core144: start update

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
This commit is contained in:
Arne Fitzenreiter
2020-04-12 08:14:26 +02:00
parent b14b37ba67
commit 89445161b0
37 changed files with 115 additions and 2 deletions

View File

@@ -0,0 +1,28 @@
boot/config.txt
boot/grub/grub.cfg
boot/grub/grubenv
etc/alternatives
etc/collectd.custom
etc/default/grub
etc/ipsec.conf
etc/ipsec.secrets
etc/ipsec.user.conf
etc/ipsec.user.secrets
etc/localtime
etc/shadow
etc/snort/snort.conf
etc/ssl/openssl.cnf
etc/sudoers
etc/sysconfig/firewall.local
etc/sysconfig/rc.local
etc/udev/rules.d/30-persistent-network.rules
srv/web/ipfire/html/proxy.pac
var/ipfire/dma
var/ipfire/time
var/ipfire/ovpn
var/lib/alternatives
var/log/cache
var/log/dhcpcd.log
var/log/messages
var/state/dhcp/dhcpd.leases
var/updatecache

View File

@@ -0,0 +1 @@
../../../../common/aarch64/binutils

View File

@@ -0,0 +1 @@
../../../../common/aarch64/gcc

View File

@@ -0,0 +1 @@
../../../../common/aarch64/glibc

View File

@@ -0,0 +1 @@
../../../common/apr

View File

@@ -0,0 +1 @@
../../../../common/armv5tel/binutils

View File

@@ -0,0 +1 @@
../../../../common/armv5tel/gcc

View File

@@ -0,0 +1 @@
../../../../common/armv5tel/glibc

View File

@@ -0,0 +1 @@
../../../common/cairo

View File

@@ -0,0 +1 @@
../../../common/coreutils

View File

@@ -0,0 +1 @@
../../../common/dma

View File

@@ -0,0 +1,24 @@
etc/system-release
etc/issue
srv/web/ipfire/cgi-bin/credits.cgi
var/ipfire/langs
etc/rc.d/init.d/firewall
etc/rc.d/init.d/localnet
etc/rc.d/init.d/unbound
etc/suricata/suricata.yaml
srv/web/ipfire/cgi-bin/dhcp.cgi
srv/web/ipfire/cgi-bin/fireinfo.cgi
srv/web/ipfire/cgi-bin/ids.cgi
srv/web/ipfire/cgi-bin/mail.cgi
srv/web/ipfire/cgi-bin/netother.cgi
srv/web/ipfire/cgi-bin/ovpnmain.cgi
srv/web/ipfire/cgi-bin/proxy.cgi
srv/web/ipfire/cgi-bin/vpnmain.cgi
srv/web/ipfire/cgi-bin/zoneconf.cgi
usr/lib/firewall/rules.pl
usr/sbin/convert-snort
var/ipfire/backup/bin/backup.pl
var/ipfire/backup/include
var/ipfire/ids-functions.pl
var/ipfire/suricata/oinkmaster.conf
var/ipfire/suricata/ruleset-sources

