2 # Copyright (C) 2016 Ian Kelling
4 # Licensed under the Apache License, Version 2.0 (the "License");
5 # you may not use this file except in compliance with the License.
6 # You may obtain a copy of the License at
8 # http://www.apache.org/licenses/LICENSE-2.0
10 # Unless required by applicable law or agreed to in writing, software
11 # distributed under the License is distributed on an "AS IS" BASIS,
12 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 # See the License for the specific language governing permissions and
14 # limitations under the License.
17 # todo: if we cancel in the middle of a btrfs send, then run again
18 # immediately, the received subvolume doesn't get a Received UUID:
19 # field, and we won't mount it. Need to figure out a solution that will
23 [[ $EUID == 0 ]] ||
exec sudo
-E "${BASH_SOURCE[0]}" "$@"
25 source /usr
/local
/lib
/err
29 btrbk-run [OPTIONS] [run|resume|archive]
30 usually -t TARGET_HOST or -s SOURCE_HOST
32 Note, at source location, intentionally not executable, run and read
36 echo "top of script file:"
37 sed -n '1,/^[# ]*end command line/{p;b};q' "$0"
43 script_name
="${BASH_SOURCE[0]}"
44 script_name
="${script_name##*/}"
45 pre
="${SSH_CLIENT:+$HOSTNAME} $script_name:"
46 m
() { if $verbose; then printf "$pre%s\n" "$*"; fi; "$@"; }
47 e
() { printf "$pre%s\n" "$*"; }
48 die
() { printf "$pre%s\n" "$*" >&2; echo "exiting with status 1" >&2; exit 1; }
49 mexit
() { echo "$pre: exiting with status $1"; exit $1; }
52 if [[ -e /b
/bash_unpublished
/source-state
]]; then
53 source /b
/bash_unpublished
/source-state
56 # note q is owned by root:1000
65 dry_run
=false
# mostly for testing
67 verbose
=true
; verbose_arg
=-v
68 if [[ $INVOCATION_ID ]]; then
69 # INVOCATION_ID means running as a systemd service. we cant show progress in this case,
70 # but if we pass the arg, it will insert mbuffer into the command.
73 progress_arg
="--progress"
75 incremental_strict
=false
78 default_args_file
=/etc
/btrbk-run.conf
79 if [[ -s $default_args_file ]]; then
80 # shellcheck disable=SC2046 # we want word splitting
81 set -- $
(< $default_args_file) "$@"
82 # i havent used this feature yet, so warn about it
83 echo "$0: warning: default btrbk-run options set in $default_args_file (sleeping 5 seconds):"
84 cat $default_args_file
93 temp
=$
(getopt
-l cron
,fast
,pull-reexec
,help 23ceil
:m
:npqrs
:t
:vh
"$@") || usage
1
97 # some behaviors specific to running under cron:
98 # - skip hosts where xprintidle haven't been idle recently
99 # - if we can't ssh to 1 or more hosts, still do the rest
100 # - if we aren't MAIL_HOST and no -m or -s, just exit
105 # for the rare case we want to run multiple instances at the same time
108 # only creates the config file, does not run btrbk
109 -c) conf_only
=true
;;
110 # quit early, just btrbk, no extra remounting etc.
112 # skip various checks. when we run twice in a row for
113 # switch mail-host, no need to repeat the same checks again.
115 -i) incremental_strict
=true
;;
116 # bytes per second, suffix k m g
117 -l) rate_limit
=$2; shift ;;
118 # Comma separated mountpoints to backup. This has defaults set below.
119 -m) IFS
=, mountpoints
=($2); unset IFS
; shift ;;
123 # internal option for rerunning under newer SOURCE_HOST version.
124 --pull-reexec) pull_reexec
=true
;;
126 -q) verbose
=false
; verbose_arg
=; progress_arg
= ;;
127 # source host to receive a backup from
131 if [[ $source == *:* ]]; then
132 bbksource
="[$source]"
136 # target hosts to send to. empty is valid for just doing local
137 # snapshot. we have default hosts we will populate.
