blob: 5093c741666c3038a63e0020f951ad621e825d00 [file] [log] [blame]
Mike Frysinger2de7f042012-07-10 04:45:03 -04001# Copyright (c) 2012 The Chromium OS Authors. All rights reserved.
Brian Harringb938c782012-02-29 15:14:38 -08002# Use of this source code is governed by a BSD-style license that can be
3# found in the LICENSE file.
Manoj Gupta7fad04d2019-06-14 20:12:25 -07004
Mike Frysinger2f95cfc2015-06-04 04:00:26 -04005"""Manage SDK chroots.
6
7This script is used for manipulating local chroot environments; creating,
8deleting, downloading, etc. If given --enter (or no args), it defaults
9to an interactive bash shell within the chroot.
10
11If given args those are passed to the chroot environment, and executed.
12"""
Brian Harringb938c782012-02-29 15:14:38 -080013
Mike Frysinger2f95cfc2015-06-04 04:00:26 -040014import argparse
Josh Triplett472a4182013-03-08 11:48:57 -080015import glob
Chris McDonaldb55b7032021-06-17 16:41:32 -060016import logging
Brian Harringb938c782012-02-29 15:14:38 -080017import os
Mike Frysinger23b5cf52021-06-16 23:18:00 -040018from pathlib import Path
Josh Triplett472a4182013-03-08 11:48:57 -080019import pwd
Benjamin Gordon2d7bf582017-07-12 10:11:26 -060020import random
Brian Norrisd37e2f72016-08-22 16:09:24 -070021import re
Ting-Yuan Huangf56d9af2017-06-19 16:08:32 -070022import resource
Sergey Frolov1cb46ec2020-12-09 21:46:16 -070023import subprocess
David James56e6c2c2012-10-24 23:54:41 -070024import sys
Mike Frysingere852b072021-05-21 12:39:03 -040025import urllib.parse
Brian Harringb938c782012-02-29 15:14:38 -080026
Chris McDonaldb55b7032021-06-17 16:41:32 -060027from chromite.cbuildbot import cbuildbot_alerts
Brian Harringb6cf9142012-09-01 20:43:17 -070028from chromite.lib import commandline
Chris McDonaldb55b7032021-06-17 16:41:32 -060029from chromite.lib import constants
Brian Harringb938c782012-02-29 15:14:38 -080030from chromite.lib import cros_build_lib
Benjamin Gordon74645232018-05-04 17:40:42 -060031from chromite.lib import cros_sdk_lib
Brian Harringb938c782012-02-29 15:14:38 -080032from chromite.lib import locking
Josh Triplette759b232013-03-08 13:03:43 -080033from chromite.lib import namespaces
Brian Harringae0a5322012-09-15 01:46:51 -070034from chromite.lib import osutils
Yong Hong84ba9172018-02-07 01:37:42 +080035from chromite.lib import path_util
Mike Frysingere2d8f0d2014-11-01 13:09:26 -040036from chromite.lib import process_util
David Jamesc93e6a4d2014-01-13 11:37:36 -080037from chromite.lib import retry_util
Michael Mortensenbf296fb2020-06-18 18:21:54 -060038from chromite.lib import timeout_util
Mike Frysinger8e727a32013-01-16 16:57:53 -050039from chromite.lib import toolchain
Mike Frysingere652ba12019-09-08 00:57:43 -040040from chromite.utils import key_value_store
41
Brian Harringb938c782012-02-29 15:14:38 -080042
Mike Frysingerf744d032022-05-07 20:38:39 -040043# Which compression algos the SDK tarball uses. We've used xz since 2012.
44COMPRESSION_PREFERENCE = ('xz',)
Zdenek Behanfd0efe42012-04-13 04:36:40 +020045
Brian Harringb938c782012-02-29 15:14:38 -080046# TODO(zbehan): Remove the dependency on these, reimplement them in python
Manoj Guptab12f7302019-06-03 16:40:14 -070047ENTER_CHROOT = [
48 os.path.join(constants.SOURCE_ROOT, 'src/scripts/sdk_lib/enter_chroot.sh')
49]
Brian Harringb938c782012-02-29 15:14:38 -080050
Josh Triplett472a4182013-03-08 11:48:57 -080051# Proxy simulator configuration.
52PROXY_HOST_IP = '192.168.240.1'
53PROXY_PORT = 8080
54PROXY_GUEST_IP = '192.168.240.2'
55PROXY_NETMASK = 30
56PROXY_VETH_PREFIX = 'veth'
57PROXY_CONNECT_PORTS = (80, 443, 9418)
58PROXY_APACHE_FALLBACK_USERS = ('www-data', 'apache', 'nobody')
59PROXY_APACHE_MPMS = ('event', 'worker', 'prefork')
60PROXY_APACHE_FALLBACK_PATH = ':'.join(
Manoj Guptab12f7302019-06-03 16:40:14 -070061 '/usr/lib/apache2/mpm-%s' % mpm for mpm in PROXY_APACHE_MPMS)
Josh Triplett472a4182013-03-08 11:48:57 -080062PROXY_APACHE_MODULE_GLOBS = ('/usr/lib*/apache2/modules', '/usr/lib*/apache2')
63
Josh Triplett9a495f62013-03-15 18:06:55 -070064# We need these tools to run. Very common tools (tar,..) are omitted.
Josh Triplette759b232013-03-08 13:03:43 -080065NEEDED_TOOLS = ('curl', 'xz')
Brian Harringb938c782012-02-29 15:14:38 -080066
Josh Triplett472a4182013-03-08 11:48:57 -080067# Tools needed for --proxy-sim only.
68PROXY_NEEDED_TOOLS = ('ip',)
Brian Harringb938c782012-02-29 15:14:38 -080069
Benjamin Gordon386b9eb2017-07-20 09:21:33 -060070# Tools needed when use_image is true (the default).
71IMAGE_NEEDED_TOOLS = ('losetup', 'lvchange', 'lvcreate', 'lvs', 'mke2fs',
Benjamin Gordoncfa9c162017-08-03 13:49:29 -060072 'pvscan', 'thin_check', 'vgchange', 'vgcreate', 'vgs')
Benjamin Gordon386b9eb2017-07-20 09:21:33 -060073
Benjamin Gordone3d5bd12017-11-16 15:42:28 -070074# As space is used inside the chroot, the empty space in chroot.img is
75# allocated. Deleting files inside the chroot doesn't automatically return the
76# used space to the OS. Over time, this tends to make the sparse chroot.img
77# less sparse even if the chroot contents don't currently need much space. We
78# can recover most of this unused space with fstrim, but that takes too much
79# time to run it every time. Instead, check the used space against the image
80# size after mounting the chroot and only call fstrim if it looks like we could
81# recover at least this many GiB.
82MAX_UNUSED_IMAGE_GBS = 20
83
Mike Frysingercc838832014-05-24 13:10:30 -040084
Brian Harring1790ac42012-09-23 08:53:33 -070085def GetArchStageTarballs(version):
Brian Harringb938c782012-02-29 15:14:38 -080086 """Returns the URL for a given arch/version"""
Mike Frysingerf744d032022-05-07 20:38:39 -040087 extension = {'xz': 'tar.xz'}
Manoj Guptab12f7302019-06-03 16:40:14 -070088 return [
89 toolchain.GetSdkURL(
90 suburl='cros-sdk-%s.%s' % (version, extension[compressor]))
91 for compressor in COMPRESSION_PREFERENCE
92 ]
Brian Harring1790ac42012-09-23 08:53:33 -070093
94
Mike Frysingerf744d032022-05-07 20:38:39 -040095def FetchRemoteTarballs(storage_dir, urls):
Mike Frysinger34db8692013-11-11 14:54:08 -050096 """Fetches a tarball given by url, and place it in |storage_dir|.
Zdenek Behanfd0efe42012-04-13 04:36:40 +020097
98 Args:
Mike Frysinger34db8692013-11-11 14:54:08 -050099 storage_dir: Path where to save the tarball.
Zdenek Behanfd0efe42012-04-13 04:36:40 +0200100 urls: List of URLs to try to download. Download will stop on first success.
101
102 Returns:
Mike Frysingerdaf57b82019-11-23 17:26:51 -0500103 Full path to the downloaded file.
Gilad Arnoldecc86fa2015-05-22 12:06:04 -0700104
105 Raises:
Mike Frysingerdaf57b82019-11-23 17:26:51 -0500106 ValueError: None of the URLs worked.
Zdenek Behanfd0efe42012-04-13 04:36:40 +0200107 """
Brian Harring1790ac42012-09-23 08:53:33 -0700108 # Note we track content length ourselves since certain versions of curl
109 # fail if asked to resume a complete file.
