Commit Graph

507 Commits

Author SHA1 Message Date
Itxaka
25975a5594
Chroot into a new dir before starting the system (#234)
* Chroot into a new dir before starting the system

Signed-off-by: Itxaka <itxaka@kairos.io>

* Use ReadDir and copy files int eh rootdir to the enw rootdir

Signed-off-by: Itxaka <itxaka@kairos.io>

* logggg

Signed-off-by: Itxaka <itxaka@kairos.io>

* Several fixes

Mount /dev at start so we can log to kmesg/ttyS0
Log more
Store the mountpoints found in root to bind them later to the new
sysroot

Signed-off-by: Itxaka <itxaka@kairos.io>

* debvuy

Signed-off-by: Itxaka <itxaka@kairos.io>

* Fix

Signed-off-by: Itxaka <itxaka@kairos.io>

* more debufg

Signed-off-by: Itxaka <itxaka@kairos.io>

* fix

Signed-off-by: Itxaka <itxaka@kairos.io>

* sfder

Signed-off-by: Itxaka <itxaka@kairos.io>

* Fix symlinks

Signed-off-by: Itxaka <itxaka@kairos.io>

* final

Signed-off-by: Itxaka <itxaka@kairos.io>

* disable mobving the / root mountpoint

Im not sure this works on our side or how, I just get errors

Signed-off-by: Itxaka <itxaka@kairos.io>

* Debug

Signed-off-by: Itxaka <itxaka@kairos.io>

* Disable remounting / as RO and enable remounting the new sysroot as RO

Signed-off-by: Itxaka <itxaka@kairos.io>

* Dont drop to bash like that

Signed-off-by: Itxaka <itxaka@kairos.io>

* Move "sysroot" to a constant, dry code and handle errors

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Fix linting errors by removing superflows `else` statements

because the `if`s end with `continue`

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Apply suggestions from code review

* Remove loggers that don't work

because `/dev` is not there yet (?). In any case, we need to switch to
the new logger

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

---------

Signed-off-by: Itxaka <itxaka@kairos.io>
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
Co-authored-by: Dimitris Karakasilis <dimitris@karakasilis.me>
2024-03-06 17:09:26 +02:00
Itxaka
a52b9651ad
Change the secureboot disable to not collide with disable immucore (#233) 2024-03-06 10:30:18 +01:00
Itxaka
3604633112
Check secureboot if on uki mode and panic if not (#205)
* Check secureboot if on uki mode and panic if not

Signed-off-by: Itxaka <itxaka@kairos.io>

* Check cmdline for disable secureboot

Signed-off-by: Itxaka <itxaka@kairos.io>

* Fix tests

Signed-off-by: Itxaka <itxaka@kairos.io>

---------

Signed-off-by: Itxaka <itxaka@kairos.io>
2024-03-01 09:42:03 +01:00
Mauro Morales
a45bcef2f0
Use latest sdk, to fix UKI detect boot issues (#229) 2024-02-29 22:14:58 +01:00
Mauro Morales
0cfddd485d
extend kernel modules list (#228)
Signed-off-by: Mauro Morales <mauro.morales@spectrocloud.com>
2024-02-29 10:31:30 +01:00
Itxaka
4c2ba5883b
Be slower to find the install media (#227) 2024-02-28 12:28:50 +01:00
Dimitris Karakasilis
4521fe6fcd
2226 detect boot state (#225)
* WIP

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* WIP

Signed-off-by: Dimitris Karakasilis <dimitris@spectrocloud.com>
Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* WIP add logs everywhere (EOD wip)

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Do the livecd check as late as possible

because the herd condition is evaluated too early before the /sys
is mounted and thus we don't detect the installed system correctly in
UKI mode.

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Wrap NewRuntime to allow passing down a logger

so that kairos-sdk logs make it to the immucore.log file

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Add TODOs and remove redundant check in code

the livecd check already happens some lines above

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Replace the "replace" with an actual tag

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Remoce "replace" directive and use wrapper method for UnlockAll

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Remove unecessary TODO

the log message describes what happened

* Re-use the method from kairos-sdk for uki boot detection

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

* Move messages from Info() to Debug() (PR review request)

