mirror of
https://gitlab.archlinux.org/tpowa/archboot.git
synced 2024-09-21 04:20:37 +02:00
49 lines
2.2 KiB
Bash
49 lines
2.2 KiB
Bash
#!/usr/bin/env bash
|
|
# SPDX-License-Identifier: GPL-2.0-only
|
|
# Created by Tobias Powalowski <tpowa@archlinux.org>
|
|
|
|
build ()
|
|
{
|
|
map add_binary findssl.sh scp sftp ssh-add ssh-agent ssh-copy-id ssh-keygen ssh-keyscan sshd \
|
|
exportfs nfsstat rpc.idmapd rpc.mountd rpc.nfsd rpc.statd rpcdebug showmount \
|
|
sm-notify start-statd rpc.gssd \
|
|
nfsdcltrack gssproxy screen tmux rsync ttyd
|
|
map add_file /etc/screenrc /etc/ssh/ssh_config /etc/ssh/sshd_config /etc/ssh/moduli \
|
|
/etc/rsyncd.conf /etc/exports /usr/lib/ssh/sftp-server /usr/lib/ssh/ssh-keysign \
|
|
/usr/lib/ssh/ssh-pkcs11-helper \
|
|
/etc/netconfig
|
|
add_file /etc/ssh/sshd_config
|
|
# allow root login and empty passwords
|
|
echo "PermitRootLogin yes" >> "${BUILDROOT}/etc/ssh/sshd_config"
|
|
echo "PermitEmptyPasswords yes" >> "${BUILDROOT}/etc/ssh/sshd_config"
|
|
add_full_dir /usr/lib/libnfsidmap
|
|
map add_dir /var/empty /var/lib/nfs/sm /var/lib/nfs/sm.bak /var/lib/nfs/v4recovery \
|
|
/var/lib/nfs/rpc_pipefs /var/log/gssproxy
|
|
# mask nfs3 systemd
|
|
for i in rpcbind.service rpcbind.socket rpcbind.target nfs-server.service; do
|
|
add_symlink "/etc/systemd/system/${i}" /dev/null
|
|
done
|
|
map add_full_dir /etc/gss /etc/gssproxy
|
|
map add_dir /var/lib/gssproxy/{clients,rcache} /var/log/gssproxy
|
|
add_dir /var/lib/openldap
|
|
chmod 700 "${BUILDROOT}/var/lib/openldap"
|
|
chown 439:439 "${BUILDROOT}/var/lib/openldap"
|
|
# start sshd on startup
|
|
add_symlink /etc/systemd/system/multi-user.target.wants/sshd.service /usr/lib/systemd/system/sshd.service
|
|
# start ttyd on startup
|
|
add_file /usr/lib/libwebsockets-evlib_uv.so
|
|
add_file /usr/share/archboot/remote/usr/bin/remote-login.sh /usr/bin/remote-login.sh
|
|
add_file /usr/share/archboot/remote/etc/systemd/system/ttyd.service /etc/systemd/system/ttyd.service
|
|
add_symlink /etc/systemd/system/multi-user.target.wants/ttyd.service /etc/systemd/system/ttyd.service
|
|
# fix licenses
|
|
map add_file /usr/share/licenses/nfsidmap/LICENSE \
|
|
/usr/share/licenses/tmux/LICENSE /usr/share/licenses/ttyd/LICENSE
|
|
}
|
|
|
|
help ()
|
|
{
|
|
cat<<HELPEOF
|
|
This hook includes remote tools on an archboot image.
|
|
HELPEOF
|
|
}
|
|
# vim: set ft=sh ts=4 sw=4 et:
|