postinstall.in revision 1.12 1 #!/bin/sh
2 #
3 # $NetBSD: postinstall.in,v 1.12 2019/12/29 22:19:13 tsutsui Exp $
4 #
5 # Copyright (c) 2002-2015 The NetBSD Foundation, Inc.
6 # All rights reserved.
7 #
8 # This code is derived from software contributed to The NetBSD Foundation
9 # by Luke Mewburn.
10 #
11 # Redistribution and use in source and binary forms, with or without
12 # modification, are permitted provided that the following conditions
13 # are met:
14 # 1. Redistributions of source code must retain the above copyright
15 # notice, this list of conditions and the following disclaimer.
16 # 2. Redistributions in binary form must reproduce the above copyright
17 # notice, this list of conditions and the following disclaimer in the
18 # documentation and/or other materials provided with the distribution.
19 #
20 # THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
21 # ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
22 # TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
23 # PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
24 # BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
25 # CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
26 # SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
27 # INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
28 # CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
29 # ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
30 # POSSIBILITY OF SUCH DAMAGE.
31 #
32 # postinstall
33 # Check for or fix configuration changes that occur
34 # over time as NetBSD evolves.
35 #
36
37 #
38 # XXX BE SURE TO USE ${DEST_DIR} PREFIX BEFORE ALL REAL FILE OPERATIONS XXX
39 #
40
41 #
42 # checks to add:
43 # - sysctl(8) renames (net.inet6.ip6.bindv6only -> net.inet6.ip6.v6only)
44 # - de* -> tlp* migration (/etc/ifconfig.de*, $ifconfig_de*, ...) ?
45 # - support quiet/verbose mode ?
46 # - differentiate between failures caused by missing source
47 # and real failures
48 # - install moduli into usr/share/examples/ssh and use from there?
49 # - differentiate between "needs fix" versus "can't fix" issues
50 #
51
52 # This script is executed as part of a cross build. Allow the build
53 # environment to override the locations of some tools.
54 : ${AWK:=awk}
55 : ${DB:=db}
56 : ${GREP:=grep}
57 : ${HOST_SH:=sh}
58 : ${MAKE:=make}
59 : ${PWD_MKDB:=/usr/sbin/pwd_mkdb}
60 : ${SED:=sed}
61 : ${SORT:=sort}
62 : ${STAT:=stat}
63
64 #
65 # helper functions
66 #
67
68 err()
69 {
70 exitval=$1
71 shift
72 echo 1>&2 "${PROGNAME}: $*"
73 if [ -n "${SCRATCHDIR}" ]; then
74 /bin/rm -rf "${SCRATCHDIR}"
75 fi
76 exit ${exitval}
77 }
78
79 warn()
80 {
81 echo 1>&2 "${PROGNAME}: $*"
82 }
83
84 msg()
85 {
86 echo " $*"
87 }
88
89 mkdtemp()
90 {
91 # Make sure we don't loop forever if mkdir will always fail.
92 [ -d /tmp ] || err 2 /tmp is not a directory
93 [ -w /tmp ] || err 2 /tmp is not writable
94
95 _base="/tmp/_postinstall.$$"
96 _serial=0
97
98 while true; do
99 _dir="${_base}.${_serial}"
100 mkdir -m 0700 "${_dir}" && break
101 _serial=$((${_serial} + 1))
102 done
103 echo "${_dir}"
104 }
105
106 # Quote args to make them safe in the shell.
107 # Usage: quotedlist="$(shell_quote args...)"
108 #
109 # After building up a quoted list, use it by evaling it inside
110 # double quotes, like this:
111 # eval "set -- $quotedlist"
112 # or like this:
113 # eval "\$command $quotedlist \$filename"
114 #
115 shell_quote()
116 {(
117 local result=''
118 local arg qarg
119 LC_COLLATE=C ; export LC_COLLATE # so [a-zA-Z0-9] works in ASCII
120 for arg in "$@" ; do
121 case "${arg}" in
122 '')
123 qarg="''"
124 ;;
125 *[!-./a-zA-Z0-9]*)
126 # Convert each embedded ' to '\'',
127 # then insert ' at the beginning of the first line,
128 # and append ' at the end of the last line.
129 # Finally, elide unnecessary '' pairs at the
130 # beginning and end of the result and as part of
131 # '\'''\'' sequences that result from multiple
132 # adjacent quotes in he input.
133 qarg="$(printf "%s\n" "$arg" | \
134 ${SED:-sed} -e "s/'/'\\\\''/g" \
135 -e "1s/^/'/" -e "\$s/\$/'/" \
136 -e "1s/^''//" -e "\$s/''\$//" \
137 -e "s/'''/'/g"
138 )"
139 ;;
140 *)
141 # Arg is not the empty string, and does not contain
142 # any unsafe characters. Leave it unchanged for
143 # readability.
144 qarg="${arg}"
145 ;;
146 esac
147 result="${result}${result:+ }${qarg}"
148 done
149 printf "%s\n" "$result"
150 )}
151
152 # Convert arg $1 to a basic regular expression (as in sed)
153 # that will match the arg. This works by inserting backslashes
154 # before characters that are special in basic regular expressions.
155 # It also inserts backslashes before the extra characters specified
156 # in $2 (which defaults to "/,").
157 # XXX: Does not handle embedded newlines.
158 # Usage: regex="$(bre_quote "${string}")"
159 bre_quote()
160 {
161 local arg="$1"
162 local extra="${2-/,}"
163 printf "%s\n" "${arg}" | ${SED} -e 's/[][^$.*\\'"${extra}"']/\\&/g'
164 }
165
166 # unprefix dir
167 # Remove any dir prefix from a list of paths on stdin,
168 # and write the result to stdout. Useful for converting
169 # from ${DEST_DIR}/path to /path.
170 #
171 unprefix()
172 {
173 [ $# -eq 1 ] || err 3 "USAGE: unprefix dir"
174 local prefix="${1%/}"
175 prefix="$(bre_quote "${prefix}")"
176
177 ${SED} -e "s,^${prefix}/,/,"
178 }
179
180 # additem item description
181 # Add item to list of supported items to check/fix,
182 # which are checked/fixed by default if no item is requested by user.
183 #
184 additem()
185 {
186 [ $# -eq 2 ] || err 3 "USAGE: additem item description"
187 defaultitems="${defaultitems}${defaultitems:+ }$1"
188 eval desc_$1=\"\$2\"
189 }
190
191 # adddisableditem item description
192 # Add item to list of supported items to check/fix,
193 # but execute the item only if the user asks for it explicitly.
194 #
195 adddisableditem()
196 {
197 [ $# -eq 2 ] || err 3 "USAGE: adddisableditem item description"
198 otheritems="${otheritems}${otheritems:+ }$1"
199 eval desc_$1=\"\$2\"
200 }
201
202 # checkdir op dir mode
203 # Ensure dir exists, and if not, create it with the appropriate mode.
204 # Returns 0 if ok, 1 otherwise.
205 #
206 check_dir()
207 {
208 [ $# -eq 3 ] || err 3 "USAGE: check_dir op dir mode"
209 _cdop="$1"
210 _cddir="$2"
211 _cdmode="$3"
212 [ -d "${_cddir}" ] && return 0
213 if [ "${_cdop}" = "check" ]; then
214 msg "${_cddir} is not a directory"
215 return 1
216 elif ! mkdir -m "${_cdmode}" "${_cddir}" ; then
217 msg "Can't create missing ${_cddir}"
218 return 1
219 else
220 msg "Missing ${_cddir} created"
221 fi
222 return 0
223 }
224
225 # check_ids op type file srcfile start id [...]
226 # Check if file of type "users" or "groups" contains the relevant IDs.
227 # Use srcfile as a reference for the expected contents.
228 # The specified "id" names should be given in numerical order,
229 # with the first name corresponding to numerical value "start",
230 # and with the special name "SKIP" being used to mark gaps in the
231 # sequence.
232 # Returns 0 if ok, 1 otherwise.
233 #
234 check_ids()
235 {
236 [ $# -ge 6 ] || err 3 "USAGE: checks_ids op type file start srcfile id [...]"
237 _op="$1"
238 _type="$2"
239 _file="$3"
240 _srcfile="$4"
241 _start="$5"
242 shift 5
243 #_ids="$@"
244
245 if [ ! -f "${_file}" ]; then
246 msg "${_file} doesn't exist; can't check for missing ${_type}"
247 return 1
248 fi
249 if [ ! -r "${_file}" ]; then
250 msg "${_file} is not readable; can't check for missing ${_type}"
251 return 1
252 fi
253 _notfixed=""
254 if [ "${_op}" = "fix" ]; then
255 _notfixed="${NOT_FIXED}"
256 fi
257 _missing="$(${AWK} -v start=$_start -F: '
258 BEGIN {
259 for (x = 1; x < ARGC; x++) {
260 if (ARGV[x] == "SKIP")
261 continue;
262 idlist[ARGV[x]]++;
263 value[ARGV[x]] = start + x - 1;
264 }
265 ARGC=1
266 }
267 {
268 found[$1]++
269 number[$1] = $3
270 }
271 END {
272 for (id in idlist) {
273 if (!(id in found))
274 printf("%s (missing)\n", id)
275 else if (number[id] != value[id])
276 printf("%s (%d != %d)\n", id,
277 number[id], value[id])
278 start++;
279 }
280 }
281 ' "$@" < "${_file}")" || return 1
282 if [ -n "${_missing}" ]; then
283 msg "Error ${_type}${_notfixed}:" $(echo ${_missing})
284 msg "Use the following as a template:"
285 set -- ${_missing}
286 while [ $# -gt 0 ]
287 do
288 ${GREP} -E "^${1}:" ${_srcfile}
289 shift 2
290 done
291 msg "and adjust if necessary."
292 return 1
293 fi
294 return 0
295 }
296
297 # populate_dir op onlynew src dest mode file [file ...]
298 # Perform op ("check" or "fix") on files in src/ against dest/
299 # If op = "check" display missing or changed files, optionally with diffs.
300 # If op != "check" copies any missing or changed files.
301 # If onlynew evaluates to true, changed files are ignored.
302 # Returns 0 if ok, 1 otherwise.
303 #
304 populate_dir()
305 {
306 [ $# -ge 5 ] || err 3 "USAGE: populate_dir op onlynew src dest mode file [...]"
307 _op="$1"
308 _onlynew="$2"
309 _src="$3"
310 _dest="$4"
311 _mode="$5"
312 shift 5
313 #_files="$@"
314
315 if [ ! -d "${_src}" ]; then
316 msg "${_src} is not a directory; skipping check"
317 return 1
318 fi
319 check_dir "${_op}" "${_dest}" 755 || return 1
320
321 _cmpdir_rv=0
322 for f in "$@"; do
323 fs="${_src}/${f}"
324 fd="${_dest}/${f}"
325 _error=""
326 if [ ! -f "${fd}" ]; then
327 _error="${fd} does not exist"
328 elif ! cmp -s "${fs}" "${fd}" ; then
329 if $_onlynew; then # leave existing ${fd} alone
330 continue;
331 fi
332 _error="${fs} != ${fd}"
333 else
334 continue
335 fi
336 if [ "${_op}" = "check" ]; then
337 msg "${_error}"
338 if [ -n "${DIFF_STYLE}" -a -f "${fd}" ]; then
339 diff -${DIFF_STYLE} ${DIFF_OPT} "${fd}" "${fs}"
340 fi
341 _cmpdir_rv=1
342 elif ! rm -f "${fd}" ||
343 ! cp -f "${fs}" "${fd}"; then
344 msg "Can't copy ${fs} to ${fd}"
345 _cmpdir_rv=1
346 elif ! chmod "${_mode}" "${fd}"; then
347 msg "Can't change mode of ${fd} to ${_mode}"
348 _cmpdir_rv=1
349 else
350 msg "Copied ${fs} to ${fd}"
351 fi
352 done
353 return ${_cmpdir_rv}
354 }
355
356 # compare_dir op src dest mode file [file ...]
357 # Perform op ("check" or "fix") on files in src/ against dest/
358 # If op = "check" display missing or changed files, optionally with diffs.
