2 # No way I try to deal with a crippled sh just for POSIX foo.
4 # Copyright (C) 2009 Joerg Jaspert <joerg@debian.org>
6 # This program is free software; you can redistribute it and/or
7 # modify it under the terms of the GNU General Public License as
8 # published by the Free Software Foundation; version 2.
10 # This program is distributed in the hope that it will be useful, but
11 # WITHOUT ANY WARRANTY; without even the implied warranty of
12 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 # General Public License for more details.
15 # You should have received a copy of the GNU General Public License
16 # along with this program; if not, write to the Free Software
17 # Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
19 # Homer: Are you saying you're never going to eat any animal again? What
25 # Lisa: Dad, those all come from the same animal.
26 # Homer: Heh heh heh. Ooh, yeah, right, Lisa. A wonderful, magical animal.
30 # make sure to only use defined variables
32 # ERR traps should be inherited from functions too. (And command
33 # substitutions and subshells and whatnot, but for us the functions is
34 # the important part here)
37 # import the general variable set.
38 export SCRIPTVARS=/srv/ftp.debian.org/dak/config/debian/vars
41 ########################################################################
43 ########################################################################
44 # common functions are "outsourced"
45 . "${configdir}/common"
47 # Timestamp. Used for dinstall stat graphs
49 echo "Archive maintenance timestamp ($1): $(date +%H:%M:%S)"
55 rm -f ${LOCK_ACCEPTED}
58 # If we error out this one is called, *FOLLOWED* by cleanup above
60 ERRDATE=$(date "+%Y.%m.%d-%H:%M:%S")
62 subject="ATTENTION ATTENTION!"
63 if [ "${error}" = "false" ]; then
64 subject="${subject} (continued)"
66 subject="${subject} (interrupted)"
68 subject="${subject} dinstall error at ${ERRDATE} in ${STAGEFILE} - (Be quiet, Brain, or I'll stab you with a Q-tip)"
70 cat "${STAGEFILE}.log" | mail -s "${subject}" -a "X-Debian: DAK" cron@ftp-master.debian.org
73 ########################################################################
74 # the actual dinstall functions follow #
75 ########################################################################
77 # pushing merkels QA user, part one
79 log "Telling merkels QA user that we start dinstall"
80 ssh -2 -i ~dak/.ssh/push_merkel_qa -o BatchMode=yes -o SetupTimeOut=90 -o ConnectTimeout=90 qa@merkel.debian.org sleep 1
83 # Create the postgres dump files
84 function pgdump_pre() {
85 log "Creating pre-daily-cron-job backup of projectb database..."
86 pg_dump projectb > $base/backup/dump_pre_$(date +%Y.%m.%d-%H:%M:%S)
89 function pgdump_post() {
90 log "Creating post-daily-cron-job backup of projectb database..."
92 POSTDUMP=$(date +%Y.%m.%d-%H:%M:%S)
93 pg_dump projectb > $base/backup/dump_$POSTDUMP
94 pg_dumpall --globals-only > $base/backup/dumpall_$POSTDUMP
95 ln -sf $base/backup/dump_$POSTDUMP current
96 ln -sf $base/backup/dumpall_$POSTDUMP currentall
99 # Load the dak-dev projectb
100 function pgdakdev() {
102 echo "drop database projectb" | psql -p 5433 template1
103 cat currentall | psql -p 5433 template1
104 createdb -p 5433 -T template0 projectb
105 fgrep -v '\connect' current | psql -p 5433 projectb
108 # Updating various files
110 log "Updating Bugs docu, Mirror list and mailing-lists.txt"
112 $scriptsdir/update-bugdoctxt
113 $scriptsdir/update-mirrorlists
114 $scriptsdir/update-mailingliststxt
115 $scriptsdir/update-pseudopackages.sh
118 # Process (oldstable)-proposed-updates "NEW" queue
119 function punew_do() {
120 cd "${queuedir}/${1}"
122 dak process-new -a -C COMMENTS >> REPORT || true
126 log "Doing automated p-u-new processing"
130 log "Doing automated o-p-u-new processing"
134 # The first i18n one, syncing new descriptions
136 log "Synchronizing i18n package descriptions"
137 # First sync their newest data
138 cd ${scriptdir}/i18nsync
139 rsync -aq --delete --delete-after ddtp-sync:/does/not/matter . || true
141 # Now check if we still know about the packages for which they created the files
142 # is the timestamp signed by us?
