PageRenderTime 24ms CodeModel.GetById 22ms RepoModel.GetById 1ms app.codeStats 0ms

/build.sh

https://gitlab.com/evandro-crr/seccom_os
Shell | 274 lines | 206 code | 47 blank | 21 comment | 13 complexity | e0c5c95db9950d7e194732704a5273bb MD5 | raw file
  1. #!/bin/bash
  2. set -e -u
  3. iso_name=seccom
  4. iso_label="SECCOM_$(date +%Y%m)"
  5. iso_version=$(date +%Y.%m.%d)
  6. install_dir=arch
  7. work_dir=work
  8. out_dir=out
  9. gpg_key=
  10. arch=$(uname -m)
  11. verbose=""
  12. script_path=$(readlink -f ${0%/*})
  13. _usage ()
  14. {
  15. echo "usage ${0} [options]"
  16. echo
  17. echo " General options:"
  18. echo " -N <iso_name> Set an iso filename (prefix)"
  19. echo " Default: ${iso_name}"
  20. echo " -V <iso_version> Set an iso version (in filename)"
  21. echo " Default: ${iso_version}"
  22. echo " -L <iso_label> Set an iso label (disk label)"
  23. echo " Default: ${iso_label}"
  24. echo " -D <install_dir> Set an install_dir (directory inside iso)"
  25. echo " Default: ${install_dir}"
  26. echo " -w <work_dir> Set the working directory"
  27. echo " Default: ${work_dir}"
  28. echo " -o <out_dir> Set the output directory"
  29. echo " Default: ${out_dir}"
  30. echo " -v Enable verbose output"
  31. echo " -h This help message"
  32. exit ${1}
  33. }
  34. # Helper function to run make_*() only one time per architecture.
  35. run_once() {
  36. if [[ ! -e ${work_dir}/build.${1}_${arch} ]]; then
  37. $1
  38. touch ${work_dir}/build.${1}_${arch}
  39. fi
  40. }
  41. # Setup custom pacman.conf with current cache directories.
  42. make_pacman_conf() {
  43. local _cache_dirs
  44. _cache_dirs=($(pacman -v 2>&1 | grep '^Cache Dirs:' | sed 's/Cache Dirs:\s*//g'))
  45. sed -r "s|^#?\\s*CacheDir.+|CacheDir = $(echo -n ${_cache_dirs[@]})|g" ${script_path}/pacman.conf > ${work_dir}/pacman.conf
  46. }
  47. # Base installation, plus needed packages (airootfs)
  48. make_basefs() {
  49. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" init
  50. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" -p "haveged intel-ucode memtest86+ mkinitcpio-nfs-utils nbd zsh" install
  51. }
  52. # Additional packages (airootfs)
  53. make_packages() {
  54. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" -p "$(grep -h -v ^# ${script_path}/packages.{both,${arch}})" install
  55. }
  56. # Needed packages for x86_64 EFI boot
  57. make_packages_efi() {
  58. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" -p "efitools" install
  59. }
  60. # Copy mkinitcpio archiso hooks and build initramfs (airootfs)
  61. make_setup_mkinitcpio() {
  62. local _hook
  63. mkdir -p ${work_dir}/${arch}/airootfs/etc/initcpio/hooks
  64. mkdir -p ${work_dir}/${arch}/airootfs/etc/initcpio/install
  65. for _hook in archiso archiso_shutdown archiso_pxe_common archiso_pxe_nbd archiso_pxe_http archiso_pxe_nfs archiso_loop_mnt; do
  66. cp /usr/lib/initcpio/hooks/${_hook} ${work_dir}/${arch}/airootfs/etc/initcpio/hooks
