I still have some custom items to restore like pmacct and a few scripts I added for OpenVPN.
Things restored that I didn’t expect:
Public key based authentication (SSL key for console, sftp, scp, etc.)
Fireinfo profile ID
Things that didn’t start (not Enabled):
Intrusion Prevention System (IPS)
Ruleset Settings - had to click Save.
Settings - had to click Save.
OpenVPN
was running on system before rebuild
I need to look into it…
The above is an FYI for others. Not a complaint in any way shape or form!
I updated the Intel J1900 (Qotom Q1900G4) BIOS firmware but it did not make any difference is the listed Processor Vulnerability Mitigations. (yes, I was hoping!) So I’m not sure if it will help anything. I was unable to locate a change log for the BIOS upgrade.
I loading up the git file in an editor, then I deleted everything ABOVE the line +#!/bin/bash.
and every thing from #!/bin/bash down I deleted all of the + at the beginning of each line. Then I saved the file and transferred it to IPFire.
Keep in mind this git is part of the current build. It is located at /usr/local/bin/filesystem-cleanup. And there is a “dry run” available that will not change or delete files.
[root@ipfire ~]# filesystem-cleanup --dry-run
Searching in /usr/lib/sse2...
find: ‘/usr/lib/sse2’: No such file or directory
Searching in /usr/lib...
Searching in /lib...
[root@ipfire ~]#
This does not quite compute. If you are a newbie then your installation should not have accumulated dross in /usr/lib. Additionally, your installation should have assigned larger starting partitions.
What core did you initially install and what CPU architecture ?
Rodney interesting point of view and judgement.
A former colleague of my installed the firewall for me and use to maintain it.
Now a days I have to do it myself.
If I have ask to much in this group sorry for that!
The only long-term solution is to have larger partitions and the practical approach is to save backups to a USB stick then re-install, using the latest core.
If you are not confident of the installation process then you could practice on another PC