138 -t) IFS
=, targets
=($2); unset IFS
; shift ;;
140 -v) verbose
=true
; verbose_arg
=-v ;;
143 *) die
"Internal error!" ;;
151 std_preserve
="36h 14d 8w 24m"
152 q_preserve
="18h 14d 8w"
157 # This works better than the normal archive command. We have to
158 # specify the mount points, but that is what we are used to doing and
159 # we prefer it. Another difference is that archive works recursively
160 # and we don't care about that. Sometimes we may still want to run
161 # btrbk archive, but it doesn't even use the config file, so just
162 # run it directly, eg:
163 # time s btrbk -v archive /mnt/r7/amy/boot/btrbk ssh://bo/mnt/boot2/btrbk
166 std_preserve
="999h 999d 999w 999m"
167 q_preserve
="$std_preserve"
170 *) die
"untested command arg" ;;
173 if (( $# > 1 )); then
174 die
: "only 1 nonoption arg is supported"
177 if [[ -v targets
&& $source ]]; then
178 # note, this doesnt need to be the case, but
179 # we would need to think about it.
180 die
"error: -t and -s are mutually exclusive"
184 printf "$pre options: conf_only=%s\ndry_run=%s\nrate_limit=%s\nverbose=%s\ncmd_arg=%s" "$conf_only" "$dry_run" "$rate_limit" "$verbose" "$cmd_arg"
186 ### end options parsing
188 # remove path from earlier version of btrbk
189 rm -f /usr
/sbin
/btrbk
190 # note, this still works as intended if there is no /usr/bin/btrbk
191 if [[ /a
/opt
/btrbk
/btrbk
-nt /usr
/bin
/btrbk
]]; then
192 if [[ -e /b
/distro-functions
/src
/package-manager-abstractions
]]; then
193 .
/b
/distro-functions
/src
/package-manager-abstractions
200 # TODO: i wonder if there should be an option to send to the default
201 # targets, plus any given on the command line.
206 # set default targets
207 if [[ ! -v targets
&& ! $source ]]; then
209 if [[ $HOSTNAME != "$MAIL_HOST" ]]; then
210 if [[ $HOSTNAME == kd
&& $MAIL_HOST == x3
]]; then
211 if ping -q -c1 -w1 x3.office.fsf.org
&>/dev
/null
; then
212 work_host
=x3.office.fsf.org
213 elif ping -q -c1 -w1 x3wg.b8.nz
&>/dev
/null
; then
216 if [[ $work_host ]]; then
217 source_state
="$(ssh $work_host cat /a/bin/bash_unpublished/source-state)"
219 if [[ $MAIL_HOST == x3
]]; then
222 echo "MAIL_HOST=$MAIL_HOST, nothing to do"
226 echo "MAIL_HOST=$MAIL_HOST, nothing to do"
230 echo "MAIL_HOST=$MAIL_HOST, nothing to do"
240 kw|kd|frodo|x2|x3|sy
) : ;;
242 die
"error: no default targets for this host, use -t"
254 if [[ $
(dig +short @
10.2.0.1 -x 10.2.0.2 2>&1 ||
:) == kd.b8.nz.
]] \
255 && ip n show
10.2.0.1 |
grep .
&>/dev
/null
; then
257 elif ping -q -c1 -w1 hal.office.fsf.org
&>/dev
/null \
258 && ip n show
192.168.0.26 |
grep .
