nixpkgs/pkgs/servers/squid/default.nix

Ignoring revisions in .git-blame-ignore-revs. Click here to bypass and see the normal blame view.

61 lines
2.0 KiB
Nix
Raw Normal View History

{ lib, stdenv, fetchurl, perl, openldap, pam, db, cyrus_sasl, libcap
, expat, libxml2, openssl, pkg-config, systemd
2022-10-01 17:09:31 +00:00
, cppunit
2019-08-22 13:31:32 +00:00
}:
2016-12-17 22:04:43 +00:00
stdenv.mkDerivation (finalAttrs: {
pname = "squid";
version = "6.6";
2016-12-17 22:04:43 +00:00
src = fetchurl {
url = "http://www.squid-cache.org/Versions/v6/${finalAttrs.pname}-${finalAttrs.version}.tar.xz";
hash = "sha256-Vb1/n0iYFTFh6hIomYrLVRv4QIMrnluQ/I7NKUJCAxg=";
};
2016-12-17 22:04:43 +00:00
nativeBuildInputs = [ pkg-config ];
2016-12-17 22:04:43 +00:00
buildInputs = [
perl openldap db cyrus_sasl expat libxml2 openssl
] ++ lib.optionals stdenv.isLinux [ libcap pam systemd ];
2016-12-17 22:04:43 +00:00
2022-09-30 17:28:48 +00:00
enableParallelBuilding = true;
configureFlags = [
"--enable-ipv6"
"--disable-strict-error-checking"
"--disable-arch-native"
"--with-openssl"
"--enable-ssl-crtd"
2016-12-17 22:04:43 +00:00
"--enable-storeio=ufs,aufs,diskd,rock"
"--enable-removal-policies=lru,heap"
"--enable-delay-pools"
"--enable-x-accelerator-vary"
"--enable-htcp"
] ++ lib.optional (stdenv.isLinux && !stdenv.hostPlatform.isMusl)
"--enable-linux-netfilter";
2022-10-01 17:09:31 +00:00
doCheck = true;
nativeCheckInputs = [ cppunit ];
2022-10-01 17:09:31 +00:00
preCheck = ''
# tests attempt to copy around "/bin/true" to make some things
# no-ops but this doesn't work if our "true" is a multi-call
# binary, so make our own fake "true" which will work when used
# this way
echo "#!$SHELL" > fake-true
chmod +x fake-true
grep -rlF '/bin/true' test-suite/ | while read -r filename ; do
substituteInPlace "$filename" \
--replace "$(type -P true)" "$(realpath fake-true)" \
--replace "/bin/true" "$(realpath fake-true)"
done
'';
meta = with lib; {
description = "A caching proxy for the Web supporting HTTP, HTTPS, FTP, and more";
homepage = "http://www.squid-cache.org";
license = licenses.gpl2Plus;
2016-12-17 22:04:43 +00:00
platforms = platforms.linux;
maintainers = with maintainers; [ raskin ];
knownVulnerabilities = [ "Squid has multiple unresolved security vulnerabilities, for more information see https://megamansec.github.io/Squid-Security-Audit/" ];
};
})