blob: 49e3e5bde3bba62f0e77071eea3044bdf74b0ada [file] [log] [blame]
rspangler@google.comd74220d2009-10-09 20:56:14 +00001#!/bin/bash
2
Darin Petkov47974d42011-03-03 15:55:04 -08003# Copyright (c) 2011 The Chromium OS Authors. All rights reserved.
rspangler@google.comd74220d2009-10-09 20:56:14 +00004# Use of this source code is governed by a BSD-style license that can be
5# found in the LICENSE file.
6
7# Script to enter the chroot environment
8
J. Richard Barnette8e6750d2011-08-22 12:35:52 -07009SCRIPT_ROOT=$(readlink -f $(dirname "$0")/..)
10. "${SCRIPT_ROOT}/common.sh" || exit 1
rspangler@google.comd74220d2009-10-09 20:56:14 +000011
David James76764882012-10-24 19:46:29 -070012# Script must be run outside the chroot and as root.
rspangler@google.comd74220d2009-10-09 20:56:14 +000013assert_outside_chroot
David James76764882012-10-24 19:46:29 -070014assert_root_user
rspangler@google.comd74220d2009-10-09 20:56:14 +000015
16# Define command line flags
17# See http://code.google.com/p/shflags/wiki/Documentation10x
18DEFINE_string chroot "$DEFAULT_CHROOT_DIR" \
19 "The destination dir for the chroot environment." "d"
20DEFINE_string trunk "$GCLIENT_ROOT" \
21 "The source trunk to bind mount within the chroot." "s"
David McMahon03aeb202009-12-08 12:47:08 -080022DEFINE_string build_number "" \
23 "The build-bot build number (when called by buildbot only)." "b"
Andrew de los Reyes6d0ca162010-02-12 14:36:08 -080024DEFINE_string chrome_root "" \
25 "The root of your chrome browser source. Should contain a 'src' subdir."
David James76764882012-10-24 19:46:29 -070026DEFINE_string chrome_root_mount "/home/${SUDO_USER}/chrome_root" \
Sean Parent2898f752010-05-25 15:06:33 -070027 "The mount point of the chrome broswer source in the chroot."
Brian Harring7b6f3772012-09-23 14:01:13 -070028DEFINE_string cache_dir "" "Directory to use for caching."
rspangler@google.comd74220d2009-10-09 20:56:14 +000029
Chris Sosaaa1a7fd2010-04-02 14:06:29 -070030DEFINE_boolean official_build $FLAGS_FALSE \
31 "Set CHROMEOS_OFFICIAL=1 for release builds."
Elly Jones7990a062010-09-02 09:23:23 -040032DEFINE_boolean ssh_agent $FLAGS_TRUE "Import ssh agent."
Brian Harring35767822012-02-01 23:50:45 -080033DEFINE_boolean early_make_chroot $FLAGS_FALSE \
34 "Internal flag. If set, the command is run as root without sudo."
Don Garrettad3f0592011-02-04 14:59:56 -080035DEFINE_boolean verbose $FLAGS_FALSE "Print out actions taken"
rspangler@google.comd74220d2009-10-09 20:56:14 +000036
37# More useful help
Doug Anderson9362fa82010-12-16 14:44:12 -080038FLAGS_HELP="USAGE: $0 [flags] [VAR=value] [-- command [arg1] [arg2] ...]
rspangler@google.comd74220d2009-10-09 20:56:14 +000039
40One or more VAR=value pairs can be specified to export variables into
41the chroot environment. For example:
42
43 $0 FOO=bar BAZ=bel
44
Doug Anderson9362fa82010-12-16 14:44:12 -080045If [-- command] is present, runs the command inside the chroot,
David James76764882012-10-24 19:46:29 -070046after changing directory to /${SUDO_USER}/trunk/src/scripts. Note that neither
Doug Anderson9362fa82010-12-16 14:44:12 -080047the command nor args should include single quotes. For example:
rspangler@google.comd74220d2009-10-09 20:56:14 +000048
Doug Anderson9362fa82010-12-16 14:44:12 -080049 $0 -- ./build_platform_packages.sh
rspangler@google.comd74220d2009-10-09 20:56:14 +000050
51Otherwise, provides an interactive shell.
52"
53
Peter Mayo4411efe2012-09-21 04:41:27 -040054CROS_LOG_PREFIX=cros_sdk:enter_chroot
David James76764882012-10-24 19:46:29 -070055SUDO_HOME=$(eval echo ~${SUDO_USER})
Peter Mayo4411efe2012-09-21 04:41:27 -040056
Don Garrettad3f0592011-02-04 14:59:56 -080057# Version of info from common.sh that only echos if --verbose is set.
