Last commit made on 2014-12-04
Get this branch:
git clone -b ubuntu/precise-security https://git.launchpad.net/ubuntu/+source/maas
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information


Recent commits

b29d342... by Marc Deslauriers on 2014-12-04

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.6 to ubuntu/precise-security

Imported using git-ubuntu import.

Changelog parent: f57db1daea905c7f3eb366f7c23ec3d6a7d0f223

New changelog entries:
  * Fix compatibility with mod-wsgi security update (LP: #1399016)
    - debian/patches/home-directory.patch: specify a valid home directory
      for the maas user, since mod-wsgi no longer works without one.

f57db1d... by Seth Arnold on 2014-02-11

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.5 to ubuntu/precise-security

Imported using git-ubuntu import.

Changelog parent: 3aab4c4b0bf5804c2420e2e8fd690470e8b29e13

New changelog entries:
  * SECURITY UPDATE: incorrect Content-type header allowed cross-site
    scripting vulnerability if an unknown API was used. (LP: #1251336)
    - debian/patches/CVE-2013-1070.patch: Use Content-type text/plain to force
      browsers to not render error messages as HTML.
    - CVE-2013-1070
  * SECURITY UPDATE: /etc/maas/txlongpoll.yaml contained a publicly readable
    password. (LP: #1254034)
    - debian/maas-region-controller.postinst: chown and chmod
      /etc/maas/txlongpoll.yaml with correct permissions
    - CVE-2013-1069

3aab4c4... by Seth Arnold on 2013-11-02

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.4 to ubuntu/precise-security

Imported using git-ubuntu import.

Changelog parent: 2ff295e9ea90346f9b22722d09d1f2621c97505c

New changelog entries:
  * SECURITY UPDATE: failure to authenticate downloaded content (LP: #1039513)
    - debian/patches/CVE-2013-1058.patch: Authenticate downloaded files with
      GnuPG and MD5SUM files. Thanks to Julian Edwards.
    - CVE-2013-1058
  * SECURITY UPDATE: configuration options may be loaded from current working
    directory (LP: #1158425)
    - debian/patches/CVE-2013-1057-1-2.patch: Do not load configuration
      options from the current working directory. Thanks to Julian Edwards.
    - CVE-2013-1057

2ff295e... by Andres Rodriguez on 2013-09-06

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.3 to ubuntu/precise-proposed

Imported using git-ubuntu import.

Changelog parent: 7821c73107f827af75064a94b37a541f5a9ae98a

New changelog entries:
  * MAAS Stable Release Update:
    - debian/patches/04-dhcp-lease-conflict.patch: Sets expiry lease time
      to 30 seconds (LP: #1069570)

7821c73... by Andres Rodriguez on 2013-08-12

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.2 to ubuntu/precise-proposed

Imported using git-ubuntu import.

Changelog parent: 026b0f07c259d3c51a11b13504d5b2e06d3dc456

New changelog entries:
  * MAAS Stable Release Update, debian/patches:
    - 99_filestorage_empty_files_lp1204507.patch: Fix to allow the storage
      of empty files when using Juju Go, otherwise machines will fail to
      bootstrap. (LP: #1204507)
    - 99_fix_highbank_localboot_lp1172966.patch: Fix to PXE LOCALBOOT on
      highbank servers by removing a PXE message. Otherwise highbank will
      fail to pxe boot. (LP: #1172966)
    - 99_no_ipmi_detection_kvm_lp1064527.patch: Fix to ensure that IPMI
      detection does not happen on KVM VM's, otherwise enlistment and
      commissioning process will take too long. (LP: #1064527)
    - 99_update_cluster_info_cli_lp1172193.patch: Fix to allow admins to
      update cluster information from the API/CLI and not only restrict it
      to the WebUI. (LP: #1172193)
    - 99_fix_ipmi_power_command_lp1171418: Fix to ensure that ipmi commands
      are always executed regardless of the state of the machine.
      (LP: #1171418)
    - 99_default_timezone_utc_lp1211447.patch: Default to UTC for the
      deployed nodes. (LP: #1211447)

026b0f0... by Andres Rodriguez on 2013-03-20

Import patches-unapplied version 1.2+bzr1373+dfsg-0ubuntu1~12.04.1 to ubuntu/precise-proposed

Imported using git-ubuntu import.

