Re: examples files with rules or classes
Fabien Chaudier <[email protected]> Fri, 16 Jun 2017 10:33:08 +0200 (CEST)
| Newsgroups | gmane.linux.suse.autoinstall |
|---|---|
| Message-ID | <[email protected]> |
I forget. I use Leap-42.2 ----- Mail original ----- De: "Fabien Chaudier" <[email protected]> À: [email protected] Envoyé: Vendredi 16 Juin 2017 10:27:39 Objet: [opensuse-autoinstall] examples files with rules or classes Hello, I have a big autoinst.xml and I don't know where to start. Some configuration files would be a good start for me. Thank you in advance -- To unsubscribe, e-mail: [email protected] To contact the owner, e-mail: [email protected]
autoinst.xml
(application/xml, 53.5 KB)
<?xml version="1.0"?>
<!DOCTYPE profile>
<profile xmlns="http://www.suse.com/1.0/yast2ns" xmlns:config="http://www.suse.com/1.0/configns">
<add-on>
<add_on_products config:type="list">
<listentry>
<media_url><![CDATA[http://mirror.etablissement.fr/opensuse/update/leap/42.2/oss/]]></media_url>
<product>Update_Leap_42.2</product>
<product_dir>/</product_dir>
<name>MAJ_Leap_42.2</name>
</listentry>
</add_on_products>
</add-on>
<auth-client>
<conf_json>{"sssd":{"conf":{"sssd":{"config_file_version":"2","services":["pam","nss"],"domains":["INSA-LYON"]},"pam":{},"nss":{},"domain/INSA-LYON":{"id_provider":"ldap","auth_provider":"ldap","ldap_schema":"rfc2307","enumerate":"true","cache_credentials":"true","case_sensitive":"true","ldap_use_tokengroups":"false","ldap_uri":"ldap://auth.etablissement.fr","ldap_search_base":"dc=etablissement,dc=fr","ldap_tls_reqcert":"demand","ldap_tls_cacert":"/etc/openldap/cacert/TERENA_SSL_CA_3.pem","ldap_id_use_start_tls":"true"}},"pam":true,"nss":["passwd","group"],"enabled":true},"ldap":{"conf":{},"pam":false,"nss":[]},"krb":{"conf":{"include":[],"libdefaults":{},"realms":{},"domain_realms":{},"logging":{"kdc":"FILE:/var/log/krb5/krb5kdc.log","admin_server":"FILE:/var/log/krb5/kadmind.log","default":"SYSLOG:NOTICE:DAEMON"}},"pam":false},"aux":{"autofs":false,"nscd":false,"mkhomedir":true},"ad":{"domain":"","user":"","ou":"","pass":"","overwrite_smb_conf":false,"update_dns":true}}</conf_json>
</auth-client>
<bootloader>
<global>
<activate>true</activate>
<append>resume=/dev/disk/by-uuid/6f1ce52a-963a-475b-97f8-95f960d5cac0 splash=verbose showopts</append>
<boot_boot>true</boot_boot>
<boot_extended>false</boot_extended>
<boot_mbr>false</boot_mbr>
<boot_root>false</boot_root>
<generic_mbr>true</generic_mbr>
<gfxmode>auto</gfxmode>
<hiddenmenu>false</hiddenmenu>
<os_prober>true</os_prober>
<terminal>gfxterm</terminal>
<timeout config:type="integer">2</timeout>
<trusted_grub>false</trusted_grub>
</global>
<loader_type>grub2</loader_type>
</bootloader>
<deploy_image>
<image_installation config:type="boolean">false</image_installation>
</deploy_image>
<files config:type="list">
<file>
<file_path>/etc/openldap/cacert/</file_path> <!-- creation repertoire -->
</file>
<file>
<file_path>/etc/openldap/cacert/TERENA_SSL_CA_3.pem</file_path>
<file_contents><![CDATA[-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----]]></file_contents>
<file_owner>root:root</file_owner>
<file_permissions>444</file_permissions>
</file>
</files>
<firewall>
<FW_ALLOW_FW_BROADCAST_DMZ>no</FW_ALLOW_FW_BROADCAST_DMZ>
<FW_ALLOW_FW_BROADCAST_EXT>no</FW_ALLOW_FW_BROADCAST_EXT>
<FW_ALLOW_FW_BROADCAST_INT>no</FW_ALLOW_FW_BROADCAST_INT>
<FW_BOOT_FULL_INIT>no</FW_BOOT_FULL_INIT>
<FW_CONFIGURATIONS_DMZ>sshd</FW_CONFIGURATIONS_DMZ>
<FW_CONFIGURATIONS_EXT>sshd</FW_CONFIGURATIONS_EXT>
<FW_CONFIGURATIONS_INT>sshd</FW_CONFIGURATIONS_INT>
<FW_DEV_DMZ/>
<FW_DEV_EXT/>
<FW_DEV_INT/>
<FW_FORWARD_ALWAYS_INOUT_DEV/>
<FW_FORWARD_MASQ/>
<FW_IGNORE_FW_BROADCAST_DMZ>no</FW_IGNORE_FW_BROADCAST_DMZ>
<FW_IGNORE_FW_BROADCAST_EXT>yes</FW_IGNORE_FW_BROADCAST_EXT>
<FW_IGNORE_FW_BROADCAST_INT>no</FW_IGNORE_FW_BROADCAST_INT>
<FW_IPSEC_TRUST>no</FW_IPSEC_TRUST>
<FW_LOAD_MODULES>nf_conntrack_netbios_ns</FW_LOAD_MODULES>
<FW_LOG_ACCEPT_ALL>no</FW_LOG_ACCEPT_ALL>
<FW_LOG_ACCEPT_CRIT>yes</FW_LOG_ACCEPT_CRIT>
<FW_LOG_DROP_ALL>no</FW_LOG_DROP_ALL>
<FW_LOG_DROP_CRIT>yes</FW_LOG_DROP_CRIT>
<FW_MASQUERADE>no</FW_MASQUERADE>
<FW_PROTECT_FROM_INT>no</FW_PROTECT_FROM_INT>
<FW_ROUTE>no</FW_ROUTE>
<FW_SERVICES_ACCEPT_DMZ/>
<FW_SERVICES_ACCEPT_EXT/>
<FW_SERVICES_ACCEPT_INT/>
<FW_SERVICES_ACCEPT_RELATED_DMZ/>
<FW_SERVICES_ACCEPT_RELATED_EXT/>
<FW_SERVICES_ACCEPT_RELATED_INT/>
<FW_SERVICES_DMZ_IP/>
<FW_SERVICES_DMZ_RPC/>
<FW_SERVICES_DMZ_TCP/>
<FW_SERVICES_DMZ_UDP/>
<FW_SERVICES_EXT_IP/>
<FW_SERVICES_EXT_RPC/>
<FW_SERVICES_EXT_TCP/>
<FW_SERVICES_EXT_UDP/>
<FW_SERVICES_INT_IP/>
<FW_SERVICES_INT_RPC/>
<FW_SERVICES_INT_TCP/>
<FW_SERVICES_INT_UDP/>
<FW_STOP_KEEP_ROUTING_STATE>no</FW_STOP_KEEP_ROUTING_STATE>
