1 |
%define debug_package %{nil} |
2 |
|
3 |
%define version_major 4.5 |
4 |
%define version_minor 10.1 |
5 |
%define version %{version_major}.%{version_minor} |
6 |
%define version_main %{version} |
7 |
%define version_lite %{version} |
8 |
%define ipv6_ver %{version} |
9 |
%define ipv6_lite_ver %{version} |
10 |
%define sha1sums_ver %{version} |
11 |
%define ftp_ver %{version_major}.10 |
12 |
%define ftp_path ftp://ftp.shorewall.net/pub/shorewall/%{version_major}/%{name}-%{ftp_ver} |
13 |
|
14 |
%define name6 %{name}6 |
15 |
|
16 |
Summary: Iptables-based firewall for Linux systems |
17 |
Name: shorewall |
18 |
Version: %{version} |
19 |
Release: %mkrel 2 |
20 |
License: GPLv2+ and LGPLv2.1+ |
21 |
Group: System/Servers |
22 |
URL: http://www.shorewall.net/ |
23 |
Source0: %ftp_path/%{name}-%{version}.tar.bz2 |
24 |
Source1: %ftp_path/%{name}-lite-%{version_lite}.tar.bz2 |
25 |
Source2: %ftp_path/%{name}-docs-html-%{version}.tar.bz2 |
26 |
Source3: %ftp_path/%{name6}-%{ipv6_ver}.tar.bz2 |
27 |
Source4: %ftp_path/%{name6}-lite-%{ipv6_lite_ver}.tar.bz2 |
28 |
Source5: %ftp_path/%{sha1sums_ver}.sha1sums |
29 |
Source6: %ftp_path/%{name}-core-%{version}.tar.bz2 |
30 |
Patch4: %{name}-4.4.23-allow-netmask-0.patch |
31 |
Requires: iptables |
32 |
Requires: iproute2 |
33 |
Requires: shorewall-core |
34 |
Requires(post): rpm-helper |
35 |
Requires(preun): rpm-helper |
36 |
BuildConflicts: apt-common |
37 |
BuildArch: noarch |
38 |
|
39 |
%description |
40 |
The Shoreline Firewall, more commonly known as "Shorewall", is a Netfilter |
41 |
(iptables) based firewall that can be used on a dedicated firewall system, |
42 |
a multi-function gateway/ router/server or on a standalone GNU/Linux system. |
43 |
|
44 |
%package core |
45 |
Summary: Shorewall core libraries |
46 |
Group: System/Servers |
47 |
Requires(post): rpm-helper |
48 |
Requires(preun): rpm-helper |
49 |
|
50 |
%description core |
51 |
An IPv6 enabled and capable Shoreline Firewall. |
52 |
|
53 |
|
54 |
%package ipv6 |
55 |
Summary: IPv6 capable Shorewall |
56 |
Group: System/Servers |
57 |
Requires: %{name} = %{version}-%{release} |
58 |
Requires: iptables-ipv6 |
59 |
Requires: iproute2 |
60 |
Requires: shorewall-core |
61 |
Requires(post): rpm-helper |
62 |
Requires(preun): rpm-helper |
63 |
|
64 |
%description ipv6 |
65 |
An IPv6 enabled and capable Shoreline Firewall. |
66 |
|
67 |
%package ipv6-lite |
68 |
Summary: Lite version of ipv6 shorewall |
69 |
Group: System/Servers |
70 |
Requires: %{name}-ipv6 = %{version}-%{release} |
71 |
Requires: shorewall-core |
72 |
Requires(post): rpm-helper |
73 |
Requires(preun): rpm-helper |
74 |
|
75 |
%description ipv6-lite |
76 |
Shorewall IPv6 Lite is a companion product to Shorewall IPv6 that allows |
77 |
network administrators to centralize the configuration of Shorewall-based |