Mike Frysinger6b1abb22012-05-11 13:44:06 -040058debug() {
Don Garrettad3f0592011-02-04 14:59:56 -080059 if [ $FLAGS_verbose -eq $FLAGS_TRUE ]; then
David Rochberg351a76f2011-02-16 11:14:00 -050060 info "$*"
Don Garrettad3f0592011-02-04 14:59:56 -080061 fi
62}
63
rspangler@google.comd74220d2009-10-09 20:56:14 +000064# Parse command line flags
65FLAGS "$@" || exit 1
66eval set -- "${FLAGS_ARGV}"
67
Greg Spencer798d75f2011-02-01 22:04:49 -080068if [ $FLAGS_official_build -eq $FLAGS_TRUE ]; then
David McMahon857dbb52009-12-09 18:21:05 -080069 CHROMEOS_OFFICIAL=1
70fi
71
Brian Harring7b6f3772012-09-23 14:01:13 -070072[ -z "${FLAGS_cache_dir}" ] && \
73 die "--cache_dir is required"
Brian Harring7ee892d2012-02-02 09:33:10 -080074
rspangler@google.comd74220d2009-10-09 20:56:14 +000075# Only now can we die on error. shflags functions leak non-zero error codes,
Brian Harring7f175a52012-03-02 05:37:00 -080076# so will die prematurely if 'switch_to_strict_mode' is specified before now.
rspangler@google.comd74220d2009-10-09 20:56:14 +000077# TODO: replace shflags with something less error-prone, or contribute a fix.
Brian Harring7f175a52012-03-02 05:37:00 -080078switch_to_strict_mode
rspangler@google.comd74220d2009-10-09 20:56:14 +000079
Matt Tennant298f61a2012-06-25 21:54:33 -070080# These config files are to be copied into chroot if they exist in home dir.
81FILES_TO_COPY_TO_CHROOT=(
82 .gdata_cred.txt # User/password for Google Docs on chromium.org
83 .gdata_token # Auth token for Google Docs on chromium.org
84 .disable_build_stats_upload # Presence of file disables command stats upload
85)
86
Sean Parent2898f752010-05-25 15:06:33 -070087INNER_CHROME_ROOT=$FLAGS_chrome_root_mount # inside chroot
Andrew de los Reyes6d0ca162010-02-12 14:36:08 -080088CHROME_ROOT_CONFIG="/var/cache/chrome_root" # inside chroot
Chris Sosaaa1a7fd2010-04-02 14:06:29 -070089FUSE_DEVICE="/dev/fuse"
Andrew de los Reyes6d0ca162010-02-12 14:36:08 -080090
David James76764882012-10-24 19:46:29 -070091chmod 0777 "$FLAGS_chroot/var/lock"
Andrew de los Reyesc9317ea2010-02-10 13:16:36 -080092
93LOCKFILE="$FLAGS_chroot/var/lock/enter_chroot"
Mike Frysinger0a0e6ec2011-09-28 11:57:21 -040094MOUNTED_PATH=$(readlink -f "$FLAGS_chroot")
Mike Frysinger286b5922011-09-28 11:59:53 -040095
Brian Harring2499bfb2012-12-18 16:23:31 -080096# Reset the depot tools/internal trunk pathways to what they'll
97# be w/in the chroot.
98set_chroot_trunk_dir "${FLAGS_chroot}"
99
100
David James76764882012-10-24 19:46:29 -0700101setup_mount() {
David Rochberg351a76f2011-02-16 11:14:00 -0500102 # If necessary, mount $source in the host FS at $target inside the
David James76764882012-10-24 19:46:29 -0700103 # chroot directory with $mount_args. We don't write to /etc/mtab because
104 # these mounts are all contained within an unshare and are therefore
105 # inaccessible to other namespaces (e.g. the host desktop system).
David Rochberg351a76f2011-02-16 11:14:00 -0500106 local source="$1"
David James76764882012-10-24 19:46:29 -0700107 local mount_args="-n $2"
David Rochberg351a76f2011-02-16 11:14:00 -0500108 local target="$3"
109
Mike Frysinger0a0e6ec2011-09-28 11:57:21 -0400110 local mounted_path="${MOUNTED_PATH}$target"
David Rochberg351a76f2011-02-16 11:14:00 -0500111
Mike Frysinger9e5b0a42012-05-16 17:30:24 -0400112 case " ${MOUNT_CACHE} " in
113 *" ${mounted_path} "*)
Mike Frysinger2a970592011-09-20 22:49:01 -0400114 # Already mounted!
