9df620492c8e1473fff329cf7695e6e005dc8479
[grml-live.git] / etc / grml / fai / config / scripts / GRMLBASE / 98-clean-chroot
1 #!/bin/bash
2 # Filename:      ${GRML_FAI_CONFIG}/config/scripts/GRMLBASE/98-clean-chroot
3 # Purpose:       clean up chroot system
4 # Authors:       grml-team (grml.org), (c) Michael Prokop <mika@grml.org>
5 # Bug-Reports:   see http://grml.org/bugs/
6 # License:       This file is licensed under the GPL v2.
7 ################################################################################
8
9 set -u
10 set -e
11
12 if ! ls $target/boot/config-* &>/dev/null ; then
13   echo "No kernel config files (/boot/config-*) found. No kernel-image package installed?" >&2
14   exit 1
15 fi
16
17 echo "Creating ~/.zshrc"
18 touch $target/root/.zshrc
19
20 if [ -x $target/usr/sbin/localepurge ] ; then
21   echo "Running localepurge"
22   $ROOTCMD localepurge
23 else
24   echo "Warning: localepurge not installed"
25 fi
26
27 # revert dpkg-divert of hooks/instsoft.GRMLBASE, which is
28 # used to work around /etc/kernel/postinst.d/zz-update-grub failing
29 # inside openvz environment, see #597084
30 if $ROOTCMD dpkg-divert --list | grep -q '/usr/sbin/update-grub' ; then
31   echo "Undoing dpkg-divert of update-grub executable"
32   $ROOTCMD rm -f /usr/sbin/update-grub
33   $ROOTCMD dpkg-divert --rename --remove /usr/sbin/update-grub
34 fi
35
36 # revert udev workaround of hooks/updatebase.GRMLBASE
37 if grep -q 'updatebase.GRMLBASE' ${target}/etc/udev/kernel-upgrade 2>/dev/null ; then
38   echo "Removing /etc/udev/kernel-upgrade created by updatebase.GRMLBASE"
39   $ROOTCMD rm -f /etc/udev/kernel-upgrade
40 fi
41
42 echo "Removing /var/lib/apt/lists/*-stuff, dpkg-status-old and pkgcache.bin"
43 rm -f $target/var/lib/apt/lists/*Packages \
44       $target/var/lib/apt/lists/*Release \
45       $target/var/lib/apt/lists/*Sources \
46       $target/var/lib/apt/lists/*IndexDiff \
47       $target/var/lib/apt/lists/*.gpg \
48       $target/var/cache/apt-show-versions/* \
49       $target/var/cache/debconf/templates.dat-old \
50       $target/var/cache/apt/*.bin
51
52 echo "Cleaning apt places"
53 $ROOTCMD apt-get check 2>/dev/null
54 $ROOTCMD dpkg --clear-avail
55 $ROOTCMD apt-cache gencaches 2>/dev/null
56 $ROOTCMD apt-get clean
57
58 rm -f $target/var/lib/dpkg/status-old $target/var/lib/dpkg/available-old
59
60 if ! [ -x $target/usr/bin/grep-dctrl ] ; then
61   echo "Warning: grep-dctrl not installed"
62 else
63   echo "Cleaning up /var/lib/dpkg/status"
64   if $ROOTCMD grep-dctrl -v -F Status "purge ok not-installed" \
65     /var/lib/dpkg/status > $target/var/lib/dpkg/status.new ; then
66     mv $target/var/lib/dpkg/status.new $target/var/lib/dpkg/status
67     chmod 644 $target/var/lib/dpkg/status
68     chown root:root $target/var/lib/dpkg/status
69   fi
70 fi
71
72 echo "Removing host ssh-keys"
73 rm -f $target/etc/ssh/*key*
74
75 echo "Removing dbus machine-id"
76 rm -f $target/var/lib/dbus/machine-id
77
78 if [ -d $target/var/spool/squid/ ] ; then
79   echo "Cleaning /var/spool/squid/0*"
80   rm -rf $target/var/spool/squid/0*
81 fi
82
83 echo "Cleaning and removing some misc files and directories"
84 find $target/etc -type f -name *.pre_fcopy -delete
85 rm -rf --one-file-system $target/etc/sysconfig/* \
86        $target/etc/motd.dpkg-* $target/etc/auto.master.*dpkg* \
87        $target/etc/samba/*.SID $target/etc/samba/*.tdb \
88        $target/var/log/ksymoops/* \
89        $target/var/state/* $target/var/log/nessus/* \
90        $target/halt $target/reboot $target/ash.static \
91        $target/etc/dhcpc/*.info $target/etc/dhcpc/resolv* \
92        $target/etc/*passwd- $target/etc/*shadow- \
93        $target/etc/*group- $target/var/spool/postfix/maildrop/* \
94        $target/etc/*.old $target/etc/*.original \
95        $target/etc/lvm/.cache $target/etc/lvm/cache/.cache \
96        $target/etc/lvm/backup/main $target/tmp/* \
97        $target/var/tmp/* $target/var/backups/* \
98        $target/var/lib/mysql $target/var/log/lilo_log.* $target/core*
99
100 # remove only "temporary" or saved files in the given directories
101 nuke(){
102   for i in $(find "$@" -name \*.gz -o -name \*.bz2 -o -name \*.0 2>/dev/null); do
103     rm -f --one-file-system "$i"
104   done
105 }
106
107 # set all files in the given directories to a length of zero
108 zero(){
109   for i in $(find "$@" -type f -size +0 -not -name \*.ini -not -path '*/fai/*' 2>/dev/null); do
110     :> "$i"
111   done
112 }
113
114 echo "Cleaning log and cache directories"
115 nuke ${target}/var/log       ${target}/var/cache
116 zero ${target}/var/account/pacct \
117      ${target}/var/cache/man \
118      ${target}/var/lib/games \
119      ${target}/var/lib/nfs   \
120      ${target}/var/lib/xkb   \
121      ${target}/var/local     \
122      ${target}/var/log       \
123      ${target}/var/mail/grml
124
125 # on /run we don't have to create it
126 if [ -d ${target}/var/run ] ; then
127   echo "Recreate empty utmp and wtmp"
128   :>${target}/var/run/utmp
129   :>${target}/var/run/wtmp
130 fi
131
132 if ! [ -x $target/usr/sbin/update-ca-certificates ] ; then
133   echo "Warning: update-ca-certificates not installed"
134 else
135   echo "Updating ca-certificates"
136   $ROOTCMD update-ca-certificates
137 fi
138
139 # regenerate ls.so.cache
140 if ! [ -x $target/sbin/ldconfig ] ; then
141   echo "Warning: ldconfig not installed"
142 else
143   echo "Updating ld.so.cache"
144   $ROOTCMD ldconfig
145 fi
146
147 if ! [ -x $target/usr/bin/update-menus ] ; then
148   echo "Warning: update-menus not installed"
149 else
150   echo "Updating windowmanager menus"
151   $ROOTCMD update-menus -v
152 fi
153
154 if ! [ -x $target/usr/bin/mandb ] ; then
155   echo "Warning: mandb not installed"
156 else
157   echo "Updating mandb"
158   $ROOTCMD mandb -c
159   $ROOTCMD man doesnotexist >/dev/null 2>&1 || true
160 fi
161
162 if ! [ -d $target/var/lib/clamav/ ] ; then
163   echo "Warning: clamav[-freshclam] not installed"
164 else
165   echo "Cleaning /var/lib/clamav/"
166   $ROOTCMD rm -rf /var/lib/clamav/clamav-*
167
168   echo "Setting up daily.cvd and main.cvd symlinks"
169   if [ -f $target/var/lib/clamav/daily.cvd ] ; then
170     mkdir -p $target/usr/share/doc/clamav-freshclam/examples/
171     ln -sf /var/lib/clamav/daily.cvd $target/usr/share/doc/clamav-freshclam/examples/
172     ln -sf /var/lib/clamav/main.cvd  $target/usr/share/doc/clamav-freshclam/examples/
173   fi
174 fi
175
176 if ! [ -r $target/etc/ld.so.nohwcap ] ; then
177    echo "Creating /etc/ld.so.nohwcap"
178    touch $target/etc/ld.so.nohwcap
179 fi
180
181 # installation of resolvconf in chroot *with* /proc
182 # is different from an installation without /proc,
183 # so make sure it is OK in any case
184 if ! [ -d $target/etc/resolvconf ] ; then
185   echo "Warning: resolvconf not installed"
186 else
187   echo "Setting up resolvconf"
188   if [ -L $target/etc/resolvconf/run ] ; then # resolvconf with /run
189     # /etc/resolvconf/run symlinks to /run/resolvconf
190     RESOLV_CONF=/run/resolvconf/
191   else # no /run present
192     RESOLV_CONF=/etc/resolvconf/run/
193   fi
194
195   rm -rf   ${target}/${RESOLV_CONF}
196   mkdir -p ${target}/${RESOLV_CONF}
197
198   touch ${target}/${RESOLV_CONF}/enable-updates
199   mkdir ${target}/${RESOLV_CONF}/interface
200
201   cat > ${target}/${RESOLV_CONF}/resolv.conf << EOF
202 # Dynamic resolv.conf(5) file for glibc resolver(3) generated by resolvconf(8)
203 #     DO NOT EDIT THIS FILE BY HAND -- YOUR CHANGES WILL BE OVERWRITTEN
204 EOF
205 fi
206
207 if ! $ROOTCMD test -x /usr/bin/updatedb ; then
208   echo "Warning: updatedb not installed"
209 else
210   echo "Updating locate-database"
211   $ROOTCMD updatedb --prunepaths='/tmp /usr/tmp /var/tmp /grml /root /proc /sys'
212 fi
213
214 ## END OF FILE #################################################################
215 # vim:ft=sh expandtab ai tw=80 tabstop=4 shiftwidth=2