359 # If op != "check" copies any missing or changed files.
360 # Returns 0 if ok, 1 otherwise.
361 #
362 compare_dir()
363 {
364 [ $# -ge 4 ] || err 3 "USAGE: compare_dir op src dest mode file [...]"
365 _op="$1"
366 _src="$2"
367 _dest="$3"
368 _mode="$4"
369 shift 4
370 #_files="$@"
371
372 populate_dir "$_op" false "$_src" "$_dest" "$_mode" "$@"
373 }
374
375 # move_file op src dest --
376 # Check (op == "check") or move (op != "check") from src to dest.
377 # Returns 0 if ok, 1 otherwise.
378 #
379 move_file()
380 {
381 [ $# -eq 3 ] || err 3 "USAGE: move_file op src dest"
382 _fm_op="$1"
383 _fm_src="$2"
384 _fm_dest="$3"
385
386 if [ -f "${_fm_src}" -a ! -f "${_fm_dest}" ]; then
387 if [ "${_fm_op}" = "check" ]; then
388 msg "Move ${_fm_src} to ${_fm_dest}"
389 return 1
390 fi
391 if ! mv "${_fm_src}" "${_fm_dest}"; then
392 msg "Can't move ${_fm_src} to ${_fm_dest}"
393 return 1
394 fi
395 msg "Moved ${_fm_src} to ${_fm_dest}"
396 fi
397 return 0
398 }
399
400 # rcconf_is_set op name var [verbose] --
401 # Load the rcconf for name, and check if obsolete rc.conf(5) variable
402 # var is defined or not.
403 # Returns 0 if defined (even to ""), otherwise 1.
404 # If verbose != "", print an obsolete warning if the var is defined.
405 #
406 rcconf_is_set()
407 {
408 [ $# -ge 3 ] || err 3 "USAGE: rcconf_is_set op name var [verbose]"
409 _rcis_op="$1"
410 _rcis_name="$2"
411 _rcis_var="$3"
412 _rcis_verbose="$4"
413 _rcis_notfixed=""
414 if [ "${_rcis_op}" = "fix" ]; then
415 _rcis_notfixed="${NOT_FIXED}"
416 fi
417 (
418 for f in \
419 "${DEST_DIR}/etc/rc.conf" \
420 "${DEST_DIR}/etc/rc.conf.d/${_rcis_name}"; do
421 [ -f "${f}" ] && . "${f}"
422 done
423 eval echo -n \"\${${_rcis_var}}\" 1>&3
424 if eval "[ -n \"\${${_rcis_var}}\" \
425 -o \"\${${_rcis_var}-UNSET}\" != \"UNSET\" ]"; then
426 if [ -n "${_rcis_verbose}" ]; then
427 msg \
428 "Obsolete rc.conf(5) variable '\$${_rcis_var}' found.${_rcis_notfixed}"
429 fi
430 exit 0
431 else
432 exit 1
433 fi
434 )
435 }
436
437 # rcvar_is_enabled var
438 # Check if rcvar is enabled
439 #
440 rcvar_is_enabled()
441 {
442 [ $# -eq 1 ] || err 3 "USAGE: rcvar_is_enabled var"
443 _rcie_var="$1"
444 (
445 [ -f "${DEST_DIR}/etc/rc.conf" ] && . "${DEST_DIR}/etc/rc.conf"
446 eval _rcie_val=\"\${${_rcie_var}}\"
447 case $_rcie_val in
448 # "yes", "true", "on", or "1"
449 [Yy][Ee][Ss]|[Tt][Rr][Uu][Ee]|[Oo][Nn]|1)
450 exit 0
451 ;;
452
453 *)
454 exit 1
455 ;;
456 esac
457 )
458 }
459
460 # find_file_in_dirlist() file message dir1 [...] --
461 # Find which directory file is in, and sets ${dir} to match.
462 # Returns 0 if matched, otherwise 1 (and sets ${dir} to "").
463 #
464 # Generally, check the directory for the "checking from source" case,
465 # and then the directory for the "checking from extracted etc.tgz" case.
466 #
467 find_file_in_dirlist()
468 {
469 [ $# -ge 3 ] || err 3 "USAGE: find_file_in_dirlist file msg dir1 [...]"
470
471 _file="$1" ; shift
472 _msg="$1" ; shift
473 _dir1st= # first dir in list
474 for dir in "$@"; do
475 : ${_dir1st:="${dir}"}
476 if [ -f "${dir}/${_file}" ]; then
477 if [ "${_dir1st}" != "${dir}" ]; then
478 msg \
479 "(Checking for ${_msg} from ${dir} instead of ${_dir1st})"
480 fi
481 return 0
482 fi
483 done
484 msg "Can't find source directory for ${_msg}"
485 return 1
486 }
487
488 # file_exists_exact path
489 # Returns true if a file exists in the ${DEST_DIR} whose name
490 # is exactly ${path}, interpreted in a case-sensitive way
491 # even if the underlying file system is case-insensitive.
492 #
493 # The path must begin with '/' or './', and is interpreted as
494 # being relative to ${DEST_DIR}.
495 #
496 file_exists_exact()
497 {
498 [ -n "$1" ] || err 3 "USAGE: file_exists_exact path"
499 _path="${1#.}"
500 [ -h "${DEST_DIR}${_path}" ] || \
501 [ -e "${DEST_DIR}${_path}" ] || return 1
502 while [ "${_path}" != "/" -a "${_path}" != "." ] ; do
503 _dirname="$(dirname "${_path}" 2>/dev/null)"
504 _basename="$(basename "${_path}" 2>/dev/null)"
505 ls -fa "${DEST_DIR}${_dirname}" 2> /dev/null \
506 | ${GREP} -F -x "${_basename}" >/dev/null \
507 || return 1
508 _path="${_dirname}"
509 done
510 return 0
511 }
512
513 # obsolete_paths op
514 # Obsolete the list of paths provided on stdin.
515 # Each path should start with '/' or './', and
516 # will be interpreted relative to ${DEST_DIR}.
517 #
518 obsolete_paths()
519 {
520 [ -n "$1" ] || err 3 "USAGE: obsolete_paths fix|check"
521 op="$1"
522
523 failed=0
524 while read ofile; do
525 if ! ${file_exists_exact} "${ofile}"; then
526 continue
527 fi
528 ofile="${DEST_DIR}${ofile#.}"
529 cmd="rm"
530 ftype="file"
531 if [ -h "${ofile}" ]; then
532 ftype="link"
533 elif [ -d "${ofile}" ]; then
534 ftype="directory"
535 cmd="rmdir"
536 elif [ ! -e "${ofile}" ]; then
537 continue
538 fi
539 if [ "${op}" = "check" ]; then
540 msg "Remove obsolete ${ftype} ${ofile}"
541 failed=1
542 elif ! eval "${cmd} \"\${ofile}\""; then
543 msg "Can't remove obsolete ${ftype} ${ofile}"
544 failed=1
545 else
546 msg "Removed obsolete ${ftype} ${ofile}"
547 fi
548 done
549 return ${failed}
550 }
551
552 # obsolete_libs dir
553 # Display the minor/teeny shared libraries in dir that are considered
554 # to be obsolete.
555 #
556 # The implementation supports removing obsolete major libraries
557 # if the awk variable AllLibs is set, although there is no way to
558 # enable that in the enclosing shell function as this time.
559 #
560 obsolete_libs()
561 {
562 [ $# -eq 1 ] || err 3 "USAGE: obsolete_libs dir"
563 dir="$1"
564
565 _obsolete_libs "${dir}"
566 _obsolete_libs "/usr/libdata/debug/${dir}"
567 }
568
569 exclude()
570 {
571 local dollar
572 case "$1" in
573 -t)
574 dollar='$'
575 shift
576 ;;
577 *)
578 dollar=
579 ;;
580 esac
581 if [ -z "$*" ]; then
582 cat
583 else
584 eval ${GREP} -v -E "'(^$(echo $* | \
585 ${SED} -e s/\\./\\\\./g -e 's/ /'${dollar}'|^/'g)${dollar})'"
586 fi
587 }
588
589 #
590 # find all the target symlinks of shared libaries and exclude them
591 # from consideration for removal
592 #
593 exclude_libs() {
594 local target="$(ls -l -d lib*.so.* 2> /dev/null \
595 | ${AWK} '{ print $11; }' \
596 | ${SED} -e 's@.*/@@' | ${SORT} -u)"
597 exclude -t ${target}
598 }
599
600 _obsolete_libs()
601 {
602 dir="$1"
603
604 (
605
606 if [ ! -e "${DEST_DIR}/${dir}" ]
607 then
608 return 0
609 fi
610
611 cd "${DEST_DIR}/${dir}" || err 2 "can't cd to ${DEST_DIR}/${dir}"
612 echo lib*.so.* \
613 | tr ' ' '\n' \
614 | ${AWK} -v LibDir="${dir}/" '
615 #{
616
617 function digit(v, c, n) { return (n <= c) ? v[n] : 0 }
618
619 function checklib(results, line, regex) {
620 if (! match(line, regex))
621 return
622 lib = substr(line, RSTART, RLENGTH)
623 rev = substr($0, RLENGTH+1)
624 if (! (lib in results)) {
625 results[lib] = rev
626 return
627 }
628 orevc = split(results[lib], orev, ".")
629 nrevc = split(rev, nrev, ".")
630 maxc = (orevc > nrevc) ? orevc : nrevc
631 for (i = 1; i <= maxc; i++) {
632 res = digit(orev, orevc, i) - digit(nrev, nrevc, i)
633 if (res < 0) {
634 print LibDir lib results[lib]
635 results[lib] = rev
636 return
637 } else if (res > 0) {
638 print LibDir lib rev
639 return
640 }
641 }
642 }
643
644 /^lib.*\.so\.[0-9]+\.[0-9]+(\.[0-9]+)?(\.debug)?$/ {
645 if (AllLibs)
646 checklib(minor, $0, "^lib.*\\.so\\.")
647 else
648 checklib(found, $0, "^lib.*\\.so\\.[0-9]+\\.")
649 }
650
651 /^lib.*\.so\.[0-9]+$/ {
652 if (AllLibs)
653 checklib(major, $0, "^lib.*\\.so\\.")
654 }
655
656 #}' | exclude_libs
657
658 )
659 }
660
661 # obsolete_stand dir
662 # Prints the names of all obsolete files and subdirs below the
663 # provided dir. dir should be something like /stand/${MACHINE}.
664 # The input dir and all output paths are interpreted
665 # relative to ${DEST_DIR}.
666 #
667 # Assumes that the numerically largest subdir is current, and all
668 # others are obsolete.
669 #
670 obsolete_stand()
671 {
672 [ $# -eq 1 ] || err 3 "USAGE: obsolete_stand dir"
673 local dir="$1"
674 local subdir
675
676 if ! [ -d "${DEST_DIR}${dir}" ]; then
677 msg "${DEST_DIR}${dir} doesn't exist; can't check for obsolete files"
678 return 1
679 fi
680
681 ( cd "${DEST_DIR}${dir}" && ls -1d [0-9]*[0-9]/. ) \
682 | ${GREP} -v '[^0-9./]' \
683 | sort -t. -r -n -k1,1 -k2,2 -k3,3 \
684 | tail -n +2 \
685 | while read subdir ; do
686 subdir="${subdir%/.}"
687 find "${DEST_DIR}${dir}/${subdir}" -depth -print
688 done \
689 | unprefix "${DEST_DIR}"
690 }
691
692 # modify_file op srcfile scratchfile awkprog
693 # Apply awkprog to srcfile sending output to scratchfile, and
694 # if appropriate replace srcfile with scratchfile.