  67. cp /usr/lib/initcpio/install/${_hook} ${work_dir}/${arch}/airootfs/etc/initcpio/install
  68. done
  69. sed -i "s|/usr/lib/initcpio/|/etc/initcpio/|g" ${work_dir}/${arch}/airootfs/etc/initcpio/install/archiso_shutdown
  70. cp /usr/lib/initcpio/install/archiso_kms ${work_dir}/${arch}/airootfs/etc/initcpio/install
  71. cp /usr/lib/initcpio/archiso_shutdown ${work_dir}/${arch}/airootfs/etc/initcpio
  72. cp ${script_path}/mkinitcpio.conf ${work_dir}/${arch}/airootfs/etc/mkinitcpio-archiso.conf
  73. gnupg_fd=
  74. if [[ ${gpg_key} ]]; then
  75. gpg --export ${gpg_key} >${work_dir}/gpgkey
  76. exec 17<>${work_dir}/gpgkey
  77. fi
  78. ARCHISO_GNUPG_FD=${gpg_key:+17} setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" -r 'mkinitcpio -c /etc/mkinitcpio-archiso.conf -k /boot/vmlinuz-linux -g /boot/archiso.img' run
  79. if [[ ${gpg_key} ]]; then
  80. exec 17<&-
  81. fi
  82. }
  83. # Customize installation (airootfs)
  84. make_customize_airootfs() {
  85. cp -af ${script_path}/airootfs ${work_dir}/${arch}
  86. curl -o ${work_dir}/${arch}/airootfs/etc/pacman.d/mirrorlist 'https://www.archlinux.org/mirrorlist/?country=all&protocol=http&use_mirror_status=on'
  87. lynx -dump -nolist 'https://wiki.archlinux.org/index.php/Installation_Guide?action=render' >> ${work_dir}/${arch}/airootfs/root/install.txt
  88. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}/${arch}" -C "${work_dir}/pacman.conf" -D "${install_dir}" -r '/root/customize_airootfs.sh' run
  89. rm ${work_dir}/${arch}/airootfs/root/customize_airootfs.sh
  90. }
  91. # Prepare kernel/initramfs ${install_dir}/boot/
  92. make_boot() {
  93. mkdir -p ${work_dir}/iso/${install_dir}/boot/${arch}
  94. cp ${work_dir}/${arch}/airootfs/boot/archiso.img ${work_dir}/iso/${install_dir}/boot/${arch}/archiso.img
  95. cp ${work_dir}/${arch}/airootfs/boot/vmlinuz-linux ${work_dir}/iso/${install_dir}/boot/${arch}/vmlinuz
  96. }
  97. # Add other aditional/extra files to ${install_dir}/boot/
  98. make_boot_extra() {
  99. cp ${work_dir}/${arch}/airootfs/boot/memtest86+/memtest.bin ${work_dir}/iso/${install_dir}/boot/memtest
  100. cp ${work_dir}/${arch}/airootfs/usr/share/licenses/common/GPL2/license.txt ${work_dir}/iso/${install_dir}/boot/memtest.COPYING
  101. cp ${work_dir}/${arch}/airootfs/boot/intel-ucode.img ${work_dir}/iso/${install_dir}/boot/intel_ucode.img
  102. cp ${work_dir}/${arch}/airootfs/usr/share/licenses/intel-ucode/LICENSE ${work_dir}/iso/${install_dir}/boot/intel_ucode.LICENSE
  103. }
  104. # Prepare /${install_dir}/boot/syslinux
  105. make_syslinux() {
  106. mkdir -p ${work_dir}/iso/${install_dir}/boot/syslinux
  107. for _cfg in ${script_path}/syslinux/*.cfg; do
  108. sed "s|%ARCHISO_LABEL%|${iso_label}|g;
  109. s|%INSTALL_DIR%|${install_dir}|g" ${_cfg} > ${work_dir}/iso/${install_dir}/boot/syslinux/${_cfg##*/}
  110. done
  111. cp ${work_dir}/${arch}/airootfs/usr/lib/syslinux/bios/*.c32 ${work_dir}/iso/${install_dir}/boot/syslinux
