]> git.ipfire.org Git - ipfire-2.x.git/log
ipfire-2.x.git
5 years agohplip: Update to version 3.18.6
Erik Kapfer [Thu, 21 Jun 2018 11:52:13 +0000 (13:52 +0200)] 
hplip: Update to version 3.18.6

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoguardian: Update to 2.0.2
Stefan Schantl [Wed, 27 Jun 2018 17:39:14 +0000 (19:39 +0200)] 
guardian: Update to 2.0.2

Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoguardian.cgi: Remove support for owncloud
Stefan Schantl [Wed, 27 Jun 2018 17:39:13 +0000 (19:39 +0200)] 
guardian.cgi: Remove support for owncloud

Owncloud as an addon has been dropped for IPFire. As a result of this,
we do not need this code anymore.

Fixes #11572.

Signed-off-by: Stefan Schantl <stefan.schantl@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated sysctl.conf
Michael Tremer [Tue, 3 Jul 2018 09:33:23 +0000 (10:33 +0100)] 
core123: Ship updated sysctl.conf

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agohide kernel addresses in /proc
Peter Müller [Sat, 30 Jun 2018 09:44:06 +0000 (11:44 +0200)] 
hide kernel addresses in /proc

Make sure kernel address space is hidden from files somewhere
in /proc . This reduces attack surface and partially addresses #11659.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated usbutils
Michael Tremer [Tue, 3 Jul 2018 09:32:43 +0000 (10:32 +0100)] 
core123: Ship updated usbutils

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agousbutils: update to 010
Peter Müller [Sat, 30 Jun 2018 15:04:42 +0000 (17:04 +0200)] 
usbutils: update to 010

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated GeoIP.dat
Michael Tremer [Tue, 3 Jul 2018 09:32:08 +0000 (10:32 +0100)] 
core123: Ship updated GeoIP.dat

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoupdate GeoIP.dat database
Peter Müller [Sat, 30 Jun 2018 15:10:12 +0000 (17:10 +0200)] 
update GeoIP.dat database

There are two GeoIP databases used in IPFire: One for firewall
rules, which is downloaded and installed automatically, and a
second one ("GeoIP.dat") for WebUI lookups via the Perl interface.

The latter one is not updated automatically and was outdated.
libloc will make things much easier here...

Fixes #11777.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agomultipath-tools: Update to 0.7.7
Michael Tremer [Mon, 2 Jul 2018 18:10:36 +0000 (19:10 +0100)] 
multipath-tools: Update to 0.7.7

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agonss-myhostname: FTBFS on aarch64
Michael Tremer [Mon, 2 Jul 2018 17:48:50 +0000 (18:48 +0100)] 
nss-myhostname: FTBFS on aarch64

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship changed vpnmain.cgi
Michael Tremer [Sun, 1 Jul 2018 12:34:56 +0000 (13:34 +0100)] 
core123: Ship changed vpnmain.cgi

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoadd ChaCha20/Poly1305 to IPsec WebUI
Peter Müller [Sat, 30 Jun 2018 15:18:30 +0000 (17:18 +0200)] 
add ChaCha20/Poly1305 to IPsec WebUI

The algorithm is selected by default since it is considered
to be both secure and state-of-the-art. This required Linux kernel
> 4.2, which is satisfied by Core Update 2.12 122.

