33765 Commits

Author SHA1 Message Date
Krzesimir Nowak
44eff64a97 overlay profiles: Keep masking unwanted python versions
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:41:25 +01:00
Krzesimir Nowak
b560c371a9 changelog: Add an entry
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:30:13 +01:00
Krzesimir Nowak
d2368a3d84 overlay *: Bump some python compats to 3.14
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:30:13 +01:00
Krzesimir Nowak
ed558a1357 overlay profiles: Bump python to 3.12
Try to do it with in a proper Gentoo way - with PYTHON_TARGETS and
PYTHON_SINGLE_TARGET variables in make.defaults. Still need to disable
all other versions of python, otherwise our settings gets merged with
settings from base Gentoo profiles, which currently enable python 3.13.

We are not bumping to 3.13, because sec-policy/selinux-base
PYTHON_COMPAT is still on at most 3.12.

Note that this change still allows python 3.11 in PYTHON_TARGETS for a
transition period. Otherwise the SDK builds do not go past stage1.

Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:30:13 +01:00
flatcar-ci
1721979e49 New version: main-4578.0.0-nightly-20260112-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4578.0.0-nightly-20260112-2100
2026-01-12 21:00:26 +00:00
James Le Cuirot
01ef70d285
Merge pull request #3620 from flatcar/chewi/non-live-overlaybd
Build overlaybd and accelerated-container-image entirely offline
2026-01-12 14:50:43 +00:00
Mathieu Tortuyaux
d296f4fe9c
Merge pull request #3645 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2026-01-12 14:37:54 +01:00
Flatcar Buildbot
9ea85aada6 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 13:36:58 +00:00
Mathieu Tortuyaux
4e04d39b6f
Merge pull request #3634 from flatcar/linux-6.12.65-main
Upgrade Linux Kernel for main from 6.12.64 to 6.12.65
2026-01-12 14:36:44 +01:00
Mathieu Tortuyaux
22bcb76975
Merge pull request #3640 from flatcar/cacerts-3.120-main
Update ca-certificates in main from 3.119 to 3.120
2026-01-12 09:38:10 +01:00
Flatcar Buildbot
817db36a39 app-misc/ca-certificates: Update from 3.119 to 3.120
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 07:17:33 +00:00
Flatcar Buildbot
f4abfee0ec sys-kernel/coreos-sources: Update from 6.12.64 to 6.12.65
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 07:11:03 +00:00
flatcar-ci
f084501dcb New version: main-4575.0.0-nightly-20260109-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4575.0.0-nightly-20260109-2100
2026-01-10 03:29:03 +00:00
flatcar-ci
9cbec4e64a New version: main-4575.0.0-nightly-20260109-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4575.0.0-nightly-20260109-2100-INTERMEDIATE
2026-01-09 21:00:22 +00:00
Mathieu Tortuyaux
2137bf57fe
Merge pull request #3628 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2026-01-09 17:18:46 +01:00
Flatcar Buildbot
ae5122c83a Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-09 16:18:04 +00:00
Mathieu Tortuyaux
af2e45ad41
Merge pull request #3621 from flatcar/linux-6.12.64-main
Upgrade Linux Kernel for main from 6.12.62 to 6.12.64
2026-01-09 17:17:51 +01:00
Flatcar Buildbot
18ac740b35 sys-kernel/coreos-sources: Update from 6.12.62 to 6.12.64
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-09 07:09:27 +00:00
James Le Cuirot
acc72feb6a
app-containers/accelerated-container-image: Use offline vendor tarball
I have submitted a PR upstream so that they can automatically create a
vendor tarball with each release. In the meantime, I have hosted one in
my Gentoo dev space.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 13:55:16 +00:00
James Le Cuirot
cef9a6a40e
sys-fs/overlaybd: Patch and rework to build entirely offline
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 13:55:15 +00:00
James Le Cuirot
2479cd95a6
dev-libs/rapidjson: Import from Gentoo to build sys-fs/overlaybd offline
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 12:25:10 +00:00
flatcar-ci
2d5b140d51 New version: main-4572.0.0-nightly-20260106-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4572.0.0-nightly-20260106-2100
2026-01-06 21:00:25 +00:00
James Le Cuirot
d201d0e2a2
Merge pull request #3614 from flatcar/chewi/sshd_config
coreos-base/misc-files: Drop Ciphers, MACs, KexAlgorithms from sshd conf
2026-01-06 11:56:28 +00:00
James Le Cuirot
fdab8b4d35
coreos-base/misc-files: Drop Ciphers, MACs, KexAlgorithms from sshd conf
Setting an absolute list was preventing newer options from being
enabled, leading to this scary error message from newer clients.

