2 # Copyright (C) 2016 Ian Kelling
4 # Licensed under the Apache License, Version 2.0 (the "License");
5 # you may not use this file except in compliance with the License.
6 # You may obtain a copy of the License at
8 # http://www.apache.org/licenses/LICENSE-2.0
10 # Unless required by applicable law or agreed to in writing, software
11 # distributed under the License is distributed on an "AS IS" BASIS,
12 # WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 # See the License for the specific language governing permissions and
14 # limitations under the License.
16 this_file
="$(readlink -f -- "${BASH_SOURCE[0]}")"
19 [[ $EUID == 0 ]] ||
exec sudo
-E "$this_file" "$@"
21 source /usr
/local
/lib
/err
25 Usage: ${0##*/} [OPTIONS] [SUBVOLUMES]
27 -h|--help Print help and exit.
28 -f|--force Use kill -9 to try fixing unmount errors
29 -v|--verbose Be more verbose
32 Note: In git this is not not executable because it's meant to be installed
33 using ./install-my-scripts
35 Note: Uses util-linux getopt option parsing: spaces between args and
36 options, short options can be combined, options before args.
44 while read -r line
; do
46 grep -xFq "$line" "$file" ||
tee -a "$file"<<<"$line"
67 if ! mountpoint
-q $dir; then
73 while read -r start mpoint end
; do
74 l
="$start $mpoint $end"
75 # kill off any lines that duplicate the mount point.
76 sed --follow-symlinks -ri "\%$l%b;\%^\s*\S+\s+$mpoint\s%d" /etc
/fstab
82 for m
in ${my_pids[@]}; do
84 echo "$0: error: pids to kill includes our pid or a parent. ps output:" >&2
95 if pids
=$
(timeout
4 lsof
-t $dir); then
97 timeout
4 lsof
-w $dir
101 # fuser will find open sockets that lsof won't, for example from gpg-agent.
102 # note: -v shows kernel processes, which then doesn't return true when we want
103 if pids
=$
(timeout
4 fuser
-m $dir 2>/dev
/null
); then
106 fuser
-$sig -mvk $dir
109 if ! $found_pids; then
117 if mountpoint
-q $dir; then
118 if m umount
-R $dir; then
121 if ! kill-dir TERM TERM TERM INT INT HUP HUP TERM TERM TERM INT INT HUP HUP
; then
122 if $force; then kill-dir KILL
; fi
125 if m umount
-R $dir; then
128 echo "$0: failed to umount $dir"
136 # duplicated in check-subvol
137 # Reassign $1 var from /dev/dm- to corresponding /dev/mapper/
141 if [[ $devref == /dev
/dm-
* ]]; then
142 for mapdev
in /dev
/mapper
/*; do
143 if [[ $
(readlink
-f $mapdev) == "$devref" ]]; then
152 ##### begin command line parsing ########
154 # you can remove this if you do not have options which can have args with spaces or empty.
158 temp
=$
(getopt
-l help,force
,verbose hfv
"$@") || usage
1
162 -f|
--force) force
=true
;;
163 -v|
--verbose) verbose
=true
;;
166 *) echo "$0: unexpected args: $*" >&2 ; usage
1 ;;
174 all_vols
=(q a o i
ar qd qr
)
177 ##### end command line parsing ########
181 ##### begin setup fstab for subvols we care about ######
183 if [[ -e /mnt
/root
/root2-crypttab
]]; then
184 tu
/etc
/crypttab
</mnt
/root
/root2-crypttab
185 while read -r mapper_dev _
; do
186 if [[ ! -e /dev
/mapper
/$mapper_dev ]]; then
187 m cryptdisks_start
$mapper_dev
189 done < <(cat /mnt
/root
/root2-crypttab
)
191 if [[ -e /mnt
/root
/root2-fstab
]]; then
192 tu
/etc
/fstab
</mnt
/root
/root2-fstab
197 root_dev
=$
(awk '$2 == "/" {print $1}' /etc
/mtab
)
199 o_dev
=$
(awk '$2 == "/mnt/o" {print $1}' /etc
/mtab
)
203 # root2_dev=$(awk '$2 == "/mnt/root2" {print $1}' /etc/mtab)
204 # mapper-dev root2_dev
205 # # dont bother with the above for crypt2_dev
206 # crypt2_dev=$root2_dev
209 if cryptsetup status
$root_dev &>/dev
/null
; then
211 else # if we are in a recovery boot, find the next best crypt device
213 # todo: I think I had an idea to not setup /o in this case,
214 # but never finished implementing it
215 for dev
in $
(dmsetup
ls --target crypt |
awk '{print $1}'); do
217 if awk '{print $1}' /etc
/mtab |
grep -Fx $dev &>/dev
/null
; then
226 # dont tax the cpus of old laptops
227 if (( $
(nproc
) > 2)); then
228 mopts
+=,compress=zstd
232 $crypt_dev /a btrfs noatime,subvol=a$mopts 0 0
237 # ssh and probably some other things care about parent directory
238 # ownership, and ssh doesn\'t allow any group writable parent
239 # directories, so we are forced to use a directory structure similar
240 # to home directories
241 fa
=(/mnt
/root
/btrbk
/q.
*); f
=${fa[0]}
244 $crypt_dev /q btrfs noatime,subvol=q,gid=1000$mopts 0 0
245 $crypt_dev /qd btrfs noatime,subvol=qd,gid=1000$mopts 0 0
246 /q/p /p none bind$mopts 0 0
250 fa
=(/mnt
/root
/btrbk
/qr.
*); f
=${fa[0]}
253 $crypt_dev /qr btrfs noatime,subvol=qr$mopts 0 0
257 fa
=(/mnt
/root
/btrbk
/ar.
*); f
=${fa[0]}
260 $crypt_dev /ar btrfs noatime,subvol=ar,uid=1000,gid=1000$mopts 0 0
265 fa
=(/mnt
/o
/btrbk
/o.
*); f
=${fa[0]}
267 if [[ $o_dev != "$root_dev" ]]; then
269 $o_dev /o btrfs noatime,subvol=o$mopts 0 0
273 /o/m /m none bind$mopts 0 0
278 ##### end setup fstab for subvols we care about ######
280 ### begin get pids that this program depends on so we dont kill them
284 while [[ ${my_pids[-1]} != 1 && ${my_pids[-1]} != "${my_pids[-2]}" && $count -lt $loop_limit ]]; do
286 p=$(ps -p ${my_pids[-1]} -o ppid=)
287 if [[ $p == 0 || ! $p ]]; then
292 ### end get pids that this program depends on so we dont kill them
294 for vol in ${all_vols[@]}; do
296 if ! awk '$3 == "btrfs
" {print $2}' /etc/fstab | grep -xF $d &>/dev/null; then
301 ##### begin building up list of bind mounts ######
302 binds=() # list of bind mounts
306 for r in ${roots[@]}; do
307 # eg. when r=/q/p, for lines like
308 # /q/p /p none bind 0 0
310 new_roots+=("$
(sed -rn "s#^$r/\S+\s+(\S+)\s+none\s+(\S+,|)bind[[:space:],].*#\1#p" /etc
/fstab
)")
312 (( ${#new_roots} )) || break
313 binds+=(${new_roots[@]})
314 # roots is used to recursively find binds of binds if they exist.
315 roots=( ${new_roots[@]} )
317 ##### end building up list of bind mounts ######
320 # if latest is already mounted, make sure binds are mounted and move on
321 m check-subvol-stale $d
322 # populated by check-subvol-stale if stale
323 if ! fresh_snap=$(cat /nocow/btrfs-stale/$vol 2>/dev/null); then
326 for b in ${binds[@]}; do
327 if mountpoint -q $b; then
329 if [[ $did != "$bid" ]]; then
338 ## not using arbtt at the moment
339 # if [[ $vol == q ]]; then
340 # ## allow to fail, user might not be logged in
341 # x sudo -u $(id -nu 1000) XDG_RUNTIME_DIR=/run/user/1000 systemctl --user stop arbtt ||:
345 for dir in $(echo $d ${binds[*]}\ |tac -s\ ); do
349 # if we unmounted some but not all, restore them and move on
350 if ! $umount_ret; then
351 for dir in ${unmounted[@]}; do
357 #### begin dealing with leaf vols ####
359 ### begin getting root_dir
360 ### this is duplicated in check-subvol-stale
362 dev=$(sed -rn "s
,^\s
*([^
#]\S*)\s+$d\s.*,\1,p" /etc/fstab /etc/mtab|head -n1)
364 # note, we need $dev because $d might not be mounted, and we do this loop
365 # because the device in fstab for the rootfs can be different.
