From 348dc8d44f9aaf6c4fba9c7e7a12bba4b3db2470 Mon Sep 17 00:00:00 2001 From: Joshua Dye Date: Thu, 11 Apr 2019 10:25:38 -0400 Subject: [PATCH] committing changes in /etc made by "apt full-upgrade" Package changes: -alsa-utils 1.1.7-1 armhf -apt 1.8.0~rc2 armhf -apt-listchanges 3.18 all -apt-utils 1.8.0~rc2 armhf -aptitude 0.8.11-6 armhf -aptitude-common 0.8.11-6 all +alsa-utils 1.1.8-1 armhf +apt 1.8.0 armhf +apt-listchanges 3.19 all +apt-utils 1.8.0 armhf +aptitude 0.8.11-7 armhf +aptitude-common 0.8.11-7 all -at-spi2-core 2.30.0-5 armhf +at-spi2-core 2.30.0-7 armhf -base-passwd 3.5.45 armhf +base-passwd 3.5.46 armhf -bash-completion 1:2.8-5 all -bind9 1:9.11.5.P1+dfsg-1 armhf -bind9-host 1:9.11.5.P1+dfsg-1 armhf -bind9utils 1:9.11.5.P1+dfsg-1 armhf -binutils 2.31.1-11+rpi1 armhf -binutils-arm-linux-gnueabihf 2.31.1-11+rpi1 armhf -binutils-common 2.31.1-11+rpi1 armhf +bash-completion 1:2.8-6 all +bind9 1:9.11.5.P4+dfsg-1 armhf +bind9-host 1:9.11.5.P4+dfsg-1 armhf +bind9utils 1:9.11.5.P4+dfsg-1 armhf +binutils 2.31.1-15+rpi1 armhf +binutils-arm-linux-gnueabihf 2.31.1-15+rpi1 armhf +binutils-common 2.31.1-15+rpi1 armhf -bluez 5.50-1+b10 armhf +bluez 5.50-1+b11 armhf -build-essential 12.5 armhf +build-essential 12.6 armhf -certbot 0.28.0-1 all +certbot 0.31.0-1 all -console-setup 1.188 all -console-setup-linux 1.188 all -coreutils 8.30-1 armhf +console-setup 1.191 all +console-setup-linux 1.191 all +coreutils 8.30-3 armhf -cpp 4:8.2.0-2+rpi1 armhf -cpp-6 6.5.0-1+rpi1 armhf +cpp 4:8.3.0-1+rpi2 armhf +cpp-6 6.5.0-1+rpi1+b1 armhf -cpp-8 8.2.0-20+rpi1 armhf +cpp-8 8.3.0-5+rpi1 armhf -cron 3.0pl1-130 armhf -curl 7.64.0-1 armhf +cron 3.0pl1-133 armhf +curl 7.64.0-2 armhf -debconf 1.5.70 all -debconf-i18n 1.5.70 all -debconf-utils 1.5.70 all -debhelper 12 all -debian-keyring 2018.12.24 all +debconf 1.5.71 all +debconf-i18n 1.5.71 all +debconf-utils 1.5.71 all +debhelper 12.1.1 all +debian-keyring 2019.02.25 all -devscripts 2.19.2 armhf +devscripts 2.19.4 armhf -dh-python 3.20180927 all -dh-strip-nondeterminism 1.1.0-1 all +dh-python 3.20190308 all +dh-strip-nondeterminism 1.1.2-1 all -diffutils 1:3.6-1 armhf +diffutils 1:3.7-2 armhf -dns-root-data 2018091102 all -dnsutils 1:9.11.5.P1+dfsg-1 armhf +dns-root-data 2019031302 all +dnsutils 1:9.11.5.P4+dfsg-1 armhf -dpkg 1.19.2 armhf -dpkg-dev 1.19.2 all +dpkg 1.19.6 armhf +dpkg-dev 1.19.6 all -elinks 0.12~pre6-14 armhf -elinks-data 0.12~pre6-14 all +elinks 0.13~20190125-3 armhf +elinks-data 0.13~20190125-3 all -exim4-base 4.92~RC5-2 armhf -exim4-config 4.92~RC5-2 all -exim4-daemon-light 4.92~RC5-2 armhf +exim4-base 4.92-2 armhf +exim4-config 4.92-2 all +exim4-daemon-light 4.92-2 armhf -file 1:5.35-2 armhf -findutils 4.6.0+git+20190105-2 armhf +file 1:5.35-4 armhf +findutils 4.6.0+git+20190209-2 armhf -g++ 4:8.2.0-2+rpi1 armhf -g++-8 8.2.0-20+rpi1 armhf +g++ 4:8.3.0-1+rpi2 armhf +g++-8 8.3.0-5+rpi1 armhf -gcc 4:8.2.0-2+rpi1 armhf +gcc 4:8.3.0-1+rpi2 armhf -gcc-6 6.5.0-1+rpi1 armhf -gcc-6-base 6.5.0-1+rpi1 armhf +gcc-6 6.5.0-1+rpi1+b1 armhf +gcc-6-base 6.5.0-1+rpi1+b1 armhf -gcc-8 8.2.0-20+rpi1 armhf -gcc-8-base 8.2.0-20+rpi1 armhf +gcc-8 8.3.0-5+rpi1 armhf +gcc-8-base 8.3.0-5+rpi1 armhf -gdb 8.2.1-1 armhf -gdebi-core 0.9.5.7+nmu2 all +gdb 8.2.1-2 armhf +gdebi-core 0.9.5.7+nmu3 all -groff-base 1.22.4-2 armhf +groff-base 1.22.4-3 armhf -iptables 1.8.2-3 armhf +iptables 1.8.2-4 armhf -keyboard-configuration 1.188 all -keyutils 1.5.9-10 armhf +keyboard-configuration 1.191 all +keyutils 1.6-6 armhf -kmod 25-2 armhf +kmod 26-1 armhf -libacl1 2.2.52-3 armhf +libacl1 2.2.53-4 armhf -libapparmor1 2.13.2-7 armhf -libapt-inst2.0 1.8.0~rc2 armhf +libapparmor1 2.13.2-10 armhf +libapt-inst2.0 1.8.0 armhf -libapt-pkg5.0 1.8.0~rc2 armhf +libapt-pkg5.0 1.8.0 armhf -libasan3 6.5.0-1+rpi1 armhf +libasan3 6.5.0-1+rpi1+b1 armhf -libasan5 8.2.0-20+rpi1 armhf -libasound2 1.1.7-2 armhf -libasound2-data 1.1.7-2 all +libasan5 8.3.0-5+rpi1 armhf +libasound2 1.1.8-1 armhf +libasound2-data 1.1.8-1 all -libatk-bridge2.0-0 2.30.0-2 armhf +libatk-bridge2.0-0 2.30.0-5 armhf -libatomic1 8.2.0-20+rpi1 armhf -libatspi2.0-0 2.30.0-5 armhf -libattr1 1:2.4.47-2 armhf +libatomic1 8.3.0-5+rpi1 armhf +libatspi2.0-0 2.30.0-7 armhf +libattr1 1:2.4.48-4 armhf -libavcodec58 7:4.1-1 armhf -libavformat58 7:4.1-1 armhf -libavutil56 7:4.1-1 armhf +libavcodec58 7:4.1.1-1 armhf +libavformat58 7:4.1.1-1 armhf +libavutil56 7:4.1.1-1 armhf -libbind9-161 1:9.11.5.P1+dfsg-1 armhf +libbind9-161 1:9.11.5.P4+dfsg-1 armhf -libbinutils 2.31.1-11+rpi1 armhf +libbinutils 2.31.1-15+rpi1 armhf -libbluetooth3 5.50-1+b10 armhf -libbluray2 1:1.0.2-3 armhf +libbluetooth3 5.50-1+b11 armhf +libbluray2 1:1.1.0-1 armhf -libbsd0 0.9.1-1 armhf +libbsd0 0.9.1-2 armhf -libc-bin 2.28-6+rpi1 armhf -libc-dev-bin 2.28-6+rpi1 armhf -libc-l10n 2.28-6+rpi1 all -libc6 2.28-6+rpi1 armhf -libc6-dbg 2.28-6+rpi1 armhf -libc6-dev 2.28-6+rpi1 armhf -libcaca0 0.99.beta19-2 armhf -libcairo-gobject2 1.16.0-2 armhf -libcairo2 1.16.0-2 armhf +libc-bin 2.28-8 armhf +libc-dev-bin 2.28-8 armhf +libc-l10n 2.28-8 all +libc6 2.28-8 armhf +libc6-dbg 2.28-8 armhf +libc6-dev 2.28-8 armhf +libcaca0 0.99.beta19-2.1 armhf +libcairo-gobject2 1.16.0-4 armhf +libcairo2 1.16.0-4 armhf -libcc1-0 8.2.0-20+rpi1 armhf +libcapture-tiny-perl 0.48-1 all +libcc1-0 8.3.0-5+rpi1 armhf -libcryptsetup12 2:2.1.0-1 armhf +libcryptsetup12 2:2.1.0-2 armhf -libcups2 2.2.10-3+b2 armhf -libcurl3-gnutls 7.64.0-1 armhf -libcurl4 7.64.0-1 armhf +libcups2 2.2.10-5 armhf +libcurl3-gnutls 7.64.0-2 armhf +libcurl4 7.64.0-2 armhf -libdb5.3 5.3.28+dfsg1-0.3 armhf +libdb5.3 5.3.28+dfsg1-0.5 armhf -libdebconfclient0 0.246 armhf -libdevel-callchecker-perl 0.007-2+b2 armhf +libdebconfclient0 0.249 armhf +libdevel-callchecker-perl 0.008-1 armhf -libdns-export1104 1:9.11.5.P1+dfsg-1 armhf +libdns-export1104 1:9.11.5.P4+dfsg-1 armhf -libdns1104 1:9.11.5.P1+dfsg-1 armhf -libdouble-conversion1 3.1.0-2 armhf -libdpkg-perl 1.19.2 all +libdns1104 1:9.11.5.P4+dfsg-1 armhf +libdouble-conversion1 3.1.0-3 armhf +libdpkg-perl 1.19.6 all -libdw1 0.175-2 armhf +libdw1 0.176-1 armhf -libegl-mesa0 18.3.2-1 armhf +libegl-mesa0 18.3.4-2 armhf -libegl1-mesa-dev 18.3.2-1 armhf -libelf1 0.175-2 armhf +libegl1-mesa-dev 18.3.4-2 armhf +libelf1 0.176-1 armhf -liberror-perl 0.17027-1 all +liberror-perl 0.17027-2 all +libev4 1:4.25-1 armhf -libfile-stripnondeterminism-perl 1.1.0-1 all +libfile-stripnondeterminism-perl 1.1.2-1 all -libfstrm0 0.3.0-1+b1 armhf +libfstrm0 0.4.0-1 armhf -libgbm1 18.3.2-1 armhf -libgcc-6-dev 6.5.0-1+rpi1 armhf +libgbm1 18.3.4-2 armhf +libgcc-6-dev 6.5.0-1+rpi1+b1 armhf -libgcc-8-dev 8.2.0-20+rpi1 armhf -libgcc1 1:8.2.0-20+rpi1 armhf +libgcc-8-dev 8.3.0-5+rpi1 armhf +libgcc1 1:8.3.0-5+rpi1 armhf -libgdbm-compat4 1.18.1-2 armhf +libgdbm-compat4 1.18.1-4 armhf -libgdbm6 1.18.1-2 armhf -libgdk-pixbuf2.0-0 2.38.0+dfsg-7 armhf -libgdk-pixbuf2.0-bin 2.38.0+dfsg-7 armhf -libgdk-pixbuf2.0-common 2.38.0+dfsg-7 all +libgdbm6 1.18.1-4 armhf +libgdk-pixbuf2.0-0 2.38.1+dfsg-1 armhf +libgdk-pixbuf2.0-bin 2.38.1+dfsg-1 armhf +libgdk-pixbuf2.0-common 2.38.1+dfsg-1 all -libgfortran5 8.2.0-20+rpi1 armhf +libgfortran5 8.3.0-5+rpi1 armhf -libgitlab-api-v4-perl 0.15-1 all +libgitlab-api-v4-perl 0.16-1 all -libgl1-mesa-dev 18.3.2-1 armhf -libgl1-mesa-dri 18.3.2-1 armhf -libglapi-mesa 18.3.2-1 armhf +libgl1-mesa-dev 18.3.4-2 armhf +libgl1-mesa-dri 18.3.4-2 armhf +libglapi-mesa 18.3.4-2 armhf -libgles2-mesa-dev 18.3.2-1 armhf +libgles2-mesa-dev 18.3.4-2 armhf -libglx-mesa0 18.3.2-1 armhf +libglx-mesa0 18.3.4-2 armhf -libgomp1 8.2.0-20+rpi1 armhf +libgomp1 8.3.0-5+rpi1 armhf -libgraphene-1.0-0 1.8.2-2 armhf +libgraphene-1.0-0 1.8.4-1 armhf -libgsm1 1.0.18-1 armhf -libgssapi-krb5-2 1.17-1 armhf +libgsm1 1.0.18-2 armhf +libgssapi-krb5-2 1.17-2 armhf -libhttp-daemon-perl 6.01-1 all +libhttp-daemon-perl 6.01-3 all -libid3tag0 0.15.1b-13 armhf +libid3tag0 0.15.1b-14 armhf -libinput-bin 1.12.6-1 armhf -libinput10 1.12.6-1 armhf +libinput-bin 1.12.6-2 armhf +libinput10 1.12.6-2 armhf -libio-stringy-perl 2.111-2 all -libip4tc0 1.8.2-3 armhf -libip6tc0 1.8.2-3 armhf +libio-stringy-perl 2.111-3 all +libip4tc0 1.8.2-4 armhf +libip6tc0 1.8.2-4 armhf -libiptc0 1.8.2-3 armhf -libirs-export161 1:9.11.5.P1+dfsg-1 armhf -libirs161 1:9.11.5.P1+dfsg-1 armhf -libisc-export1100 1:9.11.5.P1+dfsg-1 armhf +libiptc0 1.8.2-4 armhf +libirs-export161 1:9.11.5.P4+dfsg-1 armhf +libirs161 1:9.11.5.P4+dfsg-1 armhf +libisc-export1100 1:9.11.5.P4+dfsg-1 armhf -libisc1100 1:9.11.5.P1+dfsg-1 armhf -libisccc161 1:9.11.5.P1+dfsg-1 armhf -libisccfg-export163 1:9.11.5.P1+dfsg-1 armhf -libisccfg163 1:9.11.5.P1+dfsg-1 armhf +libisc1100 1:9.11.5.P4+dfsg-1 armhf +libisccc161 1:9.11.5.P4+dfsg-1 armhf +libisccfg-export163 1:9.11.5.P4+dfsg-1 armhf +libisccfg163 1:9.11.5.P4+dfsg-1 armhf -libjs-sphinxdoc 1.8.3-2 all -libjs-underscore 1.8.3~dfsg-2 all +libjs-sphinxdoc 1.8.4-1 all +libjs-underscore 1.9.1~dfsg-1 all -libjson-perl 4.01000-1 all +libjson-perl 4.02000-1 all -libk5crypto3 1.17-1 armhf -libkeyutils1 1.5.9-10 armhf +libk5crypto3 1.17-2 armhf +libkeyutils1 1.6-6 armhf -libkmod2 25-2 armhf -libkrb5-3 1.17-1 armhf -libkrb5support0 1.17-1 armhf +libkmod2 26-1 armhf +libkrb5-3 1.17-2 armhf +libkrb5support0 1.17-2 armhf -libldap-2.4-2 2.4.47+dfsg-2 armhf -libldap-common 2.4.47+dfsg-2 all -libldb1 2:1.5.1+really1.4.3-1 armhf -liblinear3 2.1.0+dfsg-2 armhf +libldap-2.4-2 2.4.47+dfsg-3+rpi1 armhf +libldap-common 2.4.47+dfsg-3+rpi1 all +libldb1 2:1.5.1+really1.4.6-3 armhf +liblinear3 2.1.0+dfsg-4 armhf -libllvm7 1:7.0.1-6+rpi1 armhf +libllvm7 1:7.0.1-8+rpi1 armhf -liblog-any-adapter-screen-perl 0.13-1 all +liblog-any-adapter-screen-perl 0.140-1 all -liblwres161 1:9.11.5.P1+dfsg-1 armhf +liblwres161 1:9.11.5.P4+dfsg-1 armhf -libmad0 0.15.1b-9 armhf -libmagic-mgc 1:5.35-2 armhf -libmagic1 1:5.35-2 armhf +libmad0 0.15.1b-10 armhf +libmagic-mgc 1:5.35-4 armhf +libmagic1 1:5.35-4 armhf -libmtp-common 1.1.16-1 all -libmtp-runtime 1.1.16-1 armhf -libmtp9 1.1.16-1 armhf +libmtp-common 1.1.16-2 all +libmtp-runtime 1.1.16-2 armhf +libmtp9 1.1.16-2 armhf -libncurses5 6.1+20181013-1 armhf -libncurses6 6.1+20181013-1 armhf -libncursesw5 6.1+20181013-1 armhf -libncursesw6 6.1+20181013-1 armhf +libncurses5 6.1+20181013-2 armhf +libncurses6 6.1+20181013-2 armhf +libncursesw5 6.1+20181013-2 armhf +libncursesw6 6.1+20181013-2 armhf -libnfs12 3.0.0-1 armhf +libnfs12 3.0.0-2 armhf +libnl-route-3-200 3.4.0-1 armhf -libnss-systemd 240-5+rpi1 armhf +libnss-systemd 241-1+rpi2 armhf -libntfs-3g883 1:2017.3.23AR.3-2 armhf +libntfs-3g883 1:2017.3.23AR.3-3 armhf -libopenjp2-7 2.3.0-1.1 armhf -libopenmpt0 0.4.2-1 armhf +libopenjp2-7 2.3.0-2 armhf +libopenmpt0 0.4.3-1 armhf -libp11-kit0 0.23.14-2 armhf +libp11-kit0 0.23.15-2 armhf -libpam-modules 1.1.8-4 armhf -libpam-modules-bin 1.1.8-4 armhf -libpam-runtime 1.1.8-4 all -libpam-systemd 240-5+rpi1 armhf -libpam0g 1.1.8-4 armhf +libpam-modules 1.3.1-5 armhf +libpam-modules-bin 1.3.1-5 armhf +libpam-runtime 1.3.1-5 all +libpam-systemd 241-1+rpi2 armhf +libpam0g 1.3.1-5 armhf -libpcre16-3 2:8.39-11+rpi1 armhf -libpcre2-16-0 10.32-4 armhf -libpcre2-8-0 10.32-4 armhf -libpcre2-posix0 10.32-4 armhf -libpcre3 2:8.39-11+rpi1 armhf -libpcre3-dev 2:8.39-11+rpi1 armhf -libpcre32-3 2:8.39-11+rpi1 armhf -libpcrecpp0v5 2:8.39-11+rpi1 armhf +libpcre16-3 2:8.39-12 armhf +libpcre2-16-0 10.32-5 armhf +libpcre2-8-0 