Home | History | Annotate | Line # | Download | only in postinstall
postinstall.in revision 1.26
      1 #!/bin/sh
      2 #
      3 # $NetBSD: postinstall.in,v 1.26 2020/06/15 21:51:13 christos Exp $
      4 #
      5 # Copyright (c) 2002-2015 The NetBSD Foundation, Inc.
      6 # All rights reserved.
      7 #
      8 # This code is derived from software contributed to The NetBSD Foundation
      9 # by Luke Mewburn.
     10 #
     11 # Redistribution and use in source and binary forms, with or without
     12 # modification, are permitted provided that the following conditions
     13 # are met:
     14 # 1. Redistributions of source code must retain the above copyright
     15 #    notice, this list of conditions and the following disclaimer.
     16 # 2. Redistributions in binary form must reproduce the above copyright
     17 #    notice, this list of conditions and the following disclaimer in the
     18 #    documentation and/or other materials provided with the distribution.
     19 #
     20 # THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     21 # ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     22 # TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     23 # PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     24 # BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     25 # CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     26 # SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     27 # INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     28 # CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     29 # ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     30 # POSSIBILITY OF SUCH DAMAGE.
     31 #
     32 # postinstall
     33 #	Check for or fix configuration changes that occur
     34 #	over time as NetBSD evolves.
     35 #
     36 
     37 #
     38 # XXX BE SURE TO USE ${DEST_DIR} PREFIX BEFORE ALL REAL FILE OPERATIONS XXX
     39 #
     40 
     41 #
     42 # checks to add:
     43 #	- sysctl(8) renames (net.inet6.ip6.bindv6only -> net.inet6.ip6.v6only)
     44 #	- de* -> tlp* migration (/etc/ifconfig.de*, $ifconfig_de*, ...) ?
     45 #	- support quiet/verbose mode ?
     46 #	- differentiate between failures caused by missing source
     47 #	  and real failures
     48 #	- install moduli into usr/share/examples/ssh and use from there?
     49 #	- differentiate between "needs fix" versus "can't fix" issues
     50 #
     51 
     52 # This script is executed as part of a cross build.  Allow the build
     53 # environment to override the locations of some tools.
     54 : ${AWK:=awk}
     55 : ${DB:=db}
     56 : ${GREP:=grep}
     57 : ${HOST_SH:=sh}
     58 : ${MAKE:=make}
     59 : ${PWD_MKDB:=/usr/sbin/pwd_mkdb}
     60 : ${SED:=sed}
     61 : ${SORT:=sort}
     62 : ${STAT:=stat}
     63 
     64 #
     65 #	helper functions
     66 #
     67 
     68 err()
     69 {
     70 	exitval=$1
     71 	shift
     72 	echo 1>&2 "${PROGNAME}: $*"
     73 	if [ -n "${SCRATCHDIR}" ]; then
     74 	    /bin/rm -rf "${SCRATCHDIR}"
     75 	fi
     76 	exit ${exitval}
     77 }
     78 
     79 warn()
     80 {
     81 	echo 1>&2 "${PROGNAME}: $*"
     82 }
     83 
     84 msg()
     85 {
     86 	echo "	$*"
     87 }
     88 
     89 mkdtemp()
     90 {
     91 	# Make sure we don't loop forever if mkdir will always fail.
     92 	[ -d /tmp ] || err 2 /tmp is not a directory
     93 	[ -w /tmp ] || err 2 /tmp is not writable
     94 
     95 	_base="/tmp/_postinstall.$$"
     96 	_serial=0
     97 
     98 	while true; do
     99 		_dir="${_base}.${_serial}"
    100 		mkdir -m 0700 "${_dir}" && break
    101 		_serial=$((${_serial} + 1))
    102 	done
    103 	echo "${_dir}"
    104 }
    105 
    106 # Quote args to make them safe in the shell.
    107 # Usage: quotedlist="$(shell_quote args...)"
    108 #
    109 # After building up a quoted list, use it by evaling it inside
    110 # double quotes, like this:
    111 #    eval "set -- $quotedlist"
    112 # or like this:
    113 #    eval "\$command $quotedlist \$filename"
    114 #
    115 shell_quote()
    116 {(
    117 	local result=''
    118 	local arg qarg
    119 	LC_COLLATE=C ; export LC_COLLATE # so [a-zA-Z0-9] works in ASCII
    120 	for arg in "$@" ; do
    121 		case "${arg}" in
    122 		'')
    123 			qarg="''"
    124 			;;
    125 		*[!-./a-zA-Z0-9]*)
    126 			# Convert each embedded ' to '\'',
    127 			# then insert ' at the beginning of the first line,
    128 			# and append ' at the end of the last line.
    129 			# Finally, elide unnecessary '' pairs at the
    130 			# beginning and end of the result and as part of
    131 			# '\'''\'' sequences that result from multiple
    132 			# adjacent quotes in he input.
    133 			qarg="$(printf "%s\n" "$arg" | \
    134 			    ${SED:-sed} -e "s/'/'\\\\''/g" \
    135 				-e "1s/^/'/" -e "\$s/\$/'/" \
    136 				-e "1s/^''//" -e "\$s/''\$//" \
    137 				-e "s/'''/'/g"
    138 				)"
    139 			;;
    140 		*)
    141 			# Arg is not the empty string, and does not contain
    142 			# any unsafe characters.  Leave it unchanged for
    143 			# readability.
    144 			qarg="${arg}"
    145 			;;
    146 		esac
    147 		result="${result}${result:+ }${qarg}"
    148 	done
    149 	printf "%s\n" "$result"
    150 )}
    151 
    152 # Convert arg $1 to a basic regular expression (as in sed)
    153 # that will match the arg.  This works by inserting backslashes
    154 # before characters that are special in basic regular expressions.
    155 # It also inserts backslashes before the extra characters specified
    156 # in $2 (which defaults to "/,").
    157 # XXX: Does not handle embedded newlines.
    158 # Usage: regex="$(bre_quote "${string}")"
    159 bre_quote()
    160 {
    161 	local arg="$1"
    162 	local extra="${2-/,}"
    163 	printf "%s\n" "${arg}" | ${SED} -e 's/[][^$.*\\'"${extra}"']/\\&/g'
    164 }
    165 
    166 # unprefix dir
    167 #	Remove any dir prefix from a list of paths on stdin,
    168 #	and write the result to stdout.  Useful for converting
    169 #	from ${DEST_DIR}/path to /path.
    170 #
    171 unprefix()
    172 {
    173 	[ $# -eq 1 ] || err 3 "USAGE: unprefix dir"
    174 	local prefix="${1%/}"
    175 	prefix="$(bre_quote "${prefix}")"
    176 
    177 	${SED} -e "s,^${prefix}/,/,"
    178 }
    179 
    180 # additem item description
    181 #	Add item to list of supported items to check/fix,
    182 #	which are checked/fixed by default if no item is requested by user.
    183 #
    184 additem()
    185 {
    186 	[ $# -eq 2 ] || err 3 "USAGE: additem item description"
    187 	defaultitems="${defaultitems}${defaultitems:+ }$1"
    188 	eval desc_$1=\"\$2\"
    189 }
    190 
    191 # adddisableditem item description
    192 #	Add item to list of supported items to check/fix,
    193 #	but execute the item only if the user asks for it explicitly.
    194 #
    195 adddisableditem()
    196 {
    197 	[ $# -eq 2 ] || err 3 "USAGE: adddisableditem item description"
    198 	otheritems="${otheritems}${otheritems:+ }$1"
    199 	eval desc_$1=\"\$2\"
    200 }
    201 
    202 # checkdir op dir mode
    203 #	Ensure dir exists, and if not, create it with the appropriate mode.
    204 #	Returns 0 if ok, 1 otherwise.
    205 #
    206 check_dir()
    207 {
    208 	[ $# -eq 3 ] || err 3 "USAGE: check_dir op dir mode"
    209 	_cdop="$1"
    210 	_cddir="$2"
    211 	_cdmode="$3"
    212 	[ -d "${_cddir}" ] && return 0
    213 	if [ "${_cdop}" = "check" ]; then
    214 		msg "${_cddir} is not a directory"
    215 		return 1
    216 	elif ! mkdir -m "${_cdmode}" "${_cddir}" ; then
    217 		msg "Can't create missing ${_cddir}"
    218 		return 1
    219 	else
    220 		msg "Missing ${_cddir} created"
    221 	fi
    222 	return 0
    223 }
    224 
    225 # check_ids op type file srcfile start id [...]
    226 #	Check if file of type "users" or "groups" contains the relevant IDs.
    227 #	Use srcfile as a reference for the expected contents.
    228 #	The specified "id" names should be given in numerical order,
    229 #	with the first name corresponding to numerical value "start",
    230 #	and with the special name "SKIP" being used to mark gaps in the
    231 #	sequence.
    232 #	Returns 0 if ok, 1 otherwise.
    233 #
    234 check_ids()
    235 {
    236 	[ $# -ge 6 ] || err 3 "USAGE: checks_ids op type file start srcfile id [...]"
    237 	_op="$1"
    238 	_type="$2"
    239 	_file="$3"
    240 	_srcfile="$4"
    241 	_start="$5"
    242 	shift 5
    243 	#_ids="$@"
    244 
    245 	if [ ! -f "${_file}" ]; then
    246 		msg "${_file} doesn't exist; can't check for missing ${_type}"
    247 		return 1
    248 	fi
    249 	if [ ! -r "${_file}" ]; then
    250 		msg "${_file} is not readable; can't check for missing ${_type}"
    251 		return 1
    252 	fi
    253 	_notfixed=""
    254 	if [ "${_op}" = "fix" ]; then
    255 		_notfixed="${NOT_FIXED}"
    256 	fi
    257 	_missing="$(${AWK} -v start=$_start -F: '
    258 		BEGIN {
    259 			for (x = 1; x < ARGC; x++) {
    260 				if (ARGV[x] == "SKIP")
    261 					continue;
    262 				idlist[ARGV[x]]++;
    263 				value[ARGV[x]] = start + x - 1;
    264 			}
    265 			ARGC=1
    266 		}
    267 		{
    268 			found[$1]++
    269 			number[$1] = $3
    270 		}
    271 		END {
    272 			for (id in idlist) {
    273 				if (!(id in found))
    274 					printf("%s (missing)\n", id)
    275 				else if (number[id] != value[id])
    276 					printf("%s (%d != %d)\n", id,
    277 					    number[id], value[id])
    278 				start++;
    279 			}
    280 		}
    281 	' "$@" < "${_file}")"	|| return 1
    282 	if [ -n "${_missing}" ]; then
    283 		msg "Error ${_type}${_notfixed}:" $(echo ${_missing})
    284 		msg "Use the following as a template:"
    285 		set -- ${_missing}
    286 		while [ $# -gt 0 ]
    287 		do
    288 			${GREP} -E "^${1}:" ${_srcfile}
    289 			shift 2
    290 		done
    291 		msg "and adjust if necessary."
    292 		return 1
    293 	fi
    294 	return 0
    295 }
    296 
    297 # populate_dir op onlynew src dest mode file [file ...]
    298 #	Perform op ("check" or "fix") on files in src/ against dest/
    299 #	If op = "check" display missing or changed files, optionally with diffs.
    300 #	If op != "check" copies any missing or changed files.
    301 #	If onlynew evaluates to true, changed files are ignored.
    302 #	Returns 0 if ok, 1 otherwise.
    303 #
    304 populate_dir()
    305 {
    306 	[ $# -ge 5 ] || err 3 "USAGE: populate_dir op onlynew src dest mode file [...]"
    307 	_op="$1"
    308 	_onlynew="$2"
    309 	_src="$3"
    310 	_dest="$4"
    311 	_mode="$5"
    312 	shift 5
    313 	#_files="$@"
    314 
    315 	if [ ! -d "${_src}" ]; then
    316 		msg "${_src} is not a directory; skipping check"
    317 		return 1
    318 	fi
    319 	check_dir "${_op}" "${_dest}" 755 || return 1
    320 
    321 	_cmpdir_rv=0
    322 	for f in "$@"; do
    323 		fs="${_src}/${f}"
    324 		fd="${_dest}/${f}"
    325 		_error=""
    326 		if [ ! -f "${fd}" ]; then
    327 			_error="${fd} does not exist"
    328 		elif ! cmp -s "${fs}" "${fd}" ; then
    329 			if $_onlynew; then	# leave existing ${fd} alone
    330 				continue;
    331 			fi
    332 			_error="${fs} != ${fd}"
    333 		else
    334 			continue
    335 		fi
    336 		if [ "${_op}" = "check" ]; then
    337 			msg "${_error}"
    338 			if [ -n "${DIFF_STYLE}" -a -f "${fd}" ]; then
    339 				diff -${DIFF_STYLE} ${DIFF_OPT} "${fd}" "${fs}"
    340 			fi
    341 			_cmpdir_rv=1
    342 		elif ! rm -f "${fd}" ||
    343 		     ! cp -f "${fs}" "${fd}"; then
    344 			msg "Can't copy ${fs} to ${fd}"
    345 			_cmpdir_rv=1
    346 		elif ! chmod "${_mode}" "${fd}"; then
    347 			msg "Can't change mode of ${fd} to ${_mode}"
    348 			_cmpdir_rv=1
    349 		else
    350 			msg "Copied ${fs} to ${fd}"
    351 		fi
    352 	done
    353 	return ${_cmpdir_rv}
    354 }
    355 
    356 # compare_dir op src dest mode file [file ...]
    357 #	Perform op ("check" or "fix") on files in src/ against dest/
    358 #	If op = "check" display missing or changed files, optionally with diffs.
    359 #	If op != "check" copies any missing or changed files.
    360 #	Returns 0 if ok, 1 otherwise.
    361 #
    362 compare_dir()
    363 {
    364 	[ $# -ge 4 ] || err 3 "USAGE: compare_dir op src dest mode file [...]"
    365 	_op="$1"
    366 	_src="$2"
    367 	_dest="$3"
    368 	_mode="$4"
    369 	shift 4
    370 	#_files="$@"
    371 
    372 	populate_dir "$_op" false "$_src" "$_dest" "$_mode" "$@"
    373 }
    374 
    375 # move_file op src dest --
    376 #	Check (op == "check") or move (op != "check") from src to dest.