Fixes #11549

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoupdate cryptography settings in StrongSwan LFS file
Peter Müller [Sat, 30 Jun 2018 15:15:22 +0000 (17:15 +0200)] 
update cryptography settings in StrongSwan LFS file

The RC2 plugin was never supported by the WebUI and is insecure,
so it became obsolete here. To support new ChaCha20/Poly1305, the
corresponding module needs to be enabled.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated packages and files
Michael Tremer [Sun, 1 Jul 2018 12:34:19 +0000 (13:34 +0100)] 
core123: Ship updated packages and files

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoproxy.cgi: The group name cannot be in quotes
Michael Tremer [Sun, 1 Jul 2018 11:38:48 +0000 (12:38 +0100)] 
proxy.cgi: The group name cannot be in quotes

Squid interprets the quotes as part of the group name, too

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agosmartmontools: update to 6.6.
Peter Müller [Wed, 20 Jun 2018 15:00:36 +0000 (17:00 +0200)] 
smartmontools: update to 6.6.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolynis: update to 2.6.4
Peter Müller [Wed, 20 Jun 2018 15:04:26 +0000 (17:04 +0200)] 
lynis: update to 2.6.4

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoupdate StrongSwan to 5.6.3
Peter Müller [Sat, 30 Jun 2018 15:16:37 +0000 (17:16 +0200)] 
update StrongSwan to 5.6.3

This also takes advantage of changed crypto plugins (see first
patch) and updates the rootfile.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolibgcrypt: update to 1.8.3
Peter Müller [Sat, 30 Jun 2018 10:07:15 +0000 (12:07 +0200)] 
libgcrypt: update to 1.8.3

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agounbound: Update to 1.7.3
Matthias Fischer [Mon, 25 Jun 2018 15:31:01 +0000 (17:31 +0200)] 
unbound: Update to 1.7.3

For details see:
http://www.unbound.net/download.html

Best,
Matthias

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Update to version 2.4.6
Erik Kapfer [Thu, 21 Jun 2018 11:54:36 +0000 (13:54 +0200)] 
OpenVPN: Update to version 2.4.6

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoconntrack-tools: update to 1.4.5
Peter Müller [Wed, 20 Jun 2018 15:13:01 +0000 (17:13 +0200)] 
conntrack-tools: update to 1.4.5

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolibnetfilter_conntrack: update to 1.0.7
Peter Müller [Wed, 20 Jun 2018 15:11:28 +0000 (17:11 +0200)] 
libnetfilter_conntrack: update to 1.0.7

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoiptables: update to 1.6.2
Peter Müller [Wed, 20 Jun 2018 15:09:05 +0000 (17:09 +0200)] 
iptables: update to 1.6.2

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agovpnmain.cgi: Remove unused code that prevented the page from loading without GREEN
Michael Tremer [Sun, 1 Jul 2018 11:24:25 +0000 (12:24 +0100)] 
vpnmain.cgi: Remove unused code that prevented the page from loading without GREEN

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoDon't show proxy configuration pages when GREEN is not available
Michael Tremer [Sun, 1 Jul 2018 11:21:59 +0000 (12:21 +0100)] 
Don't show proxy configuration pages when GREEN is not available

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Hide certain things on the web UI
Michael Tremer [Sun, 1 Jul 2018 11:15:00 +0000 (12:15 +0100)] 
AWS: Hide certain things on the web UI

Those are practically unusable on AWS.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Store instance id
Michael Tremer [Sun, 1 Jul 2018 10:54:51 +0000 (11:54 +0100)] 
AWS: Store instance id

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Re-enable check if we are actually running on EC2
Michael Tremer [Sun, 1 Jul 2018 10:52:54 +0000 (11:52 +0100)] 
aws: Re-enable check if we are actually running on EC2

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Suppress any output from ending dhclient
Michael Tremer [Sun, 1 Jul 2018 10:51:39 +0000 (11:51 +0100)] 
aws: Suppress any output from ending dhclient

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: No need to wake up udev again
Michael Tremer [Sun, 1 Jul 2018 10:51:18 +0000 (11:51 +0100)] 
aws: No need to wake up udev again

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agofirewall: Suppress more warnings when initialising without GREEN
Michael Tremer [Sun, 1 Jul 2018 10:49:57 +0000 (11:49 +0100)] 
firewall: Suppress more warnings when initialising without GREEN

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Rename network interfaces only when necessary
Michael Tremer [Sun, 1 Jul 2018 10:44:14 +0000 (11:44 +0100)] 
AWS: Rename network interfaces only when necessary

