securing installation

Michael Tautschnig tautschn at model.in.tum.de
Wed Sep 12 18:14:26 CEST 2007


[...]
>> I think it works the following way: put your code in a script
>> $NFSROOT/$FAI/hooks/confdir.DEFAULT, where $NFSROOT and $FAI are set in
>> make-fai-nfsroot.conf and fai.conf, respectively.
>
> I'll try this out tomorrow.  I now have my FAI pulling the config space 
> from a svn repository.
>
Just to make sure we get this right: That hooks/ directory will later be
effectively overwritten by the SVN checkout and well, hmm, I'm not even sure one
gets to see the hook at all as it must be made available within tmpfs. @Thomas:
Could you maybe comment on this one?

>> About svn+ssh: I think latest FAI should already allow that, so it depends 
>> on
>> your actual version.
>
> I checked the fai's svn repository and it doesn't.  I also had to change
> mkrw -s 100m $FAI to mkrw -s 500m $FAI.  My config space was to big to fit 
> on 100M. ( a couple of basefiles are in place)
>

Well, in line 24 of trunk/lib/get-config-dir-svn it catches the svn+ssh case!?

HTH,
Michael

-------------- nächster Teil --------------
Ein Dateianhang mit Binärdaten wurde abgetrennt...
Dateiname   : nicht verfügbar
Dateityp    : application/pgp-signature
Dateigröße  : 186 bytes
Beschreibung: nicht verfügbar
URL         : http://lists.uni-koeln.de/pipermail/linux-fai/attachments/20070912/487cbacc/attachment.bin 


More information about the linux-fai mailing list