X-Git-Url: https://review.fuel-infra.org/gitweb?a=blobdiff_plain;f=manifests%2Finit.pp;h=5d9baa29edfdc4b47301775fe2c1086d159a6441;hb=f2c3956fd12ff980615cdc07b9ff884b31af2f58;hp=5f33fdba703920ddf94d2ea540ffc4ef2ed3497c;hpb=83ae566b084c88e2778ea0220c89a2ec07b7ba4e;p=puppet-modules%2Fpuppetlabs-apt.git diff --git a/manifests/init.pp b/manifests/init.pp index 5f33fdb..5d9baa2 100644 --- a/manifests/init.pp +++ b/manifests/init.pp @@ -1,112 +1,100 @@ -# == Class: apt -# -# This module manages the initial configuration of apt. -# -# The parameters listed here are not required in general and were -# added for use cases related to development environments. -# -# === Parameters -# -# [*disable_keys*] -# Disables the requirement for all packages to be signed -# -# [*always_apt_update*] -# Rather apt should be updated on every run (intended -# for development environments where package updates are frequent) -# -# [*apt_update_frequency*] -# String: Supported values: -# **always**: Will fire `apt-get update` at every puppet run. Intended to -# deprecate the `always_apt_update` parameter. -# *daily**: Trigger `apt-get update` if the value of the fact -# `apt_update_last_success` is less than current epoch time - 86400. -# *notifying the apt_update exec will trigger apt-get update regardless* -# *weekly**: Trigger `apt-get update` if the value of the fact -# `apt_update_last_success` is less than current epoch time - 604800. -# *notifying the apt_update exec will trigger apt-get update regardless* -# *reluctantly**: *Default* only run apt-get update if the exec resource `apt_update` is notified. -# -# [*purge_sources_list*] -# Accepts true or false. Defaults to false If set to -# true, Puppet will purge all unmanaged entries from sources.list -# -# [*purge_sources_list_d*] -# Accepts true or false. Defaults to false. If set -# to true, Puppet will purge all unmanaged entries from sources.list.d -# -# [*update_timeout*] -# Overrides the exec timeout in seconds for apt-get update. -# If not set defaults to Exec's default (300) -# -# [*update_tries*] -# Number of times that `apt-get update` will be tried. Use this -# to work around transient DNS and HTTP errors. By default, the command -# will only be run once. -# -# === Examples -# -# class { 'apt': } -# -# === Requires -# -# puppetlabs/stdlib >= 2.2.1 # class apt( - $always_apt_update = false, - $apt_update_frequency = 'reluctantly', - $disable_keys = undef, - $proxy_host = undef, - $proxy_port = '8080', - $purge_sources_list = false, - $purge_sources_list_d = false, - $purge_preferences = false, - $purge_preferences_d = false, - $update_timeout = undef, - $update_tries = undef, - $sources = undef, - $fancy_progress = undef -) { - - if $::osfamily != 'Debian' { - fail('This module only works on Debian or derivatives like Ubuntu') - } + $update = {}, + $purge = {}, + $proxy = {}, + $sources = {}, + $keys = {}, + $ppas = {}, + $settings = {}, +) inherits ::apt::params { $frequency_options = ['always','daily','weekly','reluctantly'] - validate_re($apt_update_frequency, $frequency_options) - include apt::params + validate_hash($update) + if $update['frequency'] { + validate_re($update['frequency'], $frequency_options) + } + if $update['timeout'] { + unless is_integer($update['timeout']) { + fail('timeout value for update must be an integer') + } + } + if $update['tries'] { + unless is_integer($update['tries']) { + fail('tries value for update must be an integer') + } + } + + $_update = merge($::apt::update_defaults, $update) include apt::update - validate_bool($purge_sources_list, $purge_sources_list_d, - $purge_preferences, $purge_preferences_d) + validate_hash($purge) + if $purge['sources.list'] { + validate_bool($purge['sources.list']) + } + if $purge['sources.list.d'] { + validate_bool($purge['sources.list.d']) + } + if $purge['preferences'] { + validate_bool($purge['preferences']) + } + if $purge['preferences.d'] { + validate_bool($purge['preferences.d']) + } + + $_purge = merge($::apt::purge_defaults, $purge) + + validate_hash($proxy) + if $proxy['host'] { + validate_string($proxy['host']) + } + if $proxy['port'] { + unless is_integer($proxy['port']) { + fail('$proxy port must be an integer') + } + } + if $proxy['https'] { + validate_bool($proxy['https']) + } + + $_proxy = merge($apt::proxy_defaults, $proxy) + + validate_hash($sources) + validate_hash($keys) + validate_hash($settings) + validate_hash($ppas) + + if $proxy['host'] { + apt::setting { 'conf-proxy': + priority => '01', + content => template('apt/_header.erb', 'apt/proxy.erb'), + } + } - $sources_list_content = $purge_sources_list ? { + $sources_list_content = $_purge['sources.list'] ? { false => undef, true => "# Repos managed by puppet.