<enable_firewall config:type="boolean">false</enable_firewall>
<start_firewall config:type="boolean">false</start_firewall>
</firewall>
<general>
<ask-list config:type="list"/>
<mode>
<confirm config:type="boolean">false</confirm>
</mode>
<proposals config:type="list"/>
<signature-handling>
<accept_file_without_checksum config:type="boolean">true</accept_file_without_checksum>
<accept_non_trusted_gpg_key config:type="boolean">true</accept_non_trusted_gpg_key>
<accept_unknown_gpg_key config:type="boolean">true</accept_unknown_gpg_key>
<accept_unsigned_file config:type="boolean">true</accept_unsigned_file>
<accept_verification_failed config:type="boolean">false</accept_verification_failed>
<import_gpg_key config:type="boolean">true</import_gpg_key>
</signature-handling>
<storage>
<partition_alignment config:type="symbol">align_optimal</partition_alignment>
<start_multipath config:type="boolean">false</start_multipath>
</storage>
</general>
<groups config:type="list">
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>100</gid>
<group_password>x</group_password>
<groupname>users</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>505</gid>
<group_password>x</group_password>
<groupname>mktex</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>15</gid>
<group_password>x</group_password>
<groupname>shadow</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>20</gid>
<group_password>x</group_password>
<groupname>cdrom</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>481</gid>
<group_password>x</group_password>
<groupname>brlapi</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>16</gid>
<group_password>x</group_password>
<groupname>dialout</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>25</gid>
<group_password>x</group_password>
<groupname>at</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>482</gid>
<group_password>x</group_password>
<groupname>puppet</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>484</gid>
<group_password>x</group_password>
<groupname>winbind</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>71</gid>
<group_password>x</group_password>
<groupname>ntadmin</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>51</gid>
<group_password>x</group_password>
<groupname>postfix</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>475</gid>
<group_password>x</group_password>
<groupname>docker</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>1</gid>
<group_password>x</group_password>
<groupname>bin</groupname>
<userlist>daemon</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>499</gid>
<group_password>x</group_password>
<groupname>messagebus</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>62</gid>
<group_password>x</group_password>
<groupname>man</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>13</gid>
<group_password>x</group_password>
<groupname>news</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>492</gid>
<group_password>x</group_password>
<groupname>systemd-journal</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>10</gid>
<group_password>x</group_password>
<groupname>wheel</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>17</gid>
<group_password>x</group_password>
<groupname>audio</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>5</gid>
<group_password>x</group_password>
<groupname>tty</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>65533</gid>
<group_password>x</group_password>
<groupname>nobody</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>19</gid>
<group_password>x</group_password>
<groupname>floppy</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>491</gid>
<group_password>x</group_password>
<groupname>systemd-bus-proxy</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>0</gid>
<group_password>x</group_password>
<groupname>root</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>477</gid>
<group_password>x</group_password>
<groupname>mysql</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>14</gid>
<group_password>x</group_password>
<groupname>uucp</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>496</gid>
<group_password>x</group_password>
<groupname>polkitd</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>483</gid>
<group_password>x</group_password>
<groupname>adm</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>486</gid>
<group_password>x</group_password>
<groupname>avahi</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>9</gid>
<group_password>x</group_password>
<groupname>kmem</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>7</gid>
<group_password>x</group_password>
<groupname>lp</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>489</gid>
