X-Git-Url: https://iankelling.org/git/?p=automated-distro-installer;a=blobdiff_plain;f=myfai-chboot-local;h=d8d484658bc1d8895319f32de764a84a5927bec2;hp=9ba87dcd5ff8e2a88aa61308a45a1c35289d9c6c;hb=HEAD;hpb=1885f9677fdf2bfeac95285cf13a7d60273d096a diff --git a/myfai-chboot-local b/myfai-chboot-local index 9ba87dc..7dea8f2 100755 --- a/myfai-chboot-local +++ b/myfai-chboot-local @@ -1,49 +1,204 @@ #!/bin/bash +# This file is part of Ian Kelling's automated-distro-installer +# Copyright (C) 2024 Ian Kelling + +# This program is free software; you can redistribute it and/or +# modify it under the terms of the GNU General Public License +# as published by the Free Software Foundation; either version 2 +# of the License, or (at your option) any later version. + +# This program is distributed in the hope that it will be useful, +# but WITHOUT ANY WARRANTY; without even the implied warranty of +# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the +# GNU General Public License for more details. + +# You should have received a copy of the GNU General Public License +# along with this program; if not, write to the Free Software +# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA. + + +[[ $EUID == 0 ]] || exec sudo -E "${BASH_SOURCE[0]}" "$@" + +set -x set -eE -o pipefail trap 'echo "$0:$LINENO:error: \"$BASH_COMMAND\" returned $?" >&2' ERR -case $1 in - -h|--help) - echo "see help from myfai-chboot" - exit 0 - ;; -esac +pre="${0##*/}:" +m() { printf "$pre %s\n" "$*"; "$@"; } +e() { printf "$pre %s\n" "$*"; } +err() { echo "[$(date +'%Y-%m-%d %H:%M:%S%z')]: $pre: $*" >&2; } -[[ $EUID == 0 ]] || exec sudo "${BASH_SOURCE}" "$@" +usage() { + cat <&2; exit 1; } + +temp=$(getopt -l help,no-r hSi "$@") || usage 1 +eval set -- "$temp" +while true; do + case $1 in + -S) + fai_action=sysinfo + fai_reboot_arg= + ;; + -i) #inventory + fai_action=inventory + fai_reboot_arg= + ;; + -k) + kgped16=true + ;; + -b) + bond=true + ;; + --no-r) + fai_reboot_arg= + ;; + -h|--help) usage ;; + --) shift; break ;; + *) echo "$0: unexpected args: $*" >&2 ; usage 1 ;; + esac + shift +done +read -r host <<<"$@" +readonly host rm -f /srv/tftp/fai/pxelinux.cfg/* if [[ ! $1 ]]; then - exit 0 + echo "$0: clearing pxe config and exiting" + exit 0 fi -host=$1 -ip=$(getent hosts $host | awk '{print $1}') +# somewhat duplicated in brc hostip() +case $host in + default) : ;; + [0-9:]) + hostip=$host + ;; + *) + hostip=$(getent ahostsv4 "$host" | awk '{ print $1 }' | head -n1) + ;; +esac + +if [[ $hostip ]]; then + + # assuming ipv4, or else we might need to deal with multiple addresses + # in an ipv4 + ipv6 network. + my_ip=$(ip -4 route get $hostip | sed -nr 's,^.*src\s+(\S+).*,\1,p') + if [[ ! $my_ip || $my_ip =~ [[:space:]] ]]; then + echo "$0: error: failed to get \$my_ip, got: $my_ip" + exit 1 + fi +else + my_ip=$(ip r show default | sed -r 's/.*via ([^ ]*).*/\1/' | head -n1) +fi + +if [[ $host == default ]]; then + ip='*' +elif [[ $host == [0-9]*.[0-9]*.[0-9]*.[0-9]* ]]; then + ip=$host/32 +else + type -t host &>/dev/null || apt-get -y install dnsutils + ip=$(host $host | sed -rn 's/^\S+ has address //p;T;q' ||:) + if [[ ! $ip || $ip =~ [[:space:]] ]]; then + echo "$0: error: failed to get \$ip, got: $ip" + exit 1 + fi + ip=$ip/32 + echo "$0: found ip of $host: $ip" +fi + +if modprobe nfsd &>/dev/null; then + std_arg="-u nfs://faiserver/srv/fai/config" + # nfsv4 wont do rw with overlayfs yet + # https://lists.uni-koeln.de/pipermail/linux-fai/2017-March/011641.html + root_arg="$my_ip:/srv/fai/nfsroot:vers=3" + # fai-setup without -e sets the ip to the local_ip/local_network, eg 192.168.1.3/24 + # I restrict it to one ip as simple but imperfect access control. + + # we may chattr +i /etc/exports if we dun want it modified + # for example, if we made these exports more widely available + # while doing multiple installs or a recovery. + if [[ -w /etc/exports ]]; then + sed -ri --follow-symlinks '\%^/srv/fai/%d' /etc/exports + cat >>/etc/exports < + Deny from all + Allow from $ip + +EOF +fi + + -std_arg="-u nfs://faiserver/srv/fai/config" -e fai-chboot -Iv $std_arg default # set it to default to get a val out of it next -kernel=$(fai-chboot -L '^default$' | awk '{print $3}') # man page doesn't explain this, but this deletes & thus disables # all chboot systems. -type -t host &>/dev/null || apt-get -y install dnsutils -gateway_ip=$(route -n | sed -rn 's/^0\.0\.0\.0\s+(\S+).*/\1/p') -my_ip=$(host faiserver $gateway_ip | sed -rn 's/^\S+ has address //p') -k_args=$(fai-chboot -L '^default$' | \ - sed -r "s/^(\S+\s+){3}(.*root=)(.*)/\2$my_ip:\3/") -rm -f /srv/tftp/fai/pxelinux.cfg/* -e fai-chboot -k "$k_args" -v -f verbose,sshd,createvt,reboot $std_arg $kernel "$host" - -# fai-setup without -e sets the ip to the local_ip/local_network, eg 192.168.1.3/24 -# I restrict it to one ip as simple but imperfect access control. -sed -ri --follow-symlinks '\%^/srv/fai/%d' /etc/exports -cat >>/etc/exports <> /srv/fai/config/class/LAST.var