Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

2024/08/06: Jenkins regular patching cycle - update to 2.452.3 #3696

Closed
sxa opened this issue Aug 5, 2024 · 4 comments
Closed

2024/08/06: Jenkins regular patching cycle - update to 2.452.3 #3696

sxa opened this issue Aug 5, 2024 · 4 comments
Assignees
Labels

Comments

@sxa
Copy link
Member

sxa commented Aug 5, 2024

Process to follow: https://github.com/adoptium/infrastructure/blob/master/README.md#jenkins

Current version: 2.452.2
New version: 2.452.3
Jenkins event calendar

Previous patching issue: #3636

Notes:

Part of #3380

@sxa sxa self-assigned this Aug 5, 2024
@sxa sxa added this to the 2024-08 (August) milestone Aug 5, 2024
@sxa
Copy link
Member Author

sxa commented Aug 6, 2024

Notes:

  • Build name and description setter (2.4.2->2.4.3) does not have any change notes.
  • Scoring Load Balancer listed as having breaking changes. We're at 98 - latest in 114, breaking changes in 108 and 109
  • Many of the updates this time at for Enable Jenkins Security Scan (#2563) @strangelookingnerd
  • ThinBackup - same as last cycle
  • Credentials - Remove FileOnMasterKeyStroreSource and SECURITY-1322 - migration (#540) @jtnord in 1355 (We're on 1305, latest is 1371
  • Blue Ocean Executor Info now has DEPRECATED as a prefix in the plugin title

General notes:

  • Only non-pipeline jobs (Including QPC/VPC) need to be stopped as they will prevent a restart
  • We should make a point of backing up the original war file in /usr/share/jenkins to a versioned one before starting each upgrade cycle. (Note for any automation on this, you can get the current version with /usr/lib/jvm/temurin-11-jdk-amd64/bin/java -jar jenkins.war --version)

@sxa
Copy link
Member Author

sxa commented Aug 6, 2024

We have upgraded all three of the notable plugins above in this cycle, and backed up the old thinBackup.xml to ~/thinBackup.xml-BAK-240806 in the jenkins account

@sxa
Copy link
Member Author

sxa commented Aug 6, 2024

Non-pipeline job note added to #3699.
There is already doc about backing up the war file, so that will not need to be added :-)

@sxa
Copy link
Member Author

sxa commented Aug 9, 2024

Noting that a subsequent upgrade was done on 8th August to 2.462.1 to address https://www.jenkins.io/security/advisory/2024-08-07/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
No open projects
Status: Done
Development

No branches or pull requests

2 participants