23004 Commits

Author SHA1 Message Date
Kai Lüke
76039ab99e app-admin/etcd-wrapper: Adjust data dir permissions
Beginning with etcd 3.4 the desired permissions of the data directory
are checked.
The used 755 permissions are not desired and have to be adjusted.
2020-08-12 15:34:47 +02:00
Flatcar Buildbot
6cb09822c9 sys-kernel: Upgrade coreos-kernel 5.4.57 to 5.4.58 2020-08-12 07:19:53 +00:00
Kai Lüke
aaaee0d31e sys-auth/sssd: Apply Flatcar patches 2020-08-11 11:19:01 +02:00
Kai Lüke
612735eced dev-libs/jansson: Import from Gentoo 2020-08-10 23:31:34 +02:00
Kai Lüke
5ff7a3464c sys-auth/sssd: Drop unstable versions 2020-08-10 20:34:12 +02:00
Kai Lüke
38929f12ff sys-auth/sssd: Sync from Gentoo 2020-08-10 20:33:29 +02:00
Kai Lüke
0db0ed1258 Merge pull request #518 from flatcar-linux/linux-5.4.57-main
Upgrade Linux Kernel in main from 5.4.55 to 5.4.57
2020-08-10 13:30:06 +02:00
Flatcar Buildbot
cc4431e91f dev-lang: Upgrade Go 1.13.14 to 1.13.15 2020-08-10 07:25:01 +00:00
Flatcar Buildbot
73fb3512d5 sys-kernel: Upgrade coreos-kernel 5.4.55 to 5.4.57 2020-08-08 07:20:03 +00:00
Kai Lüke
4ef02eb401 eclass/ssl-cert: Sync from Gentoo 2020-08-07 22:31:40 +02:00
Kai Lüke
37d6fdd69f net-nds/openldap: Sync from Gentoo 2020-08-07 22:22:51 +02:00
Kai Lüke
29e522f210 dev-libs/cyrus-sasl: Apply Flatcar patch and drop r4 ebuild 2020-08-07 16:36:58 +02:00
Kai Lüke
7001363e52 dev-libs/cyrus-sasl: Sync from Gentoo 2020-08-07 15:32:07 +02:00
Kai Lüke
3d58e109d8 acct-user/tss: Import from Gentoo 2020-08-07 13:54:40 +02:00
Kai Lüke
40face0d7b acct-group/tss: Import from Gentoo 2020-08-07 13:50:14 +02:00
Kai Lüke
a60f90bd4a Merge pull request #513 from flatcar-linux/kai/include-both-signing-keys
.github: Import second signing key
2020-08-07 13:42:23 +02:00
Kai Lüke
f282ca0fd4 app-crypt/trousers: Apply Flatcar modifications 2020-08-07 13:38:10 +02:00
Kai Lüke
16dbf342bc app-crypt/trousers: Sync from Gentoo 2020-08-07 13:29:26 +02:00
Kai Lüke
df8a5e3754 dev-embedded/u-boot-tools: Sync from Gentoo 2020-08-06 16:36:38 +02:00
Kai Lüke
171e7e21ad .github: Import second signing key
The last cork release was signed with a different key.
Import the key to verify the download.
2020-08-06 12:51:26 +02:00
Kai Lüke
bc11ee282d
Merge pull request #86 from flatcar-linux/kai/nightly-sdk
set_version: Support resolving nightly SDKs
beta-2605.4.0 beta-2605.3.0 beta-2605.2.0 alpha-2605.1.0 alpha-2605.0.0
2020-08-05 22:06:19 +02:00
Kai Lüke
bc594381c6 Overwrite openssl mask in portage-stable
The outdated portage-stable mask file can't be updated until we update
glibc or unmask it. Instead of dealing with glibc masking, just address
the situation of this openssl version being masked in the outdated file.
2020-08-05 21:58:36 +02:00
Kai Lüke
ebe7f74a27 net-misc/openssh: Apply CoreOS changes
- Drop the init.d files.
- Remove the socket unit's rate limiting.

