notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
Want a good monitor light? See my photosAll times are UTC
Port details
shibboleth-sp C++ Shibboleth Service Provider (Internet2) for Apache
3.5.0_2 security on this many watch lists=2 search for ports that depend on this port An older version of this port was marked as vulnerable. Find issues related to this port Report an issue related to this port View this port on Repology. pkg-fallout 3.4.1_2Version of this port present on the latest quarterly branch.
Maintainer: search for ports maintained by this maintainer
Port Added: 2007-08-03 23:21:42
Last Update: 2024-11-13 14:48:39
Commit Hash: b78b4a0
People watching this port, also watch:: jdictionary, py311-Automat, py311-python-gdsii, py39-PyOpenGL, p5-Sane
Also Listed In: www
License: APACHE20
Shibboleth is standards-based, open source middleware software which provides Web Single SignOn (SSO) across or within organizational boundaries. It allows sites to make informed authorization decisions for individual access of protected online resources in a privacy-preserving manner. This software is a C++ implementation of the Service Provider version 2 component of the Shibboleth can be used in Apache Web servers. The service provider manages secured resources. User access to resources is based on assertions received by the service provider (SP) from an identity provider.
Homepage    cgit ¦ Codeberg ¦ GitHub ¦ GitLab ¦ SVNWeb

