X-Git-Url: https://review.fuel-infra.org/gitweb?a=blobdiff_plain;f=manifests%2Fkey.pp;h=dbbed2bef0df5e58aea588e1b292d5a1a628359c;hb=2dcec036ca9d7e99dd9f50c4031dafeb86d6b6c2;hp=68e0c76330768277fc3fbc2aafa7c15ddfa8d765;hpb=3dd2d1f2270791cc50c8c9634fc0e2e1e19a74d3;p=puppet-modules%2Fpuppetlabs-apt.git diff --git a/manifests/key.pp b/manifests/key.pp index 68e0c76..dbbed2b 100644 --- a/manifests/key.pp +++ b/manifests/key.pp @@ -3,73 +3,78 @@ define apt::key ( $ensure = present, $key_content = false, $key_source = false, - $key_server = "keyserver.ubuntu.com" + $key_server = 'keyserver.ubuntu.com' ) { include apt::params + $upkey = upcase($key) + if $key_content { - $method = "content" + $method = 'content' } elsif $key_source { - $method = "source" + $method = 'source' } elsif $key_server { - $method = "server" + $method = 'server' } # This is a hash of the parts of the key definition that we care about. # It is used as a unique identifier for this instance of apt::key. It gets # hashed to ensure that the resource name doesn't end up being pages and # pages (e.g. in the situation where key_content is specified). - $digest = sha1("${key}/${key_content}/${key_source}/${key_server}/") + $digest = sha1("${upkey}/${key_content}/${key_source}/${key_server}/") # Allow multiple ensure => present for the same key to account for many # apt::source resources that all reference the same key. case $ensure { present: { - anchor { "apt::key/$title":; } + anchor { "apt::key/${title}": } - if defined(Exec["apt::key $key absent"]) { - fail ("Cannot ensure Apt::Key[$key] present; $key already ensured absent") + if defined(Exec["apt::key ${upkey} absent"]) { + fail("Cannot ensure Apt::Key[${upkey}] present; ${upkey} already ensured absent") } - if !defined(Anchor["apt::key $key present"]) { - anchor { "apt::key $key present":; } + if !defined(Anchor["apt::key ${upkey} present"]) { + anchor { "apt::key ${upkey} present": } } if !defined(Exec[$digest]) { + $digest_command = $method ? { + 'content' => "echo '${key_content}' | /usr/bin/apt-key add -", + 'source' => "wget -q '${key_source}' -O- | apt-key add -", + 'server' => "apt-key adv --keyserver '${key_server}' --recv-keys '${upkey}'", + } exec { $digest: - path => "/bin:/usr/bin", - unless => "/usr/bin/apt-key list | /bin/grep '${key}'", - before => Anchor["apt::key $key present"], - command => $method ? { - "content" => "echo '${key_content}' | /usr/bin/apt-key add -", - "source" => "wget -q '${key_source}' -O- | apt-key add -", - "server" => "apt-key adv --keyserver '${key_server}' --recv-keys '${key}'", - }; + command => $digest_command, + path => '/bin:/usr/bin', + unless => "/usr/bin/apt-key list | /bin/grep '${upkey}'", + logoutput => 'on_failure', + before => Anchor["apt::key ${upkey} present"], } } - Anchor["apt::key $key present"] -> Anchor["apt::key/$title"] + Anchor["apt::key $upkey present"] -> Anchor["apt::key/$title"] } absent: { - if defined(Anchor["apt::key $key present"]) { - fail ("Cannot ensure Apt::Key[$key] absent; $key already ensured present") + if defined(Anchor["apt::key ${upkey} present"]) { + fail("Cannot ensure Apt::Key[${upkey}] absent; ${upkey} already ensured present") } - exec { "apt::key $key absent": - path => "/bin:/usr/bin", - onlyif => "apt-key list | grep '$key'", - command => "apt-key del '$key'", - user => "root", - group => "root", + exec { "apt::key ${upkey} absent": + command => "apt-key del '${upkey}'", + path => '/bin:/usr/bin', + onlyif => "apt-key list | grep '${upkey}'", + user => 'root', + group => 'root', + logoutput => 'on_failure', } } default: { - fail "Invalid 'ensure' value '$ensure' for aptkey" + fail "Invalid 'ensure' value '${ensure}' for aptkey" } } }