<group_password>x</group_password>
<groupname>ntp</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>22</gid>
<group_password>x</group_password>
<groupname>utmp</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>480</gid>
<group_password>x</group_password>
<groupname>kvm</groupname>
<userlist>qemu</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>2</gid>
<group_password>x</group_password>
<groupname>daemon</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>497</gid>
<group_password>x</group_password>
<groupname>tape</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>42</gid>
<group_password>x</group_password>
<groupname>trusted</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>49</gid>
<group_password>x</group_password>
<groupname>ftp</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>32</gid>
<group_password>x</group_password>
<groupname>public</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>488</gid>
<group_password>x</group_password>
<groupname>tftp</groupname>
<userlist>dnsmasq,tftp</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>12</gid>
<group_password>x</group_password>
<groupname>mail</groupname>
<userlist>postfix</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>40</gid>
<group_password>x</group_password>
<groupname>games</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>495</gid>
<group_password>x</group_password>
<groupname>nscd</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>487</gid>
<group_password>x</group_password>
<groupname>vnc</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>59</gid>
<group_password>x</group_password>
<groupname>maildrop</groupname>
<userlist>postfix</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>478</gid>
<group_password>x</group_password>
<groupname>svn</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>493</gid>
<group_password>x</group_password>
<groupname>input</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>485</gid>
<group_password>x</group_password>
<groupname>lightdm</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>43</gid>
<group_password>x</group_password>
<groupname>modem</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>498</gid>
<group_password>x</group_password>
<groupname>sshd</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>41</gid>
<group_password>x</group_password>
<groupname>xok</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>8</gid>
<group_password>x</group_password>
<groupname>www</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>479</gid>
<group_password>x</group_password>
<groupname>qemu</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>494</gid>
<group_password>x</group_password>
<groupname>avahi-autoipd</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>490</gid>
<group_password>x</group_password>
<groupname>systemd-timesync</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>6</gid>
<group_password>x</group_password>
<groupname>disk</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>54</gid>
<group_password>x</group_password>
<groupname>lock</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>33</gid>
<group_password>x</group_password>
<groupname>video</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>21</gid>
<group_password>x</group_password>
<groupname>console</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>476</gid>
<group_password>x</group_password>
<groupname>vboxusers</groupname>
<userlist/>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>65534</gid>
<group_password>x</group_password>
<groupname>nogroup</groupname>
<userlist>nobody</userlist>
</group>
<group>
<encrypted config:type="boolean">true</encrypted>
<gid>3</gid>
<group_password>x</group_password>
<groupname>sys</groupname>
<userlist/>
</group>
</groups>
<host>
<hosts config:type="list">
<hosts_entry>
<host_address>127.0.0.1</host_address>
<names config:type="list">
<name>localhost </name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>134.214.182.100</host_address>
<names config:type="list">
<name>auth.etablissement.fr auth</name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>::1</host_address>
<names config:type="list">
<name>localhost ipv6-localhost ipv6-loopback</name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>fe00::0</host_address>
<names config:type="list">
<name>ipv6-localnet </name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>ff00::0</host_address>
<names config:type="list">
<name>ipv6-mcastprefix </name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>ff02::1</host_address>
<names config:type="list">
<name>ipv6-allnodes </name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>ff02::2</host_address>
