from small one page howto to huge articles all in one place

search text in:




Other .linuxhowtos.org sites: www.linuxhowtos.org
toolsntoys.linuxhowtos.org



Last additions:
How to make X listen on port 6000

How to make X listen on port 6000

words:

34

views:

82606

userrating:

average rating: 1.2 (52 votes) (1=very good 6=terrible)


May, 25th 2007:
April, 26th 2007:
Apr, 10th. 2007:
Druckversion . pdf icon
You are here: Portage


Details of www-servers/nginx:

available versions:

releasesalphaamd64armhppaia64mipsppcppc64ppc macoss390shsparcx86USE-Flagsdependenciesebuild warnings
nginx-9999 -------------none
show
show
nginx-1.29.4 -~~---~~----~none
show
show
nginx-1.29.3-r3 -++---~~----+none
show
show
nginx-1.28.1 -~~---~~----~none
show
show
nginx-1.28.0-r5 -++---~~----+none
show
show
nginx-1.27.5-r1 -~~---~~----~$IUSE
nginx_modules_http_spdy
show
GCC 4.1+ features built-in atomic operations.
Using libatomic_ops is only needed if using
a different compiler or a GCC prior to 4.1
You are building custom modules via \$NGINX_ADD_MODULES!
This nginx installation is not supported!
Make sure you can reproduce the bug without those modules
_before_ reporting bugs.
To actually disable all http-functionality you also have to disable
all nginx http modules.
EXTRA_ECONF applied. Now you are on your own, good luck!

In nginx 1.9.5 the spdy module was superseded by http2.
Update your configs and package.use accordingly.

While you can build lua 3rd party module against ${P}
the author warns that >=${PN}-1.11.11 is still not an
officially supported target yet. You are on your own.
Expect runtime failures, memory leaks and other problems!

Lua 3rd party module author warns against using ${P} with
NGINX_MODULES_HTTP=\
Replacing multiple ${PN}' versions is unsupported! 

The world-readable bit (if set) has been removed from the
following directories to mitigate a security bug
(CVE-2013-0337, bug #458726):

  ${EPREFIX}/var/log/nginx
  ${EPREFIX}${NGINX_HOME_TMP}/{,client,proxy,fastcgi,scgi,uwsgi}

Check if this is correct for your setup before restarting nginx!
This is a one-time change and will not happen on subsequent updates.
Furthermore nginx' temp directories got moved to '${EPREFIX}${NGINX_HOME_TMP}'

The permissions on the following directory have been reset in
order to mitigate a security bug (CVE-2016-1247, bug #605008):

  ${EPREFIX}/var/log/nginx

Check if this is correct for your setup before restarting nginx!
Also ensure that no other log directory used by any of your
vhost(s) is not writeable for nginx user. Any of your log files
used by nginx can be abused to escalate privileges!
This is a one-time change and will not happen on subsequent updates.

*************************************************************
***************         W A R N I N G         ***************
*************************************************************
The one-time only attempt to adjust permissions of the
existing nginx installation failed. Be aware that we will not
try to adjust the same permissions again because now you are
using a nginx version where we expect that the permissions
are already adjusted or that you know what you are doing and
want to keep custom permissions.


*************************************************************
***************         W A R N I N G         ***************
*************************************************************
Looks like your installation is vulnerable to CVE-2016-1247
(bug #605008) because nginx user is able to create files in

  ${EPREFIX}/var/log/nginx

Also ensure that no other log directory used by any of your
vhost(s) is not writeable for nginx user. Any of your log files
used by nginx can be abused to escalate privileges!

This nginx installation comes with a mitigation for the HTTPoxy
vulnerability for FastCGI, SCGI and uWSGI applications by setting
the HTTP_PROXY parameter to an empty string per default when you
are sourcing one of the default

  - 'fastcgi_params' or 'fastcgi.conf'
  - 'scgi_params'
  - 'uwsgi_params'

files in your server block(s).

