maybe chmod 0755 'ufw'
maybe chmod 0755 'ufw/applications.d'
maybe chmod 0644 'ufw/applications.d/openssh-server'
+maybe chmod 0755 'update-motd.d'
+maybe chmod 0755 'update-motd.d/10-uname'
maybe chmod 0644 'updatedb.conf'
maybe chmod 0755 'vim'
maybe chmod 0644 'vim/vimrc'
# dpkg list:
rc linux-image-4.6.0-1-amd64 4.6.2-2 amd64 Linux 4.6 for 64-bit PCs
rc linux-image-4.8.0-1-amd64 4.8.7-1 amd64 Linux 4.8 for 64-bit PCs (signed)
-ii linux-image-4.8.0-2-amd64 4.8.15-2 amd64 Linux 4.8 for 64-bit PCs (signed)
+rc linux-image-4.8.0-2-amd64 4.8.15-2 amd64 Linux 4.8 for 64-bit PCs (signed)
ii linux-image-4.9.0-1-amd64 4.9.6-3 amd64 Linux 4.9 for 64-bit PCs (signed)
-iF linux-image-4.9.0-2-amd64 4.9.13-1 amd64 Linux 4.9 for 64-bit PCs (signed)
-iU linux-image-amd64 4.9+79 amd64 Linux for 64-bit PCs (meta-package)
+iF linux-image-4.9.0-2-amd64 4.9.18-1 amd64 Linux 4.9 for 64-bit PCs (signed)
+ii linux-image-amd64 4.9+79 amd64 Linux for 64-bit PCs (meta-package)
# list of installed kernel packages:
-4.8.0-2-amd64 4.8.15-2
4.9.0-1-amd64 4.9.6-3
-4.9.0-2-amd64 4.9.13-1
+4.9.0-2-amd64 4.9.18-1
# list of different kernel versions:
-4.9.13-1
+4.9.18-1
4.9.6-3
-4.8.15-2
-# Installing kernel: 4.9.13-1 (4.9.0-2-amd64)
-# Running kernel: 4.9.6-3 (4.9.0-1-amd64)
-# Last kernel: 4.9.13-1
+# Installing kernel: 4.9.18-1 (4.9.0-2-amd64)
+# Running kernel: 4.9.18-1 (4.9.0-2-amd64)
+# Last kernel: 4.9.18-1
# Previous kernel: 4.9.6-3
# Kernel versions list to keep:
-4.9.13-1
+4.9.18-1
4.9.6-3
# Kernel packages (version part) to protect:
4\.9\.0-1-amd64
test -f /usr/bin/screen || exit 0
-SCREENDIR=/var/run/screen
+SCREENDIR=/run/screen
case "$1" in
start)
check_privsep_dir() {
# Create the PrivSep empty dir if necessary
- if [ ! -d /var/run/sshd ]; then
- mkdir /var/run/sshd
- chmod 0755 /var/run/sshd
+ if [ ! -d /run/sshd ]; then
+ mkdir /run/sshd
+ chmod 0755 /run/sshd
fi
}
check_for_no_start
check_dev_null
log_daemon_msg "Starting OpenBSD Secure Shell server" "sshd" || true
- if start-stop-daemon --start --quiet --oknodo --pidfile /var/run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
+ if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
log_end_msg 0 || true
else
log_end_msg 1 || true
stop)
check_for_upstart 0
log_daemon_msg "Stopping OpenBSD Secure Shell server" "sshd" || true
- if start-stop-daemon --stop --quiet --oknodo --pidfile /var/run/sshd.pid; then
+ if start-stop-daemon --stop --quiet --oknodo --pidfile /run/sshd.pid; then
log_end_msg 0 || true
else
log_end_msg 1 || true
check_for_no_start
check_config
log_daemon_msg "Reloading OpenBSD Secure Shell server's configuration" "sshd" || true
- if start-stop-daemon --stop --signal 1 --quiet --oknodo --pidfile /var/run/sshd.pid --exec /usr/sbin/sshd; then
+ if start-stop-daemon --stop --signal 1 --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd; then
log_end_msg 0 || true
else
log_end_msg 1 || true
check_privsep_dir
check_config
log_daemon_msg "Restarting OpenBSD Secure Shell server" "sshd" || true
- start-stop-daemon --stop --quiet --oknodo --retry 30 --pidfile /var/run/sshd.pid
+ start-stop-daemon --stop --quiet --oknodo --retry 30 --pidfile /run/sshd.pid
check_for_no_start log_end_msg
check_dev_null log_end_msg
- if start-stop-daemon --start --quiet --oknodo --pidfile /var/run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
+ if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
log_end_msg 0 || true
else
log_end_msg 1 || true
check_config
log_daemon_msg "Restarting OpenBSD Secure Shell server" "sshd" || true
RET=0
- start-stop-daemon --stop --quiet --retry 30 --pidfile /var/run/sshd.pid || RET="$?"
+ start-stop-daemon --stop --quiet --retry 30 --pidfile /run/sshd.pid || RET="$?"
case $RET in
0)
# old daemon stopped
check_for_no_start log_end_msg
check_dev_null log_end_msg
- if start-stop-daemon --start --quiet --oknodo --pidfile /var/run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
+ if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then
log_end_msg 0 || true
else
log_end_msg 1 || true
status)
check_for_upstart 1
- status_of_proc -p /var/run/sshd.pid /usr/sbin/sshd sshd && exit 0 || exit $?
+ status_of_proc -p /run/sshd.pid /usr/sbin/sshd sshd && exit 0 || exit $?
;;
*)
test -x /usr/sbin/sshd || { stop; exit 0; }
test -e /etc/ssh/sshd_not_to_be_run && { stop; exit 0; }
- mkdir -p -m0755 /var/run/sshd
+ mkdir -p -m0755 /run/sshd
end script
# if you used to set SSHD_OPTS in /etc/default/ssh, you can change the
if [ -n "$unamer" ]; then
running_version="$(echo "$list" | awk "\$1 == \"$unamer\" { print \$2;exit; }")"
fi
+# ignore the currently running version if attempting a reproducible build
+if [ -n "${SOURCE_DATE_EPOCH}" ]; then
+ unamer=""
+ running_version=""
+fi
latest_version="$(echo "$debverlist" | sed -n 1p)"
previous_version="$(echo "$debverlist" | sed -n 2p)"
# list of different kernel versions:
$debverlist
# Installing kernel: $installed_version ($1)
-# Running kernel: $running_version ($unamer)
+# Running kernel: ${running_version:-ignored} (${unamer:-ignored})
# Last kernel: $latest_version
# Previous kernel: $previous_version
# Kernel versions list to keep:
exit 0
fi
-if [ ! -f /var/run/sshd.pid ] || \
- [ "$(ps -p "$(cat /var/run/sshd.pid)" -o comm=)" != sshd ]; then
+if [ ! -f /run/sshd.pid ] || \
+ [ "$(ps -p "$(cat /run/sshd.pid)" -o comm=)" != sshd ]; then
exit 0
fi
#FallbackDNS=8.8.8.8 8.8.4.4 2001:4860:4860::8888 2001:4860:4860::8844
#Domains=
#LLMNR=yes
-#DNSSEC=allow-downgrade
+#DNSSEC=no
#Cache=yes
#DNSStubListener=udp
--- /dev/null
+#!/bin/sh
+uname -snrvm