  112. cp ${work_dir}/${arch}/airootfs/usr/lib/syslinux/bios/lpxelinux.0 ${work_dir}/iso/${install_dir}/boot/syslinux
  113. }
  114. # Prepare /isolinux
  115. make_isolinux() {
  116. mkdir -p ${work_dir}/iso/isolinux
  117. sed "s|%INSTALL_DIR%|${install_dir}|g" ${script_path}/isolinux/isolinux.cfg > ${work_dir}/iso/isolinux/isolinux.cfg
  118. cp ${work_dir}/${arch}/airootfs/usr/lib/syslinux/bios/isolinux.bin ${work_dir}/iso/isolinux/
  119. cp ${work_dir}/${arch}/airootfs/usr/lib/syslinux/bios/isohdpfx.bin ${work_dir}/iso/isolinux/
  120. cp ${work_dir}/${arch}/airootfs/usr/lib/syslinux/bios/ldlinux.c32 ${work_dir}/iso/isolinux/
  121. }
  122. # Prepare /EFI
  123. make_efi() {
  124. mkdir -p ${work_dir}/iso/EFI/boot
  125. cp ${work_dir}/x86_64/airootfs/usr/share/efitools/efi/PreLoader.efi ${work_dir}/iso/EFI/boot/bootx64.efi
  126. cp ${work_dir}/x86_64/airootfs/usr/share/efitools/efi/HashTool.efi ${work_dir}/iso/EFI/boot/
  127. cp ${work_dir}/x86_64/airootfs/usr/lib/systemd/boot/efi/systemd-bootx64.efi ${work_dir}/iso/EFI/boot/loader.efi
  128. mkdir -p ${work_dir}/iso/loader/entries
  129. cp ${script_path}/efiboot/loader/loader.conf ${work_dir}/iso/loader/
  130. cp ${script_path}/efiboot/loader/entries/uefi-shell-v2-x86_64.conf ${work_dir}/iso/loader/entries/
  131. cp ${script_path}/efiboot/loader/entries/uefi-shell-v1-x86_64.conf ${work_dir}/iso/loader/entries/
  132. sed "s|%ARCHISO_LABEL%|${iso_label}|g;
  133. s|%INSTALL_DIR%|${install_dir}|g" \
  134. ${script_path}/efiboot/loader/entries/archiso-x86_64-usb.conf > ${work_dir}/iso/loader/entries/archiso-x86_64.conf
  135. # EFI Shell 2.0 for UEFI 2.3+
  136. curl -o ${work_dir}/iso/EFI/shellx64_v2.efi https://raw.githubusercontent.com/tianocore/edk2/master/ShellBinPkg/UefiShell/X64/Shell.efi
  137. # EFI Shell 1.0 for non UEFI 2.3+
  138. curl -o ${work_dir}/iso/EFI/shellx64_v1.efi https://raw.githubusercontent.com/tianocore/edk2/master/EdkShellBinPkg/FullShell/X64/Shell_Full.efi
  139. }
  140. # Prepare efiboot.img::/EFI for "El Torito" EFI boot mode
  141. make_efiboot() {
  142. mkdir -p ${work_dir}/iso/EFI/archiso
  143. truncate -s 40M ${work_dir}/iso/EFI/archiso/efiboot.img
  144. mkfs.fat -n ARCHISO_EFI ${work_dir}/iso/EFI/archiso/efiboot.img
  145. mkdir -p ${work_dir}/efiboot
  146. mount ${work_dir}/iso/EFI/archiso/efiboot.img ${work_dir}/efiboot
  147. mkdir -p ${work_dir}/efiboot/EFI/archiso
  148. cp ${work_dir}/iso/${install_dir}/boot/x86_64/vmlinuz ${work_dir}/efiboot/EFI/archiso/vmlinuz.efi
  149. cp ${work_dir}/iso/${install_dir}/boot/x86_64/archiso.img ${work_dir}/efiboot/EFI/archiso/archiso.img
  150. cp ${work_dir}/iso/${install_dir}/boot/intel_ucode.img ${work_dir}/efiboot/EFI/archiso/intel_ucode.img
  151. mkdir -p ${work_dir}/efiboot/EFI/boot
  152. cp ${work_dir}/x86_64/airootfs/usr/share/efitools/efi/PreLoader.efi ${work_dir}/efiboot/EFI/boot/bootx64.efi
