== Installation TFTPBOOT == 1.Installer {{{ aptitude install tftpd-hpa xinetd dhcp3-server }}} 2.Configurer * le démon tftp {{{ #vim /etc/default/tftpd-hp RUN_DAEMON="yes" OPTIONS="-l -s /tftpboot" }}} * le demon internet {{{ #vim /etc/xinetd.d/tftp service tftp { socket_type = dgram wait = yes user = root server = root server = /usr/etc/in.tftpd server_args = -s /tftpboot } }}} * le demon dhcp en mode minimal {{{ #vim /etc/dhcp3/dhcpd.conf ... subnet 10.0.0.0 netmask 255.255.255.224 { filename "pxelinux.0"; next-server 10.0.0.1; range 10.0.0.10 10.0.0.20; } ... }}} Copier les différents netboot à jour pour [[http://archive.ubuntu.com/ubuntu/dists/lucid/main/installer-i386/current/images/netboot/netboot.tar.gz|Lucid]] et [[http://ftp.nl.debian.org/debian/dists/lenny/main/installer-i386/current/images/netboot/|Lenny]] dans /tftpboot {{{ pxelinux.0 pxelinux.cfg ubuntu-installer-hardy ubuntu-installer-intrepid debian-installer-etch debian-installer-lenny ... }}} 3.Redemarrer les services dhcp tftp 4.Vérifier que le port tftp sont ouvert {{{ netstat -laput }}} == Installation automagic de lucid == * Ajouter les lignes suivantes dans /tftp/pxelinux.cfg/default du serveur pxe {{{ LABEL lucida kernel ubuntu-installer-lucid/i386/linux append vga=vesa initrd=ubuntu-installer-lucid/i386/initrd.gz locale=fr_FR.UTF-8 console-setup/ask_detect=false console-setup/layoutcode=fr netcfg/wireless_wep= netcfg/choose_interface=eth0 netcfg/get_hostname= url=http://bao.sn.auf/preseed/lucida -- }}} * et taper lucida lors du boot réseau * Configurer le fichier /var/www/bao.sn.auf/preseed/lucida sur le serveur web /!\ la configuration remet à zéro la machine sans demande de confirmation {{{ #### Contents of the preconfiguration file (for lenny) ### Localization # Locale sets language and country. d-i debian-installer/locale string fr_FR.UTF-8 d-i debian-installer/language string fr # Keyboard selection. d-i console-tools/archs select at d-i console-keymaps-at/keymap select fr d-i console-setup/layoutcode string fr # Example for a different keyboard architecture #d-i console-keymaps-usb/keymap select mac-usb-us ### Network configuration # netcfg will choose an interface that has link if possible. This makes it # skip displaying a list if there is more than one interface. #d-i netcfg/choose_interface select auto # To pick a particular interface instead: d-i netcfg/choose_interface select eth0 # If you have a slow dhcp server and the installer times out waiting for # it, this might be useful. #d-i netcfg/dhcp_timeout string 60 # If you prefer to configure the network manually, uncomment this line and # the static network configuration below. #d-i netcfg/disable_dhcp boolean true # If you want the preconfiguration file to work on systems both with and # without a dhcp server, uncomment these lines and the static network # configuration below. #d-i netcfg/dhcp_failed note #d-i netcfg/dhcp_options select Configure network manually # Static network configuration. #d-i netcfg/get_nameservers string 192.168.1.1 #d-i netcfg/get_ipaddress string 192.168.1.42 #d-i netcfg/get_netmask string 255.255.255.0 #d-i netcfg/get_gateway string 192.168.1.1 #d-i netcfg/confirm_static boolean true # Any hostname and domain names assigned from dhcp take precedence over # values set here. However, setting the values still prevents the questions # from being shown, even if values come from dhcp. d-i netcfg/get_hostname string unassigned-hostname d-i netcfg/get_domain string unassigned-domain # Disable that annoying WEP key dialog. d-i netcfg/wireless_wep string # The wacky dhcp hostname that some ISPs use as a password of sorts. #d-i netcfg/dhcp_hostname string radish # If non-free firmware is needed for the network or other hardware, you can # configure the installer to always try to load it, without prompting. Or # change to false to disable asking. #d-i hw-detect/load_firmware boolean true d-i hw-detect/load_firmware boolean false ### Network console # Use the following settings if you wish to make use of the network-console # component for remote installation over SSH. This only makes sense if you # intend to perform the remainder of the installation manually. #d-i anna/choose_modules string network-console #d-i network-console/password password r00tme #d-i network-console/password-again password r00tme ### Mirror settings # If you select ftp, the mirror/country string does not need to be set. #d-i mirror/protocol string ftp d-i