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Import SSH keys before meddling with the network
Michael Tremer [Sun, 1 Jul 2018 10:43:35 +0000 (11:43 +0100)] 
AWS: Import SSH keys before meddling with the network

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agofirewall: Allow starting without a green interface
Michael Tremer [Sun, 1 Jul 2018 09:32:31 +0000 (10:32 +0100)] 
firewall: Allow starting without a green interface

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: No need to restart udev any more
Michael Tremer [Sat, 30 Jun 2018 19:35:29 +0000 (20:35 +0100)] 
AWS: No need to restart udev any more

The renames the network interfaces itself now

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolocalnet: Don't write local hostname to /etc/hosts
Michael Tremer [Sat, 30 Jun 2018 18:58:42 +0000 (19:58 +0100)] 
localnet: Don't write local hostname to /etc/hosts

This is now being provided by nss-myhostname

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agonsswitch.conf: Use nss-myhostname to resolve local hostname
Michael Tremer [Sat, 30 Jun 2018 18:56:56 +0000 (19:56 +0100)] 
nsswitch.conf: Use nss-myhostname to resolve local hostname

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agonss-myhostname: New package
Michael Tremer [Sat, 30 Jun 2018 18:51:38 +0000 (19:51 +0100)] 
nss-myhostname: New package

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Rename all interfaces when booting up
Michael Tremer [Sat, 30 Jun 2018 18:40:31 +0000 (19:40 +0100)] 
AWS: Rename all interfaces when booting up

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Apply SSH configuration changes
Michael Tremer [Sat, 30 Jun 2018 18:25:29 +0000 (19:25 +0100)] 
aws: Apply SSH configuration changes

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoopenssh: Write port 22 into the default configuration file
Michael Tremer [Sat, 30 Jun 2018 18:25:15 +0000 (19:25 +0100)] 
openssh: Write port 22 into the default configuration file

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Restart udev to rename network interfaces
Michael Tremer [Thu, 28 Jun 2018 10:15:29 +0000 (11:15 +0100)] 
AWS: Restart udev to rename network interfaces

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Add support for ORANGE
Michael Tremer [Thu, 28 Jun 2018 10:01:33 +0000 (11:01 +0100)] 
AWS: Add support for ORANGE

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Remove some debugging line
Michael Tremer [Thu, 28 Jun 2018 09:57:50 +0000 (10:57 +0100)] 
AWS: Remove some debugging line

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Calculate gateway and DNS IP addresses only for RED
Michael Tremer [Thu, 28 Jun 2018 09:57:13 +0000 (10:57 +0100)] 
AWS: Calculate gateway and DNS IP addresses only for RED

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Use correct IP address for the internal DNS
Michael Tremer [Thu, 28 Jun 2018 09:55:24 +0000 (10:55 +0100)] 
AWS: Use correct IP address for the internal DNS

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Write HOSTNAME and DOMAINNAME when not set
Michael Tremer [Wed, 27 Jun 2018 09:05:55 +0000 (10:05 +0100)] 
aws: Write HOSTNAME and DOMAINNAME when not set

Previously we expected the entire settings file to be empty
but since we are now shipping some defaults for other settings.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoShip default settings for language, theme, etc. in all images
Michael Tremer [Wed, 27 Jun 2018 08:59:47 +0000 (09:59 +0100)] 
Ship default settings for language, theme, etc. in all images

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Ensure that SSH checkbox is enabled, too
Michael Tremer [Wed, 27 Jun 2018 08:56:32 +0000 (09:56 +0100)] 
aws: Ensure that SSH checkbox is enabled, too

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaws: Enable SSH on the first start
Michael Tremer [Wed, 27 Jun 2018 08:55:09 +0000 (09:55 +0100)] 
aws: Enable SSH on the first start

