This is a purpose-built, atomic/immutable Linux operating system designed to have everything needed to run live broadcasting on-site at SeaGL. It is intended to be installed on laptops that run broadcasting in each talk room, and is based on Universal Blue which is itself based on Fedora Silverblue.
This repo uses BlueBuild to build ostree-compatible container images. Commits trigger container builds that are pushed to GitHub Container Registry.
There are two container images in play, for performance reasons. The base image takes a long time to build (both inherently and because it is chunk-optimized after being built, to improve incremental upgrade performance) and includes almost all binary software distributed with Aviary. The final image builds on the base image and includes most configuration data in the system, as well as Aviary-specific scripts. It is not chunk-optimized, but observe that the vast, vast majority of the final image in terms of size has been optimized because these top non-optimized bits are extremely small.
The purpose of this separation is to make it very fast to cut and deploy new releases that update only configuration, or that fix bugs in Aviary-specific code - on the order of a few minutes.
Working knowledge in the following topics:
- Containers
- rpm-ostree
- Fedora Silverblue (and other Fedora Atomic variants)
- GitHub Workflows
This procedure was tested on one of the conference's streaming laptops; you may need to adjust otherwise.
- Write and boot a Fedora Silverblue (as of October 2024, version 40) installer. On conference laptops, the boot menu key is F12.
- Select Automatic partitioning and check the checkbox to free space by removing or resizing existing partitions.
- When prompted, remove all partitions, including and especially the EFI System Partition.
- Run the installer.
- Reboot.
- Go through setup.
- Connect to WiFi. NOTE that as of Fedora 40, captive portal login (like UW uses) does not work during initial setup. Use a phone hotspot to get through initial setup, then you can switch to UW's WiFi once you're on the desktop.
- Leave location services enabled.
- Enable Third-Party Repositories and click Next.
- Set Full Name to "SeaGL Provisioning".
- Accept the default username of
seaglprovisioning. - Set the password to
password.
- Apply firmware updates in GNOME Software, if applicable. This is very important as once you've switched to Aviary Linux, you can't apply these anymore due to EFI partition naming shenanigans.
- In a terminal, run
sudo rpm-ostree rebase ostree-unverified-registry:ghcr.io/seagl/av-linux:latest. The system should print logs of what it's doing as it works, but you can monitor progress of this step by runningrpm-ostree statusand/orsudo journalctl -fu rpm-ostreed.servicein a new terminal window. - When rpm-ostree rebase finishes (i.e. when
rpm-ostree statusreportsStatus: idle), reboot. - In a terminal, rebase to the signed image with
sudo rpm-ostree rebase ostree-image-signed:docker://ghcr.io/seagl/av-linux:latest. You will have anagepassword prompt which you can either close or ignore (doesn't matter) - just open a new terminal window. - When
rpm-ostree statusreportsStatus: idle, reboot.