Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add the EFI partition to the facts #2

Open
bschonec opened this issue Aug 5, 2022 · 3 comments
Open

Add the EFI partition to the facts #2

bschonec opened this issue Aug 5, 2022 · 3 comments
Assignees

Comments

@bschonec
Copy link

bschonec commented Aug 5, 2022

I think it would be nice to have a fact that would return the EFI boot partition as well.

When doing CIS/STIG remediation, one of the policies is to add "umask=0027,fmask=0077,uid=0,gid=0" to the options of the EFI boot partition in /etc/fstab. Having facter/Puppet figure out what partition is the EFI boot would be most helpful.

@jcpunk jcpunk self-assigned this Aug 5, 2022
@jcpunk
Copy link
Owner

jcpunk commented Aug 5, 2022

I've opened a bug upstream to get facter to "just have" the right values https://tickets.puppetlabs.com/projects/FACT/issues/FACT-3140

The only EFI-ESP mountpoints I'm seeing in the wild are /boot/efi and /efi. I'm wondering if it would be easier to explicitly check for those points rather than work around a fact.....

@jcpunk
Copy link
Owner

jcpunk commented Aug 5, 2022

puppetlabs/facter#2511

@bschonec
Copy link
Author

bschonec commented Aug 5, 2022

Wow, that was fast. I could only hope to be able to write Puppet/Ruby code that quickly.

Thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants