stunnel-doc-5.44-lp151.5.3.1<>,EX]/=„9'KJ'9{I ,[nTZK}uBZrUf( |ăFE,{䤨cL5Onon:-no5f:jLb=O/%#2v0Na/l \%(k'.rXynKme[Hmy#ATpeϠQm*8xJ;<?<d  J  d     i$0D(898: F7G7H88I8|X8Y8\8]8^9b:c:d;Ie;Nf;Ql;Su;hv;z=6aU!]]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-5.44-lp151.5.3.1.src.rpmstunnel-doc    rpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)stunnel3.0.4-14.6.0-14.0-15.2-15.444.14.1]{ZyZs@Zhu@Z@Y@YoIX-Xߖ@X@XXj@XIK@XkXWv@VVvUL@Uc@UnUU3@TZ@Vítězslav Čížek vetter@physik.uni-wuerzburg.dejengelh@inai.deavindra@opensuse.orgrbrown@suse.comvetter@physik.uni-wuerzburg.demichael@stroeder.comwerner@suse.demichael@stroeder.comkukuk@suse.demichael@stroeder.commichael@stroeder.commichael@stroeder.comjengelh@inai.dedrahn@suse.comdrahn@suse.commichael@stroeder.comopensuse@dstoecker.dedrahn@suse.comdrahn@suse.comdrahn@suse.comdrahn@suse.comdrahn@suse.commichael@stroeder.com- Install the correct file as README.openSUSE (bsc#1150730) * stunnel.keyring was accidentally installed instead- Revamp SLE11 builds- Do not ignore errors from useradd. Ensure nogroup exists beforehand. - Replace old $RPM_ variables. Combine two nested ifs.- update to version 5.44 * Default accept address restored to INADDR_ANY * Fix race condition in "make check" * Fix removing the pid file after configuration reload - includes 5.43 * Allow for multiple "accept" ports per section * Self-test framework (make check) * Added config load before OpenSSL init * OpenSSL 1.1.1-dev compilation fixes * Fixed round-robin failover in the FORK threading model * Fixed handling SSL_ERROR_ZERO_RETURN in SSL_shutdown() * Minor fixes of the logging subsystem * OpenSSL DLLs updated to version 1.0.2m - add new checking to build - rebase stunnel-listenqueue-option.patch - Cleanup with spec-cleaner- Replace references to /var/adm/fillup-templates with new %_fillupdir macro (boo#1069468)- add more verbose change log: Version 5.42, 2017.07.16, urgency: HIGH - New features * "redirect" also supports "exec" and not only "connect". * PKCS#11 engine DLL updated to version 0.4.7. - Bugfixes * Fixed premature cron thread initialization causing hangs. * Fixed "verifyPeer = yes" on OpenSSL <= 1.0.1. * Fixed pthreads support on OpenSolaris.- update to version 5.42- Require package config for libsystemd to help the configure script to detect and enable systemd socket activation (boo#1032557) - Refresh patch stunnel-listenqueue-option.patch- update to version 5.41- Don't require insserv if we don't use it- update to version 5.40- update to version 5.39- update to version 5.38- Update rpm group and description and make -doc noarch - Do not suppress errors from useradd - Remove redundant %clean section- update to version 5.36 - Removed direct zlib dependency.- update to version 5.35 - repackage source as bz2 - adjust systemd unit file to start after network-online.target - bugixes: * Fixed incorrectly enforced client certificate requests. * Fixed thread safety of the configuration file reopening. * Fixed malfunctioning "verify = 4". * Only reset the watchdog if some data was actually transferred. * Fixed logging an incorrect value of the round-robin starting point (thx to Jose Alf.). - new features: * Added three new service-level options: requireCert, verifyChain, and verifyPeer for fine-grained certificate verification control. * SNI support also enabled on OpenSSL 0.9.8f and later (thx to Guillermo Rodriguez Garcia). * Added support for PKCS #12 (.p12/.pfx) certificates (thx to Dmitry Bakshaev). * New "socket = a:IPV6_V6ONLY=yes" option to only bind IPv6. * Added logging the list of client CAs requested by the server.- update to 5.30 New features Improved compatibility with the current OpenSSL 1.1.0-dev tree. Added OpenSSL autodetection for the recent versions of Xcode. Bugfixes Fixed references to /etc removed from stunnel.init.in. Stopped even trying -fstack-protector on unsupported platforms (thx to Rob Lockhart).- update to 5.29 - system script restarts stunnel after a crash - readd rcstunnel macro for systemd systems - drop stunnel-ocsp-host.patch (included upstream)- stunnel-ocsp-host.patch: Fix compatibility issues with older OpenSSL versions. Replaces stunnel-5.22-code11-openssl-compat.diff.