If this is causing any problems for you make sure that you are sourcing the
default parameters _before_ you set your own values.
If you are relying on user-supplied proxy values you have to remove the
correlating lines from the file(s) mentioned above.

show
nginx-1.26.3-r2 -++---~~----+$IUSE
nginx_modules_http_spdy
show
GCC 4.1+ features built-in atomic operations.
Using libatomic_ops is only needed if using
a different compiler or a GCC prior to 4.1
You are building custom modules via \$NGINX_ADD_MODULES!
This nginx installation is not supported!
Make sure you can reproduce the bug without those modules
_before_ reporting bugs.
To actually disable all http-functionality you also have to disable
all nginx http modules.
EXTRA_ECONF applied. Now you are on your own, good luck!

In nginx 1.9.5 the spdy module was superseded by http2.
Update your configs and package.use accordingly.

While you can build lua 3rd party module against ${P}
the author warns that >=${PN}-1.11.11 is still not an
officially supported target yet. You are on your own.
Expect runtime failures, memory leaks and other problems!

Lua 3rd party module author warns against using ${P} with
NGINX_MODULES_HTTP=\
Replacing multiple ${PN}' versions is unsupported! 

The world-readable bit (if set) has been removed from the
following directories to mitigate a security bug
(CVE-2013-0337, bug #458726):

  ${EPREFIX}/var/log/nginx
  ${EPREFIX}${NGINX_HOME_TMP}/{,client,proxy,fastcgi,scgi,uwsgi}

Check if this is correct for your setup before restarting nginx!
This is a one-time change and will not happen on subsequent updates.
Furthermore nginx' temp directories got moved to '${EPREFIX}${NGINX_HOME_TMP}'

The permissions on the following directory have been reset in
order to mitigate a security bug (CVE-2016-1247, bug #605008):

  ${EPREFIX}/var/log/nginx

Check if this is correct for your setup before restarting nginx!
Also ensure that no other log directory used by any of your
vhost(s) is not writeable for nginx user. Any of your log files
used by nginx can be abused to escalate privileges!
This is a one-time change and will not happen on subsequent updates.

*************************************************************
***************         W A R N I N G         ***************
*************************************************************
The one-time only attempt to adjust permissions of the
existing nginx installation failed. Be aware that we will not
try to adjust the same permissions again because now you are
using a nginx version where we expect that the permissions
are already adjusted or that you know what you are doing and
want to keep custom permissions.


*************************************************************
***************         W A R N I N G         ***************
*************************************************************
Looks like your installation is vulnerable to CVE-2016-1247
(bug #605008) because nginx user is able to create files in

  ${EPREFIX}/var/log/nginx

Also ensure that no other log directory used by any of your
vhost(s) is not writeable for nginx user. Any of your log files
used by nginx can be abused to escalate privileges!

This nginx installation comes with a mitigation for the HTTPoxy
vulnerability for FastCGI, SCGI and uWSGI applications by setting
the HTTP_PROXY parameter to an empty string per default when you
are sourcing one of the default

  - 'fastcgi_params' or 'fastcgi.conf'
  - 'scgi_params'
  - 'uwsgi_params'

files in your server block(s).

If this is causing any problems for you make sure that you are sourcing the
default parameters _before_ you set your own values.
If you are relying on user-supplied proxy values you have to remove the
correlating lines from the file(s) mentioned above.

show
Legend:
+ stable
~ testing
- not available
some ebuild warning depend on specific use-flags or architectures, all ebuild-warnings are shown.

Known bugs:
bug IDcomponentassigned tostatusdescriptionlast change
397587ApplicationshollowUNCONFIRMEDwww-servers/nginx - add Naxsi web application firewall support2013-02-21 09:09:26
401397ServerhollowUNCONFIRMEDwww-servers/nginx: add automatic minification module (jitify)2012-11-26 08:02:58
427194ApplicationshollowUNCONFIRMEDwww-servers/nginx: add rtmp module support2012-11-26 08:04:35
436062Developmentrobbat2UNCONFIRMEDapp-portage/g-cpan - perl-gcpan/RT-Extension-Nginx-0.02 - mkdir /usr/etc: Permission denied at /usr/2012-09-24 11:14:58
442610ServerhollowUNCONFIRMEDwww-servers/nginx - Feature support request for dav-ext-module.2012-11-26 20:05:19
444660Ebuildssci-geosciencesUNCONFIRMEDsci-geosciences/mapserver - add www-servers/nginx support(?)2012-12-02 12:31:33
446734EbuildshollowUNCONFIRMEDwww-servers/nginx - init script changes owner and mode of /var/log/nginx on each startup/restart2013-01-21 03:28:06
456752Keywording and StabilizationhollowUNCONFIRMED=www-servers/nginx-1.2.6-r1 keyword request2013-02-11 11:36:03


