alpine issues
https://gitlab.alpinelinux.org/groups/alpine/-/issues
2019-07-12T16:14:00Z
https://gitlab.alpinelinux.org/alpine/infra/infra/-/issues/314
redmine: auto-close resolved issues plugin
2019-07-12T16:14:00Z
Natanael Copa
redmine: auto-close resolved issues plugin
Can we have this?
http://www.redmine.org/wiki/redmine/Plugin\_List\#Auto-close-Resolved-issues-plugin
*(from redmine: issue id 314, created on 2010-03-08, closed on 2012-12-11)*
Can we have this?
http://www.redmine.org/wiki/redmine/Plugin\_List\#Auto-close-Resolved-issues-plugin
*(from redmine: issue id 314, created on 2010-03-08, closed on 2012-12-11)*
Carlo Landmeter
Carlo Landmeter
https://gitlab.alpinelinux.org/alpine/abuild/-/issues/951
remove dependency of sudo for abuild
2019-07-14T07:18:47Z
Natanael Copa
remove dependency of sudo for abuild
Currently abuild uses sudo to install dependencies with ‘abuild -r’ and
to create the pkgusers/pkggroups. We should have suid-root’ed
abuild-apk, abuild-adduser and abuild-addgroup which check if the
running user is a member of abuild gr...
Currently abuild uses sudo to install dependencies with ‘abuild -r’ and
to create the pkgusers/pkggroups. We should have suid-root’ed
abuild-apk, abuild-adduser and abuild-addgroup which check if the
running user is a member of abuild group.
That way, you only need to be a member of abuild group to be able to run
abuild and the chroot builder does not need configure sudo.
Note that this does not add any security. You should never add any user
to abuild group that you wouldn’t give full sudo permissions.
*(from redmine: issue id 951, created on 2012-01-20, closed on 2012-03-06)*
* Relations:
* parent #801
* Changesets:
* Revision 442e804291b54a2ff4a8b9fcbec20be4c759289c by Natanael Copa on 2012-02-17T13:28:22Z:
```
abuild-sudo: new tool
mini sudo that checks if user is in "abuild" group and allows it to
run apk, adduser adn addgroup as root
ref #951
```
* Revision c6263baeb91c5e0c8b02f93ac9abd910a9b96c03 by Natanael Copa on 2012-02-17T13:48:11Z:
```
abuild: remove dependency of sudo
use the abuild-sudo tool instead
fixes #951
```
Natanael Copa
Natanael Copa
https://gitlab.alpinelinux.org/alpine/apk-tools/-/issues/49
caching of packages in remote repository
2019-07-14T07:26:34Z
Timo Teräs
caching of packages in remote repository
Configuration option to keep a local mirror of installed packages from
remote repository, and to allow reboot using those packages (if running
in-memory from usb-stick/compact flash).
*(from redmine: issue id 49, created on 2009-06-23,...
Configuration option to keep a local mirror of installed packages from
remote repository, and to allow reboot using those packages (if running
in-memory from usb-stick/compact flash).
*(from redmine: issue id 49, created on 2009-06-23, closed on 2009-07-07)*
* Changesets:
* Revision 233918e518f72e469ba39206abf70250bd6fc54a by Timo Teräs on 2009-06-29T06:29:57Z:
```
db: cache packages (ref #49)
If /etc/apk/cache is a symlink to directory, a copy of all installed
packages is stored there, and the index of remote repositories will
be there instead of /var/lib/apk. This enables to reconstruct running
system during boot.
Left as todo: remove cached copy when the package is removed, and
additional apk applet to download missing packages to cache and/or
remove extra items.
```
* Revision 9858ffff69ce2e3df353b2c1e65a987c58f32fac by Timo Teräs on 2009-06-29T08:22:55Z:
```
cache: new applet (ref #49)
Administrative tool to download or delete files to/from the cache.