Brian Harring1790ac42012-09-23 08:53:33 -0700110 # https://sourceforge.net/tracker/?func=detail&atid=100976&aid=3482927&group_id=976
Mike Frysingerdaf57b82019-11-23 17:26:51 -0500111 status_re = re.compile(br'^HTTP/[0-9]+(\.[0-9]+)? 200')
Mike Frysinger27e21b72018-07-12 14:20:21 -0400112 # pylint: disable=undefined-loop-variable
Zdenek Behanfd0efe42012-04-13 04:36:40 +0200113 for url in urls:
Mike Frysingerf744d032022-05-07 20:38:39 -0400114 logging.notice('Downloading tarball %s ...', urls[0].rsplit('/', 1)[-1])
Mike Frysinger3dcacee2019-08-23 17:09:11 -0400115 parsed = urllib.parse.urlparse(url)
Brian Harring1790ac42012-09-23 08:53:33 -0700116 tarball_name = os.path.basename(parsed.path)
117 if parsed.scheme in ('', 'file'):
118 if os.path.exists(parsed.path):
119 return parsed.path
120 continue
121 content_length = 0
Ralph Nathan7070e6a2015-04-02 10:16:43 -0700122 logging.debug('Attempting download from %s', url)
Manoj Guptab12f7302019-06-03 16:40:14 -0700123 result = retry_util.RunCurl(['-I', url],
124 print_cmd=False,
125 debug_level=logging.NOTICE,
126 capture_output=True)
Brian Harring1790ac42012-09-23 08:53:33 -0700127 successful = False
128 for header in result.output.splitlines():
Brian Norrisd37e2f72016-08-22 16:09:24 -0700129 # We must walk the output to find the 200 code for use cases where
Brian Harring1790ac42012-09-23 08:53:33 -0700130 # a proxy is involved and may have pushed down the actual header.
Brian Norrisd37e2f72016-08-22 16:09:24 -0700131 if status_re.match(header):
Brian Harring1790ac42012-09-23 08:53:33 -0700132 successful = True
Mike Frysingerdaf57b82019-11-23 17:26:51 -0500133 elif header.lower().startswith(b'content-length:'):
134 content_length = int(header.split(b':', 1)[-1].strip())
Brian Harring1790ac42012-09-23 08:53:33 -0700135 if successful:
136 break
137 if successful:
Zdenek Behanfd0efe42012-04-13 04:36:40 +0200138 break
139 else:
Gilad Arnoldecc86fa2015-05-22 12:06:04 -0700140 raise ValueError('No valid URLs found!')
Zdenek Behanfd0efe42012-04-13 04:36:40 +0200141
Brian Harringae0a5322012-09-15 01:46:51 -0700142 tarball_dest = os.path.join(storage_dir, tarball_name)
Brian Harring1790ac42012-09-23 08:53:33 -0700143 current_size = 0
144 if os.path.exists(tarball_dest):
145 current_size = os.path.getsize(tarball_dest)
146 if current_size > content_length:
David James56e6c2c2012-10-24 23:54:41 -0700147 osutils.SafeUnlink(tarball_dest)
Brian Harring1790ac42012-09-23 08:53:33 -0700148 current_size = 0
Zdenek Behanb2fa72e2012-03-16 04:49:30 +0100149
Brian Harring1790ac42012-09-23 08:53:33 -0700150 if current_size < content_length:
David Jamesc93e6a4d2014-01-13 11:37:36 -0800151 retry_util.RunCurl(
Hidehiko Abee55af7f2017-05-01 18:38:04 +0900152 ['--fail', '-L', '-y', '30', '-C', '-', '--output', tarball_dest, url],
Manoj Guptab12f7302019-06-03 16:40:14 -0700153 print_cmd=False,
154 debug_level=logging.NOTICE)
Brian Harringb938c782012-02-29 15:14:38 -0800155
Brian Harring1790ac42012-09-23 08:53:33 -0700156 # Cleanup old tarballs now since we've successfull fetched; only cleanup
Gilad Arnoldecc86fa2015-05-22 12:06:04 -0700157 # the tarballs for our prefix, or unknown ones. This gets a bit tricky
158 # because we might have partial overlap between known prefixes.
Mike Frysingerf744d032022-05-07 20:38:39 -0400159 for p in Path(storage_dir).glob('cros-sdk-*'):
160 if p.name == tarball_name:
Brian Harring1790ac42012-09-23 08:53:33 -0700161 continue
Mike Frysingerf744d032022-05-07 20:38:39 -0400162 logging.info('Cleaning up old tarball: %s', p)
163 osutils.SafeUnlink(p)
Zdenek Behan9c644dd2012-04-05 06:24:02 +0200164
Brian Harringb938c782012-02-29 15:14:38 -0800165 return tarball_dest
166
167
Brian Harringae0a5322012-09-15 01:46:51 -0700168def EnterChroot(chroot_path, cache_dir, chrome_root, chrome_root_mount,
Joanna Wang1ec0c812021-11-17 17:41:27 -0800169 goma_dir, goma_client_json, reclient_dir, reproxy_cfg_file,
170 working_dir, additional_args):
Brian Harringb938c782012-02-29 15:14:38 -0800171 """Enters an existing SDK chroot"""
Mike Frysingere5456972013-06-13 00:07:23 -0400172 st = os.statvfs(os.path.join(chroot_path, 'usr', 'bin', 'sudo'))
Alex Klein875b30e2021-01-05 14:56:33 -0700173 if st.f_flag & os.ST_NOSUID:
Mike Frysingere5456972013-06-13 00:07:23 -0400174 cros_build_lib.Die('chroot cannot be in a nosuid mount')
175
Brian Harringae0a5322012-09-15 01:46:51 -0700176 cmd = ENTER_CHROOT + ['--chroot', chroot_path, '--cache_dir', cache_dir]
Brian Harringb938c782012-02-29 15:14:38 -0800177 if chrome_root:
178 cmd.extend(['--chrome_root', chrome_root])
179 if chrome_root_mount:
180 cmd.extend(['--chrome_root_mount', chrome_root_mount])
Hidehiko Abeb5daf2f2017-03-02 17:57:43 +0900181 if goma_dir:
182 cmd.extend(['--goma_dir', goma_dir])
183 if goma_client_json:
184 cmd.extend(['--goma_client_json', goma_client_json])
Joanna Wang1ec0c812021-11-17 17:41:27 -0800185 if reclient_dir:
186 cmd.extend(['--reclient_dir', reclient_dir])
187 if reproxy_cfg_file:
188 cmd.extend(['--reproxy_cfg_file', reproxy_cfg_file])
Yong Hong84ba9172018-02-07 01:37:42 +0800189 if working_dir is not None:
190 cmd.extend(['--working_dir', working_dir])
Don Garrett230d1b22015-03-09 16:21:19 -0700191
Mike Frysinger53ffaae2019-08-27 16:30:27 -0400192 if additional_args:
Brian Harringb938c782012-02-29 15:14:38 -0800193 cmd.append('--')
194 cmd.extend(additional_args)
Brian Harring7199e7d2012-03-23 04:10:08 -0700195
Mike Frysingerebb23fc2022-06-06 21:17:39 -0400196 # Some systems set the soft limit too low. Bump it up to the hard limit.
197 # We don't override the hard limit because it's something the admins put
198 # in place and we want to respect such configs. http://b/234353695
199 soft, hard = resource.getrlimit(resource.RLIMIT_NPROC)
200 if soft != resource.RLIM_INFINITY and soft < 4096:
201 if soft < hard or hard == resource.RLIM_INFINITY:
202 resource.setrlimit(resource.RLIMIT_NPROC, (hard, hard))
203
Ting-Yuan Huangf56d9af2017-06-19 16:08:32 -0700204 # ThinLTO opens lots of files at the same time.
Bob Haarman7c9f31b2020-10-12 19:08:51 +0000205 # Set rlimit and vm.max_map_count to accommodate this.
206 file_limit = 262144
207 soft, hard = resource.getrlimit(resource.RLIMIT_NOFILE)
208 resource.setrlimit(resource.RLIMIT_NOFILE,
209 (max(soft, file_limit), max(hard, file_limit)))
Mike Frysinger7201ec52022-06-23 11:12:41 -0400210 max_map_count = int(osutils.ReadFile('/proc/sys/vm/max_map_count'))
Bob Haarman7c9f31b2020-10-12 19:08:51 +0000211 if max_map_count < file_limit:
212 logging.notice(
213 'Raising vm.max_map_count from %s to %s', max_map_count, file_limit)
Mike Frysinger7201ec52022-06-23 11:12:41 -0400214 osutils.WriteFile('/proc/sys/vm/max_map_count', str(file_limit))
Mike Frysingere1407f62021-10-30 01:56:40 -0400215 return cros_build_lib.dbg_run(cmd, check=False)
Brian Harringb938c782012-02-29 15:14:38 -0800216
217
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600218def _ImageFileForChroot(chroot):
219 """Find the image file that should be associated with |chroot|.
220
221 This function does not check if the image exists; it simply returns the
222 filename that would be used.
223
224 Args:
225 chroot: Path to the chroot.
226
227 Returns:
228 Path to an image file that would be associated with chroot.
229 """
230 return chroot.rstrip('/') + '.img'
231
232
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600233def CreateChrootSnapshot(snapshot_name, chroot_vg, chroot_lv):
234 """Create a snapshot for the specified chroot VG/LV.
235
236 Args:
237 snapshot_name: The name of the new snapshot.
238 chroot_vg: The name of the VG containing the origin LV.
239 chroot_lv: The name of the origin LV.
240
241 Returns:
242 True if the snapshot was created, or False if a snapshot with the same
243 name already exists.
