X-Git-Url: https://iankelling.org/git/?p=automated-distro-installer;a=blobdiff_plain;f=fai-redep;h=3e1263d39551582d085adb46560588389ec20b68;hp=df08b7660a05331997010085c741d7a327c88062;hb=HEAD;hpb=bfd6bbd3a188aac6871f8b5e1116a0979682d52b diff --git a/fai-redep b/fai-redep index df08b76..b90b30a 100755 --- a/fai-redep +++ b/fai-redep @@ -8,6 +8,8 @@ trap 'echo "$0:$LINENO:error: \"$BASH_COMMAND\" returned $?" >&2' ERR readonly this_file="$(readlink -f -- "${BASH_SOURCE[0]}")"; cd "${this_file%/*}" +source bash-trace + usage() { cat </dev/null; then - rpre="-e 'ssh -F $HOME/.ssh/confighome' root@$faiserver_host:" + rpre=(-e "ssh -F $HOME/.ssh/confighome" root@$faiserver_host:) faiserver_shell="ssh -F $HOME/.ssh/confighome root@$faiserver_host" fi @@ -68,38 +73,50 @@ rsync -atL /home/iank/.ssh/authorized_keys fai/config/files/root/.ssh/authorized # we hssh and ssh_filter_btrbk for the initial btrbk (alternatively, I could open up the # permissions in authorized_keys, but that just seems lazy) install --owner=iank --group=iank -d fai/config/files/usr/local/bin/hssh -rsync -atL /a/bin/ds/hssh fai/config/files/usr/local/bin/hssh/STANDARD install --owner=iank --group=iank -d fai/config/files/usr/local/bin/ssh_filter_btrbk.sh rsync -atL /a/opt/btrbk/ssh_filter_btrbk.sh fai/config/files/usr/local/bin/ssh_filter_btrbk.sh/STANDARD - -rsync -rlpt --delete --relative --exclude /fai/config/basefiles/ fai/config $rpre/srv +m rsync -rlpt --delete --relative --exclude /fai/config/basefiles/ fai/config "${rpre[@]}"/srv # todo: automatically disable faiserver after a period so # these files are not available. + if [[ $target ]]; then - if test -e /q/root/shadow/$target; then - shadowfile=shadow/$target # empty otherwise + secret_files=(luks/$target luks/host-$target shadow/$target) + exists=false + secret_exists=() + for f in ${secret_files[@]}; do + if [[ -e /q/root/$f ]]; then + exists=true + secrets_to_send+=("$f") + fi + done + if $exists; then + { + for f in ${secrets_to_send[@]}; do + echo $f + done + } | rsync -lpt --files-from=- /q/root "${rpre[@]}"/srv/fai/config/distro-install-common fi - rsync -lpt --files-from=- /q/root $rpre/srv/fai/config/distro-install-common </dev/null ||: # broken pipe + $faiserver_shell dd of=/srv/fai/config/package_config/DESKTOP status=none ||: # broken pipe -rsync -rplt --include '/*.gz' --exclude '/**' --delete-excluded $BASEFILE_DIR/ $rpre/srv/fai/config/basefiles/ +m rsync -rplt --include '/*.zst' --exclude '/**' --delete-excluded $BASEFILE_DIR/ "${rpre[@]}"/srv/fai/config/basefiles/