Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enable automatic bootloader updates #1468

Open
jlebon opened this issue Apr 14, 2023 · 6 comments
Open

Enable automatic bootloader updates #1468

jlebon opened this issue Apr 14, 2023 · 6 comments

Comments

@jlebon
Copy link
Member

jlebon commented Apr 14, 2023

Currently, Fedora CoreOS (and in fact, all other rpm-ostree-based Fedora variants) do not update the EFI bootloader together with host updates. The reason for this is explained in greater details in the bootupd README (see especially the Q&A). Recently, we've hit more and more issues related to stale bootloaders, to the point where it's becoming more urgent that we fix this gap.

The main blocker to have automatic bootloader updates is to make them safer in bootupd (related issues: coreos/bootupd#440, coreos/bootupd#454). Once it's deemed safe enough to turn on by default, we then need to integrate it into FCOS. Fedora IoT and Fedora Silverblue likely will also want this.

@bgilbert
Copy link
Contributor

We should also consider whether to automatically update the BIOS bootloader. It's probably infeasible to do that safely, though.

@travier
Copy link
Member

travier commented Oct 21, 2024

We've made a lot of progress on this front so we should reconsider that.

@dustymabe
Copy link
Member

We've made a lot of progress on this front so we should reconsider that.

Added the meeting label. Might be good to summarize the progress here if you're able.

@dustymabe dustymabe added the meeting topics for meetings label Oct 25, 2024
@travier
Copy link
Member

travier commented Oct 25, 2024

From the 0.2.19 to the 0.2.24 release, we have fixed the following issues:

We have the following issue still blocking us on Fedora CoreOS:

Once we have the SELinux issues fixed, we should be able to enable automatic updates on boot for non-RAID setups.
Once the RAID support is added, we can enable it for everyone.

This has been enabled by default on boot for the Atomic Desktops for Fedora 41 for UEFI, and planned to be enabled for BIOS as well soon.

@yasminvalim
Copy link
Contributor

During our meeting today (10/30), we agreed to proceed with F42 and to assign someone with availability to implement it. You can find more details in the meeting logs.

@c4rt0
Copy link
Member

c4rt0 commented Nov 6, 2024

Sorry for the noise, removing the meeting label as this was already discussed in the community meeting last week.

@c4rt0 c4rt0 removed the meeting topics for meetings label Nov 6, 2024
@travier travier added status/pending-action Needs action jira for syncing to jira labels Nov 13, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

6 participants