components/openssh/service-network-ssh.p5m
author Tomas Kuthan <tomas.kuthan@oracle.com>
Wed, 03 Aug 2016 10:59:43 -0700
changeset 6543 b5c03b086e6d
parent 6187 6a58453cea53
child 7245 934578b959f0
permissions -rw-r--r--
PSARC/2016/441 Remove unacceptable arcfour* ciphers and hmac-md5* MACs from OpenSSH 23639214 Remove unacceptable arcfour* ciphers from OpenSSH 23639232 Remove unacceptable hmac-md5* MACs from OpenSSH 23856800 Disable deprecated 3des-cbc cipher by default on the client

#
# CDDL HEADER START
#
# The contents of this file are subject to the terms of the
# Common Development and Distribution License (the "License").
# You may not use this file except in compliance with the License.
#
# You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
# or http://www.opensolaris.org/os/licensing.
# See the License for the specific language governing permissions
# and limitations under the License.
#
# When distributing Covered Code, include this CDDL HEADER in each
# file and include the License file at usr/src/OPENSOLARIS.LICENSE.
# If applicable, add the following below this CDDL HEADER, with the
# fields enclosed by brackets "[]" replaced with your own identifying
# information: Portions Copyright [yyyy] [name of copyright owner]
#
# CDDL HEADER END
#
# Copyright (c) 2016, Oracle and/or its affiliates. All rights reserved.
#
<transform file path=usr.*/man/.+ -> default mangler.man.stability "Pass-through Uncommitted">
set name=pkg.fmri \
    value=pkg:/service/network/ssh@$(IPS_COMPONENT_VERSION),$(BUILD_VERSION)
set name=pkg.summary value="OpenSSH servers and SSH (Secure Shell) services"
set name=pkg.description \
    value="Provides OpenSSH server support for the Secure Shell (SSH) service which creates RSA and DSA host keys if they are not available and start or stop the sshd (Secure Shell daemon)."
set name=pkg.human-version value=$(HUMAN_VERSION)
set name=info.classification \
    value=org.opensolaris.category.2008:Applications/Internet \
    value=org.opensolaris.category.2008:System/Security
set name=info.source-url value=$(COMPONENT_ARCHIVE_URL)
set name=info.upstream-url value=$(COMPONENT_PROJECT_URL)
set name=org.opensolaris.arc-caseid value=PSARC/2015/227 value=PSARC/2016/216 \
    value=PSARC/2016/348 value=PSARC/2016/441
set name=org.opensolaris.consolidation value=$(CONSOLIDATION)
file sources/sshd-gssapi path=etc/pam.d/sshd-gssapi group=sys mode=0644 \
    overlay=allow preserve=renamenew
file sources/sshd-hostbased path=etc/pam.d/sshd-hostbased group=sys mode=0644 \
    overlay=allow preserve=renamenew
file sources/sshd-none path=etc/pam.d/sshd-none group=sys mode=0644 \
    overlay=allow preserve=renamenew
file sources/sshd-password path=etc/pam.d/sshd-password group=sys mode=0644 \
    overlay=allow preserve=renamenew
file sources/sshd-pubkey path=etc/pam.d/sshd-pubkey group=sys mode=0644 \
    overlay=allow preserve=renamenew
file path=etc/ssh/moduli group=sys mode=0644 overlay=allow preserve=renamenew
file path=etc/ssh/sshd_config group=sys mode=0644 \
    original_name=SUNWsshd:etc/ssh/sshd_config overlay=allow preserve=renamenew
file sources/ssh.xml path=lib/svc/manifest/network/ssh.xml group=sys mode=0444
file sources/sshd.sh path=lib/svc/method/sshd mode=0555
file usr/lib/dtrace/64/sftp64.d path=usr/lib/dtrace/sftp.d
file path=usr/lib/ssh/sftp-server mode=0555
file path=usr/lib/ssh/ssh-keysign mode=4555
file path=usr/lib/ssh/ssh-pkcs11-helper mode=0555
file path=usr/lib/ssh/sshd mode=0555
file path=usr/share/man/man5/moduli.5
file path=usr/share/man/man5/sshd_config.5
file path=usr/share/man/man8/sftp-server.8
file path=usr/share/man/man8/ssh-keysign.8
file path=usr/share/man/man8/ssh-pkcs11-helper.8
file path=usr/share/man/man8/sshd.8
dir  path=var/empty owner=root group=sys mode=0755 sysattr=readonly
group groupname=sshd gid=22
user username=sshd ftpuser=false gcos-field="sshd privsep" group=sshd \
    home-dir=/var/empty login-shell=/bin/false uid=22
legacy pkg=SUNWsshdr desc="Secure Shell protocol Server" \
    name="SSH Server, (Root)"
legacy pkg=SUNWsshdu desc="Secure Shell protocol Server" \
    name="SSH Server, (Usr)"
license openssh.license license="BSD, BSD-like (OpenSSH)" \
    com.oracle.info.description="OpenSSH, a suite of tools that help secure network connections" \
    com.oracle.info.name=openssh com.oracle.info.tpno=$(TPNO_OPENSSH) \
    com.oracle.info.version=$(COMPONENT_VERSION)
license openssh.license license="BSD, BSD-like (gsskex)" \
    com.oracle.info.description="GSS-API authenticated key exchange" \
    com.oracle.info.name=gsskex com.oracle.info.tpno=$(TPNO_GSSKEX) \
    com.oracle.info.version=5.7p1
depend type=conditional fmri=pkg:/x11/session/xauth \
    predicate=pkg:/x11/library/libxau