Changelog parent: 6cf4cdea02de25a38f31eaf44c07ef584bf60647

New changelog entries:
  * MAAS Stable Release Update (LP: #1109283). See changelog entry bellow.
  * debian/maas-dhcp.maas-dhcp-server.upstart: leases file should be owned
    by user/group 'dhcpd' instead of root.
  * debian/control: Force dependency version for python-django to
    (>> 1.3.1-4ubuntu1.6).
  * Continue to ship yui3 and raphael with MAAS.
    - debian/patches/04_precise_no_yui_root.patch: Add.
    - debian/control: Drop dependencies on yui3 and raphael.
    - debian/source/include-binaries: Add to not FTBFS
    - debian/extras/jslibs: Ship JS libraries.
    - debian/copyright: Update copyright to reflect libraries license.
  * MAAS Stable Release Update (LP: #1109283):
    This SRU brings a new upstream release of MAAS that removes
    the usage of a cobbler code copy, 'maas-provision' as well as
    several bug fixes. Exception has been granted by the Technical
    Board to proceed. More information can be found in:
  [ Andres Rodriguez ]
  * debian/control:
    - Change Conflicts/Replaces for Breaks/Replaces.
    - Conflicts on tftpd-hpa and dnsmasq.
    - Do not pre-depends, but Depends on ${misc:Depends} for 'maas'.
  [ Steve Langasek ]
  * postinst scripts are never called with 'reconfigure' as the script
    argument. Remove references to this (mythical) invocation.
  * always call 'set -e' from maintainer scripts instead of passing 'sh -e'
    as the interpreter, so that scripts will behave correctly when run via
    'sh -x'.
  * invoke-rc.d is never allowed to not exist - simplify scripts (and make
    them better policy-compliant) by invoking unconditionally. (The only
    possible exception is in the postrm, where it's *theoretically* possible
    for invoke-rc.d to be missing if the user has completely stripped
    down their system; that's a fairly unreasonable corner case, but we
    might as well be correct if it ever happens.)
  * db_get+db_set is a no-op; don't call db_set to push back a value we just
    got from db_get.
  * Omit superfluous calls to 'exit 0' at the end of each script.
  * Remove maas-cluster-controller prerm script, which called debconf for no
  * Don't invoke debconf in the postrm script either, debhelper already does
    this for us.
  * Other miscellaneous maintainer script fixes
  * debian/maas-common.postinst: call adduser and addgroup unconditionally;
    the tools are already designed to DTRT, we don't need to check for the
    user/group existence before calling them nor should we worry about
    calling them only once on first install.
  * debian/maas-common.postrm: delete the maas group, not just the user,
    as the comment in the code implies we should do.

6cf4cde... by Andres Rodriguez on 2013-01-30

Import patches-unapplied version 1.2+bzr1370+dfsg-0ubuntu1 to ubuntu/raring-proposed

Imported using git-ubuntu import.

Changelog parent: d958030c5374116c989380d539969425918cf92f

New changelog entries:
  * New upstream release:
    - MAAS file storage mechanism is shifting from a single shared
      namespace to a per-user namespace. Operators of the majority
      of MAAS systems will not notice any change. However, operators
      of the most complex installations may find that a new
      "shared-environment" user is created, and that some resources
      are reassigned to it, such as API credentials and SSH public
      keys. This provides a transitional environment that mimics the
      behaviour of a shared namespace.

d958030... by Andres Rodriguez on 2013-01-22

Import patches-unapplied version 1.2+bzr1351+dfsg-0ubuntu1 to ubuntu/raring-proposed

Imported using git-ubuntu import.

Changelog parent: c0ac844a60fc6f9b99ac29eb60d819690c35d0f5

New changelog entries:
  * New upstream bugfix release.
  [ Raphaël Badin ]
  * debian/control: maas-region-controller depends on bind9utils.
    (LP: #1103195)
  [ Andres Rodriguez ]
  * debian/control: Depends on distro-info for maas-cluster-controller
    instead of maas-region-controller (LP: #1103194)
  * debian/maas-region-controller.install: Install commissioning-user-data
    instead of maas-cluster-controller. (LP: #1103203)

c0ac844... by Andres Rodriguez on 2012-11-13

Import patches-unapplied version 1.2+bzr1349+dfsg-0ubuntu1 to ubuntu/raring-proposed

Imported using git-ubuntu import.

