Bug 35980

Summary: SSL support patch dropped from squid3 in errata3.2-3
Product: UCS Reporter: Arvid Requate <requate>
Component: Security updatesAssignee: Janek Walkenhorst <walkenhorst>
Status: CLOSED FIXED QA Contact: Philipp Hahn <hahn>
Severity: normal    
Priority: P2 CC: jmm, walkenhorst
Version: UCS 3.2   
Target Milestone: UCS 3.2-3-errata   
Hardware: Other   
OS: Linux   
See Also: https://forge.univention.org/bugzilla/show_bug.cgi?id=18756
What kind of report is it?: --- What type of bug is this?: ---
Who will be affected by this bug?: --- How will those affected feel about the bug?: ---
User Pain: Enterprise Customer affected?:
School Customer affected?: ISV affected?:
Waiting Support: Flags outvoted (downgraded) after PO Review:
Ticket number: Bug group (optional):
Max CVSS v3 score:

Description Arvid Requate univentionstaff 2014-09-22 18:09:39 CEST
The errata update for Bug #35732 dropped the 001-enable-ssl.patch which was introduced in ucs3.0-1 for Bug #18756. the patch was still present in 3.2-0-0-ucs/3.1.6-1.2+squeeze3 (Bug #31956)  but seems to have been put into the wrong patch directory during the errata update:

squid3/3.2-0-0-ucs/3.1.6-1.2+squeeze4/001-enable-ssl.patch

instead of here:

squid3/3.2-0-0-ucs/3.1.6-1.2+squeeze4-errata3.2-3/


+++ This bug was initially created as a clone of Bug #35732 +++
Comment 1 Arvid Requate univentionstaff 2014-09-22 18:10:17 CEST
Please check.
Comment 2 Janek Walkenhorst univentionstaff 2014-09-24 15:18:26 CEST
The missing patch has been added.

Tests (amd64): OK
Advisory: 2014-09-24-squid.yaml
Comment 3 Philipp Hahn univentionstaff 2014-09-24 16:39:09 CEST
OK: svn ls svn+ssh://billy.knut.univention.de/var/svn/patches/squid3/3.2-0-0-ucs/3.1.6-1.2+squeeze4-errata3.2-3/ # 001-enable-ssl.patch
OK: apt-cache show squid3 | sed -ne '/^Filename:/p;/^Depends:/{s/ ([^)]*)\|,//g;s/[^ ]*ssl[^ ]*/***&***/gp}'
OK: apt-cache policy squid3 # 3.1.6-1.2.20.201409231817
OK: univention-install squid3
OK: zless /usr/share/doc/squid3/changelog.Debian.gz: 001-enable-ssl
OK: squid3 -v | grep ssl
OK: ldd /usr/sbin/squid3 | grep ssl
OK: http_proxy=http://127.0.0.1:3128 wget -q -O- http://apt.univention.de/
OK: http_proxy=http://127.0.0.1:3128 curl -v -r 0-13 http://pmhahn.de/robots.txt
OK: https_proxy=http://127.0.0.1:3128 curl -v https://sslcheck.globalsign.com/de
OK: 2014-09-17-squid3.yaml
OK: announce_errata -V 2014-09-24-squid3.yaml
Comment 4 Janek Walkenhorst univentionstaff 2014-09-25 14:32:45 CEST
http://errata.univention.de/ucs/3.2/214.html