22984 Commits

Author SHA1 Message Date
Nick Owens
8b0a3e45ff Merge pull request #369 from mischief/openssl
bump(dev-libs/openssl): sync with upstream
2015-12-03 14:02:09 -08:00
Nick Owens
96b0f40ce9 profiles/coreos/base: use openssl 1.0.2e for security fixes 2015-12-03 13:58:56 -08:00
Nick Owens
740b2c2a41 bump(dev-libs/openssl): sync with upstream 2015-12-03 13:57:22 -08:00
Nick Owens
22e5f57cf6 bump(app-misc/c_rehash): sync with upstream 2015-12-03 13:57:22 -08:00
Geoff Levand
54563d11c8 app-crypt/trousers: Set arm64 keyword
Signed-off-by: Geoff Levand <geoff@infradead.org>
2015-12-03 13:02:50 -08:00
Vito Caputo
bce454f301 coreos-kernel: populate /lib/modules/$(uname -r)/build
With this changeset one can build a kernel module out-of-tree in a dev
image in the usual fashion:
```
 ~# cat Makefile
 obj-m := noop.o
 ~# make -C /lib/modules/4.3.0-coreos-r1/build M=$PWD
 make: Entering directory '/usr/lib64/modules/4.3.0-coreos-r1/build'
   CC [M]  /tmp/noop/noop.o
   Building modules, stage 2.
   MODPOST 1 modules
   CC      /tmp/noop/noop.mod.o
   LD [M]  /tmp/noop/noop.ko
 make: Leaving directory '/usr/lib64/modules/4.3.0-coreos-r1/build'
 ~#
```

/lib/modules/$(uname -r)/source is now populated with a stripped source
tree (headers, scripts, Makefiles...), prod images may build out-of-tree
modules by simply bind mounting these directories into a toolchain
container without needing kernel source.

