<div class="container">
<h1>Recommended update for ipxe</h1>
<table class="table table-striped table-bordered">
<tbody>
<tr>
<th>Announcement ID:</th>
<td>SUSE-RU-2023:4640-1</td>
</tr>
<tr>
<th>Rating:</th>
<td>moderate</td>
</tr>
<tr>
<th>References:</th>
<td>
<ul>
<li style="display: inline;">
<a href="https://jira.suse.com/browse/PED-5536">jsc#PED-5536</a>
</li>
</ul>
</td>
</tr>
<tr>
<th>Affected Products:</th>
<td>
<ul class="list-group">
<li class="list-group-item">HPC Module 15-SP5</li>
<li class="list-group-item">openSUSE Leap 15.5</li>
<li class="list-group-item">SUSE Linux Enterprise High Performance Computing 15 SP5</li>
</ul>
</td>
</tr>
</tbody>
</table>
<p>An update that contains one feature can now be installed.</p>
<h2>Description:</h2>
<p>This update for ipxe fixes the following issues:</p>
<ul>
<li>
<p>Enabled HTTPS downloads (jsc#PED-5536)</p>
</li>
<li>
<p>Updated to version 1.21.1+git20231006.ff0f8604 with the following changes:</p>
</li>
<li>[arm] Support building as a Linux userspace binary for AArch64</li>
<li>[crypto] Add support for PKCS#8 private key format</li>
<li>[dhcp] Ignore DHCPNAK unless originating from the selected DHCP server</li>
<li>[dhcp] Request NTP server option</li>
<li>[eap] Define a supplicant model for EAP and EAPoL</li>
<li>[eapol] Send EAPoL-Start packets to trigger EAP authentication</li>
<li>[efi] Accept a command line passed to an iPXE image via LoadOptions</li>
<li>[efi] Add support for executing images via a shim</li>
<li>[efi] Allow autoexec script to be located alongside iPXE binary</li>
<li>[efi] Enable NET_PROTO_LLDP by default</li>
<li>[efi] Provide read-only access to EFI variables via settings mechanism</li>
<li>[efi] Support the initrd autodetection mechanism in newer Linux kernels</li>
<li>[efi] Update to current EDK2 headers</li>
<li>[golan] Add new PCI ID for NVIDIA BlueField-3 network device</li>
<li>[image] Generalise concept of selected image</li>
<li>[libc] Use wall clock time as seed for the (non-cryptographic) RNG</li>
<li>[loong64] Add initial support for LoongArch64</li>
<li>[ntp] Define NTP server setting</li>
<li>[params] Allow for arbitrary HTTP request headers to be specified</li>
<li>[rng] Allow entropy source to be selected at runtime</li>
<li>[tls] Handle fragmented handshake records (jsc#PED-5536)</li>
<li>
<p>[xen] Update to current Xen headers</p>
</li>
<li>
<p>Added floppy disk image</p>
</li>
</ul>
<h2>Patch Instructions:</h2>
<p>
To install this SUSE update use the SUSE recommended
installation methods like YaST online_update or "zypper patch".<br/>
Alternatively you can run the command listed for your product:
</p>
<ul class="list-group">
<li class="list-group-item">
openSUSE Leap 15.5
<br/>
<code>zypper in -t patch SUSE-2023-4640=1 openSUSE-SLE-15.5-2023-4640=1</code>
</li>
<li class="list-group-item">
HPC Module 15-SP5
<br/>
<code>zypper in -t patch SUSE-SLE-Module-HPC-15-SP5-2023-4640=1</code>
</li>
</ul>
<h2>Package List:</h2>
<ul>
<li>
openSUSE Leap 15.5 (aarch64 ppc64le x86_64 i586)
<ul>
<li>ipxe-bootimgs-1.21.1+git20231006.ff0f8604-150500.3.3.1</li>
</ul>
</li>
<li>
HPC Module 15-SP5 (aarch64 x86_64)
<ul>
<li>ipxe-bootimgs-1.21.1+git20231006.ff0f8604-150500.3.3.1</li>
</ul>
</li>
</ul>
<h2>References:</h2>
<ul>
<li>
<a href="https://jira.suse.com/browse/PED-5536">https://jira.suse.com/browse/PED-5536</a>
</li>
</ul>
</div>