You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
107 lines
2.8 KiB
107 lines
2.8 KiB
# Copyright 1999-2021 Gentoo Authors
|
|
# Distributed under the terms of the GNU General Public License v2
|
|
|
|
EAPI=7
|
|
|
|
EGO_PN="github.com/DNSCrypt/${PN}"
|
|
|
|
inherit fcaps go-module systemd
|
|
|
|
if [[ ${PV} == 9999 ]]; then
|
|
inherit git-r3
|
|
EGIT_REPO_URI="https://${EGO_PN}.git"
|
|
else
|
|
SRC_URI="https://${EGO_PN}/archive/${PV}.tar.gz -> ${P}.tar.gz"
|
|
KEYWORDS="amd64 arm arm64 ppc64 x86"
|
|
fi
|
|
|
|
DESCRIPTION="A flexible DNS proxy, with support for encrypted DNS protocols"
|
|
HOMEPAGE="https://github.com/DNSCrypt/dnscrypt-proxy"
|
|
|
|
LICENSE="Apache-2.0 BSD ISC MIT MPL-2.0"
|
|
SLOT="0"
|
|
IUSE="pie"
|
|
|
|
BDEPEND=">=dev-lang/go-1.13"
|
|
RDEPEND="
|
|
acct-group/dnscrypt-proxy
|
|
acct-user/dnscrypt-proxy
|
|
"
|
|
|
|
FILECAPS=( cap_net_bind_service+ep usr/bin/dnscrypt-proxy )
|
|
|
|
PATCHES=(
|
|
"${FILESDIR}/${PN}-2.0.45-config-full-paths.patch"
|
|
)
|
|
|
|
src_compile() {
|
|
pushd "${PN}" >/dev/null || die
|
|
go build -v -x -mod=readonly -mod=vendor -buildmode="$(usex pie pie default)" || die
|
|
popd >/dev/null || die
|
|
}
|
|
|
|
src_test() {
|
|
cd "${PN}" || die
|
|
go test -mod=vendor -buildmode="$(usex pie pie default)" || die "Failed to run tests"
|
|
}
|
|
|
|
src_install() {
|
|
pushd "${PN}" >/dev/null || die
|
|
|
|
dobin dnscrypt-proxy
|
|
|
|
insinto /etc/dnscrypt-proxy
|
|
newins example-dnscrypt-proxy.toml dnscrypt-proxy.toml
|
|
doins example-{allowed,blocked}-{ips.txt,names.txt}
|
|
doins example-{cloaking-rules.txt,forwarding-rules.txt}
|
|
|
|
popd >/dev/null || die
|
|
|
|
insinto /usr/share/dnscrypt-proxy
|
|
doins -r "utils/generate-domains-blocklist/."
|
|
|
|
newinitd "${FILESDIR}"/dnscrypt-proxy.initd dnscrypt-proxy
|
|
newconfd "${FILESDIR}"/dnscrypt-proxy.confd dnscrypt-proxy
|
|
|
|
systemd_newunit "${FILESDIR}"/dnscrypt-proxy.service dnscrypt-proxy.service
|
|
systemd_newunit "${FILESDIR}"/dnscrypt-proxy.socket dnscrypt-proxy.socket
|
|
|
|
insinto /etc/logrotate.d
|
|
newins "${FILESDIR}"/dnscrypt-proxy.logrotate dnscrypt-proxy
|
|
|
|
einstalldocs
|
|
}
|
|
|
|
pkg_postinst() {
|
|
fcaps_pkg_postinst
|
|
go-module_pkg_postinst
|
|
|
|
if ! use filecaps; then
|
|
ewarn "'filecaps' USE flag is disabled"
|
|
ewarn "${PN} will fail to listen on port 53"
|
|
ewarn "please do one the following:"
|
|
ewarn "1) re-enable 'filecaps'"
|
|
ewarn "2) change port to > 1024"
|
|
ewarn "3) configure to run ${PN} as root (not recommended)"
|
|
ewarn
|
|
fi
|
|
|
|
if systemd_is_booted || has_version sys-apps/systemd; then
|
|
elog "Using systemd socket activation may cause issues with speed"
|
|
elog "latency and reliability of ${PN} and is discouraged by upstream"
|
|
elog "Existing installations advised to disable 'dnscrypt-proxy.socket'"
|
|
elog "It is disabled by default for new installations"
|
|
elog "check "$(systemd_get_systemunitdir)/${PN}.service" for details"
|
|
elog
|
|
|
|
fi
|
|
|
|
elog "After starting the service you will need to update your"
|
|
elog "/etc/resolv.conf and replace your current set of resolvers"
|
|
elog "with:"
|
|
elog
|
|
elog "nameserver 127.0.0.1"
|
|
elog
|
|
elog "Also see https://github.com/DNSCrypt/${PN}/wiki"
|
|
}
|