    $ ssh flatcar
    Warning: Permanently added '[127.0.0.1]:2222' (ED25519) to the list of known hosts.
    ** WARNING: connection is not using a post-quantum key exchange algorithm.
    ** This session may be vulnerable to "store now, decrypt later" attacks.
    ** The server may need to be upgraded. See https://openssh.com/pq.html
    Last login: Wed Oct 15 10:05:46 UTC 2025 from 10.0.2.2 on pts/0
    Flatcar Container Linux by Kinvolk beta 4426.1.0 for QEMU

After going through each of the options, the only ones we were adding
above the current 10.2p1 defaults were the diffie-hellman-group KEX
algorithms. These were dropped upstream in 2024 because they are slower
while providing no benefit over other options. The continued presence of
ecdh-sha2-nistp256 ensures compatibility with default clients at least
as far back as 2016.

I think we should just continue to follow the upstream defaults unless
some significant client breakage is reported. They're usually quite
forgiving.

The order of these is significant, and our order did differ from
upstream's slightly, but I trust their order over ours.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-06 11:55:15 +00:00
flatcar-ci
9733e87a32 New version: main-4571.0.0-nightly-20260105-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4571.0.0-nightly-20260105-2100
2026-01-05 21:00:26 +00:00
flatcar-ci
1978d32d1e New version: main-4568.0.0-nightly-20260102-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4568.0.0-nightly-20260102-2100
2026-01-03 03:10:52 +00:00
flatcar-ci
8b54e2df6d New version: main-4568.0.0-nightly-20260102-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4568.0.0-nightly-20260102-2100-INTERMEDIATE
2026-01-02 21:00:22 +00:00
James Le Cuirot
c1902b8b54
Merge pull request #3609 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2026-01-02 10:56:44 +00:00
Flatcar Buildbot
ed29e505e8 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-29 21:00:39 +00:00
flatcar-ci
ee720f941f New version: main-4564.0.0-nightly-20261229-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
main-4564.0.0-nightly-20261229-2100
2025-12-29 21:00:26 +00:00
flatcar-ci
41e0f1f574 New version: main-4557.0.0-nightly-20251222-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-22 21:00:24 +00:00
James Le Cuirot
59b6befdf9
Merge pull request #3601 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-12-22 14:15:01 +00:00
Flatcar Buildbot
c2e3a2ec7b Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-22 13:14:18 +00:00
Mathieu Tortuyaux
7b9bd0d752
Merge pull request #3596 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-12-22 14:14:04 +01:00
Flatcar Buildbot
53c272ed2d Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-22 11:26:06 +00:00
James Le Cuirot
a3bd0f1daf
Merge pull request #3592 from flatcar/chewi/fix-kernel-apply-patch
github: Fix and simplify kernel-apply-patch.sh regarding hv-daemons
2025-12-22 11:25:55 +00:00
James Le Cuirot
a930a42cb2
github: Fix and simplify kernel-apply-patch.sh regarding hv-daemons
This action is kicked off from main for all channels, but the script is
run against each branch, so we can assume that hv-daemons is there.

COREOS_SOURCE_REVISION isn't in the hv-daemons ebuild, but that doesn't
matter. sed will do nothing.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-22 10:10:44 +00:00
flatcar-ci
415fc4ae10 New version: main-4554.0.0-nightly-20251219-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-20 03:02:00 +00:00
flatcar-ci
33e829a160 New version: main-4554.0.0-nightly-20251219-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-19 21:00:23 +00:00
Kai Lüke
6c024ef6e9
Merge pull request #3590 from flatcar/kai/sysupdate-noop
coreos-base/coreos-init: Add noop systemd-sysupdate transfer config
2025-12-19 18:00:02 +09:00
Kai Lueke
b783e3ee91 coreos-base/coreos-init: Add noop systemd-sysupdate transfer config
This pulls in https://github.com/flatcar/init/pull/139 as workaround for
https://github.com/flatcar/flatcar/issues/1979 and should be backported
to Alpha/Beta.

Signed-off-by: Kai Lueke <kailuke@microsoft.com>
2025-12-19 17:53:53 +09:00
flatcar-ci
65938e0ca1 New version: main-4553.0.0-nightly-20251218-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-18 21:00:23 +00:00
Mathieu Tortuyaux
9a9d6a0819
Merge pull request #3584 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-12-18 18:00:37 +01:00
Flatcar Buildbot
e946a4cf9f Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-18 12:01:56 +00:00
Thilo Fromm
cca115740f
Merge pull request #3473 from apricote/hcloud-default-server-type
scripts: update hetzner amd64 instance type
2025-12-18 13:01:40 +01:00
James Le Cuirot
de06342382
Merge pull request #3580 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-12-18 09:34:32 +00:00
Flatcar Buildbot
a52db450ea Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-18 09:32:27 +00:00
Mathieu Tortuyaux
27a39cf790
Merge pull request #3577 from robinschneider/stackit-machine
STACKIT: Use a less powerful machine for amd64 tests
2025-12-18 10:32:13 +01:00
Robin Schneider
c68d7d38c9
Use a less powerful machine for amd64 tests
Signed-off-by: Robin Schneider <robin.schneider@stackit.cloud>
2025-12-18 09:36:28 +01:00
flatcar-ci
8c5cc3b270 New version: main-4552.0.0-nightly-20251217-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-17 21:00:24 +00:00