10.32-5 armhf +libpcre2-posix0 10.32-5 armhf +libpcre3 2:8.39-12 armhf +libpcre3-dev 2:8.39-12 armhf +libpcre32-3 2:8.39-12 armhf +libpcrecpp0v5 2:8.39-12 armhf -libperl5.28 5.28.1-4 armhf +libperl5.28 5.28.1-6 armhf -libpipeline1 1.5.1-1 armhf +libpipeline1 1.5.1-2 armhf -libpulse0 12.2-3 armhf -libpython-all-dev 2.7.15-4 armhf -libpython-dev 2.7.15-4 armhf -libpython-stdlib 2.7.15-4 armhf -libpython2-dev 2.7.15-4 armhf -libpython2-stdlib 2.7.15-4 armhf -libpython2.7 2.7.15-8 armhf -libpython2.7-dev 2.7.15-8 armhf -libpython2.7-minimal 2.7.15-8 armhf -libpython2.7-stdlib 2.7.15-8 armhf +libpulse0 12.2-4 armhf +libpython-all-dev 2.7.16-1 armhf +libpython-dev 2.7.16-1 armhf +libpython-stdlib 2.7.16-1 armhf +libpython2-dev 2.7.16-1 armhf +libpython2-stdlib 2.7.16-1 armhf +libpython2.7 2.7.16-2 armhf +libpython2.7-dev 2.7.16-2 armhf +libpython2.7-minimal 2.7.16-2 armhf +libpython2.7-stdlib 2.7.16-2 armhf -libpython3.7 3.7.2-2 armhf -libpython3.7-dev 3.7.2-2 armhf -libpython3.7-minimal 3.7.2-2 armhf -libpython3.7-stdlib 3.7.2-2 armhf +libpython3.7 3.7.3~rc1-1 armhf +libpython3.7-dev 3.7.3~rc1-1 armhf +libpython3.7-minimal 3.7.3~rc1-1 armhf +libpython3.7-stdlib 3.7.3~rc1-1 armhf -libqt5concurrent5 5.11.3+dfsg-2+rpi1 armhf -libqt5core5a 5.11.3+dfsg-2+rpi1 armhf -libqt5dbus5 5.11.3+dfsg-2+rpi1 armhf -libqt5gui5 5.11.3+dfsg-2+rpi1 armhf -libqt5network5 5.11.3+dfsg-2+rpi1 armhf +libqt5concurrent5 5.11.3+dfsg1-1+rpi1 armhf +libqt5core5a 5.11.3+dfsg1-1+rpi1 armhf +libqt5dbus5 5.11.3+dfsg1-1+rpi1 armhf +libqt5gui5 5.11.3+dfsg1-1+rpi1 armhf +libqt5network5 5.11.3+dfsg1-1+rpi1 armhf -libqt5opengl5 5.11.3+dfsg-2+rpi1 armhf -libqt5opengl5-dev 5.11.3+dfsg-2+rpi1 armhf -libqt5printsupport5 5.11.3+dfsg-2+rpi1 armhf -libqt5sql5 5.11.3+dfsg-2+rpi1 armhf -libqt5sql5-sqlite 5.11.3+dfsg-2+rpi1 armhf +libqt5opengl5 5.11.3+dfsg1-1+rpi1 armhf +libqt5opengl5-dev 5.11.3+dfsg1-1+rpi1 armhf +libqt5printsupport5 5.11.3+dfsg1-1+rpi1 armhf +libqt5sql5 5.11.3+dfsg1-1+rpi1 armhf +libqt5sql5-sqlite 5.11.3+dfsg1-1+rpi1 armhf -libqt5test5 5.11.3+dfsg-2+rpi1 armhf -libqt5widgets5 5.11.3+dfsg-2+rpi1 armhf -libqt5xml5 5.11.3+dfsg-2+rpi1 armhf -libraspberrypi-bin 1.20190215-1 armhf -libraspberrypi-dev 1.20190215-1 armhf -libraspberrypi-doc 1.20190215-1 armhf -libraspberrypi0 1.20190215-1 armhf +libqt5test5 5.11.3+dfsg1-1+rpi1 armhf +libqt5widgets5 5.11.3+dfsg1-1+rpi1 armhf +libqt5xml5 5.11.3+dfsg1-1+rpi1 armhf +libraspberrypi-bin 1.20190401-1 armhf +libraspberrypi-dev 1.20190401-1 armhf +libraspberrypi-doc 1.20190401-1 armhf +libraspberrypi0 1.20190401-1 armhf -libruby2.5 2.5.3-3 armhf +libruby2.5 2.5.5-1 armhf -libseccomp2 2.3.3-3+b1 armhf +libseccomp2 2.3.3-4 armhf -libsmbclient 2:4.9.4+dfsg-2 armhf +libsmbclient 2:4.9.5+dfsg-3 armhf -libsndfile1 1.0.28-4 armhf +libsndfile1 1.0.28-6 armhf -libsqlite3-0 3.26.0+fossilbc891ac6b-2 armhf +libsqlite3-0 3.27.2-2 armhf -libssh-gcrypt-4 0.8.6-2 armhf -libssh2-1 1.8.0-2 armhf +libssh-gcrypt-4 0.8.6-3 armhf +libssh2-1 1.8.0-2.1 armhf -libssl1.1 1.1.1a-1 armhf -libstdc++-8-dev 8.2.0-20+rpi1 armhf -libstdc++6 8.2.0-20+rpi1 armhf +libssl1.1 1.1.1b-1 armhf +libstdc++-8-dev 8.3.0-5+rpi1 armhf +libstdc++6 8.3.0-5+rpi1 armhf -libswresample3 7:4.1-1 armhf +libswresample3 7:4.1.1-1 armhf -libsystemd0 240-5+rpi1 armhf +libsystemd0 241-1+rpi2 armhf -libtcl8.6 8.6.9+dfsg-1 armhf +libtcl8.6 8.6.9+dfsg-2 armhf -libtheora0 1.1.1+dfsg.1-14 armhf +libtheora0 1.1.1+dfsg.1-15 armhf -libtinfo5 6.1+20181013-1 armhf -libtinfo6 6.1+20181013-1 armhf +libtinfo5 6.1+20181013-2 armhf +libtinfo6 6.1+20181013-2 armhf -libubsan1 8.2.0-20+rpi1 armhf +libubsan1 8.3.0-5+rpi1 armhf -libudev1 240-5+rpi1 armhf -libunbound8 1.8.1-1+b1 armhf -libunicode-utf8-perl 0.60-1+b5 armhf +libudev1 241-1+rpi2 armhf +libunbound8 1.9.0-2 armhf +libunicode-utf8-perl 0.62-1 armhf -libvorbis0a 1.3.6-1 armhf -libvorbisenc2 1.3.6-1 armhf -libvorbisfile3 1.3.6-1 armhf +libvorbis0a 1.3.6-2 armhf +libvorbisenc2 1.3.6-2 armhf +libvorbisfile3 1.3.6-2 armhf -libwacom-bin 0.31-1 armhf -libwacom-common 0.31-1 all -libwacom2 0.31-1 armhf +libwacom-bin 0.32-1 armhf +libwacom-common 0.32-1 all +libwacom2 0.32-1 armhf -libwbclient0 2:4.9.4+dfsg-2 armhf +libwbclient0 2:4.9.5+dfsg-3 armhf -libwrap0 7.6.q-27 armhf +libwrap0 7.6.q-28 armhf -libxapian30 1.4.9-1 armhf +libxapian30 1.4.11-1 armhf -libxml-libxml-perl 2.0133+dfsg-1 armhf +libxml-libxml-perl 2.0134+dfsg-1 armhf -libxml-parser-perl 2.44-2+b3 armhf +libxml-parser-perl 2.44-4 armhf -libxml-twig-perl 1:3.50-1 all +libxml-twig-perl 1:3.50-1.1 all -libxmlrpc-lite-perl 0.717-1 all +libxmlrpc-lite-perl 0.717-2 all -libxtables12 1.8.2-3 armhf +libxtables12 1.8.2-4 armhf -libzzip-0-13 0.13.62-3.1 armhf +libzzip-0-13 0.13.62-3.2 armhf -lintian 2.6.0 all +lintian 2.9.1 all -locales 2.28-6+rpi1 all -locate 4.6.0+git+20190105-2 armhf +locales 2.28-8 all +locate 4.6.0+git+20190209-2 armhf -lsb-base 10.2018112800+rpi1 all -lsb-release 10.2018112800+rpi1 all +lsb-base 10.2019031300+rpi1 all +lsb-release 10.2019031300+rpi1 all -man-db 2.8.5-1 armhf +man-db 2.8.5-2 armhf -mesa-common-dev 18.3.2-1 armhf -mesa-va-drivers 18.3.2-1 armhf -mesa-vdpau-drivers 18.3.2-1 armhf +mesa-common-dev 18.3.4-2 armhf +mesa-va-drivers 18.3.4-2 armhf +mesa-vdpau-drivers 18.3.4-2 armhf -mpd 0.21.4-1+b1 armhf -multiarch-support 2.28-6+rpi1 armhf +mpd 0.21.5-3 armhf +multiarch-support 2.28-8 armhf -nano 3.2-1 armhf +nano 3.2-2 armhf -ncurses-base 6.1+20181013-1 all -ncurses-bin 6.1+20181013-1 armhf -ncurses-term 6.1+20181013-1 all +ncurses-base 6.1+20181013-2 all +ncurses-bin 6.1+20181013-2 armhf +ncurses-term 6.1+20181013-2 all -netbase 5.5 all -netcat-openbsd 1.195-1 armhf +netbase 5.6 all +netcat-openbsd 1.195-2 armhf -nfs-common 1:1.3.4-2.3 armhf +nfs-common 1:1.3.4-2.4 armhf -ntfs-3g 1:2017.3.23AR.3-2 armhf +ntfs-3g 1:2017.3.23AR.3-3 armhf -openssh-client 1:7.9p1-6 armhf -openssh-server 1:7.9p1-6 armhf -openssh-sftp-server 1:7.9p1-6 armhf -openssl 1.1.1a-1 armhf +openssh-client 1:7.9p1-9 armhf +openssh-server 1:7.9p1-9 armhf +openssh-sftp-server 1:7.9p1-9 armhf +openssl 1.1.1b-1 armhf -perl 5.28.1-4 armhf -perl-base 5.28.1-4 armhf -perl-modules-5.28 5.28.1-4 all +perl 5.28.1-6 armhf +perl-base 5.28.1-6 armhf +perl-modules-5.28 5.28.1-6 all -python 2.7.15-4 armhf -python-all 2.7.15-4 armhf -python-all-dev 2.7.15-4 armhf -python-apt-common 1.8.3 all +python 2.7.16-1 armhf +python-all 2.7.16-1 armhf +python-all-dev 2.7.16-1 armhf +python-apt-common 1.8.4 all -python-backports.functools-lru-cache 1.5-2 all +python-backports.functools-lru-cache 1.5-3 all -python-cffi-backend 1.11.5-3+b1 armhf +python-cffi-backend 1.12.2-1 armhf -python-cryptography 2.3-1 armhf +python-cryptography 2.6.1-3 armhf -python-dev 2.7.15-4 armhf +python-dev 2.7.16-1 armhf -python-lxml 4.3.0-1 armhf -python-minimal 2.7.15-4 armhf +python-lxml 4.3.2-1 armhf +python-minimal 2.7.16-1 armhf -python-pip 18.1-4 all -python-pip-whl 18.1-4 all -python-pkg-resources 40.7.1-1 all +python-pip 18.1-5 all +python-pip-whl 18.1-5 all +python-pkg-resources 40.8.0-1 all -python-setuptools 40.7.1-1 all +python-setuptools 40.8.0-1 all -python-soupsieve 1.7.3+dfsg-3 all +python-soupsieve 1.8+dfsg-1 all -python-xdg 0.25-4 all -python2 2.7.15-4 armhf -python2-dev 2.7.15-4 armhf -python2-minimal 2.7.15-4 armhf -python2.7 2.7.15-8 armhf -python2.7-dev 2.7.15-8 armhf -python2.7-minimal 2.7.15-8 armhf +python-xdg 0.25-5 all +python2 2.7.16-1 armhf +python2-dev 2.7.16-1 armhf +python2-minimal 2.7.16-1 armhf +python2.7 2.7.16-2 armhf +python2.7-dev 2.7.16-2 armhf +python2.7-minimal 2.7.16-2 armhf -python3-acme 0.28.0-1 all -python3-apt 1.8.3 armhf +python3-acme 0.31.0-1 all +python3-apt 1.8.4 armhf -python3-certbot 0.28.0-1 all +python3-certbot 0.31.0-1 all -python3-cffi-backend 1.11.5-3+b1 armhf +python3-cffi-backend 1.12.2-1 armhf -python3-cryptography 2.3-1 armhf +python3-cryptography 2.6.1-3 armhf -python3-debconf 1.5.70 all +python3-debconf 1.5.71 all -python3-distutils 3.7.2-3 all +python3-distutils 3.7.3~rc1-1 all -python3-lib2to3 3.7.2-3 all +python3-lib2to3 3.7.3~rc1-1 all -python3-pip 18.1-4 all -python3-pkg-resources 40.7.1-1 all +python3-pip 18.1-5 all +python3-pkg-resources 40.8.0-1 all -python3-requests 2.20.0-2 all +python3-requests 2.21.0-1 all -python3-setuptools 40.7.1-1 all +python3-setuptools 40.8.0-1 all -python3-urllib3 1.24-1 all +python3-urllib3 1.24.1-1 all -python3-xdg 0.25-4 all +python3-xdg 0.25-5 all -python3.7 3.7.2-2 armhf -python3.7-dev 3.7.2-2 armhf -python3.7-minimal 3.7.2-2 armhf -qt5-default 5.11.3+dfsg-2+rpi1 armhf -qt5-gtk-platformtheme 5.11.3+dfsg-2+rpi1 armhf -qt5-qmake 5.11.3+dfsg-2+rpi1 armhf -qt5-qmake-bin 5.11.3+dfsg-2+rpi1 armhf -qtbase5-dev 5.11.3+dfsg-2+rpi1 armhf -qtbase5-dev-tools 5.11.3+dfsg-2+rpi1 armhf +python3.7 3.7.3~rc1-1 armhf +python3.7-dev 3.7.3~rc1-1 armhf +python3.7-minimal 3.7.3~rc1-1 armhf +qt5-default 5.11.3+dfsg1-1+rpi1 armhf +qt5-gtk-platformtheme 5.11.3+dfsg1-1+rpi1 armhf +qt5-qmake 5.11.3+dfsg1-1+rpi1 armhf +qt5-qmake-bin 5.11.3+dfsg1-1+rpi1 armhf +qtbase5-dev 5.11.3+dfsg1-1+rpi1 armhf +qtbase5-dev-tools 5.11.3+dfsg1-1+rpi1 armhf -raspberrypi-bootloader 1.20190215-1 armhf -raspberrypi-kernel 1.20190215-1 armhf +raspberrypi-bootloader 1.20190401-1 armhf +raspberrypi-kernel 1.20190401-1 armhf -rsync 3.1.3-5 armhf -rsyslog 8.40.0-1 armhf +rsync 3.1.3-6 armhf +rsyslog 8.1901.0-1 armhf -ruby2.5 2.5.3-3 armhf +ruby2.5 2.5.5-1 armhf -samba-libs 2:4.9.4+dfsg-2 armhf +samba-libs 2:4.9.5+dfsg-3 armhf -ssh 1:7.9p1-6 all +ssh 1:7.9p1-9 all -strace 4.21-1 armhf +strace 4.26-0.2 armhf -sysstat 12.0.1-1+b1 armhf -systemd 240-5+rpi1 armhf -systemd-sysv 240-5+rpi1 armhf -sysvinit-utils 2.93-6 armhf +sysstat 12.0.3-2 armhf +systemd 241-1+rpi2 armhf +systemd-sysv 241-1+rpi2 armhf +sysvinit-utils 2.93-8 armhf -telnet 0.17-41.1 armhf -tmux 2.8-2 armhf +telnet 0.17-41.2 armhf +tmux 2.8-3 armhf -tzdata 2018i-1 all +tzdata 2019a-1 all -udev 240-5+rpi1 armhf +udev 241-1+rpi2 armhf -unzip 6.0-21 armhf +unzip 6.0-22 armhf -usb.ids 2019.01.17-1 all -usbutils 1:010-2 armhf +usb.ids 2019.02.23-1 all +usbutils 1:010-3 armhf -vim-common 2:8.1.0875-1 all -vim-nox 2:8.1.0875-1 armhf -vim-runtime 2:8.1.0875-1 all -vim-tiny 2:8.1.0875-1 armhf +vim-common 2:8.1.0875-2 all +vim-nox 2:8.1.0875-2 armhf +vim-runtime 2:8.1.0875-2 all +vim-tiny 2:8.1.0875-2 armhf -whois 5.4.1 armhf -wireless-regdb 2016.06.10-1 all +whois 5.4.2 armhf +wireless-regdb 2018.05.09-0~rpt1 all -wpasupplicant 2:2.6-21+b1 armhf +wpasupplicant 2:2.7+git20190128+0c1e29f-3 armhf -xkb-data 2.23.1-1 all +xkb-data 2.26-2 all -xxd 2:8.1.0875-1 armhf +xxd 2:8.1.0875-2 armhf --- .etckeeper | 6 ++++++ apparmor.d/usr.sbin.named | 12 +++++++++++ apt/apt.conf.d/01autoremove-kernels | 18 +--------------- console-setup/cached_UTF-8_del.kmap.gz | Bin 4446 -> 4452 bytes cron.daily/dpkg | 8 +++---- cron.daily/man-db | 2 +- environment.d/90qt-a11y.conf | 1 + init.d/ssh | 12 +++++------ init.d/sysstat | 9 ++++++++ rsyslog.conf | 6 +++--- security/access.conf | 28 ++++++++++++------------- security/limits.conf | 2 +- services | 25 +++++----------------- ssl/openssl.cnf | 4 ++-- systemd/sleep.conf | 25 ++++++++++++++++++++++ xattr.conf | 21 +++++++++++++++++++ 16 files changed, 111 insertions(+), 68 deletions(-) create mode 100644 environment.d/90qt-a11y.conf create mode 100644 systemd/sleep.conf create mode 100644 xattr.conf diff --git a/.etckeeper b/.etckeeper index 62361b13..c8c76e07 100755 --- a/.etckeeper +++ b/.etckeeper @@ -2,6 +2,7 @@ mkdir -p './X11/xkb' mkdir -p './apparmor.d/force-complain' +mkdir -p './apt/auth.conf.d' mkdir -p './apt/preferences.d' mkdir -p './apt/trusted.gpg.d' mkdir -p './avahi/services' @@ -110,6 +111,7 @@ maybe chmod 0644 'apt/apt.conf.d/05etckeeper' maybe chmod 0644 'apt/apt.conf.d/20listchanges' maybe chmod 0644 'apt/apt.conf.d/50raspi' maybe chmod 0644 'apt/apt.conf.d/70debconf' +maybe chmod 0755 'apt/auth.conf.d' maybe chmod 0644 'apt/listchanges.conf' maybe chmod 0755 'apt/preferences.d' maybe chmod 0644 'apt/sources.list' @@ -481,6 +483,8 @@ maybe chmod 0644 'emacs/site-start.d/50cmake-data.el' maybe chmod 0644 'emacs/site-start.d/50figlet.el' maybe chmod 0644 'email-addresses' maybe chmod 0644 'environment' +maybe chmod 0755 'environment.d' +maybe chmod 0644 'environment.d/90qt-a11y.conf' maybe chmod 0755 'etckeeper' maybe chmod 0755 'etckeeper/commit.d' maybe chmod 0755 'etckeeper/commit.d/10vcs-test' @@ -4024,6 +4028,7 @@ maybe chmod 0644 'systemd/logind.conf' maybe chmod 0755 'systemd/network' maybe chmod 0644 'systemd/networkd.conf' maybe chmod 0644 'systemd/resolved.conf' +maybe chmod 0644 'systemd/sleep.conf' maybe chmod 0755 'systemd/system' maybe chmod 0644 'systemd/system.conf' maybe chmod 0644 'systemd/system/autologin@.service' @@ -4097,6 +4102,7 @@ maybe chmod 0755 'wpa_supplicant/action_wpa.sh' maybe chmod 0755 'wpa_supplicant/functions.sh' maybe chmod 0755 'wpa_supplicant/ifupdown.sh' maybe chmod 0600 'wpa_supplicant/wpa_supplicant.conf' +maybe chmod 0644 'xattr.conf' maybe chmod 0755 'xdg' maybe chmod 0755 'xdg/autostart' maybe chmod 0644 'xdg/autostart/at-spi-dbus-bus.desktop' diff --git a/apparmor.d/usr.sbin.named b/apparmor.d/usr.sbin.named index 87d528fa..9e6deb84 100644 --- a/apparmor.d/usr.sbin.named +++ b/apparmor.d/usr.sbin.named @@ -22,6 +22,9 @@ /var/cache/bind/** lrw, /var/cache/bind/ rw, + # Database file used by allow-new-zones + /var/cache/bind/_default.nzd-lock rwk, + # gssapi /etc/krb5.keytab kr, /etc/bind/krb5.keytab kr, @@ -68,6 +71,15 @@ # dynamic updates /var/tmp/DNS_* rw, + # dyndb backends + /usr/lib/bind/*.so rm, + + # Samba DLZ + /var/lib/samba/private/dns.keytab r, + /var/lib/samba/private/named.conf r, + /var/lib/samba/private/dns/** rwk, + /etc/smb.conf r, + # Site-specific additions and overrides. See local/README for details. #include } diff --git a/apt/apt.conf.d/01autoremove-kernels b/apt/apt.conf.d/01autoremove-kernels index 233625a3..e939c0ab 100644 --- a/apt/apt.conf.d/01autoremove-kernels +++ b/apt/apt.conf.d/01autoremove-kernels @@ -1,35 +1,20 @@ // DO NOT EDIT! File autogenerated by /etc/kernel/postinst.d/apt-auto-removal APT::NeverAutoRemove { - "^linux-image-4\.14\.79-v7\+$"; "^linux-image-4\.14\.98-v7\+$"; - "^linux-headers-4\.14\.79-v7\+$"; "^linux-headers-4\.14\.98-v7\+$"; - "^linux-image-extra-4\.14\.79-v7\+$"; "^linux-image-extra-4\.14\.98-v7\+$"; - "^linux-modules-4\.14\.79-v7\+$"; "^linux-modules-4\.14\.98-v7\+$"; - "^linux-modules-extra-4\.14\.79-v7\+$"; "^linux-modules-extra-4\.14\.98-v7\+$"; - "^linux-signed-image-4\.14\.79-v7\+$"; "^linux-signed-image-4\.14\.98-v7\+$"; - "^kfreebsd-image-4\.14\.79-v7\+$"; "^kfreebsd-image-4\.14\.98-v7\+$"; - "^kfreebsd-headers-4\.14\.79-v7\+$"; "^kfreebsd-headers-4\.14\.98-v7\+$"; - "^gnumach-image-4\.14\.79-v7\+$"; "^gnumach-image-4\.14\.98-v7\+$"; - "^.*-modules-4\.14\.79-v7\+$"; "^.*-modules-4\.14\.98-v7\+$"; - "^.*-kernel-4\.14\.79-v7\+$"; "^.*-kernel-4\.14\.98-v7\+$"; - "^linux-backports-modules-.*-4\.14\.79-v7\+$"; "^linux-backports-modules-.*-4\.14\.98-v7\+$"; - "^linux-modules-.*-4\.14\.79-v7\+$"; "^linux-modules-.*-4\.14\.98-v7\+$"; - "^linux-tools-4\.14\.79-v7\+$"; "^linux-tools-4\.14\.98-v7\+$"; - "^linux-cloud-tools-4\.14\.79-v7\+$"; "^linux-cloud-tools-4\.14\.98-v7\+$"; }; /* Debug information: @@ -39,12 +24,11 @@ APT::NeverAutoRemove # list of different kernel versions: # Installing kernel: (4.14.98-v7+) -# Running kernel: ignored (4.14.79-v7+) +# Running kernel: ignored (4.14.98-v7+) # Last kernel: # Previous kernel: # Kernel versions list to keep: # Kernel packages (version part) to protect: -4\.14\.79-v7\+ 4\.14\.98-v7\+ */ diff --git a/console-setup/cached_UTF-8_del.kmap.gz b/console-setup/cached_UTF-8_del.kmap.gz index d56272d1183250bf9035751740b7d1080bc7adde..311fca37d7d7c1dfbf0560efc424ecff0091c4d8 100644 GIT binary patch delta 3716 zcmZ8hcQ_k*8?9Y6+A6hfFIBZ`#imxJOHom=Dt6SWElM;-TWZxN#HcOyCN--?tRhy_ z-kaD#`Ly@D_xAh#`aRF@InO!o`=0Z@6I^p#CFEoXtTFGKt%s#ba??msh0nJX_Ah3; z2G4g*N;f8cVhpVKs4HsoOi8>k=IrGoB9EP7#Q_cQ?3Q)f;P+Dgfh^lwsu$Xa=@>9< z?Ue6HNF&1VN7&?L6)T=)J`XajR_IFixbJ{|eBYUeO<{qB?pE@J)Hx8!U)|aNGMs7- z5HO8Iu+iq+{Hk*JQ19!AuUexQmUv=pD7dQ61m|rUZq9Ps^4s)4 zgJTy{0Ujz9IMnpja^cr(&XQ@SY9QN2HuoY11E!y=eoLy{c1`T$Kn4y4lH?IMGtO4~ z4Gr4RY4Wxhry_n8DhzWPARsk|N{J}##lnEriX;-@0M5QK%i!1R{~$#NV$#UQX?l^( z--boh=45WPI~z7A?2d2Pi0}iI+-=BqAX6_VH~eco>}s#YPj9TcTgxHL(&VQ>a?ynC z(3vl5z98C%ZqS=R#9#7L@+691vt*(H-PDR(HzK~#zWaFUYR|=yZdn&o48FE=-Rv%B zpDlN=;=kja0imdIs422Z5@MHWF1<{&b$iboTMu`bJ{Da8N?NtwH2Yqf;jq|RY2T(; zCBKg#<%npefo%C7JoM}~Ezop|Hj3+E@Gr&*nb}gs5af|z-)~s86=m%=K-U@SjS>~i zs&TybN&aA!{50KOffq~_mkj3xZJBnqxWI}&=6l&)pKj@TNOC&JdZ{q2nNrD*G*9Fw zHbV;5qT;XKx)1j%{gW16-)|#OeLIq7hc^@f=6YgY&cMSK@j{v*7y|nzC+Ce2p1J-v zCm#)#=Q^vK#5G?WY_}J5peecKjF9Oe!iBN!1()h9+H~}<^KALTOcekZSD3VPYNaG2 z2q2BOVr`PQ$w0IB?r;8UzcYW2WxDL&_7@<0qdw&OJx|;0Xd7u)NE4>YYz++U`Sg2Q zhLe3S!$q2{DesjtXuMot&FxlT7MCi~`^Ah{{$>A9r?6Qv6!A0U9EbGn=h%7%2Z4Aj z1>>ibH~ZOI@@v39xeqPk_mNb6zMJHS-0?Gv&x5bQrx5a-sjRencnO`oDqe<0yQAm@ z6l~I1hNB;KhgIE!I&5!}@5nB`D%mxL5}lEDiA#e@;OV+w2QB1?7L_+T2RyBvP3^@-2edgB1OuVXnY%35v zmuWaN0cxW6C<(Z+R?qKMa+$}a8Uqr8{8EM79^$@5M(S(t$s+A?