From 95e6fe55c929a13793bdaac17f2657cf336e5679 Mon Sep 17 00:00:00 2001 From: Frank Brehm Date: Wed, 7 Sep 2022 23:06:58 +0200 Subject: [PATCH] committing changes in /etc made by "/usr/bin/apt full-upgrade -y" Packages with configuration changes: -fwupd 1.7.5-3 amd64 +fwupd 1.8.3-1~22.04.1 amd64 Package changes: -firefox 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-de 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-en 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-eo 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-es 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-fr 104.0.1+linuxmint1+vanessa amd64 -firefox-locale-vi 104.0.1+linuxmint1+vanessa amd64 +firefox 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-de 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-en 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-eo 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-es 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-fr 104.0.2+linuxmint1+vanessa amd64 +firefox-locale-vi 104.0.2+linuxmint1+vanessa amd64 -fwupd 1.7.5-3 amd64 +fwupd 1.8.3-1~22.04.1 amd64 -libfwupd2 1.7.5-3 amd64 -libfwupdplugin5 1.7.5-3 amd64 +libfwupd2 1.8.3-1~22.04.1 amd64 +libfwupdplugin7 1.8.3-1~22.04.1 amd64 +libprotobuf-c1 1.3.3-1ubuntu2.1 amd64 --- .etckeeper | 1 + fwupd/daemon.conf | 6 ++++++ fwupd/msr.conf | 5 +++++ fwupd/redfish.conf | 3 +++ fwupd/thunderbolt.conf | 3 +++ group | 1 + group- | 1 + gshadow | 1 + gshadow- | 1 + passwd | 1 + passwd- | 3 ++- shadow | 1 + shadow- | 1 + 13 files changed, 27 insertions(+), 1 deletion(-) create mode 100644 fwupd/msr.conf diff --git a/.etckeeper b/.etckeeper index 68dff31..97cae9a 100755 --- a/.etckeeper +++ b/.etckeeper @@ -1736,6 +1736,7 @@ maybe chmod 0644 'fstab' maybe chmod 0644 'fuse.conf' maybe chmod 0755 'fwupd' maybe chmod 0644 'fwupd/daemon.conf' +maybe chmod 0644 'fwupd/msr.conf' maybe chmod 0644 'fwupd/redfish.conf' maybe chmod 0755 'fwupd/remotes.d' maybe chmod 0644 'fwupd/remotes.d/dell-esrt.conf' diff --git a/fwupd/daemon.conf b/fwupd/daemon.conf index 851047f..6ac8252 100644 --- a/fwupd/daemon.conf +++ b/fwupd/daemon.conf @@ -49,6 +49,12 @@ IgnorePower=false # Only support installing firmware signed with a trusted key OnlyTrusted=true +# Show private data like device serial numbers and instance IDs to clients +ShowDevicePrivate=true + +# UIDs that should marked as trusted +TrustedUids= + # A host best known configuration is used when using `fwupdmgr sync` which can # downgrade firmware to factory versions or upgrade firmware to a supported # config level. e.g. `vendor-factory-2021q1` diff --git a/fwupd/msr.conf b/fwupd/msr.conf new file mode 100644 index 0000000..30a7ef5 --- /dev/null +++ b/fwupd/msr.conf @@ -0,0 +1,5 @@ +[msr] + +# Minimum kernel version to allow probing for sme flag +MinimumSmeKernelVersion=5.18.0 + diff --git a/fwupd/redfish.conf b/fwupd/redfish.conf index 6675d59..d47bdf0 100644 --- a/fwupd/redfish.conf +++ b/fwupd/redfish.conf @@ -15,3 +15,6 @@ # Do not use IPMI KCS to create an initial user account if no SMBIOS data IpmiDisableCreateUser=False + +# Amount of time in seconds to wait for a BMC restart +ManagerResetTimeout=1800 diff --git a/fwupd/thunderbolt.conf b/fwupd/thunderbolt.conf index d6a61d1..efaecb4 100644 --- a/fwupd/thunderbolt.conf +++ b/fwupd/thunderbolt.conf @@ -7,3 +7,6 @@ MinimumKernelVersion=4.13.0 # Forces delaying activation until shutdown/logout/reboot DelayedActivation=false + +# Uses offline mode interface to update retimers +RetimerOfflineMode=false diff --git a/group b/group index d0a8524..8bca931 100644 --- a/group +++ b/group @@ -98,3 +98,4 @@ whoopsie:x:153: _ssh:x:115: plocate:x:154: swtpm:x:155: +fwupd-refresh:x:156: diff --git a/group- b/group- index 4699006..d0a8524 100644 --- a/group- +++ b/group- @@ -97,3 +97,4 @@ sgx:x:152: whoopsie:x:153: _ssh:x:115: plocate:x:154: +swtpm:x:155: diff --git a/gshadow b/gshadow index 54d35c8..2081507 100644 --- a/gshadow +++ b/gshadow @@ -98,3 +98,4 @@ whoopsie:!:: _ssh:!:: plocate:!:: swtpm:!:: +fwupd-refresh:!:: diff --git a/gshadow- b/gshadow- index 143daf9..54d35c8 100644 --- a/gshadow- +++ b/gshadow- @@ -97,3 +97,4 @@ sgx:!:: whoopsie:!:: _ssh:!:: plocate:!:: +swtpm:!:: diff --git a/passwd b/passwd index b45ffc7..69f006b 100644 --- a/passwd +++ b/passwd @@ -69,3 +69,4 @@ _flatpak:x:135:150:Flatpak system-wide installation helper,,,:/nonexistent:/usr/ systemd-timesync:x:999:999:systemd Time Synchronization:/:/usr/sbin/nologin whoopsie:x:137:153::/nonexistent:/bin/false swtpm:x:138:155:virtual TPM software stack,,,:/var/lib/swtpm:/bin/false +fwupd-refresh:x:139:156:fwupd-refresh user,,,:/run/systemd:/usr/sbin/nologin diff --git a/passwd- b/passwd- index d3ac90c..5ed84dc 100644 --- a/passwd- +++ b/passwd- @@ -68,4 +68,5 @@ tss:x:134:149:TPM software stack,,,:/var/lib/tpm:/bin/false _flatpak:x:135:150:Flatpak system-wide installation helper,,,:/nonexistent:/usr/sbin/nologin systemd-timesync:x:999:999:systemd Time Synchronization:/:/usr/sbin/nologin whoopsie:x:137:153::/nonexistent:/bin/false -swtpm:x:138:155::/var/lib/swtpm:/bin/false +swtpm:x:138:155:virtual TPM software stack,,,:/var/lib/swtpm:/bin/false +fwupd-refresh:x:139:156::/run/systemd:/usr/sbin/nologin diff --git a/shadow b/shadow index 641ba10..edee685 100644 --- a/shadow +++ b/shadow @@ -69,3 +69,4 @@ _flatpak:*:18464:0:99999:7::: systemd-timesync:!!:18464:::::: whoopsie:*:19220:0:99999:7::: swtpm:*:19220:0:99999:7::: +fwupd-refresh:*:19242:0:99999:7::: diff --git a/shadow- b/shadow- index 641ba10..edee685 100644 --- a/shadow- +++ b/shadow- @@ -69,3 +69,4 @@ _flatpak:*:18464:0:99999:7::: systemd-timesync:!!:18464:::::: whoopsie:*:19220:0:99999:7::: swtpm:*:19220:0:99999:7::: +fwupd-refresh:*:19242:0:99999:7::: -- 2.39.5