Manual pages:
FreshPorts has no man page information for this port.
pkg-plist: as obtained via: make generate-plist
Expand this list (148 items)
Collapse this list.
  1. @ldconfig
  2. /usr/local/share/licenses/shibboleth-sp-3.5.0_2/
  3. /usr/local/share/licenses/shibboleth-sp-3.5.0_2/LICENSE
  4. /usr/local/share/licenses/shibboleth-sp-3.5.0_2/APACHE20
  5. bin/mdquery
  6. bin/resolvertest
  7. etc/shibboleth/
  8. @sample etc/shibboleth/native.logger.dist etc/shibboleth/native.logger
  9. @sample etc/shibboleth/shibd.logger.dist etc/shibboleth/shibd.logger
  10. @sample etc/shibboleth/shibboleth2.xml.dist etc/shibboleth/shibboleth2.xml
  11. @sample etc/shibboleth/attribute-map.xml.dist etc/shibboleth/attribute-map.xml
  12. @sample etc/shibboleth/attribute-policy.xml.dist etc/shibboleth/attribute-policy.xml
  13. @sample etc/shibboleth/example-metadata.xml.dist etc/shibboleth/example-metadata.xml
  14. @sample etc/shibboleth/console.logger.dist etc/shibboleth/console.logger
  15. @sample etc/shibboleth/sessionError.html.dist etc/shibboleth/sessionError.html
  16. @sample etc/shibboleth/metadataError.html.dist etc/shibboleth/metadataError.html
  17. @sample etc/shibboleth/bindingTemplate.html.dist etc/shibboleth/bindingTemplate.html
  18. @sample etc/shibboleth/discoveryTemplate.html.dist etc/shibboleth/discoveryTemplate.html
  19. @sample etc/shibboleth/localLogout.html.dist etc/shibboleth/localLogout.html
  20. @sample etc/shibboleth/globalLogout.html.dist etc/shibboleth/globalLogout.html
  21. @sample etc/shibboleth/sslError.html.dist etc/shibboleth/sslError.html
  22. @sample etc/shibboleth/example-shibboleth2.xml.dist etc/shibboleth/example-shibboleth2.xml
  23. @sample etc/shibboleth/protocols.xml.dist etc/shibboleth/protocols.xml
  24. @sample etc/shibboleth/security-policy.xml.dist etc/shibboleth/security-policy.xml
  25. etc/shibboleth/
  26. etc/shibboleth/shibd-amazon
  27. etc/shibboleth/shibd-redhat
  28. etc/shibboleth/shibd-debian
  29. etc/shibboleth/shibd-suse
  30. @comment etc/shibboleth/shibd-systemd
  31. etc/shibboleth/shibd-osx.plist
  32. etc/shibboleth/apache.config
  33. etc/shibboleth/apache2.config
  34. @sample etc/shibboleth/attrChecker.html.dist etc/shibboleth/attrChecker.html
  35. etc/shibboleth/apache22.config
  36. etc/shibboleth/apache24.config
  37. etc/shibboleth/
  38. @sample etc/shibboleth/postTemplate.html.dist etc/shibboleth/postTemplate.html
  39. @sample etc/shibboleth/partialLogout.html.dist etc/shibboleth/partialLogout.html
  40. include/shibsp/AbstractSPRequest.h
  41. include/shibsp/AccessControl.h
  42. include/shibsp/Application.h
  43. include/shibsp/GSSRequest.h
  44. include/shibsp/RequestMapper.h
  45. include/shibsp/SPConfig.h
  46. include/shibsp/SPRequest.h
  47. include/shibsp/ServiceProvider.h
  48. include/shibsp/SessionCache.h
  49. include/shibsp/TransactionLog.h
  50. include/shibsp/attribute/Attribute.h
  51. include/shibsp/attribute/AttributeDecoder.h
  52. include/shibsp/attribute/BinaryAttribute.h
  53. include/shibsp/attribute/ExtensibleAttribute.h
  54. include/shibsp/attribute/NameIDAttribute.h
  55. include/shibsp/attribute/ScopedAttribute.h
  56. include/shibsp/attribute/SimpleAttribute.h
  57. include/shibsp/attribute/XMLAttribute.h
  58. include/shibsp/attribute/filtering/AttributeFilter.h
  59. include/shibsp/attribute/filtering/BasicFilteringContext.h
  60. include/shibsp/attribute/filtering/FilterPolicyContext.h
  61. include/shibsp/attribute/filtering/FilteringContext.h
  62. include/shibsp/attribute/filtering/MatchFunctor.h
  63. include/shibsp/attribute/resolver/AttributeExtractor.h
  64. include/shibsp/attribute/resolver/AttributeResolver.h
  65. include/shibsp/attribute/resolver/ResolutionContext.h
  66. include/shibsp/base.h
  67. include/shibsp/binding/ArtifactResolver.h