- update to version 5.22 New features - "OCSPaia = yes" added to the configuration file templates. - Improved double free detection. Bugfixes - Fixed a number of OCSP bugs. The most severe of those bugs caused stunnel to treat OCSP responses that failed OCSP_basic_verify() checks as if they were successful. - Fixed the passive IPv6 resolver (broken in stunnel 5.21). - Remove executable bit from sample scripts - stunnel-5.22-code11-openssl-compat.diff: Compatibility for openssl on CODE11- update to version 5.21 New features - Signal names are displayed instead of numbers. - First resolve IPv4 addresses on passive resolver requests. - More elaborate descriptions were added to the warning about using "verify = 2" without "checkHost" or "checkIP". - Performance optimization was performed on the debug code. Bugfixes - Fixed the FORK and UCONTEXT threading support. - Fixed "failover=prio" (broken since stunnel 5.15). - Added a retry when sleep(3) was interrupted by a signal in the cron thread scheduler.- update to version 5.20 New features - The SSL library detection algorithm was made a bit smarter. - Warnings about insecure authentication were modified to include the name of the affected service section. - Documentation updates (closes Debian bug #781669). Bugfixes - Signal pipe reinitialization added to prevent turning the main accepting thread into a busy wait loop when an external condition breaks the signal pipe. This bug was found to surface on Win32, but other platforms may also be affected. - Generated temporary DH parameters are used for configuration reload instead of the static defaults. - Fixed the manual page headers (thx to Gleydson Soares).- update to version 5.19 Bugfixes: - Improved socket error handling. - Fixed handling of dynamic connect targets. - Fixed handling of trailing whitespaces in the Content-Length header of the NTLM authentication. - Fixed memory leaks in certificate verification. New features: - The "redirect" option was improved to not only redirect sessions established with an untrusted certificate, but also sessions established without a client certificate. - Randomize the initial value of the round-robin counter. - Added "include" configuration file option to include all configuration file parts located in a specified directory. - Temporary DH parameters are refreshed every 24 hours, unless static DH parameters were provided in the certificate file. - Warnings are logged on potentially insecure authentication. - stunnel-listenqueue-option.patch: Refresh. - stunnel3-binpath.patch: Obsolete, dropped. - stunnel.service: Modified to start after network.target, not syslog.target.- Update to version 5.09 Version 5.09, 2015.01.02, urgency: LOW: * New features - Added PSK authentication with two new service-level configuration file options "PSKsecrets" and "PSKidentity". - Added additional security checks to the OpenSSL memory management functions. - Added support for the OPENSSL_NO_OCSP and OPENSSL_NO_ENGINE OpenSSL configuration flags. - Added compatibility with the current OpenSSL 1.1.0-dev tree. * Bugfixes - Removed defective s_poll_error() code occasionally causing connections to be prematurely closed (truncated). This bug was introduced in stunnel 4.34. - Fixed ./configure systemd detection (thx to Kip Walraven). - Fixed ./configure sysroot detection (thx to Kip Walraven). - Fixed compilation against old versions of OpenSSL. - Removed outdated French manual page. Version 5.08, 2014.12.09, urgency: MEDIUM: * New features - Added SOCKS4/SOCKS4a protocol support. - Added SOCKS5 protocol support. - Added SOCKS RESOLVE [F0] TOR extension support. - Updated automake to version 1.14.1. - OpenSSL directory searching is now relative to the sysroot. * Bugfixes - Fixed improper hangup condition handling. - Fixed missing -pic linker option. This is required for Android 5.0 and improves security. Version 5.07, 2014.11.01, urgency: MEDIUM: * New features - Several SMTP server protocol negotiation improvements. - Added UTF-8 byte order marks to stunnel.conf templates. - DH parameters are no longer generated by "make cert". The hardcoded DH parameters are sufficiently secure, and modern TLS implementations will use ECDH anyway. - Updated manual for the "options" configuration file option. - Added support for systemd 209 or later. - New --disable-systemd ./configure option. - setuid/setgid commented out in stunnel.conf-sample. * Bugfixes - Added support for UTF-8 byte order mark in stunnel.conf. - Compilation fix for OpenSSL with disabled SSLv2 or SSLv3. - Non-blocking mode set on inetd and systemd descriptors. - shfolder.h replaced with