115 ;;
116 *)
David James76764882012-10-24 19:46:29 -0700117 mkdir -p "${mounted_path}"
Michael Krebs04c4f732012-09-07 18:31:46 -0700118 # The args are left unquoted on purpose.
119 if [[ -n ${source} ]]; then
David James76764882012-10-24 19:46:29 -0700120 mount ${mount_args} "${source}" "${mounted_path}"
Michael Krebs04c4f732012-09-07 18:31:46 -0700121 else
David James76764882012-10-24 19:46:29 -0700122 mount ${mount_args} "${mounted_path}"
Michael Krebs04c4f732012-09-07 18:31:46 -0700123 fi
Mike Frysinger2a970592011-09-20 22:49:01 -0400124 ;;
125 esac
David Rochberg351a76f2011-02-16 11:14:00 -0500126}
127
Mike Frysinger6b1abb22012-05-11 13:44:06 -0400128copy_ssh_config() {
Vadim Bendebury0779f522011-06-12 12:09:16 -0700129 # Copy user .ssh/config into the chroot filtering out strings not supported
130 # by the chroot ssh. The chroot .ssh directory is passed in as the first
131 # parameter.
132
133 # ssh options to filter out. The entire strings containing these substrings
134 # will be deleted before copying.
135 local bad_options=(
Matt Tennant63c3cc52011-11-22 11:23:06 -0800136 'UseProxyIf'
137 'GSSAPIAuthentication'
138 'GSSAPIKeyExchange'
139 'ProxyUseFdpass'
Vadim Bendebury0779f522011-06-12 12:09:16 -0700140 )
David James76764882012-10-24 19:46:29 -0700141 local sshc="${SUDO_HOME}/.ssh/config"
Vadim Bendebury0779f522011-06-12 12:09:16 -0700142 local chroot_ssh_dir="${1}"
143 local filter
144 local option
145
David James22dc2ba2012-11-29 15:46:58 -0800146 if ! user_cp "${sshc}" "${chroot_ssh_dir}/config.orig" 2>/dev/null; then
Vadim Bendebury0779f522011-06-12 12:09:16 -0700147 return # Nothing to copy.
148 fi
149
150 for option in "${bad_options[@]}"
151 do
152 if [ -z "${filter}" ]; then
153 filter="${option}"
154 else
155 filter+="\\|${option}"
156 fi
157 done
158
David James22dc2ba2012-11-29 15:46:58 -0800159 sed "/^.*\(${filter}\).*$/d" "${chroot_ssh_dir}/config.orig" | \
David James76764882012-10-24 19:46:29 -0700160 user_clobber "${chroot_ssh_dir}/config"
Vadim Bendebury0779f522011-06-12 12:09:16 -0700161}
162
Mike Frysinger6b1abb22012-05-11 13:44:06 -0400163copy_into_chroot_if_exists() {
Matt Tennantf7c9e772012-02-08 17:06:26 -0800164 # $1 is file path outside of chroot to copy to path $2 inside chroot.
David James76764882012-10-24 19:46:29 -0700165 [ -e "$1" ] && cp -p "$1" "${FLAGS_chroot}/$2"
Matt Tennantf7c9e772012-02-08 17:06:26 -0800166}
167
Peter Mayo4411efe2012-09-21 04:41:27 -0400168# Usage: promote_api_keys
169# This takes care of getting the developer API keys into the chroot where
170# chrome can build with them. It needs to take it from the places a dev
171# is likely to put them, and recognize that older chroots may or may not
172# have been used since the concept of keys got added, as well as before
173# and after the developer decding to grab his own keys.
174promote_api_keys() {
David James76764882012-10-24 19:46:29 -0700175 local destination="${FLAGS_chroot}/home/${SUDO_USER}/.googleapikeys"
Peter Mayo4411efe2012-09-21 04:41:27 -0400176 # Don't disturb existing keys. They could be set differently
177 if [[ -s "${destination}" ]]; then
178 return 0
179 fi
David James76764882012-10-24 19:46:29 -0700180 if [[ -r "${SUDO_HOME}/.googleapikeys" ]]; then
181 cp -p "${SUDO_HOME}/.googleapikeys" "${destination}"
Peter Mayo4411efe2012-09-21 04:41:27 -0400182 if [[ -s "${destination}" ]] ; then
183 info "Copied Google API keys into chroot."