  68. include/shibsp/binding/ProtocolProvider.h
  69. include/shibsp/binding/SOAPClient.h
  70. include/shibsp/config_pub.h
  71. include/shibsp/exceptions.h
  72. include/shibsp/handler/AbstractHandler.h
  73. include/shibsp/handler/AssertionConsumerService.h
  74. include/shibsp/handler/Handler.h
  75. include/shibsp/handler/LogoutHandler.h
  76. include/shibsp/handler/LogoutInitiator.h
  77. include/shibsp/handler/RemotedHandler.h
  78. include/shibsp/handler/SecuredHandler.h
  79. include/shibsp/handler/SessionInitiator.h
  80. include/shibsp/lite/CommonDomainCookie.h
  81. include/shibsp/lite/SAMLConstants.h
  82. include/shibsp/metadata/MetadataExt.h
  83. include/shibsp/metadata/MetadataProviderCriteria.h
  84. include/shibsp/paths.h
  85. include/shibsp/remoting/ListenerService.h
  86. include/shibsp/remoting/ddf.h
  87. include/shibsp/security/PKIXTrustEngine.h
  88. include/shibsp/security/SecurityPolicy.h
  89. include/shibsp/security/SecurityPolicyProvider.h
  90. include/shibsp/util/CGIParser.h
  91. include/shibsp/util/DOMPropertySet.h
  92. include/shibsp/util/IPRange.h
  93. include/shibsp/util/PropertySet.h
  94. include/shibsp/util/SPConstants.h
  95. include/shibsp/util/TemplateParameters.h
  96. include/shibsp/version.h
  97. lib/
  98. lib/
  99. lib/
  100. lib/shibboleth/
  101. lib/shibboleth/
  102. @comment @comment lib/shibboleth/
  103. lib/shibboleth/
  104. lib/shibboleth/
  105. lib/shibboleth/
  106. lib/shibboleth/
  107. @comment lib/shibboleth/shibauthorizer
  108. @comment lib/shibboleth/shibresponder
  109. lib/
  110. lib/
  111. lib/
  112. libdata/pkgconfig/shibsp-lite.pc
  113. libdata/pkgconfig/shibsp.pc
  114. sbin/shibd
  115. share/xml/shibboleth/MetadataExchange.xsd
  116. share/xml/shibboleth/WS-Trust.xsd
  117. share/xml/shibboleth/catalog.xml
  118. share/xml/shibboleth/oasis-200401-wss-wssecurity-secext-1.0.xsd
  119. share/xml/shibboleth/oasis-200401-wss-wssecurity-utility-1.0.xsd
  120. share/xml/shibboleth/shibboleth-2.0-afp-mf-basic.xsd
  121. share/xml/shibboleth/shibboleth-2.0-afp-mf-saml.xsd
  122. share/xml/shibboleth/shibboleth-2.0-afp.xsd
  123. share/xml/shibboleth/shibboleth-2.0-attribute-map.xsd
  124. share/xml/shibboleth/shibboleth-2.0-native-sp-config.xsd
  125. share/xml/shibboleth/shibboleth-2.0-native-sp-protocols.xsd
  126. share/xml/shibboleth/shibboleth-2.0-sp-notify.xsd
  127. share/xml/shibboleth/shibboleth-3.0-native-sp-config.xsd
  128. share/xml/shibboleth/shibboleth-metadata-1.0.xsd
  129. share/xml/shibboleth/shibboleth.xsd
  130. share/xml/shibboleth/ws-addr.xsd
  131. share/xml/shibboleth/ws-authorization.xsd
  132. share/xml/shibboleth/ws-federation.xsd
  133. share/xml/shibboleth/ws-securitypolicy-1.2.xsd
  134. share/doc/shibboleth/CREDITS.txt
  135. share/doc/shibboleth/FASTCGI.LICENSE
  136. share/doc/shibboleth/LICENSE.txt
  137. share/doc/shibboleth/LOG4CPP.LICENSE
  138. share/doc/shibboleth/NOTICE.txt
  139. share/doc/shibboleth/OPENSSL.LICENSE
  140. share/doc/shibboleth/README.txt
  141. share/doc/shibboleth/RELEASE.txt
  142. share/doc/shibboleth/main.css
  143. @dir(shibd,shibd,755) /var/log/shibboleth
  144. @dir(shibd,shibd,755) /var/cache/shibboleth
  145. @dir(shibd,www,750) /var/run/shibboleth
  146. @owner
  147. @group
  148. @mode
Collapse this list.
Dependency lines:
  • shibboleth-sp>0:security/shibboleth-sp
To install the port:
cd /usr/ports/security/shibboleth-sp/ && make install clean
To add the package, run one of these commands:
  • pkg install security/shibboleth-sp
  • pkg install shibboleth-sp
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.
PKGNAME: shibboleth-sp
Flavors: there is no flavor information for this port.
TIMESTAMP = 1729173100 SHA256 (shibboleth-sp-3.5.0.tar.bz2) = f301604bd17ee4d94a66e6dd7ad1c3f0917949a4a12176d55614483d78fefe58 SIZE (shibboleth-sp-3.5.0.tar.bz2) = 834909

