The third release candidate for FOG 1.6.0 is available on the rc-1.6.0 branch. It reports version 1.6.0-RC-3.
Test it on a lab or non-production server first. The upgrade from 1.5 to 1.6 is one-way: it changes the database schema, and there is no down-migration.
Upgrade from RC-2 now if you use fog-agent, a wildcard web certificate, or more than one master node. RC-3 fixes failures in all three.
Fixed since RC-2
- Agent enrollment failed with a 503 after the root CA was replaced (#1810). The installer created the FOG Agent CA only when its file was missing. If the root CA changed later, for example when you copy an older server's
/opt/fog/snapins/sslonto a new install, the Agent CA stayed signed by the old root. Every enrollment then failed, and the Apache log showedFOG agent enroll: signing for host <id> ... failed: the issued certificate does not verify against /opt/fog/snapins/ssl/CA/.fogCA.pem. The RC-3 installer re-creates the Agent CA when the current root did not sign it. It keeps the old pair beside the new one with a date suffix. - A wildcard web certificate broke the installer (#1800). The installer used the certificate's commonName, for example
*.example.org, as the server name. Apache refused the configuration, and the installer's own calls to the server failed.--hostnamewas ignored. The installer now uses--hostnameand checks that the certificate covers it. With no--hostname, it uses the server address. - Constant ssh connections between master nodes (#1806). The services opened a connection to the ssh port of every master node on each pass. sshd logged
Connection closed by <server>every few seconds. The services no longer probe the nodes for this check. - fog-agent waited up to five minutes to see a task (#1802). The server told the agent to poll every 300 seconds. It now sends the client check-in interval,
FOG_CLIENT_CHECKIN_TIME, which the legacy client already uses. With the default setting, agents poll every 60 seconds.
New since RC-2
- Windows activation through fog-agent (#1804). The server sends the host's product key to the agent when the key is valid and the host enrolled as Windows. It needs a fog-agent release that supports activation. An older agent ignores it.
Before you upgrade
- Back up your database and
/opt/fog/.fogsettings. - Read the release notes: https://github.com/FOGProject/fogproject/blob/rc-1.6.0/docs/release/1.6.0-release-notes.md
- 1.6 removes Display Manager, Directory Cleaner, User Cleanup, Client Updater, Green FOG and the persistentgroups plugin. Their data is dropped. The site and accesscontrol plugins move into core.
- PHP 7.4 or later is required. Plugins built for 1.5 do not load.
Install or update (as root)
- A 1.6 beta, RC-1 or RC-2 server: run
bin/updatefog.sh --channel rcfrom your FOG checkout. - A 1.5 server installed from git: update to the current 1.5 stable, then run
bin/updatefog.sh --channel rcfrom the checkout. - A new server, or a 1.5 server installed from a tarball:
curl -fsSL https://raw.githubusercontent.com/FOGProject/fogproject/working-1.6/bin/bootstrap.sh | bash -s -- --channel rc
Report problems
Open an issue at https://github.com/FOGProject/fogproject/issues. Include your FOG version, your OS, and the installer log from bin/error_logs/. Report a security problem through "Report a vulnerability" on the same repository, not in a public issue.