Note that this build directory is being populated from the _actual_
$KBUILD_OUTPUT used in producing the kernel in the image, which has simply
been `make clean`ed and stripped down:

```
 /lib/modules/4.3.0-coreos-r1/build# ls -la
 drwxr-xr-x 5 root root   4096 Nov 25 11:56 .
 drwxr-xr-x 4 root root   4096 Nov 25 11:56 ..
 -rw-r--r-- 1 root root 108265 Nov 25 11:52 .config
 -rw-r--r-- 1 root root      2 Nov 25 11:55 .version
 -rw-r--r-- 1 root root    578 Nov 25 11:54 Makefile
 -rw-r--r-- 1 root root 617170 Nov 25 11:55 Module.symvers
 drwxr-xr-x 3 root root   4096 Nov 25 11:23 arch
 -rw-r--r-- 1 root root  23280 Nov 25 11:52 defconfig
 drwxr-xr-x 4 root root   4096 Nov 25 11:23 include
 drwxr-xr-x 6 root root   4096 Nov 25 11:56 scripts
 lrwxrwxrwx 1 root root      9 Nov 25 11:56 source -> ../source
 /lib/modules/4.3.0-coreos-r1/build#
```
2015-12-03 12:44:11 -08:00
Michael Marineau
dca121d83f Merge pull request #487 from marineam/sdk
build_image: fix generation of version.txt
2015-12-02 13:03:18 -08:00
Michael Marineau
f6064d52e8 build_image: fix generation of version.txt
The generation of version.txt was the only thing depending on sourcing
the deprecated BUILD, BRANCH, and PATCH values from version.txt which
common.sh no longer does since 0b6acf86. Derive them instead.
2015-12-02 12:32:34 -08:00
Alex Crawford
c9e090f5e0 Merge pull request #1674 from aaronlevy/kubelet-v1.1.2
Bump kubelet to v1.1.2
2015-12-01 20:14:49 -08:00
Aaron Levy
65b17c250b app-admin/kubelet: bump to v1.1.2 2015-12-01 15:52:45 -08:00
Alex Crawford
361d71a5c1 Merge pull request #1670 from mjg59/tpm
Fix permissions on tcsd config
2015-12-01 15:37:18 -08:00
Aaron Levy
dfd8821cce app-admin/kubelet: remove upsteam-merged patch
Included as of v1.1.1:
6bd7899593
2015-12-01 15:35:49 -08:00
Nick Owens
156f1e2397 Merge pull request #1673 from mischief/linux-sata-svw
sys-kernel/coreos-kernel: enable CONFIG_SATA_SVW
2015-12-01 15:14:24 -08:00
Nick Owens
5329163994 sys-kernel/coreos-kernel: enable CONFIG_SATA_SVW
fixes coreos/bugs#1006
2015-12-01 15:05:04 -08:00
Michael Marineau
37a2a0319a Merge pull request #486 from marineam/sdk
enter_chroot: always bind $GNUPGHOME to the default path
2015-12-01 14:44:35 -08:00
Nick Owens
f5ba393357 Merge pull request #1672 from mischief/openssh-7
openssh 7.1 with ssh-dss
2015-12-01 14:38:00 -08:00
Michael Marineau
ec58813496 enter_chroot: always bind $GNUPGHOME to the default path
The path of $GNUPGHOME outside the chroot may not really make sense
inside the chroot. Although that's probably not a big deal there's no
need to keep the outside value. Instead just bind it to the usual spot.
2015-12-01 14:34:43 -08:00
Michael Marineau
a20129cafb Merge pull request #485 from marineam/sdk
common: set properly COREOS_SDK_VERSION
2015-12-01 12:50:34 -08:00
Michael Marineau
14646f7900 common: set properly COREOS_SDK_VERSION
Broken in 0b6acf86 when we started selectively reading version.txt
2015-12-01 12:46:01 -08:00
Michael Marineau
14ada5cfe7 Merge pull request #483 from marineam/jenkins
Updates for jenkins builds
2015-12-01 12:03:13 -08:00
Alex Crawford
8726e115b4 Merge pull request #484 from crawford/nixos
sdk_lib: cleanup to support non-standard environs
2015-12-01 09:14:24 -08:00
Nick Owens
8bc6d72578 net-misc/openssh: add patch to re-enable ssh-dss keys in openssh 7+ 2015-11-30 18:58:21 -08:00
Alex Crawford
47d237ecab sdk_lib: cleanup to support non-standard environs 2015-11-30 18:15:42 -08:00
Nick Owens
ac5c983c77 Revert "profiles/coreos/base: mask openssh 7.0+; it will disable ssh-dss keys"
This reverts commit 5cf781a4d97830c3b917fd4c8fe0a00a665a7227.
2015-11-30 18:02:27 -08:00
Nick Owens
79d0df02d3 net-misc: import openssh-7.1_p1-r2 from portage-stable 2015-11-30 18:02:27 -08:00
Matthew Garrett
6bd32bdfaf Fix permissions on tcsd config
Trousers is very paranoid about file permissions, so ensure that we install
them correctly.
2015-11-30 16:47:10 -08:00
Michael Marineau
b43cc62589 Merge pull request #1671 from marineam/repo
repo: update repo wrapper script to 1.22
2015-11-30 16:37:17 -08:00
Michael Marineau
4be7d9f4b8 repo: update repo wrapper script to 1.22 2015-11-30 16:20:49 -08:00
Michael Marineau
0b6acf8605 common: add support for using COREOS_BUILD_ID from the environment
This allows build systems to export COREOS_BUILD_ID, making it practical
to map built images to the job that created them.
2015-11-30 09:29:24 -08:00
Michael Marineau
39a3a48a18 enter_chroot: add support for passing through GNUPGHOME
When running under jenkins the $GNUPGHOME may be located under the
current build directory instead of $HOME to avoid conflicting with other
jobs on the same build host.
2015-11-29 14:05:08 -08:00
Nick Owens
b789885be4 Merge pull request #1667 from mischief/mask-openssh-7
profiles/coreos/base: mask openssh 7.0+; it will disable ssh-dss keys
2015-11-25 13:44:09 -08:00
Nick Owens
6564ec04e7 profiles/coreos/base: mask openssh 7.0+; it will disable ssh-dss keys 2015-11-25 13:40:01 -08:00
Alex Crawford
30207d89a0 Merge pull request #1666 from crawford/cloudinit
coreos-base/coreos-cloudinit: bump to v1.8.1
2015-11-25 11:48:03 -08:00
Alex Crawford
09331604b9 coreos-base/coreos-cloudinit: bump to v1.8.1 2015-11-25 11:45:25 -08:00
Alex Crawford
f9ae48b8d7 Merge pull request #1665 from crawford/docker
app-emulation/docker: bump to v1.9.1 with backport
2015-11-25 11:15:36 -08:00
Alex Crawford
c8e282fd42 app-emulation/docker: bump to v1.9.1 with backport 2015-11-25 11:00:03 -08:00
Michael Marineau
c2c7b70818 docker: sync ebuild with upstream changes 2015-11-25 10:59:40 -08:00
Alex Crawford
cf07be05df Merge pull request #1664 from crawford/metadata
coreos-base/coreos-metadata: bump to v0.3.0
2015-11-25 10:54:53 -08:00
Alex Crawford
97f7075786 coreos-base/coreos-metadata: bump to v0.3.0 2015-11-25 10:48:32 -08:00
Nick Owens
ecdbcdf886 Merge pull request #367 from mischief/util-linux
bump(sys-apps/util-linux): sync with upstream
2015-11-24 14:06:02 -08:00
Michael Marineau
5865c17040 Merge pull request #368 from quantum/qemu-updates
bump(sys-firmware/seabios): sync with upstream
2015-11-24 14:05:15 -08:00
Michael Marineau
7cea7f4d6f Merge pull request #481 from marineam/prune
prune_images: keep newer-than-latest builds
2015-11-24 14:03:46 -08:00
Alex Crawford
227aa30a3e Merge pull request #1662 from crawford/etcd
dev-db/etcd: bump to v2.2.2
2015-11-24 13:51:47 -08:00
Michael Marineau
9a138677a8 prune_images: keep newer-than-latest builds
This may include recent failures or builds derrived from latest, such as
those made by image_set_group.
2015-11-24 13:40:09 -08:00
Alex Crawford
934e61efb6 dev-db/etcd: bump to v2.2.2 2015-11-24 12:11:52 -08:00
Alex Crawford
638dc6bc82 Merge pull request #1652 from crawford/bootengine
sys-kernel: move dracut build to coreos-kernel
2015-11-23 17:47:02 -08:00
Alex Crawford
e137cb5f06 sys-kernel: move dracut build to coreos-kernel
Rather than building the initramfs in the postinst of bootengine, this
moves it to the setup of coreos-kernel. This has the advantage of
failing a build if dracut fails and ensuring that the latest initramfs
makes it into every kernel build.
2015-11-23 17:35:56 -08:00
Nick Owens
1f1fba1168 Merge pull request #1655 from steveeJ/rkt-0.11
app-emulation/rkt: bump version 0.9.0 -> 0.11.0
2015-11-23 17:31:24 -08:00
Nick Owens
52e9d9c761 Merge pull request #1658 from mischief/coreos-sources-4.3.0
linux 4.3.0
2015-11-23 12:35:46 -08:00
Geoff Levand
2ca37228ce Merge pull request #1651 from glevand/for-merge-docker
app-emulation/docker: Set libdm_no_deferred_remove
2015-11-23 12:26:52 -08:00