tizen 2.4 release
[framework/security/key-manager.git] / packaging / key-manager.spec
1 %define ckm_build_internal_test 0
2
3 Name:       key-manager
4 Summary:    Central Key Manager and utilities
5 Version:    0.1.13
6 Release:    1
7 Group:      System/Security
8 License:    Apache-2.0 and BSL-1.0 and PD
9 Source0:    %{name}-%{version}.tar.gz
10 Source1001: key-manager.manifest
11 Source1002: libkey-manager-client.manifest
12 Source1003: libkey-manager-common.manifest
13 BuildRequires: cmake
14 BuildRequires: pkgconfig(openssl)
15 BuildRequires: pkgconfig(libsystemd-daemon)
16 BuildRequires: pkgconfig(vasum)
17 BuildRequires: pkgconfig(capi-system-info)
18 BuildRequires: boost-devel
19 BuildRequires: pkgconfig(glib-2.0)
20 BuildRequires: pkgconfig(pkgmgr)
21 Requires: libkey-manager-common = %{version}-%{release}
22 Requires(post): /sbin/ldconfig
23 Requires(postun): /sbin/ldconfig
24 %{?systemd_requires}
25
26 %description
27 Central Key Manager daemon could be used as secure storage
28 for certificate and private/public keys. It gives API for
29 application to sign and verify (DSA/RSA/ECDSA) signatures.
30
31 %package -n libkey-manager-common
32 License:    Apache-2.0
33 Summary:    Central Key Manager (common libraries)
34 Group:      Development/Libraries
35 BuildRequires: pkgconfig(dlog)
36 BuildRequires: pkgconfig(libcrypto)
37 BuildRequires: pkgconfig(libsystemd-journal)
38 Requires(post): /sbin/ldconfig
39 Requires(postun): /sbin/ldconfig
40
41 %description -n libkey-manager-common
42 Central Key Manager package (common library)
43
44 %package -n libkey-manager-client
45 License:    Apache-2.0
46 Summary:    Central Key Manager (client)
47 Group:      Development/Libraries
48 BuildRequires: pkgconfig(capi-base-common)
49 BuildRequires: pkgconfig(security-server)
50 Requires:   key-manager = %{version}-%{release}
51 Requires:   libkey-manager-common = %{version}-%{release}
52 Requires(post): /sbin/ldconfig
53 Requires(postun): /sbin/ldconfig
54
55 %description -n libkey-manager-client
56 Central Key Manager package (client)
57
58 %package -n libkey-manager-client-devel
59 License:    Apache-2.0
60 Summary:    Central Key Manager (client-devel)
61 Group:      Development/Libraries
62 BuildRequires: pkgconfig(capi-base-common)
63 Requires:   libkey-manager-client = %{version}-%{release}
64
65 %description -n libkey-manager-client-devel
66 Central Key Manager package (client-devel)
67
68 %if 0%{?ckm_build_internal_test}
69 %package -n key-manager-tests
70 License:    Apache-2.0 and BSL-1.0
71 Summary:    Internal test for key-manager
72 Group:      Development
73 BuildRequires: boost-test
74 Requires:   key-manager = %{version}-%{release}
75
76 %description -n key-manager-tests
77 Internal test for key-manager implementation.
78 %endif
79
80 %prep
81 %setup -q
82 cp -a %{SOURCE1001} .
83 cp -a %{SOURCE1002} .
84 cp -a %{SOURCE1003} .
85
86 %build
87 export CFLAGS="$CFLAGS -DTIZEN_DEBUG_ENABLE"
88 export CXXFLAGS="$CXXFLAGS -DTIZEN_DEBUG_ENABLE"
89 export FFLAGS="$FFLAGS -DTIZEN_DEBUG_ENABLE"
90
91 export LDFLAGS+="-Wl,--rpath=%{_libdir},-Bsymbolic-functions "
92
93 # password protection enabled
94 %define ckm_password_protection_disable 0
95 # zone disabled on 2.4
96 %define ckm_db_per_zone_enable 0
97
98 %cmake . -DVERSION=%{version} \
99         -DCMAKE_BUILD_TYPE=%{?build_type:%build_type}%{!?build_type:RELEASE} \
100         -DCMAKE_VERBOSE_MAKEFILE=ON \
101 %if 0%{?ckm_password_protection_disable}
102         -DPASSWORD_PROTECTION_DISABLE=1 \
103 %endif
104 %if 0%{?ckm_db_per_zone_enable}
105         -DDB_PER_ZONE_ENABLE=1 \
106 %endif
107 %if 0%{?ckm_build_internal_test}
108         -DCKM_BUILD_INTERNAL_TEST=1 \
109 %endif
110         -DSYSTEMD_UNIT_DIR=%{_unitdir} \
111         -DSYSTEMD_ENV_FILE="/etc/sysconfig/central-key-manager"
112
113 make %{?jobs:-j%jobs}
114
115 %install
116 rm -rf %{buildroot}
117 mkdir -p %{buildroot}/usr/share/license
118 cp LICENSE %{buildroot}/usr/share/license/%{name}
119 cp LICENSE.BSL-1.0 %{buildroot}/usr/share/license/%{name}.BSL-1.0
120 cp LICENSE %{buildroot}/usr/share/license/libkey-manager-client
121 cp LICENSE %{buildroot}/usr/share/license/libkey-manager-control-client
122 mkdir -p %{buildroot}/usr/share/ckm/scripts