    377 #	Returns 0 if ok, 1 otherwise.
    378 #
    379 move_file()
    380 {
    381 	[ $# -eq 3 ] || err 3 "USAGE: move_file op src dest"
    382 	_fm_op="$1"
    383 	_fm_src="$2"
    384 	_fm_dest="$3"
    385 
    386 	if [ -f "${_fm_src}" -a ! -f "${_fm_dest}" ]; then
    387 		if [ "${_fm_op}" = "check" ]; then
    388 			msg "Move ${_fm_src} to ${_fm_dest}"
    389 			return 1
    390 		fi
    391 		if ! mv "${_fm_src}" "${_fm_dest}"; then
    392 			msg "Can't move ${_fm_src} to ${_fm_dest}"
    393 			return 1
    394 		fi
    395 		msg "Moved ${_fm_src} to ${_fm_dest}"
    396 	fi
    397 	return 0
    398 }
    399 
    400 # rcconf_is_set op name var [verbose] --
    401 #	Load the rcconf for name, and check if obsolete rc.conf(5) variable
    402 #	var is defined or not.
    403 #	Returns 0 if defined (even to ""), otherwise 1.
    404 #	If verbose != "", print an obsolete warning if the var is defined.
    405 #
    406 rcconf_is_set()
    407 {
    408 	[ $# -ge 3 ] || err 3 "USAGE: rcconf_is_set op name var [verbose]"
    409 	_rcis_op="$1"
    410 	_rcis_name="$2"
    411 	_rcis_var="$3"
    412 	_rcis_verbose="$4"
    413 	_rcis_notfixed=""
    414 	if [ "${_rcis_op}" = "fix" ]; then
    415 		_rcis_notfixed="${NOT_FIXED}"
    416 	fi
    417 	(
    418 		for f in \
    419 		    "${DEST_DIR}/etc/rc.conf" \
    420 		    "${DEST_DIR}/etc/rc.conf.d/${_rcis_name}"; do
    421 			[ -f "${f}" ] && . "${f}"
    422 		done
    423 		eval echo -n \"\${${_rcis_var}}\" 1>&3
    424 		if eval "[ -n \"\${${_rcis_var}}\" \
    425 			    -o \"\${${_rcis_var}-UNSET}\" != \"UNSET\" ]"; then
    426 			if [ -n "${_rcis_verbose}" ]; then
    427 				msg \
    428     "Obsolete rc.conf(5) variable '\$${_rcis_var}' found.${_rcis_notfixed}"
    429 			fi
    430 			exit 0
    431 		else
    432 			exit 1
    433 		fi
    434 	)
    435 }
    436 
    437 # rcvar_is_enabled var
    438 #	Check if rcvar is enabled
    439 #
    440 rcvar_is_enabled()
    441 {
    442 	[ $# -eq 1 ] || err 3 "USAGE: rcvar_is_enabled var"
    443 	_rcie_var="$1"
    444 	(
    445 		[ -f "${DEST_DIR}/etc/rc.conf" ] && . "${DEST_DIR}/etc/rc.conf"
    446 		eval _rcie_val=\"\${${_rcie_var}}\"
    447 		case $_rcie_val in
    448 		#	"yes", "true", "on", or "1"
    449 		[Yy][Ee][Ss]|[Tt][Rr][Uu][Ee]|[Oo][Nn]|1)
    450 			exit 0
    451 			;;
    452 
    453 		*)
    454 			exit 1
    455 			;;
    456 		esac
    457 	)
    458 }
    459 
    460 # find_file_in_dirlist() file message dir1 [...] --
    461 #	Find which directory file is in, and sets ${dir} to match.
    462 #	Returns 0 if matched, otherwise 1 (and sets ${dir} to "").
    463 #
    464 #	Generally, check the directory for the "checking from source" case,
    465 #	and then the directory for the "checking from extracted etc.tgz" case.
    466 #
    467 find_file_in_dirlist()
    468 {
    469 	[ $# -ge 3 ] || err 3 "USAGE: find_file_in_dirlist file msg dir1 [...]"
    470 
    471 	_file="$1" ; shift
    472 	_msg="$1" ; shift
    473 	_dir1st=	# first dir in list
    474 	for dir in "$@"; do
    475 		: ${_dir1st:="${dir}"}
    476 		if [ -f "${dir}/${_file}" ]; then
    477 			if [ "${_dir1st}" != "${dir}" ]; then
    478 				msg \
    479     "(Checking for ${_msg} from ${dir} instead of ${_dir1st})"
    480 			fi
    481 			return 0
    482 		fi
    483 	done
    484 	msg "Can't find source directory for ${_msg}"
    485 	return 1
    486 }
    487 
    488 # file_exists_exact path
    489 #	Returns true if a file exists in the ${DEST_DIR} whose name
    490 #	is exactly ${path}, interpreted in a case-sensitive way
    491 #	even if the underlying file system is case-insensitive.
    492 #
    493 #	The path must begin with '/' or './', and is interpreted as
    494 #	being relative to ${DEST_DIR}.
    495 #
    496 file_exists_exact()
    497 {
    498 	[ -n "$1" ] || err 3 "USAGE: file_exists_exact path"
    499 	_path="${1#.}"
    500 	[ -h "${DEST_DIR}${_path}" ] || \
    501 		[ -e "${DEST_DIR}${_path}" ] || return 1
    502 	while [ "${_path}" != "/" -a "${_path}" != "." ] ; do
    503 		_dirname="$(dirname "${_path}" 2>/dev/null)"
    504 		_basename="$(basename "${_path}" 2>/dev/null)"
    505 		ls -fa "${DEST_DIR}${_dirname}" 2> /dev/null \
    506 			| ${GREP} -F -x "${_basename}" >/dev/null \
    507 			|| return 1
    508 		_path="${_dirname}"
    509 	done
    510 	return 0
    511 }
    512 
    513 # obsolete_paths op
    514 #	Obsolete the list of paths provided on stdin.
    515 #	Each path should start with '/' or './', and
    516 #	will be interpreted relative to ${DEST_DIR}.
    517 #
    518 obsolete_paths()
    519 {
    520 	[ -n "$1" ] || err 3 "USAGE: obsolete_paths  fix|check"
    521 	op="$1"
    522 
    523 	failed=0
    524 	while read ofile; do
    525 		if ! ${file_exists_exact} "${ofile}"; then
    526 			continue
    527 		fi
    528 		ofile="${DEST_DIR}${ofile#.}"
    529 		cmd="rm"
    530 		ftype="file"
    531 		if [ -h "${ofile}" ]; then
    532 			ftype="link"
    533 		elif [ -d "${ofile}" ]; then
    534 			ftype="directory"
    535 			cmd="rmdir"
    536 		elif [ ! -e "${ofile}" ]; then
    537 			continue
    538 		fi
    539 		if [ "${op}" = "check" ]; then
    540 			msg "Remove obsolete ${ftype} ${ofile}"
    541 			failed=1
    542 		elif ! eval "${cmd} \"\${ofile}\""; then
    543 			msg "Can't remove obsolete ${ftype} ${ofile}"
    544 			failed=1
    545 		else
    546 			msg "Removed obsolete ${ftype} ${ofile}"
    547 		fi
    548 	done
    549 	return ${failed}
    550 }
    551 
    552 # obsolete_libs dir
    553 #	Display the minor/teeny shared libraries in dir that are considered
    554 #	to be obsolete.
    555 #
    556 #	The implementation supports removing obsolete major libraries
    557 #	if the awk variable AllLibs is set, although there is no way to
    558 #	enable that in the enclosing shell function as this time.
    559 #
    560 obsolete_libs()
    561 {
    562 	[ $# -eq 1 ] || err 3 "USAGE: obsolete_libs dir"
    563 	dir="$1"
    564 
    565 	_obsolete_libs "${dir}"
    566 	_obsolete_libs "/usr/libdata/debug/${dir}"
    567 }
    568 
    569 exclude()
    570 {
    571 	local dollar
    572 	case "$1" in
    573 	-t)
    574 		dollar='$'
    575 		shift
    576 		;;
    577 	*)
    578 		dollar=
    579 		;;
    580 	esac
    581 	if [ -z "$*" ]; then
    582 		cat
    583 	else
    584 		eval ${GREP} -v -E "'(^$(echo $* | \
    585 		    ${SED} -e s/\\./\\\\./g -e 's/ /'${dollar}'|^/'g)${dollar})'"
    586 	fi
    587 }
    588 
    589 #
    590 # find all the target symlinks of shared libaries and exclude them
    591 # from consideration for removal
    592 #
    593 exclude_libs() {
    594 	local target="$(ls -l -d lib*.so.* 2> /dev/null \
    595 	    | ${AWK} '{ print $11; }' \
    596 	    | ${SED} -e 's@.*/@@' | ${SORT} -u)"
    597 	exclude -t ${target}
    598 }
    599 
    600 _obsolete_libs()
    601 {
    602 	dir="$1"
    603 
    604 	(
    605 
    606 	if [ ! -e "${DEST_DIR}/${dir}" ]
    607 	then
    608 		return 0
    609 	fi
    610 
    611 	cd "${DEST_DIR}/${dir}" || err 2 "can't cd to ${DEST_DIR}/${dir}"
    612 	echo lib*.so.* \
    613 	| tr ' ' '\n' \
    614 	| ${AWK} -v LibDir="${dir}/" '
    615 #{
    616 
    617 function digit(v, c, n) { return (n <= c) ? v[n] : 0 }
    618 
    619 function checklib(results, line, regex) {
    620 	if (! match(line, regex))
    621 		return
    622 	lib = substr(line, RSTART, RLENGTH)
    623 	rev = substr($0, RLENGTH+1)
    624 	if (! (lib in results)) {
    625 		results[lib] = rev
    626 		return
    627 	}
    628 	orevc = split(results[lib], orev, ".")
    629 	nrevc = split(rev, nrev, ".")
    630 	maxc = (orevc > nrevc) ? orevc : nrevc
    631 	for (i = 1; i <= maxc; i++) {
    632 		res = digit(orev, orevc, i) - digit(nrev, nrevc, i)
    633 		if (res < 0) {
    634 			print LibDir lib results[lib]
    635 			results[lib] = rev
    636 			return
    637 		} else if (res > 0) {
    638 			print LibDir lib rev
    639 			return
    640 		}
    641 	}
    642 }
    643 
    644 /^lib.*\.so\.[0-9]+\.[0-9]+(\.[0-9]+)?(\.debug)?$/ {
    645 	if (AllLibs)
    646 		checklib(minor, $0, "^lib.*\\.so\\.")
    647 	else
    648 		checklib(found, $0, "^lib.*\\.so\\.[0-9]+\\.")
    649 }
    650 
    651 /^lib.*\.so\.[0-9]+$/ {
    652 	if (AllLibs)
    653 		checklib(major, $0, "^lib.*\\.so\\.")
    654 }
    655 
    656 #}' | exclude_libs
    657 
    658 	)
    659 }
    660 
    661 # obsolete_stand dir
    662 #	Prints the names of all obsolete files and subdirs below the
    663 #	provided dir.  dir should be something like /stand/${MACHINE}.
    664 #	The input dir and all output paths are interpreted
    665 #	relative to ${DEST_DIR}.
    666 #
    667 #	Assumes that the numerically largest subdir is current, and all
    668 #	others are obsolete.
    669 #
    670 obsolete_stand()
    671 {
    672 	[ $# -eq 1 ] || err 3 "USAGE: obsolete_stand dir"
    673 	local dir="$1"
    674 	local subdir
    675 
    676 	if ! [ -d "${DEST_DIR}${dir}" ]; then
    677 		msg "${DEST_DIR}${dir} doesn't exist; can't check for obsolete files"
    678 		return 1
    679 	fi
    680 
    681 	( cd "${DEST_DIR}${dir}" && ls -1d [0-9]*[0-9]/. ) \
    682 	| ${GREP} -v '[^0-9./]' \
    683 	| sort -t. -r -n -k1,1 -k2,2 -k3,3 \
    684 	| tail -n +2 \
    685 	| while read subdir ; do
    686 		subdir="${subdir%/.}"
    687 		find "${DEST_DIR}${dir}/${subdir}" -depth -print
    688 	done \
    689 	| unprefix "${DEST_DIR}"
    690 }
    691 
    692 # modify_file op srcfile scratchfile awkprog
    693 #	Apply awkprog to srcfile sending output to scratchfile, and
    694 #	if appropriate replace srcfile with scratchfile.
    695 #
    696 modify_file()
    697 {
    698 	[ $# -eq 4 ] || err 3 "USAGE: modify_file op file scratch awkprog"
    699 
    700 	_mfop="$1"
    701 	_mffile="$2"
    702 	_mfscratch="$3"
    703 	_mfprog="$4"
    704 	_mffailed=0
    705 
    706 	${AWK} "${_mfprog}" < "${_mffile}" > "${_mfscratch}"
    707 	if ! cmp -s "${_mffile}" "${_mfscratch}"; then
    708 		diff "${_mffile}" "${_mfscratch}" > "${_mfscratch}.diffs"
    709 		if [ "${_mfop}" = "check" ]; then
    710 			msg "${_mffile} needs the following changes:"
    711 			_mffailed=1
    712 		elif ! rm -f "${_mffile}" ||
    713 		     ! cp -f "${_mfscratch}" "${_mffile}"; then
    714 			msg "${_mffile} changes not applied:"
    715 			_mffailed=1
    716 		else
    717 			msg "${_mffile} changes applied:"
    718 		fi
    719 		while read _line; do
    720 			msg "	${_line}"
    721 		done < "${_mfscratch}.diffs"
    722 	fi
    723 	return ${_mffailed}
    724 }
    725 
    726 
    727 # contents_owner op directory user group
    728 #	Make sure directory and contents are owned (and group-owned)
    729 #	as specified.
    730 #
    731 contents_owner()
    732 {
    733 	[ $# -eq 4 ] || err 3 "USAGE: contents_owner op dir user group"
    734 
    735 	_op="$1"
    736 	_dir="$2"
    737 	_user="$3"
    738 	_grp="$4"
    739 
    740 	if [ "${_op}" = "check" ]; then
    741 		_files=$(find "${_dir}" \( \( ! -user "${_user}" \) -o \
    742 		                \( ! -group "${_grp}" \) \) )
    743 		_error=$?
