1 #!/bin/bash
2 #
3 # CDDL HEADER START
4 #
5 # The contents of this file are subject to the terms of the
6 # Common Development and Distribution License, Version 1.0 only
7 # (the "License"). You may not use this file except in compliance
8 # with the License.
9 #
10 # You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
11 # or http://www.opensolaris.org/os/licensing.
12 # See the License for the specific language governing permissions
13 # and limitations under the License.
14 #
15 # When distributing Covered Code, include this CDDL HEADER in each
16 # file and include the License file at usr/src/OPENSOLARIS.LICENSE.
17 # If applicable, add the following below this CDDL HEADER, with the
18 # fields enclosed by brackets "[]" replaced with your own identifying
19 # information: Portions Copyright [yyyy] [name of copyright owner]
20 #
21 # CDDL HEADER END
22 #
23 #
24 # Copyright 2012 OmniTI Computer Consulting, Inc. All rights reserved.
25 # Use is subject to license terms.
26 #
27 fail() {
28 echo "ERROR: $*"
29 exit 1
30 }
31
32 # NOTE --> The URL needs to be updated with every release.
33 # Change "bloody" to whatever release the current branch is.
34 PUBLISHER=omnios
35 : ${PKGURL:=http://pkg.omniti.com/omnios/bloody}
36 : ${GZIP_CMD:=gzip}
37 SRCDIR=$(dirname $0)
38 DIDWORK=0
39 BUILDNUM=${VERSION//r/}
40 if [[ ${SRCDIR:0:1} != "/" ]]; then
41 SRCDIR=`pwd`/$SRCDIR
42 fi
43 if [[ -z "${1}" ]]; then
44 echo "$0 <zfs pool> [checkpoint]"
45 exit 1
46 else
47 BASE=${1}
48 shift
49 BASEDIR=`zfs get -o value -H mountpoint $BASE`
50 fi
51 MKFILEDIR=/tmp
52 WORKDIR=$BASEDIR
53 ROOTDIR=$WORKDIR/root
54 if [[ ! -d $ROOTDIR ]]; then
55 zfs create -o compression=off $BASE/root || fail "zfs create failed"
56 fi
57 SVCCFG_DTD=${ROOTDIR}/usr/share/lib/xml/dtd/service_bundle.dtd.1
58 SVCCFG_REPOSITORY=${ROOTDIR}/etc/svc/repository.db
59 #SVCCFG=/usr/sbin/svccfg
60 if [[ -f ${PREBUILT_ILLUMOS}/usr/src/cmd/svc/svccfg/svccfg-native ]]; then
61 SVCCFG=${PREBUILT_ILLUMOS}/usr/src/cmd/svc/svccfg/svccfg-native
62 else
63 echo "WARNING -- Not using 'native' svccfg, may hang on build."
64 echo " We recommend a pre-built illumos's svccfg-native."
65 echo " Set PREBUILT_ILLUMOS in your environment to point"
66 echo " to a built illumos-omnios repository."
67 SVCCFG=/usr/sbin/svccfg
68 fi
69 export WORKDIR ROOTDIR SVCCFG_DTD SVCCFG_REPOSITORY SVCCFG
70
71 # This was uber-helpful
72 # http://alexeremin.blogspot.com/2008/12/preparing-small-miniroot-with-zfs-and.html
73
74 PKG=/bin/pkg
75
76 UNNEEDED_MANIFESTS="application/management/net-snmp.xml
77 application/pkg/pkg-server.xml application/pkg/pkg-mdns.xml
78 system/rmtmpfiles.xml system/mdmonitor.xml
79 system/fm/notify-params.xml system/device/allocate.xml
80 system/device/devices-audio.xml system/auditd.xml
81 system/metasync.xml system/pkgserv.xml system/fcoe_initiator.xml
82 system/metainit.xml system/zonestat.xml
83 system/cron.xml system/rbac.xml system/sac.xml
84 system/auditset.xml system/hotplug.xml
85 system/wusb.xml system/zones.xml
86 system/intrd.xml system/coreadm.xml
87 system/extended-accounting.xml
88 system/scheduler.xml
89 system/logadm-upgrade.xml system/resource-mgmt.xml
90 system/idmap.xml
91 network/ldap/client.xml network/shares/reparsed.xml
92 network/shares/group.xml network/inetd-upgrade.xml
93 network/smb/client.xml network/smb/server.xml
94 network/network-iptun.xml network/ipsec/policy.xml
95 network/ipsec/ipsecalgs.xml network/ipsec/ike.xml
96 network/ipsec/manual-key.xml network/forwarding.xml
97 network/inetd.xml network/npiv_config.xml
98 network/ssl/kssl-proxy.xml network/rpc/metamed.xml
99 network/rpc/mdcomm.xml network/rpc/gss.xml
100 network/rpc/bind.xml network/rpc/keyserv.xml
101 network/rpc/meta.xml network/rpc/metamh.xml
102 network/socket-filter-kssl.xml network/network-netcfg.xml
103 network/nfs/status.xml network/nfs/cbd.xml
104 network/nfs/nlockmgr.xml network/nfs/mapid.xml
105 network/nfs/client.xml network/network-ipqos.xml
106 network/security/ktkt_warn.xml network/security/krb5kdc.xml
107 network/security/kadmin.xml network/network-install.xml
108 network/bridge.xml network/network-initial.xml
109 network/network-ipmgmt.xml network/routing/legacy-routing.xml
110 network/network-service.xml network/network-physical.xml
111 network/network-netmask.xml network/dlmgmt.xml
112 network/network-location.xml network/ibd-post-upgrade.xml
113 network/network-routing-setup.xml network/network-loopback.xml
114 network/dns/client.xml network/dns/install.xml
115 network/dns/multicast.xml platform/i86pc/acpihpd.xml
116 system/hostid.xml system/power.xml system/pfexecd.xml
117 system/consadm.xml system/pools.xml system/console-login.xml
118 system/stmf.xml system/fmd.xml system/utmp.xml
119 system/poold.xml system/dumpadm.xml"
120
121 SYSTEM="system/boot/grub system/boot/real-mode system/boot/wanboot/internal
122 system/boot/wanboot system/data/hardware-registry
123 system/data/keyboard/keytables system/data/terminfo
124 system/data/zoneinfo system/extended-system-utilities
125 system/file-system/autofs system/file-system/nfs
126 system/file-system/smb system/file-system/udfs
127 system/file-system/zfs system/flash/fwflash
128 system/fru-id/platform system/fru-id system/ipc
129 system/kernel/dynamic-reconfiguration/i86pc
130 system/kernel/security/gss system/library/math
131 system/library/platform system/library/policykit
132 system/library/processor
133 system/library/storage/fibre-channel/hbaapi
134 system/library/storage/fibre-channel/libsun_fc
135 system/library/storage/ima/header-ima
136 system/library/storage/ima
137 system/library/storage/libmpapi
138 system/library/storage/libmpscsi_vhci
139 system/library/storage/scsi-plugins
140 system/library system/network
141 system/prerequisite/gnu system/storage/luxadm
142 system/storage/fibre-channel/port-utility"
143
144 DEBUG_PKGS="developer/debug/mdb system/dtrace developer/dtrace"
145
146 DRIVERS="driver/audio driver/crypto/dca driver/crypto/tpm driver/firewire
147 driver/graphics/agpgart driver/graphics/atiatom driver/graphics/drm
148 driver/i86pc/fipe driver/i86pc/ioat driver/i86pc/platform
149 driver/network/afe driver/network/amd8111s driver/network/atge
150 driver/network/bfe driver/network/bge driver/network/bnx
151 driver/network/bnxe driver/network/bpf driver/network/chxge
152 driver/network/dmfe driver/network/e1000g driver/network/elxl
153 driver/network/emlxs driver/network/eoib driver/network/fcip
154 driver/network/fcp driver/network/fcsm driver/network/fp
155 driver/network/hermon driver/network/hme driver/network/hxge
156 driver/network/ib driver/network/ibdma driver/network/ibp
157 driver/network/igb driver/network/iprb driver/network/ixgb
158 driver/network/ixgbe driver/network/mxfe driver/network/myri10ge
159 driver/network/nge driver/network/ntxn driver/network/nxge
160 driver/network/ofk driver/network/pcn driver/network/platform
161 driver/network/qlc driver/network/rds driver/network/rdsv3
162 driver/network/rge driver/network/rpcib driver/network/rtls
163 driver/network/sdp driver/network/sdpib driver/network/sfe
164 driver/network/tavor driver/network/usbecm driver/network/vr
165 driver/network/xge driver/network/yge driver/pcmcia driver/serial/pcser
166 driver/serial/usbftdi driver/serial/usbsacm driver/serial/usbser
167 driver/serial/usbser_edge driver/serial/usbsksp
168 driver/serial/usbsksp/usbs49_fw driver/serial/usbsprl
