Commit | Line | Data |
---|---|---|
033adfe7 | 1 | ;;; GNU Guix --- Functional package management for GNU |
cda75110 | 2 | ;;; Copyright © 2013, 2014, 2015, 2016, 2017, 2018, 2019, 2020 Ludovic Courtès <ludo@gnu.org> |
5e738ac2 | 3 | ;;; Copyright © 2015 Mark H Weaver <mhw@netris.org> |
5dccaffe | 4 | ;;; Copyright © 2015, 2016 Alex Kost <alezost@gmail.com> |
1ef8b72a | 5 | ;;; Copyright © 2016 Chris Marusich <cmmarusich@gmail.com> |
c76b3046 | 6 | ;;; Copyright © 2017 Mathieu Othacehe <m.othacehe@gmail.com> |
5144df2c | 7 | ;;; Copyright © 2019 Meiyo Peng <meiyo.peng@gmail.com> |
5c79f238 | 8 | ;;; Copyright © 2020 Danny Milosavljevic <dannym@scratchpost.org> |
93664fee | 9 | ;;; Copyright © 2020 Brice Waegeneire <brice@waegenei.re> |
e06664da | 10 | ;;; Copyright © 2020 Florian Pelz <pelzflorian@pelzflorian.de> |
b460ba79 | 11 | ;;; Copyright © 2020 Maxim Cournoyer <maxim.cournoyer@gmail.com> |
45b2cb43 | 12 | ;;; Copyright © 2020 Jan (janneke) Nieuwenhuizen <jannek@gnu.org> |
033adfe7 LC |
13 | ;;; |
14 | ;;; This file is part of GNU Guix. | |
15 | ;;; | |
16 | ;;; GNU Guix is free software; you can redistribute it and/or modify it | |
17 | ;;; under the terms of the GNU General Public License as published by | |
18 | ;;; the Free Software Foundation; either version 3 of the License, or (at | |
19 | ;;; your option) any later version. | |
20 | ;;; | |
21 | ;;; GNU Guix is distributed in the hope that it will be useful, but | |
22 | ;;; WITHOUT ANY WARRANTY; without even the implied warranty of | |
23 | ;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the | |
24 | ;;; GNU General Public License for more details. | |
25 | ;;; | |
26 | ;;; You should have received a copy of the GNU General Public License | |
27 | ;;; along with GNU Guix. If not, see <http://www.gnu.org/licenses/>. | |
28 | ||
29 | (define-module (gnu system) | |
bdc61ff9 | 30 | #:use-module (guix inferior) |
033adfe7 LC |
31 | #:use-module (guix store) |
32 | #:use-module (guix monads) | |
02100028 | 33 | #:use-module (guix gexp) |
033adfe7 LC |
34 | #:use-module (guix records) |
35 | #:use-module (guix packages) | |
36 | #:use-module (guix derivations) | |
29fce8b6 | 37 | #:use-module (guix profiles) |
a5e2fc73 LC |
38 | #:use-module ((guix utils) #:select (substitute-keyword-arguments)) |
39 | #:use-module (guix i18n) | |
40 | #:use-module (guix diagnostics) | |
033adfe7 LC |
41 | #:use-module (gnu packages base) |
42 | #:use-module (gnu packages bash) | |
912b857e | 43 | #:use-module (gnu packages cross-base) |
bdb36958 | 44 | #:use-module (gnu packages guile) |
01ac0e6b | 45 | #:use-module (gnu packages guile-xyz) |
9de46ffb | 46 | #:use-module (gnu packages admin) |
912b857e | 47 | #:use-module (gnu packages hurd) |
8a07c289 | 48 | #:use-module (gnu packages linux) |
a96a82d7 | 49 | #:use-module (gnu packages pciutils) |
033adfe7 | 50 | #:use-module (gnu packages package-management) |
6f436c54 LC |
51 | #:use-module (gnu packages less) |
52 | #:use-module (gnu packages zile) | |
55e70e65 | 53 | #:use-module (gnu packages nano) |
a68c6967 | 54 | #:use-module (gnu packages gawk) |
18316d86 | 55 | #:use-module (gnu packages man) |
939c5c31 | 56 | #:use-module (gnu packages texinfo) |
a68c6967 | 57 | #:use-module (gnu packages compression) |
f34c56be | 58 | #:use-module (gnu packages firmware) |
db4fdc04 | 59 | #:use-module (gnu services) |
0190c1c0 | 60 | #:use-module (gnu services shepherd) |
db4fdc04 | 61 | #:use-module (gnu services base) |
b09a8da4 | 62 | #:use-module (gnu bootloader) |
033adfe7 | 63 | #:use-module (gnu system shadow) |
996ed739 | 64 | #:use-module (gnu system nss) |
598e19dc | 65 | #:use-module (gnu system locale) |
6e828634 | 66 | #:use-module (gnu system pam) |
735c6dd7 | 67 | #:use-module (gnu system linux-initrd) |
9b336338 | 68 | #:use-module (gnu system uuid) |
c5df1839 | 69 | #:use-module (gnu system file-systems) |
060d62a7 | 70 | #:use-module (gnu system mapped-devices) |
033adfe7 LC |
71 | #:use-module (ice-9 match) |
72 | #:use-module (srfi srfi-1) | |
73 | #:use-module (srfi srfi-26) | |
598e19dc LC |
74 | #:use-module (srfi srfi-34) |
75 | #:use-module (srfi srfi-35) | |
3382bfe9 | 76 | #:use-module (rnrs bytevectors) |
033adfe7 LC |
77 | #:export (operating-system |
78 | operating-system? | |
d8bead6c | 79 | this-operating-system |
d5b429ab LC |
80 | |
81 | operating-system-bootloader | |
033adfe7 | 82 | operating-system-services |
69cae3d3 | 83 | operating-system-essential-services |
f8885eca | 84 | operating-system-default-essential-services |
217a5b85 | 85 | operating-system-user-services |
033adfe7 | 86 | operating-system-packages |
fd3bfc44 | 87 | operating-system-host-name |
c65e1834 | 88 | operating-system-hosts-file |
2018fb2a | 89 | operating-system-hurd |
fd3bfc44 | 90 | operating-system-kernel |
44d5f54e | 91 | operating-system-kernel-file |
33f0aa88 | 92 | operating-system-kernel-arguments |
3f03a198 LC |
93 | operating-system-label |
94 | operating-system-default-label | |
bc499b11 | 95 | operating-system-initrd-modules |
fd3bfc44 LC |
96 | operating-system-initrd |
97 | operating-system-users | |
98 | operating-system-groups | |
548d4c13 | 99 | operating-system-issue |
fd3bfc44 LC |
100 | operating-system-timezone |
101 | operating-system-locale | |
598e19dc | 102 | operating-system-locale-definitions |
34760ae7 | 103 | operating-system-locale-libcs |
5dae0186 | 104 | operating-system-mapped-devices |
83bcd0b8 | 105 | operating-system-file-systems |
6b779207 | 106 | operating-system-store-file-system |
2bdd7ac1 LC |
107 | operating-system-user-mapped-devices |
108 | operating-system-boot-mapped-devices | |
b25937e3 | 109 | operating-system-activation-script |
b2fef041 LC |
110 | operating-system-user-accounts |
111 | operating-system-shepherd-service-names | |
20abb8c4 | 112 | operating-system-user-kernel-arguments |
9ef37e81 BW |
113 | operating-system-firmware |
114 | operating-system-keyboard-layout | |
115 | operating-system-name-service-switch | |
116 | operating-system-pam-services | |
117 | operating-system-setuid-programs | |
118 | operating-system-skeletons | |
119 | operating-system-sudoers-file | |
120 | operating-system-swap-devices | |
a9f2c210 | 121 | operating-system-kernel-loadable-modules |
9e12da31 | 122 | operating-system-location |
033adfe7 | 123 | |
1aa0033b | 124 | operating-system-derivation |
83bcd0b8 | 125 | operating-system-profile |
c76b3046 | 126 | operating-system-bootcfg |
239db054 DT |
127 | operating-system-etc-directory |
128 | operating-system-locale-directory | |
129 | operating-system-boot-script | |
78fbf2bd | 130 | operating-system-uuid |
239db054 | 131 | |
43fe431c | 132 | system-linux-image-file-name |
9fcfe30d | 133 | operating-system-with-gc-roots |
33b7cb7a | 134 | operating-system-with-provenance |
43fe431c | 135 | |
45b2cb43 JN |
136 | hurd-default-essential-services |
137 | ||
b8300494 AK |
138 | boot-parameters |
139 | boot-parameters? | |
140 | boot-parameters-label | |
141 | boot-parameters-root-device | |
f96752e3 | 142 | boot-parameters-bootloader-name |
a28cfee8 | 143 | boot-parameters-bootloader-menu-entries |
1ef8b72a CM |
144 | boot-parameters-store-device |
145 | boot-parameters-store-mount-point | |
b8300494 AK |
146 | boot-parameters-kernel |
147 | boot-parameters-kernel-arguments | |
d7b342d8 | 148 | boot-parameters-initrd |
912b857e | 149 | boot-parameters-multiboot-modules |
4e4e0185 | 150 | read-boot-parameters |
9530e73b | 151 | read-boot-parameters-file |
1975c754 | 152 | boot-parameters->menu-entry |
b8300494 | 153 | |
568841d4 | 154 | local-host-aliases |
d0f3a672 | 155 | %root-account |
df5ce088 | 156 | %setuid-programs |
f6b95031 | 157 | %sudoers-specification |
5dae0186 | 158 | %base-packages |
93664fee BW |
159 | %base-packages-interactive |
160 | %base-packages-linux | |
161 | %base-packages-networking | |
162 | %base-packages-utils | |
e06664da FP |
163 | %base-firmware |
164 | %default-kernel-arguments)) | |
033adfe7 LC |
165 | |
166 | ;;; Commentary: | |
167 | ;;; | |