    744 		if [ ! -z "$_files" ] || [ $_error != 0 ]; then
    745 			msg "${_dir} and contents not all owned by" \
    746 			    "${_user}:${_grp}"
    747 			return 1
    748 		else
    749 			return 0
    750 		fi
    751 	elif [ "${_op}" = "fix" ]; then
    752 		find "${_dir}" \( \( ! -user "${_user}" \) -o \
    753 		\( ! -group "${_grp}" \) \) \
    754 		-exec chown "${_user}:${_grp}" -- {} \;
    755 	fi
    756 }
    757 
    758 # get_makevar var [var ...]
    759 #	Retrieve the value of a user-settable system make variable
    760 get_makevar()
    761 {
    762 	$SOURCEMODE || err 3 "get_makevar must be used in source mode"
    763 	[ $# -eq 0 ] && err 3 "USAGE: get_makevar var [var ...]"
    764 
    765 	for _var in "$@"; do
    766 		_value="$(echo '.include <bsd.own.mk>' | \
    767 		    ${MAKE} -f - -V "\${${_var}}")"
    768 
    769 		eval ${_var}=\"\${_value}\"
    770 	done
    771 }
    772 
    773 # detect_x11
    774 #	Detect if X11 components should be analysed and set values of
    775 #	relevant variables.
    776 detect_x11()
    777 {
    778 	if $SOURCEMODE; then
    779 		get_makevar MKX11 X11ROOTDIR X11SRCDIR
    780 	else
    781 		if [ -f "${SRC_DIR}/etc/mtree/set.xetc" ]; then
    782 			MKX11=yes
    783 			X11ROOTDIR=/this/value/isnt/used/yet
    784 		else
    785 			MKX11=no
    786 			X11ROOTDIR=
    787 		fi
    788 		X11SRCDIR=/nonexistent/xsrc
    789 	fi
    790 }
    791 
    792 #
    793 #	find out where MAKEDEV lives, set MAKEDEV_DIR appropriately
    794 #
    795 find_makedev()
    796 {
    797 	if [ -e "${DEST_DIR}/dev/MAKEDEV" ]; then
    798 		MAKEDEV_DIR="${DEST_DIR}/dev"
    799 	elif [ -e "${DEST_DIR}/etc/MAKEDEV" ]; then
    800 		MAKEDEV_DIR="${DEST_DIR}/etc"
    801 	else
    802 		MAKEDEV_DIR="${DEST_DIR}/dev"
    803 	fi
    804 }
    805 
    806 
    807 #
    808 #	items
    809 #	-----
    810 #
    811 
    812 #
    813 #	Bluetooth
    814 #
    815 
    816 additem bluetooth "Bluetooth configuration is up to date"
    817 do_bluetooth()
    818 {
    819 	[ -n "$1" ] || err 3 "USAGE: do_bluetooth fix|check"
    820 	op="$1"
    821 	failed=0
    822 
    823 	populate_dir "${op}" true \
    824 		"${SRC_DIR}/etc/bluetooth" "${DEST_DIR}/etc/bluetooth" 644 \
    825 		hosts protocols btattach.conf btdevctl.conf
    826 	failed=$(( ${failed} + $? ))
    827 
    828 	move_file "${op}" "${DEST_DIR}/var/db/btdev.xml" \
    829 			"${DEST_DIR}/var/db/btdevctl.plist"
    830 	failed=$(( ${failed} + $? ))
    831 
    832 	notfixed=""
    833 	if [ "${op}" = "fix" ]; then
    834 		notfixed="${NOT_FIXED}"
    835 	fi
    836 	for _v in btattach btconfig btdevctl; do
    837 		if rcvar_is_enabled "${_v}"; then
    838 			msg \
    839     "${_v} is obsolete in rc.conf(5)${notfixed}: use bluetooth=YES"
    840 			failed=$(( ${failed} + 1 ))
    841 		fi
    842 	done
    843 
    844 	return ${failed}
    845 }
    846 
    847 fixblock() {
    848 	for i; do
    849 		if [ ! -f "$i" ]; then
    850 			continue
    851 		fi
    852 		local p=$(stat -f %Lp "$i")
    853 		chmod u+w "$i"
    854 		sed -i -e s/black/block/g "$i"
    855 		chmod "$p" "$i"
    856 	done
    857 }
    858 
    859 #
    860 #	blocklist update
    861 #
    862 additem blocklist "rename old files to blocklist"
    863 do_blocklist()
    864 {
    865 	local rcfiles="/etc/rc.conf /etc/npf.conf /etc/defaults/rc.conf"
    866 	
    867 	# if we are actually using blocklistd
    868 	if [ -f /var/db/blacklist.db ]; then
    869 		mv /var/db/blacklist.db /var/db/blocklist.db
    870 	fi
    871 
    872 	# if we have fixed the rc files we are done
    873 	if ! grep -qs $rcfiles; then
    874 		return
    875 	fi
    876 
    877 	fixblock $rcfiles
    878 }
    879 
    880 #
    881 #	ddbonpanic
    882 #
    883 additem ddbonpanic "verify ddb.onpanic is configured in sysctl.conf"
    884 do_ddbonpanic()
    885 {
    886 	[ -n "$1" ] || err 3 "USAGE: do_ddbonpanic  fix|check"
    887 
    888 	if ${GREP} -E '^#*[[:space:]]*ddb\.onpanic[[:space:]]*\??=[[:space:]]*[[:digit:]]+' \
    889 		"${DEST_DIR}/etc/sysctl.conf" >/dev/null 2>&1
    890 	then
    891 		result=0
    892 	else
    893 		if [ "$1" = check ]; then
    894 			msg \
    895     "The ddb.onpanic behaviour is not explicitly specified in /etc/sysctl.conf"
    896 			result=1
    897 		else
    898 			echo >> "${DEST_DIR}/etc/sysctl.conf"
    899 			${SED} < "${SRC_DIR}/etc/sysctl.conf" \
    900 			   -e '/^ddb\.onpanic/q' | \
    901 			       ${SED} -e '1,/^$/d' >> \
    902 			    "${DEST_DIR}/etc/sysctl.conf"
    903 			result=$?
    904 		fi
    905 	fi
    906 	return ${result}
    907 }
    908 
    909 #
    910 #	defaults
    911 #
    912 additem defaults "/etc/defaults/ being up to date"
    913 do_defaults()
    914 {
    915 	[ -n "$1" ] || err 3 "USAGE: do_defaults  fix|check"
    916 	local op="$1"
    917 	local failed=0
    918 	local etcsets=$(getetcsets)
    919 
    920 	local rc_exclude_scripts=""
    921 	if $SOURCEMODE; then
    922 		# For most architectures rc.conf(5) should be the same as the
    923 		# one obtained from a source directory, except for the ones
    924 		# that have an append file for it.
    925 		local rc_conf_app="${SRC_DIR}/etc/etc.${MACHINE}/rc.conf.append"
    926 		if [ -f "${rc_conf_app}" ]; then
    927 			rc_exclude_scripts="rc.conf"
    928 
    929 			# Generate and compare the correct rc.conf(5) file
    930 			mkdir "${SCRATCHDIR}/defaults"
    931 
    932 			cat "${SRC_DIR}/etc/defaults/rc.conf" "${rc_conf_app}" \
    933 			    > "${SCRATCHDIR}/defaults/rc.conf"
    934 
    935 			compare_dir "${op}" "${SCRATCHDIR}/defaults" \
    936 			    "${DEST_DIR}/etc/defaults" \
    937 			    444 \
    938 			    "rc.conf"
    939 			failed=$(( ${failed} + $? ))
    940 		fi
    941 	fi
    942 
    943 	find_file_in_dirlist pf.boot.conf "pf.boot.conf" \
    944 	    "${SRC_DIR}/usr.sbin/pf/etc/defaults" "${SRC_DIR}/etc/defaults" \
    945 	    || return 1
    946 	# ${dir} is set by find_file_in_dirlist()
    947 	compare_dir "$op" "${dir}" "${DEST_DIR}/etc/defaults" 444 pf.boot.conf
    948 	failed=$(( ${failed} + $? ))
    949 
    950 	rc_exclude_scripts="${rc_exclude_scripts} pf.boot.conf"
    951 
    952 	local rc_default_conf_files="$(select_set_files /etc/defaults/ \
    953 	    "/etc/defaults/\([^[:space:]]*\.conf\)" ${etcsets} | \
    954 	    exclude ${rc_exclude_scripts})"
    955 	compare_dir "$op" "${SRC_DIR}/etc/defaults" "${DEST_DIR}/etc/defaults" \
    956 		444 \
    957 		${rc_default_conf_files}
    958 	failed=$(( ${failed} + $? ))
    959 
    960 
    961 	return ${failed}
    962 }
    963 
    964 #
    965 #	dhcpcd
    966 #
    967 additem dhcpcd "dhcpcd configuration is up to date"
    968 do_dhcpcd()
    969 {
    970 	[ -n "$1" ] || err 3 "USAGE: do_dhcpcd fix|check"
    971 	op="$1"
    972 	failed=0
    973 
    974 	find_file_in_dirlist dhcpcd.conf "dhcpcd.conf" \
    975 	    "${SRC_DIR}/external/bsd/dhcpcd/dist/src" \
    976 	    "${SRC_DIR}/etc" || return 1
    977 			# ${dir} is set by find_file_in_dirlist()
    978 	populate_dir "$op" true "${dir}" "${DEST_DIR}/etc" 644 dhcpcd.conf
    979 	failed=$(( ${failed} + $? ))
    980 
    981 	check_dir "${op}" "${DEST_DIR}/var/db/dhcpcd" 755
    982 	failed=$(( ${failed} + $? ))
    983 
    984 	move_file "${op}" \
    985 		"${DEST_DIR}/etc/dhcpcd.duid" \
    986 		"${DEST_DIR}/var/db/dhcpcd/duid"
    987 	failed=$(( ${failed} + $? ))
    988 
    989 	move_file "${op}" \
    990 		"${DEST_DIR}/etc/dhcpcd.secret" \
    991 		"${DEST_DIR}/var/db/dhcpcd/secret"
    992 	failed=$(( ${failed} + $? ))
    993 
    994 	move_file "${op}" \
    995 		"${DEST_DIR}/var/db/dhcpcd-rdm.monotonic" \
    996 		"${DEST_DIR}/var/db/dhcpcd/rdm_monotonic"
    997 	failed=$(( ${failed} + $? ))
    998 
    999 	for lease in "${DEST_DIR}/var/db/dhcpcd-"*.lease*; do
   1000 		[ -f "${lease}" ] || continue
   1001 		new_lease=$(basename "${lease}" | ${SED} -e 's/dhcpcd-//')
   1002 		new_lease="${DEST_DIR}/var/db/dhcpcd/${new_lease}"
   1003 		move_file "${op}" "${lease}" "${new_lease}"
   1004 		failed=$(( ${failed} + $? ))
   1005 	done
   1006 
   1007 	chroot_dir="${DEST_DIR}/var/chroot/dhcpcd"
   1008 	move_file "${op}" \
   1009 		"${chroot_dir}/var/db/dhcpcd/duid" \
   1010 		"${DEST_DIR}/var/db/dhcpcd/duid"
   1011 	failed=$(( ${failed} + $? ))
   1012 
   1013 	move_file "${op}" \
   1014 		"${chroot_dir}/var/db/dhcpcd/secret" \
   1015 		"${DEST_DIR}/var/db/dhcpcd/secret"
   1016 	failed=$(( ${failed} + $? ))
   1017 
   1018 	move_file "${op}" \
   1019 		"${chroot_dir}/var/db/dhcpcd/rdm_monotonic" \
   1020 		"${DEST_DIR}/var/db/dhcpcd/rdm_monotonic"
   1021 	failed=$(( ${failed} + $? ))
   1022 
   1023 	for lease in "${chroot_dir}/var/db/dhcpcd/"*.lease*; do
   1024 		[ -f "${lease}" ] || continue
   1025 		new_lease="${DEST_DIR}/var/db/dhcpcd/$(basename ${lease})"
   1026 		move_file "${op}" "${lease}" "${new_lease}"
   1027 		failed=$(( ${failed} + $? ))
   1028 	done
   1029 
   1030 	# Ensure chroot is now empty
   1031 	for dir in \
   1032 		$(find ${chroot_dir} ! -type d) \
   1033 		$(find ${chroot_dir} -type d -mindepth 1 | sort -r)
   1034 	do
   1035 		echo "/var/chroot/dhcpcd${dir##${chroot_dir}}"
   1036 	done | obsolete_paths "${op}"
   1037 	failed=$(( ${failed} + $? ))
   1038 
   1039 	contents_owner "${op}" "${DEST_DIR}/var/db/dhcpcd" root wheel
   1040 	failed=$(( ${failed} + $? ))
   1041 
   1042 	return ${failed}
   1043 }
   1044 
   1045 #
   1046 #	dhcpcdrundir
   1047 #
   1048 additem dhcpcdrundir "accidentaly created /@RUNDIR@ does not exist"
   1049 do_dhcpcdrundir()
   1050 {
   1051 	[ -n "$1" ] || err 3 "USAGE: do_dhcpcdrundir fix|check"
   1052 	op="$1"
   1053 	failed=0
   1054 
   1055 	if [ -d "${DEST_DIR}/@RUNDIR@" ]; then
   1056 		if [ "${op}" = "check" ]; then
   1057 			msg "Remove eroneously created /@RUNDIR@"
   1058 			failed=1
   1059 		elif ! rm -r "${DEST_DIR}/@RUNDIR@"; then
   1060 			msg "Failed to remove ${DEST_DIR}/@RUNDIR@"
   1061 			failed=1
   1062 		else
   1063 			msg "Removed eroneously created ${DEST_DIR}/@RUNDIR@"
   1064 		fi
   1065 	fi
   1066 	return ${failed}
   1067 }
   1068 
   1069 #
   1070 #	envsys
   1071 #
   1072 additem envsys "envsys configuration is up to date"
   1073 do_envsys()
   1074 {
   1075 	[ -n "$1" ] || err 3 "USAGE: do_envsys fix|check"
   1076 	local op="$1"
   1077 	local failed=0
   1078 	local etcsets=$(getetcsets)
   1079 
   1080 	populate_dir "$op" true "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
   1081 		envsys.conf
   1082 	failed=$(( ${failed} + $? ))
   1083 
   1084 	local powerd_scripts="$(select_set_files /etc/powerd/scripts/ \
   1085 	    "/etc/powerd/scripts/\([^[:space:]/]*\)" ${etcsets})"
   1086 
   1087 	populate_dir "$op" true "${SRC_DIR}/etc/powerd/scripts" \
   1088 		"${DEST_DIR}/etc/powerd/scripts" \
   1089 		555 \
   1090 		${powerd_scripts}
   1091 	failed=$(( ${failed} + $? ))
   1092 
   1093 	return ${failed}
   1094 }
   1095 
   1096 #
   1097 #	autofs config files
   1098 #
   1099 additem autofsconfig "automounter configuration files"
   1100 do_autofsconfig()
   1101 {
   1102 	[ -n "$1" ] || err 3 "USAGE: do_autofsconfig fix|check"
   1103 	local autofs_files="
   1104 include_ldap
   1105 include_nis
   1106 special_hosts
   1107 special_media
   1108 special_noauto
   1109 special_null 
   1110 "
   1111 	op="$1"
   1112 	failed=0
   1113 	if [ "$op" = "fix" ]; then
   1114 		mkdir -p "${DEST_DIR}/etc/autofs"
   1115 	fi
   1116 	failed=$(( ${failed} + $? ))
   1117 	populate_dir "$op" false "${SRC_DIR}/etc" \
   1118 	    "${DEST_DIR}/etc" \
   1119 	    644 \
   1120 	    auto_master
   1121 	failed=$(( ${failed} + $? ))
   1122 	populate_dir "$op" false "${SRC_DIR}/etc/autofs" \
   1123 	    "${DEST_DIR}/etc/autofs" \
   1124 	    644 \
   1125 	    ${autofs_files}
   1126 	return ${failed}
   1127 }
   1128 
   1129 
   1130 #
   1131 #	X11 fontconfig
   1132 #
   1133 additem fontconfig "X11 font configuration is up to date"
   1134 do_fontconfig()
   1135 {
   1136 	[ -n "$1" ] || err 3 "USAGE: do_fontconfig fix|check"
   1137 	op="$1"
   1138 	failed=0
   1139 
   1140 	# First, check for updates we can handle.
   1141 	if ! $SOURCEMODE; then
   1142 		FONTCONFIG_DIR="${SRC_DIR}/etc/fonts/conf.avail"
   1143 	else
   1144 		FONTCONFIG_DIR="${XSRC_DIR}/external/mit/fontconfig/dist/conf.d"
   1145 	fi
   1146 
   1147 	if [ ! -d "${FONTCONFIG_DIR}" ]; then
   1148 		msg "${FONTCONFIG_DIR} is not a directory; skipping check"
   1149 		return 0
   1150 	fi
   1151 	local regular_fonts="
   1152 10-autohint.conf
   1153 10-no-sub-pixel.conf
   1154 10-scale-bitmap-fonts.conf
   1155 10-sub-pixel-bgr.conf
   1156 10-sub-pixel-rgb.conf
   1157 10-sub-pixel-vbgr.conf
   1158 10-sub-pixel-vrgb.conf
   1159 10-unhinted.conf
   1160 11-lcdfilter-default.conf
   1161 11-lcdfilter-legacy.conf
   1162 11-lcdfilter-light.conf
   1163 20-unhint-small-vera.conf
   1164 25-unhint-nonlatin.conf
   1165 30-metric-aliases.conf
   1166 40-nonlatin.conf
   1167 45-generic.conf
   1168 45-latin.conf
   1169 49-sansserif.conf
   1170 50-user.conf
   1171 51-local.conf
   1172 60-generic.conf
   1173 60-latin.conf
   1174 65-fonts-persian.conf
   1175 65-khmer.conf
   1176 65-nonlatin.conf
   1177 69-unifont.conf
   1178 70-no-bitmaps.conf
   1179 70-yes-bitmaps.conf
   1180 80-delicious.conf
   1181 90-synthetic.conf
   1182 "
   1183 	populate_dir "$op" false "${FONTCONFIG_DIR}" \
   1184 	    "${DEST_DIR}/etc/fonts/conf.avail" \
   1185 	    444 \
   1186 	    ${regular_fonts}
   1187 	failed=$(( ${failed} + $? ))
   1188 
   1189 	if ! $SOURCEMODE; then
   1190 		FONTS_DIR="${SRC_DIR}/etc/fonts"
   1191 	else
   1192 		FONTS_DIR="${SRC_DIR}/external/mit/xorg/lib/fontconfig/etc"
   1193 	fi
   1194 
   1195 	populate_dir "$op" false "${FONTS_DIR}" "${DEST_DIR}/etc/fonts" 444 \
   1196 		fonts.conf
   1197 	failed=$(( ${failed} + $? ))
   1198 
   1199 	# We can't modify conf.d easily; someone might have removed a file.
   1200 
   1201 	# Look for old files that need to be deleted.
   1202 	obsolete_fonts="
   1203 10-autohint.conf
   1204 10-no-sub-pixel.conf
   1205 10-sub-pixel-bgr.conf
   1206 10-sub-pixel-rgb.conf
   1207 10-sub-pixel-vbgr.conf
   1208 10-sub-pixel-vrgb.conf
   1209 10-unhinted.conf
   1210 25-unhint-nonlatin.conf
   1211 65-khmer.conf
   1212 70-no-bitmaps.conf
   1213 70-yes-bitmaps.conf
   1214 "
   1215 	failed_fonts=""
   1216 	for i in ${obsolete_fonts}; do
   1217 	    if [ -f "${DEST_DIR}/etc/fonts/conf.d/$i" ]; then
   1218 		    conf_d_failed=1
   1219 		    failed_fonts="$failed_fonts $i"
   1220 	    fi
   1221 	done
   1222 
   1223 	if [ -n "$failed_fonts" ]; then
   1224 		msg \
   1225     "Broken fontconfig configuration found; please delete these files:"
   1226 		msg "[$failed_fonts]"
   1227 		failed=$(( ${failed} + 1 ))
   1228 	fi
   1229 
   1230 	return ${failed}
   1231 }
   1232 
   1233 #
   1234 #	gid
   1235 #
   1236 additem gid "required groups in /etc/group"
   1237 do_gid()
   1238 {
   1239 	[ -n "$1" ] || err 3 "USAGE: do_gid  fix|check"
   1240 
   1241 	check_ids "$1" groups "${DEST_DIR}/etc/group" \
   1242 	    "${SRC_DIR}/etc/group" 14 \
   1243 	    named ntpd sshd SKIP _pflogd _rwhod staff _proxy _timedc \
   1244 	    _sdpd _httpd _mdnsd _tests _tcpdump _tss _gpio _rtadvd SKIP \
   1245 	    _unbound _nsd nvmm _dhcpcd
   1246 }
   1247 
   1248 #
   1249 #	gpio
   1250 #
   1251 additem gpio "gpio configuration is up to date"
   1252 do_gpio()
   1253 {
   1254 	[ -n "$1" ] || err 3 "USAGE: do_gpio fix|check"
   1255 	op="$1"
   1256 	failed=0
   1257 
   1258 	populate_dir "$op" true "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
   1259 		gpio.conf
   1260 	failed=$(( ${failed} + $? ))
   1261 
   1262 	return ${failed}
   1263 }
   1264 
   1265 #
   1266 #	hosts
   1267 #
   1268 additem hosts "/etc/hosts being up to date"
   1269 do_hosts()
   1270 {
   1271 	[ -n "$1" ] || err 3 "USAGE: do_hosts  fix|check"
   1272 
   1273 	modify_file "$1" "${DEST_DIR}/etc/hosts" "${SCRATCHDIR}/hosts" '
   1274 		/^(127\.0\.0\.1|::1)[ 	]+[^\.]*$/ {
   1275 			print $0, "localhost."
   1276 			next
   1277 		}
   1278 		{ print }
   1279 	'
   1280 	return $?
   1281 }
   1282 
   1283 #
   1284 #	iscsi
   1285 #
   1286 additem iscsi "/etc/iscsi is populated"
   1287 do_iscsi()
   1288 {
   1289 	[ -n "$1" ] || err 3 "USAGE: do_iscsi  fix|check"
   1290 
   1291 	populate_dir "${op}" true \
   1292 	    "${SRC_DIR}/etc/iscsi" "${DEST_DIR}/etc/iscsi" 600 auths
   1293 	populate_dir "${op}" true \
   1294 	    "${SRC_DIR}/etc/iscsi" "${DEST_DIR}/etc/iscsi" 644 targets
   1295 	return $?
   1296 }
   1297 
   1298 #
   1299 #	makedev
   1300 #
   1301 additem makedev "/dev/MAKEDEV being up to date"
   1302 do_makedev()
   1303 {
   1304 	[ -n "$1" ] || err 3 "USAGE: do_makedev   fix|check"
   1305 	failed=0
   1306 
   1307 	if [ -f "${SRC_DIR}/etc/MAKEDEV.tmpl" ]; then
   1308 			# generate MAKEDEV from source if source is available
   1309 		env MACHINE="${MACHINE}" \
   1310 		    MACHINE_ARCH="${MACHINE_ARCH}" \
   1311 		    NETBSDSRCDIR="${SRC_DIR}" \
   1312 		    ${AWK} -f "${SRC_DIR}/etc/MAKEDEV.awk" \
   1313 		    "${SRC_DIR}/etc/MAKEDEV.tmpl" > "${SCRATCHDIR}/MAKEDEV"
   1314 	fi
   1315 
   1316 	find_file_in_dirlist MAKEDEV "MAKEDEV" \
   1317 	    "${SCRATCHDIR}" "${SRC_DIR}/dev" \
   1318 	    || return 1
   1319 			# ${dir} is set by find_file_in_dirlist()
   1320 	find_makedev
   1321 	compare_dir "$1" "${dir}" "${MAKEDEV_DIR}" 555 MAKEDEV
   1322 	failed=$(( ${failed} + $? ))
   1323 
   1324 	find_file_in_dirlist MAKEDEV.local "MAKEDEV.local" \
   1325 	    "${SRC_DIR}/etc" "${SRC_DIR}/dev" \
   1326 	    || return 1
   1327 			# ${dir} is set by find_file_in_dirlist()
   1328 	compare_dir "$1" "${dir}" "${DEST_DIR}/dev" 555 MAKEDEV.local
   1329 	failed=$(( ${failed} + $? ))
   1330 
   1331 	return ${failed}
   1332 }
   1333 
   1334 #
   1335 #	motd
   1336 #
   1337 additem motd "contents of motd"
   1338 do_motd()
   1339 {
   1340 	[ -n "$1" ] || err 3 "USAGE: do_motd  fix|check"
   1341 
   1342 	if ${GREP} -i 'http://www.NetBSD.org/Misc/send-pr.html' \
   1343 		"${DEST_DIR}/etc/motd" >/dev/null 2>&1 \
   1344 	    || ${GREP} -i 'https*://www.NetBSD.org/support/send-pr.html' \
   1345 		"${DEST_DIR}/etc/motd" >/dev/null 2>&1
   1346 	then
   1347 		tmp1="$(mktemp /tmp/postinstall.motd.XXXXXXXX)"
   1348 		tmp2="$(mktemp /tmp/postinstall.motd.XXXXXXXX)"
   1349 		${SED} '1,2d' <"${SRC_DIR}/etc/motd" >"${tmp1}"
   1350 		${SED} '1,2d' <"${DEST_DIR}/etc/motd" >"${tmp2}"
   1351 
   1352 		if [ "$1" = check ]; then
   1353 			cmp -s "${tmp1}" "${tmp2}"
   1354 			result=$?
