33488 Commits

Author SHA1 Message Date
Flatcar Buildbot
755e2b84cd
sys-kernel/coreos-firmware: Update from 20251021 to 20251111
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-26 13:46:46 +01:00
James Le Cuirot
24f38bee51
Merge pull request #3511 from flatcar/linux-6.12.59-main
Upgrade Linux Kernel for main from 6.12.58 to 6.12.59
2025-11-25 14:37:10 +00:00
James Le Cuirot
f007107a4c
Merge pull request #3513 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-11-25 14:15:46 +00:00
Flatcar Buildbot
1feb53d91a Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-25 14:07:49 +00:00
James Le Cuirot
ed064d8943
Merge pull request #3505 from flatcar/cacerts-3.118.1-main
Update ca-certificates in main from 3.117 to 3.118.1
2025-11-25 14:07:34 +00:00
James Le Cuirot
f7ed772ffc
Merge pull request #3500 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-11-25 09:18:24 +00:00
Flatcar Buildbot
f86522aa10 sys-kernel/coreos-sources: Update from 6.12.58 to 6.12.59
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-25 07:06:12 +00:00
Flatcar Buildbot
4158576088 app-misc/ca-certificates: Update from 3.117 to 3.118.1
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-24 07:11:24 +00:00
Flatcar Buildbot
9f6a5504ff Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-22 02:29:31 +00:00
flatcar-ci
a37789be1b New version: main-4526.0.0-nightly-20251121-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-22 02:29:14 +00:00
flatcar-ci
1289b297f0 New version: main-4526.0.0-nightly-20251121-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-21 21:00:30 +00:00
Dongsu Park
e03c86c017
Merge pull request #3453 from flatcar/buildbot/monthly-glsa-metadata-updates-2025-11-01
Monthly GLSA metadata 2025-11-01
2025-11-21 16:40:21 +01:00
Flatcar Buildbot
8274cf7d8f portage-stable/metadata: Monthly GLSA metadata updates
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
Signed-off-by: Dongsu Park <dongsu@dpark.io>
2025-11-21 12:15:27 +01:00
flatcar-ci
74fb20a470 New version: main-4525.0.0-nightly-20251120-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-20 21:00:29 +00:00
Daniel
f05097d82f
Fix kernel module signing with ephemeral keys for official builds (#3493)
* sdk: Fix ephemeral key directory paths baked into container images

The SDK container build process was persisting temporary directory
paths for module signing keys into /home/sdk/.bashrc. This caused
all container instances to share the same ephemeral key location.

Fixed by:
- Runtime check in sdk_entry.sh to recreate stale temp directories
- Build-time cleanup in Dockerfiles to remove the variables

Each container instance now gets unique temporary directories.

Signed-off-by: Daniel Zatovic <daniel.zatovic@gmail.com>

* sdk_entry: use persistent module signing keys for unofficial builds

For official builds (COREOS_OFFICIAL=1), continue using ephemeral
temporary directories for module signing keys.

For unofficial/development builds, use a persistent directory at
/mnt/host/source/.module-signing-keys to preserve keys across
container restarts.

Signed-off-by: Daniel Zatovic <daniel.zatovic@gmail.com>

---------

Signed-off-by: Daniel Zatovic <daniel.zatovic@gmail.com>
2025-11-20 09:56:49 +01:00
flatcar-ci
72a74fdce7 New version: main-4524.0.0-nightly-20251119-0830
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-19 08:30:44 +00:00
Mathieu Tortuyaux
fdfc391f5e
Merge pull request #3429 from flatcar/tormath1/bincache
ci-config: use new bincache server
2025-11-18 17:58:21 +01:00
James Le Cuirot
0547ba5ecc
Merge pull request #3496 from flatcar/mantle-update-main
Upgrade mantle container image to latest HEAD in main
2025-11-18 09:15:18 +00:00
Flatcar Buildbot
ce578cce4f Update mantle container image to latest HEAD
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-18 00:57:23 +00:00
flatcar-ci
e196336c82 Revert failed version back to 4519.0.0+nightly-20251114-2100 2025-11-18 00:57:09 +00:00
flatcar-ci
0332395383 New version: main-4522.0.0-nightly-20251117-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-17 21:00:30 +00:00
flatcar-ci
a23d816108 New version: main-4519.0.0-nightly-20251114-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-15 02:23:51 +00:00
flatcar-ci
764988d84d New version: main-4519.0.0-nightly-20251114-2100-INTERMEDIATE
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-14 21:00:32 +00:00
Krzesimir Nowak
891c871a6c
Merge pull request #3494 from flatcar/krnowak/add-missing-packages-to-automation
.github: Add more packages to automation
2025-11-14 16:00:41 +01:00
James Le Cuirot
129c7714fe
Merge pull request #3489 from flatcar/linux-6.12.58-main
Upgrade Linux Kernel for main from 6.12.54 to 6.12.58
2025-11-14 14:35:27 +00:00
James Le Cuirot
34de824d5f
Merge pull request #3491 from flatcar/chewi/gha-pr-command-logic
github: Fix PR command dispatcher logic so it doesn't always trigger
2025-11-14 14:00:13 +00:00
Krzesimir Nowak
dda87a035d .github: Add more packages to automation
Seems like I forgot to do it when I added them to portage-stable.

Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-14 14:35:31 +01:00
James Le Cuirot
d3c482b1fe
Merge pull request #3492 from flatcar/chewi/fix-modprobe-via-udevd-changelog
changelog: Add missing entry for recent sysext kernel module loading fix
2025-11-14 12:46:11 +00:00
James Le Cuirot
754baf5a9a
changelog: Add missing entry for recent sysext kernel module loading fix
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-11-14 11:15:08 +00:00
James Le Cuirot
3faad0b5d8
github: Fix PR command dispatcher logic so it doesn't always trigger
Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-11-14 10:22:19 +00:00
Flatcar Buildbot
00479cf02d sys-kernel/coreos-sources: Update from 6.12.54 to 6.12.58
Signed-off-by: Flatcar Buildbot <buildbot@flatcar-linux.org>
2025-11-14 07:05:47 +00:00
flatcar-ci
7ec9fa3ec2 New version: main-4518.0.0-nightly-20251113-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-13 21:00:28 +00:00
Mathieu Tortuyaux
2930d06948
Merge pull request #3482 from flatcar/tormath1/mirror
ci/release: copy secondary artifacts from bincache
2025-11-13 17:02:38 +01:00
Mathieu Tortuyaux
ca2545fbf3
ci/config: remove RELEASES_SERVER
This does not seem to be used anywhere here and can be misleading

Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2025-11-13 15:54:16 +01:00
Mathieu Tortuyaux
06efdb8b21
ci/release: copy secondary artifacts from bincache
this logic takes care of copying binary packages, SDK and packages
containers to cloudflare bucket in the `r2:flatcar/mirror/` location

Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2025-11-13 15:53:42 +01:00
Krzesimir Nowak
9a00daf2c3
Merge pull request #3485 from flatcar/krnowak/packages-cleanup
portage-stable: Drop unused packages
2025-11-13 14:32:09 +01:00
Krzesimir Nowak
6fb2e9883b
Merge pull request #3478 from flatcar/krnowak/fix-sssd
overlay coreos/config: Keep ldb modules
2025-11-13 13:18:20 +01:00
James Le Cuirot
9d0aee7edf
Merge pull request #3479 from flatcar/chewi/sysext-no-debug
build_library: Drop debug symbols and other noise from some sysexts
2025-11-13 12:05:21 +00:00
James Le Cuirot
b930444366
build_library: Drop debug symbols and other noise from some sysexts
These were present in containerd, incus, and overlaybd.

Also restore SLSA to the podman sysext as we normally include this.

Signed-off-by: James Le Cuirot <jlecuirot@microsoft.com>
2025-11-13 10:46:36 +00:00
flatcar-ci
ea1706c17d Revert failed version back to 4516.0.0+nightly-20251111-2100 2025-11-13 00:15:01 +00:00
flatcar-ci
b15c53ea85 New version: main-4517.0.0-nightly-20251112-2100
Signed-off-by: flatcar-ci <infra+ci@flatcar-linux.org>
2025-11-12 21:00:29 +00:00
Krzesimir Nowak
5d493904b6
Merge pull request #1706 from flatcar/krnowak/pam
Move sys-libs/pam to portage-stable
2025-11-12 18:07:23 +01:00
Krzesimir Nowak
eb522c7085 changelog: Add entries
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
9c606eacf6 build_packages: Document another dep loop
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
bcde678495 build_packages: Break a new dep loop
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
46b966ce2e .github: Sort entries in automation list
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
b9b35678c1 .github: Add app-text/docbook-xsl-ns-stylesheets to automation
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
9ba0af29bf app-text/docbook-xsl-ns-stylesheets: Add from Gentoo
It's from Gentoo commit 0ad96e879b651cc7e8214159d5841d6b633bef8a.

Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
009df56c4f overlay coreos-base/oem-vmware: Do not mangle pam files
This already should be taken care of by open-vm-tools post install
hooks.

Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00
Krzesimir Nowak
318e6af8fc overlay coreos/config: Add vendoring of PAM files to a couple of packages
Signed-off-by: Krzesimir Nowak <knowak@microsoft.com>
2025-11-12 18:04:49 +01:00