184 fi
David James76764882012-10-24 19:46:29 -0700185 elif [[ -r "${SUDO_HOME}/.gyp/include.gypi" ]]; then
Peter Mayo4411efe2012-09-21 04:41:27 -0400186 local NAME="('google_(api_key|default_client_(id|secret))')"
187 local WS="[[:space:]]*"
188 local CONTENTS="('[^\\\\']*')"
189 sed -nr -e "/^${WS}${NAME}${WS}[:=]${WS}${CONTENTS}.*/{s//\1: \4,/;p;}" \
David James76764882012-10-24 19:46:29 -0700190 "${SUDO_HOME}/.gyp/include.gypi" | user_clobber "${destination}"
Peter Mayo4411efe2012-09-21 04:41:27 -0400191 if [[ -s "${destination}" ]]; then
192 info "Put discovered Google API keys into chroot."
193 fi
194 fi
195}
196
Mike Frysinger6b1abb22012-05-11 13:44:06 -0400197setup_env() {
Andrew de los Reyesc9317ea2010-02-10 13:16:36 -0800198 (
199 flock 200
rspangler@google.comd74220d2009-10-09 20:56:14 +0000200
David James76764882012-10-24 19:46:29 -0700201 # Make the lockfile writable for backwards compatibility.
202 chown ${SUDO_UID}:${SUDO_GID} "${LOCKFILE}"
203
204 # Refresh /etc/resolv.conf and /etc/hosts in the chroot.
205 install -C -m644 /etc/resolv.conf ${FLAGS_chroot}/etc/resolv.conf
206 install -C -m644 /etc/hosts ${FLAGS_chroot}/etc/hosts
David James412b9022011-07-15 19:54:16 -0700207
Don Garretta0e7ea12011-02-07 18:39:59 -0800208 debug "Mounting chroot environment."
Mike Frysinger9e5b0a42012-05-16 17:30:24 -0400209 MOUNT_CACHE=$(echo $(awk '{print $2}' /proc/mounts))
David James76764882012-10-24 19:46:29 -0700210 setup_mount none "-t proc" /proc
211 setup_mount none "-t sysfs" /sys
212 setup_mount /dev "--bind" /dev
213 setup_mount none "-t devpts" /dev/pts
Aaron Plattner130d3632011-10-18 08:54:57 -0700214 if [ -d /run ]; then
David James76764882012-10-24 19:46:29 -0700215 setup_mount /run "--bind" /run
Aaron Plattner130d3632011-10-18 08:54:57 -0700216 if [ -d /run/shm ]; then
David James76764882012-10-24 19:46:29 -0700217 setup_mount /run/shm "--bind" /run/shm
Aaron Plattner130d3632011-10-18 08:54:57 -0700218 fi
219 fi
Brian Harring2499bfb2012-12-18 16:23:31 -0800220
David James76764882012-10-24 19:46:29 -0700221 setup_mount "${FLAGS_trunk}" "--bind" "${CHROOT_TRUNK_DIR}"
Chris Sosa389634d2012-09-05 19:56:53 -0700222
Brian Harringdd7d7932011-12-23 04:21:33 -0800223 debug "Setting up referenced repositories if required."
224 REFERENCE_DIR=$(git config --file \
225 "${FLAGS_trunk}/.repo/manifests.git/config" \
226 repo.reference)
227 if [ -n "${REFERENCE_DIR}" ]; then
228
Brian Harring334050f2012-06-08 17:40:58 -0700229 ALTERNATES="${FLAGS_trunk}/.repo/alternates"
230
231 # Ensure this directory exists ourselves, and has the correct ownership.
David James76764882012-10-24 19:46:29 -0700232 user_mkdir "${ALTERNATES}"
Brian Harring334050f2012-06-08 17:40:58 -0700233
234 unset ALTERNATES
235
Brian Harringdd7d7932011-12-23 04:21:33 -0800236 IFS=$'\n';
David James76764882012-10-24 19:46:29 -0700237 required=( $( sudo -u "${SUDO_USER}" -- \
238 "${FLAGS_trunk}/chromite/lib/rewrite_git_alternates.py" \
Brian Harringdd7d7932011-12-23 04:21:33 -0800239 "${FLAGS_trunk}" "${REFERENCE_DIR}" "${CHROOT_TRUNK_DIR}" ) )
240 unset IFS
241
David James76764882012-10-24 19:46:29 -0700242 setup_mount "${FLAGS_trunk}/.repo/chroot/alternates" --bind \
Brian Harringdd7d7932011-12-23 04:21:33 -0800243 "${CHROOT_TRUNK_DIR}/.repo/alternates"
244
245 # Note that as we're bringing up each referened repo, we also
246 # mount bind an empty directory over its alternates. This is
247 # required to suppress git from tracing through it- we already
248 # specify the required alternates for CHROOT_TRUNK_DIR, no point
249 # in having git try recursing through each on their own.
250 #
251 # Finally note that if you're unfamiliar w/ chroot/vfs semantics,
252 # the bind is visible only w/in the chroot.