695 #
696 modify_file()
697 {
698 [ $# -eq 4 ] || err 3 "USAGE: modify_file op file scratch awkprog"
699
700 _mfop="$1"
701 _mffile="$2"
702 _mfscratch="$3"
703 _mfprog="$4"
704 _mffailed=0
705
706 ${AWK} "${_mfprog}" < "${_mffile}" > "${_mfscratch}"
707 if ! cmp -s "${_mffile}" "${_mfscratch}"; then
708 diff "${_mffile}" "${_mfscratch}" > "${_mfscratch}.diffs"
709 if [ "${_mfop}" = "check" ]; then
710 msg "${_mffile} needs the following changes:"
711 _mffailed=1
712 elif ! rm -f "${_mffile}" ||
713 ! cp -f "${_mfscratch}" "${_mffile}"; then
714 msg "${_mffile} changes not applied:"
715 _mffailed=1
716 else
717 msg "${_mffile} changes applied:"
718 fi
719 while read _line; do
720 msg " ${_line}"
721 done < "${_mfscratch}.diffs"
722 fi
723 return ${_mffailed}
724 }
725
726
727 # contents_owner op directory user group
728 # Make sure directory and contents are owned (and group-owned)
729 # as specified.
730 #
731 contents_owner()
732 {
733 [ $# -eq 4 ] || err 3 "USAGE: contents_owner op dir user group"
734
735 _op="$1"
736 _dir="$2"
737 _user="$3"
738 _grp="$4"
739
740 if [ "${_op}" = "check" ]; then
741 if [ ! -z "`find "${_dir}" \( ! -user "${_user}" \) -o \
742 \( ! -group "${_grp}" \)`" ]; then
743 msg \
744 "${_dir} and contents not all owned by ${_user}:${_grp}"
745 return 1
746 else
747 return 0
748 fi
749 elif [ "${_op}" = "fix" ]; then
750 find "${_dir}" \( \( ! -user "${_user}" \) -o \
751 \( ! -group "${_grp}" \) \) -a -print0 \
752 | xargs -0 chown "${_user}:${_grp}"
753 fi
754 }
755
756 # get_makevar var [var ...]
757 # Retrieve the value of a user-settable system make variable
758 get_makevar()
759 {
760 $SOURCEMODE || err 3 "get_makevar must be used in source mode"
761 [ $# -eq 0 ] && err 3 "USAGE: get_makevar var [var ...]"
762
763 for _var in "$@"; do
764 _value="$(echo '.include <bsd.own.mk>' | \
765 ${MAKE} -f - -V "\${${_var}}")"
766
767 eval ${_var}=\"\${_value}\"
768 done
769 }
770
771 # detect_x11
772 # Detect if X11 components should be analysed and set values of
773 # relevant variables.
774 detect_x11()
775 {
776 if $SOURCEMODE; then
777 get_makevar MKX11 X11ROOTDIR X11SRCDIR
778 else
779 if [ -f "${SRC_DIR}/etc/mtree/set.xetc" ]; then
780 MKX11=yes
781 X11ROOTDIR=/this/value/isnt/used/yet
782 else
783 MKX11=no
784 X11ROOTDIR=
785 fi
786 X11SRCDIR=/nonexistent/xsrc
787 fi
788 }
789
790 #
791 # find out where MAKEDEV lives, set MAKEDEV_DIR appropriately
792 #
793 find_makedev()
794 {
795 if [ -e "${DEST_DIR}/dev/MAKEDEV" ]; then
796 MAKEDEV_DIR="${DEST_DIR}/dev"
797 elif [ -e "${DEST_DIR}/etc/MAKEDEV" ]; then
798 MAKEDEV_DIR="${DEST_DIR}/etc"
799 else
800 MAKEDEV_DIR="${DEST_DIR}/dev"
801 fi
802 }
803
804
805 #
806 # items
807 # -----
808 #
809
810 #
811 # Bluetooth
812 #
813
814 additem bluetooth "Bluetooth configuration is up to date"
815 do_bluetooth()
816 {
817 [ -n "$1" ] || err 3 "USAGE: do_bluetooth fix|check"
818 op="$1"
819 failed=0
820
821 populate_dir "${op}" true \
822 "${SRC_DIR}/etc/bluetooth" "${DEST_DIR}/etc/bluetooth" 644 \
823 hosts protocols btattach.conf btdevctl.conf
824 failed=$(( ${failed} + $? ))
825
826 move_file "${op}" "${DEST_DIR}/var/db/btdev.xml" \
827 "${DEST_DIR}/var/db/btdevctl.plist"
828 failed=$(( ${failed} + $? ))
829
830 notfixed=""
831 if [ "${op}" = "fix" ]; then
832 notfixed="${NOT_FIXED}"
833 fi
834 for _v in btattach btconfig btdevctl; do
835 if rcvar_is_enabled "${_v}"; then
836 msg \
837 "${_v} is obsolete in rc.conf(5)${notfixed}: use bluetooth=YES"
838 failed=$(( ${failed} + 1 ))
839 fi
840 done
841
842 return ${failed}
843 }
844
845 #
846 # ddbonpanic
847 #
848 additem ddbonpanic "verify ddb.onpanic is configured in sysctl.conf"
849 do_ddbonpanic()
850 {
851 [ -n "$1" ] || err 3 "USAGE: do_ddbonpanic fix|check"
852
853 if ${GREP} -E '^#*[[:space:]]*ddb\.onpanic[[:space:]]*\??=[[:space:]]*[[:digit:]]+' \
854 "${DEST_DIR}/etc/sysctl.conf" >/dev/null 2>&1
855 then
856 result=0
857 else
858 if [ "$1" = check ]; then
859 msg \
860 "The ddb.onpanic behaviour is not explicitly specified in /etc/sysctl.conf"
861 result=1
862 else
863 echo >> "${DEST_DIR}/etc/sysctl.conf"
864 ${SED} < "${SRC_DIR}/etc/sysctl.conf" \
865 -e '/^ddb\.onpanic/q' | \
866 ${SED} -e '1,/^$/d' >> \
867 "${DEST_DIR}/etc/sysctl.conf"
868 result=$?
869 fi
870 fi
871 return ${result}
872 }
873
874 #
875 # defaults
876 #
877 additem defaults "/etc/defaults/ being up to date"
878 do_defaults()
879 {
880 [ -n "$1" ] || err 3 "USAGE: do_defaults fix|check"
881 local op="$1"
882 local failed=0
883 local etcsets=$(getetcsets)
884
885 local rc_exclude_scripts=""
886 if $SOURCEMODE; then
887 # For most architectures rc.conf(5) should be the same as the
888 # one obtained from a source directory, except for the ones
889 # that have an append file for it.
890 local rc_conf_app="${SRC_DIR}/etc/etc.${MACHINE}/rc.conf.append"
891 if [ -f "${rc_conf_app}" ]; then
892 rc_exclude_scripts="rc.conf"
893
894 # Generate and compare the correct rc.conf(5) file
895 mkdir "${SCRATCHDIR}/defaults"
896
897 cat "${SRC_DIR}/etc/defaults/rc.conf" "${rc_conf_app}" \
898 > "${SCRATCHDIR}/defaults/rc.conf"
899
900 compare_dir "${op}" "${SCRATCHDIR}/defaults" \
901 "${DEST_DIR}/etc/defaults" \
902 444 \
903 "rc.conf"
904 failed=$(( ${failed} + $? ))
905 fi
906 fi
907
908 find_file_in_dirlist pf.boot.conf "pf.boot.conf" \
909 "${SRC_DIR}/usr.sbin/pf/etc/defaults" "${SRC_DIR}/etc/defaults" \
910 || return 1
911 # ${dir} is set by find_file_in_dirlist()
912 compare_dir "$op" "${dir}" "${DEST_DIR}/etc/defaults" 444 pf.boot.conf
913 failed=$(( ${failed} + $? ))
914
915 rc_exclude_scripts="${rc_exclude_scripts} pf.boot.conf"
916
917 local rc_default_conf_files="$(select_set_files /etc/defaults/ \
918 "/etc/defaults/\([^[:space:]]*\.conf\)" ${etcsets} | \
919 exclude ${rc_exclude_scripts})"
920 compare_dir "$op" "${SRC_DIR}/etc/defaults" "${DEST_DIR}/etc/defaults" \
921 444 \
922 ${rc_default_conf_files}
923 failed=$(( ${failed} + $? ))
924
925
926 return ${failed}
927 }
928
929 #
930 # dhcpcd
931 #
932 additem dhcpcd "dhcpcd configuration is up to date"
933 do_dhcpcd()
934 {
935 [ -n "$1" ] || err 3 "USAGE: do_dhcpcd fix|check"
936 op="$1"
937 failed=0
938
939 find_file_in_dirlist dhcpcd.conf "dhcpcd.conf" \
940 "${SRC_DIR}/external/bsd/dhcpcd/dist/src" \
941 "${SRC_DIR}/etc" || return 1
942 # ${dir} is set by find_file_in_dirlist()
943 populate_dir "$op" true "${dir}" "${DEST_DIR}/etc" 644 dhcpcd.conf
944 failed=$(( ${failed} + $? ))
945
946 check_dir "${op}" "${DEST_DIR}/var/db/dhcpcd" 755
947 failed=$(( ${failed} + $? ))
948
949 move_file "${op}" \
950 "${DEST_DIR}/etc/dhcpcd.duid" \
951 "${DEST_DIR}/var/db/dhcpcd/duid"
952 failed=$(( ${failed} + $? ))
953
954 move_file "${op}" \
955 "${DEST_DIR}/etc/dhcpcd.secret" \
956 "${DEST_DIR}/var/db/dhcpcd/secret"
957 failed=$(( ${failed} + $? ))
958
959 move_file "${op}" \
960 "${DEST_DIR}/var/db/dhcpcd-rdm.monotonic" \
961 "${DEST_DIR}/var/db/dhcpcd/rdm_monotonic"
962 failed=$(( ${failed} + $? ))
963
964 for lease in "${DEST_DIR}/var/db/dhcpcd-"*.lease*; do
965 [ -f "${lease}" ] || continue
966 new_lease=$(basename "${lease}" | ${SED} -e 's/dhcpcd-//')
967 new_lease="${DEST_DIR}/var/db/dhcpcd/${new_lease}"
968 move_file "${op}" "${lease}" "${new_lease}"
969 failed=$(( ${failed} + $? ))
970 done
971
972 return ${failed}
973 }
974
975 #
976 # dhcpcdrundir
977 #
978 additem dhcpcdrundir "accidentaly created /@RUNDIR@ does not exist"
979 do_dhcpcdrundir()
980 {
981 [ -n "$1" ] || err 3 "USAGE: do_dhcpcdrundir fix|check"
982 op="$1"
983 failed=0
984
985 if [ -d "${DEST_DIR}/@RUNDIR@" ]; then
986 if [ "${op}" = "check" ]; then
987 msg "Remove eroneously created /@RUNDIR@"
988 failed=1
989 elif ! rm -r "${DEST_DIR}/@RUNDIR@"; then
990 msg "Failed to remove ${DEST_DIR}/@RUNDIR@"
991 failed=1
992 else
993 msg "Removed eroneously created ${DEST_DIR}/@RUNDIR@"
994 fi
995 fi
996 return ${failed}
997 }
998
999 #
1000 # envsys
1001 #
1002 additem envsys "envsys configuration is up to date"
1003 do_envsys()
1004 {
1005 [ -n "$1" ] || err 3 "USAGE: do_envsys fix|check"
1006 local op="$1"
1007 local failed=0
1008 local etcsets=$(getetcsets)
1009
1010 populate_dir "$op" true "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
1011 envsys.conf
1012 failed=$(( ${failed} + $? ))
1013
1014 local powerd_scripts="$(select_set_files /etc/powerd/scripts/ \
1015 "/etc/powerd/scripts/\([^[:space:]/]*\)" ${etcsets})"
1016
1017 populate_dir "$op" true "${SRC_DIR}/etc/powerd/scripts" \
1018 "${DEST_DIR}/etc/powerd/scripts" \
1019 555 \
1020 ${powerd_scripts}
1021 failed=$(( ${failed} + $? ))
1022
1023 return ${failed}
1024 }
1025
1026 #
1027 # X11 fontconfig
1028 #
1029 additem fontconfig "X11 font configuration is up to date"
1030 do_fontconfig()
1031 {
1032 [ -n "$1" ] || err 3 "USAGE: do_fontconfig fix|check"
1033 op="$1"
1034 failed=0
1035
1036 # First, check for updates we can handle.
