Skip to content

Commit 03ada44

Browse files
authored
Merge pull request #14351 from vojtapolasek/increase_boot_part_size_in_ks
RHEL: increase /boot partition size in kickstarts
2 parents 9e8b949 + c25a1ab commit 03ada44

28 files changed

Lines changed: 126 additions & 98 deletions

products/rhel8/kickstart/ssg-rhel8-anssi_bp28_enhanced-ks.cfg

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -85,9 +85,10 @@ zerombr
8585
# --linux erase all Linux partitions
8686
# --initlabel initialize the disk label to the default based on the underlying architecture
8787
clearpart --linux --initlabel
88+
reqpart
8889

8990
# Create primary system partitions (required for installs)
90-
part /boot --fstype=xfs --size=512 --fsoptions="nodev,nosuid,noexec"
91+
part /boot --fstype=xfs --size=2048 --fsoptions="nodev,nosuid,noexec"
9192
part pv.01 --grow --size=1
9293

9394
# Create a Logical Volume Management (LVM) group (optional)
@@ -102,13 +103,13 @@ logvol /opt --fstype=xfs --name=opt --vgname=VolGroup --size=512 --fsoptions="no
102103
# Ensure /srv Located On Separate Partition
103104
logvol /srv --fstype=xfs --name=srv --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid"
104105
# Ensure /home Located On Separate Partition
105-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev"
106+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid"
106107
# Ensure /tmp Located On Separate Partition
107108
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
108109
# Ensure /var/tmp Located On Separate Partition
109110
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
110111
# Ensure /var Located On Separate Partition
111-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev"
112+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid,noexec"
112113
# Ensure /var/log Located On Separate Partition
113114
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
114115
# Ensure /var/log/audit Located On Separate Partition

products/rhel8/kickstart/ssg-rhel8-anssi_bp28_high-ks.cfg

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -89,9 +89,10 @@ zerombr
8989
# --linux erase all Linux partitions
9090
# --initlabel initialize the disk label to the default based on the underlying architecture
9191
clearpart --linux --initlabel
92+
reqpart
9293

9394
# Create primary system partitions (required for installs)
94-
part /boot --fstype=xfs --size=512 --fsoptions="nodev,nosuid,noexec"
95+
part /boot --fstype=xfs --size=2048 --fsoptions="nodev,nosuid,noexec"
9596
part pv.01 --grow --size=1
9697

9798
# Create a Logical Volume Management (LVM) group (optional)
@@ -106,13 +107,13 @@ logvol /opt --fstype=xfs --name=opt --vgname=VolGroup --size=512 --fsoptions="no
106107
# Ensure /srv Located On Separate Partition
107108
logvol /srv --fstype=xfs --name=srv --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid"
108109
# Ensure /home Located On Separate Partition
109-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev"
110+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid"
110111
# Ensure /tmp Located On Separate Partition
111112
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
112113
# Ensure /var/tmp Located On Separate Partition
113114
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
114115
# Ensure /var Located On Separate Partition
115-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev"
116+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid,noexec"
116117
# Ensure /var/log Located On Separate Partition
117118
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
118119
# Ensure /var/log/audit Located On Separate Partition

products/rhel8/kickstart/ssg-rhel8-anssi_bp28_intermediary-ks.cfg

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -86,9 +86,10 @@ zerombr
8686
# --linux erase all Linux partitions
8787
# --initlabel initialize the disk label to the default based on the underlying architecture
8888
clearpart --linux --initlabel
89+
reqpart
8990

9091
# Create primary system partitions (required for installs)
91-
part /boot --fstype=xfs --size=512 --fsoptions="nodev,nosuid,noexec"
92+
part /boot --fstype=xfs --size=2048 --fsoptions="nodev,nosuid,noexec"
9293
part pv.01 --grow --size=1
9394

9495
# Create a Logical Volume Management (LVM) group (optional)
@@ -103,13 +104,13 @@ logvol /opt --fstype=xfs --name=opt --vgname=VolGroup --size=512 --fsoptions="no
103104
# Ensure /srv Located On Separate Partition
104105
logvol /srv --fstype=xfs --name=srv --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid"
105106
# Ensure /home Located On Separate Partition
106-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev"
107+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid,noexec"
107108
# Ensure /tmp Located On Separate Partition
108109
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
109110
# Ensure /var/tmp Located On Separate Partition
110111
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
111112
# Ensure /var Located On Separate Partition
112-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev"
113+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid,noexec"
113114
# Ensure /var/log Located On Separate Partition
114115
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
115116
# Ensure /var/log/audit Located On Separate Partition

products/rhel8/kickstart/ssg-rhel8-cis-ks.cfg

Lines changed: 7 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -87,28 +87,29 @@ zerombr
8787
# --linux erase all Linux partitions
8888
# --initlabel initialize the disk label to the default based on the underlying architecture
8989
clearpart --linux --initlabel
90+
reqpart
9091

