A HTTP server and IMAP/POP3 proxy server

Edit Package nginx

nginx [engine x] is a HTTP server and IMAP/POP3 proxy server written by Igor Sysoev.
It has been running on many heavily loaded Russian sites for more than two years.

Refresh
Refresh
Source Files
Filename Size Changed
check_1.9.2+.patch 0000008486 8.29 KB
headers-more-nginx-module-0.33.tar.gz 0000028130 27.5 KB
nginx-1.11.2-html.patch 0000000635 635 Bytes
nginx-1.11.2-no_Werror.patch 0000000758 758 Bytes
nginx-1.16.1.tar.gz 0001032630 1010 KB
nginx-1.16.1.tar.gz.asc 0000000455 455 Bytes
nginx-1.2.4-perl_vendor_install.patch 0000000528 528 Bytes
nginx-1.6.1-default_config.patch 0000003574 3.49 KB
nginx-aio.patch 0000001775 1.73 KB
nginx-rtmp-module-1.2.1.tar.gz 0000519919 508 KB
nginx.changes 0000080567 78.7 KB
nginx.init 0000010501 10.3 KB
nginx.keyring 0000001912 1.87 KB
nginx.logrotate 0000000311 311 Bytes
nginx.rpmlintrc 0000000310 310 Bytes
nginx.service 0000000401 401 Bytes
nginx.spec 0000014534 14.2 KB
nginx_upstream_check_module-0.3.0.tar.gz 0000136542 133 KB
ngx-fancyindex-0.4.2.tar.gz 0000022047 21.5 KB
ngx_http_geoip2_module-3.3.tar.gz 0000008509 8.31 KB
Latest Revision
Gustavo Yokoyama Ribeiro's avatar Gustavo Yokoyama Ribeiro (gyribeiro) committed (revision 2)
In order to support TLS 1.3, nginx must be forked in SP2.

nginx will built in support for TLS 1.3 (jsc#SLE-9295, bsc#1150711) only
when it detects TLS1_3_VERSION at compile time, and that symbol is available
since openssl 1.1.1 (or SLE-15-SP2).

- Update to stable branch 1.16.1 (jsc#ECO-1401)
  * add TLS 1.3 support for SLE-15-SP2 (jsc#SLE-9295, bsc#1150711)
- Replace obsolete GeoIP module with MaxMinDB-based GeoIP2
  (jsc#SLE-11184, bsc#1156202)
- Start nginx after network is online (boo#1155690)
- Drop upstream patches:
  * CVE-2019-9511.patch
  * CVE-2019-9513.patch
  * CVE-2019-9516.patch
  * CVE-2019-20372.patch
--------------------------------------------------------------------
-- CVE-2019-20372: Fixed an HTTP request smuggling with certain error_page 
   configurations which could have allowed unauthorized web page reads 
-  (bsc#1160682). 
   Added CVE-2019-20372.patch 
-
--------------------------------------------------------------------
 
 - Fix HTTP/2 related security issues:
   - CVE-2019-9511: Fixed a denial of service by manipulating the window size and
     stream prioritization (bsc#1145579 CVE-2019-9511.patch).
Comments 0
openSUSE Build Service is sponsored by