Skip to content

Config related v19.x/Trixie updates - mostly webserver and security related#329

Merged
JedMeister merged 10 commits intoturnkeylinux:19.x-devfrom
JedMeister:beta-build
Nov 13, 2025
Merged

Config related v19.x/Trixie updates - mostly webserver and security related#329
JedMeister merged 10 commits intoturnkeylinux:19.x-devfrom
JedMeister:beta-build

Conversation

@JedMeister
Copy link
Copy Markdown
Member

  • some minor linting related updates (mostly shellcheck)
  • webservers (apache, nginx & lighty)
    • cipher updates
    • disable access to all dot files by default
    • other security related conf hardening
    • other general conf refactoring (mostly apache)
  • tomcat
    • cipher updates
    • other conf updates, mostly aesthetic
    • update java version
    • add support for tomcat 11 - Trixie has both 10 & 11 - currently support for both is in a single overlay, but perhaps they should be split up?
  • postfix
    • cipher and other config updates
    • manually start postfix at build time - init.d script now fails in chroot (perhaps should be moved to our dummy systemctl script?)
  • sysctl config
    • move from conf script that appends to default conf to separate purpose specific overlays in /etc/sysctl.d/ dir
  • plan adjustments
    • updates for changed Trixie packages
    • temporarily comment di-live & tklbam

@JedMeister JedMeister requested a review from OnGle October 31, 2025 01:12
Copy link
Copy Markdown
Member

@OnGle OnGle left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm!

@JedMeister JedMeister merged commit 358d6af into turnkeylinux:19.x-dev Nov 13, 2025
@JedMeister JedMeister deleted the beta-build branch November 13, 2025 01:39
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants