24671 Commits

Author SHA1 Message Date
Krzesimir Nowak
44eff64a97 overlay profiles: Keep masking unwanted python versions
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:41:25 +01:00
Krzesimir Nowak
d2368a3d84 overlay *: Bump some python compats to 3.14
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:30:13 +01:00
Krzesimir Nowak
ed558a1357 overlay profiles: Bump python to 3.12
Try to do it with in a proper Gentoo way - with PYTHON_TARGETS and
PYTHON_SINGLE_TARGET variables in make.defaults. Still need to disable
all other versions of python, otherwise our settings gets merged with
settings from base Gentoo profiles, which currently enable python 3.13.

We are not bumping to 3.13, because sec-policy/selinux-base
PYTHON_COMPAT is still on at most 3.12.

Note that this change still allows python 3.11 in PYTHON_TARGETS for a
transition period. Otherwise the SDK builds do not go past stage1.

Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2026-01-13 10:30:13 +01:00
flatcar-ci
1721979e49 New version: main-4578.0.0-nightly-20260112-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-12 21:00:26 +00:00
James Le Cuirot
01ef70d285
Merge pull request #3620 from flatcar/chewi/non-live-overlaybd
Build overlaybd and accelerated-container-image entirely offline
2026-01-12 14:50:43 +00:00
Flatcar Buildbot
9ea85aada6 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 13:36:58 +00:00
Mathieu Tortuyaux
4e04d39b6f
Merge pull request #3634 from flatcar/linux-6.12.65-main
Upgrade Linux Kernel for main from 6.12.64 to 6.12.65
2026-01-12 14:36:44 +01:00
Flatcar Buildbot
817db36a39 app-misc/ca-certificates: Update from 3.119 to 3.120
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 07:17:33 +00:00
Flatcar Buildbot
f4abfee0ec sys-kernel/coreos-sources: Update from 6.12.64 to 6.12.65
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-12 07:11:03 +00:00
flatcar-ci
f084501dcb New version: main-4575.0.0-nightly-20260109-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-10 03:29:03 +00:00
flatcar-ci
9cbec4e64a New version: main-4575.0.0-nightly-20260109-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-09 21:00:22 +00:00
Flatcar Buildbot
ae5122c83a Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-09 16:18:04 +00:00
Flatcar Buildbot
18ac740b35 sys-kernel/coreos-sources: Update from 6.12.62 to 6.12.64
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2026-01-09 07:09:27 +00:00
James Le Cuirot
acc72feb6a
app-containers/accelerated-container-image: Use offline vendor tarball
I have submitted a PR upstream so that they can automatically create a
vendor tarball with each release. In the meantime, I have hosted one in
my Gentoo dev space.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 13:55:16 +00:00
James Le Cuirot
cef9a6a40e
sys-fs/overlaybd: Patch and rework to build entirely offline
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 13:55:15 +00:00
James Le Cuirot
2479cd95a6
dev-libs/rapidjson: Import from Gentoo to build sys-fs/overlaybd offline
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-08 12:25:10 +00:00
flatcar-ci
2d5b140d51 New version: main-4572.0.0-nightly-20260106-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-06 21:00:25 +00:00
James Le Cuirot
fdab8b4d35
coreos-base/misc-files: Drop Ciphers, MACs, KexAlgorithms from sshd conf
Setting an absolute list was preventing newer options from being
enabled, leading to this scary error message from newer clients.

    $ ssh flatcar
    Warning: Permanently added '[127.0.0.1]:2222' (ED25519) to the list of known hosts.
    ** WARNING: connection is not using a post-quantum key exchange algorithm.
    ** This session may be vulnerable to "store now, decrypt later" attacks.
    ** The server may need to be upgraded. See https://openssh.com/pq.html
    Last login: Wed Oct 15 10:05:46 UTC 2025 from 10.0.2.2 on pts/0
    Flatcar Container Linux by Kinvolk beta 4426.1.0 for QEMU

After going through each of the options, the only ones we were adding
above the current 10.2p1 defaults were the diffie-hellman-group KEX
algorithms. These were dropped upstream in 2024 because they are slower
while providing no benefit over other options. The continued presence of
ecdh-sha2-nistp256 ensures compatibility with default clients at least
as far back as 2016.

I think we should just continue to follow the upstream defaults unless
some significant client breakage is reported. They're usually quite
forgiving.

