71
# Import modules from the website is tricky since they're in the www
73
sys.path.append(os.path.join(os.getcwd(), 'lib'))
75
import common.makeuser
77
# Determine which Python version (2.4 or 2.5, for example) we are running,
78
# and use that as the filename to the Python directory.
79
# Just get the first 3 characters of sys.version.
80
PYTHON_VERSION = sys.version[0:3]
82
# Operating system files to copy over into the jail.
83
# These will be copied from the given place on the OS file system into the
84
# same place within the jail.
87
'/lib/tls/i686/cmov/libc.so.6',
88
'/lib/tls/i686/cmov/libdl.so.2',
89
'/lib/tls/i686/cmov/libm.so.6',
90
'/lib/tls/i686/cmov/libpthread.so.0',
91
'/lib/tls/i686/cmov/libutil.so.1',
94
# These 2 files do not exist in Ubuntu
95
#'/etc/ld.so.preload',
96
#'/etc/ld.so.nohwcap',
102
'/usr/bin/python%s' % PYTHON_VERSION,
103
# Needed by fileservice
104
'/lib/libcom_err.so.2',
105
'/lib/libcrypt.so.1',
106
'/lib/libkeyutils.so.1',
107
'/lib/libresolv.so.2',
110
'/usr/lib/libapr-1.so.0',
111
'/usr/lib/libaprutil-1.so.0',
112
'/usr/lib/libdb-4.4.so',
113
'/usr/lib/libexpat.so.1',
114
'/usr/lib/libgcrypt.so.11',
115
'/usr/lib/libgnutls.so.13',
116
'/usr/lib/libgpg-error.so.0',
117
'/usr/lib/libgssapi_krb5.so.2',
118
'/usr/lib/libk5crypto.so.3',
119
'/usr/lib/libkrb5.so.3',
120
'/usr/lib/libkrb5support.so.0',
121
'/usr/lib/liblber.so.2',
122
'/usr/lib/libldap_r.so.2',
123
'/usr/lib/libneon.so.26',
124
'/usr/lib/libpq.so.5',
125
'/usr/lib/libsasl2.so.2',
126
'/usr/lib/libsqlite3.so.0',
127
'/usr/lib/libsvn_client-1.so.1',
128
'/usr/lib/libsvn_delta-1.so.1',
129
'/usr/lib/libsvn_diff-1.so.1',
130
'/usr/lib/libsvn_fs-1.so.1',
131
'/usr/lib/libsvn_fs_base-1.so.1',
132
'/usr/lib/libsvn_fs_fs-1.so.1',
133
'/usr/lib/libsvn_ra-1.so.1',
134
'/usr/lib/libsvn_ra_dav-1.so.1',
135
'/usr/lib/libsvn_ra_local-1.so.1',
136
'/usr/lib/libsvn_ra_svn-1.so.1',
137
'/usr/lib/libsvn_repos-1.so.1',
138
'/usr/lib/libsvn_subr-1.so.1',
139
'/usr/lib/libsvn_wc-1.so.1',
140
'/usr/lib/libtasn1.so.3',
141
'/usr/lib/libxml2.so.2',
142
# Needed by matplotlib
143
'/usr/lib/i686/cmov/libssl.so.0.9.8',
144
'/usr/lib/i686/cmov/libcrypto.so.0.9.8',
145
'/lib/tls/i686/cmov/libnsl.so.1',
146
'/usr/lib/libz.so.1',
147
'/usr/lib/atlas/liblapack.so.3',
148
'/usr/lib/atlas/libblas.so.3',
149
'/usr/lib/libg2c.so.0',
150
'/usr/lib/libstdc++.so.6',
151
'/usr/lib/libfreetype.so.6',
152
'/usr/lib/libpng12.so.0',
153
'/usr/lib/libBLT.2.4.so.8.4',
154
'/usr/lib/libtk8.4.so.0',
155
'/usr/lib/libtcl8.4.so.0',
156
'/usr/lib/tcl8.4/init.tcl',
157
'/usr/lib/libX11.so.6',
158
'/usr/lib/libXau.so.6',
159
'/usr/lib/libXdmcp.so.6',
160
'/lib/libgcc_s.so.1',
163
# Symlinks to make within the jail. Src mapped to dst.
165
'python%s' % PYTHON_VERSION: 'jail/usr/bin/python',
167
# Trees to copy. Src mapped to dst (these will be passed to action_copytree).
169
'/usr/lib/python%s' % PYTHON_VERSION:
170
'jail/usr/lib/python%s' % PYTHON_VERSION,
171
'/usr/share/matplotlib': 'jail/usr/share/matplotlib',
172
'/etc/ld.so.conf.d': 'jail/etc/ld.so.conf.d',
176
"""A configuration option; one of the things written to conf.py."""
