apache2-mod_nss-1.0.8-6.1e>UAr (fJ@`E)?Sgj$jv*~L~CPU/p6.g+c$JL/|}+Y]>7&"?&d  F ,0>GR k h        D    ` " (""(8 9 : >!F"G"H"dI"X"Y"\"]#0^$ b$c%Id%e%f%l%z&Capache2-mod_nss1.0.86.1SSL/TLS module for the Apache HTTP serverThe mod_nss module provides strong cryptography for the Apache Web server via the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols using the Network Security Services (NSS) security library.Sgjcloud101 NopenSUSE 11.4openSUSEApache-2.0http://bugs.opensuse.orgProductivity/Networking/Web/Servershttp://directory.fedoraproject.org/wiki/Mod_nsslinuxi586umask 077 if [ "$1" -eq 1 ] ; then # this is first time installation. if [ ! -e /etc/apache2/mod_nss.d/key3.db ]; then /usr/sbin/gencert /etc/apache2/mod_nss.d > /etc/apache2/mod_nss.d/install.log 2>&1 echo "" echo "apache2-mod_nss certificate database generated." echo "" fi # Make sure that the database ownership is setup properly. find /etc/apache2/mod_nss.d -user root -name "*.db" -exec /bin/chgrp www {} \; find /etc/apache2/mod_nss.d -user root -name "*.db" -exec /bin/chmod 640 {} \; fi if [ "$1" -eq 2 ]; then # this is the upgrade case for this %post: if [ -d /etc/apache2/alias ]; then copied_files="" for dbfile in *.db; do if [ ! -f /etc/apache2/mod_nss.d/"$dbfile" -a -f "$dbfile" ]; then cp -a "$dbfile" /etc/apache2/mod_nss.d/"$dbfile" copied_files="$copied_files $dbfile" fi done if [ "$copied_files" != "" ]; then { echo "This notice was written by the post-install script of the package" echo "apache2-mod_nss." echo "" echo "The files $copied_files" echo "have been copied to the directory /etc/apache2/mod_nss.d," echo "as this directory is not referenced by the default configuration any longer," echo "and because these files did not exist in /etc/apache2/mod_nss.d." echo "Existing files have not been modified." echo "" echo "Please check your configuration and remove or move your certificate and" echo "key storage to your desired place, and adjust your module configuration" echo "accordingly." echo "" echo "Thank you." } > /etc/apache2/alias/README-dbfiles.txt fi fi fi: ,2Z6,]ԟA큠AA큤SgiSgiSgiSgiSgiSgiSgiSgiSgiSgiSgiSgiSgiSgjCHC