Commit graph

16 commits

Author SHA1 Message Date
Harald Hoyer a5f5c4385e SELINUX=1 enforcing 2018-09-20 13:29:56 +02:00
Harald Hoyer f05fdad33b selinux 2018-09-19 08:02:18 +02:00
Harald Hoyer 9eb0a8517e pre-pivot.sh: do it all by hand 2018-09-18 19:05:44 +02:00
Harald Hoyer 9ef2358251 pre-pivot.sh: mount data partition in /run first 2018-09-18 10:44:32 +02:00
Harald Hoyer 8dfaa0d4be move everything configurable to /cfg and try selinux 2018-09-17 17:32:13 +02:00
Harald Hoyer edee679f34 pre-pivot.sh: udevadm settle
wait for udev to settle to mount the correct data disk
2018-09-12 16:40:53 +02:00
Harald Hoyer 1dc7a0fae6 use single image for squashfs and dmverity 2018-09-11 16:49:44 +02:00
Harald Hoyer 0e17648dc5 update 2018-09-11 11:37:59 +02:00
Harald Hoyer a320d42d51 fixed /data paths 2018-09-10 16:28:48 +02:00
Harald Hoyer 2e63e25d7d update 2018-09-07 17:02:36 +02:00
Harald Hoyer 6910172911 extend PCR7 after using it to unlock the LUKS 2018-09-05 16:50:45 +02:00
Harald Hoyer a2f5682cec pre-pivot.sh: don't remove the initial keyslot
It is needed, if the user wants to set a password
2018-09-05 15:15:53 +02:00
Harald Hoyer 2bd0b8d314 use /dev/mapper/data and a /etc/fstab on the real root 2018-09-05 15:15:53 +02:00
Harald Hoyer b228882743 pre-pivot.sh: don't wait for root device
since we are in pre-pivot, /dev/mapper/root should already exist.
2018-09-05 13:18:06 +02:00
Harald Hoyer 832454ea89 pre-pivot.sh: only wait for tpmrm0 if clevis is used 2018-09-05 13:17:31 +02:00
Harald Hoyer a80e32c538 initial commit 2018-09-05 11:49:57 +02:00