iankelling.org
/
git
/
distro-setup
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
minor fixes
[distro-setup]
/
conflink
diff --git
a/conflink
b/conflink
index b24427fe40737ef5cafff1f96895cc94e191873e..55d7a02489dc6b1d1ae3cbf7d0f3152778d73215 100755
(executable)
--- a/
conflink
+++ b/
conflink
@@
-1,17
+1,52
@@
#!/bin/bash
source /a/bin/errhandle/err
#!/bin/bash
source /a/bin/errhandle/err
+errcatch-cleanup() {
+ echo 1 >~/.local/conflink
+}
+
+
+usage() {
+ cat <<EOF
+Usage: ${0##*/} [OPTIONS]
+Link or otherwise install configuration files.
+
+-f For fast. Dont use lnf, use ln -sf. Good for updating existing files.
+EOF
+ exit $1
+}
+
m() {
echo "$*"
"$@"
}
s() { sudo "$@"; }
m() {
echo "$*"
"$@"
}
s() { sudo "$@"; }
+
lnf() { /a/exe/lnf "$@"; }
lnf() { /a/exe/lnf "$@"; }
+# error prone
+#f=~/.local/conflink
+# fast=false
+# if [[ -e $f ]] && (( $(stat -c %Y $f) > $now - 60*60*24 )); then
+# fast=true
+# fi
+if [[ $1 == -f ]]; then # f for fast
+ fast=true
+ shift
+elif
+ [[ $1 ]]; then
+ echo "error: unrecognized arguments" >&2
+ exit 0
+fi
+
+if $fast; then
+ lnf() { ln -sf "$@"; }
+fi
shopt -s nullglob
shopt -s nullglob
-shopt -s extglob # note, already set with bash -l
+shopt -s extglob
+shopt -s dotglob
# If we make a link back to the root, we stop going deeper into subdir_files.
# This makes it so we can do subdir directories.
# If we make a link back to the root, we stop going deeper into subdir_files.
# This makes it so we can do subdir directories.
@@
-25,12
+60,14
@@
subdir-link-r() {
targets=( "$2"/!(.git|..|.) )
else
for f in "$1"/!(.git|..|.); do
targets=( "$2"/!(.git|..|.) )
else
for f in "$1"/!(.git|..|.); do
- [[ -d $f ]] && targets+=("$f") ||:
+ if [[ -d $f ]]; then targets+=("$f"); fi
done
fi
done
fi
- local below="$( readlink -f "$root/..")"
+ local below
+ below="$( readlink -f "$root/..")"
for path in "${targets[@]}"; do
for path in "${targets[@]}"; do
- local fullpath="$(readlink -f "$path")"
+ local fullpath
+ fullpath="$(readlink -f "$path")"
#e $fullpath $below # debug
if [[ -f $path || $(dirname $(readlink -f "$fullpath")) == "$below" ]]; then
m lnf -T "$path" "$HOME/${path#$root/}"
#e $fullpath $below # debug
if [[ -f $path || $(dirname $(readlink -f "$fullpath")) == "$below" ]]; then
m lnf -T "$path" "$HOME/${path#$root/}"
@@
-41,14
+78,23
@@
subdir-link-r() {
}
}
-
common-file-setup() {
common-file-setup() {
- local dir fs x bdir f dst
+ local dir fs x f systemd_reload
+ systemd_reload=false
for dir in "$@"; do
fs=$dir/filesystem
for dir in "$@"; do
fs=$dir/filesystem
- if [[ -e $fs && $USER =~ ^iank?$ ]]; then
+ if [[ -e $fs && $user =~ ^iank?$ ]]; then
+ # this could be done with rsync, something like this,
+ # but I haven't looked at the symlinks.