DRP\Sg_da3e349ecaeb68662d6d7ade379bf43c65f68bc5dc559b14fc766773221b9546d41d8cd98f00b204e9800998ecf8427ed41d8cd98f00b204e9800998ecf8427ed41d8cd98f00b204e9800998ecf8427ed41d8cd98f00b204e9800998ecf8427e70d13d31ac3c0889fed7f1e229b3054b4f67f82f6026786c35a754fc776e0f53e5b28981f66049680b72690afd3e7917716f4b2bdbece46eb3c9416a405f314ed94464f4e3210a7bc2fd96fbeeb414ad86d3f3a95c324c9479bd8986968f43278337d4c85ffad8a15e2fc13c13d991ed6e8ca789e1ef589caab3b48743814317f06f0a2973d1465c3786783fcd68591aQQQQrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootwwwrootwwwwwwrootrootrootrootrootrootrootrootrootrootrootapache2-mod_nss-1.0.8-6.1.src.rpmmod_nsslibmodnss.soapache2-mod_nssapache2-mod_nss(x86-32)   @@@@@@@@@@@@@@@@@@@@@@@@@@ apache2findutilsmozilla-nssmozilla-nss-tools/bin/shrpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)/bin/bash/usr/bin/perllibc.so.6libc.so.6(GLIBC_2.0)libc.so.6(GLIBC_2.1)libc.so.6(GLIBC_2.1.3)libc.so.6(GLIBC_2.2)libc.so.6(GLIBC_2.3)libc.so.6(GLIBC_2.3.4)libc.so.6(GLIBC_2.4)libnspr4.solibnss3.solibnss3.so(NSS_3.10.2)libnss3.so(NSS_3.2)libnss3.so(NSS_3.3)libnss3.so(NSS_3.4)libnss3.so(NSS_3.5)libnss3.so(NSS_3.6)libnss3.so(NSS_3.9.2)libplc4.solibssl3.solibssl3.so(NSS_3.12.6)libssl3.so(NSS_3.14)libssl3.so(NSS_3.2)libssl3.so(NSS_3.4)libssl3.so(NSS_3.7.4)rpmlib(PayloadIsLzma)2.2.123.15.14.0-13.0.4-14.4.6-14.8.0S@S\SK@RR|@RxQ@QMQQޞ@P@O@K{@draht@suse.dedraht@suse.dedraht@suse.dedraht@suse.dedraht@suse.dedraht@suse.demeissner@suse.commeissner@suse.comaj@ajaissle.deaj@ajaissle.deaj@ajaissle.dewr@rosenauer.orgnix@opensuse.org- mod_nss-bnc863518-reopen_dev_tty.diff: close(0) and open("/dev/tty", ...) to make sure that stdin can be read from. startproc may inherit wrongly opened file descriptors to httpd. (Note: An analogous fix exists in startproc(8), too.) [bnc#863518] - VirtualHost part in /etc/apache2/conf.d/mod_nss.conf is now externalized to /etc/apache2/conf.d/vhost-nss.template and not activated/read by default. [bnc#878681] - NSSCipherSuite update following additional ciphers of Feb 18 change. [bnc#878681]- mod_nss-SNI-callback.patch, mod_nss-SNI-checks.patch: server side SNI was not implemented when mod_nss was made; patches implement SNI with checks if SNI provided hostname equals Host: field in http request header.