2 ############################################################################
4 # This file is part of the IPFire Firewall. #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 3 of the License, or #
9 # (at your option) any later version. #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
20 # Copyright (C) 2022 IPFire-Team <info@ipfire.org>. #
22 ############################################################################
24 .
/opt
/pakfire
/lib
/functions.sh
25 /usr
/local
/bin
/backupctrl exclude
>/dev
/null
2>&1
29 # Remove old core updates from pakfire cache to save space...
30 for (( i
=1; i
<=$core; i
++ )); do
31 rm -f /var
/cache
/pakfire
/core-upgrade-
*-$i.ipfire
35 /etc
/init.d
/squid stop
36 /usr
/local
/bin
/openvpnctrl
-k
37 /usr
/local
/bin
/openvpnctrl
-kn2n
38 /etc
/init.d
/suricata stop
42 /etc
/fcron.daily
/suricata \
43 /etc
/fcron.weekly
/suricata \
44 /lib
/firmware
/cxgb
4/t4fw-1.26
.4.0.bin \
45 /lib
/firmware
/cxgb
4/t5fw-1.26
.4.0.bin \
46 /lib
/firmware
/cxgb
4/t6fw-1.26
.4.0.bin \
47 /lib
/firmware
/intel
/ice
/ddp-comms
/ice_comms-1.3
.20.0.pkg \
48 /lib
/firmware
/silabs \
50 /usr
/bin
/dnet-config \
52 /usr
/lib
/libart_lgpl_2.so
* \
54 /usr
/lib
/libdnet.so
* \
55 /usr
/lib
/libevent-1.4.so
* \
56 /usr
/lib
/libevent_core-1.4.so
* \
57 /usr
/lib
/libevent_extra-1.4.so
* \
58 /usr
/lib
/liblber-2.4.so
* \
61 /usr
/lib
/libsolv.so
* \
62 /usr
/lib
/libsolvext.so
* \
64 /usr
/lib
/libusb-0.1.so
* \
67 # Remove netbpm add-on, if installed
68 if [ -e "/opt/pakfire/db/installed/meta-netbpm" ]; then
69 for i
in $
(</opt
/pakfire
/db
/rootfiles
/netbpm
); do
74 /opt
/pakfire
/db
/installed
/meta-netbpm \
75 /opt
/pakfire
/db
/meta
/meta-netbpm \
76 /opt
/pakfire
/db
/rootfiles
/netbpm
81 # update linker config
85 convert-ids-backend-files
87 # Update Language cache
88 /usr
/local
/bin
/update-lang-cache
91 /usr
/local
/bin
/filesystem-cleanup
93 # Delete orphaned Oinkmaster and Suricata default ruleset
95 /usr
/local
/bin
/oinkmaster.pl \
96 /var
/ipfire
/suricata
/oinkmaster.conf \
97 /var
/ipfire
/suricata
/suricata-default-rules.yaml
99 # Apply local configuration to sshd_config
100 /usr
/local
/bin
/sshctrl
102 # Apply sysctl changes
103 /etc
/init.d
/sysctl start
105 # Fix permissions of /etc/sudoers.d/
106 chmod -v 750 /etc
/sudoers.d
107 chmod -v 640 /etc
/sudoers.d
/*
109 # Rebuild initial ramdisk to apply microcode updates
110 dracut
--regenerate-all --force
111 case "$(uname -m)" in
113 mkimage
-A arm
-T ramdisk
-C lzma
-d /boot
/initramfs-
${KVER}-ipfire.img
/boot
/uInit-
${KVER}-ipfire
114 rm /boot
/initramfs-
${KVER}-ipfire.img
117 mkimage
-A arm64
-T ramdisk
-C lzma
-d /boot
/initramfs-
${KVER}-ipfire.img
/boot
/uInit-
${KVER}-ipfire
118 # dont remove initramfs because grub need this to boot.
124 /etc
/init.d
/fcron restart
125 /etc
/init.d
/sshd restart
126 /etc
/init.d
/vnstatd restart
127 /etc
/init.d
/squid start
128 /usr
/local
/bin
/openvpnctrl
-s
129 /usr
/local
/bin
/openvpnctrl
-sn2n
130 /etc
/init.d
/suricata start
132 # This update needs a reboot...
133 touch /var
/run
/need_reboot
136 /etc
/init.d
/fireinfo start
139 # Update grub config to display new core version
140 if [ -e /boot
/grub
/grub.cfg
]; then
141 grub-mkconfig
-o /boot
/grub
/grub.cfg
146 # Don't report the exitcode last command