+ # s rsync -n -ahviSAXPH --specials --devices --chown=root:root --chmod=g-s $fs /
# note, symlinks get resolved, not copied.
# note, symlinks get resolved, not copied.
- s tar --mode=g-s --owner=0 --group=0 -cz -C $fs . | s tar -xz -C /
+ if s tar --anchored \
+ --exclude etc/dovecot/users \
+ --exclude etc/exim4/passwd \
+ --exclude etc/exim4/*.pem \
+ --mode=g-s --owner=0 --group=0 -cz -C $fs . | s tar -dz -C / | grep /etc/systemd &>/dev/null; then
+ systemd_reload=true
+ fi
fi
if [[ -e $dir/subdir_files ]]; then
fi
if [[ -e $dir/subdir_files ]]; then
@@
-58,9
+104,13
@@
common-file-setup() {
(( ${#x[@]} >= 1 )) || continue
m lnf ${x[@]} ~
done
(( ${#x[@]} >= 1 )) || continue
m lnf ${x[@]} ~
done
+ if $systemd_reload; then
+ m s systemctl daemon-reload
+ fi
}
}
-all_dirs=({/a/c,/p/c}{,/machine_specific/$HOSTNAME})
+user=$(id -un)
+all_dirs=({/a/bin/ds,/p/c}{,/machine_specific/$HOSTNAME})
# note, we assume a group of hosts does not have the
# same name as a single host, which is no problem on our scale.
for x in /p/c/machine_specific/*.hosts /a/bin/ds/machine_specific/*.hosts; do
# note, we assume a group of hosts does not have the
# same name as a single host, which is no problem on our scale.
for x in /p/c/machine_specific/*.hosts /a/bin/ds/machine_specific/*.hosts; do
@@
-68,10
+118,14
@@
for x in /p/c/machine_specific/*.hosts /a/bin/ds/machine_specific/*.hosts; do
done
c_dirs=(/a/c{,/machine_specific/$HOSTNAME})
done
c_dirs=(/a/c{,/machine_specific/$HOSTNAME})
-case $
USER
in
+case $
user
in
iank)
iank)
- files=(/p/c/machine_specific/*/filesystem/etc/ssh/*_key)
- if [[ -e $files ]]; then
+ files=(/p/c/machine_specific/*/filesystem/etc/ssh/*_key
+ /p/c/filesystem/etc/openvpn/client/*.key
+ /p/c/filesystem/etc/openvpn/easy-rsa/keys/*.key
+ /p/c/machine_specific/kw/filesystem/etc/openvpn/client/*.key
+ )
+ if [[ -e ${files[0]} ]]; then
chmod 600 ${files[@]}
fi
# p needs to go first so .ssh link is created, then config link inside it
chmod 600 ${files[@]}
fi
# p needs to go first so .ssh link is created, then config link inside it
@@
-98,17
+152,27
@@
case $USER in
if [[ -e $f ]]; then
s chmod 640 $f /etc/prometheus-pass
s chown root:www-data $f
if [[ -e $f ]]; then
s chmod 640 $f /etc/prometheus-pass
s chown root:www-data $f
- s chown root:prometheus /etc/prometheus-pass
+ if getent passwd prometheus; then
+ s chown root:prometheus /etc/prometheus-pass
+ fi
fi
##### end special extra stuff #####
fi
##### end special extra stuff #####
- sudo bash -c 'shopt -s nullglob; cd /etc/openvpn; for f in client/* server/*; do ln -sf $f .; done'
- sudo bash -c 'shopt -s nullglob; cd /etc/openvpn; for f in server/*.key client/*.key; do chmod 600 $f; done'
+ if [[ -e /etc/openvpn ]]; then
+ sudo bash -c 'shopt -s nullglob && cd /etc/openvpn && for f in client/* server/*; do ln -sf $f .; done'
+ fi
+
+ m sudo -H -u user2 "${BASH_SOURCE[0]}"
+
+ f=/a/bin/distro-setup/system-status
+ if [[ -x $f ]]; then
+ $f _
+ fi
+ echo 0 >~/.local/conflink
- m sudo -H -u traci "$BASH_SOURCE"
;;
;;
-
traci
)
+
user2
)
m common-file-setup ${c_dirs[@]}
;;
*)
m common-file-setup ${c_dirs[@]}
;;
*)