Commit Graph

608 Commits

Author SHA1 Message Date
Marek Marczykowski-Górecki
5d6894800e
version 5.4.1-2 2019-12-02 06:24:10 +01:00
Frédéric Pierret (fepitre)
1cc6951e1d
config-qubes: allow signed modules as Fedora set it 2019-12-01 10:25:55 +01:00
Frédéric Pierret (fepitre)
22b6866243
Update to version 5.4.1 2019-12-01 02:00:43 +01:00
Marek Marczykowski-Górecki
7b1c020d37
Update Fedora keys for config updater script (add 32, remove 30 and 31) 2019-11-30 14:10:28 +01:00
Marek Marczykowski-Górecki
9fc40622cd
Merge remote-tracking branch 'origin/pr/119'
* origin/pr/119:
  Update to kernel-5.3.12
2019-11-27 04:35:38 +01:00
Frédéric Pierret (fepitre)
fb9b485ccf
spec: mangle /usr/bin/python shebangs to /usr/bin/python3
- From Fedora spec file
- Only for dom0 >= Fedora 31
2019-11-24 11:18:15 +01:00
fepitre-bot
ddf76022e4
Update to kernel-5.3.12 2019-11-23 04:59:24 +01:00
fepitre-bot
18d5d66d02
Update to kernel-5.3.11 2019-11-16 10:10:12 +01:00
Marek Marczykowski-Górecki
ea53bfe2df
Merge remote-tracking branch 'origin/pr/113'
* origin/pr/113:
  Update to kernel-5.3.9
2019-11-09 14:52:49 +01:00
fepitre-bot
71964cd085
Update to kernel-5.3.9 2019-11-09 04:59:39 +01:00
xaki23
cddf334f05
update WireGuard from 20190913 to 20191012 2019-11-05 09:29:07 +01:00
fepitre-bot
beccd92b8e
Update to kernel-5.3.8 2019-11-02 05:00:03 +01:00
Marek Marczykowski-Górecki
17b7186716
Make makefile and spec compatible with rc versions
There are a couple of changes needed:
1. Package version cannot contain '-' (5.4-rc5-1.pvops.qubes is an
   invalid rpm version). Follow Fedora upstream idea of moving 'rc' tag
   into package release field, as 0.rcXX.(original rel). This way, such
   package will be 'older' than the final release (with just release
   number there - 1 in most cases). The alternative idea is using
   '~rcXX' in the package version, but ~ couldn't be part of a kernel
   version reported by the kernel itself and also qubes-dom0-update
   refuses ~ in a package filename.
2. Adjust kernel version to match the above - specifically clear
   EXTRAVERSION (-rcXX suffix), as it will be added back as package
   release (CONFIG_LOCALVERSION).
3. rc tarballs are available only as a git-generated .tar.gz (not
   .tar.xz) and there are no matching detached signatures. While it
   would be possible to download a signed tag via git, scripting that
   would be overly complex as for the task rarely used. Leave this
   verification as a manual step and require sha512 checksum to be
   committed into repository.
   To build an archive matching upstream one, out of a signed tag, use
   command like this:
   git archive --prefix=linux-5.4-rc5/ --output=../linux-5.4-rc5.tar.gz v5.4-rc5

While at it, remove obsolete BUILD_FLAVOR variable.
2019-10-30 17:48:44 +01:00
Marek Marczykowski-Górecki
24ee349714
Add Linus's signing key
Initial mainline releases are signed by Linus.
2019-10-30 16:34:18 +01:00
fepitre-bot
87ba67cee5
Update to kernel-5.3.7 2019-10-19 05:00:40 +02:00
fepitre-bot
9cf5108f6e
Update to kernel-5.3.6 2019-10-12 05:02:37 +02:00
fepitre-bot
8f82b34cc9
Update to kernel-5.3.2 2019-10-05 04:58:26 +02:00
xaki23
383118a889
change WireGuard version from 20190702 to 20190913 2019-09-24 21:58:07 +02:00
fepitre-bot
9a3ca002fe
Update to kernel-5.2.16 2019-09-21 05:04:50 +02:00
Marek Marczykowski-Górecki
c7cfdfe8e8
Merge remote-tracking branch 'origin/pr/91'
* origin/pr/91:
  Update to kernel-5.2.14
2019-09-15 22:25:28 +02:00
Marek Marczykowski-Górecki
1d50db3f47
rpm: set default kernel version based on package flavor
If default kernel was from kernel-latest, update default kernel property
on kernel-latest update (only). Same for other kernel package flavor.