- mod_nss-cipherlist_update_for_tls12-doc.diff mod_nss-cipherlist_update_for_tls12.diff GCM mode and Camellia ciphers added to the supported ciphers list. The additional ciphers are: rsa_aes_128_gcm_sha == TLS_RSA_WITH_AES_128_GCM_SHA256 rsa_camellia_128_sha == TLS_RSA_WITH_CAMELLIA_128_CBC_SHA rsa_camellia_256_sha == TLS_RSA_WITH_CAMELLIA_256_CBC_SHA ecdh_ecdsa_aes_128_gcm_sha == TLS_ECDH_ECDSA_WITH_AES_128_GCM_SHA256 ecdhe_ecdsa_aes_128_gcm_sha == TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 ecdh_rsa_aes_128_gcm_sha == TLS_ECDH_RSA_WITH_AES_128_GCM_SHA256 ecdhe_rsa_aes_128_gcm_sha == TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 [bnc#863035]- mod_nss-CVE-2013-4566-NSSVerifyClient.diff fixes CVE-2013-4566: If 'NSSVerifyClient none' is set in the server / vhost context (i.e. when server is configured to not request or require client certificate authentication on the initial connection), and client certificate authentication is expected to be required for a specific directory via 'NSSVerifyClient require' setting, mod_nss fails to properly require certificate authentication. Remote attacker can use this to access content of the restricted directories. [bnc#853039]- glue documentation added to /etc/apache2/conf.d/mod_nss.conf: * simultaneaous usage of mod_ssl and mod_nss * SNI concurrency * SUSE framework for apache configuration, Listen directive * module initialization - mod_nss-conf.patch obsoleted by scratch-version of nss.conf.in or mod_nss.conf, respectively. This also leads to the removal of nss.conf.in specific chunks in mod_nss-negotiate.patch and mod_nss-tlsv1_1.patch . - mod_nss_migrate.pl conversion script added; not patched from source, but partially rewritten. - README-SUSE.txt added with step-by-step instructions on how to convert and manage certificates and keys, as well as a rationale about why mod_nss was included in SLES. - package ready for submission [bnc#847216]- generic cleanup of the package: - explicit Requires: to mozilla-nss >= 3.15.1, as TLS-1.2 support came with this version - this is the objective behind this version update of apache2-mod_nss. Tracker bug [bnc#847216] - change path /etc/apache2/alias to /etc/apache2/mod_nss.d to avoid ambiguously interpreted name of directory. - merge content of /etc/apache2/alias to /etc/apache2/mod_nss.d if /etc/apache2/alias exists. - set explicit filemodes 640 for %post generated *.db files in /etc/apache2/mod_nss.d- mod_nss-tlsv1_1.patch: nss.conf.in missed for TLSv1.2 