Last modified: 2013-03-16 22:31:32 UTC
Jenkins LTS has released a new minor version (1.480.3) which fix a XSS issue. We need to update the package in our apt repository and get the new package installed both in production and labs.
Mail posted on the ops mailing list: ---------------------------------------------------------------- I asked Ariel this morning to update the Jenkins packages using reprepro as documented by Faidon at: https://wikitech.wikimedia.org/view/Jenkins We have some kind of weirdness with reprepro on brewster. It does not follow http redirects though it should: On brewster: aptmethod redirects already redirected 'http://mirrors.jenkins-ci.org/debian-stable/jenkins_1.480.3_all.deb' again to 'http://ftp-nyc.osuosl.org/pub/jenkins/debian-stable/jenkins_1.480.3_all.deb' Multiple redirects currently not supported by repreproThere have been errors The reprepro version is: apt-show-versions reprepro reprepro/lucid-wikimedia uptodate 4.12.5-1~lucid1 The Jenkins repository is configured in ops/puppet.git at files/misc/reprepro/updates it list the proper URL: http://pkg.jenkins-ci.org/debian-stable/ The packages there are listed to mirrors.jenkins-ci.org which in turns redirect to one of the closed mirror. The mirror only have the .deb package so we cant just change the URL in reprepro. ---------------------------------------------------------------- Follow up to ops list.
Assigning to self, I will manage this bug report.
This was done the other day, right?
Indeed, has been handled with RT ticket #4708