   1355 			if [ "${result}" -ne 0 ]; then
   1356 				msg \
   1357     "Bug reporting messages do not seem to match the installed release"
   1358 			fi
   1359 		else
   1360 			head -n 2 "${DEST_DIR}/etc/motd" >"${tmp1}"
   1361 			${SED} '1,2d' <"${SRC_DIR}/etc/motd" >>"${tmp1}"
   1362 			cp "${tmp1}" "${DEST_DIR}/etc/motd"
   1363 			result=0
   1364 		fi
   1365 
   1366 		rm -f "${tmp1}" "${tmp2}"
   1367 	else
   1368 		result=0
   1369 	fi
   1370 
   1371 	return ${result}
   1372 }
   1373 
   1374 #
   1375 #	mtree
   1376 #
   1377 additem mtree "/etc/mtree/ being up to date"
   1378 do_mtree()
   1379 {
   1380 	[ -n "$1" ] || err 3 "USAGE: do_mtree  fix|check"
   1381 	failed=0
   1382 
   1383 	compare_dir "$1" "${SRC_DIR}/etc/mtree" "${DEST_DIR}/etc/mtree" 444 special
   1384 	failed=$(( ${failed} + $? ))
   1385 
   1386 	if ! $SOURCEMODE; then
   1387 		MTREE_DIR="${SRC_DIR}/etc/mtree"
   1388 	else
   1389 		/bin/rm -rf "${SCRATCHDIR}/obj"
   1390 		mkdir "${SCRATCHDIR}/obj"
   1391 		${MAKE} -s -C "${SRC_DIR}/etc/mtree" TOOL_AWK="${AWK}" \
   1392 		    MAKEOBJDIR="${SCRATCHDIR}/obj" emit_dist_file > \
   1393 		    "${SCRATCHDIR}/NetBSD.dist"
   1394 		MTREE_DIR="${SCRATCHDIR}"
   1395 		/bin/rm -rf "${SCRATCHDIR}/obj"
   1396 	fi
   1397 	compare_dir "$1" "${MTREE_DIR}" "${DEST_DIR}/etc/mtree" 444 NetBSD.dist
   1398 	failed=$(( ${failed} + $? ))
   1399 
   1400 	return ${failed}
   1401 }
   1402 
   1403 #
   1404 #	named
   1405 #
   1406 additem named "named configuration update"
   1407 do_named()
   1408 {
   1409 	[ -n "$1" ] || err 3 "USAGE: do_named  fix|check"
   1410 	op="$1"
   1411 
   1412 	move_file "${op}" \
   1413 		"${DEST_DIR}/etc/namedb/named.conf" \
   1414 		"${DEST_DIR}/etc/named.conf"
   1415 
   1416 	compare_dir "${op}" "${SRC_DIR}/etc/namedb" "${DEST_DIR}/etc/namedb" \
   1417 		644 \
   1418 		root.cache
   1419 }
   1420 
   1421 #
   1422 #	pam
   1423 #
   1424 additem pam "/etc/pam.d is populated"
   1425 do_pam()
   1426 {
   1427 	[ -n "$1" ] || err 3 "USAGE: do_pam  fix|check"
   1428 	op="$1"
   1429 	failed=0
   1430 
   1431 	populate_dir "${op}" true "${SRC_DIR}/etc/pam.d" \
   1432 		"${DEST_DIR}/etc/pam.d" 644 \
   1433 		README cron display_manager ftpd gdm imap kde login other \
   1434 		passwd pop3 ppp racoon rexecd rsh sshd su system telnetd \
   1435 		xdm xserver
   1436 
   1437 	failed=$(( ${failed} + $? ))
   1438 
   1439 	return ${failed}
   1440 }
   1441 
   1442 #
   1443 #	periodic
   1444 #
   1445 additem periodic "/etc/{daily,weekly,monthly,security} being up to date"
   1446 do_periodic()
   1447 {
   1448 	[ -n "$1" ] || err 3 "USAGE: do_periodic  fix|check"
   1449 
   1450 	compare_dir "$1" "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
   1451 		daily weekly monthly security
   1452 }
   1453 
   1454 #
   1455 #	pf
   1456 #
   1457 additem pf "pf configuration being up to date"
   1458 do_pf()
   1459 {
   1460 	[ -n "$1" ] || err 3 "USAGE: do_pf  fix|check"
   1461 	op="$1"
   1462 	failed=0
   1463 
   1464 	find_file_in_dirlist pf.os "pf.os" \
   1465 	    "${SRC_DIR}/dist/pf/etc" "${SRC_DIR}/etc" \
   1466 	    || return 1
   1467 			# ${dir} is set by find_file_in_dirlist()
   1468 	populate_dir "${op}" true \
   1469 	    "${dir}" "${DEST_DIR}/etc" 644 \
   1470 	    pf.conf
   1471 	failed=$(( ${failed} + $? ))
   1472 
   1473 	compare_dir "${op}" "${dir}" "${DEST_DIR}/etc" 444 pf.os
   1474 	failed=$(( ${failed} + $? ))
   1475 
   1476 	return ${failed}
   1477 }
   1478 
   1479 #
   1480 #	pwd_mkdb
   1481 #
   1482 additem pwd_mkdb "passwd database version"
   1483 do_pwd_mkdb()
   1484 {
   1485 	[ -n "$1" ] || err 3 "USAGE: do_pwd_mkdb  fix|check"
   1486 	op="$1"
   1487 	failed=0
   1488 
   1489 	# XXX Ideally, we should figure out the endianness of the
   1490 	# target machine, and add "-E B"/"-E L" to the db(1) flags,
   1491 	# and "-B"/"-L" to the pwd_mkdb(8) flags if the target is not
   1492 	# the same as the host machine.  It probably doesn't matter,
   1493 	# because we don't expect "postinstall fix pwd_mkdb" to be
   1494 	# invoked during a cross build.
   1495 
   1496 	set -- $(${DB} -q -Sb -Ub -To -N hash "${DEST_DIR}/etc/pwd.db" \
   1497 		'VERSION\0')
   1498 	case "$2" in
   1499 	'\001\000\000\000') return 0 ;; # version 1, little-endian
   1500 	'\000\000\000\001') return 0 ;; # version 1, big-endian
   1501 	esac
   1502 
   1503 	if [ "${op}" = "check" ]; then
   1504 		msg "Update format of passwd database"
   1505 		failed=1
   1506 	elif ! ${PWD_MKDB} -V 1 -d "${DEST_DIR:-/}" \
   1507 			"${DEST_DIR}/etc/master.passwd";
   1508 	then
   1509 		msg "Can't update format of passwd database"
   1510 		failed=1
   1511 	else
   1512 		msg "Updated format of passwd database"
   1513 	fi
   1514 
   1515 	return ${failed}
   1516 }
   1517 
   1518 #
   1519 #	rc
   1520 #
   1521 
   1522 # There is no info in src/distrib or /etc/mtree which rc* files
   1523 # can be overwritten unconditionally on upgrade. See PR/54741.
   1524 rc_644_files="
   1525 rc
   1526 rc.subr
   1527 rc.shutdown
   1528 "
   1529 
   1530 rc_obsolete_vars="
   1531 amd amd_master
   1532 btcontrol btcontrol_devices
   1533 critical_filesystems critical_filesystems_beforenet
   1534 mountcritlocal mountcritremote
   1535 network ip6forwarding
   1536 network nfsiod_flags
   1537 sdpd sdpd_control
   1538 sdpd sdpd_groupname
   1539 sdpd sdpd_username
   1540 sysctl defcorename
   1541 "
   1542 
   1543 update_rc()
   1544 {
   1545 	local op=$1
   1546 	local dir=$2
   1547 	local name=$3
   1548 	local bindir=$4
   1549 	local rcdir=$5
   1550 
   1551 	if [ ! -x "${DEST_DIR}/${bindir}/${name}" ]; then
   1552 		return 0
   1553 	fi
   1554 
   1555 	if ! find_file_in_dirlist "${name}" "${name}" \
   1556 	    "${rcdir}" "${SRC_DIR}/etc/rc.d"; then
   1557 		return 1
   1558 	fi
   1559 	populate_dir "${op}" false "${dir}" "${DEST_DIR}/etc/rc.d" 555 "${name}"
   1560 	return $?
   1561 }
   1562 
   1563 # select non-obsolete files in a sets file
   1564 # $1: directory pattern
   1565 # $2: file pattern
   1566 # $3: filename
   1567 select_set_files()
   1568 {
   1569 	local qdir="$(echo $1 | ${SED} -e s@/@\\\\/@g -e s/\\./\\\\./g)"
   1570 	${SED} -n -e /obsolete/d \
   1571 	    -e "/^\.${qdir}/s@^.$2[[:space:]].*@\1@p" $3
   1572 }
   1573 
   1574 # select obsolete files in a sets file
   1575 # $1: directory pattern
   1576 # $2: file pattern
   1577 # $3: setname
   1578 select_obsolete_files()
   1579 {
   1580 	if $SOURCEMODE; then
   1581 		${SED} -n -e "/obsolete/s@\.$1$2[[:space:]].*@\1@p" \
   1582 		    ${SRC_DIR}/distrib/sets/lists/$3/mi
   1583 		return
   1584 	fi
   1585 
   1586 	# On upgrade builds we don't extract the "etc" set so we
   1587 	# try to use the source set instead. See PR/54730 for
   1588 	# ways to better handle this.
   1589 
   1590 	local obsolete_dir
   1591 
   1592 	if [ $3 = "etc" ] ;then
   1593 		obsolete_dir=${SRC_DIR}/var/db/obsolete
   1594 	else
   1595 		obsolete_dir=${DEST_DIR}/var/db/obsolete
   1596 	fi
   1597 	${SED} -n -e "s@\.$1$2\$@\1@p" "${obsolete_dir}/$3"
   1598 }
   1599 
   1600 getetcsets()
   1601 {
   1602 	if $SOURCEMODE; then
   1603 		echo "${SRC_DIR}/distrib/sets/lists/etc/mi"
   1604 	else
   1605 		echo "${SRC_DIR}/etc/mtree/set.etc"
   1606 	fi
   1607 }
   1608 
   1609 additem rc "/etc/rc* and /etc/rc.d/ being up to date"
   1610 do_rc()
   1611 {
   1612 	[ -n "$1" ] || err 3 "USAGE: do_rc  fix|check"
   1613 	local op="$1"
   1614 	local failed=0
   1615 	local generated_scripts=""
   1616 	local etcsets=$(getetcsets)
   1617 	if [ "${MKX11}" != "no" ]; then
   1618 		generated_scripts="${generated_scripts} xdm xfs"
   1619 	fi
   1620 
   1621 	# Directories of external programs that have rc files (in bsd)
   1622 	local rc_external_files="blocklist nsd unbound"
   1623 
   1624 	# rc* files in /etc/
   1625 	# XXX: at least rc.conf and rc.local shouldn't be updated. PR/54741
   1626 	#local rc_644_files="$(select_set_files /etc/rc \
   1627 	#    "/etc/\(rc[^[:space:]/]*\)" ${etcsets})"
   1628 
   1629 	# no-obsolete rc files in /etc/rc.d
   1630 	local rc_555_files="$(select_set_files /etc/rc.d/ \
   1631 	    "/etc/rc\.d/\([^[:space:]]*\)" ${etcsets} | \
   1632 	    exclude ${rc_external_files})"
   1633 
   1634 	# obsolete rc file in /etc/rc.d
   1635 	local rc_obsolete_files="$(select_obsolete_files /etc/rc.d/ \
   1636 	    "\([^[:space:]]*\)" etc)"
   1637 
   1638 	compare_dir "${op}" "${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 \
   1639 		${rc_644_files}
   1640 	failed=$(( ${failed} + $? ))
   1641 
   1642 	local extra_scripts
   1643 	if ! $SOURCEMODE; then
   1644 		extra_scripts="${generated_scripts}"
   1645 	else
   1646 		extra_scripts=""
   1647 	fi
   1648 
   1649 	compare_dir "${op}" "${SRC_DIR}/etc/rc.d" "${DEST_DIR}/etc/rc.d" 555 \
   1650 		${rc_555_files} \
   1651 		${extra_scripts}
   1652 	failed=$(( ${failed} + $? ))
   1653 
   1654 	for i in ${rc_external_files}; do
   1655 	    local rc_file 
   1656 	    case $i in
   1657 	    *d) rc_file=${i};;
   1658 	    *)	rc_file=${i}d;;
   1659 	    esac
   1660 		
   1661 	    update_rc "${op}" "${dir}" ${rc_file} /sbin \
   1662 		"${SRC_DIR}/external/bsd/$i/etc/rc.d"
   1663 	    failed=$(( ${failed} + $? ))
   1664 	done
   1665 
   1666 	if $SOURCEMODE && [ -n "${generated_scripts}" ]; then
   1667 		# generate scripts
   1668 		mkdir "${SCRATCHDIR}/rc"
   1669 		for f in ${generated_scripts}; do
   1670 			${SED} -e "s,@X11ROOTDIR@,${X11ROOTDIR},g" \
   1671 			    < "${SRC_DIR}/etc/rc.d/${f}.in" \
   1672 			    > "${SCRATCHDIR}/rc/${f}"
   1673 		done
   1674 		compare_dir "${op}" "${SCRATCHDIR}/rc" \
   1675 		    "${DEST_DIR}/etc/rc.d" 555 \
   1676 		    ${generated_scripts}
   1677 		failed=$(( ${failed} + $? ))
   1678 	fi
   1679 
   1680 		# check for obsolete rc.d files
   1681 	for f in ${rc_obsolete_files}; do
   1682 		local fd="/etc/rc.d/${f}"
   1683 		[ -e "${DEST_DIR}${fd}" ] && echo "${fd}"
   1684 	done | obsolete_paths "${op}"
   1685 	failed=$(( ${failed} + $? ))
   1686 
   1687 		# check for obsolete rc.conf(5) variables
   1688 	set -- ${rc_obsolete_vars}
   1689 	while [ $# -gt 1 ]; do
   1690 		if rcconf_is_set "${op}" "$1" "$2" 1; then
   1691 			failed=1
   1692 		fi
   1693 		shift 2
   1694 	done
   1695 
   1696 	return ${failed}
   1697 }
   1698 
   1699 #
   1700 #	sendmail
   1701 #
   1702 adddisableditem sendmail "remove obsolete sendmail configuration files and scripts"
   1703 do_sendmail()
   1704 {
   1705 	[ -n "$1" ] || err 3 "USAGE: do_sendmail  fix|check"
   1706 	op="$1"
   1707 	failed=0
   1708 
   1709 	# Don't complain if the "sendmail" package is installed because the
   1710 	# files might still be in use.
   1711 	if /usr/sbin/pkg_info -qe sendmail >/dev/null 2>&1; then
   1712 		return 0
   1713 	fi
   1714 
   1715 	for f in /etc/mail/helpfile /etc/mail/local-host-names \
   1716 	    /etc/mail/sendmail.cf /etc/mail/submit.cf /etc/rc.d/sendmail \
   1717 	    /etc/rc.d/smmsp /usr/share/misc/sendmail.hf \
   1718 	    $( ( find "${DEST_DIR}/usr/share/sendmail" -type f ; \
   1719 	         find "${DEST_DIR}/usr/share/sendmail" -type d \
   1720 	       ) | unprefix "${DEST_DIR}" ) \
   1721 	    /var/log/sendmail.st \
   1722 	    /var/spool/clientmqueue \
   1723 	    /var/spool/mqueue
   1724 	do
   1725 		[ -e "${DEST_DIR}${f}" ] && echo "${f}"
   1726 	done | obsolete_paths "${op}"
   1727 	failed=$(( ${failed} + $? ))
   1728 
   1729 	return ${failed}
   1730 }
   1731 
   1732 #
   1733 #	mailerconf
   1734 #
   1735 adddisableditem mailerconf "update /etc/mailer.conf after sendmail removal"
   1736 do_mailerconf()
   1737 {
   1738 	[ -n "$1" ] || err 3 "USAGE: do_mailterconf  fix|check"
   1739 	op="$1"
   1740 
   1741 	failed=0
   1742 	mta_path="$(${AWK} '/^sendmail[ \t]/{print$2}' \
   1743 		"${DEST_DIR}/etc/mailer.conf")"
   1744 	old_sendmail_path="/usr/libexec/sendmail/sendmail"
   1745 	if [ "${mta_path}" = "${old_sendmail_path}" ]; then
   1746 	    if [ "$op" = check ]; then
   1747 		msg "mailer.conf points to obsolete ${old_sendmail_path}"
   1748 		failed=1;
   1749 	    else
   1750 		populate_dir "${op}" false \
   1751 		"${SRC_DIR}/etc" "${DEST_DIR}/etc" 644 mailer.conf
   1752 		failed=$?