1037 if ! $SOURCEMODE; then
1038 FONTCONFIG_DIR="${SRC_DIR}/etc/fonts/conf.avail"
1039 else
1040 FONTCONFIG_DIR="${XSRC_DIR}/external/mit/fontconfig/dist/conf.d"
1041 fi
1042
1043 if [ ! -d "${FONTCONFIG_DIR}" ]; then
1044 msg "${FONTCONFIG_DIR} is not a directory; skipping check"
1045 return 0
1046 fi
1047 local regular_fonts="
1048 10-autohint.conf
1049 10-no-sub-pixel.conf
1050 10-scale-bitmap-fonts.conf
1051 10-sub-pixel-bgr.conf
1052 10-sub-pixel-rgb.conf
1053 10-sub-pixel-vbgr.conf
1054 10-sub-pixel-vrgb.conf
1055 10-unhinted.conf
1056 11-lcdfilter-default.conf
1057 11-lcdfilter-legacy.conf
1058 11-lcdfilter-light.conf
1059 20-unhint-small-vera.conf
1060 25-unhint-nonlatin.conf
1061 30-metric-aliases.conf
1062 40-nonlatin.conf
1063 45-generic.conf
1064 45-latin.conf
1065 49-sansserif.conf
1066 50-user.conf
1067 51-local.conf
1068 60-generic.conf
1069 60-latin.conf
1070 65-fonts-persian.conf
1071 65-khmer.conf
1072 65-nonlatin.conf
1073 69-unifont.conf
1074 70-no-bitmaps.conf
1075 70-yes-bitmaps.conf
1076 80-delicious.conf
1077 90-synthetic.conf
1078 "
1079 populate_dir "$op" false "${FONTCONFIG_DIR}" \
1080 "${DEST_DIR}/etc/fonts/conf.avail" \
1081 444 \
1082 ${regular_fonts}
1083 failed=$(( ${failed} + $? ))
1084
1085 if ! $SOURCEMODE; then
1086 FONTS_DIR="${SRC_DIR}/etc/fonts"
1087 else
1088 FONTS_DIR="${SRC_DIR}/external/mit/xorg/lib/fontconfig/etc"
1089 fi
1090
1091 populate_dir "$op" false "${FONTS_DIR}" "${DEST_DIR}/etc/fonts" 444 \
1092 fonts.conf
1093 failed=$(( ${failed} + $? ))
1094
1095 # We can't modify conf.d easily; someone might have removed a file.
1096
1097 # Look for old files that need to be deleted.
1098 obsolete_fonts="
1099 10-autohint.conf
1100 10-no-sub-pixel.conf
1101 10-sub-pixel-bgr.conf
1102 10-sub-pixel-rgb.conf
1103 10-sub-pixel-vbgr.conf
1104 10-sub-pixel-vrgb.conf
1105 10-unhinted.conf
1106 25-unhint-nonlatin.conf
1107 65-khmer.conf
1108 70-no-bitmaps.conf
1109 70-yes-bitmaps.conf
1110 "
1111 failed_fonts=""
1112 for i in ${obsolete_fonts}; do
1113 if [ -f "${DEST_DIR}/etc/fonts/conf.d/$i" ]; then
1114 conf_d_failed=1
1115 failed_fonts="$failed_fonts $i"
1116 fi
1117 done
1118
1119 if [ -n "$failed_fonts" ]; then
1120 msg \
1121 "Broken fontconfig configuration found; please delete these files:"
1122 msg "[$failed_fonts]"
1123 failed=$(( ${failed} + 1 ))
1124 fi
1125
1126 return ${failed}
1127 }
1128
1129 #
1130 # gid
1131 #
1132 additem gid "required groups in /etc/group"
1133 do_gid()
1134 {
1135 [ -n "$1" ] || err 3 "USAGE: do_gid fix|check"
1136
1137 check_ids "$1" groups "${DEST_DIR}/etc/group" \
1138 "${SRC_DIR}/etc/group" 14 \
1139 named ntpd sshd SKIP _pflogd _rwhod staff _proxy _timedc \
1140 _sdpd _httpd _mdnsd _tests _tcpdump _tss _gpio _rtadvd SKIP \
1141 _unbound _nsd nvmm
1142 }
1143
1144 #
1145 # gpio
1146 #
1147 additem gpio "gpio configuration is up to date"
1148 do_gpio()
1149 {
1150 [ -n "$1" ] || err 3 "USAGE: do_gpio fix|check"
1151 op="$1"
1152 failed=0
1153
1154 populate_dir "$op" true "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
1155 gpio.conf
1156 failed=$(( ${failed} + $? ))
1157
1158 return ${failed}
1159 }
1160
1161 #
1162 # hosts
1163 #
1164 additem hosts "/etc/hosts being up to date"
1165 do_hosts()
1166 {
1167 [ -n "$1" ] || err 3 "USAGE: do_hosts fix|check"
1168
1169 modify_file "$1" "${DEST_DIR}/etc/hosts" "${SCRATCHDIR}/hosts" '
1170 /^(127\.0\.0\.1|::1)[ ]+[^\.]*$/ {
1171 print $0, "localhost."
1172 next
1173 }
1174 { print }
1175 '
1176 return $?
1177 }
1178
1179 #
1180 # iscsi
1181 #
1182 additem iscsi "/etc/iscsi is populated"
1183 do_iscsi()
1184 {
1185 [ -n "$1" ] || err 3 "USAGE: do_iscsi fix|check"
1186
1187 populate_dir "${op}" true \
1188 "${SRC_DIR}/etc/iscsi" "${DEST_DIR}/etc/iscsi" 600 auths
1189 populate_dir "${op}" true \
1190 "${SRC_DIR}/etc/iscsi" "${DEST_DIR}/etc/iscsi" 644 targets
1191 return $?
1192 }
1193
1194 #
1195 # makedev
1196 #
1197 additem makedev "/dev/MAKEDEV being up to date"
1198 do_makedev()
1199 {
1200 [ -n "$1" ] || err 3 "USAGE: do_makedev fix|check"
1201 failed=0
1202
1203 if [ -f "${SRC_DIR}/etc/MAKEDEV.tmpl" ]; then
1204 # generate MAKEDEV from source if source is available
1205 env MACHINE="${MACHINE}" \
1206 MACHINE_ARCH="${MACHINE_ARCH}" \
1207 NETBSDSRCDIR="${SRC_DIR}" \
1208 ${AWK} -f "${SRC_DIR}/etc/MAKEDEV.awk" \
1209 "${SRC_DIR}/etc/MAKEDEV.tmpl" > "${SCRATCHDIR}/MAKEDEV"
1210 fi
1211
1212 find_file_in_dirlist MAKEDEV "MAKEDEV" \
1213 "${SCRATCHDIR}" "${SRC_DIR}/dev" \
1214 || return 1
1215 # ${dir} is set by find_file_in_dirlist()
1216 find_makedev
1217 compare_dir "$1" "${dir}" "${MAKEDEV_DIR}" 555 MAKEDEV
1218 failed=$(( ${failed} + $? ))
1219
1220 find_file_in_dirlist MAKEDEV.local "MAKEDEV.local" \
1221 "${SRC_DIR}/etc" "${SRC_DIR}/dev" \
1222 || return 1
1223 # ${dir} is set by find_file_in_dirlist()
1224 compare_dir "$1" "${dir}" "${DEST_DIR}/dev" 555 MAKEDEV.local
1225 failed=$(( ${failed} + $? ))
1226
1227 return ${failed}
1228 }
1229
1230 #
1231 # motd
1232 #
1233 additem motd "contents of motd"
1234 do_motd()
1235 {
1236 [ -n "$1" ] || err 3 "USAGE: do_motd fix|check"
1237
1238 if ${GREP} -i 'http://www.NetBSD.org/Misc/send-pr.html' \
1239 "${DEST_DIR}/etc/motd" >/dev/null 2>&1 \
1240 || ${GREP} -i 'http://www.NetBSD.org/support/send-pr.html' \
1241 "${DEST_DIR}/etc/motd" >/dev/null 2>&1
1242 then
1243 tmp1="$(mktemp /tmp/postinstall.motd.XXXXXXXX)"
1244 tmp2="$(mktemp /tmp/postinstall.motd.XXXXXXXX)"
1245 ${SED} '1,2d' <"${SRC_DIR}/etc/motd" >"${tmp1}"
1246 ${SED} '1,2d' <"${DEST_DIR}/etc/motd" >"${tmp2}"
1247
1248 if [ "$1" = check ]; then
1249 cmp -s "${tmp1}" "${tmp2}"
1250 result=$?
1251 if [ "${result}" -ne 0 ]; then
1252 msg \
1253 "Bug reporting messages do not seem to match the installed release"
1254 fi
1255 else
1256 head -n 2 "${DEST_DIR}/etc/motd" >"${tmp1}"
1257 ${SED} '1,2d' <"${SRC_DIR}/etc/motd" >>"${tmp1}"
1258 cp "${tmp1}" "${DEST_DIR}/etc/motd"
1259 result=0
1260 fi
1261
1262 rm -f "${tmp1}" "${tmp2}"
1263 else
1264 result=0
1265 fi
1266
1267 return ${result}
1268 }
1269
1270 #
1271 # mtree
1272 #
1273 additem mtree "/etc/mtree/ being up to date"
1274 do_mtree()
1275 {
1276 [ -n "$1" ] || err 3 "USAGE: do_mtree fix|check"
1277 failed=0
1278
1279 compare_dir "$1" "${SRC_DIR}/etc/mtree" "${DEST_DIR}/etc/mtree" 444 special
1280 failed=$(( ${failed} + $? ))
1281
1282 if ! $SOURCEMODE; then
1283 MTREE_DIR="${SRC_DIR}/etc/mtree"
1284 else
1285 /bin/rm -rf "${SCRATCHDIR}/obj"
1286 mkdir "${SCRATCHDIR}/obj"
1287 ${MAKE} -s -C "${SRC_DIR}/etc/mtree" TOOL_AWK="${AWK}" \
1288 MAKEOBJDIR="${SCRATCHDIR}/obj" emit_dist_file > \
1289 "${SCRATCHDIR}/NetBSD.dist"
1290 MTREE_DIR="${SCRATCHDIR}"
1291 /bin/rm -rf "${SCRATCHDIR}/obj"
1292 fi
1293 compare_dir "$1" "${MTREE_DIR}" "${DEST_DIR}/etc/mtree" 444 NetBSD.dist
1294 failed=$(( ${failed} + $? ))
1295
1296 return ${failed}
1297 }
1298
1299 #
1300 # named
1301 #
1302 additem named "named configuration update"
1303 do_named()
1304 {
1305 [ -n "$1" ] || err 3 "USAGE: do_named fix|check"
1306 op="$1"
1307
1308 move_file "${op}" \
1309 "${DEST_DIR}/etc/namedb/named.conf" \
1310 "${DEST_DIR}/etc/named.conf"
1311
1312 compare_dir "${op}" "${SRC_DIR}/etc/namedb" "${DEST_DIR}/etc/namedb" \
1313 644 \
1314 root.cache
1315 }
1316
1317 #
1318 # pam
1319 #
1320 additem pam "/etc/pam.d is populated"
1321 do_pam()
1322 {
1323 [ -n "$1" ] || err 3 "USAGE: do_pam fix|check"
1324 op="$1"
1325 failed=0
1326
1327 populate_dir "${op}" true "${SRC_DIR}/etc/pam.d" \
1328 "${DEST_DIR}/etc/pam.d" 644 \
1329 README cron display_manager ftpd gdm imap kde login other \
1330 passwd pop3 ppp racoon rexecd rsh sshd su system telnetd \
1331 xdm xserver
1332
1333 failed=$(( ${failed} + $? ))
1334
1335 return ${failed}
1336 }
1337
1338 #
1339 # periodic
1340 #
1341 additem periodic "/etc/{daily,weekly,monthly,security} being up to date"
1342 do_periodic()
1343 {
1344 [ -n "$1" ] || err 3 "USAGE: do_periodic fix|check"
1345
1346 compare_dir "$1" "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
1347 daily weekly monthly security
1348 }
1349
1350 #
1351 # pf
1352 #
1353 additem pf "pf configuration being up to date"
1354 do_pf()
1355 {
1356 [ -n "$1" ] || err 3 "USAGE: do_pf fix|check"
1357 op="$1"
1358 failed=0
1359
1360 find_file_in_dirlist pf.os "pf.os" \
1361 "${SRC_DIR}/dist/pf/etc" "${SRC_DIR}/etc" \
1362 || return 1
1363 # ${dir} is set by find_file_in_dirlist()
1364 populate_dir "${op}" true \
1365 "${dir}" "${DEST_DIR}/etc" 644 \
1366 pf.conf
1367 failed=$(( ${failed} + $? ))
1368
1369 compare_dir "${op}" "${dir}" "${DEST_DIR}/etc" 444 pf.os
1370 failed=$(( ${failed} + $? ))
1371
1372 return ${failed}
1373 }
1374
1375 #
1376 # pwd_mkdb
1377 #
1378 additem pwd_mkdb "passwd database version"
1379 do_pwd_mkdb()
1380 {
1381 [ -n "$1" ] || err 3 "USAGE: do_pwd_mkdb fix|check"
1382 op="$1"
1383 failed=0
1384
1385 # XXX Ideally, we should figure out the endianness of the
1386 # target machine, and add "-E B"/"-E L" to the db(1) flags,
1387 # and "-B"/"-L" to the pwd_mkdb(8) flags if the target is not
1388 # the same as the host machine. It probably doesn't matter,
1389 # because we don't expect "postinstall fix pwd_mkdb" to be
1390 # invoked during a cross build.
