X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=ud-replicate;h=3601b326d1b41584f4ede003c377c0f79fd50880;hb=c626017071b2de3c4623df898dcf0e16f25e7272;hp=25e96d222e7dc2f3a0be309a66813d896857eb72;hpb=2b39f1aa42e3dbdc2de76154e59795694a810637;p=mirror%2Fuserdir-ldap.git diff --git a/ud-replicate b/ud-replicate index 25e96d2..3601b32 100755 --- a/ud-replicate +++ b/ud-replicate @@ -1,45 +1,126 @@ -#! /bin/sh -# The rsync source host needs to be customized.. +#! /bin/bash + +# Copyright (c) 1999-2001 Jason Gunthorpe +# Copyright (c) 2002-2003,2006 Ryan Murray +# Copyright (c) 2004-2005 Joey Schulze +# Copyright (c) 2008 Peter Palfrader +# Copyright (c) 2008 Stephen Gran +# +# This program is free software; you can redistribute it and/or modify +# it under the terms of the GNU General Public License as published by +# the Free Software Foundation; either version 2 of the License, or +# (at your option) any later version. +# +# This program is distributed in the hope that it will be useful, +# but WITHOUT ANY WARRANTY; without even the implied warranty of +# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the +# GNU General Public License for more details. +# +# You should have received a copy of the GNU General Public License +# along with this program; if not, write to the Free Software +# Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA. + set -e -exec > /dev/null 2>&1 +# Without effect on the commandline +if [ -z "$TERM" -o "$TERM" = "dumb" ] +then + exec > /dev/null 2>&1 + sleep $(( $RANDOM % 120 )) +else + verbose=-v +fi + +tempdir='' + +cleanup () +{ + rm -f lock + rm -rf $tempdir +} +PATH=/sbin:/usr/sbin:/bin:/usr/bin +export PATH HOST=`hostname -f` +SYNCHOST=`ud-config synchost`; +LOCALSYNCON=`ud-config localsyncon`; +EMAILAPPEND=`ud-config emailappend`; cd /tmp/ cd /var/lib/misc || cd /var/state/glibc/ || cd /var/db/ lockfile -r 1 -l 3600 lock -trap "rm -f lock" exit -rsync -e ssh -rp "sshdist@samosa:/var/cache/userdir-ldap/hosts/$HOST" . +trap cleanup exit + +case $HOST in +$LOCALSYNCON) + udhost= + ;; +*) + udhost="sshdist@$SYNCHOST:" + ;; +esac + +rsync ${verbose} -e 'ssh -i /etc/ssh/ssh_host_rsa_key -o PreferredAuthentications=publickey' -rp "${udhost}/var/cache/userdir-ldap/hosts/$HOST" . + makedb "$HOST/passwd.tdb" -o passwd.db.t -(umask 027 && makedb "$HOST/shadow.tdb" -o shadow.db.t) -chown root.shadow shadow.db.t; chmod 0640 shadow.db.t +if [ -s "$HOST/shadow.tdb" ] +then + (umask 027 && makedb "$HOST/shadow.tdb" -o shadow.db.t) + chown root.shadow shadow.db.t + chmod 0640 shadow.db.t + mv -f shadow.db.t shadow.db +fi makedb "$HOST/group.tdb" -o group.db.t mv -f passwd.db.t passwd.db -mv -f shadow.db.t shadow.db mv -f group.db.t group.db -#if [ -x /usr/bin/dchroot ]; then -# CHROOTS=`dchroot --listpaths` -# for c in $CHROOTS; do -# if [ -e "$c/var/lib/misc/$HOST" ]; then -# chroot "$c" makedb "/var/lib/misc/$HOST/passwd.tdb" -o /var/lib/misc/passwd.db.t -# (umask 027 && chroot "$c" makedb "/var/lib/misc/$HOST/shadow.tdb" -o /var/lib/misc/shadow.db.t) -# chown root.shadow "$c/var/lib/misc/shadow.db.t" -# chmod 0640 "$c/var/lib/misc/shadow.db.t" -# chroot "$c" makedb "/var/lib/misc/$HOST/group.tdb" -o /var/lib/misc/group.db.t -# mv -f "$c/var/lib/misc/passwd.db.t" "$c/var/lib/misc/passwd.db" -# mv -f "$c/var/lib/misc/shadow.db.t" "$c/var/lib/misc/shadow.db" -# mv -f "$c/var/lib/misc/group.db.t" "$c/var/lib/misc/group.db" -# fi -# done -#fi -ln -sf "$HOST/ssh-rsa-shadow" . -ln -sf "$HOST/ssh_known_hosts" . -if [ -d "/etc/exim" -a -e "$HOST/bsmtp" ]; then - if perl -e 'exit !((stat "/etc/exim/bsmtp")[9] < time()-3600)'; then - cp "$HOST/bsmtp" /etc/exim/bsmtp +for a in $HOST/ssh-rsa-shadow $HOST/ssh_known_hosts; do + ln -sf $a . +done +ln -sf `pwd -P`/ssh-rsa-shadow /etc/ssh +ln -sf `pwd -P`/ssh_known_hosts /etc/ssh + +if [ -e ${HOST}/ssh-keys.tar.gz ]; then + export TMPDIR='/tmp/' + tempdir=$(mktemp -d) + tar -C "$tempdir" -xf ${HOST}/ssh-keys.tar.gz + mkdir -p userkeys + chmod 755 $tempdir + rsync -a --delete-after $tempdir/ userkeys/ +fi + +CHROOTS="" +if [ -x /usr/bin/dchroot ]; then + CHROOTS=`dchroot --listpaths` +elif [ -x /usr/bin/dchroot-dsa ]; then + CHROOTS=$(dchroot-dsa -i | grep Location | awk '{print $2}') +fi +if [ -n "$CHROOTS" ]; then + for c in $CHROOTS; do + if [ -x "$c/usr/bin/makedb" ] + then + + test ! -d "$c/var/lib/misc/$HOST" || mkdir -p "$c/var/lib/misc/$HOST" + + rsync -a ${verbose} $HOST/group.tdb $HOST/passwd.tdb $HOST/ssh* "$c/var/lib/misc/$HOST" + + test ! -f "$c/var/lib/misc/$HOST/shadow.tdb" || rm -f "$c/var/lib/misc/$HOST/shadow.tdb" + test ! -f "$c/var/lib/misc/shadow.db" || rm -f "$c/var/lib/misc/shadow.db" + + chroot "$c" makedb "/var/lib/misc/$HOST/passwd.tdb" -o /var/lib/misc/passwd.db.t + chroot "$c" makedb "/var/lib/misc/$HOST/group.tdb" -o /var/lib/misc/group.db.t + mv -f "$c/var/lib/misc/passwd.db.t" "$c/var/lib/misc/passwd.db" + mv -f "$c/var/lib/misc/group.db.t" "$c/var/lib/misc/group.db" + ln -sf "$HOST/ssh_known_hosts" "$c/var/lib/misc/" + ln -sf ../../var/lib/misc/ssh_known_hosts "$c/etc/ssh" + fi + done +fi + +if [ -d "/etc/exim4" -a -e "$HOST/bsmtp" ]; then + if perl -e 'exit !((stat "/etc/exim4/bsmtp")[9] < time()-3600)'; then + cp "$HOST/bsmtp" /etc/exim4/bsmtp fi fi if [ -d "/etc/postfix" -a -f "$HOST/forward-alias" ]; then - sed -e 's/:/@debian.org/' $HOST/forward-alias > /etc/postfix/debian + sed -e "s/:/@$EMAILAPPEND/" $HOST/forward-alias > /etc/postfix/debian /usr/sbin/postmap hash:/etc/postfix/debian < /etc/postfix/debian || true fi