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>

---------

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
Signed-off-by: Dimitris Karakasilis <dimitris@spectrocloud.com>
Co-authored-by: Mauro Morales <mauro.morales@spectrocloud.com>
2024-02-19 13:42:06 +02:00
Itxaka
c9c9edb261
Mount cdrom efiboot contents under /run/rootfsbase (#224)
Signed-off-by: Itxaka <itxaka@kairos.io>
2024-02-11 18:37:24 +01:00
Itxaka
a2874ca3ee
Mount livecd in /run/initramfs/live under uki (#223) 2024-02-08 14:22:44 +01:00
Itxaka
f3f2b71e4f Bump sdk
Signed-off-by: Itxaka <itxaka@kairos.io>
2024-02-01 15:25:52 +01:00
renovate[bot]
bd5cfecca9 Update module github.com/containerd/containerd to v1.7.13 2024-01-31 22:33:00 +00:00
Itxaka
77c9d5894a
Bump kcrypt (#216) 2024-01-24 10:07:48 +01:00
renovate[bot]
f4adf6d409
Update quay.io/kairos/osbuilder-tools Docker tag to v0.11.1 (#211)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-24 10:04:04 +01:00
renovate[bot]
8096568047
Update module golang.org/x/sys to v0.16.0 (#207)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-24 10:03:47 +01:00
renovate[bot]
002b68408c
Update actions/cache action to v4 (#213)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-24 10:03:26 +01:00
renovate[bot]
a894aa49f0
Update module github.com/onsi/gomega to v1.31.1 (#214)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-24 10:03:14 +01:00
renovate[bot]
89257ac458 Update module github.com/containerd/containerd to v1.7.12 2024-01-13 00:55:39 +00:00
renovate[bot]
e75c66b2d0 Update module github.com/kairos-io/kairos-sdk to v0.0.23 2024-01-08 22:27:56 +00:00
renovate[bot]
583237d204 Update module github.com/kairos-io/kairos-sdk to v0.0.22 2024-01-05 22:48:39 +00:00
renovate[bot]
131d9f1aeb
Update module github.com/urfave/cli/v2 to v2.27.1 (#206)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2024-01-03 11:26:10 +01:00
renovate[bot]
0272e8c50c Update module github.com/kairos-io/kairos-sdk to v0.0.21 2023-12-20 01:27:31 +00:00
Itxaka
d336b914fb Bump kcrypt
Signed-off-by: Itxaka <itxaka@kairos.io>
2023-12-18 16:18:00 +01:00
renovate[bot]
3450e97ef3
Update module github.com/kairos-io/kcrypt to v0.8.0 (#202)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-18 16:15:26 +01:00
renovate[bot]
81651de454
Update module github.com/moby/sys/mountinfo to v0.7.1 (#182)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-18 16:14:01 +01:00
Itxaka
55a6622c4a
Copy PCR related files generated by systemd-stub in uki (#203) 2023-12-16 07:54:42 +01:00
Itxaka
6592034132
Update dag_steps.go 2023-12-15 23:12:28 +01:00
Itxaka
76e605d9fd
Do not fail if we cant measure 2023-12-15 23:03:59 +01:00
Itxaka
424392b390
measure PCR phase (#201) 2023-12-15 16:20:34 +01:00
renovate[bot]
ec9aaa12ed Update module github.com/kairos-io/kairos-sdk to v0.0.20 2023-12-15 01:50:38 +00:00
renovate[bot]
788ca2275c Update module github.com/mudler/yip to v1.4.6 2023-12-11 22:13:30 +00:00
Ettore Di Giacinto
8827393083
Lower to warning when we continue the loop (#198) 2023-12-11 18:43:19 +01:00
renovate[bot]
1d41a2b63b Update module github.com/containerd/containerd to v1.7.11 2023-12-09 00:24:46 +00:00
renovate[bot]
901742852d Update module github.com/kairos-io/kairos-sdk to v0.0.19 2023-12-08 22:17:02 +00:00
renovate[bot]
462c190138
Update module github.com/onsi/gomega to v1.30.0 (#183)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-07 12:17:25 +01:00
renovate[bot]
13f69a19f9
Update quay.io/kairos/osbuilder-tools Docker tag to v0.10.2 (#186)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-07 12:17:07 +01:00
renovate[bot]
3221573b34
Update module golang.org/x/sys to v0.15.0 (#188)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-07 12:16:55 +01:00
renovate[bot]
a09ee2d605
Update actions/setup-go action to v5 (#195)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-07 12:16:42 +01:00
renovate[bot]
41fbd2e3e4
Update github.com/kairos-io/kcrypt digest to 12a8d5d (#192)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-12-07 12:16:15 +01:00
renovate[bot]
2117493e81 Update module github.com/kairos-io/kairos-sdk to v0.0.18 2023-12-06 01:07:41 +00:00
Itxaka
c4ad991e0c
unlock partitions with UKI TPM values (#191) 2023-11-30 22:19:47 +01:00
renovate[bot]
dd1f5a9ea6 Update module github.com/containerd/containerd to v1.7.10 2023-11-30 01:48:26 +00:00
renovate[bot]
5b78937cae Update module github.com/onsi/ginkgo/v2 to v2.13.2 2023-11-29 04:53:02 +00:00
renovate[bot]
fe1289215c Update module github.com/kairos-io/kairos-sdk to v0.0.16 2023-11-23 23:06:00 +00:00
renovate[bot]
f4083123f6 Update module github.com/containerd/containerd to v1.7.9 2023-11-16 22:44:54 +00:00
renovate[bot]
f075442ea5 Update module github.com/onsi/ginkgo/v2 to v2.13.1 2023-11-11 03:08:35 +00:00
renovate[bot]
638c0b6c98 Update golangci/golangci-lint Docker tag to v1.55.2 2023-11-03 22:24:17 +00:00
renovate[bot]
9c97b68435 Update module github.com/kairos-io/kairos-sdk to v0.0.15 2023-10-27 08:28:42 +00:00
renovate[bot]
2153dab99a
Update golangci/golangci-lint Docker tag to v1.55.1 (#175)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-10-27 10:12:20 +02:00
renovate[bot]
9803ead593
Update module github.com/onsi/gomega to v1.29.0 (#177)
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
2023-10-27 10:12:10 +02:00
renovate[bot]
2a74c90093 Update module github.com/containerd/containerd to v1.7.8 2023-10-27 00:35:30 +00:00