root.sh 6.93 KB
Newer Older
Guido Gunther's avatar
Guido Gunther committed
1
#!/bin/bash
2
3
4
5
6
#
# Copyright (C) 2017 Purism SPC
#
# SPDX-License-Identifier: GPL-3.0+
#
Pedro Vicente's avatar
Pedro Vicente committed
7

8

Angus Ainslie's avatar
Angus Ainslie committed
9
# distro and basedir set by calling script 
Guido Gunther's avatar
Guido Gunther committed
10
11
basedir="$1"
image_name="$2"
Guido Gunther's avatar
Guido Gunther committed
12
13
target_qemu="${basedir}/${qemu}"
stamp="${basedir}/var/log/gitrev.log"
14

15
16
17
18
19
20
for env_var in distro pureos_board packages; do
    if [ -z "${!env_var}" ]; then
	echo "Must pass in \$${env_var} via the environment" 1>&2
	exit 1
    fi
done
21

Pedro Vicente's avatar
Pedro Vicente committed
22
set -e
Guido Gunther's avatar
Guido Gunther committed
23
set -u
Guido Gunther's avatar
Guido Gunther committed
24
set -x
25

26

Guido Gunther's avatar
Guido Gunther committed
27
mirror=deb.debian.org
Guido Gunther's avatar
Guido Gunther committed
28

29
30
31
32
echo "Configuring ${distro} in ${basedir} for board ${pureos_board}"

case ${pureos_board} in 
  imx6)
Guido Gunther's avatar
Guido Gunther committed
33
    fdt_file=imx6qp-nitrogen6_max_purism.dtb
34
35
36
37
    ;;
  imx8)
    echo "board type ${pureos_board} not configured yet"
    ;;
38
  qemu-x86_64)
39
    ;;
40
  *)
41
42
43
44
    echo "unrecognized board type ${pureos_board}"
    exit 1
    ;;
esac
Pedro Vicente's avatar
Pedro Vicente committed
45

Guido Gunther's avatar
Guido Gunther committed
46

47
48
49
# bindmount qemu into the rootfs so we can chroot into it if needed
function setup_qemu()
{
Guido Gunther's avatar
Guido Gunther committed
50
    [ -f "${target_qemu}" ] || cp "${qemu}" "${target_qemu}"
51
52
53
}


Guido Gunther's avatar
Guido Gunther committed
54
55
function setup_kernel()
{
Guido Gunther's avatar
Guido Gunther committed
56
57
58
    local link

    link=$(basename "${basedir}"/boot/vmlinuz-*)
Guido Gunther's avatar
Guido Gunther committed
59
60
    rm -f "${basedir}/boot/zImage"
    ln -s "${link}" "${basedir}/boot/zImage"
61
    cp data/update-zImage-link "${basedir}/etc/kernel/postinst.d/"
Guido Gunther's avatar
Guido Gunther committed
62
63
64

    mkdir -p "${basedir}/boot/dtbs"
    cp "${basedir}"/usr/lib/linux-image-*/${fdt_file} "${basedir}/boot/dtbs/"
65
66
67
    # Make sure we have the kernel available for tests
    mkdir -p tmp/
    cp "${basedir}/boot/zImage" "tmp/"
Guido Gunther's avatar
Guido Gunther committed
68
69
70
}


71
72
function setup_uboot()
{
Guido Gunther's avatar
Guido Gunther committed
73
74
75
    sed -e "s/##DTBNAME##/${fdt_file}/" "data/boot-${pureos_board}.txt.in" > "${basedir}/boot/boot.txt"
    mkimage -A arm -T script -O linux -d "${basedir}/boot/boot.txt" "${basedir}/boot/boot.scr"
    ln -fs boot.scr "${basedir}/boot/6x_bootscript"
76

Guido Gunther's avatar
Guido Gunther committed
77
    [ ! -d "files/uboot-${pureos_board}" ] || cp -a "files/uboot-${pureos_board}/"* "${basedir}/boot/"
78
79
80
}


81
82
function build_tarball()
{
Guido Gunther's avatar
Guido Gunther committed
83
   tarball=$(basename "${image_name}" .img).tar.xz
84

Guido Gunther's avatar
Guido Gunther committed
85
   echo -n "Taring up rootfs to $PWD/${tarball}..."
86
87
88
89
90
   tar --acl \
       --exclude='./run/*' \
       --exclude='./dev/*' \
       --exclude='./sys/*' \
       --exclude='./proc/*' \
Guido Gunther's avatar
Guido Gunther committed
91
       -acf "${PWD}/${tarball}" -C "${basedir}" .
92
93
94
95
   echo "Done."
}