1391
1392 set -- $(${DB} -q -Sb -Ub -To -N hash "${DEST_DIR}/etc/pwd.db" \
1393 'VERSION\0')
1394 case "$2" in
1395 '\001\000\000\000') return 0 ;; # version 1, little-endian
1396 '\000\000\000\001') return 0 ;; # version 1, big-endian
1397 esac
1398
1399 if [ "${op}" = "check" ]; then
1400 msg "Update format of passwd database"
1401 failed=1
1402 elif ! ${PWD_MKDB} -V 1 -d "${DEST_DIR:-/}" \
1403 "${DEST_DIR}/etc/master.passwd";
1404 then
1405 msg "Can't update format of passwd database"
1406 failed=1
1407 else
1408 msg "Updated format of passwd database"
1409 fi
1410
1411 return ${failed}
1412 }
1413
1414 #
1415 # rc
1416 #
1417
1418 # There is no info in src/distrib or /etc/mtree which rc* files
1419 # can be overwritten unconditionally on upgrade. See PR/54741.
1420 rc_644_files="
1421 rc
1422 rc.subr
1423 rc.shutdown
1424 "
1425
1426 rc_obsolete_vars="
1427 amd amd_master
1428 btcontrol btcontrol_devices
1429 critical_filesystems critical_filesystems_beforenet
1430 mountcritlocal mountcritremote
1431 network ip6forwarding
1432 network nfsiod_flags
1433 sdpd sdpd_control
1434 sdpd sdpd_groupname
1435 sdpd sdpd_username
1436 sysctl defcorename
1437 "
1438
1439 update_rc()
1440 {
1441 local op=$1
1442 local dir=$2
1443 local name=$3
1444 local bindir=$4
1445 local rcdir=$5
1446
1447 if [ ! -x "${DEST_DIR}/${bindir}/${name}" ]; then
1448 return 0
1449 fi
1450
1451 if ! find_file_in_dirlist "${name}" "${name}" \
1452 "${rcdir}" "${SRC_DIR}/etc/rc.d"; then
1453 return 1
1454 fi
1455 populate_dir "${op}" false "${dir}" "${DEST_DIR}/etc/rc.d" 555 "${name}"
1456 return $?
1457 }
1458
1459 # select non-obsolete files in a sets file
1460 # $1: directory pattern
1461 # $2: file pattern
1462 # $3: filename
1463 select_set_files()
1464 {
1465 local qdir="$(echo $1 | ${SED} -e s@/@\\\\/@g -e s/\\./\\\\./g)"
1466 ${SED} -n -e /obsolete/d \
1467 -e "/^\.${qdir}/s@^.$2[[:space:]].*@\1@p" $3
1468 }
1469
1470 # select obsolete files in a sets file
1471 # $1: directory pattern
1472 # $2: file pattern
1473 # $3: setname
1474 select_obsolete_files()
1475 {
1476 if $SOURCEMODE; then
1477 ${SED} -n -e "/obsolete/s@\.$1$2[[:space:]].*@\1@p" \
1478 ${SRC_DIR}/distrib/sets/lists/$3/mi
1479 return
1480 fi
1481
1482 # On upgrade builds we don't extract the "etc" set so we
1483 # try to use the source set instead. See PR/54730 for
1484 # ways to better handle this.
1485
1486 local obsolete_dir
1487
1488 if [ $3 = "etc" ] ;then
1489 obsolete_dir=${SRC_DIR}/var/db/obsolete
1490 else
1491 obsolete_dir=${DEST_DIR}/var/db/obsolete
1492 fi
1493 ${SED} -n -e "s@\.$1$2\$@\1@p" "${obsolete_dir}/$3"
1494 }
1495
1496 getetcsets()
1497 {
1498 if $SOURCEMODE; then
1499 echo "${SRC_DIR}/distrib/sets/lists/etc/mi"
1500 else
1501 echo "${SRC_DIR}/etc/mtree/set.etc"
1502 fi
1503 }
1504
1505 additem rc "/etc/rc* and /etc/rc.d/ being up to date"
1506 do_rc()
1507 {
1508 [ -n "$1" ] || err 3 "USAGE: do_rc fix|check"
1509 local op="$1"
1510 local failed=0
1511 local generated_scripts=""
1512 local etcsets=$(getetcsets)
1513 if [ "${MKX11}" != "no" ]; then
1514 generated_scripts="${generated_scripts} xdm xfs"
1515 fi
1516
1517 # Directories of external programs that have rc files (in bsd)
1518 local rc_external_files="blacklist nsd unbound"
1519
1520 # rc* files in /etc/
1521 # XXX: at least rc.conf and rc.local shouldn't be updated. PR/54741
1522 #local rc_644_files="$(select_set_files /etc/rc \
1523 # "/etc/\(rc[^[:space:]/]*\)" ${etcsets})"
1524
1525 # no-obsolete rc files in /etc/rc.d
1526 local rc_555_files="$(select_set_files /etc/rc.d/ \
1527 "/etc/rc\.d/\([^[:space:]]*\)" ${etcsets} | \
1528 exclude ${rc_external_files})"
1529
1530 # obsolete rc file in /etc/rc.d
1531 local rc_obsolete_files="$(select_obsolete_files /etc/rc.d/ \
1532 "\([^[:space:]]*\)" etc)"
1533
1534 compare_dir "${op}" "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
1535 ${rc_644_files}
1536 failed=$(( ${failed} + $? ))
1537
1538 local extra_scripts
1539 if ! $SOURCEMODE; then
1540 extra_scripts="${generated_scripts}"
1541 else
1542 extra_scripts=""
1543 fi
1544
1545 compare_dir "${op}" "${SRC_DIR}/etc/rc.d" "${DEST_DIR}/etc/rc.d" 555 \
1546 ${rc_555_files} \
1547 ${extra_scripts}
1548 failed=$(( ${failed} + $? ))
1549
1550 for i in ${rc_external_files}; do
1551 local rc_file
1552 case $i in
1553 *d) rc_file=${i};;
1554 *) rc_file=${i}d;;
1555 esac
1556
1557 update_rc "${op}" "${dir}" ${rc_file} /sbin \
1558 "${SRC_DIR}/external/bsd/$i/etc/rc.d"
1559 failed=$(( ${failed} + $? ))
1560 done
1561
1562 if $SOURCEMODE && [ -n "${generated_scripts}" ]; then
1563 # generate scripts
1564 mkdir "${SCRATCHDIR}/rc"
1565 for f in ${generated_scripts}; do
1566 ${SED} -e "s,@X11ROOTDIR@,${X11ROOTDIR},g" \
1567 < "${SRC_DIR}/etc/rc.d/${f}.in" \
1568 > "${SCRATCHDIR}/rc/${f}"
1569 done
1570 compare_dir "${op}" "${SCRATCHDIR}/rc" \
1571 "${DEST_DIR}/etc/rc.d" 555 \
1572 ${generated_scripts}
1573 failed=$(( ${failed} + $? ))
1574 fi
1575
1576 # check for obsolete rc.d files
1577 for f in ${rc_obsolete_files}; do
1578 local fd="/etc/rc.d/${f}"
1579 [ -e "${DEST_DIR}${fd}" ] && echo "${fd}"
1580 done | obsolete_paths "${op}"
1581 failed=$(( ${failed} + $? ))
1582
1583 # check for obsolete rc.conf(5) variables
1584 set -- ${rc_obsolete_vars}
1585 while [ $# -gt 1 ]; do
1586 if rcconf_is_set "${op}" "$1" "$2" 1; then
1587 failed=1
1588 fi
1589 shift 2
1590 done
1591
1592 return ${failed}
1593 }
1594
1595 #
1596 # sendmail
1597 #
1598 adddisableditem sendmail "remove obsolete sendmail configuration files and scripts"
1599 do_sendmail()
1600 {
1601 [ -n "$1" ] || err 3 "USAGE: do_sendmail fix|check"
1602 op="$1"
1603 failed=0
1604
1605 # Don't complain if the "sendmail" package is installed because the
1606 # files might still be in use.
1607 if /usr/sbin/pkg_info -qe sendmail >/dev/null 2>&1; then
1608 return 0
1609 fi
1610
1611 for f in /etc/mail/helpfile /etc/mail/local-host-names \
1612 /etc/mail/sendmail.cf /etc/mail/submit.cf /etc/rc.d/sendmail \
1613 /etc/rc.d/smmsp /usr/share/misc/sendmail.hf \
1614 $( ( find "${DEST_DIR}/usr/share/sendmail" -type f ; \
1615 find "${DEST_DIR}/usr/share/sendmail" -type d \
1616 ) | unprefix "${DEST_DIR}" ) \
1617 /var/log/sendmail.st \
1618 /var/spool/clientmqueue \
1619 /var/spool/mqueue
1620 do
1621 [ -e "${DEST_DIR}${f}" ] && echo "${f}"
1622 done | obsolete_paths "${op}"
1623 failed=$(( ${failed} + $? ))
1624
1625 return ${failed}
1626 }
1627
1628 #
1629 # mailerconf
1630 #
1631 adddisableditem mailerconf "update /etc/mailer.conf after sendmail removal"
1632 do_mailerconf()
1633 {
1634 [ -n "$1" ] || err 3 "USAGE: do_mailterconf fix|check"
1635 op="$1"
1636
1637 failed=0
1638 mta_path="$(${AWK} '/^sendmail[ \t]/{print$2}' \
1639 "${DEST_DIR}/etc/mailer.conf")"
1640 old_sendmail_path="/usr/libexec/sendmail/sendmail"
1641 if [ "${mta_path}" = "${old_sendmail_path}" ]; then
1642 if [ "$op" = check ]; then
1643 msg "mailer.conf points to obsolete ${old_sendmail_path}"
1644 failed=1;
1645 else
1646 populate_dir "${op}" false \
1647 "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 mailer.conf
1648 failed=$?
