X-Git-Url: https://review.fuel-infra.org/gitweb?a=blobdiff_plain;f=manifests%2Finit.pp;h=597774c8338775a56e1e64c1d3a03ffe8ceb59ce;hb=60e50a9b65dec94fe20734404295e28d9e434a83;hp=8d266b8b17a8e8359b36e0c10bf816ad9203a60c;hpb=50f3cca0c67abad7168e852b58992afbdc8920bc;p=puppet-modules%2Fpuppetlabs-apt.git diff --git a/manifests/init.pp b/manifests/init.pp index 8d266b8..597774c 100644 --- a/manifests/init.pp +++ b/manifests/init.pp @@ -3,64 +3,171 @@ # This module manages the initial configuration of apt. # # Parameters: -# Both of the parameters listed here are not required in general and were +# The parameters listed here are not required in general and were # added for use cases related to development environments. # disable_keys - disables the requirement for all packages to be signed # always_apt_update - rather apt should be updated on every run (intended -# for development environments where package updates are frequent +# for development environments where package updates are frequent) +# purge_sources_list - Accepts true or false. Defaults to false If set to +# true, Puppet will purge all unmanaged entries from sources.list +# purge_sources_list_d - Accepts true or false. Defaults to false. If set +# to true, Puppet will purge all unmanaged entries from sources.list.d +# update_timeout - Overrides the exec timeout in seconds for apt-get update. +# If not set defaults to Exec's default (300) +# update_tries - Number of times that `apt-get update` will be tried. Use this +# to work around transient DNS and HTTP errors. By default, the command +# will only be run once. +# # Actions: # # Requires: -# +# puppetlabs/stdlib # Sample Usage: # class { 'apt': } + class apt( - $disable_keys = false, - $always_apt_update = false, - $proxy_host = false, - $proxy_port = '8080' + $always_apt_update = false, + $disable_keys = undef, + $proxy_host = undef, + $proxy_port = '8080', + $purge_sources_list = false, + $purge_sources_list_d = false, + $purge_preferences = false, + $purge_preferences_d = false, + $update_timeout = undef, + $update_tries = undef, + $sources = undef, + $fancy_progress = undef ) { + if $::osfamily != 'Debian' { + fail('This module only works on Debian or derivatives like Ubuntu') + } + include apt::params + include apt::update + + validate_bool($purge_sources_list, $purge_sources_list_d, + $purge_preferences, $purge_preferences_d) - $refresh_only_apt_update = $always_apt_update? { - true => false, - false => true + $sources_list_content = $purge_sources_list ? { + false => undef, + true => "# Repos managed by puppet.\n", } - package { "python-software-properties": } + if $always_apt_update == true { + Exec <| title=='apt_update' |> { + refreshonly => false, + } + } + + $root = $apt::params::root + $apt_conf_d = $apt::params::apt_conf_d + $sources_list_d = $apt::params::sources_list_d + $preferences_d = $apt::params::preferences_d + $provider = $apt::params::provider + + file { 'sources.list': + ensure => present, + path => "${root}/sources.list", + owner => root, + group => root, + mode => '0644', + content => $sources_list_content, + notify => Exec['apt_update'], + } - file { "sources.list": - path => "${apt::params::root}/sources.list", - ensure => present, - owner => root, - group => root, - mode => 644, + file { 'sources.list.d': + ensure => directory, + path => $sources_list_d, + owner => root, + group => root, + purge => $purge_sources_list_d, + recurse => $purge_sources_list_d, + notify => Exec['apt_update'], } - file { "sources.list.d": - path => "${apt::params::root}/sources.list.d", - ensure => directory, - owner => root, - group => root, + if $purge_preferences { + file { 'apt-preferences': + ensure => absent, + path => "${root}/preferences", + } } - exec { "apt_update": - command => "${apt::params::provider} update", - subscribe => [ File["sources.list"], File["sources.list.d"] ], - refreshonly => $refresh_only_apt_update, + file { 'preferences.d': + ensure => directory, + path => $preferences_d, + owner => root, + group => root, + purge => $purge_preferences_d, + recurse => $purge_preferences_d, } - if($disable_keys) { - exec { 'make-apt-insecure': - command => '/bin/echo "APT::Get::AllowUnauthenticated 1;" >> /etc/apt/apt.conf.d/99unauth', - creates => '/etc/apt/apt.conf.d/99unauth' + + case $fancy_progress { + true: { + file { '99progressbar': + ensure => present, + content => 'Dpkg::Progress-Fancy "1";', + path => "${apt_conf_d}/99progressbar", + } } + false: { + file { '99progressbar': + ensure => absent, + path => "${apt_conf_d}/99progressbar", + } + } + undef: {} # do nothing + default: { fail('Valid values for fancy_progress are true or false') } } - if($proxy_host) { - file { 'configure-apt-proxy': - path => '/etc/apt/apt.conf.d/proxy', - content => "Acquire::http::Proxy \"http://${proxy_host}:${proxy_port}\";", + case $disable_keys { + true: { + file { '99unauth': + ensure => present, + content => "APT::Get::AllowUnauthenticated 1;\n", + path => "${apt_conf_d}/99unauth", + } + } + false: { + file { '99unauth': + ensure => absent, + path => "${apt_conf_d}/99unauth", + } } + undef: { } # do nothing + default: { fail('Valid values for disable_keys are true or false') } + } + + $proxy_set = $proxy_host ? { + undef => absent, + default => present + } + + file { '01proxy': + ensure => $proxy_set, + path => "${apt_conf_d}/01proxy", + content => "Acquire::http::Proxy \"http://${proxy_host}:${proxy_port}\";\n", + notify => Exec['apt_update'], + mode => '0644', + owner => root, + group => root, + } + + file { 'old-proxy-file': + ensure => absent, + path => "${apt_conf_d}/proxy", + notify => Exec['apt_update'], + } + + # Need anchor to provide containment for dependencies. + anchor { 'apt::update': + require => Class['apt::update'], + } + + # manage sources if present + if $sources != undef { + validate_hash($sources) + create_resources('apt::source', $sources) } }