143 if $(gpgv --keyring /srv/ftp.debian.org/s3kr1t/dot-gnupg/pubring.gpg timestamp.gpg timestamp); then
144 # now read it. As its signed by us we are sure the content is what we expect, no need
145 # to do more here. And we only test -d a directory on it anyway.
146 TSTAMP=$(cat timestamp)
147 # do we have the dir still?
148 if [ -d ${scriptdir}/i18n/${TSTAMP} ]; then
150 if ${scriptsdir}/ddtp-i18n-check.sh . ${scriptdir}/i18n/${TSTAMP}; then
151 # Yay, worked, lets copy around
152 for dir in squeeze sid; do
153 if [ -d dists/${dir}/ ]; then
154 cd dists/${dir}/main/i18n
155 rsync -aq --delete --delete-after . ${ftpdir}/dists/${dir}/main/i18n/.
157 cd ${scriptdir}/i18nsync
160 echo "ARRRR, bad guys, wrong files, ARRR"
161 echo "Arf, Arf, Arf, bad guys, wrong files, arf, arf, arf" | mail -s "Don't you kids take anything. I'm watching you. I've got eye implants in the back of my head." debian-l10n-devel@lists.alioth.debian.org
164 echo "ARRRR, missing the timestamp ${TSTAMP} directory, not updating i18n, ARRR"
165 echo "Arf, Arf, Arf, missing the timestamp ${TSTAMP} directory, not updating i18n, arf, arf, arf" | mail -s "Lisa, if you don't like your job you don't strike. You just go in every day and do it really half-assed. That's the American way." debian-l10n-devel@lists.alioth.debian.org
168 echo "ARRRRRRR, could not verify our timestamp signature, ARRR. Don't mess with our files, i18n guys, ARRRRR."
169 echo "Arf, Arf, Arf, could not verify our timestamp signature, arf. Don't mess with our files, i18n guys, arf, arf, arf" | mail -s "You can't keep blaming yourself. Just blame yourself once, and move on." debian-l10n-devel@lists.alioth.debian.org
173 # Process the accepted queue
174 function accepted() {
175 log "Processing queue/accepted"
176 rm -f "$accepted/REPORT"
177 dak process-accepted -pa -d "$accepted" > "$accepted/REPORT"
178 cat "$accepted/REPORT" | mail -s "Install for $(date +"%D - %R")" ftpmaster@ftp-master.debian.org
179 chgrp debadmin "$accepted/REPORT"
180 chmod 664 "$accepted/REPORT"
184 log "Checking for cruft in overrides"
189 log "Generating suite file lists for apt-ftparchive"
190 dak make-suite-file-list
193 function fingerprints() {
194 log "Updating fingerprints"
195 dak import-keyring -L /srv/keyring.debian.org/keyrings/debian-keyring.gpg
198 dak import-keyring --generate-users "%s" /srv/keyring.debian.org/keyrings/debian-maintainers.gpg >"${OUTFILE}"
200 if [ -s "${OUTFILE}" ]; then
201 /usr/sbin/sendmail -odq -oi -t -f envelope@ftp-master.debian.org <<EOF
202 From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
203 To: <debian-project@lists.debian.org>
204 Subject: Debian Maintainers Keyring changes
205 Content-Type: text/plain; charset=utf-8
208 The following changes to the debian-maintainers keyring have just been activated:
212 Debian distribution maintenance software,
213 on behalf of the Keyring maintainers
220 function overrides() {
221 log "Writing overrides into text files"
226 rm -f override.sid.all3
227 for i in main contrib non-free main.debian-installer; do cat override.sid.$i >> override.sid.all3; done
231 log "Generating package / file mapping"
232 dak make-pkg-file-mapping | bzip2 -9 > $base/ftp/indices/package-file.map.bz2
235 function packages() {
236 log "Generating Packages and Sources files"
238 GZIP='--rsyncable' ; export GZIP
239 apt-ftparchive generate apt.conf
243 log "Generating pdiff files"
244 dak generate-index-diffs
248 log "Generating Release files"
249 dak generate-releases
252 function dakcleanup() {
253 log "Cleanup old packages/files"
254 dak clean-suites -m 10000
259 # Needs to be rebuilt, as files have moved. Due to unaccepts, we need to
260 # update this before wanna-build is updated.
