X-Git-Url: https://iankelling.org/git/?a=blobdiff_plain;f=fai%2Fconfig%2Fscripts%2FGRUB_PC%2F11-ian;h=11cd818d50df43b2130ed64bf08608cf9bb79e39;hb=f6b9ade60186b7be2ecf39266ced982ec7efc633;hp=d9534b024f40dd96bd912aa53b03d04a14c5c588;hpb=d329f65c81ce7e906d82c4e8dcf5b985f718ab4e;p=automated-distro-installer diff --git a/fai/config/scripts/GRUB_PC/11-ian b/fai/config/scripts/GRUB_PC/11-ian index d9534b0..11cd818 100755 --- a/fai/config/scripts/GRUB_PC/11-ian +++ b/fai/config/scripts/GRUB_PC/11-ian @@ -1,19 +1,80 @@ #!/bin/bash -x set -eE -o pipefail -trap 'echo "$0:$LINENO:error: \"$BASH_COMMAND\" returned $?"' ERR +trap 'echo "$0:$LINENO:error: \"$BASH_COMMAND\" returned $?" >&2' ERR -$ROOTCMD adduser --disabled-password --gecos ian ian -$ROOTCMD usermod -p "$ROOTPW" ian +if [[ $EUID != 0 ]]; then + echo "$0: error: expected to be root." + exit 1 +fi +if ! type -t fcopy &>/dev/null; then + sudo apt-get -y install fai-client +fi -fcopy -rM -i /home/ian/.ssh -/var/lib/fai/config/distro-install-common/end +dir=/q/root/shadow +fai_shadow=$FAI/distro-install-common/shadow +if [[ ! -e $dir && -e $fai_shadow ]]; then + mkdir -p $dir + mount -o bind $fai_shadow $dir +fi +$FAI/distro-install-common/end -$ROOTCMD chown -R 1000:1000 /home/ian/.ssh -$ROOTCMD chmod -R u=Xrw,og= /home/ian/.ssh -$ROOTCMD cp -ar /home/ian/.ssh /root -$ROOTCMD chown -R root:root /root/.ssh +if ifclass STABLE || ifclass LINODESTABLE; then + fcopy -M /etc/apt/preferences +fi -# default jessie groups + kvm -$ROOTCMD usermod -aG cdrom,floppy,sudo,audio,dip,video,plugdev,netdev,kvm ian +if ifclass DEBIAN; then + fcopy -M /etc/apt/preferences.d/unstable +fi +fcopy -riM /etc/apt/sources.list.d +$ROOTCMD apt-get update + + + +# note: +# fcopy -i = ignore nonmatching class error, always return 0. + +# for lj, this will be empty and fail +fcopy -riM /home/ian/.ssh + +rm -f $FAI_ROOT/etc/apt/sources.list + +chroot $FAI_ROOT bash <<'EOF' +set -eE -o pipefail +mkdir -p /home/ian/.ssh +f=/root/.ssh/authorized_keys +if [[ -e $f ]]; then + cp $f /home/ian/.ssh +fi +chown -R 1000:1000 /home/ian/.ssh +chmod -R u=Xrw,og= /home/ian/.ssh +rm -rf /root/.ssh +cp -rL /home/ian/.ssh /root +chown -R root:root /root/.ssh +chmod 700 /root/.ssh + +# default jessie groups + kvm, systemd-journal, adm +usermod -aG adm,cdrom,floppy,sudo,audio,dip,video,plugdev,netdev,systemd-journal ian + +# https://askubuntu.com/questions/33416/how-do-i-disable-the-boot-splash-screen-and-only-show-kernel-and-boot-text-inst +# it suggests not having plymouth-theme-ubuntu-text, but +# making it not installed then kills plymouth, then makes +# the system not boot. +sed -ri 's/(^ *GRUB_CMDLINE_LINUX.*)quiet splash/\1/' /etc/default/grub +# on xenial, no grub is displayed at all. fix that. +# found just by noticing this in the config file, and a +# warning about it in error.log +sed -i '/^ *GRUB_HIDDEN_TIMEOUT/d' /etc/default/grub +update-grub2 +EOF + + +# reading through the groups that ian is in but traci isn't, +for g in plugdev audio video cdrom; do + $ROOTCMD usermod -a -G $g traci +done + +# makes the journal be saved to disk. +$ROOTCMD mkdir -p $FAI_ROOT/var/log/journal +$ROOTCMD chmod 755 $FAI_ROOT/var/log/journal