# This is the overlayroot config file # By default, overlayroot is not enabled. # To enable overlayroot: # 1) edit the 'overlayroot' definition below # 2) reboot # # Supported values: # * overlayroot=tmpfs or overlayroot=tmpfs:PARAMETERS # write all changes to a temporary (ram only) backing device # A tmpfs mount will be created, and usable filesystem can # grow to 1/2 available memory. # # available parameters: # * see COMMON PARAMETERS # # examples: # overlayroot=tmpfs # overlayroot=tmpfs:swap=1 # # * overlayroot=DEVICE or overlayroot=device:PARAMETERS # mount DEVICE as overlayfs and write changes there # device must already have kernel mountalbe filesystem on it. # # available parameters are: # * dev: default: "" [REQUIRED] # use given device for backing filesystem. # Note, 'overlayroot=/dev/vdb' is translated to # 'overlayrooot=device:dev=/dev/vdb' # * timeout: default: 0 # if 'dev' provided does not exist, wait up to many seconds for # it to appear. # * see COMMON PARAMETERS # # examples: # overlayroot=/dev/xvdb # overlayroot=/dev/vdb # overlayroot=device:dev=/dev/sdb,timeout=180 # overlayroot=device:dev=LABEL=my-flashdrive,timeout=180 # # * overlayroot=crypt:PARAMETERS # use an encrypted [dmcrypt] device as the backing device. Parameters # are comma delimited key=value pairs. # # available parameters are: # * dev: default: "" [REQUIRED] # use given device for backing filesystem. # * mapname: default: "secure" # the name of the map device to be created in /dev/mapper # * pass: default: "" # if not provided or empty, password is randomly generated # the generated password will be stored for recovery in # /run/initramfs/overlayroot.passwd # * fstype: default: "ext4" # mapname=mapper,pass=foo,fstype=ext4,mkfs=1 # * mkfs: default: 1 # 0: never create filesystem # 1: if pass is given and mount fails, create a new one # if no pass given, create new # 2: if pass is given and mount fails, fail # if no pass given, create new # * timeout: default: 0 # if 'dev' provided does not exist, wait up to many seconds for # it to appear. # * see COMMON PARAMETERS # # examples: # crypt:mapname=mapper,pass=foo,fstype=ext4,mkfs=1,dev=vdb # crypt:mapname=mapper,pass=foo,fstype=ext3,mkfs=1,dev=/dev/disk/by-label/my-jumpdrive,timeout=120 # crypt:dev=xvdb # # * overlayroot=disabled # if set explicitly to 'disabled', or an empty string, then # overlayroot will do nothing. # # # COMMON PARAMETERS: # The following parameters are supported for each of overlayroot= # values above. # * swap: default: 0 # allowed values: 0, 1 # indicate if swap partitions should be allowed. By default swap entries # are removed from /etc/fstab to disable swap. # Swap *files* are always disabled, independent of this setting. # # * recurse: default: 1 # allowed values: 0, 1 # indicate if all mounts should be made read-only, or just /. # if set to 1, then all filesystems will be mounted read-only. # if set to 0, only root will be set to read-only, and changes # to other filesystems will be permenant. For example, if # /home is on a separate partition from / and recurse set to 0 # then changes to /home will go through to the original device. # # * debug: default: 0 # allowed values: 0, 1 # enable debug output if set to 1 # # * dir: default: "/overlay" # the directory under the filesystem to use for writes # default is to use top level directory. For example, use # 'dir=my-tests/run1' and later 'dir=my-tests/run2' # # * driver: default: "auto" # This can be 'overlay' or 'overlayfs'. It will affect which filesystem # is used to provide the overlay and the entries in fstab. # The default