261 log "Regenerating wanna-build/buildd information"
262 psql projectb -A -t -q -c "SELECT filename FROM queue_build WHERE suite = 5 AND queue = 0 AND in_queue = true AND filename ~ 'd(sc|eb)$'" > $dbdir/dists/unstable_accepted.list
263 symlinks -d /srv/incoming.debian.org/buildd > /dev/null
264 apt-ftparchive generate apt.conf.buildd
267 function buildd_dir() {
268 # Rebuilt the buildd dir to avoid long times of 403
269 log "Regenerating the buildd incoming dir"
270 STAMP=$(date "+%Y%m%d%H%M")
279 log "Removing any core files ..."
280 find -type f -name core -print0 | xargs -0r rm -v
282 log "Checking permissions on files in the FTP tree ..."
283 find -type f \( \! -perm -444 -o -perm +002 \) -ls
284 find -type d \( \! -perm -555 -o -perm +002 \) -ls
286 log "Checking symlinks ..."
289 log "Creating recursive directory listing ... "
290 rm -f .${FILENAME}.new
291 TZ=UTC ls -lR > .${FILENAME}.new
293 if [ -r ${FILENAME}.gz ] ; then
294 mv -f ${FILENAME}.gz ${FILENAME}.old.gz
295 mv -f .${FILENAME}.new ${FILENAME}
296 rm -f ${FILENAME}.patch.gz
297 zcat ${FILENAME}.old.gz | diff -u - ${FILENAME} | gzip --rsyncable -9cfn - >${FILENAME}.patch.gz
298 rm -f ${FILENAME}.old.gz
300 mv -f .${FILENAME}.new ${FILENAME}
303 gzip --rsyncable -9cfN ${FILENAME} >${FILENAME}.gz
307 function mkmaintainers() {
308 log -n 'Creating Maintainers index ... '
311 dak make-maintainers ${scriptdir}/masterfiles/pseudo-packages.maintainers | \
312 sed -e "s/~[^ ]*\([ ]\)/\1/" | awk '{printf "%-20s ", $1; for (i=2; i<=NF; i++) printf "%s ", $i; printf "\n";}' > .new-maintainers
315 cmp .new-maintainers Maintainers >/dev/null
318 if [ $rc = 1 ] || [ ! -f Maintainers ] ; then
319 log -n "installing Maintainers ... "
320 mv -f .new-maintainers Maintainers
321 gzip --rsyncable -9v <Maintainers >.new-maintainers.gz
322 mv -f .new-maintainers.gz Maintainers.gz
323 elif [ $rc = 0 ] ; then
324 log '(same as before)'
325 rm -f .new-maintainers
332 function copyoverrides() {
333 log 'Copying override files into public view ...'
335 for f in $copyoverrides ; do
337 chmod g+w override.$f
341 pc="`gzip 2>&1 -9nv <$overridedir/override.$f >.newover-$f.gz`"
344 cmp -s .newover-$f.gz $nf
349 elif [ $rc = 1 -o ! -f $nf ]; then
350 echo " installing new $nf $pc"
351 mv -f .newover-$f.gz $nf
361 log "Running various scripts from $scriptsdir"
371 echo "Regenerating \"public\" mirror/ hardlink fun"
373 rsync -aH --link-dest ${ftpdir} --delete --delete-after --ignore-errors ${ftpdir}/. .