%06QXDLfpaYO8KAX6{)5Wa@IvRuqYjjG6I z=Th8V24-zM!=J8uEO0n$-4un0=Z81Lw5{gAZ(rRp1y{Kgx_jLyO@7n@1vjDFTFNVL z!fN>Nh4=wM^o&H-gPa~a@N$tQ9;QbF1~12+(3D`6k3WPx-ju9Eq>@WeC6aafEhxLD z$@cycXh*+uC0!5HJy%d8n%*clr!`PoG}Cwm+>avO)>C~Wk?e5Oulu0+$1f+820w@hp$+gKD}uvxRlK${r;$9A{0|#dL4caX zSRn|j;p6qrMBgcGhqk=8!d0#$> zls(+{_;vg^{yLLx4>XuHC2ub&ACS61w*Z1g3bGLIF9}aATbIB3ssXOgEnN5q$gB67 z`f;z{2E|g>l=N^w>ZsM*yNG_>Qn+%uv^wLD{;bNfaNTAYDg4Is$5cOKoI};piz3O~ zw~Zul#W+{&%$2tm!PkGd{)};g-!i*3NGPg1wat_iSFR~SJJ`V`0xr%cmRreud_~0C zTPHq$U26zjhYh46t_qowbZVC-G`H#m(CLUcC*6z)iks<88AM=mM>6zzq^}PbJPFC1 z9dyuBO;!0WYI=bz!6HB`ARO{hZLy!IG1qA`@W;W8PW{4+D%nxz&jmCmJ}qcDU2m-s z(<-4byoBV8R~mwnK=+c(dgpQ<*<6= zM@|<5okleKlU)R${wdxkAX9PHzNBrnQ^GedQ00pp1daDZ5x2~ndouRCNKJmILP|)H zt-IqbFF*zF&EO+%JhB73-F)+p&t~#ix5r|DEfh?5*v(OWx2FbnO3iaO?=kI~ zo0-T+EP3F$+B!Fm|7%yR>x8cHDq$pO0_DA!+O+;i*Zf5ejra8LTEWRXMTix{4{i5% zc~9(O5v0Yuy6<()<&riY``?p!)8Y}e9An-(D!Yj;+Viwmo1C8@@@{#9Vr9y4Z|m{D zQ}HB+Jg~&o-|0K}S(1Osv)d{7<FfJEV$vUc$fXJ_Lvk$i<6wGhK3$NrtzsDcX z-H4;VnSo%)B^U5}oW|fyE^WdlT)3F3&DjtLjhnax2_aJqEUzSGdE4j1A}L+?Kzf~( zB7F&&RZY4rno!8p#232Jl3Q!zgRxm;3`%!Zcchpz6Eza_)n*wF)ON*Dy5S)9*WFpa z?!^hw)~{;#pzBQRe#WjDPTB=6iSsU}V7$nS@H^)_l4I!_x@5|D|G;cutU?E4bMKN` zUvIw=$*bT00T`Q{b0MAo7fR{VIF@_#j63+O7gHtZW&7GQpgMXVDmRIeOI7z1oi+3l zOxw8oPsI&3-+0_`Ugu0H=hBG(>1CeXA(d2npn4aq{3qpay~8u^epF^m*7p+Ryc~cx zBnkbzq!^l*1a9a%eYm)yVC<#CxVIDHlg)I2g z+g1%GiYImeV5)L`-c?M%ZV(P5RMrVZFi!Te#-+ltWG~D`8tzlyrA+Z=l>};N>kKfS zKbOHeJM*LVdUKebTI*yQGY6YHQe_LNrsw;0VDGd}8wOkj!30h|i<~HaFJA7d=#G@3 z`#d_<71SW(rfTo+bB-JL^mx~r?w%*l^m>~4b?Ukv3<~3dSfA<_u#l3QAoxl)?h{hB zhusev57x}I)vR11A@kZpNpx0?8)ZXhRh}ffrB6aY4xWT}XUk4)A)Wbw7pJLH!bhS9 zKYd|qxomInfqJ5}MnWm#gAnQnKc#r7+0DJ^VwTVv+BHuHI6tAMpxjZe;Zdm10`GI2nTw!Yp5mBDO~-d|TN7tAbrP%@iqfO_L<2fvfJ9?N^tqLVC!df=~u=zl8YKBZl z{i7mur$i$fmFprk$kWkq9I$g>x9|lBDX;Sg&eAc-i7kHuSQyJPSP)9MRyZuAr9U%3 zp=H$*Hs;=nO%F8JX^fJJ1I97I#xN~(YPBsJ8H0&QwZa=}2&}Ff?j&>fhoh!@{1Cz2 zB3x*}oG`>e4%~Ss)Dg|I7?vDuZ4|#Ibw?_;<8VbDvNWt93>G9Yaa6Ii>G1>x_Y)%) zl8*Jlcht3W#Afm7qh{3w@F`t~7qzibh2;|Awh(n~?iooFX5Cm}nI4B2hnl=>hlFy0 zC^uwTnF|`R>Skb#$gY{YPY!z?U$=&MYUuhlDmmA(4x9BOzigyHu+3*r;EKl?@ieSm zATf!*jL5DFWuB*rNFGXAyX$N-v5 zM`W%pjh=q6kb7u-B^06aX)RjBU!GrX%x(X*owewOC3~1~r*I3XblxOqo^p=-u-`GL zg!-+Ao-e?x_Q_ld%#W`&^E(O89P3lEpqiuI33zzpa@f2we;yaZ%8%Zmr-IEh2G1;F zbg4^tQZF${{}?HLS(j|C890J?QF=p@<`qZ2jIi?E{do>OR}`T2%pu?_)cYuBdG_}53zCzDr^<)b(^m}^ zW3?iy$=MP)UU!Bfx2ab9=U3Lcj82kxpTw-2x<;tYG3d!=W)(QJ{y{RxU0c=oPJw{# zd?nGdC_-rbaxx^D!ka>;4DR5K?4~-~IGU%MS{$YCH-32|HWczzm$`f6T$eQn1 zXbp#G>!MqC97~=(j)u~q8j;=St-tu@n6@ze{L={>5ED;*bt);QVEq3GQ5pU16L$-x z!#(kuM7Ak!73qpPEP4E(R>^9CftTCm3JT)HE-2$Mt;+mm&c7L=LVAYHsthl zeCAez9dy?a?$*=i!PK5Ie?LyVusQmxvcvy2<#z+pRjklO(?Pk1?z&ff>v^A>A9+ue z@Qe1fVMbUQ&FRmH;_&4zsd;5`wccU{s?5*l_zoC9z^Ju>aPWXx`&N86G5e%QF_RF; zF&HZgGkEuxotDc_dDO{NvG)p3apd~-vM9abNIJ97eCg;+HA)y39GnJhAHWb9<-ywF zGW>G9uKV^KFYGI=taO4ul{cc2%_He&yk{J1A78MYkDzRZGJ|2n?m9+aqNe%eul{5I zD;4;ijQWjyk+Wowoh2jZWBa+Vsq3hw$ChNAon+KCzK#I&p8rxlI9)iTyMgp18I(2q?g|Qy6~k63R}FnUl78iu z(ye3G81vp%m733iS~94MepYZnF1pqd@9&F|@QOKaBqNLIx)1o^`&!Y*Y^h34f)aO- zUSJXmt6;c>FaMft{z}y98(}mm-8|&lDa8Znp%a(FPoWox!sG*y%YcS|zTyy%JEQFT zh3vN~F{|ljGK!)SiK|4qL$&~1#R2im7S{@a-oP{*cFLrp(~><=_#LNiHhZGuaa1C- zMiv&)o6am?2(!_1{2KmH{nsXpNMGm^JS~vdE1g};Q*%{3f=c2w={{Abjxba~mojG3 zL{gPafP&*lh>$o2!YLqCBmp$)S!v-l0JWu3uNAvO4#1!}QuO>pmomZg`$N;DWf@M@Ubjg)$wg zER2sXlU5wg(OY)X8#2zOoh+Fr7XG z8v-+&8Dn|Eu|L1?{&jo{B7*JE?~>g6@b}Ud8)e?f$ef!S6u?{!7BV`^2F?;UaA};G zwA7$rO@&FR0TsK7gp?L8=sJ8$Kd|T<$(S#s1`JzZK)E3OqTvTmh}wr>j9q_FxJ~9{ z>_;Y@FiMsyx8j%`?#V{iW<`c>?*ScI>lW->tqr#%5raMN^GHSO703`5_l{DbEKG#fqYVA#KlPE2~xWLRftzTk_;!0U5sIVqX$IT|f zmid6$r`TI_5RPxhcKQ#`$3C2ZNMlU;8B|v6M&$_8tnD(}7$8dD2+K;TY&SuVyw)Ya z^TtWJ7jZ|*e>*48d^|)2Tp+(Pdno)c)FhqrjLg1Sl=cr7+Igj|;?>xfS{C3Z?Wy%r zUgw6s`R9={x{}tv=9w86YA~)!#aXq;!B(u7Dla!auqE(>_Bhw<+TbR_3EuecQu-^O zStb#1gMHQiwv;by9uGslstNozhRgXkrl(r#m@P)N{7%mF+MC(1`>en}L%Lh4;w8ki z)3I(Jt5IZ8-un)$7fT)l!e+?TXC@`qq6L6O^!%-GmUZ)X4P-ts*f@lN;)pNM#Z6J;pCA3b@Su`R*9pO=J7BnhHw@K{ zydDBwt9+!w0QI7}NmqDu)6>T~&u2=Js$g~IlMQ(=Xa5+TBS`nV)5uH%IiZ2$xsIK# zZ~HZRZDNRNo(OUL(wXg`H}lBqxo}If56G$B=sTX3>i`(3>t9lEKE{W0%E@m%^O;Je zFqUoDx6t7I_j{tx)QvNuk^fHwLkxF7SlQ!0t2b0_p>nhNX6Ltx+R=mZrGqOb{Qb=t zvvg&lOuswE!l&wK2@Skd1!b_`Qh?uD4t1wXH9#cscJ|cRuK#HlopU$3&a5MRR_ViA z$3_dX!ke#{3YSaL;SK7aT9k}3XF)nYkDc>8s5HnZhHA;sn)>~g2h8TAV%u0sDmu{h zd--jt&K-#*d;OSH$bPQ3j&c1+gG9onA4`us;>i-QV&}m~7F?7Ou9XtGVy|mxY&rsx z(=jw2jvgHeYXMKQw^aFWTdinW+E^zf;SPnf&hn+oZL6&9f`2uFp?keU|N8H5UP?0F z{#PN(xcjK>Rp4`*3S~RAI;NKjRAy-&E|n^FH%;R{j&j6KYwp^axd`w$3L?bebdIpsxi)MBjX-RV#A4wfgTx(^vkz4Z+DcTV<*U}12@7?pPLej z1HuSdf(b2_Z6q2^e49YRUQutb%gW;9*tJ%}1jAzKjvvV!KjcypM(=cv+b~;Y%h;zC zAk>Numrv5a9Gi@I^anMTAt%H|`GU;3t$m7JH^h<(v&T(9@j(OQI_Aan$^P7K+&)+j z?qwY6s$B^Vm$R;9H#V6E+>mHt>AF0AP4bBE*_iDMS78w@xSz)5z;`@Y zns^|Xgluq!R|%te^pz(HQu=nZR@&~z9krn>62HImd`k~%@wb=$w)`1WKRNpG)PVD$ z&@s^GdvY+%cbVnq%lN(i+CmYDN_WwLU;{9;VCTYQ(A=%2mo7S9B5m8XyQjLbX!zbT HIoW>zd(cbt diff --git a/cron.daily/dpkg b/cron.daily/dpkg index 0a6b05e1..62da8172 100755 --- a/cron.daily/dpkg +++ b/cron.daily/dpkg @@ -9,16 +9,16 @@ if cd /var/backups ; then dbchanged=no dbfiles="arch status diversions statoverride" for db in $dbfiles ; do - if ! cmp -s dpkg.${db}.0 $dbdir/$db ; then + if ! cmp -s "dpkg.${db}.0" "$dbdir/$db"; then dbchanged=yes break; fi done if [ "$dbchanged" = "yes" ] ; then for db in $dbfiles ; do - [ -e $dbdir/$db ] || continue - cp -p $dbdir/$db dpkg.$db - savelog -c 7 dpkg.$db >/dev/null + [ -e "$dbdir/$db" ] || continue + cp -p "$dbdir/$db" "dpkg.$db" + savelog -c 7 "dpkg.