value is almost certainly correct. # # overlayroot_cfgdisk: # * default: 'disabled' # If this variable is set, it references a disk/filesystem that # may exist, and include a 'overlayroot.conf' file in it's root directory # If a such a device exists, then it's overlayroot.conf file can # set overlayroot as above. # # examples: # * overlayroot_cfgdisk="LABEL=OROOTCFG" # * overlayroot_cfgdisk="/dev/vdb" # # Note: if you enable this setting, then you must be careful to be sure # that no filesystems are created that match this without your # knowledge. This is because code on that filesystem is executed # as root in the initramfs environment. # # Notes: # * This file is managed by dpkg as a conffile, so changes to it # will force dpkg config file prompts on package updates that contain a # change. Instead of putting changes here, put them in # /etc/overlayroot.local.conf # * you can pass the same 'overlayroot=' parameters on the kernel # command line, and they will override any values set here. # This includes 'overlayroot=' or 'overlayroot=disabled' to disable # a value set in this file. # * if you specify crypt:dev=/dev/vdb, then DATA WILL BE LOST # on /dev/vdb. A safer value would be to use # crypt:dev=/dev/vdb,pass=somepassword,mkfs=0 # However, you would then have to have previously set up the luks device. # Do that like the following: # $ MAPNAME="secure"; DEV="/dev/vdg"; PASSWORD="foobar" # $ sudo wipefs -a $DEV # $ printf "%s" "$PASSWORD" | # sudo cryptsetup luksFormat "${$DEV}" --key-file - # $ printf "%s" "$PASSWORD" | # sudo cryptsetup luksOpen "${DEV}" "${MAPNAME}" --key-file - # $ sudo mke2fs -t "ext4" "/dev/mapper/${MAPNAME}" # # Security Note: # IT IS INSECURE TO SET THIS PASSWORD HERE IN THIS CLEARTEXT CONFIGURATION # FILE OR ON THE KERNEL COMMAND LINE. # Randomly generated passwords are more secure, but you won't be able to # read your encrypted disk on reboot. # Randomly generated passwords are generated by calculating the sha512sum # of a concatenation of: # - stat -L /dev/* /proc/* /sys/* # + some unpredictability of access/modify times of a number of kernel # files, directories, and block devices # - /proc/sys/kernel/random/boot_id # + 16-bytes uuid, consider this a 'salt' # - /proc/sys/kernel/random/uuid # + 16-bytes uuid, consider this psuedo randomness # - /dev/urandom # + 4096-bytes of psuedo randomness # - $DEV # + 4096-bytes from the head of the disk # + security-paranoid users can write 4096-bytes of randomness to # this device and specify mkfs=1 before rebooting into an # crypt+overlayroot setup # The result is stored in r-------- /dev/.initramfs/overlayroot.XXXXXXX, # which is a tmpfs in memory. overlayroot_cfgdisk="disabled" overlayroot=""
Name | Type | Size | Permission | Actions |
---|---|---|---|---|
ImageMagick-6 | Folder | 0755 |
|
|
NetworkManager | Folder | 0755 |
|
|
UPower | Folder | 0755 |
|
|
X11 | Folder | 0755 |
|
|
acpi | Folder | 0755 |
|
|
alternatives | Folder | 0755 |
|
|
apache2 | Folder | 0755 |
|
|
apm | Folder | 0755 |
|
|
apparmor | Folder | 0755 |
|
|
apparmor.d | Folder | 0755 |
|
|
apport | Folder | 0755 |
|
|
apt | Folder | 0755 |
|
|
bash_completion.d | Folder | 0755 |
|
|
binfmt.d | Folder | 0755 |
|
|
bonobo-activation | Folder | 0755 |
|
|
byobu | Folder | 0755 |
|
|
ca-certificates | Folder | 0755 |
|
|
calendar | Folder | 0755 |
|
|
chatscripts | Folder | 2750 |
|
|
cloud | Folder | 0755 |
|
|
cni | Folder | 0700 |
|
|
console-setup | Folder | 0755 |
|
|
cron.d | Folder | 0755 |
|
|
cron.daily | Folder | 0755 |
|
|
cron.hourly | Folder | 0755 |
|
|
cron.monthly | Folder | 0755 |
