Mark D Horn d7c04bba06 Disable the root account if Admin set
If any accounts are added and set to have Admin privileges
via sudo, then disable the root account by locking it.

Also lock the root account if SSH Keys are set, but no password.

Added checking if the account exists (system accounts like root)
to use usermod not useradd. Also use getent to find the user's
home directory and not assume /home (not true for root).

Signed-off-by: Mark D Horn <mark.d.horn@intel.com>
2019-02-14 16:59:43 -08:00
2018-11-08 14:30:00 -08:00
2018-10-02 14:16:42 -07:00
2018-09-25 09:56:40 -07:00
2018-10-09 16:46:40 -07:00
2018-10-16 16:47:50 -07:00
2019-01-22 16:56:26 -08:00
2019-01-11 17:26:26 -08:00
2019-01-28 18:40:46 -08:00
2018-11-08 14:30:00 -08:00
2018-10-30 10:33:02 -06:00
2018-08-13 14:14:30 -07:00
2018-11-30 10:01:03 -08:00
2019-01-31 11:05:31 -08:00

Clear Linux Installer

Clear Linux OS Security

As the installer is a part of the Clear Linux OS distribution, this program follows the Clear Linux OS Security processes.

Dependencies

The following bundles are required in order to run clr-installer:

  • sysadmin-basic (for kbd)
  • storage-utils
  • network-basic

How to test?

Make sure there is extra storage space, such as a USB memory stick, and choose it while running the installer.

Clone this repository

git clone https://github.com/clearlinux/clr-installer.git

Build the installer

cd clr-installer && make

Install (installing the installer)

To create a bootable image which will launch the installer, use the installer.yaml as the config file.

sudo .gopath/bin/clr-installer --config scripts/installer.yaml

Refer to InstallerYAMLSyntax for syntax of the config file.

Create a bootable installer on USB media:

sudo .gopath/bin/clr-installer --config scripts/installer.yaml -b installer:<usb device>

Note: Replace <usb device> with the usb's device file as follows:

sudo .gopath/bin/clr-installer --config scripts/installer.yaml -b installer:/dev/sdb

Testing [Run as root]

In order to execute an install the user must run clr-installer as root. It's always possible to tweak configurations and only save the configuration for future use, in that case it's not required to run as root.

Having said that, to run a install do:

sudo .gopath/bin/clr-installer

Multiple Installer Modes

Currently the installer supports 2 modes (a third one is on the way):

  1. Mass Installer - using an install descriptor file
  2. TUI - a text based user interface
  3. GUI - a graphical user interface (yet to come)

Using Mass Installer

In order to use the Mass Installer provide a --config, such as:

sudo .gopath/bin/clr-installer --config ~/my-install.yaml

Using TUI

Call the clr-installer executable without any additional flags, such as:

sudo .gopath/bin/clr-installer

Reboot

For scenarios where a reboot may not be desired, such as when running the installer on a development machine, use the --reboot=false flag as follows:

sudo .gopath/bin/clr-installer --reboot=false

or if using the Mass Installer mode:

sudo .gopath/bin/clr-installer --config=~/my-install.yaml --reboot=false
S
Description
No description provided
Readme
9.9 MiB
Languages
Go 92.9%
Shell 5.2%
Makefile 1.5%
CSS 0.3%
Python 0.1%