Packages (timestamps in pop-ups are UTC):
NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
Build dependencies:
  1. boost-libs>=0 : devel/boost-libs
  2. gmake>=4.4.1 : devel/gmake
  3. pkgconf>=1.3.0_1 : devel/pkgconf
  4. apxs : www/apache24
Runtime dependencies:
  1. apxs : www/apache24
Library dependencies:
  1. : security/opensaml
  2. : devel/log4shib
  3. : textproc/xerces-c3
  4. : security/apache-xml-security-c
  5. : devel/xmltooling
  6. : devel/apr1
  7. : databases/gdbm
  8. : textproc/expat2
  9. : databases/unixODBC
There are no ports dependent upon this port

Configuration Options:
===> The following configuration options are available for shibboleth-sp-3.5.0_2: ====> Webserver modules FASTCGI=off: FastCGI protocol support, e.g. for NGINX APACHE=on: Build Apache module ====> Optional session storage ODBC=on: ODBC database backend - store sessions in a database MEMCACHED=off: Store sessions in memcached ===> Use 'make config' to modify these settings
Options name:
gmake tar:bzip2 cpe pkgconfig libtool apache
FreshPorts was unable to extract/find any pkg message
Master Sites:
Expand this list (1 items)
Collapse this list.
Collapse this list.

Number of commits found: 40

Commit History - (may be incomplete: for full details, see links to repositories near top of page)
CommitCreditsLog message
13 Nov 2024 14:48:39
commit hash: b78b4a05619b14093195b6df0a02cb9be19d60bccommit hash: b78b4a05619b14093195b6df0a02cb9be19d60bccommit hash: b78b4a05619b14093195b6df0a02cb9be19d60bccommit hash: b78b4a05619b14093195b6df0a02cb9be19d60bc files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Unbreak memcached support

It was apparently fixed upstreams.

PR:	264044
13 Nov 2024 08:27:16
commit hash: 26b823c1a05879328dd33808259cf856b32850aecommit hash: 26b823c1a05879328dd33808259cf856b32850aecommit hash: 26b823c1a05879328dd33808259cf856b32850aecommit hash: 26b823c1a05879328dd33808259cf856b32850ae files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Remove incorrect dependency

PR:	279155 (Reported by diizzy@)
31 Oct 2024 12:58:56
commit hash: 319b9c0cd3556550f107a1b4d8f083b0eba665b9commit hash: 319b9c0cd3556550f107a1b4d8f083b0eba665b9commit hash: 319b9c0cd3556550f107a1b4d8f083b0eba665b9commit hash: 319b9c0cd3556550f107a1b4d8f083b0eba665b9 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Fix build with clang19

There was probably a name space clash between std and xmltooling for
the `char_traits' method.

See also:
25 Oct 2024 15:56:41
commit hash: 4d13b25916330f0f80987102efb7a51ce6dbe7b1commit hash: 4d13b25916330f0f80987102efb7a51ce6dbe7b1commit hash: 4d13b25916330f0f80987102efb7a51ce6dbe7b1commit hash: 4d13b25916330f0f80987102efb7a51ce6dbe7b1 files touched by this commit
Po-Chuan Hsieh (sunpoet) search for other commits by this committer
textproc/xerces-c3: Update to 3.3.0

- Bump PORTREVISION of dependent ports for shlib change

19 Oct 2024 18:12:21
commit hash: d8cc23e9124d6a5a8da0c5282e8fb39ef2f5992dcommit hash: d8cc23e9124d6a5a8da0c5282e8fb39ef2f5992dcommit hash: d8cc23e9124d6a5a8da0c5282e8fb39ef2f5992dcommit hash: d8cc23e9124d6a5a8da0c5282e8fb39ef2f5992d files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Update to 3.5.0

Release notes:
19 Sep 2024 09:39:47
commit hash: 3b31bc73620b2a7a0dc2e26d81b326d0eeebb551commit hash: 3b31bc73620b2a7a0dc2e26d81b326d0eeebb551commit hash: 3b31bc73620b2a7a0dc2e26d81b326d0eeebb551commit hash: 3b31bc73620b2a7a0dc2e26d81b326d0eeebb551 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: allow configuring the www_group