<names config:type="list">
<name>ipv6-allrouters </name>
</names>
</hosts_entry>
<hosts_entry>
<host_address>ff02::3</host_address>
<names config:type="list">
<name>ipv6-allhosts </name>
</names>
</hosts_entry>
</hosts>
</host>
<keyboard>
<keymap>french</keymap>
</keyboard>
<language>
<language>fr_FR</language>
<languages>fr_FR</languages>
</language>
<login_settings/>
<networking>
<dhcp_options>
<dhclient_hostname_option>AUTO</dhclient_hostname_option>
</dhcp_options>
<dns>
<dhcp_hostname config:type="boolean">true</dhcp_hostname>
<domain>etablissement.fr</domain>
<hostname>dsi401-a012</hostname>
<resolv_conf_policy>auto</resolv_conf_policy>
<searchlist config:type="list">
<search>etablissement.fr</search>
</searchlist>
<write_hostname config:type="boolean">false</write_hostname>
</dns>
<interfaces config:type="list">
<interface>
<bootproto>dhcp4</bootproto>
<device>em1</device>
<dhclient_set_default_route>yes</dhclient_set_default_route>
<startmode>auto</startmode>
</interface>
<interface>
<bootproto>static</bootproto>
<device>lo</device>
<firewall>no</firewall>
<ipaddr>127.0.0.1</ipaddr>
<netmask>255.0.0.0</netmask>
<network>127.0.0.0</network>
<prefixlen>8</prefixlen>
<startmode>nfsroot</startmode>
<usercontrol>no</usercontrol>
</interface>
</interfaces>
<ipv6 config:type="boolean">false</ipv6>
<keep_install_network config:type="boolean">true</keep_install_network>
<managed config:type="boolean">false</managed>
<routing>
<ipv4_forward config:type="boolean">false</ipv4_forward>
<ipv6_forward config:type="boolean">false</ipv6_forward>
</routing>
</networking>
<nis>
<netconfig_policy>auto</netconfig_policy>
<nis_broadcast config:type="boolean">false</nis_broadcast>
<nis_broken_server config:type="boolean">false</nis_broken_server>
<nis_local_only config:type="boolean">false</nis_local_only>
<start_autofs config:type="boolean">false</start_autofs>
<start_nis config:type="boolean">false</start_nis>
</nis>
<ntp-client>
<ntp_policy>auto</ntp_policy>
<peers config:type="list">
<peer>
<address>/var/lib/ntp/drift/ntp.drift</address>
<comment>
# Clients from this (example!) subnet have unlimited access, but only if
# cryptographically authenticated.
#restrict 192.168.123.0 mask 255.255.255.0 notrust
##
## Miscellaneous stuff
##
</comment>
<type>driftfile</type>
</peer>
<peer>
<address>/var/log/ntp</address>
<comment># path for drift file
</comment>
<type>logfile</type>
</peer>
<peer>
<address>/etc/ntp.keys</address>
<comment># alternate log file
# logconfig =syncstatus + sysevents
# logconfig =all
# statsdir /tmp/ # directory for statistics files
# filegen peerstats file peerstats type day enable
# filegen loopstats file loopstats type day enable
# filegen clockstats file clockstats type day enable
#
# Authentication stuff
#
</comment>
<type>keys</type>
</peer>
<peer>
<address>1</address>
<comment># path for keys file
</comment>
<type>trustedkey</type>
</peer>
<peer>
<address>1</address>
<comment># define trusted keys
</comment>
<type>requestkey</type>
</peer>
<peer>
<address>1</address>
<comment># key (7) for accessing server variables
</comment>
<type>controlkey</type>
</peer>
<peer>
<address>ntp.univ-lyon1.fr</address>
<options> iburst</options>
<type>server</type>
</peer>
</peers>
<restricts config:type="list"/>
<start_at_boot config:type="boolean">true</start_at_boot>
<start_in_chroot config:type="boolean">false</start_in_chroot>
<sync_interval config:type="integer">5</sync_interval>
<synchronize_time config:type="boolean">false</synchronize_time>
</ntp-client>
<partitioning config:type="list">
<drive>
<device>/dev/sda</device>
<disklabel>msdos</disklabel>
<enable_snapshots config:type="boolean">true</enable_snapshots>
<initialize config:type="boolean">true</initialize>
<partitions config:type="list">
<partition>
<create config:type="boolean">true</create>
<crypt_fs config:type="boolean">false</crypt_fs>
<filesystem config:type="symbol">ext4</filesystem>
<filesystem_id config:type="integer">131</filesystem_id>
<format config:type="boolean">true</format>
<fstopt>acl,user_xattr</fstopt>
<loop_fs config:type="boolean">false</loop_fs>
<mount>/boot</mount>
<mountby config:type="symbol">uuid</mountby>
<partition_id config:type="integer">131</partition_id>
<partition_nr config:type="integer">1</partition_nr>
<resize config:type="boolean">false</resize>
<size>1060273664</size>
</partition>
<partition>
<create config:type="boolean">true</create>
<crypt_fs config:type="boolean">false</crypt_fs>
<filesystem config:type="symbol">ext4</filesystem>
<filesystem_id config:type="integer">131</filesystem_id>
<format config:type="boolean">true</format>
<fstopt>acl,user_xattr</fstopt>
<loop_fs config:type="boolean">false</loop_fs>
<mount>/</mount>
<mountby config:type="symbol">uuid</mountby>
<partition_id config:type="integer">131</partition_id>
<partition_nr config:type="integer">5</partition_nr>
<resize config:type="boolean">false</resize>
<size>128831356416</size>
</partition>
<partition>
<create config:type="boolean">true</create>
<crypt_fs config:type="boolean">false</crypt_fs>
<filesystem config:type="symbol">swap</filesystem>
<filesystem_id config:type="integer">130</filesystem_id>
<format config:type="boolean">true</format>
<fstopt>defaults</fstopt>
<loop_fs config:type="boolean">false</loop_fs>
<mount>swap</mount>
<mountby config:type="symbol">uuid</mountby>
<partition_id config:type="integer">130</partition_id>
<partition_nr config:type="integer">6</partition_nr>
<resize config:type="boolean">false</resize>
<size>8569126400</size>
</partition>
<partition>
<create config:type="boolean">true</create>
<crypt_fs config:type="boolean">false</crypt_fs>
<filesystem config:type="symbol">xfs</filesystem>
<filesystem_id config:type="integer">131</filesystem_id>
<format config:type="boolean">true</format>
<fstopt>defaults</fstopt>
<loop_fs config:type="boolean">false</loop_fs>
<mount>/home</mount>
<mountby config:type="symbol">uuid</mountby>
<partition_id config:type="integer">131</partition_id>
<partition_nr config:type="integer">7</partition_nr>
<resize config:type="boolean">false</resize>
<size>111534046720</size>
</partition>
</partitions>
<type config:type="symbol">CT_DISK</type>
<use>all</use>
</drive>
</partitioning>
<printer>
<client_conf_content>
<file_contents><![CDATA[# CUPS client configuration file (optional).