View File

@@ -0,0 +1 @@
../../../common/hwdata

View File

@@ -0,0 +1 @@
../../../../common/i586/binutils

View File

@@ -0,0 +1 @@
../../../../common/i586/gcc

View File

@@ -0,0 +1 @@
../../../../common/i586/glibc

View File

@@ -0,0 +1 @@
../../../../common/i586/openssl-sse2

View File

@@ -0,0 +1 @@
../../../common/libssh

View File

@@ -0,0 +1 @@
../../../common/libtool

View File

@@ -0,0 +1 @@
../../../common/logwatch

View File

@@ -0,0 +1 @@
../../../common/ntp

View File

@@ -0,0 +1 @@
../../../common/openssh

View File

@@ -0,0 +1 @@
../../../common/openssl

View File

@@ -0,0 +1 @@
../../../common/pcre

View File

@@ -0,0 +1 @@
../../../common/smartmontools

View File

@@ -0,0 +1 @@
../../../common/strongswan

View File

@@ -0,0 +1 @@
../../../common/unbound

View File

@@ -0,0 +1 @@
../../../../common/x86_64/binutils

View File

@@ -0,0 +1 @@
../../../../common/x86_64/gcc

View File

@@ -0,0 +1 @@
../../../../common/x86_64/glibc

View File

@@ -0,0 +1 @@
../../../common/xz

View File

@@ -0,0 +1,123 @@
#!/bin/bash
############################################################################
# #
# This file is part of the IPFire Firewall. #
# #
# IPFire is free software; you can redistribute it and/or modify #
# it under the terms of the GNU General Public License as published by #
# the Free Software Foundation; either version 3 of the License, or #
# (at your option) any later version. #
# #
# IPFire is distributed in the hope that it will be useful, #
# but WITHOUT ANY WARRANTY; without even the implied warranty of #
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
# GNU General Public License for more details. #
# #
# You should have received a copy of the GNU General Public License #
# along with IPFire; if not, write to the Free Software #
# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
# #
# Copyright (C) 2020 IPFire-Team <info@ipfire.org>. #
# #
############################################################################
#
. /opt/pakfire/lib/functions.sh
/usr/local/bin/backupctrl exclude >/dev/null 2>&1
core=143
exit_with_error() {
# Set last succesfull installed core.
echo $(($core-1)) > /opt/pakfire/db/core/mine
# force fsck at next boot, this may fix free space on xfs
touch /forcefsck
# don't start pakfire again at error
killall -KILL pak_update
/usr/bin/logger -p syslog.emerg -t ipfire \
"core-update-${core}: $1"
exit $2
}
# Remove old core updates from pakfire cache to save space...
for (( i=1; i<=$core; i++ )); do
rm -f /var/cache/pakfire/core-upgrade-*-$i.ipfire
done
# Remove files
rm -rf /usr/lib/go/9.2.0
# Stop services
/etc/init.d/suricata stop
# move swap after mount
mv -f /etc/rc.d/rcsysinit.d/S20swap \
/etc/rc.d/rcsysinit.d/S41swap
# Extract files
extract_files
# update linker config
ldconfig
# remove wrong vnstat tag file
rm -f /var/log/vnstat/tag
# set /var/spool/cron to cron user
chown cron:cron /var/spool/cron
# restart init after glibc replace
telinit u
# Apply changed sysctl settings
/etc/init.d/sysctl start
# Apply local configuration to sshd_config
/usr/local/bin/sshctrl
# Generate new http ports file for suricata
perl -e "require '/var/ipfire/ids-functions.pl'; \
&IDS::generate_http_ports_file(); \
&IDS::set_ownership(\"\$IDS::http_ports_file\"); "
# Start services
/usr/local/bin/ipsecctrl S
/etc/init.d/unbound restart
/etc/init.d/sshd restart
/etc/init.d/suricata start
# remove dropped packages
for package in bluetooth; do
if [ -e /opt/pakfire/db/installed/meta-$package ]; then
stop_service $package
for i in $(cat /opt/pakfire/db/rootfiles/$package); do
rm -rfv /${i}
done
fi
rm -f /opt/pakfire/db/installed/meta-$package
rm -f /opt/pakfire/db/meta/meta-$package
rm -f /opt/pakfire/db/rootfiles/$package
done
# Update Language cache
/usr/local/bin/update-lang-cache
# Filesytem cleanup
/usr/local/bin/filesystem-cleanup
# This update needs a reboot...
touch /var/run/need_reboot
# Finish
/etc/init.d/fireinfo start
sendprofile
# Update grub config to display new core version
if [ -e /boot/grub/grub.cfg ]; then
grub-mkconfig -o /boot/grub/grub.cfg
fi
sync
# Don't report the exitcode last command
exit 0