Merge ~paelzer/ubuntu/+source/ntp:merge-disco-4.2.8p12-2-lp1806382 into ubuntu/+source/ntp:debian/sid
- Git
- lp:~paelzer/ubuntu/+source/ntp
- merge-disco-4.2.8p12-2-lp1806382
- Merge into debian/sid
Status: | Merged | ||||
---|---|---|---|---|---|
Approved by: | Christian Ehrhardt | ||||
Approved revision: | ab2e6f57a79d7c53c0f85f78da099f6e3eb059ae | ||||
Merge reported by: | Christian Ehrhardt | ||||
Merged at revision: | ab2e6f57a79d7c53c0f85f78da099f6e3eb059ae | ||||
Proposed branch: | ~paelzer/ubuntu/+source/ntp:merge-disco-4.2.8p12-2-lp1806382 | ||||
Merge into: | ubuntu/+source/ntp:debian/sid | ||||
Diff against target: |
1648 lines (+1363/-18) 8 files modified
debian/changelog (+1327/-0) debian/control (+2/-1) debian/ntp-systemd-netif.path (+8/-0) debian/ntp-systemd-netif.service (+4/-0) debian/ntp.conf (+12/-12) debian/ntp.dhcp (+6/-4) debian/ntpdate.default (+1/-1) debian/rules (+3/-0) |
||||
Related bugs: |
|
Reviewer | Review Type | Date Requested | Status |
---|---|---|---|
Andreas Hasenack | Approve | ||
Canonical Server | Pending | ||
git-ubuntu developers | Pending | ||
Review via email: mp+359994@code.launchpad.net |
Commit message
Description of the change
Christian Ehrhardt (paelzer) wrote : | # |
Andreas Hasenack (ahasenack) wrote : | # |
795c542d8e4b2c1
* d/ntp.dhcp add support for parsing systemd networkd lease files LP: #1717983
But it's actually changing more files:
debian/
debian/
debian/rules (change)
Maybe the commit message, and d/changelog after that, could be updated?
The rest is ok, delta carried over with the pps drop:
$ git range-diff lp1806382/
1: 6235b5dd = 1: aa39fed2 - d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com.
2: 28aaf3db < -: -------- - Add PPS support (LP 1512980): + debian/
3: 613a8143 < -: -------- + debian/ntp.conf: Add some PPS configuration examples from the offical documentation.
4: 795c542d = 2: 6e84caa6 * d/ntp.dhcp add support for parsing systemd networkd lease files LP: #1717983
-: -------- > 3: d7cc8eaf merge-changelogs
-: -------- > 4: fbde1da6 reconstruct-
-: -------- > 5: c6168448 update-maintainer
-: -------- > 6: ab2e6f57 changelog: mention dropped changes
+1 with the updated commit message/changelog entry about the changed files
Christian Ehrhardt (paelzer) wrote : | # |
Yeah, reasonable improvement to the commit and changelog.
Will do so and then upload - thanks!
Christian Ehrhardt (paelzer) wrote : | # |
With the changelog and commit wording improvements tagged and uploaded
Preview Diff
1 | diff --git a/debian/changelog b/debian/changelog | |||
2 | index e18dbb4..185ba0b 100644 | |||
3 | --- a/debian/changelog | |||
4 | +++ b/debian/changelog | |||
5 | @@ -1,3 +1,14 @@ | |||
6 | 1 | ntp (1:4.2.8p12+dfsg-3ubuntu1) disco; urgency=medium | ||
7 | 2 | |||
8 | 3 | * Merge with Debian unstable (LP: #1806382). Remaining changes: | ||
9 | 4 | - d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com. | ||
10 | 5 | - d/ntp.dhcp add support for parsing systemd networkd lease files LP 1717983 | ||
11 | 6 | * Dropped Changes (accepted in Debian) | ||
12 | 7 | - Add PPS support (this is accepted in Debian and only had some readme | ||
13 | 8 | and example entries left): | ||
14 | 9 | |||
15 | 10 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Mon, 03 Dec 2018 13:05:00 +0100 | ||
16 | 11 | |||
17 | 1 | ntp (1:4.2.8p12+dfsg-3) unstable; urgency=low | 12 | ntp (1:4.2.8p12+dfsg-3) unstable; urgency=low |
18 | 2 | 13 | ||
19 | 3 | * Treat testsuite errors as non-fatal on some architectures | 14 | * Treat testsuite errors as non-fatal on some architectures |
20 | @@ -31,6 +42,25 @@ ntp (1:4.2.8p12+dfsg-1) unstable; urgency=medium | |||
21 | 31 | 42 | ||
22 | 32 | -- Bernhard Schmidt <berni@debian.org> Thu, 16 Aug 2018 22:20:29 +0200 | 43 | -- Bernhard Schmidt <berni@debian.org> Thu, 16 Aug 2018 22:20:29 +0200 |
23 | 33 | 44 | ||
24 | 45 | ntp (1:4.2.8p11+dfsg-1ubuntu1) cosmic; urgency=medium | ||
25 | 46 | |||
26 | 47 | * Merge with Debian unstable (LP: #1773921). Remaining changes: | ||
27 | 48 | - d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com. | ||
28 | 49 | - Add PPS support (LP 1512980): | ||
29 | 50 | + debian/README.Debian: Add a PPS section to the README.Debian | ||
30 | 51 | + debian/ntp.conf: Add some PPS configuration examples from the offical | ||
31 | 52 | documentation. | ||
32 | 53 | - d/ntp.dhcp add support for parsing systemd networkd lease files LP 1717983 | ||
33 | 54 | * Dropped Changes (accepted in Debian) | ||
34 | 55 | - d/ntp-systemd-wrapper protect systemd service startup from concurrent | ||
35 | 56 | ntpdate processes the same way it was protected on sysv-init (LP 1706818) | ||
36 | 57 | - debian/apparmor-profile: add attach_disconnected which is needed in some | ||
37 | 58 | cases to let ntp report its log messages (LP 1727202). | ||
38 | 59 | - debian/apparmor-profile: avoid denies to to arg checks (LP 1741227) | ||
39 | 60 | - fix apparmor denial when checking for running ntpdate (LP 1749389) | ||
40 | 61 | |||
41 | 62 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Tue, 29 May 2018 10:34:11 +0200 | ||
42 | 63 | |||
43 | 34 | ntp (1:4.2.8p11+dfsg-1) unstable; urgency=medium | 64 | ntp (1:4.2.8p11+dfsg-1) unstable; urgency=medium |
44 | 35 | 65 | ||
45 | 36 | * New upstream version 4.2.8p11+dfsg (Closes: #851096) | 66 | * New upstream version 4.2.8p11+dfsg (Closes: #851096) |
46 | @@ -75,6 +105,65 @@ ntp (1:4.2.8p10+dfsg-6) unstable; urgency=medium | |||
47 | 75 | 105 | ||
48 | 76 | -- Bernhard Schmidt <berni@debian.org> Wed, 24 Jan 2018 22:42:13 +0100 | 106 | -- Bernhard Schmidt <berni@debian.org> Wed, 24 Jan 2018 22:42:13 +0100 |
49 | 77 | 107 | ||
50 | 108 | ntp (1:4.2.8p10+dfsg-5ubuntu7) bionic; urgency=medium | ||
51 | 109 | |||
52 | 110 | * fix apparmor denial when checking for running ntpdate (LP: 1749389) | ||
53 | 111 | |||
54 | 112 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Wed, 14 Feb 2018 09:23:36 +0100 | ||
55 | 113 | |||
56 | 114 | ntp (1:4.2.8p10+dfsg-5ubuntu6) bionic; urgency=high | ||
57 | 115 | |||
58 | 116 | * No change rebuild against openssl1.1. | ||
59 | 117 | |||
60 | 118 | -- Dimitri John Ledkov <xnox@ubuntu.com> Mon, 05 Feb 2018 16:51:21 +0000 | ||
61 | 119 | |||
62 | 120 | ntp (1:4.2.8p10+dfsg-5ubuntu5) bionic; urgency=medium | ||
63 | 121 | |||
64 | 122 | * debian/apparmor-profile: avoid denies to to arg checks (LP: #1741227) | ||
65 | 123 | |||
66 | 124 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Thu, 04 Jan 2018 14:20:53 +0100 | ||
67 | 125 | |||
68 | 126 | ntp (1:4.2.8p10+dfsg-5ubuntu4) bionic; urgency=medium | ||
69 | 127 | |||
70 | 128 | * debian/apparmor-profile: add attach_disconnected which is needed in some | ||
71 | 129 | cases to let ntp report its log messages (LP: #1727202). | ||
72 | 130 | |||
73 | 131 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Wed, 13 Dec 2017 16:31:30 +0100 | ||
74 | 132 | |||
75 | 133 | ntp (1:4.2.8p10+dfsg-5ubuntu3) artful; urgency=medium | ||
76 | 134 | |||
77 | 135 | * d/ntp.dhcp add support for parsing systemd networkd lease files LP: | ||
78 | 136 | #1717983 | ||
79 | 137 | |||
80 | 138 | -- Dimitri John Ledkov <xnox@ubuntu.com> Tue, 03 Oct 2017 01:54:33 +0100 | ||
81 | 139 | |||
82 | 140 | ntp (1:4.2.8p10+dfsg-5ubuntu2) artful; urgency=medium | ||
83 | 141 | |||
84 | 142 | * d/ntp-systemd-wrapper protect systemd service startup from concurrent | ||
85 | 143 | ntpdate processes the same way it was protected on sysv-init (LP: #1706818) | ||
86 | 144 | |||
87 | 145 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Tue, 05 Sep 2017 15:09:08 +0200 | ||
88 | 146 | |||
89 | 147 | ntp (1:4.2.8p10+dfsg-5ubuntu1) artful; urgency=medium | ||
90 | 148 | |||
91 | 149 | * Merge with Debian unstable (LP: #1604010). Remaining changes: | ||
92 | 150 | - d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com. | ||
93 | 151 | - Add PPS support (LP 1512980): | ||
94 | 152 | + debian/README.Debian: Add a PPS section to the README.Debian, | ||
95 | 153 | removed all PPSkit one. | ||
96 | 154 | + debian/ntp.conf: Add some configuration examples from the offical | ||
97 | 155 | documentation. | ||
98 | 156 | * Drop Changes (contribs accepted in Debian): | ||
99 | 157 | - Apparmor bits not yet accepted in Debian | ||
100 | 158 | + d/apparmor-profile add samba winbindd pipe (LP 1582767) | ||
101 | 159 | - Fix ntpdate-debian to be able to parse new config of ntp (LP 1576698) | ||
102 | 160 | - d/rules: enable debugging | ||
103 | 161 | - d/rules, d/ntp.dirs, d/source_ntp.py: Add apport hook. | ||
104 | 162 | + d/source_ntp.py: includes a filter on AppArmor profile names to prevent | ||
105 | 163 | false positives from denials originating in other packages | ||
106 | 164 | |||
107 | 165 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Wed, 21 Jun 2017 16:17:38 +0200 | ||
108 | 166 | |||
109 | 78 | ntp (1:4.2.8p10+dfsg-5) unstable; urgency=medium | 167 | ntp (1:4.2.8p10+dfsg-5) unstable; urgency=medium |
110 | 79 | 168 | ||
111 | 80 | * Fix arch:all FTBFS due to improper moving of sntp manpage (Closes: #865227) | 169 | * Fix arch:all FTBFS due to improper moving of sntp manpage (Closes: #865227) |
112 | @@ -126,6 +215,43 @@ ntp (1:4.2.8p10+dfsg-2) unstable; urgency=medium | |||
113 | 126 | 215 | ||
114 | 127 | -- Bernhard Schmidt <berni@debian.org> Sun, 07 May 2017 14:49:22 +0200 | 216 | -- Bernhard Schmidt <berni@debian.org> Sun, 07 May 2017 14:49:22 +0200 |
115 | 128 | 217 | ||
116 | 218 | ntp (1:4.2.8p10+dfsg-1ubuntu1) artful; urgency=medium | ||
117 | 219 | |||
118 | 220 | * Merge from Debian testing. Remaining changes: | ||
119 | 221 | + d/rules: enable debugging | ||
120 | 222 | + d/rules, d/ntp.dirs, d/source_ntp.py: Add apport hook. | ||
121 | 223 | - d/source_ntp.py: includes a filter on AppArmor profile names to prevent | ||
122 | 224 | false positives from denials originating in other packages | ||
123 | 225 | + d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com. | ||
124 | 226 | + Fix ntpdate-debian to be able to parse new config of ntp | ||
125 | 227 | + PPS Documentation: | ||
126 | 228 | - d/README.Debian: Add a PPS section to the README.Debian, | ||
127 | 229 | removed all PPSkit one. | ||
128 | 230 | - d/ntp.conf: Add some configuration examples from the offical | ||
129 | 231 | documentation. | ||
130 | 232 | + Apparmor bits not yet accepted in Debian | ||
131 | 233 | - d/apparmor-profile add samba winbindd pipe | ||
132 | 234 | * Drop Changes: | ||
133 | 235 | + d/control: Add bison to Build-Depends (for ntpd/ntp_parser.y); dropped | ||
134 | 236 | as this was only needed while CVE delta was in place that needed | ||
135 | 237 | ntpd/ntp_parser.[ch] regenerated from ntpd/ntp_parser.y | ||
136 | 238 | + d/control: Add Suggests on apparmor; drop delta as this is not strictly | ||
137 | 239 | needed. | ||
138 | 240 | + Create etc/apparmor.d/{force-complain,tunables}/; force-complain is not | ||
139 | 241 | used and tunables is handled by the install -D in debian/rules | ||
140 | 242 | + d/ntpdate.if-up: Fix interaction with openntpd. Stop ntp before | ||
141 | 243 | running ntpdate when an interface comes up, then start again afterwards; | ||
142 | 244 | dropping because this actually was a bad workaround to restart ntpd often | ||
143 | 245 | in case it didn't find its peers when starting initially with many follow | ||
144 | 246 | on fixes and follow on bugs around. | ||
145 | 247 | + d/ntp.init don't use /var/lib/ntp/ntp.conf.dhcp if /etc/ntp.conf is | ||
146 | 248 | newer, it can get stale. Patch by Simon Déziel. (refreshed to apply to | ||
147 | 249 | new path /run/ntp.conf.dhcp); fixed in Debian by bug 600661 | ||
148 | 250 | + d/ntp.init: Only stop when entering single user mode; that change is a | ||
149 | 251 | no-op in systemd environments so it can be dropped | ||
150 | 252 | |||
151 | 253 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Tue, 02 May 2017 16:24:56 +0200 | ||
152 | 254 | |||
153 | 129 | ntp (1:4.2.8p10+dfsg-1) unstable; urgency=high | 255 | ntp (1:4.2.8p10+dfsg-1) unstable; urgency=high |
154 | 130 | 256 | ||
155 | 131 | * New upstream version | 257 | * New upstream version |
156 | @@ -141,6 +267,39 @@ ntp (1:4.2.8p9+dfsg-2.1) unstable; urgency=medium | |||
157 | 141 | 267 | ||
158 | 142 | -- Daniel Silverstone <dsilvers@digital-scurf.org> Sat, 28 Jan 2017 11:58:18 +0000 | 268 | -- Daniel Silverstone <dsilvers@digital-scurf.org> Sat, 28 Jan 2017 11:58:18 +0000 |
159 | 143 | 269 | ||
160 | 270 | ntp (1:4.2.8p9+dfsg-2ubuntu1) zesty; urgency=medium | ||
161 | 271 | |||
162 | 272 | * Merge from Debian testing. Remaining changes (LP: #427775): | ||
163 | 273 | + d/rules: enable debugging | ||