# You may use /etc/cups/client.conf (system wide)
# or ~/.cups/client.conf (per user).
# For more information see "man 5 client.conf".
# The ServerName directive specifies the remote server
# that is to be used for all client operations. That is, it
# redirects all client requests directly to that remote server
# so that a local running cupsd is not used in this case.
# The default is to use the local server ("localhost") or domain socket.
# Only one ServerName directive may appear.
# If multiple names are present, only the last one is used.
# The default port number is 631 but can be overridden by adding
# a colon followed by the desired port number.
# The default IPP version is 2.0 but can be overridden by adding
# a slash followed by version=V where V is 1.0 or 1.1 or 2.0 or 2.1 or 2.2.
# IPP version 2.0 does do not work with CUPS 1.3 or older servers.
# If an CUPS 1.3 or older server is used, its older IPP version
# must be specified as .../version=1.1 or .../version=1.0.
# Examples:
# ServerName sever.example.com
# ServerName 192.0.2.10
# ServerName sever.example.com:8631
# ServerName older.server.example.com/version=1.1
# ServerName older.server.example.com:8631/version=1.1
ServerName dsi-cups.etablissement.fr
]]></file_contents>
</client_conf_content>
<cupsd_conf_content>
<file_contents><![CDATA[#
# "$Id: cupsd.conf.in 11025 2013-06-07 01:00:33Z msweet $"
#
# Configuration file for the CUPS scheduler. See "man cupsd.conf" for a
# complete description of this file.
#
# Log general information in error_log - change "warn" to "debug"
# for troubleshooting...
LogLevel warn
# Only listen for connections from the local machine.
Listen localhost:631
Listen /run/cups/cups.sock
# Show shared printers on the local network.
Browsing On
BrowseLocalProtocols dnssd
# Default authentication type, when authentication is required...
DefaultAuthType Basic
# Web interface setting...
WebInterface Yes
# Restrict access to the server...
<Location />
Order allow,deny
</Location>
# Restrict access to the admin pages...
<Location /admin>
Order allow,deny
</Location>
# Restrict access to configuration files...
<Location /admin/conf>
AuthType Default
Require user @SYSTEM
Order allow,deny
</Location>
# Set the default printer/job policies...
<Policy default>
# Job/subscription privacy...
JobPrivateAccess default
JobPrivateValues default
SubscriptionPrivateAccess default
SubscriptionPrivateValues default
# Job-related operations must be done by the owner or an administrator...
<Limit Create-Job Print-Job Print-URI Validate-Job>
Order deny,allow
</Limit>
<Limit Send-Document Send-URI Hold-Job Release-Job Restart-Job Purge-Jobs Set-Job-Attributes Create-Job-Subscription Renew-Subscription Cancel-Subscription Get-Notifications Reprocess-Job Cancel-Current-Job Suspend-Current-Job Resume-Job Cancel-My-Jobs Close-Job CUPS-Move-Job CUPS-Get-Document>
Require user @OWNER @SYSTEM
Order deny,allow
</Limit>
# All administration operations require an administrator to authenticate...
<Limit CUPS-Add-Modify-Printer CUPS-Delete-Printer CUPS-Add-Modify-Class CUPS-Delete-Class CUPS-Set-Default CUPS-Get-Devices>
AuthType Default
Require user @SYSTEM
Order deny,allow
</Limit>
# All printer operations require a printer operator to authenticate...
<Limit Pause-Printer Resume-Printer Enable-Printer Disable-Printer Pause-Printer-After-Current-Job Hold-New-Jobs Release-Held-New-Jobs Deactivate-Printer Activate-Printer Restart-Printer Shutdown-Printer Startup-Printer Promote-Job Schedule-Job-After Cancel-Jobs CUPS-Accept-Jobs CUPS-Reject-Jobs>
AuthType Default
Require user @SYSTEM
Order deny,allow
</Limit>
# Only the owner or an administrator can cancel or authenticate a job...
<Limit Cancel-Job CUPS-Authenticate-Job>
Require user @OWNER @SYSTEM
Order deny,allow
</Limit>
<Limit All>
Order deny,allow
</Limit>
</Policy>
# Set the authenticated printer/job policies...
<Policy authenticated>
# Job/subscription privacy...
JobPrivateAccess default
JobPrivateValues default
SubscriptionPrivateAccess default
SubscriptionPrivateValues default
# Job-related operations must be done by the owner or an administrator...
<Limit Create-Job Print-Job Print-URI Validate-Job>
AuthType Default
Order deny,allow
</Limit>
<Limit Send-Document Send-URI Hold-Job Release-Job Restart-Job Purge-Jobs Set-Job-Attributes Create-Job-Subscription Renew-Subscription Cancel-Subscription Get-Notifications Reprocess-Job Cancel-Current-Job Suspend-Current-Job Resume-Job Cancel-My-Jobs Close-Job CUPS-Move-Job CUPS-Get-Document>
AuthType Default
Require user @OWNER @SYSTEM
Order deny,allow
</Limit>
# All administration operations require an administrator to authenticate...
<Limit CUPS-Add-Modify-Printer CUPS-Delete-Printer CUPS-Add-Modify-Class CUPS-Delete-Class CUPS-Set-Default>
AuthType Default
Require user @SYSTEM
Order deny,allow
</Limit>
# All printer operations require a printer operator to authenticate...
<Limit Pause-Printer Resume-Printer Enable-Printer Disable-Printer Pause-Printer-After-Current-Job Hold-New-Jobs Release-Held-New-Jobs Deactivate-Printer Activate-Printer Restart-Printer Shutdown-Printer Startup-Printer Promote-Job Schedule-Job-After Cancel-Jobs CUPS-Accept-Jobs CUPS-Reject-Jobs>