\n", } - if $always_apt_update == true { + $preferences_ensure = $_purge['preferences'] ? { + false => file, + true => absent, + } + + if $_update['frequency'] == 'always' { Exec <| title=='apt_update' |> { refreshonly => false, } } - file { '/etc/apt/apt.conf.d/15update-stamp': - ensure => 'file', - content => template('apt/_header.erb', 'apt/15update-stamp.erb'), - group => 'root', - mode => '0644', - owner => 'root', + apt::setting { 'conf-update-stamp': + priority => 15, + content => template('apt/_header.erb', 'apt/15update-stamp.erb'), } - $root = $apt::params::root - $apt_conf_d = $apt::params::apt_conf_d - $sources_list_d = $apt::params::sources_list_d - $preferences_d = $apt::params::preferences_d - $provider = $apt::params::provider - file { 'sources.list': - ensure => present, - path => "${root}/sources.list", + ensure => file, + path => $::apt::sources_list, owner => root, group => root, mode => '0644', @@ -116,101 +104,51 @@ class apt( file { 'sources.list.d': ensure => directory, - path => $sources_list_d, + path => $::apt::sources_list_d, owner => root, group => root, - purge => $purge_sources_list_d, - recurse => $purge_sources_list_d, + mode => '0644', + purge => $_purge['sources.list.d'], + recurse => $_purge['sources.list.d'], notify => Exec['apt_update'], } - if $purge_preferences { - file { 'apt-preferences': - ensure => absent, - path => "${root}/preferences", - } + file { 'preferences': + ensure => $preferences_ensure, + path => $::apt::preferences, + owner => root, + group => root, + mode => '0644', + notify => Exec['apt_update'], } file { 'preferences.d': ensure => directory, - path => $preferences_d, + path => $::apt::preferences_d, owner => root, group => root, - purge => $purge_preferences_d, - recurse => $purge_preferences_d, - } - - case $fancy_progress { - true: { - file { '99progressbar': - ensure => present, - content => template('apt/_header.erb', 'apt/progressbar.erb'), - path => "${apt_conf_d}/99progressbar", - } - } - false: { - file { '99progressbar': - ensure => absent, - path => "${apt_conf_d}/99progressbar", - } - } - undef: {} # do nothing - default: { fail('Valid values for fancy_progress are true or false') } + mode => '0644', + purge => $_purge['preferences.d'], + recurse => $_purge['preferences.d'], + notify => Exec['apt_update'], } - case $disable_keys { - true: { - file { '99unauth': - ensure => present, - content => template('apt/_header.erb', 'apt/unauth.erb'), - path => "${apt_conf_d}/99unauth", - } - } - false: { - file { '99unauth': - ensure => absent, - path => "${apt_conf_d}/99unauth", - } - } - undef: { } # do nothing - default: { fail('Valid values for disable_keys are true or false') } - } + anchor { 'apt_first': } -> Class['apt::update'] -> anchor { 'apt_last': } - case $proxy_host { - false, '', undef: { - file { '01proxy': - ensure => absent, - path => "${apt_conf_d}/01proxy", - notify => Exec['apt_update'], - } - } - default: { - file { '01proxy': - ensure => present, - path => "${apt_conf_d}/01proxy", - content => template('apt/_header.erb', 'apt/proxy.erb'), - notify => Exec['apt_update'], - mode => '0644', - owner => root, - group => root, - } - } + # manage sources if present + if $sources { + create_resources('apt::source', $sources) } - - file { 'old-proxy-file': - ensure => absent, - path => "${apt_conf_d}/proxy", - notify => Exec['apt_update'], + # manage keys if present + if $keys { + create_resources('apt::key', $keys) } - - # Need anchor to provide containment for dependencies. - anchor { 'apt::update': - require => Class['apt::update'], + # manage ppas if present + if $ppas { + create_resources('apt::ppa', $ppas) } - - # manage sources if present - if $sources != undef { - validate_hash($sources) - create_resources('apt::source', $sources) + # manage settings if present + if $settings { + create_resources('apt::setting', $settings) } }