164 | 274 | + d/rules, d/ntp.dirs, d/source_ntp.py: Add apport hook. | ||
165 | 275 | + d/ntpdate.if-up: Fix interaction with openntpd. Stop ntp before | ||
166 | 276 | running ntpdate when an interface comes up, then start again afterwards. | ||
167 | 277 | + d/ntp.init: Only stop when entering single user mode | ||
168 | 278 | + d/ntp.init don't use /var/lib/ntp/ntp.conf.dhcp if /etc/ntp.conf is | ||
169 | 279 | newer, it can get stale. Patch by Simon Déziel. (refreshed to apply to | ||
170 | 280 | new path /run/ntp.conf.dhcp) | ||
171 | 281 | + d/ntp.conf, d/ntpdate.default: Change default server to ntp.ubuntu.com. | ||
172 | 282 | + d/control: Add bison to Build-Depends (for ntpd/ntp_parser.y). | ||
173 | 283 | + Fix ntpdate-debian to be able to parse new config of ntp | ||
174 | 284 | + Add PPS support: | ||
175 | 285 | - d/README.Debian: Add a PPS section to the README.Debian, | ||
176 | 286 | removed all PPSkit one. | ||
177 | 287 | - d/ntp.conf: Add some configuration examples from the offical | ||
178 | 288 | documentation. | ||
179 | 289 | + Add Apparmor bits not yet accepted in Debian | ||
180 | 290 | - d/control: Add Suggests on apparmor. | ||
181 | 291 | - d/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
182 | 292 | false positives from denials originating in other packages | ||
183 | 293 | - d/apparmor-profile add samba winbindd pipe | ||
184 | 294 | - Create etc/apparmor.d/{force-complain,tunables}/ | ||
185 | 295 | * Drop Changes: | ||
186 | 296 | + SECURITY UPDATE: NTP statsdir cleanup cronjob insecure | ||
187 | 297 | (was accepted in Debian). | ||
188 | 298 | + d/control: different conflicts/replaces versions on apparmor (was a | ||
189 | 299 | dependency on a higher apparmor version, but today all releases are newer) | ||
190 | 300 | |||
191 | 301 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Thu, 01 Dec 2016 15:40:22 +0100 | ||
192 | 302 | |||
193 | 144 | ntp (1:4.2.8p9+dfsg-2) unstable; urgency=medium | 303 | ntp (1:4.2.8p9+dfsg-2) unstable; urgency=medium |
194 | 145 | 304 | ||
195 | 146 | * CVE-2016-0727: NTP statsdir cleanup cronjob insecure (Closes: #839998) | 305 | * CVE-2016-0727: NTP statsdir cleanup cronjob insecure (Closes: #839998) |
196 | @@ -173,6 +332,72 @@ ntp (1:4.2.8p9+dfsg-1) unstable; urgency=medium | |||
197 | 173 | 332 | ||
198 | 174 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 21 Nov 2016 19:30:02 +0100 | 333 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 21 Nov 2016 19:30:02 +0100 |
199 | 175 | 334 | ||
200 | 335 | ntp (1:4.2.8p8+dfsg-1ubuntu2) yakkety; urgency=medium | ||
201 | 336 | |||
202 | 337 | * Fix ntpdate-debian to be able to parse new config of ntp (LP: #1576698) | ||
203 | 338 | |||
204 | 339 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Fri, 26 Aug 2016 15:11:15 +0200 | ||
205 | 340 | |||
206 | 341 | ntp (1:4.2.8p8+dfsg-1ubuntu1) yakkety; urgency=medium | ||
207 | 342 | |||
208 | 343 | [ Christian Ehrhardt ] | ||
209 | 344 | * Merge from Debian testing. Remaining changes: | ||
210 | 345 | + debian/rules: enable debugging. Asked debian to add this in bug #643954. | ||
211 | 346 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
212 | 347 | + debian/control: Add Suggests on apparmor. | ||
213 | 348 | + debian/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
214 | 349 | false positives from denials originating in other packages | ||
215 | 350 | + debian/ntpdate.if-up: Fix interaction with openntpd. Stop ntp before | ||
216 | 351 | running ntpdate when an interface comes up, then start again afterwards. | ||
217 | 352 | + debian/ntp.init, debian/rules: Only stop when entering single user mode, | ||
218 | 353 | don't use /var/lib/ntp/ntp.conf.dhcp if /etc/ntp.conf is newer - it can | ||
219 | 354 | get stale. Patch by Simon Déziel. | ||
220 | 355 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
221 | 356 | ntp.ubuntu.com. | ||
222 | 357 | + debian/control: Add bison to Build-Depends (for ntpd/ntp_parser.y). | ||
223 | 358 | + Extend PPS support | ||
224 | 359 | - debian/README.Debian: Add a PPS section to the README.Debian | ||
225 | 360 | - debian/ntp.conf: Add some configuration examples from the offical | ||
226 | 361 | documentation. | ||
227 | 362 | + SECURITY UPDATE: NTP statsdir cleanup cronjob insecure (LP: #1528050) | ||
228 | 363 | - debian/ntp.cron.daily: fix security issues, patch thanks to halfdog! | ||
229 | 364 | - CVE-2016-0727 | ||
230 | 365 | + Merge also contains an upstream fix that solves (LP: #1567540) | ||
231 | 366 | * Added changes | ||
232 | 367 | + match Ubuntu packages now that Debian has ntp apparmor accepted in | ||
233 | 368 | d/control for Apparmor conflicts/replaces | ||
234 | 369 | + d/apparmor-profile add samba winbindd pipe (LP: #1582767) | ||
235 | 370 | * Drop Changes: | ||
236 | 371 | + Add enforcing AppArmor profile (accepted in Debian): | ||
237 | 372 | - debian/control: Add Conflicts/Replaces on apparmor-profiles. | ||
238 | 373 | - debian/control: Add Suggests on apparmor. | ||
239 | 374 | - debian/control: Build-Depends on dh-apparmor. | ||
240 | 375 | - add debian/apparmor-profile*. | ||
241 | 376 | - debian/ntp.dirs: Add apparmor directories. | ||
242 | 377 | - debian/rules: Install apparmor-profile and apparmor-profile.tunable. | ||
243 | 378 | - debian/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
244 | 379 | false positives from denials originating in other packages. | ||
245 | 380 | - debian/README.Debian: Add note on AppArmor. | ||
246 | 381 | + Add PPS support (accepted in Debian) | ||
247 | 382 | - debian/control: Add Build-Depends on pps-tools | ||
248 | 383 | + debian/apparmor-profile: allow 'rw' access to /dev/pps[0-9]* devices. | ||
249 | 384 | + d/p/fix_local_sync.patch: fix local clock sync (fixed upstream) | ||
250 | 385 | + debian/patches/ntpdate-fix-lp1526264.patch (fixed upstream): | ||
251 | 386 | - Add Alfonso Sanchez-Beato's patch for fixing the cannot correct dates in | ||
252 | 387 | the future bug | ||
253 | 388 | + debian/apparmor-profile: adjust to handle AF_UNSPEC with dgram and stream | ||
254 | 389 | + dropping previous ubuntu security patches/fixes that have been upstreamed | ||
255 | 390 | in 4.2.8p6: CVE-2015-7973, CVE-2015-7975, CVE-2015-7976, CVE-2015-7977, | ||
256 | 391 | CVE-2015-7978, CVE-2015-7979, CVE-2015-8138, CVE-2015-8158 | ||
257 | 392 | + dropping previous ubuntu security patches/fixes that have been upstreamed | ||
258 | 393 | in 4.2.8p7: CVE-2016-1548, CVE-2016-1550, CVE-2016-2516, CVE-2016-2518, | ||
259 | 394 | CVE-2015-7974, CVE-2016-1547 | ||
260 | 395 | |||
261 | 396 | [ Robie Basak ] | ||
262 | 397 | * Restore AppArmor entries in debian/ntp.dirs. | ||
263 | 398 | |||
264 | 399 | -- Christian Ehrhardt <christian.ehrhardt@canonical.com> Fri, 29 Jul 2016 12:42:43 +0200 | ||
265 | 400 | |||
266 | 176 | ntp (1:4.2.8p8+dfsg-1) unstable; urgency=high | 401 | ntp (1:4.2.8p8+dfsg-1) unstable; urgency=high |
267 | 177 | 402 | ||
268 | 178 | * New usptream version | 403 | * New usptream version |
269 | @@ -233,6 +458,161 @@ ntp (1:4.2.8p7+dfsg-1) unstable; urgency=medium | |||
270 | 233 | 458 | ||
271 | 234 | -- Kurt Roeckx <kurt@roeckx.be> Sun, 24 Jan 2016 22:57:40 +0100 | 459 | -- Kurt Roeckx <kurt@roeckx.be> Sun, 24 Jan 2016 22:57:40 +0100 |
272 | 235 | 460 | ||
273 | 461 | ntp (1:4.2.8p4+dfsg-3ubuntu6) yakkety; urgency=medium | ||
274 | 462 | |||
275 | 463 | * SECURITY UPDATE: Deja Vu replay attack on authenticated broadcast mode | ||
276 | 464 | - debian/patches/CVE-2015-7973.patch: improve timestamp verification in | ||
277 | 465 | include/ntp.h, ntpd/ntp_proto.c. | ||
278 | 466 | - CVE-2015-7973 | ||
279 | 467 | * SECURITY UPDATE: impersonation between authenticated peers | ||
280 | 468 | - debian/patches/CVE-2015-7974.patch: check key ID in ntpd/ntp_proto.c. | ||
281 | 469 | - CVE-2015-7974 | ||
282 | 470 | * SECURITY UPDATE: ntpq buffer overflow | ||
283 | 471 | - debian/patches/CVE-2015-7975.patch: add length check to ntpq/ntpq.c. | ||
284 | 472 | - CVE-2015-7975 | ||
285 | 473 | * SECURITY UPDATE: ntpq saveconfig command allows dangerous characters in | ||
286 | 474 | filenames | ||
287 | 475 | - debian/patches/CVE-2015-7976.patch: check filename in | ||
288 | 476 | ntpd/ntp_control.c. | ||
289 | 477 | - CVE-2015-7976 | ||
290 | 478 | * SECURITY UPDATE: restrict list denial of service | ||
291 | 479 | - debian/patches/CVE-2015-7977-7978.patch: improve restrict list | ||
292 | 480 | processing in ntpd/ntp_request.c. | ||
293 | 481 | - CVE-2015-7977 | ||
294 | 482 | - CVE-2015-7978 | ||
295 | 483 | * SECURITY UPDATE: authenticated broadcast mode off-path denial of | ||
296 | 484 | service | ||
297 | 485 | - debian/patches/CVE-2015-7979.patch: add more checks to | ||
298 | 486 | ntpd/ntp_proto.c. | ||
299 | 487 | - CVE-2015-7979 | ||
300 | 488 | - CVE-2016-1547 | ||
301 | 489 | * SECURITY UPDATE: Zero Origin Timestamp Bypass | ||
302 | 490 | - debian/patches/CVE-2015-8138.patch: check p_org in ntpd/ntp_proto.c. | ||
303 | 491 | - CVE-2015-8138 | ||
304 | 492 | * SECURITY UPDATE: potential infinite loop in ntpq | ||
305 | 493 | - debian/patches/CVE-2015-8158.patch: add time checks to ntpdc/ntpdc.c, | ||
306 | 494 | ntpq/ntpq.c. | ||
307 | 495 | - CVE-2015-8158 | ||
308 | 496 | * SECURITY UPDATE: NTP statsdir cleanup cronjob insecure (LP: #1528050) | ||
309 | 497 | - debian/ntp.cron.daily: fix security issues, patch thanks to halfdog! | ||
310 | 498 | - CVE-2016-0727 | ||
311 | 499 | * SECURITY UPDATE: time spoofing via interleaved symmetric mode | ||
312 | 500 | - debian/patches/CVE-20xx-xxxx.patch: check for bogus packets in | ||
313 | 501 | ntpd/ntp_proto.c. | ||
314 | 502 | - CVE-2016-1548 | ||
315 | 503 | * SECURITY UPDATE: buffer comparison timing attacks | ||
316 | 504 | - debian/patches/CVE-2016-1550.patch: use CRYPTO_memcmp in | ||
317 | 505 | libntp/a_md5encrypt.c, sntp/crypto.c. | ||
318 | 506 | - CVE-2016-1550 | ||
319 | 507 | * SECURITY UPDATE: DoS via duplicate IPs on unconfig directives | ||
320 | 508 | - debian/patches/CVE-2016-2516.patch: improve logic in | ||
321 | 509 | ntpd/ntp_request.c. | ||
322 | 510 | - CVE-2016-2516 | ||
323 | 511 | * SECURITY UPDATE: denial of service via crafted addpeer | ||
324 | 512 | - debian/patches/CVE-2016-2518.patch: check mode value in | ||
325 | 513 | ntpd/ntp_request.c. | ||
326 | 514 | - CVE-2016-2518 | ||
327 | 515 | |||
328 | 516 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Wed, 01 Jun 2016 08:38:07 -0400 | ||
329 | 517 | |||
330 | 518 | ntp (1:4.2.8p4+dfsg-3ubuntu5) xenial; urgency=medium | ||
331 | 519 | |||
332 | 520 | * debian/apparmor-profile: allow 'rw' access to /dev/pps[0-9]* devices. | ||
333 | 521 | Patch thanks to Mark Shuttleworth. (LP: #1564832) | ||
334 | 522 | |||
335 | 523 | -- Jamie Strandboge <jamie@ubuntu.com> Thu, 07 Apr 2016 15:12:41 -0500 | ||
336 | 524 | |||
337 | 525 | ntp (1:4.2.8p4+dfsg-3ubuntu4) xenial; urgency=medium | ||
338 | 526 | |||
339 | 527 | * d/p/fix_local_sync.patch: fix local clock sync (LP: #1558125). | ||
340 | 528 | |||
341 | 529 | -- Pierre-André MOREY <pierre-andre.morey@canonical.com> Thu, 17 Mar 2016 10:42:44 +0100 | ||
342 | 530 | |||
343 | 531 | ntp (1:4.2.8p4+dfsg-3ubuntu3) xenial; urgency=medium | ||
344 | 532 | |||
345 | 533 | * debian/patches/ntpdate-fix-lp1526264.patch: | ||
346 | 534 | - Add Alfonso Sanchez-Beato's patch for fixing the cannot correct dates in | ||
347 | 535 | the future bug (LP: #1526264) | ||
348 | 536 | |||
349 | 537 | -- Łukasz 'sil2100' Zemczak <lukasz.zemczak@ubuntu.com> Wed, 24 Feb 2016 12:29:32 +0100 | ||
350 | 538 | |||
351 | 539 | ntp (1:4.2.8p4+dfsg-3ubuntu2) xenial; urgency=medium | ||
352 | 540 | |||
353 | 541 | * debian/apparmor-profile: adjust to handle AF_UNSPEC with dgram and stream | ||
354 | 542 | |||
355 | 543 | -- Jamie Strandboge <jamie@ubuntu.com> Wed, 17 Feb 2016 10:41:20 -0600 | ||
356 | 544 | |||
357 | 545 | ntp (1:4.2.8p4+dfsg-3ubuntu1) xenial; urgency=medium | ||
358 | 546 | |||
359 | 547 | * Merge from Debian testing. Remaining changes: | ||
360 | 548 | + debian/rules: enable debugging. Ask debian to add this. | ||
361 | 549 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
362 | 550 | + Add enforcing AppArmor profile: | ||
363 | 551 | - debian/control: Add Conflicts/Replaces on apparmor-profiles. | ||
364 | 552 | - debian/control: Add Suggests on apparmor. | ||
365 | 553 | - debian/control: Build-Depends on dh-apparmor. | ||
366 | 554 | - add debian/apparmor-profile*. | ||
367 | 555 | - debian/ntp.dirs: Add apparmor directories. | ||
368 | 556 | - debian/rules: Install apparmor-profile and apparmor-profile.tunable. | ||
