FreshPorts -- The Place For Ports notbug Sun, 27 May 2012 10:26 PM BST
Port details
ca_root_nss 3.13.4 security on this many watch lists=99 search for ports that depend on this port An older version of this port was marked as vulnerable.
The root certificate bundle from the Mozilla Project
Maintained by: gecko@FreeBSD.org search for ports maintained by this maintainer
Port Added: 06 Jul 2007 21:39:01
License: not specified in port


Root certificates from certificate authorities included in the Mozilla
NSS library and thus in Firefox and Thunderbird.

This port directly tracks the version of NSS in the security/nss port.
CVSWeb : Sources : Distfiles Availability : PortsMon
NOTE: FreshPorts displays only required dependencies information. Optional dependencies are not covered.
Required To Build: lang/perl5.8

Required by:
for Build

for Run

To install the port: cd /usr/ports/security/ca_root_nss/ && make install clean
To add the package: pkg_add -r ca_root_nss


Configuration Options
===> The following configuration options are available for ca_root_nss-3.13.4:
     ETCSYMLINK=off (default) "Add symlink to /etc/ssl/cert.pem"
===> Use 'make config' to modify these settings

Master Sites:
https://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://mirror3.mirrors.tds.net/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://mozilla.isc.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://releases.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://kyoto-mz-dl.sinet.ad.jp/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://jp-nii01.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://jp-nii02.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://mozilla.mtk.nao.ac.jp/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://mirror.internode.on.net/pub/mozilla/security/nss/releases/NSS_3_13_4_RTM/src/
http://ftp.acc.umu.se/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
http://mozilla.c3sl.ufpr.br/releases/security/nss/releases/NSS_3_13_4_RTM/src/
http://www.gtlib.cc.gatech.edu/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
ftp://ftp.mozilla.org/pub/mozilla.org/security/nss/releases/NSS_3_13_4_RTM/src/
ftp://ftp.fh-wolfenbuettel.de/pub/www/mozilla/security/nss/releases/NSS_3_13_4_RTM/src/
ftp://ftp.informatik.rwth-aachen.de/pub/mirror/ftp.mozilla.org/pub/security/nss/releases/NSS_3_13_4_RTM/src/
http://ring.nict.go.jp/archives/net/www/mozilla/security/nss/releases/NSS_3_13_4_RTM/src/
http://ftp.twaren.net/Unix/Mozilla/security/nss/releases/NSS_3_13_4_RTM/src/
ftp://ftp.FreeBSD.org/pub/FreeBSD/ports/distfiles/

Number of commits found: 23

Commit History - (may be incomplete: see CVSWeb link above for full details)
DateByDescription
14 Apr 2012 21:09:51
Original commit files touched by this commit  3.13.4
flo search for other commits by this committer
update to 3.13.4
05 Mar 2012 17:00:58
Original commit files touched by this commit  3.13.3
flo search for other commits by this committer
Update to 3.13.3
02 Mar 2012 19:53:35
Original commit files touched by this commit  3.13.2
flo search for other commits by this committer
Just overwrite the link if it still exists. That way we are sure that the link
points to the correct file and there is no reason trying to protect the link as
it would be deleted on deinstall anyway.

Suggested by:   dougb
27 Feb 2012 23:35:11
Original commit files touched by this commit  3.13.2
flo search for other commits by this committer
make sure installation does not fail if for whatever reason the symlink in
/etc/ssl is still there on (re)install phase with ETCSYMLINK option set.

Submitted by:   mi
20 Feb 2012 21:41:44
Original commit files touched by this commit  3.13.2
flo search for other commits by this committer
update to 3.13.2
12 Jan 2012 23:41:00
Original commit files touched by this commit  3.13.1
flo search for other commits by this committer
- update to NSS_3_13_1_WITH_CKBI_1_88_RTM
28 Dec 2011 22:16:13
Original commit files touched by this commit  3.12.11_2
flo search for other commits by this committer
update to CKBI version 1.88 which includes the latest mozilla cert data
08 Oct 2011 21:37:44
Original commit files touched by this commit  3.12.11_1
flo search for other commits by this committer
now that gecko maintains security/nss also take this port into gecko custody

Discussed with: brooks @ EuroBSDCon 2011
Approved by:    brooks
04 Sep 2011 15:11:48
Original commit files touched by this commit  3.12.11_1
mandree search for other commits by this committer
Change extract program:
- Also work with HEAD (1.79) version of Mozilla's certdata.txt,
  reported by Daniel Stenberg.
- Add BSD 2-clause license.
- Die when certificates without trust block appear.
04 Sep 2011 13:25:06
Original commit files touched by this commit  3.12.11_1
mandree search for other commits by this committer
Forced commit to note:
VID: aa5bc971-d635-11e0-b3cf-080027ef73ec
VID: 1b27af46-d6f6-11e0-89a6-080027ef73ec
04 Sep 2011 13:21:09
Original commit files touched by this commit  3.12.11_1
mandree search for other commits by this committer
See to proper version tags in the bundle .pem file.
04 Sep 2011 13:08:49
Original commit files touched by this commit  3.12.11
mandree search for other commits by this committer
Security update: use newer Mozilla Builtin-Trust store
to revoke DigiNotar.nl trust.