   1753 	    fi
   1754 	fi
   1755 
   1756 	return ${failed}
   1757 }
   1758 
   1759 #
   1760 #	ssh
   1761 #
   1762 additem ssh "ssh configuration update"
   1763 do_ssh()
   1764 {
   1765 	[ -n "$1" ] || err 3 "USAGE: do_ssh  fix|check"
   1766 	op="$1"
   1767 
   1768 	failed=0
   1769 	_etcssh="${DEST_DIR}/etc/ssh"
   1770 	if ! check_dir "${op}" "${_etcssh}" 755; then
   1771 		failed=1
   1772 	fi
   1773 
   1774 	if [ ${failed} -eq 0 ]; then
   1775 		for f in \
   1776 			    ssh_known_hosts ssh_known_hosts2 \
   1777 			    ssh_host_dsa_key ssh_host_dsa_key.pub \
   1778 			    ssh_host_rsa_key ssh_host_rsa_key.pub \
   1779 			    ssh_host_key ssh_host_key.pub \
   1780 		    ; do
   1781 			if ! move_file "${op}" \
   1782 			    "${DEST_DIR}/etc/${f}" "${_etcssh}/${f}" ; then
   1783 				failed=1
   1784 			fi
   1785 		done
   1786 		for f in sshd.conf ssh.conf ; do
   1787 				# /etc/ssh/ssh{,d}.conf -> ssh{,d}_config
   1788 				#
   1789 			if ! move_file "${op}" \
   1790 			    "${_etcssh}/${f}" "${_etcssh}/${f%.conf}_config" ;
   1791 			then
   1792 				failed=1
   1793 			fi
   1794 				# /etc/ssh{,d}.conf -> /etc/ssh/ssh{,d}_config
   1795 				#
   1796 			if ! move_file "${op}" \
   1797 			    "${DEST_DIR}/etc/${f}" \
   1798 			    "${_etcssh}/${f%.conf}_config" ;
   1799 			then
   1800 				failed=1
   1801 			fi
   1802 		done
   1803 	fi
   1804 
   1805 	sshdconf=""
   1806 	for f in \
   1807 	    "${_etcssh}/sshd_config" \
   1808 	    "${_etcssh}/sshd.conf" \
   1809 	    "${DEST_DIR}/etc/sshd.conf" ; do
   1810 		if [ -f "${f}" ]; then
   1811 			sshdconf="${f}"
   1812 			break
   1813 		fi
   1814 	done
   1815 	if [ -n "${sshdconf}" ]; then
   1816 		modify_file "${op}" "${sshdconf}" "${SCRATCHDIR}/sshdconf" '
   1817 			/^[^#$]/ {
   1818 				kw = tolower($1)
   1819 				if (kw == "hostkey" &&
   1820 				    $2 ~ /^\/etc\/+ssh_host(_[dr]sa)?_key$/ ) {
   1821 					sub(/\/etc\/+/, "/etc/ssh/")
   1822 				}
   1823 				if (kw == "rhostsauthentication" ||
   1824 				    kw == "verifyreversemapping" ||
   1825 				    kw == "reversemappingcheck") {
   1826 					sub(/^/, "# DEPRECATED:\t")
   1827 				}
   1828 			}
   1829 			{ print }
   1830 		'
   1831 		failed=$(( ${failed} + $? ))
   1832 	fi
   1833 
   1834 	if ! find_file_in_dirlist moduli "moduli" \
   1835 	    "${SRC_DIR}/crypto/external/bsd/openssh/dist" "${SRC_DIR}/etc" ; then
   1836 		failed=1
   1837 			# ${dir} is set by find_file_in_dirlist()
   1838 	elif ! compare_dir "${op}" "${dir}" "${DEST_DIR}/etc" 444 moduli; then
   1839 		failed=1
   1840 	fi
   1841 
   1842 	if ! check_dir "${op}" "${DEST_DIR}/var/chroot/sshd" 755 ; then
   1843 		failed=1
   1844 	fi
   1845 
   1846 	if rcconf_is_set "${op}" sshd sshd_conf_dir 1; then
   1847 		failed=1
   1848 	fi
   1849 
   1850 	return ${failed}
   1851 }
   1852 
   1853 #
   1854 #	wscons
   1855 #
   1856 additem wscons "wscons configuration file update"
   1857 do_wscons()
   1858 {
   1859 	[ -n "$1" ] || err 3 "USAGE: do_wscons  fix|check"
   1860 	op="$1"
   1861 
   1862 	[ -f "${DEST_DIR}/etc/wscons.conf" ] || return 0
   1863 
   1864 	failed=0
   1865 	notfixed=""
   1866 	if [ "${op}" = "fix" ]; then
   1867 		notfixed="${NOT_FIXED}"
   1868 	fi
   1869 	while read _type _arg1 _rest; do
   1870 		if [ "${_type}" = "mux" -a "${_arg1}" = "1" ]; then
   1871 			msg \
   1872     "Obsolete wscons.conf(5) entry \""${_type} ${_arg1}"\" found.${notfixed}"
   1873 			failed=1
   1874 		fi
   1875 	done < "${DEST_DIR}/etc/wscons.conf"
   1876 
   1877 	return ${failed}
   1878 }
   1879 
   1880 #
   1881 #	X11
   1882 #
   1883 additem x11 "x11 configuration update"
   1884 do_x11()
   1885 {
   1886 	[ -n "$1" ] || err 3 "USAGE: do_x11  fix|check"
   1887 	op="$1"
   1888 
   1889 	failed=0
   1890 	_etcx11="${DEST_DIR}/etc/X11"
   1891 	if [ ! -d "${_etcx11}" ]; then
   1892 		msg "${_etcx11} is not a directory; skipping check"
   1893 		return 0
   1894 	fi
   1895 	if [ -d "${DEST_DIR}/usr/X11R6/." ]
   1896 	then
   1897 		_libx11="${DEST_DIR}/usr/X11R6/lib/X11"
   1898 		if [ ! -d "${_libx11}" ]; then
   1899 			msg "${_libx11} is not a directory; skipping check"
   1900 			return 0
   1901 		fi
   1902 	fi
   1903 
   1904 	_notfixed=""
   1905 	if [ "${op}" = "fix" ]; then
   1906 		_notfixed="${NOT_FIXED}"
   1907 	fi
   1908 
   1909 	for d in \
   1910 		    fs lbxproxy proxymngr rstart twm xdm xinit xserver xsm \
   1911 	    ; do
   1912 		sd="${_libx11}/${d}"
   1913 		ld="/etc/X11/${d}"
   1914 		td="${DEST_DIR}${ld}"
   1915 		if [ -h "${sd}" ]; then
   1916 			continue
   1917 		elif [ -d "${sd}" ]; then
   1918 			tdfiles="$(find "${td}" \! -type d)"
   1919 			if [ -n "${tdfiles}" ]; then
   1920 				msg "${sd} exists yet ${td} already" \
   1921 				    "contains files${_notfixed}"
   1922 			else
   1923 				msg "Migrate ${sd} to ${td}${_notfixed}"
   1924 			fi
   1925 			failed=1
   1926 		elif [ -e "${sd}" ]; then
   1927 			msg "Unexpected file ${sd}${_notfixed}"
   1928 			continue
   1929 		else
   1930 			continue
   1931 		fi
   1932 	done
   1933 
   1934 	# check if xdm resources have been updated
   1935 	if [ -r ${_etcx11}/xdm/Xresources ] && \
   1936 	    ! ${GREP} 'inpColor:' ${_etcx11}/xdm/Xresources > /dev/null; then
   1937 		msg "Update ${_etcx11}/xdm/Xresources${_notfixed}"
   1938 		failed=1
   1939 	fi
   1940 
   1941 	return ${failed}
   1942 }
   1943 
   1944 #
   1945 #	xkb
   1946 #
   1947 # /usr/X11R7/lib/X11/xkb/symbols/pc used to be a directory, but changed
   1948 # to a file on 2009-06-12.  Fixing this requires removing the directory
   1949 # (which we can do) and re-extracting the xbase set (which we can't do),
   1950 # or at least adding that one file (which we may be able to do if X11SRCDIR
   1951 # is available).
   1952 #
   1953 additem xkb "clean up for xkbdata to xkeyboard-config upgrade"
   1954 do_xkb()
   1955 {
   1956 	[ -n "$1" ] || err 3 "USAGE: do_xkb  fix|check"
   1957 	op="$1"
   1958 	failed=0
   1959 
   1960 	pcpath="/usr/X11R7/lib/X11/xkb/symbols/pc"
   1961 	pcsrcdir="${X11SRCDIR}/external/mit/xkeyboard-config/dist/symbols"
   1962 
   1963 	filemsg="\
   1964 ${pcpath} was a directory, should be a file.
   1965     To fix, extract the xbase set again."
   1966 
   1967 	_notfixed=""
   1968 	if [ "${op}" = "fix" ]; then
   1969 		_notfixed="${NOT_FIXED}"
   1970 	fi
   1971 
   1972 	if [ ! -d "${DEST_DIR}${pcpath}" ]; then
   1973 		return 0
   1974 	fi
   1975 
   1976 	# Delete obsolete files in the directory, and the directory
   1977 	# itself.  If the directory contains unexpected extra files
   1978 	# then it will not be deleted.
   1979 	( [ -f "${DEST_DIR}"/var/db/obsolete/xbase ] \
   1980 	    &&  ${SORT} -ru "${DEST_DIR}"/var/db/obsolete/xbase \
   1981 	    | ${GREP} -E "^\\.?${pcpath}/" ;
   1982 	    echo "${pcpath}" ) \
   1983 	| obsolete_paths "${op}"
   1984 	failed=$(( ${failed} + $? ))
   1985 
   1986 	# If the directory was removed above, then try to replace it with
   1987 	# a file.
   1988 	if [ -d "${DEST_DIR}${pcpath}" ]; then
   1989 		msg "${filemsg}${_notfixed}"
   1990 		failed=$(( ${failed} + 1 ))
   1991 	else
   1992 		if ! find_file_in_dirlist pc "${pcpath}" \
   1993 			"${pcsrcdir}" "${SRC_DIR}${pcpath%/*}"
   1994 		then
   1995 			msg "${filemsg}${_notfixed}"
   1996 			failed=$(( ${failed} + 1 ))
   1997 		else
   1998 			# ${dir} is set by find_file_in_dirlist()
   1999 			populate_dir "${op}" true \
   2000 				"${dir}" "${DEST_DIR}${pcpath%/*}" 444 \
   2001 				pc
   2002 			failed=$(( ${failed} + $? ))
   2003 		fi
   2004 	fi
   2005 
   2006 	return $failed
   2007 }
   2008 
   2009 #
   2010 #	uid
   2011 #
   2012 additem uid "required users in /etc/master.passwd"
   2013 do_uid()
   2014 {
   2015 	[ -n "$1" ] || err 3 "USAGE: do_uid  fix|check"
   2016 
   2017 	check_ids "$1" users "${DEST_DIR}/etc/master.passwd" \
   2018 	    "${SRC_DIR}/etc/master.passwd" 12 \
   2019 	    postfix SKIP named ntpd sshd SKIP _pflogd _rwhod SKIP _proxy \
   2020 	    _timedc _sdpd _httpd _mdnsd _tests _tcpdump _tss SKIP _rtadvd \
   2021 	    SKIP _unbound _nsd SKIP _dhcpcd
   2022 }
   2023 
   2024 
   2025 #
   2026 #	varrwho
   2027 #
   2028 additem varrwho "required ownership of files in /var/rwho"
   2029 do_varrwho()
   2030 {
   2031 	[ -n "$1" ] || err 3 "USAGE: do_varrwho  fix|check"
   2032 
   2033 	contents_owner "$1" "${DEST_DIR}/var/rwho" _rwhod _rwhod
   2034 }
   2035 
   2036 
   2037 #
   2038 #	tcpdumpchroot
   2039 #
   2040 additem tcpdumpchroot "remove /var/chroot/tcpdump/etc/protocols"
   2041 do_tcpdumpchroot()
   2042 {
   2043 	[ -n "$1" ] || err 3 "USAGE: do_tcpdumpchroot  fix|check"
   2044 
   2045 	failed=0;
   2046 	if [ -r "${DEST_DIR}/var/chroot/tcpdump/etc/protocols" ]; then
   2047 		if [ "$1" = "fix" ]; then
   2048 			rm "${DEST_DIR}/var/chroot/tcpdump/etc/protocols"
   2049 			failed=$(( ${failed} + $? ))
   2050 			rmdir "${DEST_DIR}/var/chroot/tcpdump/etc"
   2051 			failed=$(( ${failed} + $? ))
   2052 		else
   2053 			failed=1
   2054 		fi
   2055 	fi
   2056 	return ${failed}
   2057 }
   2058 
   2059 
   2060 #
   2061 #	atf
   2062 #
   2063 additem atf "install missing atf configuration files and validate them"
   2064 do_atf()
   2065 {
   2066 	[ -n "$1" ] || err 3 "USAGE: do_atf  fix|check"
   2067 	op="$1"
   2068 	failed=0
   2069 
   2070 	# Ensure atf configuration files are in place.
   2071 	if find_file_in_dirlist NetBSD.conf "NetBSD.conf" \
   2072 	    "${SRC_DIR}/external/bsd/atf/etc/atf" \
   2073 	    "${SRC_DIR}/etc/atf"; then
   2074 			# ${dir} is set by find_file_in_dirlist()
   2075 		populate_dir "${op}" true "${dir}" "${DEST_DIR}/etc/atf" 644 \
   2076 		    NetBSD.conf common.conf || failed=1
   2077 	else
   2078 		failed=1
   2079 	fi
   2080 	if find_file_in_dirlist atf-run.hooks "atf-run.hooks" \
   2081 	    "${SRC_DIR}/external/bsd/atf/dist/tools/sample" \
   2082 	    "${SRC_DIR}/etc/atf"; then
   2083 			# ${dir} is set by find_file_in_dirlist()
   2084 		populate_dir "${op}" true "${dir}" "${DEST_DIR}/etc/atf" 644 \
   2085 		    atf-run.hooks || failed=1
   2086 	else
   2087 		failed=1
   2088 	fi
   2089 
   2090 	# Validate the _atf to _tests user/group renaming.
