From owner-freebsd-small@FreeBSD.ORG Tue Oct 18 04:21:15 2005 Return-Path: X-Original-To: freebsd-small@freebsd.org Delivered-To: freebsd-small@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 476F516A41F for ; Tue, 18 Oct 2005 04:21:15 +0000 (GMT) (envelope-from small@dino.sk) Received: from bsd.dino.sk (bsd.dino.sk [213.215.72.60]) by mx1.FreeBSD.org (Postfix) with ESMTP id AB92A43D46 for ; Tue, 18 Oct 2005 04:21:13 +0000 (GMT) (envelope-from small@dino.sk) Received: from home.dino.sk ([213.215.74.194]) (AUTH: PLAIN milan, SSL: TLSv1/SSLv3,128bits,RC4-MD5) by bsd.dino.sk with esmtp; Tue, 18 Oct 2005 06:21:40 +0200 id 00000048.43547855.00016081 From: Milan Obuch To: freebsd-small@freebsd.org Date: Tue, 18 Oct 2005 06:19:55 +0200 User-Agent: KMail/1.8.2 References: <20051017134257.GA74997@bewilderbeast.blackhelicopters.org> <20051017184949.GA77066@bewilderbeast.blackhelicopters.org> <20051017212101.GF15097@odin.ac.hmc.edu> In-Reply-To: <20051017212101.GF15097@odin.ac.hmc.edu> MIME-Version: 1.0 Content-Type: text/plain; charset="iso-8859-6" Content-Transfer-Encoding: 7bit Content-Disposition: inline Message-Id: <200510180620.06291.small@dino.sk> Subject: Re: Separate password files on diskless boxes? X-BeenThere: freebsd-small@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Dedicated and Embedded Systems List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 18 Oct 2005 04:21:15 -0000 On Monday 17 October 2005 23:21, Brooks Davis wrote: > On Mon, Oct 17, 2005 at 02:49:49PM -0400, Michael W. Lucas wrote: > > On Mon, Oct 17, 2005 at 08:46:34PM +0200, Marco Molteni wrote: > > > On Mon, 17 Oct 2005 09:42:57 -0400 > > > > > > "Michael W. Lucas" wrote: > > > > I'm using nanobsd.sh on 6.0RC to provide a small world for diskless > > > > boxes. These are for small single-purpose machines -- i.e., DNS > > > > server, FTP server, etc, served off read-only NFS. Nothing exciting > > > > there, it just works. > > > > > > > > The last problem I'm having is the password file. I need to assign > > > > separate password files to each, and separate root passwords on each > > > > diskless station. The problem, of course, is the MFS /etc, so > > > > changes are not permanent. > > > > > > > > Is there any way to make passwd(1) talk to a different password file? > > > > I really don't want to use read/write mounts on my NFS server. Or, > > > > has anyone come up with a clever way to do this? All the tutorials > > > > in Google talk about using the server's password file, which I > > > > specifically don't want to do... > > > > > > you can use the /conf override directory as explained in > > > man diskless: > > > > > > /conf/default/10.0.0.1/etc/master.passwd > > > /conf/default/10.0.0.1/etc/passwd > > > > > > /conf/default/10.0.0.2/etc/master.passwd > > > /conf/default/10.0.0.2/etc/passwd > > > > Yes, but on boot /etc/ is a MFS. > > > > I can change the password, but on the next boot it reverts back to > > whatever's saved on the hard drive. > > > > I'd like to avoid doing kerberos or NIS for half a dozen little boxes, > > but if that's the only choice that's what I'll have to do. > > For a one off setup, change the password and then copy the resulting > password files to /conf by hand. > > I think you need a script comparing your running config files to the startup ones and update startup if necessary. This could mean not only passwords, naturally. Milan