AuthType Default
Require user @SYSTEM
Order deny,allow
</Limit>
# Only the owner or an administrator can cancel or authenticate a job...
<Limit Cancel-Job CUPS-Authenticate-Job>
AuthType Default
Require user @OWNER @SYSTEM
Order deny,allow
</Limit>
<Limit All>
Order deny,allow
</Limit>
</Policy>
# The policy below is added by SUSE during build of our cups package.
# The policy 'allowallforanybody' is totally open and insecure and therefore
# it can only be used within an internal network where only trused users exist
# and where the cupsd is not accessible at all from any external host, see
# http://en.opensuse.org/SDB:CUPS_and_SANE_Firewall_settings
# Have in mind that any user who is allowed to do printer admin tasks
# can change the print queues as he likes - e.g. send copies of confidental
# print jobs from an internal network to any external destination, see
# http://en.opensuse.org/SDB:CUPS_in_a_Nutshell
# For documentation regarding 'Managing Operation Policies' see
# http://www.cups.org/documentation.php/doc-1.7/policies.html
<Policy allowallforanybody>
# Allow anybody to access job's private values:
JobPrivateAccess all
# Make none of the job values to be private:
JobPrivateValues none
# Allow anybody to access subscription's private values:
SubscriptionPrivateAccess all
# Make none of the subscription values to be private:
SubscriptionPrivateValues none
# Allow anybody to do all IPP operations:
# Currently the IPP operations Validate-Job Cancel-Jobs Cancel-My-Jobs Close-Job CUPS-Get-Document
# must be additionally exlicitly specified because those IPP operations are not included
# in the "All" wildcard value - otherwise cupsd prints error messages of the form
# "No limit for Validate-Job defined in policy allowallforanybody and no suitable template found."
<Limit All Validate-Job Cancel-Jobs Cancel-My-Jobs Close-Job CUPS-Get-Document>
Order deny,allow
Allow from all
</Limit>
</Policy>
# Explicitly set the CUPS 'default' policy to be used by default:
DefaultPolicy default
#
# End of "$Id: cupsd.conf.in 11025 2013-06-07 01:00:33Z msweet $".
#
]]></file_contents>
</cupsd_conf_content>
</printer>
<proxy>
<enabled config:type="boolean">false</enabled>
<ftp_proxy/>
<http_proxy/>
<https_proxy/>
<no_proxy>localhost, 127.0.0.1</no_proxy>
<proxy_password/>
<proxy_user/>
</proxy>
<report>
<errors>
<log config:type="boolean">true</log>
<show config:type="boolean">true</show>
<timeout config:type="integer">0</timeout>
</errors>
<messages>
<log config:type="boolean">true</log>
<show config:type="boolean">true</show>
<timeout config:type="integer">0</timeout>
</messages>
<warnings>
<log config:type="boolean">true</log>
<show config:type="boolean">true</show>
<timeout config:type="integer">0</timeout>
</warnings>
<yesno_messages>
<log config:type="boolean">true</log>
<show config:type="boolean">true</show>
<timeout config:type="integer">0</timeout>
</yesno_messages>
</report>
<services-manager>
<default_target>graphical</default_target>
<services>
<disable config:type="list">
<service>postfix</service>
<service>wickedd-dhcp6</service>
</disable>
<enable config:type="list">
<service>auditd</service>
<service>avahi-daemon</service>
<service>cron</service>
<service>display-manager</service>
<service>haveged</service>
<service>irqbalance</service>
<service>iscsi</service>
<service>mcelog</service>
<service>ModemManager</service>
<service>ntpd</service>
<service>puppet</service>
<service>purge-kernels</service>
<service>smartd</service>
<service>sshd</service>
<service>sssd</service>
<service>wicked</service>
<service>wickedd-auto4</service>
<service>wickedd-dhcp4</service>
<service>wickedd-nanny</service>
<service>YaST2-Firstboot</service>
<service>YaST2-Second-Stage</service>
<service>getty@tty1</service>
<service>getty@tty7</service>
</enable>
</services>
</services-manager>
<software>
<image/>
<install_recommended config:type="boolean">true</install_recommended>
<instsource/>
<packages config:type="list">
<package>xfsprogs</package>
<package>wireshark</package>
<package>virtualbox-guest-desktop-icons</package>
<package>virtualbox</package>
<package>valgrind-devel</package>
<package>valgrind</package>
<package>unixODBC</package>
<package>texmaker</package>
<package>sssd-tools</package>
<package>sssd-ldap</package>
<package>sssd</package>
<package>rubygem-puppet</package>
<package>rasmol</package>
<package>qpdfview</package>
<package>qpdf</package>
<package>qemu</package>
<package>pstoedit</package>
<package>pdftk</package>
<package>pdfcompare</package>
<package>openssh</package>
<package>opencv</package>
<package>openSUSE-release</package>
<package>numactl</package>
<package>ntp</package>
<package>ncurses-devel</package>
<package>nasm</package>
<package>mysql-community-server-client</package>
<package>motif</package>
<package>lyx</package>
<package>lxc</package>
<package>log4j</package>
<package>libpng16-tools</package>
<package>libclang</package>
<package>lapack-devel-static</package>
<package>lapack-devel</package>
<package>kile</package>
<package>kexec-tools</package>
<package>irqbalance</package>
<package>gv</package>
<package>grub2</package>
<package>gromacs-doc</package>
<package>gromacs-devel</package>
<package>gromacs-bash</package>
<package>gromacs</package>
<package>gnuplot</package>
<package>glibc</package>
<package>glew</package>
<package>git</package>
<package>gedit-plugins</package>
<package>gedit-plugin-wordcompletion</package>
<package>gedit-plugin-textsize</package>
<package>gedit-plugin-terminal</package>
<package>gedit-plugin-multiedit</package>