$db" >/dev/null done fi diff --git a/cron.daily/man-db b/cron.daily/man-db index 942a22ce..1342bc68 100755 --- a/cron.daily/man-db +++ b/cron.daily/man-db @@ -22,7 +22,7 @@ if ! [ -d /var/cache/man ]; then fi # expunge old catman pages which have not been read in a week -if [ ! -d /run/systemd/system ] && [ -d /var/cache/man ]; then +if [ -d /var/cache/man ]; then cd / start-stop-daemon --start --pidfile /dev/null --startas /bin/sh \ --oknodo --chuid man $iosched_idle -- -c \ diff --git a/environment.d/90qt-a11y.conf b/environment.d/90qt-a11y.conf new file mode 100644 index 00000000..46a63b29 --- /dev/null +++ b/environment.d/90qt-a11y.conf @@ -0,0 +1 @@ +QT_ACCESSIBILITY=1 diff --git a/init.d/ssh b/init.d/ssh index f2500088..620af70e 100755 --- a/init.d/ssh +++ b/init.d/ssh @@ -80,7 +80,7 @@ case "$1" in check_for_no_start check_dev_null log_daemon_msg "Starting OpenBSD Secure Shell server" "sshd" || true - if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then + if start-stop-daemon --start --quiet --oknodo --chuid 0:0 --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then log_end_msg 0 || true else log_end_msg 1 || true @@ -88,7 +88,7 @@ case "$1" in ;; stop) log_daemon_msg "Stopping OpenBSD Secure Shell server" "sshd" || true - if start-stop-daemon --stop --quiet --oknodo --pidfile /run/sshd.pid; then + if start-stop-daemon --stop --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd; then log_end_msg 0 || true else log_end_msg 1 || true @@ -110,10 +110,10 @@ case "$1" in check_privsep_dir check_config log_daemon_msg "Restarting OpenBSD Secure Shell server" "sshd" || true - start-stop-daemon --stop --quiet --oknodo --retry 30 --pidfile /run/sshd.pid + start-stop-daemon --stop --quiet --oknodo --retry 30 --pidfile /run/sshd.pid --exec /usr/sbin/sshd check_for_no_start log_end_msg check_dev_null log_end_msg - if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then + if start-stop-daemon --start --quiet --oknodo --chuid 0:0 --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then log_end_msg 0 || true else log_end_msg 1 || true @@ -125,13 +125,13 @@ case "$1" in check_config log_daemon_msg "Restarting OpenBSD Secure Shell server" "sshd" || true RET=0 - start-stop-daemon --stop --quiet --retry 30 --pidfile /run/sshd.pid || RET="$?" + start-stop-daemon --stop --quiet --retry 30 --pidfile /run/sshd.pid --exec /usr/sbin/sshd || RET="$?" case $RET in 0) # old daemon stopped check_for_no_start log_end_msg check_dev_null log_end_msg - if start-stop-daemon --start --quiet --oknodo --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then + if start-stop-daemon --start --quiet --oknodo --chuid 0:0 --pidfile /run/sshd.pid --exec /usr/sbin/sshd -- $SSHD_OPTS; then log_end_msg 0 || true else log_end_msg 1 || true diff --git a/init.d/sysstat b/init.d/sysstat index a4a9fabc..34209a54 100755 --- a/init.d/sysstat +++ b/init.d/sysstat @@ -20,6 +20,15 @@ DESC="the system activity data collector" test -f "$DAEMON" || exit 0 umask 022 +# our configuration file +DEFAULT=/etc/default/sysstat + +# default setting... +ENABLED="false" + +# ...overridden in the configuration file +test -r "$DEFAULT" && . "$DEFAULT" + set -e status=0 diff --git a/rsyslog.conf b/rsyslog.conf index cc009195..655d7029 100644 --- a/rsyslog.conf +++ b/rsyslog.conf @@ -1,7 +1,7 @@ -# /etc/rsyslog.conf Configuration file for rsyslog. +# /etc/rsyslog.conf configuration file for rsyslog # -# For more information see -# /usr/share/doc/rsyslog-doc/html/rsyslog_conf.html +# For more information install rsyslog-doc and see +# /usr/share/doc/rsyslog-doc/html/configuration/index.html ################# diff --git a/security/access.conf b/security/access.conf index 74c5fbe8..47b6b84c 100644 --- a/security/access.conf +++ b/security/access.conf @@ -18,7 +18,7 @@ # pam_access with X applications that provide PAM_TTY values that are # the display variable like "host:0".] # -# permission : users : origins +# permission:users:origins # # The first field should be a "+" (access granted) or "-" (access denied) # character. @@ -79,44 +79,44 @@ ############################################################################## # # User "root" should be allowed to get access via cron .. tty5 tty6. -#+ : root : cron crond :0 tty1 tty2 tty3 tty4 tty5 tty6 +#+:root:cron crond :0 tty1 tty2 tty3 tty4 tty5 tty6 # # User "root" should be allowed to get access from hosts with ip addresses. -#+ : root : 192.168.200.1 192.168.200.4 192.168.200.9 -#+ : root : 127.0.0.1 +#+:root:192.168.200.1 192.168.200.4 192.168.200.9 +#+:root:127.0.0.1 # # User "root" should get access from network 192.168.201. # This term will be evaluated by string matching. # comment: It might be better to use network/netmask instead. # The same is 192.168.201.0/24 or 192.168.201.0/255.255.255.0 -#+ : root : 192.168.201. +#+:root:192.168.201. # # User "root" should be able to have access from domain. # Uses string matching also. -#+ : root : .foo.bar.org +#+:root:.foo.bar.org # # User "root" should be denied to get access from all other sources. -#- : root : ALL +#-:root:ALL # # User "foo" and members of netgroup "nis_group" should be # allowed to get access from all sources. # This will only work if netgroup service is available. -#+ : @nis_group foo : ALL +#+:@nis_group foo:ALL # # User "john" should get access from ipv4 net/mask -#+ : john : 127.0.0.0/24 +#+:john:127.0.0.0/24 # # User "john" should get access from ipv4 as ipv6 net/mask -#+ : john : ::ffff:127.0.0.0/127 +#+:john:::ffff:127.0.0.0/127 # # User "john" should get access from ipv6 host address -#+ : john : 2001:4ca0:0:101::1 +#+:john:2001:4ca0:0:101::1 # # User "john" should get access from ipv6 host address (same as above) -#+ : john : 2001:4ca0:0:101:0:0:0:1 +#+:john:2001:4ca0:0:101:0:0:0:1 # # User "john" should get access from ipv6 net/mask -#+ : john : 2001:4ca0:0:101::/64 +#+:john:2001:4ca0:0:101::/64 # # All other users