78 |
firewalls. |
79 |
|
80 |
%package lite |
81 |
Summary: Lite version of shorewall |
82 |
Group: System/Servers |
83 |
Requires: %{name} = %{version}-%{release} |
84 |
Requires: shorewall-core |
85 |
Requires(post): rpm-helper |
86 |
Requires(preun): rpm-helper |
87 |
|
88 |
%description lite |
89 |
Shorewall Lite is a companion product to Shorewall that allows network |
90 |
administrators to centralize the configuration of Shorewall-based firewalls. |
91 |
|
92 |
%package doc |
93 |
Summary: Firewall scripts |
94 |
Group: System/Servers |
95 |
|
96 |
%description doc |
97 |
The Shoreline Firewall, more commonly known as "Shorewall", is a Netfilter |
98 |
(iptables) based firewall that can be used on a dedicated firewall system, |
99 |
a multi-function gateway/ router/server or on a standalone GNU/Linux system. |
100 |
|
101 |
This package contains the docs. |
102 |
|
103 |
%prep |
104 |
%setup -q -c -n %{name}-%{version} |
105 |
%setup -q -T -D -a 1 |
106 |
%setup -q -T -D -a 2 |
107 |
%setup -q -T -D -a 3 |
108 |
%setup -q -T -D -a 4 |
109 |
%setup -q -T -D -a 6 |
110 |
|
111 |
pushd %{name}-%{version_main} |
112 |
%patch4 -p1 -b .allow-netmask-0 |
113 |
popd |
114 |
|
115 |
%build |
116 |
# (tpg) we do nothing here |
117 |
|
118 |
%install |
119 |
mkdir -p %{buildroot}%{_unitdir} |
120 |
|
121 |
export PREFIX=%{buildroot} |
122 |
export OWNER=`id -n -u` |
123 |
export GROUP=`id -n -g` |
124 |
|
125 |
export CONFDIR=%{_sysconfdir}/%{name} |
126 |
|
127 |
pushd %{name}-core-%{version_main} |
128 |
./configure.pl SYSTEMD=%{_unitdir} SBINDIR=%{_sbindir} LIBEXEC=%{_libexecdir} |
129 |
DESTDIR=%{buildroot} ./install.sh shorewallrc.redhat |
130 |
popd |
131 |
|
132 |
pushd %{name}-%{version_main} |
133 |
# (blino) enable startup (new setting as of 2.1.3) |
134 |
perl -pi -e 's/STARTUP_ENABLED=.*/STARTUP_ENABLED=Yes/' configfiles/%{name}.conf |
135 |
|
136 |
# Keep synced with net.ipv4.ip_forward var in /etc/sysctl.conf |
137 |
perl -pi -e 's/IP_FORWARDING=.*/IP_FORWARDING=Keep/' configfiles/%{name}.conf |
138 |
|
139 |
# blank Internal option |
140 |
perl -pi -e 's/TC_ENABLED=Internal/TC_ENABLED=/' configfiles/%{name}.conf |
141 |
|
142 |
# (tpg) do the optimizations |
143 |
perl -pi -e 's/OPTIMIZE=.*/OPTIMIZE=1/' configfiles/%{name}.conf |
144 |
|
145 |
# (tpg) set config path |
146 |
perl -pi -e 's#CONFIG_PATH=.*#CONFIG_PATH=configfiles/%{/g_sysconfdir}/%{name}#' configpath |
147 |
|
148 |
# (lmenut) mga kernel modules are compressed by default (mga #1147) |
149 |
perl -pi -e 's#MODULE_SUFFIX=.*#MODULE_SUFFIX="ko ko.xz ko.gz"#' configfiles/%{name}.conf |
150 |
|
151 |
# (alien) have accounting by default in the mangle table |
152 |
perl -pi -e 's#ACCOUNTING_TABLE=.*#ACCOUNTING_TABLE=mangle#' configfiles/%{name}.conf |
153 |
|
154 |
./configure.pl SYSTEMD=%{_unitdir} SBINDIR=%{_sbindir} LIBEXEC=%{_libexecdir} |
155 |
|
156 |
# let's do the install |
157 |
DESTDIR=%{buildroot} ./install.sh shorewallrc.redhat |
158 |
install -m 644 *.service %{buildroot}%{_unitdir} |
159 |
popd |
160 |
|
161 |
#(tpg) IPv6 |
162 |
pushd %{name6}-%{ipv6_ver} |
163 |
# (blino) enable startup (new setting as of 2.1.3) |
164 |
perl -pi -e 's/STARTUP_ENABLED=.*/STARTUP_ENABLED=Yes/' configfiles/%{name6}.conf |
165 |
# Keep synced with net.ipv4.ip_forward var in /etc/sysctl.conf |
166 |
perl -pi -e 's/IP_FORWARDING=.*/IP_FORWARDING=Keep/' configfiles/%{name6}.conf |
167 |
# (lmenut) mga kernel modules are compressed by default (mga #1147) |
168 |
perl -pi -e 's#MODULE_SUFFIX=.*#MODULE_SUFFIX="ko ko.xz ko.gz"#' configfiles/%{name6}.conf |
169 |
./configure.pl SYSTEMD=%{_unitdir} SBINDIR=%{_sbindir} LIBEXEC=%{_libexecdir} |
170 |
DESTDIR=%{buildroot} ./install.sh |
171 |
install -m 644 *.service %{buildroot}%{_unitdir} |
172 |
popd |
173 |
|
174 |
pushd %{name6}-lite-%{ipv6_lite_ver} |
175 |
./configure.pl SYSTEMD=%{_unitdir} SBINDIR=%{_sbindir} LIBEXEC=%{_libexecdir} |
176 |
DESTDIR=%{buildroot} ./install.sh |
177 |
install -m 644 *.service %{buildroot}%{_unitdir} |
178 |
popd |
179 |
|
180 |
pushd %{name}-lite-%{version_lite} |
181 |
./configure.pl SYSTEMD=%{_unitdir} SBINDIR=%{_sbindir} LIBEXEC=%{_libexecdir} |
182 |
DESTDIR=%{buildroot} ./install.sh |
183 |
install -m 644 *.service %{buildroot}%{_unitdir} |
184 |
popd |
185 |
|
186 |
# Suppress automatic replacement of "echo" by "gprintf" in the shorewall |
187 |
# startup script by RPM. This automatic replacement is broken. |
188 |
export DONT_GPRINTIFY=1 |
189 |
|
190 |
#(tpg) looks like these files are needed |
191 |
touch %{buildroot}/%{_var}/lib/shorewall/{chains,nat,proxyarp,restarted,zones,restore-base,restore-tail,state,.modules,.modulesdir,.iptables-restore-input,.start,.restart,.restore} |
192 |
touch %{buildroot}/%{_var}/lib/shorewall-lite/firewall |
193 |
|
194 |
#(tpg) ipv6 |
195 |
touch %{buildroot}/%{_var}/lib/%{name6}/{chains,restarted,zones,restore-base,restore-tail,state,.modules,.modulesdir,.iptables-restore-input,.start,.restart,.restore} |
196 |
touch %{buildroot}/%{_var}/lib/%{name6}-lite/firewall |
197 |
|
198 |
#remove unused files because of %exclude misbehaviour |
199 |
rm -f %{buildroot}%{_datadir}/%{name6}/configfiles/* |
200 |
rm -f %{buildroot}%{_datadir}/shorewall/configfiles/* |
201 |
|
202 |
# Remove sysv init files |
203 |
rm -rf %{buildroot}%{_initrddir} |
204 |
|
205 |
# Don't install systemd service in /lib/systemd |
206 |
rm -f %{buildroot}/lib/systemd/system/shorewall.service |
207 |
|
208 |
%post |
209 |
if [ "$1" -ge 1 ] ; then |
210 |
perl -pi -e 's#MODULE_SUFFIX=ko$#MODULE_SUFFIX="ko ko.xz ko.gz"#' %{_sysconfdir}/%{name}/%{name}.conf |
211 |
perl -pi -e 's#MODULE_SUFFIX=\"ko ko.gz\"$#MODULE_SUFFIX="ko ko.xz ko.gz"#' %{_sysconfdir}/%{name}/%{name}.conf |
212 |
fi |
213 |
%_post_service shorewall |
214 |
|
215 |
%create_ghostfile %{_var}/lib/%{name}/chains root root 644 |
216 |
%create_ghostfile %{_var}/lib/%{name}/nat root root 644 |
217 |
%create_ghostfile %{_var}/lib/%{name}/proxyarp root root 644 |
218 |
%create_ghostfile %{_var}/lib/%{name}/restarted root root 644 |
219 |
%create_ghostfile %{_var}/lib/%{name}/zones root root 644 |
220 |
%create_ghostfile %{_var}/lib/%{name}/restore-base root root 644 |
221 |
%create_ghostfile %{_var}/lib/%{name}/restore-tail root root 644 |
222 |
%create_ghostfile %{_var}/lib/%{name}/state root root 644 |
223 |
%create_ghostfile %{_var}/lib/%{name}/.modules root root 644 |
224 |
%create_ghostfile %{_var}/lib/%{name}/.modulesdir root root 644 |
225 |
%create_ghostfile %{_var}/lib/%{name}/.iptables-restore-input root root 644 |
226 |
%create_ghostfile %{_var}/lib/%{name}/.restart root root 700 |
227 |
%create_ghostfile %{_var}/lib/%{name}/.restore root root 700 |
228 |
%create_ghostfile %{_var}/lib/%{name}/.start root root 700 |
229 |
|
230 |
%preun |
231 |
%_preun_service %{name} |
232 |
if [ $1 = 0 ] ; then |
233 |
rm -f %{_sysconfdir}/%{name}/startup_disabled |
234 |
rm -f %{_var}/lib/%{name}/* |
235 |
fi |
236 |
|
237 |
%post lite |
238 |
%_post_service %{name}-lite |
239 |
%create_ghostfile %{_var}/lib/%{name}-lite/firewall root root 644 |
240 |
|
241 |
%preun lite |
242 |
%_preun_service %{name}-lite |
243 |
|
244 |
%post ipv6 |
245 |
if [ $1 > 1 ] ; then |
246 |
perl -pi -e 's#MODULE_SUFFIX=ko$#MODULE_SUFFIX="ko ko.xz ko.gz"#' %{_sysconfdir}/%{name6}/%{name6}.conf |
247 |
perl -pi -e 's#MODULE_SUFFIX=\"ko ko.gz\"$#MODULE_SUFFIX="ko ko.xz ko.gz"#' %{_sysconfdir}/%{name6}/%{name6}.conf |
248 |
fi |
249 |
%_post_service %{name6} |
250 |
|
251 |
%create_ghostfile %{_var}/lib/%{name6}/chains root root 644 |
252 |
%create_ghostfile %{_var}/lib/%{name6}/restarted root root 644 |
253 |
%create_ghostfile %{_var}/lib/%{name6}/zones root root 644 |
254 |
%create_ghostfile %{_var}/lib/%{name6}/restore-base root root 644 |
255 |
%create_ghostfile %{_var}/lib/%{name6}/restore-tail root root 644 |
256 |
%create_ghostfile %{_var}/lib/%{name6}/state root root 644 |
257 |
%create_ghostfile %{_var}/lib/%{name6}/.modules root root 644 |
258 |
%create_ghostfile %{_var}/lib/%{name6}/.modulesdir root root 644 |
259 |
%create_ghostfile %{_var}/lib/%{name6}/.iptables-restore-input root root 644 |
260 |
%create_ghostfile %{_var}/lib/%{name6}/.restart root root 700 |
261 |
%create_ghostfile %{_var}/lib/%{name6}/.restore root root 700 |
262 |
%create_ghostfile %{_var}/lib/%{name6}/.start root root 700 |
263 |
|
264 |
%preun ipv6 |
265 |
%_preun_service %{name6} |
266 |