369 | 557 | - debian/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
370 | 558 | false positives from denials originating in other packages. | ||
371 | 559 | - debian/README.Debian: Add note on AppArmor. | ||
372 | 560 | + debian/ntpdate.if-up: Fix interaction with openntpd. Stop ntp before | ||
373 | 561 | running ntpdate when an interface comes up, then start again afterwards. | ||
374 | 562 | + debian/ntp.init, debian/rules: Only stop when entering single user mode, | ||
375 | 563 | don't use /var/lib/ntp/ntp.conf.dhcp if /etc/ntp.conf is newer - it can | ||
376 | 564 | get stale. Patch by Simon Déziel. | ||
377 | 565 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
378 | 566 | ntp.ubuntu.com. | ||
379 | 567 | + debian/control: Add bison to Build-Depends (for ntpd/ntp_parser.y). | ||
380 | 568 | * Includes fix for requests with source ports < 123, fixed upstream in | ||
381 | 569 | 4.2.8p1 (LP: #1479652). | ||
382 | 570 | * Add PPS support (LP: #1512980): | ||
383 | 571 | + debian/README.Debian: Add a PPS section to the README.Debian, | ||
384 | 572 | removed all PPSkit one. | ||
385 | 573 | + debian/ntp.conf: Add some configuration examples from the offical | ||
386 | 574 | documentation. | ||
387 | 575 | + debian/control: Add Build-Depends on pps-tools | ||
388 | 576 | * Drop Changes: | ||
389 | 577 | + debian/rules: Update config.{guess,sub} for AArch64, because upstream use | ||
390 | 578 | dh_autoreconf now. | ||
391 | 579 | + debian/{control,rules}: Add and enable hardened build for PIE. | ||
392 | 580 | Upstream use fPIC. Options -fPIC and -fPIE are uncompatible, thus this is | ||
393 | 581 | never applied, (cf. dpkg-buildflags manual), checked with Marc | ||
394 | 582 | Deslauriers on freenode #ubuntu-hardened, 2016-01-20~13:11 UTC. | ||
395 | 583 | + debian/rules: Remove update-rcd-params in dh_installinit command. When | ||
396 | 584 | setting up ntp package, the following message is presented to the user | ||
397 | 585 | due to deprecated use: | ||
398 | 586 | "update-rc.d: warning: start and stop actions are no longer | ||
399 | 587 | supported; falling back to defaults". The defaults are taken from the | ||
400 | 588 | init.d script LSB comment header, which contain what we need anyway. | ||
401 | 589 | + debian/rules: Remove ntp/ntp_parser.{c,h} or they don't get properly | ||
402 | 590 | regenerated for some reason. Seems to have been due to ntpd/ntp_parser.y | ||
403 | 591 | patches from CVE-2015-5194 and CVE-2015-5196, already upstreamed. | ||
404 | 592 | + debian/ntpdate.if-up: Drop lockfile mechanism as upstream is using flock | ||
405 | 593 | now. | ||
406 | 594 | + Remove natty timeframe old deltas (transitional code not needed since | ||
407 | 595 | Trusty): Those patches were for an incorrect behaviour of | ||
408 | 596 | system-tools-backend, around natty time | ||
409 | 597 | (https://bugs.launchpad.net/ubuntu/+source/ntp/+bug/83604/comments/23) | ||
410 | 598 | - debian/ntpdate-debian: Disregard empty ntp.conf files. | ||
411 | 599 | - debian/ntp.preinst: Remove empty /etc/ntp.conf on fresh intallation. | ||
412 | 600 | + debian/ntp.dhcp: Rewrite sed rules. This was done incorrectly as pointed | ||
413 | 601 | out in LP 575458. This decision is explained in detail there. | ||
414 | 602 | * All previous ubuntu security patches/fixes have been upstreamed: | ||
415 | 603 | + CVE-2015-5146, CVE-2015-5194, CVE-2015-5195, CVE-2015-5196, | ||
416 | 604 | CVE-2015-7703, CVE-2015-5219, CVE-2015-5300, CVE-2015-7691, | ||
417 | 605 | CVE-2015-7692, CVE-2015-7702, CVE-2015-7701, CVE-2015-7704, | ||
418 | 606 | CVE-2015-7705, CVE-2015-7850, CVE-2015-7852, CVE-2015-7853, | ||
419 | 607 | CVE-2015-7855, CVE-2015-7871, CVE-2015-1798, CVE-2015-1799, | ||
420 | 608 | CVE-2014-9297, CVE-2014-9298, CVE-2014-9293, CVE-2014-9294, | ||
421 | 609 | CVE-2014-9295, CVE-2014-9296 | ||
422 | 610 | + Fix to ignore ENOBUFS on routing netlink socket | ||
423 | 611 | + Fix use-after-free in routing socket code | ||
424 | 612 | + ntp-keygen infinite loop or lack of randonmess on big endian platforms | ||
425 | 613 | |||
426 | 614 | -- Pierre-André MOREY <pierre-andre.morey@canonical.com> Fri, 5 Feb 2016 18:28:52 +0100 | ||
427 | 615 | |||
428 | 236 | ntp (1:4.2.8p4+dfsg-3) unstable; urgency=medium | 616 | ntp (1:4.2.8p4+dfsg-3) unstable; urgency=medium |
429 | 237 | 617 | ||
430 | 238 | * Remove rlimit memlock from default config file, the default is now | 618 | * Remove rlimit memlock from default config file, the default is now |
431 | @@ -340,6 +720,200 @@ ntp (1:4.2.6.p5+dfsg-3.1) unstable; urgency=low | |||
432 | 340 | 720 | ||
433 | 341 | -- Wookey <wookey@debian.org> Tue, 15 Jul 2014 11:54:21 +0800 | 721 | -- Wookey <wookey@debian.org> Tue, 15 Jul 2014 11:54:21 +0800 |
434 | 342 | 722 | ||
435 | 723 | ntp (1:4.2.6.p5+dfsg-3ubuntu9) xenial; urgency=medium | ||
436 | 724 | |||
437 | 725 | [ Cam Cope ] | ||
438 | 726 | * Use a single lockfile again - instead unlock the file before starting the | ||
439 | 727 | init script. The lock sho uld be shared - both services can't run at the | ||
440 | 728 | same time. (LP: #1125726) | ||
441 | 729 | |||
442 | 730 | -- Iain Lane <iain@orangesquash.org.uk> Mon, 07 Dec 2015 13:38:16 +0000 | ||
443 | 731 | |||
444 | 732 | ntp (1:4.2.6.p5+dfsg-3ubuntu8.1) wily-security; urgency=medium | ||
445 | 733 | |||
446 | 734 | * SECURITY UPDATE: denial of service via crafted NUL-byte in | ||
447 | 735 | configuration directive | ||
448 | 736 | - debian/patches/CVE-2015-5146.patch: properly validate command in | ||
449 | 737 | ntpd/ntp_control.c. | ||
450 | 738 | - CVE-2015-5146 | ||
451 | 739 | * SECURITY UPDATE: denial of service via malformed logconfig commands | ||
452 | 740 | - debian/patches/CVE-2015-5194.patch: fix logconfig logic in | ||
453 | 741 | ntpd/ntp_parser.y. | ||
454 | 742 | - CVE-2015-5194 | ||
455 | 743 | * SECURITY UPDATE: denial of service via disabled statistics type | ||
456 | 744 | - debian/patches/CVE-2015-5195.patch: handle unrecognized types in | ||
457 | 745 | ntpd/ntp_config.c. | ||
458 | 746 | - CVE-2015-5195 | ||
459 | 747 | * SECURITY UPDATE: file overwrite via remote pidfile and driftfile | ||
460 | 748 | configuration directives | ||
461 | 749 | - debian/patches/CVE-2015-5196.patch: disable remote configuration in | ||
462 | 750 | ntpd/ntp_parser.y. | ||
463 | 751 | - CVE-2015-5196 | ||
464 | 752 | - CVE-2015-7703 | ||
465 | 753 | * SECURITY UPDATE: denial of service via precision value conversion | ||
466 | 754 | - debian/patches/CVE-2015-5219.patch: use ldexp for LOGTOD in | ||
467 | 755 | include/ntp.h. | ||
468 | 756 | - CVE-2015-5219 | ||
469 | 757 | * SECURITY UPDATE: timeshifting by reboot issue | ||
470 | 758 | - debian/patches/CVE-2015-5300.patch: disable panic in | ||
471 | 759 | ntpd/ntp_loopfilter.c. | ||
472 | 760 | - CVE-2015-5300 | ||
473 | 761 | * SECURITY UPDATE: incomplete autokey data packet length checks | ||
474 | 762 | - debian/patches/CVE-2015-7691.patch: add length and size checks to | ||
475 | 763 | ntpd/ntp_crypto.c. | ||
476 | 764 | - CVE-2015-7691 | ||
477 | 765 | - CVE-2015-7692 | ||
478 | 766 | - CVE-2015-7702 | ||
479 | 767 | * SECURITY UPDATE: memory leak in CRYPTO_ASSOC | ||
480 | 768 | - debian/patches/CVE-2015-7701.patch: add missing free in | ||
481 | 769 | ntpd/ntp_crypto.c. | ||
482 | 770 | - CVE-2015-7701 | ||
483 | 771 | * SECURITY UPDATE: denial of service by spoofed KoD | ||
484 | 772 | - debian/patches/CVE-2015-7704.patch: add check to ntpd/ntp_proto.c. | ||
485 | 773 | - CVE-2015-7704 | ||
486 | 774 | - CVE-2015-7705 | ||
487 | 775 | * SECURITY UPDATE: denial of service via same logfile and keyfile | ||
488 | 776 | - debian/patches/CVE-2015-7850.patch: rate limit errors in | ||
489 | 777 | include/ntp_stdlib.h, include/ntp_syslog.h, libntp/authreadkeys.c, | ||
490 | 778 | libntp/msyslog.c. | ||
491 | 779 | - CVE-2015-7850 | ||
492 | 780 | * SECURITY UPDATE: ntpq atoascii memory corruption | ||
493 | 781 | - debian/patches/CVE-2015-7852.patch: avoid buffer overrun in | ||
494 | 782 | ntpq/ntpq.c. | ||
495 | 783 | - CVE-2015-7852 | ||
496 | 784 | * SECURITY UPDATE: buffer overflow via custom refclock driver | ||
497 | 785 | - debian/patches/CVE-2015-7853.patch: properly calculate length in | ||
498 | 786 | ntpd/ntp_io.c. | ||
499 | 787 | - CVE-2015-7853 | ||
500 | 788 | * SECURITY UPDATE: denial of service via ASSERT in decodenetnum | ||
501 | 789 | - debian/patches/CVE-2015-7855.patch: simply return fail in | ||
502 | 790 | libntp/decodenetnum.c. | ||
503 | 791 | - CVE-2015-7855 | ||
504 | 792 | * SECURITY UPDATE: symmetric association authentication bypass via | ||
505 | 793 | crypto-NAK | ||
506 | 794 | - debian/patches/CVE-2015-7871.patch: drop unhandled packet in | ||
507 | 795 | ntpd/ntp_proto.c. | ||
508 | 796 | - CVE-2015-7871 | ||
509 | 797 | * debian/control: add bison to Build-Depends. | ||
510 | 798 | * debian/rules: remove ntp/ntp_parser.{c,h} or they don't get properly | ||
511 | 799 | regenerated for some reason. | ||
512 | 800 | |||
513 | 801 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Thu, 22 Oct 2015 16:38:14 -0400 | ||
514 | 802 | |||
515 | 803 | ntp (1:4.2.6.p5+dfsg-3ubuntu8) wily; urgency=medium | ||
516 | 804 | |||
517 | 805 | * debian/ntp.init: Don't use /var/lib/ntp/ntp.conf.dhcp if /etc/ntp.conf is | ||
518 | 806 | newer - it can get stale. Patch by Simon Déziel. (LP: #1472056) | ||
519 | 807 | |||
520 | 808 | -- Iain Lane <iain@orangesquash.org.uk> Fri, 02 Oct 2015 10:45:41 +0100 | ||
521 | 809 | |||
522 | 810 | ntp (1:4.2.6.p5+dfsg-3ubuntu7) wily; urgency=medium | ||
523 | 811 | |||
524 | 812 | * Fix use-after-free in routing socket code (LP: #1481388) | ||
525 | 813 | - debian/patches/use-after-free-in-routing-socket.patch | ||
526 | 814 | fix logic in ntpd/ntp_io.c | ||
527 | 815 | * Fix to ignore ENOBUFS on routing netlink socket | ||
528 | 816 | - debian/patches/ignore-ENOBUFS-on-routing-netlink-socket.patch | ||
529 | 817 | fix logic in ntpd/ntp_io.c | ||
530 | 818 | |||
531 | 819 | -- Eric Desrochers <eric.desrochers@canonical.com> Wed, 02 Sep 2015 09:57:16 -0400 | ||
532 | 820 | |||
533 | 821 | ntp (1:4.2.6.p5+dfsg-3ubuntu6) vivid; urgency=medium | ||
534 | 822 | |||
535 | 823 | * SECURITY UPDATE: ntp-keygen infinite loop or lack of randonmess on big | ||
536 | 824 | endian platforms | ||
537 | 825 | - debian/patches/ntp-keygen-endless-loop.patch: fix logic in | ||
538 | 826 | util/ntp-keygen.c. | ||
539 | 827 | - CVE number pending | ||
540 | 828 | |||
541 | 829 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Mon, 13 Apr 2015 08:58:57 -0400 | ||
542 | 830 | |||
543 | 831 | ntp (1:4.2.6.p5+dfsg-3ubuntu5) vivid; urgency=medium | ||
544 | 832 | |||
545 | 833 | * SECURITY UPDATE: symmetric key unauthenticated packet MITM attack | ||
546 | 834 | - debian/patches/CVE-2015-1798.patch: reject packets without MAC in | ||
547 | 835 | ntpd/ntp_proto.c. | ||
548 | 836 | - CVE-2015-1798 | ||
549 | 837 | * SECURITY UPDATE: symmetric association DoS attack | ||
550 | 838 | - debian/patches/CVE-2015-1799.patch: don't update state variables when | ||
551 | 839 | authentication fails in ntpd/ntp_proto.c. | ||
552 | 840 | - CVE-2015-1799 | ||
553 | 841 | |||
554 | 842 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Tue, 07 Apr 2015 12:48:31 -0400 | ||
555 | 843 | |||
556 | 844 | ntp (1:4.2.6.p5+dfsg-3ubuntu4) vivid; urgency=medium | ||
557 | 845 | |||
558 | 846 | * SECURITY UPDATE: denial of service and possible info leakage via | ||
559 | 847 | extension fields | ||
560 | 848 | - debian/patches/CVE-2014-9297.patch: properly check lengths in | ||
561 | 849 | ntpd/ntp_crypto.c, ntpd/ntp_proto.c. | ||
562 | 850 | - CVE-2014-9297 | ||
563 | 851 | * SECURITY UPDATE: IPv6 ACL bypass | ||
564 | 852 | - debian/patches/CVE-2014-9298.patch: check for spoofed ::1 in | ||
565 | 853 | ntpd/ntp_io.c. | ||
566 | 854 | - CVE-2014-9298 | ||
567 | 855 | |||
568 | 856 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Mon, 09 Feb 2015 13:03:44 -0500 | ||
569 | 857 | |||
570 | 858 | ntp (1:4.2.6.p5+dfsg-3ubuntu3) vivid; urgency=medium | ||
571 | 859 | |||
572 | 860 | * SECURITY UPDATE: weak default key in config_auth() | ||
573 | 861 | - debian/patches/CVE-2014-9293.patch: use openssl for random key in | ||
574 | 862 | ntpd/ntp_config.c, ntpd/ntpd.c. | ||
575 | 863 | - CVE-2014-9293 | ||
576 | 864 | * SECURITY UPDATE: non-cryptographic random number generator with weak | ||
577 | 865 | seed used by ntp-keygen to generate symmetric keys | ||
578 | 866 | - debian/patches/CVE-2014-9294.patch: use openssl for random key in | ||
579 | 867 | include/ntp_random.h, libntp/ntp_random.c, util/ntp-keygen.c. | ||