123 cp data/scripts/*.sql %{buildroot}/usr/share/ckm/scripts
124
125 %if 0%{?ckm_build_internal_test}
126 mkdir -p %{buildroot}/usr/share/ckm-db-test
127 cp tests/testme_ver1.db %{buildroot}/usr/share/ckm-db-test/
128 cp tests/testme_ver2.db %{buildroot}/usr/share/ckm-db-test/
129 %endif
130
131 %make_install
132 mkdir -p %{buildroot}%{_unitdir}/multi-user.target.wants
133 mkdir -p %{buildroot}%{_unitdir}/sockets.target.wants
134 ln -s ../central-key-manager.service %{buildroot}%{_unitdir}/multi-user.target.wants/central-key-manager.service
135 ln -s ../central-key-manager-api-control.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-control.socket
136 ln -s ../central-key-manager-api-storage.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-storage.socket
137 ln -s ../central-key-manager-api-ocsp.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-ocsp.socket
138 mkdir -p %{buildroot}/opt/data/ckm
139
140 %clean
141 rm -rf %{buildroot}
142
143 %post
144 /sbin/ldconfig
145 systemctl daemon-reload
146 if [ $1 = 1 ]; then
147     # installation
148     systemctl start central-key-manager.service
149 fi
150
151 if [ $1 = 2 ]; then
152     # update
153     systemctl restart central-key-manager.service
154 fi
155
156
157 %preun
158 if [ $1 = 0 ]; then
159     # unistall
160     systemctl stop central-key-manager.service
161 fi
162
163 %postun
164 /sbin/ldconfig
165 if [ $1 = 0 ]; then
166     # uninstall
167     systemctl daemon-reload
168 fi
169
170 %post -n libkey-manager-client -p /sbin/ldconfig
171
172 %postun -n libkey-manager-client -p /sbin/ldconfig
173
174 %post -n libkey-manager-common -p /sbin/ldconfig
175
176 %postun -n libkey-manager-common -p /sbin/ldconfig
177
178
179 %files -n key-manager
180 %manifest key-manager.manifest
181 %defattr(-,system,system,-)
182 %{_bindir}/key-manager
183 %{_unitdir}/multi-user.target.wants/central-key-manager.service
184 %{_unitdir}/central-key-manager.service
185 %{_unitdir}/sockets.target.wants/central-key-manager-api-control.socket
186 %{_unitdir}/central-key-manager-api-control.socket
187 %{_unitdir}/sockets.target.wants/central-key-manager-api-storage.socket
188 %{_unitdir}/central-key-manager-api-storage.socket
189 %{_unitdir}/sockets.target.wants/central-key-manager-api-ocsp.socket
190 %{_unitdir}/central-key-manager-api-ocsp.socket
191 %{_datadir}/license/%{name}
192 %{_datadir}/license/%{name}.BSL-1.0
193 %attr(444, system, system) %{_datadir}/ckm/scripts/*.sql
194 /etc/opt/upgrade/230.key-manager-migrate-dkek.patch.sh
195 %attr(700, system, system) /opt/data/ckm
196
197 %files -n libkey-manager-common
198 %manifest libkey-manager-common.manifest
199 %defattr(-,system,system,-)
200 %{_libdir}/libkey-manager-common.so.*
201
202 %files -n libkey-manager-client
203 %manifest libkey-manager-client.manifest
204 %defattr(-,system,system,-)
205 %{_libdir}/libkey-manager-client.so.*
206 %{_libdir}/libkey-manager-control-client.so.*
207 %{_libdir}/libsecurity-server-plugin.so*
208 %{_datadir}/license/libkey-manager-client
209 %{_datadir}/license/libkey-manager-control-client
210
211 %files -n libkey-manager-client-devel
212 %defattr(-,system,system,-)
213 %{_libdir}/libkey-manager-client.so
214 %{_libdir}/libkey-manager-control-client.so
215 %{_libdir}/libkey-manager-common.so
216 %{_includedir}/ckm/ckm/ckm-manager.h
217 %{_includedir}/ckm/ckm/ckm-manager-async.h
218 %{_includedir}/ckm/ckm/ckm-certificate.h
219 %{_includedir}/ckm/ckm/ckm-control.h
220 %{_includedir}/ckm/ckm/ckm-error.h
221 %{_includedir}/ckm/ckm/ckm-key.h
222 %{_includedir}/ckm/ckm/ckm-password.h
223 %{_includedir}/ckm/ckm/ckm-pkcs12.h
224 %{_includedir}/ckm/ckm/ckm-raw-buffer.h
225 %{_includedir}/ckm/ckm/ckm-client-info.h
226 %{_includedir}/ckm/ckm/ckm-type.h
227 %{_includedir}/ckm/ckmc/ckmc-manager.h
228 %{_includedir}/ckm/ckmc/ckmc-control.h
229 %{_includedir}/ckm/ckmc/ckmc-error.h
230 %{_includedir}/ckm/ckmc/ckmc-type.h
231 %{_libdir}/pkgconfig/*.pc
232
233 %if 0%{?ckm_build_internal_test}
234 %files -n key-manager-tests
235 %defattr(-,system,system,-)
236 %{_bindir}/ckm-tests-internal
237 %{_bindir}/ckm-tests-lcov-internal
238 %{_datadir}/ckm-db-test/testme_ver1.db
239 %{_datadir}/ckm-db-test/testme_ver2.db
240 %{_bindir}/ckm_so_loader
241 %endif