177
def __init__(self, option_name, default, prompt, comment):
178
"""Creates a configuration option.
179
option_name: Name of the variable in conf.py. Also name of the
180
command-line argument to setup.py conf.
181
default: Default value for this variable.
182
prompt: (Short) string presented during the interactive prompt in
184
comment: (Long) comment string stored in conf.py. Each line of this
185
string should begin with a '#'.
187
self.option_name = option_name
188
self.default = default
190
self.comment = comment
192
# Configuration options, defaults and descriptions
194
config_options.append(ConfigOption("root_dir", "/ivle",
195
"""Root directory where IVLE is located (in URL space):""",
197
# In URL space, where in the site is IVLE located. (All URLs will be prefixed
199
# eg. "/" or "/ivle"."""))
200
config_options.append(ConfigOption("ivle_install_dir", "/opt/ivle",
201
'Root directory where IVLE will be installed (on the local file '
204
# In the local file system, where IVLE is actually installed.
205
# This directory should contain the "www" and "bin" directories."""))
206
config_options.append(ConfigOption("jail_base", "/home/informatics/jails",
207
"""Root directory where the jails (containing user files) are stored
208
(on the local file system):""",
210
# In the local file system, where are the student/user file spaces located.
211
# The user jails are expected to be located immediately in subdirectories of
212
# this location."""))
213
config_options.append(ConfigOption("subjects_base",
214
"/home/informatics/subjects",
215
"""Root directory where the subject directories (containing worksheets
216
and other per-subject files) are stored (on the local file system):""",
218
# In the local file system, where are the per-subject file spaces located.
219
# The individual subject directories are expected to be located immediately
220
# in subdirectories of this location."""))
221
config_options.append(ConfigOption("problems_base",
222
"/home/informatics/problems",
223
"""Root directory where the problem directories (containing
224
subject-independent problem sheets) are stored (on the local file
227
# In the local file system, where are the subject-independent problem sheet
228
# file spaces located."""))
229
config_options.append(ConfigOption("public_host", "public.localhost",
230
"""Hostname which will cause the server to go into "public mode",
231
providing login-free access to student's published work:""",
233
# The server goes into "public mode" if the browser sends a request with this
234
# host. This is for security reasons - we only serve public student files on a
235
# separate domain to the main IVLE site.
236
# Public mode does not use cookies, and serves only public content.
237
# Private mode (normal mode) requires login, and only serves files relevant to
238
# the logged-in user."""))
239
config_options.append(ConfigOption("allowed_uids", "33",
240
"""UID of the web server process which will run IVLE.
241
Only this user may execute the trampoline. May specify multiple users as
242
a comma-separated list.
245
# The User-ID of the web server process which will run IVLE, and any other
246
# users who are allowed to run the trampoline. This is stores as a string of
247
# comma-separated integers, simply because it is not used within Python, only
248
# used by the setup program to write to conf.h (see setup.py config)."""))
249
config_options.append(ConfigOption("db_host", "localhost",
250
"""PostgreSQL Database config
251
==========================
252
Hostname of the DB server:""",
254
### PostgreSQL Database config ###
255
# Database server hostname"""))
256
config_options.append(ConfigOption("db_port", "5432",
257
"""Port of the DB server:""",
259
# Database server port"""))
260
config_options.append(ConfigOption("db_dbname", "ivle",
261
"""Database name:""",
264
config_options.append(ConfigOption("db_user", "postgres",
265
"""Username for DB server login:""",
267
# Database username"""))
268
config_options.append(ConfigOption("db_password", "",
269
"""Password for DB server login:
