zerochaos 15/05/12 16:27:59 Modified: nmap-9999.ebuild ChangeLog Log: add fcaps, bug #492794 (Portage version: 2.2.18/cvs/Linux x86_64, signed Manifest commit with key DD11F94A)
Revision Changes Path 1.4 net-analyzer/nmap/nmap-9999.ebuild file : http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild?rev=1.4&view=markup plain: http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild?rev=1.4&content-type=text/plain diff : http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild?r1=1.3&r2=1.4 Index: nmap-9999.ebuild =================================================================== RCS file: /var/cvsroot/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild,v retrieving revision 1.3 retrieving revision 1.4 diff -u -r1.3 -r1.4 --- nmap-9999.ebuild 12 May 2015 16:06:37 -0000 1.3 +++ nmap-9999.ebuild 12 May 2015 16:27:59 -0000 1.4 @@ -1,12 +1,12 @@ # Copyright 1999-2015 Gentoo Foundation # Distributed under the terms of the GNU General Public License v2 -# $Header: /var/cvsroot/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild,v 1.3 2015/05/12 16:06:37 zerochaos Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-analyzer/nmap/nmap-9999.ebuild,v 1.4 2015/05/12 16:27:59 zerochaos Exp $ EAPI=5 PYTHON_COMPAT=( python2_7 ) PYTHON_REQ_USE="sqlite,xml" -inherit eutils flag-o-matic python-single-r1 toolchain-funcs +inherit eutils fcaps flag-o-matic python-single-r1 toolchain-funcs user MY_P=${P/_beta/BETA} @@ -154,3 +154,17 @@ python_optimize fi } + +pkg_postinst() { + # Add group for users allowed to run nmap. + enewgroup nmap + + fcaps -o 0 -g nmap -m 4755 -M 0755 \ + cap_net_raw,cap_net_admin,cap_net_bind_service+eip \ + "${EROOT}"/usr/bin/nmap + + ewarn "NOTE: To run nmap as normal user you have to add yourself to the" + ewarn "nmap group. This security measure ensures that only trusted users" + ewarn "are allowed to run nmap" +} + 1.336 net-analyzer/nmap/ChangeLog file : http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/ChangeLog?rev=1.336&view=markup plain: http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/ChangeLog?rev=1.336&content-type=text/plain diff : http://sources.gentoo.org/viewvc.cgi/gentoo-x86/net-analyzer/nmap/ChangeLog?r1=1.335&r2=1.336 Index: ChangeLog =================================================================== RCS file: /var/cvsroot/gentoo-x86/net-analyzer/nmap/ChangeLog,v retrieving revision 1.335 retrieving revision 1.336 diff -u -r1.335 -r1.336 --- ChangeLog 12 May 2015 16:06:37 -0000 1.335 +++ ChangeLog 12 May 2015 16:27:59 -0000 1.336 @@ -1,6 +1,9 @@ # ChangeLog for net-analyzer/nmap # Copyright 1999-2015 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/net-analyzer/nmap/ChangeLog,v 1.335 2015/05/12 16:06:37 zerochaos Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-analyzer/nmap/ChangeLog,v 1.336 2015/05/12 16:27:59 zerochaos Exp $ + + 12 May 2015; Rick Farina <[email protected]> nmap-9999.ebuild: + add fcaps, bug #492794 12 May 2015; Rick Farina <[email protected]> +files/nmap-9999-no-FORTIFY_SOURCE.patch, metadata.xml, nmap-6.47-r1.ebuild,