244
245 Raises:
246 SystemExit: The lvcreate command failed.
247 """
248 if snapshot_name in ListChrootSnapshots(chroot_vg, chroot_lv):
Manoj Guptab12f7302019-06-03 16:40:14 -0700249 logging.error(
250 'Cannot create snapshot %s: A volume with that name already '
251 'exists.', snapshot_name)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600252 return False
253
Manoj Guptab12f7302019-06-03 16:40:14 -0700254 cmd = [
255 'lvcreate', '-s', '--name', snapshot_name,
256 '%s/%s' % (chroot_vg, chroot_lv)
257 ]
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600258 try:
259 logging.notice('Creating snapshot %s from %s in VG %s.', snapshot_name,
260 chroot_lv, chroot_vg)
Mike Frysinger3e8de442020-02-14 16:46:28 -0500261 cros_build_lib.dbg_run(cmd, capture_output=True)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600262 return True
Mike Frysinger75634e32020-02-22 23:48:12 -0500263 except cros_build_lib.RunCommandError as e:
264 cros_build_lib.Die('Creating snapshot failed!\n%s', e)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600265
266
267def DeleteChrootSnapshot(snapshot_name, chroot_vg, chroot_lv):
268 """Delete the named snapshot from the specified chroot VG.
269
270 If the requested snapshot is not found, nothing happens. The main chroot LV
271 and internal thinpool LV cannot be deleted with this function.
272
273 Args:
274 snapshot_name: The name of the snapshot to delete.
275 chroot_vg: The name of the VG containing the origin LV.
276 chroot_lv: The name of the origin LV.
277
278 Raises:
279 SystemExit: The lvremove command failed.
280 """
Benjamin Gordon74645232018-05-04 17:40:42 -0600281 if snapshot_name in (cros_sdk_lib.CHROOT_LV_NAME,
282 cros_sdk_lib.CHROOT_THINPOOL_NAME):
Manoj Guptab12f7302019-06-03 16:40:14 -0700283 logging.error(
284 'Cannot remove LV %s as a snapshot. Use cros_sdk --delete '
285 'if you want to remove the whole chroot.', snapshot_name)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600286 return
287
288 if snapshot_name not in ListChrootSnapshots(chroot_vg, chroot_lv):
289 return
290
291 cmd = ['lvremove', '-f', '%s/%s' % (chroot_vg, snapshot_name)]
292 try:
293 logging.notice('Deleting snapshot %s in VG %s.', snapshot_name, chroot_vg)
Mike Frysinger3e8de442020-02-14 16:46:28 -0500294 cros_build_lib.dbg_run(cmd, capture_output=True)
Mike Frysinger75634e32020-02-22 23:48:12 -0500295 except cros_build_lib.RunCommandError as e:
296 cros_build_lib.Die('Deleting snapshot failed!\n%s', e)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600297
298
299def RestoreChrootSnapshot(snapshot_name, chroot_vg, chroot_lv):
300 """Restore the chroot to an existing snapshot.
301
302 This is done by renaming the original |chroot_lv| LV to a temporary name,
303 renaming the snapshot named |snapshot_name| to |chroot_lv|, and deleting the
304 now unused LV. If an error occurs, attempts to rename the original snapshot
305 back to |chroot_lv| to leave the chroot unchanged.
306
307 The chroot must be unmounted before calling this function, and will be left
308 unmounted after this function returns.
309
310 Args:
311 snapshot_name: The name of the snapshot to restore. This snapshot will no
312 longer be accessible at its original name after this function finishes.
313 chroot_vg: The VG containing the chroot LV and snapshot LV.
314 chroot_lv: The name of the original chroot LV.
315
316 Returns:
317 True if the chroot was restored to the requested snapshot, or False if
318 the snapshot wasn't found or isn't valid.
319
320 Raises:
321 SystemExit: Any of the LVM commands failed.
322 """
323 valid_snapshots = ListChrootSnapshots(chroot_vg, chroot_lv)
Benjamin Gordon74645232018-05-04 17:40:42 -0600324 if (snapshot_name in (cros_sdk_lib.CHROOT_LV_NAME,
325 cros_sdk_lib.CHROOT_THINPOOL_NAME) or
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600326 snapshot_name not in valid_snapshots):
327 logging.error('Chroot cannot be restored to %s. Valid snapshots: %s',
328 snapshot_name, ', '.join(valid_snapshots))
329 return False
330
331 backup_chroot_name = 'chroot-bak-%d' % random.randint(0, 1000)
332 cmd = ['lvrename', chroot_vg, chroot_lv, backup_chroot_name]
333 try:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500334 cros_build_lib.dbg_run(cmd, capture_output=True)
Mike Frysinger75634e32020-02-22 23:48:12 -0500335 except cros_build_lib.RunCommandError as e:
336 cros_build_lib.Die('Restoring snapshot failed!\n%s', e)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600337
338 cmd = ['lvrename', chroot_vg, snapshot_name, chroot_lv]
339 try:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500340 cros_build_lib.dbg_run(cmd, capture_output=True)
Mike Frysinger75634e32020-02-22 23:48:12 -0500341 except cros_build_lib.RunCommandError as e:
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600342 cmd = ['lvrename', chroot_vg, backup_chroot_name, chroot_lv]
343 try:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500344 cros_build_lib.dbg_run(cmd, capture_output=True)
Mike Frysinger75634e32020-02-22 23:48:12 -0500345 except cros_build_lib.RunCommandError as e:
346 cros_build_lib.Die(
347 'Failed to rename %s to chroot and failed to restore %s back to '
348 'chroot!\n%s', snapshot_name, backup_chroot_name, e)
349 cros_build_lib.Die(
350 'Failed to rename %s to chroot! Original chroot LV has '
351 'been restored.\n%s', snapshot_name, e)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600352
353 # Some versions of LVM set snapshots to be skipped at auto-activate time.
354 # Other versions don't have this flag at all. We run lvchange to try
355 # disabling auto-skip and activating the volume, but ignore errors. Versions
356 # that don't have the flag should be auto-activated.
357 chroot_lv_path = '%s/%s' % (chroot_vg, chroot_lv)
358 cmd = ['lvchange', '-kn', chroot_lv_path]
Mike Frysinger45602c72019-09-22 02:15:11 -0400359 cros_build_lib.run(
Mike Frysingerf5a3b2d2019-12-12 14:36:17 -0500360 cmd, print_cmd=False, capture_output=True, check=False)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600361
362 # Activate the LV in case the lvchange above was needed. Activating an LV
363 # that is already active shouldn't do anything, so this is safe to run even if
364 # the -kn wasn't needed.
365 cmd = ['lvchange', '-ay', chroot_lv_path]
Mike Frysinger3e8de442020-02-14 16:46:28 -0500366 cros_build_lib.dbg_run(cmd, capture_output=True)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600367
368 cmd = ['lvremove', '-f', '%s/%s' % (chroot_vg, backup_chroot_name)]
369 try:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500370 cros_build_lib.dbg_run(cmd, capture_output=True)
Mike Frysinger75634e32020-02-22 23:48:12 -0500371 except cros_build_lib.RunCommandError as e:
372 cros_build_lib.Die('Failed to remove backup LV %s/%s!\n%s',
373 chroot_vg, backup_chroot_name, e)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600374
375 return True
376
377
378def ListChrootSnapshots(chroot_vg, chroot_lv):
379 """Return all snapshots in |chroot_vg| regardless of origin volume.
380
381 Args:
382 chroot_vg: The name of the VG containing the chroot.
383 chroot_lv: The name of the chroot LV.
384
385 Returns:
386 A (possibly-empty) list of snapshot LVs found in |chroot_vg|.
387
388 Raises:
389 SystemExit: The lvs command failed.
390 """
391 if not chroot_vg or not chroot_lv:
392 return []
393
Manoj Guptab12f7302019-06-03 16:40:14 -0700394 cmd = [
395 'lvs', '-o', 'lv_name,pool_lv,lv_attr', '-O', 'lv_name', '--noheadings',
396 '--separator', '\t', chroot_vg
397 ]
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600398 try:
Mike Frysinger45602c72019-09-22 02:15:11 -0400399 result = cros_build_lib.run(
Chris McDonaldffdf5aa2020-04-07 16:28:45 -0600400 cmd, print_cmd=False, stdout=True, encoding='utf-8')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600401 except cros_build_lib.RunCommandError:
402 raise SystemExit('Running %r failed!' % cmd)
403
404 # Once the thin origin volume has been deleted, there's no way to tell a
405 # snapshot apart from any other volume. Since this VG is created and managed
406 # by cros_sdk, we'll assume that all volumes that share the same thin pool are
407 # valid snapshots.
408 snapshots = []
409 snapshot_attrs = re.compile(r'^V.....t.{2,}') # Matches a thin volume.
410 for line in result.output.splitlines():
411 lv_name, pool_lv, lv_attr = line.lstrip().split('\t')
Manoj Guptab12f7302019-06-03 16:40:14 -0700412 if (lv_name == chroot_lv or lv_name == cros_sdk_lib.CHROOT_THINPOOL_NAME or
Benjamin Gordon74645232018-05-04 17:40:42 -0600413 pool_lv != cros_sdk_lib.CHROOT_THINPOOL_NAME or
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600414 not snapshot_attrs.match(lv_attr)):
415 continue
416 snapshots.append(lv_name)
417 return snapshots
418
419
David James56e6c2c2012-10-24 23:54:41 -0700420def _SudoCommand():
421 """Get the 'sudo' command, along with all needed environment variables."""