David James76764882012-10-24 19:46:29 -0700253 user_mkdir ${FLAGS_trunk}/.repo/chroot/empty
Brian Harringdd7d7932011-12-23 04:21:33 -0800254 position=1
255 for x in "${required[@]}"; do
256 base="${CHROOT_TRUNK_DIR}/.repo/chroot/external${position}"
David James76764882012-10-24 19:46:29 -0700257 setup_mount "${x}" "--bind" "${base}"
Brian Harringdd7d7932011-12-23 04:21:33 -0800258 if [ -e "${x}/.repo/alternates" ]; then
David James76764882012-10-24 19:46:29 -0700259 setup_mount "${FLAGS_trunk}/.repo/chroot/empty" "--bind" \
Brian Harringdd7d7932011-12-23 04:21:33 -0800260 "${base}/.repo/alternates"
261 fi
262 position=$(( ${position} + 1 ))
263 done
264 unset required position base
265 fi
266 unset REFERENCE_DIR
267
Brian Harring7b6f3772012-09-23 14:01:13 -0700268 chroot_cache='/var/cache/chromeos-cache'
269 debug "Setting up shared cache dir directory."
David James76764882012-10-24 19:46:29 -0700270 user_mkdir "${FLAGS_cache_dir}"/distfiles/{target,host}
271 user_mkdir "${FLAGS_chroot}/${chroot_cache}"
272 setup_mount "${FLAGS_cache_dir}" "--bind" "${chroot_cache}"
Brian Harring7b6f3772012-09-23 14:01:13 -0700273 # TODO(build): remove this as of 12/01/12.
274 # Because of how distfiles -> cache_dir was deployed, if this isn't
275 # a symlink, we *know* the ondisk pathways aren't compatible- thus
276 # fix it now.
277 distfiles_path="${FLAGS_chroot}/var/cache/distfiles"
278 if [ ! -L "${distfiles_path}" ]; then
279 # While we're at it, ensure the var is exported w/in the chroot; it
280 # won't exist if distfiles isn't a symlink.
Paul Drewsb688cbe2012-10-08 15:33:43 -0700281 p="${FLAGS_chroot}/etc/profile.d/chromeos-cachedir.sh"
David James76764882012-10-24 19:46:29 -0700282 rm -rf "${distfiles_path}"
283 ln -s chromeos-cache/distfiles "${distfiles_path}"
284 mkdir -p -m 775 "${p%/*}"
285 echo 'export CHROMEOS_CACHEDIR=${chroot_cache}' > "${p}"
286 chmod 0644 "${p}"
Brian Harring7b6f3772012-09-23 14:01:13 -0700287 fi
Brian Harring7ee892d2012-02-02 09:33:10 -0800288
Elly Jones7990a062010-09-02 09:23:23 -0400289 if [ $FLAGS_ssh_agent -eq $FLAGS_TRUE ]; then
Mike Frysinger93a2eca2012-11-30 14:00:35 -0500290 # Clean up previous ssh agents.
291 rmdir "${FLAGS_chroot}"/tmp/ssh-* 2>/dev/null
292
David James76764882012-10-24 19:46:29 -0700293 if [ -n "${SSH_AUTH_SOCK}" -a -d "${SUDO_HOME}/.ssh" ]; then
294 TARGET_DIR="${FLAGS_chroot}/home/${SUDO_USER}/.ssh"
295 user_mkdir "${TARGET_DIR}"
David James22dc2ba2012-11-29 15:46:58 -0800296 (
297 # Only copy ~/.ssh/{known_hosts,*.pub} if they exist. Since we set
298 # nullglob, this needs to happen within a subshell.
299 shopt -s nullglob
300 files=("${SUDO_HOME}"/.ssh/{known_hosts,*.pub})
301 if [[ ${#files[@]} -gt 0 ]]; then
302 user_cp "${files[@]}" "${TARGET_DIR}/"
303 fi
304 )
Vadim Bendebury0779f522011-06-12 12:09:16 -0700305 copy_ssh_config "${TARGET_DIR}"
David James76764882012-10-24 19:46:29 -0700306 chown -R ${SUDO_UID}:${SUDO_GID} "${TARGET_DIR}"
Mike Frysinger9de707f2011-12-12 14:21:44 -0500307
308 # Don't try to bind mount the ssh agent dir if it has gone stale.