should be denied to get access from all sources. -#- : ALL : ALL +#-:ALL:ALL diff --git a/security/limits.conf b/security/limits.conf index 7ced0530..1aec6525 100644 --- a/security/limits.conf +++ b/security/limits.conf @@ -24,7 +24,7 @@ # - data - max data size (KB) # - fsize - maximum filesize (KB) # - memlock - max locked-in-memory address space (KB) -# - nofile - max number of open files +# - nofile - max number of open file descriptors # - rss - max resident set size (KB) # - stack - max stack size (KB) # - cpu - max CPU time (MIN) diff --git a/services b/services index ded48c29..fa7ae245 100644 --- a/services +++ b/services @@ -37,15 +37,9 @@ nameserver 42/tcp name # IEN 116 whois 43/tcp nicname tacacs 49/tcp # Login Host Protocol (TACACS) tacacs 49/udp -re-mail-ck 50/tcp # Remote Mail Checking Protocol -re-mail-ck 50/udp domain 53/tcp # Domain Name Server domain 53/udp -tacacs-ds 65/tcp # TACACS-Database Service -tacacs-ds 65/udp -bootps 67/tcp # BOOTP server bootps 67/udp -bootpc 68/tcp # BOOTP client bootpc 68/udp tftp 69/udp gopher 70/tcp # Internet Gopher @@ -54,27 +48,17 @@ http 80/tcp www # WorldWideWeb HTTP link 87/tcp ttylink kerberos 88/tcp kerberos5 krb5 kerberos-sec # Kerberos v5 kerberos 88/udp kerberos5 krb5 kerberos-sec # Kerberos v5 -supdup 95/tcp -hostnames 101/tcp hostname # usually from sri-nic iso-tsap 102/tcp tsap # part of ISODE acr-nema 104/tcp dicom # Digital Imag. & Comm. 300 -acr-nema 104/udp dicom -csnet-ns 105/tcp cso-ns # also used by CSO name server -csnet-ns 105/udp cso-ns -rtelnet 107/tcp # Remote Telnet -rtelnet 107/udp pop3 110/tcp pop-3 # POP version 3 sunrpc 111/tcp portmapper # RPC 4.0 portmapper sunrpc 111/udp portmapper auth 113/tcp authentication tap ident sftp 115/tcp nntp 119/tcp readnews untp # USENET News Transfer Protocol -ntp 123/tcp ntp 123/udp # Network Time Protocol -pwdgen 129/tcp # PWDGEN service -pwdgen 129/udp -loc-srv 135/tcp epmap # Location Service -loc-srv 135/udp epmap +epmap 135/tcp loc-srv # DCE endpoint resolution +epmap 135/udp loc-srv netbios-ns 137/tcp # NETBIOS Name Service netbios-ns 137/udp netbios-dgm 138/tcp # NETBIOS Datagram Service @@ -144,7 +128,7 @@ microsoft-ds 445/tcp # Microsoft Naked CIFS microsoft-ds 445/udp kpasswd 464/tcp kpasswd 464/udp -urd 465/tcp ssmtp smtps # URL Rendesvous Directory for SSM +submissions 465/tcp ssmtp smtps urd # Submission over TLS [RFC8314] saft 487/tcp # Simple Asynchronous File Transfer saft 487/udp isakmp 500/tcp # IPsec - Internet Security Association @@ -209,6 +193,8 @@ kerberos-adm 749/tcp # Kerberos `kadmin' (v5) # webster 765/tcp # Network dictionary webster 765/udp +domain-s 853/tcp # DNS over TLS [RFC7858] +domain-s 853/udp # DNS over DTLS [RFC8094] rsync 873/tcp ftps-data 989/tcp # FTP over SSL (data) ftps 990/tcp @@ -500,7 +486,6 @@ supfiledbg 1127/tcp # SUP debugging # # Services added for the Debian GNU/Linux distribution # -linuxconf 98/tcp # LinuxConf poppassd 106/tcp # Eudora poppassd 106/udp moira-db 775/tcp moira_db # Moira database diff --git a/ssl/openssl.cnf b/ssl/openssl.cnf index d155d1ed..a6fed92a 100644 --- a/ssl/openssl.cnf +++ b/ssl/openssl.cnf @@ -21,7 +21,7 @@ openssl_conf = default_conf # To use this configuration file with the "-extfile" option of the # "openssl x509" utility, name here the section containing the # X.509v3 extensions to use: -# extensions = +# extensions = # (Alternatively, use a configuration file that has only # X.509v3 extensions in its main [= default] section.) @@ -118,7 +118,7 @@ x509_extensions = v3_ca # The extensions to add to the self signed cert # input_password = secret # output_password = secret -# This sets a mask for permitted string types. There are several options. +# This sets a mask for permitted string types. There are several options. # default: PrintableString, T61String, BMPString. # pkix : PrintableString, BMPString (PKIX recommendation before 2004) # utf8only: only UTF8Strings (PKIX recommendation after 2004). diff --git a/systemd/sleep.conf b/systemd/sleep.conf new file mode 100644 index 00000000..dc2ed37f --- /dev/null +++ b/systemd/sleep.conf @@ -0,0 +1,25 @@ +# This file is part of systemd. +# +# systemd is free software; you can redistribute it and/or modify it +# under the terms of the GNU Lesser General Public License as published by +# the Free Software Foundation; either version 2.1 of the License, or +# (at your option) any later version. +# +# Entries in this file show the compile time defaults. +# You can change settings by editing this file. +# Defaults can be restored by simply deleting this file. +# +# See systemd-sleep.conf(5) for details + +[Sleep] +#AllowSuspend=yes +#AllowHibernation=yes +#AllowSuspendThenHibernate=yes +#AllowHybridSleep=yes +#SuspendMode= +#SuspendState=mem standby freeze +#HibernateMode=platform shutdown +#HibernateState=disk +#HybridSleepMode=suspend platform shutdown +#HybridSleepState=disk +#HibernateDelaySec=180min diff --git a/xattr.conf b/xattr.conf new file mode 100644 index 00000000..dcbc12c2 --- /dev/null +++ b/xattr.conf @@ -0,0 +1,21 @@ +# /etc/xattr.conf +# +# Format: +# +# +# Actions: +# permissions - copy when trying to preserve permissions. +# skip - do not copy. + +system.nfs4_acl permissions +system.nfs4acl permissions +system.posix_acl_access permissions +system.posix_acl_default permissions +trusted.SGI_ACL_DEFAULT skip # xfs specific +trusted.SGI_ACL_FILE skip # xfs specific +trusted.SGI_CAP_FILE skip # xfs specific +trusted.SGI_DMI_* skip # xfs specific +trusted.SGI_MAC_FILE skip # xfs specific +xfsroot.* skip # xfs specific; obsolete +user.Beagle.* skip # ignore Beagle index data +security.evm skip # may only be written by kernel