aboutsummaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAge
...
* ntfs-3g: update config's help syntaxEneas U de Queiroz2021-10-28
| | | | | | | Change ---help--- to plain 'help' in Package/ntfs-3g/config, as newer versions of kconfig have removed the command's older name. Signed-off-by: Eneas U de Queiroz <cotequeiroz@gmail.com>
* Merge pull request #16992 from pprindeville/named-restart-intf-flapPhilip Prindeville2021-10-28
|\ | | | | bind: detect new interfaces when they come up
| * bind: detect new interfaces when they come upPhilip Prindeville2021-10-28
| | | | | | | | | | | | | | | | Reload the service when interfaces flap; note that libcap support is required to open new sockets on interfaces coming up during a reload, otherwise a full restart would be needed. Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #16984 from pprindeville/strongswan-update-5.9.4Philip Prindeville2021-10-28
|\ \ | | | | | | strongswan: bump version to 5.9.4
| * | strongswan: Bump to 5.9.4Philip Prindeville2021-10-28
| |/ | | | | | | Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #17010 from pprindeville/bind-update-9.17.19Philip Prindeville2021-10-28
|\ \ | | | | | | bind: Bump to 9.17.19
| * | bind: Bump to 9.17.19Philip Prindeville2021-10-28
| |/ | | | | | | | | | | | | | | | | | | | | | | | | | | The following CVE updates are included: * CVE-2021-25219: The "lame-ttl" option is now forcibly set to 0. This effectively disables the lame server cache, as it could previously be abused by an attacker to significantly degrade resolver performance. * CVE-2021-25218: An assertion failure occurred when named attempted to send a UDP packet that exceeded the MTU size, if Response Rate Limiting (RRL) was enabled. Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #17003 from pprindeville/named-deprecate-managed-keysPhilip Prindeville2021-10-28
|\ \ | | | | | | bind: deprecate managed-keys
| * | bind: deprecate managed-keysPhilip Prindeville2021-10-27
| |/ | | | | | | | | | | | | | | | | | | | | | | This has been replaced with the "trust-anchors" keyword, per section 8.21.1 New Features of the Bind 9 Administrator Reference Manual: • In order to clarify the configuration of DNSSEC keys, the trusted-keys and managed-keys statements have been deprecated, and the new trust-anchors statement should now be used for both types of key. When used with the keyword initial-key, trust-anchors has the same behavior as managed-keys, i.e., it configures a trust anchor that is to be maintained via RFC 5011. When used with the new keyword static-key, trust-anchors has the same behavior as trusted-keys, i.e., it configures a permanent trust anchor that will not automatically be updated. (This usage is not recommended for the root key.) [GL #6] Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | nfs-kernel-server: reload when exported mountpoints showDaniel Golle2021-10-28
| | | | | | | | | | | | | | Use newly introduced procd_add_reload_mount_trigger to reload nfsd when a mountpoint covering an exported filesystem is added by blockd. Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | gnunet: several improvementsDaniel Golle2021-10-28
| | | | | | | | | | | | | | | | Fix uci-defaults for PostgreSQL backends Add user 'gnunet' to 'postgres' group Always build with sqlite3 as configure fails when --without-sqlite Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | transmission: update seccomp config fileRen Zongjia2021-10-28
| | | | | | | | | | | | | | Add missing syscalls found using utrace. Signed-off-by: Ren Zongjia <acooler15@foxmail.com> Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | vnstat2: add hotplug script for adding interfacesJan Hoffmann2021-10-28
| | | | | | | | | | | | | | | | | | | | | | If an interface doesn't exist yet when vnStat is started, it won't be monitored, as only existing interfaces can be added to the database via the vnstat command. This adds a hotplug script which adds any configured interfaces to the vnStat database when it goes up. Signed-off-by: Jan Hoffmann <jan@3e8.eu>
* | vnstat2: fix all interfaces being monitored when none are configuredJan Hoffmann2021-10-28
| | | | | | | | | | | | | | | | | | | | | | | | | | By default, vnstatd adds all available interfaces on startup when its database is empty. The --noadd option prevents this, but it breaks import of legacy databases, and causes vnstatd to exit immediately after startup, which breaks reloading. This changes the init script to add the --noadd option when no legacy databases need to be imported, and patches vnstatd to keep running even when no interfaces are configured. Signed-off-by: Jan Hoffmann <jan@3e8.eu>
* | nginx-util: add conffilesHuangbin Zhan2021-10-27
