1 class buildd ($ensure=present) {
2 # Do nothing until we get the buildd user from ldap
3 if $::buildd_user_exists {
10 package { 'libsbuild-perl':
13 before => Package['sbuild']
16 if $ensure == present {
20 file { '/etc/dupload.conf':
21 source => 'puppet:///modules/buildd/dupload.conf',
22 require => Package['dupload'],
27 file { '/etc/buildd/buildd.conf':
28 source => 'puppet:///modules/buildd/buildd.conf',
29 require => Package['buildd'],
31 file { '/etc/sbuild/sbuild.conf':
32 source => 'puppet:///modules/buildd/sbuild.conf',
33 require => Package['sbuild'],
35 include ferm::ftp_conntrack
38 if (versioncmp($::lsbmajdistrelease, '9') >= 0) {
39 site::aptrepo { 'buildd.debian.org':
42 file { '/etc/apt/apt.conf.d/puppet-https-buildd':
46 site::aptrepo { 'buildd.debian.org':
47 key => 'puppet:///modules/buildd/buildd.debian.org.gpg',
48 url => 'https://apt.buildd.debian.org/',
51 require => Package['apt-transport-https'],
53 file { '/etc/apt/apt.conf.d/puppet-https-buildd':
54 content => "Acquire::https::apt.buildd.debian.org::CaInfo \"/etc/ssl/ca-debian/ca-certificates.crt\";\n",
58 file { '/etc/cron.d/dsa-buildd': ensure => absent, }
59 concat::fragment { 'dsa-puppet-stuff--buildd':
60 target => '/etc/cron.d/dsa-puppet-stuff',
61 source => 'puppet:///modules/buildd/cron.d-dsa-buildd',
62 require => Package['debian.org']
65 package { 'python-psutil':
68 file { '/usr/local/sbin/buildd-schroot-aptitude-kill':
69 source => 'puppet:///modules/buildd/buildd-schroot-aptitude-kill',
73 file { '/etc/cron.d/puppet-buildd-aptitude': ensure => absent }
74 concat::fragment { 'dsa-puppet-stuff--buildd-aptitude-killer':
75 target => '/etc/cron.d/dsa-puppet-stuff',
77 */5 * * * * root /usr/local/sbin/buildd-schroot-aptitude-kill
86 file { '/etc/cron.d/puppet-update-buildd-schroots': ensure => absent }
88 concat::fragment { 'dsa-puppet-stuff--buildd-update-schroots':
89 target => '/etc/cron.d/dsa-puppet-stuff',
91 13 22 * * 0,3 root PATH=/sbin:/usr/sbin:/bin:/usr/bin:/usr/local/sbin:/usr/local/bin setup-all-dchroots buildd
96 file { '/home/buildd':
102 file { '/home/buildd/build':
108 file { '/home/buildd/logs':
114 file { '/home/buildd/old-logs':
120 file { '/home/buildd/upload-security':
126 file { '/home/buildd/stats':
132 file { '/home/buildd/stats/graphs':
138 file { '/home/buildd/upload':
144 file { '/home/buildd/.forward':
145 content => "|/usr/bin/buildd-mail\n",
149 file { '/home/buildd/.gnupg':
155 file { '/home/buildd/.gnupg/gpg.conf':
156 content => "personal-digest-preferences SHA512\n",
161 file { '/home/buildd/.profile':
163 export XDG_RUNTIME_DIR="/run/user/$(id -u)"
164 export DBUS_SESSION_BUS_ADDRESS="unix:path=${XDG_RUNTIME_DIR}/bus"
171 exec { 'create-buildd-key':
172 command => '/bin/su - buildd -c \'mkdir -p -m 02700 .ssh && ssh-keygen -C "`whoami`@`hostname` (`date +%Y-%m-%d`)" -P "" -f .ssh/id_rsa -q\'',
173 onlyif => '/usr/bin/getent passwd buildd > /dev/null && ! [ -e /home/buildd/.ssh/id_rsa ]'
178 exec { 'add-buildd-user-to-sbuild':
179 command => 'adduser buildd sbuild',
180 onlyif => "getent group sbuild > /dev/null && ! getent group sbuild | grep '\\<buildd\\>' > /dev/null"
183 # Enable lingering for pybuildd
184 file { '/var/lib/systemd/linger':
188 file { "/var/lib/systemd/linger/buildd":
192 # And persistent journald storage
193 exec {'mkdir -p /etc/systemd/journald.conf.d':
194 unless => 'test -d /etc/systemd/journald.conf.d',
196 file { '/etc/systemd/journald.conf.d/persistency.conf':
197 source => 'puppet:///modules/systemd/persistency.conf',