aboutsummaryrefslogtreecommitdiff
path: root/net
Commit message (Collapse)AuthorAge
...
* | | curl: update to 7.80.0Stan Grishin2021-11-12
| | | | | | | | | | | | | | | | | | | | | * bump version to 7.80.0 * update maintainer email address Signed-off-by: Stan Grishin <stangri@melmac.net>
* | | openssh-server-pam: add key files as conffilesHuangbin Zhan2021-11-12
| | | | | | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | | openssh: keep same permission for /etc/sshHuangbin Zhan2021-11-12
| | | | | | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | | netopeer2: update to 2.0.35Lucian Cristian2021-11-12
| | | | | | | | | | | | | | | | | | needed after libyang update Signed-off-by: Lucian Cristian <lucian.cristian@gmail.com>
* | | sysrepo: update to 2.0.53Lucian Cristian2021-11-12
| | | | | | | | | | | | | | | | | | | | | needed after libyang update also drop python3-sysrepo as now is standalone Signed-off-by: Lucian Cristian <lucian.cristian@gmail.com>
* | | wget: update to 1.21.2Huangbin Zhan2021-11-12
| | | | | | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | | wget: fix hsts timeHuangbin Zhan2021-11-12
| | | | | | | | | | | | | | | | | | `time_t` on musl 1.2 is 64bit, while `long` is 32 bit. we will always get zero time with the original source on mips big endian. Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | | modemmanager: fix physdev sysfs path detection in PCIe modemsAleksander Morgado2021-11-12
| | | | | | | | | | | | | | | | | | | | | | | | The PCIe physdev path lookup relies on the 'vendor' and 'device' attribute files, instead of the 'idVendor' and 'idProduct' ones, which are USB specific. Signed-off-by: Aleksander Morgado <aleksander@aleksander.es>
* | | dnsproxy: Update to 0.39.10Tianling Shen2021-11-11
| | | | | | | | | | | | Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | | dnslookup: Update to 1.5.1Tianling Shen2021-11-11
|/ / | | | | | | Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | mosquitto: bump to 2.0.13Karl Palsson2021-11-09
| | | | | | | | | | | | | | | | | | | | Security and bugfix releases. Changelogs: https://mosquitto.org/blog/2021/10/version-2-0-13-released/ https://mosquitto.org/blog/2021/08/version-2-0-12-released/ Signed-off-by: Karl Palsson <karlp@etactica.com>
* | trojan-go: add new packageTianling Shen2021-11-08
| | | | | | | | Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | transmission-web-control: Update to the latest master branch(4b2e1858)Ren Zongjia2021-11-08
| | | | | | | | Signed-off-by: Ren Zongjia <acooler15@foxmail.com>
* | knot: update to 3.1.4Jan Hák2021-11-08
| | | | | | | | Signed-off-by: Jan Hák <jan.hak@nic.cz>
* | pdns-recursor: Update to v4.5.7Wout Bertrums2021-11-05
| | | | | | | | Signed-off-by: Wout Bertrums <wout@wbnet.eu>
* | zerotier: update to 1.8.1Oskari Rauta2021-11-05
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Release notes: 1.8.0 - Upgrade json.hpp dependency to version 3.10.2 - Check if DNS servers need to be applied on macOS - Set MAC address before bringing up Linux TAP link - Stop binding to temporary IPv6 addresses - Fix for mistakenly using v6 source addresses for v4 routes on some platforms - Fix for MacOS MTU capping issue on feth devices - Implement a workaround for one potential source of a "coma" bug, which can occur if buggy NATs/routers stop allowing the service to communicate on a given port. ZeroTier now reassigns a new secondary port if it's offline for a while unless a secondary port is manually specified in local.conf. Working around crummy buggy routers is an ongoing effort. - A completely rewritten desktop UI for Mac and Windows! 1.8.1 - Fix an issue that could cause clobbering of MacOS IP route settings on restart. - Added additional hardening against address impersonation on networks (also in 1.6.6). - MacOS IPv6 no longer binds to temporary addresses as these can cause interruptions if they expire. - Remove support for REALLY ancient 1.1.6 or earlier network controllers. - Fix numerous UI issues from 1.8.0 (never fully released). Changed to git as source and added $(AUTORELEASE) Signed-off-by: Oskari Rauta <oskari.rauta@gmail.com>
* | dnslookup: Update to 1.5.0Tianling Shen2021-11-05
| | | | | | | | Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | dns-over-https: Add dns-over-https.Martin Schneider2021-11-05