Mike Frysinger61e4f282011-09-20 22:37:22 -0400309 ASOCK=${SSH_AUTH_SOCK%/*}
Mike Frysinger9de707f2011-12-12 14:21:44 -0500310 if [ -d "${ASOCK}" ]; then
David James76764882012-10-24 19:46:29 -0700311 setup_mount "${ASOCK}" "--bind" "${ASOCK}"
Mike Frysinger9de707f2011-12-12 14:21:44 -0500312 fi
Elly Jones7990a062010-09-02 09:23:23 -0400313 fi
314 fi
315
David James76764882012-10-24 19:46:29 -0700316 if [ -d "$SUDO_HOME/.subversion" ]; then
317 TARGET="/home/${SUDO_USER}/.subversion"
318 user_mkdir "${FLAGS_chroot}${TARGET}"
319 setup_mount "${SUDO_HOME}/.subversion" "--bind" "${TARGET}"
Paul Drewsb4605b42012-10-11 23:10:43 -0700320 # Symbolic-link the .subversion directory so sandboxed subversion.class
321 # clients can use it.
Paul Drewsb4605b42012-10-11 23:10:43 -0700322 for d in \
David James76764882012-10-24 19:46:29 -0700323 "${FLAGS_cache_dir}"/distfiles/{host,target}/svn-src/"${SUDO_USER}"; do
Paul Drewsb4605b42012-10-11 23:10:43 -0700324 if [[ ! -L "${d}/.subversion" ]]; then
David James76764882012-10-24 19:46:29 -0700325 rm -rf "${d}/.subversion"
326 user_mkdir "${d}"
327 user_symlink /home/${SUDO_USER}/.subversion "${d}/.subversion"
Paul Drewsb4605b42012-10-11 23:10:43 -0700328 fi
329 done
Mike Frysinger286b5922011-09-28 11:59:53 -0400330 fi
331
David James76764882012-10-24 19:46:29 -0700332 # A reference to the DEPOT_TOOLS path may be passed in by cros_sdk.
333 if [ -n "${DEPOT_TOOLS}" ]; then
Mike Frysinger286b5922011-09-28 11:59:53 -0400334 debug "Mounting depot_tools"
Brian Harring2499bfb2012-12-18 16:23:31 -0800335 setup_mount "${DEPOT_TOOLS}" --bind "${DEPOT_TOOLS_DIR}"
Mike Frysinger286b5922011-09-28 11:59:53 -0400336 fi
337
Michael Krebs04c4f732012-09-07 18:31:46 -0700338 # Mount additional directories as specified in .local_mounts file.
339 local local_mounts="${FLAGS_trunk}/src/scripts/.local_mounts"
340 if [[ -f ${local_mounts} ]]; then
341 info "Mounting local folders (read-only for safety concern)"
342 # format: mount_source
343 # or mount_source mount_point
344 # or # comments
345 local mount_source mount_point
346 while read mount_source mount_point; do
347 if [[ -z ${mount_source} ]]; then
348 continue
349 fi
350 # if only source is assigned, use source as mount point.
351 : ${mount_point:=${mount_source}}
352 debug " mounting ${mount_source} on ${mount_point}"
David James76764882012-10-24 19:46:29 -0700353 setup_mount "${mount_source}" "--bind" "${mount_point}"
Michael Krebs04c4f732012-09-07 18:31:46 -0700354 # --bind can't initially be read-only so we have to do it via remount.
David James76764882012-10-24 19:46:29 -0700355 setup_mount "" "-o remount,ro" "${mount_point}"
Michael Krebs04c4f732012-09-07 18:31:46 -0700356 done < <(sed -e 's:#.*::' "${local_mounts}")
357 fi
358
Mike Frysinger9a50b642011-09-20 23:37:14 -0400359 CHROME_ROOT="$(readlink -f "$FLAGS_chrome_root" || :)"
360 if [ -z "$CHROME_ROOT" ]; then
361 CHROME_ROOT="$(cat "${FLAGS_chroot}${CHROME_ROOT_CONFIG}" \
362 2>/dev/null || :)"
363 CHROME_ROOT_AUTO=1
364 fi
365 if [[ -n "$CHROME_ROOT" ]]; then
366 if [[ ! -d "${CHROME_ROOT}/src" ]]; then
367 error "Not mounting chrome source"
David James76764882012-10-24 19:46:29 -0700368 rm -f "${FLAGS_chroot}${CHROME_ROOT_CONFIG}"
Mike Frysinger9a50b642011-09-20 23:37:14 -0400369 if [[ ! "$CHROME_ROOT_AUTO" ]]; then
370 exit 1
Don Garretta0e7ea12011-02-07 18:39:59 -0800371 fi
Mike Frysinger9a50b642011-09-20 23:37:14 -0400372 else
373 debug "Mounting chrome source at: $INNER_CHROME_ROOT"
David James76764882012-10-24 19:46:29 -0700374 echo $CHROME_ROOT > "${FLAGS_chroot}${CHROME_ROOT_CONFIG}"
375 setup_mount "$CHROME_ROOT" --bind "$INNER_CHROME_ROOT"
Andrew de los Reyes6d0ca162010-02-12 14:36:08 -0800376 fi
377 fi
Andrew de los Reyes5d0248f2010-02-12 16:12:31 -0800378
Mike Frysingeracc4c9b2011-09-15 18:06:25 -0400379 # Install fuse module. Skip modprobe when possible for slight
380 # speed increase when initializing the env.