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agosetup: Write /etc/hosts in initscript
Michael Tremer [Mon, 25 Jun 2018 10:08:04 +0000 (11:08 +0100)] 
setup: Write /etc/hosts in initscript

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agosetup: Don't write configuration files for TCP wrapper any more
Michael Tremer [Mon, 25 Jun 2018 10:01:24 +0000 (11:01 +0100)] 
setup: Don't write configuration files for TCP wrapper any more

This has been removed from the distribution a long time ago

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoapache: Write hostname into configuration at boot time
Michael Tremer [Mon, 25 Jun 2018 09:59:49 +0000 (10:59 +0100)] 
apache: Write hostname into configuration at boot time

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAWS: Import aws setup script
Michael Tremer [Mon, 25 Jun 2018 09:55:39 +0000 (10:55 +0100)] 
AWS: Import aws setup script

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agodhcp: Ship dhclient
Michael Tremer [Mon, 25 Jun 2018 09:54:36 +0000 (10:54 +0100)] 
dhcp: Ship dhclient

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agossh: Update default configuration
Michael Tremer [Mon, 25 Jun 2018 09:53:53 +0000 (10:53 +0100)] 
ssh: Update default configuration

This patch removes an old switch to enable SSH 1 and
makes port 22 the default port.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoAdd initscript that automatically configures IPFire on AWS EC2
Michael Tremer [Wed, 6 Jun 2018 11:19:17 +0000 (12:19 +0100)] 
Add initscript that automatically configures IPFire on AWS EC2

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoflash-image: Make sure that GRUB boots the first entry
Michael Tremer [Wed, 6 Jun 2018 11:06:54 +0000 (12:06 +0100)] 
flash-image: Make sure that GRUB boots the first entry

This is required when importing an image into AWS EC2 or
the import of the image fails.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated iana-etc
Michael Tremer [Tue, 19 Jun 2018 10:34:38 +0000 (11:34 +0100)] 
core123: Ship updated iana-etc

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoiana-etc: update to 2.30
Peter Müller [Mon, 18 Jun 2018 18:15:14 +0000 (20:15 +0200)] 
iana-etc: update to 2.30

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolibstatgrab: Update tp 0.91
Erik Kapfer [Mon, 18 Jun 2018 17:57:56 +0000 (19:57 +0200)] 
libstatgrab: Update tp 0.91

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Delete 1024 bit DH-parameter from menu
Erik Kapfer [Mon, 18 Jun 2018 17:16:36 +0000 (19:16 +0200)] 
OpenVPN: Delete 1024 bit DH-parameter from menu

Since OpenVPN-2.4.x do not accepts 1024 bit DH-parameter for security concerns anymore,
    it has been removed from the menu.

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship /var/ipfire/backup/exclude
Michael Tremer [Tue, 19 Jun 2018 10:31:01 +0000 (11:31 +0100)] 
core123: Ship /var/ipfire/backup/exclude

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agobackup: Exclude OpenVPNs ovpn.cnf from backup
Erik Kapfer [Mon, 18 Jun 2018 17:05:56 +0000 (19:05 +0200)] 
backup: Exclude OpenVPNs ovpn.cnf from backup

This fixes also bug #11773

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore123: Ship updated gnupg
Michael Tremer [Tue, 19 Jun 2018 10:30:26 +0000 (11:30 +0100)] 
core123: Ship updated gnupg

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agognupg: update to 1.4.23
Peter Müller [Mon, 18 Jun 2018 16:46:54 +0000 (18:46 +0200)] 
gnupg: update to 1.4.23

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Prevent that a Roadwarrior name will be set two times
Erik Kapfer [Mon, 18 Jun 2018 15:32:57 +0000 (17:32 +0200)] 
OpenVPN: Prevent that a Roadwarrior name will be set two times

Fixes bug #11307

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoStart Core Update 123
Michael Tremer [Mon, 18 Jun 2018 15:43:04 +0000 (16:43 +0100)] 
Start Core Update 123

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Fix upload check for root and host certificate
Erik Kapfer [Mon, 18 Jun 2018 15:10:37 +0000 (17:10 +0200)] 
OpenVPN: Fix upload check for root and host certificate

Fix for #11766 .
Since the new OpenSSL output differs in the 'Subject' section, the regex needed to be adapted.
Old and new output should now be possible.

