From ea8a094e188128d9b526be27b5f32c4a2be58d82 Mon Sep 17 00:00:00 2001 From: jason Date: Tue, 30 Dec 2025 18:38:21 +0000 Subject: [PATCH] Upload files to '' Added host autoyast for home network. --- h-autoinst.xml | 1410 ++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 1410 insertions(+) create mode 100644 h-autoinst.xml diff --git a/h-autoinst.xml b/h-autoinst.xml new file mode 100644 index 0000000..0edb2b2 --- /dev/null +++ b/h-autoinst.xml @@ -0,0 +1,1410 @@ + + + + + + + download.opensuse.org-non-oss + http://download.opensuse.org/tumbleweed/repo/non-oss/ + Main Repository (NON-OSS) + 99 + / + + + download.opensuse.org-tumbleweed + http://download.opensuse.org/update/tumbleweed/ + Main Update Repository + 99 + / + + + repo-openh264 + http://codecs.opensuse.org/openh264/openSUSE_Tumbleweed + Open H.264 Codec (openSUSE Tumbleweed) + 99 + / + + + + + + splash=silent mitigations=auto quiet security=selinux selinux=1 + auto + auto + false + true + true + gfxterm + 8 + false + true + + grub2 + + + public + true + off + false + + + Unsolicited incoming network packets are rejected. Incoming packets that are related to outgoing network connections are accepted. Outgoing network connections are allowed. + + false + block + + + + Block + %%REJECT%% + + + For computers in your demilitarized zone that are publicly-accessible with limited access to your internal network. Only selected incoming connections are accepted. + + false + dmz + + + + ssh + + DMZ + default + + + All network connections are accepted. + + docker0 + + false + docker + + + + docker + ACCEPT + + + Unsolicited incoming network packets are dropped. Incoming packets that are related to outgoing network connections are accepted. Outgoing network connections are allowed. + + false + drop + + + + Drop + DROP + + + For use on external networks. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. + + true + external + + + + ssh + + External + default + + + For use in home areas. You mostly trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. + + false + home + + + + dhcpv6-client + mdns + samba-client + ssh + + Home + default + + + For use on internal networks. You mostly trust the other computers on the networks to not harm your computer. Only selected incoming connections are accepted. + + false + internal + + + + dhcpv6-client + mdns + samba-client + ssh + + Internal + default + + + + + false + libvirt + + + icmp + ipv6-icmp + + + dhcp + dhcpv6 + dns + ssh + tftp + + libvirt + ACCEPT + + + + + false + libvirt-routed + + + + libvirt-routed + default + + + + + false + nm-shared + + + icmp + ipv6-icmp + + + dhcp + dns + ssh + + NetworkManager Shared + ACCEPT + + + For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. + + false + public + + + + cockpit + dhcpv6-client + ssh + + Public + default + + + All network connections are accepted. + + false + trusted + + + + Trusted + ACCEPT + + + For use in work areas. You mostly trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted. + + false + work + + + + dhcpv6-client + ssh + + Work + default + + + + + + false + + + + + 100 + users + + + + 1000 + jason + + + + 493 + mail + postfix + + + 484 + clock + + + + 480 + render + + + + 487 + utmp + + + + 1 + bin + + + + 473 + libvirtdbus + + + + 2 + daemon + + + + 472 + dnsmasq + + + + 458 + statd + + + + 495 + nagios + + + + 497 + tftp + dnsmasq + + + 499 + www + wwwrun + + + 454 + setroubleshoot + + + + 481 + input + + + + 457 + cephadm + + + + 468 + wsdd + + + + 98 + tss + + + + 455 + wireshark + + + + 459 + sshd + + + + 36 + kvm + qemu + + + 478 + tape + + + + 42 + trusted + + + + 488 + lock + + + + 461 + chrony + + + + 489 + kmem + + + + 491 + ftp + + + + 59 + maildrop + postfix + + + 5 + tty + + + + 71 + ntadmin + + + + 467 + polkitd + + + + 65533 + nogroup + + + + 476 + audit + + + + 490 + wheel + + + + 0 + root + + + + 486 + audio + + + + 483 + dialout + + + + 485 + cdrom + + + + 460 + rpc + + + + 167 + ceph + + + + 464 + libstoragemgmt + + + + 62 + man + + + + 496 + nobody + + + + 15 + shadow + + + + 462 + memcached + + + + 494 + nagcmd + nagios,wwwrun + + + 482 + disk + + + + 492 + lp + + + + 474 + messagebus + + + + 469 + systemd-coredump + + + + 456 + winbind + + + + 465 + redis + + + + 479 + sgx + + + + 108 + libvirt + libvirtdbus + + + 471 + unbound + + + + 470 + systemd-journal + + + + 107 + qemu + + + + 51 + postfix + + + + 463 + systemd-timesync + + + + 475 + dhcpcd + + + + 498 + wwwrun + + + + 477 + video + + + + + + + 127.0.0.1 + + localhost localhost.localdomain + + + + ::1 + + localhost localhost.localdomain ipv6-localhost ipv6-loopback + + + + fe00::0 + + ipv6-localnet + + + + ff00::0 + + ipv6-mcastprefix + + + + ff02::1 + + ipv6-allnodes + + + + ff02::2 + + ipv6-allrouters + + + + ff02::3 + + ipv6-allhosts + + + + + + false + + + auto + + systemd + + + false + + + multi-user + + + NetworkManager + NetworkManager-dispatcher + NetworkManager-wait-online + YaST2-Firstboot + YaST2-Second-Stage + apparmor + appstream-sync-cache + audit-rules + auditd + blk-availability + klog + ceph-crash + chronyd + cron + dbus-broker + firewalld + irqbalance + iscsi + kbdsettings + lvm2-monitor + mcelog + nvmefc-boot-connections + nvmf-autoconnect + postfix + purge-kernels + rsyslog + smartd + soft-reboot-cleanup + sshd + systemd-pstore + systemd-remount-fs + virtqemud + virtxend + wtmpdb-update-boot + + + cockpit + iscsid + virtlockd + virtlogd + virtnetworkd + virtnodedevd + virtsecretd + virtstoraged + wtmpdbd + + + + + true + + + yast2-dns-manager + yast2-configuration-management + yast2-cluster + tmux + snapper + os-prober + openssh + openSUSE-release + numactl + neovim + mdadm + mc + kexec-tools + irqbalance + iproute2 + grub2 + glibc + git + firewalld + e2fsprogs + dracut + dosfstools + cockpit-tukit + cockpit-storaged + cockpit-selinux + cockpit-repos + cockpit-packages + cockpit-packagekit + cockpit-kdump + cockpit-firewalld + chrony + btrfsprogs + btop + autoyast2 + NetworkManager + + + base + basesystem + ceph_base + documentation + enhanced_base + file_server + kvm_server + kvm_tools + microos_cockpit + minimal_base + network_admin + selinux + sw_management + yast2_basis + yast2_server + + + openSUSE + + + + false + false + + + America/New_York + + + + 100 + /home + -1 + /bin/bash + 022 + + + + + true + jason + 1000 + /home/jason + false + + + + + 99999 + 0 + 7 + + /bin/bash + 1000 + $6$3lsEECbcPdZi9RB3$2viHj2/MsQNo0pA3wq3zSI/4A0bGKnzhFuFPvuFlNlgUg.QOP/gniniD.W1.vCsvVQKTXTPE03l5CG71v5kM4. + jason + + + true + Mailer daemon + 493 + /var/spool/clientmqueue + false + + 1 + + + + + + + /usr/sbin/nologin + 496 + ! + mail + + + true + Manual pages viewer + 62 + /var/lib/empty + false + + 1 + + + + + + + /usr/sbin/nologin + 13 + ! + man + + + true + Ceph storage service + 167 + /var/lib/ceph + false + + + + + + + + + /sbin/nologin + 167 + ! + ceph + + + true + Secure FTP User + 496 + /var/lib/empty + false + + + + + + + + + /bin/false + 466 + ! + ftpsecure + + + true + daemon account for libstoragemgmt + 464 + /run/lsm + false + + + + + + + + + /usr/sbin/nologin + 464 + !* + libstoragemgmt + + + true + Daemon + 2 + /sbin + false + + 1 + + + + + + + /usr/sbin/nologin + 2 + ! + daemon + + + true + dnsmasq + 472 + /var/lib/empty + false + + + + + + + + + /usr/sbin/nologin + 490 + ! + dnsmasq + + + true + NFS statd daemon + 458 + /var/lib/nfs + false + + + + + + + + + /usr/sbin/nologin + 458 + !* + statd + + + true + Libvirt D-Bus bridge + 473 + / + false + + + + + + + + + /usr/sbin/nologin + 491 + ! + libvirtdbus + + + true + nobody + 496 + /var/lib/nobody + false + + 1 + + + + + + + /usr/sbin/nologin + 65534 + ! + nobody + + + true + bin + 1 + /bin + false + + 1 + + + + + + + /usr/sbin/nologin + 1 + ! + bin + + + true + Printing daemon + 492 + /var/spool/lpd + false + + 1 + + + + + + + /usr/sbin/nologin + 495 + ! + lp + + + true + SELinux troubleshoot server + 454 + /var/lib/setroubleshoot + false + + + + + + + + + /usr/sbin/nologin + 454 + !* + setroubleshoot + + + true + user for memcached + 462 + /var/lib/memcached + false + + + + + + + + + /usr/sbin/nologin + 462 + !* + memcached + + + true + User for Nagios + 495 + /var/lib/nagios + false + + + + + + + + + /bin/false + 497 + ! + nagios + + + true + TFTP Account + 497 + /srv/tftpboot + false + + 1 + + + + + + + /usr/sbin/nologin + 498 + ! + tftp + + + true + systemd Core Dumper + 469 + / + false + + 1 + + + + + + + /usr/sbin/nologin + 469 + !* + systemd-coredump + + + true + SSH daemon + 459 + /var/lib/sshd + false + + + + + + + + + /usr/sbin/nologin + 459 + !* + sshd + + + true + User for redis key-value store + 465 + /var/lib/redis + false + + + + + + + + + /usr/sbin/nologin + 465 + !* + redis + + + true + User for wsdd + 468 + /run/wsdd + false + + + + + + + + + /usr/sbin/nologin + 468 + !* + wsdd + + + true + TSS daemon + 98 + /var/lib/tpm + false + + 1 + + + + + + + /usr/sbin/nologin + 98 + ! + tss + + + true + User for D-Bus + 474 + /run/dbus + false + + + + + + + + + /usr/sbin/nologin + 492 + ! + messagebus + + + true + cephadm user for mgr/cephadm + 457 + /var/lib/cephadm + false + + + + + + + + + /bin/bash + 457 + ! + cephadm + + + true + unbound caching DNS server + 471 + /var/lib/unbound + false + + + + + + + + + /usr/sbin/nologin + 489 + ! + unbound + + + true + Chrony Daemon + 461 + /var/lib/chrony + false + + + + + + + + + /usr/sbin/nologin + 461 + !* + chrony + + + true + qemu user + 107 + / + false + + 1 + + + + + + + /usr/sbin/nologin + 107 + ! + qemu + + + true + FTP Account + 491 + /srv/ftp + false + + 1 + + + + + + + /usr/sbin/nologin + 494 + ! + ftp + + + + true + root + 0 + /root + false + + + + + + + + + /bin/bash + 0 + $6$VBIaRL.1qGWMhrfo$oNElFEC/imD7MHCR2I8FL/6pj8z.JDAcHagb0FcQRvrp/Y.uabqyVisjLq/bts4SkgPY8hBXBjWa/Kh91gECD. + root + + + true + User for polkitd + 467 + / + false + + + + + + + + + /usr/sbin/nologin + 467 + !* + polkitd + + + true + WWW daemon apache + 498 + /var/lib/wwwrun + false + + 1 + + + + + + + /usr/sbin/nologin + 499 + ! + wwwrun + + + true + User for rpcbind + 460 + /var/lib/empty + false + + + + + + + + + /usr/sbin/nologin + 460 + !* + rpc + + + true + systemd Time Synchronization + 463 + / + false + + 1 + + + + + + + /usr/sbin/nologin + 463 + !* + systemd-timesync + + + true + Minimalistic DHCP client + 475 + /var/lib/dhcpcd + false + + + + + + + + + /usr/sbin/nologin + 493 + ! + dhcpcd + + + true + Postfix Daemon + 51 + /var/spool/postfix + false + + + + + + + + + /usr/sbin/nologin + 51 + !* + postfix + + +