422
Cindy Lin81093092021-12-09 20:40:57 +0000423 # Pass in the ENVIRONMENT_ALLOWLIST and ENV_PASSTHRU variables so that
Mike Frysinger2bda4d12020-07-14 11:15:49 -0400424 # scripts in the chroot know what variables to pass through.
David James56e6c2c2012-10-24 23:54:41 -0700425 cmd = ['sudo']
Cindy Lin81093092021-12-09 20:40:57 +0000426 for key in constants.CHROOT_ENVIRONMENT_ALLOWLIST + constants.ENV_PASSTHRU:
David James56e6c2c2012-10-24 23:54:41 -0700427 value = os.environ.get(key)
428 if value is not None:
429 cmd += ['%s=%s' % (key, value)]
430
Mike Frysinger2bda4d12020-07-14 11:15:49 -0400431 # We keep PATH not for the chroot but for the re-exec & for programs we might
432 # run before we chroot into the SDK. The process that enters the SDK itself
433 # will take care of initializing PATH to the right value then. But we can't
434 # override the system's default PATH for root as that will hide /sbin.
435 cmd += ['CHROMEOS_SUDO_PATH=%s' % os.environ.get('PATH', '')]
436
David James56e6c2c2012-10-24 23:54:41 -0700437 # Pass in the path to the depot_tools so that users can access them from
438 # within the chroot.
Mike Frysinger08e75f12014-08-13 01:30:09 -0400439 cmd += ['DEPOT_TOOLS=%s' % constants.DEPOT_TOOLS_DIR]
Mike Frysinger749251e2014-01-29 05:04:27 -0500440
David James56e6c2c2012-10-24 23:54:41 -0700441 return cmd
442
443
Josh Triplett472a4182013-03-08 11:48:57 -0800444def _ReportMissing(missing):
445 """Report missing utilities, then exit.
446
447 Args:
448 missing: List of missing utilities, as returned by
449 osutils.FindMissingBinaries. If non-empty, will not return.
450 """
451
452 if missing:
453 raise SystemExit(
454 'The tool(s) %s were not found.\n'
455 'Please install the appropriate package in your host.\n'
456 'Example(ubuntu):\n'
Manoj Guptab12f7302019-06-03 16:40:14 -0700457 ' sudo apt-get install <packagename>' % ', '.join(missing))
Josh Triplett472a4182013-03-08 11:48:57 -0800458
459
460def _ProxySimSetup(options):
461 """Set up proxy simulator, and return only in the child environment.
462
463 TODO: Ideally, this should support multiple concurrent invocations of
464 cros_sdk --proxy-sim; currently, such invocations will conflict with each
465 other due to the veth device names and IP addresses. Either this code would
466 need to generate fresh, unused names for all of these before forking, or it
467 would need to support multiple concurrent cros_sdk invocations sharing one
468 proxy and allowing it to exit when unused (without counting on any local
469 service-management infrastructure on the host).
470 """
471
472 may_need_mpm = False
473 apache_bin = osutils.Which('apache2')
474 if apache_bin is None:
475 apache_bin = osutils.Which('apache2', PROXY_APACHE_FALLBACK_PATH)
476 if apache_bin is None:
477 _ReportMissing(('apache2',))
478 else:
479 may_need_mpm = True
480
481 # Module names and .so names included for ease of grepping.
482 apache_modules = [('proxy_module', 'mod_proxy.so'),
483 ('proxy_connect_module', 'mod_proxy_connect.so'),
484 ('proxy_http_module', 'mod_proxy_http.so'),
485 ('proxy_ftp_module', 'mod_proxy_ftp.so')]
486
487 # Find the apache module directory, and make sure it has the modules we need.
488 module_dirs = {}
489 for g in PROXY_APACHE_MODULE_GLOBS:
Mike Frysinger336f6b02020-05-09 00:03:28 -0400490 for _, so in apache_modules:
Josh Triplett472a4182013-03-08 11:48:57 -0800491 for f in glob.glob(os.path.join(g, so)):
492 module_dirs.setdefault(os.path.dirname(f), []).append(so)
Mike Frysinger0bdbc102019-06-13 15:27:29 -0400493 for apache_module_path, modules_found in module_dirs.items():
Josh Triplett472a4182013-03-08 11:48:57 -0800494 if len(modules_found) == len(apache_modules):
495 break
496 else:
497 # Appease cros lint, which doesn't understand that this else block will not
498 # fall through to the subsequent code which relies on apache_module_path.
499 apache_module_path = None
500 raise SystemExit(
501 'Could not find apache module path containing all required modules: %s'
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500502 % ', '.join(so for mod, so in apache_modules))
Josh Triplett472a4182013-03-08 11:48:57 -0800503
504 def check_add_module(name):
505 so = 'mod_%s.so' % name
506 if os.access(os.path.join(apache_module_path, so), os.F_OK):
507 mod = '%s_module' % name
508 apache_modules.append((mod, so))
509 return True
510 return False
511
512 check_add_module('authz_core')
513 if may_need_mpm:
514 for mpm in PROXY_APACHE_MPMS:
515 if check_add_module('mpm_%s' % mpm):
516 break
517
518 veth_host = '%s-host' % PROXY_VETH_PREFIX
519 veth_guest = '%s-guest' % PROXY_VETH_PREFIX
520
Mike Frysinger77bf4af2016-02-26 17:13:15 -0500521 # Set up locks to sync the net namespace setup. We need the child to create
522 # the net ns first, and then have the parent assign the guest end of the veth
523 # interface to the child's new network namespace & bring up the proxy. Only
524 # then can the child move forward and rely on the network being up.
525 ns_create_lock = locking.PipeLock()
526 ns_setup_lock = locking.PipeLock()
Josh Triplett472a4182013-03-08 11:48:57 -0800527
528 pid = os.fork()
529 if not pid:
Mike Frysinger77bf4af2016-02-26 17:13:15 -0500530 # Create our new isolated net namespace.
Josh Triplett472a4182013-03-08 11:48:57 -0800531 namespaces.Unshare(namespaces.CLONE_NEWNET)
Mike Frysinger77bf4af2016-02-26 17:13:15 -0500532
533 # Signal the parent the ns is ready to be configured.
534 ns_create_lock.Post()
535 del ns_create_lock
536
537 # Wait for the parent to finish setting up the ns/proxy.
538 ns_setup_lock.Wait()
539 del ns_setup_lock
Josh Triplett472a4182013-03-08 11:48:57 -0800540
541 # Set up child side of the network.
542 commands = (
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500543 ('ip', 'link', 'set', 'up', 'lo'),
Manoj Guptab12f7302019-06-03 16:40:14 -0700544 ('ip', 'address', 'add', '%s/%u' % (PROXY_GUEST_IP, PROXY_NETMASK),
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500545 'dev', veth_guest),
546 ('ip', 'link', 'set', veth_guest, 'up'),
Josh Triplett472a4182013-03-08 11:48:57 -0800547 )
548 try:
549 for cmd in commands:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500550 cros_build_lib.dbg_run(cmd)
Mike Frysinger75634e32020-02-22 23:48:12 -0500551 except cros_build_lib.RunCommandError as e:
552 cros_build_lib.Die('Proxy setup failed!\n%s', e)
Josh Triplett472a4182013-03-08 11:48:57 -0800553
554 proxy_url = 'http://%s:%u' % (PROXY_HOST_IP, PROXY_PORT)
555 for proto in ('http', 'https', 'ftp'):
556 os.environ[proto + '_proxy'] = proxy_url
557 for v in ('all_proxy', 'RSYNC_PROXY', 'no_proxy'):
558 os.environ.pop(v, None)
559 return
560
Josh Triplett472a4182013-03-08 11:48:57 -0800561 # Set up parent side of the network.
562 uid = int(os.environ.get('SUDO_UID', '0'))
563 gid = int(os.environ.get('SUDO_GID', '0'))
564 if uid == 0 or gid == 0:
565 for username in PROXY_APACHE_FALLBACK_USERS:
566 try:
567 pwnam = pwd.getpwnam(username)
568 uid, gid = pwnam.pw_uid, pwnam.pw_gid
569 break
570 except KeyError:
571 continue
572 if uid == 0 or gid == 0:
573 raise SystemExit('Could not find a non-root user to run Apache as')
574
575 chroot_parent, chroot_base = os.path.split(options.chroot)
576 pid_file = os.path.join(chroot_parent, '.%s-apache-proxy.pid' % chroot_base)
577 log_file = os.path.join(chroot_parent, '.%s-apache-proxy.log' % chroot_base)
578
Mike Frysinger77bf4af2016-02-26 17:13:15 -0500579 # Wait for the child to create the net ns.