mirror/country string manual d-i mirror/protocol string http d-i mirror/http/hostname string miroirs.refer.sn d-i mirror/http/directory string /ubuntu d-i mirror/http/proxy string # Suite to install. d-i mirror/suite string lucid # Suite to use for loading installer components (optional). #d-i mirror/udeb/suite string testing ### Clock and time zone setup # Controls whether or not the hardware clock is set to UTC. d-i clock-setup/utc boolean true # You may set this to any valid setting for $TZ; see the contents of # /usr/share/zoneinfo/ for valid values. d-i time/zone string Africa/Dakar # Controls whether to use NTP to set the clock during the install d-i clock-setup/ntp boolean true # NTP server to use. The default is almost always fine here. d-i clock-setup/ntp-server string ntp.refer.sn ### Partitioning # If the system has free space you can choose to only partition that space. #d-i partman-auto/init_automatically_partition select biggest_free # Alternatively, you can specify a disk to partition. The device name must # be given in traditional non-devfs format. # Note: A disk must be specified, unless the system has only one disk. # For example, to use the first SCSI/SATA hard disk: d-i partman-auto/disk string /dev/sda # In addition, you'll need to specify the method to use. # The presently available methods are: "regular", "lvm" and "crypto" d-i partman-auto/method string regular # If one of the disks that are going to be automatically partitioned # contains an old LVM configuration, the user will normally receive a # warning. This can be preseeded away... d-i partman-lvm/device_remove_lvm boolean true # The same applies to pre-existing software RAID array: d-i partman-md/device_remove_md boolean true # And the same goes for the confirmation to write the lvm partitions. d-i partman-lvm/confirm boolean true # You can choose one of the three predefined partitioning recipes: # - atomic: all files in one partition # - home: separate /home partition # - multi: separate /home, /usr, /var, and /tmp partitions #d-i partman-auto/choose_recipe select atomic # Or provide a recipe of your own... # The recipe format is documented in the file devel/partman-auto-recipe.txt. # If you have a way to get a recipe file into the d-i environment, you can # just point at it. #d-i partman-auto/expert_recipe_file string /hd-media/recipe # If not, you can put an entire recipe into the preconfiguration file in one # (logical) line. This example creates a small /boot partition, suitable # swap, and uses the rest of the space for the root partition: #d-i partman-auto/expert_recipe string \ # boot-root :: \ # 40 50 100 ext3 \ # $primary{ } $bootable{ } \ # method{ format } format{ } \ # use_filesystem{ } filesystem{ ext3 } \ # mountpoint{ /boot } \ # . \ # 500 10000 1000000000 ext3 \ # method{ format } format{ } \ # use_filesystem{ } filesystem{ ext3 } \ # mountpoint{ / } \ # . \ # 64 512 300% linux-swap \ # method{ swap } format{ } \ # . # partitionnement Lucid Dakar : # 15G pour / ext4 # 200% RAM pour le swap (hibernation) d-i partman-auto/expert_recipe string \ root-swap :: \ 10000 10000 10000 ext4 \ $primary{ } $bootable{ } \ method{ format } format{ } \ use_filesystem{ } filesystem{ ext4 } \ mountpoint{ / } \ . \ 1000 2000 300% linux-swap \ method{ swap } format{ } \ . \ 500 50000 1000000000 ext4 \ method{ format } format{ } \ use_filesystem{ } filesystem{ ext4 } \ mountpoint{ /home } \ . \ # This makes partman automatically partition without confirmation, provided # that you told it what to do using one of the methods above. d-i partman/confirm_write_new_label boolean true d-i partman/choose_partition select finish d-i partman/confirm boolean true # La derniere partition avec method{keep} fait que partman est perdu # en force la réponse pour lui dire de continuer quand même #d-i partman-basicmethods/method_only boolean false ### Base system installation # Select the initramfs generator used to generate the initrd for 2.6 kernels. #d-i base-installer/kernel/linux/initramfs-generators string yaird # The kernel image (meta) package to be installed; "none" can be used if no # kernel is to be installed. #d-i base-installer/kernel/image string linux-image-2.6-486 d-i base-installer/kernel/image string linux-generic ### Account setup # Skip creation of a root account (normal user account will be able to # use sudo). d-i passwd/root-login boolean true # Alternatively, to skip creation of a normal user account. d-i