168 | ;;; This module supports whole-system configuration. | |
169 | ;;; | |
170 | ;;; Code: | |
171 | ||
a7ef45d9 LC |
172 | (define (bootable-kernel-arguments system root-device) |
173 | "Return a list of kernel arguments (gexps) to boot SYSTEM from ROOT-DEVICE." | |
174 | (list (string-append "--root=" | |
99e676db MC |
175 | ;; Note: Always use the DCE format because that's what |
176 | ;; (gnu build linux-boot) expects for the '--root' | |
177 | ;; kernel command-line option. | |
178 | (file-system-device->string root-device | |
179 | #:uuid-type 'dce)) | |
a7ef45d9 LC |
180 | #~(string-append "--system=" #$system) |
181 | #~(string-append "--load=" #$system "/boot"))) | |
33f0aa88 | 182 | |
033adfe7 LC |
183 | ;; System-wide configuration. |
184 | ;; TODO: Add per-field docstrings/stexi. | |
185 | (define-record-type* <operating-system> operating-system | |
186 | make-operating-system | |
187 | operating-system? | |
d8bead6c LC |
188 | this-operating-system |
189 | ||
033adfe7 | 190 | (kernel operating-system-kernel ; package |
57082417 | 191 | (default linux-libre)) |
5c79f238 DM |
192 | (kernel-loadable-modules operating-system-kernel-loadable-modules |
193 | (default '())) ; list of packages | |
af98d25a | 194 | (kernel-arguments operating-system-user-kernel-arguments |
e06664da | 195 | (default %default-kernel-arguments)) ; list of gexps/strings |
2018fb2a JN |
196 | (hurd operating-system-hurd |
197 | (default #f)) ; package | |
b09a8da4 | 198 | (bootloader operating-system-bootloader) ; <bootloader-configuration> |
3f03a198 LC |
199 | (label operating-system-label ; string |
200 | (thunked) | |
201 | (default (operating-system-default-label this-operating-system))) | |
d5b429ab | 202 | |
ae7a316b LC |
203 | (keyboard-layout operating-system-keyboard-layout ;#f | <keyboard-layout> |
204 | (default #f)) | |
e34ae75d | 205 | (initrd operating-system-initrd ; (list fs) -> file-like |
060238ae | 206 | (default base-initrd)) |
bc499b11 LC |
207 | (initrd-modules operating-system-initrd-modules ; list of strings |
208 | (thunked) ; it's system-dependent | |
209 | (default %base-initrd-modules)) | |
210 | ||
f34c56be LC |
211 | (firmware operating-system-firmware ; list of packages |
212 | (default %base-firmware)) | |
033adfe7 LC |
213 | |
214 | (host-name operating-system-host-name) ; string | |
24e02c28 | 215 | (hosts-file operating-system-hosts-file ; file-like | #f |
c65e1834 | 216 | (default #f)) |
033adfe7 | 217 | |
5dae0186 LC |
218 | (mapped-devices operating-system-mapped-devices ; list of <mapped-device> |
219 | (default '())) | |
8a6d2731 | 220 | (file-systems operating-system-file-systems) ; list of fs |
2a13d05e LC |
221 | (swap-devices operating-system-swap-devices ; list of strings |
222 | (default '())) | |
033adfe7 LC |
223 | |
224 | (users operating-system-users ; list of user accounts | |
bf87f38a | 225 | (default %base-user-accounts)) |
033adfe7 | 226 | (groups operating-system-groups ; list of user groups |
773e956d | 227 | (default %base-groups)) |
033adfe7 | 228 | |
ac3c14fb | 229 | (skeletons operating-system-skeletons ; list of name/file-like value |
40281c54 | 230 | (default (default-skeletons))) |
548d4c13 LC |
231 | (issue operating-system-issue ; string |
232 | (default %default-issue)) | |
40281c54 | 233 | |
033adfe7 | 234 | (packages operating-system-packages ; list of (PACKAGE OUTPUT...) |
6f436c54 | 235 | (default %base-packages)) ; or just PACKAGE |
033adfe7 LC |
236 | |
237 | (timezone operating-system-timezone) ; string | |
8a6d2731 | 238 | (locale operating-system-locale ; string |
598e19dc LC |
239 | (default "en_US.utf8")) |
240 | (locale-definitions operating-system-locale-definitions ; list of <locale-definition> | |
241 | (default %default-locale-definitions)) | |
34760ae7 LC |
242 | (locale-libcs operating-system-locale-libcs ; list of <packages> |
243 | (default %default-locale-libcs)) | |
996ed739 LC |
244 | (name-service-switch operating-system-name-service-switch ; <name-service-switch> |
245 | (default %default-nss)) | |
033adfe7 | 246 | |
69cae3d3 LC |
247 | (essential-services operating-system-essential-services ; list of services |
248 | (thunked) | |
f8885eca LC |
249 | (default (operating-system-default-essential-services |
250 | this-operating-system))) | |
ac3c14fb | 251 | (services operating-system-user-services ; list of services |
09e028f4 LC |
252 | (default %base-services)) |
253 | ||
254 | (pam-services operating-system-pam-services ; list of PAM services | |
255 | (default (base-pam-services))) | |
256 | (setuid-programs operating-system-setuid-programs | |
69689380 | 257 | (default %setuid-programs)) ; list of string-valued gexps |
033adfe7 | 258 | |
f5a9ffa0 | 259 | (sudoers-file operating-system-sudoers-file ; file-like |
9e12da31 LC |
260 | (default %sudoers-specification)) |
261 | ||
262 | (location operating-system-location ; <location> | |
263 | (default (and=> (current-source-location) | |
264 | source-properties->location)) | |
265 | (innate))) | |
033adfe7 | 266 | |
a7ef45d9 | 267 | (define (operating-system-kernel-arguments os root-device) |
33f0aa88 DM |
268 | "Return all the kernel arguments, including the ones not specified |
269 | directly by the user." | |
a7ef45d9 LC |
270 | (append (bootable-kernel-arguments os root-device) |
271 | (operating-system-user-kernel-arguments os))) | |
33f0aa88 | 272 | |
2717a89a | 273 | \f |
8e815c5b LC |
274 | ;;; |
275 | ;;; Boot parameters | |
276 | ;;; | |
277 | ||
278 | (define-record-type* <boot-parameters> | |
279 | boot-parameters make-boot-parameters boot-parameters? | |
280 | (label boot-parameters-label) | |
281 | ;; Because we will use the 'store-device' to create the GRUB search command, | |
282 | ;; the 'store-device' has slightly different semantics than 'root-device'. | |
283 | ;; The 'store-device' can be a file system uuid, a file system label, or #f, | |
284 | ;; but it cannot be a device path such as "/dev/sda3", since GRUB would not | |
285 | ;; understand that. The 'root-device', on the other hand, corresponds | |
286 | ;; exactly to the device field of the <file-system> object representing the | |
287 | ;; OS's root file system, so it might be a device path like "/dev/sda3". | |
288 | (root-device boot-parameters-root-device) | |
f96752e3 | 289 | (bootloader-name boot-parameters-bootloader-name) |
a28cfee8 LC |
290 | (bootloader-menu-entries ;list of <menu-entry> |
291 | boot-parameters-bootloader-menu-entries) | |
8e815c5b LC |
292 | (store-device boot-parameters-store-device) |
293 | (store-mount-point boot-parameters-store-mount-point) | |
294 | (kernel boot-parameters-kernel) | |
295 | (kernel-arguments boot-parameters-kernel-arguments) | |
912b857e JN |
296 | (initrd boot-parameters-initrd) |
297 | (multiboot-modules boot-parameters-multiboot-modules)) | |
8e815c5b | 298 | |
90d23ed9 LC |
299 | (define (ensure-not-/dev device) |
300 | "If DEVICE starts with a slash, return #f. This is meant to filter out | |
301 | Linux device names such as /dev/sda, and to preserve GRUB device names and | |
302 | file system labels." | |
303 | (if (and (string? device) (string-prefix? "/" device)) | |
304 | #f | |
305 | device)) | |
306 | ||
8e815c5b LC |
307 | (define (read-boot-parameters port) |
308 | "Read boot parameters from PORT and return the corresponding | |
309 | <boot-parameters> object or #f if the format is unrecognized." | |
075681d3 LC |
310 | (define device-sexp->device |
311 | (match-lambda | |
312 | (('uuid (? symbol? type) (? bytevector? bv)) | |
313 | (bytevector->uuid bv type)) | |
a5acc17a LC |
314 | (('file-system-label (? string? label)) |
315 | (file-system-label label)) | |
075681d3 LC |
316 | ((? bytevector? bv) ;old format |
317 | (bytevector->uuid bv 'dce)) | |
318 | ((? string? device) | |
a5acc17a LC |
319 | ;; It used to be that we would not distinguish between labels and |
320 | ;; device names. Try to infer the right thing here. | |
321 | (if (string-prefix? "/dev/" device) | |
322 | device | |
323 | (file-system-label device))))) | |