back



Support us on Content Nation

New Packages

- as rdf newsfeed
- as rss newsfeed
- as Atom newsfeed
2025-12-26
eselect-ruby - 20251225
Ebuild name:

app-eselect/eselect-ruby-20251225

Description

Manages multiple Ruby versions

Added to portage

2025-12-26

gnatformat - 25.0.0-r2
Ebuild name:

dev-ada/gnatformat-25.0.0-r2

Description

Opinionated code formatter for the Ada language

Added to portage

2025-12-26

gpr - 26.0.0
Ebuild name:

dev-ada/gpr-26.0.0

Description

LibGPR2 - Parser for GPR Project files

Added to portage

2025-12-26

langkit - 26.0.0
Ebuild name:

dev-ada/langkit-26.0.0

Description

A Python framework to generate language parsers

Added to portage

2025-12-26

libnpupnp - 6.2.3
Ebuild name:

net-libs/libnpupnp-6.2.3

Description

A C++ base UPnP library, derived from Portable UPnP, a.k.a libupnp

Added to portage

2025-12-26

rbs - 3.10.0
Ebuild name:

dev-ruby/rbs-3.10.0

Description

The language for type signatures for Ruby and standard library definitions

Added to portage

2025-12-26

upmpdcli - 1.9.8
Ebuild name:

media-sound/upmpdcli-1.9.8

Description

UPnP Media Renderer front-end for MPD, the Music Player Daemon

Added to portage

2025-12-26

2025-12-25
86Box - 5.3
Ebuild name:

app-emulation/86Box-5.3

Description

Emulator of x86-based machines based on PCem

Added to portage

2025-12-25

dbeaver-bin - 25.3.1
Ebuild name:

dev-db/dbeaver-bin-25.3.1

Description

Free universal database tool (community edition)

Added to portage

2025-12-25

django-polymorphic - 4.5.1
Ebuild name:

dev-python/django-polymorphic-4.5.1

Description

Seamless Polymorphic Inheritance for Django Models

Added to portage

2025-12-25

fcitx - 5.1.17
Ebuild name:

app-i18n/fcitx-5.1.17

Description

Fcitx 5 is a generic input method framework

Added to portage

2025-12-25

fcitx-chewing - 5.1.10
Ebuild name:

app-i18n/fcitx-chewing-5.1.10

Description

Chewing Wrapper for Fcitx.

Added to portage

2025-12-25

fcitx-chinese-addons - 5.1.11
Ebuild name:

app-i18n/fcitx-chinese-addons-5.1.11

Description

Addons related to Chinese, including IME previous bundled insi

Added to portage

2025-12-25

fcitx-configtool - 5.1.12
Ebuild name:

app-i18n/fcitx-configtool-5.1.12

Description

Configuration module for Fcitx

Added to portage

2025-12-25

fcitx-gtk - 5.1.5
Ebuild name:

app-i18n/fcitx-gtk-5.1.5

Description

Gtk im module for fcitx5 and glib based dbus client library

Added to portage

2025-12-25

fcitx-qt - 5.1.12
Ebuild name:

app-i18n/fcitx-qt-5.1.12

Description

Qt library and IM module for fcitx5

Added to portage

2025-12-25

fcitx-table-extra - 5.1.10
Ebuild name:

app-i18n/fcitx-table-extra-5.1.10

Description

Provides extra table for Fcitx, including Boshiamy, Zhengma, Cang

Added to portage

2025-12-25

ffmpeg-chromium - 138
Ebuild name:

media-video/ffmpeg-chromium-138

Description

FFmpeg built specifically for codec support in Chromium-based brows

Added to portage

2025-12-25

gamescope - 3.16.19
Ebuild name:

gui-wm/gamescope-3.16.19

Description

Efficient micro-compositor for running games

Added to portage

2025-12-25

hashie - 5.1.0
Ebuild name:

dev-ruby/hashie-5.1.0

Description

Hashie is a small collection of tools that make hashes more powerful

Added to portage

2025-12-25

hoe - 4.5.0
Ebuild name:

dev-ruby/hoe-4.5.0

Description

Hoe extends rake to provide full project automation

Added to portage

2025-12-25

jaraco-context - 6.0.2
Ebuild name:

dev-python/jaraco-context-6.0.2

Description

Context managers by jaraco

Added to portage

2025-12-25

jaraco-test - 5.6.0
Ebuild name:

dev-python/jaraco-test-5.6.0

Description

Testing support by jaraco

Added to portage

2025-12-25

ledger - 3.4.1
Ebuild name:

app-office/ledger-3.4.1

Description

Double-entry accounting system with a command-line reporting interface

Added to portage

2025-12-25

libdecor - 0.2.5
Ebuild name:

gui-libs/libdecor-0.2.5

Description

A client-side decorations library for Wayland clients

Added to portage

2025-12-25

libime - 1.1.13
Ebuild name:

app-i18n/libime-1.1.13

Description

Fcitx5 Next generation of fcitx

Added to portage

2025-12-25

librime - 1.15.0
Ebuild name:

app-i18n/librime-1.15.0

Description

RIME (Rime Input Method Engine) core library

Added to portage

2025-12-25

mergiraf - 0.16.1
Ebuild name:

dev-vcs/mergiraf-0.16.1

Description

Syntax-aware git merge driver

Added to portage

2025-12-25

multi_xml - 0.8.0
Ebuild name:

dev-ruby/multi_xml-0.8.0

Description

A generic swappable back-end for XML parsing

Added to portage

2025-12-25

oslo-serialization - 5.9.0
Ebuild name:

dev-python/oslo-serialization-5.9.0

Description

Oslo Serialization library

Added to portage

2025-12-25

python-engineio - 4.13.0
Ebuild name:

dev-python/python-engineio-4.13.0

Description

Python implementation of the Engine.IO realtime server

Added to portage

2025-12-25

rime-data - 1.0.20251206
Ebuild name:

app-i18n/rime-data-1.0.20251206

Description

Added to portage

2025-12-25

ruby2ruby - 2.6.0
Ebuild name:

dev-ruby/ruby2ruby-2.6.0

Description

Generates readable ruby from ParseTree

Added to portage

2025-12-25

sexp_processor - 4.17.5
Ebuild name:

dev-ruby/sexp_processor-4.17.5

Description

Processor for s-expressions created as part of the ParseTree project

Added to portage

2025-12-25

subrandr - 1.0.1
Ebuild name:

media-libs/subrandr-1.0.1

Description

Subtitle rendering library for rendering non-ASS subtitles

Added to portage

2025-12-25

test-unit - 3.7.6
Ebuild name:

dev-ruby/test-unit-3.7.6

Description

An xUnit family unit testing framework for Ruby

Added to portage

2025-12-25

vivaldi - 7.7.3851.66
Ebuild name:

www-client/vivaldi-7.7.3851.66

Description

A browser for our friends

Added to portage

2025-12-25

vivaldi-snapshot - 7.8.3899.3
Ebuild name:

www-client/vivaldi-snapshot-7.8.3899.3

Description

A browser for our friends

Added to portage

2025-12-25

xsimd - 14.0.0
Ebuild name:

dev-cpp/xsimd-14.0.0

Description

C++ wrappers for SIMD intrinsics

Added to portage

2025-12-25

xyzservices - 2025.11.0
Ebuild name:

sci-geosciences/xyzservices-2025.11.0

Description

Source of XYZ tiles providers

Added to portage

2025-12-25

rdf newsfeed | rss newsfeed | Atom newsfeed
Copyright 2004-2025 Sascha Nitsch Unternehmensberatung GmbH
- Copyright and legal notices -
Time to create this page: 25.5 ms