You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
FDE: support replacing TPM protected keys at runtime via the
/v2/system-volumes endpoint
FDE: support secboot preinstall check fix actions for 25.10+
hybrid installs via the /v2/system/{label} endpoint
FDE: tweak polkit message to remove jargon
FDE: ensure proper sealing with kernel command line defaults
FDE: provide generic reseal function
FDE: support using OPTEE for protecting keys, as an alternative to
existing fde-setup hooks (Ubuntu Core only)
Confdb: 'snapctl get --view' supports passing default values
Confdb: content sub-rules in confdb-schemas inherit their parent
rule's "access"
Confdb: make confdb error kinds used in API more generic
Confdb: fully support lists and indexed paths (including unset)
Prompting: add notice backend for prompting types (unused for now)
Prompting: include request cgroup in prompt
Prompting: handle unsupported xattrs
Prompting: add permission mapping for the camera interface
Notices: read notices from state without state lock
Notices: add methods to get notice fields and create, reoccur, and
deepcopy notice
Notices: add notice manager to coordinate separate notice backends
Notices: support draining notices from state when notice backend
registered as producer of a particular notice type
Notices: query notice manager from daemon instead of querying
state for notices directly
Packaging: Ubuntu | ignore .git directory
Packaging: FIPS | bump deb Go FIPS to 1.23
Packaging: snap | bump FIPS toolchain to 1.23
Packaging: debian | sync most upstream changes
Packaging: debian-sid | depends on libcap2-bin for postint
Packaging: Fedora | drop fakeroot
Packaging: snap | modify snapd.mk to pass build tags when running
unit tests
Packaging: snap | modify snapd.mk to pass nooptee build tag
Packaging: modify Makefile.am to fix snap-confine install profile
with 'make hack'
Packaging: modify Makefile.am to fix out-of-tree use of 'make
hack'
LP: #2122054 Snap installation: skip snap icon download when
running in a cloud or using a proxy store
Snap installation: add timeout to http client when downloading
snap icon
Snap installation: use http(s) proxy for icon downloads
LP: #2117558 snap-confine: fix error message with /root/snap not
accessible
snap-confine: fix non-suid limitation by switching to root:root to
operate v1 freezer
core-initrd: do not use writable-paths when not available
core-initrd: remove debian folder
LP: #1916244 Interfaces: gpio-chardev | re-enable the gpio-chardev
interface now with the more robust gpio-aggregator configfs kernel
interface
Interfaces: gpio-chardev | exclusive snap connections, raise a
conflict when both gpio-chardev and gpio are connected
Interfaces: gpio-chardev | fix gpio-aggregator module load order
Interfaces: ros-snapd-support | grant access to /v2/changes
Interfaces: uda-driver-libs, egl-driver-libs, gbm-driver-libs,
opengl-driver-libs, opengles-driver-libs | new interfaces to
support nvidia driver components
Interfaces: microstack-support | allow DPDK (hugepage related
permissions)
Interfaces: system-observe | allow reading additional files in
/proc, needed by node-exporter
Interfaces: u2f | add Cano Key, Thesis FIDO2 BioFP+ Security Key
and Kensington VeriMark DT Fingerprint Key to device list
Interfaces: snap-interfaces-requests-control | allow shell API
control
Interfaces: fwupd | allow access to Intel CVS sysfs