075681d3 | 324 | |
8e815c5b LC |
325 | (match (read port) |
326 | (('boot-parameters ('version 0) | |
327 | ('label label) ('root-device root) | |
912b857e | 328 | ('kernel kernel) |
8e815c5b LC |
329 | rest ...) |
330 | (boot-parameters | |
331 | (label label) | |
7940188e | 332 | (root-device (device-sexp->device root)) |
8e815c5b | 333 | |
f96752e3 MO |
334 | (bootloader-name |
335 | (match (assq 'bootloader-name rest) | |
bcaf67c4 MO |
336 | ((_ args) args) |
337 | (#f 'grub))) ; for compatibility reasons. | |
338 | ||
a28cfee8 LC |
339 | (bootloader-menu-entries |
340 | (match (assq 'bootloader-menu-entries rest) | |
341 | ((_ entries) (map sexp->menu-entry entries)) | |
342 | (#f '()))) | |
343 | ||
912b857e JN |
344 | ;; In the past, we would store the directory name of linux instead of |
345 | ;; the absolute file name of its image. Detect that and correct it. | |
346 | (kernel (if (string=? kernel (direct-store-path kernel)) | |
347 | (string-append kernel "/" | |
8e815c5b | 348 | (system-linux-image-file-name)) |
912b857e | 349 | kernel)) |
8e815c5b LC |
350 | |
351 | (kernel-arguments | |
352 | (match (assq 'kernel-arguments rest) | |
353 | ((_ args) args) | |
354 | (#f '()))) ;the old format | |
355 | ||
356 | (initrd | |
357 | (match (assq 'initrd rest) | |
358 | (('initrd ('string-append directory file)) ;the old format | |
359 | (string-append directory file)) | |
360 | (('initrd (? string? file)) | |
12906d3e JN |
361 | file) |
362 | (#f #f))) | |
8e815c5b | 363 | |
aa864ebd JN |
364 | (multiboot-modules |
365 | (match (assq 'multiboot-modules rest) | |
366 | ((_ args) args) | |
367 | (#f '()))) | |
912b857e | 368 | |
8e815c5b | 369 | (store-device |
db4e8fd5 LC |
370 | ;; Linux device names like "/dev/sda1" are not suitable GRUB device |
371 | ;; identifiers, so we just filter them out. | |
372 | (ensure-not-/dev | |
373 | (match (assq 'store rest) | |
374 | (('store ('device #f) _ ...) | |
375 | root-device) | |
376 | (('store ('device device) _ ...) | |
377 | (device-sexp->device device)) | |
378 | (_ ;the old format | |
379 | root-device)))) | |
8e815c5b LC |
380 | |
381 | (store-mount-point | |
382 | (match (assq 'store rest) | |
383 | (('store ('device _) ('mount-point mount-point) _ ...) | |
384 | mount-point) | |
385 | (_ ;the old format | |
386 | "/"))))) | |
387 | (x ;unsupported format | |
b1059b38 LC |
388 | (warning (G_ "unrecognized boot parameters at '~a'~%") |
389 | (port-filename port)) | |
8e815c5b LC |
390 | #f))) |
391 | ||
392 | (define (read-boot-parameters-file system) | |
393 | "Read boot parameters from SYSTEM's (system or generation) \"parameters\" | |
394 | file and returns the corresponding <boot-parameters> object or #f if the | |
395 | format is unrecognized. | |
396 | The object has its kernel-arguments extended in order to make it bootable." | |
397 | (let* ((file (string-append system "/parameters")) | |
398 | (params (call-with-input-file file read-boot-parameters)) | |
a7ef45d9 LC |
399 | (root (boot-parameters-root-device params))) |
400 | (boot-parameters | |
401 | (inherit params) | |
402 | (kernel-arguments (append (bootable-kernel-arguments system root) | |
403 | (boot-parameters-kernel-arguments params)))))) | |
8b22107e | 404 | |
1975c754 | 405 | (define (boot-parameters->menu-entry conf) |
912b857e JN |
406 | (let* ((kernel (boot-parameters-kernel conf)) |
407 | (multiboot-modules (boot-parameters-multiboot-modules conf)) | |
408 | (multiboot? (pair? multiboot-modules))) | |
409 | (menu-entry | |
410 | (label (boot-parameters-label conf)) | |
411 | (device (boot-parameters-store-device conf)) | |
412 | (device-mount-point (boot-parameters-store-mount-point conf)) | |
413 | (linux (and (not multiboot?) kernel)) | |
535a6be2 | 414 | (linux-arguments (if (not multiboot?) |
912b857e JN |
415 | (boot-parameters-kernel-arguments conf) |
416 | '())) | |
417 | (initrd (boot-parameters-initrd conf)) | |
418 | (multiboot-kernel (and multiboot? kernel)) | |
419 | (multiboot-arguments (if multiboot? | |
420 | (boot-parameters-kernel-arguments conf) | |
421 | '())) | |
422 | (multiboot-modules (if multiboot? | |
423 | (boot-parameters-multiboot-modules conf) | |
424 | '()))))) | |
8b22107e | 425 | |
8e815c5b | 426 | \f |
40281c54 LC |
427 | ;;; |
428 | ;;; Services. | |
429 | ;;; | |
430 | ||
aa1145df LC |
431 | (define (non-boot-file-system-service os) |
432 | "Return the file system service for the file systems of OS that are not | |
433 | marked as 'needed-for-boot'." | |
023f391c | 434 | (define file-systems |
4d6b879c | 435 | (remove file-system-needed-for-boot? |
023f391c LC |
436 | (operating-system-file-systems os))) |
437 | ||
68a58775 LC |
438 | (define mapped-devices-for-boot |
439 | (operating-system-boot-mapped-devices os)) | |
440 | ||
5dae0186 | 441 | (define (device-mappings fs) |
ab64483f | 442 | (let ((device (file-system-device fs))) |
29824d80 | 443 | (if (string? device) ;title is 'device |
ab64483f LC |
444 | (filter (lambda (md) |
445 | (string=? (string-append "/dev/mapper/" | |
446 | (mapped-device-target md)) | |
447 | device)) | |
448 | (operating-system-mapped-devices os)) | |
449 | '()))) | |
5dae0186 | 450 | |
e502bf89 LC |
451 | (define (add-dependencies fs) |
452 | ;; Add the dependencies due to device mappings to FS. | |
453 | (file-system | |
454 | (inherit fs) | |
455 | (dependencies | |
68a58775 LC |
456 | (delete-duplicates |
457 | (remove (cut member <> mapped-devices-for-boot) | |
458 | (append (device-mappings fs) | |
459 | (file-system-dependencies fs))) | |
460 | eq?)))) | |
e502bf89 | 461 | |
aa1145df LC |
462 | (service file-system-service-type |
463 | (map add-dependencies file-systems))) | |
023f391c | 464 | |
68a58775 LC |
465 | (define (mapped-device-users device file-systems) |
466 | "Return the subset of FILE-SYSTEMS that use DEVICE." | |
de1c158f | 467 | (let ((target (string-append "/dev/mapper/" (mapped-device-target device)))) |
68a58775 LC |
468 | (filter (lambda (fs) |
469 | (or (member device (file-system-dependencies fs)) | |
470 | (and (string? (file-system-device fs)) | |
471 | (string=? (file-system-device fs) target)))) | |
472 | file-systems))) | |
de1c158f LC |
473 | |
474 | (define (operating-system-user-mapped-devices os) | |
475 | "Return the subset of mapped devices that can be installed in | |
476 | user-land--i.e., those not needed during boot." | |
9cb426b8 LC |
477 | (let ((devices (operating-system-mapped-devices os)) |
478 | (file-systems (operating-system-file-systems os))) | |
479 | (filter (lambda (md) | |
68a58775 LC |
480 | (let ((users (mapped-device-users md file-systems))) |
481 | (not (any file-system-needed-for-boot? users)))) | |
9cb426b8 | 482 | devices))) |
de1c158f LC |
483 | |
484 | (define (operating-system-boot-mapped-devices os) | |
485 | "Return the subset of mapped devices that must be installed during boot, | |
486 | from the initrd." | |
9cb426b8 LC |
487 | (let ((devices (operating-system-mapped-devices os)) |
488 | (file-systems (operating-system-file-systems os))) | |
489 | (filter (lambda (md) | |
68a58775 LC |
490 | (let ((users (mapped-device-users md file-systems))) |
491 | (any file-system-needed-for-boot? users))) | |
9cb426b8 | 492 | devices))) |
de1c158f | 493 | |
5dae0186 | 494 | (define (device-mapping-services os) |
be1c2c54 | 495 | "Return the list of device-mapping services for OS as a list." |
4da8c19e | 496 | (map device-mapping-service |
be1c2c54 | 497 | (operating-system-user-mapped-devices os))) |
5dae0186 | 498 | |
2a13d05e | 499 | (define (swap-services os) |
be1c2c54 LC |
500 | "Return the list of swap services for OS." |
501 | (map swap-service (operating-system-swap-devices os))) | |
2a13d05e | 502 | |
0c053a39 LC |
503 | (define* (system-linux-image-file-name #:optional |
504 | (target (or (%current-target-system) | |
505 | (%current-system)))) | |
506 | "Return the basename of the kernel image file for TARGET." | |
507 | (cond | |
508 | ((string-prefix? "arm" target) "zImage") | |
509 | ((string-prefix? "mips" target) "vmlinuz") | |
510 | ((string-prefix? "aarch64" target) "Image") | |
511 | (else "bzImage"))) | |
44d5f54e LC |
512 | |
513 | (define (operating-system-kernel-file os) | |
514 | "Return an object representing the absolute file name of the kernel image of | |
515 | OS." | |
912b857e JN |
516 | (if (operating-system-hurd os) |
517 | (file-append (operating-system-kernel os) "/boot/gnumach") | |
518 | (file-append (operating-system-kernel os) | |
519 | "/" (system-linux-image-file-name)))) | |
44d5f54e | 520 | |
f91ad0b1 DM |
521 | (define (package-for-kernel target-kernel module-package) |
522 | "Return a package like MODULE-PACKAGE, adapted for TARGET-KERNEL, if | |
523 | possible (that is if there's a LINUX keyword argument in the build system)." | |
524 | (package | |
525 | (inherit module-package) | |
526 | (arguments | |
527 | (substitute-keyword-arguments (package-arguments module-package) | |
528 | ((#:linux kernel #f) | |
529 | target-kernel))))) | |
530 | ||
e06664da FP |
531 | (define %default-modprobe-blacklist |
532 | ;; List of kernel modules to blacklist by default. | |
fd31731b FP |
533 | '("usbmouse" ;races with bcm5974, see <https://bugs.gnu.org/35574> |
534 | "usbkbd")) ;races with usbhid, see <https://issues.guix.gnu.org/35574#18> | |
e06664da FP |
535 | |
536 | (define %default-kernel-arguments | |
537 | ;; Default arguments passed to the kernel. | |
538 | (list (string-append "modprobe.blacklist=" | |
539 | (string-join %default-modprobe-blacklist ",")) | |
540 | "quiet")) | |
541 | ||
69cae3d3 | 542 | (define* (operating-system-directory-base-entries os) |
d62e201c LC |
543 | "Return the basic entries of the 'system' directory of OS for use as the |
544 | value of the SYSTEM-SERVICE-TYPE service." | |
cda75110 LC |
545 | (let* ((locale (operating-system-locale-directory os)) |
546 | (kernel (operating-system-kernel os)) | |
2b76179e | 547 | (hurd (operating-system-hurd os)) |
cda75110 | 548 | (modules (operating-system-kernel-loadable-modules os)) |
2b76179e JN |
549 | (kernel (if hurd |
550 | kernel | |
551 | (profile | |
552 | (content (packages->manifest | |
553 | (cons kernel | |
554 | (map (lambda (module) | |
555 | (if (package? module) | |
556 | (package-for-kernel kernel | |
557 | module) | |
558 | module)) | |
559 | modules)))) | |
560 | (hooks (list linux-module-database))))) | |
561 | (initrd (and (not hurd) (operating-system-initrd-file os))) | |
cda75110 | 562 | (params (operating-system-boot-parameters-file os))) |
0e5c2d5e | 563 | `(("kernel" ,kernel) |
2b76179e | 564 | ,@(if hurd `(("hurd" ,hurd)) '()) |
0e5c2d5e | 565 | ("parameters" ,params) |
2b76179e | 566 | ,@(if initrd `(("initrd" ,initrd)) '()) |
0e5c2d5e | 567 | ("locale" ,locale)))) ;used by libc |
69cae3d3 | 568 | |
f8885eca | 569 | (define (operating-system-default-essential-services os) |
217a5b85 LC |
570 | "Return the list of essential services for OS. These are special services |
571 | that implement part of what's declared in OS are responsible for low-level | |
69cae3d3 | 572 | bookkeeping." |
d6e2a622 LC |
573 | (define known-fs |
574 | (map file-system-mount-point (operating-system-file-systems os))) | |
575 | ||
be1c2c54 LC |
576 | (let* ((mappings (device-mapping-services os)) |
577 | (root-fs (root-file-system-service)) | |
aa1145df | 578 | (other-fs (non-boot-file-system-service os)) |
be1c2c54 | 579 | (swaps (swap-services os)) |
206a28d8 | 580 | (procs (service user-processes-service-type)) |
d62e201c | 581 | (host-name (host-name-service (operating-system-host-name os))) |
69cae3d3 | 582 | (entries (operating-system-directory-base-entries os))) |
d62e201c LC |
583 | (cons* (service system-service-type entries) |
584 | %boot-service | |
0adfe95a | 585 | |
661c237b | 586 | ;; %SHEPHERD-ROOT-SERVICE must come last so that the gexp that |
d4053c71 | 587 | ;; execs shepherd comes last in the boot script (XXX). Likewise, |
661c237b | 588 | ;; the cleanup service must come first so that its gexp runs before |
d4053c71 | 589 | ;; activation code. |
be7be9e8 | 590 | (service cleanup-service-type #f) |
661c237b LC |
591 | %activation-service |
592 | %shepherd-root-service | |
0adfe95a LC |
593 | |
594 | (pam-root-service (operating-system-pam-services os)) | |
595 | (account-service (append (operating-system-accounts os) | |
596 | (operating-system-groups os)) | |
597 | (operating-system-skeletons os)) | |
598 | (operating-system-etc-service os) | |
aea1a42e LC |
599 | (service fstab-service-type |
600 | (filter file-system-needed-for-boot? | |
601 | (operating-system-file-systems os))) | |
6bad7524 SB |
602 | (session-environment-service |
603 | (operating-system-environment-variables os)) | |
6c445817 | 604 | host-name procs root-fs |
0adfe95a LC |
605 | (service setuid-program-service-type |
606 | (operating-system-setuid-programs os)) | |
af4c3fd5 LC |
607 | (service profile-service-type |
608 | (operating-system-packages os)) | |
aa1145df LC |
609 | other-fs |
610 | (append mappings swaps | |
0adfe95a | 611 | |
69cae3d3 LC |
612 | ;; Add the firmware service. |
613 | (list %linux-bare-metal-service | |
614 | (service firmware-service-type | |
615 | (operating-system-firmware os))))))) | |
616 | ||
45b2cb43 | 617 | (define (hurd-default-essential-services os) |
2b76179e JN |
618 | (let ((entries (operating-system-directory-base-entries os))) |
619 | (list (service system-service-type entries) | |
620 | %boot-service | |
621 | %hurd-startup-service | |
622 | %activation-service | |
623 | %shepherd-root-service | |
624 | (service user-processes-service-type) | |
625 | (account-service (append (operating-system-accounts os) | |
626 | (operating-system-groups os)) | |
627 | (operating-system-skeletons os)) | |
628 | (root-file-system-service) | |
629 | (service file-system-service-type '()) | |
630 | (service fstab-service-type | |
631 | (filter file-system-needed-for-boot? | |
632 | (operating-system-file-systems os))) | |
633 | (pam-root-service (operating-system-pam-services os)) | |
634 | (operating-system-etc-service os) | |
635 | (service profile-service-type (operating-system-packages os))))) | |
45b2cb43 | 636 | |
69cae3d3 LC |
637 | (define* (operating-system-services os) |
638 | "Return all the services of OS, including \"essential\" services." | |
d466b1fc LC |
639 | (instantiate-missing-services |
640 | (append (operating-system-user-services os) | |
69cae3d3 | 641 | (operating-system-essential-services os)))) |
217a5b85 | 642 | |
9fcfe30d LC |
643 | (define (operating-system-with-gc-roots os roots) |
644 | "Return a variant of OS where ROOTS are registered as GC roots." | |
645 | (operating-system | |
646 | (inherit os) | |
647 | ||
648 | ;; We use this procedure for the installation OS, which already defines GC | |
649 | ;; roots. Add ROOTS to those. | |
650 | (services (cons (simple-service 'extra-root | |
651 | gc-root-service-type roots) | |
652 | (operating-system-user-services os))))) | |
653 | ||
12a3d7d6 LC |
654 | (define (operating-system-configuration-file os) |
655 | "Return the configuration file of OS, based on its 'location' field, or #f | |
656 | if it could not be determined." | |
657 | (let ((file (and=> (operating-system-location os) | |
658 | location-file))) | |
659 | (and file | |
660 | (or (and (string-prefix? "/" file) file) | |
661 | (search-path %load-path file))))) | |
662 | ||
663 | (define* (operating-system-with-provenance os | |
664 | #:optional | |
665 | (config-file | |
666 | (operating-system-configuration-file | |
667 | os))) | |
33b7cb7a LC |
668 | "Return a variant of OS that stores its own provenance information, |
669 | including CONFIG-FILE, if available. This is achieved by adding an instance | |
670 | of PROVENANCE-SERVICE-TYPE to its services." | |
671 | (operating-system | |
672 | (inherit os) | |
673 | (services (cons (service provenance-service-type config-file) | |
674 | (operating-system-user-services os))))) | |
675 | ||
40281c54 LC |
676 | \f |
677 | ;;; | |
678 | ;;; /etc. | |
679 | ;;; | |
