Re: Easily configurable firewall?

From: Scott Gifford (sgifford@suspectclass.com)
Date: 12/07/01


To: Don Felgar <dfelgar@rainierinternet.com>
From: Scott Gifford <sgifford@suspectclass.com>
Date: 06 Dec 2001 20:49:54 -0500

Don Felgar <dfelgar@rainierinternet.com> writes:

[...]

> Anyway, my question is actually this: what's the best way to configure
> a group of Linux boxes en masse? My current thinking is that I'll
> copy all the .debs (I'm using Debian) that I want onto a cdrom, and
> then run a script on each machine that prompts for the bits of
> information that differ from one machine to the next, such as IP
> addresses, VPN config, etc, and writes them in the appropriate file.
> Any better ideas?

RedHat has KickStart, which is designed to do exactly this sort of
thing. I haven't worked with it, but it looks similar to JumpStart,
Sun's software to do the same thing. JumpStart is a bear to set up,
but works beautifully once it is.

Not sure if Debian has anything similar, but you might want to see if
KickStart has ideas you can steal.

You could also look at solutions that involve booting directly from
the CD; then you just stick a CD in and you're good. Upgrades involve
burning a new CD and sending it out; rollbacks in the event of a
problem involve switching CDs.

Make sure that whatever you do, you include in it a plan for upgrading
software and kernels as security bugs are found in them.

----ScottG.



Relevant Pages

  • Request for info/help
    ... Debian 3.0 built. ... numberous upgrades available for the system (which the system needed ... there was still quite a bit of 2.2 (the perl is what I ... install broke, and broke the perl that was on the system. ...
    (Debian-User)
  • Request for info/help
    ... Debian 3.0 built. ... numberous upgrades available for the system (which the system needed ... there was still quite a bit of 2.2 (the perl is what I ... install broke, and broke the perl that was on the system. ...
    (Debian-User)
  • Re: XFree86 packages mess, Xkb broken, how to clean up
    ... > Some time ago I did something dreadfully stupid on my Debian - I ... > (quite a few packages got upgraded) and installed some packages on top ... after some upgrades of X my xkb stopped working. ...
    (Debian-User)
  • Re: Re: Nvidia (theirs) driver on multiple kernels.
    ... modifications are needed to make them work in Debian. ... overwritten and preserves them on upgrades. ... proprietary drivers no matter how you install them. ... Which packages are needed for a GEforce 440 card? ...
    (Debian-User)
  • Re: Which linux distro is the stables/strongest for SERVERS
    ... upgrades cleanly, has long term support, and uses system resources ... kind of liked Ubuntu and am wondering if anyone tried Debian or Ubuntu ... I believe Debian is the usual distribution that's used for servers, ...
    (comp.os.linux.misc)