96
function cleanup_chroot()
97
{
Guido Gunther's avatar
Guido Gunther committed
98
    chroot "${basedir}" apt-get clean
99

Guido Gunther's avatar
Guido Gunther committed
100
101
102
    rm "${basedir}/etc/resolv.conf"
    mv "${basedir}/etc/resolv.conf.bak" "${basedir}/etc/resolv.conf"
    rm "${basedir}/usr/sbin/policy-rc.d"
103

Guido Gunther's avatar
Guido Gunther committed
104
105
106
107
    umount "${basedir}/dev/pts"
    umount "${basedir}/dev"
    umount "${basedir}/sys"
    umount "${basedir}/proc"
108
109

    # existence of stamp indicates success
Guido Gunther's avatar
Guido Gunther committed
110
    if [ -f "${stamp}" ]; then
111
112
      build_tarball
    fi
113
114
115
}


116
117
118
119
function prepare_chroot()
{
    trap cleanup_chroot EXIT

Guido Gunther's avatar
Guido Gunther committed
120
121
122
123
124
125
126
127
    mount -t proc chproc "${basedir}/proc"
    mount -t sysfs chsys "${basedir}/sys"
    mount -t devtmpfs chdev "${basedir}/dev" || mount --bind /dev "${basedir}/dev"
    mount -t devpts chpts "${basedir}/dev/pts"
    echo -e '#!/bin/sh\nexit 101' > "${basedir}/usr/sbin/policy-rc.d"
    chmod 755 "${basedir}/usr/sbin/policy-rc.d"
    mv "${basedir}/etc/resolv.conf" "${basedir}/etc/resolv.conf.bak"
    cp /etc/resolv.conf "${basedir}/etc"
128
129
130
}


131
132
function create_stamp()
{
Guido Gunther's avatar
Guido Gunther committed
133
    git log --format=format:%H -1 > "${stamp}"
134
135
136
}


137
138
function setup_gui()
{
Guido Gunther's avatar
Guido Gunther committed
139
140
    # Allow purism user to launch weston from the console, etc.
    for group in weston-launch video audio; do
Guido Gunther's avatar
Guido Gunther committed
141
        chroot "${basedir}" adduser purism "${group}"
Guido Gunther's avatar
Guido Gunther committed
142
    done
Guido Gunther's avatar
Guido Gunther committed
143
    # Will move into a debian package once we have build infra
Guido Gunther's avatar
Guido Gunther committed
144
145
    cp data/weston.service "${basedir}/etc/systemd/system/"
    chroot "${basedir}" systemctl enable weston.service
146
147
}

148

149
150
151
152
function setup_touchscreen()
{
    # this needs to be manually loaded
    echo blacklist rmi-i2c > /lib/modprobe.d/rmi-blacklist.conf
153
154
    cp data/rmi-ts.service "${basedir}/etc/systemd/system/"
    chroot "${basedir}" systemctl enable rmi-ts
155
156
157
}


Guido Gunther's avatar
Guido Gunther committed
158
159
160
function setup_journal()
{
    # Enable systemd journal
Guido Gunther's avatar
Guido Gunther committed
161
162
163
    chroot "${basedir}" mkdir -p /var/log/journal
    chroot "${basedir}" systemd-tmpfiles --create --prefix /var/log/journal
    chroot "${basedir}" apt-get -y remove rsyslog
Guido Gunther's avatar
Guido Gunther committed
164
    for l in daemon messages syslog kern mail user; do
Guido Gunther's avatar
Guido Gunther committed
165
        chroot "${basedir}" rm -f /var/log/${l}.*
Guido Gunther's avatar
Guido Gunther committed
166
167
168
169
    done
}


Guido Gunther's avatar
Guido Gunther committed
170
171
172
173
174
175
function setup_sshd()
{
    [[ "$packages" =~ "openssh-server" ]] || return
    # Generate new host keys on first boot
    cp data/gen-sshd-host-keys "${basedir}/usr/local/bin/"
    cp data/sshd-host-keys.service "${basedir}/etc/systemd/system/"
Guido Gunther's avatar
Guido Gunther committed
176
177
    chroot "${basedir}" systemctl enable sshd-host-keys.service
    chroot "${basedir}" rm -f /etc/ssh/ssh_host_*
Guido Gunther's avatar
Guido Gunther committed
178
179
180
}


