Check platform feature(network) before check ocsp
[platform/core/security/key-manager.git] / packaging / key-manager.spec
1 Name:       key-manager
2 Summary:    Central Key Manager and utilities
3 Version:    0.1.15
4 Release:    1
5 Group:      System/Security
6 License:    Apache-2.0
7 Source0:    %{name}-%{version}.tar.gz
8 Source1001: key-manager.manifest
9 Source1002: key-manager-listener.manifest
10 Source1003: libkey-manager-client.manifest
11 Source1004: libkey-manager-common.manifest
12 BuildRequires: cmake
13 BuildRequires: zip
14 BuildRequires: pkgconfig(dlog)
15 BuildRequires: pkgconfig(openssl)
16 BuildRequires: libattr-devel
17 BuildRequires: pkgconfig(libsmack)
18 BuildRequires: pkgconfig(libsystemd-daemon)
19 BuildRequires: pkgconfig(vconf)
20 BuildRequires: pkgconfig(libsystemd-journal)
21 BuildRequires: pkgconfig(libxml-2.0)
22 BuildRequires: pkgconfig(capi-system-info)
23 BuildRequires: boost-devel
24 Requires: libkey-manager-common = %{version}-%{release}
25 %{?systemd_requires}
26
27 %description
28 Central Key Manager daemon could be used as secure storage
29 for certificate and private/public keys. It gives API for
30 application to sign and verify (DSA/RSA/ECDSA) signatures.
31
32 %package -n key-manager-listener
33 Summary:    Package with listener daemon
34 Group:      System/Security
35 BuildRequires: pkgconfig(vconf)
36 BuildRequires: pkgconfig(glib-2.0)
37 BuildRequires: pkgconfig(capi-appfw-package-manager)
38 Requires:   libkey-manager-client = %{version}-%{release}
39
40 %description -n key-manager-listener
41 Listener for central key manager. This daemon is responsible for
42 receive notification from dbus about uninstall application
43 and pass them to key-manager daemon.
44
45 %package -n libkey-manager-common
46 Summary:    Central Key Manager (common libraries)
47 Group:      Development/Libraries
48 Requires(post): /sbin/ldconfig
49 Requires(postun): /sbin/ldconfig
50
51 %description -n libkey-manager-common
52 Central Key Manager package (common library)
53
54 %package -n libkey-manager-client
55 Summary:    Central Key Manager (client)
56 Group:      Development/Libraries
57 Requires:   key-manager = %{version}-%{release}
58 Requires:   libkey-manager-common = %{version}-%{release}
59 Requires(post): /sbin/ldconfig
60 Requires(postun): /sbin/ldconfig
61
62 %description -n libkey-manager-client
63 Central Key Manager package (client)
64
65 %package -n libkey-manager-client-devel
66 Summary:    Central Key Manager (client-devel)
67 Group:      Development/Libraries
68 BuildRequires: pkgconfig(capi-base-common)
69 Requires:   pkgconfig(capi-base-common)
70 Requires:   libkey-manager-client = %{version}-%{release}
71
72 %description -n libkey-manager-client-devel
73 Central Key Manager package (client-devel)
74
75 %package -n key-manager-tests
76 Summary:    Internal test for key-manager
77 Group:      Development
78 BuildRequires: pkgconfig(libxml-2.0)
79 Requires:   boost-test
80 Requires:   key-manager = %{version}-%{release}
81
82 %description -n key-manager-tests
83 Internal test for key-manager implementation.
84
85 %package -n key-manager-pam-plugin
86 Summary:    CKM login/password module to PAM.
87 Group:      Development/Libraries
88 BuildRequires: pam-devel
89 Requires:   key-manager = %{version}-%{release}
90 Requires(post): /sbin/ldconfig
91 Requires(postun): /sbin/ldconfig
92
93 %description -n key-manager-pam-plugin
94 CKM login/password module to PAM.
95 It's used to monitor user login/logout and password change events from PAM.
96
97
98 %prep
99 %setup -q
100 cp -a %{SOURCE1001} .
101 cp -a %{SOURCE1002} .
102 cp -a %{SOURCE1003} .
103 cp -a %{SOURCE1004} .