580 ns_create_lock.Wait()
581 del ns_create_lock
582
Josh Triplett472a4182013-03-08 11:48:57 -0800583 apache_directives = [
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500584 'User #%u' % uid,
585 'Group #%u' % gid,
586 'PidFile %s' % pid_file,
587 'ErrorLog %s' % log_file,
588 'Listen %s:%u' % (PROXY_HOST_IP, PROXY_PORT),
589 'ServerName %s' % PROXY_HOST_IP,
590 'ProxyRequests On',
Mike Frysinger66ce4132019-07-17 22:52:52 -0400591 'AllowCONNECT %s' % ' '.join(str(x) for x in PROXY_CONNECT_PORTS),
Josh Triplett472a4182013-03-08 11:48:57 -0800592 ] + [
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500593 'LoadModule %s %s' % (mod, os.path.join(apache_module_path, so))
594 for (mod, so) in apache_modules
Josh Triplett472a4182013-03-08 11:48:57 -0800595 ]
596 commands = (
Manoj Guptab12f7302019-06-03 16:40:14 -0700597 ('ip', 'link', 'add', 'name', veth_host, 'type', 'veth', 'peer', 'name',
598 veth_guest),
599 ('ip', 'address', 'add', '%s/%u' % (PROXY_HOST_IP, PROXY_NETMASK), 'dev',
600 veth_host),
Mike Frysingerd6e2df02014-11-26 02:55:04 -0500601 ('ip', 'link', 'set', veth_host, 'up'),
602 ([apache_bin, '-f', '/dev/null'] +
603 [arg for d in apache_directives for arg in ('-C', d)]),
604 ('ip', 'link', 'set', veth_guest, 'netns', str(pid)),
Josh Triplett472a4182013-03-08 11:48:57 -0800605 )
Manoj Guptab12f7302019-06-03 16:40:14 -0700606 cmd = None # Make cros lint happy.
Josh Triplett472a4182013-03-08 11:48:57 -0800607 try:
608 for cmd in commands:
Mike Frysinger3e8de442020-02-14 16:46:28 -0500609 cros_build_lib.dbg_run(cmd)
Mike Frysinger75634e32020-02-22 23:48:12 -0500610 except cros_build_lib.RunCommandError as e:
Josh Triplett472a4182013-03-08 11:48:57 -0800611 # Clean up existing interfaces, if any.
612 cmd_cleanup = ('ip', 'link', 'del', veth_host)
613 try:
Mike Frysinger45602c72019-09-22 02:15:11 -0400614 cros_build_lib.run(cmd_cleanup, print_cmd=False)
Josh Triplett472a4182013-03-08 11:48:57 -0800615 except cros_build_lib.RunCommandError:
Ralph Nathan59900422015-03-24 10:41:17 -0700616 logging.error('running %r failed', cmd_cleanup)
Mike Frysinger75634e32020-02-22 23:48:12 -0500617 cros_build_lib.Die('Proxy network setup failed!\n%s', e)
Mike Frysinger77bf4af2016-02-26 17:13:15 -0500618
619 # Signal the child that the net ns/proxy is fully configured now.
620 ns_setup_lock.Post()
621 del ns_setup_lock
Josh Triplett472a4182013-03-08 11:48:57 -0800622
Mike Frysingere2d8f0d2014-11-01 13:09:26 -0400623 process_util.ExitAsStatus(os.waitpid(pid, 0)[1])
Josh Triplett472a4182013-03-08 11:48:57 -0800624
625
Mike Frysingera78a56e2012-11-20 06:02:30 -0500626def _ReExecuteIfNeeded(argv):
David James56e6c2c2012-10-24 23:54:41 -0700627 """Re-execute cros_sdk as root.
628
629 Also unshare the mount namespace so as to ensure that processes outside
630 the chroot can't mess with our mounts.
631 """
Ram Chandrasekar69751282022-02-25 21:07:36 +0000632 if osutils.IsNonRootUser():
Mike Frysinger1f113512020-07-29 03:36:57 -0400633 # Make sure to preserve the active Python executable in case the version
634 # we're running as is not the default one found via the (new) $PATH.
635 cmd = _SudoCommand() + ['--'] + [sys.executable] + argv
Mike Frysinger3e8de442020-02-14 16:46:28 -0500636 logging.debug('Reexecing self via sudo:\n%s', cros_build_lib.CmdToStr(cmd))
Mike Frysingera78a56e2012-11-20 06:02:30 -0500637 os.execvp(cmd[0], cmd)
David James56e6c2c2012-10-24 23:54:41 -0700638
639
Mike Frysinger34db8692013-11-11 14:54:08 -0500640def _CreateParser(sdk_latest_version, bootstrap_latest_version):
641 """Generate and return the parser with all the options."""
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400642 usage = ('usage: %(prog)s [options] '
643 '[VAR1=val1 ... VAR2=val2] [--] [command [args]]')
Manoj Guptab12f7302019-06-03 16:40:14 -0700644 parser = commandline.ArgumentParser(
645 usage=usage, description=__doc__, caching=True)
Brian Harring218e13c2012-10-10 16:21:26 -0700646
Mike Frysinger34db8692013-11-11 14:54:08 -0500647 # Global options.
Mike Frysinger648ba2d2013-01-08 14:19:34 -0500648 default_chroot = os.path.join(constants.SOURCE_ROOT,
649 constants.DEFAULT_CHROOT_DIR)
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400650 parser.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700651 '--chroot',
652 dest='chroot',
653 default=default_chroot,
654 type='path',
Brian Harring218e13c2012-10-10 16:21:26 -0700655 help=('SDK chroot dir name [%s]' % constants.DEFAULT_CHROOT_DIR))
Manoj Guptab12f7302019-06-03 16:40:14 -0700656 parser.add_argument(
657 '--nouse-image',
658 dest='use_image',
659 action='store_false',
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700660 default=False,
Manoj Guptab12f7302019-06-03 16:40:14 -0700661 help='Do not mount the chroot on a loopback image; '
662 'instead, create it directly in a directory.')
Benjamin Gordonacbaac22020-09-25 12:59:33 -0600663 parser.add_argument(
664 '--use-image',
665 dest='use_image',
666 action='store_true',
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700667 default=False,
Benjamin Gordonacbaac22020-09-25 12:59:33 -0600668 help='Mount the chroot on a loopback image '
669 'instead of creating it directly in a directory.')
Brian Harringb938c782012-02-29 15:14:38 -0800670
Manoj Guptab12f7302019-06-03 16:40:14 -0700671 parser.add_argument(
Alex Klein5e4b1bc2019-07-02 12:27:06 -0600672 '--chrome-root',
Manoj Guptab12f7302019-06-03 16:40:14 -0700673 '--chrome_root',
674 type='path',
675 help='Mount this chrome root into the SDK chroot')
676 parser.add_argument(
677 '--chrome_root_mount',
678 type='path',
679 help='Mount chrome into this path inside SDK chroot')
680 parser.add_argument(
681 '--nousepkg',
682 action='store_true',
683 default=False,
684 help='Do not use binary packages when creating a chroot.')
685 parser.add_argument(
686 '-u',
687 '--url',
688 dest='sdk_url',
689 help='Use sdk tarball located at this url. Use file:// '
690 'for local files.')
691 parser.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700692 '--sdk-version',
693 help=('Use this sdk version. For prebuilt, current is %r'
694 ', for bootstrapping it is %r.' % (sdk_latest_version,
695 bootstrap_latest_version)))
696 parser.add_argument(
697 '--goma_dir',
698 type='path',
699 help='Goma installed directory to mount into the chroot.')
700 parser.add_argument(
701 '--goma_client_json',
702 type='path',
703 help='Service account json file to use goma on bot. '
704 'Mounted into the chroot.')
Joanna Wang1ec0c812021-11-17 17:41:27 -0800705 parser.add_argument(
706 '--reclient-dir',
707 type='path',
708 help='Reclient installed directory to mount into the chroot.')
709 parser.add_argument(
710 '--reproxy-cfg-file',
711 type='path',
712 help="Config file for re-client's reproxy used for remoteexec.")
Sergey Frolov6038f612022-06-13 14:07:21 -0600713 parser.add_argument(
714 '--skip-chroot-upgrade',
715 dest='chroot_upgrade',
716 action='store_false',
717 default=True,
718 help='Skip automatic SDK and toolchain upgrade when entering the chroot. '
719 'Never guaranteed to work, especially as ToT moves forward.')
Yong Hong84ba9172018-02-07 01:37:42 +0800720
721 # Use type=str instead of type='path' to prevent the given path from being
722 # transfered to absolute path automatically.
Manoj Guptab12f7302019-06-03 16:40:14 -0700723 parser.add_argument(
724 '--working-dir',
725 type=str,
726 help='Run the command in specific working directory in '
727 'chroot. If the given directory is a relative '
728 'path, this program will transfer the path to '
729 'the corresponding one inside chroot.')
Yong Hong84ba9172018-02-07 01:37:42 +0800730
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400731 parser.add_argument('commands', nargs=argparse.REMAINDER)
Mike Frysinger34db8692013-11-11 14:54:08 -0500732
733 # Commands.
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400734 group = parser.add_argument_group('Commands')
735 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700736 '--enter',
737 action='store_true',
738 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500739 help='Enter the SDK chroot. Implies --create.')
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400740 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700741 '--create',
742 action='store_true',
743 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500744 help='Create the chroot only if it does not already exist. '
745 'Implies --download.')
