##osx-server

/

      • foigus joined the channel
      • trademarkable has quit
      • gneagle has quit
      • trademarkable joined the channel
      • tackittj has quit
      • trademarkable has quit
      • wesley___ has quit
      • halloweenhead has quit
      • chrislasell has quit
      • foigus has quit
      • GaToRAiD has quit
      • dgknuth has quit
      • bruienne
        evening
      • tbridge
        evening
      • Mac_Write has quit
      • bruienne
        I am still trying to put together what the heck the Angels did to the Tigers last night
      • I fell asleep at 5-1
      • NexusT has quit
      • dwurster joined the channel
      • dwurster_ has quit
      • tulgeywood joined the channel
      • psycobob has quit
      • psycobob joined the channel
      • trifygri_ has quit
      • tulgeywood has quit
      • macmule has quit
      • yangm has quit
      • tulgeywood joined the channel
      • tulgeywood has quit
      • tulgeywood joined the channel
      • tulgeywood has quit
      • chilcote joined the channel
      • vader- has quit
      • dre^ has quit
      • Guest9007 joined the channel
      • Guest9007
        greetings, all
      • ryn has quit
      • Q3A joined the channel
      • zalmoxes
        evening
      • bruienne tips hat
      • i've been building a stack of really nice docker images this week. You'd be proud bruienne
      • everything is <100mb
      • bruienne
        zalmoxes: awesome
      • nice
      • yeah I've been busy reducing image sizes too
      • zalmoxes
        but I started bundling a small init system
      • bruienne
        this mdm-server image is like
      • zalmoxes
        s6-overlay
      • bruienne
        285
      • prior to removing installed build tools though
      • once I remove gcc etc
      • tbridge has quit
      • zalmoxes
        what mdm-server?
      • bruienne
        oh the imas project one
      • vader- joined the channel
      • I dockerized it, but couldn't really say whether it actually works because obtaining the MDM CSR-signed cert is calls Apple Difficult
      • today I finally got the pieces put together
      • chilcote has quit
      • it works with my iPad, iPhone and a Yosemite test VM I enrolled
      • frogor has quit
      • s/calls/typical
      • Guest9007
        does anyone know of any 3rd-party Internet Recovery client?
      • I have a few macs in labs that don't have any outside internet connectivity...
      • bruienne
        Guest9007: Internet recovery is basically Netboot-by-WAN
      • so you could just setup an internal Netboot server
      • and achieve the same
      • Guest9007
        bruienne: a NB server isn't very useful without them system images
      • bruienne
        Guest9007: right, you have to make one or more
      • using SIU
      • Guest9007
        i'm sorry i wasn't more specific earlier - is there a way to obtain InstallESDs of the various machine-specific builds?
      • bruienne
        comes with Server, alongside the NetInstall service
      • Guest9007: you don't need to, generally speaking
      • unless you have a mid-2015 MBP they all boot the MAS InstallESD
      • currently at 14D136
      • Guest9007
        I tried to fake a machine (bord id and serial) using vmware, but Apple server is smart enough to tell
      • bruienne
        14D2134 is the only forked build known
      • so at most you'd need two
      • Guest9007
        yes, i have the newest 15" MBP
      • bruienne
        if you do need to obtain a forked build, like for the MacBookPro15,4 you can use this method: https://derflounder.wordpress.com/2012/06/26/do...
      • this still works for the current Yosemite era
      • Guest9007
        this is a small private academy, the macs are for students to access moodle on the internal network
      • no internet access so they can't get distracted ;)
      • bruienne
        sure, we have testing labs without Internet too
      • Guest9007
        bruienne: the issue with that method is that it requires the machine that runs the forked build in the 1st place
      • private academy has an ADSL line that isn't even 10Mbit or so
      • swits has quit
      • bruienne
        well sure
      • Guest9007
        I would like to download the images at home to deploy there
      • bruienne
        you need at least one of the models in question
      • ok
      • so do it at home
      • Guest9007
        damn you, apple :D
      • bruienne
        take a machine, an external HD
      • abbaZaba joined the channel
      • weekend project
      • Guest9007
        i'll have to go there and retrieve the machine from the office to bring home temporarily
      • bruienne
        or, leave one downloading over the weekend at work
      • 48+ hours oughta be enough to pull down 6-ish GB
      • with no one using the line
      • Guest9007
        it would be great to dissect how the installer does its work of requesting images from apple CDN
      • and make a 3rd party client
      • heheheh
      • bruienne
        yes, it would
      • Guest9007
        more specifically - the verification bits required (aka how it can tell vmware apart from a real mac)
      • bruienne
        others in the community have started, but lack of time intervened
      • it's mostly SSL-related
      • Guest9007
        Model ID is common knowledge
      • bruienne
        all of the information exchange is encapsulated so it's a black box
      • Guest9007
        BootROM version and board IDs can be gotten through geekbench results browser
      • bruienne
        that's not the issue
      • the issue is how Apple exchanges the info
      • Guest9007
        oh, I have a GREAT IDEA
      • bruienne
        they use some kind of seed values or salt to randomize the process enough to be obtuse
      • at least obtuse enough for someone to dig their teeth in
      • Guest9007
        there's an apple store between my home and my workplace
      • i'll drop in at 10am with an external drive
      • get the installESD at the apple store... and probably reach work at noon
      • bruienne
        yeah if they let you camp for that time
      • NexusT joined the channel
      • Guest9007
        hopefully intel Macs don't have hardware AES engines with secret keys like the iOS platforms do
      • frogor joined the channel
      • vader- has quit
      • bruienne: apple's going through a lot of trouble to keep them installESDs away from the general public
      • vader- joined the channel
      • also, another slightly related question -
      • is there any way to grab a forked build once it's been unified with the next point update?
      • like the various 10.10.2's for the early 2015 macs
      • Q3A has quit
      • bruienne
        once it's unified you only need the one
      • like 10.10.4 will likely be uniting all forks again
      • so at that point 10.10.4 will boot all Macs that are Yosemite compatible
      • mikedodge04 joined the channel
      • Guest9007
        I know, but 10.10.2 has value
      • because... iphoto
      • bruienne
        not from Apple, no
      • at least not through the MAS
      • Developer portal has all the builds
      • you'd have to have saved one at the time
      • Guest9007
        developer portal has machine specific builds too?
      • rickardsj joined the channel
      • mikedodge04 has quit
      • bruienne
        no
      • Guest9007
        so the machine specific builds are a pain in the behind
      • they're available from absolutely nowhere at all - and only Internet Recovery on the machine in question can grab 'em
      • bruienne
        not a huge deal for most mac admins
      • when we got the first 11,5 MBP in I had a tech do the external drive thing, ran it through AutoNBI and AutoDMG and 20 minutes later it was done
      • that scores about a 5 on the scale from 1 to Adobe for me
      • Guest9007
        did you backup the preloaded contents of the SSD while you were at it?
      • heh heh. "1 to Adobe"