1649 fi
1650 fi
1651
1652 return ${failed}
1653 }
1654
1655 #
1656 # ssh
1657 #
1658 additem ssh "ssh configuration update"
1659 do_ssh()
1660 {
1661 [ -n "$1" ] || err 3 "USAGE: do_ssh fix|check"
1662 op="$1"
1663
1664 failed=0
1665 _etcssh="${DEST_DIR}/etc/ssh"
1666 if ! check_dir "${op}" "${_etcssh}" 755; then
1667 failed=1
1668 fi
1669
1670 if [ ${failed} -eq 0 ]; then
1671 for f in \
1672 ssh_known_hosts ssh_known_hosts2 \
1673 ssh_host_dsa_key ssh_host_dsa_key.pub \
1674 ssh_host_rsa_key ssh_host_rsa_key.pub \
1675 ssh_host_key ssh_host_key.pub \
1676 ; do
1677 if ! move_file "${op}" \
1678 "${DEST_DIR}/etc/${f}" "${_etcssh}/${f}" ; then
1679 failed=1
1680 fi
1681 done
1682 for f in sshd.conf ssh.conf ; do
1683 # /etc/ssh/ssh{,d}.conf -> ssh{,d}_config
1684 #
1685 if ! move_file "${op}" \
1686 "${_etcssh}/${f}" "${_etcssh}/${f%.conf}_config" ;
1687 then
1688 failed=1
1689 fi
1690 # /etc/ssh{,d}.conf -> /etc/ssh/ssh{,d}_config
1691 #
1692 if ! move_file "${op}" \
1693 "${DEST_DIR}/etc/${f}" \
1694 "${_etcssh}/${f%.conf}_config" ;
1695 then
1696 failed=1
1697 fi
1698 done
1699 fi
1700
1701 sshdconf=""
1702 for f in \
1703 "${_etcssh}/sshd_config" \
1704 "${_etcssh}/sshd.conf" \
1705 "${DEST_DIR}/etc/sshd.conf" ; do
1706 if [ -f "${f}" ]; then
1707 sshdconf="${f}"
1708 break
1709 fi
1710 done
1711 if [ -n "${sshdconf}" ]; then
1712 modify_file "${op}" "${sshdconf}" "${SCRATCHDIR}/sshdconf" '
1713 /^[^#$]/ {
1714 kw = tolower($1)
1715 if (kw == "hostkey" &&
1716 $2 ~ /^\/etc\/+ssh_host(_[dr]sa)?_key$/ ) {
1717 sub(/\/etc\/+/, "/etc/ssh/")
1718 }
1719 if (kw == "rhostsauthentication" ||
1720 kw == "verifyreversemapping" ||
1721 kw == "reversemappingcheck") {
1722 sub(/^/, "# DEPRECATED:\t")
1723 }
1724 }
1725 { print }
1726 '
1727 failed=$(( ${failed} + $? ))
1728 fi
1729
1730 if ! find_file_in_dirlist moduli "moduli" \
1731 "${SRC_DIR}/crypto/external/bsd/openssh/dist" "${SRC_DIR}/etc" ; then
1732 failed=1
1733 # ${dir} is set by find_file_in_dirlist()
1734 elif ! compare_dir "${op}" "${dir}" "${DEST_DIR}/etc" 444 moduli; then
1735 failed=1
1736 fi
1737
1738 if ! check_dir "${op}" "${DEST_DIR}/var/chroot/sshd" 755 ; then
1739 failed=1
1740 fi
1741
1742 if rcconf_is_set "${op}" sshd sshd_conf_dir 1; then
1743 failed=1
1744 fi
1745
1746 return ${failed}
1747 }
1748
1749 #
1750 # wscons
1751 #
1752 additem wscons "wscons configuration file update"
1753 do_wscons()
1754 {
1755 [ -n "$1" ] || err 3 "USAGE: do_wscons fix|check"
1756 op="$1"
1757
1758 [ -f "${DEST_DIR}/etc/wscons.conf" ] || return 0
1759
1760 failed=0
1761 notfixed=""
1762 if [ "${op}" = "fix" ]; then
1763 notfixed="${NOT_FIXED}"
1764 fi
1765 while read _type _arg1 _rest; do
1766 if [ "${_type}" = "mux" -a "${_arg1}" = "1" ]; then
1767 msg \
1768 "Obsolete wscons.conf(5) entry \""${_type} ${_arg1}"\" found.${notfixed}"
1769 failed=1
1770 fi
1771 done < "${DEST_DIR}/etc/wscons.conf"
1772
1773 return ${failed}
1774 }
1775
1776 #
1777 # X11
1778 #
1779 additem x11 "x11 configuration update"
1780 do_x11()
1781 {
1782 [ -n "$1" ] || err 3 "USAGE: do_x11 fix|check"
1783 op="$1"
1784
1785 failed=0
1786 _etcx11="${DEST_DIR}/etc/X11"
1787 if [ ! -d "${_etcx11}" ]; then
1788 msg "${_etcx11} is not a directory; skipping check"
1789 return 0
1790 fi
1791 if [ -d "${DEST_DIR}/usr/X11R6/." ]
1792 then
1793 _libx11="${DEST_DIR}/usr/X11R6/lib/X11"
1794 if [ ! -d "${_libx11}" ]; then
1795 msg "${_libx11} is not a directory; skipping check"
1796 return 0
1797 fi
1798 fi
1799
1800 _notfixed=""
1801 if [ "${op}" = "fix" ]; then
1802 _notfixed="${NOT_FIXED}"
1803 fi
1804
1805 for d in \
1806 fs lbxproxy proxymngr rstart twm xdm xinit xserver xsm \
1807 ; do
1808 sd="${_libx11}/${d}"
1809 ld="/etc/X11/${d}"
1810 td="${DEST_DIR}${ld}"
1811 if [ -h "${sd}" ]; then
1812 continue
1813 elif [ -d "${sd}" ]; then
1814 tdfiles="$(find "${td}" \! -type d)"
1815 if [ -n "${tdfiles}" ]; then
1816 msg "${sd} exists yet ${td} already" \
1817 "contains files${_notfixed}"
1818 else
1819 msg "Migrate ${sd} to ${td}${_notfixed}"
1820 fi
1821 failed=1
1822 elif [ -e "${sd}" ]; then
1823 msg "Unexpected file ${sd}${_notfixed}"
1824 continue
1825 else
1826 continue
1827 fi
1828 done
1829
1830 # check if xdm resources have been updated
1831 if [ -r ${_etcx11}/xdm/Xresources ] && \
1832 ! ${GREP} 'inpColor:' ${_etcx11}/xdm/Xresources > /dev/null; then
1833 msg "Update ${_etcx11}/xdm/Xresources${_notfixed}"
1834 failed=1
1835 fi
1836
1837 return ${failed}
1838 }
1839
1840 #
1841 # xkb
1842 #
1843 # /usr/X11R7/lib/X11/xkb/symbols/pc used to be a directory, but changed
1844 # to a file on 2009-06-12. Fixing this requires removing the directory
1845 # (which we can do) and re-extracting the xbase set (which we can't do),
1846 # or at least adding that one file (which we may be able to do if X11SRCDIR
1847 # is available).
1848 #
1849 additem xkb "clean up for xkbdata to xkeyboard-config upgrade"
1850 do_xkb()
1851 {
1852 [ -n "$1" ] || err 3 "USAGE: do_xkb fix|check"
1853 op="$1"
1854 failed=0
1855
1856 pcpath="/usr/X11R7/lib/X11/xkb/symbols/pc"
1857 pcsrcdir="${X11SRCDIR}/external/mit/xkeyboard-config/dist/symbols"
1858
1859 filemsg="\
1860 ${pcpath} was a directory, should be a file.
1861 To fix, extract the xbase set again."
1862
1863 _notfixed=""
1864 if [ "${op}" = "fix" ]; then
1865 _notfixed="${NOT_FIXED}"
1866 fi
1867
1868 if [ ! -d "${DEST_DIR}${pcpath}" ]; then
1869 return 0
1870 fi
1871
1872 # Delete obsolete files in the directory, and the directory
1873 # itself. If the directory contains unexpected extra files
1874 # then it will not be deleted.
1875 ( [ -f "${DEST_DIR}"/var/db/obsolete/xbase ] \
1876 && ${SORT} -ru "${DEST_DIR}"/var/db/obsolete/xbase \
1877 | ${GREP} -E "^\\.?${pcpath}/" ;
1878 echo "${pcpath}" ) \
1879 | obsolete_paths "${op}"
1880 failed=$(( ${failed} + $? ))
1881
1882 # If the directory was removed above, then try to replace it with
1883 # a file.
1884 if [ -d "${DEST_DIR}${pcpath}" ]; then
1885 msg "${filemsg}${_notfixed}"
1886 failed=$(( ${failed} + 1 ))
1887 else
1888 if ! find_file_in_dirlist pc "${pcpath}" \
1889 "${pcsrcdir}" "${SRC_DIR}${pcpath%/*}"
1890 then
1891 msg "${filemsg}${_notfixed}"
1892 failed=$(( ${failed} + 1 ))
1893 else
1894 # ${dir} is set by find_file_in_dirlist()
1895 populate_dir "${op}" true \
1896 "${dir}" "${DEST_DIR}${pcpath%/*}" 444 \
1897 pc
1898 failed=$(( ${failed} + $? ))
1899 fi
1900 fi
1901
1902 return $failed
1903 }
1904
1905 #
1906 # uid
1907 #
1908 additem uid "required users in /etc/master.passwd"
1909 do_uid()
1910 {
1911 [ -n "$1" ] || err 3 "USAGE: do_uid fix|check"
1912
1913 check_ids "$1" users "${DEST_DIR}/etc/master.passwd" \
1914 "${SRC_DIR}/etc/master.passwd" 12 \
1915 postfix SKIP named ntpd sshd SKIP _pflogd _rwhod SKIP _proxy \
1916 _timedc _sdpd _httpd _mdnsd _tests _tcpdump _tss SKIP _rtadvd \
1917 SKIP _unbound _nsd
1918 }
1919
1920
1921 #
1922 # varrwho
1923 #
1924 additem varrwho "required ownership of files in /var/rwho"
1925 do_varrwho()
1926 {
1927 [ -n "$1" ] || err 3 "USAGE: do_varrwho fix|check"
1928
1929 contents_owner "$1" "${DEST_DIR}/var/rwho" _rwhod _rwhod
1930 }
1931
1932
1933 #
1934 # tcpdumpchroot
1935 #
1936 additem tcpdumpchroot "remove /var/chroot/tcpdump/etc/protocols"
1937 do_tcpdumpchroot()
1938 {
1939 [ -n "$1" ] || err 3 "USAGE: do_tcpdumpchroot fix|check"
1940
1941 failed=0;
1942 if [ -r "${DEST_DIR}/var/chroot/tcpdump/etc/protocols" ]; then
1943 if [ "$1" = "fix" ]; then
1944 rm "${DEST_DIR}/var/chroot/tcpdump/etc/protocols"
1945 failed=$(( ${failed} + $? ))
1946 rmdir "${DEST_DIR}/var/chroot/tcpdump/etc"
1947 failed=$(( ${failed} + $? ))
1948 else
1949 failed=1
1950 fi
1951 fi
1952 return ${failed}
1953 }
1954
1955
1956 #
1957 # atf
1958 #
1959 additem atf "install missing atf configuration files and validate them"
1960 do_atf()
1961 {
1962 [ -n "$1" ] || err 3 "USAGE: do_atf fix|check"
1963 op="$1"
1964 failed=0
1965
1966 # Ensure atf configuration files are in place.
1967 if find_file_in_dirlist NetBSD.conf "NetBSD.conf" \
1968 "${SRC_DIR}/external/bsd/atf/etc/atf" \
1969 "${SRC_DIR}/etc/atf"; then
1970 # ${dir} is set by find_file_in_dirlist()
1971 populate_dir "${op}" true "${dir}" "${DEST_DIR}/etc/atf" 644 \
1972 NetBSD.conf common.conf || failed=1
1973 else
1974 failed=1
1975 fi
1976 if find_file_in_dirlist atf-run.hooks "atf-run.hooks" \
1977 "${SRC_DIR}/external/bsd/atf/dist/tools/sample" \
1978 "${SRC_DIR}/etc/atf"; then
1979 # ${dir} is set by find_file_in_dirlist()
1980 populate_dir "${op}" true "${dir}" "${DEST_DIR}/etc/atf" 644 \
1981 atf-run.hooks || failed=1
1982 else
1983 failed=1
1984 fi
1985
1986 # Validate the _atf to _tests user/group renaming.
