-
-
Notifications
You must be signed in to change notification settings - Fork 12.7k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
hp-ams: init at 2.8.3 #129423
hp-ams: init at 2.8.3 #129423
Conversation
This pull request has been mentioned on NixOS Discourse. There might be relevant details there: |
Result of 2 packages built successfully:
1 suggestion:
|
This introduces generic code for systemd hardening. A review from @NixOS/systemd will be greatly appreciated. |
There already has been another approach on adding certain sandboxing levels/hardening profiles in #87661, and I still think we shouldn't ship "sandboxing levels", but do this granular and per service - also to avoid sudden breakages if there's a new sandboxing options and we want to add it to this list. Please apply that list explicitly to the |
Alright, I have done this. |
4928139
to
c329de7
Compare
I marked this as stale due to inactivity. → More info |
Apologies for the late response. Please move the release notes over to the upcoming release; then this can be merged. |
# fake this for amsHelper, otherwise it will segfault | ||
environment.etc."debian_version".text = "10.9"; |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Instead of adding this to /etc/debian_version
, can we use BindPaths=
or use libredirect (see nixos/modules/services/networking/pppd.nix
) to only make this visible for hp-ams?
@@ -14,6 +14,8 @@ In addition to numerous new and upgraded packages, this release has the followin | |||
|
|||
- [geoipupdate](https://github.com/maxmind/geoipupdate), a GeoIP database updater from MaxMind. Available as [services.geoipupdate](options.html#opt-services.geoipupdate.enable). | |||
|
|||
- [hp-ams](https://buy.hpe.com/uk/en/software/server-management-software/server-ilo-management/ilo-management-engine/hpe-agentless-management/p/5219980), the HP Agentless Management Service for ProLiant servers. Available as [services.hardware.hp-ams](options.html#opt-services.hardware.hp-ams.enable). |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This should be moved to the next release
mkdir -p $out | ||
dpkg -x $src $out |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This should be done in unpackPhase
version = "2.8.3"; | ||
|
||
src = fetchurl { | ||
url = "http://downloads.linux.hpe.com/SDR/repo/mcp/debian/pool/non-free/hp-ams_2.8.3-3056.1ubuntu16_amd64.deb"; |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
url = "http://downloads.linux.hpe.com/SDR/repo/mcp/debian/pool/non-free/hp-ams_2.8.3-3056.1ubuntu16_amd64.deb"; | |
url = "http://downloads.linux.hpe.com/SDR/repo/mcp/debian/pool/non-free/hp-ams_${version}-3056.1ubuntu16_amd64.deb"; |
|
||
dontUnpack = true; | ||
dontBuild = true; | ||
dontStrip = true; |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
dontStrip = true; |
or does this break things?
Closing this due to no response from the author in the last year. |
Motivation for this change
Adds support for the HP Agentless Management Service (for HP/HPE ProLiant servers) which interfaces with the iLO Management Processor to collect rich information and SNMP packets from the host OS.
Things done
sandbox
innix.conf
on non-NixOS linux)nix-shell -p nixpkgs-review --run "nixpkgs-review wip"
./result/bin/
)