580 | 868 | - CVE-2014-9294 | ||
581 | 869 | * SECURITY UPDATE: buffer overflows in crypto_recv(), ctl_putdata(), | ||
582 | 870 | configure() | ||
583 | 871 | - debian/patches/CVE-2014-9295.patch: check lengths in | ||
584 | 872 | ntpd/ntp_control.c, ntpd/ntp_crypto.c. | ||
585 | 873 | - CVE-2014-9295 | ||
586 | 874 | * SECURITY UPDATE: missing return on error in receive() | ||
587 | 875 | - debian/patches/CVE-2015-9296.patch: add missing return in | ||
588 | 876 | ntpd/ntp_proto.c. | ||
589 | 877 | - CVE-2014-9296 | ||
590 | 878 | |||
591 | 879 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Sat, 20 Dec 2014 05:47:10 -0500 | ||
592 | 880 | |||
593 | 881 | ntp (1:4.2.6.p5+dfsg-3ubuntu2) saucy; urgency=low | ||
594 | 882 | |||
595 | 883 | * debian/apparmor-profile: fix spurious noisy denials (LP: #1237508) | ||
596 | 884 | |||
597 | 885 | -- Jamie Strandboge <jamie@ubuntu.com> Wed, 09 Oct 2013 12:28:02 -0500 | ||
598 | 886 | |||
599 | 887 | ntp (1:4.2.6.p5+dfsg-3ubuntu1) saucy; urgency=low | ||
600 | 888 | |||
601 | 889 | * Merge from Debian testing to regain crypto support (LP: #1236065). Remaining | ||
602 | 890 | changes: | ||
603 | 891 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
604 | 892 | ntp.ubuntu.com. | ||
605 | 893 | + debian/ntpdate.if-up: Stop ntp before running ntpdate when an interface | ||
606 | 894 | comes up, then start again afterwards. | ||
607 | 895 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
608 | 896 | + Add enforcing AppArmor profile: | ||
609 | 897 | - debian/control: Add Conflicts/Replaces on apparmor-profiles. | ||
610 | 898 | - debian/control: Add Suggests on apparmor. | ||
611 | 899 | - debian/ntp.dirs: Add apparmor directories. | ||
612 | 900 | - debian/ntp.preinst: Force complain on certain upgrades. | ||
613 | 901 | - debian/ntp.postinst: Reload apparmor profile. | ||
614 | 902 | - debian/ntp.postrm: Remove the force-complain file. | ||
615 | 903 | - add debian/apparmor-profile*. | ||
616 | 904 | - debian/rules: install apparmor-profile and apparmor-profile.tunable. | ||
617 | 905 | - debian/README.Debian: Add note on AppArmor. | ||
618 | 906 | + debian/{control,rules}: Add and enable hardened build for PIE. | ||
619 | 907 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
620 | 908 | + debian/ntpdate-debian: Disregard empty ntp.conf files. | ||
621 | 909 | + debian/ntp.preinst: Remove empty /etc/ntp.conf on fresh intallation. | ||
622 | 910 | + debian/ntpdate.if-up: Fix interaction with openntpd. | ||
623 | 911 | + debian/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
624 | 912 | false positives from denials originating in other packages. | ||
625 | 913 | + debian/rules: Update config.{guess,sub} for AArch64. | ||
626 | 914 | |||
627 | 915 | -- Tyler Hicks <tyhicks@canonical.com> Sun, 06 Oct 2013 12:34:00 -0700 | ||
628 | 916 | |||
629 | 343 | ntp (1:4.2.6.p5+dfsg-3) unstable; urgency=low | 917 | ntp (1:4.2.6.p5+dfsg-3) unstable; urgency=low |
630 | 344 | 918 | ||
631 | 345 | * Look for <openssl/opensslv.h> rather than <openssl/opensslconf.h>, which | 919 | * Look for <openssl/opensslv.h> rather than <openssl/opensslconf.h>, which |
632 | @@ -348,6 +922,51 @@ ntp (1:4.2.6.p5+dfsg-3) unstable; urgency=low | |||
633 | 348 | 922 | ||
634 | 349 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 20 May 2013 16:14:07 +0200 | 923 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 20 May 2013 16:14:07 +0200 |
635 | 350 | 924 | ||
636 | 925 | ntp (1:4.2.6.p5+dfsg-2ubuntu3) saucy; urgency=low | ||
637 | 926 | |||
638 | 927 | * Update config.{guess,sub} for AArch64. | ||
639 | 928 | |||
640 | 929 | -- Matthias Klose <doko@ubuntu.com> Mon, 05 Aug 2013 18:51:48 +0200 | ||
641 | 930 | |||
642 | 931 | ntp (1:4.2.6.p5+dfsg-2ubuntu2) saucy; urgency=low | ||
643 | 932 | |||
644 | 933 | * debian/apparmor-profile: Add /var/log/ntpstats/protostats* (LP: #1195898) | ||
645 | 934 | |||
646 | 935 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 05 Jul 2013 10:06:47 -0500 | ||
647 | 936 | |||
648 | 937 | ntp (1:4.2.6.p5+dfsg-2ubuntu1) raring; urgency=low | ||
649 | 938 | |||
650 | 939 | * New upstream version, fixing build failure in raring. | ||
651 | 940 | * Merge with Debian; remaining changes: | ||
652 | 941 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
653 | 942 | ntp.ubuntu.com. | ||
654 | 943 | + debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
655 | 944 | comes up, then start again afterwards. | ||
656 | 945 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
657 | 946 | + Add enforcing AppArmor profile: | ||
658 | 947 | - debian/control: Add Conflicts/Replaces on apparmor-profiles. | ||
659 | 948 | - debian/control: Add Suggests on apparmor. | ||
660 | 949 | - debian/ntp.dirs: Add apparmor directories. | ||
661 | 950 | - debian/ntp.preinst: Force complain on certain upgrades. | ||
662 | 951 | - debian/ntp.postinst: Reload apparmor profile. | ||
663 | 952 | - debian/ntp.postrm: Remove the force-complain file. | ||
664 | 953 | - add debian/apparmor-profile*. | ||
665 | 954 | - debian/rules: install apparmor-profile and apparmor-profile.tunable. | ||
666 | 955 | - debian/README.Debian: Add note on AppArmor. | ||
667 | 956 | + debian/{control,rules}: Add and enable hardened build for PIE. | ||
668 | 957 | + debian/apparmor-profile: Adjust location of drift files. | ||
669 | 958 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
670 | 959 | + debian/ntpdate-debian: Disregard empty ntp.conf files. | ||
671 | 960 | + debian/ntp.preinst: Remove empty /etc/ntp.conf on fresh intallation. | ||
672 | 961 | + debian/ntpdate.ifup: Fix interaction with openntpd. | ||
673 | 962 | + debian/source_ntp.py: Add filter on AppArmor profile names to prevent | ||
674 | 963 | false positives from denials originating in other packages. | ||
675 | 964 | + debian/apparmor-profile: Add samba4 ntp signing socket to ntpd apparmor | ||
676 | 965 | profile. | ||
677 | 966 | + debian/apparmor-profile: adjust for IPv6. | ||
678 | 967 | |||
679 | 968 | -- Matthias Klose <doko@ubuntu.com> Wed, 03 Apr 2013 07:21:01 +0200 | ||
680 | 969 | |||
681 | 351 | ntp (1:4.2.6.p5+dfsg-2) unstable; urgency=medium | 970 | ntp (1:4.2.6.p5+dfsg-2) unstable; urgency=medium |
682 | 352 | 971 | ||
683 | 353 | * Re-enable crypto support by pointing openssl libdir to multiarch dir. | 972 | * Re-enable crypto support by pointing openssl libdir to multiarch dir. |
684 | @@ -402,6 +1021,67 @@ ntp (1:4.2.6.p3+dfsg-2) unstable; urgency=low | |||
685 | 402 | 1021 | ||
686 | 403 | -- Peter Eisentraut <petere@debian.org> Sat, 17 Dec 2011 19:00:10 +0200 | 1022 | -- Peter Eisentraut <petere@debian.org> Sat, 17 Dec 2011 19:00:10 +0200 |
687 | 404 | 1023 | ||
688 | 1024 | ntp (1:4.2.6.p3+dfsg-1dbuntu5) quantal; urgency=low | ||
689 | 1025 | |||
690 | 1026 | * debian/source_ntp.py: add filter on AppArmor profile names to prevent | ||
691 | 1027 | false positives from denials originating in other packages. | ||
692 | 1028 | |||
693 | 1029 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Mon, 20 Aug 2012 10:13:30 -0400 | ||
694 | 1030 | |||
695 | 1031 | ntp (1:4.2.6.p3+dfsg-1ubuntu4) quantal; urgency=low | ||
696 | 1032 | |||
697 | 1033 | * Re-enable crypto support by pointing openssl libdir to multiarch dir, | ||
698 | 1034 | change backported from Debian, thanks Yves-Alexis Perez (lp: #998403) | ||
699 | 1035 | |||
700 | 1036 | -- Sebastien Bacher <seb128@ubuntu.com> Mon, 04 Jun 2012 16:35:25 +0200 | ||
701 | 1037 | |||
702 | 1038 | ntp (1:4.2.6.p3+dfsg-1ubuntu3) precise; urgency=low | ||
703 | 1039 | |||
704 | 1040 | * debian/apparmor-profile: Add samba4 ntp signing socket to ntpd apparmor | ||
705 | 1041 | profile (LP: #930266) | ||
706 | 1042 | * debian/control: Build-Depends on dh-apparmor | ||
707 | 1043 | |||
708 | 1044 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 06 Mar 2012 08:06:06 -0600 | ||
709 | 1045 | |||
710 | 1046 | ntp (1:4.2.6.p3+dfsg-1ubuntu2) precise; urgency=low | ||
711 | 1047 | |||
712 | 1048 | * debian/apparmor-profile: adjust for IPv6 (LP: #892332) | ||
713 | 1049 | |||
714 | 1050 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 03 Jan 2012 17:03:44 -0600 | ||
715 | 1051 | |||
716 | 1052 | ntp (1:4.2.6.p3+dfsg-1ubuntu1) precise; urgency=low | ||
717 | 1053 | |||
718 | 1054 | * Merge from debian unstable, remaining changes are: | ||
719 | 1055 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
720 | 1056 | ntp.ubuntu.com. | ||
721 | 1057 | + debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
722 | 1058 | comes up, then start again afterwards. | ||
723 | 1059 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
724 | 1060 | + Add enforcing AppArmor profile (LP: #382905): | ||
725 | 1061 | - debian/control: add Conflicts/Replaces on apparmor-profiles < | ||
726 | 1062 | 2.3.1+1403-0ubuntu10 (since we are now shipping usr.sbin.ntpd) and | ||
727 | 1063 | apparmor < 2.3.1+1403-0ubuntu10 (since we are now shipping tunables/ntpd) | ||
728 | 1064 | - debian/control: add Suggests on apparmor | ||
729 | 1065 | - debian/ntp.dirs: add apparmor directories | ||
730 | 1066 | - debian/ntp.preinst: force complain on certain upgrades | ||
731 | 1067 | - debian/ntp.postinst: reload apparmor profile | ||
732 | 1068 | - debian/ntp.postrm: remove the force-complain file | ||
733 | 1069 | - add debian/apparmor-profile* | ||
734 | 1070 | - debian/rules: install apparmor-profile and apparmor-profile.tunable | ||
735 | 1071 | - debian/README.Debian: add note on AppArmor | ||
736 | 1072 | + debian/{control,rules}: add and enable hardened build for PIE | ||
737 | 1073 | (Debian bug 542721). | ||
738 | 1074 | + debian/apparmor-profile: adjust location of drift files (LP: #456308) | ||
739 | 1075 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
740 | 1076 | + debian/ntpdate-debian: Disregard empty ntp.conf files. (LP: #83604) | ||
741 | 1077 | + debian/ntp.preinst: Remove empty /etc/ntp.conf on fresh intallation, | ||
742 | 1078 | to work around the system-tools-backends part of LP #83604. | ||
743 | 1079 | + debian/ntpdate.ifup: Fix interaction with openntpd. (LP: #877210) | ||
744 | 1080 | + Dropped: | ||
745 | 1081 | - ntpdate-accept-same-timestamp-replies.patch: Accepted upstream | ||
746 | 1082 | |||
747 | 1083 | -- Chuck Short <zulcss@ubuntu.com> Wed, 26 Oct 2011 10:24:21 -0400 | ||
748 | 1084 | |||
749 | 405 | ntp (1:4.2.6.p3+dfsg-1) unstable; urgency=low | 1085 | ntp (1:4.2.6.p3+dfsg-1) unstable; urgency=low |
750 | 406 | 1086 | ||
751 | 407 | * New upstream version | 1087 | * New upstream version |
752 | @@ -417,6 +1097,117 @@ ntp (1:4.2.6.p3+dfsg-1) unstable; urgency=low | |||
753 | 417 | 1097 | ||
754 | 418 | -- Kurt Roeckx <kurt@roeckx.be> Fri, 03 Jun 2011 16:39:02 +0200 | 1098 | -- Kurt Roeckx <kurt@roeckx.be> Fri, 03 Jun 2011 16:39:02 +0200 |
755 | 419 | 1099 | ||
756 | 1100 | ntp (1:4.2.6.p2+dfsg-1ubuntu13) precise; urgency=low | ||
757 | 1101 | |||
758 | 1102 | * debian/ntpdate.if-up: Fix interaction with openntpd, LP: #872210 | ||
759 | 1103 | |||
760 | 1104 | -- Reinhard Tartler <siretart@tauware.de> Tue, 11 Oct 2011 12:33:01 +0200 | ||
761 | 1105 | |||
762 | 1106 | ntp (1:4.2.6.p2+dfsg-1ubuntu12) oneiric; urgency=low | ||
763 | 1107 | |||
764 | 1108 | * debian/apparmor-profile: also allow access to /var/log/ntpstats/rawstats* | ||
765 | 1109 | |||
766 | 1110 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 02 Sep 2011 12:35:08 -0500 | ||
767 | 1111 | |||
768 | 1112 | ntp (1:4.2.6.p2+dfsg-1ubuntu11) oneiric; urgency=low | ||
769 | 1113 | |||
770 | 1114 | * debian/apparmor-profile: allow sys_nice for -N option to work. More | ||
771 | 1115 | work is needed to make ntpd start niced, so not auto-closing the bug. | ||
772 | 1116 | - LP: 229632 | ||
773 | 1117 | |||
774 | 1118 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 19 Aug 2011 07:39:20 -0500 | ||
775 | 1119 | |||
776 | 1120 | ntp (1:4.2.6.p2+dfsg-1ubuntu10) oneiric; urgency=low | ||
777 | 1121 | |||
778 | 1122 | * debian/source_ntp.py: use new apport MAC function instead of parsing | ||
779 | 1123 | and attaching AppArmor events here. | ||
780 | 1124 | |||
781 | 1125 | -- Marc Deslauriers <marc.deslauriers@ubuntu.com> Fri, 15 Jul 2011 08:33:08 -0400 | ||
782 | 1126 | |||
783 | 1127 | ntp (1:4.2.6.p2+dfsg-1ubuntu9) oneiric; urgency=low | ||
784 | 1128 | |||
785 | 1129 | * debian/apparmor-profile: Allow /var/run and /run. (LP: #810270) | ||
786 | 1130 | |||
787 | 1131 | -- Martin Pitt <martin.pitt@ubuntu.com> Thu, 14 Jul 2011 15:12:09 +0200 | ||
788 | 1132 | |||
789 | 1133 | ntp (1:4.2.6.p2+dfsg-1ubuntu8) oneiric; urgency=low | ||
790 | 1134 | |||
791 | 1135 | * debian/patches/ntpdate-accept-same-timestamp-replies.patch: | ||
