| Filename | Latest commit message | Latest commit date |
|---|---|---|
- 2026-07-09 is a Thursday; fix the weekday in the rpm, debian, and openSUSE 4.2.0 changelog entries (was "Wed"). - packaging/rpm/vaptvupt.spec: drop the stale vendored-library install and %files entries (the libraries were removed in 4.1.0's source-only switch), build with WITH_SDK=0, and list the actual vaptvupt binary and shell completions. Mirrors the already-source-only openSUSE spec. |
||
| .. | ||
| _service | ||
| README.md | ||
| vaptvupt.changes | ||
| vaptvupt.spec | ||
openSUSE Build Service update for home:cabelo:innovators/vaptvupt
This directory contains the three files needed to build vaptvupt 4.2.0
in OBS:
| File | Purpose |
|---|---|
_service |
revision pinned to v4.2.0. Format unchanged (still tar_scm). |
vaptvupt.spec |
Version: 4.2.0. License: AGPL-3.0-or-later. %check calls make check. |
vaptvupt.changes |
Changelog for the 4.x series. Older history preserved verbatim. |
Spec notes
-
License —
AGPL-3.0-or-later(dual-licensed AGPL-3.0-or-later- commercial).
-
No BuildRequires beyond the toolchain — the default build needs only
gcc gzip make(pluslibm/pthreadfrom glibc). There are no system library BuildRequires. The repository is source-only: the previously vendoredlibzuptsdk.soandlibpqvaptvupt.sohave been removed from the tree,%buildand%installrun withWITH_SDK=0, and%filesno longer lists any.so. The package installs no shared library. Do not add system crypto BuildRequires.The optional SDK modes (
--pq-sdk,--pq-box) and the Argon2id KDF require an upstreammake WITH_SDK=1build linked against the separately distributedlibzuptsdk/libpqvaptvuptlibraries. They are not part of this package. -
%checktarget — the s390x branch falls back totest-vectors; other architectures runmake check. This exercises the HMAC tamper detection, archive-integrity trailer, byte-level integrity preface AAD, default-KDF, auth-fail, and encrypted-comment suites, the NIST/RFC vectors (SHA-256, SHA-3, ML-KEM-768, AES-256-CTR, HMAC, X25519, PBKDF2), and the path-traversal, argument-order, and block-swap regressions.The default password KDF is PBKDF2-SHA256 (600k iterations). Argon2id test vectors run only in a
WITH_SDK=1build and are not checked here. -
URLs — the
URL:field points at the canonical project URLhttps://git.securityops.co/cristiancmoises/vaptvupt. The_servicefile still fetches from GitHub (https://github.com/cristiancmoises/vaptvupt), which is what the existingtar_scmconfiguration uses in OBS.
How to apply
# 1. Check out the package
osc checkout home:cabelo:innovators vaptvupt
cd home:cabelo:innovators/vaptvupt
# 2. Drop the new files in (assuming this README is at
# /path/to/vaptvupt-source/packaging/opensuse/README.md)
cp /path/to/vaptvupt-source/packaging/opensuse/_service .
cp /path/to/vaptvupt-source/packaging/opensuse/vaptvupt.spec .
cp /path/to/vaptvupt-source/packaging/opensuse/vaptvupt.changes .
# 3. Trigger the service locally to fetch v4.2.0 from GitHub
osc service runall
# Produces vaptvupt-4.2.0.tar.gz in the current directory.
# 4. (Optional) Local build to verify before committing
osc build openSUSE_Tumbleweed x86_64
# 5. Commit upstream
osc status # confirm vaptvupt-4.2.0.tar.gz is staged alongside the
# three text files
osc commit -m "Update to 4.2.0"
Notes for future updates
- The
_servicerevisionis pinned tov4.2.0. To track a new release, edit that one line and re-runosc service runall. - The spec's
Version:field is hard-coded — when you bump_servicerevision, also bumpVersion:to match. BuildRequiresis intentionally minimal (gcc gzip make). vaptvupt has no external library dependencies in the default build; do not add system crypto BuildRequires.
Reporting issues
- Upstream bugs: https://git.securityops.co/cristiancmoises/vaptvupt
- openSUSE packaging bugs: https://bugs.opensuse.org/
- Cabelo's OBS project: https://build.opensuse.org/project/show/home:cabelo:innovators