1987 if [ -f "${DEST_DIR}/etc/atf/common.conf" ]; then
1988 handle_atf_user "${op}" || failed=1
1989 else
1990 failed=1
1991 fi
1992
1993 return ${failed}
1994 }
1995
1996 handle_atf_user()
1997 {
1998 local op="$1"
1999 local failed=0
2000
2001 local conf="${DEST_DIR}/etc/atf/common.conf"
2002 if grep '[^#]*unprivileged-user[ \t]*=.*_atf' "${conf}" >/dev/null
2003 then
2004 if [ "$1" = "fix" ]; then
2005 ${SED} -e \
2006 "/[^#]*unprivileged-user[\ t]*=/s/_atf/_tests/" \
2007 "${conf}" >"${conf}.new"
2008 failed=$(( ${failed} + $? ))
2009 mv "${conf}.new" "${conf}"
2010 failed=$(( ${failed} + $? ))
2011 msg "Set unprivileged-user=_tests in ${conf}"
2012 else
2013 msg "unprivileged-user=_atf in ${conf} should be" \
2014 "unprivileged-user=_tests"
2015 failed=1
2016 fi
2017 fi
2018
2019 return ${failed}
2020 }
2021
2022 #
2023 # catpages
2024 #
2025 obsolete_catpages()
2026 {
2027 basedir="$2"
2028 section="$3"
2029 mandir="${basedir}/man${section}"
2030 catdir="${basedir}/cat${section}"
2031 test -d "$mandir" || return 0
2032 test -d "$catdir" || return 0
2033 (cd "$mandir" && find . -type f) | {
2034 failed=0
2035 while read manpage; do
2036 manpage="${manpage#./}"
2037 case "$manpage" in
2038 *.Z)
2039 catname="$catdir/${manpage%.*.Z}.0"
2040 ;;
2041 *.gz)
2042 catname="$catdir/${manpage%.*.gz}.0"
2043 ;;
2044 *)
2045 catname="$catdir/${manpage%.*}.0"
2046 ;;
2047 esac
2048 test -e "$catname" -a "$catname" -ot "$mandir/$manpage" || continue
2049 if [ "$1" = "fix" ]; then
2050 rm "$catname"
2051 failed=$(( ${failed} + $? ))
2052 msg "Removed obsolete cat page $catname"
2053 else
2054 msg "Obsolete cat page $catname"
2055 failed=1
2056 fi
2057 done
2058 exit $failed
2059 }
2060 }
2061
2062 additem catpages "remove outdated cat pages"
2063 do_catpages()
2064 {
2065 failed=0
2066 for manbase in /usr/share/man /usr/X11R6/man /usr/X11R7/man; do
2067 for sec in 1 2 3 4 5 6 7 8 9; do
2068 obsolete_catpages "$1" "${DEST_DIR}${manbase}" "${sec}"
2069 failed=$(( ${failed} + $? ))
2070 if [ "$1" = "fix" ]; then
2071 rmdir "${DEST_DIR}${manbase}/cat${sec}"/* \
2072 2>/dev/null
2073 rmdir "${DEST_DIR}${manbase}/cat${sec}" \
2074 2>/dev/null
2075 fi
2076 done
2077 done
2078 return $failed
2079 }
2080
2081 #
2082 # man.conf
2083 #
2084 additem manconf "check for a mandoc usage in /etc/man.conf"
2085 do_manconf()
2086 {
2087 [ -n "$1" ] || err 3 "USAGE: do_manconf fix|check"
2088 op="$1"
2089 failed=0
2090
2091 [ -f "${DEST_DIR}/etc/man.conf" ] || return 0
2092 if ${GREP} -w "mandoc" "${DEST_DIR}/etc/man.conf" >/dev/null 2>&1;
2093 then
2094 failed=0;
2095 else
2096 failed=1
2097 notfixed=""
2098 if [ "${op}" = "fix" ]; then
2099 notfixed="${NOT_FIXED}"
2100 fi
2101 msg "The file /etc/man.conf has not been adapted to mandoc usage; you"
2102 msg "probably want to copy a new version over. ${notfixed}"
2103 fi
2104
2105 return ${failed}
2106 }
2107
2108
2109 #
2110 # ptyfsoldnodes
2111 #
2112 additem ptyfsoldnodes "remove legacy device nodes when using ptyfs"
2113 do_ptyfsoldnodes()
2114 {
2115 [ -n "$1" ] || err 3 "USAGE: do_ptyfsoldnodes fix|check"
2116 _ptyfs_op="$1"
2117
2118 # Check whether ptyfs is in use
2119 failed=0;
2120 if ! ${GREP} -E "^ptyfs" "${DEST_DIR}/etc/fstab" > /dev/null; then
2121 msg "ptyfs is not in use"
2122 return 0
2123 fi
2124
2125 if [ ! -e "${DEST_DIR}/dev/pts" ]; then
2126 msg "ptyfs is not properly configured: missing /dev/pts"
2127 return 1
2128 fi
2129
2130 # Find the device major numbers for the pty master and slave
2131 # devices, by parsing the output from "MAKEDEV -s pty0".
2132 #
2133 # Output from MAKEDEV looks like this:
2134 # ./ttyp0 type=char device=netbsd,5,0 mode=666 gid=0 uid=0
2135 # ./ptyp0 type=char device=netbsd,6,0 mode=666 gid=0 uid=0
2136 #
2137 # Output from awk, used in the eval statement, looks like this:
2138 # maj_ptym=6; maj_ptys=5;
2139 #
2140 find_makedev
2141 eval "$(
2142 ${HOST_SH} "${MAKEDEV_DIR}/MAKEDEV" -s pty0 2>/dev/null \
2143 | ${AWK} '\
2144 BEGIN { before_re = ".*device=[a-zA-Z]*,"; after_re = ",.*"; }
2145 /ptyp0/ { maj_ptym = gensub(before_re, "", 1, $0);
2146 maj_ptym = gensub(after_re, "", 1, maj_ptym); }
2147 /ttyp0/ { maj_ptys = gensub(before_re, "", 1, $0);
2148 maj_ptys = gensub(after_re, "", 1, maj_ptys); }
2149 END { print "maj_ptym=" maj_ptym "; maj_ptys=" maj_ptys ";"; }
2150 '
2151 )"
2152 #msg "Major numbers are maj_ptym=${maj_ptym} maj_ptys=${maj_ptys}"
2153 if [ -z "$maj_ptym" ] || [ -z "$maj_ptys" ]; then
2154 msg "Cannot find device major numbers for pty master and slave"
2155 return 1
2156 fi
2157
2158 # look for /dev/[pt]ty[p-zP-T][0-9a-zA-Z], and check that they
2159 # have the expected device major numbers. ttyv* is typically not a
2160 # pty device, but we check it anyway.
2161 #
2162 # The "for d1" loop is intended to avoid overflowing ARG_MAX;
2163 # otherwise we could have used a single glob pattern.
2164 #
2165 # If there are no files that match a particular pattern,
2166 # then stat prints something like:
2167 # stat: /dev/[pt]tyx?: lstat: No such file or directory
2168 # and we ignore it. XXX: We also ignore other error messages.
2169 #
2170 _ptyfs_tmp="$(mktemp /tmp/postinstall.ptyfs.XXXXXXXX)"
2171 for d1 in p q r s t u v w x y z P Q R S T; do
2172 ${STAT} -f "%Hr %N" "${DEST_DIR}/dev/"[pt]ty${d1}? 2>&1
2173 done \
2174 | while read -r major node ; do
2175 case "$major" in
2176 ${maj_ptym}|${maj_ptys}) echo "$node" ;;
2177 esac
2178 done >"${_ptyfs_tmp}"
2179
2180 _desc="legacy device node"
2181 while read node; do
2182 if [ "${_ptyfs_op}" = "check" ]; then
2183 msg "Remove ${_desc} ${node}"
2184 failed=1
2185 else # "fix"
2186 if rm "${node}"; then
2187 msg "Removed ${_desc} ${node}"
2188 else
2189 warn "Failed to remove ${_desc} ${node}"
2190 failed=1
2191 fi
2192 fi
2193 done < "${_ptyfs_tmp}"
2194 rm "${_ptyfs_tmp}"
2195
2196 return ${failed}
2197 }
2198
2199
2200 #
2201 # varshm
2202 #
2203 additem varshm "check for a tmpfs mounted on /var/shm"
2204 do_varshm()
2205 {
2206 [ -n "$1" ] || err 3 "USAGE: do_varshm fix|check"
2207 op="$1"
2208 failed=0
2209
2210 [ -f "${DEST_DIR}/etc/fstab" ] || return 0
2211 if ${GREP} -E "^var_shm_symlink" "${DEST_DIR}/etc/rc.conf" >/dev/null 2>&1;
2212 then
2213 failed=0;
2214 elif ${GREP} -w "/var/shm" "${DEST_DIR}/etc/fstab" >/dev/null 2>&1;
2215 then
2216 failed=0;
2217 else
2218 if [ "${op}" = "check" ]; then
2219 failed=1
2220 msg "No /var/shm mount found in ${DEST_DIR}/etc/fstab"
2221 elif [ "${op}" = "fix" ]; then
2222 printf '\ntmpfs\t/var/shm\ttmpfs\trw,-m1777,-sram%%25\n' \
2223 >> "${DEST_DIR}/etc/fstab"
2224 msg "Added tmpfs with 25% ram limit as /var/shm"
2225
2226 fi
2227 fi
2228
2229 return ${failed}
2230 }
2231
2232 #
2233 # obsolete_stand
2234 #
2235 adddisableditem obsolete_stand "remove obsolete files from /stand"
2236 do_obsolete_stand()
2237 {
2238 [ -n "$1" ] || err 3 "USAGE: do_obsolete_stnd fix|check"
2239 op="$1"
2240 failed=0
2241
2242 for dir in \
2243 /stand/${MACHINE} \
2244 /stand/${MACHINE}-4xx \
2245 /stand/${MACHINE}-booke \
2246 /stand/${MACHINE}-xen \
2247 /stand/${MACHINE}pae-xen
2248 do
2249 [ -d "${DESTDIR}${dir}" ] && obsolete_stand "${dir}"
2250 done | obsolete_paths "${op}"
2251 failed=$(( ${failed} + $? ))
2252
2253 return ${failed}
2254 }
2255
2256 listarchsubdirs() {
2257 if ! $SOURCEMODE; then
2258 echo "@ARCHSUBDIRS@"
2259 else
2260 ${SED} -n -e '/ARCHDIR_SUBDIR/s/[[:space:]]//gp' \
2261 ${SRC_DIR}/compat/archdirs.mk
2262 fi
2263 }
2264
2265
2266 getarchsubdirs() {
2267 local m
2268 case ${MACHINE_ARCH} in
2269 *arm*|*aarch64*) m=arm;;
2270 x86_64) m=amd64;;
2271 *) m=${MACHINE_ARCH};;
2272 esac
2273
2274 for i in $(listarchsubdirs); do
2275 echo $i
2276 done | ${SORT} -u | ${SED} -n -e "/=${m}/s@.*=${m}/\(.*\)@\1@p"
2277 }
2278
2279 getcompatlibdirs() {
2280 for i in $(getarchsubdirs); do
2281 if [ -d "${DEST_DIR}/usr/lib/$i" ]; then
2282 echo /usr/lib/$i
2283 fi
2284 done
2285 }
2286
2287 #
2288 # obsolete
2289 # (this item is last to allow other items to move obsolete files)
2290 #
2291 additem obsolete "remove obsolete file sets and minor libraries"
2292 do_obsolete()
2293 {
2294 [ -n "$1" ] || err 3 "USAGE: do_obsolete fix|check"
2295 op="$1"
2296 failed=0
2297
2298 ${SORT} -ru "${DEST_DIR}"/var/db/obsolete/* | obsolete_paths "${op}"
2299 failed=$(( ${failed} + $? ))
2300
2301 (
2302 obsolete_libs /lib
2303 obsolete_libs /usr/lib
2304 obsolete_libs /usr/lib/i18n
2305 obsolete_libs /usr/X11R6/lib
2306 obsolete_libs /usr/X11R7/lib
2307 for i in $(getcompatlibdirs); do
2308 obsolete_libs $i
2309 done
2310 ) | obsolete_paths "${op}"
2311 failed=$(( ${failed} + $? ))
2312
2313 return ${failed}
2314 }
2315
2316 #
2317 # end of items
2318 # ------------
2319 #
2320
2321
2322 usage()
2323 {
2324 cat 1>&2 << _USAGE_
2325 Usage: ${PROGNAME} [-s srcdir] [-x xsrcdir] [-d destdir] [-m mach] [-a arch] op [item [...]]
2326 Perform post-installation checks and/or fixes on a system's
2327 configuration files.