If you reconfigured your apache httpd to use a non-standard group, set
the rc variable shibboleth_www_group to correspond to that group, and
you will get correct rights for the unix domain socket that mod_shib
uses to communicate with the shibboleth daemon.
16 Aug 2023 02:31:00
commit hash: 1d9ac156fbbf92a432538dc300020c09f94832eecommit hash: 1d9ac156fbbf92a432538dc300020c09f94832eecommit hash: 1d9ac156fbbf92a432538dc300020c09f94832eecommit hash: 1d9ac156fbbf92a432538dc300020c09f94832ee files touched by this commit
Muhammad Moinur Rahman (bofh) search for other commits by this committer
security/shibboleth-sp: Fix build with llvm16

Approved by:	portmgr (blanket)
Sponsored by:	The FreeBSD Foundation
12 Jun 2023 15:09:11
commit hash: 37548fca60c3733e77d6020dcacabd1540f39e64commit hash: 37548fca60c3733e77d6020dcacabd1540f39e64commit hash: 37548fca60c3733e77d6020dcacabd1540f39e64commit hash: 37548fca60c3733e77d6020dcacabd1540f39e64 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
devel/xmltooling: update to 3.2.4

An updated version of the XMLTooling library that is part of the
OpenSAML and Shibboleth Service Provider software is now available
which corrects a server-side request forgery (SSRF) vulnerability.

Security:	f7e9a1cc-0931-11ee-94b4-6cc21735f730
25 Jan 2023 17:54:07
commit hash: 40843b1ccb8f70cca82dd115a71a46ae2a97a450commit hash: 40843b1ccb8f70cca82dd115a71a46ae2a97a450commit hash: 40843b1ccb8f70cca82dd115a71a46ae2a97a450commit hash: 40843b1ccb8f70cca82dd115a71a46ae2a97a450 files touched by this commit
Muhammad Moinur Rahman (bofh) search for other commits by this committer
Mk/Uses/ Refactor after removal of older versions

apache22 and apache25 had been removed a long time ago however the file has never been refactored and is out of sync from the
file Mk/ These changes refactors the removals of
the older versions. In addition:

- Remove apache versions from ports Makefiles as currently there is only
  one available version in the tree. However the version checks are
  still valid and should work flawlessly whenever a new version is
  added. For example USES=apache:2.2+ are simply replaced with
  USES=apache. As currently there are no other versions available for
  test this could not be checked on it's own ground.
- Update FOO_USE=APACHE=yes to FOO_USES=apache
- Remove trailing whitespaces

Approved by:    portmgr
Differential Revision:
11 Jan 2023 14:46:40
commit hash: a9e71595d93377de9af87a999cd128f3f43069e5commit hash: a9e71595d93377de9af87a999cd128f3f43069e5commit hash: a9e71595d93377de9af87a999cd128f3f43069e5commit hash: a9e71595d93377de9af87a999cd128f3f43069e5 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
shibboleth-sp: Update to 3.4.1

A patch release of the Service Provider, V3.4.1, is now available. This
release fixes a couple of small bugs and adds a warning requested by one
of our member organizations in the absence of the redirectLimit setting,
which leads to SPs being abused as open redirectors.

Notably, this release includes an update to the xmltooling library that
hardens the code base against the sorts of attacks reported against the
IdP in the recent advisory. The SP is, as far as can be determined, not
impacted directly by that vulnerability, but this is a precautionary

07 Nov 2022 17:03:06
commit hash: b4e7dc9bf4a25f8fb4858b55d811f2b001a49602commit hash: b4e7dc9bf4a25f8fb4858b55d811f2b001a49602commit hash: b4e7dc9bf4a25f8fb4858b55d811f2b001a49602commit hash: b4e7dc9bf4a25f8fb4858b55d811f2b001a49602 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: update to 3.4.0

This is a minor update containing a new setting suggested by a
contributor (thus the unplanned minor version change) controlling
retries when TCP connections to shibd are used. The other changes are
minimal in nature.