270
(Caution: This password is stored in plaintext in lib/conf/conf.py)""",
272
# Database password"""))
274
71
# Try importing existing conf, but if we can't just set up defaults
275
72
# The reason for this is that these settings are used by other phases
276
73
# of setup besides conf, so we need to know them.
277
74
# Also this allows you to hit Return to accept the existing value.
279
confmodule = __import__("lib/conf/conf")
280
for opt in config_options:
282
globals()[opt.option_name] = confmodule.__dict__[opt.option_name]
284
globals()[opt.option_name] = opt.default
76
confmodule = __import__("www/conf/conf")
77
root_dir = confmodule.root_dir
78
ivle_install_dir = confmodule.ivle_install_dir
79
jail_base = confmodule.jail_base
285
80
except ImportError:
286
81
# Just set reasonable defaults
287
for opt in config_options:
288
globals()[opt.option_name] = opt.default
83
ivle_install_dir = "/opt/ivle"
84
jail_base = "/home/informatics/jails"
290
88
# Try importing install_list, but don't fail if we can't, because listmake can
291
89
# function without it.
561
313
print """This tool will create the following files:
565
316
prompting you for details about your configuration. The file will be
566
317
overwritten if it already exists. It will *not* install or deploy IVLE.
568
319
Please hit Ctrl+C now if you do not wish to do this.
569
""" % (conffile, jailconffile, conf_hfile)
320
""" % (conffile, conf_hfile)
571
322
# Get information from the administrator
572
323
# If EOF is encountered at any time during the questioning, just exit
575
for opt in config_options:
576
globals()[opt.option_name] = \
577
query_user(globals()[opt.option_name], opt.prompt)
326
root_dir = query_user(root_dir,
327
"""Root directory where IVLE is located (in URL space):""")
328
ivle_install_dir = query_user(ivle_install_dir,
329
'Root directory where IVLE will be installed (on the local file '
331
jail_base = query_user(jail_base,
332
"""Root directory where the jails (containing user files) are stored
333
(on the local file system):""")
334
allowed_uids = query_user(allowed_uids,
335
"""UID of the web server process which will run IVLE.
336
Only this user may execute the trampoline. May specify multiple users as
337
a comma-separated list.
579
341
opts = dict(opts)
580
342
# Non-interactive mode. Parse the options.
581
for opt in config_options:
582
if '--' + opt.option_name in opts:
583
globals()[opt.option_name] = opts['--' + opt.option_name]
343
if '--root_dir' in opts:
344
root_dir = opts['--root_dir']
345
if '--ivle_install_dir' in opts:
346
ivle_install_dir = opts['--ivle_install_dir']
347
if '--jail_base' in opts:
348
jail_base = opts['--jail_base']
349
if '--allowed_uids' in opts:
350
allowed_uids = opts['--allowed_uids']
585
352
# Error handling on input values
587
allowed_uids_list = map(int, allowed_uids.split(','))
354
allowed_uids = map(int, allowed_uids.split(','))
588
355
except ValueError:
589
356
print >>sys.stderr, (
590
357
"Invalid UID list (%s).\n"
591
358
"Must be a comma-separated list of integers." % allowed_uids)
594
db_port = int(db_port)
595
if db_port < 0 or db_port >= 65536: raise ValueError()
597
print >>sys.stderr, (
598
"Invalid DB port (%s).\n"
599
"Must be an integer between 0 and 65535." % repr(db_port))
602
# Write lib/conf/conf.py
361
# Write www/conf/conf.py
605
364
conf = open(conffile, "w")
609
368
# Miscellaneous application settings
612
for opt in config_options:
613
conf.write('%s\n%s = %s\n' % (opt.comment, opt.option_name,
614
repr(globals()[opt.option_name])))
617
except IOError, (errno, strerror):
618
print "IO error(%s): %s" % (errno, strerror)
621
print "Successfully wrote lib/conf/conf.py"
623
# Write conf/jailconf.py
626
conf = open(jailconffile, "w")
628
# In the "in-jail" version of conf, we don't need MOST of the details
629
# (it would be a security risk to have them here).
630
# So we just write root_dir, and jail_base is "/".
631
# (jail_base being "/" means "jail-relative" paths are relative to "/"
632
# when inside the jail.)
633
conf.write("""# IVLE Configuration File
635
# Miscellaneous application settings
636
# (User jail version)
639
371
# In URL space, where in the site is IVLE located. (All URLs will be prefixed
641
373
# eg. "/" or "/ivle".
376
# In the local file system, where IVLE is actually installed.
377
# This directory should contain the "www" and "bin" directories.
378
ivle_install_dir = "%s"
644
380
# In the local file system, where are the student/user file spaces located.
645
381
# The user jails are expected to be located immediately in subdirectories of
649
# The hostname for serving publicly accessible pages
651
""" % (repr(root_dir),repr(public_host)))