|
|
cron.weekly | Folder | 0755 |
|
|
cryptsetup-initramfs | Folder | 0755 |
|
|
datadog-agent | Folder | 0755 |
|
|
dbconfig-common | Folder | 0755 |
|
|
dbus-1 | Folder | 0755 |
|
|
debsig | Folder | 0755 |
|
|
default | Folder | 0755 |
|
|
depmod.d | Folder | 0755 |
|
|
dhcp | Folder | 0755 |
|
|
dictionaries-common | Folder | 0755 |
|
|
dnsmasq.d | Folder | 0755 |
|
|
dnsmasq.d-available | Folder | 0755 |
|
|
docker | Folder | 0755 |
|
|
dpkg | Folder | 0755 |
|
|
emacs | Folder | 0755 |
|
|
fonts | Folder | 0755 |
|
|
gconf | Folder | 0755 |
|
|
ghostscript | Folder | 0755 |
|
|
gitlab-runner | Folder | 0700 |
|
|
glvnd | Folder | 0755 |
|
|
gnome | Folder | 0755 |
|
|
gnome-vfs-2.0 | Folder | 0755 |
|
|
groff | Folder | 0755 |
|
|
grub.d | Folder | 0755 |
|
|
gss | Folder | 0755 |
|
|
gtk-2.0 | Folder | 0755 |
|
|
gtk-3.0 | Folder | 0755 |
|
|
ifplugd | Folder | 0755 |
|
|
init | Folder | 0755 |
|
|
init.d | Folder | 0755 |
|
|
initramfs-tools | Folder | 0755 |
|
|
iproute2 | Folder | 0755 |
|
|
iptables | Folder | 0755 |
|
|
iscsi | Folder | 0755 |
|
|
kernel | Folder | 0755 |
|
|
landscape | Folder | 0775 |
|
|
ld.so.conf.d | Folder | 0755 |
|
|
ldap | Folder | 0755 |
|
|
letsencrypt | Folder | 0755 |
|
|
libblockdev | Folder | 0755 |
|
|
libnl-3 | Folder | 0755 |
|
|
libpaper.d | Folder | 0755 |
|
|
lighttpd | Folder | 0755 |
|
|
logcheck | Folder | 0755 |
|
|
logrotate.d | Folder | 0755 |
|
|
lvm | Folder | 0755 |
|
|
mdadm | Folder | 0755 |
|
|
modprobe.d | Folder | 0755 |
|
|
modules-load.d | Folder | 0755 |
|
|
mysql | Folder | 0755 |
|
|
netplan | Folder | 0755 |
|
|
network | Folder | 0755 |
|
|
networkd-dispatcher | Folder | 0755 |
|
|
newt | Folder | 0755 |
|
|
openal | Folder | 0755 |
|
|
openvpn | Folder | 0755 |
|
|
opt | Folder | 0755 |
|
|
pam.d | Folder | 0755 |
|
|
perl | Folder | 0755 |
|
|
php | Folder | 0755 |
|
|
php7 | Folder | 0755 |
|
|
php7 | Folder | 0755 |
|
|
phpmyadmin | Folder | 0755 |
|
|
pm | Folder | 0755 |
|
|
polkit-1 | Folder | 0755 |
|
|
pollinate | Folder | 0755 |
|
|
ppp | Folder | 0755 |
|
|
profile.d | Folder | 0755 |
|
|
pulse | Folder | 0755 |
|
|
python | Folder | 0755 |
|
|
python2.7 | Folder | 0755 |
|
|
python3 | Folder | 0755 |
|
|
python3.6 | Folder | 0755 |
|
|
rc0.d | Folder | 0755 |
|
|
rc1.d | Folder | 0755 |
|
|
rc2.d | Folder | 0755 |
|
|
rc3.d | Folder | 0755 |
|
|
rc4.d | Folder | 0755 |
|
|
rc5.d | Folder | 0755 |
|
|
rc6.d | Folder | 0755 |
|
|
rcS.d | Folder | 0755 |
|
|
rsyslog.d | Folder | 0755 |
|
|
security | Folder | 0755 |
|
|
selinux | Folder | 0755 |
|
|
sensors.d | Folder | 0755 |
|
|
skel | Folder | 0755 |
|
|
sos | Folder | 0755 |
|
|
sound | Folder | 0755 |
|
|
ssh | Folder | 0755 |
|
|
ssl | Folder | 0755 |
|
|
sudoers.d | Folder | 0750 |
|
|
sysctl.d | Folder | 0755 |
|
|
systemd | Folder | 0755 |
|
|
terminfo | Folder | 0755 |
|
|
tmpfiles.d | Folder | 0755 |
|
|
tor | Folder | 0755 |
|
|
ubuntu-advantage | Folder | 0755 |
|
|
udev | Folder | 0755 |
|
|
udisks2 | Folder | 0755 |
|
|
ufw | Folder | 0755 |
|
|
update-manager | Folder | 0755 |
|
|
update-motd.d | Folder | 0775 |
|
|
update-notifier | Folder | 0755 |
|
|
usb_modeswitch.d | Folder | 0755 |
|
|
vim | Folder | 0755 |
|
|
vmware-tools | Folder | 0755 |
|
|
wpa_supplicant | Folder | 0755 |
|
|
xdg | Folder | 0755 |
|
|
xfce4 | Folder | 0755 |
|
|
.pwd.lock | File | 0 B | 0600 |
|
adduser.conf | File | 2.96 KB | 0644 |
|
at.deny | File | 144 B | 0640 |
|
bash.bashrc | File | 2.26 KB | 0644 |
|
bash_completion | File | 45 B | 0644 |
|
bindresvport.blacklist | File | 367 B | 0644 |
|