169 driver/storage/aac driver/storage/adpu320 driver/storage/ahci
170 driver/storage/amr driver/storage/arcmsr driver/storage/ata
171 driver/storage/bcm_sata driver/storage/blkdev driver/storage/cpqary3
172 driver/storage/glm driver/storage/lsimega driver/storage/marvell88sx
173 driver/storage/mega_sas driver/storage/mpt_sas driver/storage/mr_sas
174 driver/storage/nv_sata driver/storage/pcata driver/storage/pmcs
175 driver/storage/sbp2 driver/storage/scsa1394 driver/storage/sdcard
176 driver/storage/ses driver/storage/si3124 driver/storage/smp
177 driver/usb driver/usb/ugen driver/xvm/pv"
178
179 PARTS="release/name release/notices service/picl install/beadm SUNWcs SUNWcsd
180 library/libidn shell/pipe-viewer text/less /network/ssh editor/vim
181 developer/linker file/gnu-coreutils"
182
183 PKGS="$PARTS $SYSTEM $DRIVERS"
184
185 if [ -n "$DEBUG" ]; then
186 PKGS="$PKGS $DEBUG_PKGS"
187 BIGROOT=1
188 fi
189 CULL="perl python package/pkg snmp"
190 RMRF="/var/pkg /usr/share/man /usr/lib/python2.6 /usr/lib/iconv"
191
192 ID=`id -u`
193 if [[ "$ID" != "0" ]]; then
194 echo "must run as root"
195 exit 1
196 fi
197
198 chkpt() {
199 SNAP=`zfs list -H -t snapshot $BASE/root@${1} 2> /dev/null`
200 if [[ "$DIDWORK" -ne "0" ]]; then
201 if [[ -n "$SNAP" ]]; then
202 zfs destroy $BASE/root@${1} || \
203 fail "zfs destroy ${1} failed"
204 fi
205 zfs snapshot $BASE/root@${1} || fail "zfs snapshot failed"
206 fi
207 if [[ "${1}" != "begin" ]]; then
208 echo " === Proceeding to phase $1 (zfs @${1}) ==="
209 zfs rollback -r $BASE/root@${1} || fail "zfs rollback failed"
210 else
211 echo " === Proceeding to phase $1 ==="
212 fi
213 CHKPT=$1
214 DIDWORK=1
215 }
216
217 if [[ -n "$1" ]]; then
218 echo "Explicit checkpoint requested: '$1'"
219 CHKPT=$1
220 chkpt $CHKPT
221 fi
222 if [[ -z "$CHKPT" ]]; then
223 CHKPT="begin"
224 fi
225
226 declare -A keep_list
227 load_keep_list() {
228 for datafile in $*
229 do
230 FCNT=0
231 while read file
232 do
233 if [[ -n "$file" ]]; then
234 keep_list+=([$file]="x")
235 FCNT=$(($FCNT + 1))
236 fi
237 done < <(cut -f2- -d/ $datafile)
238 echo " --- keeping $FCNT files from $datafile"
239 done
240 }
241
242 step() {
243 CHKPT=""
244 case "$1" in
245
246 "begin")
247 zfs destroy -r $BASE/root 2> /dev/null
248 zfs create -o compression=off $BASE/root || fail "zfs create failed"
249 chkpt pkg
250 ;;
251
252 "pkg")
253
254 echo "Creating image of $PUBLISHER from $PKGURL"
255 $PKG image-create -F -p $PUBLISHER=$PKGURL $ROOTDIR || fail "image-create"
256 # If a version was requested, respect it
257 if [[ -n $BUILDNUM ]]; then
258 $PKG -R $ROOTDIR install illumos-gate@11-0.$BUILDNUM omnios-userland@11-0.$BUILDNUM || fail "version constraint prep"
259 fi
260 $PKG -R $ROOTDIR install $PKGS || fail "install"
261 if [[ -n $BUILDNUM ]]; then
262 $PKG -R $ROOTDIR uninstall illumos-gate omnios-userland || fail "version constraint cleanup"
263 fi
264 chkpt fixup
265 ;;
266
267 "fixup")
268
269 echo "Fixing up install root"
270 (cp $ROOTDIR/etc/vfstab $WORKDIR/vfstab && \
271 awk '{if($3!="/"){print;}}' $WORKDIR/vfstab > $ROOTDIR/etc/vfstab && \
272 echo "/devices/ramdisk:a - / ufs - no nologging" >> $ROOTDIR/etc/vfstab) || \
273 fail "vfstab / updated"
274 rm $WORKDIR/vfstab
275 cp $ROOTDIR/lib/svc/seed/global.db $ROOTDIR/etc/svc/repository.db
276
277 sed -i 's,PASSREQ=YES,PASSREQ=NO,' $ROOTDIR/etc/default/login
278
279 ${SVCCFG} import ${ROOTDIR}/lib/svc/manifest/milestone/sysconfig.xml
280 for xml in $UNNEEDED_MANIFESTS; do
281 rm -f ${ROOTDIR}/lib/svc/manifest/$xml && echo " --- tossing $xml"
282 done
283 echo " --- initial manifest import"
284 # See if we can transform manifest-import to use the 'native' svccfg.