if [ $1 = 0 ] ; then |
267 |
rm -f %{_sysconfdir}/%{name6}/startup_disabled |
268 |
rm -f %{_var}/lib/%{name6}/* |
269 |
fi |
270 |
|
271 |
%post ipv6-lite |
272 |
%_post_service %{name6}-lite |
273 |
%create_ghostfile %{_var}/lib/%{name6}-lite/firewall root root 644 |
274 |
|
275 |
%preun ipv6-lite |
276 |
%_preun_service %{name6}-lite |
277 |
|
278 |
%files |
279 |
%doc %{name}-%{version_main}/{changelog.txt,releasenotes.txt,Samples} |
280 |
%config(noreplace) %{_sysconfdir}/sysconfig/%{name} |
281 |
%dir %{_datadir}/%{name} |
282 |
%dir %attr(755,root,root) %{_var}/lib/%{name} |
283 |
%ghost %{_var}/lib/%{name}/* |
284 |
%ghost %{_var}/lib/%{name}/.??* |
285 |
%config %{_sysconfdir}/logrotate.d/%{name} |
286 |
%attr(0600,root,root) %config(noreplace) %{_sysconfdir}/%{name} |
287 |
#%attr(755,root,root) %{_sbindir}/%{name} |
288 |
%attr(755,root,root) /sbin/%{name} |
289 |
%{_datadir}/%{name}/action* |
290 |
%{_datadir}/%{name}/configpath |
291 |
%{_datadir}/%{name}/functions |
292 |
%{_datadir}/%{name}/helpers |
293 |
%{_datadir}/%{name}/lib.* |
294 |
%{_datadir}/%{name}/macro.* |
295 |
%{_datadir}/%{name}/modules* |
296 |
%{_datadir}/%{name}/version |
297 |
%{_libexecdir}/%{name}/getparams |
298 |
%{_libexecdir}/%{name}/wait4ifup |
299 |
%{_mandir}/man5/%{name}-accounting.5.* |
300 |
%{_mandir}/man5/%{name}-actions.5.* |
301 |
%{_mandir}/man5/%{name}-blacklist.5.* |
302 |
%{_mandir}/man5/%{name}-ecn.5.* |
303 |
%{_mandir}/man5/%{name}-exclusion.5.* |
304 |
%{_mandir}/man5/%{name}-hosts.5.* |
305 |
%{_mandir}/man5/%{name}-interfaces.5.* |
306 |
%{_mandir}/man5/%{name}-ipsets.5.* |
307 |
%{_mandir}/man5/%{name}-maclist.5.* |
308 |
%{_mandir}/man5/%{name}-masq.5.* |
309 |
%{_mandir}/man5/%{name}-modules.5.* |
310 |
%{_mandir}/man5/%{name}-nat.5.* |
311 |
%{_mandir}/man5/%{name}-nesting.5.* |
312 |
#%{_mandir}/man5/%{name}-notrack.5.* |
313 |
%{_mandir}/man5/%{name}-netmap.5.* |
314 |
%{_mandir}/man5/%{name}-params.5.* |
315 |
%{_mandir}/man5/%{name}-policy.5.* |
316 |
%{_mandir}/man5/%{name}-providers.5.* |
317 |
%{_mandir}/man5/%{name}-proxyarp.5.* |
318 |
#%{_mandir}/man5/%{name}-route_rules.5.* |
319 |
%{_mandir}/man5/%{name}-routes.5.* |
320 |
%{_mandir}/man5/%{name}-routestopped.5.* |
321 |
%{_mandir}/man5/%{name}-rules.5.* |
322 |
%{_mandir}/man5/%{name}-secmarks.5.* |
323 |
%{_mandir}/man5/%{name}-tcclasses.5.* |
324 |
%{_mandir}/man5/%{name}-tcinterfaces.5.* |
325 |
%{_mandir}/man5/%{name}-tcpri.5.* |
326 |
%{_mandir}/man5/%{name}-tcdevices.5.* |
327 |
%{_mandir}/man5/%{name}-tcfilters.5.* |
328 |
%{_mandir}/man5/%{name}-tcrules.5.* |
329 |
%{_mandir}/man5/%{name}-tos.5.* |
330 |
%{_mandir}/man5/%{name}-tunnels.5.* |
331 |
%{_mandir}/man5/%{name}-vardir.5.* |
332 |
%{_mandir}/man5/%{name}-zones.5.* |
333 |
%{_mandir}/man5/%{name}.conf.5.* |
334 |