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400746 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700747 '--bootstrap',
748 action='store_true',
749 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500750 help='Build everything from scratch, including the sdk. '
751 'Use this only if you need to validate a change '
752 'that affects SDK creation itself (toolchain and '
753 'build are typically the only folk who need this). '
754 'Note this will quite heavily slow down the build. '
755 'This option implies --create --nousepkg.')
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400756 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700757 '-r',
758 '--replace',
759 action='store_true',
760 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500761 help='Replace an existing SDK chroot. Basically an alias '
762 'for --delete --create.')
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400763 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700764 '--delete',
765 action='store_true',
766 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500767 help='Delete the current SDK chroot if it exists.')
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400768 group.add_argument(
Michael Mortensene979a4d2020-06-24 13:09:42 -0600769 '--force',
770 action='store_true',
771 default=False,
772 help='Force unmount/delete of the current SDK chroot even if '
773 'obtaining the write lock fails.')
774 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700775 '--unmount',
776 action='store_true',
777 default=False,
Benjamin Gordon64a3f8d2018-06-08 10:34:39 -0600778 help='Unmount and clean up devices associated with the '
779 'SDK chroot if it exists. This does not delete the '
780 'backing image file, so the same chroot can be later '
781 're-mounted for reuse. To fully delete the chroot, use '
782 '--delete. This is primarily useful for working on '
783 'cros_sdk or the chroot setup; you should not need it '
784 'under normal circumstances.')
785 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700786 '--download',
787 action='store_true',
788 default=False,
Mike Frysinger34db8692013-11-11 14:54:08 -0500789 help='Download the sdk.')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600790 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700791 '--snapshot-create',
792 metavar='SNAPSHOT_NAME',
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600793 help='Create a snapshot of the chroot. Requires that the chroot was '
Manoj Guptab12f7302019-06-03 16:40:14 -0700794 'created without the --nouse-image option.')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600795 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700796 '--snapshot-restore',
797 metavar='SNAPSHOT_NAME',
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600798 help='Restore the chroot to a previously created snapshot.')
799 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700800 '--snapshot-delete',
801 metavar='SNAPSHOT_NAME',
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600802 help='Delete a previously created snapshot. Deleting a snapshot that '
Manoj Guptab12f7302019-06-03 16:40:14 -0700803 'does not exist is not an error.')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600804 group.add_argument(
Manoj Guptab12f7302019-06-03 16:40:14 -0700805 '--snapshot-list',
806 action='store_true',
807 default=False,
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600808 help='List existing snapshots of the chroot and exit.')
Mike Frysinger34db8692013-11-11 14:54:08 -0500809 commands = group
810
Mike Frysinger80dfce92014-04-21 10:58:53 -0400811 # Namespace options.
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400812 group = parser.add_argument_group('Namespaces')
Manoj Guptab12f7302019-06-03 16:40:14 -0700813 group.add_argument(
814 '--proxy-sim',
815 action='store_true',
816 default=False,
817 help='Simulate a restrictive network requiring an outbound'
818 ' proxy.')
Mike Frysinger79024a32021-04-05 03:28:35 -0400819 for ns, default in (('pid', True), ('net', None)):
820 group.add_argument(
821 f'--ns-{ns}',
822 default=default,
823 action='store_true',
824 help=f'Create a new {ns} namespace.')
825 group.add_argument(
826 f'--no-ns-{ns}',
827 dest=f'ns_{ns}',
828 action='store_false',
829 help=f'Do not create a new {ns} namespace.')
Mike Frysinger80dfce92014-04-21 10:58:53 -0400830
Mike Frysinger34db8692013-11-11 14:54:08 -0500831 # Internal options.
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400832 group = parser.add_argument_group(
Mike Frysinger34db8692013-11-11 14:54:08 -0500833 'Internal Chromium OS Build Team Options',
834 'Caution: these are for meant for the Chromium OS build team only')
Manoj Guptab12f7302019-06-03 16:40:14 -0700835 group.add_argument(
836 '--buildbot-log-version',
837 default=False,
838 action='store_true',
839 help='Log SDK version for buildbot consumption')
Mike Frysinger34db8692013-11-11 14:54:08 -0500840
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400841 return parser, commands
Mike Frysinger34db8692013-11-11 14:54:08 -0500842
843
844def main(argv):
Greg Edelston97f4e302020-03-13 14:01:23 -0600845 # Turn on strict sudo checks.
846 cros_build_lib.STRICT_SUDO = True
Mike Frysingere652ba12019-09-08 00:57:43 -0400847 conf = key_value_store.LoadFile(
Mike Frysinger34db8692013-11-11 14:54:08 -0500848 os.path.join(constants.SOURCE_ROOT, constants.SDK_VERSION_FILE),
849 ignore_missing=True)
850 sdk_latest_version = conf.get('SDK_LATEST_VERSION', '<unknown>')
Manoj Gupta01927c12019-05-13 17:33:14 -0700851 bootstrap_frozen_version = conf.get('BOOTSTRAP_FROZEN_VERSION', '<unknown>')
Manoj Gupta55a63092019-06-13 11:47:13 -0700852
853 # Use latest SDK for bootstrapping if requested. Use a frozen version of SDK
854 # for bootstrapping if BOOTSTRAP_FROZEN_VERSION is set.
855 bootstrap_latest_version = (
856 sdk_latest_version
857 if bootstrap_frozen_version == '<unknown>' else bootstrap_frozen_version)
Mike Frysinger34db8692013-11-11 14:54:08 -0500858 parser, commands = _CreateParser(sdk_latest_version, bootstrap_latest_version)
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400859 options = parser.parse_args(argv)
860 chroot_command = options.commands
Brian Harringb938c782012-02-29 15:14:38 -0800861
Sloan Johnsonc59e9262022-06-10 20:51:53 +0000862 # Some basic checks first, before we ask for sudo credentials.
Mike Frysinger8fd67dc2012-12-03 23:51:18 -0500863 cros_build_lib.AssertOutsideChroot()
Brian Harringb938c782012-02-29 15:14:38 -0800864
Brian Harring1790ac42012-09-23 08:53:33 -0700865 host = os.uname()[4]
Brian Harring1790ac42012-09-23 08:53:33 -0700866 if host != 'x86_64':
Benjamin Gordon040a1162017-06-29 13:44:47 -0600867 cros_build_lib.Die(
Brian Harring1790ac42012-09-23 08:53:33 -0700868 "cros_sdk is currently only supported on x86_64; you're running"
Mike Frysinger80de5012019-08-01 14:10:53 -0400869 ' %s. Please find a x86_64 machine.' % (host,))
Brian Harring1790ac42012-09-23 08:53:33 -0700870
Mike Frysinger2bda4d12020-07-14 11:15:49 -0400871 # Merge the outside PATH setting if we re-execed ourselves.
872 if 'CHROMEOS_SUDO_PATH' in os.environ:
873 os.environ['PATH'] = '%s:%s' % (os.environ.pop('CHROMEOS_SUDO_PATH'),
874 os.environ['PATH'])
875
Josh Triplett472a4182013-03-08 11:48:57 -0800876 _ReportMissing(osutils.FindMissingBinaries(NEEDED_TOOLS))
877 if options.proxy_sim:
878 _ReportMissing(osutils.FindMissingBinaries(PROXY_NEEDED_TOOLS))
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600879 missing_image_tools = osutils.FindMissingBinaries(IMAGE_NEEDED_TOOLS)
Brian Harringb938c782012-02-29 15:14:38 -0800880
Benjamin Gordon040a1162017-06-29 13:44:47 -0600881 if (sdk_latest_version == '<unknown>' or
882 bootstrap_latest_version == '<unknown>'):
883 cros_build_lib.Die(
884 'No SDK version was found. '
885 'Are you in a Chromium source tree instead of Chromium OS?\n\n'
886 'Please change to a directory inside your Chromium OS source tree\n'
887 'and retry. If you need to setup a Chromium OS source tree, see\n'
Mike Frysingerdcad4e02018-08-03 16:20:02 -0400888 ' https://dev.chromium.org/chromium-os/developer-guide')
Benjamin Gordon040a1162017-06-29 13:44:47 -0600889
Manoj Guptab12f7302019-06-03 16:40:14 -0700890 any_snapshot_operation = (
891 options.snapshot_create or options.snapshot_restore or
892 options.snapshot_delete or options.snapshot_list)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600893
Manoj Guptab12f7302019-06-03 16:40:14 -0700894 if (options.snapshot_delete and
895 options.snapshot_delete == options.snapshot_restore):
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600896 parser.error('Cannot --snapshot_delete the same snapshot you are '
897 'restoring with --snapshot_restore.')
898
David James471532c2013-01-21 10:23:31 -0800899 _ReExecuteIfNeeded([sys.argv[0]] + argv)
900
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600901 lock_path = os.path.dirname(options.chroot)
902 lock_path = os.path.join(
903 lock_path, '.%s_lock' % os.path.basename(options.chroot).lstrip('.'))
904
Brian Harring218e13c2012-10-10 16:21:26 -0700905 # Expand out the aliases...
