Introducing CloudLinux OS 9.4 Stable Release

Introducing CloudLinux OS 9.4 Stable Release
We're excited to unveil the latest milestone in our journey: CloudLinux OS 9.4 Stable Release! This release marks a significant step forward in enhancing the performance, security, and stability of your hosting environment. Additionally, AlmaLinux OS 9.4 Stable Release is also available, offering seamless compatibility and enhanced performance. Check instructions below on how to install  & upgrade and find more information on detailed changelog. 

 

How to install CloudLinux 9.4 

You can install CloudLinux OS 9.4 on a new server from the ISO image or convert an existing AlmaLinux 9.4 server to CloudLinux 9.4 Please refer to the documentation for details.

 

How to upgrade

We’ve started a gradual rollout of the updated cloudlinux-release package that brings necessary repo updates for 9.4. The Stable rollout will take 10 days so those of you who are excited to get started right away, please follow these steps to upgrade CloudLinux 9.3 to 9.4 manually:

  1. Update cloudlinux-release package from rollout slot

# dnf --enablerepo=cloudlinux-rollout-2-bypass install cloudlinux-release

  1. Do system upgrade

# dnf update

In about 2 weeks, CloudLinux OS 9.4 will be available from general repository  and could be updated just with following command:

# dnf update

 

Changelog

  • Distributed kernel version: 5.14.0-427.13.1.el9_4
  • Distribute kernel module: kmod-lve-2.1-27
  • Updated module streams:
    • Python 3.12
    • Ruby 3.3
    • PHP 8.2
    • nginx 1.24
    • MariaDB 10.11
    • PostgreSQL 16

  • Updated components:
    • Git to version 2.43.0
    • Git LFS to version 3.4.1

  • Performance tools and debuggers updates:
    • Valgrind 3.22
    • SystemTap 5.0
    • elfutils 0.190

  • Updated performance monitoring tools:
    • PCP 6.2.0

  • Compiler updates:
    • GCC Toolset 13
    • LLVM Toolset 17.0.6
    • Rust Toolset 1.75.1
    • Go Toolset 1.21.7

  • Security updates:
    • The SELinux userspace release 3.6 introduces deny rules for further customizing SELinux policies.
    • The Keylime server components, the verifier and registrar, are available as containers.
    • The Rsyslog log processing system introduces customizable TLS/SSL encryption settings and additional options that relate to capability dropping.
    • The OpenSSL TLS toolkit adds a drop-in directory for provider-specific configuration files.
    • The Linux kernel cryptographic API (libkcapi) 1.4.0 introduces new tools and options. Notably, with the new -T option, you can specify target file names in hash-sum calculations.
    • The stunnel TLS/SSL tunneling service 5.71 changes the behavior of OpenSSL 1.1 and later versions in FIPS mode. Besides this change, version 5.71 provides many new features such as support for modern PostgreSQL clients.

  • The following device drivers were modified to re-add PCI IDs for hardware that was previously disabled in our upstream:
    • aacraid - Dell PERC2, 2/Si, 3/Si, 3/Di, Adaptec Advanced Raid Products, HP NetRAID-4M, IBM ServeRAID & ICP SCSI
    • be2iscsi - Emulex OneConnectOpen-iSCSI for BladeEngine 2 and 3 adapters
    • hpsa - HP Smart Array Controller
    • lpfc - Emulex LightPulse Fibre Channel SCSI
    • megaraid_sas - Broadcom MegaRAID SAS
    • mpt3sas - LSI MPT Fusion SAS 3.0
    • mptsas - Fusion MPT SAS Host
    • qla2xxx - QLogic Fibre Channel HBA
    • qla4xxx - QLogic iSCSI HBA

For a complete list of hardware support for which was added in this release, see the Extended hardware support section.

As we aim to match release versions and cadences with Red Hat Enterprise Linux, you can reference the RHEL 9.4 release notes  for a full list of changes in this release.