792 | 1136 | Resolving regression where ntpdate ignores replies from some | ||
793 | 1137 | ntp servers where recieve and transmit timestamps are equal. | ||
794 | 1138 | Patch cherry picked from upstream commit. (LP: #787551) | ||
795 | 1139 | |||
796 | 1140 | -- Dave Walker (Daviey) <DaveWalker@ubuntu.com> Mon, 13 Jun 2011 15:22:29 +0100 | ||
797 | 1141 | |||
798 | 1142 | ntp (1:4.2.6.p2+dfsg-1ubuntu7) oneiric; urgency=low | ||
799 | 1143 | |||
800 | 1144 | * Fix a number of -Wformat-security warnings. | ||
801 | 1145 | |||
802 | 1146 | -- Colin Watson <cjwatson@ubuntu.com> Fri, 20 May 2011 12:20:07 +0100 | ||
803 | 1147 | |||
804 | 1148 | ntp (1:4.2.6.p2+dfsg-1ubuntu6) oneiric; urgency=low | ||
805 | 1149 | |||
806 | 1150 | * Rebuild for OpenSSL 1.0.0. | ||
807 | 1151 | |||
808 | 1152 | -- Colin Watson <cjwatson@ubuntu.com> Tue, 17 May 2011 17:24:01 +0100 | ||
809 | 1153 | |||
810 | 1154 | ntp (1:4.2.6.p2+dfsg-1ubuntu5) natty; urgency=low | ||
811 | 1155 | |||
812 | 1156 | * debian/apparmor-profile: add note about using shared memory for | ||
813 | 1157 | a clock source (LP: #722815). | ||
814 | 1158 | |||
815 | 1159 | -- Kees Cook <kees@ubuntu.com> Thu, 10 Mar 2011 12:54:59 -0800 | ||
816 | 1160 | |||
817 | 1161 | ntp (1:4.2.6.p2+dfsg-1ubuntu4) natty; urgency=low | ||
818 | 1162 | |||
819 | 1163 | * debian/ntp.conf: adjust to use X.ubuntu.pool.ntp.org in addition to | ||
820 | 1164 | ntp.ubuntu.com (LP: #104525) | ||
821 | 1165 | |||
822 | 1166 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 08 Feb 2011 10:03:19 -0600 | ||
823 | 1167 | |||
824 | 1168 | ntp (1:4.2.6.p2+dfsg-1ubuntu3) natty; urgency=low | ||
825 | 1169 | |||
826 | 1170 | * debian/apparmor-profile: allow access to clockstats too (LP: #701896) | ||
827 | 1171 | |||
828 | 1172 | -- Jamie Strandboge <jamie@ubuntu.com> Wed, 12 Jan 2011 10:05:41 -0600 | ||
829 | 1173 | |||
830 | 1174 | ntp (1:4.2.6.p2+dfsg-1ubuntu2) natty; urgency=low | ||
831 | 1175 | |||
832 | 1176 | * debian/ntpdate-debian: Disregard empty ntp.conf files (thanks, Mika | ||
833 | 1177 | Wahlroos; LP: #83604). | ||
834 | 1178 | * debian/ntp.preinst: Remove empty /etc/ntp.conf on fresh installation, to | ||
835 | 1179 | work around the system-tools-backends part of LP #83604. | ||
836 | 1180 | |||
837 | 1181 | -- Colin Watson <cjwatson@ubuntu.com> Mon, 06 Dec 2010 11:13:04 +0000 | ||
838 | 1182 | |||
839 | 1183 | ntp (1:4.2.6.p2+dfsg-1ubuntu1) natty; urgency=low | ||
840 | 1184 | |||
841 | 1185 | * Merge from debian unstable, remaining changes are: | ||
842 | 1186 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
843 | 1187 | ntp.ubuntu.com. | ||
844 | 1188 | + debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
845 | 1189 | comes up, then start again afterwards. | ||
846 | 1190 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
847 | 1191 | + Add enforcing AppArmor profile (LP: #382905): | ||
848 | 1192 | - debian/control: add Conflicts/Replaces on apparmor-profiles < | ||
849 | 1193 | 2.3.1+1403-0ubuntu10 (since we are now shipping usr.sbin.ntpd) and | ||
850 | 1194 | apparmor < 2.3.1+1403-0ubuntu10 (since we are now shipping tunables/ntpd) | ||
851 | 1195 | - debian/control: add Suggests on apparmor | ||
852 | 1196 | - debian/ntp.dirs: add apparmor directories | ||
853 | 1197 | - debian/ntp.preinst: force complain on certain upgrades | ||
854 | 1198 | - debian/ntp.postinst: reload apparmor profile | ||
855 | 1199 | - debian/ntp.postrm: remove the force-complain file | ||
856 | 1200 | - add debian/apparmor-profile* | ||
857 | 1201 | - debian/rules: install apparmor-profile and apparmor-profile.tunable | ||
858 | 1202 | - debian/README.Debian: add note on AppArmor | ||
859 | 1203 | + debian/{control,rules}: add and enable hardened build for PIE | ||
860 | 1204 | (Debian bug 542721). | ||
861 | 1205 | + debian/apparmor-profile: adjust location of drift files (LP: #456308) | ||
862 | 1206 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport hook. | ||
863 | 1207 | |||
864 | 1208 | |||
865 | 1209 | -- Chuck Short <zulcss@ubuntu.com> Tue, 30 Nov 2010 11:14:31 -0500 | ||
866 | 1210 | |||
867 | 420 | ntp (1:4.2.6.p2+dfsg-1) unstable; urgency=low | 1211 | ntp (1:4.2.6.p2+dfsg-1) unstable; urgency=low |
868 | 421 | 1212 | ||
869 | 422 | [ Peter Eisentraut ] | 1213 | [ Peter Eisentraut ] |
870 | @@ -500,6 +1291,80 @@ ntp (1:4.2.6+dfsg-1) unstable; urgency=low | |||
871 | 500 | 1291 | ||
872 | 501 | -- Kurt Roeckx <kurt@roeckx.be> Sat, 26 Dec 2009 14:12:22 +0100 | 1292 | -- Kurt Roeckx <kurt@roeckx.be> Sat, 26 Dec 2009 14:12:22 +0100 |
873 | 502 | 1293 | ||
874 | 1294 | ntp (1:4.2.4p8+dfsg-1ubuntu6) maverick; urgency=low | ||
875 | 1295 | |||
876 | 1296 | * debian/rules: move dh_apparmor before dh_installinit | ||
877 | 1297 | |||
878 | 1298 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 06 Aug 2010 17:40:04 -0500 | ||
879 | 1299 | |||
880 | 1300 | ntp (1:4.2.4p8+dfsg-1ubuntu5) maverick; urgency=low | ||
881 | 1301 | |||
882 | 1302 | * convert to dh_apparmor: | ||
883 | 1303 | - debian/rules, debian/ntp.postrm, debian/ntp.postinst: use dh_apparmor | ||
884 | 1304 | - control: Build-Depends on debhelper >= 7.4.20ubuntu5 | ||
885 | 1305 | * debian/apparmor-profile: include local override | ||
886 | 1306 | * remove now unneeded debian/ntp.preinst | ||
887 | 1307 | |||
888 | 1308 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 06 Aug 2010 13:55:12 -0500 | ||
889 | 1309 | |||
890 | 1310 | ntp (1:4.2.4p8+dfsg-1ubuntu4) maverick; urgency=low | ||
891 | 1311 | |||
892 | 1312 | * debian/dhcp.ntp: Dont remove *all* ntp server from ntp.conf. | ||
893 | 1313 | (LP: #575458) | ||
894 | 1314 | * debian/apparmor-profile: Allow access to /dev/ttyS* | ||
895 | 1315 | (LP: #596859) | ||
896 | 1316 | |||
897 | 1317 | -- Chuck Short <zulcss@ubuntu.com> Tue, 22 Jun 2010 09:24:02 -0400 | ||
898 | 1318 | |||
899 | 1319 | ntp (1:4.2.4p8+dfsg-1ubuntu3) maverick; urgency=low | ||
900 | 1320 | |||
901 | 1321 | * debian/apparmor-profile: allow access to /var/log/ntpstats/sysstats* | ||
902 | 1322 | (LP: #574343) | ||
903 | 1323 | |||
904 | 1324 | -- Jamie Strandboge <jamie@ubuntu.com> Fri, 18 Jun 2010 07:54:24 -0500 | ||
905 | 1325 | |||
906 | 1326 | ntp (1:4.2.4p8+dfsg-1ubuntu2) lucid; urgency=low | ||
907 | 1327 | |||
908 | 1328 | * debian/apparmor-profile: allow reading of /var/lib/ntp/ntp.conf.dhcp | ||
909 | 1329 | (LP: #517701) | ||
910 | 1330 | |||
911 | 1331 | -- Jamie Strandboge <jamie@ubuntu.com> Thu, 08 Apr 2010 16:24:42 -0500 | ||
912 | 1332 | |||
913 | 1333 | ntp (1:4.2.4p8+dfsg-1ubuntu1) lucid; urgency=low | ||
914 | 1334 | |||
915 | 1335 | * Merge from debian testing, remaining changes: | ||
916 | 1336 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
917 | 1337 | ntp.ubuntu.com. | ||
918 | 1338 | + debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
919 | 1339 | comes up, then start again afterwards. | ||
920 | 1340 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
921 | 1341 | + Add enforcing AppArmor profile (LP: #382905): | ||
922 | 1342 | - debian/control: add Conflicts/Replaces on apparmor-profiles < | ||
923 | 1343 | 2.3.1+1403-0ubuntu10 (since we are now shipping usr.sbin.ntpd) and | ||
924 | 1344 | apparmor < 2.3.1+1403-0ubuntu10 (since we are now shipping tunables/ntpd) | ||
925 | 1345 | - debian/control: add Suggests on apparmor | ||
926 | 1346 | - debian/ntp.dirs: add apparmor directories | ||
927 | 1347 | - debian/ntp.preinst: force complain on certain upgrades | ||
928 | 1348 | - debian/ntp.postinst: reload apparmor profile | ||
929 | 1349 | - debian/ntp.postrm: remove the force-complain file | ||
930 | 1350 | - add debian/apparmor-profile* | ||
931 | 1351 | - debian/rules: install apparmor-profile and apparmor-profile.tunable | ||
932 | 1352 | - debian/README.Debian: add note on AppArmor | ||
933 | 1353 | + debian/{control,rules}: add and enable hardened build for PIE | ||
934 | 1354 | (Debian bug 542721). | ||
935 | 1355 | + debian/apparmor-profile: adjust location of drift files (LP: #456308) | ||
936 | 1356 | + Dropped changes, merged in debian: | ||
937 | 1357 | - fix-nano.patch: Use mod_nano.patch from debian. | ||
938 | 1358 | + Dropped changes, superseded upstream/in Debian: | ||
939 | 1359 | - debian/patches/CVE-2009-1252.patch: No longer needed. | ||
940 | 1360 | - debian/patches/debian/patches/CVE-2009-0159.patch: No longer needed. | ||
941 | 1361 | |||
942 | 1362 | [Chuck Short] | ||
943 | 1363 | + debian/rules, debian/ntp.dirs, debian/source_ntp.py: Add apport | ||
944 | 1364 | hook, apart of the server-lucid-apport-hooks specification. | ||
945 | 1365 | |||
946 | 1366 | -- Chuck Short <zulcss@ubuntu.com> Tue, 02 Feb 2010 18:36:29 -0500 | ||
947 | 1367 | |||
948 | 503 | ntp (1:4.2.4p8+dfsg-1) unstable; urgency=high | 1368 | ntp (1:4.2.4p8+dfsg-1) unstable; urgency=high |
949 | 504 | 1369 | ||
950 | 505 | * New upstream release. | 1370 | * New upstream release. |
951 | @@ -550,6 +1415,65 @@ ntp (1:4.2.4p7+dfsg-1) unstable; urgency=low | |||
952 | 550 | 1415 | ||
953 | 551 | -- Kurt Roeckx <kurt@roeckx.be> Sat, 21 Nov 2009 17:27:11 +0100 | 1416 | -- Kurt Roeckx <kurt@roeckx.be> Sat, 21 Nov 2009 17:27:11 +0100 |
954 | 552 | 1417 | ||
955 | 1418 | ntp (1:4.2.4p6+dfsg-2ubuntu4) lucid; urgency=low | ||
956 | 1419 | |||
957 | 1420 | * debian/rules: install symlink for early loading of per-interface | ||
958 | 1421 | triggered ntp AppArmor profile. | ||
959 | 1422 | |||
960 | 1423 | -- Kees Cook <kees@ubuntu.com> Tue, 15 Dec 2009 11:35:33 -0800 | ||
961 | 1424 | |||
962 | 1425 | ntp (1:4.2.4p6+dfsg-2ubuntu3) lucid; urgency=low | ||
963 | 1426 | |||
964 | 1427 | * SECURITY UPDATE: fix DoS with mode 7 (MODE_PRIVATE) packets | ||
965 | 1428 | - debian/patches/CVE-2009-3563.patch: update ntpd/ntp_request.c to | ||
966 | 1429 | not send a response packet for and rate limit logging of invalid mode 7 | ||
967 | 1430 | requests and responses | ||
968 | 1431 | - CVE-2009-3563 | ||
969 | 1432 | |||
970 | 1433 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 08 Dec 2009 13:52:12 -0600 | ||
971 | 1434 | |||
972 | 1435 | ntp (1:4.2.4p6+dfsg-2ubuntu2) lucid; urgency=low | ||
973 | 1436 | |||
974 | 1437 | * debian/rules: enable debugging (LP: #47683) | ||
975 | 1438 | * debian/ntpdate-if.up: Hide invoke-rc.d output. (LP: #489585) | ||
976 | 1439 | * debian/man/ntptrace.1: Update man page removed ghost options. (LP: #351989) | ||
977 | 1440 | |||
978 | 1441 | -- Chuck Short <zulcss@ubuntu.com> Mon, 07 Dec 2009 14:59:28 -0500 | ||
979 | 1442 | |||
980 | 1443 | ntp (1:4.2.4p6+dfsg-2ubuntu1) lucid; urgency=low | ||
981 | 1444 | |||
982 | 1445 | * Merge from debian testing, remaining changes: | ||
983 | 1446 | + debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
984 | 1447 | ntp.ubuntu.com. | ||
985 | 1448 | + debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
986 | 1449 | comes up, then start again afterwards | ||
987 | 1450 | + debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
988 | 1451 | + Add enforcing AppArmor profile (LP: #382905) | ||
989 | 1452 | - debian/control: add Conflicts/Replaces on apparmor-profiles < | ||
990 | 1453 | 2.3.1+1403-0ubuntu10 (since we are now shipping usr.sbin.ntpd) and | ||
991 | 1454 | apparmor < 2.3.1+1403-0ubuntu10 (since we are now shipping | ||
992 | 1455 | tunables/ntpd) | ||
993 | 1456 | - debian/control: add Suggests on apparmor | ||
994 | 1457 | - debian/ntp.dirs: add apparmor directories | ||
995 | 1458 | - debian/ntp.preinst: force complain on certain upgrades | ||
996 | 1459 | - debian/ntp.postinst: reload apparmor profile | ||
997 | 1460 | - debian/ntp.postrm: remove the force-complain file | ||
998 | 1461 | - add debian/apparmor-profile* | ||
999 | 1462 | - debian/rules: install apparmor-profile and apparmor-profile.tunable | ||
1000 | 1463 | - debian/README.Debian: add note on AppArmor | ||
1001 | 1464 | + debian/patches/fix-nano.patch: enable nanokernel support (LP: #412242) | ||
1002 | 1465 | + debian/{control,rules}: add and enable hardened build for PIE | ||
1003 | 1466 | (Debian bug 542721). | ||
1004 | 1467 | + debian/apparmor-profile: adjust location of drift files (LP: #456308) | ||
1005 | 1468 | + Dropped changes, merged in Debian: | ||
1006 | 1469 | - debian/man/ntpdate.8 - fix debian shipped manpage; patch by | ||
1007 | 1470 | Josh Holland <jrh@joshh.co.uk> | ||
1008 | 1471 | + Dropped changes, superseded upstream/in Debian: | ||
1009 | 1472 | - debian/patches/CVE-2009-0159.patch: Use Debian's version of the patch. | ||
1010 | 1473 | - debian/patches/CVE-2009-1252.patch: Use Debian's version of the patch. | ||
1011 | 1474 | |||
