|
4b7a2682bd
|
Not overwrite USERGROUP_ENAB on anything but Ubuntu
The nonsense with umask is introduced by Canonical's infinite wisdom: https://git.launchpad.net/ubuntu/+source/pam/tree/debian/patches/pam_umask_usergroups_from_login.defs.patch?h=ubuntu/noble
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=583958
We don't need to break sensible distributions because of Ubuntu nonsenses
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-07-09 15:10:47 -07:00 |
|
|
a5e2f37b75
|
No longer hardcode date
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-07-05 08:30:29 -07:00 |
|
|
e7dba4febf
|
Suppress curl output
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-07-03 02:24:40 -07:00 |
|
|
8671262ad1
|
Be a bit more posix compliant
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-26 00:09:37 -07:00 |
|
|
d17763aaa5
|
Add unbound config for Docker
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-24 18:23:48 -07:00 |
|
|
0870a38cce
|
Unbound for server installs
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-21 15:40:07 -07:00 |
|
|
512c525049
|
Add unbound.conf
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-21 15:01:55 -07:00 |
|
|
d4c5b84008
|
Default to UTC
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-20 05:19:03 -07:00 |
|
|
dcb9a8c9f6
|
Daily update for GitHub actions
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-15 15:04:11 -07:00 |
|
|
1859d176b5
|
Use sshd socket instead of service
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-14 16:41:32 -07:00 |
|
|
80e3e9a86c
|
Typo fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-14 16:20:42 -07:00 |
|
|
7018a7945f
|
Consistency fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-06 13:08:31 -07:00 |
|
|
ce689900a3
|
Cleanup arch-chroot step
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-06 13:02:51 -07:00 |
|
|
f4655b87cf
|
Remove subvol split for toolbox
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-05 00:13:36 -07:00 |
|
|
7fd0563729
|
Use systemd-resolved
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 21:45:45 -07:00 |
|
|
c2af90b0d3
|
Partitioning fixes
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 17:51:43 -07:00 |
|
|
ebf018706c
|
Minor improvements
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 16:54:58 -07:00 |
|
|
f08634fc49
|
Minor improvements & bug fixes
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 16:52:00 -07:00 |
|
|
f400b8b0b2
|
Typo fixes
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 14:42:30 -07:00 |
|
|
34c87acf62
|
Use custom config and SecureBlue configs
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-04 14:22:19 -07:00 |
|
|
2eb8b6bf5a
|
Do not preload part_msdos
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 10:44:34 -07:00 |
|
|
c03ba949ea
|
Default to linux-hardened
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 10:38:49 -07:00 |
|
|
daf2664d08
|
Add notes on dconf not working
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 02:00:23 -07:00 |
|
|
6d0c3594d9
|
Fix arch-chroot section
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 01:44:16 -07:00 |
|
|
ce3d59b072
|
Add missing directory
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 01:32:58 -07:00 |
|
|
38ed7b9cb2
|
Fix typo
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 01:07:30 -07:00 |
|
|
8351da101f
|
Add suport for VM installs without encryption
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 00:47:34 -07:00 |
|
|
e812fa7185
|
Typo fix
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 00:14:37 -07:00 |
|
|
0128fd93b6
|
Support networkd for server installs
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-02 00:02:15 -07:00 |
|
|
8a0504c4d8
|
Clean up
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 19:27:19 -07:00 |
|
|
cca5ac2d5d
|
Remove grub modules (for now)
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 19:17:57 -07:00 |
|
|
63516f369d
|
More minimal initramfs
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 18:56:40 -07:00 |
|
|
584603cf27
|
Allow ping on server
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 16:14:36 -07:00 |
|
|
90dff901cc
|
Easier to read regex
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 16:02:15 -07:00 |
|
|
edb0e04404
|
Only configure org.gnome.Shell@wayland on desktop
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:50:23 -07:00 |
|
|
a0af762521
|
Remove unnecessary if check
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:43:45 -07:00 |
|
|
b44c8046e9
|
Allow SSH password auth by default
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:41:17 -07:00 |
|
|
f7b46e88b9
|
Remove unnecessary sudo calls
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:39:36 -07:00 |
|
|
8d46f9561b
|
SSH server hardening
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:38:01 -07:00 |
|
|
c77d6c1e2d
|
Sign grub
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:25:05 -07:00 |
|
|
f46ebb9625
|
Add highlighting for dirs
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:23:55 -07:00 |
|
|
65e6dcb581
|
Remove unnecessary command
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:17:32 -07:00 |
|
|
3cfdbc422c
|
SSH client hardening
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 15:04:41 -07:00 |
|
|
6605045c5a
|
Add update_grub.sh
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 14:50:52 -07:00 |
|
|
78e653261f
|
Split GNOME settings out for desktop only
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 14:46:06 -07:00 |
|
|
81bf0790f7
|
Remove incorrect mount options
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 04:15:36 -07:00 |
|
|
27d7935de2
|
Add missing mountpoints
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 12:02:03 -07:00 |
|
|
98d4106ba7
|
Disable XWayland
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 01:57:24 -07:00 |
|
|
5957f7673d
|
Add dconf config
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 01:54:06 -07:00 |
|
|
9f6c9d7a79
|
Add flatpak handling
Signed-off-by: Tommy <contact@tommytran.io>
|
2024-06-01 01:09:40 -07:00 |
|