285 sed 's/\/usr\/sbin\/svccfg/\$SVCCFG/g' \
286 < ${ROOTDIR}/lib/svc/method/manifest-import \
287 > /tmp/manifest-import.$$
288 chmod 0755 /tmp/manifest-import.$$
289 export SVCCFG
290 /tmp/manifest-import.$$ -f ${ROOTDIR}/etc/svc/repository.db \
291 -d ${ROOTDIR}/lib/svc/manifest
292 /bin/rm -f /tmp/manifest-import.$$
293
294 ${SVCCFG} -s 'system/boot-archive' setprop 'start/exec=:true'
295 ${SVCCFG} -s 'system/manifest-import' setprop 'start/exec=:true'
296 ${SVCCFG} -s "system/intrd:default" setprop "general/enabled=false"
297 ${SVCCFG} -s "system/initial-boot" setprop "start/timeout_seconds=600"
298 echo " --- neutering the manifest import"
299 echo "#!/bin/ksh" > ${ROOTDIR}/lib/svc/method/manifest-import
300 echo "exit 0" >> ${ROOTDIR}/lib/svc/method/manifest-import
301 chmod 555 ${ROOTDIR}/lib/svc/method/manifest-import
302 chkpt cull
303 ;;
304
305 "cull")
306 if [[ -z "$BIGROOT" ]]; then
307 load_keep_list data/*
308 while read file
309 do
310 if [[ -n "$file" && \
311 ${keep_list[$file]} == "" && \
312 -e "$ROOTDIR/$file" && \
313 ! -d $ROOTDIR/$file ]] ; then
314 rm -f $ROOTDIR/$file
315 fi
316 done < <(cd $ROOTDIR && find ./ | cut -c3-)
317 for path in $RMRF ; do
318 rm -rf ${ROOTDIR}$path && echo " -- tossing $path"
319 done
320 fi
321
322 chkpt mkfs
323 ;;
324
325 "mkfs")
326 size=`/usr/bin/du -ks ${ROOTDIR}|/usr/bin/nawk '{print $1+10240}'`
327 echo " --- making image of size $size"
328 /usr/sbin/mkfile ${size}k $MKFILEDIR/miniroot || fail "mkfile"
329 lofidev=`/usr/sbin/lofiadm -a $MKFILEDIR/miniroot`
330 rlofidev=`echo $lofidev |sed s/lofi/rlofi/`
331 yes | /usr/sbin/newfs -m 0 $rlofidev 2> /dev/null > /dev/null || fail "newfs"
332 chkpt mount
333 ;;
334
335 "mount")
336 mkdir -p $WORKDIR/mnt
337 /usr/sbin/mount -o nologging $lofidev $WORKDIR/mnt || fail "mount"
338 chkpt copy
339 ;;
340
341 "copy")
342 pushd $ROOTDIR >/dev/null
343 /usr/bin/find . | /usr/bin/cpio -pdum $WORKDIR/mnt 2> /dev/null > /dev/null || fail "populate root"
344 /usr/sbin/devfsadm -r $WORKDIR/mnt > /dev/null
345 popd >/dev/null
346 mkdir $WORKDIR/mnt/kayak
347 cp $SRCDIR/*.sh $WORKDIR/mnt/kayak/
348 chmod a+x $WORKDIR/mnt/kayak/*.sh
349 make_initial_boot $WORKDIR/mnt/.initialboot
350 if [[ -n "$DEBUG" ]]; then
351 cp $SRCDIR/anon.system $WORKDIR/mnt/etc/system
352 cp $SRCDIR/anon.dtrace.conf $WORKDIR/mnt/kernel/drv/dtrace.conf
353 fi
354 chkpt umount
355 ;;
356
357 "umount")
358 /usr/sbin/umount $WORKDIR/mnt || fail "umount"
359 /usr/sbin/lofiadm -d $MKFILEDIR/miniroot || fail "lofiadm delete"
360 chkpt compress
361 ;;
362
363 "compress")
364 $GZIP_CMD -c -f $MKFILEDIR/miniroot > $WORKDIR/miniroot.gz
365 rm -f $MKFILEDIR/miniroot
366 chmod 644 $WORKDIR/miniroot.gz
367 echo " === Finished ==="
368 ls -l $WORKDIR/miniroot.gz
369 ;;
370
371 esac
372 }
373
374 make_initial_boot() {
375 FILE=$1
376 cat > $FILE <<EOF
377 /kayak/install_image.sh
378 exit \$?
379 EOF
380 }
381
382 while [[ -n "$CHKPT" ]]; do
383 step $CHKPT
384 done