From f928a2ba453286a89bd0c0be659af73a3110a8dc Mon Sep 17 00:00:00 2001 From: Torsten Zuehlsdorff Date: Mon, 12 Jun 2017 10:14:08 +0000 Subject: New port: security/rubygem-securecompare securecompare borrows the secure_compare private method from ActiveSupport::MessageVerifier which lets you do safely compare strings without being vulnerable to timing attacks. Useful for Basic HTTP Authentication in your rack/rails application. WWW: https://github.com/samuelkadolph/securecompare --- security/Makefile | 1 + security/rubygem-securecompare/Makefile | 18 ++++++++++++++++++ security/rubygem-securecompare/distinfo | 3 +++ security/rubygem-securecompare/pkg-descr | 6 ++++++ 4 files changed, 28 insertions(+) create mode 100644 security/rubygem-securecompare/Makefile create mode 100644 security/rubygem-securecompare/distinfo create mode 100644 security/rubygem-securecompare/pkg-descr (limited to 'security') diff --git a/security/Makefile b/security/Makefile index 945d80121617..2c73e693affa 100644 --- a/security/Makefile +++ b/security/Makefile @@ -1076,6 +1076,7 @@ SUBDIR += rubygem-ruby-rc4 SUBDIR += rubygem-ruby-saml SUBDIR += rubygem-scrypt + SUBDIR += rubygem-securecompare SUBDIR += rubygem-signet SUBDIR += rubygem-six SUBDIR += rubygem-sshkey diff --git a/security/rubygem-securecompare/Makefile b/security/rubygem-securecompare/Makefile new file mode 100644 index 000000000000..1b3957671e18 --- /dev/null +++ b/security/rubygem-securecompare/Makefile @@ -0,0 +1,18 @@ +# $FreeBSD$ + +PORTNAME= securecompare +PORTVERSION= 1.0.0 +CATEGORIES= security rubygems +MASTER_SITES= RG + +MAINTAINER= ruby@FreeBSD.org +COMMENT= Constant time string comparison + +LICENSE= MIT +LICENSE_FILE= ${WRKSRC}/LICENSE + +NO_ARCH= yes +USE_RUBY= yes +USES= gem + +.include diff --git a/security/rubygem-securecompare/distinfo b/security/rubygem-securecompare/distinfo new file mode 100644 index 000000000000..c0ae80b662ac --- /dev/null +++ b/security/rubygem-securecompare/distinfo @@ -0,0 +1,3 @@ +TIMESTAMP = 1497262188 +SHA256 (rubygem/securecompare-1.0.0.gem) = cb0c6599deaaedf6d28f8d88538b06e7198c4826b1b8edb1dbeb44a2162fc62b +SIZE (rubygem/securecompare-1.0.0.gem) = 6656 diff --git a/security/rubygem-securecompare/pkg-descr b/security/rubygem-securecompare/pkg-descr new file mode 100644 index 000000000000..ae78e5ed7100 --- /dev/null +++ b/security/rubygem-securecompare/pkg-descr @@ -0,0 +1,6 @@ +securecompare borrows the secure_compare private method from +ActiveSupport::MessageVerifier which lets you do safely compare strings without +being vulnerable to timing attacks. Useful for Basic HTTP Authentication in your +rack/rails application. + +WWW: https://github.com/samuelkadolph/securecompare -- cgit v1.2.3