```
* Revision b551c3b0814d5baff46a7705758e773684255d29 by Timo Teräs on 2009-07-07T06:33:13Z:
```
cache: use changeset to figure out downloadables
that way we get the same result as the 'apk add world' at boot
time; it might differ from currently installed set (ref #49).
```
* Revision dc5c436c5a5ec183854923ce2fef955e8118564e by Timo Teräs on 2009-07-07T06:40:59Z:
```
cache: delete also wget temporary files
check for the full filename to match an expected pattern or
delete it (so we delete files with .new, .new.backup, etc.).
final part of remote package caching: fixes #49.
```
Timo Teräs
Timo Teräs
https://gitlab.alpinelinux.org/alpine/alpine-conf/-/issues/3060
alpine-vanilla iso installs wrong kernel
2019-07-14T07:45:21Z
Francesco Colista
alpine-vanilla iso installs wrong kernel
alpine-vanilla iso install on disk grsec kernel, rather than vanilla
kernel.
This cause an hang when you install alpine on problematic hardware that
doesn’t work with grsec.
*(from redmine: issue id 3060, created on 2014-06-19, close...
alpine-vanilla iso install on disk grsec kernel, rather than vanilla
kernel.
This cause an hang when you install alpine on problematic hardware that
doesn’t work with grsec.
*(from redmine: issue id 3060, created on 2014-06-19, closed on 2014-06-25)*
* Relations:
* duplicates #3140
* Changesets:
* Revision b0f164d81ca3484934a8cf9e1a0d2984c3f648eb by Francesco Colista on 2014-06-20T09:46:03Z:
```
Fixes #3060
```
* Revision bf0bdfc96040016ca576cf4f7af18e008a7343e0 by Francesco Colista on 2014-06-20T09:50:08Z:
```
Fixes #3060, really :)
```
* Revision 6b84b6a9f174e08542ca19c6e88fb29287b29016 by Natanael Copa on 2014-06-23T16:08:15Z:
```
main/alpine-conf: upgrade to 3.0.3
ref #3040
ref #3057
ref #3060
```
* Revision d7b7080246c5a526d371a83eabf074a5eec1dce2 by Natanael Copa on 2014-06-23T16:39:37Z:
```
main/alpine-conf: upgrade to 3.0.3
fixes #3040
fixes #3057
fixes #3060
```
https://gitlab.alpinelinux.org/alpine/awall/-/issues/1540
Use the iptables CT target to attach connection tracking helpers
2019-08-07T11:12:02Z
Timo Teräs
Use the iptables CT target to attach connection tracking helpers
My system with linux-3.6.6 now contains the following in dmesg:
nf\_conntrack: automatic helper assignment is deprecated and it will be
removed soon. Use the iptables CT target to attach helpers instead.
This is also discussed in e.g....
My system with linux-3.6.6 now contains the following in dmesg:
nf\_conntrack: automatic helper assignment is deprecated and it will be
removed soon. Use the iptables CT target to attach helpers instead.
This is also discussed in e.g.
https://bbs.archlinux.org/viewtopic.php?id=148345
Basically, for each protocol for which we want to do content
inspection/mangling, we need to add something like:
iptables -t raw -A OUTPUT -p tcp --dport 21 -j CT --helper ftp
To create explicit mapping with the port number and the protocol
expected.
*(from redmine: issue id 1540, created on 2013-01-16, closed on 2013-05-07)*
* Changesets:
* Revision 2f489cc65e7b57d9ee5a222ef821cd8016cfbfff by Kaarle Ritvanen on 2013-02-19T12:27:36Z:
```
secure use of connection tracking helpers
enable connection tracking helpers when required, fixes #1540
service-specific RELATED rules
```
Kaarle Ritvanen
Kaarle Ritvanen
https://gitlab.alpinelinux.org/alpine/docker-abuild/-/issues/41
ARCH detection fails on pi raspbian
2019-11-18T21:45:16Z
macmpi
ARCH detection fails on pi raspbian
`uname -m` on raspbian may give `armv6l` on rpi0 for instance, which clashes wrt expected `armhf` tests
https://github.com/alpinelinux/docker-abuild/blob/master/Makefile#L19
https://github.com/alpinelinux/docker-abuild/blob/master/dab...
