]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blob - config/rootfiles/oldcore/161/update.sh
suricata: Change midstream policy to "pass-flow"
[people/pmueller/ipfire-2.x.git] / config / rootfiles / oldcore / 161 / update.sh
1 #!/bin/bash
2 ############################################################################
3 # #
4 # This file is part of the IPFire Firewall. #
5 # #
6 # IPFire is free software; you can redistribute it and/or modify #
7 # it under the terms of the GNU General Public License as published by #
8 # the Free Software Foundation; either version 3 of the License, or #
9 # (at your option) any later version. #
10 # #
11 # IPFire is distributed in the hope that it will be useful, #
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of #
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
14 # GNU General Public License for more details. #
15 # #
16 # You should have received a copy of the GNU General Public License #
17 # along with IPFire; if not, write to the Free Software #
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA #
19 # #
20 # Copyright (C) 2021 IPFire-Team <info@ipfire.org>. #
21 # #
22 ############################################################################
23 #
24 . /opt/pakfire/lib/functions.sh
25 /usr/local/bin/backupctrl exclude >/dev/null 2>&1
26
27 core=161
28
29 exit_with_error() {
30 # Set last succesfull installed core.
31 echo $(($core-1)) > /opt/pakfire/db/core/mine
32 # force fsck at next boot, this may fix free space on xfs
33 touch /forcefsck
34 # don't start pakfire again at error
35 killall -KILL pak_update
36 /usr/bin/logger -p syslog.emerg -t ipfire \
37 "core-update-${core}: $1"
38 exit $2
39 }
40
41 # Remove old core updates from pakfire cache to save space...
42 for (( i=1; i<=$core; i++ )); do
43 rm -f /var/cache/pakfire/core-upgrade-*-$i.ipfire
44 done
45
46 KVER="xxxKVERxxx"
47
48 # Backup uEnv.txt if exist
49 if [ -e /boot/uEnv.txt ]; then
50 cp -vf /boot/uEnv.txt /boot/uEnv.txt.org
51 fi
52
53 # Do some sanity checks.
54 case $(uname -r) in
55 *-ipfire*)
56 # Ok.
57 ;;
58 *)
59 exit_with_error "ERROR cannot update. No IPFire Kernel." 1
60 ;;
61 esac
62 if [ -e /boot/grub/grub.conf ]; then
63 exit_with_error "ERROR unsupported GRUB1/pygrub found!" 1
64 fi
65
66 # Check diskspace on root
67 ROOTSPACE=`df / -Pk | sed "s| * | |g" | cut -d" " -f4 | tail -n 1`
68
69 if [ $ROOTSPACE -lt 100000 ]; then
70 exit_with_error "ERROR cannot update because not enough free space on root." 2
71 exit 2
72 fi
73
74 # Remove the old kernel
75 rm -rf /boot/System.map-*
76 rm -rf /boot/config-*
77 rm -rf /boot/ipfirerd-*
78 rm -rf /boot/initramfs-*
79 rm -rf /boot/vmlinuz-*
80 rm -rf /boot/uImage-*-ipfire-*
81 rm -rf /boot/zImage-*-ipfire-*
82 rm -rf /boot/uInit-*-ipfire-*
83 rm -rf /boot/dtb-*-ipfire-*
84 rm -rf /lib/modules
85
86 # remove old/renamed u-boot files
87 rm -rf /boot/kernel*
88 rm -rf /usr/share/u-boot/rpi*
89
90 # Remove dropped packages
91 for package in client175; do
92 if [ -e "/opt/pakfire/db/installed/meta-${package}" ]; then
93 stop_service "${package}"
94 for i in $(</opt/pakfire/db/rootfiles/${package}); do
95 rm -rfv "/${i}"
96 done
97 fi
98 rm -f "/opt/pakfire/db/installed/meta-${package}"
99 rm -f "/opt/pakfire/db/meta/meta-${package}"
100 rm -f "/opt/pakfire/db/rootfiles/${package}"
101 done
102
103 # Remove files
104 rm -rf /usr/bin/python
105 rm -rf /usr/bin/python2
106 rm -rf /usr/bin/python2.7
107 rm -rf /usr/lib/libpython2*
108 rm -rf /usr/lib/python2*
109 rm -rf /usr/lib/collectd/python.so
110
111 # Stop services
112 /etc/init.d/ipsec stop
113
114 # disconnect if red is ppp0
115 if [ $(</var/ipfire/red/iface) = "ppp0" ]; then
116 /usr/local/bin/connscheduler hangup
117 fi
118
119 # Extract files
120 extract_files
121
122 # Fix permissions just in case they broke again
123 chmod -v 755 \
124 /usr \
125 /usr/bin \
126 /usr/lib \
127 /usr/sbin \
128 /var \
129 /var/ipfire
130
131 # update linker config
132 ldconfig
133
134 # Update Language cache
135 /usr/local/bin/update-lang-cache
136
137 # Filesytem cleanup
138 /usr/local/bin/filesystem-cleanup
139
140 # restart firewall
141 /etc/init.d/firewall restart
142
143 # reconnect if red is ppp0
144 if [ $(</var/ipfire/red/iface) = "ppp0" ]; then
145 /usr/local/bin/connscheduler reconnect
146 fi
147
148 # Start services
149 if grep -q "ENABLED=on" /var/ipfire/vpn/settings; then
150 /etc/init.d/ipsec start
151 fi
152
153 # Delete orphaned shared object files
154 rm -rf \
155 /usr/lib/pppd/2.4.8 \
156 /usr/lib/itcl4.0.5 \
157 /usr/lib/sqlite3.13.0 \
158 /usr/lib/tcl8.4 \
159 /usr/lib/tdbc1.0.4 \
160 /usr/lib/tdbcmysql1.0.4 \
161 /usr/lib/tdbcodbc1.0.4 \
162 /usr/lib/tdbcpostgres1.0.4 \
163 /usr/lib/thread2.8.0
164
165 # Generate new qos.sh
166 /usr/local/bin/qosctrl stop
167 /usr/local/bin/qosctrl generate
168 /usr/local/bin/qosctrl start
169
170 # remove lm_sensor config after collectd was started
171 # to reserch sensors at next boot with updated kernel
172 rm -f /etc/sysconfig/lm_sensors
173
174 # Upadate Kernel version uEnv.txt
175 if [ -e /boot/uEnv.txt ]; then
176 sed -i -e "s/KVER=.*/KVER=${KVER}/g" /boot/uEnv.txt
177 fi
178
179 # call user update script (needed for some arm boards)
180 if [ -e /boot/pakfire-kernel-update ]; then
181 /boot/pakfire-kernel-update ${KVER}
182 fi
183
184 # This update needs a reboot...
185 touch /var/run/need_reboot
186
187 # Finish
188 /etc/init.d/fireinfo start
189 sendprofile
190
191 # Install updated grub
192 /usr/bin/install-bootloader
193
194 # Update grub config to display new core version
195 if [ -e /boot/grub/grub.cfg ]; then
196 grub-mkconfig -o /boot/grub/grub.cfg
197 fi
198
199 sync
200
201 # Don't report the exitcode last command
202 exit 0
203 # Stop services