1012 | 1475 | -- Chuck Short <zulcss@ubuntu.com> Fri, 06 Nov 2009 01:34:35 +0000 | ||
1013 | 1476 | |||
1014 | 553 | ntp (1:4.2.4p6+dfsg-2) unstable; urgency=medium | 1477 | ntp (1:4.2.4p6+dfsg-2) unstable; urgency=medium |
1015 | 554 | 1478 | ||
1016 | 555 | * Fixed typo in ntpdate man page (closes: #526086) | 1479 | * Fixed typo in ntpdate man page (closes: #526086) |
1017 | @@ -566,6 +1490,75 @@ ntp (1:4.2.4p6+dfsg-2) unstable; urgency=medium | |||
1018 | 566 | 1490 | ||
1019 | 567 | -- Peter Eisentraut <petere@debian.org> Fri, 12 Jun 2009 17:24:22 +0300 | 1491 | -- Peter Eisentraut <petere@debian.org> Fri, 12 Jun 2009 17:24:22 +0300 |
1020 | 568 | 1492 | ||
1021 | 1493 | ntp (1:4.2.4p6+dfsg-1ubuntu5) karmic; urgency=low | ||
1022 | 1494 | |||
1023 | 1495 | * debian/apparmor-profile: adjust location of drift files (LP: #456308) | ||
1024 | 1496 | |||
1025 | 1497 | -- Jamie Strandboge <jamie@ubuntu.com> Wed, 21 Oct 2009 07:07:31 -0500 | ||
1026 | 1498 | |||
1027 | 1499 | ntp (1:4.2.4p6+dfsg-1ubuntu4) karmic; urgency=low | ||
1028 | 1500 | |||
1029 | 1501 | * debian/{control,rules}: add and enable hardened build for PIE | ||
1030 | 1502 | (Debian bug 542721). | ||
1031 | 1503 | |||
1032 | 1504 | -- Kees Cook <kees@ubuntu.com> Thu, 20 Aug 2009 17:12:44 -0700 | ||
1033 | 1505 | |||
1034 | 1506 | ntp (1:4.2.4p6+dfsg-1ubuntu3) karmic; urgency=low | ||
1035 | 1507 | |||
1036 | 1508 | * Add enforcing AppArmor profile (LP: #382905) | ||
1037 | 1509 | - debian/control: add Conflicts/Replaces on apparmor-profiles < | ||
1038 | 1510 | 2.3.1+1403-0ubuntu10 (since we are now shipping usr.sbin.ntpd) and | ||
1039 | 1511 | apparmor < 2.3.1+1403-0ubuntu10 (since we are now shipping | ||
1040 | 1512 | tunables/ntpd) | ||
1041 | 1513 | - debian/control: add Suggests on apparmor | ||
1042 | 1514 | - debian/ntp.dirs: add apparmor directories | ||
1043 | 1515 | - debian/ntp.preinst: force complain on certain upgrades | ||
1044 | 1516 | - debian/ntp.postinst: reload apparmor profile | ||
1045 | 1517 | - debian/ntp.postrm: remove the force-complain file | ||
1046 | 1518 | - add debian/apparmor-profile* | ||
1047 | 1519 | - debian/rules: install apparmor-profile and apparmor-profile.tunable | ||
1048 | 1520 | - debian/README.Debian: add note on AppArmor | ||
1049 | 1521 | * debian/patches/fix-nano.patch: enable nanokernel support (LP: #412242) | ||
1050 | 1522 | |||
1051 | 1523 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 11 Aug 2009 18:25:50 -0500 | ||
1052 | 1524 | |||
1053 | 1525 | ntp (1:4.2.4p6+dfsg-1ubuntu2) karmic; urgency=low | ||
1054 | 1526 | |||
1055 | 1527 | * SECURITY UPDATE: stack overflow in ntpd when autokey is enabled | ||
1056 | 1528 | - debian/patches/CVE-2009-1252.patch: update ntpd/ntp_crypto.c to use | ||
1057 | 1529 | snprintf() with NTP_MAXSTRLEN when writing to statstr. Also defensively | ||
1058 | 1530 | adjust ntp_peer.c and ntp_timer.c to do the same. | ||
1059 | 1531 | - CVE-2009-1252 | ||
1060 | 1532 | * SECURITY UPDATE: stack overflow in ntpq when contacting malicious ntp | ||
1061 | 1533 | server | ||
1062 | 1534 | - debian/patches/CVE-2009-0159.patch: increase size of buffer in | ||
1063 | 1535 | cookedprint() in ntpq/ntpq.c and adjust to use snprintf() | ||
1064 | 1536 | - CVE-2009-0159 | ||
1065 | 1537 | |||
1066 | 1538 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 19 May 2009 15:26:41 -0500 | ||
1067 | 1539 | |||
1068 | 1540 | ntp (1:4.2.4p6+dfsg-1ubuntu1) karmic; urgency=low | ||
1069 | 1541 | |||
1070 | 1542 | * Merge from Debian unstable, remaining changes: | ||
1071 | 1543 | - debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
1072 | 1544 | ntp.ubuntu.com. | ||
1073 | 1545 | - debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
1074 | 1546 | comes up, then start again afterwards | ||
1075 | 1547 | - debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
1076 | 1548 | - debian/man/ntpdate.8 - fix debian shipped manpage; patch by | ||
1077 | 1549 | Josh Holland <jrh@joshh.co.uk> | ||
1078 | 1550 | * Dropped changes, merged in Debian: | ||
1079 | 1551 | - Build against libcap2 instead of libcap1, fixing a kernel warning | ||
1080 | 1552 | about using an old interface. | ||
1081 | 1553 | * Dropped changes, superseded upstream/in Debian: | ||
1082 | 1554 | - debian/patches/CVE-2009-0021.patch: update ntpd/ntp_crypto.c to properly | ||
1083 | 1555 | check the return code of EVP_VerifyFinal() | ||
1084 | 1556 | - debian/patches/ipv6-gnu-source.patch: Define _GNU_SOURCE to make IPv6 | ||
1085 | 1557 | work. | ||
1086 | 1558 | * Fixes LP: #217699 | ||
1087 | 1559 | |||
1088 | 1560 | -- Steve Langasek <steve.langasek@ubuntu.com> Wed, 29 Apr 2009 06:08:19 +0000 | ||
1089 | 1561 | |||
1090 | 569 | ntp (1:4.2.4p6+dfsg-1) unstable; urgency=low | 1562 | ntp (1:4.2.4p6+dfsg-1) unstable; urgency=low |
1091 | 570 | 1563 | ||
1092 | 571 | * New upstream release | 1564 | * New upstream release |
1093 | @@ -587,6 +1580,49 @@ ntp (1:4.2.4p4+dfsg-8) unstable; urgency=low | |||
1094 | 587 | 1580 | ||
1095 | 588 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 05 Jan 2009 21:10:03 +0100 | 1581 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 05 Jan 2009 21:10:03 +0100 |
1096 | 589 | 1582 | ||
1097 | 1583 | ntp (1:4.2.4p4+dfsg-7ubuntu5) jaunty; urgency=low | ||
1098 | 1584 | |||
1099 | 1585 | * Build against libcap2 instead of libcap1, fixing a kernel warning | ||
1100 | 1586 | about using an old interface. LP: #328376. | ||
1101 | 1587 | |||
1102 | 1588 | -- Steve Langasek <steve.langasek@ubuntu.com> Fri, 20 Mar 2009 19:53:25 +0000 | ||
1103 | 1589 | |||
1104 | 1590 | ntp (1:4.2.4p4+dfsg-7ubuntu4) jaunty; urgency=low | ||
1105 | 1591 | |||
1106 | 1592 | * LP: #314810 - ntpdate typo in manpage | ||
1107 | 1593 | - debian/man/ntpdate.8 - fix debian shipped manpage; patch by | ||
1108 | 1594 | Josh Holland <jrh@joshh.co.uk> | ||
1109 | 1595 | |||
1110 | 1596 | -- Alexander Sack <asac@ubuntu.com> Mon, 23 Feb 2009 11:57:32 +0100 | ||
1111 | 1597 | |||
1112 | 1598 | ntp (1:4.2.4p4+dfsg-7ubuntu3) jaunty; urgency=low | ||
1113 | 1599 | |||
1114 | 1600 | * SECURITY UPDATE: clients treat malformed signatures as good when verifying | ||
1115 | 1601 | server DSA and ECDSA certificates. | ||
1116 | 1602 | - debian/patches/CVE-2009-0021.patch: update ntpd/ntp_crypto.c to properly | ||
1117 | 1603 | check the return code of EVP_VerifyFinal() | ||
1118 | 1604 | - CVE-2009-0021 | ||
1119 | 1605 | |||
1120 | 1606 | -- Jamie Strandboge <jamie@ubuntu.com> Tue, 06 Jan 2009 01:19:55 -0600 | ||
1121 | 1607 | |||
1122 | 1608 | ntp (1:4.2.4p4+dfsg-7ubuntu2) jaunty; urgency=low | ||
1123 | 1609 | |||
1124 | 1610 | * Add ipv6-gnu-source.patch: Define _GNU_SOURCE to make IPv6 work. | ||
1125 | 1611 | (LP: #305043) | ||
1126 | 1612 | |||
1127 | 1613 | -- Matt LaPlante <mattl@google.com> Thu, 04 Dec 2008 00:39:51 -0600 | ||
1128 | 1614 | |||
1129 | 1615 | ntp (1:4.2.4p4+dfsg-7ubuntu1) jaunty; urgency=low | ||
1130 | 1616 | |||
1131 | 1617 | * Merge from debian unstable, remaining changes: | ||
1132 | 1618 | - debian/ntp.conf, debian/ntpdate.default: Change default server to | ||
1133 | 1619 | ntp.ubuntu.com. | ||
1134 | 1620 | - debian/ntpdate.ifup: Stop ntp before running ntpdate when an interface | ||
1135 | 1621 | comes up, then start again afterwards (LP: #114505) | ||
1136 | 1622 | - debian/ntp.init, debian/rules: Only stop when entering single user mode. | ||
1137 | 1623 | |||
1138 | 1624 | -- Scott James Remnant <scott@ubuntu.com> Tue, 11 Nov 2008 17:18:15 +0000 | ||
1139 | 1625 | |||
1140 | 590 | ntp (1:4.2.4p4+dfsg-7) unstable; urgency=low | 1626 | ntp (1:4.2.4p4+dfsg-7) unstable; urgency=low |
1141 | 591 | 1627 | ||
1142 | 592 | * Added support for numeric IPv6 address in ntpdate-debian (closes: #489712) | 1628 | * Added support for numeric IPv6 address in ntpdate-debian (closes: #489712) |
1143 | @@ -595,6 +1631,39 @@ ntp (1:4.2.4p4+dfsg-7) unstable; urgency=low | |||
1144 | 595 | 1631 | ||
1145 | 596 | -- Peter Eisentraut <petere@debian.org> Wed, 16 Jul 2008 14:09:41 +0200 | 1632 | -- Peter Eisentraut <petere@debian.org> Wed, 16 Jul 2008 14:09:41 +0200 |
1146 | 597 | 1633 | ||
1147 | 1634 | ntp (1:4.2.4p4+dfsg-6ubuntu2) intrepid; urgency=low | ||
1148 | 1635 | |||
1149 | 1636 | * debian/ntpdate.ifup: use a different lockfile to avoid dead-locks | ||
1150 | 1637 | when restarting ntpd (LP: #246203). | ||
1151 | 1638 | |||
1152 | 1639 | -- Kees Cook <kees@ubuntu.com> Wed, 20 Aug 2008 09:48:33 -0700 | ||
1153 | 1640 | |||
1154 | 1641 | ntp (1:4.2.4p4+dfsg-6ubuntu1) intrepid; urgency=low | ||
1155 | 1642 | |||
1156 | 1643 | * Merge from debian unstable, remaining changes: | ||
1157 | 1644 | - debian/ntp.conf, debian/ntpdate.default: | ||
1158 | 1645 | - Change default server to ntp.ubuntu.com. | ||
1159 | 1646 | - debian/control: | ||
1160 | 1647 | - Set Ubuntu maintainer address. | ||
1161 | 1648 | - debian/ntpdate.ifup: | ||
1162 | 1649 | Stop ntp before running ntpdate when an interface | ||
1163 | 1650 | comes up, then start again afterwards (LP: #114505) | ||
1164 | 1651 | * debian/rules: | ||
1165 | 1652 | - Call update-rcd-params with manual arguments instead of defaults. | ||
1166 | 1653 | * debian/ntp.init: | ||
1167 | 1654 | - Update LSB Default-Stop header. | ||
1168 | 1655 | * Dropped: | ||
1169 | 1656 | - Update TearDown spec implementation: | ||
1170 | 1657 | - Update version in conflicts/replaces to that which was shipped in | ||
1171 | 1658 | edgy, which was later than that in Debian (due to the ubuntuX). | ||
1172 | 1659 | - Add sysv-rc dependency. | ||
1173 | 1660 | - debian/rules: | ||
1174 | 1661 | - Call update-rcd-params with multiuser instead defaults. | ||
1175 | 1662 | - debian/ntp-server.postinst (dapper upgrade): | ||
1176 | 1663 | - Remove stop script symlinks from rc0 and rc6. | ||
1177 | 1664 | |||
1178 | 1665 | -- Mathias Gug <mathiaz@ubuntu.com> Wed, 18 Jun 2008 22:28:16 -0400 | ||
1179 | 1666 | |||
1180 | 598 | ntp (1:4.2.4p4+dfsg-6) unstable; urgency=low | 1667 | ntp (1:4.2.4p4+dfsg-6) unstable; urgency=low |
1181 | 599 | 1668 | ||
1182 | 600 | * Put back accidentally removed /etc/defaults/ntpdate (closes: #482605) | 1669 | * Put back accidentally removed /etc/defaults/ntpdate (closes: #482605) |
1183 | @@ -641,6 +1710,30 @@ ntp (1:4.2.4p4+dfsg-4) unstable; urgency=low | |||
1184 | 641 | 1710 | ||
1185 | 642 | -- Peter Eisentraut <petere@debian.org> Tue, 29 Apr 2008 11:19:54 +0200 | 1711 | -- Peter Eisentraut <petere@debian.org> Tue, 29 Apr 2008 11:19:54 +0200 |
1186 | 643 | 1712 | ||
1187 | 1713 | ntp (1:4.2.4p4+dfsg-3ubuntu2) hardy; urgency=low | ||
1188 | 1714 | |||
1189 | 1715 | * Stop ntp before running ntpdate when an interface | ||
1190 | 1716 | comes up, then start again afterwards (LP: #114505) | ||
1191 | 1717 | |||
1192 | 1718 | -- Onno Benschop <onno@itmaze.com.au> Thu, 6 Mar 2008 14:00:42 +0900 | ||
1193 | 1719 | |||
1194 | 1720 | ntp (1:4.2.4p4+dfsg-3ubuntu1) hardy; urgency=low | ||
1195 | 1721 | |||
1196 | 1722 | * Merge from debian unstable, remaining changes: | ||
1197 | 1723 | - debian/ntp.conf, debian/ntpdate.default: | ||
1198 | 1724 | - Change default server to ntp.ubuntu.com. | ||
1199 | 1725 | - debian/rules: | ||
1200 | 1726 | - Call update-rcd-params with multiuser instead defaults. | ||
1201 | 1727 | - debian/control: | ||
1202 | 1728 | - Set Ubuntu maintainer address. | ||
1203 | 1729 | - Update version in conflicts/replaces to that which was shipped in | ||
1204 | 1730 | edgy, which was later than that in Debian (due to the ubuntuX). | ||
1205 | 1731 | - Add sysv-rc dependency. | ||
1206 | 1732 | - debian/ntp-server.postinst: | ||
1207 | 1733 | - Remove stop script symlinks from rc0 and rc6. | ||
1208 | 1734 | |||
1209 | 1735 | -- Scott Kitterman <scott@kitterman.com> Mon, 25 Feb 2008 19:36:36 -0500 | ||
1210 | 1736 | |||
1211 | 644 | ntp (1:4.2.4p4+dfsg-3) unstable; urgency=low | 1737 | ntp (1:4.2.4p4+dfsg-3) unstable; urgency=low |
1212 | 645 | 1738 | ||
1213 | 646 | * Various man page and NEWS fixes (patches by Justin Pryzby and Vincent | 1739 | * Various man page and NEWS fixes (patches by Justin Pryzby and Vincent |
1214 | @@ -663,6 +1756,23 @@ ntp (1:4.2.4p4+dfsg-3) unstable; urgency=low | |||
1215 | 663 | 1756 | ||
1216 | 664 | -- Peter Eisentraut <petere@debian.org> Sun, 13 Jan 2008 12:18:13 +0100 | 1757 | -- Peter Eisentraut <petere@debian.org> Sun, 13 Jan 2008 12:18:13 +0100 |
1217 | 665 | 1758 | ||
1218 | 1759 | ntp (1:4.2.4p4+dfsg-2ubuntu1) hardy; urgency=low | ||
1219 | 1760 | |||
1220 | 1761 | * Merge from debian unstable, remaining changes: | ||
1221 | 1762 | - debian/ntp.conf, debian/ntpdate.default: | ||
1222 | 1763 | - Change default server to ntp.ubuntu.com. | ||
