turnkey-jenkins-16.0 (1) turnkey; urgency=low * Install latest Jenkins LTS from upstream - 2.235.2.A * Explcitly disable TLS<1.2 (i.e. SSLv3, TLSv1, TLSv1.1). (v15.x TurnKey releases supported TLS 1.2, but could fallback as low as TLSv1). * Update SSL/TLS cyphers to provide "Intermediate" browser/client support (suitable for "General-purpose servers with a variety of clients, recommended for almost all systems"). As provided by Mozilla via https://ssl-config.mozilla.org/. * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Stefan Davis Tue, 04 Aug 2020 15:46:51 +1000 turnkey-jenkins-15.4 (1) turnkey; urgency=low * Install latest Jenkins LTS from upstream (2.150.1). * Remove broken TurnKey credit footer (and the markup plugin that was providing it) - closes #1215. To be reimplemented at a later date (see #1281). -- Jeremy Davis Wed, 19 Dec 2018 10:12:50 +1100 turnkey-jenkins-15.3 (1) turnkey; urgency=low * Install latest Jenkins LTS from upstream (2.138.3). * Rebuild to resolve inadvertant removal of mariadb during sec-updates - part of #1246. -- Jeremy Davis Wed, 21 Nov 2018 18:20:15 +1100 turnkey-jenkins-15.2 (1) turnkey; urgency=low * Latest version of Jenkins from upstream LTS repo (2.138.2). -- Jeremy Davis Mon, 15 Oct 2018 18:40:16 +1100 turnkey-jenkins-15.1 (1) turnkey; urgency=low * Latest version of Jenkins from upstream LTS repo (2.138.1). -- Jeremy Davis Mon, 17 Sep 2018 14:11:40 +1000 turnkey-jenkins-15.0 (1) turnkey; urgency=low * Latest version of Jenkins from upstream Long Term Support repo (2.121.3). * Replace MySQL with MariaDB * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Vlad Kuzmenko Thu, 12 Jul 2018 04:59:42 +0200 turnkey-jenkins-14.2 (1) turnkey; urgency=low * Latest version of Jenkins from upstream Long Term Support repo. * Upgraded to OpenJDK v8. * jenkins-cli: - '-remoter' mode disabled by default (security) - JENKINS_URL env var set to http://localhost:8080 (convenience) - jenkins-cli bash wrapper - can now use 'jenkins-cli' instead of 'java -jar path/to/jenkins-cli.jar' (convenience) [jeremy@turnkeylinux.org] * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Anton Pyrogovskyi Tue, 11 Jul 2017 23:05:29 +0200 turnkey-jenkins-14.1 (1) turnkey; urgency=low * Jenkins: -Latest version of Jenkins from upstream Long Term Support repo. -Included scm_api dependency (#507). -Fix reverse proxy (#untracked bug). -Redirect HTTP to HTTPS. * Latest versions of Debian packages (from repos). * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Jeremy Davis Wed, 17 Feb 2016 16:33:08 +1100 turnkey-jenkins-14.0 (2) turnkey; urgency=low * Latest version of Jenkins from Long Term Support release version. Fixes remote code execution vulnerability. -- Jeremy Davis Thu, 26 Nov 2015 19:28:32 +1000 turnkey-jenkins-14.0 (1) turnkey; urgency=low * Jenkins: - Latest version of Jenkins from official package repository. * Tomcat/JDK: - Upgraded to Tomcat7 (Jessie). - Upgraded to OpenJDK7 (Jessie). * Debian component versions: tomcat7 7.0.56-3 openjdk-7-jdk 7u79-2.5.5-1~deb8u1 * Hardened default SSL settings * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Jeremy Davis Sun, 24 May 2015 04:37:32 +1000 turnkey-jenkins-13.0 (1) turnkey; urgency=low * Jenkins: - Latest version of Jenkins from official package repository. - Bugfixed plugin permissions [#42]. * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Alon Swartz Thu, 10 Oct 2013 18:07:35 +0300 turnkey-jenkins-12.1 (1) turnkey; urgency=low * Jenkins: - Installing latest version of Jenkins from official package repository, and pinning for security. - Latest plugins versions are installed at build time. - Transitioned to jenkins daemon localhost, removed tomcat related. - Regenerate jenkins secrets/keys on firstboot (security). - Configured authentication via pam (admin posix user, disabled login). * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Alon Swartz Sun, 07 Apr 2013 08:00:00 +0200 turnkey-jenkins-12.0 (1) turnkey; urgency=low * Initial public release of TurnKey Jenkins, based on TKLPatch submitted by Adrian Moya. * Jenkins is preconfigured with PrivateSecurityRealm, providing users full control once logged in (signup is disabled by default). * Set Jenkins admin password on firstboot (convenience, security). * Regenerates all secrets during installation / firstboot (security). * Includes all popular VCS clients and related Jenkins plugins for Git, Bazaar, Mercurial and Subversion. * JENKINS_HOME configured in environment: /var/local/lib/jenkins. * SSL support out of the box. * Tomcat, Apache and Java configurations - Apache2 Jk loadbalancer connector to Tomcat (performance). - JkMounts for jenkins, admin, manager, host-manager applications. - Configured Tomcat admin/manager roles and admin user. - Configured Tomcat AJP connector to bind to localhost (security). - Removed tomcat HTTP connector listener (security). - Tomcat and Java environment variables configuration system wide. * Includes postfix MTA (bound to localhost) for sending of email (e.g. password recovery). Also includes webmin postfix module for convenience. * Major component versions tomcat6 6.0.35-1+squeeze2 apache2 2.2.16-6+squeeze7 libapache2-mod-jk 1:1.2.30-1squeeze1 openjdk-6-jdk 6b18-1.8.13-0+squeeze2 openjdk-6-jre 6b18-1.8.13-0+squeeze2 ant 1.8.0-4 mysql-server 5.1.63-0+squeeze1 libmysql-java 5.1.10+dfsg-2 git-core 1:1.7.2.5-3 bzr 2.1.2-1 subversion 1.6.12dfsg-6 mercurial 1.6.4-1 build-essential 11.5 * Note: Please refer to turnkey-core's changelog for changes common to all appliances. Here we only describe changes specific to this appliance. -- Alon Swartz Wed, 01 Aug 2012 08:00:00 +0200