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Set default of 730 days for client certificate validity
Erik Kapfer [Mon, 18 Jun 2018 14:41:27 +0000 (16:41 +0200)] 
OpenVPN: Set default of 730 days for client certificate validity

Since OpenSSL 1.1.0x it is required to set a value for the 'valid til (days)' field.
The WUI delivers now a guide value of two years.

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoipset: Update to 6.38
Erik Kapfer [Mon, 18 Jun 2018 14:01:34 +0000 (16:01 +0200)] 
ipset: Update to 6.38

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoOpenVPN: Valid til days is required with OpenVPN-2.4.x
Erik Kapfer [Fri, 15 Jun 2018 06:35:13 +0000 (08:35 +0200)] 
OpenVPN: Valid til days is required with OpenVPN-2.4.x

Check has been integrated that the OpenSSL maximum of '999999' valid days can not be exceeded.
Check for needed entry in 'Valid til days' field has been integrated.
Asterisk for 'Valid til days' field has been set to mark it as required field.

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agotmux: Update to 2.7
Erik Kapfer [Mon, 18 Jun 2018 12:41:35 +0000 (14:41 +0200)] 
tmux: Update to 2.7

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agomtr: Update to 0.92
Erik Kapfer [Mon, 18 Jun 2018 12:38:07 +0000 (14:38 +0200)] 
mtr: Update to 0.92

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agofping: update to 4.0
Erik Kapfer [Mon, 18 Jun 2018 12:29:40 +0000 (14:29 +0200)] 
fping: update to 4.0

Signed-off-by: Erik Kapfer <erik.kapfer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoovpnmain.cgi: Add missing closing bracket
Michael Tremer [Mon, 18 Jun 2018 13:11:39 +0000 (14:11 +0100)] 
ovpnmain.cgi: Add missing closing bracket

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agovalidate certificates in ids.cgi
Peter Müller [Sun, 17 Jun 2018 16:58:32 +0000 (18:58 +0200)] 
validate certificates in ids.cgi

Fixes #11770.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agotzdata: update to 2018e
Peter Müller [Sun, 17 Jun 2018 12:32:38 +0000 (14:32 +0200)] 
tzdata: update to 2018e

Some lines in the rootfile were sort incorrectly, this has been fixed.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocoreutils: update to 8.29
Peter Müller [Sun, 17 Jun 2018 10:21:01 +0000 (12:21 +0200)] 
coreutils: update to 8.29

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agolibgcrypt: update to 1.8.2
Peter Müller [Sun, 17 Jun 2018 09:23:52 +0000 (11:23 +0200)] 
libgcrypt: update to 1.8.2

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoattr: fix rootfile
Peter Müller [Sun, 17 Jun 2018 08:59:40 +0000 (10:59 +0200)] 
attr: fix rootfile

There was a man page missing in the attr rootfile.

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agotor: update to 0.3.3.7
Peter Müller [Sun, 17 Jun 2018 08:31:41 +0000 (10:31 +0200)] 
tor: update to 0.3.3.7

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agopostfix: update to 3.2.6
Peter Müller [Sun, 17 Jun 2018 08:18:10 +0000 (10:18 +0200)] 
postfix: update to 3.2.6

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agounbound: update to 1.7.2
Peter Müller [Sun, 17 Jun 2018 08:16:28 +0000 (10:16 +0200)] 
unbound: update to 1.7.2

Signed-off-by: Peter Müller <peter.mueller@link38.eu>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoUpdate translations
Michael Tremer [Wed, 13 Jun 2018 14:49:22 +0000 (15:49 +0100)] 
Update translations

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoIPsec: Allow to configure a connection in waiting state
Michael Tremer [Wed, 13 Jun 2018 14:47:57 +0000 (15:47 +0100)] 
IPsec: Allow to configure a connection in waiting state

This allows to create an IPsec connection that will never actively
try to reach the other peer. It helps in environments where this is
not desired or impossible because of NAT.