9192
# Create primary system partitions (required for installs)
92-
part /boot --fstype=xfs --size=512
93+
part /boot --fstype=xfs --size=2048
9394
part pv.01 --grow --size=1
9495

9596
# Create a Logical Volume Management (LVM) group (optional)
9697
volgroup VolGroup pv.01
9798

9899
# Create particular logical volumes (optional)
99-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
100+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
100101
# Ensure /home Located On Separate Partition
101-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
102+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
102103
# Ensure /tmp Located On Separate Partition
103104
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,noexec,nosuid"
104105
# Ensure /var/tmp Located On Separate Partition
105106
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
106107
# Ensure /var Located On Separate Partition
107-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072
108+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid"
108109
# Ensure /var/log Located On Separate Partition
109-
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024
110+
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
110111
# Ensure /var/log/audit Located On Separate Partition
111-
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512
112+
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid,noexec"
112113
logvol swap --name=swap --vgname=VolGroup --size=2016
113114

114115

products/rhel8/kickstart/ssg-rhel8-cis_server_l1-ks.cfg

Lines changed: 7 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -87,28 +87,29 @@ zerombr
8787
# --linux erase all Linux partitions
8888
# --initlabel initialize the disk label to the default based on the underlying architecture
8989
clearpart --linux --initlabel
90+
reqpart
9091

9192
# Create primary system partitions (required for installs)
92-
part /boot --fstype=xfs --size=512
93+
part /boot --fstype=xfs --size=2048
9394
part pv.01 --grow --size=1
9495

9596
# Create a Logical Volume Management (LVM) group (optional)
9697
volgroup VolGroup pv.01
9798

9899
# Create particular logical volumes (optional)
99-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
100+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
100101
# Ensure /home Located On Separate Partition
101-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
102+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
102103
# Ensure /tmp Located On Separate Partition
103104
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,noexec,nosuid"
104105
# Ensure /var/tmp Located On Separate Partition
105106
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
106107
# Ensure /var Located On Separate Partition
107-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072
108+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid"
108109
# Ensure /var/log Located On Separate Partition
109-
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024
110+
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
110111
# Ensure /var/log/audit Located On Separate Partition
111-
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512
112+
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid,noexec"
112113
logvol swap --name=swap --vgname=VolGroup --size=2016
113114

114115

products/rhel8/kickstart/ssg-rhel8-cis_workstation_l1-ks.cfg

Lines changed: 7 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -87,28 +87,29 @@ zerombr
8787
# --linux erase all Linux partitions
8888
# --initlabel initialize the disk label to the default based on the underlying architecture
8989
clearpart --linux --initlabel
90+
reqpart
9091

9192
# Create primary system partitions (required for installs)
92-
part /boot --fstype=xfs --size=512
93+
part /boot --fstype=xfs --size=2048
9394
part pv.01 --grow --size=1
9495

9596
# Create a Logical Volume Management (LVM) group (optional)
9697
volgroup VolGroup pv.01
9798

9899
# Create particular logical volumes (optional)
99-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
100+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
100101
# Ensure /home Located On Separate Partition
101-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
102+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
102103
# Ensure /tmp Located On Separate Partition
103104
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,noexec,nosuid"
104105
# Ensure /var/tmp Located On Separate Partition
105106
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
106107
# Ensure /var Located On Separate Partition
107-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072
108+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid"
108109
# Ensure /var/log Located On Separate Partition
109-
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024
110+
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
110111
# Ensure /var/log/audit Located On Separate Partition
111-
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512
112+
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid,noexec"
112113
logvol swap --name=swap --vgname=VolGroup --size=2016
113114

114115

products/rhel8/kickstart/ssg-rhel8-cis_workstation_l2-ks.cfg

Lines changed: 7 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -87,28 +87,29 @@ zerombr
8787
# --linux erase all Linux partitions
8888
# --initlabel initialize the disk label to the default based on the underlying architecture
8989
clearpart --linux --initlabel
90+
reqpart
9091