906 if options.replace:
907 options.delete = options.create = True
Brian Harringb938c782012-02-29 15:14:38 -0800908
Brian Harring218e13c2012-10-10 16:21:26 -0700909 if options.bootstrap:
910 options.create = True
Brian Harringb938c782012-02-29 15:14:38 -0800911
Brian Harring218e13c2012-10-10 16:21:26 -0700912 # If a command is not given, default to enter.
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400913 # pylint: disable=protected-access
914 # This _group_actions access sucks, but upstream decided to not include an
915 # alternative to optparse's option_list, and this is what they recommend.
Manoj Guptab12f7302019-06-03 16:40:14 -0700916 options.enter |= not any(
917 getattr(options, x.dest) for x in commands._group_actions)
Mike Frysinger2f95cfc2015-06-04 04:00:26 -0400918 # pylint: enable=protected-access
Brian Harring218e13c2012-10-10 16:21:26 -0700919 options.enter |= bool(chroot_command)
920
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600921 if (options.delete and not options.create and
922 (options.enter or any_snapshot_operation)):
Mike Frysinger80de5012019-08-01 14:10:53 -0400923 parser.error('Trying to enter or snapshot the chroot when --delete '
924 'was specified makes no sense.')
Brian Harring218e13c2012-10-10 16:21:26 -0700925
Benjamin Gordon64a3f8d2018-06-08 10:34:39 -0600926 if (options.unmount and
927 (options.create or options.enter or any_snapshot_operation)):
928 parser.error('--unmount cannot be specified with other chroot actions.')
929
Yong Hong84ba9172018-02-07 01:37:42 +0800930 if options.working_dir is not None and not os.path.isabs(options.working_dir):
931 options.working_dir = path_util.ToChrootPath(options.working_dir)
932
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700933 # If there is an existing chroot image and we're not removing it then force
934 # use_image on. This ensures that people don't have to remember to pass
935 # --use-image after a reboot to avoid losing access to their existing chroot.
Benjamin Gordon7b44bef2018-06-08 08:13:59 -0600936 chroot_exists = cros_sdk_lib.IsChrootReady(options.chroot)
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700937 img_path = _ImageFileForChroot(options.chroot)
Benjamin Gordon832a4412020-12-08 10:39:16 -0700938 if (not options.use_image and not options.delete and not options.unmount
939 and os.path.exists(img_path)):
940 if chroot_exists:
941 # If the chroot is already populated, make sure it has something
942 # mounted on it before we assume it came from an image.
943 cmd = ['mountpoint', '-q', options.chroot]
944 if cros_build_lib.dbg_run(cmd, check=False).returncode == 0:
945 options.use_image = True
946
947 else:
948 logging.notice('Existing chroot image %s found. Forcing --use-image on.',
949 img_path)
950 options.use_image = True
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700951
Benjamin Gordon9bce7032020-11-19 09:58:44 -0700952 if any_snapshot_operation and not options.use_image:
953 if os.path.exists(img_path):
954 options.use_image = True
955 else:
956 cros_build_lib.Die('Snapshot operations are not compatible with '
957 '--nouse-image.')
958
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700959 # Discern if we need to create the chroot.
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600960 if (options.use_image and not chroot_exists and not options.delete and
Benjamin Gordon64a3f8d2018-06-08 10:34:39 -0600961 not options.unmount and not missing_image_tools and
Benjamin Gordon87b068a2020-11-02 11:22:16 -0700962 os.path.exists(img_path)):
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600963 # Try to re-mount an existing image in case the user has rebooted.
Mike Frysingerbf47cce2021-01-20 13:46:30 -0500964 with locking.FileLock(lock_path, 'chroot lock') as lock:
965 logging.debug('Checking if existing chroot image can be mounted.')
966 lock.write_lock()
967 cros_sdk_lib.MountChroot(options.chroot, create=False)
968 chroot_exists = cros_sdk_lib.IsChrootReady(options.chroot)
969 if chroot_exists:
970 logging.notice('Mounted existing image %s on chroot', img_path)
Brian Harring218e13c2012-10-10 16:21:26 -0700971
972 # Finally, flip create if necessary.
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600973 if options.enter or options.snapshot_create:
Brian Harring218e13c2012-10-10 16:21:26 -0700974 options.create |= not chroot_exists
Brian Harringb938c782012-02-29 15:14:38 -0800975
Benjamin Gordon7b44bef2018-06-08 08:13:59 -0600976 # Make sure we will download if we plan to create.
977 options.download |= options.create
978
Benjamin Gordon2d7bf582017-07-12 10:11:26 -0600979 # Anything that needs to manipulate the main chroot mount or communicate with
980 # LVM needs to be done here before we enter the new namespaces.
981
982 # If deleting, do it regardless of the use_image flag so that a
983 # previously-created loopback chroot can also be cleaned up.
Benjamin Gordon386b9eb2017-07-20 09:21:33 -0600984 if options.delete:
Mike Frysingerbf47cce2021-01-20 13:46:30 -0500985 # Set a timeout of 300 seconds when getting the lock.
986 with locking.FileLock(lock_path, 'chroot lock',
987 blocking_timeout=300) as lock:
988 try:
989 lock.write_lock()
990 except timeout_util.TimeoutError as e:
991 logging.error('Acquiring write_lock on %s failed: %s', lock_path, e)
992 if not options.force:
993 cros_build_lib.Die('Exiting; use --force to continue w/o lock.')
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600994 else:
Mike Frysingerbf47cce2021-01-20 13:46:30 -0500995 logging.warning(
996 'cros_sdk was invoked with force option, continuing.')
Mike Frysingerf6fe6d02021-06-16 20:26:35 -0400997 logging.notice('Deleting chroot.')
998 cros_sdk_lib.CleanupChrootMount(options.chroot, delete=True)
Benjamin Gordonabb3e372017-08-09 10:21:05 -0600999
Benjamin Gordon64a3f8d2018-06-08 10:34:39 -06001000 # If cleanup was requested, we have to do it while we're still in the original
1001 # namespace. Since cleaning up the mount will interfere with any other
1002 # commands, we exit here. The check above should have made sure that no other
1003 # action was requested, anyway.
1004 if options.unmount:
Michael Mortensenbf296fb2020-06-18 18:21:54 -06001005 # Set a timeout of 300 seconds when getting the lock.
1006 with locking.FileLock(lock_path, 'chroot lock',
1007 blocking_timeout=300) as lock:
1008 try:
1009 lock.write_lock()
1010 except timeout_util.TimeoutError as e:
1011 logging.error('Acquiring write_lock on %s failed: %s', lock_path, e)
Michael Mortensen1a176922020-07-14 20:53:35 -06001012 logging.warning(
1013 'Continuing with CleanupChroot(%s), which will umount the tree.',
1014 options.chroot)
Michael Mortensenbf296fb2020-06-18 18:21:54 -06001015 # We can call CleanupChroot (which calls cros_sdk_lib.CleanupChrootMount)
1016 # even if we don't get the lock because it will attempt to unmount the
1017 # tree and will print diagnostic information from 'fuser', 'lsof', and
1018 # 'ps'.
Mike Frysingerf6fe6d02021-06-16 20:26:35 -04001019 cros_sdk_lib.CleanupChrootMount(options.chroot, delete=False)
Benjamin Gordon64a3f8d2018-06-08 10:34:39 -06001020 sys.exit(0)
1021
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001022 # Make sure the main chroot mount is visible. Contents will be filled in
1023 # below if needed.
Benjamin Gordonabb3e372017-08-09 10:21:05 -06001024 if options.create and options.use_image:
1025 if missing_image_tools:
Mike Frysinger80de5012019-08-01 14:10:53 -04001026 raise SystemExit("""The tool(s) %s were not found.
Benjamin Gordonabb3e372017-08-09 10:21:05 -06001027Please make sure the lvm2 and thin-provisioning-tools packages
1028are installed on your host.
1029Example(ubuntu):
1030 sudo apt-get install lvm2 thin-provisioning-tools
1031
1032If you want to run without lvm2, pass --nouse-image (chroot
Mike Frysinger80de5012019-08-01 14:10:53 -04001033snapshots will be unavailable).""" % ', '.join(missing_image_tools))
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001034
Benjamin Gordonabb3e372017-08-09 10:21:05 -06001035 logging.debug('Making sure chroot image is mounted.')
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001036 with locking.FileLock(lock_path, 'chroot lock') as lock:
1037 lock.write_lock()
1038 if not cros_sdk_lib.MountChroot(options.chroot, create=True):
1039 cros_build_lib.Die('Unable to mount %s on chroot',
1040 _ImageFileForChroot(options.chroot))
1041 logging.notice('Mounted %s on chroot',
1042 _ImageFileForChroot(options.chroot))
Benjamin Gordon386b9eb2017-07-20 09:21:33 -06001043
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001044 # Snapshot operations will always need the VG/LV, but other actions won't.
1045 if any_snapshot_operation:
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001046 with locking.FileLock(lock_path, 'chroot lock') as lock:
1047 chroot_vg, chroot_lv = cros_sdk_lib.FindChrootMountSource(options.chroot)
1048 if not chroot_vg or not chroot_lv:
1049 cros_build_lib.Die('Unable to find VG/LV for chroot %s', options.chroot)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001050
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001051 # Delete snapshot before creating a new one. This allows the user to
1052 # throw out old state, create a new snapshot, and enter the chroot in a
1053 # single call to cros_sdk. Since restore involves deleting, also do it
1054 # before creating.
