Forward Firewall: Updated strongswan patch provided my Michael. (Changes _updown...
[people/teissler/ipfire-2.x.git] / lfs / strongswan
CommitLineData
6652626c
AF
1###############################################################################
2# #
3# IPFire.org - A linux based firewall #
38288aee 4# Copyright (C) 2007-2013 IPFire Team <info@ipfire.org> #
6652626c
AF
5# #
6# This program is free software: you can redistribute it and/or modify #
7# it under the terms of the GNU General Public License as published by #
8# the Free Software Foundation, either version 3 of the License, or #
9# (at your option) any later version. #
10# #
11# This program is distributed in the hope that it will be useful, #
12# but WITHOUT ANY WARRANTY; without even the implied warranty of #
13# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14# GNU General Public License for more details. #
15# #
16# You should have received a copy of the GNU General Public License #
17# along with this program. If not, see <http://www.gnu.org/licenses/>. #
18# #
19###############################################################################
20
21###############################################################################
22# Definitions
23###############################################################################
24
25include Config
26
7f532e37 27VER = 5.1.0
6652626c
AF
28
29THISAPP = strongswan-$(VER)
82efdd4f 30DL_FILE = $(THISAPP).tar.bz2
6652626c 31DL_FROM = $(URL_IPFIRE)
82efdd4f 32DIR_APP = $(DIR_SRC)/strongswan-$(VER)
6652626c
AF
33TARGET = $(DIR_INFO)/$(THISAPP)
34
3090c39e
MT
35ifeq "$(MACHINE)" "i586"
36 PADLOCK = --enable-padlock
37else
38 PADLOCK = --disable-padlock
39endif
40
6652626c
AF
41###############################################################################
42# Top-level Rules
43###############################################################################
44
45objects = $(DL_FILE)
46
47$(DL_FILE) = $(DL_FROM)/$(DL_FILE)
48
7f532e37 49$(DL_FILE)_MD5 = c1cd0a3ba9960f590cae28c8470800e8
6652626c
AF
50
51install : $(TARGET)
52
53check : $(patsubst %,$(DIR_CHK)/%,$(objects))
54
55download :$(patsubst %,$(DIR_DL)/%,$(objects))
56
57md5 : $(subst %,%_MD5,$(objects))
58
59###############################################################################
60# Downloading, checking, md5sum
61###############################################################################
62
63$(patsubst %,$(DIR_CHK)/%,$(objects)) :
64 @$(CHECK)
65
66$(patsubst %,$(DIR_DL)/%,$(objects)) :
67 @$(LOAD)
68
69$(subst %,%_MD5,$(objects)) :
70 @$(MD5)
71
72###############################################################################
73# Installation Details
74###############################################################################
75
76$(TARGET) : $(patsubst %,$(DIR_DL)/%,$(objects))
77 @$(PREBUILD)
35275bcd 78 @rm -rf $(DIR_APP) && cd $(DIR_SRC) && tar axf $(DIR_DL)/$(DL_FILE)
dc33c23b 79 cd $(DIR_APP) && patch -Np1 -i $(DIR_SRC)/src/patches/strongswan-5.0.2_ipfire.patch
6652626c 80
3f7ae7b7 81 cd $(DIR_APP) && [ -x "configure" ] || ./autogen.sh
3090c39e
MT
82 cd $(DIR_APP) && ./configure \
83 --prefix="/usr" \
84 --sysconfdir="/etc" \
85 --enable-curl \
86 --enable-openssl \
15be5542 87 --enable-xauth-eap \
404c8e46 88 --enable-eap-radius \
15be5542
MT
89 --enable-eap-tls \
90 --enable-eap-ttls \
91 --enable-eap-peap \
92 --enable-eap-mschapv2 \
93 --enable-eap-identity \
3090c39e 94 $(PADLOCK)
e4e28e19 95
82efdd4f 96 cd $(DIR_APP) && make $(MAKETUNING) LDFLAGS="-lrt"
6652626c
AF
97 cd $(DIR_APP) && make install
98
3090c39e
MT
99 # Remove all library files we don't want or need.
100 rm -vf /usr/lib/ipsec/plugins/*.{,l}a
101
6652626c
AF
102 -rm -rfv /etc/rc*.d/*ipsec
103 cd $(DIR_SRC) && cp src/initscripts/init.d/ipsec /etc/rc.d/init.d/ipsec
104 rm -f /etc/ipsec.conf /etc/ipsec.secrets
105 ln -sf $(CONFIG_ROOT)/vpn/ipsec.conf /etc/ipsec.conf
106 ln -sf $(CONFIG_ROOT)/vpn/ipsec.secrets /etc/ipsec.secrets
107
108 rm -rf /etc/ipsec.d/{cacerts,certs,crls}
109 ln -sf $(CONFIG_ROOT)/ca /etc/ipsec.d/cacerts
110 ln -sf $(CONFIG_ROOT)/certs /etc/ipsec.d/certs
111 ln -sf $(CONFIG_ROOT)/crls /etc/ipsec.d/crls
112
f898e6ac 113 @rm -rf $(DIR_APP)
6652626c 114 @$(POSTBUILD)