  153. cp ${work_dir}/x86_64/airootfs/usr/share/efitools/efi/HashTool.efi ${work_dir}/efiboot/EFI/boot/
  154. cp ${work_dir}/x86_64/airootfs/usr/lib/systemd/boot/efi/systemd-bootx64.efi ${work_dir}/efiboot/EFI/boot/loader.efi
  155. mkdir -p ${work_dir}/efiboot/loader/entries
  156. cp ${script_path}/efiboot/loader/loader.conf ${work_dir}/efiboot/loader/
  157. cp ${script_path}/efiboot/loader/entries/uefi-shell-v2-x86_64.conf ${work_dir}/efiboot/loader/entries/
  158. cp ${script_path}/efiboot/loader/entries/uefi-shell-v1-x86_64.conf ${work_dir}/efiboot/loader/entries/
  159. sed "s|%ARCHISO_LABEL%|${iso_label}|g;
  160. s|%INSTALL_DIR%|${install_dir}|g" \
  161. ${script_path}/efiboot/loader/entries/archiso-x86_64-cd.conf > ${work_dir}/efiboot/loader/entries/archiso-x86_64.conf
  162. cp ${work_dir}/iso/EFI/shellx64_v2.efi ${work_dir}/efiboot/EFI/
  163. cp ${work_dir}/iso/EFI/shellx64_v1.efi ${work_dir}/efiboot/EFI/
  164. umount -d ${work_dir}/efiboot
  165. }
  166. # Build airootfs filesystem image
  167. make_prepare() {
  168. cp -a -l -f ${work_dir}/${arch}/airootfs ${work_dir}
  169. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}" -D "${install_dir}" pkglist
  170. setarch ${arch} mkarchiso ${verbose} -w "${work_dir}" -D "${install_dir}" ${gpg_key:+-g ${gpg_key}} prepare
  171. rm -rf ${work_dir}/airootfs
  172. # rm -rf ${work_dir}/${arch}/airootfs (if low space, this helps)
  173. }
  174. # Build ISO
  175. make_iso() {
  176. mkarchiso ${verbose} -w "${work_dir}" -D "${install_dir}" -L "${iso_label}" -o "${out_dir}" iso "${iso_name}-${iso_version}.iso"
  177. }
  178. if [[ ${EUID} -ne 0 ]]; then
  179. echo "This script must be run as root."
  180. _usage 1
  181. fi
  182. if [[ ${arch} != x86_64 ]]; then
  183. echo "This script needs to be run on x86_64"
  184. _usage 1
  185. fi
  186. while getopts 'N:V:L:D:w:o:g:vh' arg; do
  187. case "${arg}" in
  188. N) iso_name="${OPTARG}" ;;
  189. V) iso_version="${OPTARG}" ;;
  190. L) iso_label="${OPTARG}" ;;
  191. D) install_dir="${OPTARG}" ;;
  192. w) work_dir="${OPTARG}" ;;
  193. o) out_dir="${OPTARG}" ;;
  194. g) gpg_key="${OPTARG}" ;;
  195. v) verbose="-v" ;;
  196. h) _usage 0 ;;
  197. *)
  198. echo "Invalid argument '${arg}'"
  199. _usage 1
  200. ;;
  201. esac
  202. done
  203. mkdir -p ${work_dir}
  204. run_once make_pacman_conf
  205. # Do all stuff for each airootfs
  206. for arch in x86_64; do
  207. run_once make_basefs
  208. run_once make_packages
  209. done
  210. run_once make_packages_efi
  211. for arch in x86_64; do
  212. run_once make_setup_mkinitcpio
  213. run_once make_customize_airootfs
  214. done
  215. for arch in x86_64; do
  216. run_once make_boot
  217. done
  218. # Do all stuff for "iso"
  219. run_once make_boot_extra
  220. run_once make_syslinux
  221. run_once make_isolinux
  222. run_once make_efi
  223. run_once make_efiboot
  224. for arch in x86_64; do
  225. run_once make_prepare
  226. done
  227. run_once make_iso