2 ############################################################################
4 # This file is part of the IPFire Firewall. #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 3 of the License, or #
9 # (at your option) any later version. #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
20 # Copyright (C) 2022 IPFire-Team <info@ipfire.org>. #
22 ############################################################################
24 .
/opt
/pakfire
/lib
/functions.sh
25 /usr
/local
/bin
/backupctrl exclude
>/dev
/null
2>&1
29 # Remove old core updates from pakfire cache to save space...
30 for (( i
=1; i
<=$core; i
++ )); do
31 rm -f /var
/cache
/pakfire
/core-upgrade-
*-$i.ipfire
35 /etc
/init.d
/squid stop
36 /usr
/local
/bin
/openvpnctrl
-k
37 /usr
/local
/bin
/openvpnctrl
-kn2n
38 /etc
/init.d
/suricata stop
42 /lib
/firmware
/cxgb
4/t4fw-1.26
.4.0.bin \
43 /lib
/firmware
/cxgb
4/t5fw-1.26
.4.0.bin \
44 /lib
/firmware
/cxgb
4/t6fw-1.26
.4.0.bin \
45 /lib
/firmware
/intel
/ice
/ddp-comms
/ice_comms-1.3
.20.0.pkg \
46 /lib
/firmware
/silabs \
48 /usr
/bin
/dnet-config \
50 /usr
/lib
/libart_lgpl_2.so
* \
52 /usr
/lib
/libdnet.so
* \
53 /usr
/lib
/libevent-1.4.so
* \
54 /usr
/lib
/libevent_core-1.4.so
* \
55 /usr
/lib
/libevent_extra-1.4.so
* \
56 /usr
/lib
/liblber-2.4.so
* \
59 /usr
/lib
/libsolv.so
* \
60 /usr
/lib
/libsolvext.so
* \
62 /usr
/lib
/libusb-0.1.so
* \
65 # Remove netbpm add-on, if installed
66 if [ -e "/opt/pakfire/db/installed/meta-netbpm" ]; then
67 for i
in $
(</opt
/pakfire
/db
/rootfiles
/netbpm
); do
72 /opt
/pakfire
/db
/installed
/meta-netbpm \
73 /opt
/pakfire
/db
/meta
/meta-netbpm \
74 /opt
/pakfire
/db
/rootfiles
/netbpm
79 # update linker config
83 convert-ids-backend-files
85 # Update Language cache
86 /usr
/local
/bin
/update-lang-cache
89 /usr
/local
/bin
/filesystem-cleanup
91 # Delete orphaned Oinkmaster and Suricata default ruleset
93 /usr
/local
/bin
/oinkmaster.pl \
94 /var
/ipfire
/suricata
/oinkmaster.conf \
95 /var
/ipfire
/suricata
/suricata-default-rules.yaml
97 # Apply local configuration to sshd_config
98 /usr
/local
/bin
/sshctrl
100 # Apply sysctl changes
101 /etc
/init.d
/sysctl start
103 # Fix permissions of /etc/sudoers.d/
104 chmod -v 750 /etc
/sudoers.d
105 chmod -v 640 /etc
/sudoers.d
/*
107 # Rebuild initial ramdisk to apply microcode updates
108 dracut
--regenerate-all --force
109 case "$(uname -m)" in
111 mkimage
-A arm
-T ramdisk
-C lzma
-d /boot
/initramfs-
${KVER}-ipfire.img
/boot
/uInit-
${KVER}-ipfire
112 rm /boot
/initramfs-
${KVER}-ipfire.img
115 mkimage
-A arm64
-T ramdisk
-C lzma
-d /boot
/initramfs-
${KVER}-ipfire.img
/boot
/uInit-
${KVER}-ipfire
116 # dont remove initramfs because grub need this to boot.
122 /etc
/init.d
/fcron restart
123 /etc
/init.d
/sshd restart
124 /etc
/init.d
/vnstatd restart
125 /etc
/init.d
/squid start
126 /usr
/local
/bin
/openvpnctrl
-s
127 /usr
/local
/bin
/openvpnctrl
-sn2n
128 /etc
/init.d
/suricata start
130 # This update needs a reboot...
131 touch /var
/run
/need_reboot
134 /etc
/init.d
/fireinfo start
137 # Update grub config to display new core version
138 if [ -e /boot
/grub
/grub.cfg
]; then
139 grub-mkconfig
-o /boot
/grub
/grub.cfg
144 # Don't report the exitcode last command