Suggested by @hexagonrecursion
Fixes QubesOS/qubes-issues#5309
2019-09-15 19:35:35 +02:00
fepitre-bot
9aac829311
Update to kernel-5.2.14 2019-09-14 10:40:45 +02:00
fepitre-bot
4e4cdf6d8a
Update to kernel-5.2.13 2019-09-07 05:01:56 +02:00
fepitre-bot
61485da630
Update to kernel-5.2.11 2019-08-31 04:59:01 +02:00
fepitre-bot
c270f522ae
Update to kernel-5.2.9 2019-08-16 20:41:53 +02:00
Marek Marczykowski-Górecki
8b2aed93d7
version 5.2.7-1 2019-08-08 11:31:59 +02:00
Frédéric Pierret (fepitre)
d9f5315ada Drop AFTER_LINK patch 2019-07-27 23:33:44 +02:00
Frédéric Pierret (fepitre)
150288eaa4
Update to kernel-5.2.3 2019-07-27 14:35:21 +02:00
Frédéric Pierret (fepitre)
9ec407116a
Update WireGuard to 0.0.20190702 2019-07-27 14:34:03 +02:00
fepitre-bot
a40377d949
Update to kernel-5.1.17 2019-07-13 14:36:37 -04:00
fepitre-bot
bd26af6008
Update to kernel-5.1.16 2019-07-06 05:03:55 -04:00
fepitre-bot
11d6f25d1a
Update to kernel-5.1.15 2019-06-29 04:26:54 -04:00
fepitre-bot
1574118f81
Update to kernel-5.1.13 2019-06-22 04:43:44 -04:00
fepitre-bot
5adbe65fee
Update to kernel-5.1.9 2019-06-15 01:28:00 -04:00
Marek Marczykowski-Górecki
4f870c84fa
version 5.1.7-2 2019-06-10 04:33:41 +02:00
fepitre-bot
d48c5bae9e
Update to kernel-5.1.7 2019-06-08 03:19:52 -04:00
Marek Marczykowski-Górecki
e3a342006f
Disable GCC plugins for out of tree kernel modules
kernel modules built in VM often use different gcc version, which makes
provided gcc plugins incompatible. Since rebuilding those plugins may
not be straight forward (extra gcc headers needed, possibly kernel
config changes needed if gcc version differs significantly), disable
them for out of tree modules.

Fixes QubesOS/qubes-issues#2844
2019-06-06 01:43:20 +02:00
fepitre-bot
d1ad5080b8
Update to kernel-5.1.6 2019-06-01 04:57:51 -04:00
Marek Marczykowski-Górecki
7108c83c5e
Simplify WG_SIG_FILE set
Use native make substitution instead of sed.
2019-05-30 02:56:17 +02:00
Marek Marczykowski-Górecki
c6e126517e
gitignore: add WireGuard 2019-05-30 02:55:08 +02:00
xaki23
790685154f
build wireguard module (after gpg check) 2019-05-30 01:19:48 +02:00
Marek Marczykowski-Górecki
ef094d559a
version 5.1.2-1 2019-05-15 22:00:56 +02:00
Marek Marczykowski-Górecki
c4c75cb41c
Fix setting default kernel for VM
(cherry picked from commit 02beadc381)
2019-05-15 22:00:28 +02:00
Marek Marczykowski-Górecki
98cd4d1c78
config: disable SELinux
CONFIG_LSM is a new option which can be used to enable SELinux. Base
Fedora config does that. When disabled at runtime only, SELinux-aware
kernel will refuse setting securit.selinux xattr, breaking multiple
tools, including initramfs generation (cp --preserve=xattr fails).
2019-05-15 21:58:09 +02:00
Frédéric Pierret (fepitre)
c68ee341b2
Update to kernel-5.1.1 2019-05-11 11:23:56 +02:00
Frédéric Pierret (fepitre)
732780e31f
get-fedora-latest-config: sort result when repoquerying kernel-core 2019-05-11 11:23:54 +02:00
fepitre-bot
d08d1bf6b4
Update to kernel-5.0.11 2019-05-04 03:41:11 -04:00
fepitre-bot
598d75d857
Update to kernel-5.0.9 2019-04-20 23:02:48 +02:00
Frédéric Pierret (fepitre)
a48e051be2
get-fedora-latest-config: enable only fedora and fedora-updates when downloading the rpm 2019-04-20 17:12:07 +02:00
Frédéric Pierret (fepitre)
5a1a029434
get-fedora-latest-config: download relatively to current directory 2019-04-20 17:11:28 +02:00