Instead of dropping bindist, enable it with the profiles now so it
doesn't need to be modified on future updates.
2020-08-05 21:57:25 +02:00
Kai Lüke
406ad6140a net-misc/openssh: Sync with Gentoo's latest stable 2020-08-05 21:57:19 +02:00
Kai Lüke
b3c4c2f834 dev-libs/openssl: Apply CoreOS changes
- Drop pkg_postinst.
- Create /etc/ssl with tmpfiles (and package it for the SDK).
2020-08-05 21:50:29 +02:00
Kai Lüke
e752ae84a0 dev-libs/openssl: Sync with Gentoo's latest 1.1.1 stable 2020-08-05 21:50:17 +02:00
Kai Lüke
a87cd173d9 app-crypt/mit-krb5: Fix Python version 2020-08-05 18:52:43 +02:00
Kai Lüke
2e60c26cd3 app-crypt/mit-krb5: Sync with Gentoo's latest stable 2020-08-05 18:52:36 +02:00
Kai Lüke
d731c2b6d7 net-dns/bind-tools: Sync with Gentoo's latest stable 2020-08-05 18:52:31 +02:00
Kai Lüke
2a5d54b54c
set_version: Support resolving nightly SDKs
The nightly SDK builds can be used as source for binary packages for
the SDK chroot which helps to reduce local build times.
Add support for resolving the latest nightly SDK in the set_version
script the same way as resolving board nightly builds.
2020-08-05 17:14:09 +02:00
Sayan Chowdhury
f6a979a364 Merge pull request #511 from flatcar-linux/sayan/systemd-v245-flatcar-sync
sys-apps/systemd: Update systemd to v245.7
2020-08-05 15:25:39 +05:30
Sayan Chowdhury
072ed741b1 sys-apps/systemd: Update systemd to v245.7
Signed-off-by: Sayan Chowdhury <sayan@kinvolk.io>
2020-08-05 15:21:40 +05:30
Kai Lüke
e931f97a79 Merge pull request #506 from flatcar-linux/kai/exclude-weave-from-networkd
coreos-base/coreos-init: Update to exclude weave network devices
2020-08-04 15:10:25 +02:00
Marga Manterola
34f7e426f4
Merge pull request #82 from flatcar-linux/marga-kinvolk/uuid-disk
Stop probing for UUID 00000000-0000-0000-0000-000000000001 in GRUB
alpha-2592.0.0
2020-08-04 11:46:10 +02:00
Marga Manterola
c832af024e grub.cfg: Stop probing for UUID 0x01 2020-08-04 11:45:29 +02:00
Marga Manterola
65977b479e Merge pull request #493 from flatcar-linux/marga-kinvolk/randomize-disk
bootengine: move to version with disk randomization fix
2020-08-04 11:44:22 +02:00
Marga Manterola
64226cd354 bootengine: move to version with disk randomization fix
This includes adding execution permissions to the new disk-uuid script.
2020-08-04 11:42:52 +02:00
Kai Lüke
acf53beabb Merge pull request #510 from flatcar-linux/kai/amazon-aws-agent
Build amazon-ssm-agent package but disable it for now
2020-08-03 19:12:54 +02:00
Kai Lüke
4d826abf41 Build amazon-ssm-agent package but disable it for now
The amazon-ssm-agent package was never built and caused the vm-matrix
job to find no binary package.
Build it as part of build_packages but don't install it on openstack
or brightbox images. The plan is to add it for EC2 but currently the
binaries are too large.
2020-08-03 18:24:12 +02:00
Kai Lüke
03cdfb5bd9 Revert "Build app-emulation/amazon-ssm-agent with EC2 AMI images"
This reverts commit 58c8b0dc393ce08047f7a4f530ed5da9aa205799.
