install-chroot.sh 1.99 KB
Newer Older
1
2
3
4
5
6
7
8
#!/bin/bash

set -e
set -x

ln -sf /usr/share/zoneinfo/UTC /etc/localtime
sed -i -e 's/^#\(en_US.UTF-8\)/\1/' /etc/locale.gen
locale-gen
9
echo 'LANG=en_US.UTF-8' >/etc/locale.conf
10
11
12
13
14
15

# setting vagrant user credentials
echo -e 'vagrant\nvagrant' | passwd
useradd -m -U vagrant
echo -e 'vagrant\nvagrant' | passwd vagrant

16
# setting automatic authentication for any action requiring admin rights via Polkit
17
cat <<EOF >/etc/polkit-1/rules.d/49-nopasswd_global.rules
18
19
20
21
22
23
24
polkit.addRule(function(action, subject) {
    if (subject.isInGroup("vagrant")) {
        return polkit.Result.YES;
    }
});
EOF

25
# setting sudo for vagrant user
26
cat <<EOF >/etc/sudoers.d/vagrant
27
28
29
30
31
32
33
34
35
36
37
Defaults:vagrant !requiretty
vagrant ALL=(ALL) NOPASSWD: ALL
EOF
chmod 440 /etc/sudoers.d/vagrant

# install vagrant ssh key
install --directory --owner=vagrant --group=vagrant --mode=0700 /home/vagrant/.ssh
curl --output /home/vagrant/.ssh/authorized_keys --location https://raw.github.com/mitchellh/vagrant/master/keys/vagrant.pub
chown vagrant:vagrant /home/vagrant/.ssh/authorized_keys
chmod 0600 /home/vagrant/.ssh/authorized_keys

38
39
40
# setup unpredictable kernel names
ln -s /dev/null /etc/systemd/network/99-default.link

Christian Rebischke's avatar
Christian Rebischke committed
41
# setup network
42
cat <<EOF >/etc/systemd/network/eth0.network
43
44
45
46
47
48
49
[Match]
Name=eth0

[Network]
DHCP=ipv4
EOF

50
# Setup pacman-init.service for clean pacman keyring initialization
51
cat <<EOF >/etc/systemd/system/pacman-init.service
52
53
54
55
[Unit]
Description=Initializes Pacman keyring
Wants=haveged.service
After=haveged.service
56
Before=sshd.service
57
58
59
60
61
62
63
64
65
66
67
68
ConditionFirstBoot=yes

[Service]
Type=oneshot
RemainAfterExit=yes
ExecStart=/usr/bin/pacman-key --init
ExecStart=/usr/bin/pacman-key --populate archlinux

[Install]
WantedBy=multi-user.target
EOF

69
# enabling important services
70
systemctl daemon-reload
71
systemctl enable sshd
72
systemctl enable haveged
73
systemctl enable systemd-networkd
74
systemctl enable systemd-resolved
75
systemctl enable pacman-init.service
76

77
grub-install
78
79
sed -i -e 's/^GRUB_TIMEOUT=.*$/GRUB_TIMEOUT=1/' /etc/default/grub
grub-mkconfig -o /boot/grub/grub.cfg