   2091 	if [ -f "${DEST_DIR}/etc/atf/common.conf" ]; then
   2092 		handle_atf_user "${op}" || failed=1
   2093 	else
   2094 		failed=1
   2095 	fi
   2096 
   2097 	return ${failed}
   2098 }
   2099 
   2100 handle_atf_user()
   2101 {
   2102 	local op="$1"
   2103 	local failed=0
   2104 
   2105 	local conf="${DEST_DIR}/etc/atf/common.conf"
   2106 	if grep '[^#]*unprivileged-user[ \t]*=.*_atf' "${conf}" >/dev/null
   2107 	then
   2108 		if [ "$1" = "fix" ]; then
   2109 			${SED} -e \
   2110 			    "/[^#]*unprivileged-user[\ t]*=/s/_atf/_tests/" \
   2111 			    "${conf}" >"${conf}.new"
   2112 			failed=$(( ${failed} + $? ))
   2113 			mv "${conf}.new" "${conf}"
   2114 			failed=$(( ${failed} + $? ))
   2115 			msg "Set unprivileged-user=_tests in ${conf}"
   2116 		else
   2117 			msg "unprivileged-user=_atf in ${conf} should be" \
   2118 			    "unprivileged-user=_tests"
   2119 			failed=1
   2120 		fi
   2121 	fi
   2122 
   2123 	return ${failed}
   2124 }
   2125 
   2126 #
   2127 #	catpages
   2128 #
   2129 obsolete_catpages()
   2130 {
   2131 	basedir="$2"
   2132 	section="$3"
   2133 	mandir="${basedir}/man${section}"
   2134 	catdir="${basedir}/cat${section}"
   2135 	test -d "$mandir" || return 0
   2136 	test -d "$catdir" || return 0
   2137 	(cd "$mandir" && find . -type f) | {
   2138 	failed=0
   2139 	while read manpage; do
   2140 		manpage="${manpage#./}"
   2141 		case "$manpage" in
   2142 		*.Z)
   2143 			catname="$catdir/${manpage%.*.Z}.0"
   2144 			;;
   2145 		*.gz)
   2146 			catname="$catdir/${manpage%.*.gz}.0"
   2147 			;;
   2148 		*)
   2149 			catname="$catdir/${manpage%.*}.0"
   2150 			;;
   2151 		esac
   2152 		test -e "$catname" -a "$catname" -ot "$mandir/$manpage" || continue
   2153 		if [ "$1" = "fix" ]; then
   2154 			rm "$catname"
   2155 			failed=$(( ${failed} + $? ))
   2156 			msg "Removed obsolete cat page $catname"
   2157 		else
   2158 			msg "Obsolete cat page $catname"
   2159 			failed=1
   2160 		fi
   2161 	done
   2162 	exit $failed
   2163 	}
   2164 }
   2165 
   2166 additem catpages "remove outdated cat pages"
   2167 do_catpages()
   2168 {
   2169 	failed=0
   2170 	for manbase in /usr/share/man /usr/X11R6/man /usr/X11R7/man; do
   2171 		for sec in 1 2 3 4 5 6 7 8 9; do
   2172 			obsolete_catpages "$1" "${DEST_DIR}${manbase}" "${sec}"
   2173 			failed=$(( ${failed} + $? ))
   2174 			if [ "$1" = "fix" ]; then
   2175 				rmdir "${DEST_DIR}${manbase}/cat${sec}"/* \
   2176 					2>/dev/null
   2177 				rmdir "${DEST_DIR}${manbase}/cat${sec}" \
   2178 					2>/dev/null
   2179 			fi
   2180 		done
   2181 	done
   2182 	return $failed
   2183 }
   2184 
   2185 #
   2186 #	man.conf
   2187 #
   2188 additem manconf "check for a mandoc usage in /etc/man.conf"
   2189 do_manconf()
   2190 {
   2191 	[ -n "$1" ] || err 3 "USAGE: do_manconf  fix|check"
   2192 	op="$1"
   2193 	failed=0
   2194 
   2195 	[ -f "${DEST_DIR}/etc/man.conf" ] || return 0
   2196 	if ${GREP} -w "mandoc" "${DEST_DIR}/etc/man.conf" >/dev/null 2>&1;
   2197 	then
   2198 		failed=0;
   2199 	else
   2200 		failed=1
   2201 		notfixed=""
   2202 		if [ "${op}" = "fix" ]; then
   2203 			notfixed="${NOT_FIXED}"
   2204 		fi
   2205 		msg "The file /etc/man.conf has not been adapted to mandoc usage; you"
   2206 		msg "probably want to copy a new version over. ${notfixed}"
   2207 	fi
   2208 
   2209 	return ${failed}
   2210 }
   2211 
   2212 
   2213 #
   2214 #	ptyfsoldnodes
   2215 #
   2216 additem ptyfsoldnodes "remove legacy device nodes when using ptyfs"
   2217 do_ptyfsoldnodes()
   2218 {
   2219 	[ -n "$1" ] || err 3 "USAGE: do_ptyfsoldnodes  fix|check"
   2220 	_ptyfs_op="$1"
   2221 
   2222 	# Check whether ptyfs is in use
   2223 	failed=0;
   2224 	if ! ${GREP} -E "^ptyfs" "${DEST_DIR}/etc/fstab" > /dev/null; then
   2225 		msg "ptyfs is not in use"
   2226 		return 0
   2227 	fi
   2228 
   2229 	if [ ! -e "${DEST_DIR}/dev/pts" ]; then
   2230 		msg "ptyfs is not properly configured: missing /dev/pts"
   2231 		return 1
   2232 	fi
   2233 
   2234 	# Find the device major numbers for the pty master and slave
   2235 	# devices, by parsing the output from "MAKEDEV -s pty0".
   2236 	#
   2237 	# Output from MAKEDEV looks like this:
   2238 	# ./ttyp0 type=char device=netbsd,5,0 mode=666 gid=0 uid=0
   2239 	# ./ptyp0 type=char device=netbsd,6,0 mode=666 gid=0 uid=0
   2240 	#
   2241 	# Output from awk, used in the eval statement, looks like this:
   2242 	# maj_ptym=6; maj_ptys=5;
   2243 	#
   2244 	find_makedev
   2245 	eval "$(
   2246 	    ${HOST_SH} "${MAKEDEV_DIR}/MAKEDEV" -s pty0 2>/dev/null \
   2247 	    | ${AWK} '\
   2248 	    BEGIN { before_re = ".*device=[a-zA-Z]*,"; after_re = ",.*"; }
   2249 	    /ptyp0/ { maj_ptym = gensub(before_re, "", 1, $0);
   2250 		      maj_ptym = gensub(after_re, "", 1, maj_ptym); }
   2251 	    /ttyp0/ { maj_ptys = gensub(before_re, "", 1, $0);
   2252 		      maj_ptys = gensub(after_re, "", 1, maj_ptys); }
   2253 	    END { print "maj_ptym=" maj_ptym "; maj_ptys=" maj_ptys ";"; }
   2254 	    '
   2255 	    )"
   2256 	#msg "Major numbers are maj_ptym=${maj_ptym} maj_ptys=${maj_ptys}"
   2257 	if [ -z "$maj_ptym" ] || [ -z "$maj_ptys" ]; then
   2258 		msg "Cannot find device major numbers for pty master and slave"
   2259 		return 1
   2260 	fi
   2261 
   2262 	# look for /dev/[pt]ty[p-zP-T][0-9a-zA-Z], and check that they
   2263 	# have the expected device major numbers.  ttyv* is typically not a
   2264 	# pty device, but we check it anyway.
   2265 	#
   2266 	# The "for d1" loop is intended to avoid overflowing ARG_MAX;
   2267 	# otherwise we could have used a single glob pattern.
   2268 	#
   2269 	# If there are no files that match a particular pattern,
   2270 	# then stat prints something like:
   2271 	#    stat: /dev/[pt]tyx?: lstat: No such file or directory
   2272 	# and we ignore it.  XXX: We also ignore other error messages.
   2273 	#
   2274 	_ptyfs_tmp="$(mktemp /tmp/postinstall.ptyfs.XXXXXXXX)"
   2275 	for d1 in p q r s t u v w x y z P Q R S T; do
   2276 		${STAT} -f "%Hr %N" "${DEST_DIR}/dev/"[pt]ty${d1}? 2>&1
   2277 	done \
   2278 	| while read -r major node ; do
   2279 		case "$major" in
   2280 		${maj_ptym}|${maj_ptys}) echo "$node" ;;
   2281 		esac
   2282 	done >"${_ptyfs_tmp}"
   2283 
   2284 	_desc="legacy device node"
   2285 	while read node; do
   2286 		if [ "${_ptyfs_op}" = "check" ]; then
   2287 			msg "Remove ${_desc} ${node}"
   2288 			failed=1
   2289 		else # "fix"
   2290 			if rm "${node}"; then
   2291 				msg "Removed ${_desc} ${node}"
   2292 			else
   2293 				warn "Failed to remove ${_desc} ${node}"
   2294 				failed=1
   2295 			fi
   2296 		fi
   2297 	done < "${_ptyfs_tmp}"
   2298 	rm "${_ptyfs_tmp}"
   2299 
   2300 	return ${failed}
   2301 }
   2302 
   2303 
   2304 #
   2305 #	varshm
   2306 #
   2307 additem varshm "check for a tmpfs mounted on /var/shm"
   2308 do_varshm()
   2309 {
   2310 	[ -n "$1" ] || err 3 "USAGE: do_varshm  fix|check"
   2311 	op="$1"
   2312 	failed=0
   2313 
   2314 	[ -f "${DEST_DIR}/etc/fstab" ] || return 0
   2315 	if ${GREP} -E "^var_shm_symlink" "${DEST_DIR}/etc/rc.conf" >/dev/null 2>&1;
   2316 	then
   2317 		failed=0;
   2318 	elif ${GREP} -w "/var/shm" "${DEST_DIR}/etc/fstab" >/dev/null 2>&1;
   2319 	then
   2320 		failed=0;
   2321 	else
   2322 		if [ "${op}" = "check" ]; then
   2323 			failed=1
   2324 			msg "No /var/shm mount found in ${DEST_DIR}/etc/fstab"
   2325 		elif [ "${op}" = "fix" ]; then
   2326 			printf '\ntmpfs\t/var/shm\ttmpfs\trw,-m1777,-sram%%25\n' \
   2327 				>> "${DEST_DIR}/etc/fstab"
   2328 			msg "Added tmpfs with 25% ram limit as /var/shm"
   2329 
   2330 		fi
   2331 	fi
   2332 
   2333 	return ${failed}
   2334 }
   2335 
   2336 #
   2337 #	obsolete_stand
   2338 #
   2339 obsolete_stand_internal()
   2340 {
   2341 	local prefix="$1"
   2342 	shift
   2343 	[ -n "$1" ] || err 3 "USAGE: do_obsolete_stand  fix|check"
   2344 	local op="$1"
   2345 	local failed=0
   2346 
   2347 	for dir in \
   2348 	    ${prefix}/stand/${MACHINE} \
   2349 	    ${prefix}/stand/${MACHINE}-4xx \
   2350 	    ${prefix}/stand/${MACHINE}-booke \
   2351 	    ${prefix}/stand/${MACHINE}-xen \
   2352 	    ${prefix}/stand/${MACHINE}pae-xen
   2353 	do
   2354 		[ -d "${DESTDIR}${dir}" ] && obsolete_stand "${dir}"
   2355 	done | obsolete_paths "${op}"
   2356 	failed=$(( ${failed} + $? ))
   2357 
   2358 	return ${failed}
   2359 }
   2360 
   2361 adddisableditem obsolete_stand "remove obsolete files from /stand"
   2362 do_obsolete_stand()
   2363 {
   2364 	obsolete_stand_internal "" "$@"
   2365 	return $?
   2366 }
   2367 
   2368 adddisableditem obsolete_stand_debug "remove obsolete files from /usr/libdata/debug/stand"
   2369 do_obsolete_stand_debug()
   2370 {
   2371 	obsolete_stand_internal "/usr/libdata/debug" "$@"
   2372 	return $?
   2373 }
   2374 
   2375 listarchsubdirs() {
   2376 	if ! $SOURCEMODE; then
   2377 		echo "@ARCHSUBDIRS@"
   2378 	else
   2379 		${SED} -n -e '/ARCHDIR_SUBDIR/s/[[:space:]]//gp' \
   2380 		    ${SRC_DIR}/compat/archdirs.mk 
   2381 	fi
   2382 }
   2383 
   2384 
   2385 getarchsubdirs() {
   2386 	local m
   2387 	case ${MACHINE_ARCH} in
   2388 	*arm*|*aarch64*)	m=arm;;
   2389 	x86_64)			m=amd64;;
   2390 	*)			m=${MACHINE_ARCH};;
   2391 	esac
   2392 
   2393 	for i in $(listarchsubdirs); do
   2394 		echo $i
   2395 	done | ${SORT} -u | ${SED} -n -e "/=${m}/s@.*=${m}/\(.*\)@\1@p"
   2396 }
   2397 
   2398 getcompatlibdirs() {
   2399 	for i in $(getarchsubdirs); do
   2400 		if [ -d "${DEST_DIR}/usr/lib/$i" ]; then
   2401 			echo /usr/lib/$i
   2402 		fi
   2403 	done
   2404 }
   2405 
   2406 #
   2407 #	obsolete
   2408 #	(this item is last to allow other items to move obsolete files)
   2409 #
   2410 additem obsolete "remove obsolete file sets and minor libraries"
   2411 do_obsolete()
   2412 {
   2413 	[ -n "$1" ] || err 3 "USAGE: do_obsolete  fix|check"
   2414 	op="$1"
   2415 	failed=0
   2416 
   2417 	${SORT} -ru "${DEST_DIR}"/var/db/obsolete/* | obsolete_paths "${op}"
   2418 	failed=$(( ${failed} + $? ))
   2419 
   2420 	(
   2421 		obsolete_libs /lib
   2422 		obsolete_libs /usr/lib
   2423 		obsolete_libs /usr/lib/i18n
   2424 		obsolete_libs /usr/X11R6/lib
   2425 		obsolete_libs /usr/X11R7/lib
   2426 		for i in $(getcompatlibdirs); do
   2427 			obsolete_libs $i
   2428 		done
   2429 	) | obsolete_paths "${op}"
   2430 	failed=$(( ${failed} + $? ))
   2431 
   2432 	return ${failed}
   2433 }
   2434 
   2435 #
   2436 #	end of items
   2437 #	------------
   2438 #
   2439 
   2440 
   2441 usage()
   2442 {
   2443 	cat 1>&2 << _USAGE_
   2444 Usage: ${PROGNAME} [-s srcdir] [-x xsrcdir] [-d destdir] [-m mach] [-a arch] op [item [...]]
   2445 	Perform post-installation checks and/or fixes on a system's
   2446 	configuration files.