680 | ||
f34c56be LC |
681 | (define %base-firmware |
682 | ;; Firmware usable by default. | |
52db41af EB |
683 | (list ath9k-htc-firmware |
684 | openfwwf-firmware)) | |
f34c56be | 685 | |
93664fee BW |
686 | (define %base-packages-utils |
687 | ;; Default set of utilities packages. | |
688 | (cons* procps psmisc which | |
689 | (@ (gnu packages admin) shadow) ;for 'passwd' | |
690 | ||
030f6f48 | 691 | guile-3.0 |
93664fee BW |
692 | |
693 | ;; The packages below are also in %FINAL-INPUTS, so take them from | |
694 | ;; there to avoid duplication. | |
030f6f48 MB |
695 | (list bash coreutils findutils grep sed |
696 | diffutils patch gawk tar gzip bzip2 xz lzip))) | |
93664fee BW |
697 | |
698 | (define %base-packages-linux | |
699 | ;; Default set of linux specific packages. | |
700 | (list pciutils usbutils | |
701 | util-linux+udev | |
702 | ;; Get 'insmod' & co. from kmod, not module-init-tools, since udev | |
703 | ;; already depends on it anyway. | |
704 | kmod eudev)) | |
705 | ||
706 | (define %base-packages-interactive | |
707 | ;; Default set of common interactive packages. | |
708 | (list less zile nano | |
709 | man-db | |
710 | info-reader ;the standalone Info reader (no Perl) | |
711 | bash-completion | |
712 | kbd | |
713 | ;; The 'sudo' command is already in %SETUID-PROGRAMS, but we also | |
714 | ;; want the other commands and the man pages (notably because | |
715 | ;; auto-completion in Emacs shell relies on man pages.) | |
716 | sudo | |
717 | guile-readline guile-colorized)) | |
718 | ||
719 | (define %base-packages-networking | |
720 | ;; Default set of networking packages. | |
721 | (list inetutils isc-dhcp | |
722 | iproute | |
723 | ;; wireless-tools is deprecated in favor of iw, but it's still what | |
724 | ;; many people are familiar with, so keep it around. | |
725 | iw wireless-tools)) | |
726 | ||
6f436c54 LC |
727 | (define %base-packages |
728 | ;; Default set of packages globally visible. It should include anything | |
729 | ;; required for basic administrator tasks. | |
93664fee BW |
730 | (append (list e2fsprogs) |
731 | %base-packages-interactive | |
732 | %base-packages-linux | |
733 | %base-packages-networking | |
734 | %base-packages-utils)) | |
6f436c54 | 735 | |
548d4c13 LC |
736 | (define %default-issue |
737 | ;; Default contents for /etc/issue. | |
738 | " | |
739 | This is the GNU system. Welcome.\n") | |
740 | ||
568841d4 LC |
741 | (define (local-host-aliases host-name) |
742 | "Return aliases for HOST-NAME, to be used in /etc/hosts." | |
743 | (string-append "127.0.0.1 localhost " host-name "\n" | |
744 | "::1 localhost " host-name "\n")) | |
745 | ||
c65e1834 LC |
746 | (define (default-/etc/hosts host-name) |
747 | "Return the default /etc/hosts file." | |
24e02c28 | 748 | (plain-file "hosts" (local-host-aliases host-name))) |
c65e1834 | 749 | |
38437763 LC |
750 | (define (validated-sudoers-file file) |
751 | "Return a copy of FILE, a sudoers file, after checking that it is | |
752 | syntactically correct." | |
753 | (computed-file "sudoers" | |
754 | (with-imported-modules '((guix build utils)) | |
755 | #~(begin | |
756 | (use-modules (guix build utils)) | |
757 | ||
758 | (invoke #+(file-append sudo "/sbin/visudo") | |
759 | "--check" "--file" #$file) | |
760 | (copy-file #$file #$output))))) | |
761 | ||
0adfe95a LC |
762 | (define* (operating-system-etc-service os) |
763 | "Return a <service> that builds containing the static part of the /etc | |
764 | directory." | |
f5ca79d2 | 765 | (let* ((login.defs |
e453da13 LF |
766 | (plain-file "login.defs" |
767 | (string-append | |
768 | "# Default paths for non-login shells started by su(1).\n" | |
769 | "ENV_PATH /run/setuid-programs:" | |
770 | "/run/current-system/profile/bin:" | |
771 | "/run/current-system/profile/sbin\n" | |
772 | "ENV_SUPATH /run/setuid-programs:" | |
773 | "/run/current-system/profile/bin:" | |
774 | "/run/current-system/profile/sbin\n"))) | |
0adfe95a | 775 | |
f5ca79d2 JN |
776 | (hurd (operating-system-hurd os)) |
777 | (issue (plain-file "issue" (operating-system-issue os))) | |
778 | (nsswitch (operating-system-name-service-switch os)) | |
779 | (nsswitch (and nsswitch | |
780 | (plain-file "nsswitch.conf" | |
781 | (name-service-switch->string nsswitch)))) | |
782 | (sudoers (operating-system-sudoers-file os)) | |
0adfe95a LC |
783 | |
784 | ;; Startup file for POSIX-compliant login shells, which set system-wide | |
785 | ;; environment variables. | |
786 | (profile (mixed-text-file "profile" "\ | |
c05c4321 | 787 | # Crucial variables that could be missing in the profiles' 'etc/profile' |
d9959421 LC |
788 | # because they would require combining both profiles. |
789 | # FIXME: See <http://bugs.gnu.org/20255>. | |
97ab2c0f | 790 | export MANPATH=$HOME/.guix-profile/share/man:/run/current-system/profile/share/man |
8d09bfe2 | 791 | export INFOPATH=$HOME/.guix-profile/share/info:/run/current-system/profile/share/info |
00239d05 SB |
792 | export XDG_DATA_DIRS=$HOME/.guix-profile/share:/run/current-system/profile/share |
793 | export XDG_CONFIG_DIRS=$HOME/.guix-profile/etc/xdg:/run/current-system/profile/etc/xdg | |
794 | ||
ce380150 TD |
795 | # Make sure libXcursor finds cursors installed into user or system profiles. See <http://bugs.gnu.org/24445> |
796 | export XCURSOR_PATH=$HOME/.icons:$HOME/.guix-profile/share/icons:/run/current-system/profile/share/icons | |
797 | ||
d9959421 LC |
798 | # Ignore the default value of 'PATH'. |
799 | unset PATH | |
800 | ||
801 | # Load the system profile's settings. | |
bd7e136d | 802 | GUIX_PROFILE=/run/current-system/profile ; \\ |
669786da | 803 | . /run/current-system/profile/etc/profile |
d9959421 | 804 | |
cad7e6ab CSLL |
805 | # Since 'lshd' does not use pam_env, /etc/environment must be explicitly |
806 | # loaded when someone logs in via SSH. See <http://bugs.gnu.org/22175>. | |
807 | # We need 'PATH' to be defined here, for 'cat' and 'cut'. Do this before | |
808 | # reading the user's 'etc/profile' to allow variables to be overridden. | |
809 | if [ -f /etc/environment -a -n \"$SSH_CLIENT\" \\ | |
810 | -a -z \"$LINUX_MODULE_DIRECTORY\" ] | |
811 | then | |
812 | . /etc/environment | |
813 | export `cat /etc/environment | cut -d= -f1` | |
814 | fi | |
815 | ||
8d09bfe2 LC |
816 | # Arrange so that ~/.config/guix/current comes first. |
817 | for profile in \"$HOME/.guix-profile\" \"$HOME/.config/guix/current\" | |
cdc5b932 LC |
818 | do |
819 | if [ -f \"$profile/etc/profile\" ] | |
820 | then | |
821 | # Load the user profile's settings. | |
822 | GUIX_PROFILE=\"$profile\" ; \\ | |
823 | . \"$profile/etc/profile\" | |
824 | else | |
825 | # At least define this one so that basic things just work | |
826 | # when the user installs their first package. | |
827 | export PATH=\"$profile/bin:$PATH\" | |
828 | fi | |
829 | done | |
d9959421 | 830 | |
a854525a LC |
831 | # Prepend setuid programs. |
832 | export PATH=/run/setuid-programs:$PATH | |
833 | ||
8d09bfe2 LC |
834 | # Arrange so that ~/.config/guix/current/share/info comes first. |
835 | export INFOPATH=\"$HOME/.config/guix/current/share/info:$INFOPATH\" | |
836 | ||
11202482 LC |
837 | # Set the umask, notably for users logging in via 'lsh'. |
838 | # See <http://bugs.gnu.org/22650>. | |
839 | umask 022 | |
2a5f0db4 | 840 | |
c08da2ee LC |
841 | # Allow Hunspell-based applications (IceCat, LibreOffice, etc.) to |
842 | # find dictionaries. | |
843 | export DICPATH=\"$HOME/.guix-profile/share/hunspell:/run/current-system/profile/share/hunspell\" | |
844 | ||
4af7c83b LC |
845 | # Allow GStreamer-based applications to find plugins. |
846 | export GST_PLUGIN_PATH=\"$HOME/.guix-profile/lib/gstreamer-1.0\" | |
847 | ||
1d167b6e LC |
848 | if [ -n \"$BASH_VERSION\" -a -f /etc/bashrc ] |
849 | then | |
850 | # Load Bash-specific initialization code. | |
669786da | 851 | . /etc/bashrc |
1d167b6e | 852 | fi |
40281c54 | 853 | ")) |
1d167b6e | 854 | |
0adfe95a | 855 | (bashrc (plain-file "bashrc" "\ |
1d167b6e LC |
856 | # Bash-specific initialization. |
857 | ||
858 | # The 'bash-completion' package. | |
859 | if [ -f /run/current-system/profile/etc/profile.d/bash_completion.sh ] | |
860 | then | |
861 | # Bash-completion sources ~/.bash_completion. It installs a dynamic | |
862 | # completion loader that searches its own completion files as well | |
863 | # as those in ~/.guix-profile and /run/current-system/profile. | |
864 | source /run/current-system/profile/etc/profile.d/bash_completion.sh | |
0adfe95a LC |
865 | fi\n"))) |
866 | (etc-service | |
9e41130b LC |
867 | `(("services" ,(file-append net-base "/etc/services")) |
868 | ("protocols" ,(file-append net-base "/etc/protocols")) | |
869 | ("rpc" ,(file-append net-base "/etc/rpc")) | |
0adfe95a LC |
870 | ("login.defs" ,#~#$login.defs) |
871 | ("issue" ,#~#$issue) | |
f5ca79d2 | 872 | ,@(if nsswitch `(("nsswitch.conf" ,#~#$nsswitch)) '()) |
0adfe95a LC |
873 | ("profile" ,#~#$profile) |
874 | ("bashrc" ,#~#$bashrc) | |
875 | ("hosts" ,#~#$(or (operating-system-hosts-file os) | |
876 | (default-/etc/hosts (operating-system-host-name os)))) | |
c694520b TD |
877 | ;; Write the operating-system-host-name to /etc/hostname to prevent |
878 | ;; NetworkManager from changing the system's hostname when connecting | |
879 | ;; to certain networks. Some discussion at | |
880 | ;; https://lists.gnu.org/archive/html/help-guix/2017-09/msg00037.html | |
881 | ("hostname" ,(plain-file "hostname" (operating-system-host-name os))) | |
2a80d9e5 TS |
882 | ;; Some programs (e.g., GLib) look at /etc/timezone to find the |
883 | ;; name of the current timezone. For details, see | |
884 | ;; https://lists.gnu.org/archive/html/guix-devel/2019-07/msg00166.html | |
885 | ("timezone" ,(plain-file "timezone" (operating-system-timezone os))) | |
9e41130b LC |
886 | ("localtime" ,(file-append tzdata "/share/zoneinfo/" |
887 | (operating-system-timezone os))) | |
38437763 LC |
888 | ,@(if sudoers |
889 | `(("sudoers" ,(validated-sudoers-file sudoers))) | |
890 | '()) | |
f5ca79d2 JN |
891 | ,@(if hurd |
892 | `(("login" ,(file-append hurd "/etc/login")) | |
5681ce50 JN |
893 | ("motd" ,(file-append hurd "/etc/motd")) |
894 | ("ttys" ,(file-append hurd "/etc/ttys"))) | |
f5ca79d2 | 895 | '()))))) |
033adfe7 | 896 | |
ab6a279a LC |
897 | (define %root-account |
898 | ;; Default root account. | |
899 | (user-account | |
900 | (name "root") | |
901 | (password "") | |
902 | (uid 0) (group "root") | |
903 | (comment "System administrator") | |
904 | (home-directory "/root"))) | |
905 | ||
0b6f49ef | 906 | (define (operating-system-accounts os) |
0adfe95a LC |
907 | "Return the user accounts for OS, including an obligatory 'root' account, |
908 | and excluding accounts requested by services." | |
909 | ;; Make sure there's a root account. | |
910 | (if (find (lambda (user) | |
911 | (and=> (user-account-uid user) zero?)) | |
912 | (operating-system-users os)) | |
913 | (operating-system-users os) | |
914 | (cons %root-account (operating-system-users os)))) | |
0b6f49ef | 915 | |
84765839 LC |
916 | (define (maybe-string->file file-name thing) |
917 | "If THING is a string, return a <plain-file> with THING as its content. | |
918 | Otherwise just return THING. | |
919 | ||
920 | This is for backward-compatibility of fields that used to be strings and are | |
921 | now file-like objects.." | |
922 | (match thing | |
923 | ((? string?) | |
69daee23 | 924 | (warning (G_ "using a string for file '~a' is deprecated; \ |
84765839 LC |
925 | use 'plain-file' instead~%") |
926 | file-name) | |
927 | (plain-file file-name thing)) | |
928 | (x | |
929 | x))) | |
930 | ||
24e02c28 LC |
931 | (define (maybe-file->monadic file-name thing) |
932 | "If THING is a value in %STORE-MONAD, return it as is; otherwise return | |
933 | THING in the %STORE-MONAD. | |
934 | ||
935 | This is for backward-compatibility of fields that used to be monadic values | |
936 | and are now file-like objects." | |
937 | (with-monad %store-monad | |
938 | (match thing | |
939 | ((? procedure?) | |
69daee23 | 940 | (warning (G_ "using a monadic value for '~a' is deprecated; \ |
24e02c28 LC |
941 | use 'plain-file' instead~%") |
942 | file-name) | |
943 | thing) | |
944 | (x | |
945 | (return x))))) | |
946 | ||
0b6f49ef LC |
947 | (define (operating-system-etc-directory os) |
948 | "Return that static part of the /etc directory of OS." | |
0adfe95a LC |
949 | (etc-directory |
950 | (fold-services (operating-system-services os) | |
951 | #:target-type etc-service-type))) | |
033adfe7 | 952 | |
6bad7524 SB |
953 | (define (operating-system-environment-variables os) |
954 | "Return the environment variables of OS for | |
955 | @var{session-environment-service-type}, to be used in @file{/etc/environment}." | |
956 | `(("LANG" . ,(operating-system-locale os)) | |
54757499 LC |
957 | ;; Note: No need to set 'TZ' since (1) we provide /etc/localtime, and (2) |
958 | ;; it doesn't work for setuid binaries. See <https://bugs.gnu.org/29212>. | |
9e41130b | 959 | ("TZDIR" . ,(file-append tzdata "/share/zoneinfo")) |
6bad7524 SB |
960 | ;; Tell 'modprobe' & co. where to look for modules. |
961 | ("LINUX_MODULE_DIRECTORY" . "/run/booted-system/kernel/lib/modules") | |
962 | ;; These variables are honored by OpenSSL (libssl) and Git. | |
963 | ("SSL_CERT_DIR" . "/etc/ssl/certs") | |
964 | ("SSL_CERT_FILE" . "/etc/ssl/certs/ca-certificates.crt") | |
965 | ("GIT_SSL_CAINFO" . "/etc/ssl/certs/ca-certificates.crt") | |
ae05e366 LC |
966 | |
967 | ;; 'GTK_DATA_PREFIX' must name one directory where GTK+ themes are | |
968 | ;; searched for. | |
969 | ("GTK_DATA_PREFIX" . "/run/current-system/profile") | |
970 | ||
6bad7524 SB |
971 | ;; By default, applications that use D-Bus, such as Emacs, abort at startup |
972 | ;; when /etc/machine-id is missing. Make sure these warnings are non-fatal. | |
946465bb LC |
973 | ("DBUS_FATAL_WARNINGS" . "0") |
974 | ||
975 | ;; XXX: Normally we wouldn't need to do this, but our glibc@2.23 package | |
976 | ;; used to look things up in 'PREFIX/lib/locale' instead of | |
977 | ;; '/run/current-system/locale' as was intended. Keep this hack around so | |
978 | ;; that people who still have glibc@2.23-using packages in their profiles | |
979 | ;; can use them correctly. | |
980 | ;; TODO: Remove when glibc@2.23 is long gone. | |
981 | ("GUIX_LOCPATH" . "/run/current-system/locale"))) | |
6bad7524 | 982 | |
09e028f4 LC |
983 | (define %setuid-programs |
984 | ;; Default set of setuid-root programs. | |
3b65abac | 985 | (let ((shadow (@ (gnu packages admin) shadow))) |
9e41130b | 986 | (list (file-append shadow "/bin/passwd") |
f6c6970e | 987 | (file-append shadow "/bin/sg") |
9e41130b | 988 | (file-append shadow "/bin/su") |
f6c6970e | 989 | (file-append shadow "/bin/newgrp") |
852241eb SB |
990 | (file-append shadow "/bin/newuidmap") |
991 | (file-append shadow "/bin/newgidmap") | |
9e41130b LC |
992 | (file-append inetutils "/bin/ping") |
993 | (file-append inetutils "/bin/ping6") | |
994 | (file-append sudo "/bin/sudo") | |
5144df2c | 995 | (file-append sudo "/bin/sudoedit") |
19944227 LC |
996 | (file-append fuse "/bin/fusermount") |
997 | ||
998 | ;; To allow mounts with the "user" option, "mount" and "umount" must | |
999 | ;; be setuid-root. | |
1000 | (file-append util-linux "/bin/mount") | |
1001 | (file-append util-linux "/bin/umount")))) | |
69689380 LC |
1002 | |
1003 | (define %sudoers-specification | |
1004 | ;; Default /etc/sudoers contents: 'root' and all members of the 'wheel' | |
1005 | ;; group can do anything. See | |
1006 | ;; <http://www.sudo.ws/sudo/man/1.8.10/sudoers.man.html>. | |
1007 | ;; TODO: Add a declarative API. | |
84765839 LC |
1008 | (plain-file "sudoers" "\ |
1009 | root ALL=(ALL) ALL | |
1010 | %wheel ALL=(ALL) ALL\n")) | |
09e028f4 | 1011 | |
69cae3d3 | 1012 | (define* (operating-system-activation-script os) |
484a2b3a LC |
1013 | "Return the activation script for OS---i.e., the code that \"activates\" the |
1014 | stateful part of OS, including user accounts and groups, special directories, | |
1015 | etc." | |
69cae3d3 | 1016 | (let* ((services (operating-system-services os)) |
0adfe95a LC |
1017 | (activation (fold-services services |
1018 | #:target-type activation-service-type))) | |
1019 | (activation-service->script activation))) | |
484a2b3a | 1020 | |
69cae3d3 | 1021 | (define* (operating-system-boot-script os) |
484a2b3a | 1022 | "Return the boot script for OS---i.e., the code started by the initrd once |
69cae3d3 LC |
1023 | we're running in the final root." |
1024 | (let* ((services (operating-system-services os)) | |
d62e201c | 1025 | (boot (fold-services services #:target-type boot-service-type))) |
efe7d19a | 1026 | (service-value boot))) |
2106d3fc | 1027 | |
b2fef041 LC |
1028 | (define (operating-system-user-accounts os) |
1029 | "Return the list of user accounts of OS." | |
1030 | (let* ((services (operating-system-services os)) | |
1031 | (account (fold-services services | |
1032 | #:target-type account-service-type))) | |
1033 | (filter user-account? | |
efe7d19a | 1034 | (service-value account)))) |
b2fef041 LC |
1035 | |
1036 | (define (operating-system-shepherd-service-names os) | |
1037 | "Return the list of Shepherd service names for OS." | |
1038 | (append-map shepherd-service-provision | |
efe7d19a | 1039 | (service-value |
b2fef041 LC |
1040 | (fold-services (operating-system-services os) |
1041 | #:target-type | |
1042 | shepherd-root-service-type)))) | |
1043 | ||
69cae3d3 | 1044 | (define* (operating-system-derivation os) |
d62e201c | 1045 | "Return a derivation that builds OS." |
69cae3d3 | 1046 | (let* ((services (operating-system-services os)) |
d62e201c LC |
1047 | (system (fold-services services))) |
1048 | ;; SYSTEM contains the derivation as a monadic value. | |
efe7d19a | 1049 | (service-value system))) |
d62e201c | 1050 | |
69cae3d3 | 1051 | (define* (operating-system-profile os) |
af4c3fd5 LC |
1052 | "Return a derivation that builds the system profile of OS." |
1053 | (mlet* %store-monad | |
69cae3d3 | 1054 | ((services -> (operating-system-services os)) |
af4c3fd5 LC |
1055 | (profile (fold-services services |
1056 | #:target-type profile-service-type))) | |
1057 | (match profile | |
1058 | (("profile" profile) | |
1059 | (return profile))))) | |
1060 | ||
83bcd0b8 LC |
1061 | (define (operating-system-root-file-system os) |
1062 | "Return the root file system of OS." | |
d7e9e0bb LC |
1063 | (or (find (lambda (fs) |
1064 | (string=? "/" (file-system-mount-point fs))) | |
1065 | (operating-system-file-systems os)) | |
1066 | (raise (condition | |
1067 | (&message (message "missing root file system")) | |
1068 | (&error-location | |
1069 | (location (operating-system-location os))))))) | |
83bcd0b8 | 1070 | |
b4140694 LC |
1071 | (define (operating-system-initrd-file os) |
1072 | "Return a gexp denoting the initrd file of OS." | |
83bcd0b8 | 1073 | (define boot-file-systems |
4d6b879c | 1074 | (filter file-system-needed-for-boot? |
83bcd0b8 LC |
1075 | (operating-system-file-systems os))) |
1076 | ||
de1c158f LC |
1077 | (define mapped-devices |
1078 | (operating-system-boot-mapped-devices os)) | |
1079 | ||
1080 | (define make-initrd | |
1081 | (operating-system-initrd os)) | |
1082 | ||
d422cbb3 LC |
1083 | (make-initrd boot-file-systems |
1084 | #:linux (operating-system-kernel os) | |
1085 | #:linux-modules | |
1086 | (operating-system-initrd-modules os) | |
ae7a316b LC |
1087 | #:mapped-devices mapped-devices |
1088 | #:keyboard-layout (operating-system-keyboard-layout os))) | |
b4140694 | 1089 | |
78fbf2bd MO |
1090 | (define* (operating-system-uuid os #:optional (type 'dce)) |
1091 | "Compute UUID object with a deterministic \"UUID\" for OS, of the given | |
1092 | TYPE (one of 'iso9660 or 'dce). Return a UUID object." | |
1093 | ;; Note: For this to be deterministic, we must not hash things that contains | |
1094 | ;; (directly or indirectly) procedures, for example. That rules out | |
1095 | ;; anything that contains gexps, thunk or delayed record fields, etc. | |
1096 | ||
1097 | (define service-name | |
1098 | (compose service-type-name service-kind)) | |
1099 | ||
1100 | (define (file-system-digest fs) | |
1101 | ;; Return a hashable digest that does not contain 'dependencies' since | |
1102 | ;; this field can contain procedures. | |
1103 | (let ((device (file-system-device fs))) | |
1104 | (list (file-system-mount-point fs) | |
1105 | (file-system-type fs) | |
1106 | (file-system-device->string device) | |
1107 | (file-system-options fs)))) | |
1108 | ||
1109 | (if (eq? type 'iso9660) | |
1110 | (let ((pad (compose (cut string-pad <> 2 #\0) | |
1111 | number->string)) | |
1112 | (h (hash (map service-name (operating-system-services os)) | |
1113 | 3600))) | |
1114 | (bytevector->uuid | |
1115 | (string->iso9660-uuid | |
1116 | (string-append "1970-01-01-" | |
1117 | (pad (hash (operating-system-host-name os) 24)) "-" | |
1118 | (pad (quotient h 60)) "-" | |
1119 | (pad (modulo h 60)) "-" | |
1120 | (pad (hash (map file-system-digest | |
1121 | (operating-system-file-systems os)) | |
1122 | 100)))) | |
1123 | 'iso9660)) | |
1124 | (bytevector->uuid | |
1125 | (uint-list->bytevector | |
1126 | (list (hash (map file-system-digest | |
1127 | (operating-system-file-systems os)) | |
1128 | (- (expt 2 32) 1)) | |
1129 | (hash (operating-system-host-name os) | |
1130 | (- (expt 2 32) 1)) | |
1131 | (hash (map service-name (operating-system-services os)) | |
1132 | (- (expt 2 32) 1)) | |
1133 | (hash (map file-system-digest (operating-system-file-systems os)) | |
1134 | (- (expt 2 32) 1))) | |
1135 | (endianness little) | |
1136 | 4) | |
1137 | type))) | |
1138 | ||
f5582b2c LC |
1139 | (define (locale-name->definition* name) |
1140 | "Variant of 'locale-name->definition' that raises an error upon failure." | |
1141 | (match (locale-name->definition name) | |
1142 | (#f | |
d51bfe24 | 1143 | (raise (formatted-message (G_ "~a: invalid locale name") name))) |
f5582b2c LC |
1144 | (def def))) |
1145 | ||
598e19dc LC |
1146 | (define (operating-system-locale-directory os) |
1147 | "Return the directory containing the locales compiled for the definitions | |
1148 | listed in OS. The C library expects to find it under | |
1149 | /run/current-system/locale." | |
f5582b2c LC |
1150 | (define name |
1151 | (operating-system-locale os)) | |
1152 | ||
1153 | (define definitions | |
1154 | ;; While we're at it, check whether NAME is defined and add it if needed. | |
1155 | (if (member name (map locale-definition-name | |
1156 | (operating-system-locale-definitions os))) | |
1157 | (operating-system-locale-definitions os) | |
1158 | (cons (locale-name->definition* name) | |
1159 | (operating-system-locale-definitions os)))) | |
1160 | ||
1161 | (locale-directory definitions | |
34760ae7 | 1162 | #:libcs (operating-system-locale-libcs os))) |
598e19dc | 1163 | |
e6cd8581 | 1164 | (define* (kernel->boot-label kernel #:key hurd) |
c2e9942b | 1165 | "Return a label for the bootloader menu entry that boots KERNEL." |
e6cd8581 JN |
1166 | (cond ((package? hurd) |
1167 | (string-append "GNU with the " | |
1168 | (string-titlecase (package-name hurd)) " " | |
1169 | (package-version hurd))) | |
1170 | ((package? kernel) | |
bdc61ff9 P |
1171 | (string-append "GNU with " |
1172 | (string-titlecase (package-name kernel)) " " | |
4ce3a326 | 1173 | (package-version kernel))) |
bdc61ff9 P |
1174 | ((inferior-package? kernel) |
1175 | (string-append "GNU with " | |
b12f8720 | 1176 | (string-titlecase (inferior-package-name kernel)) " " |
4ce3a326 | 1177 | (inferior-package-version kernel))) |
bdc61ff9 | 1178 | (else "GNU"))) |
2d23e6f0 | 1179 | |
3f03a198 LC |
1180 | (define (operating-system-default-label os) |
1181 | "Return the default label for OS, as it will appear in the bootloader menu | |
1182 | entry." | |
e6cd8581 JN |
1183 | (kernel->boot-label (operating-system-kernel os) |
1184 | #:hurd (operating-system-hurd os))) | |
3f03a198 | 1185 | |
6b779207 LC |
1186 | (define (store-file-system file-systems) |
1187 | "Return the file system object among FILE-SYSTEMS that contains the store." | |
1188 | (match (filter (lambda (fs) | |
1189 | (and (file-system-mount? fs) | |
1190 | (not (memq 'bind-mount (file-system-flags fs))) | |
1191 | (string-prefix? (file-system-mount-point fs) | |
1192 | (%store-prefix)))) | |
1193 | file-systems) | |
1194 | ((and candidates (head . tail)) | |
1195 | (reduce (lambda (fs1 fs2) | |
1196 | (if (> (string-length (file-system-mount-point fs1)) | |
1197 | (string-length (file-system-mount-point fs2))) | |
1198 | fs1 | |
1199 | fs2)) | |
1200 | head | |
1201 | candidates)))) | |
1202 | ||
1203 | (define (operating-system-store-file-system os) | |
1204 | "Return the file system that contains the store of OS." | |
1205 | (store-file-system (operating-system-file-systems os))) | |
1206 | ||
c76b3046 | 1207 | (define* (operating-system-bootcfg os #:optional (old-entries '())) |
5ece56dc LC |
1208 | "Return the bootloader configuration file for OS. Use OLD-ENTRIES, |
1209 | a list of <menu-entry>, to populate the \"old entries\" menu." | |
b460ba79 MC |
1210 | (let* ((file-systems (operating-system-file-systems os)) |
1211 | (root-fs (operating-system-root-file-system os)) | |
9782c822 LC |
1212 | (root-device (file-system-device root-fs)) |
1213 | (params (operating-system-boot-parameters | |
1214 | os root-device | |
1215 | #:system-kernel-arguments? #t)) | |
1216 | (entry (boot-parameters->menu-entry params)) | |
1217 | (bootloader-conf (operating-system-bootloader os))) | |
b460ba79 | 1218 | |
46c296dc LC |
1219 | (define generate-config-file |
1220 | (bootloader-configuration-file-generator | |
1221 | (bootloader-configuration-bootloader bootloader-conf))) | |
1222 | ||
9782c822 | 1223 | (generate-config-file bootloader-conf (list entry) |
b460ba79 | 1224 | #:old-entries old-entries |
e7b86a0d | 1225 | #:store-directory-prefix |
b460ba79 | 1226 | (btrfs-store-subvolume-file-name file-systems)))) |
b4140694 | 1227 | |
912b857e JN |
1228 | (define (operating-system-multiboot-modules os) |
1229 | (if (operating-system-hurd os) (hurd-multiboot-modules os) '())) | |
1230 | ||
1231 | (define (hurd-multiboot-modules os) | |
1232 | (let* ((hurd (operating-system-hurd os)) | |
1233 | (root-file-system-command | |
1234 | (list (file-append hurd "/hurd/ext2fs.static") | |
1235 | "ext2fs" | |
1236 | "--multiboot-command-line='${kernel-command-line}'" | |
1237 | "--host-priv-port='${host-port}'" | |
1238 | "--device-master-port='${device-port}'" | |
1239 | "--exec-server-task='${exec-task}'" | |
1240 | "--store-type=typed" | |
f25e8f76 | 1241 | "--x-xattr-translator-records" |
912b857e JN |
1242 | "'${root}'" "'$(task-create)'" "'$(task-resume)'")) |
1243 | (target (%current-target-system)) | |
1244 | (libc (if target | |
1245 | (with-parameters ((%current-target-system #f)) | |
1246 | ;; TODO: cross-libc has extra patches for the Hurd; | |
1247 | ;; remove in next rebuild cycle | |
1248 | (cross-libc target)) | |
1249 | glibc)) | |
1250 | (exec-server-command | |
1251 | (list (file-append libc "/lib/ld.so.1") "exec" | |
1252 | (file-append hurd "/hurd/exec") "'$(exec-task=task-create)'"))) | |
1253 | (list root-file-system-command exec-server-command))) | |
1254 | ||
a7ef45d9 LC |
1255 | (define* (operating-system-boot-parameters os root-device |
1256 | #:key system-kernel-arguments?) | |
1257 | "Return a monadic <boot-parameters> record that describes the boot | |
1258 | parameters of OS. When SYSTEM-KERNEL-ARGUMENTS? is true, add kernel arguments | |
1259 | such as '--root' and '--load' to <boot-parameters>." | |
395782f2 | 1260 | (let* ((initrd (and (not (operating-system-hurd os)) |
912b857e | 1261 | (operating-system-initrd-file os))) |
35b44681 LC |
1262 | (store (operating-system-store-file-system os)) |
1263 | (bootloader (bootloader-configuration-bootloader | |
1264 | (operating-system-bootloader os))) | |
1265 | (bootloader-name (bootloader-name bootloader)) | |
912b857e JN |
1266 | (label (operating-system-label os)) |
1267 | (multiboot-modules (operating-system-multiboot-modules os))) | |
35b44681 LC |
1268 | (boot-parameters |
1269 | (label label) | |
1270 | (root-device root-device) | |
1271 | (kernel (operating-system-kernel-file os)) | |
1272 | (kernel-arguments | |
1273 | (if system-kernel-arguments? | |
1274 | (operating-system-kernel-arguments os root-device) | |
1275 | (operating-system-user-kernel-arguments os))) | |
1276 | (initrd initrd) | |
912b857e | 1277 | (multiboot-modules multiboot-modules) |
35b44681 | 1278 | (bootloader-name bootloader-name) |
a28cfee8 LC |
1279 | (bootloader-menu-entries |
1280 | (bootloader-configuration-menu-entries (operating-system-bootloader os))) | |
35b44681 LC |
1281 | (store-device (ensure-not-/dev (file-system-device store))) |
1282 | (store-mount-point (file-system-mount-point store))))) | |
40fad1c2 | 1283 | |
9b336338 LC |
1284 | (define (device->sexp device) |
1285 | "Serialize DEVICE as an sexp (really, as an object with a read syntax.)" | |
1286 | (match device | |
1287 | ((? uuid? uuid) | |
075681d3 | 1288 | `(uuid ,(uuid-type uuid) ,(uuid-bytevector uuid))) |
a5acc17a LC |
1289 | ((? file-system-label? label) |
1290 | `(file-system-label ,(file-system-label->string label))) | |
9b336338 LC |
1291 | (_ |
1292 | device))) | |
1293 | ||
a7ef45d9 LC |
1294 | (define* (operating-system-boot-parameters-file os |
1295 | #:key system-kernel-arguments?) | |
40fad1c2 DM |
1296 | "Return a file that describes the boot parameters of OS. The primary use of |
1297 | this file is the reconstruction of GRUB menu entries for old configurations. | |
a7ef45d9 LC |
1298 | |
1299 | When SYSTEM-KERNEL-ARGUMENTS? is true, add kernel arguments such as '--root' | |
1300 | and '--load' to the returned file (since the returned file is then usually | |
1301 | stored into the content-addressed \"system\" directory, it's usually not a | |
1302 | good idea to give it because the content hash would change by the content hash | |
40fad1c2 | 1303 | being stored into the \"parameters\" file)." |
35b44681 LC |
1304 | (let* ((root (operating-system-root-file-system os)) |
1305 | (device (file-system-device root)) | |
1306 | (params (operating-system-boot-parameters | |
1307 | os device | |
1308 | #:system-kernel-arguments? | |
1309 | system-kernel-arguments?))) | |
2e37d158 LC |
1310 | (scheme-file "parameters" |
1311 | #~(boot-parameters | |
1312 | (version 0) | |
1313 | (label #$(boot-parameters-label params)) | |
1314 | (root-device | |
1315 | #$(device->sexp | |
1316 | (boot-parameters-root-device params))) | |
1317 | (kernel #$(boot-parameters-kernel params)) | |
1318 | (kernel-arguments | |
1319 | #$(boot-parameters-kernel-arguments params)) | |
2b76179e JN |
1320 | #$@(if (boot-parameters-initrd params) |
1321 | #~((initrd #$(boot-parameters-initrd params))) | |
1322 | #~()) | |
1323 | #$@(if (pair? (boot-parameters-multiboot-modules params)) | |
1324 | #~((multiboot-modules | |
1325 | #$(boot-parameters-multiboot-modules params))) | |
1326 | #~()) | |
2e37d158 LC |
1327 | (bootloader-name #$(boot-parameters-bootloader-name params)) |
1328 | (bootloader-menu-entries | |
1329 | #$(map menu-entry->sexp | |
1330 | (or (and=> (operating-system-bootloader os) | |
1331 | bootloader-configuration-menu-entries) | |
1332 | '()))) | |
1333 | (store | |
1334 | (device | |
1335 | #$(device->sexp (boot-parameters-store-device params))) | |
1336 | (mount-point #$(boot-parameters-store-mount-point | |
1337 | params)))) | |
1338 | #:set-load-path? #f))) | |
64e40dbb | 1339 | |
96da5d62 LC |
1340 | (define-gexp-compiler (operating-system-compiler (os <operating-system>) |
1341 | system target) | |
1342 | ((store-lift | |
1343 | (lambda (store) | |
1344 | ;; XXX: This is not super elegant but we can't pass SYSTEM and TARGET to | |
1345 | ;; 'operating-system-derivation'. | |
1346 | (run-with-store store (operating-system-derivation os) | |
1347 | #:system system | |
1348 | #:target target))))) | |
1349 | ||
033adfe7 | 1350 | ;;; system.scm ends here |