shlobj.h for compatibility with modern Microsoft compilers. Version 5.06, 2014.10.15, urgency: HIGH: * Security bugfixes - OpenSSL DLLs updated to version 1.0.1j. https://www.openssl.org/news/secadv_20141015.txt - The insecure SSLv2 protocol is now disabled by default. It can be enabled with "options = -NO_SSLv2". - The insecure SSLv3 protocol is now disabled by default. It can be enabled with "options = -NO_SSLv3". - Default sslVersion changed to "all" (also in FIPS mode) to autonegotiate the highest supported TLS version. * New features - Added missing SSL options to match OpenSSL 1.0.1j. - New "-options" commandline option to display the list of supported SSL options. * Bugfixes - Fixed FORK threading build regression bug. - Fixed missing periodic Win32 GUI log updates. Version 5.05, 2014.10.10, urgency: MEDIUM: * New features - Asynchronous communication with the GUI thread for faster logging on Win32. - systemd socket activation (thx to Mark Theunissen). - The parameter of "options" can now be prefixed with "-" to clear an SSL option, for example: "options = -LEGACY_SERVER_CONNECT". - Improved "transparent = destination" manual page (thx to Vadim Penzin). * Bugfixes - Fixed POLLIN|POLLHUP condition handling error resulting in prematurely closed (truncated) connection. - Fixed a null pointer dereference regression bug in the "transparent = destination" functionality (thx to Vadim Penzin). This bug was introduced in stunnel 5.00. - Fixed startup thread synchronization with Win32 GUI. - Fixed erroneously closed stdin/stdout/stderr if specified as the -fd commandline option parameter. - A number of minor Win32 GUI bugfixes and improvements. - Merged most of the Windows CE patches (thx to Pierre Delaage). - Fixed incorrect CreateService() error message on Win32. - Implemented a workaround for defective Cygwin file descriptor passing breaking the libwrap support: http://wiki.osdev.org/Cygwin_Issues#Passing_file_descriptors Version 5.04, 2014.09.21, urgency: LOW: * New features - Support for local mode ("exec" option) on Win32. - Support for UTF-8 config file and log file. - Win32 UTF-16 build (thx to Pierre Delaage for support). - Support for Unicode file names on Win32. - A more explicit service description provided for the Windows SCM (thx to Pierre Delaage). - TCP/IP dependency added for NT service in order to prevent initialization failure at boot time. - FIPS canister updated to version 2.0.8 in the Win32 binary build. * Bugfixes - load_icon_default() modified to return copies of default icons instead of the original resources to prevent the resources from being destroyed. - Partially merged Windows CE patches (thx to Pierre Delaage). - Fixed typos in stunnel.init.in and vc.mak. - Fixed incorrect memory allocation statistics update in str_realloc(). - Missing REMOTE_PORT environmental variable is provided to processes spawned with "exec" on Unix platforms. - Taskbar icon is no longer disabled for NT service. - Fixed taskbar icon initialization when commandline options are specified. - Reportedly more compatible values used for the dwDesiredAccess parameter of the CreateFile() function (thx to Pierre Delaage). - A number of minor Win32 GUI bugfixes and improvements.cloud126 1574421240 5.44-lp151.5.3.1stunnel-docAUTHORSBUGSCOPYINGCOPYRIGHT.GPLCREDITSChangeLogNEWSPORTSREADMETODOVNC_StunnelHOWTO.htmlplfaq.stunnel-2.htmltworzenie_certyfikatow.htmlstunnel.htmlstunnel.pl.html/usr/share/doc/packages//usr/share/doc/packages/stunnel-doc//usr/share/doc/packages/stunnel-doc/pl/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.opensuse.org/openSUSE:Maintenance:11563/openSUSE_Leap_15.1_Update/d49a0bc19a3e300105c6fcfd7d13db07-stunnel.openSUSE_Leap_15.1_Updatedrpmxz5x86_64-suse-linuxdirectoryASCII textUTF-8 Unicode textHTML document, ASCII text, with CRLF line terminatorsHTML document, ISO-8859 textXML 1.0 document, ASCII text, with very long lines duGa;?lutf-89fc2c04e3f2f2851b1f17e61c846cd8cba67e63592a3ce12f5ed92b7c1571ee1?P7zXZ !t/r]"k%w*)wqs9K<,cՌZ{8UhE;_teqi"hb]|>UgazEX429wGm 90Bo.=+\a GeW4uL0<3i'xn~VKY,3E|K0g^܎ aR; ? Q+LOn~ @D+WT1I_oA9|7ؤGق2<[q#]IA03cs0"j=s]wmBiPޜGa_*V˝c.ViQؿ|a!%Ј:vxdX"ž0Ƭ}Ra. Nswu9 ΖꮱQz.VH@/};@\s3|[ 6~~*mg[u 9Ȭ~ƀxfMn N[vH}o6 1+TJ +,ybt[5e'Y|3z?;MkbnT̘ H,xҖ=%ݷ=sr44fMƳr‘BymI0:@f~j3S)~aO iMh|D;=ʿHc[S;B #1Ek 6ءzҞD޲a{(@O ɻ`_`Na#".'smHUYd 1/_]"s]bZ~7d0\:o|^aVk+Sz`p`9@(Y/ݎXi`ZQ^Mow zXW@pIA˜Jk){Pǝ?4~`ڔvgatSX=l=FG[޻mi&ZmxpڹFt{3:gܮ /}lߗ YZ