1223 | 1764 | - debian/rules: | ||
1224 | 1765 | - Call update-rcd-params with multiuser instead defaults. | ||
1225 | 1766 | - debian/control: | ||
1226 | 1767 | - Set Ubuntu maintainer address. | ||
1227 | 1768 | - Update version in conflicts/replaces to that which was shipped in edgy, | ||
1228 | 1769 | which was later than that in Debian (due to the ubuntuX). | ||
1229 | 1770 | - Add sysv-rc dependency. | ||
1230 | 1771 | - debian/ntp-server.postinst: | ||
1231 | 1772 | - Remove stop script symlinks from rc0 and rc6. | ||
1232 | 1773 | |||
1233 | 1774 | -- Mathias Gug <mathiaz@ubuntu.com> Mon, 26 Nov 2007 15:42:41 -0500 | ||
1234 | 1775 | |||
1235 | 666 | ntp (1:4.2.4p4+dfsg-2) unstable; urgency=low | 1776 | ntp (1:4.2.4p4+dfsg-2) unstable; urgency=low |
1236 | 667 | 1777 | ||
1237 | 668 | * Disable checking of openssl library version. | 1778 | * Disable checking of openssl library version. |
1238 | @@ -697,6 +1807,25 @@ ntp (1:4.2.4p3+dfsg-1) unstable; urgency=low | |||
1239 | 697 | 1807 | ||
1240 | 698 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 13 Aug 2007 15:58:08 +0000 | 1808 | -- Kurt Roeckx <kurt@roeckx.be> Mon, 13 Aug 2007 15:58:08 +0000 |
1241 | 699 | 1809 | ||
1242 | 1810 | ntp (1:4.2.4p0+dfsg-1ubuntu2) gutsy; urgency=low | ||
1243 | 1811 | |||
1244 | 1812 | * Trigger rebuild for hppa | ||
1245 | 1813 | |||
1246 | 1814 | -- LaMont Jones <lamont@ubuntu.com> Thu, 04 Oct 2007 12:15:33 -0600 | ||
1247 | 1815 | |||
1248 | 1816 | ntp (1:4.2.4p0+dfsg-1ubuntu1) gutsy; urgency=low | ||
1249 | 1817 | |||
1250 | 1818 | * Merge from Debian unstable. | ||
1251 | 1819 | * Remaining Ubuntu changes: | ||
1252 | 1820 | - Update version in conflicts/replaces to that which was shipped in edgy, | ||
1253 | 1821 | which was later than that in Debian (due to the ubuntuX). | ||
1254 | 1822 | - Change default server to ntp.ubuntu.com. | ||
1255 | 1823 | - Remove stop links from rc0 and rc6 | ||
1256 | 1824 | - Call dh_installinit with --error-handler | ||
1257 | 1825 | - Set Ubuntu maintainer address. | ||
1258 | 1826 | |||
1259 | 1827 | -- Steve Kowalik <stevenk@ubuntu.com> Fri, 18 May 2007 22:41:56 +1000 | ||
1260 | 1828 | |||
1261 | 700 | ntp (1:4.2.4p0+dfsg-1) unstable; urgency=low | 1829 | ntp (1:4.2.4p0+dfsg-1) unstable; urgency=low |
1262 | 701 | 1830 | ||
1263 | 702 | [ Peter Eisentraut ] | 1831 | [ Peter Eisentraut ] |
1264 | @@ -742,6 +1871,28 @@ ntp (1:4.2.2.p4+dfsg-2) unstable; urgency=low | |||
1265 | 742 | 1871 | ||
1266 | 743 | -- Kurt Roeckx <kurt@roeckx.be> Sun, 4 Mar 2007 13:01:11 +0000 | 1872 | -- Kurt Roeckx <kurt@roeckx.be> Sun, 4 Mar 2007 13:01:11 +0000 |
1267 | 744 | 1873 | ||
1268 | 1874 | ntp (1:4.2.2.p4+dfsg-1ubuntu3) feisty; urgency=low | ||
1269 | 1875 | |||
1270 | 1876 | * Rebuild for changes in the amd64 toolchain. | ||
1271 | 1877 | * Set Ubuntu maintainer address. | ||
1272 | 1878 | |||
1273 | 1879 | -- Matthias Klose <doko@ubuntu.com> Mon, 5 Mar 2007 01:23:22 +0000 | ||
1274 | 1880 | |||
1275 | 1881 | ntp (1:4.2.2.p4+dfsg-1ubuntu2) feisty; urgency=low | ||
1276 | 1882 | |||
1277 | 1883 | * Update version in conflicts/replaces to that which was shipped in edgy, | ||
1278 | 1884 | which was later than that in Debian (due to the ubuntuX). LP: #73506. | ||
1279 | 1885 | |||
1280 | 1886 | -- Scott James Remnant <scott@ubuntu.com> Tue, 28 Nov 2006 10:27:08 +0000 | ||
1281 | 1887 | |||
1282 | 1888 | ntp (1:4.2.2.p4+dfsg-1ubuntu1) feisty; urgency=low | ||
1283 | 1889 | |||
1284 | 1890 | * Merge from debian unstable, remaining changes: | ||
1285 | 1891 | - change default server to ntp.ubuntu.com | ||
1286 | 1892 | - remove stop links from rc0 and rc6 | ||
1287 | 1893 | |||
1288 | 1894 | -- Scott James Remnant <scott@ubuntu.com> Mon, 27 Nov 2006 13:51:15 +0000 | ||
1289 | 1895 | |||
1290 | 745 | ntp (1:4.2.2.p4+dfsg-1) unstable; urgency=low | 1896 | ntp (1:4.2.2.p4+dfsg-1) unstable; urgency=low |
1291 | 746 | 1897 | ||
1292 | 747 | * New upstream release | 1898 | * New upstream release |
1293 | @@ -901,6 +2052,18 @@ ntp (1:4.2.2+dfsg-1) unstable; urgency=low | |||
1294 | 901 | 2052 | ||
1295 | 902 | -- Peter Eisentraut <petere@debian.org> Fri, 14 Jul 2006 22:55:36 +0200 | 2053 | -- Peter Eisentraut <petere@debian.org> Fri, 14 Jul 2006 22:55:36 +0200 |
1296 | 903 | 2054 | ||
1297 | 2055 | ntp (1:4.2.0a+stable-9ubuntu2) edgy; urgency=low | ||
1298 | 2056 | |||
1299 | 2057 | * Remove stop script symlinks from rc0 and rc6. | ||
1300 | 2058 | |||
1301 | 2059 | -- Scott James Remnant <scott@ubuntu.com> Fri, 15 Sep 2006 17:47:40 +0100 | ||
1302 | 2060 | |||
1303 | 2061 | ntp (1:4.2.0a+stable-9ubuntu1) edgy; urgency=low | ||
1304 | 2062 | |||
1305 | 2063 | * Resynchronise with Debian. | ||
1306 | 2064 | |||
1307 | 2065 | -- Tollef Fog Heen <tfheen@ubuntu.com> Fri, 30 Jun 2006 16:02:07 +0200 | ||
1308 | 2066 | |||
1309 | 904 | ntp (1:4.2.0a+stable-9) unstable; urgency=low | 2067 | ntp (1:4.2.0a+stable-9) unstable; urgency=low |
1310 | 905 | 2068 | ||
1311 | 906 | [ Peter Eisentraut ] | 2069 | [ Peter Eisentraut ] |
1312 | @@ -934,6 +2097,51 @@ ntp (1:4.2.0a+stable-8.2) unstable; urgency=high | |||
1313 | 934 | 2097 | ||
1314 | 935 | -- Peter Eisentraut <petere@debian.org> Tue, 6 Jun 2006 02:27:42 +0200 | 2098 | -- Peter Eisentraut <petere@debian.org> Tue, 6 Jun 2006 02:27:42 +0200 |
1315 | 936 | 2099 | ||
1316 | 2100 | ntp (1:4.2.0a+stable-8.1ubuntu6) dapper; urgency=low | ||
1317 | 2101 | |||
1318 | 2102 | * Call dh_installinit with --error-handler=true, which will prevent | ||
1319 | 2103 | ntp-server's prerm and postinst from bombing out on upgrades from | ||
1320 | 2104 | previous broken versions. ntp-{simple,refclock} still try to | ||
1321 | 2105 | restart the server in their postinst, so it won't be left dead. | ||
1322 | 2106 | |||
1323 | 2107 | -- Adam Conrad <adconrad@ubuntu.com> Mon, 29 May 2006 10:25:43 +1000 | ||
1324 | 2108 | |||
1325 | 2109 | ntp (1:4.2.0a+stable-8.1ubuntu5) dapper; urgency=low | ||
1326 | 2110 | |||
1327 | 2111 | * Attempt to create the ntp user in ntp-server's postinst, as the | ||
1328 | 2112 | dependency loops between ntp-server and ntp-* means we have no | ||
1329 | 2113 | way of knowing which gets configured first (launchpad.net/33351) | ||
1330 | 2114 | |||
1331 | 2115 | -- Adam Conrad <adconrad@ubuntu.com> Sun, 28 May 2006 02:20:57 +1000 | ||
1332 | 2116 | |||
1333 | 2117 | ntp (1:4.2.0a+stable-8.1ubuntu4) dapper; urgency=low | ||
1334 | 2118 | |||
1335 | 2119 | * Hide output from ntpdate unless ifup is run with -v. | ||
1336 | 2120 | |||
1337 | 2121 | -- Scott James Remnant <scott@ubuntu.com> Wed, 17 May 2006 22:45:19 +0100 | ||
1338 | 2122 | |||
1339 | 2123 | ntp (1:4.2.0a+stable-8.1ubuntu3) dapper; urgency=low | ||
1340 | 2124 | |||
1341 | 2125 | * Ignore errors from ntpdate, otherwise the interface might not come | ||
1342 | 2126 | fully up. | ||
1343 | 2127 | |||
1344 | 2128 | -- Scott James Remnant <scott@ubuntu.com> Wed, 8 Feb 2006 15:48:19 +0000 | ||
1345 | 2129 | |||
1346 | 2130 | ntp (1:4.2.0a+stable-8.1ubuntu2) dapper; urgency=low | ||
1347 | 2131 | |||
1348 | 2132 | * Remove ntpdate init script, instead install a script in | ||
1349 | 2133 | /etc/network/if-up.d that sets the clock whenever we bring up a network | ||
1350 | 2134 | interface. | ||
1351 | 2135 | |||
1352 | 2136 | -- Scott James Remnant <scott@ubuntu.com> Wed, 4 Jan 2006 15:56:23 +0000 | ||
1353 | 2137 | |||
1354 | 2138 | ntp (1:4.2.0a+stable-8.1ubuntu1) dapper; urgency=low | ||
1355 | 2139 | |||
1356 | 2140 | * Resynchronise with Debian. | ||
1357 | 2141 | * Use ntp.ubuntu.com rather than ntp.ubuntulinux.org. | ||
1358 | 2142 | |||
1359 | 2143 | -- Colin Watson <cjwatson@ubuntu.com> Tue, 1 Nov 2005 23:06:49 -0500 | ||
1360 | 2144 | |||
1361 | 937 | ntp (1:4.2.0a+stable-8.1) unstable; urgency=low | 2145 | ntp (1:4.2.0a+stable-8.1) unstable; urgency=low |
1362 | 938 | 2146 | ||
1363 | 939 | * 0-day BSP NMU. | 2147 | * 0-day BSP NMU. |
1364 | @@ -942,6 +2150,20 @@ ntp (1:4.2.0a+stable-8.1) unstable; urgency=low | |||
1365 | 942 | 2150 | ||
1366 | 943 | -- Christoph Berg <myon@debian.org> Fri, 28 Oct 2005 15:33:37 +0200 | 2151 | -- Christoph Berg <myon@debian.org> Fri, 28 Oct 2005 15:33:37 +0200 |
1367 | 944 | 2152 | ||
1368 | 2153 | ntp (1:4.2.0a+stable-8ubuntu2) breezy; urgency=low | ||
1369 | 2154 | |||
1370 | 2155 | * Fix error message in ntp-server init script. | ||
1371 | 2156 | (Closes: #14726) | ||
1372 | 2157 | |||
1373 | 2158 | -- Fabio M. Di Nitto <fabbione@ubuntu.com> Fri, 09 Sep 2005 06:35:08 +0200 | ||
1374 | 2159 | |||
1375 | 2160 | ntp (1:4.2.0a+stable-8ubuntu1) breezy; urgency=low | ||
1376 | 2161 | |||
1377 | 2162 | * Resynchronise with Debian, resolving merge conflicts brought | ||
1378 | 2163 | on by Debian incorporating some of our changes upstream. | ||
1379 | 2164 | |||
1380 | 2165 | -- Adam Conrad <adconrad@0c3.net> Wed, 20 Apr 2005 04:18:50 +0000 | ||
1381 | 2166 | |||
1382 | 945 | ntp (1:4.2.0a+stable-8) unstable; urgency=medium | 2167 | ntp (1:4.2.0a+stable-8) unstable; urgency=medium |
1383 | 946 | 2168 | ||
1384 | 947 | * The "Well, I certainly could have done that better" version, | 2169 | * The "Well, I certainly could have done that better" version, |
1385 | @@ -972,6 +2194,92 @@ ntp (1:4.2.0a+stable-5) unstable; urgency=low | |||
1386 | 972 | 2194 | ||
1387 | 973 | -- Matthias Urlichs <smurf@debian.org> Mon, 14 Mar 2005 15:25:03 +0100 | 2195 | -- Matthias Urlichs <smurf@debian.org> Mon, 14 Mar 2005 15:25:03 +0100 |
1388 | 974 | 2196 | ||
1389 | 2197 | ntp (1:4.2.0a+stable-4) unstable; urgency=low | ||
1390 | 2198 | |||
1391 | 2199 | * Merged Upstream fix for ntpdate IPv4/IPv6 problems. | ||
1392 | 2200 | - Closes: #293793, #294636 | ||
1393 | 2201 | * Install if-up.d/ntp-server in the correct directory. | ||
1394 | 2202 | - Closes: #294971 | ||
1395 | 2203 | * Merged ubuntu's no-root patch. | ||
1396 | 2204 | - Closes: #298059, #296595, #282941 | ||
1397 | 2205 | * Don't change the date when debugging ntpdate. | ||
1398 | 2206 | - Closes: #286463 | ||
1399 | 2207 | * Tell the user that "/etc/initd/ntp-server reload" is not possible. | ||
1400 | 2208 | - Sort-of-Closes: #276216 | ||
1401 | 2209 | * Cleanup init.d script. Closes: #295574 | ||
1402 | 2210 | * Fix doc typos. Closes: #298226 | ||
1403 | 2211 | * Remove /var/run/ntpd.pid when stopping the server. | ||
1404 | 2212 | - Closes: #295553 | ||
1405 | 2213 | * Document ntpdate's exit status. Closes: #298190. | ||
1406 | 2214 | * Enhance ntpdate's logcheck rule. Closes: #283386 | ||
1407 | 2215 | * Built against libreadline5. | ||
1408 | 2216 | |||
1409 | 2217 | -- Matthias Urlichs <smurf@debian.org> Sat, 12 Mar 2005 06:16:39 +0100 | ||
1410 | 2218 | |||
1411 | 2219 | ntp (1:4.2.0a+stable-3) unstable; urgency=low | ||
1412 | 2220 | |||
1413 | 2221 | * Re-upload due to Debian FTP archive problems. | ||
1414 | 2222 | |||
1415 | 2223 | -- Matthias Urlichs <smurf@debian.org> Tue, 25 Jan 2005 22:18:34 +0100 | ||
1416 | 2224 | |||
1417 | 2225 | ntp (1:4.2.0a+stable-2) unstable; urgency=low | ||
1418 | 2226 | |||
1419 | 2227 | * -dbg packages have been disabled. | ||
1420 | 2228 | |||
1421 | 2229 | -- Matthias Urlichs <smurf@debian.org> Sun, 9 Jan 2005 15:56:42 +0100 | ||
1422 | 2230 | |||
1423 | 2231 | ntp (1:4.2.0a+stable-1) unstable; urgency=medium | ||
1424 | 2232 | |||
1425 | 2233 | * Workaround for ntpdate failing on IPv6 addresses with some kernels. | ||
1426 | 2234 | - Thanks to Dan Merillat <dmerillat@sequiam.com> for tracking this down. | ||
1427 | 2235 | - Closes: #249216. | ||
1428 | 2236 | * Changed the upstream version name. "+bkYYYYMMDD" isn't what the version of | ||
1429 | 2237 | a released program like ntpd should look like; people have been asking. | ||
1430 | 2238 | |||
1431 | 2239 | -- Matthias Urlichs <smurf@debian.org> Sat, 8 Jan 2005 12:05:56 +0100 | ||
1432 | 2240 | |||
1433 | 2241 | ntp (1:4.2.0a+bk20040620-4) unstable; urgency=medium | ||
1434 | 2242 | |||
1435 | 2243 | * Pushing to Unstable. | ||
1436 | 2244 | * Note: This release is based on the _stable_ Upstream version. | ||
1437 | 2245 | * Turned off OpenSSL library compatibility test, it's nonsense. | ||
1438 | 2246 | - Closes:#286913. | ||
1439 | 2247 | |||
1440 | 2248 | -- Matthias Urlichs <smurf@debian.org> Thu, 23 Dec 2004 01:47:30 +0100 | ||
1441 | 2249 | |||
1442 | 2250 | ntp (1:4.2.0a+bk20040620-3) experimental; urgency=low | ||
1443 | 2251 | |||
1444 | 2252 | * Depend on perl-modules (for ntptrace). Closes:#276672. | ||
1445 | 2253 | * Reworded clock interval explanation. Closes:#276213. | ||
1446 | 2254 | * Note that the actual NTP server is in package "ntp-server". Closes:#273865. | ||
