Caching update packages for templates

85 views
Skip to first unread message

drogo

unread,
Aug 7, 2019, 8:55:28 PM8/7/19
to qubes-users
Is there an easy way to enable caching for template update packages? It's annoying to have to download hundred of megs over and over while updating templates. I see there's already a proxy configured and listening on port 8082, so can I just enable caching of those packages somewhere in Qubes' networking stream to speed up those downloads?

Thanks.

Andrew David Wong

unread,
Aug 7, 2019, 11:38:15 PM8/7/19
to drogo, qubes-users
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Please have a look at this issue:

https://github.com/QubesOS/qubes-issues/issues/1957

- --
Andrew David Wong (Axon)
Community Manager, Qubes OS
https://www.qubes-os.org

-----BEGIN PGP SIGNATURE-----

iQIzBAEBCgAdFiEEZQ7rCYX0j3henGH1203TvDlQMDAFAl1LmRoACgkQ203TvDlQ
MDCefw//a3nMQJIGYgtRPLsEV4jCqMyiUDiAZsiF4LWBy6qUqKWB2TSnzLK3IHOx
jFfcG7sTgQfi6teJiH9wvLralkOHA3pMT/PlJKBDUASOzjnqEE2mirUgGTR8DgCt
EROTcQ1hCYswH7M3FiQ2lR3Hv3Br6W1elt/bbOl55U3sTQ3dvVFcMrZP+c1iW5Si
xOJW9r3Ndu058sQkCl4RkLG/b3BnyFTEkbhcYqUA9MgJJFdjImA+g0VgYy7Cg1xD
VU+7xoFmtFB50RaAKFjX1wdfj1oaH0IHQHt1SyImtR7oUR+S6WaEnxcuvZS6iz5R
8wEjFuYnVcZ+IScyG4iQqoJdYyfnYA61oh0hu/SBQMEfcm5uqJv1NzEOwK2T8WAH
9HHO89q3HftI2B8ycI/Qq1QaZBilLI5fcQi5VbcKLx/iTcD5AlF6tx6eHJpcUycT
fSwhc7MQU8t0B4xya6TiyiC4k3Q1VQlBZDtOL03ABYokFWcAofFPE7EMDrgHxrge
3ynCMIUywRVIMoq4xSY5LF4ZQIJek/yE2quUeVJ+MMyzpd03U58kHkbHTXLEDVgg
TGqS1cRZ5dWYiewAesd1JvuLwtX34wl1SaNEvpd8EE0C/1/kmX6iPs9BK5MprdsI
bhTqOCY7ZfUB+KLOcBMz2Aojt8TfWhDSrBg9gmzS2xGmMiDMhWI=
=U1wT
-----END PGP SIGNATURE-----

drogo

unread,
Aug 8, 2019, 8:33:48 AM8/8/19
to qubes-users
Thanks!  I'll keep an eye on that thread/issue.

I gave rustybird's qubes-update-cache a try on my laptop and it seemed to work well. I also came a cross a way to implement squid transparently on my firewall (pfSense), which I'll give a try later on since I've got many systems to update besides qubes and tend to update everything all at once

Thanks again!

unman

unread,
Aug 9, 2019, 9:10:41 PM8/9/19
to qubes-users
On Thu, Aug 08, 2019 at 05:33:48AM -0700, drogo wrote:
> Thanks! I'll keep an eye on that thread/issue.
>
> I gave rustybird's qubes-update-cache a try on my laptop and it seemed to
> work well. I also came a cross a way to implement squid transparently on my
> firewall (pfSense), which I'll give a try later on since I've got many
> systems to update besides qubes and tend to update everything all at once
>
> Thanks again!
>
> On Wednesday, August 7, 2019 at 11:38:15 PM UTC-4, Andrew David Wong wrote:
> >
> > -----BEGIN PGP SIGNED MESSAGE-----
> > Hash: SHA512
> >
> > On 07/08/2019 7.55 PM, drogo wrote:
> > > Is there an easy way to enable caching for template update
> > > packages? It's annoying to have to download hundred of megs over
> > > and over while updating templates. I see there's already a proxy
> > > configured and listening on port 8082, so can I just enable caching
> > > of those packages somewhere in Qubes' networking stream to speed up
> > > those downloads?
> > >
> > > Thanks.
> > >
> >
> > Please have a look at this issue:
> >
> > https://github.com/QubesOS/qubes-issues/issues/1957
> >
> > - --
> > Andrew David Wong (Axon)
> > Community Manager, Qubes OS
> > https://www.qubes-os.org
> >

Please don't top post.

I use apt-cacher-ng as a caching proxy - set it to listen on 8082 and
it's a plugin replacement for tinyproxy.
Debian and Ubuntu work out the box - Fedora needs a minor config
change.
It's very lightweight and you can spin it up as needed.
I have salt if you want to try it.

lik...@gmx.de

unread,
Aug 11, 2019, 9:39:44 AM8/11/19
to qubes...@googlegroups.com
Hi unman, I'd like to test the salt. I couldn't find it in your git-repo. Could you point me to the location?

unman

unread,
Aug 11, 2019, 10:51:28 AM8/11/19
to qubes...@googlegroups.com
https://github.com/unman/notes/tree/master/config/cacher

The conf files are 50_user.conf to set up the bind-dirs, and acng.conf
to configure the cacher. You probably want to cast an eye over those.
Everything else is straight forward.

I think the fedora_mirrors list needs to be checked - if you see a repo
being separately cached in /var/cache/apt-cacher/ng, check the URL and
add it to the mirrors list.

Works fine for Ubuntu and Debian as is.
Reply all
Reply to author
Forward
0 new messages