| | | | | | | | | | | | Client and server software to query DNS over HTTPS, using Google DNS-over-HTTPS protocol and IETF DNS-over-HTTPS (RFC 8484). https://github.com/m13253/dns-over-https Signed-off-by: Martin Schneider <martschneider@google.com>
* | mdns-repeater: add package for mdns-repeaterAlexander Koenig2021-11-04
| | | | | | | | Signed-off-by: Alexander Koenig <alex@lisas.de>
* | rclone: Update to 1.57.0Tianling Shen2021-11-03
| | | | | | | | | | | | | | - Disabled unused plugins and re-enabled CGO. - Fixed test script Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | frp: update to 0.38.0Ren Zongjia2021-11-03
| | | | | | | | Signed-off-by: Ren Zongjia <acooler15@foxmail.com>
* | Merge pull request #17031 from turris-cz/drop-rosy-fsJosef Schlehofer2021-11-02
|\ \ | | | | | | rosy-file-server: drop this package
| * | rosy-file-server: drop this packageJosef Schlehofer2021-10-31
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Reasons to drop this package: a) this package depends on luci-app-rosy-file-server Unfortunately, it was marked as broken as it is unmaintained. See: https://github.com/openwrt/luci/commit/34b682afac310859f0d4696110d8a1af60f16c04 b) maintainer is inactive c) rosinson website does not seem to be working Signed-off-by: Josef Schlehofer <pepe.schlehofer@gmail.com>
* | | usteer: update to latest git headDavid Bauer2021-10-31
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | 6813542 remote: always re-schedule update timeout d7833e1 remote: fix compilation with glibc bee2caf sta: schedule sta_info timeout on creation ae32cb9 ubus: fix channel for active probing 8dc0753 ubus: introduce enum for beacon measurement mode 46e5976 policy: use correct reference signal 1116fdb policy: avoid creating kick loop for client d3ff0d5 sta: add sta_connection_state enum 30f9ba7 remote: include node BSSID into messages 8af7b6c usteer: add BSSID to node struct Signed-off-by: David Bauer <mail@david-bauer.net>
* | | nginx: add scgi_params if CONFIG_NGINX_HTTP_SCGI=yJavier Marcet2021-10-30
| | | | | | | | | | | | Signed-off-by: Javier Marcet <javier@marcet.info>
* | | tor: bump to 0.4.6.8 stableRui Salvaterra2021-10-30
| | | | | | | | | | | | Signed-off-by: Rui Salvaterra <rsalvaterra@gmail.com>
* | | nginx, python3-{asgiref,django-cors-headers,drf-nested-routers,sqlparse}: ↵Peter Stadler2021-10-30
| | | | | | | | | | | | | | | | | | | | | | | | bump versions Update to the newest versions and switch to $(AUTORELEASE) for the python3 packages (where I am the maintainer). Signed-off-by: Peter Stadler <peter.stadler@student.uibk.ac.at>
* | | openfortivpn: add persistent reconnect optionMatthew Hagan2021-10-30
| | | | | | | | | | | | | | | | | | | | | Currently when the connection times out, the interface will disconnect. Add capability to add persistent option to re-establish connectivity. Signed-off-by: Matthew Hagan <mnhagan88@gmail.com>
* | | openfortivpn: add user, key, CA PEM supportMatthew Hagan2021-10-30
| | | | | | | | | | | | | | | | | | Allow authentication inputs by key/cert PEM. Signed-off-by: Matthew Hagan <mnhagan88@gmail.com>
* | | zerotier: add respawn procd paramChao Liu2021-10-30
| | | | | | | | | | | | Signed-off-by: Chao Liu <git@expiron.dev>
* | | uwsgi: bump version and use less workaroundsPeter Stadler2021-10-30
| | | | | | | | | | | | | | | | | | | | | * adopt pypi name and line numbers in patches * remove custom tar command and patch for using python3 (changed upstream) Signed-off-by: Peter Stadler <peter.stadler@student.uibk.ac.at>
* | | xray-core: remove dead jail filesTianling Shen2021-10-30
| | | | | | | | | | | | | | | | | | | | | | | | It never works... And Xray-core needs root access to work. Bump geodata to latest version while at it. Signed-off-by: Tianling Shen <cnsztl@immortalwrt.org>
* | | lighttpd: update to lighttpd 1.4.61 release hashGlenn Strauss2021-10-30
|/ / | | | | | | | | | | also remove patches incorporated upstream into lighttpd 1.4.61 Signed-off-by: Glenn Strauss <gstrauss@gluelogic.com>
* / softethervpn: update to 4.38-9760-rtmRosen Penev2021-10-28
|/ | | | Signed-off-by: Rosen Penev <rosenp@gmail.com>
* Merge pull request #16992 from pprindeville/named-restart-intf-flapPhilip Prindeville2021-10-28
|\ | | | | bind: detect new interfaces when they come up
| * bind: detect new interfaces when they come upPhilip Prindeville2021-10-28