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agomake.sh: Bump toolchain date
Michael Tremer [Wed, 6 Jun 2018 15:20:36 +0000 (16:20 +0100)] 
make.sh: Bump toolchain date

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoBump version to 2.21 core121
Michael Tremer [Wed, 6 Jun 2018 13:01:43 +0000 (14:01 +0100)] 
Bump version to 2.21

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocore121: Create updater
Michael Tremer [Wed, 6 Jun 2018 13:01:18 +0000 (14:01 +0100)] 
core121: Create updater

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agotar: Update to 1.30 (V3)
Matthias Fischer [Fri, 1 Jun 2018 16:40:07 +0000 (18:40 +0200)] 
tar: Update to 1.30 (V3)

For details see:
https://www.gnu.org/software/tar/

Since new 'tar' has changes in commandline option parsing,
it was necessary to adjust 'lfs/Config, 'lfs/cdrom' and
'lfs/core-updates' (thanks to Marcel for diffs and Michael for
corrections).

I have tried to make only the most necessary changes.

As always, please check.

Best,
Matthias

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoflash-image: increase boot partition to match with iso install
Arne Fitzenreiter [Wed, 6 Jun 2018 12:52:55 +0000 (14:52 +0200)] 
flash-image: increase boot partition to match with iso install

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
5 years agoConfig: follow symlinks at rootfile check
Arne Fitzenreiter [Wed, 6 Jun 2018 09:28:11 +0000 (11:28 +0200)] 
Config: follow symlinks at rootfile check

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
5 years agokernel: update to 4.14.48
Arne Fitzenreiter [Wed, 6 Jun 2018 05:26:55 +0000 (07:26 +0200)] 
kernel: update to 4.14.48

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
5 years agoaarch64: Rootfile update for Python 3
Michael Tremer [Mon, 4 Jun 2018 19:32:26 +0000 (20:32 +0100)] 
aarch64: Rootfile update for Python 3

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agodhcp: Update to 4.4.1
Matthias Fischer [Fri, 1 Jun 2018 17:54:29 +0000 (19:54 +0200)] 
dhcp: Update to 4.4.1

For details see:
https://kb.isc.org/article/AA-01571/82/DHCP-4.4.1-Release-Notes.html

This should close https://bugzilla.ipfire.org/show_bug.cgi?id=11697 and
https://bugzilla.ipfire.org/show_bug.cgi?id=11293.

This update required some changes as described in:
https://bugzilla.ipfire.org/show_bug.cgi?id=11697#c6

Thanks to all testers! ;-)

Best,
Matthias

Signed-off-by: Matthias Fischer <matthias.fischer@ipfire.org>
Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agoaarch64: Fix rootfile for Python
Michael Tremer [Mon, 4 Jun 2018 11:15:26 +0000 (12:15 +0100)] 
aarch64: Fix rootfile for Python

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>
5 years agocpufrequtils: fix version numbers
Arne Fitzenreiter [Thu, 31 May 2018 12:21:19 +0000 (14:21 +0200)] 
cpufrequtils: fix version numbers

I had incremented the VER instead of PAK_VER

Signed-off-by: Arne Fitzenreiter <arne_f@ipfire.org>
5 years agoImport rootfiles for aarch64
Michael Tremer [Wed, 30 May 2018 22:55:29 +0000 (23:55 +0100)] 
Import rootfiles for aarch64

Signed-off-by: Michael Tremer <michael.tremer@ipfire.org>