| | | | | | | | | | | | | | Add /etc/config/nginx, restrict_locally, uci.conf.template as conffile Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | rosy-file-server: fix conffile nameHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | uradvd: fix installed filename, add conffilesHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | treewide: add missing conffilesHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | atftpd: fix conffilesHuangbin Zhan2021-10-27
| | | | | | | | | | | | | | Add missing conffiles Fix conffile permission Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | treewide: fix broken conffilesHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | gpsd: update to 3.23.1Nick Hainke2021-10-27
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | 3.23.1: 2021-09-21 Improve ubx cycle detection. Add quirks for Jackson Labs nonstandard NMEA Change STATUS_NO_FIX to STATUS_UNK to avoid confusion with fix mode. Change STATUS_FIX to STATUS_GPS to avoid confusion with fix mode. Change STATUS_DGPS_FIX to STATUS_DGPS to avoid confusion with fix mode. Split SOURCE_ACM from SOURCE_USB. ACM has no speeds. Add speeds 1 mbps, 1.152 mbps, 1.5 mbps, and higher. When libc supports them. Improve autobaud. Add new u-blox M10 messages. Fix u-blox M6, M7 initialization issues. Various ubxtool and gpxlogger updates. Add mtk3301_speed_switcher() No API changes, except for STATUS_* as above. No ABI changes. Fallback to "python3" if "python" not found. Signed-off-by: Nick Hainke <vincent@systemli.org>
* | acsccid: fix compilation under macOSRosen Penev2021-10-27
| | | | | | | | | | | | | | | | uname is not safe for cross compilation. Also fixed up download file name to avoid potential conflicts. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | boringssl: Add boringssl libraryMartin Schneider2021-10-27
| | | | | | | | | | | | | | Add boringssl library. BoringSSL is Google's fork of OpenSSL. Amongst other features, it adds support for QUIC. Signed-off-by: Martin Schneider <martschneider@google.com>
* | python-paho-mqtt: bump to version 1.6.1Alexandru Ardelean2021-10-27
| | | | | | | | Signed-off-by: Alexandru Ardelean <ardeleanalex@gmail.com>
* | numpy: bump to version 1.21.3Alexandru Ardelean2021-10-27
| | | | | | | | Signed-off-by: Alexandru Ardelean <ardeleanalex@gmail.com>
* | mstpd: bump to version 0.1.0Alexandru Ardelean2021-10-27
| | | | | | | | | | | | And switch to AUTORELEASE for PKG_RELEASE. Signed-off-by: Alexandru Ardelean <ardeleanalex@gmail.com>
* | stress-ng: bump to version 0.13.05Alexandru Ardelean2021-10-27
| | | | | | | | | | | | | | And switch to Github URLs. The old one isn't working anymore. Signed-off-by: Alexandru Ardelean <ardeleanalex@gmail.com>
* | Merge pull request #16936 from aleksander0m/aleksander/mm-wwan-subsystemFlorian Eckert2021-10-27
|\ \ | | | | | | modemmanager: add support for wwan subsystem in hotplug
| * | modemmanager: add support for wwan subsystem in hotplugAleksander Morgado2021-10-19
| | | | | | | | | | | | | | | | | | | | | | | | | | | WWAN devices may now be exposed in the new 'wwan' subsystem in the kernel (since 5.13), initially applicable to devices exposed in PCIe (no USB), but at some point may also apply to USB devices that until now were exposed via other subsystems (e.g. usbmisc, tty). Signed-off-by: Aleksander Morgado <aleksander@aleksander.es>
* | | dnsproxy: Update to 0.39.9Tianling Shen2021-10-26
| | | | | | | | | | | | Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | | zoneinfo: Updated to the latest releaseVladimir Ulrich2021-10-26
| | | | | | | | | | | | Signed-off-by: Vladimir Ulrich <admin@evl.su>
* | | apache: fixup apxsSebastian Kemper2021-10-26
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | apxs is used to get information about the apache installation when building external modules. Currently there are issues: 1. ./staging_dir/target-mips_24kc_musl/usr/bin/apxs -q TARGET apache2 apxs:Error: ./staging_dir/target-mips_24kc_musl/home/sk/tmp/openwrt/staging_dir/target-mips_24kc_musl/usr/bin/apr-1-config not found!. This error is fixed by sed script #2. 2. ./staging_dir/target-mips_24kc_musl/usr/bin/apxs -q TARGET cannot open ./staging_dir/target-mips_24kc_musl/home/sk/tmp/openwrt/staging_dir/target-mips_24kc_musl/usr/share/apache2/build/config_vars.mk: No such file or directory at ./staging_dir/target-mips_24kc_musl/usr/bin/apxs line 213. This error is fixed by sed scipt #1. Both sed scripts taken from buildroot (see [1]). [1] https://github.com/buildroot/buildroot/blob/master/package/apache/apache.mk Signed-off-by: Sebastian Kemper <sebastian_ml@gmx.net>
* | | apache: security bump to 2.4.51Sebastian Kemper2021-10-26