9192
# Create primary system partitions (required for installs)
92-
part /boot --fstype=xfs --size=512
93+
part /boot --fstype=xfs --size=2048
9394
part pv.01 --grow --size=1
9495

9596
# Create a Logical Volume Management (LVM) group (optional)
9697
volgroup VolGroup pv.01
9798

9899
# Create particular logical volumes (optional)
99-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
100+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
100101
# Ensure /home Located On Separate Partition
101-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
102+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
102103
# Ensure /tmp Located On Separate Partition
103104
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,noexec,nosuid"
104105
# Ensure /var/tmp Located On Separate Partition
105106
logvol /var/tmp --fstype=xfs --name=vartmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
106107
# Ensure /var Located On Separate Partition
107-
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072
108+
logvol /var --fstype=xfs --name=var --vgname=VolGroup --size=3072 --fsoptions="nodev,nosuid"
108109
# Ensure /var/log Located On Separate Partition
109-
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024
110+
logvol /var/log --fstype=xfs --name=varlog --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
110111
# Ensure /var/log/audit Located On Separate Partition
111-
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512
112+
logvol /var/log/audit --fstype=xfs --name=varlogaudit --vgname=VolGroup --size=512 --fsoptions="nodev,nosuid,noexec"
112113
logvol swap --name=swap --vgname=VolGroup --size=2016
113114

114115

products/rhel8/kickstart/ssg-rhel8-cui-ks.cfg

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -86,18 +86,19 @@ zerombr
8686
# --linux erase all Linux partitions
8787
# --initlabel initialize the disk label to the default based on the underlying architecture
8888
clearpart --linux --initlabel
89+
reqpart
8990

9091
# Create primary system partitions (required for installs)
91-
part /boot --fstype=xfs --size=512
92+
part /boot --fstype=xfs --size=2048 --fsoptions="nodev,nosuid"
9293
part pv.01 --grow --size=1
9394

9495
# Create a Logical Volume Management (LVM) group (optional)
9596
volgroup VolGroup pv.01
9697

9798
# Create particular logical volumes (optional)
98-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
99+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
99100
# Ensure /home Located On Separate Partition
100-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
101+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
101102
# Ensure /tmp Located On Separate Partition
102103
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
103104
# Ensure /var/tmp Located On Separate Partition

products/rhel8/kickstart/ssg-rhel8-ospp-ks.cfg

Lines changed: 4 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -86,18 +86,19 @@ zerombr
8686
# --linux erase all Linux partitions
8787
# --initlabel initialize the disk label to the default based on the underlying architecture
8888
clearpart --linux --initlabel
89+
reqpart
8990

9091
# Create primary system partitions (required for installs)
91-
part /boot --fstype=xfs --size=512
92+
part /boot --fstype=xfs --size=2048 --fsoptions="nodev,nosuid"
9293
part pv.01 --grow --size=1
9394

9495
# Create a Logical Volume Management (LVM) group (optional)
9596
volgroup VolGroup pv.01
9697

9798
# Create particular logical volumes (optional)
98-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=10240 --grow
99+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
99100
# Ensure /home Located On Separate Partition
100-
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
101+
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid"
101102
# Ensure /tmp Located On Separate Partition
102103
logvol /tmp --fstype=xfs --name=tmp --vgname=VolGroup --size=1024 --fsoptions="nodev,nosuid,noexec"
103104
# Ensure /var/tmp Located On Separate Partition

products/rhel8/kickstart/ssg-rhel8-pci-dss-ks.cfg

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -83,16 +83,17 @@ zerombr
8383
# --linux erase all Linux partitions
8484
# --initlabel initialize the disk label to the default based on the underlying architecture
8585
clearpart --linux --initlabel
86+
reqpart
8687

8788
# Create primary system partitions (required for installs)
88-
part /boot --fstype=xfs --size=512
89+
part /boot --fstype=xfs --size=2048
8990
part pv.01 --grow --size=1
9091

9192
# Create a Logical Volume Management (LVM) group (optional)
9293
volgroup VolGroup pv.01
9394

9495
# Create particular logical volumes (optional)
95-
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=11264 --grow
96+
logvol / --fstype=xfs --name=root --vgname=VolGroup --size=5120 --grow
9697
# CCE-26557-9: Ensure /home Located On Separate Partition
9798
logvol /home --fstype=xfs --name=home --vgname=VolGroup --size=1024 --fsoptions="nodev"
9899
# CCE-26435-8: Ensure /tmp Located On Separate Partition

0 commit comments

Comments
 (0)