ca-certificates.conf | File | 7.63 KB | 0644 |
|
ca-certificates.conf.dpkg-old | File | 6.93 KB | 0644 |
|
crontab | File | 722 B | 0644 |
|
crypttab | File | 54 B | 0644 |
|
danted.conf | File | 505 B | 0644 |
|
danted.conf.bak | File | 7.94 KB | 0644 |
|
danted.conf.dpkg-old | File | 645 B | 0644 |
|
debconf.conf | File | 2.9 KB | 0644 |
|
debian_version | File | 11 B | 0644 |
|
deluser.conf | File | 604 B | 0644 |
|
ec2_version | File | 35 B | 0644 |
|
environment | File | 106 B | 0644 |
|
ethertypes | File | 1.29 KB | 0644 |
|
ffserver.conf | File | 8.89 KB | 0644 |
|
fstab | File | 82 B | 0644 |
|
fuse.conf | File | 280 B | 0644 |
|
gai.conf | File | 2.52 KB | 0644 |
|
grafana-agent-back.yaml | File | 3.57 KB | 0644 |
|
grafana-agent.yaml | File | 3.01 KB | 0644 |
|
grafana-agent.yaml.save | File | 3.56 KB | 0644 |
|
group | File | 996 B | 0644 |
|
group- | File | 982 B | 0644 |
|
gshadow | File | 827 B | 0640 |
|
gshadow- | File | 817 B | 0640 |
|
hddtemp.db | File | 6.59 KB | 0644 |
|
hdparm.conf | File | 4.75 KB | 0644 |
|
host.conf | File | 92 B | 0644 |
|
hostname | File | 17 B | 0644 |
|
hosts | File | 597 B | 0644 |
|
hosts.allow | File | 411 B | 0644 |
|
hosts.deny | File | 711 B | 0644 |
|
inputrc | File | 1.71 KB | 0644 |
|
issue | File | 26 B | 0644 |
|
issue.net | File | 19 B | 0644 |
|
kernel-img.conf | File | 110 B | 0644 |
|
ld.so.cache | File | 68.43 KB | 0644 |
|
ld.so.conf | File | 34 B | 0644 |
|
legal | File | 267 B | 0644 |
|
libaudit.conf | File | 191 B | 0644 |
|
locale.alias | File | 2.92 KB | 0644 |
|
locale.gen | File | 9.17 KB | 0644 |
|
localtime | File | 127 B | 0644 |
|
login.defs | File | 10.3 KB | 0644 |
|
logrotate.conf | File | 703 B | 0644 |
|
lsb-release | File | 105 B | 0644 |
|
ltrace.conf | File | 14.52 KB | 0644 |
|
machine-id | File | 33 B | 0444 |
|
magic | File | 111 B | 0644 |
|
magic.mime | File | 111 B | 0644 |
|
mailcap | File | 7.17 KB | 0644 |
|
mailcap.order | File | 449 B | 0644 |
|
manpath.config | File | 5.05 KB | 0644 |
|
mime.types | File | 23.73 KB | 0644 |
|
mke2fs.conf | File | 812 B | 0644 |
|
modules | File | 195 B | 0644 |
|
mtab | File | 0 B | 0444 |
|
nanorc | File | 8.84 KB | 0644 |
|
networks | File | 91 B | 0644 |
|
nsswitch.conf | File | 513 B | 0644 |
|
os-release | File | 386 B | 0644 |
|
overlayroot.conf | File | 6.76 KB | 0644 |
|
overlayroot.local.conf | File | 112 B | 0644 |
|
pam.conf | File | 552 B | 0644 |
|
papersize | File | 3 B | 0644 |
|
passwd | File | 2.35 KB | 0644 |
|
passwd- | File | 2.34 KB | 0644 |
|
popularity-contest.conf | File | 0 B | 0644 |
|
profile | File | 581 B | 0644 |
|
protocols | File | 2.86 KB | 0644 |
|
resolv.conf | File | 715 B | 0644 |
|
rmt | File | 268 B | 0755 |
|
rpc | File | 887 B | 0644 |
|
rsyslog.conf | File | 1.33 KB | 0644 |
|
screenrc | File | 3.58 KB | 0644 |
|
securetty | File | 4.04 KB | 0644 |
|
sensors3.conf | File | 10.13 KB | 0644 |
|
services | File | 18.73 KB | 0644 |
|
shadow | File | 1.89 KB | 0640 |
|
shadow- | File | 1.77 KB | 0640 |
|
shells | File | 103 B | 0644 |
|
sos.conf | File | 100 B | 0644 |
|
subgid | File | 196 B | 0644 |
|
subgid- | File | 177 B | 0644 |
|
subuid | File | 196 B | 0644 |
|
subuid- | File | 177 B | 0644 |
|
sudoers | File | 755 B | 0440 |
|
sysctl.conf | File | 2.62 KB | 0644 |
|
timezone | File | 8 B | 0644 |
|
ucf.conf | File | 1.23 KB | 0644 |
|
updatedb.conf | File | 403 B | 0644 |
|
usb_modeswitch.conf | File | 1.49 KB | 0644 |
|
vdpau_wrapper.cfg | File | 51 B | 0644 |
|
vtrgb | File | 158 B | 0644 |
|
wgetrc | File | 4.83 KB | 0644 |
|
zsh_command_not_found | File | 477 B | 0644 |
|