-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 15 Jan 2021 09:11:00 +0100 Source: snapd Architecture: source Version: 2.48.2-1 Distribution: unstable Urgency: medium Maintainer: Michael Hudson-Doyle <mwhudson@debian.org> Changed-By: Michael Vogt <michael.vogt@ubuntu.com> Launchpad-Bugs-Fixed: 1906690 Changes: snapd (2.48.2-1) unstable; urgency=medium . * debian/patch/0011-cherry-pick-pr9809 - Cherry-pick https://github.com/snapcore/snapd/pull/9809. This skips the --help output unit tests for older go-flags versions. * New upstream release, LP: #1906690 - tests: sign new nested-18|20* models to allow for generic serials - secboot: add extra paranoia when waiting for that fde-reveal-key - tests: backport netplan workarounds from #9785 - secboot: add workaround for snapcore/core-initrd issue #13 - devicestate: log checkEncryption errors via logger.Noticef - tests: add nested spread end-to-end test for fde-hooks - devicestate: implement checkFDEFeatures() - boot: tweak resealing with fde-setup hooks - sysconfig/cloudinit.go: add "manual_cache_clean: true" to cloud- init restrict file - secboot: add new LockSealedKeys() that uses either TPM or fde-reveal-key - gadget: use "sealed-keys" to determine what method to use for reseal - boot: add sealKeyToModeenvUsingFdeSetupHook() - secboot: use `fde-reveal-key` if available to unseal key - cmd/snap-update-ns: fix sorting of overname mount entries wrt other entries - o/devicestate: save model with serial in the device save db - devicestate: add runFDESetupHook() helper - secboot,devicestate: add scaffoling for "fde-reveal-key" support - hookstate: add new HookManager.EphemeralRunHook() - update-pot: fix typo in plural keyword spec - store,cmd/snap-repair: increase initial expontential time intervals - o/devicestate,daemon: fix reboot system action to not require a system label - github: run nested suite when commit is pushed to release branch - tests: reset fakestore unit status - tests: fix uc20-create-parition-* tests for updated gadget - hookstate: implement snapctl fde-setup-{request,result} - devicestate: make checkEncryption fde-setup hook aware - client,snapctl: add naive support for "stdin" - devicestate: support "storage-safety" defaults during install - snap: use the boot-base for kernel hooks - vendor: update secboot repo to avoid including secboot.test binary Checksums-Sha1: 8961b1e5409dcd60c12319ad6042a341ae18be8d 3549 snapd_2.48.2-1.dsc bfad7e9e27f868e54d0b2d3e18f16054d10513b8 4920423 snapd_2.48.2.orig.tar.gz bdb50c79869ef87d1992439128798efe2e42edbe 93188 snapd_2.48.2-1.debian.tar.xz f08ddf60a73db371924ee90c1ad84db606759e88 15243 snapd_2.48.2-1_source.buildinfo Checksums-Sha256: 09022dc95389be00e103e53ac2ac8bed4b82494409247329cda099c5c0967c1d 3549 snapd_2.48.2-1.dsc d91fe84f5f6389d7d25a7e2142b33239c7bdfd94800d673813304204b8949f5e 4920423 snapd_2.48.2.orig.tar.gz aeb464210171cdaa55807baaf8408399c3ebdfb957dbfc3728b7f82bc4adfcf2 93188 snapd_2.48.2-1.debian.tar.xz 8b5e50645740b60b48dc587b720bb4c3dfcf90a321e378d4be520598c0626e55 15243 snapd_2.48.2-1_source.buildinfo Files: 25a136756108b9dd01a10770b0d507e9 3549 devel optional snapd_2.48.2-1.dsc 4324be102c0964b4dcbfcbfba411abd0 4920423 devel optional snapd_2.48.2.orig.tar.gz cd1e91ac48741c7c8de9338bb9f96ba2 93188 devel optional snapd_2.48.2-1.debian.tar.xz 7a01f694b85c8c481f5d7a5940216bc5 15243 devel optional snapd_2.48.2-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEE2mxnVNiIdibNBqEomMq7Or1MpZ4FAmABTp0ACgkQmMq7Or1M pZ7Dxw/+JZK6NLpqfwJcMbzYbvNnvRHqvfYbzi08/7IbuZFijMbU7zv8WkXRbr/t iXiphQzgt2mLWtOAG5mwESJIeVMQxxtAcKonUHFPrwMkYFk2g2tao53+OVH2XYzN XQ4+AxZfg4hYwAFcSIwmQVnsObfsvgUCYhxi49tQI7YnRhl+lmUuD/xsq+uGlLeN kyMTjOXB1bns3kvAG0pj011MluST8ma1+lbWCtBXnsHLI7J7tEUu6JHGuxRO8jSD lRxwu5BigEjYTOYgFD3X0U9ICFrwjlPygvBkxI2A5rkEUgJNrEAvqdiLYSpOrcQa j9oKtZDgUxxdyfZJA6Nfyp2hK8Q/tdXTUcAGd1zO6nrQxihDQweCU52sELngQyCb HcVDOrCyS5iCdr4oMKD8+cEB/DtPcKGdRQxrQhLY4LYWi5sR5Ciqx4Rg90K1pm9a Egl73M0BBzot8QfjeppQfpIZRU41x4AZgg1pfiu6XSD22Xi4DPwn/svRkZApKg7B wRtdmmqOKOkdt6XNfwklCfCtkM6NX3Qb3JsSVcyM07wsJ5FCHHS+fwzcqzaK9Md7 u9HsW6j/IKYD+Y9h8LEM5MAnyhtJbERnFlACJv8KyDPyJ8/AvG9wmkllmG7HxQr7 w32jm9Thpv79AoWp6/lQub8aHjUEKmn87HCfmJE8I/7BOal7JBU= =psPU -----END PGP SIGNATURE-----