+askpass() {
+ # read -s emulation for dash. result is in $resp.
+ set -o noglob
+ [ -t 0 ] && stty -echo
+ read resp
+ [ -t 0 ] && stty echo
+ set +o noglob
+}
+# }}}
+
+# define chroot mirror {{{
+chrootmirror() {
+ if [ -n "$KEEP_SRC_LIST" ] ; then
+ echo "KEEP_SRC_LIST has been set, skipping chrootmirror stage."
+ return
+ fi
+
+ if [ -z "$COMPONENTS" ] ; then
+ COMPONENTS='main contrib non-free'
+ fi
+ echo "Using repository components $COMPONENTS"
+
+ if [ -n "$ISO" ] ; then
+ echo "Adjusting sources.list for ISO (${ISO})."
+ echo "deb $ISO $RELEASE $COMPONENTS" > /etc/apt/sources.list
+ echo "Adding mirror entry (${MIRROR}) to sources.list."
+ [ -n "$MIRROR" ] && echo "deb $MIRROR $RELEASE $COMPONENTS" >> /etc/apt/sources.list || true
+ else
+ if [ -n "$MIRROR" ] ; then
+ echo "Adjusting sources.list for mirror (${MIRROR})."
+ echo "deb $MIRROR $RELEASE $COMPONENTS" > /etc/apt/sources.list
+ fi
+ fi
+
+ # add security.debian.org:
+ case "$RELEASE" in
+ unstable|sid) ;; # no security pool available
+ *)
+ echo "Adding security.debian.org to sources.list."
+ echo "deb http://security.debian.org ${RELEASE}/updates $COMPONENTS" >> /etc/apt/sources.list
+ ;;
+ esac
+}
+# }}}
+
+# remove local chroot mirror {{{
+remove_chrootmirror() {
+ if [ -n "$KEEP_SRC_LIST" ] ; then
+ echo "KEEP_SRC_LIST has been set, skipping remove_chrootmirror stage."
+ return
+ fi
+
+ if [ -n "$ISO" ] ; then
+ echo "Removing ISO (${ISO}) from sources.list."
+ TMP_ISO=$(echo "$ISO" |sed 's#/#\\/#g')
+ sed -i "/deb $TMP_ISO $RELEASE $COMPONENTS/ D" /etc/apt/sources.list
+ else
+ if [ -n "$MIRROR" -a -n "$(echo $MIRROR|grep file:)" ] ; then
+ echo "Removing local mirror (${MIRROR}) from sources.list."
+ TMP_MIRROR=$(echo "$MIRROR" |sed 's#/#\\/#g')
+ sed -i "/deb $TMP_MIRROR $RELEASE $COMPONENTS/ D" /etc/apt/sources.list
+ echo "Adding fallback mirror entry (${FALLBACK_MIRROR}) to sources.list instead."
+ echo "deb $FALLBACK_MIRROR $RELEASE $COMPONENTS" >> /etc/apt/sources.list
+ fi
+ fi
+}
+# }}}
+
+# set up grml repository {{{
+grmlrepos() {
+ if [ -n "$GRMLREPOS" ] ; then
+ # user might have provided their own apt sources.list
+ if ! grep -q grml /etc/apt/sources.list.d/grml.list 2>/dev/null ; then
+ cat >> /etc/apt/sources.list.d/grml.list << EOF
+# grml: stable repository:
+ deb http://deb.grml.org/ grml-stable main
+ deb-src http://deb.grml.org/ grml-stable main
+
+# grml: testing/development repository:
+ deb http://deb.grml.org/ grml-testing main
+ deb-src http://deb.grml.org/ grml-testing main
+EOF
+ fi
+
+ if apt-get update $DPKG_OPTIONS; then
+ apt-get -y --allow-unauthenticated install grml-debian-keyring $DPKG_OPTIONS
+ apt-get update $DPKG_OPTIONS
+ else
+ # make sure we have the keys available for aptitude
+ gpg --keyserver subkeys.pgp.net --recv-keys F61E2E7CECDEA787
+ gpg --export F61E2E7CECDEA787 | apt-key add - || true # not yet sure
+ # why it's necessary, sometimes we get an error even though it works [mika]
+ fi
+
+ # make sure we install packages from Grml's pool only if not available
+ # from Debian!
+ if ! grep -q grml /etc/apt/preferences 2>/dev/null ; then
+ cat >> /etc/apt/preferences << EOF
+// debian pool (default):
+Package: *
+Pin: release o=Debian
+Pin-Priority: 996
+
+// main grml-repository:
+Package: *
+Pin: origin deb.grml.org
+Pin-Priority: 991
+EOF
+ fi
+ fi
+}
+# }}}
+
+# check available backports release version {{{
+checkbackports() {
+ wget -q -O/dev/null http://backports.debian.org/debian-backports/dists/${1}-backports/Release
+}
+# }}}
+
+# feature to provide Debian backports repos {{{
+backportrepos() {
+ if [ -n "$BACKPORTREPOS" ] ; then
+ if ! checkbackports $RELEASE ; then
+ echo "Backports for ${RELEASE} are not available." >&2
+ exit 1
+ else
+ # user might have provided their own apt sources.list
+ if ! grep -q backports /etc/apt/sources.list.d/backports.list 2>/dev/null ; then
+ cat >> /etc/apt/sources.list.d/backports.list << EOF
+# debian backports: ${RELEASE}-backports repository:
+deb http://backports.debian.org/debian-backports ${RELEASE}-backports main
+deb-src http://backports.debian.org/debian-backports ${RELEASE}-backports main
+EOF
+ fi
+ fi
+ fi
+}
+# }}}
+
+# set up kernel-img.conf {{{
+kernelimg_conf() {
+ if ! [ -r /etc/kernel-img.conf ] ; then
+ echo "Setting up /etc/kernel-img.conf"
+ cat > /etc/kernel-img.conf << EOF
+# Kernel Image management overrides
+# See kernel-img.conf(5) for details
+do_initrd = Yes
+do_symlinks = Yes
+EOF
+ fi
+}
+# }}}
+
+# make sure services do not start up {{{
+install_policy_rcd() {
+ if ! [ -r /usr/sbin/policy-rc.d ] ; then
+ export POLICYRCD=1
+ cat > /usr/sbin/policy-rc.d << EOF
+#!/bin/sh
+exit 101
+EOF
+ chmod 775 /usr/sbin/policy-rc.d
+ fi
+}
+# }}}
+
+# make sure we have an up2date system {{{
+upgrade_system() {
+ if [ "$UPGRADE_SYSTEM" = "yes" ] ; then
+ echo "Running update + upgrade"
+ $APTUPDATE
+ $APTUPGRADE
+ else
+ echo "Not running update + upgrade as \$UPDATE_AND_UPGRADE is not set to 'yes'."
+ fi
+}
+
+# }}}
+# remove now useless apt cache {{{
+remove_apt_cache() {
+ if [ "$RM_APTCACHE" = 'yes' ] ; then
+ echo "Cleaning apt cache."
+ apt-get clean $DPKG_OPTIONS
+ else
+ echo "Not cleaning apt cache as \$RM_APTCACHE is unset."
+ fi
+}
+# }}}
+
+# install additional packages {{{
+packages() {
+ # Pre-seed the debconf database with answers. Each question will be marked
+ # as seen to prevent debconf from asking the question interactively.
+ [ -f /etc/debootstrap/debconf-selections ] && {
+ echo "Preseeding the debconf database, some lines might be skipped..."
+ cat /etc/debootstrap/debconf-selections | debconf-set-selections
+ }
+
+ if [ "$PACKAGES" = 'yes' ] ; then
+ if ! [ -r /etc/debootstrap/packages ] ; then
+ echo "Error: /etc/debootstrap/packages (inside chroot) not found, exiting." >&2
+ exit 1
+ else
+ $APTUPDATE
+ DEBIAN_FRONTEND=$DEBIAN_FRONTEND $APTINSTALL $(grep -v '^#' /etc/debootstrap/packages) $GRMLPACKAGES
+ fi
+ fi
+}
+# }}}
+
+# install extra packages {{{
+extrapackages() {
+ if [ "$EXTRAPACKAGES" = 'yes' ] ; then
+ PACKAGELIST=$(find /etc/debootstrap/extrapackages -type f -name '*.deb')
+ if [ -n "$PACKAGELIST" ]; then
+ dpkg -i $PACKAGELIST
+ # run apt again to resolve any deps
+ DEBIAN_FRONTEND=$DEBIAN_FRONTEND $APTINSTALL
+ fi
+ fi
+}
+# }}}
+
+# check if the specified Debian package exists
+package_exists() {
+ output=$(apt-cache show "$1" 2>/dev/null)
+ [ -n "$output" ]
+ return $?
+}
+
+
+# determine the kernel version postfix
+get_kernel_version() {
+ # do not override $KERNEL if set via config file
+ if [ -n "$KERNEL" ] ; then
+ echo "$KERNEL"
+ return 0
+ fi
+
+ case $ARCH in
+ i386) KARCH=686 ;;
+ amd64) KARCH=amd64 ;;
+ *)
+ echo "Only i386 and amd64 are currently supported" >&2
+ return 1
+ esac
+
+ for KPREFIX in "" "2.6-" ; do # iterate through the kernel prefixes,
+ # currently "" and "2.6-"
+ if package_exists linux-image-${KPREFIX}${KARCH} ; then
+ echo ${KPREFIX}${KARCH}
+ return 0
+ fi
+
+ done
+}
+
+# install kernel packages {{{
+kernel() {
+ $APTUPDATE
+ KVER=$(get_kernel_version)
+ if [ -n "$KVER" ] ; then
+ # note: install busybox to be able to debug initramfs
+ KERNELPACKAGES="linux-image-$KVER linux-headers-$KVER busybox firmware-linux-free firmware-linux"
+ DEBIAN_FRONTEND=$DEBIAN_FRONTEND $APTINSTALL $KERNELPACKAGES
+ else
+ echo "Warning: Could not find a kernel for your system. Your system won't be able to boot itself!"
+ fi
+}
+# }}}
+
+# reconfigure packages {{{
+reconfigure() {
+ if [ -n "$RECONFIGURE" ] ; then
+ for package in $RECONFIGURE ; do
+ if dpkg --list $package >/dev/null 2>&1 | grep -q '^ii' ; then
+ DEBIAN_FRONTEND=$DEBIAN_FRONTEND dpkg-reconfigure $package || \
+ echo "Warning: $package does not exist, can not reconfigure it."
+ fi
+ done
+ fi
+}
+# }}}
+
+# set password of user root {{{
+passwords()
+{
+ if [ -n "$NOPASSWORD" ] ; then
+ echo "Skip setting root password as requested."
+ return 0
+ fi
+
+ echo "Activating shadow passwords."
+ shadowconfig on