| | | | | | | | | | | | | | | | Reload the service when interfaces flap; note that libcap support is required to open new sockets on interfaces coming up during a reload, otherwise a full restart would be needed. Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #16984 from pprindeville/strongswan-update-5.9.4Philip Prindeville2021-10-28
|\ \ | | | | | | strongswan: bump version to 5.9.4
| * | strongswan: Bump to 5.9.4Philip Prindeville2021-10-28
| |/ | | | | | | Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #17010 from pprindeville/bind-update-9.17.19Philip Prindeville2021-10-28
|\ \ | | | | | | bind: Bump to 9.17.19
| * | bind: Bump to 9.17.19Philip Prindeville2021-10-28
| |/ | | | | | | | | | | | | | | | | | | | | | | | | | | The following CVE updates are included: * CVE-2021-25219: The "lame-ttl" option is now forcibly set to 0. This effectively disables the lame server cache, as it could previously be abused by an attacker to significantly degrade resolver performance. * CVE-2021-25218: An assertion failure occurred when named attempted to send a UDP packet that exceeded the MTU size, if Response Rate Limiting (RRL) was enabled. Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | Merge pull request #17003 from pprindeville/named-deprecate-managed-keysPhilip Prindeville2021-10-28
|\ \ | | | | | | bind: deprecate managed-keys
| * | bind: deprecate managed-keysPhilip Prindeville2021-10-27
| |/ | | | | | | | | | | | | | | | | | | | | | | This has been replaced with the "trust-anchors" keyword, per section 8.21.1 New Features of the Bind 9 Administrator Reference Manual: • In order to clarify the configuration of DNSSEC keys, the trusted-keys and managed-keys statements have been deprecated, and the new trust-anchors statement should now be used for both types of key. When used with the keyword initial-key, trust-anchors has the same behavior as managed-keys, i.e., it configures a trust anchor that is to be maintained via RFC 5011. When used with the new keyword static-key, trust-anchors has the same behavior as trusted-keys, i.e., it configures a permanent trust anchor that will not automatically be updated. (This usage is not recommended for the root key.) [GL #6] Signed-off-by: Philip Prindeville <philipp@redfish-solutions.com>
* | nfs-kernel-server: reload when exported mountpoints showDaniel Golle2021-10-28
| | | | | | | | | | | | | | Use newly introduced procd_add_reload_mount_trigger to reload nfsd when a mountpoint covering an exported filesystem is added by blockd. Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | gnunet: several improvementsDaniel Golle2021-10-28
| | | | | | | | | | | | | | | | Fix uci-defaults for PostgreSQL backends Add user 'gnunet' to 'postgres' group Always build with sqlite3 as configure fails when --without-sqlite Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | transmission: update seccomp config fileRen Zongjia2021-10-28
| | | | | | | | | | | | | | Add missing syscalls found using utrace. Signed-off-by: Ren Zongjia <acooler15@foxmail.com> Signed-off-by: Daniel Golle <daniel@makrotopia.org>
* | vnstat2: add hotplug script for adding interfacesJan Hoffmann2021-10-28
| | | | | | | | | | | | | | | | | | | | | | If an interface doesn't exist yet when vnStat is started, it won't be monitored, as only existing interfaces can be added to the database via the vnstat command. This adds a hotplug script which adds any configured interfaces to the vnStat database when it goes up. Signed-off-by: Jan Hoffmann <jan@3e8.eu>
* | vnstat2: fix all interfaces being monitored when none are configuredJan Hoffmann2021-10-28
| | | | | | | | | | | | | | | | | | | | | | | | | | By default, vnstatd adds all available interfaces on startup when its database is empty. The --noadd option prevents this, but it breaks import of legacy databases, and causes vnstatd to exit immediately after startup, which breaks reloading. This changes the init script to add the --noadd option when no legacy databases need to be imported, and patches vnstatd to keep running even when no interfaces are configured. Signed-off-by: Jan Hoffmann <jan@3e8.eu>
* | nginx-util: add conffilesHuangbin Zhan2021-10-27
| | | | | | | | | | | | | | Add /etc/config/nginx, restrict_locally, uci.conf.template as conffile Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | rosy-file-server: fix conffile nameHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>
* | uradvd: fix installed filename, add conffilesHuangbin Zhan2021-10-27
| | | | | | | | Signed-off-by: Huangbin Zhan <zhanhb88@gmail.com>