 14:02:25 +0000
committerStuart Shelton <stuart@shelton.me>2014-01-27 14:02:25 +0000
commit384fd1efbd09d3664fe24bc16c884e58f03a7714 (patch)
treedecbc04cd97c3c3387c328fd2ec16a99b0136f93 /net-firewall
parentUpdate Manifest (diff)
downloadsrcshelton-384fd1efbd09d3664fe24bc16c884e58f03a7714.tar.gz
srcshelton-384fd1efbd09d3664fe24bc16c884e58f03a7714.tar.bz2
srcshelton-384fd1efbd09d3664fe24bc16c884e58f03a7714.zip
Add net-firewall/conntrack-tools-1.4.2 with state files located beneath /var/run
Diffstat (limited to 'net-firewall')
-rw-r--r--net-firewall/conntrack-tools/Manifest6
-rw-r--r--net-firewall/conntrack-tools/conntrack-tools-1.4.2.ebuild80
-rw-r--r--net-firewall/conntrack-tools/files/conntrackd.confd-r214
-rw-r--r--net-firewall/conntrack-tools/files/conntrackd.initd-r377
4 files changed, 177 insertions, 0 deletions
diff --git a/net-firewall/conntrack-tools/Manifest b/net-firewall/conntrack-tools/Manifest
new file mode 100644
index 00000000..72f267eb
--- /dev/null
+++ b/net-firewall/conntrack-tools/Manifest
@@ -0,0 +1,6 @@
+AUX conntrackd.confd-r2 441 SHA256 f125578f9f4a79c8202beb15e55a87a59030e3c7d96c7a17ecbaf66e7801e687 SHA512 8ebce88006c750dc899a6a104f73c8a180f8909ffb1af4fc2feb4586f177ea59206f1fb47a9cc8fb6d47d187e4cd5fb7310f90a29a57674a539e5e7b770221a0 WHIRLPOOL c80790b66b24dca7be678141a68f1a880b8e6991bf2667d2a95047d5ee98cd1558cf9c47abff909c6fa0461f67a17c2399ed29b678a1f0210945329bd6a7d362
+AUX conntrackd.confd-r2.dist 441 SHA256 355f91c830f82343a058060e5dd060f72a940471f43c970d46a5ea63c40987c0 SHA512 3d72d56d44094593f6ff1eac421fe6a4f0d20450ce698c175adf1b18a859b1a24c7120fa60431b2a00da62ae3749c4619106c8e93fb8fc763ceefc26a82d2ed2 WHIRLPOOL d583647cca267234ef942a27159203317391c990b997a139c9251b43788fbcc1284d5e6cf8f15570dc4803d7dae7283a8bc6d4c9ffc76a4710b0de784c3a69ad
+AUX conntrackd.initd-r3 2239 SHA256 163057f137040111394aaeaecb325ed09d8d94088dcfbbd4f0d8e7ae2b102b1f SHA512 8e84b2aa9dbbeaf1434ba7f90086b1cf6ddaa2e09f296a78f514ad17bcdc7a480294cd80bf0bb54374bb5e898bb30e752ceb659c6a4a03077077813c874a7098 WHIRLPOOL f2cc1aab46532f3e2ff08f20d128a45e3718368fe8511450360f3ba0c4ff7ee167e66ef6fbe95ae868eb6238b37bb75ee9664541d46277f06b8948d194bf19df
+AUX conntrackd.initd-r3.dist 2239 SHA256 8a3990cfbf0da0ceae9ea1584f6c0e74f81fb395b35dd80bf413f43845610f8b SHA512 5067d08ca8a1c8da805699a037d55bba1df57282572d8041939428d30a6ffdc321b579472072ffd919cd29a6c465f61a0287f17b90c0b626e9e60a62d4e2ffae WHIRLPOOL f57bba81a8d4735dd9bde7d0b05f8048b41bd886dd5a93ba0318e8ee9b2ce3be2c70526b1a8af621e61fdab0e4b11e8df4da86b87ec375a831485cd25378e0a6
