14983 Commits

Author SHA1 Message Date
Mathieu Tortuyaux
a2e46ed803 Merge pull request #1699 from JAORMX/containerd-selinux
containerd: Enable SELinux labeling support by default
2022-03-08 18:02:28 +01:00
Juan Antonio Osorio
3b491d97b6 Added changelog entry for SELinux enablement in containerd
Signed-off-by: Juan Antonio Osorio <juan.osoriorobles@eu.equinix.com>
2022-03-08 18:07:00 +02:00
Jeremi Piotrowski
debf700a83 coreos-base/coreos: remove rng-tool dependency
rng-tools does not appear to be necessary for booting in virtual machine
environments in 2022. Back in the day the boot process would block if
there was not enough entropy to seed the system random pool, but over
the years the linux kernel made sure that the pool is force seeded if
userspace does not do so one it's own. Remove rng-tool as it is not
needed and it would require work to make sure it works (detection of
tpm/hwrng/intel cpu instructions).
2022-03-08 16:00:01 +01:00
Jeremi Piotrowski
a3b04c4f02 add former 'pro' packages to arm64 board/coreos dependencies
flatcar-eks/nvidia-drivers/nvidia-metadata are now required to build
AWS/Azure images on all architectures, so we need the packages to not be
amd64-only dependencies of board-packages or coreos any longer.
2022-03-08 10:57:12 +01:00
Jeremi Piotrowski
ec88babf35 x11-drivers/nvidia-drivers: add runtime dependency on nvidia-metadata
setup-nvidia requires the nvidia-metadata file.
2022-03-08 10:57:12 +01:00
Jeremi Piotrowski
a972428590 x11-drivers/nvidia-(drivers|metadata): keyword for arm64
coreos-base/oem-azure now requires systemd units installed by
nvidia-drivers, so the nvidia-drivers package needs to be available for
both architectures. Nvidia-drivers depends on nvidia-metadata so the
same applies.

Signed-off-by: Jeremi Piotrowski <jpiotrowski@microsoft.com>
2022-03-08 10:57:12 +01:00
Juan Antonio Osorio
333c985cad containerd: Enable SELinux labeling support by default
This enables containerd to do appropriate SELinux labeling of containers
and files by default. This should not be problematic as Flatcar ships with
SELinux permissive by default.

Signed-off-by: Juan Antonio Osorio <juan.osoriorobles@eu.equinix.com>
2022-03-08 11:10:02 +02:00
Jeremi Piotrowski
b0bde5635a Merge pull request #1697 from flatcar-linux/go-1.17.8-main
Upgrade Go in main from 1.17.7 to 1.17.8
2022-03-08 08:48:30 +01:00
Mathieu Tortuyaux
d4ce290fef changelog: add entries
Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
Co-authored-by: Kai Lüke <pothos@users.noreply.github.com>
2022-03-07 18:32:45 +01:00
Mathieu Tortuyaux
f383ffeac1 coreos-base/coreos-init: enable enable-oem-cloudinit
Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2022-03-07 18:17:36 +01:00
Mathieu Tortuyaux
4f9b1e9e5a coreos-base/oem: remove default.ign
With ignitionv3, there is no more `default.ign` loaded configuration. We
can safely remove this configuration since it won't be loaded anyway.

oem-cloudinit will be conditionally enabled based on `ignition`
execution result.

Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2022-03-07 18:17:36 +01:00
Mathieu Tortuyaux
05d1141214 sys-kernel/bootengine: update commit ID
Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2022-03-07 18:17:36 +01:00
Mathieu Tortuyaux
57461c606c sys-apps/ignition: bump commit ID
it mainly brings V3 support on top of V2 support for Ignition and ensure
backward compatibility with existing integration.

Signed-off-by: Mathieu Tortuyaux <mathieu@kinvolk.io>
2022-03-07 18:17:36 +01:00
Flatcar Buildbot
2c10f4ecd8 dev-lang: Upgrade Go 1.17.7 to 1.17.8 2022-03-07 07:31:06 +00:00
Flatcar Buildbot
d89b98ad6e app-misc: Upgrade ca-certificates 3.75 to 3.76 2022-03-07 07:24:05 +00:00
flatcar-ci
05ae47afd7 New version: sdk-3170.0.0-nightly-20220306-0139 2022-03-06 04:46:43 +00:00
Flatcar Buildbot
2d04a88857 app-emulation: Upgrade Containerd 1.6.0 to 1.6.1 2022-03-04 08:23:25 +00:00
flatcar-ci
44f1275126 New version: sdk-3168.0.0-nightly-20220304-0139 2022-03-04 04:53:45 +00:00
Sayan Chowdhury
f2d24968a4 Merge pull request #1648 from flatcar-linux/sayan/update-timezone-data-2021a
sys-libs/timezone-data: Sync with Gentoo upstream
2022-03-03 14:36:40 +05:30
Sayan Chowdhury
3466931d5e changelog: Add the entry for the timezone-data 2021a
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2022-03-03 14:34:16 +05:30
Sayan Chowdhury
3c0597b403 sys-libs/timezone-data: Apply Flatcar patches
Recreate the old posix symlink for compatibility, and drop all the
pkg functions that maintain /etc/localtime since we default to UTC.

Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2022-03-03 14:34:16 +05:30
Sayan Chowdhury
30ef5091b3 sys-libs/timezone-data: Sync with Gentoo upstream
upstream sync ref
e13124464c

Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2022-03-03 14:34:13 +05:30
flatcar-ci
7755567f31 New version: sdk-3167.0.0-nightly-20220303-0139 2022-03-03 05:00:50 +00:00
Krzesimir Nowak
b36a5b1630 dev-perl/Unicode-EastAsianWidth: Sync with gentoo
It's from gentoo commit 8f7195b24e8c4a475954cc3afcf6b9d26a8250d7.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
ee84550a81 sys-libs/efivar: Sync with gentoo
It's from gentoo commit 61b08b5693a678f15e7858ed5bb11974a5565878.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
9c48249fce app-arch/lzop: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
14d0dd2d54 virtual/libintl: Sync with gentoo
It's from gentoo commit 0554ed55a8b2e7431edf0ebd494708d52f43218d.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
568fceea17 dev-libs/npth: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
5164ff2142 app-eselect/eselect-pinentry: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:46 +01:00
Krzesimir Nowak
1f395dd884 net-misc/whois: Sync with gentoo
It's from gentoo commit 4553005e06139057d25c7e95bda6c810ab2fa822.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
b088cf53ba dev-libs/libksba: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
41429f882a net-nds/rpcbind: Sync with gentoo
It's from gentoo commit d6d8592bb51ceea8711a81d3d298c785e557fbea.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
9070c5cf05 app-vim/gentoo-syntax: Sync with gentoo
It's from gentoo commit 031b17f949592f59569fd40ffe201d179f8374f4.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
8838cc1c75 virtual/udev: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
63472df287 sys-boot/efibootmgr: Sync with gentoo
It's from gentoo commit 07fe570129474ddf1c240ce6f80cd57aa7f7471e.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
15105f14e7 virtual/krb5: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
a74555410e dev-perl/Text-Unidecode: Sync with gentoo
It's from gentoo commit 6a36f6e69140081b996eab9ebe383b10586af5bb.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
ff3da333a0 net-misc/socat: Sync with gentoo
It's from gentoo commit 759bceb81f9e6a4d46011e361b206ac9609be989.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
ac752cbd53 dev-util/checkbashisms: Sync with gentoo
It's from gentoo commit 0eb3d975d176139680938a96eb4dbc5619074b71.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
c870e170f1 dev-perl/Locale-gettext: Sync with gentoo
It's from gentoo commit 4ee52a1e1eae8bad02d024e6c65a2d16c667d302.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
59dafb77b1 dev-libs/libevent: Sync with gentoo
It's from gentoo commit 18aa581b9adb4c9f422eea84fc03a85244454482.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
96f37c9df3 sys-fs/dosfstools: Sync with gentoo
It's from gentoo commit 42e19e4c85605ef8d6c12ca658def9d7fd3934ab.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
6529fe5499 virtual/libusb: Sync with gentoo
It's from gentoo commit 38b155fa1bf907617067c98eb4ba3a5d0790eb1a.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
5b744feaeb sys-block/thin-provisioning-tools: Sync with gentoo
It's from gentoo commit 5d38d849bb3a5088efda1e6626690b59361b938c.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
1ac88cffab sys-fs/lsscsi: Sync with gentoo
It's from gentoo commit 661815392d86cd815124d0980c693a5498141480.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
b74fad51e0 dev-libs/libpipeline: Sync with gentoo
It's from gentoo commit f4b02380c6eb5d4829d3909694a93566b789e5d6.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
488f358c81 sys-apps/man-db: Sync with gentoo
It's from gentoo commit 7c7891328969297f2f27f6931898211a6b14dd85.
2022-03-02 19:39:45 +01:00
Krzesimir Nowak
7463f454ae Merge pull request #1678 from flatcar-linux/krnowak/pkg-updates-2016
Accept keyword cleanup for packages from 2016
2022-03-02 19:38:59 +01:00
Kai Lüke
a0378f9338 Merge pull request #1682 from flatcar-linux/kai/revert-ipsec-change
sys-kernel: Revert change to forbid using xfrm id 0
2022-03-02 17:49:40 +01:00
Kai Lueke
5cbb7908de sys-kernel: Revert change to forbid using xfrm id 0 in state
The change broke userspace (e.g., Cilium is affected because it used
id 0 for the dummy state https://github.com/cilium/cilium/pull/18789)
and we decided to revert it to give the affected software more time
to adapt (cf. https://marc.info/?t=164607426900002&r=1&w=2).
2022-03-02 17:48:30 +01:00