passwd/make-user boolean true # Root password, either in clear text #d-i passwd/root-password password r00tme #d-i passwd/root-password-again password r00tme # or encrypted using an MD5 hash. d-i passwd/root-password-crypted password $6$bCkRR9rX$AwmqXu14SQvqCl2i6kV9NVzgMokQ8/.g.bxviDqNhsaK/.RlR4K5nSZf3V3J.2Un/5ch4RzSh/cpBBvfLaK2x1 # To create a normal user account. d-i passwd/user-fullname string administration auf d-i passwd/username string auf # Normal user's password, either in clear text d-i passwd/user-password password auf #d-i passwd/user-password-again password insecure # or encrypted using an MD5 hash. #d-i passwd/user-password-crypted password $6$WJuK/bC3$zUaDoiVLLZ.sP/ui9ucDqrAK9EUv1s3HhKkuj.63p1OlR2YgGJ.U5saIwJa0xNVVPXrSDTObx32GVo2iDuvLu/ # Create the first user with the specified UID instead of the default. #d-i passwd/user-uid string 1010 # The user account will be added to some standard initial groups. To # override that, use this. d-i passwd/user-default-groups string adm audio cdrom video dialout lpadmin plugdev sambashare users admin d-i user-setup/encrypt-home boolean false ### Apt setup # You can choose to install non-free and contrib software. #d-i apt-setup/non-free boolean true #d-i apt-setup/contrib boolean true # Uncomment this if you don't want to use a network mirror. #d-i apt-setup/use_mirror boolean false # Select which update services to use; define the mirrors to be used. # Values shown below are the normal defaults. #d-i apt-setup/services-select multiselect security, volatile d-i apt-setup/services-select multiselect #d-i apt-setup/security_host string security.debian.org #d-i apt-setup/volatile_host string volatile.debian.org d-i apt-setup/restricted boolean true d-i apt-setup/universe boolean true d-i apt-setup/multiverse boolean true d-i apt-setup/backports boolean false # Uncomment this if you don't want to use a network mirror. #d-i apt-setup/use_mirror boolean false # Select which update services to use; define the mirrors to be used. # Values shown below are the normal defaults. #d-i apt-setup/services-select multiselect security #d-i apt-setup/security_host string security.ubuntu.com #d-i apt-setup/security_path string /ubuntu # Additional repositories, local[0-9] available #d-i apt-setup/local0/repository string \ # http://local.server/debian stable main #d-i apt-setup/local0/comment string local server # Enable deb-src lines #d-i apt-setup/local0/source boolean true # URL to the public key of the local repository; you must provide a key or # apt will complain about the unauthenticated repository and so the # sources.list line will be left commented out #d-i apt-setup/local0/key string http://local.server/key #d-i apt-setup/local0/repository string http://apt.auf.org/ lucid auf #d-i apt-setup/local0/comment string Paquets AUF pour Lucid #d-i apt-setup/local0/key string http://apt.auf.org/auf-keyring.gpg # By default the installer requires that repositories be authenticated # using a known gpg key. This setting can be used to disable that # authentication. Warning: Insecure, not recommended. #d-i debian-installer/allow_unauthenticated string true ### Package selection #tasksel tasksel/first multiselect standard, web-server # If the desktop task is selected, install the kde and xfce desktops # instead of the default gnome desktop. #tasksel tasksel/desktop multiselect kde, xfce tasksel tasksel/first multiselect ubuntu-desktop # Individual additional packages to install #d-i pkgsel/include string openssh-server build-essential #d-i pkgsel/include string ssh auf-keyring auf-poste-client-logiciels # Whether to upgrade packages after debootstrap. # Allowed values: none, safe-upgrade, full-upgrade d-i pkgsel/upgrade select full-upgrade d-i pkgsel/update-policy select none # Language pack selection d-i pkgsel/language-packs multiselect fr, en # Some versions of the installer can report back on what software you have # installed, and what software you use. The default is not to report back, # but sending reports helps the project determine what software is most # popular and include it on CDs. popularity-contest popularity-contest/participate boolean false ### Boot loader installation # Grub is the default boot loader (for x86). If you want lilo installed # instead, uncomment this: #d-i grub-installer/skip boolean true # To also skip installing lilo, and install no bootloader, uncomment this # too: #d-i lilo-installer/skip boolean true # This is fairly