]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blame - config/rootfiles/core/45/update.sh
core45: disable snort packet decode alerts also on update.
[people/pmueller/ipfire-2.x.git] / config / rootfiles / core / 45 / update.sh
CommitLineData
512d54a9
CS
1#!/bin/bash
2############################################################################
3# #
4# This file is part of the IPFire Firewall. #
5# #
6# IPFire is free software; you can redistribute it and/or modify #
7# it under the terms of the GNU General Public License as published by #
8# the Free Software Foundation; either version 3 of the License, or #
9# (at your option) any later version. #
10# #
11# IPFire is distributed in the hope that it will be useful, #
12# but WITHOUT ANY WARRANTY; without even the implied warranty of #
13# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14# GNU General Public License for more details. #
15# #
16# You should have received a copy of the GNU General Public License #
17# along with IPFire; if not, write to the Free Software #
18# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
19# #
20# Copyright (C) 2010 IPFire-Team <info@ipfire.org>. #
21# #
22############################################################################
23#
24. /opt/pakfire/lib/functions.sh
25/usr/local/bin/backupctrl exclude >/dev/null 2>&1
26
fc7d153f
AF
27#
28# Remove core updates from pakfire cache to save space...
bd3c8b59 29rm -f /var/cache/pakfire/core-upgrade-*.ipfire
512d54a9
CS
30#
31#Stop services
8dbba0e4
CS
32echo Stopping Proxy
33/etc/init.d/squid stop 2>/dev/null
bb893dcd
CS
34echo Stopping vpn-watch
35killall vpn-watch
512d54a9
CS
36
37#
38#Extract files
39extract_files
40
bd3c8b59
AF
41#
42# Remove some addon cronjobs if the addons are not installed
43[ ! -e /opt/pakfire/db/installed/meta-cacti ] && rm -f /etc/fcron.cyclic/cacti.cron
44[ ! -e /opt/pakfire/db/installed/meta-gnump3d ] && rm -f /etc/fcron.daily/gnump3d-index
45[ ! -e /opt/pakfire/db/installed/meta-asterisk ] && rm -f /etc/fcron.minutely/wakeup.sh
46
841e825e
AF
47# Remove disable cron mails...
48sed "s|MAILTO=root|MAILTO=|g" < /var/spool/cron/root.orig > /var/tmp/root.tmp
49fcrontab /var/tmp/root.tmp
50
c7bfbdc2
AF
51# Disable snort packet decoding alerts
52sed -i "s|#config disable_decode_alerts|config disable_decode_alerts|g" /etc/snort/snort.conf
53sed -i "s|#config disable_tcpopt_alerts|config disable_tcpopt_alerts|g" /etc/snort/snort.conf
54
512d54a9
CS
55#
56#Start services
8dbba0e4
CS
57echo Starting Proxy
58/etc/init.d/squid start 2>/dev/null
e4e42008
CS
59echo Rewriting Outgoing FW Rules
60/var/ipfire/outgoing/bin/outgoingfw.pl
caab8fb9 61if [ `grep "ENABLED=on" /var/ipfire/vpn/settings` ]; then
aaf12a48
AF
62 echo Starting vpn-watch
63 /usr/local/bin/vpn-watch &
64fi
512d54a9
CS
65
66#
67#Update Language cache
68#perl -e "require '/var/ipfire/lang.pl'; &Lang::BuildCacheLang"
69
8885467f
AF
70#Disable geode_aes modul
71mv /lib/modules/2.6.32.28-ipfire/kernel/drivers/crypto/geode-aes.ko \
72 /lib/modules/2.6.32.28-ipfire/kernel/drivers/crypto/geode-aes.ko.off >/dev/null 2>&1
73mv /lib/modules/2.6.32.28-ipfire-pae/kernel/drivers/crypto/geode-aes.ko \
74 /lib/modules/2.6.32.28-ipfire-pae/kernel/drivers/crypto/geode-aes.ko.off >/dev/null 2>&1
75mv /lib/modules/2.6.32.28-ipfire-xen/kernel/drivers/crypto/geode-aes.ko \
76 /lib/modules/2.6.32.28-ipfire-xen/kernel/drivers/crypto/geode-aes.ko.off >/dev/null 2>&1
77
512d54a9 78#Rebuild module dep's
8885467f
AF
79depmod 2.6.32.28-ipfire >/dev/null 2>&1
80depmod 2.6.32.28-ipfire-pae >/dev/null 2>&1
81depmod 2.6.32.28-ipfire-xen >/dev/null 2>&1
512d54a9
CS
82
83#
84#Finish
85#Don't report the exitcode last command
86exit 0