1 class buildd ($ensure=present) {
2 # Do nothing until we get the buildd user from ldap
3 if $::buildd_user_exists {
16 # sbuild configuration, including chroots
24 package { 'libsbuild-perl':
27 before => Package['sbuild']
29 file { '/etc/sbuild/sbuild.conf':
30 source => 'puppet:///modules/buildd/sbuild.conf',
31 require => Package['sbuild'],
34 concat::fragment { 'dsa-puppet-stuff--buildd-update-schroots':
35 target => '/etc/cron.d/dsa-puppet-stuff',
37 13 22 * * 0,3 root PATH=/sbin:/usr/sbin:/bin:/usr/bin:/usr/local/sbin:/usr/local/bin setup-all-dchroots buildd
41 exec { 'add-buildd-user-to-sbuild':
42 command => 'adduser buildd sbuild',
43 onlyif => "getent group sbuild > /dev/null && ! getent group sbuild | grep '\\<buildd\\>' > /dev/null"
48 # dupload configuration
53 file { '/etc/dupload.conf':
54 source => 'puppet:///modules/buildd/dupload.conf',
55 require => Package['dupload'],
57 include ferm::ftp_conntrack
63 package { 'python-psutil':
66 file { '/usr/local/sbin/buildd-schroot-aptitude-kill':
67 source => 'puppet:///modules/buildd/buildd-schroot-aptitude-kill',
71 concat::fragment { 'dsa-puppet-stuff--buildd-aptitude-killer':
72 target => '/etc/cron.d/dsa-puppet-stuff',
74 */5 * * * * root /usr/local/sbin/buildd-schroot-aptitude-kill
80 # GPG/SSH key generation
82 file { '/home/buildd/.gnupg':
88 file { '/home/buildd/.gnupg/gpg.conf':
89 content => "personal-digest-preferences SHA512\n",
95 exec { 'create-buildd-key':
96 command => '/bin/su - buildd -c \'mkdir -p -m 02700 .ssh && ssh-keygen -C "`whoami`@`hostname` (`date +%Y-%m-%d`)" -P "" -f .ssh/id_rsa -q\'',
97 onlyif => '/usr/bin/getent passwd buildd > /dev/null && ! [ -e /home/buildd/.ssh/id_rsa ]'
102 # buildd/pybuildd configuration
104 if $::hostname in [x86-grnet-01,x86-grnet-02,zani] {
106 # pybuildd configuration
112 package { ['python3-retrying', 'python3-yaml']:
115 file { '/home/buildd/.profile':
117 export XDG_RUNTIME_DIR="/run/user/$(id -u)"
118 export DBUS_SESSION_BUS_ADDRESS="unix:path=${XDG_RUNTIME_DIR}/bus"
123 file { '/home/buildd/logs':
129 file { '/var/lib/systemd/linger':
133 file { "/var/lib/systemd/linger/buildd":
136 file { '/etc/systemd/journald.conf.d':
140 file { '/etc/systemd/journald.conf.d/persistency.conf':
141 source => 'puppet:///modules/dsa_systemd/persistency.conf',
144 # Make sure that the build directory have the correct permissions.
145 # This should go away once pybuildd issue #3 is solved.
146 file { '/home/buildd/build':
152 # work around https://salsa.debian.org/wb-team/pybuildd/issues/11
153 concat::fragment { 'dsa-puppet-stuff--pybuildd-expire-logs':
154 target => '/etc/cron.d/dsa-puppet-stuff',
156 @daily buildd [ -d ~buildd/logs ] && find ~buildd/logs -type f -mtime +90 -delete
161 # buildd configuration
163 file { '/home/buildd/build':
169 file { '/home/buildd/logs':
175 file { '/home/buildd/old-logs':
181 file { '/home/buildd/upload-security':
187 file { '/home/buildd/stats':
193 file { '/home/buildd/stats/graphs':
199 file { '/home/buildd/upload':
205 file { '/home/buildd/.forward':
206 content => "|/usr/bin/buildd-mail\n",
214 file { '/etc/buildd/buildd.conf':
215 source => 'puppet:///modules/buildd/buildd.conf',
216 require => Package['buildd'],
219 concat::fragment { 'dsa-puppet-stuff--buildd':
220 target => '/etc/cron.d/dsa-puppet-stuff',
221 source => 'puppet:///modules/buildd/cron.d-dsa-buildd',
222 require => Package['debian.org']