Update the toolchain as well:


and bump PORTREVISION for security/opensaml due to dependencies'

Release notes:
07 Sep 2022 21:58:51
commit hash: fb16dfecae4a6efac9f3a78e0b759fb7a3c53de4commit hash: fb16dfecae4a6efac9f3a78e0b759fb7a3c53de4commit hash: fb16dfecae4a6efac9f3a78e0b759fb7a3c53de4commit hash: fb16dfecae4a6efac9f3a78e0b759fb7a3c53de4 files touched by this commit
Stefan Eßer (se) search for other commits by this committer
Remove WWW entries moved into port Makefiles

Commit b7f05445c00f has added WWW entries to port Makefiles based on
WWW: lines in pkg-descr files.

This commit removes the WWW: lines of moved-over URLs from these
pkg-descr files.

Approved by:		portmgr (tcberner)
07 Sep 2022 21:10:59
commit hash: b7f05445c00f2625aa19b4154ebcbce5ed2daa52commit hash: b7f05445c00f2625aa19b4154ebcbce5ed2daa52commit hash: b7f05445c00f2625aa19b4154ebcbce5ed2daa52commit hash: b7f05445c00f2625aa19b4154ebcbce5ed2daa52 files touched by this commit
Stefan Eßer (se) search for other commits by this committer
Add WWW entries to port Makefiles

It has been common practice to have one or more URLs at the end of the
ports' pkg-descr files, one per line and prefixed with "WWW:". These
URLs should point at a project website or other relevant resources.

Access to these URLs required processing of the pkg-descr files, and
they have often become stale over time. If more than one such URL was
present in a pkg-descr file, only the first one was tarnsfered into
the port INDEX, but for many ports only the last line did contain the
port specific URL to further information.

There have been several proposals to make a project URL available as
a macro in the ports' Makefiles, over time.
(Only the first 15 lines of the commit message are shown above View all of this commit message)
12 Aug 2022 14:46:53
commit hash: 4cf39decb348615b9c8a28370d987a85d1b8a5edcommit hash: 4cf39decb348615b9c8a28370d987a85d1b8a5edcommit hash: 4cf39decb348615b9c8a28370d987a85d1b8a5edcommit hash: 4cf39decb348615b9c8a28370d987a85d1b8a5ed files touched by this commit
Dima Panov (fluffy) search for other commits by this committer
*/*: bump all consumers after recent boost upgrade
20 Jul 2022 14:22:56
commit hash: 857c05f8674c5f4c990f49f9d0fb7034ebd340fecommit hash: 857c05f8674c5f4c990f49f9d0fb7034ebd340fecommit hash: 857c05f8674c5f4c990f49f9d0fb7034ebd340fecommit hash: 857c05f8674c5f4c990f49f9d0fb7034ebd340fe files touched by this commit
Tobias C. Berner (tcberner) search for other commits by this committer
security: remove 'Created by' lines

A big Thank You to the original contributors of these ports:

  *  <>
  *  Aaron Dalton <>
  *  Adam Weinberger <>
  *  Ade Lovett <>
  *  Aldis Berjoza <>
  *  Alex Dupre <>
  *  Alex Kapranoff <>
  *  Alex Samorukov <>
  *  Alexander Botero-Lowry <>
  *  Alexander Kriventsov <>
  *  Alexander Leidinger <>
(Only the first 15 lines of the commit message are shown above View all of this commit message)
20 Dec 2021 14:02:27
commit hash: d4c09351b85fa9f3fce34923ed1e8b1cddb0bd38commit hash: d4c09351b85fa9f3fce34923ed1e8b1cddb0bd38commit hash: d4c09351b85fa9f3fce34923ed1e8b1cddb0bd38commit hash: d4c09351b85fa9f3fce34923ed1e8b1cddb0bd38 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Silence bogus apache 1.3 warning