   2447 	If no items are provided, a default set of checks or fixes is applied.
   2448 
   2449 	Options:
   2450 	-s {srcdir|tgzfile|tempdir}
   2451 			Location of the source files.  This may be any
   2452 			of the following:
   2453 			* A directory that contains a NetBSD source tree;
   2454 			* A distribution set file such as "etc.tgz" or
   2455 			  "xetc.tgz".  Pass multiple -s options to specify
   2456 			  multiple such files;
   2457 			* A temporary directory in which one or both of
   2458 			  "etc.tgz" and "xetc.tgz" have been extracted.
   2459 							[${SRC_DIR:-/usr/src}]
   2460 	-x xsrcdir      Location of the X11 source files.  This must be
   2461 			a directory that contains a NetBSD xsrc tree.
   2462 							[${XSRC_DIR:-/usr/src/../xsrc}]
   2463 	-d destdir	Destination directory to check. [${DEST_DIR:-/}]
   2464 	-m mach		MACHINE.			[${MACHINE}]
   2465 	-a arch		MACHINE_ARCH.			[${MACHINE_ARCH}]
   2466 
   2467 	Operation may be one of:
   2468 		help	Display this help.
   2469 		list	List available items.
   2470 		check	Perform post-installation checks on items.
   2471 		diff [diff(1) options ...]
   2472 			Similar to 'check' but also output difference of files.
   2473 		fix	Apply fixes that 'check' determines need to be applied.
   2474 		usage	Display this usage.
   2475 _USAGE_
   2476 	exit 2
   2477 }
   2478 
   2479 
   2480 list()
   2481 {
   2482 	echo "Default set of items (to apply if no items are provided by user):"
   2483 	echo "  Item          Description"
   2484 	echo "  ----          -----------"
   2485 	for i in ${defaultitems}; do
   2486 		eval desc=\"\${desc_${i}}\"
   2487 		printf "  %-12s  %s\n" "${i}" "${desc}"
   2488 	done
   2489 	echo "Items disabled by default (must be requested explicitly):"
   2490 	echo "  Item          Description"
   2491 	echo "  ----          -----------"
   2492 	for i in ${otheritems}; do
   2493 		eval desc=\"\${desc_${i}}\"
   2494 		printf "  %-12s  %s\n" "${i}" "${desc}"
   2495 	done
   2496 
   2497 }
   2498 
   2499 
   2500 main()
   2501 {
   2502 	TGZLIST=		# quoted list list of tgz files
   2503 	SRC_ARGLIST=		# quoted list of one or more "-s" args
   2504 	SRC_DIR="${SRC_ARG}"	# set default value for early usage()
   2505 	XSRC_DIR="${SRC_ARG}/../xsrc"
   2506 	N_SRC_ARGS=0		# number of "-s" args
   2507 	TGZMODE=false		# true if "-s" specifies a tgz file
   2508 	DIRMODE=false		# true if "-s" specified a directory
   2509 	SOURCEMODE=false	# true if "-s" specified a source directory
   2510 
   2511 	case "$(uname -s)" in
   2512 	Darwin)
   2513 		# case sensitive match for case insensitive fs
   2514 		file_exists_exact=file_exists_exact
   2515 		;;
   2516 	*)
   2517 		file_exists_exact=:
   2518 		;;
   2519 	esac
   2520 
   2521 	while getopts s:x:d:m:a: ch; do
   2522 		case "${ch}" in
   2523 		s)
   2524 			qarg="$(shell_quote "${OPTARG}")"
   2525 			N_SRC_ARGS=$(( $N_SRC_ARGS + 1 ))
   2526 			SRC_ARGLIST="${SRC_ARGLIST}${SRC_ARGLIST:+ }-s ${qarg}"
   2527 			if [ -f "${OPTARG}" ]; then
   2528 				# arg refers to a *.tgz file.
   2529 				# This may happen twice, for both
   2530 				# etc.tgz and xetc.tgz, so we build up a
   2531 				# quoted list in TGZLIST.
   2532 				TGZMODE=true
   2533 				TGZLIST="${TGZLIST}${TGZLIST:+ }${qarg}"
   2534 				# Note that, when TGZMODE is true,
   2535 				# SRC_ARG is used only for printing
   2536 				# human-readable messages.
   2537 				SRC_ARG="${TGZLIST}"
   2538 			elif [ -d "${OPTARG}" ]; then
   2539 				# arg refers to a directory.
   2540 				# It might be a source directory, or a
   2541 				# directory where the sets have already
   2542 				# been extracted.
   2543 				DIRMODE=true
   2544 				SRC_ARG="${OPTARG}"
   2545 				if [ -f "${OPTARG}/etc/Makefile" ]; then
   2546 					SOURCEMODE=true
   2547 				fi
   2548 			else
   2549 				err 2 "Invalid argument for -s option"
   2550 			fi
   2551 			;;
   2552 		x)
   2553 			if [ -d "${OPTARG}" ]; then
   2554 				# arg refers to a directory.
   2555 				XSRC_DIR="${OPTARG}"
   2556 				XSRC_DIR_FIX="-x ${OPTARG} "
   2557 			else
   2558 				err 2 "Not a directory for -x option"
   2559 			fi
   2560 			;;
   2561 		d)
   2562 			DEST_DIR="${OPTARG}"
   2563 			;;
   2564 		m)
   2565 			MACHINE="${OPTARG}"
   2566 			;;
   2567 		a)
   2568 			MACHINE_ARCH="${OPTARG}"
   2569 			;;
   2570 		*)
   2571 			usage
   2572 			;;
   2573 		esac
   2574 	done
   2575 	shift $((${OPTIND} - 1))
   2576 	[ $# -gt 0 ] || usage
   2577 
   2578 	if [ "$N_SRC_ARGS" -gt 1 ] && $DIRMODE; then
   2579 		err 2 "Multiple -s args are allowed only with tgz files"
   2580 	fi
   2581 	if [ "$N_SRC_ARGS" -eq 0 ]; then
   2582 		# The default SRC_ARG was set elsewhere
   2583 		DIRMODE=true
   2584 		SOURCEMODE=true
   2585 		SRC_ARGLIST="-s $(shell_quote "${SRC_ARG}")"
   2586 	fi
   2587 
   2588 	#
   2589 	# If '-s' arg or args specified tgz files, extract them
   2590 	# to a scratch directory.
   2591 	#
   2592 	if $TGZMODE; then
   2593 		ETCTGZDIR="${SCRATCHDIR}/etc.tgz"
   2594 		echo "Note: Creating temporary directory ${ETCTGZDIR}"
   2595 		if ! mkdir "${ETCTGZDIR}"; then
   2596 			err 2 "Can't create ${ETCTGZDIR}"
   2597 		fi
   2598 		( # subshell to localise changes to "$@"
   2599 			eval "set -- ${TGZLIST}"
   2600 			for tgz in "$@"; do
   2601 				echo "Note: Extracting files from ${tgz}"
   2602 				cat "${tgz}" | (
   2603 					cd "${ETCTGZDIR}" &&
   2604 					tar -zxf -
   2605 				) || err 2 "Can't extract ${tgz}"
   2606 			done
   2607 		)
   2608 		SRC_DIR="${ETCTGZDIR}"
   2609 	else
   2610 		SRC_DIR="${SRC_ARG}"
   2611 	fi
   2612 
   2613 	[ -d "${SRC_DIR}" ]	|| err 2 "${SRC_DIR} is not a directory"
   2614 	[ -d "${DEST_DIR}" ]	|| err 2 "${DEST_DIR} is not a directory"
   2615 	[ -n "${MACHINE}" ]	|| err 2 "\${MACHINE} is not defined"
   2616 	[ -n "${MACHINE_ARCH}" ] || err 2 "\${MACHINE_ARCH} is not defined"
   2617 	if ! $SOURCEMODE && ! [ -f "${SRC_DIR}/etc/mtree/set.etc" ]; then
   2618 		err 2 "Files from the etc.tgz set are missing"
   2619 	fi
   2620 
   2621 		# If directories are /, clear them, so various messages
   2622 		# don't have leading "//".   However, this requires
   2623 		# the use of ${foo:-/} to display the variables.
   2624 		#
   2625 	[ "${SRC_DIR}" = "/" ]	&& SRC_DIR=""
   2626 	[ "${DEST_DIR}" = "/" ]	&& DEST_DIR=""
   2627 
   2628 	detect_x11
   2629 
   2630 	op="$1"
   2631 	shift
   2632 
   2633 	case "${op}" in
   2634 	diff)
   2635 		op=check
   2636 		DIFF_STYLE=n			# default style is RCS
   2637 		OPTIND=1
   2638 		while getopts bcenpuw ch; do
   2639 			case "${ch}" in
   2640 			c|e|n|u)
   2641 				if [ "${DIFF_STYLE}" != "n" -a \
   2642 				    "${DIFF_STYLE}" != "${ch}" ]; then
   2643 					err 2 "conflicting output style: ${ch}"
   2644 				fi
   2645 				DIFF_STYLE="${ch}"
   2646 				;;
   2647 			b|p|w)
   2648 				DIFF_OPT="${DIFF_OPT} -${ch}"
   2649 				;;
   2650 			*)
   2651 				err 2 "unknown diff option"
   2652 				;;
   2653 			esac
   2654 		done
   2655 		shift $((${OPTIND} - 1))
   2656 		;;
   2657 	esac
   2658 
   2659 	case "${op}" in
   2660 
   2661 	usage|help)
   2662 		usage
   2663 		;;
   2664 
   2665 	list)
   2666 		echo "Source directory: ${SRC_DIR:-/}"
   2667 		echo "Target directory: ${DEST_DIR:-/}"
   2668 		if $TGZMODE; then
   2669 			echo " (extracted from: ${SRC_ARG})"
   2670 		fi
   2671 		list
   2672 		;;
   2673 
   2674 	check|fix)
   2675 		todo="$*"
   2676 		: ${todo:="${defaultitems}"}
   2677 
   2678 		# ensure that all supplied items are valid
   2679 		#
   2680 		for i in ${todo}; do
   2681 			eval desc=\"\${desc_${i}}\"
   2682 			[ -n "${desc}" ] || err 2 "Unsupported ${op} '"${i}"'"
   2683 		done
   2684 
   2685 		# perform each check/fix
   2686 		#
   2687 		echo "Source directory: ${SRC_DIR:-/}"
   2688 		if $TGZMODE; then
   2689 			echo " (extracted from: ${SRC_ARG})"
   2690 		fi
   2691 		echo "Target directory: ${DEST_DIR:-/}"
   2692 		items_passed=
   2693 		items_failed=
   2694 		for i in ${todo}; do
   2695 			echo "${i} ${op}:"
   2696 			( eval do_${i} ${op} )
   2697 			if [ $? -eq 0 ]; then
   2698 				items_passed="${items_passed} ${i}"
   2699 			else
   2700 				items_failed="${items_failed} ${i}"
   2701 			fi
   2702 		done
   2703 
   2704 		if [ "${op}" = "check" ]; then
   2705 			plural="checks"
   2706 		else
   2707 			plural="fixes"
   2708 		fi
   2709 
   2710 		echo "${PROGNAME} ${plural} passed:${items_passed}"
   2711 		echo "${PROGNAME} ${plural} failed:${items_failed}"
   2712 		if [ -n "${items_failed}" ]; then
   2713 		    exitstatus=1;
   2714 		    if [ "${op}" = "check" ]; then
   2715 			[ "$MACHINE" = "$(uname -m)" ] && m= || m=" -m $MACHINE"
   2716 			cat <<_Fix_me_
   2717 To fix, run:
   2718     ${HOST_SH} ${0} ${SRC_ARGLIST} ${XSRC_DIR_FIX}-d ${DEST_DIR:-/}$m fix${items_failed}
   2719 Note that this may overwrite local changes.
   2720 _Fix_me_
   2721 		    fi
   2722 		fi
   2723 
   2724 		;;
   2725 
   2726 	*)
   2727 		warn "Unknown operation '"${op}"'"
   2728 		usage
   2729 		;;
   2730 
   2731 	esac
   2732 }
   2733 
   2734 if [ -n "$POSTINSTALL_FUNCTION" ]; then
   2735 	eval "$POSTINSTALL_FUNCTION"
   2736 	exit 0
   2737 fi
   2738 
   2739 # defaults
   2740 #
   2741 PROGNAME="${0##*/}"
   2742 SRC_ARG="/usr/src"
   2743 DEST_DIR="/"
   2744 : ${MACHINE:="$( uname -m )"}	# assume native build if $MACHINE is not set
   2745 : ${MACHINE_ARCH:="$( uname -p )"}# assume native build if not set
   2746 
   2747 DIFF_STYLE=
   2748 NOT_FIXED=" (FIX MANUALLY)"
   2749 SCRATCHDIR="$( mkdtemp )" || err 2 "Can't create scratch directory"
   2750 trap "/bin/rm -rf \"\${SCRATCHDIR}\" ; exit 0" 1 2 3 15	# HUP INT QUIT TERM
   2751 
   2752 umask 022
   2753 exec 3>/dev/null
   2754 exec 4>/dev/null
   2755 exitstatus=0
   2756 
   2757 main "$@"
   2758 /bin/rm -rf "${SCRATCHDIR}"
   2759 exit $exitstatus
   2760