default. - mod_nss-clientauth.patch: merged from RHEL6 pkg - mod_nss-PK11_ListCerts_2.patch: merged from RHEL6 pkg - mod_nss-no_shutdown_if_not_init_2.patch: merged from RHEL6 pkg - mod_nss-sslmultiproxy.patch: merged from RHEL6 pkg - make it build on both Apache2 2.4 and 2.2 systems- Add support for TLS v1.1 and TLS v1.2 (TLS v1.2 requires mozilla nss 3.15.1 or newer.) - merged in mod_nss-proxyvariables.patch and mod_nss-tlsv1_1.patch from redhat to allow tls v1.1 too. - ported the tls v1.1 patch to be tls v1.2 aware - added mod_nss-proxyvariables.patch (from RHEL6 package) - added mod_nss-tlsv1_1.patch (from RHEL6 package, enhanced with TLS 1.2) - mod_nss-array_overrun.patch: from RHEL6 package, fixed a array index overrun- Changed source to original tar.gz- Added mod_nns-httpd24.patch to support build with apache 2.4- Changed mod_nss-conf.patch to adjust mod_nss.conf to match SUSE dir layout [bnc#799483] - Cleaned up license tag- import some patches from Fedora - removed autoreconf call- Fix mod_nss-conf.patch to work on SUSE - Rename package from mod_nss to apache2-mod_nss/bin/shcloud101 1406297962 7  | ۅ ۇ ۆ ۄ ~ v ې ۈ ۃ ۖ ۲ ۴ ۳ ۶ ۵1.0.8-6.11.0.8-6.1mod_nss.conflisten_nss.confmod_nss.dcert8.dbinstall.logkey3.dbsecmod.dbvhost-nss.templateapache2mod_nss.sogencertmod_nss_migrate.plnss_pcacheapache2-mod_nssLICENSEREADMEREADME-SUSE.txtmod_nss.html/etc/apache2/conf.d//etc/apache2//etc/apache2/mod_nss.d//etc/apache2/vhosts.d//usr/lib//usr/lib/apache2//usr/sbin//usr/share/doc/packages//usr/share/doc/packages/apache2-mod_nss/-fomit-frame-pointer -fmessage-length=0 -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -gobs://build.opensuse.org/openSUSE:Evergreen:Maintenance:300/openSUSE_Evergreen_11.4/2f90fbc3cd910605325ce4a120c5d786-apache2-mod_nss.openSUSE_Evergreen_11.4drpmlzma5i586-suse-linuxK<By '?]"k%$+e'Guh q 5K"f6UQ_-WsjwHTo> ^}…N6]Nv>>M.ek*4 2&MHsͱňf [ ,%Sޥ`S%Y|Vb[xk\[WFl=$+ ET$Uq Gbi}hm"b:"}vtĘ(^Ԗ(Ñ=I#odRֲ|;-" %84n=r$Rr|T΍Q*Ř=t+k76$Ք% ˹rLַ@Yj'zH{-9H%x#G+w>)i|`X.+C#Ѽ'gD/J?X͒8J1:B\{^ȢDsES\p=`6Elf/W4W0852C+Y#gCE㳧.tP' /UD^AVƫc:aipA*}y-9lq6ƽ^6/ P1pT=_/4៎/*>oWL)4O;-8 "5b(r*t5! "ޟp"@ !yVl_ 'epivm5$:[\Eܵտ*5<וݸy`rzn3Ze,/F{epAW"RNS&\ö|uk‰u4ZNJ=NYKY?#nB45-suM|ő5ePzrt 8.@&WrX5ܠW8j&|o#%B[gusۯʗx-6p[-L¶ "wƼ;=Ӈ'iǓC9\jv/'q:zǛ4 sTs7pZ:Odݳ@X6m&Q ع^&TD=4T{ ٣tA?dh/B".Z+>f+C*b׫:g`ڬ rvZ+^J;nMI LN YEGV :, bŞ S  <'~,15,^+ś-p="/; ^[z rroz*TƂGEDJh ?