PR:		260482
Submitted by:	Craig Leres
30 Nov 2021 14:42:09
commit hash: 1031ca3f51c7dd4480dfed041a4768fe78a35cb0commit hash: 1031ca3f51c7dd4480dfed041a4768fe78a35cb0commit hash: 1031ca3f51c7dd4480dfed041a4768fe78a35cb0commit hash: 1031ca3f51c7dd4480dfed041a4768fe78a35cb0 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: update to 3.3.0
08 Jul 2021 08:26:04
commit hash: ddb9b3294533ce1833d5cdc38307d6fd7c8022cecommit hash: ddb9b3294533ce1833d5cdc38307d6fd7c8022cecommit hash: ddb9b3294533ce1833d5cdc38307d6fd7c8022cecommit hash: ddb9b3294533ce1833d5cdc38307d6fd7c8022ce files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: update to 3.2.3

A regression in the RequestMap feature causing random crashes on some
systems was identified, necessitating this patch update. Most uses of
this feature tend to be on Windows, so that's the primary platform
affected but the bug was generic if the feature were to be used on other

It isn't easily exploitable by specific requests, so it's a borderline
sort of denial of service risk and the Shibboleth project chose not to
do an advisory, and anybody affected won't need much incentive to get
the patch anyway.
26 Apr 2021 08:51:17
commit hash: 19889886e54f734191490f09765d631b9b67f0a7commit hash: 19889886e54f734191490f09765d631b9b67f0a7commit hash: 19889886e54f734191490f09765d631b9b67f0a7commit hash: 19889886e54f734191490f09765d631b9b67f0a7 files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Update to 3.2.2

This is a security fix for an issue that has not yet been disclosed. The
vuxml entry will be updated once the CVE is available.

The patch to mitigate the vulnerability was introduced already on
2021-04-23 in the FreeBSD port as 3.2.1_1.

Security:	e4403051-a667-11eb-b9c9-6cc21735f730
23 Apr 2021 19:04:42
commit hash: ff87b258473211ee848d3aba7bea1246fcf44f3ccommit hash: ff87b258473211ee848d3aba7bea1246fcf44f3ccommit hash: ff87b258473211ee848d3aba7bea1246fcf44f3ccommit hash: ff87b258473211ee848d3aba7bea1246fcf44f3c files touched by this commit
Palle Girgensohn (girgen) search for other commits by this committer
security/shibboleth-sp: Reintroduce direct dependencies to silent Q/A.

The dependencies where previously added indirectly through the
dependency chain via opensaml, bust the Q/A disapproved of that.

Add patch to check for missing DataSealer during cookie recovery.
06 Apr 2021 14:31:13
commit hash: 135fdeebb99c3569e42d8162b265e15d29bd937dcommit hash: 135fdeebb99c3569e42d8162b265e15d29bd937dcommit hash: 135fdeebb99c3569e42d8162b265e15d29bd937dcommit hash: 135fdeebb99c3569e42d8162b265e15d29bd937d files touched by this commit This port version is marked as vulnerable.
Mathieu Arnold (mat) search for other commits by this committer
all: Remove all other $FreeBSD keywords.
06 Apr 2021 14:31:07
commit hash: 305f148f482daf30dcf728039d03d019f88344ebcommit hash: 305f148f482daf30dcf728039d03d019f88344ebcommit hash: 305f148f482daf30dcf728039d03d019f88344ebcommit hash: 305f148f482daf30dcf728039d03d019f88344eb files touched by this commit This port version is marked as vulnerable.
Mathieu Arnold (mat) search for other commits by this committer
Remove # $FreeBSD$ from Makefiles.
16 Mar 2021 22:15:12
Revision:568618Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Update to version 3.2.1

Release notes:
18 Dec 2020 08:51:57
Revision:558359Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Update xmltooling to 3.2.0

Bump dependant ports. xmltooling is only used as a dependency for

Release notes:
15 Dec 2020 20:01:41
Revision:558176Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Upgrade Shibboleth and OpenSAML to 3.2.0

13 Apr 2020 22:15:37
Revision:531638Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
The Shibboleth Project has released V3.1.0 of the Service Provider software.