Changelog parent: 83959a9cdf128e61ede0097c3ebddca39e641ec9

New changelog entries:
  * New upstream bugfix release. Fixes:
    - The DNS configuration is not created if maas-dns is installed after
      the DNS config has been set up (LP: #1085865).
    - IPMI detection ends up with power_address of (LP: #1064224)
    - Main page slow to load with many nodes (LP: #1066775)
    - maas-cluster-controller doesn't have images for
      provisioning (LP: #1068843)
    - Filestorage is unique to each appserver instance (LP: #1069734)
    - import_pxe_files does not include quantal (LP: #1069850)
    - maas-cli nodes new incomplete documentation (LP: #1070522)
    - DNS forward zone ends up with nonsensical entries (LP: #1070765)
    - The hostname of a node can still be changed once the node is in
      use. (LP: #1070774)
    - The zone name (attached to a cluster controller) can still be changed
      when it contains in-use nodes and DNS is managed. (LP: #1070775)
    - Duplicated prefix in the url used by the CLI (LP: #1075597)
    - Not importing Quantal boot images (LP: #1077180)
    - Nodes are deployed with wrong domain name. (LP: #1078744)
    - src/maasserver/api.py calls request.data.getlist with a 'default'
      parameter. That parameter is not supported by Django 1.3. (LP: #1080673)
    - API calls that return a node leak private data (LP: #1034318)
    - MAAS hostnames should be 5 easily disambiguated characters (LP: #1058998)
    - URI in API description wrong when accessing machine via alternative
      interface. (LP: #1059645)
    - Oops when renaming nodegroup w/o interface (LP: #1077075)
    - Error in log when using 'Start node' button: MAASAPINotFound: No user
      data available for this node. (LP: #1069603)
  [ Raphaël Badin ]
  * debian/maas-dns.postinst: Call write_dns_config (LP: #1085865).
  * debian/maas-dns.postinst: fix permissions and group ownership of
    file /etc/bind/maas/named.conf.rndc.maas. (LP: #1066935)
  [ Julian Edwards ]
  * debian/maas-region-controller.install: Remove installation of maas-gc; it
    is no longer required as upstream no longer stores files in the filesystem.
    (LP: #1069734)
  * debian/maas-cluster-controller.postinst: Ensure that /etc/maas/pserv.yaml
    is updated when reconfiguring. (LP: #1081212)
  [ Andres Rodriguez ]
  * debian/control:
    - maas-cluster-controller Conflicts with tftpd-hpa (LP: #1076028)
    - maas-dns: Conflicts with dnsmasq
    - Drop Dependency on rabbitmq-server for maas-cluster-controller.
      (LP: #1072744)
    - Add conflicts/replaces for maas-region-controller to
  * debian/maas-cluster-controller.config: If URL has been detected, add
    /MAAS if it doesn't contain it. This helps upgrades from versions where
    DEFAULT_MAAS_URL didn't use /MAAS.
  * Install maas-import-pxe-files and related files with
    maas-cluster-controller, as well as configure tgtd, as
    maas-region-controller no longer stores images. Thanks to Jeroen
  [ Gavin Panella ]
  * debian/extras/99-maas: squashfs image download is no longer needed.
  * debian/maas-cluster-controller.install: maas-import-squashfs and its
    configuration file are no longer part of upstream.
  [ Jeroen Vermeulen ]
  * debian/maas-cluster-controller.maas-pserv.upstart: Source maas_cluster.conf
    before starting pserv (tftpd) process.
  * debian/maas-cluster-controller.postinst: Duplicate CLUSTER_UUID setting
    to maas_cluster.conf.
  * Bumped revision number to current 1.2 revision 1342 (requested by rvba).

83959a9... by Andres Rodriguez on 2012-10-16

Import patches-unapplied version 0.1+bzr1269+dfsg-0ubuntu1 to ubuntu/quantal-proposed

Imported using git-ubuntu import.

Changelog parent: f916047467d1dded86d35017d083a681a3deb42d

New changelog entries:
  * New upstream bugfix release
    - Fixes commissioning failing to set memory attribute. (LP: #1064638)
    - Fixes node listing by adding pagination (LP: #1064672)
    - Changes default bind rndc key which breaks initscripts (LP: #1066938)
    - Fixes invalid DNS config once node is enlisted (LP: #1066958)
    - Reference documentation link to correct URL (LP: #1067261)
  [ Andres Rodriguez ]
  * debian/rules: Change upstream branch.
  [ Gavin Panella ]
  * debian/maas-dns.postinst: Remove MAAS-related include lines from named's
    config before adding a new one (LP: #1066929)
  [ Raphael Badin ]
  * debian/extras/maas-region-celeryd: Remove whitespace that affects DNS
    rabbitmq queue. (LP: #1067929)