&>/dev
/null
; then
264 if ! $kd_spread; then
266 if ping -q -c1 -w1 x3.office.fsf.org
&>/dev
/null
; then
267 targets
+=(x3.office.fsf.org
)
269 targets
+=(x3wg.b8.nz
)
272 # temporarily disabled while doing recovery
273 # for h in frodo kd; do
275 if [[ $HOSTNAME == "$h" ]]; then
280 for h
in x2 x3 sy
; do
281 if [[ $HOSTNAME == "$h" ]]; then
284 if ping -q -c1 -w1 $h.b8.nz
&>/dev
/null
; then
286 elif ping -q -c1 -w1 ${h}w.b8.nz
&>/dev
/null
; then
287 targets
+=(${h}w.b8.nz
)
291 if ping -q -c1 -w1 iank.vpn.office.fsf.org
&>/dev
/null
; then
292 targets
+=(iank.vpn.office.fsf.org
)
296 for h
in x2 x3 kw
; do
297 if [[ $HOSTNAME == "$h" ]]; then
300 if ping -q -c1 -w1 $h.office.fsf.org
&>/dev
/null
; then
301 targets
+=($h.office.fsf.org
)
311 if [[ -v targets
]]; then
312 echo "targets: ${targets[*]}"
315 if [[ $source ]]; then
316 echo "source: $source"
319 if [[ ${mountpoints[0]} ]]; then
320 for mp
in ${mountpoints[@]}; do
321 if [[ -e /nocow
/btrfs-stale
/$mp ]]; then
322 die
"error: $mp is stale, mount-latest-subvol first"
326 # set default mountpoints
327 if [[ ${targets[0]} == tp
]]; then
333 if [[ $source ]]; then
334 source_state
="$(ssh $source cat /a/bin/bash_unpublished/source-state)"
336 source_host
="$(ssh $source cat /etc/hostname)"
337 if [[ $source_host == "$MAIL_HOST" ]]; then
338 prospective_mps
+=(/o
)
340 if [[ $source_host == "$HOST2" ]]; then
341 prospective_mps
+=(/a
/ar /qr
/q
)
344 if [[ $HOSTNAME == "$MAIL_HOST" ]]; then
345 prospective_mps
+=(/o
)
347 if [[ $HOSTNAME == "$HOST2" ]]; then
348 prospective_mps
+=(/a
/ar /qr
/q
)
351 # note: put q last just in case its specific retention options were to
352 # affect other config sections. I havent tested if that is the case.
356 for mp
in ${prospective_mps[@]}; do # default mountpoints to sync
357 if [[ -e /nocow
/btrfs-stale
/$mp ]]; then
358 e
"warning: $mp stale, not adding to default mountpoints"
361 if awk '{print $2}' /etc
/fstab |
grep -xF $mp &>/dev
/null
; then
367 echo "mountpoints: ${mountpoints[*]}"
369 ##### end command line parsing ########
371 if ! $fast && [[ $source ]]; then
372 if [[ $
(ssh $source ps
--no-headers -o comm 1) == systemd
]]; then
373 status
=$
(ssh $source systemctl is-active btrbk.service
) ||
: # normally returns 3
375 inactive|failed
) : ;;
377 echo "$0: error: cron btrbk is running on source. exiting out of caution"
383 # pull_reexec stops us from getting into an infinite loop if there is some
384 # kind of weird problem
386 for m
in "${mountpoints[@]}"; do
387 if [[ $m == /a
]]; then
392 if ! $pull_reexec && [[ $source ]] && $pulla ; then
394 m rsync
-ra $source:/usr
/local
/bin
/{mount-latest-subvol
,check-subvol-stale
} /usr
/local
/bin
395 m rsync
-ra $source:/usr
/local
/lib
/err
/usr
/local
/lib
396 m scp
$source:/a
/bin
/distro-setup
/btrbk-run
$tmpf
397 if ! diff -q $tmpf ${BASH_SOURCE[0]}; then
398 e
"found different version on host $source. reexecing"
399 install -T $tmpf /usr
/local
/bin
/btrbk-run
400 m
/usr
/local
/bin
/btrbk-run
--pull-reexec "${orig_args[@]}"
406 if ! command -v btrbk
&>/dev
/null
; then
407 die
"error: no btrbk binary found"
411 # if our mountpoints are from stale snapshots,
412 # it doesn't make sense to do a backup.