366 for devx
in $
(btrfs fil show
$dev|
sed -rn 's#.*path (\S+)$#\1#p'); do
367 if [[ $devx == dm-
* ]]; then
372 root_dir
=$
(sed -rn "s,^\s*$devx\s+(\S+).*\bsubvolid=[05]\b.*,\1,p" /etc
/mtab
/etc
/fstab|
head -n1)
373 if [[ $root_dir ]]; then
378 if [[ ! $root_dir ]]; then
379 echo "$0: error could not find root subvol mount for $dev" >&2
382 ### end getting root_dir
385 if [[ -e $vol ]]; then
386 if [[ $vol == qd
]]; then
389 leaf
=$vol.leaf.$
(date +%Y-
%m-
%dT
%H
:%M
:%S
%z
)
391 m btrfs property
set -ts $leaf ro true
393 ### begin check if leaf is different, delete it if not ###
394 parentid
=$
(btrfs sub show
$leaf |
awk '$1 == "Parent" && $2 == "UUID:" {print $3}')
396 bsub
= # base subvolume
397 # go in reverse order as its more likely to be at the end
398 for ((i
=${#bsubs[@]}-1; i
>=0; i--
)); do
399 if [[ $parentid == $
(btrfs sub show
${bsubs[i]} |
awk '$1 == "UUID:" {print $2}') ]]; then
405 # in testing, same subvol is 136 bytes. allow some overhead. 32 happens sometimes under systemd.
407 # EPIPE 32 Broken pipe
408 lines
=$
(btrfs send
--no-data -p $bsub $leaf | btrfs receive
--dump |
head -n 100 |
wc -l ||
[[ $?
== 141 ||
${PIPESTATUS[0]} == 32 ]])
409 if [[ $lines == 0 ]]; then
410 # example output of no differences:
411 # snapshot ./qrtest uuid=c41ff6b7-0527-f34d-95ac-190eecf54ff5 transid=2239 parent_uuid=64949e1b-4a3e-3945-9a8e-cd7b7c15d7d6 parent_transid=2239
412 echo suspected identical
: $bsub $leaf
413 x btrfs sub del
$leaf
416 ### end check if leaf is different, delete it if not ###
418 ## begin expire leaf vols ##
419 leaf_vols
=($vol.leaf.
*)
420 count
=${#leaf_vols[@]}
421 leaf_limit_time
=$
(( EPOCHSECONDS
- 60*60*24*60 )) # 60 days
422 leaf_new_limit_time
=$
(( EPOCHSECONDS
- 60*60*24 * 5 )) # 5 days this
423 # goes backwards from oldest. leaf_new_limit_time is a safety
424 # measure to ensure we don't delete very recent leafs.
425 for leaf
in ${leaf_vols[@]}; do
426 leaf_time
=$
(date -d ${leaf#"$vol".leaf.} +%s
)
427 if (( leaf_limit_time
> leaf_time ||
( leaf_new_limit_time
> leaf_time
&& count
> 30 ) )); then
428 x btrfs sub del
$leaf
433 ## end expire leaf vols ##
435 #### end dealing with leaf vols ####
437 # Note, we make a few assumptions in this script, like
438 # $d was not a different subvol id than $vol, and
439 # things otherwise didn't get mounted very strangely.
440 m btrfs sub snapshot
$fresh_snap $vol
441 for dir
in $d ${binds[@]}; do
445 ## arbtt disabled for now
446 # if [[ $vol == q ]]; then
447 # # maybe this will fail if X is not running
448 # x sudo -u $(id -nu 1000) XDG_RUNTIME_DIR=/run/user/1000 systemctl --user start arbtt ||:
451 stale_dir
=/nocow
/btrfs-stale
457 for dir
in /mnt
/r
7/amy
/{root
/root
,boot
/boot
}_ubuntubionic
/mnt
/{root
2/root
,boot
2/boot
}_ubuntubionic
; do
460 if [[ ! -d $root_dir ]]; then
461 # this only exists on host kd currently
464 # if latest is already mounted, make sure binds are mounted and move on
465 m check-subvol-stale
-p $dir
466 # populated by check-subvol-stale if stale
467 if ! fresh_snap
=$
(cat /nocow
/btrfs-stale
/$vol 2>/dev
/null
); then
470 if [[ -d $dir ]]; then
471 if ! kill-dir TERM TERM TERM INT INT HUP HUP TERM TERM TERM INT INT HUP HUP
; then
472 if $force; then kill-dir KILL
; fi
476 m btrfs sub snapshot
$fresh_snap $dir
477 rm -f /nocow
/btrfs-stale
/$vol
481 echo "$0: exit status $ret. see error above"