Skip to content

Conversation

@JedMeister
Copy link
Member

  • some minor linting related updates (mostly shellcheck)
  • webservers (apache, nginx & lighty)
    • cipher updates
    • disable access to all dot files by default
    • other security related conf hardening
    • other general conf refactoring (mostly apache)
  • tomcat
    • cipher updates
    • other conf updates, mostly aesthetic
    • update java version
    • add support for tomcat 11 - Trixie has both 10 & 11 - currently support for both is in a single overlay, but perhaps they should be split up?
  • postfix
    • cipher and other config updates
    • manually start postfix at build time - init.d script now fails in chroot (perhaps should be moved to our dummy systemctl script?)
  • sysctl config
    • move from conf script that appends to default conf to separate purpose specific overlays in /etc/sysctl.d/ dir
  • plan adjustments
    • updates for changed Trixie packages
    • temporarily comment di-live & tklbam

@JedMeister JedMeister requested a review from OnGle October 31, 2025 01:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant