| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
|
|
| |
and less prone to conflict.
Simplify ls_installed while here.
|
| | |
|
| | |
|
| | |
|
| | |
|
| |
|
|
| |
Few tweaks while here.
|
| | |
|
| |
|
|
|
|
|
|
| |
corresponding stable. So prevent rollbacking a specific binpatch but instead
always rollback the latest one. It's the only way we can know the system is
consistent.
discussed with halex@ jasper@ robert@
|
| |
|
|
|
|
| |
Put /var/syspatch into a variable, it's used more than 10 times.
prodded by robert@
|
|
|
This is currently a POC, maybe it will become something, maybe not.
Therefore it will not be hooked to the build before we are happy with it.
Workflow would be something like:
- fetch and verify signed tarballs containing the patched binaries from a mirror
- create a rollback tarball of the files we are about to replace
- extract and install the patched files
*** BIG FAT RED DISCLAIMER ***
This is very much WIP, it does *NOT* work, don't bikeshed, don't use it!
"get it in" deraadt@
|