104
105 %build
106 %if 0%{?sec_build_binary_debug_enable}
107     export CFLAGS="$CFLAGS -DTIZEN_DEBUG_ENABLE"
108     export CXXFLAGS="$CXXFLAGS -DTIZEN_DEBUG_ENABLE"
109     export FFLAGS="$FFLAGS -DTIZEN_DEBUG_ENABLE"
110 %endif
111
112
113 export LDFLAGS+="-Wl,--rpath=%{_libdir},-Bsymbolic-functions "
114
115 %cmake . -DVERSION=%{version} \
116         -DCMAKE_BUILD_TYPE=%{?build_type:%build_type}%{!?build_type:RELEASE} \
117         -DCMAKE_VERBOSE_MAKEFILE=ON \
118 %if "%{sec_product_feature_security_mdfpp_enable}" == "1"
119         -DSECURITY_MDFPP_STATE_ENABLE=1 \
120 %endif
121         -DSYSTEMD_UNIT_DIR=%{_unitdir} \
122         -DSYSTEMD_ENV_FILE="/etc/sysconfig/central-key-manager"
123
124 make %{?jobs:-j%jobs}
125
126 %install
127 rm -rf %{buildroot}
128 mkdir -p %{buildroot}/usr/share/license
129 cp LICENSE %{buildroot}/usr/share/license/%{name}
130 cp LICENSE %{buildroot}/usr/share/license/libkey-manager-client
131 cp LICENSE %{buildroot}/usr/share/license/libkey-manager-control-client
132 mkdir -p %{buildroot}/opt/data/ckm/initial_values
133 mkdir -p %{buildroot}/etc/security/
134 mkdir -p %{buildroot}/usr/share/ckm/scripts
135 cp data/scripts/*.sql %{buildroot}/usr/share/ckm/scripts
136 cp doc/initial_values.xsd %{buildroot}/usr/share/ckm
137 mkdir -p %{buildroot}/usr/share/ckm-db-test
138 cp tests/testme_ver1.db %{buildroot}/usr/share/ckm-db-test/
139 cp tests/testme_ver2.db %{buildroot}/usr/share/ckm-db-test/
140 cp tests/testme_ver3.db %{buildroot}/usr/share/ckm-db-test/
141 cp tests/XML_1_okay.xml %{buildroot}/usr/share/ckm-db-test/
142 cp tests/XML_1_okay.xsd %{buildroot}/usr/share/ckm-db-test/
143 cp tests/XML_1_wrong.xml %{buildroot}/usr/share/ckm-db-test/
144 cp tests/XML_1_wrong.xsd %{buildroot}/usr/share/ckm-db-test/
145 cp tests/XML_2_structure.xml %{buildroot}/usr/share/ckm-db-test/
146 mkdir -p %{buildroot}/etc/gumd/userdel.d/
147 cp data/gumd/10_key-manager.post %{buildroot}/etc/gumd/userdel.d/
148
149 %make_install
150 mkdir -p %{buildroot}%{_unitdir}/multi-user.target.wants
151 mkdir -p %{buildroot}%{_unitdir}/sockets.target.wants
152 ln -s ../central-key-manager.service %{buildroot}%{_unitdir}/multi-user.target.wants/central-key-manager.service
153 ln -s ../central-key-manager-listener.service %{buildroot}%{_unitdir}/multi-user.target.wants/central-key-manager-listener.service
154 ln -s ../central-key-manager-api-control.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-control.socket
155 ln -s ../central-key-manager-api-storage.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-storage.socket
156 ln -s ../central-key-manager-api-ocsp.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-ocsp.socket
157 ln -s ../central-key-manager-api-encryption.socket %{buildroot}%{_unitdir}/sockets.target.wants/central-key-manager-api-encryption.socket
158
159 %clean
160 rm -rf %{buildroot}
161
162 %post
163 systemctl daemon-reload
164 if [ $1 = 1 ]; then
165     # installation
166     systemctl start central-key-manager.service
167 fi
168
169 if [ $1 = 2 ]; then
170     # update
171     systemctl restart central-key-manager.service
172 fi
173
174
175 %preun
176 if [ $1 = 0 ]; then
177     # unistall
178     systemctl stop central-key-manager.service
179 fi
180
181 %postun
182 if [ $1 = 0 ]; then
183     # unistall
184     systemctl daemon-reload
185 fi
186
187 %post -n libkey-manager-client -p /sbin/ldconfig
188
189 %postun -n libkey-manager-client -p /sbin/ldconfig
190
191 %post -n key-manager-listener
192 systemctl daemon-reload
193 if [ $1 = 1 ]; then
194     # installation
195     systemctl start central-key-manager-listener.service