+DIST conntrack-tools-1.4.2.tar.bz2 472074 SHA256 e5c423dc077f9ca8767eaa6cf40446943905711c6a8fe27f9cc1977d4d6aa11e SHA512 1fed742593caf8bbac96a58df8f7e806d1c0f1dfea8fc601d65aa89b4243b1022949a2bf03ab0ca25994a13e50b3b1ee43a31827e0dc4da1399801ddac623d56 WHIRLPOOL 7405e8b812c98c06bdcdbfea983178f5830001cf247b9a63aac6e19e2497b1bf2bdf8c7c6445dad60f5463eff6cc0ea58d14eca2990b2b3b3f54032daca85572
+EBUILD conntrack-tools-1.4.2.ebuild 1935 SHA256 8f65f629f2614a0a43497f52c01b3c0a363046cf3b7a951a332180b0fa9e3473 SHA512 e884c7a3c11d818e4c48a5193e6abdf8a42e43f2b7affe9ba6e3331611a098e7477ffdbd426ca48db24a6663062914952f224a6c8c2943cc601b264e2457e037 WHIRLPOOL d13f6b8c2dae026494d73cc60c2c3b53be23d71c9c25121f7ebed94d94385ab9d7ffb797b699703fd3fd6e3dd9a41612875bf0cf4b9a11db3c0a08b53da5c139
diff --git a/net-firewall/conntrack-tools/conntrack-tools-1.4.2.ebuild b/net-firewall/conntrack-tools/conntrack-tools-1.4.2.ebuild
new file mode 100644
index 00000000..cefd35d8
--- /dev/null
+++ b/net-firewall/conntrack-tools/conntrack-tools-1.4.2.ebuild
@@ -0,0 +1,80 @@
+# Copyright 1999-2013 Gentoo Foundation
+# Distributed under the terms of the GNU General Public License v2
+# $Header: /var/cvsroot/gentoo-x86/net-firewall/conntrack-tools/conntrack-tools-1.4.2.ebuild,v 1.4 2013/10/02 02:51:01 jer Exp $
+
+EAPI=5
+inherit autotools eutils linux-info
+
+DESCRIPTION="Connection tracking userspace tools"
+HOMEPAGE="http://conntrack-tools.netfilter.org"
+SRC_URI="http://www.netfilter.org/projects/conntrack-tools/files/${P}.tar.bz2"
+
+LICENSE="GPL-2"
+SLOT="0"
+KEYWORDS="amd64 hppa x86"
+IUSE="doc"
+
+RDEPEND="
+ >=net-libs/libmnl-1.0.3
+ >=net-libs/libnetfilter_conntrack-1.0.4
+ >=net-libs/libnetfilter_cthelper-1.0.0
+ >=net-libs/libnetfilter_cttimeout-1.0.0
+ >=net-libs/libnetfilter_queue-1.0.2
+ >=net-libs/libnfnetlink-1.0.1
+"
+DEPEND="${RDEPEND}
+ doc? (
+ app-text/docbook-xml-dtd:4.1.2
+ app-text/xmlto
+ )
+ virtual/pkgconfig
+ sys-devel/bison
+ sys-devel/flex"
+
+pkg_setup() {
+ linux-info_pkg_setup
+
+ if kernel_is lt 2 6 18 ; then
+ die "${PN} requires at least 2.6.18 kernel version"
+ fi
+
+ #netfilter core team has changed some option names with kernel 2.6.20
+ if kernel_is lt 2 6 20 ; then
+ CONFIG_CHECK="~IP_NF_CONNTRACK_NETLINK"
+ else
+ CONFIG_CHECK="~NF_CT_NETLINK"
+ fi
+ CONFIG_CHECK="${CONFIG_CHECK} ~NF_CONNTRACK
+ ~NETFILTER_NETLINK ~NF_CONNTRACK_EVENTS"
+
+ check_extra_config
+
+ linux_config_exists || \
+ linux_chkconfig_present "NF_CONNTRACK_IPV4" || \
+ linux_chkconfig_present "NF_CONNTRACK_IPV6" || \
+ ewarn "CONFIG_NF_CONNTRACK_IPV4 or CONFIG_NF_CONNTRACK_IPV6 " \
+ "are not set when one at least should be."
