Merge ~chad.smith/ubuntu/+source/ubuntu-advantage-tools:pkg-upload-24.3 into ubuntu/+source/ubuntu-advantage-tools:ubuntu/devel
Status: | Approved |
---|---|
Approved by: | Andreas Hasenack |
Approved revision: | 6738c9efbb48f246e088b9a3302dca3c7524164f |
Proposed branch: | ~chad.smith/ubuntu/+source/ubuntu-advantage-tools:pkg-upload-24.3 |
Merge into: | ubuntu/+source/ubuntu-advantage-tools:ubuntu/devel |
Diff against target: |
307 lines (+67/-20) 11 files modified
debian/changelog (+10/-0) tools/refresh-keyrings.sh (+1/-1) uaclient/entitlements/fips.py (+1/-11) uaclient/entitlements/repo.py (+14/-0) uaclient/entitlements/tests/test_cc.py (+3/-0) uaclient/entitlements/tests/test_cis.py (+3/-1) uaclient/entitlements/tests/test_fips.py (+10/-0) uaclient/entitlements/tests/test_repo.py (+14/-6) uaclient/status.py (+2/-0) uaclient/util.py (+8/-0) uaclient/version.py (+1/-1) |
Related bugs: |
Reviewer | Review Type | Date Requested | Status |
---|---|---|---|
Andreas Hasenack (community) | Approve | ||
git-ubuntu developers | ahasenack | Pending | |
Review via email:
|
Commit message
bug-fix-only release 24.3 for upload into groovy
cherry-pick one upstream commit and one backport
- Add fips keyring file and service name PR #1028 (GH #1026)[1]
- Backport Limit reboot message on fips enable only if /var/run/
- Increment pkg version an uaclient.version.py to 24.3
Known issues still present:
tox -p auto will still exhibit a known upstream flake issue[3]
references:
[1] https:/
[2] https:/
[3] known upstream flake issue with tox https:/
Groovy package from this branch is available adding this PPA:
sudo add-apt-repository ppa:chad.
There was an error fetching revisions from git servers. Please try again in a few minutes. If the problem persists, contact Launchpad support.
I took some extra precautions to verify the new gpg key that is being added by this, namely, "E233 41B2 A146 7EDB F070 57D6 C199 7C40 EDE2 2758":
- it's already referenced in tools/refresh- keyrings. sh as FIPS_KEY_ ID_XENIAL= "E23341B2A1467E DBF07057D6C1997 C40EDE22758" /esm.ubuntu. com/fips/ ubuntu/ dists/xenial/ Release. gpg and https:/ /esm.ubuntu. com/fips/ ubuntu/ dists/bionic/ Release. gpg, and the inline signatures https:/ /esm.ubuntu. com/fips/ ubuntu/ dists/xenial/ InRelease and https:/ /esm.ubuntu. com/fips/ ubuntu/ dists/bionic/ InRelease
and this is not being changed in this branch
- it produced the detached signatures https:/
- the above artifacts were downloaded via https and the certificate signed by Let's Encrypt verified out OK
dep8 passes, build-time tests pass, changelog correct, +1