2 ############################################################################
4 # This file is part of the IPFire Firewall. #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 3 of the License, or #
9 # (at your option) any later version. #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
20 # Copyright (C) 2022 IPFire-Team <info@ipfire.org>. #
22 ############################################################################
24 .
/opt
/pakfire
/lib
/functions.sh
25 /usr
/local
/bin
/backupctrl exclude
>/dev
/null
2>&1
29 # Remove old core updates from pakfire cache to save space...
30 for (( i
=1; i
<=$core; i
++ )); do
31 rm -f /var
/cache
/pakfire
/core-upgrade-
*-$i.ipfire
36 /lib
/firmware
/cxgb
4/t4fw-1.26
.4.0.bin \
37 /lib
/firmware
/cxgb
4/t5fw-1.26
.4.0.bin \
38 /lib
/firmware
/cxgb
4/t6fw-1.26
.4.0.bin \
39 /lib
/firmware
/intel
/ice
/ddp-comms
/ice_comms-1.3
.20.0.pkg \
40 /lib
/firmware
/silabs \
42 /usr
/bin
/dnet-config \
44 /usr
/lib
/libart_lgpl_2.so
* \
45 /usr
/lib
/libboost_python38
* \
47 /usr
/lib
/libdnet.so
* \
48 /usr
/lib
/libevent-1.4.so
* \
49 /usr
/lib
/libevent_core-1.4.so
* \
50 /usr
/lib
/libevent_extra-1.4.so
* \
51 /usr
/lib
/liblber-2.4.so
* \
54 /usr
/lib
/libsolv.so
* \
55 /usr
/lib
/libsolvext.so
* \
58 # Remove netbpm add-on, if installed
59 if [ -e "/opt/pakfire/db/installed/meta-netbpm" ]; then
60 for i
in $
(</opt
/pakfire
/db
/rootfiles
/netbpm
); do
65 /opt
/pakfire
/db
/installed
/meta-netbpm \
66 /opt
/pakfire
/db
/meta
/meta-netbpm \
67 /opt
/pakfire
/db
/rootfiles
/netbpm
70 /etc
/init.d
/squid stop
71 /usr
/local
/bin
/openvpnctrl
-k
72 /usr
/local
/bin
/openvpnctrl
-kn2n
73 /etc
/init.d
/suricata stop
78 # update linker config
82 convert-ids-backend-files
84 # Update Language cache
85 /usr
/local
/bin
/update-lang-cache
88 /usr
/local
/bin
/filesystem-cleanup
90 # Delete orphaned Oinkmaster and Suricata default ruleset
92 /usr
/local
/bin
/oinkmaster.pl \
93 /var
/ipfire
/suricata
/oinkmaster.conf \
94 /var
/ipfire
/suricata
/suricata-default-rules.yaml
96 # Apply local configuration to sshd_config
97 /usr
/local
/bin
/sshctrl
99 # Apply sysctl changes
100 /etc
/init.d
/sysctl start
102 # Fix permissions of /etc/sudoers.d/
103 chmod -v 750 /etc
/sudoers.d
104 chmod -v 640 /etc
/sudoers.d
/*
107 /etc
/init.d
/fcron restart
108 /etc
/init.d
/sshd restart
109 /etc
/init.d
/vnstatd restart
110 /etc
/init.d
/squid start
111 /usr
/local
/bin
/openvpnctrl
-s
112 /usr
/local
/bin
/openvpnctrl
-sn2n
113 /etc
/init.d
/suricata start
115 # This update needs a reboot...
116 touch /var
/run
/need_reboot
119 /etc
/init.d
/fireinfo start
122 # Update grub config to display new core version
123 if [ -e /boot
/grub
/grub.cfg
]; then
124 grub-mkconfig
-o /boot
/grub
/grub.cfg
129 # Don't report the exitcode last command