2020-08-03 18:16:38 +02:00
Kai Lüke
e43d79f55a Merge pull request #509 from flatcar-linux/linux-5.4.55-main
Upgrade Linux Kernel in main from 5.4.53 to 5.4.55
2020-08-03 17:41:16 +02:00
Kai Lüke
08ce8054ca
Merge pull request #85 from flatcar-linux/kai/no-rust-recompilation
build_library/toolchain_util.sh: Remove old download code for Rust
2020-08-03 11:28:30 +02:00
Flatcar Buildbot
9fd5a44e39 sys-kernel: Upgrade coreos-kernel 5.4.53 to 5.4.55 2020-08-01 07:18:42 +00:00
Kai Lüke
cfdb7b0ab7
build_library/toolchain_util.sh: Remove old download code for Rust
The SDK now includes a Rust version with the aarch64 cross-compilation
libraries and the toolchain job doesn't build it anymore. Yet it was
still recompiled because the path had changed.
Remove the adjustment of the download URL and any automatic building
of Rust. Just issue a warning so that any problem can be spotted easily.
This change does not affect the SDK bootstrapping (full or just stage4)
but affects ./build_packages and the toolchains job. For the toolchains
job the crossdev setup is missing anyway and rebuilding wouldn't help
but only downloading, yet since in stage4 there are no binary package
URLs at all, it's best to remove this step and if it is needed later,
the warning will help.
2020-07-31 22:54:53 +02:00
Kai Lüke
b1af220ef9 coreos-base/coreos-init: Update to exclude weave network devices
The special weave devices are now excluded from networkd to prevent
interference.
This pulls in
https://github.com/flatcar-linux/init/pull/22
2020-07-31 15:09:47 +02:00
Kai Lüke
ba9192da26 Merge pull request #505 from flatcar-linux/kai/journal-remote-tmpfile
sys-apps/systemd: Add tmpfile directive for /var/log/journal/remote
2020-07-31 11:31:28 +02:00
Kai Lüke
f45f540b65 sys-apps/systemd: Add tmpfile directive for /var/log/journal/remote
The folder /var/log/journal/remote used to be part of the inital rootfs
through a keepdir directive in the build. However, any paths except
/usr are ephemeral and can be deleted at any time and should be recreated
with tmpfile directives. When upstream Gentoo removed the line
"keepdir /var/log/journal/remote" our tests started to fail but in fact
they could have failed earlier if they had tested with Ignition creating
a new root filesystem which lacks the /var/log/journal/remote folder.
Add a directive to create /var/log/journal/remote at runtime in any case.
2020-07-30 19:16:47 +02:00
Kai Lüke
d73b424f61 Merge pull request #496 from flatcar-linux/kai/run-flatcar-tmpfiles-and-cacerts-once
app-misc/ca-certificates|sys-apps/baselayout: Run flatcar-tmpfiles|clean-ca-certificates only once, sys-fs/lvm2: Run lvm2-activation(-early).service only once
2020-07-30 18:14:19 +02:00
Kai Lüke
7b28342265 sys-fs/lvm2: Run lvm2-activation(-early).service only once
Increase the revision and apply a new lvm2-2.02.145-oneshot.patch:
  The lvm2-activation(-early).service was triggered multiple times which
  if done too quickly leads to a failure like this:
  systemd[1]: Finished Activation of LVM2 logical volumes.
  systemd[1]: lvm2-activation-early.service: Start request repeated too quickly.
  systemd[1]: lvm2-activation-early.service: Failed with result 'start-limit-hit'.
  Set RemainAfterExit=yes as done for the other oneshot services to
  prevent the unit from running multiple times in a row and hitting the
  restart limit.
The patch was sent to upstream lvm-devel@redhat.com
2020-07-30 18:11:37 +02:00
Kai Lüke
4ac7513875 app-misc/ca-certificates|sys-apps/baselayout: Run flatcar-tmpfiles|clean-ca-certificates only once
The flatcar-tmpfiles and clean-ca-certificates services were run
many times and finally failed to run because they were spawned too
often during the allowed time period.
Mark them as active after they ran once. Also ensure that when they
run all mounts are ready.
Pulls in https://github.com/flatcar-linux/baselayout/pull/4
2020-07-30 18:11:37 +02:00