1 class buildd ($ensure=present) {
2 # Do nothing until we get the buildd user from ldap
3 if $::buildd_user_exists {
10 package { 'libsbuild-perl':
13 before => Package['sbuild']
16 package { 'apt-transport-https':
19 if $ensure == present {
23 file { '/etc/dupload.conf':
24 source => 'puppet:///modules/buildd/dupload.conf',
25 require => Package['dupload'],
30 file { '/etc/buildd/buildd.conf':
31 source => 'puppet:///modules/buildd/buildd.conf',
32 require => Package['buildd'],
34 if ($::lsbmajdistrelease >= 8) {
35 file { '/etc/sbuild/sbuild.conf':
36 source => 'puppet:///modules/buildd/sbuild.conf',
37 require => Package['sbuild'],
40 file { '/etc/sbuild/sbuild.conf':
41 source => 'puppet:///modules/buildd/sbuild.conf.wheezy',
42 require => Package['sbuild'],
45 include ferm::ftp_conntrack
48 site::aptrepo { 'buildd':
52 $suite = $::lsbdistcodename ? {
53 wheezy => $::lsbdistcodename,
54 jessie => $::lsbdistcodename,
55 stretch => $::lsbdistcodename,
60 $buildd_apt_url = $::debarchitecture ? {
61 /^sparc$/ => 'http://buildd.debian.org/apt/',
62 default => 'https://buildd.debian.org/apt/',
65 site::aptrepo { 'buildd.debian.org':
66 key => 'puppet:///modules/buildd/buildd.debian.org.gpg',
67 url => $buildd_apt_url,
70 require => Package['apt-transport-https'],
73 if ($::lsbmajdistrelease >= 8) {
74 file { '/etc/apt/apt.conf.d/puppet-https-buildd':
75 content => "Acquire::https::buildd.debian.org::CaInfo \"/etc/ssl/ca-debian/ca-certificates.crt\";\n",
78 file { '/etc/apt/apt.conf.d/puppet-https-buildd':
79 content => "Acquire::https::buildd.debian.org::CaInfo \"/etc/ssl/servicecerts/buildd.debian.org.crt\";\n",
84 file { '/etc/apt/preferences.d/buildd.debian.org':
87 file { '/etc/apt/preferences.d/buildd':
90 file { '/etc/cron.d/dsa-buildd':
91 source => 'puppet:///modules/buildd/cron.d-dsa-buildd',
92 require => Package['debian.org']
95 if ($::kernel == 'Linux') {
96 package { 'python-psutil':
99 if ($::lsbmajdistrelease >= 8) {
100 file { '/usr/local/sbin/buildd-schroot-aptitude-kill':
101 source => 'puppet:///modules/buildd/buildd-schroot-aptitude-kill',
105 file { '/usr/local/sbin/buildd-schroot-aptitude-kill':
106 source => 'puppet:///modules/buildd/buildd-schroot-aptitude-kill.wheezy',
111 file { '/usr/local/sbin/buildd-schroot-aptitude-kill':
112 source => 'puppet:///modules/buildd/buildd-schroot-aptitude-kill.squeeze',
116 file { '/etc/cron.d/puppet-buildd-aptitude':
117 content => "*/5 * * * * root /usr/local/sbin/buildd-schroot-aptitude-kill\n",
121 file { '/etc/cron.d/puppet-update-buildd-schroots':
122 content => "13 21 * * 0,3 root PATH=/sbin:/usr/sbin:/bin:/usr/bin:/usr/local/sbin:/usr/local/bin setup-all-dchroots buildd\n",
126 file { '/home/buildd':
132 file { '/home/buildd/build':
138 file { '/home/buildd/logs':
144 file { '/home/buildd/old-logs':
150 file { '/home/buildd/upload-security':
156 file { '/home/buildd/stats':
162 file { '/home/buildd/stats/graphs':
168 file { '/home/buildd/upload':
174 file { '/home/buildd/.forward':
175 content => "|/usr/bin/buildd-mail\n",
179 file { '/home/buildd/.gnupg':
185 file { '/home/buildd/.gnupg/gpg.conf':
186 content => "personal-digest-preferences SHA512\n",
192 exec { 'create-buildd-key':
193 command => '/bin/su - buildd -c \'mkdir -p -m 02700 .ssh && ssh-keygen -C "`whoami`@`hostname` (`date +%Y-%m-%d`)" -P "" -f .ssh/id_rsa -q\'',
194 onlyif => '/usr/bin/getent passwd buildd > /dev/null && ! [ -e /home/buildd/.ssh/id_rsa ]'
199 exec { 'add-buildd-user-to-sbuild':
200 command => 'adduser buildd sbuild',
201 onlyif => "getent group sbuild > /dev/null && ! getent group sbuild | grep '\\<buildd\\>' > /dev/null"