Install new systems
:warning: This process is changing because of TPA-RFC-73: tails infra merge roadmap and this page is being updated while that happens.
This note covers the installation of a new system that is not a VM hosted on one of our physical machines.
In general, follow howto/new-machine. Then, for Tails-specific hosts:
-
If this system needs some trustworthy connection to lizard or one of our other system (eg. ecours, for monitoring), follow the VPN documentation.
-
Setup what is necessary to boot the host if its disk is encrypted: check that its manifest installs dropbear, put the right
ip=kernel boot option and add the necessary ssh keys to/etc/initramfs-tools/root/.ssh/authorized_keys. -
Setup mandos-client if the host is supposed to be unlocked automatically with the aid of Mandos.
-
Set up monitoring. Follow the monitoring installation notes.
-
Set up backups.