# run this script as root, on deleuze
#
-exec >& /var/log/backup-to-megacz.com-log
-
PATH=$PATH:/bin:/usr/bin:/sbin:/usr/sbin
#COMPRESS_EXT=.bz2
#COMPRESS_PROG=bzip2
COMPRESS_EXT=.gz
COMPRESS_PROG=gzip
-# units for BWLIMIT are KB/s
-BWLIMIT=250
-
-IFS=$'\n'
-
KEYFILE=/etc/backup-encryption-key
-BACKUPDIR=/afs/megacz.com/private/hcoop-backup
BACKUPTMP=/var/backups/hcoop-backup
-SUBDIR=`date +%Y.%m.%d`
+CURDATE=$(date -u +%Y.%m.%d)
-#SYNC_CMD="rsync --bwlimit=$BWLIMIT --remove-source-files"
+MOVE_OVER=$(dirname $0)/rsync.net-move-over
-function copy_over () {
- # Move file to its offsite destination
- # $1: file, $2: relative directory (optional)
- if test -z "$1" || test -n "$3"; then
- echo "Bad programming"
- exit 1
- fi
- local FILE=$1
- local DEST=$BACKUPDIR/$SUBDIR
- if test -n "$2"; then
- DEST=$DEST/$2
- fi
- < $FILE catsync -b $BWLIMIT $DEST/$FILE
- rm -f $FILE
-}
+IFS=$'\n'
-cd $BACKUPDIR
-find . -mindepth 1 -maxdepth 1 -type d -ctime +3 -delete || true
+# Initialize storage area
+RSYNCDIR=/vicepa/hcoop-backups/files
+rm -fr $RSYNCDIR
+mkdir -p $RSYNCDIR/$CURDATE
+chmod og=rx,u=rwx $RSYNCDIR
+chmod og= $RSYNCDIR/$CURDATE
-rm -rf $SUBDIR
-mkdir -p $SUBDIR
+# Initialize backup staging area
mkdir -p $BACKUPTMP
cd $BACKUPTMP
groups
-echo 'I am in:'
-pwd
+echo "I am in: $(pwd)"
echo
-echo building package lists...
+echo "Building package lists..."
dpkg-query -W -f='${Package}\n' > packages
(cd /; find / /usr/ /usr/local/ /var/ -xdev) | sort | uniq > allfiles
dpkg-query -W -f='${Package}\n' | xargs dpkg -L | sort | uniq > debfiles
grep -v '^/usr/bin/.*\.notslocate$' | \
grep -v '^/usr/lib/courier/.*\.rand$' | \
grep -v '^/usr/lib/gconv/gconv-modules\.cache$' | \
+ grep -v '^/usr/lib/ghc[^/*]/package\.conf$' | \
+ grep -v '^/usr/lib/ghc[^/*]/package\.conf\.old$' | \
grep -v '^/usr/lib/graphviz/config$' | \
grep -v '^/usr/lib/locale/locale-archive$' | \
- grep -v '^/usr/share/info/dir$' | \
- grep -v '^/usr/share/info/dir\.old$' | \
grep -v '^/usr/share/emacs21/site-lisp/' | \
grep -v '^/usr/share/emacs22/site-lisp/' | \
+ grep -v '^/usr/share/info/dir$' | \
+ grep -v '^/usr/share/info/dir\.old$' | \
+ grep -v '^/usr/share/snmp/mibs/\.index$' | \
grep -v '^/usr/share/vim/addons/doc/tags$' \
> backupfiles
grep -v ^/vmlinuz | \
grep -v ^/vmlinuz.old | \
grep -v '^/sbin/[a-z\-]*\.modutils$' | \
- grep -v ^/opt/dell/srvadmin/ | \
+ grep -v ^/opt | \
grep -v ^/boot/ | \
grep -v ^/dev/ | \
grep -v ^/etc/ | \
F=hcoop.backup.tar$COMPRESS_EXT.aescrypt
tar clpf - --ignore-failed-read --no-recursion -C / -T backupfiles | \
$COMPRESS_PROG | \
- ccrypt -k $KEYFILE -e > $F
-copy_over $F
+ ccrypt -k $KEYFILE -e | \
+ $MOVE_OVER $CURDATE $F
# Acquire lock before messing with spamd
COUNT=0
F=common.spamd.tar$COMPRESS_EXT.aescrypt
tar clpf - --ignore-failed-read -C / /var/local/lib/spamd | \
$COMPRESS_PROG | \
- ccrypt -k $KEYFILE -e > $F.new
+ ccrypt -k $KEYFILE -e > $F
rm -f $LOCK
-copy_over $F.new ..
-
-test -s $BACKUPDIR/$F.new && \
- mv $BACKUPDIR/$F.new $BACKUPDIR/$F
+< $F $MOVE_OVER $CURDATE $F
+rm -f $F
vos listvol deleuze | \
tail -n +2 | \
cat volumes | \
grep -v not-backed-up | \
xargs -I{} -d\\n -- \
- bash -c \
+ bash -e -c \
"F={}.dump$COMPRESS_EXT.aescrypt ;
vos dump -id {} -localauth -clone |
- $COMPRESS_PROG | ccrypt -k $KEYFILE -e > \$F ;
- < \$F catsync -b $BWLIMIT $BACKUPDIR/$SUBDIR/\$F ;
- rm -f \$F"
+ $COMPRESS_PROG | ccrypt -k $KEYFILE -e |
+ $MOVE_OVER $CURDATE \$F" || :
-echo backing up databases
+echo "Backing up databases ..."
F=databases.tar$COMPRESS_EXT.aescrypt
tar -C /var/backups/databases/ -cf - . | \
$COMPRESS_PROG | \
- ccrypt -k $KEYFILE -e > $F
-copy_over $F
+ ccrypt -k $KEYFILE -e | \
+ $MOVE_OVER $CURDATE $F
+# Update file permissions so that rsync.net can access the backups
+chmod -R go=,u-w $RSYNCDIR/$CURDATE
+chmod u+w $RSYNCDIR/$CURDATE
+chown -R rsync $RSYNCDIR/$CURDATE
+
+# Complain to admins if there are unknown files
grep '[a-z/]' complain && \
mail -a 'From: The Backup Program <backups@deleuze.hcoop.net>' \
-s "automated message: annoying files found on deleuze (please do something about them)" admins@hcoop.net \
< complain \
- || true
-
-echo done
+ || :
+echo "Done."