Release notes:
11 Dec 2019 17:53:49
Revision:519824Original commit files touched by this commit This port version is marked as vulnerable.
jbeich search for other commits by this committer
devel/boost-*: update to 1.72.0

PR:		241449
Exp-run by:	antoine
Differential Revision:
19 Aug 2019 15:35:28
Revision:509290Original commit files touched by this commit This port version is marked as vulnerable.
jbeich search for other commits by this committer
devel/boost-*: update to 1.71.0

PR:		238827
Exp-run by:	antoine
Differential Revision:
12 Apr 2019 06:36:31
Revision:498698Original commit files touched by this commit This port version is marked as vulnerable.
jbeich search for other commits by this committer
devel/boost-*: update to 1.70.0

PR:		235956
Exp-run by:	antoine
Differential Revision:
11 Mar 2019 17:02:37
Revision:495367Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Update Shibboleth and its tool chain to 3.0.4

The security problem was patched alreadyin 3.0.3p1, but all users are
recommended to update to the latest version at next service window.

Security:	CVE-2019-9628
Release notes:
23 Dec 2018 10:54:35
Revision:488188Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Update to version 3.0.3

The update corrects a denial of service vulnerability.

Security:	4f8665d0-0465-11e9-b77a-6cc21735f730
12 Dec 2018 00:15:50
Revision:487266Original commit files touched by this commit This port version is marked as vulnerable.
jbeich search for other commits by this committer
devel/boost-*: update to 1.69.0

PR:		232525
Exp-run by:	antoine
Differential Revision:
09 Aug 2018 06:58:31
Revision:476723Original commit files touched by this commit This port version is marked as vulnerable.
jbeich search for other commits by this committer
devel/boost-*: update to 1.68.0

- Switch to C++14 for libboost_system to support C++14 consumers

PR:		229569
Exp-run by:	antoine
Differential Revision:
07 Aug 2018 13:24:37
Revision:476595Original commit files touched by this commit This port version is marked as vulnerable.
girgen search for other commits by this committer
Update Shibboleth to 3.0.2

Also update the toolchain to latest versions. This includes a security fix for

Security:       5786185a-9a43-11e8-b34b-6cc21735f730
28 Jan 2010 01:59:05
Original commit files touched by this commit This port version is marked as vulnerable.
miwi search for other commits by this committer
2010-01-08 x11-toolkits/gtkada-gps: has been broken for 3 months
2010-01-08 x11-fm/velocity: has been broken for 7 months
2010-01-08 x11-drivers/xf86-video-nsc: has been broken for 5 months
2010-01-08 www/rubygem-merb: has been broken for 5 months
2010-01-08 security/shibboleth-sp: has been broken for 3 months
25 Dec 2009 18:01:14
Original commit files touched by this commit This port version is marked as vulnerable.
pgollucci search for other commits by this committer
- WITH_APACHE22 is deprecated

With Hat: apache@
08 Dec 2009 14:30:09
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
  This port has been broken for 3+ months, thus

- Mark DEPRECATED and schedule for expiration in one month

With hat:       portmgr
01 Sep 2009 07:18:29
Original commit files touched by this commit This port version is marked as vulnerable.
erwin search for other commits by this committer
Mark BROKEN on i386-6 as well.
30 Sep 2007 10:33:03
Original commit files touched by this commit This port version is marked as vulnerable.
linimon search for other commits by this committer
Mark as only for i386-6.

Based on:

PR:             ports/115474
Submitted by:   maintainer
03 Aug 2007 23:21:26
Original commit files touched by this commit This port version is marked as vulnerable.
pav search for other commits by this committer
Shibboleth is standards-based, open source middleware software which
provides Web Single SignOn (SSO) across or within organizational
boundaries. It allows sites to make informed authorization decisions
for individual access of protected online resources in a
privacy-preserving manner.

This software is a C++ implementation of the Service Provider
component of the Shibboleth can be used in Apache Web servers.  The
service provider manages secured resources. User access to resources
is based on assertions received by the service provider (SP) from
an identity provider.


PR:             ports/114663
Submitted by:   Janos Mohacsi <>

Number of commits found: 40