381 if [ -c "${FUSE_DEVICE}" ] && ! grep -q fuse /proc/filesystems; then
David James76764882012-10-24 19:46:29 -0700382 modprobe fuse 2> /dev/null ||\
Sean Ocd8b1d12010-09-02 17:34:49 +0200383 warn "-- Note: modprobe fuse failed. gmergefs will not work"
Chris Sosa317d8eb2010-04-05 15:45:28 -0700384 fi
385
Mike Frysinger926a4b92012-06-27 15:22:28 -0400386 # Fix permissions on ccache tree. If this is a fresh chroot, then they
387 # might not be set up yet. Or if the user manually `rm -rf`-ed things,
388 # we need to reset it. Otherwise, gcc itself takes care of fixing things
389 # on demand, but only when it updates.
390 ccache_dir="${FLAGS_chroot}/var/cache/distfiles/ccache"
391 if [[ ! -d ${ccache_dir} ]]; then
David James76764882012-10-24 19:46:29 -0700392 mkdir -p -m 2775 "${ccache_dir}"
Mike Frysinger926a4b92012-06-27 15:22:28 -0400393 fi
David James76764882012-10-24 19:46:29 -0700394 find -H "${ccache_dir}" -type d -exec chmod 2775 {} + &
395 find -H "${ccache_dir}" -gid 0 -exec chgrp 250 {} + &
David James342f1562011-07-15 15:21:18 -0700396
Matt Tennant298f61a2012-06-25 21:54:33 -0700397 # Certain files get copied into the chroot when entering.
398 for fn in "${FILES_TO_COPY_TO_CHROOT[@]}"; do
David James76764882012-10-24 19:46:29 -0700399 copy_into_chroot_if_exists "${SUDO_HOME}/${fn}" "/home/${SUDO_USER}/${fn}"
Matt Tennantf7c9e772012-02-08 17:06:26 -0800400 done
Peter Mayo4411efe2012-09-21 04:41:27 -0400401 promote_api_keys
Matt Tennantd4316fe2011-08-30 12:06:42 -0700402
Mike Frysinger6601c522011-08-15 11:05:39 -0400403 # Make sure user's requested locales are available
404 # http://crosbug.com/19139
Mike Frysinger4fc9c272011-08-17 15:23:19 -0400405 # And make sure en_US{,.UTF-8} are always available as
406 # that what buildbot forces internally
407 locales=$(printf '%s\n' en_US en_US.UTF-8 ${LANG} \
Mike Frysinger6601c522011-08-15 11:05:39 -0400408 $LC_{ADDRESS,ALL,COLLATE,CTYPE,IDENTIFICATION,MEASUREMENT,MESSAGES} \
409 $LC_{MONETARY,NAME,NUMERIC,PAPER,TELEPHONE,TIME} | \
410 sort -u | sed '/^C$/d')
411 gen_locales=()
412 for l in ${locales}; do
413 if [[ ${l} == *.* ]]; then
414 enc=${l#*.}
415 else
416 enc="ISO-8859-1"
417 fi
418 case $(echo ${enc//-} | tr '[:upper:]' '[:lower:]') in
419 utf8) enc="UTF-8";;
420 esac
421 gen_locales=("${gen_locales[@]}" "${l} ${enc}")
422 done
Mike Frysinger4d258cd2011-09-15 16:17:49 -0400423 if [[ ${#gen_locales[@]} -gt 0 ]] ; then
424 # Force LC_ALL=C to workaround slow string parsing in bash
425 # with long multibyte strings. Newer setups have this fixed,
426 # but locale-gen doesn't need to be run in any locale in the
427 # first place, so just go with C to keep it fast.
David James76764882012-10-24 19:46:29 -0700428 chroot "$FLAGS_chroot" env LC_ALL=C locale-gen -q -u \
Mike Frysinger4d258cd2011-09-15 16:17:49 -0400429 -G "$(printf '%s\n' "${gen_locales[@]}")"
430 fi
Mike Frysinger6601c522011-08-15 11:05:39 -0400431
Dale Curtis98631732011-05-05 16:16:59 -0700432 # Fix permissions on shared memory to allow non-root users access to POSIX
David James76764882012-10-24 19:46:29 -0700433 # semaphores.