377 log "Trigger daily wanna-build run"
378 ssh -o BatchMode=yes -o SetupTimeOut=90 -o ConnectTimeout=90 wbadm@buildd /org/wanna-build/trigger.daily || echo "W-B trigger.daily failed" | mail -s "W-B Daily trigger failed" ftpmaster@ftp-master.debian.org
382 log "Expiring old database dumps..."
384 $scriptsdir/expire_dumps -d . -p -f "dump_*"
387 function transitionsclean() {
388 log "Removing out of date transitions..."
390 dak transitions -c -a
394 # Send a report on NEW/BYHAND packages
395 log "Nagging ftpteam about NEW/BYHAND packages"
396 dak queue-report | mail -e -s "NEW and BYHAND on $(date +%D)" ftpmaster@ftp-master.debian.org
397 # and one on crufty packages
398 log "Sending information about crufty packages"
399 dak cruft-report > $webdir/cruft-report-daily.txt
400 dak cruft-report -s experimental >> $webdir/cruft-report-daily.txt
401 cat $webdir/cruft-report-daily.txt | mail -e -s "Debian archive cruft report for $(date +%D)" ftpmaster@ftp-master.debian.org
405 log "Updating DM html page"
406 $scriptsdir/dm-monitor >$webdir/dm-uploaders.html
410 log "Categorizing uncategorized bugs filed against ftp.debian.org"
415 # Push dak@merkel so it syncs the projectb there. Returns immediately, the sync runs detached
416 log "Trigger merkel/flotows projectb sync"
417 ssh -2 -o BatchMode=yes -o SetupTimeOut=30 -o ConnectTimeout=30 -i ~/.ssh/push_merkel_projectb dak@merkel.debian.org sleep 1
418 # Also trigger flotow, the ftpmaster test box
419 ssh -2 -o BatchMode=yes -o SetupTimeOut=30 -o ConnectTimeout=30 -i ~/.ssh/push_flotow_projectb dak@flotow.debconf.org sleep 1
423 # Push dak@merkel to tell it to sync the dd accessible parts. Returns immediately, the sync runs detached
424 log "Trigger merkels dd accessible parts sync"
425 ssh -2 -o BatchMode=yes -o SetupTimeOut=30 -o ConnectTimeout=30 -i ~/.ssh/push_merkel_ddaccess dak@merkel.debian.org sleep 1
428 function mirrorpush() {
429 log "Starting the mirrorpush"
430 date -u > /srv/ftp.debian.org/web/mirrorstart
431 echo "Using dak v1" >> /srv/ftp.debian.org/web/mirrorstart
432 echo "Running on host $(hostname -f)" >> /srv/ftp.debian.org/web/mirrorstart
433 sudo -H -u archvsync /home/archvsync/runmirrors > ~dak/runmirrors.log 2>&1 &
437 log "Exporting package data foo for i18n project"
438 STAMP=$(date "+%Y%m%d%H%M")
439 mkdir -p ${scriptdir}/i18n/${STAMP}
440 cd ${scriptdir}/i18n/${STAMP}
441 dak control-suite -l stable > lenny
442 dak control-suite -l testing > squeeze
443 dak control-suite -l unstable > sid
444 echo "${STAMP}" > timestamp
445 gpg --secret-keyring /srv/ftp.debian.org/s3kr1t/dot-gnupg/secring.gpg --keyring /srv/ftp.debian.org/s3kr1t/dot-gnupg/pubring.gpg --no-options --batch --no-tty --armour --default-key 55BE302B --detach-sign -o timestamp.gpg timestamp
449 ln -sfT ${scriptdir}/i18n/${STAMP} i18n
452 find ./i18n -mindepth 1 -maxdepth 1 -mtime +2 -not -name "${STAMP}" -type d -print0 | xargs --no-run-if-empty -0 rm -rf
456 log "Updating stats data"
458 $scriptsdir/update-ftpstats $base/log/* > $base/misc/ftpstats.data
459 R --slave --vanilla < $base/misc/ftpstats.R
460 dak stats arch-space > $webdir/arch-space
461 dak stats pkg-nums > $webdir/pkg-nums
464 function aptftpcleanup() {
465 log "Clean up apt-ftparchive's databases"