196 fi
197 if [ $1 = 2 ]; then
198     # update
199     systemctl restart central-key-manager-listener.service
200 fi
201
202 %preun -n key-manager-listener
203 if [ $1 = 0 ]; then
204     # unistall
205     systemctl stop central-key-manager-listener.service
206 fi
207
208 %postun -n key-manager-listener
209 if [ $1 = 0 ]; then
210     # unistall
211     systemctl daemon-reload
212 fi
213
214
215 %files -n key-manager
216 %manifest key-manager.manifest
217 %{_bindir}/key-manager
218 %{_unitdir}/multi-user.target.wants/central-key-manager.service
219 %{_unitdir}/central-key-manager.service
220 %{_unitdir}/central-key-manager.target
221 %{_unitdir}/sockets.target.wants/central-key-manager-api-control.socket
222 %{_unitdir}/central-key-manager-api-control.socket
223 %{_unitdir}/sockets.target.wants/central-key-manager-api-storage.socket
224 %{_unitdir}/central-key-manager-api-storage.socket
225 %{_unitdir}/sockets.target.wants/central-key-manager-api-ocsp.socket
226 %{_unitdir}/central-key-manager-api-ocsp.socket
227 %{_unitdir}/sockets.target.wants/central-key-manager-api-encryption.socket
228 %{_unitdir}/central-key-manager-api-encryption.socket
229 %{_datadir}/license/%{name}
230 %{_datadir}/ckm/scripts/*.sql
231 %{_datadir}/
232 %{_datadir}/ckm/initial_values.xsd
233 /opt/data/ckm/initial_values/
234 %attr(444, root, root) %{_datadir}/ckm/scripts/*.sql
235 /etc/opt/upgrade/230.key-manager-migrate-dkek.patch.sh
236 /etc/gumd/userdel.d/10_key-manager.post
237 %attr(550, root, root) /etc/gumd/userdel.d/10_key-manager.post
238 %{_bindir}/ckm_tool
239
240 %files -n key-manager-listener
241 %manifest key-manager-listener.manifest
242 %{_bindir}/key-manager-listener
243 %{_unitdir}/multi-user.target.wants/central-key-manager-listener.service
244 %{_unitdir}/central-key-manager-listener.service
245
246 %files -n libkey-manager-common
247 %manifest libkey-manager-common.manifest
248 %{_libdir}/libkey-manager-common.so.*
249
250 %files -n libkey-manager-client
251 %manifest libkey-manager-client.manifest
252 %{_libdir}/libkey-manager-client.so.*
253 %{_libdir}/libkey-manager-control-client.so.*
254 %{_datadir}/license/libkey-manager-client
255 %{_datadir}/license/libkey-manager-control-client
256
257 %files -n libkey-manager-client-devel
258 %defattr(-,root,root,-)
259 %{_libdir}/libkey-manager-client.so
260 %{_libdir}/libkey-manager-control-client.so
261 %{_libdir}/libkey-manager-common.so
262 %{_includedir}/ckm/ckm/ckm-manager.h
263 %{_includedir}/ckm/ckm/ckm-manager-async.h
264 %{_includedir}/ckm/ckm/ckm-certificate.h
265 %{_includedir}/ckm/ckm/ckm-control.h
266 %{_includedir}/ckm/ckm/ckm-error.h
267 %{_includedir}/ckm/ckm/ckm-key.h
268 %{_includedir}/ckm/ckm/ckm-password.h
269 %{_includedir}/ckm/ckm/ckm-pkcs12.h
270 %{_includedir}/ckm/ckm/ckm-raw-buffer.h
271 %{_includedir}/ckm/ckm/ckm-type.h
272 %{_includedir}/ckm/ckmc/ckmc-manager.h
273 %{_includedir}/ckm/ckmc/ckmc-control.h
274 %{_includedir}/ckm/ckmc/ckmc-error.h
275 %{_includedir}/ckm/ckmc/ckmc-type.h
276 %{_libdir}/pkgconfig/*.pc
277
278 %files -n key-manager-tests
279 %defattr(-,root,root,-)
280 %{_bindir}/ckm-tests-internal
281 %{_datadir}/ckm-db-test/testme_ver1.db
282 %{_datadir}/ckm-db-test/testme_ver2.db
283 %{_datadir}/ckm-db-test/testme_ver3.db
284 %{_datadir}/ckm-db-test/XML_1_okay.xml
285 %{_datadir}/ckm-db-test/XML_1_okay.xsd
286 %{_datadir}/ckm-db-test/XML_1_wrong.xml
287 %{_datadir}/ckm-db-test/XML_1_wrong.xsd
288 %{_datadir}/ckm-db-test/XML_2_structure.xml
289 %{_bindir}/ckm_so_loader
290
291 %files -n key-manager-pam-plugin
292 %defattr(-,root,root,-)
293 %{_libdir}/security/pam_key_manager_plugin.so*