+}
+
+src_prepare() {
+ epatch_user
+ eautoreconf
+}
+
+src_compile() {
+ default
+ use doc && emake -C doc/manual
+}
+
+src_install() {
+ default
+
+ newinitd "${FILESDIR}/conntrackd.initd-r3" conntrackd
+ newconfd "${FILESDIR}/conntrackd.confd-r2" conntrackd
+
+ insinto /etc/conntrackd
+ doins doc/stats/conntrackd.conf
+
+ dodoc -r doc/sync doc/stats AUTHORS TODO
+ use doc && dohtml doc/manual/${PN}.html
+}
diff --git a/net-firewall/conntrack-tools/files/conntrackd.confd-r2 b/net-firewall/conntrack-tools/files/conntrackd.confd-r2
new file mode 100644
index 00000000..0f3efbbf
--- /dev/null
+++ b/net-firewall/conntrack-tools/files/conntrackd.confd-r2
@@ -0,0 +1,14 @@
+# conntrackd config file
+# default: /etc/conntrackd/conntrackd.conf
+#CONNTRACKD_CFG=/etc/conntrackd/conntrackd.conf
+
+# conntrackd lockfile (must match the "LockFile" entry
+# from the "General" section in the config file)
+# default: /var/lock/conntrack.lock
+#CONNTRACKD_LOCK=/var/lock/conntrack.lock
+
+# extra options for conntrackd
+#CONNTRACKD_OPTS="" # you must NOT use -C here!
+
+# depend on a specific network interface
+#rc_need="net.eth1"
diff --git a/net-firewall/conntrack-tools/files/conntrackd.initd-r3 b/net-firewall/conntrack-tools/files/conntrackd.initd-r3
new file mode 100644
index 00000000..5ca45f13
--- /dev/null
+++ b/net-firewall/conntrack-tools/files/conntrackd.initd-r3
@@ -0,0 +1,77 @@
+#!/sbin/runscript
+# Copyright 1999-2013 Gentoo Foundation
+# Distributed under the terms of the GNU General Public License v2
+
+CONNTRACKD_BIN="/usr/sbin/conntrackd"
+CONNTRACKD_CFG=${CONNTRACKD_CFG:-/etc/conntrackd/conntrackd.conf}
+CONNTRACKD_LOCK=${CONNTRACKD_LOCK:-/var/lock/conntrack.lock}
+
+depend() {
+ use logger
+ need net
+}
+
+checkconfig() {
+ # check for netfilter conntrack kernel support
+ local nf_ct_available=0
+ for k in net.netfilter.nf_conntrack_max \
+ net.ipv4.netfilter.ip_conntrack_max \
+ net.nf_conntrack_max; do
+ if sysctl -e -n ${k} &>/dev/null; then
+ nf_ct_available=1 # sysctl key found
+ break
+ fi
+ done
+ if [ ${nf_ct_available} -eq 0 ]; then
+ eerror
+ eerror "Your kernel is missing netfilter conntrack support!"
+ eerror "Make sure your kernel was compiled with netfilter conntrack support."
+ eerror
+ eerror "If it was compiled as a module you need to ensure the module is being"
+ eerror "loaded before starting conntrackd."
+ eerror "Either add an entry to /etc/modules.autoload/[...] (for baselayout-1)"
+ eerror "or /etc/conf.d/modules (for baselayout-2/OpenRC) or load the module"
+ eerror "by hand like this, depending on your kernel version:"
+ eerror
+ eerror " modprobe nf_conntrack # (for newer kernels)"
+ eerror " modprobe ip_conntrack # (for older kernels)"
+ eerror
+ return 1
+ fi
+ # check for config file
+ if [ ! -e "${CONNTRACKD_CFG}" ]; then
+ eerror
+ eerror "The conntrackd config file (${CONNTRACKD_CFG})"
+ eerror "is missing!"
+ eerror
+ return 1
+ fi
+ # check for leftover lockfile
+ if [ -f "${CONNTRACKD_LOCK}" ]; then
+ ewarn
+ ewarn "The conntrackd lockfile (${CONNTRACKD_LOCK})"
+ ewarn "exists although the service is not marked as started."
+ ewarn "Will remove the lockfile and start the service in 10s"
+ ewarn "if not interrupted..."
+ ewarn
+ sleep 10
+ if ! rm -f "${CONNTRACKD_LOCK}"; then
+ eerror "Failed to remove the conntrackd lockfile (${CONNTRACKD_LOCK})"
+ return 1
+ fi
+ fi
+}
+
+start() {
+ checkconfig || return 1
+ ebegin "Starting conntrackd"
+ start-stop-daemon --start --exec "${CONNTRACKD_BIN}" \
+ -- -d -C "${CONNTRACKD_CFG}" ${CONNTRACKD_OPTS}
+ eend $?
+}
+
+stop() {
+ ebegin "Stopping conntrackd"
+ start-stop-daemon --stop --exec "${CONNTRACKD_BIN}"
+ eend $?
+}