2 ############################################################################
4 # This file is part of the IPFire Firewall. #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 3 of the License, or #
9 # (at your option) any later version. #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
20 # Copyright (C) 2022 IPFire-Team <info@ipfire.org>. #
22 ############################################################################
24 .
/opt
/pakfire
/lib
/functions.sh
25 /usr
/local
/bin
/backupctrl exclude
>/dev
/null
2>&1
30 # Set last succesfull installed core.
31 echo $
(($core-1)) > /opt
/pakfire
/db
/core
/mine
32 # force fsck at next boot, this may fix free space on xfs
34 # don't start pakfire again at error
35 killall
-KILL pak_update
36 /usr
/bin
/logger
-p syslog.emerg
-t ipfire \
37 "core-update-${core}: $1"
41 # Remove old core updates from pakfire cache to save space...
42 for (( i
=1; i
<=$core; i
++ )); do
43 rm -f /var
/cache
/pakfire
/core-upgrade-
*-$i.ipfire
48 # Backup uEnv.txt if exist
49 if [ -e /boot
/uEnv.txt
]; then
50 cp -vf /boot
/uEnv.txt
/boot
/uEnv.txt.org
53 # Do some sanity checks.
59 exit_with_error
"ERROR cannot update. No IPFire Kernel." 1
63 # Check diskspace on root
64 ROOTSPACE
=`df / -Pk | sed "s| * | |g" | cut -d" " -f4 | tail -n 1`
66 if [ $ROOTSPACE -lt 100000 ]; then
67 exit_with_error
"ERROR cannot update because not enough free space on root." 2
72 # Remove the old kernel
73 rm -rf /boot
/System.map-
*
75 rm -rf /boot
/ipfirerd-
*
76 rm -rf /boot
/initramfs-
*
77 rm -rf /boot
/vmlinuz-
*
85 /etc
/init.d
/collectd stop
86 /etc
/init.d
/suricata stop
91 # update linker config
94 # Update Language cache
95 /usr
/local
/bin
/update-lang-cache
98 /usr
/local
/bin
/filesystem-cleanup
100 # Run convert script for IDS multiple providers
101 /usr
/sbin
/convert-ids-multiple-providers
103 # Add configuration settings to optionsfw if they are missing
104 if [ "$(grep "^DROPHOSTILE
" /var/ipfire/optionsfw/settings)" == "" ]; then
105 echo "DROPHOSTILE=off" >> /var
/ipfire
/optionsfw
/settings
107 if [ "$(grep "^DROPSPOOFEDMARTIAN
" /var/ipfire/optionsfw/settings)" == "" ]; then
108 echo "DROPSPOOFEDMARTIAN=on" >> /var
/ipfire
/optionsfw
/settings
110 if [ "$(grep "^LOGDROPCTINVALID
" /var/ipfire/optionsfw/settings)" == "" ]; then
111 echo "LOGDROPCTINVALID=on" >> /var
/ipfire
/optionsfw
/settings
114 # Apply sysctl changes
115 /etc
/init.d
/sysctl start
118 /etc
/init.d
/firewall restart
119 /etc
/init.d
/collectd start
120 /etc
/init.d
/squid restart
121 /etc
/init.d
/suricata start
123 # remove lm_sensor config after collectd was started
124 # to reserch sensors at next boot with updated kernel
125 rm -f /etc
/sysconfig
/lm_sensors
127 # Upadate Kernel version uEnv.txt
128 if [ -e /boot
/uEnv.txt
]; then
129 sed -i -e "s/KVER=.*/KVER=${KVER}/g" /boot
/uEnv.txt
132 # call user update script (needed for some arm boards)
133 if [ -e /boot
/pakfire-kernel-update
]; then
134 /boot
/pakfire-kernel-update
${KVER}
137 # This update needs a reboot...
138 touch /var
/run
/need_reboot
141 /etc
/init.d
/fireinfo start
144 # Update grub config to display new core version
145 if [ -e /boot
/grub
/grub.cfg
]; then
146 grub-mkconfig
-o /boot
/grub
/grub.cfg
151 # Don't report the exitcode last command