Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package tayga for openSUSE:Factory checked in at 2026-10-03 20:14:52 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/tayga (Old) and /work/SRC/openSUSE:Factory/.tayga.new.1631729 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "tayga" Sat Oct 3 20:14:52 2026 rev:7 rq:1382247 version:0.9.6 Changes: -------- --- /work/SRC/openSUSE:Factory/tayga/tayga.changes 2025-09-17 16:44:49.204357858 +0200 +++ /work/SRC/openSUSE:Factory/.tayga.new.1631729/tayga.changes 2026-10-03 20:16:21.007673591 +0200 @@ -1,0 +2,16 @@ +Sat Oct 3 14:22:49 UTC 2026 - Andrea Manzini <[email protected]> + +- Update to version 0.9.6: + * Zero UDP Checksum behavior (RFC compliance) + * Implement packet drop/reject logging and dynamic pool assignment logging + * Offlink MTU configuration + * Allow compile-time override of configuration path + * Daemon: create pidfile with saner permissions + * Fix serialization of dynamic map if time_t != long + * Fix ipv6-addr check and resolve log-related crash + * Makefile improvements and build fixes +- Rebase harden-services.patch for upstream service file layout changes +- Remove obsolete Group tag +- Enable %check test suite + +------------------------------------------------------------------- Old: ---- tayga-0.9.5.tar.gz New: ---- tayga-0.9.6.tar.gz ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ tayga.spec ++++++ --- /var/tmp/diff_new_pack.xCadF3/_old 2026-10-03 20:16:21.981714319 +0200 +++ /var/tmp/diff_new_pack.xCadF3/_new 2026-10-03 20:16:21.984714444 +0200 @@ -1,7 +1,7 @@ # # spec file for package tayga # -# Copyright (c) 2025 SUSE LLC and contributors +# Copyright (c) 2026 SUSE LLC and contributors # # All modifications and additions to the file contributed by third parties # remain the property of their copyright owners, unless otherwise agreed @@ -19,20 +19,18 @@ %if 0%{?suse_version} == 1500 %global force_gcc_version 14 %endif - Name: tayga -Version: 0.9.5 +Version: 0.9.6 Release: 0 Summary: Out-of-kernel stateless NAT64 implementation License: GPL-2.0-or-later -Group: Productivity/Networking/Other -URL: http://www.litech.org/tayga/ +URL: https://github.com/apalrd/tayga Source0: https://github.com/apalrd/tayga/archive/refs/tags/%{version}.tar.gz#/%{name}-%{version}.tar.gz Source1: tayga_setup_tun Source2: tayga_destroy_tun -Patch: harden-services.patch -ExcludeArch: %{arm} %{i586} +Patch0: harden-services.patch BuildRequires: gcc%{?force_gcc_version} +ExcludeArch: %{arm} %{i586} %description TAYGA is an out-of-kernel stateless NAT64 implementation for Linux that uses @@ -45,16 +43,18 @@ sed -i 's|%{_localstatedir}/db/tayga|%{_localstatedir}/lib/tayga|g' tayga.conf.example %build -%make_build CFLAGS="%{optflags}" V=1 RELEASE=1 CC="gcc%{?force_gcc_version:-%{force_gcc_version}}" +%make_build CFLAGS="%{optflags}" RELEASE=1 CC="gcc%{?force_gcc_version:-%{force_gcc_version}}" + +%check +%make_build test CFLAGS="%{optflags} -Wno-error=unused-but-set-variable -Wno-error=discarded-qualifiers" %install -#make_install install -d %{buildroot}%{_var}/lib/tayga install -d %{buildroot}%{_sysconfdir}/tayga install -D -m 0644 tayga.conf.example %{buildroot}%{_sysconfdir}/tayga.conf install -D -m 0755 -t %{buildroot}%{_sbindir} tayga %{SOURCE1} %{SOURCE2} -install -D -m 0644 -t %{buildroot}%{_unitdir}/ tayga.service [email protected] +install -D -m 0644 -t %{buildroot}%{_unitdir}/ scripts/tayga.service scripts/[email protected] install -D -m 0644 -t %{buildroot}%{_mandir}/man5/ *.5 install -D -m 0644 -t %{buildroot}%{_mandir}/man8/ *.8 ln -sf %{_sbindir}/service %{buildroot}%{_sbindir}/rctayga @@ -74,7 +74,7 @@ %files %license LICENSE %doc README.md -%doc *.sh +%doc tayga.conf.example %config(noreplace) %{_sysconfdir}/tayga.conf %dir %{_sysconfdir}/tayga/ %dir %{_var}/lib/tayga/ ++++++ harden-services.patch ++++++ --- /var/tmp/diff_new_pack.xCadF3/_old 2026-10-03 20:16:22.068717957 +0200 +++ /var/tmp/diff_new_pack.xCadF3/_new 2026-10-03 20:16:22.077718333 +0200 @@ -1,18 +1,16 @@ -Index: tayga-0.9.5/tayga.service +Index: tayga-0.9.6/scripts/tayga.service =================================================================== ---- tayga-0.9.5.orig/tayga.service -+++ tayga-0.9.5/tayga.service -@@ -1,11 +1,24 @@ - [Unit] - Description=Simple, no-fuss NAT64 --After=network.target +--- /dev/null ++++ tayga-0.9.6/scripts/tayga.service +@@ -0,0 +1,24 @@ ++[Unit] ++Description=Simple, no-fuss NAT64 +After=syslog.target network.target firewall.target - - [Service] - Type=simple --PrivateTmp=true ++ ++[Service] ++Type=simple +ExecStartPre=/usr/sbin/tayga_setup_tun - ExecStart=/usr/sbin/tayga -d --config /etc/tayga.conf ++ExecStart=/usr/sbin/tayga -d --config /etc/tayga.conf +ExecStopPost=/usr/sbin/tayga_destroy_tun +# added automatically, for details please see +# https://en.opensuse.org/openSUSE:Security_Features#Systemd_hardening_effort @@ -26,13 +24,13 @@ +ProtectControlGroups=true +RestrictRealtime=true +# end of automatic additions - - [Install] - WantedBy=multi-user.target -Index: tayga-0.9.5/[email protected] ++ ++[Install] ++WantedBy=multi-user.target +Index: tayga-0.9.6/scripts/[email protected] =================================================================== ---- tayga-0.9.5.orig/[email protected] -+++ tayga-0.9.5/[email protected] +--- tayga-0.9.6.orig/scripts/[email protected] ++++ tayga-0.9.6/scripts/[email protected] @@ -1,6 +1,6 @@ [Unit] -Description=Simple, no-fuss NAT64 @@ -42,25 +40,4 @@ [Service] # To set up an extra tayga service instance, create a new tayga config in -@@ -9,8 +9,19 @@ After=network.target - # systemctl enable [email protected] - - Type=simple --PrivateTmp=true - ExecStart=/usr/sbin/tayga -d --config /etc/tayga/%i.conf -+# added automatically, for details please see -+# https://en.opensuse.org/openSUSE:Security_Features#Systemd_hardening_effort -+PrivateTmp=true -+ProtectSystem=full -+ProtectHome=true -+ProtectHostname=true -+ProtectKernelTunables=true -+ProtectKernelModules=true -+ProtectKernelLogs=true -+ProtectControlGroups=true -+RestrictRealtime=true -+# end of automatic additions - - [Install] - WantedBy=multi-user.target ++++++ tayga-0.9.5.tar.gz -> tayga-0.9.6.tar.gz ++++++ ++++ 4733 lines of diff (skipped)