safe to set, it makes grub install automatically to the MBR # if no other operating system is detected on the machine. d-i grub-installer/only_debian boolean true # This one makes grub-installer install to the MBR if it also finds some other # OS, which is less safe as it might not be able to boot that other OS. d-i grub-installer/with_other_os boolean true # Alternatively, if you want to install to a location other than the mbr, # uncomment and edit these lines: #d-i grub-installer/only_debian boolean false #d-i grub-installer/with_other_os boolean false #d-i grub-installer/bootdev string (hd0,0) # To install grub to multiple disks: #d-i grub-installer/bootdev string (hd0,0) (hd1,0) (hd2,0) # Optional password for grub, either in clear text #d-i grub-installer/password password r00tme #d-i grub-installer/password-again password r00tme # or encrypted using an MD5 hash, see grub-md5-crypt(8). #d-i grub-installer/password-crypted password [MD5 hash] ### Finishing up the installation # During installations from serial console, the regular virtual consoles # (VT1-VT6) are normally disabled in /etc/inittab. Uncomment the next # line to prevent this. #d-i finish-install/keep-consoles boolean true # Avoid that last message about the install being complete. d-i finish-install/reboot_in_progress note # This will prevent the installer from ejecting the CD during the reboot, # which is useful in some situations. d-i cdrom-detect/eject boolean false # This is how to make the installer shutdown when finished, but not # reboot into the installed system. #d-i debian-installer/exit/halt boolean true # This will power off the machine instead of just halting it. d-i debian-installer/exit/poweroff boolean true ### Preseeding other packages # Depending on what software you choose to install, or if things go wrong # during the installation process, it's possible that other questions may # be asked. You can preseed those too, of course. To get a list of every # possible question that could be asked during an install, do an # installation, and then run these commands: # debconf-get-selections --installer > file # debconf-get-selections >> file #### Advanced options ### Running custom commands during the installation # d-i preseeding is inherently not secure. Nothing in the installer checks # for attempts at buffer overflows or other exploits of the values of a # preconfiguration file like this one. Only use preconfiguration files from # trusted locations! To drive that home, and because it's generally useful, # here's a way to run any shell command you'd like inside the installer, # automatically. # This first command is run as early as possible, just after # preseeding is read. #d-i preseed/early_command string anna-install some-udeb # This command is run just before the install finishes, but when there is # still a usable /target directory. You can chroot to /target and use it # directly, or use the apt-install and in-target commands to easily install # packages and run commands in the target system. #d-i preseed/late_command string apt-install zsh; in-target chsh -s /bin/zsh d-i preseed/late_command string in-target dpkg-reconfigure locales ### X configuration # X can detect the right driver for some cards, but if you're preseeding, # you override whatever it chooses. Still, vesa will work most places. #xserver-xorg xserver-xorg/config/device/driver select vesa # A caveat with mouse autodetection is that if it fails, X will retry it # over and over. So if it's preseeded to be done, there is a possibility of # an infinite loop if the mouse is not autodetected. #xserver-xorg xserver-xorg/autodetect_mouse boolean true # Monitor autodetection is recommended. xserver-xorg xserver-xorg/autodetect_monitor boolean true # Uncomment if you have an LCD display. xserver-xorg xserver-xorg/config/monitor/lcd boolean true # X has three configuration paths for the monitor. Here's how to preseed # the "medium" path, which is always available. The "simple" path may not # be available, and the "advanced" path asks too many questions. #xserver-xorg xserver-xorg/config/monitor/selection-method \ # select medium #xserver-xorg xserver-xorg/config/monitor/mode-list \ # select 1024x768 @ 60 Hz }}} == Exemple de fichier == Le fichier pressed ci joint permet de créer un poste client auf avec un compte admindestkop et un compte root. Il vous demandera juste les partitionnements pour éviter de tout effacer. [[attachment:1004.txt]]