Michael Tremer
6d5e9f40f8
gcc: Drop Go on armv5tel
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-04-20 15:25:42 +00:00
Michael Tremer
29cb9e478a
glibc: Update to 2.31
...
Fixes : #12288
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-22 07:30:45 +00:00
Michael Tremer
6b3b3a32ab
swap: Start swap after mounting filesystems
...
When using a swap file, it is not being activated correctly
when the filesystem it is residing on is not mounted, yet.
The root file system is mounted read-only here before
S40mountfs is being executed.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-21 16:19:54 +00:00
Peter Müller
cfd2f07cf0
binutils: update to 2.34
...
Cc: Arne Fitzenreiter <arne.fitzenreiter@ipfire.org >
Signed-off-by: Peter Müller <peter.mueller@ipfire.org >
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-21 15:44:06 +00:00
Michael Tremer
067a6fd040
gcc: Update to 9.3.0
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-21 15:43:41 +00:00
Arne Fitzenreiter
a344d3c902
unbound/red.up: run unbound update-forwarders after suricata init.
...
The old suricata instance blocks dns requests if the red ip has changed.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-04 08:52:56 +01:00
Arne Fitzenreiter
3b5131c1a3
unbound: drop remove-dns-fowarders at red.down
...
this functions has only reloaded unbound config
which is useless at shutting down the red interface.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-03-02 17:54:48 +00:00
Arne Fitzenreiter
8569b3e11b
red.up: move update-dns-forwareders behind the firewall
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-02-19 14:51:48 +00:00
Arne Fitzenreiter
e0dbe21e09
u-boot-kirkwood: drop package
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-02-15 17:01:02 +00:00
Arne Fitzenreiter
dc1362e888
kernel: armv5tel rootfile update
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-02-13 17:08:20 +00:00
Arne Fitzenreiter
57b17167eb
kernel: drop kirkwood kernel
...
perl 5.30 will not work on kirkwood platform and firewinfo reports less than 10 users so we will drop the support for the platform.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-02-03 17:44:49 +00:00
Arne Fitzenreiter
4f175a1f57
rust: rootfiles updates
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-01-25 21:14:54 +01:00
Michael Tremer
8893881160
lvm2: Add initscript for lvmetad
...
This daemon needs to be launched in order to use LVM
devices in IPFire.
It will run on all installations after this patch has been
merged but only consumes very little memory.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-01-16 18:23:30 +00:00
Arne Fitzenreiter
61cc563558
Merge remote-tracking branch 'ms/next-dns-ng' into next
2020-01-13 21:42:49 +00:00
Michael Tremer
04b7a78140
unbound: Do not reset safe search again
...
This is now done in the reload stage and we do not need to
take care about it again.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2020-01-13 21:25:10 +01:00
Arne Fitzenreiter
6ede197501
pathon: update to 3.8 and move pyhton to core
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2020-01-11 14:35:11 +01:00
Arne Fitzenreiter
62a1f5199c
gcc: update armv5tel rootfile
2020-01-11 14:11:12 +01:00
Michael Tremer
d7190078ce
unbound: Configure Safe Search dynamically
...
The safe search code relied on working DNS resolution, but
was executed before unbound was even started and no network
was brought up.
That resulted in no records being created and nothing being
filtered.
This will now set/reset safe search when the system connects
to the Internet.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-12-29 08:51:21 +00:00
Stefan Schantl
5bc042df2f
rust: Update to 1.39
...
Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org >
Reviewed-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-12-29 08:50:31 +00:00
Arne Fitzenreiter
d346d47467
up/down beep: move from ppp ip-up/down to general red.up/down
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-12-01 15:29:59 +01:00
Arne Fitzenreiter
e557cecbdd
python: update to 2.7.17
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-11-28 18:41:18 +01:00
Arne Fitzenreiter
44b227b102
kernel: update to 4.14.154
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-11-14 22:12:12 +01:00
Michael Tremer
951a9f9ba0
linux+iptables: Drop support for IMQ
...
This is no longer needed since we are using IFB now
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Daniel Weismüller <daniel.weismueller@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-10-21 18:58:08 +00:00
Arne Fitzenreiter
c27fdd8697
Revert "linux+iptables: Drop support for IMQ"
...
This reverts commit 59b9a6bd22 .
2019-10-20 20:20:26 +00:00
Michael Tremer
59b9a6bd22
linux+iptables: Drop support for IMQ
...