<package>gedit-plugin-colorschemer</package>
<package>gedit-plugin-codecomment</package>
<package>gedit-plugin-code-assistance</package>
<package>gedit-latex-lang</package>
<package>geany-plugins</package>
<package>geany</package>
<package>gccmakedep</package>
<package>gcc6-objc</package>
<package>gcc6-obj-c++</package>
<package>gcc6-locale</package>
<package>gcc6-java</package>
<package>gcc6-go</package>
<package>gcc6-c++</package>
<package>gcc6</package>
<package>gcc5-locale</package>
<package>gcc5-info</package>
<package>gcc5-go</package>
<package>gcc5-c++</package>
<package>gcc5</package>
<package>gcc48-objc</package>
<package>gcc48-obj-c++</package>
<package>gcc48-locale</package>
<package>gcc48-java</package>
<package>gcc48-info</package>
<package>gcc48-gij</package>
<package>gcc48-c++</package>
<package>gcc48</package>
<package>gcc-objc</package>
<package>gcc-obj-c++</package>
<package>gcc-locale</package>
<package>gcc-java</package>
<package>gcc-info</package>
<package>gcc-c++</package>
<package>fritzing</package>
<package>freeglut-devel</package>
<package>e2fsprogs</package>
<package>docker</package>
<package>ddd</package>
<package>cross-arm-gcc6</package>
<package>cpp6</package>
<package>cpp5</package>
<package>colormake</package>
<package>cmake</package>
<package>biosdevname</package>
<package>autoyast2</package>
<package>automake</package>
<package>ant</package>
<package>SuSEfirewall2</package>
<package>R-core</package>
<package>R-compiler</package>
<package>ImageMagick-extra</package>
<package>GraphicsMagick</package>
<package>yast2-auth-client</package>
</packages>
<patterns config:type="list">
<pattern>apparmor</pattern>
<pattern>apparmor_opt</pattern>
<pattern>base</pattern>
<pattern>enhanced_base</pattern>
<pattern>enhanced_base_opt</pattern>
<pattern>fonts</pattern>
<pattern>fonts_opt</pattern>
<pattern>imaging</pattern>
<pattern>imaging_opt</pattern>
<pattern>multimedia</pattern>
<pattern>multimedia_opt</pattern>
<pattern>sw_management</pattern>
<pattern>x11</pattern>
<pattern>x11_opt</pattern>
<pattern>x11_yast</pattern>
<pattern>xfce</pattern>
<pattern>xfce_basis</pattern>
<pattern>xfce_office</pattern>
<pattern>yast2_basis</pattern>
</patterns>
<do_online_update config:type="boolean">true</do_online_update>
</software>
<ssh_import>
<copy_config config:type="boolean">false</copy_config>
<import config:type="boolean">false</import>
</ssh_import>
<timezone>
<hwclock>UTC</hwclock>
<timezone>Europe/Paris</timezone>
</timezone>
<user_defaults>
<group>100</group>
<groups/>
<home>/home</home>
<inactive>-1</inactive>
<no_groups config:type="boolean">true</no_groups>
<shell>/bin/bash</shell>
<skel>/etc/skel</skel>
<umask>022</umask>
</user_defaults>
<users config:type="list">
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>MySQL database admin</fullname>
<gid>477</gid>
<home>/var/lib/mysql</home>
<shell>/bin/false</shell>
<uid>60</uid>
<user_password>!</user_password>
<username>mysql</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Unix-to-Unix CoPy system</fullname>
<gid>14</gid>
<home>/etc/uucp</home>
<shell>/bin/bash</shell>
<uid>10</uid>
<user_password>*</user_password>
<username>uucp</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>root</fullname>
<gid>0</gid>
<home>/root</home>
<shell>/bin/bash</shell>
<uid>0</uid>
<user_password>***HASH***</user_password>
<username>root</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>systemd Bus Proxy</fullname>
<gid>491</gid>
<home>/</home>
<shell>/sbin/nologin</shell>
<uid>491</uid>
<user_password>!!</user_password>
<username>systemd-bus-proxy</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>User for polkitd</fullname>
<gid>496</gid>
<home>/var/lib/polkit</home>
<shell>/sbin/nologin</shell>
<uid>497</uid>
<user_password>!</user_password>
<username>polkitd</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>User for Avahi</fullname>
<gid>486</gid>
<home>/run/avahi-daemon</home>
<shell>/bin/false</shell>
<uid>485</uid>
<user_password>!</user_password>
<username>avahi</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>NTP daemon</fullname>
<gid>489</gid>
<home>/var/lib/ntp</home>
<shell>/bin/false</shell>
<uid>74</uid>
<user_password>!</user_password>
<username>ntp</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Printing daemon</fullname>
<gid>7</gid>
<home>/var/spool/lpd</home>
<shell>/bin/bash</shell>
<uid>4</uid>
<user_password>*</user_password>
<username>lp</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>openslp daemon</fullname>
<gid>2</gid>
<home>/var/lib/empty</home>
<shell>/sbin/nologin</shell>
<uid>494</uid>
<user_password>!</user_password>
<username>openslp</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>News system</fullname>
<gid>13</gid>
<home>/etc/news</home>
<shell>/bin/bash</shell>
<uid>9</uid>
<user_password>*</user_password>
<username>news</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>nobody</fullname>
<gid>65533</gid>
<home>/var/lib/nobody</home>
<shell>/bin/bash</shell>
<uid>65534</uid>
<user_password>*</user_password>
<username>nobody</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>bin</fullname>
<gid>1</gid>
<home>/bin</home>
<shell>/bin/bash</shell>
<uid>1</uid>
<user_password>*</user_password>
<username>bin</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>User for D-Bus</fullname>
<gid>499</gid>
<home>/run/dbus</home>
<shell>/bin/false</shell>
<uid>499</uid>
<user_password>!</user_password>
<username>messagebus</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>NFS statd daemon</fullname>
<gid>65534</gid>