2328 If no items are provided, a default set of checks or fixes is applied.
2329
2330 Options:
2331 -s {srcdir|tgzfile|tempdir}
2332 Location of the source files. This may be any
2333 of the following:
2334 * A directory that contains a NetBSD source tree;
2335 * A distribution set file such as "etc.tgz" or
2336 "xetc.tgz". Pass multiple -s options to specify
2337 multiple such files;
2338 * A temporary directory in which one or both of
2339 "etc.tgz" and "xetc.tgz" have been extracted.
2340 [${SRC_DIR:-/usr/src}]
2341 -x xsrcdir Location of the X11 source files. This must be
2342 a directory that contains a NetBSD xsrc tree.
2343 [${XSRC_DIR:-/usr/src/../xsrc}]
2344 -d destdir Destination directory to check. [${DEST_DIR:-/}]
2345 -m mach MACHINE. [${MACHINE}]
2346 -a arch MACHINE_ARCH. [${MACHINE_ARCH}]
2347
2348 Operation may be one of:
2349 help Display this help.
2350 list List available items.
2351 check Perform post-installation checks on items.
2352 diff [diff(1) options ...]
2353 Similar to 'check' but also output difference of files.
2354 fix Apply fixes that 'check' determines need to be applied.
2355 usage Display this usage.
2356 _USAGE_
2357 exit 2
2358 }
2359
2360
2361 list()
2362 {
2363 echo "Default set of items (to apply if no items are provided by user):"
2364 echo " Item Description"
2365 echo " ---- -----------"
2366 for i in ${defaultitems}; do
2367 eval desc=\"\${desc_${i}}\"
2368 printf " %-12s %s\n" "${i}" "${desc}"
2369 done
2370 echo "Items disabled by default (must be requested explicitly):"
2371 echo " Item Description"
2372 echo " ---- -----------"
2373 for i in ${otheritems}; do
2374 eval desc=\"\${desc_${i}}\"
2375 printf " %-12s %s\n" "${i}" "${desc}"
2376 done
2377
2378 }
2379
2380
2381 main()
2382 {
2383 TGZLIST= # quoted list list of tgz files
2384 SRC_ARGLIST= # quoted list of one or more "-s" args
2385 SRC_DIR="${SRC_ARG}" # set default value for early usage()
2386 XSRC_DIR="${SRC_ARG}/../xsrc"
2387 N_SRC_ARGS=0 # number of "-s" args
2388 TGZMODE=false # true if "-s" specifies a tgz file
2389 DIRMODE=false # true if "-s" specified a directory
2390 SOURCEMODE=false # true if "-s" specified a source directory
2391
2392 case "$(uname -s)" in
2393 Darwin)
2394 # case sensitive match for case insensitive fs
2395 file_exists_exact=file_exists_exact
2396 ;;
2397 *)
2398 file_exists_exact=:
2399 ;;
2400 esac
2401
2402 while getopts s:x:d:m:a: ch; do
2403 case "${ch}" in
2404 s)
2405 qarg="$(shell_quote "${OPTARG}")"
2406 N_SRC_ARGS=$(( $N_SRC_ARGS + 1 ))
2407 SRC_ARGLIST="${SRC_ARGLIST}${SRC_ARGLIST:+ }-s ${qarg}"
2408 if [ -f "${OPTARG}" ]; then
2409 # arg refers to a *.tgz file.
2410 # This may happen twice, for both
2411 # etc.tgz and xetc.tgz, so we build up a
2412 # quoted list in TGZLIST.
2413 TGZMODE=true
2414 TGZLIST="${TGZLIST}${TGZLIST:+ }${qarg}"
2415 # Note that, when TGZMODE is true,
2416 # SRC_ARG is used only for printing
2417 # human-readable messages.
2418 SRC_ARG="${TGZLIST}"
2419 elif [ -d "${OPTARG}" ]; then
2420 # arg refers to a directory.
2421 # It might be a source directory, or a
2422 # directory where the sets have already
2423 # been extracted.
2424 DIRMODE=true
2425 SRC_ARG="${OPTARG}"
2426 if [ -f "${OPTARG}/etc/Makefile" ]; then
2427 SOURCEMODE=true
2428 fi
2429 else
2430 err 2 "Invalid argument for -s option"
2431 fi
2432 ;;
2433 x)
2434 if [ -d "${OPTARG}" ]; then
2435 # arg refers to a directory.
2436 XSRC_DIR="${OPTARG}"
2437 XSRC_DIR_FIX="-x ${OPTARG} "
2438 else
2439 err 2 "Not a directory for -x option"
2440 fi
2441 ;;
2442 d)
2443 DEST_DIR="${OPTARG}"
2444 ;;
2445 m)
2446 MACHINE="${OPTARG}"
2447 ;;
2448 a)
2449 MACHINE_ARCH="${OPTARG}"
2450 ;;
2451 *)
2452 usage
2453 ;;
2454 esac
2455 done
2456 shift $((${OPTIND} - 1))
2457 [ $# -gt 0 ] || usage
2458
2459 if [ "$N_SRC_ARGS" -gt 1 ] && $DIRMODE; then
2460 err 2 "Multiple -s args are allowed only with tgz files"
2461 fi
2462 if [ "$N_SRC_ARGS" -eq 0 ]; then
2463 # The default SRC_ARG was set elsewhere
2464 DIRMODE=true
2465 SOURCEMODE=true
2466 SRC_ARGLIST="-s $(shell_quote "${SRC_ARG}")"
2467 fi
2468
2469 #
2470 # If '-s' arg or args specified tgz files, extract them
2471 # to a scratch directory.
2472 #
2473 if $TGZMODE; then
2474 ETCTGZDIR="${SCRATCHDIR}/etc.tgz"
2475 echo "Note: Creating temporary directory ${ETCTGZDIR}"
2476 if ! mkdir "${ETCTGZDIR}"; then
2477 err 2 "Can't create ${ETCTGZDIR}"
2478 fi
2479 ( # subshell to localise changes to "$@"
2480 eval "set -- ${TGZLIST}"
2481 for tgz in "$@"; do
2482 echo "Note: Extracting files from ${tgz}"
2483 cat "${tgz}" | (
2484 cd "${ETCTGZDIR}" &&
2485 tar -zxf -
2486 ) || err 2 "Can't extract ${tgz}"
2487 done
2488 )
2489 SRC_DIR="${ETCTGZDIR}"
2490 else
2491 SRC_DIR="${SRC_ARG}"
2492 fi
2493
2494 [ -d "${SRC_DIR}" ] || err 2 "${SRC_DIR} is not a directory"
2495 [ -d "${DEST_DIR}" ] || err 2 "${DEST_DIR} is not a directory"
2496 [ -n "${MACHINE}" ] || err 2 "\${MACHINE} is not defined"
2497 [ -n "${MACHINE_ARCH}" ] || err 2 "\${MACHINE_ARCH} is not defined"
2498 if ! $SOURCEMODE && ! [ -f "${SRC_DIR}/etc/mtree/set.etc" ]; then
2499 err 2 "Files from the etc.tgz set are missing"
2500 fi
2501
2502 # If directories are /, clear them, so various messages
2503 # don't have leading "//". However, this requires
2504 # the use of ${foo:-/} to display the variables.
2505 #
2506 [ "${SRC_DIR}" = "/" ] && SRC_DIR=""
2507 [ "${DEST_DIR}" = "/" ] && DEST_DIR=""
2508
2509 detect_x11
2510
2511 op="$1"
2512 shift
2513
2514 case "${op}" in
2515 diff)
2516 op=check
2517 DIFF_STYLE=n # default style is RCS
2518 OPTIND=1
2519 while getopts bcenpuw ch; do
2520 case "${ch}" in
2521 c|e|n|u)
2522 if [ "${DIFF_STYLE}" != "n" -a \
2523 "${DIFF_STYLE}" != "${ch}" ]; then
2524 err 2 "conflicting output style: ${ch}"
2525 fi
2526 DIFF_STYLE="${ch}"
2527 ;;
2528 b|p|w)
2529 DIFF_OPT="${DIFF_OPT} -${ch}"
2530 ;;
2531 *)
2532 err 2 "unknown diff option"
2533 ;;
2534 esac
2535 done
2536 shift $((${OPTIND} - 1))
2537 ;;
2538 esac
2539
2540 case "${op}" in
2541
2542 usage|help)
2543 usage
2544 ;;
2545
2546 list)
2547 echo "Source directory: ${SRC_DIR:-/}"
2548 echo "Target directory: ${DEST_DIR:-/}"
2549 if $TGZMODE; then
2550 echo " (extracted from: ${SRC_ARG})"
2551 fi
2552 list
2553 ;;
2554
2555 check|fix)
2556 todo="$*"
2557 : ${todo:="${defaultitems}"}
2558
2559 # ensure that all supplied items are valid
2560 #
2561 for i in ${todo}; do
2562 eval desc=\"\${desc_${i}}\"
2563 [ -n "${desc}" ] || err 2 "Unsupported ${op} '"${i}"'"
2564 done
2565
2566 # perform each check/fix
2567 #
2568 echo "Source directory: ${SRC_DIR:-/}"
2569 if $TGZMODE; then
2570 echo " (extracted from: ${SRC_ARG})"
2571 fi
2572 echo "Target directory: ${DEST_DIR:-/}"
2573 items_passed=
2574 items_failed=
2575 for i in ${todo}; do
2576 echo "${i} ${op}:"
2577 ( eval do_${i} ${op} )
2578 if [ $? -eq 0 ]; then
2579 items_passed="${items_passed} ${i}"
2580 else
2581 items_failed="${items_failed} ${i}"
2582 fi
2583 done
2584
2585 if [ "${op}" = "check" ]; then
2586 plural="checks"
2587 else
2588 plural="fixes"
2589 fi
2590
2591 echo "${PROGNAME} ${plural} passed:${items_passed}"
2592 echo "${PROGNAME} ${plural} failed:${items_failed}"
2593 if [ -n "${items_failed}" ]; then
2594 exitstatus=1;
2595 if [ "${op}" = "check" ]; then
2596 [ "$MACHINE" = "$(uname -m)" ] && m= || m=" -m $MACHINE"
2597 cat <<_Fix_me_
2598 To fix, run:
2599 ${HOST_SH} ${0} ${SRC_ARGLIST} ${XSRC_DIR_FIX}-d ${DEST_DIR:-/}$m fix${items_failed}
2600 Note that this may overwrite local changes.
2601 _Fix_me_
2602 fi
2603 fi
2604
2605 ;;
2606
2607 *)
2608 warn "Unknown operation '"${op}"'"
2609 usage
2610 ;;
2611
2612 esac
2613 }
2614
2615 if [ -n "$POSTINSTALL_FUNCTION" ]; then
2616 eval "$POSTINSTALL_FUNCTION"
2617 exit 0
2618 fi
2619
2620 # defaults
2621 #
2622 PROGNAME="${0##*/}"
2623 SRC_ARG="/usr/src"
2624 DEST_DIR="/"
2625 : ${MACHINE:="$( uname -m )"} # assume native build if $MACHINE is not set
2626 : ${MACHINE_ARCH:="$( uname -p )"}# assume native build if not set
2627
2628 DIFF_STYLE=
2629 NOT_FIXED=" (FIX MANUALLY)"
2630 SCRATCHDIR="$( mkdtemp )" || err 2 "Can't create scratch directory"
2631 trap "/bin/rm -rf \"\${SCRATCHDIR}\" ; exit 0" 1 2 3 15 # HUP INT QUIT TERM
2632
2633 umask 022
2634 exec 3>/dev/null
2635 exec 4>/dev/null
2636 exitstatus=0
2637
2638 main "$@"
2639 /bin/rm -rf "${SCRATCHDIR}"
2640 exit $exitstatus
2641