467 apt-ftparchive -q clean apt.conf
470 function compress() {
471 log "Compress old psql backups"
473 find -maxdepth 1 -mindepth 1 -type f -name 'dump_pre_*' -mtime +2 -print0 | xargs -0 --no-run-if-empty rm
475 find -maxdepth 1 -mindepth 1 -type f -name 'dump_*' \! -name '*.bz2' \! -name '*.gz' -mmin +720 |
476 while read dumpname; do
477 echo "Compressing $dumpname"
478 bzip2 -9fv "$dumpname"
480 find -maxdepth 1 -mindepth 1 -type f -name "dumpall_*" \! -name '*.bz2' \! -name '*.gz' -mmin +720 |
481 while read dumpname; do
482 echo "Compressing $dumpname"
483 bzip2 -9fv "$dumpname"
485 finddup -l -d $base/backup
488 function logstats() {
489 $masterdir/tools/logs.py "$1"
492 # save timestamp when we start
493 function savetimestamp() {
494 NOW=`date "+%Y.%m.%d-%H:%M:%S"`
495 echo ${NOW} > "${dbdir}/dinstallstart"
498 function maillogfile() {
499 cat "$LOGFILE" | mail -s "Log for dinstall run of ${NOW}" cron@ftp-master.debian.org
502 function renamelogfile() {
503 if [ -f "${dbdir}/dinstallstart" ]; then
504 NOW=$(cat "${dbdir}/dinstallstart")
506 mv "$LOGFILE" "$logdir/dinstall_${NOW}.log"
507 logstats "$logdir/dinstall_${NOW}.log"
508 bzip2 -9 "$logdir/dinstall_${NOW}.log"
510 error "Problem, I don't know when dinstall started, unable to do log statistics."
511 NOW=`date "+%Y.%m.%d-%H:%M:%S"`
513 mv "$LOGFILE" "$logdir/dinstall_${NOW}.log"
514 bzip2 -9 "$logdir/dinstall_${NOW}.log"
518 function testingsourcelist() {
519 dak ls -s testing -f heidi -r .| egrep 'source$' > ${webdir}/testing.list
522 # do a last run of process-unchecked before dinstall is on.
523 function process_unchecked() {
524 log "Processing the unchecked queue"
526 UNCHECKED_WITHOUT_LOCK="-p"
531 ########################################################################
532 ########################################################################
534 # Function to save which stage we are in, so we can restart an interrupted
535 # dinstall. Or even run actions in parallel, if we dare to, by simply
536 # backgrounding the call to this function. But that should only really be
537 # done for things we don't care much about.
539 # This should be called with the first argument being an array, with the
541 # - FUNC - the function name to call
542 # - ARGS - Possible arguments to hand to the function. Can be the empty string
543 # - TIME - The timestamp name. Can be the empty string
544 # - ERR - if this is the string false, then the call will be surrounded by
545 # set +e ... set -e calls, so errors in the function do not exit
546 # dinstall. Can be the empty string, meaning true.
548 # MAKE SURE TO KEEP THIS THE LAST FUNCTION, AFTER ALL THE VARIOUS ONES
549 # ADDED FOR DINSTALL FEATURES!
556 STAGEFILE="${stagedir}/${FUNC}"
557 if [ -f "${STAGEFILE}" ]; then
558 stamptime=$(/usr/bin/stat -c %Z "${STAGEFILE}")
560 difference=$(( $unixtime - $stamptime ))
561 if [ ${difference} -ge 14400 ]; then
562 log_error "Did already run ${FUNC}, stagefile exists, but that was ${difference} seconds ago. Please check."
564 log "Did already run ${FUNC}, not calling again..."
569 debug "Now calling function ${FUNC}. Arguments: ${ARGS}. Timestamp: ${TIME}"
571 # Make sure we are always at the same place. If a function wants to be elsewhere,
572 # it has to cd first!