181
182
# We have to do this because task packages don't work with debootstrap
# (and won't).  See https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=841649
183
184
185
# other packages are better installed late to not confuse deboostrap about
# systemd and systemd-shim (e.g. libpam-systemd)
function install_pkgs()
186
{
187
    chroot "${basedir}" apt-get -y update
Guido Gunther's avatar
Guido Gunther committed
188
    chroot "${basedir}" apt-get -y install ${packages}
189
190
}

191

192
193
function setup_apt()
{
Guido Gunther's avatar
Guido Gunther committed
194
    cat << EOF > "${basedir}/etc/apt/sources.list"
195
196
197
198
deb http://$mirror/debian $distro main contrib non-free
deb-src http://$mirror/debian $distro main contrib non-free
deb http://$mirror/debian $distro-updates main contrib non-free
deb-src http://$mirror/debian $distro-updates main contrib non-free
Pedro Vicente's avatar
Pedro Vicente committed
199
200
201
202
deb http://security.debian.org/debian-security $distro/updates main contrib non-free
deb-src http://security.debian.org/debian-security $distro/updates main contrib non-free
EOF

Guido Gunther's avatar
Guido Gunther committed
203
    cat << EOF > "${basedir}/etc/apt/apt.conf.d/71-no-recommends"
Pedro Vicente's avatar
Pedro Vicente committed
204
205
	APT::Install-Recommends "0";
	APT::Install-Suggests "0";
206
207
208
209
EOF
}


210
211
function setup_network()
{
Guido Gunther's avatar
Guido Gunther committed
212
    cat << EOF > "${basedir}/etc/hosts"
Pedro Vicente's avatar
Pedro Vicente committed
213
214
215
216
217
218
219
220
127.0.0.1       pureos   localhost
::1             localhost ip6-localhost ip6-loopback
fe00::0         ip6-localnet
ff00::0         ip6-mcastprefix
ff02::1         ip6-allnodes
ff02::2         ip6-allrouters
EOF

Guido Gunther's avatar
Guido Gunther committed
221
    cat << EOF > "${basedir}/etc/network/interfaces"
Pedro Vicente's avatar
Pedro Vicente committed
222
223
auto lo
iface lo inet loopback
224

Pedro Vicente's avatar
Pedro Vicente committed
225
226
227
228
allow-hotplug eth0
iface eth0 inet dhcp
EOF

229
230
231

# Don't setup resolv.conf if it's a symlink
# DHCP will later handle this just fine
Guido Gunther's avatar
Guido Gunther committed
232
233
    if [ -f "${basedir}/etc/resolv.conf" ]; then
        cat <<EOF > "${basedir}/etc/resolv.conf"
234
235
    nameserver 208.67.220.220
    nameserver 208.67.222.222
Pedro Vicente's avatar
Pedro Vicente committed
236
EOF
237
238
239
240
    fi
}

# create the directories so that this script can be tested without the generated filesystem
Guido Gunther's avatar
Guido Gunther committed
241
242
mkdir -p "${basedir}/etc/apt/apt.conf.d/"
mkdir -p "${basedir}/etc/network"
Pedro Vicente's avatar
Pedro Vicente committed
243
244
245
246

export MALLOC_CHECK_=0 # workaround for LP: #520465
export LC_ALL=C
export DEBIAN_FRONTEND=noninteractive
247
export DEBCONF_NONINTERACTIVE_SEEN=true
Pedro Vicente's avatar
Pedro Vicente committed
248

Guido Gunther's avatar
Guido Gunther committed
249
cat << EOF > "${basedir}/debconf.set"
Pedro Vicente's avatar
Pedro Vicente committed
250
251
252
console-common console-data/keymap/policy select Select keymap from full list
console-common console-data/keymap/full select en-latin1-nodeadkeys
EOF
253

254
setup_network
255
prepare_chroot
256
setup_qemu
257
setup_apt
258
install_pkgs
259
setup_gui
Guido Gunther's avatar
Guido Gunther committed
260
setup_journal
Guido Gunther's avatar
Guido Gunther committed
261
setup_sshd
262
setup_touchscreen
Guido Gunther's avatar
Guido Gunther committed
263
# Skip setup until we have hardware,  not needed for qemu
264
if [ "${pureos_board}" == "imx6" ]; then
Guido Gunther's avatar
Guido Gunther committed
265
266
267
  setup_kernel
  setup_uboot
fi
268
create_stamp
269
270

if [ -x files/local.sh ]; then
271
272
273
    echo "Warning: local.sh found, image is tainted"
    echo "tainted: true" >> files/meta.yml
    ./files/local.sh "$@"
274
fi