434 chmod -R 777 "${FLAGS_chroot}/dev/shm"
Chris Wolfe916b1f12012-04-30 16:03:06 -0400435
436 # If the private overlays are installed, gsutil can use those credentials.
Gilad Arnold264f64d2012-09-06 14:01:45 -0700437 # We're also installing credentials for use by sudoed invocations.
438 boto='src/private-overlays/chromeos-overlay/googlestorage_account.boto'
439 if [ -s "${FLAGS_trunk}/${boto}" ]; then
David Jamesfc49d8d2013-01-17 13:47:14 -0800440 if [ ! -L "${FLAGS_chroot}/home/${SUDO_USER}/.boto" ]; then
David James76764882012-10-24 19:46:29 -0700441 user_symlink "trunk/${boto}" "${FLAGS_chroot}/home/${SUDO_USER}/.boto"
Chris Wolfe916b1f12012-04-30 16:03:06 -0400442 fi
David Jamesfc49d8d2013-01-17 13:47:14 -0800443 if [ ! -L "${FLAGS_chroot}/root/.boto" ]; then
444 ln -sf "${CHROOT_TRUNK_DIR}/${boto}" "${FLAGS_chroot}/root/.boto"
Gilad Arnold264f64d2012-09-06 14:01:45 -0700445 fi
Chris Wolfe916b1f12012-04-30 16:03:06 -0400446 fi
447
448 # Have found a few chroots where ~/.gsutil is owned by root:root, probably
449 # as a result of old gsutil or tools. This causes permission errors when
450 # gsutil cp tries to create its cache files, so ensure the user can
451 # actually write to their directory.
David James76764882012-10-24 19:46:29 -0700452 gsutil_dir="${FLAGS_chroot}/home/${SUDO_USER}/.gsutil"
453 if [ -d "${gsutil_dir}" ]; then
454 chown -R ${SUDO_UID}:${SUDO_GID} "${gsutil_dir}"
Chris Wolfe916b1f12012-04-30 16:03:06 -0400455 fi
David James546747b2010-03-23 15:19:43 -0700456 ) 200>>"$LOCKFILE" || die "setup_env failed"
rspangler@google.comd74220d2009-10-09 20:56:14 +0000457}
458
rspangler@google.comd74220d2009-10-09 20:56:14 +0000459setup_env
460
Brian Harring35767822012-02-01 23:50:45 -0800461CHROOT_PASSTHRU=(
462 "BUILDBOT_BUILD=$FLAGS_build_number"
Brian Harring35767822012-02-01 23:50:45 -0800463 "CHROMEOS_RELEASE_APPID=${CHROMEOS_RELEASE_APPID:-{DEV-BUILD}}"
Brian Harring35767822012-02-01 23:50:45 -0800464 "EXTERNAL_TRUNK_PATH=${FLAGS_trunk}"
Brian Harring35767822012-02-01 23:50:45 -0800465)
Liam McLoughlin3b11b452011-03-14 16:04:07 -0700466
David James76764882012-10-24 19:46:29 -0700467# Add the whitelisted environment variables to CHROOT_PASSTHRU.
468load_environment_whitelist
469for var in "${ENVIRONMENT_WHITELIST[@]}" ; do
Brian Harring06d3c2e2012-08-23 07:35:43 -0700470 [ "${!var+set}" = "set" ] && CHROOT_PASSTHRU+=( "${var}=${!var}" )
Mario Limonciello7052ae12011-05-05 12:00:49 -0500471done
472
derat@google.com4e7a92b2009-11-21 23:44:14 +0000473# Run command or interactive shell. Also include the non-chrooted path to
474# the source trunk for scripts that may need to print it (e.g.
475# build_image.sh).
Brian Harring35767822012-02-01 23:50:45 -0800476
477if [ $FLAGS_early_make_chroot -eq $FLAGS_TRUE ]; then
478 cmd=( /bin/bash -l -c 'env "$@"' -- )
479elif [ ! -x "${FLAGS_chroot}/usr/bin/sudo" ]; then
480 # Complain that sudo is missing.
481 error "Failing since the chroot lacks sudo."
482 error "Requested enter_chroot command was: $@"
483 exit 127
484else
David James76764882012-10-24 19:46:29 -0700485 cmd=( sudo -i -u "${SUDO_USER}" )
Brian Harring35767822012-02-01 23:50:45 -0800486fi
487
David James76764882012-10-24 19:46:29 -0700488cmd+=( "${CHROOT_PASSTHRU[@]}" "$@" )
489exec chroot "${FLAGS_chroot}" "${cmd[@]}"