|
@@ -152,6 +152,7 @@ function search_for_attached_usb_drive {
|
152
|
152
|
fi
|
153
|
153
|
if [ -d $USB_DRIVE ]; then
|
154
|
154
|
if [ ! -d /media/usb ]; then
|
|
155
|
+ echo 'Mounting USB drive'
|
155
|
156
|
mount $USB_DRIVE /media/usb
|
156
|
157
|
fi
|
157
|
158
|
if [ -d /media/usb/Maildir ]; then
|
|
@@ -271,7 +272,7 @@ function update_the_kernel {
|
271
|
272
|
return
|
272
|
273
|
fi
|
273
|
274
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
274
|
|
- return
|
|
275
|
+ return
|
275
|
276
|
fi
|
276
|
277
|
cd /opt/scripts/tools
|
277
|
278
|
./update_kernel.sh --kernel $KERNEL_VERSION
|
|
@@ -283,7 +284,7 @@ function enable_zram {
|
283
|
284
|
return
|
284
|
285
|
fi
|
285
|
286
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
286
|
|
- return
|
|
287
|
+ return
|
287
|
288
|
fi
|
288
|
289
|
if ! grep -q "options zram num_devices=1" /etc/modprobe.d/zram.conf; then
|
289
|
290
|
echo 'options zram num_devices=1' >> /etc/modprobe.d/zram.conf
|
|
@@ -365,9 +366,9 @@ function random_number_generator {
|
365
|
366
|
return
|
366
|
367
|
fi
|
367
|
368
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
368
|
|
- # it is assumed that docker uses the random number
|
369
|
|
- # generator of the host system
|
370
|
|
- return
|
|
369
|
+ # it is assumed that docker uses the random number
|
|
370
|
+ # generator of the host system
|
|
371
|
+ return
|
371
|
372
|
fi
|
372
|
373
|
if [ $USE_HWRNG == "yes" ]; then
|
373
|
374
|
apt-get -y --force-yes install rng-tools
|
|
@@ -557,8 +558,8 @@ function configure_firewall {
|
557
|
558
|
return
|
558
|
559
|
fi
|
559
|
560
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
560
|
|
- # docker does its own firewalling
|
561
|
|
- return
|
|
561
|
+ # docker does its own firewalling
|
|
562
|
+ return
|
562
|
563
|
fi
|
563
|
564
|
iptables -P INPUT ACCEPT
|
564
|
565
|
ip6tables -P INPUT ACCEPT
|
|
@@ -587,8 +588,8 @@ function configure_firewall_for_dns {
|
587
|
588
|
return
|
588
|
589
|
fi
|
589
|
590
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
590
|
|
- # docker does its own firewalling
|
591
|
|
- return
|
|
591
|
+ # docker does its own firewalling
|
|
592
|
+ return
|
592
|
593
|
fi
|
593
|
594
|
iptables -A INPUT -i eth0 -p udp -m udp --dport 1024:65535 --sport 53 -j ACCEPT
|
594
|
595
|
save_firewall_settings
|
|
@@ -600,8 +601,8 @@ function configure_firewall_for_ftp {
|
600
|
601
|
return
|
601
|
602
|
fi
|
602
|
603
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
603
|
|
- # docker does its own firewalling
|
604
|
|
- return
|
|
604
|
+ # docker does its own firewalling
|
|
605
|
+ return
|
605
|
606
|
fi
|
606
|
607
|
iptables -I INPUT -i eth0 -p tcp --dport 1024:65535 --sport 20:21 -j ACCEPT
|
607
|
608
|
save_firewall_settings
|
|
@@ -613,8 +614,8 @@ function configure_firewall_for_web {
|
613
|
614
|
return
|
614
|
615
|
fi
|
615
|
616
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
616
|
|
- # docker does its own firewalling
|
617
|
|
- return
|
|
617
|
+ # docker does its own firewalling
|
|
618
|
+ return
|
618
|
619
|
fi
|
619
|
620
|
iptables -A INPUT -i eth0 -p tcp --dport 32768:61000 --sport 80 -j ACCEPT
|
620
|
621
|
iptables -A INPUT -i eth0 -p tcp --dport 32768:61000 --sport 443 -j ACCEPT
|
|
@@ -627,8 +628,8 @@ function configure_firewall_for_ssh {
|
627
|
628
|
return
|
628
|
629
|
fi
|
629
|
630
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
630
|
|
- # docker does its own firewalling
|
631
|
|
- return
|
|
631
|
+ # docker does its own firewalling
|
|
632
|
+ return
|
632
|
633
|
fi
|
633
|
634
|
iptables -A INPUT -i eth0 -p tcp --dport 22 -j ACCEPT
|
634
|
635
|
iptables -A INPUT -i eth0 -p tcp --dport $SSH_PORT -j ACCEPT
|
|
@@ -641,8 +642,8 @@ function configure_firewall_for_git {
|
641
|
642
|
return
|
642
|
643
|
fi
|
643
|
644
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
644
|
|
- # docker does its own firewalling
|
645
|
|
- return
|
|
645
|
+ # docker does its own firewalling
|
|
646
|
+ return
|
646
|
647
|
fi
|
647
|
648
|
iptables -A INPUT -i eth0 -p tcp --dport 9418 -j ACCEPT
|
648
|
649
|
save_firewall_settings
|
|
@@ -654,8 +655,8 @@ function configure_firewall_for_email {
|
654
|
655
|
return
|
655
|
656
|
fi
|
656
|
657
|
if [ $INSTALLED_WITHIN_DOCKER == "yes" ]; then
|
657
|
|
- # docker does its own firewalling
|
658
|
|
- return
|
|
658
|
+ # docker does its own firewalling
|
|
659
|
+ return
|
659
|
660
|
fi
|
660
|
661
|
iptables -A INPUT -i eth0 -p tcp --dport 25 -j ACCEPT
|
661
|
662
|
iptables -A INPUT -i eth0 -p tcp --dport 587 -j ACCEPT
|