413 m check-subvol-stale
${mountpoints[@]} || die
"found stale mountpoints in ${mountpoints[*]}"
415 # for an initial run, btrbk requires the dir to exist.
416 mkdir
-p /mnt
/{root
,o
}/btrbk
418 local_zone
=$
(date +%z
)
420 if [[ $source ]]; then
424 if ! zone
=$
(ssh root@
$source date +%z
); then
426 echo "$0: warning: failed to ssh to root@$source"
428 die failed to
ssh to root@
$source
431 if [[ $zone != "$local_zone" ]]; then
432 die
"error: dont confuse yourself with multiple time zones. $h has different timezone than localhost"
439 min_idle_ms
=$
((1000 * 60 * 15))
440 for h
in ${targets[@]}; do
441 if $fast ||
$conf_only; then
442 # Use some typical values in this case
443 root_size
=$
(( 1024 * 1024 * 2000 )) #2tb
446 elif remote_str
=$
(timeout
-s 9 6 ssh root@
$h "mkdir -p /mnt/root/btrbk /mnt/o/btrbk && date +%z && df --output=size,pcent / | tail -n1"); then
447 mapfile
-t tmp_array
<<<"$remote_str"
448 zone
="${tmp_array[0]}"
449 IFS
=" " read -r root_size percent_used
<<<"${tmp_array[1]}"
450 percent_used
=${percent_used%%%}
452 if (( ${#tmp_array[@]} != 2 )); then
453 die
"error: didnt get 2 lines in test ssh to target $h. investigate"
455 case $percent_used in
456 [0-9]|
[1-9][0-9]) : ;;
458 die
"error: didnt get percent disk use in test ssh to target $h. investigate"
466 # we may be booted into a bootstrap fs or something
467 min_root_kb
=$
(( 1024 * 1024 * 200 )) # 200 gb
468 if (( root_size
< min_root_kb
)); then
472 if (( percent_used
>= 98 )); then
473 die
"error: filesystem on target $h is $percent_used % full"
476 # This is a separate ssh because xprintidle can fail and thats ok.
477 if $cron && idle_ms
=$
(timeout
-s 9 6 ssh $h DISPLAY
=:0 xprintidle
); then
478 if (( idle_ms
< min_idle_ms
)); then
480 # Ignore this host. i sometimes use a non-main machine for
481 # testing or web browsing, knowing that everything will be wiped
482 # by the next backup, but I dont want it to happen as Im using
484 e
"warning: $h: active X session in the last 15 minutes, skipping for now"
489 if [[ $zone != "$local_zone" ]]; then
490 die
"error: dont confuse yourself with multiple time zones. $h has different timezone than localhost"
493 if [[ ! ${sshable[*]} ]] || { ! $cron && [[ ${sshfail[*]} ]]; }; then
494 die
"failed to ssh to hosts: ${sshfail[*]}"
496 if [[ ${sshfail[*]} ]]; then
498 e
"error: failed to ssh to ${sshfail[*]} but continuing with other hosts"
500 targets
=(${sshable[@]})
505 cat >/etc
/btrbk
$conf_suf.conf
<<EOF
506 ssh_identity /q/root/h
507 #ssh_identity /root/.ssh/home
509 # Just a guess that local7 is a good facility to pick.
510 # It's a bit odd that the transaction log has to be logged to
511 # a file or syslog, while other output is sent to std out.
512 # The man does not mention a way for them to be together, but
513 # I dunno if setting a log level like warn might also output
515 transaction_syslog local7
518 #stream_compress zstd
520 # so we only run one at a time
521 lockfile /var/lock/btrbk$conf_suf.lock
523 # default format of short does not accomidate hourly preservation setting
524 timestamp_format long-iso
526 # only make a snapshot if things have changed
527 snapshot_create onchange
528 # I could make this different from target_preserve,
529 # if one disk had less space.
530 # for now, keeping them equal.
