Initial commit

This commit is contained in:
Mike Gerber 2026-09-15 19:59:19 +02:00
commit 517932f137
2 changed files with 162 additions and 0 deletions

15
README.md Normal file
View file

@ -0,0 +1,15 @@
# hetzner-dracut-sshd
🚧 **Work in progress** 🚧
Post-install script for Hetzner's `installimage` that installs `dracut-sshd` to enable remote LUKS unlocking via SSH. Tested with Rocky Linux 10. It should also work with AlmaLinux 10 and possibly earlier releases, but these have not been tested.
## Notes
- The script assumes a setup with LVM on RAID1, but this is not a strict requirement. Other setups may require small changes to the script.
- Replaces NetworkManager with `systemd-networkd` and installs `systemd-resolved`
- `systemd-networkd` is configured to use DHCP on all Ethernet interfaces
- Although NetworkManager would probably also work with the implicitly installed `dracut-network`, we use `systemd-networkd` here because its our preferred option.
- Enables EPEL (required for `dracut-sshd` and `systemd-networkd`)
- Installs dracut-sshd
- Uses the SSH keys in `/root/.ssh/authorized_keys`, as previously installed by `installimage`