Skip to content

templates: switch the default image from ubuntu-25.10 to ubuntu-26.04 - #5106

Merged
jandubois merged 2 commits into
lima-vm:masterfrom
AkihiroSuda:fix-5069
Jun 13, 2026
Merged

jandubois merged 2 commits into
lima-vm:masterfrom
AkihiroSuda:fix-5069

Conversation

@AkihiroSuda

@AkihiroSuda AkihiroSuda commented Jun 11, 2026 •

Copy link
Copy Markdown
Member

Fix #4792
Fix #5069

Note: used Claude

@AkihiroSuda AkihiroSuda added this to the v2.2.0 milestone Jun 11, 2026
@AkihiroSuda

This comment was marked as resolved.

@AkihiroSuda
AkihiroSuda force-pushed the fix-5069 branch 2 times, most recently from aa4db88 to 5bbdee9 Compare June 11, 2026 18:01
@AkihiroSuda

This comment was marked as resolved.

unsuman
unsuman previously approved these changes Jun 12, 2026

@unsuman unsuman left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks

@unsuman
unsuman requested a review from a team June 12, 2026 21:34

@jandubois jandubois left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I assume this is meant to be a temporary hack.

For a permanent feature it just feels wrong to abuse the param mechanism to avoid adding a field to the limayaml struct, but still reference it from builtin boot scripts.

@AkihiroSuda

Copy link
Copy Markdown
Member Author

I assume this is meant to be a temporary hack.

Yes

For a permanent feature it just feels wrong to abuse the param mechanism to avoid adding a field to the limayaml struct, but still reference it from builtin boot scripts.

Shall we have a prefix like internal.lima-vm.io/ for internal params?

@afbjorklund

Copy link
Copy Markdown
Member

I think you should just add it to the limayaml instead of using the params for this.

@AkihiroSuda
AkihiroSuda marked this pull request as draft June 13, 2026 11:08
@AkihiroSuda

Copy link
Copy Markdown
Member Author

I think you should just add it to the limayaml instead of using the params for this.

I don't want to add a proper YAML property for a temporary hack

@AkihiroSuda

Copy link
Copy Markdown
Member Author

// Validate Param settings
// Names must start with a letter, followed by any number of letters, digits, or underscores
validParamName := regexp.MustCompile(`^[a-zA-Z][a-zA-Z0-9_]*$`)
for param, value := range y.Param {
if !validParamName.MatchString(param) {
errs = errors.Join(errs, fmt.Errorf("param %#q name does not match regex %#q", param, validParamName.String()))
}
for _, r := range value {
if !unicode.IsPrint(r) && r != '\t' && r != ' ' {
errs = errors.Join(errs, fmt.Errorf("param %#q value contains unprintable character %#q", param, r))
}
}
}

Looks like we can't have a prefix like internal.lima-vm.io/.
We can still have one like internal_ ?

….04`

Fix issue 5069

Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
On Ubuntu 26.04 (cloud-init 26.1 / netplan 1.2) the NIC is already up
when cloud-init renames it per "set-name" on first boot (LP: #2136392).
The rename fails with EBUSY, the netplan-generated networkd config
targets the new name, so the NIC stays unconfigured: wait-online blocks
boot for 120s and fails, and Lima waits forever for SSH.

- user-data: add a bootcmd that re-attempts the rename (matched by MAC;
  renaming only requires the link to be down) and waits for the slirp
  NIC to be configured. No-op when names are already correct.
- network-config: mark NICs "optional: true" iff the `internal_netplanOptional`
  param is set, so wait-online does not require the not-yet-renamed
  name. Must not be set unconditionally: cloud-init's networkd renderer
  maps it to RequiredForOnline=no, which makes wait-online time out on
  non-netplan distros (e.g. Arch Linux). The bootcmd wait covers the
  early wait-online return that broke ubuntu-25.10 on vz in PR lima-vm#5070.
- templates: set the param for ubuntu-26.04.

Raw 26.04 images without the param still get working networking from
the bootcmd, with the first boot delayed by the (Ubuntu-side) 120s
wait; subsequent boots rename via udev before the link is up.

Fixes: lima-vm#4792
See-also: https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/2136392
Note: used Claude
Signed-off-by: Akihiro Suda <akihiro.suda.cz@hco.ntt.co.jp>
@AkihiroSuda
AkihiroSuda marked this pull request as ready for review June 13, 2026 18:26

@jandubois jandubois left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks, LGTM

@jandubois
jandubois merged commit 29db4e1 into lima-vm:master Jun 13, 2026
35 checks passed
tmeijn pushed a commit to tmeijn/dotfiles that referenced this pull request Jul 9, 2026
This MR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [lima-vm/lima](https://github.com/lima-vm/lima) | patch | `v2.1.2` → `v2.1.4` |

MR created with the help of [el-capitano/tools/renovate-bot](https://gitlab.com/el-capitano/tools/renovate-bot).

**Proposed changes to behavior should be submitted there as MRs.**

---

### Release Notes

<details>
<summary>lima-vm/lima (lima-vm/lima)</summary>

### [`v2.1.4`](https://github.com/lima-vm/lima/releases/tag/v2.1.4)

[Compare Source](lima-vm/lima@v2.1.3...v2.1.4)

#### Changes

- Cherry-picks from `master` to `release/2.1`
  - Only add xorrisofs flag to the xorrisofs command  ([#&#8203;5129](lima-vm/lima#5129), thanks to [@&#8203;afbjorklund](https://github.com/afbjorklund))
  - fix(qemu): fallback from hvf to tcg on macOS ([#&#8203;5137](lima-vm/lima#5137), thanks to [@&#8203;kavirakesh14](https://github.com/kavirakesh14))
  - nerdctl: update from v2.3.3 to [v2.3.4](https://github.com/containerd/nerdctl/releases/tag/v2.3.4) ([#&#8203;5169](lima-vm/lima#5169))
  - templates: update ([#&#8203;5170](lima-vm/lima#5170))
  - templates/freebsd-15: support 9p mounts ([#&#8203;5172](lima-vm/lima#5172))
  - cmd/limactl: include name in network list `--json` output ([#&#8203;5179](lima-vm/lima#5179), thanks to [@&#8203;coulof](https://github.com/coulof))

Full changes: <https://github.com/lima-vm/lima/milestone/73?closed=1>

#### Usage

```console
$ limactl create
$ limactl start
...
INFO[0029] READY. Run `lima` to open the shell.

$ lima uname
Linux
```

***

The binaries were built automatically on GitHub Actions.
The build log is available for 90 days: <https://github.com/lima-vm/lima/actions/runs/28630554371>

The sha256sum of the SHA256SUMS file itself is `8bd82f03bc23acafc7e129fdbcbd9401b50eee2723817b8127f16dee3aebef92` .

***

Release manager: [@&#8203;AkihiroSuda](https://github.com/AkihiroSuda)

### [`v2.1.3`](https://github.com/lima-vm/lima/releases/tag/v2.1.3)

[Compare Source](lima-vm/lima@v2.1.2...v2.1.3)

- Cherry-picks from `master` to `release/2.1` ([#&#8203;5131](lima-vm/lima#5131))
  - limayaml: do not default containerd.user=true on non-Linux guests ([#&#8203;5090](lima-vm/lima#5090), thanks to [@&#8203;gaurav0107](https://github.com/gaurav0107))
  - fix(copytool): fallback to scp for remote source and destination in auto mode ([#&#8203;5097](lima-vm/lima#5097), thanks to [@&#8203;unsuman](https://github.com/unsuman))
  - templates: switch the default image from ubuntu-25.10 to ubuntu-26.04 ([#&#8203;5106](lima-vm/lima#5106))
  - krunkit: disable ssh.overVsock by default ([#&#8203;5123](lima-vm/lima#5123))
  - fix(makefile): propagate build failure for additional drivers ([#&#8203;5125](lima-vm/lima#5125), thanks to [@&#8203;unsuman](https://github.com/unsuman))
  - templates: update ([#&#8203;5130](lima-vm/lima#5130))
  - nerdctl: update from v2.2.2 to v2.3.3 ([#&#8203;5134](lima-vm/lima#5134))
    - [v2.3.0 release note](https://github.com/containerd/nerdctl/releases/tag/v2.3.0)
    - [v2.3.1 release note](https://github.com/containerd/nerdctl/releases/tag/v2.3.1)
    - [v2.3.2 release note](https://github.com/containerd/nerdctl/releases/tag/v2.3.2)
    - [v2.3.3 release note](https://github.com/containerd/nerdctl/releases/tag/v2.3.3)
      - nerdctl v2.3.3 contains [containerd v2.3.2](https://github.com/containerd/containerd/releases/tag/v2.3.2), which fixes CVE-2026-50195, CVE-2026-53488, CVE-2026-53492, CVE-2026-53489, CVE-2026-47262

- Fix CVE-2026-53657 (GHSA-2j9v-p4xj-cjw2) "An arbitrary user in a QEMU VM could gain the root privilege in the VM via the guest agent socket"

Full changes: <https://github.com/lima-vm/lima/milestone/72>

#### Usage

```console
$ limactl create
$ limactl start
...
INFO[0029] READY. Run `lima` to open the shell.

$ lima uname
Linux
```

***

The binaries were built automatically on GitHub Actions.
The build log is available for 90 days: <https://github.com/lima-vm/lima/actions/runs/27824357138>

The sha256sum of the SHA256SUMS file itself is `ddaf499316c159493ccf853393e35c93d69e8c1f85cb041f6f7e918157625c6c` .

***

Release manager: [@&#8203;AkihiroSuda](https://github.com/AkihiroSuda)

</details>

---

### Configuration

📅 **Schedule**: (UTC)

- Branch creation
  - At any time (no schedule defined)
- Automerge
  - At any time (no schedule defined)

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever MR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 **Ignore**: Close this MR and you won't be reminded about this update again.

---

 - [ ] <!-- rebase-check -->If you want to rebase/retry this MR, check this box

---

This MR has been generated by [Mend Renovate](https://github.com/renovatebot/renovate).
<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0My4yNTYuMCIsInVwZGF0ZWRJblZlciI6IjQzLjI1Ni4wIiwidGFyZ2V0QnJhbmNoIjoibWFpbiIsImxhYmVscyI6WyJSZW5vdmF0ZSBCb3QiLCJhdXRvbWF0aW9uOmJvdC1hdXRob3JlZCIsImRlcGVuZGVuY3ktdHlwZTo6cGF0Y2giXX0=-->
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

4 participants