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes (see [1] for details): CVE-2021-33193 CVE-2021-41524 CVE-2021-41773 CVE-2021-42013 [1] https://httpd.apache.org/security/vulnerabilities_24.html Patch 020-openssl-deprecated.patch refreshed. Signed-off-by: Sebastian Kemper <sebastian_ml@gmx.net>
* | | dawn: set symm_enc default to 0Nick Hainke2021-10-26
| | | | | | | | | | | | | | | | | | | | | User mpeleshenko reported that symm encryption breaks hearing map. Set the default to 0. Signed-off-by: Nick Hainke <vincent@systemli.org>
* | | dawn: update to 2021-10-26Nick Hainke2021-10-26
| | | | | | | | | | | | | | | | | | | | | ddc007e32ced ubus: avoid use after free in handle_probe_req() e1275713c057 github: fix workflow Signed-off-by: Nick Hainke <vincent@systemli.org>
* | | redis: update to version 6.2.6Jan Pavlinec2021-10-25
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes: - CVE-2021-41099 - CVE-2021-32762 - CVE-2021-32687 - CVE-2021-32675 - CVE-2021-32672 - CVE-2021-32628 - CVE-2021-32627 - CVE-2021-32626 Signed-off-by: Jan Pavlinec <jan.pavlinec1@gmail.com>
* | | knot: update to version 3.1.3Jan Hák2021-10-25
| | | | | | | | | | | | Signed-off-by: Jan Hák <jan.hak@nic.cz>
* | | zstd: update to 1.5.0Rosen Penev2021-10-24
| | | | | | | | | | | | | | | | | | | | | | | | | | | Remove uClibc hack. uClibc is not in the tree anymore. Update configure options. Change legacy_level to 7. This gets rid of backwards compatibility with version 0.1 and bumps it to 0.7. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | fuse-overlayfs: update to 1.7.1Rosen Penev2021-10-24
| | | | | | | | | | | | | | | | | | | | | | | | Rearrange Makefile for consistency between packages. Add m4 patch to fix compilation under some systems. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | grilo-plugins: update to 0.3.14Rosen Penev2021-10-24
| | | | | | | | | | | | | | | | | | | | | | | | Fix wrong option names. Removed vimeo following upstream. Fixed license information. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | grilo: update to 0.3.14Rosen Penev2021-10-24
| | | | | | | | | | | | Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | usteer: add packageDavid Bauer2021-10-24
| | | | | | | | | | | | | | | | | | | | | | | | | | | This commits adds the new usteer package to the packages feed. usteer is a daemon for steering wireless clients across frequency bands as well as between multiple access points on a network. Signed-off-by: David Bauer <mail@david-bauer.net>
* | | Merge pull request #16960 from neheb/3Michael Heimpold2021-10-24
|\ \ \ | |_|/ |/| | libxml2: don't build host shared libraries
| * | libxml2: don't build host shared librariesRosen Penev2021-10-23
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Avoids having to add HOST_LDFLAGS: -Wl,-rpath,$(STAGING_DIR_HOSTPKG)/lib for packages that rely on shared libraries. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | bossa: add bossaNick Hainke2021-10-23
|/ / | | | | | | | | | | | | | | | | | | | | | | Based on the work of Hirokazu MORIKAWA (nxhack): https://github.com/nxhack/openwrt-arduino-packages/tree/master/bossa BOSSA is a flash programming utility for Atmel's SAM family of flash-based ARM microcontrollers. The motivation behind BOSSA is to create a simple, easy-to-use, open source utility to replace Atmel's SAM-BA software. Signed-off-by: Nick Hainke <vincent@systemli.org>
* | dosfstools: fix AM_ICONV triggered build errorBjørn Mork2021-10-23
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fix this build error: gcc -Wall -Wextra -Wno-sign-compare -Wno-missing-field-initializers \ -Wmissing-prototypes -Wstrict-prototypes -Wwrite-strings -O2 \ -I/usr/local/src/openwrt/staging_dir/host/include \ -L/usr/local/src/openwrt/staging_dir/host/lib \ -o fsck.fat check.o file.o fsck.fat.o lfn.o boot.o common.o fat.o io.o \ charconv.o @LIBICONV@ gcc: error: LIBICONV@: No such file or directory make[4]: *** [Makefile:449: fsck.fat] Error 1 Suggested-by: Rosen Penev <rosenp@gmail.com> Signed-off-by: Bjørn Mork <bjorn@mork.no>
* | Merge pull request #16949 from neheb/10Nikos Mavrogiannopoulos2021-10-23
|\ \ | | | | | | libtasn1: don't build host shared libs
| * | libtasn1: don't build host shared libsRosen Penev2021-10-21
| | | | | | | | | | | | | | | | | | Avoids rpath hacks. Signed-off-by: Rosen Penev <rosenp@gmail.com>
* | | Merge pull request #16958 from mhei/php7-updateMichael Heimpold2021-10-23
|\ \ \ | | | | | | | | php7: update to 7.4.25
| * | | php7: update to 7.4.25Michael Heimpold2021-10-22
| | | | | | | | | | | | | | | | | | | | | | | | | | | | This fixes: - CVE-2021-21703 Signed-off-by: Michael Heimpold <mhei@heimpold.de>