#!/bin/bash # SPDX-Version: 3.0 # SPDX-CreationInfo: 2025-06-17; WEIDNER, Marc S.; # SPDX-ExternalRef: GIT https://git.coresecret.dev/msw/CISS.debian.installer.git # SPDX-FileContributor: WEIDNER, Marc S.; Centurion Intelligence Consulting Agency # SPDX-FileCopyrightText: 2024-2025; WEIDNER, Marc S.; # SPDX-FileType: SOURCE # SPDX-License-Identifier: EUPL-1.2 OR LicenseRef-CCLA-1.0 # SPDX-LicenseComment: This file is part of the CISS.debian.installer.secure framework. # SPDX-PackageName: CISS.debian.installer # SPDX-Security-Contact: security@coresecret.eu guard_sourcing || return "${ERR_GUARD_SOURCE}" ####################################### # Configure the '/etc/resolv.conf' file. # Globals: # ARY_IPV4_NS # ARY_IPV6_NS # RECOVERY # TARGET # VAR_FINAL_IPV6 # VAR_LINK_IPV6 # VAR_RUN_RECOVERY # Arguments: # None # Returns: # 0: on success ####################################### setup_resolv() { ### Declare Arrays, HashMaps, and Variables. declare ns="" declare var_target="${TARGET}" ### Check for TARGET / RECOVERY. [[ "${VAR_RUN_RECOVERY}" == "true" ]] && var_target="${RECOVERY}" if [[ -f "${var_target}/etc/resolv.conf" ]]; then mkdir -p "${var_target}/root/.ciss/cdi/backup/etc" mv "${var_target}/etc/resolv.conf" "${var_target}/root/.ciss/cdi/backup/etc/resolv.conf.bak" do_log "info" "file_only" "4035() Existing '${var_target}/etc/resolv.conf' moved." fi touch "${var_target}/etc/resolv.conf" chmod 0644 "${var_target}/etc/resolv.conf" ### Create '/etc/resolv.conf' IPv4 entries for static configuration. insert_header "${var_target}/etc/resolv.conf" insert_comments "${var_target}/etc/resolv.conf" cat << EOF >> "${var_target}/etc/resolv.conf" ### Custom DNS IPv4 configuration EOF for ns in "${ARY_IPV4_NS[@]}"; do echo "nameserver ${ns}" >> "${var_target}/etc/resolv.conf" do_log "info" "file_only" "4035() IPv4 nameserver added: [${ns}]." done echo "" >> "${var_target}/etc/resolv.conf" do_log "info" "file_only" "4035() IPv4 nameserver at: '${var_target}/etc/resolv.conf' configured." ### Create '/etc/resolv.conf' IPv6 entries for static configuration. if [[ "${VAR_LINK_IPV6,,}" == "true" || -n "${VAR_FINAL_IPV6}" ]]; then cat << EOF >> "${var_target}/etc/resolv.conf" ### Custom DNS IPv6 configuration EOF for ns in "${ARY_IPV6_NS[@]}"; do echo "nameserver ${ns}" >> "${var_target}/etc/resolv.conf" do_log "info" "file_only" "4035() IPv6 nameserver added: [${ns}]." done echo "" >> "${var_target}/etc/resolv.conf" do_log "info" "file_only" "4035() IPv6 nameserver at: '${var_target}/etc/resolv.conf' configured." fi cat << EOF >> "${var_target}/etc/resolv.conf" # vim: number et ts=2 sw=2 sts=2 ai tw=128 ft=sh EOF guard_dir; return 0 } ### Prevents accidental 'unset -f'. # shellcheck disable=SC2034 readonly -f setup_resolv # vim: number et ts=2 sw=2 sts=2 ai tw=128 ft=sh