<home>/var/lib/nfs</home>
<shell>/sbin/nologin</shell>
<uid>487</uid>
<user_password>!</user_password>
<username>statd</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Manual pages viewer</fullname>
<gid>62</gid>
<home>/var/cache/man</home>
<shell>/bin/bash</shell>
<uid>13</uid>
<user_password>*</user_password>
<username>man</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Postfix Daemon</fullname>
<gid>51</gid>
<home>/var/spool/postfix</home>
<shell>/bin/false</shell>
<uid>51</uid>
<user_password>!</user_password>
<username>postfix</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Batch jobs daemon</fullname>
<gid>25</gid>
<home>/var/spool/atjobs</home>
<shell>/bin/bash</shell>
<uid>25</uid>
<user_password>!</user_password>
<username>at</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Puppet daemon</fullname>
<gid>482</gid>
<home>/var/lib/puppet</home>
<shell>/bin/false</shell>
<uid>483</uid>
<user_password>!</user_password>
<username>puppet</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>user for rpcbind</fullname>
<gid>65534</gid>
<home>/var/lib/empty</home>
<shell>/sbin/nologin</shell>
<uid>495</uid>
<user_password>!</user_password>
<username>rpc</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>User for Avahi IPv4LL</fullname>
<gid>494</gid>
<home>/var/lib/avahi-autoipd</home>
<shell>/bin/false</shell>
<uid>493</uid>
<user_password>!</user_password>
<username>avahi-autoipd</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>qemu user</fullname>
<gid>479</gid>
<home>/</home>
<shell>/sbin/nologin</shell>
<uid>482</uid>
<user_password>!</user_password>
<username>qemu</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>WWW daemon apache</fullname>
<gid>8</gid>
<home>/var/lib/wwwrun</home>
<shell>/bin/false</shell>
<uid>30</uid>
<user_password>*</user_password>
<username>wwwrun</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>systemd Time Synchronization</fullname>
<gid>490</gid>
<home>/</home>
<shell>/sbin/nologin</shell>
<uid>490</uid>
<user_password>!!</user_password>
<username>systemd-timesync</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>user for VNC</fullname>
<gid>487</gid>
<home>/var/lib/empty</home>
<shell>/sbin/nologin</shell>
<uid>486</uid>
<user_password>!</user_password>
<username>vnc</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>user for Apache Subversion svnserve</fullname>
<gid>478</gid>
<home>/srv/svn</home>
<shell>/sbin/nologin</shell>
<uid>481</uid>
<user_password>!</user_password>
<username>svn</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>dnsmasq</fullname>
<gid>65534</gid>
<home>/var/lib/empty</home>
<shell>/bin/false</shell>
<uid>488</uid>
<user_password>!</user_password>
<username>dnsmasq</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>User for nscd</fullname>
<gid>495</gid>
<home>/run/nscd</home>
<shell>/sbin/nologin</shell>
<uid>496</uid>
<user_password>!</user_password>
<username>nscd</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>SSH daemon</fullname>
<gid>498</gid>
<home>/var/lib/sshd</home>
<shell>/bin/false</shell>
<uid>498</uid>
<user_password>!</user_password>
<username>sshd</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>LightDM daemon</fullname>
<gid>485</gid>
<home>/var/lib/lightdm</home>
<shell>/bin/false</shell>
<uid>484</uid>
<user_password>!</user_password>
<username>lightdm</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Daemon</fullname>
<gid>2</gid>
<home>/sbin</home>
<shell>/bin/bash</shell>
<uid>2</uid>
<user_password>*</user_password>
<username>daemon</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>FTP account</fullname>
<gid>49</gid>
<home>/srv/ftp</home>
<shell>/bin/bash</shell>
<uid>40</uid>
<user_password>*</user_password>
<username>ftp</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Games account</fullname>
<gid>100</gid>
<home>/var/games</home>
<shell>/bin/bash</shell>
<uid>12</uid>
<user_password>*</user_password>
<username>games</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>Mailer daemon</fullname>
<gid>12</gid>
<home>/var/spool/clientmqueue</home>
<shell>/bin/false</shell>
<uid>8</uid>
<user_password>*</user_password>
<username>mail</username>
</user>
<user>
<encrypted config:type="boolean">true</encrypted>
<fullname>TFTP account</fullname>
<gid>488</gid>
<home>/srv/tftpboot</home>
<shell>/bin/false</shell>
<uid>489</uid>
<user_password>!</user_password>
<username>tftp</username>
</user>
</users>
<scripts>
<post-scripts config:type="list">
<script>
<filename>HideLoginUsers.sh</filename>
<interpreter>shell</interpreter>
<source><![CDATA[
#!/bin/sh
echo "greeter-hide-users=true" >> /usr/share/lightdm/lightdm.conf.d/50-suse-defaults.conf
]]>
</source>
</script>
<script>
<filename>InstPuppet4.sh</filename>
<interpreter>shell</interpreter>
<source><![CDATA[
#!/bin/sh
echo "Installation Puppet"
gem install puppet
ruby /usr/lib64/ruby/gems/2.1.0/gems/puppet-4.10.1/install.rb
]]>
</source>
</script>
<script>
<filename>ConfPuppet4.sh</filename>
<interpreter>shell</interpreter>
<source><![CDATA[
#!/bin/sh
echo Configuration Puppet
echo [main] >> /etc/puppetlabs/puppet/puppet.conf
echo certname = "$HOSTNAME".etablissement.fr >> /etc/puppetlabs/puppet/puppet.conf
echo server = dsi-puppet.etablissement.fr >> /etc/puppetlabs/puppet/puppet.conf
echo environment = education >> /etc/puppetlabs/puppet/puppet.conf
echo runinterval = 6h >> /etc/puppetlabs/puppet/puppet.conf
echo strict_variables = true >> /etc/puppetlabs/puppet/puppet.conf
]]>
</source>
</script>
</post-scripts>
</scripts>
</profile>