`uname -m` on raspbian may give `armv6l` on rpi0 for instance, which clashes wrt expected `armhf` tests
https://github.com/alpinelinux/docker-abuild/blob/master/Makefile#L19
https://github.com/alpinelinux/docker-abuild/blob/master/dabuild.in#L27
https://gitlab.alpinelinux.org/alpine/infra/aports-turbo/-/issues/42
Allow filtering out -doc, -lang, -dbg, -dev and -static subpackages
2020-08-25T10:26:55Z
Bart Ribbers
Allow filtering out -doc, -lang, -dbg, -dev and -static subpackages
It would be nice to filter out such packages as they're often not relevant to my search and fill up the search results.
It would be nice to filter out such packages as they're often not relevant to my search and fill up the search results.
https://gitlab.alpinelinux.org/alpine/mkinitfs/-/issues/13
Add mkinitfs.conf(5) man page
2021-01-15T00:39:53Z
omni
omni+alpine@hack.org
Add mkinitfs.conf(5) man page
Describe various available options, other than just `features=`.
I may pick this up in !82, but I haven't written man pages before.
Describe various available options, other than just `features=`.
I may pick this up in !82, but I haven't written man pages before.
https://gitlab.alpinelinux.org/alpine/infra/aports-qa-bot/-/issues/13
Error: no maintainers found to assign
2023-08-27T18:13:18Z
Kevin Daudt
Error: no maintainers found to assign
This is a different error as `no users found with e-mail addres: ...`
```
ERR Failed to assign maintainer error="no maintainers found to assign" MR=21011 Project=1 component="MergeRequestJob Processor" service=AutoMaintainer
```
This is a different error as `no users found with e-mail addres: ...`
```
ERR Failed to assign maintainer error="no maintainers found to assign" MR=21011 Project=1 component="MergeRequestJob Processor" service=AutoMaintainer
```
https://gitlab.alpinelinux.org/alpine/aports/-/issues/18
chrond reports "cron.err" in logfiles even if all 'run-parts' scripts exit cl...
2021-04-03T10:30:02Z
algitbot
chrond reports "cron.err" in logfiles even if all 'run-parts' scripts exit cleanly
Each time crond is executed we get a “cron.err” in the logifles even if
the scripts executes cleanly (look at example below):
#!/bin/sh
echo "Hello world"
exit 0
Logfiles look lie this:
Mar 24 12:00:01 arbgw01 cron.err...
Each time crond is executed we get a “cron.err” in the logifles even if
the scripts executes cleanly (look at example below):
#!/bin/sh
echo "Hello world"
exit 0
Logfiles look lie this:
Mar 24 12:00:01 arbgw01 cron.err crond[24493]: USER root pid 8685 cmd run-parts /etc/periodic/15min
Mar 24 12:00:01 arbgw01 cron.err crond[24493]: USER root pid 8688 cmd run-parts /etc/periodic/hourly
*(from redmine: issue id 18, created on 2009-03-24, closed on 2009-03-24)*
Mika Havela
Mika Havela
https://gitlab.alpinelinux.org/alpine/infra/infra/-/issues/321
redmine git commit links point to external cgit
2019-07-12T16:14:02Z
Natanael Copa
redmine git commit links point to external cgit
The redmine git browser is slow. Would be nice if we could get have the
links to git commits in redmine to point to external git site with
cgit.
http://git.alpinelinux.org/cgit/aports/
Issues there are referenced back to redmine. See ...