/yqUtG e=Wruͼn~ J%ܗ7JWxiPmAAcL.99vKwE1M*˱Ș]J?_c\lxaаP3 墷HsL yYA&1,jo!Q[s~`v n&2 pXyINwiP-mʤ) s-Iuc,BmGv`<]P H2@mD`u,},4 s+5A`g0dBG]G:Ml_MgsSG2`rY\Phct+d۠d3i:Lb"b6(gz֣uܐEk6*̜gbEɳ!sٳ%bNud̈́L!cPˬ<5mX\"Ш.q΂#d\ F|5EQy sLk| ˃'f,Ȩv`{Fm^ĆyEUBQ*,%1I%گi#!xi A ƺ<u][eÍ)4eO [j.Oj=.{|]oJS;c~'50Yy ~yr#}䛹tkd?Ba,JS p.vRD @t1UGNO<JhhvrqR4R#z/}A'$ԤY 5B:aGaͮ8v)DbGְqmVMim⑙C|.*/IzLq?JNME1?f.$11U_Z>#rr6g[ɡ{&g_}R˰JJDS*_e1`"K@c-Wˍ9T-NUj= K]hy. #_uTзGvG B IAz}|o[8״+`Ӫz1PގƲaf7)k=GC*4cBZP =9aȴٵmFE1yO=7/1~9o2a,"_Gt?^uNF]` mXk HI: N^ . /;Tr$8( VnF. VS41} h9A pk@53q|Bv` 7pç:1^KG\& h)vLcSeJ/?"3&e^x o>Eۇ")m܋c-;WOVR7ط&\(-\a,/o)RY MЫ8[YEjAFyG+ORWR ]569\OAmsA+[N̬h=\zV]b,]݃4 fI^(FtYX#Qm0,WpSb77+A#h<+_±y?{Uj4u.[QӤ4]}HBޖ {帟Z ik4˗dYu\̯ I_wȥ>|@5m2ĀkCW~?5VRhi1sT؎3 qTn>}܇;D mŸ;dvw*`XG uBˆAI?ċms,' odSTyf$6qcj+QgSǴ/j҇Щ+NnG6A2O`lmG)ÈGfS({btq q:驪e&ȏ΍ DM O0.('+MJ:u_hFu0!~*Ԩ=0#4rOt}X.֓M=@iJ\Є!x˰е$"f;TϴMjwRVG2؎Kn?q3/?Wփ0XhW|Ϡ:k[Ӹݒ(:"sl(lP 2/ lo="OYizFûT9)jXy|,:~z}/xv[,RvaQ.1i*,o|ndCCb>nM}@#N8T6a|C3y.iv.= /OpXb΁ܯm%T@C|F[vw cK9n/;,G-n 4`8],vcp8|QtsP*OPՓT FL6`&]^z;EjQ>P؞=]őtRY2KKOEQ't0=1w V- m_)b.I[(dQ5pL.=ӏrRtf(7i:{\q^>%|m;ZCxơS[)\-Wﺂ"e]n6զ>"Nƻz#k/Qzy{O$YCpV}J"xcRsHb4 ȿC'E ՇO;3oKYL=zBfm& }MrFO/[iE݁ OU?Tck咟4~y?d7}~k4,)5$ A2tޫbXgR`i$+k88+WB^r=0z#kG==0=a~w ehnM9Q:ZyC}~uV纆`^HnmW$ *W8ZmAFҰU< ̳+ $/QpƩ|<ITSIi!v5#+QdHU*VY߉SS& ˋY$o2F0#.Tk,ںU!RDQ0Œ_.9H'[0k(8PadE"d >i] 1u7yWI-~kǭxe*8mnbj}B7YIpRWp_1,v psz:Q\bѡc0)4s;4_<_tJ\of!O"&u-M6=pajX\Fԟx6{Nr^]r.c"IPwJ;y[<wYMa;"Q W%SIK1hƌ?cQbNNW2@ڜS +PZ.$t6,iwU3.B7kمm 9^tϢRO(FKo&\X Dw%ȸvs&Pc9|>'itiI/ݪ|c%gḇoNPh'{*GN|犗iA-;JekjY+DO~F;DUý쮝 ݫ>>.Y#?dh>q_:dY]<#Jw4 3'5OB[Vuq (Kp(s" rbja@7Ӝ/4V3|w2vWʊcQJ$׹ɬ9d b>:;$(t9P- g2eA1"W{<7cАNK//w#} 2JKc"QTou$4{a-Y4H:`ݶ+ā?9A#v2xҒÞ6(x18Po֊XQVubDd?bs4ىW&nTj5%[##d:?\emD[&h+ѹ"QƎ7> )=Ĭ M~2VrԬ9zskRHڦ (|V z#*:1L *X݊v]`oN*J)HZk † wR;hduMCEeOUX}&"Qc:"g)] JĔpe~|cۿjC;Z4{^Wk fKda>O AN! fЌR A[fQi+gtwfKO #8wx@e)9f,L Gy~ʗ[&#/ tK\^aMdoG^3tq%;Eqt40Xu]rQxuA} 0u2sDjGhZF=5xl :ׁTnzX9$<>OF7Bec_֒{:O9aQqyuJUmS-&}ƂO؍?4VEWzOnERf:Q9) qdS;'`]^sB e`eHD/Yr`@0r OĪ':`e.)5/RlaŻSiQVjdtG7Ӑ U {%^;*_FKi0ق~N--`"c>'R\!Ąc +l+x&o:?s 'Xy+ =[L T bxV櫻0տE:a1@Ct-٠Ψӈ [O<&ݎ$H4 3ojAUXDnbJA>uݘ! ǹŇdꐵX6Wܽ݉q]/!wq^dv~"?za_|󟁘e<y :`ƁlG 2)u~q=[@B,&Cz' m7f: G+Y\'{,By.n ^+?]Z|Y4VQ[sEEY5dM)3ߊnM1] M!01ISXeE-97.L]tr>7XwqH aHi?iĂ߉-=s58L 6~MFJU4 Vu0VЬl7""] ?