1055 if options.snapshot_restore:
1056 lock.write_lock()
1057 valid_snapshots = ListChrootSnapshots(chroot_vg, chroot_lv)
1058 if options.snapshot_restore not in valid_snapshots:
1059 cros_build_lib.Die(
1060 '%s is not a valid snapshot to restore to. Valid snapshots: %s',
1061 options.snapshot_restore, ', '.join(valid_snapshots))
1062 osutils.UmountTree(options.chroot)
1063 if not RestoreChrootSnapshot(options.snapshot_restore, chroot_vg,
1064 chroot_lv):
1065 cros_build_lib.Die('Unable to restore chroot to snapshot.')
1066 if not cros_sdk_lib.MountChroot(options.chroot, create=False):
1067 cros_build_lib.Die('Unable to mount restored snapshot onto chroot.')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001068
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001069 # Use a read lock for snapshot delete and create even though they modify
1070 # the filesystem, because they don't modify the mounted chroot itself.
1071 # The underlying LVM commands take their own locks, so conflicting
1072 # concurrent operations here may crash cros_sdk, but won't corrupt the
1073 # chroot image. This tradeoff seems worth it to allow snapshot
1074 # operations on chroots that have a process inside.
1075 if options.snapshot_delete:
1076 lock.read_lock()
1077 DeleteChrootSnapshot(options.snapshot_delete, chroot_vg, chroot_lv)
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001078
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001079 if options.snapshot_create:
1080 lock.read_lock()
1081 if not CreateChrootSnapshot(options.snapshot_create, chroot_vg,
1082 chroot_lv):
1083 cros_build_lib.Die('Unable to create snapshot.')
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001084
Benjamin Gordone3d5bd12017-11-16 15:42:28 -07001085 img_path = _ImageFileForChroot(options.chroot)
1086 if (options.use_image and os.path.exists(options.chroot) and
1087 os.path.exists(img_path)):
1088 img_stat = os.stat(img_path)
1089 img_used_bytes = img_stat.st_blocks * 512
1090
1091 mount_stat = os.statvfs(options.chroot)
Manoj Guptab12f7302019-06-03 16:40:14 -07001092 mount_used_bytes = mount_stat.f_frsize * (
1093 mount_stat.f_blocks - mount_stat.f_bfree)
Benjamin Gordone3d5bd12017-11-16 15:42:28 -07001094
Mike Frysinger93e8ffa2019-07-03 20:24:18 -04001095 extra_gbs = (img_used_bytes - mount_used_bytes) // 2**30
Benjamin Gordone3d5bd12017-11-16 15:42:28 -07001096 if extra_gbs > MAX_UNUSED_IMAGE_GBS:
1097 logging.notice('%s is using %s GiB more than needed. Running '
Sergey Frolov1cb46ec2020-12-09 21:46:16 -07001098 'fstrim in background.', img_path, extra_gbs)
1099 pid = os.fork()
1100 if pid == 0:
1101 try:
1102 # Directly call Popen to run fstrim concurrently.
1103 cmd = ['fstrim', options.chroot]
1104 subprocess.Popen(cmd, close_fds=True, shell=False)
1105 except subprocess.SubprocessError as e:
1106 logging.warning(
1107 'Running fstrim failed. Consider running fstrim on '
1108 'your chroot manually.\n%s', e)
1109 os._exit(0) # pylint: disable=protected-access
1110 os.waitpid(pid, 0)
Benjamin Gordone3d5bd12017-11-16 15:42:28 -07001111
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001112 # Enter a new set of namespaces. Everything after here cannot directly affect
1113 # the hosts's mounts or alter LVM volumes.
Mike Frysinger79024a32021-04-05 03:28:35 -04001114 namespaces.SimpleUnshare(net=options.ns_net, pid=options.ns_pid)
Benjamin Gordon386b9eb2017-07-20 09:21:33 -06001115
Benjamin Gordon2d7bf582017-07-12 10:11:26 -06001116 if options.snapshot_list:
1117 for snap in ListChrootSnapshots(chroot_vg, chroot_lv):
1118 print(snap)
1119 sys.exit(0)
1120
Brian Harringb938c782012-02-29 15:14:38 -08001121 if not options.sdk_version:
Manoj Guptab12f7302019-06-03 16:40:14 -07001122 sdk_version = (
1123 bootstrap_latest_version if options.bootstrap else sdk_latest_version)
Brian Harringb938c782012-02-29 15:14:38 -08001124 else:
1125 sdk_version = options.sdk_version
Mike Frysinger34db8692013-11-11 14:54:08 -05001126 if options.buildbot_log_version:
Chris McDonaldb55b7032021-06-17 16:41:32 -06001127 cbuildbot_alerts.PrintBuildbotStepText(sdk_version)
Brian Harringb938c782012-02-29 15:14:38 -08001128
Gilad Arnoldecc86fa2015-05-22 12:06:04 -07001129 # Based on selections, determine the tarball to fetch.
Yong Hong4e29b622018-02-05 14:31:10 +08001130 if options.download:
1131 if options.sdk_url:
1132 urls = [options.sdk_url]
Yong Hong4e29b622018-02-05 14:31:10 +08001133 else:
1134 urls = GetArchStageTarballs(sdk_version)
Brian Harring1790ac42012-09-23 08:53:33 -07001135
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001136 with locking.FileLock(lock_path, 'chroot lock') as lock:
1137 if options.proxy_sim:
1138 _ProxySimSetup(options)
Josh Triplett472a4182013-03-08 11:48:57 -08001139
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001140 sdk_cache = os.path.join(options.cache_dir, 'sdks')
1141 distfiles_cache = os.path.join(options.cache_dir, 'distfiles')
1142 osutils.SafeMakedirsNonRoot(options.cache_dir)
Brian Harringae0a5322012-09-15 01:46:51 -07001143
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001144 for target in (sdk_cache, distfiles_cache):
1145 src = os.path.join(constants.SOURCE_ROOT, os.path.basename(target))
1146 if not os.path.exists(src):
1147 osutils.SafeMakedirsNonRoot(target)
1148 continue
1149 lock.write_lock(
1150 'Upgrade to %r needed but chroot is locked; please exit '
1151 'all instances so this upgrade can finish.' % src)
1152 if not os.path.exists(src):
1153 # Note that while waiting for the write lock, src may've vanished;
1154 # it's a rare race during the upgrade process that's a byproduct
1155 # of us avoiding taking a write lock to do the src check. If we
1156 # took a write lock for that check, it would effectively limit
1157 # all cros_sdk for a chroot to a single instance.
1158 osutils.SafeMakedirsNonRoot(target)
1159 elif not os.path.exists(target):
1160 # Upgrade occurred, but a reversion, or something whacky
1161 # occurred writing to the old location. Wipe and continue.
1162 os.rename(src, target)
1163 else:
1164 # Upgrade occurred once already, but either a reversion or
1165 # some before/after separate cros_sdk usage is at play.
1166 # Wipe and continue.
1167 osutils.RmDir(src)
Brian Harringae0a5322012-09-15 01:46:51 -07001168
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001169 if options.download:
1170 lock.write_lock()
Mike Frysingerf744d032022-05-07 20:38:39 -04001171 sdk_tarball = FetchRemoteTarballs(sdk_cache, urls)
Brian Harring218e13c2012-10-10 16:21:26 -07001172
Mike Frysinger65b7b242021-06-17 21:11:25 -04001173 mounted = False
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001174 if options.create:
1175 lock.write_lock()
1176 # Recheck if the chroot is set up here before creating to make sure we
1177 # account for whatever the various delete/unmount/remount steps above
1178 # have done.
1179 if cros_sdk_lib.IsChrootReady(options.chroot):
1180 logging.debug('Chroot already exists. Skipping creation.')
1181 else:
Mike Frysinger23b5cf52021-06-16 23:18:00 -04001182 cros_sdk_lib.CreateChroot(
1183 Path(options.chroot),
1184 Path(sdk_tarball),
1185 Path(options.cache_dir),
Sergey Frolov6038f612022-06-13 14:07:21 -06001186 usepkg=not options.bootstrap and not options.nousepkg,
1187 chroot_upgrade=options.chroot_upgrade)
Mike Frysinger65b7b242021-06-17 21:11:25 -04001188 mounted = True
Brian Harring1790ac42012-09-23 08:53:33 -07001189
Mike Frysingerbf47cce2021-01-20 13:46:30 -05001190 if options.enter:
1191 lock.read_lock()
Mike Frysinger65b7b242021-06-17 21:11:25 -04001192 if not mounted:
1193 cros_sdk_lib.MountChrootPaths(options.chroot)
Mike Frysingere1407f62021-10-30 01:56:40 -04001194 ret = EnterChroot(options.chroot, options.cache_dir, options.chrome_root,
1195 options.chrome_root_mount, options.goma_dir,
Joanna Wang1ec0c812021-11-17 17:41:27 -08001196 options.goma_client_json, options.reclient_dir,
1197 options.reproxy_cfg_file, options.working_dir,
Mike Frysingere1407f62021-10-30 01:56:40 -04001198 chroot_command)
1199 sys.exit(ret.returncode)