Age | Commit message (Collapse) | Author |
|
islavista
|
|
Union flag should be shell variable not a command.
Union flag should allow install when not on livecd.
|
|
Bugfix 3726
Only allow install-system from livecd, since it has hardcoded assumptions
about squashfs, etc.
|
|
islavista
|
|
Handle case where udev state file doesn't exist.
|
|
|
|
islavista
|
|
previous ones in /etc/syslog.conf
- multiple nodes configured under 'system syslog global' are appended to syslog.conf
- default '*.notice -/var/log/messages' is removed from syslog.conf if any
node is configured under 'system syslog global' and is put back when nothing
configured under 'system syslog global'
- syslog process only restarted once after making all changes in config
- added commit checks at 'system syslog <>' level nodes to specify facility
|
|
Bugfix 3567
The command templates for managing the syslog are awkward and brittle
and really can't deal with multiple targets or full config format,
so just go back to something simple and fix later in a better redesign.
|
|
islavista
|
|
Remove privledge to reboot system via sudo for operator
|
|
islavista
|
|
Several different cases were being handled incorrectly.
|
|
This reverts commit 5e806c8e42e1b70675916963e14cc0fe5928ec07.
There are passwords (like Tcp md5) that should not be displayed
to operator.
|
|
islavista
|
|
Set configuration file to be owned by administrator and writable
by all admins in configuration mode and visible by public.
|
|
|
|
This reverts commit 7232e04d5d021f60e4cf6463328c165f19d56c6c.
|
|
islavista
|
|
These are boolean, not text fields. Only allowed value is true/false
|
|
we already make sure that nameservers are re-reread when any
change from any configured source of nameservers happen
|
|
|
|
|
|
Default answer question about diag partitionis "no".
|
|
for operator level user
- add lsof to sudoers file for use by an operator level user
|
|
Put in new code to set password, rather than reset it to default
Although resetting passwd to default sounds good from a usuablity point
of view, it is a potential security hole when system is rebooted. Instead,
allow user to choose new passwd.
|
|
In the case when we are using a pre-existing RAID group, warn the
user of dire consequences before over-writing the disks.
|
|
In the postinstall step, change the PAM configuration for login so that
the user is prompted for password even if the username entered
is invalid. This prevents people from easily determining whether a
username exists or not.
|
|
Rather than resetting to factory default which continues
possible remote security hole, prompt (twice) for new value.
|
|
Bugfix 3665
Fix problems with entering password caused by regressions
in mkpasswd (-S arguement). Read password plaintext with shell
then process.
|
|
|
|
|
|
Add "admin" and "operator" level users to the "dip" group so that they
can execute CLI commands that bring up and take down PPP connections.
|
|
Accept an encrypted-password field with or without a trailing colon character.
|
|
Add an item to the grub menu to boot diagnostics if we find a partition
that looks to be the diag partition.
|
|
islavista
|
|
The TCP MD5 code is fixed to handle SACK correctly.
|
|
The CLI should not be enforcing arbitrary restrictions on the number of
devices. The limit should be based on the resources of the system and
only the kernel would know that. So let the user try and make 10000
bridge devices, maybe its on a 2000 core machine with 64G of memory.
Any failure will show up when the attempt is made to create the tunnel
device.
|
|
The CLI should not be enforcing arbitrary restrictions on the number of
devices. The limit should be based on the resources of the system and
only the kernel would know that. So let the user try and make 10000
tunnel devices, maybe its on a 2000 core machine with 64G of memory.
Any failure will show up when the attempt is made to create the tunnel
device.
|
|
|
|
|
|
|
|
islavista
|
|
Bugfix 3173
Add support for bonding device creation and adding slaves
|
|
|
|
|
|
|
|
|
|
|
|
|