Security fix: the modssl ca-bundle.pl script did not process
"untrusted" marks on certificates. Drop it and write a new
script in its place that does that.

Synch up with security/nss port to 3.12.11.

Not asking for maintainer approval because of multiple
timeouts in response to related PRs vs. security/[ca_root_]nss.
26 May 2011 14:56:01
Original commit files touched by this commit  3.12.9
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Increase the size and verbosity of the comment that the versions used in
this port should track security/nss and www/apache13-modssl.

No functional impact.
25 Feb 2011 17:19:01
Original commit files touched by this commit  3.12.9
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Chase nss revision and update to 3.12.9.

PR:             ports/154961
Submitted by:   Niclas Zeising
08 Sep 2010 01:42:36
Original commit files touched by this commit  3.12.6
 This port version is marked as vulnerable.
pgollucci search for other commits by this committer
- fix file name ca-bundle.crt -> ca-root-nss.crt [1]
- Properly sub VERSION_NSS var [1]
- While here, update to 3.12.6 to sync with security/nss

PR:             ports/143584 [1]
Submitted by:   Kevin Kobb <kkobb@skylinecorp.com> [1]
Approved by:    maintainer timeout (brooks ; 209 days) [1]
08 Dec 2009 19:28:24
Original commit files touched by this commit  3.12.4
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Upgrade to 3.12.4.

PR:             ports/140609
Submitted by:   Tijl Coosemans <tijl at ulyssis dot org>
27 Jun 2009 20:51:15
Original commit files touched by this commit  3.11.9_2
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Add a comment documenting the fact that we track the versions of
security/nss and www/apach13-modssl.

PR:             ports/136093
17 Mar 2008 16:00:46
Original commit files touched by this commit  3.11.9_2
 This port version is marked as vulnerable.
brooks search for other commits by this committer
o Fix port OPTION ETCSYMLINK which was not creating the proper link.
  Instead of pointing to the crt file, it was pointing to the directory.
o Bump PORTREVISION

PR:             ports/121782
Submitted by:   lioux
Point hat to:   brooks
12 Mar 2008 21:02:01
Original commit files touched by this commit  3.11.9_1
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Add an option (defaulting to off since messing with files outside PREFIX is
to be avoided) to link the installed certificate bundle to /etc/ssh/cert.pem
12 Mar 2008 20:19:50
Original commit files touched by this commit  3.11.9_1
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Add text to pkg-descr:

This port directly tracks the version of NSS in the security/nss port.
12 Mar 2008 19:39:58
Original commit files touched by this commit  3.11.9
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Chase nss version to 3.11.9 and modssl to 2.8.31-1.3.41.  This
includes the changes:

Bug 411299, Add Identrust, Truktrust, SwissSign Roots
Bug 229335, Remove certificates that expired in August 2004 from tree
11 Jul 2007 17:07:14
Original commit files touched by this commit  3.11.7
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Update to NSS 3.11.7 to match security/nss.

8 new root certiticates added.
06 Jul 2007 21:37:35
Original commit files touched by this commit  3.11.5
 This port version is marked as vulnerable.
brooks search for other commits by this committer
Add ca_root_nss:

Root certificates from certificate authorities included in the Mozilla
NSS library and thus in Firefox and Thunderbird.

Number of commits found: 23

Login
User Login
Create account

Servers and bandwidth provided by
New York Internet
SuperNews

Search
Enter Keywords:
 
more...

Latest Vulnerabilities
haproxyMay 24
foswikiMay 21
inspircd*May 21
inspircd12*May 21
sympaMay 21
sympa5May 21
libxml2May 18
pidgin-otrMay 16
sudoMay 16
chromiumMay 15
chromiumMay 15
pivotx*May 14
socatMay 14
libpurpleMay 12
php5May 12

12 vulnerabilities affecting 17 ports have been reported in the past 14 days

* - modified, not new

All vulnerabilities


Ports
Home
Categories
Deleted ports
Sanity Test Failures
Newsfeeds


Statistics
Graphs
NEW Graphs (Javascript)
Traffic

Calculated hourly:
Port count 23676
Broken 193
Deprecated 147
Ignore 737
Forbidden 3
Restricted 328
No CDROM 110
Vulnerable 0
Expired 44
Set to expire 188
Interactive 54
new 24 hours 4
new 48 hours6
new 7 days60
new fortnight184
new month254

This site
What is FreshPorts?
About the Authors
FAQ
How big is it?
The latest upgrade!
Privacy
Forums
Blog
Contact

Servers and bandwidth provided by
New York Internet
SuperNews
Valid HTML, CSS, and RSS.
Copyright © 2000-2012 DVL Software Limited. All rights reserved.
This page created in 0.151 seconds.