%{_mandir}/man8/%{name}.8.* |
335 |
%{_mandir}/man8/%{name}-init.8.* |
336 |
%{_mandir}/man5/%{name}-blrules.5.* |
337 |
%{_mandir}/man5/%{name}-conntrack.5.* |
338 |
%{_mandir}/man5/%{name}-rtrules.5.* |
339 |
%{_mandir}/man5/%{name}-stoppedrules.5.* |
340 |
#%dir %{_datadir}/shorewall/Shorewall |
341 |
%{_datadir}/perl5/vendor_perl/Shorewall/*.pm |
342 |
%{_libexecdir}/shorewall/compiler.pl |
343 |
%{_datadir}/shorewall/prog.footer |
344 |
#%{_datadir}/shorewall/prog.header |
345 |
%{_datadir}/shorewall/coreversion |
346 |
%{_unitdir}/shorewall.service |
347 |
|
348 |
%files ipv6 |
349 |
%doc %{name6}-%{ipv6_ver}/{changelog.txt,releasenotes.txt,tunnel,ipsecvpn,Samples6} |
350 |
%config(noreplace) %{_sysconfdir}/sysconfig/%{name6} |
351 |
%dir %{_sysconfdir}/%{name6} |
352 |
%dir %{_datadir}/%{name6} |
353 |
%dir %attr(755,root,root) %{_var}/lib/%{name6} |
354 |
%ghost %{_var}/lib/%{name6}/* |
355 |
%ghost %{_var}/lib/%{name6}/.??* |
356 |
%config(noreplace) %{_sysconfdir}/%{name6}/* |
357 |
%config %{_sysconfdir}/logrotate.d/%{name6} |
358 |
%attr(755,root,root) %{_sbindir}/%{name6} |
359 |
%{_datadir}/%{name6}/action* |
360 |
#%{_datadir}/%{name}/prog.footer6 |
361 |
#%{_datadir}/%{name}/prog.header6 |
362 |
%{_datadir}/%{name6}/configpath |
363 |
%{_datadir}/%{name6}/functions |
364 |
%{_datadir}/%{name6}/helpers |
365 |
%{_datadir}/%{name6}/lib.* |
366 |
%{_datadir}/%{name6}/macro.* |
367 |
%{_datadir}/%{name6}/modules* |
368 |
%{_datadir}/%{name6}/version |
369 |
#%{_libexecdir}/%{name6}/wait4ifup |
370 |
%{_mandir}/man5/%{name6}-accounting.5.* |
371 |
%{_mandir}/man5/%{name6}-actions.5.* |
372 |
%{_mandir}/man5/%{name6}-blacklist.5.* |
373 |
%{_mandir}/man5/%{name6}-exclusion.5.* |
374 |
%{_mandir}/man5/%{name6}-hosts.5.* |
375 |
%{_mandir}/man5/%{name6}-interfaces.5.* |
376 |
%{_mandir}/man5/%{name6}-ipsets.5.* |
377 |
%{_mandir}/man5/%{name6}-maclist.5.* |
378 |
%{_mandir}/man5/%{name6}-modules.5.* |
379 |
%{_mandir}/man5/%{name6}-nesting.5.* |
380 |
#%{_mandir}/man5/%{name6}-notrack.5.* |
381 |
%{_mandir}/man5/%{name6}-params.5.* |
382 |
%{_mandir}/man5/%{name6}-policy.5.* |
383 |
%{_mandir}/man5/%{name6}-providers.5.* |
384 |
%{_mandir}/man5/%{name6}-proxyndp.5.* |
385 |
#%{_mandir}/man5/%{name6}-route_rules.5.* |
386 |
%{_mandir}/man5/%{name6}-routes.5.* |
387 |
%{_mandir}/man5/%{name6}-routestopped.5.* |
388 |
%{_mandir}/man5/%{name6}-rules.5.* |
389 |
%{_mandir}/man5/%{name6}-secmarks.5.* |
390 |
%{_mandir}/man5/%{name6}-tcclasses.5.* |
391 |
%{_mandir}/man5/%{name6}-tcdevices.5.* |
392 |
%{_mandir}/man5/%{name6}-tcfilters.5.* |
393 |
%{_mandir}/man5/%{name6}-tcinterfaces.5.* |
394 |
%{_mandir}/man5/%{name6}-tcpri.5.* |
395 |
%{_mandir}/man5/%{name6}-tcrules.5.* |
396 |
%{_mandir}/man5/%{name6}-tos.5.* |
397 |
%{_mandir}/man5/%{name6}-tunnels.5.* |
