One feature our users have been asking us ever since we officially launched over a year ago was to provide binary updates for base and kernel. We are excited to announce that we are launching the framework for binary updates today! We still need to tie in the update build script to our continuous integration infrastructure. For now, updates for the hardened/current/master branch of the HardenedBSD repo will be done manually. When we create the next installers/distsets for the HardenedBSD-stable repo, we'll also support updates there. You will notice two new programs, /usr/sbin/hbsd-update
and /usr/sbin/hbsd-update-build
, which apply and build update packages, respectively. This work was sponsored by G2, Inc, who has an immediate need for binary updates.
Please note that this feature is still experimental. Read on for design documentation.