The redmine git browser is slow. Would be nice if we could get have the
links to git commits in redmine to point to external git site with
cgit.
http://git.alpinelinux.org/cgit/aports/
Issues there are referenced back to redmine. See forexample the “fixes
\#315” in commit message:
http://git.alpinelinux.org/cgit/aports/commit/?id=a3041b9cb7ed70bb5894ef4d909d7bd7781fa691
*(from redmine: issue id 321, created on 2010-03-11, closed on 2011-07-20)*
https://gitlab.alpinelinux.org/alpine/abuild/-/issues/955
Enforce PIE on suid root binaries
2022-08-29T06:58:26Z
Natanael Copa
Enforce PIE on suid root binaries
To my understanding we do not currently have any binaries that are not
PIE and suid root.
It would be nice to add a post-check in abuild to verify that we never
introduce any. Those binaries are not fun in combination with bugs. See:
ht...
To my understanding we do not currently have any binaries that are not
PIE and suid root.
It would be nice to add a post-check in abuild to verify that we never
introduce any. Those binaries are not fun in combination with bugs. See:
http://blog.zx2c4.com/749
*(from redmine: issue id 955, created on 2012-01-23, closed on 2012-03-06)*
* Changesets:
* Revision 817db0ea98b228af80084ed898287a3b24748cdc by Natanael Copa on 2012-02-14T12:51:33Z:
```
abuild: check for non-PIE suid files
fixes #955
```
Natanael Copa
Natanael Copa
https://gitlab.alpinelinux.org/alpine/apk-tools/-/issues/50
allow to boot even if not all packages are available at boot time
2019-07-14T07:26:34Z
Timo Teräs
allow to boot even if not all packages are available at boot time
Otherwise old apkovl:s can fail to boot, and are hard to fix.
*(from redmine: issue id 50, created on 2009-06-23, closed on 2009-07-28)*
* Changesets:
* Revision 1531192cb9b697a8fc0042b295109bdf5cb52231 by Timo Teräs on 2009-07-07T0...
Otherwise old apkovl:s can fail to boot, and are hard to fix.
*(from redmine: issue id 50, created on 2009-06-23, closed on 2009-07-28)*
* Changesets:
* Revision 1531192cb9b697a8fc0042b295109bdf5cb52231 by Timo Teräs on 2009-07-07T07:03:30Z:
```
add: ignore install failures on 'apk add --force'
and use this option in initramfs, so we are likely to get an usable
environment even if some packages from world are missing. fixes #50.
```
Timo Teräs
Timo Teräs
https://gitlab.alpinelinux.org/alpine/alpine-conf/-/issues/3135
Setup gateway within other network
2021-01-06T16:29:54Z
Thorsten Sommer
Setup gateway within other network
Dear developers,
I found a problem if you try to setup a gateway that is not located at
the same network.
Example:
IP address: 192.168.0.1
Mask: 255.255.255.255
Gateway: 178.168.0.1
**The solution would be (for this example):** ...
Dear developers,
I found a problem if you try to setup a gateway that is not located at
the same network.
Example:
IP address: 192.168.0.1
Mask: 255.255.255.255
Gateway: 178.168.0.1
**The solution would be (for this example):**
(a) Check if the gateway is located on another network
(b) If so, execute: “route add -net 178.168.0.0 netmask 255.255.255.0
dev eth0”
© And then, execute: “route add default gw 178.168.0.1”
**Impact:**
Many ISPs / Data Centers provide scenarios like this: It is then not
possible to use the “diskless mode” and “data mode”. The only way to use
Alpine Linux is to install the system and alter the configuration and/or
the scripts.
Best regards,
Thorsten
*(from redmine: issue id 3135, created on 2014-07-02)*
https://gitlab.alpinelinux.org/alpine/awall/-/issues/1582
Add TPROXY support
2019-07-14T07:54:20Z
Leonardo Arena
Add TPROXY support
Can TPROXY support be added?
These are a sample of rules I’m currently using:
iptables -t mangle -N DIVERT
iptables -t mangle -A DIVERT -j MARK --set-mark 1
iptables -t mangle -A DIVERT -j ACCEPT
iptables -t mangle -A ...
Can TPROXY support be added?