The order of these is significant, and our order did differ from
upstream's slightly, but I trust their order over ours.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2026-01-06 11:55:15 +00:00
flatcar-ci
9733e87a32 New version: main-4571.0.0-nightly-20260105-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-05 21:00:26 +00:00
flatcar-ci
1978d32d1e New version: main-4568.0.0-nightly-20260102-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-03 03:10:52 +00:00
flatcar-ci
8b54e2df6d New version: main-4568.0.0-nightly-20260102-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2026-01-02 21:00:22 +00:00
Flatcar Buildbot
ed29e505e8 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-29 21:00:39 +00:00
flatcar-ci
ee720f941f New version: main-4564.0.0-nightly-20261229-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-29 21:00:26 +00:00
flatcar-ci
41e0f1f574 New version: main-4557.0.0-nightly-20251222-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-22 21:00:24 +00:00
Flatcar Buildbot
c2e3a2ec7b Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-22 13:14:18 +00:00
Flatcar Buildbot
53c272ed2d Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-22 11:26:06 +00:00
flatcar-ci
415fc4ae10 New version: main-4554.0.0-nightly-20251219-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-20 03:02:00 +00:00
flatcar-ci
33e829a160 New version: main-4554.0.0-nightly-20251219-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-19 21:00:23 +00:00
Kai Lueke
b783e3ee91 coreos-base/coreos-init: Add noop systemd-sysupdate transfer config
This pulls in https://github.com/flatcar/init/pull/139 as workaround for
https://github.com/flatcar/flatcar/issues/1979 and should be backported
to Alpha/Beta.

Signed-off-by: Kai Lueke <kailuke@microsoft.com>
2025-12-19 17:53:53 +09:00
flatcar-ci
65938e0ca1 New version: main-4553.0.0-nightly-20251218-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-18 21:00:23 +00:00
Flatcar Buildbot
e946a4cf9f Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-18 12:01:56 +00:00
Flatcar Buildbot
a52db450ea Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-18 09:32:27 +00:00
flatcar-ci
8c5cc3b270 New version: main-4552.0.0-nightly-20251217-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-17 21:00:24 +00:00
Flatcar Buildbot
aac6351af6 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-17 14:47:27 +00:00
James Le Cuirot
7f128bce66
Merge pull request #3524 from timbuchwaldt/main
sys-kernel/coreos-modules: Enable Netkit flag
2025-12-17 10:59:28 +00:00
flatcar-ci
b548c371f8 New version: main-4551.0.0-nightly-20251216-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-16 21:00:31 +00:00
James Le Cuirot
5a0e40ae97
sys-kernel/coreos-sources: Don't add backslashes to UNIPATCH_LIST
It's unnecessary and looks weird.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-16 12:01:59 +00:00
James Le Cuirot
102ffc86fc
sys-kernel/coreos-sources: Drop unnecessary arm64 tools patch
The hv-daemons package has been adjusted instead.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-16 12:01:58 +00:00
James Le Cuirot
71930b71c9
app-emulation/hv-daemons: Don't use kmake to build this
It's essentially a standalone userspace project that happens to live
within the kernel sources. It should not be built like the kernel.

hv_fcopy_daemon was dropped upstream.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-16 12:01:57 +00:00
James Le Cuirot
3d1a2a44bd
app-emulation/hv-daemons: Drop 9999 ebuild
It doesn't make any sense because there is no 9999 version of coreos-sources.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-16 12:01:53 +00:00
James Le Cuirot
b5e9560fba
Simplify kernel directory logic
Having too many variables is confusing, so use the ones already provided
by upstream. linux-info.eclass uses KERNEL_DIR (if set) as the kernel
sources directory and sets KV_DIR to that for use elsewhere. If
KERNEL_DIR is unset, it checks the /usr/src/linux symlink. While we
could rely on the symlink, we want to be sure that coreos-modules and
coreos-kernel are built against the matching kernel version.

KV_OUT_DIR is the kernel output directory. It is automatically set by
linux-info.eclass, and it will never leave it empty.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-12-16 12:01:03 +00:00
Flatcar Buildbot
13e0140350 Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-16 11:48:39 +00:00
James Le Cuirot
4fe5f90ba3
Merge pull request #3561 from flatcar/linux-6.12.62-main
Upgrade Linux Kernel for main from 6.12.61 to 6.12.62
2025-12-16 11:48:25 +00:00
flatcar-ci
6213947267 New version: main-4550.0.0-nightly-20251215-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-15 21:00:32 +00:00
Daniel
d28ece4479 Revert PR #3534 "sysext: Add OS-dependent sysext compression"
Revert PR #3162 "Signed OS-dependent sysexts"

Signed-off-by: Daniel Zatovic <daniel.zatovic@gmail.com>
2025-12-15 17:56:48 +01:00
Flatcar Buildbot
1cb3f7399c sys-kernel/coreos-sources: Update from 6.12.61 to 6.12.62
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-12-13 07:05:25 +00:00
flatcar-ci
4041e4b21a New version: main-4547.0.0-nightly-20251212-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-13 02:31:37 +00:00
flatcar-ci
5528688d0d New version: main-4547.0.0-nightly-20251212-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-12-12 21:00:37 +00:00
Dongsu Park
585f734799
Merge pull request #3545 from flatcar/dongsu/ue-rs-fix-downloadresult
overlay ue-rs: fix download regression by returning Ok
2025-12-12 14:07:15 +01:00
Dongsu Park
3bff39990f
Merge pull request #3495 from flatcar/buildbot/weekly-portage-stable-package-updates-2025-11-17
Weekly portage-stable package updates 2025-11-17
2025-12-12 12:57:27 +01:00