575 # Now redirect the output into $STAGEFILE.log. In case it errors out somewhere our
576 # errorhandler trap can then mail the contents of $STAGEFILE.log only, instead of a whole
577 # dinstall logfile. Short error mails ftw!
578 exec >> "${STAGEFILE}.log" 2>&1
580 if [ -f "${LOCK_STOP}" ]; then
581 log "${LOCK_STOP} exists, exiting immediately"
585 if [ "${error}" = "false" ]; then
590 # No matter what happened in the function, we make sure we have set -e default state back
593 # Make sure we are always at the same place.
596 # We always use the same umask. If a function wants to do different, fine, but we reset.
601 if [ -n "${TIME}" ]; then
605 # And the output goes back to the normal logfile
606 exec >> "$LOGFILE" 2>&1
608 # Now we should make sure that we have a usable dinstall.log, so append the $STAGEFILE.log
610 cat "${STAGEFILE}.log" >> "${LOGFILE}"
611 rm -f "${STAGEFILE}.log"
613 if [ -f "${LOCK_STOP}" ]; then
614 log "${LOCK_STOP} exists, exiting immediately"
619 ########################################################################
622 LOGFILE="$logdir/dinstall.log"
624 exec >> "$LOGFILE" 2>&1
626 # usually we are not using debug logs. Set to 1 if you want them.
632 # where do we want mails to go? For example log entries made with error()
633 if [ "x$(hostname -s)x" != "xriesx" ]; then
634 # Not our ftpmaster host
635 MAILTO=${MAILTO:-"root"}
638 MAILTO=${MAILTO:-"ftpmaster@debian.org"}
641 # Make sure we start out with a sane umask setting
644 # And use one locale, no matter what the caller has set
648 # How many logfiles to keep
649 LOGROTATE=${LOGROTATE:-400}
651 # Marker for dinstall start
652 DINSTALLSTART="${lockdir}/dinstallstart"
653 # Marker for dinstall end
654 DINSTALLEND="${lockdir}/dinstallend"
656 touch "${DINSTALLSTART}"
659 # lock cron.unchecked (it immediately exits when this exists)
660 LOCK_DAILY="$lockdir/daily.lock"
662 # Lock cron.unchecked from doing work
663 LOCK_ACCEPTED="$lockdir/unchecked.lock"
665 # Lock process-new from doing work
666 LOCK_NEW="$lockdir/processnew.lock"
668 # This file is simply used to indicate to britney whether or not
669 # the Packages file updates completed sucessfully. It's not a lock
670 # from our point of view
671 LOCK_BRITNEY="$lockdir/britney.lock"
673 # If this file exists we exit immediately after the currently running
675 LOCK_STOP="$lockdir/archive.stop"
677 lockfile -l 3600 "${LOCK_DAILY}"
679 trap cleanup EXIT TERM HUP INT QUIT
681 touch "${LOCK_BRITNEY}"
717 TIME="External Updates"
747 lockfile "$LOCK_ACCEPTED"
751 FUNC="process_unchecked"
783 rm -f "$LOCK_ACCEPTED"
788 TIME="make-suite-file-list"
796 TIME="import-keyring"
812 TIME="pkg-file-mapping"
820 TIME="apt-ftparchive"
868 TIME="mirror hardlinks"
882 rm -f "${LOCK_DAILY}"
884 ts "locked part finished"
903 FUNC="transitionsclean"
904 TIME="transitionsclean"
936 TIME="merkel projectb push"
967 FUNC="testingsourcelist"
974 rm -f ${LOCK_BRITNEY}
986 TIME="merkel ddaccessible sync"
1001 FUNC="aptftpcleanup"
1002 TIME="apt-ftparchive cleanup"
1008 log "Daily cron scripts successful, all done"
1010 exec > "$logdir/afterdinstall.log" 2>&1
1013 FUNC="renamelogfile"
1021 # Now, at the very (successful) end of dinstall, make sure we remove
1022 # our stage files, so the next dinstall run will do it all again.
1024 touch "${DINSTALLEND}"