1447 | 2255 | * Document dropped startup script run order. Closes:#240516. | ||
1448 | 2256 | * Fix --help in ntptrace. Closes:#242629. | ||
1449 | 2257 | * Add a (disabled) restart script to if-up.d. Closes:#247656. | ||
1450 | 2258 | * fixed SIGFPE in ntp-keygen. | ||
1451 | 2259 | * Remove superfluous {pre,post}{inst,rm} scripts | ||
1452 | 2260 | |||
1453 | 2261 | -- Matthias Urlichs <smurf@debian.org> Sun, 14 Nov 2004 17:09:17 +0100 | ||
1454 | 2262 | |||
1455 | 2263 | ntp (1:4.2.0a+bk20040620-2) experimental; urgency=low | ||
1456 | 2264 | |||
1457 | 2265 | * Merge stable Upstream changes. | ||
1458 | 2266 | * Add debugging symbol packages. | ||
1459 | 2267 | |||
1460 | 2268 | -- Matthias Urlichs <smurf@debian.org> Sat, 25 Sep 2004 11:43:37 +0200 | ||
1461 | 2269 | |||
1462 | 2270 | ntp (1:4.2.0a+bk20040620-1) experimental; urgency=low | ||
1463 | 2271 | |||
1464 | 2272 | * Merge current stable Upstream | ||
1465 | 2273 | |||
1466 | 2274 | -- Matthias Urlichs <smurf@debian.org> Mon, 21 Jun 2004 10:17:28 +0200 | ||
1467 | 2275 | |||
1468 | 2276 | ntp (1:4.2.0a-12) unstable; urgency=low | ||
1469 | 2277 | |||
1470 | 2278 | * Doc how to use multiple servers in ntp.default. | ||
1471 | 2279 | - Closes: #264569: please document format of NTPSERVERS option | ||
1472 | 2280 | |||
1473 | 2281 | -- Matthias Urlichs <smurf@debian.org> Mon, 9 Aug 2004 19:57:58 +0200 | ||
1474 | 2282 | |||
1475 | 975 | ntp (1:4.2.0a-11ubuntu3) hoary; urgency=low | 2283 | ntp (1:4.2.0a-11ubuntu3) hoary; urgency=low |
1476 | 976 | 2284 | ||
1477 | 977 | * ntpd/ntpd.c: | 2285 | * ntpd/ntpd.c: |
1478 | @@ -1091,6 +2399,12 @@ ntp (1:4.2.0a-12) unstable; urgency=low | |||
1479 | 1091 | 2399 | ||
1480 | 1092 | -- Matthias Urlichs <smurf@debian.org> Mon, 9 Aug 2004 19:57:58 +0200 | 2400 | -- Matthias Urlichs <smurf@debian.org> Mon, 9 Aug 2004 19:57:58 +0200 |
1481 | 1093 | 2401 | ||
1482 | 2402 | ntp (1:4.2.0a-11ubuntu1) hoary; urgency=low | ||
1483 | 2403 | |||
1484 | 2404 | * Resynchronise with Debian. | ||
1485 | 2405 | |||
1486 | 2406 | -- Scott James Remnant <scott@canonical.com> Wed, 27 Oct 2004 13:54:06 +0100 | ||
1487 | 2407 | |||
1488 | 1094 | ntp (1:4.2.0a-11) unstable; urgency=low | 2408 | ntp (1:4.2.0a-11) unstable; urgency=low |
1489 | 1095 | 2409 | ||
1490 | 1096 | * Fix building on non-Linux Debian systems. | 2410 | * Fix building on non-Linux Debian systems. |
1491 | @@ -1101,6 +2415,19 @@ ntp (1:4.2.0a-11) unstable; urgency=low | |||
1492 | 1101 | 2415 | ||
1493 | 1102 | -- Matthias Urlichs <smurf@debian.org> Tue, 6 Jul 2004 05:26:07 +0200 | 2416 | -- Matthias Urlichs <smurf@debian.org> Tue, 6 Jul 2004 05:26:07 +0200 |
1494 | 1103 | 2417 | ||
1495 | 2418 | ntp (1:4.2.0a-10ubuntu2) warty; urgency=low | ||
1496 | 2419 | |||
1497 | 2420 | * Use ntp.ubuntulinux.org instead of pool.ntp.org | ||
1498 | 2421 | |||
1499 | 2422 | -- Matt Zimmerman <mdz@canonical.com> Mon, 11 Oct 2004 16:10:27 -0700 | ||
1500 | 2423 | |||
1501 | 2424 | ntp (1:4.2.0a-10ubuntu1) warty; urgency=low | ||
1502 | 2425 | |||
1503 | 2426 | * Added versioned depend on lsb-base | ||
1504 | 2427 | * debian/ntpdate.init.d,ntp-server.init.d: pretty initscripts | ||
1505 | 2428 | |||
1506 | 2429 | -- Nathaniel McCallum <npmccallum@canonical.com> Fri, 3 Sep 2004 15:12:27 -0400 | ||
1507 | 2430 | |||
1508 | 1104 | ntp (1:4.2.0a-10) unstable; urgency=medium | 2431 | ntp (1:4.2.0a-10) unstable; urgency=medium |
1509 | 1105 | 2432 | ||
1510 | 1106 | * Kill spuriously-running servers when updating. | 2433 | * Kill spuriously-running servers when updating. |
1511 | diff --git a/debian/control b/debian/control | |||
1512 | index 3ab2e0d..3c0c702 100644 | |||
1513 | --- a/debian/control | |||
1514 | +++ b/debian/control | |||
1515 | @@ -1,7 +1,8 @@ | |||
1516 | 1 | Source: ntp | 1 | Source: ntp |
1517 | 2 | Section: net | 2 | Section: net |
1518 | 3 | Priority: optional | 3 | Priority: optional |
1520 | 4 | Maintainer: Debian NTP Team <ntp@packages.debian.org> | 4 | Maintainer: Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
1521 | 5 | XSBC-Original-Maintainer: Debian NTP Team <ntp@packages.debian.org> | ||
1522 | 5 | Uploaders: Kurt Roeckx <kurt@roeckx.be>, | 6 | Uploaders: Kurt Roeckx <kurt@roeckx.be>, |
1523 | 6 | Bernhard Schmidt <berni@debian.org> | 7 | Bernhard Schmidt <berni@debian.org> |
1524 | 7 | Build-Depends: autogen, | 8 | Build-Depends: autogen, |
1525 | diff --git a/debian/ntp-systemd-netif.path b/debian/ntp-systemd-netif.path | |||
1526 | 8 | new file mode 100644 | 9 | new file mode 100644 |
1527 | index 0000000..2a24788 | |||
1528 | --- /dev/null | |||
1529 | +++ b/debian/ntp-systemd-netif.path | |||
1530 | @@ -0,0 +1,8 @@ | |||
1531 | 1 | [Unit] | ||
1532 | 2 | DefaultDependencies=no | ||
1533 | 3 | |||
1534 | 4 | [Path] | ||
1535 | 5 | PathChanged=/run/systemd/netif/leases | ||
1536 | 6 | |||
1537 | 7 | [Install] | ||
1538 | 8 | WantedBy=network-pre.target | ||
1539 | diff --git a/debian/ntp-systemd-netif.service b/debian/ntp-systemd-netif.service | |||
1540 | 0 | new file mode 100644 | 9 | new file mode 100644 |
1541 | index 0000000..27610f9 | |||
1542 | --- /dev/null | |||
1543 | +++ b/debian/ntp-systemd-netif.service | |||
1544 | @@ -0,0 +1,4 @@ | |||
1545 | 1 | [Service] | ||
1546 | 2 | Environment=reason=BOUND | ||
1547 | 3 | ExecStart=/bin/sh -c '. /etc/dhcp/dhclient-exit-hooks.d/ntp' | ||
1548 | 4 | |||
1549 | diff --git a/debian/ntp.conf b/debian/ntp.conf | |||
1550 | index d473b43..7702785 100644 | |||
1551 | --- a/debian/ntp.conf | |||
1552 | +++ b/debian/ntp.conf | |||
1553 | @@ -13,18 +13,18 @@ filegen loopstats file loopstats type day enable | |||
1554 | 13 | filegen peerstats file peerstats type day enable | 13 | filegen peerstats file peerstats type day enable |
1555 | 14 | filegen clockstats file clockstats type day enable | 14 | filegen clockstats file clockstats type day enable |
1556 | 15 | 15 | ||
1569 | 16 | 16 | # Specify one or more NTP servers. | |
1570 | 17 | # You do need to talk to an NTP server or two (or three). | 17 | |
1571 | 18 | #server ntp.your-provider.example | 18 | # Use servers from the NTP Pool Project. Approved by Ubuntu Technical Board |
1572 | 19 | 19 | # on 2011-02-08 (LP: #104525). See http://www.pool.ntp.org/join.html for | |
1573 | 20 | # pool.ntp.org maps to about 1000 low-stratum NTP servers. Your server will | 20 | # more information. |
1574 | 21 | # pick a different set every time it starts up. Please consider joining the | 21 | pool 0.ubuntu.pool.ntp.org iburst |
1575 | 22 | # pool: <http://www.pool.ntp.org/join.html> | 22 | pool 1.ubuntu.pool.ntp.org iburst |
1576 | 23 | pool 0.debian.pool.ntp.org iburst | 23 | pool 2.ubuntu.pool.ntp.org iburst |
1577 | 24 | pool 1.debian.pool.ntp.org iburst | 24 | pool 3.ubuntu.pool.ntp.org iburst |
1578 | 25 | pool 2.debian.pool.ntp.org iburst | 25 | |
1579 | 26 | pool 3.debian.pool.ntp.org iburst | 26 | # Use Ubuntu's ntp server as a fallback. |
1580 | 27 | 27 | pool ntp.ubuntu.com | |
1581 | 28 | 28 | ||
1582 | 29 | # Access control configuration; see /usr/share/doc/ntp-doc/html/accopt.html for | 29 | # Access control configuration; see /usr/share/doc/ntp-doc/html/accopt.html for |
1583 | 30 | # details. The web page <http://support.ntp.org/bin/view/Support/AccessRestrictions> | 30 | # details. The web page <http://support.ntp.org/bin/view/Support/AccessRestrictions> |
1584 | diff --git a/debian/ntp.dhcp b/debian/ntp.dhcp | |||
1585 | index eedf6d9..06ff760 100644 | |||
1586 | --- a/debian/ntp.dhcp | |||
1587 | +++ b/debian/ntp.dhcp | |||
1588 | @@ -17,12 +17,14 @@ ntp_servers_setup_remove() { | |||
1589 | 17 | 17 | ||
1590 | 18 | 18 | ||
1591 | 19 | ntp_servers_setup_add() { | 19 | ntp_servers_setup_add() { |
1593 | 20 | if [ -e $NTP_DHCP_CONF ] && [ "$new_ntp_servers" = "$old_ntp_servers" ]; then | 20 | networkd_ntp=$(sed -n 's/NTP=//p' /run/systemd/netif/leases/* 2>/dev/null) |
1594 | 21 | |||
1595 | 22 | if [ -z "$new_ntp_servers" ] && [ -z "$networkd_ntp" ]; then | ||
1596 | 23 | ntp_servers_setup_remove | ||
1597 | 21 | return | 24 | return |
1598 | 22 | fi | 25 | fi |
1599 | 23 | 26 | ||
1602 | 24 | if [ -z "$new_ntp_servers" ]; then | 27 | if [ -e $NTP_DHCP_CONF ] && [ "$new_ntp_servers" = "$old_ntp_servers" ] && [ -z "$networkd_ntp" ] ; then |
1601 | 25 | ntp_servers_setup_remove | ||
1603 | 26 | return | 28 | return |
1604 | 27 | fi | 29 | fi |
1605 | 28 | 30 | ||
1606 | @@ -36,7 +38,7 @@ ntp_servers_setup_add() { | |||
1607 | 36 | echo "# here will be lost at the next DHCP event. Edit $NTP_CONF instead." | 38 | echo "# here will be lost at the next DHCP event. Edit $NTP_CONF instead." |
1608 | 37 | echo | 39 | echo |
1609 | 38 | echo "# NTP server entries received from DHCP server" | 40 | echo "# NTP server entries received from DHCP server" |
1611 | 39 | for server in $new_ntp_servers; do | 41 | for server in $new_ntp_servers $networkd_ntp; do |
1612 | 40 | echo "server $server iburst" | 42 | echo "server $server iburst" |
1613 | 41 | done | 43 | done |
1614 | 42 | echo | 44 | echo |
1615 | diff --git a/debian/ntpdate.default b/debian/ntpdate.default | |||
1616 | index 3241694..f239b18 100644 | |||
1617 | --- a/debian/ntpdate.default | |||
1618 | +++ b/debian/ntpdate.default | |||
1619 | @@ -7,7 +7,7 @@ NTPDATE_USE_NTP_CONF=yes | |||
1620 | 7 | 7 | ||
1621 | 8 | # List of NTP servers to use (Separate multiple servers with spaces.) | 8 | # List of NTP servers to use (Separate multiple servers with spaces.) |
1622 | 9 | # Not used if NTPDATE_USE_NTP_CONF is yes. | 9 | # Not used if NTPDATE_USE_NTP_CONF is yes. |
1624 | 10 | NTPSERVERS="0.debian.pool.ntp.org 1.debian.pool.ntp.org 2.debian.pool.ntp.org 3.debian.pool.ntp.org" | 10 | NTPSERVERS="ntp.ubuntu.com" |
1625 | 11 | 11 | ||
1626 | 12 | # Additional options to pass to ntpdate | 12 | # Additional options to pass to ntpdate |
1627 | 13 | NTPOPTIONS="" | 13 | NTPOPTIONS="" |
1628 | diff --git a/debian/rules b/debian/rules | |||
1629 | index 81eeb31..74028a9 100755 | |||
1630 | --- a/debian/rules | |||
1631 | +++ b/debian/rules | |||
1632 | @@ -43,6 +43,8 @@ override_dh_install: | |||
1633 | 43 | install -D -m 0755 debian/ntp.networkmanager debian/ntp/etc/NetworkManager/dispatcher.d/ntp | 43 | install -D -m 0755 debian/ntp.networkmanager debian/ntp/etc/NetworkManager/dispatcher.d/ntp |
1634 | 44 | install -D -m 0644 debian/ntpdate.dhcp debian/ntpdate/etc/dhcp/dhclient-exit-hooks.d/ntpdate | 44 | install -D -m 0644 debian/ntpdate.dhcp debian/ntpdate/etc/dhcp/dhclient-exit-hooks.d/ntpdate |
1635 | 45 | install -D -m 0755 debian/ntpdate-debian debian/ntpdate/usr/sbin/ntpdate-debian | 45 | install -D -m 0755 debian/ntpdate-debian debian/ntpdate/usr/sbin/ntpdate-debian |
1636 | 46 | install -D -m 0644 debian/ntp-systemd-netif.path debian/ntp/lib/systemd/system/ntp-systemd-netif.path | ||
1637 | 47 | install -D -m 0644 debian/ntp-systemd-netif.service debian/ntp/lib/systemd/system/ntp-systemd-netif.service | ||
1638 | 46 | 48 | ||
1639 | 47 | install -D -m 0644 debian/ntp.conf debian/ntp/etc/ntp.conf | 49 | install -D -m 0644 debian/ntp.conf debian/ntp/etc/ntp.conf |
1640 | 48 | 50 | ||
1641 | @@ -63,6 +65,7 @@ override_dh_install: | |||
1642 | 63 | rm -f debian/ntp-doc/usr/share/doc/ntp-doc/html/hints/solaris* | 65 | rm -f debian/ntp-doc/usr/share/doc/ntp-doc/html/hints/solaris* |
1643 | 64 | 66 | ||
1644 | 65 | override_dh_installinit: | 67 | override_dh_installinit: |
1645 | 68 | dh_systemd_start -pntp ntp-systemd-netif.path | ||
1646 | 66 | dh_installinit -pntp --error-handler=installinit_error --no-restart-after-upgrade | 69 | dh_installinit -pntp --error-handler=installinit_error --no-restart-after-upgrade |
1647 | 67 | dh_installinit -pntpdate --no-restart-after-upgrade | 70 | dh_installinit -pntpdate --no-restart-after-upgrade |
1648 | 68 | dh_apparmor --profile-name=usr.sbin.ntpd -pntp | 71 | dh_apparmor --profile-name=usr.sbin.ntpd -pntp |
Tags to ease review: launchpad. net/~paelzer/ ubuntu/ +source/ ntp deconstruct/ 1%4.2.8p11+ dfsg-1ubuntu1 -> lp1806382/ deconstruct/ 1%4.2.8p11+ dfsg-1ubuntu1 new/debian -> lp1806382/ new/debian old/debian -> lp1806382/ old/debian old/ubuntu -> lp1806382/ old/ubuntu reconstruct/ 1%4.2.8p11+ dfsg-1ubuntu1 -> lp1806382/ reconstruct/ 1%4.2.8p11+ dfsg-1ubuntu1 old/debian/ logical/ 1%4.2.8p11+ dfsg-1ubuntu1 -> lplp1806382/ old/debian/ logical/ 1%4.2.8p11+ dfsg-1ubuntu1
To ssh://git.
* [new tag] lp1806382/
* [new tag] lp1806382/
* [new tag] lp1806382/
* [new tag] lp1806382/
* [new tag] lp1806382/
* [new tag] lplp1806382/
PPA build at https:/ /launchpad. net/~ci- train-ppa- service/ +archive/ ubuntu/ 3548
Bileto ticket (pre-tests) at: https:/ /bileto. ubuntu. com/#/ticket/ 3548