Introducing CloudLinux OS 9.4 Stable Release

Introducing CloudLinux OS 9.4 Stable Release
We're excited to unveil the latest milestone in our journey: CloudLinux OS 9.4 Stable Release! This release marks a significant step forward in enhancing the performance, security, and stability of your hosting environment. Additionally, AlmaLinux OS 9.4 Stable Release is also available, offering seamless compatibility and enhanced performance. Check instructions below on how to install  & upgrade and find more information on detailed changelog. 

 

How to install CloudLinux 9.4 

You can install CloudLinux OS 9.4 on a new server from the ISO image or convert an existing AlmaLinux 9.4 server to CloudLinux 9.4 Please refer to the documentation for details.

 

How to upgrade

We’ve started a gradual rollout of the updated cloudlinux-release package that brings necessary repo updates for 9.4. The Stable rollout will take 10 days so those of you who are excited to get started right away, please follow these steps to upgrade CloudLinux 9.3 to 9.4 manually:

  1. Update cloudlinux-release package from rollout slot

# dnf --enablerepo=cloudlinux-rollout-2-bypass install cloudlinux-release

  1. Do system upgrade

# dnf update

In about 2 weeks, CloudLinux OS 9.4 will be available from general repository  and could be updated just with following command:

# dnf update

 

Changelog

  • Distributed kernel version: 5.14.0-427.13.1.el9_4
  • Distribute kernel module: kmod-lve-2.1-27
  • Updated module streams:
    • Python 3.12
    • Ruby 3.3
    • PHP 8.2
    • nginx 1.24
    • MariaDB 10.11
    • PostgreSQL 16

  • Updated components:
    • Git to version 2.43.0
    • Git LFS to version 3.4.1

  • Performance tools and debuggers updates:
    • Valgrind 3.22
    • SystemTap 5.0
    • elfutils 0.190

  • Updated performance monitoring tools:
    • PCP 6.2.0

  • Compiler updates:
    • GCC Toolset 13
    • LLVM Toolset 17.0.6
    • Rust Toolset 1.75.1
    • Go Toolset 1.21.7

  • Security updates:
    • The SELinux userspace release 3.6 introduces deny rules for further customizing SELinux policies.
    • The Keylime server components, the verifier and registrar, are available as containers.
    • The Rsyslog log processing system introduces customizable TLS/SSL encryption settings and additional options that relate to capability dropping.
    • The OpenSSL TLS toolkit adds a drop-in directory for provider-specific configuration files.
    • The Linux kernel cryptographic API (libkcapi) 1.4.0 introduces new tools and options. Notably, with the new -T option, you can specify target file names in hash-sum calculations.
    • The stunnel TLS/SSL tunneling service 5.71 changes the behavior of OpenSSL 1.1 and later versions in FIPS mode. Besides this change, version 5.71 provides many new features such as support for modern PostgreSQL clients.

  • The following device drivers were modified to re-add PCI IDs for hardware that was previously disabled in our upstream:
    • aacraid - Dell PERC2, 2/Si, 3/Si, 3/Di, Adaptec Advanced Raid Products, HP NetRAID-4M, IBM ServeRAID & ICP SCSI
    • be2iscsi - Emulex OneConnectOpen-iSCSI for BladeEngine 2 and 3 adapters
    • hpsa - HP Smart Array Controller
    • lpfc - Emulex LightPulse Fibre Channel SCSI
    • megaraid_sas - Broadcom MegaRAID SAS
    • mpt3sas - LSI MPT Fusion SAS 3.0
    • mptsas - Fusion MPT SAS Host
    • qla2xxx - QLogic Fibre Channel HBA
    • qla4xxx - QLogic iSCSI HBA

For a complete list of hardware support for which was added in this release, see the Extended hardware support section.

As we aim to match release versions and cadences with Red Hat Enterprise Linux, you can reference the RHEL 9.4 release notes  for a full list of changes in this release.

imunify-logo

WEB SERVER SECURITY BLOG

Subscribe to CloudLinux Newsletter