These are a sample of rules I’m currently using:
iptables -t mangle -N DIVERT
iptables -t mangle -A DIVERT -j MARK --set-mark 1
iptables -t mangle -A DIVERT -j ACCEPT
iptables -t mangle -A PREROUTING -p tcp -m socket -j DIVERT
iptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY --tproxy-mark 0x1/0x1 --on-port 8080
Thanks!
*(from redmine: issue id 1582, created on 2013-01-22, closed on 2013-02-08)*
* Changesets:
* Revision f668c1eb097e24750b1be1cd2bbd1a91df5e9b43 by Kaarle Ritvanen on 2013-01-24T15:12:30Z:
```
transparent proxy module
fixes #1582
```
Kaarle Ritvanen
Kaarle Ritvanen
https://gitlab.alpinelinux.org/alpine/docker-abuild/-/issues/48
ccache should not use hosts ccache store
2019-12-29T16:46:21Z
Carlo Landmeter
ccache should not use hosts ccache store
I dont think it's wise to share this with the host, for sure when users are allowed to use different arches. Instead I would suggest to use docker volumes based on arch.
ref #36
I dont think it's wise to share this with the host, for sure when users are allowed to use different arches. Instead I would suggest to use docker volumes based on arch.
ref #36
https://gitlab.alpinelinux.org/alpine/infra/aports-turbo/-/issues/38
Maintainer lookup by email, not name
2018-01-29T17:32:49Z
Ariadne Conill
ariadne@ariadne.space
Maintainer lookup by email, not name
It is possible that two maintainers might have the same name if it is a common one. So we should use email addresses instead.
It is possible that two maintainers might have the same name if it is a common one. So we should use email addresses instead.
https://gitlab.alpinelinux.org/alpine/mkinitfs/-/issues/14
Failed to unlock encrypted ZFS dataset
2021-01-15T05:45:12Z
Dave Alvarez
Failed to unlock encrypted ZFS dataset
[This line](https://gitlab.alpinelinux.org/alpine/mkinitfs/-/blob/master/initramfs-init.in#L289) `local _root_pool=${_root_vol%%/*}` sometimes returns an empty result, causing the password prompt to be skipped and subsequently fail to mo...
[This line](https://gitlab.alpinelinux.org/alpine/mkinitfs/-/blob/master/initramfs-init.in#L289) `local _root_pool=${_root_vol%%/*}` sometimes returns an empty result, causing the password prompt to be skipped and subsequently fail to mount root dataset:`permission denied`.
![mkinitfs_1](/uploads/0dcc0c2ea8a11c08c9ff5543c73b6573/mkinitfs_1.png)
![initramfs_bug_0](/uploads/f26a386ff08585f1f8ad7345ac3d9245/initramfs_bug_0.png)
https://gitlab.alpinelinux.org/alpine/infra/aports-qa-bot/-/issues/14
Feature: ping mentor team for MRs from first-time contributors
2021-05-29T13:59:44Z
Kevin Daudt
Feature: ping mentor team for MRs from first-time contributors
Not sure if it's easy to extract, but gitlab shows when an MR is from first-time contributors. It would be nice if it would automatically ping `@teams/mentors` in that case.
Not sure if it's easy to extract, but gitlab shows when an MR is from first-time contributors. It would be nice if it would automatically ping `@teams/mentors` in that case.
https://gitlab.alpinelinux.org/alpine/aports/-/issues/21
vserver only has 16mb /tmp directory
2023-03-04T22:40:32Z
Carlo Landmeter
vserver only has 16mb /tmp directory
When i try to run clamav it will fail because it cannot extract the
database to tmp directory because of insufficient space.
I am running vserver 1.7 with 1.9 guest.
*(from redmine: issue id 21, created on 2009-03-30, closed on 2009-...
When i try to run clamav it will fail because it cannot extract the
database to tmp directory because of insufficient space.
I am running vserver 1.7 with 1.9 guest.
*(from redmine: issue id 21, created on 2009-03-30, closed on 2009-04-02)*
Natanael Copa
Natanael Copa