]> git.ipfire.org Git - ipfire-2.x.git/blame - config/rootfiles/oldcore/143/update.sh
suricata: Change midstream policy to "pass-flow"
[ipfire-2.x.git] / config / rootfiles / oldcore / 143 / update.sh
CommitLineData
e6c2265d
AF
1#!/bin/bash
2############################################################################
3# #
4# This file is part of the IPFire Firewall. #
5# #
6# IPFire is free software; you can redistribute it and/or modify #
7# it under the terms of the GNU General Public License as published by #
8# the Free Software Foundation; either version 3 of the License, or #
9# (at your option) any later version. #
10# #
11# IPFire is distributed in the hope that it will be useful, #
12# but WITHOUT ANY WARRANTY; without even the implied warranty of #
13# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14# GNU General Public License for more details. #
15# #
16# You should have received a copy of the GNU General Public License #
17# along with IPFire; if not, write to the Free Software #
18# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
19# #
20# Copyright (C) 2020 IPFire-Team <info@ipfire.org>. #
21# #
22############################################################################
23#
24. /opt/pakfire/lib/functions.sh
25/usr/local/bin/backupctrl exclude >/dev/null 2>&1
26
0b0a3634 27core=143
e6c2265d
AF
28
29exit_with_error() {
30 # Set last succesfull installed core.
31 echo $(($core-1)) > /opt/pakfire/db/core/mine
32 # force fsck at next boot, this may fix free space on xfs
33 touch /forcefsck
34 # don't start pakfire again at error
35 killall -KILL pak_update
36 /usr/bin/logger -p syslog.emerg -t ipfire \
37 "core-update-${core}: $1"
38 exit $2
39}
40
41# Remove old core updates from pakfire cache to save space...
42for (( i=1; i<=$core; i++ )); do
43 rm -f /var/cache/pakfire/core-upgrade-*-$i.ipfire
44done
45
46
47# Remove files
a945138e 48rm -rf /usr/lib/go/9.2.0
e6c2265d
AF
49
50# Stop services
0b0a3634 51/etc/init.d/suricata stop
e6c2265d 52
e1379d67
AF
53# move swap after mount
54mv -f /etc/rc.d/rcsysinit.d/S20swap \
55 /etc/rc.d/rcsysinit.d/S41swap
56
e6c2265d
AF
57# Extract files
58extract_files
59
60# update linker config
61ldconfig
62
5562f26f 63# remove wrong vnstat tag file
b5fe45bb 64/etc/init.d/vnstat stop
5562f26f 65rm -f /var/log/vnstat/tag
b5fe45bb 66/etc/init.d/vnstat start
5562f26f 67
2480c416
AF
68# set /var/spool/cron to cron user
69chown cron:cron /var/spool/cron
70
4e412a00
AF
71# restart init after glibc replace
72telinit u
73
37533b0d
AF
74# Apply changed sysctl settings
75/etc/init.d/sysctl start
76
0b1f09d5
AF
77# Apply local configuration to sshd_config
78/usr/local/bin/sshctrl
79
e4013c9d
AF
80# Generate new http ports file for suricata
81perl -e "require '/var/ipfire/ids-functions.pl'; \
82 &IDS::generate_http_ports_file(); \
83 &IDS::set_ownership(\"\$IDS::http_ports_file\"); "
84
0b0a3634
AF
85# Start services
86/usr/local/bin/ipsecctrl S
87/etc/init.d/unbound restart
88/etc/init.d/sshd restart
89/etc/init.d/suricata start
90
e6c2265d
AF
91# remove dropped packages
92for package in bluetooth; do
93 if [ -e /opt/pakfire/db/installed/meta-$package ]; then
94 stop_service $package
95 for i in $(cat /opt/pakfire/db/rootfiles/$package); do
96 rm -rfv /${i}
97 done
98 fi
99 rm -f /opt/pakfire/db/installed/meta-$package
100 rm -f /opt/pakfire/db/meta/meta-$package
101 rm -f /opt/pakfire/db/rootfiles/$package
102done
103
104# Update Language cache
105/usr/local/bin/update-lang-cache
106
107# Filesytem cleanup
108/usr/local/bin/filesystem-cleanup
109
e6c2265d 110# This update needs a reboot...
e049d6fc 111touch /var/run/need_reboot
e6c2265d
AF
112
113# Finish
114/etc/init.d/fireinfo start
115sendprofile
116
117# Update grub config to display new core version
118if [ -e /boot/grub/grub.cfg ]; then
119 grub-mkconfig -o /boot/grub/grub.cfg
120fi
121
122sync
123
124# Don't report the exitcode last command
125exit 0