_ϹKa,Ȇjr=]vz'p,{n^fy`nU˺M*q[f}R@C/ڷiYƜPyԥ/KEԄ'Qwt"%;4YZK58 gxv/1Wŗ,NPEX)d <ޕGlaqzkd["j8g`}n`L\G=6.qNLc磁NonJEq?vޜ )XHKYK1\5?=UC\'גV$7_T3^?*&`:Q&V{R?8%#%_`"b9P#c@ 9m\bA{za\kc9EcE6A\ęL!ҳz;tX[NP,m5KyOC9ۉS[ aNݸ[*e 枬 R7aCֹi%,]LY,aR*ojNF*YcNX_[)A/az ɝ3S&Q>XdN <$4rb }JYSNR5/̮~~^V/4V>#rfSb{gЦ{_\%C[TAw`@@L#X '5Y:@?_>5G~#{>J{vW܉6 lAvk /Tx!)˽V~a݉=+iLxw|Q72S4dCy IiU'giǝ5)Jc_JC?}zEnk.IaۭXXtd@8X")Gk%+O=9PkEa-^|I8WaQeejM< ^qͯ\V (qc7:W' o;U };=B#d5}*oE6څDgnl(9͔NVs6weRׄ_(37#| dWKyӤPyC8XOW+: 0gK_8pfXnW K+ E \)Ԓk^tj[OA kp svM̬fqX# nuGD]`K3NrM PU}̙O#OmAq/n`3E=cmT/zd+~Fؔ9@MoV@.s FJFI訡R8aj kV2SBFdInI%P,m^Oe#4ZΔto:ե և* z5 !-ۑ\:U$:%l615Nl ߾Bn087D ׯgQq2` EMA:tf<~U($*ஂl8xU (/'@ Ef7◎3pxl(#?TFY15=-8ЌD뚈$ 6( ӟ4q'lrەQPXBgJ$6dC)O4x$LY!칇:5"zޅ$d#hZ@uDͧ h[BN aB0}hƍJ _%5(۽F{ŵhy".8L'e}I9"}8\N4/x"/堩w~dT /-sU5:`ɿ|;<1$耐Mz̮elq3%5*O|EDD>e it "iZ5,p}U@݉BjM^#Q/ĊaH̦qCugӐbjd0dY?[¦F9u1=VWr[Xd;8`^(}ja(QVUe\,qdT j1gIR+{ƈb|dyAe"ueiYK]dgq*+@i-xkQ[WuQ7μ@P|yOJPF/W ͯUB&2A~3ߛ6'q8tKjylB4 kq,=ʱ%P[rٕ?v-;v--R[zT^+K[PZNr' aN]9Ё'uLv _簩aI vBB!یn_c (~:m5]ui|SsKkG0Y/=k pNfL0PUJk&Y\~zrv$5̂}z.;O+YR:] c _1O mtvޥ:m9>뀢粥7tG)5~lvz|;sU0otpqC}@/-*m B&?%plcʆWlsXףM ezN`KV9{?AG17Peβۯ.yhtnPVnZ]+b}"z'X?Vo4"+)^,ChV7JH:W\"~F` Sh_ߓѽp'ьu7ʓJ;T'^_`ѕqu g`\XXvBxI[*<汝fY*{rHoU\`h0%MjPu5p,8랈 (٬AR҆0FGT"45f{XD,rTMwu9pp,ЪWW8P*$#$0X5}0쁋41uCq/2X5(a:M58/lfm#ƒa3"a#ϳO"?+.1~ögdHʦ|#bSo qQcm TWVOP-ыj4ZeUs|>oLv~/T/V$)ՃhI_gsE#]R齷>|ͿDbK$M] BSIqc643rлBRLDم$Ԡ﫱f - "ITF3Ozf7eF5 X^&LgV B'nΕ(F VbIYsjw~! ٶQTbGDP:u7 8v>m=0! k`stZOؖ5d3a%\ԗKx@^++dCWʑڂ bt0}`i?`l[q lM#Z "xx[G ވCPGbQGv`$jQkaǹ!BÐ7zUa#e`4zŏ}?#ɜ} |yg1\ @ ,r]MȻ%`E\V*\VS`6 =`S?I=,>DBlWHY HRYV9T)dm]OޮKSJfp6 (}4Vv٦UJGv! ^YGs Fi֌x}oȁ+7ӱp\-Ca9JU1Ij +0Jy)$G 77Z&yQF::=&{ b !j#?Q n\ȃ$CuX/sKGzOT 0<\q(:LbO`Ɖ \-e7ꆌa}ҹp"~+=Raen|y˹º9gړ"%}SѥHԪbrw4{?wFi_**`b>x τ>D`j ˗wWZW0vv|vM$fqZ [ Wf?ȋc]4?.9~ި3ݱr]5u"PDv0 q=!`+<}9*pz::U臍9o\KEAvp/"ʶDR[R;s(޲&yN^j*4V= )?t"A3IA${ԥnpb.iNx:0R=>ۓl…1<]jk7r淴Ev7B險}U]dFVIu;F9Fق$?O+BJD)Y4w:]$̅|Y8` UG*=;~$_,F)aM.23:uma\DP4}1_bNKRwo,C̛z數߈N']JAִvoK[wW[ 'pw ! ]-="A!Hhzm(i]A`){&h2V}vs(j1^,,jQWg16AtSvmiiZIRҖB-ݣZ)2>Մ񴺨v^@M\gqP;(+Mf0ؒ/fJ!ZuԟMsroݪzF.yd+ܺ_eeJi&xȤG<O<2HDdCYE9[r`/x#s06Ж9U!*Yt`؝*ٞ'^:Z>;y827BW~\D͋S>sAkV/3/WU.0Pe? ԝzoV0Wtl0\!yURԔQ A9ld:QD&0^B tY7xv J6:|z d /FȕqwށhĔ/fQeݨ/o_ \٦@aV쾊>`ѩ4Ճ&Ѻ{[ fl%VyCͭg>yF1vw = Q-TUZ@4t%X7 'Jŀ,o ^ۓ(U@4Smj6br@`H I> 7K_IV>oB{tΖ m;򫢶 ~)4-1ʆnkc/76c\XH7rk_0%+4Xèv PW@!<4RMi1h⤞u_]"v.