398 |
%{_mandir}/man5/%{name6}-vardir.5.* |
399 |
%{_mandir}/man5/%{name6}-zones.5.* |
400 |
%{_mandir}/man5/%{name6}.conf.5.* |
401 |
%{_mandir}/man8/%{name6}.8.* |
402 |
%{_mandir}/man5/%{name6}-blrules.5.* |
403 |
%{_mandir}/man5/%{name6}-conntrack.5.* |
404 |
%{_mandir}/man5/%{name6}-rtrules.5.* |
405 |
%{_mandir}/man5/%{name6}-stoppedrules.5.* |
406 |
%{_mandir}/man5/%{name6}-netmap.5.* |
407 |
%{_unitdir}/shorewall6.service |
408 |
|
409 |
%files lite |
410 |
%doc %{name}-lite-%{version_lite}/*.txt |
411 |
%config(noreplace) %{_sysconfdir}/sysconfig/%{name}-lite |
412 |
%dir %{_datadir}/%{name}-lite |
413 |
%dir %attr(755,root,root) %{_var}/lib/%{name}-lite |
414 |
%ghost %{_var}/lib/%{name}-lite/* |
415 |
%config(noreplace) %{_sysconfdir}/%{name}-lite/* |
416 |
%config %{_sysconfdir}/logrotate.d/%{name}-lite |
417 |
%attr(755,root,root) %{_sbindir}/%{name}-lite |
418 |
%{_datadir}/%{name}-lite/configpath |
419 |
%{_datadir}/%{name}-lite/functions |
420 |
%{_datadir}/%{name}-lite/helpers |
421 |
%{_datadir}/%{name}-lite/lib.* |
422 |
%{_datadir}/%{name}-lite/modules* |
423 |
%{_datadir}/%{name}-lite/version |
424 |
%{_mandir}/man5/%{name}-lite* |
425 |
%{_mandir}/man8/%{name}-lite* |
426 |
%{_libexecdir}/%{name}-lite/shorecap |
427 |
#%{_libexecdir}/%{name}-lite/wait4ifup |
428 |
%{_unitdir}/shorewall-lite.service |
429 |
|
430 |
%files ipv6-lite |
431 |
%doc %{name6}-lite-%{ipv6_lite_ver}/*.txt |
432 |
%config(noreplace) %{_sysconfdir}/sysconfig/%{name6}-lite |
433 |
%dir %{_datadir}/%{name6}-lite |
434 |
%dir %attr(755,root,root) %{_var}/lib/%{name6}-lite |
435 |
%ghost %{_var}/lib/%{name6}-lite/* |
436 |
%config(noreplace) %{_sysconfdir}/%{name6}-lite/* |
437 |
%config %{_sysconfdir}/logrotate.d/%{name6}-lite |
438 |
%attr(755,root,root) %{_sbindir}/%{name6}-lite |
439 |
%{_datadir}/%{name6}-lite/configpath |
440 |
%{_datadir}/%{name6}-lite/functions |
441 |
%{_datadir}/%{name6}-lite/helpers |
442 |
%{_datadir}/%{name6}-lite/lib.* |
443 |
%{_datadir}/%{name6}-lite/modules* |
444 |
%{_libexecdir}/%{name6}-lite/shorecap |
445 |
%{_datadir}/%{name6}-lite/version |
446 |
#%{_datadir}/%{name6}-lite/wait4ifup |
447 |
%{_mandir}/man5/%{name6}-lite* |
448 |
%{_mandir}/man8/%{name6}-lite* |
449 |
%{_unitdir}/shorewall6-lite.service |
450 |
|
451 |
%files doc |
452 |
%doc %{name}-docs-html-%{version}/* |
453 |
|
454 |
%files core |
455 |
%doc shorewall-core-%{version}/{COPYING,changelog.txt,releasenotes.txt} |
456 |
%dir %{_datadir}/shorewall/ |
457 |
%{_datadir}/shorewall/coreversion |
458 |
%{_datadir}/shorewall/functions |
459 |
%{_datadir}/shorewall/lib.base |
460 |
%{_datadir}/shorewall/lib.cli |
461 |
%{_datadir}/shorewall/lib.common |
462 |
%{_datadir}/shorewall/shorewallrc |
463 |
#%dir %{_libexecdir}/shorewall |
464 |
#%{_libexecdir}/shorewall/wait4ifup |