531 snapshot_preserve $std_preserve
532 snapshot_preserve_min 2h
534 # so, total backups = ~58
535 target_preserve $std_preserve
536 target_preserve_min 2h
538 # i tried this when investigating: clone no source subvolume found error
539 #incremental_prefs sro:1 srn:1 sao san:1 aro:1 arn:1
541 # if something fails and it's not obvious, try doing
542 # btrbk -l debug -v dryrun
544 rate_limit $rate_limit
547 if $incremental_strict; then
548 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
556 # q has sensitive data i dont want to backup for so long
557 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
558 snapshot_preserve $q_preserve
559 snapshot_preserve_min 2h
561 target_preserve $q_preserve
562 target_preserve_min 2h
570 mp_count
=${#mountpoints[@]}
571 for (( i
=0; i
< mp_count
- 1 ; i
++ )); do
572 if [[ ${mountpoints[i]} == /q
]]; then
573 unset "mountpoints[i]"
578 for m
in ${mountpoints[@]}; do
589 if [[ $source ]]; then
590 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
591 volume ssh://$bbksource$vol
595 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
596 target send-receive $vol/btrbk
599 if (( ${#targets[@]} )); then
600 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
605 for tg
in ${targets[@]}; do
607 if [[ $tg == *:* ]]; then
610 cat >>/etc
/btrbk
$conf_suf.conf
<<EOF
611 target send-receive ssh://$tg$vol/btrbk
617 # todo: umount first to ensure we don't have any errors
618 # todo: do some kill fuser stuff to make umount more reliable
628 m btrbk
-c /etc
/btrbk
$conf_suf.conf
-v -n $cmd_arg
631 # -q and just using the syslog option seemed nice,
632 # but it doesn't show when a send has a parent and when it doesn't.
633 m btrbk
-c /etc
/btrbk
$conf_suf.conf
$preserve_arg $verbose_arg $progress_arg $cmd_arg
639 # todo: tp not valid anymore.
640 # if we have it, sync to systems which don't
641 if mountpoint
$rsync_mountpoint >/dev
/null
; then
642 for tg
in ${targets[@]}; do
645 dirs=(/p
/c
/machine_specific
/tp
)
646 for x
in /p
/c
/machine_specific
/*.hosts
; do
647 if grep -qxF $tg $x; then
651 m rsync
-aSAXPH --specials --devices --delete --relative ${dirs[@]} root@
$tg:/
658 for mp
in "${mountpoints[@]}"; do
659 subvols
+=("${mp##*/}")
661 if [[ $source ]]; then
662 m mount-latest-subvol
"${subvols[@]}"
664 for tg
in ${targets[@]}; do
665 m
/a
/exe
/mount-latest-remote
"$tg" "${subvols[@]}" || ret
=$?
669 if [[ $ret == 0 ]]; then
670 for tg
in ${targets[@]}; do
672 #ssh root@$tg /a/exe/mail-backup-clean
678 # todo: move variable data we don't care about backing up
679 # to /nocow and symlink it.
682 # background on btrbk timezones. with short/long, timestamps use local time.
683 # for long, if your local time moves backwards, by moving timezones or
684 # for an hour when daylight savings changes it, you will temporarily get
685 # a more aggressive retention policy for the overlapping period, and
686 # vice versa for the opposite timezone move. The alternative is using
687 # long-iso, which puts timezone info into the timestamp, which means
688 # that instead of shifting time, you shift the start of day/week/month
689 # which is used for retention to your new local time, which means for
690 # example, if you moved forward by 8 hours, the daily/weekly/monthly
691 # retention will be 8 hours more aggressive since midnight is at a new
692 # time, unless you fake the timzeone using the TZ env variable.
693 # However, in the short term, there will be no inconsistencies.
694 # I don't see any problem with shifting when the day starts for
695 # retention, so I'm using long-iso.
697 # note to create a long-iso timestamp: date +%Y%m%dT%H%M%S%z