This is no longer needed since we are using IFB now
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-10-14 18:02:55 +00:00
Arne Fitzenreiter
2fabddb44d
rust: update armv5tel rootfile
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-10-09 20:23:05 +02:00
Stefan Schantl
59fe973584
rust: New package.
...
Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-10-08 19:08:23 +00:00
Michael Tremer
d111587cc3
gcc: Build the Go compiler
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-08-20 17:21:08 +00:00
Arne Fitzenreiter
7c30831ad2
initskripts: move unbound down after network down
...
this remove a bunch of unbound errors at shutdown because
network down try to reconfigure unbond. (e.g. disable forwarders)
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-08-11 11:09:40 +02:00
Arne Fitzenreiter
6836e528e5
u-boot-friendlyarm: add u-boot for nanopi-r1 to boot from eMMC
...
this is a heavy patched version and should replaced when stock
u-boot is able to boot from h3 eMMC.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-08-06 04:32:22 +00:00
Arne Fitzenreiter
a6859d889e
rpi-firmware: create copy of RPI3 brcm 43430 configfile.
...
the AP21xx need a different config so store the rpi version as backup.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-07-31 11:03:33 +00:00
Arne Fitzenreiter
53ece8f1f7
kernel: update arm-multi patchset
...
this add FriendlyElec nanopi-r1 devicetree file.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-07-30 18:27:43 +00:00
Arne Fitzenreiter
3ec3329dff
unbound: rework dns-forwader handling
...
add check if red interface has an IPv4 address before test the servers at
red up and simply remove forwarders at down process.
This also fix the hung at dhcpd shutdown.
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-07-16 19:20:48 +02:00
Michael Tremer
acf47bfa80
cloud-init: Import experimental configuration script for Azure
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-07-01 07:53:58 +01:00
Michael Tremer
ffb37e51d4
Rename AWS initscript to cloud-init
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-07-01 07:53:58 +01:00
Arne Fitzenreiter
82c279a518
kernel: update to 4.14.127
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-06-18 18:41:19 +02:00
Michael Tremer
cfbb61a74d
Rootfile update for ARM kernels
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-06-04 23:44:49 +01:00
Michael Tremer
71ff23c765
Rootfile update
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-05-28 11:41:46 +01:00
Michael Tremer
9f0295a512
Merge remote-tracking branch 'ms/faster-build' into next
2019-05-24 06:54:16 +01:00
Michael Tremer
6a83dbb451
SMT: Apply settings according to configuration
...
SMT can be forced on.
By default, all systems that are vulnerable to RIDL/Fallout
will have SMT disabled by default.
Systems that are not vulnerable to that will keep SMT enabled.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-05-20 21:30:26 +01:00
Michael Tremer
54fc710b99
Update kernel rootfiles for armv5tel
...
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-05-14 10:02:03 +01:00
Arne Fitzenreiter
5fa063f859
kernel: update to 4.14.112
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-04-17 22:30:19 +02:00
Michael Tremer
01604708c3
Merge remote-tracking branch 'stevee/next-suricata' into next
2019-03-14 13:19:35 +00:00
Michael Tremer
771c9b78ee
binutils: Ship strings & readelf
...
This is needed by the spectre meltdown checker script
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-03-02 13:01:42 +00:00
Stefan Schantl
8117fff863
IDS: Call helper script when red interface gets up
...
The helper script will be automatically called when the red interface gets up
and will re-generate the HOME_NET file, to take care if the IP-address of this
interface has changed.
Fixes #11989
Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org >
2019-02-06 15:40:19 +01:00
Stefan Schantl
c1a3401235
Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into next-suricata
2019-01-21 13:04:13 +01:00
Michael Tremer
7d5caee6bd
Add initscript for conntrackd
...
The daemon will be started by default when a configuration
file exists.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2019-01-06 08:59:25 +00:00
Arne Fitzenreiter
5e6f343b7d
python: update to 2.7.15
...
Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org >
2019-01-06 15:51:53 +01:00
Stefan Schantl
a13ddf04d9
Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into next-suricata
...
Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org >
2018-12-12 09:27:59 +01:00
Michael Tremer
f354601bbe
initscripts: Import pakfire keys before importing AWS configuration
...
This is useful when the user-data script is installing
packages. For that it will need valid keys for course.
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org >
2018-12-07 11:38:55 +00:00