385
# Which application to load by default (if the user navigates to the top level
386
# of the site). This is the app's URL name.
387
# Note that if this app requires authentication, the user will first be
388
# presented with the login screen.
390
""" % (root_dir, ivle_install_dir, jail_base, default_app))
654
393
except IOError, (errno, strerror):
655
394
print "IO error(%s): %s" % (errno, strerror)
658
print "Successfully wrote lib/conf/jailconf.py"
397
print "Successfully wrote www/conf/conf.py"
660
399
# Write trampoline/conf.h
799
509
# chown trampoline to root and set setuid bit
800
510
action_chown_setuid(tramppath, dry)
802
# Copy the www and lib directories using the list
512
# Copy the www directory using the list
803
513
action_copylist(install_list.list_www, ivle_install_dir, dry)
804
action_copylist(install_list.list_lib, ivle_install_dir, dry)
807
516
# Copy the local jail directory built by the build action
808
517
# to the jails template directory (it will be used as a template
809
518
# for all the students' jails).
810
519
action_copytree('jail', os.path.join(jail_base, 'template'), dry)
812
# Copy the subjects and problems directories across
813
action_copylist(install_list.list_subjects, subjects_base, dry,
815
action_copylist(install_list.list_problems, problems_base, dry,
818
# Append IVLE path to ivle.pth in python site packages
819
# (Unless it's already there)
820
ivle_pth = os.path.join(sys.prefix,
821
"lib/python%s/site-packages/ivle.pth" % PYTHON_VERSION)
822
ivle_www = os.path.join(ivle_install_dir, "www")
823
ivle_lib = os.path.join(ivle_install_dir, "lib")
824
write_ivle_pth = True
825
write_ivle_lib_pth = True
827
file = open(ivle_pth, 'r')
829
if line.strip() == ivle_www:
830
write_ivle_pth = False
831
elif line.strip() == ivle_lib:
832
write_ivle_lib_pth = False
834
except (IOError, OSError):
837
action_append(ivle_pth, ivle_www)
838
if write_ivle_lib_pth:
839
action_append(ivle_pth, ivle_lib)
843
def updatejails(args):
844
# Get "dry" variable from command line
845
(opts, args) = getopt.gnu_getopt(args, "n", ['dry'])
847
dry = '-n' in opts or '--dry' in opts
850
print "Dry run (no actions will be executed\n"
852
if not dry and os.geteuid() != 0:
853
print >>sys.stderr, "Must be root to run install"
854
print >>sys.stderr, "(I need to chown some files)."
857
# Update the template jail directory in case it hasn't been installed
859
action_copytree('jail', os.path.join(jail_base, 'template'), dry)
861
# Re-link all the files in all students jails.
862
for dir in os.listdir(jail_base):
863
if dir == 'template': continue
864
# First back up the student's home directory
865
temp_home = os.tmpnam()
866
action_rename(os.path.join(jail_base, dir, 'home'), temp_home, dry)
867
# Delete the student's jail and relink the jail files
868
action_linktree(os.path.join(jail_base, 'template'),
869
os.path.join(jail_base, dir), dry)
870
# Restore the student's home directory
871
action_rename(temp_home, os.path.join(jail_base, dir, 'home'), dry)
872
# Set up the user's home directory just in case they don't have a
873
# directory for this yet
874
action_mkdir(os.path.join(jail_base, dir, 'home', dir), dry)
520
# Set up symlinks inside the jail
521
action_symlink(os.path.join(jail_base, 'template/usr/bin/python2.5'),
522
os.path.join(jail_base, 'template/usr/bin/python'), dry)
943
569
directories as necessary.
945
571
See shutil.copytree."""
946
action_remove(dst, dry)
572
if os.access(dst, os.F_OK):
575
shutil.rmtree(dst, True)
947
576
print "cp -r", src, dst
949
shutil.copytree(src, dst, True)
951
def action_linktree(src, dst, dry):
952
"""Hard-links an entire directory tree. Same as copytree but the created
953
files are hard-links not actual copies. Removes the existing destination.
955
action_remove(dst, dry)
956
print "<cp with hardlinks> -r", src, dst
958
common.makeuser.linktree(src, dst)
960
def action_copylist(srclist, dst, dry, srcdir="."):
578
shutil.copytree(src, dst)
580
def action_copylist(srclist, dst, dry):
961
581
"""Copies all files in a list to a new location. The files in the list
962
582
are read relative to the current directory, and their destinations are the
963
583
same paths relative to dst. Creates all parent directories as necessary.
964
srcdir is "." by default, can be overridden.
966
585
for srcfile in srclist:
967
586
dstfile = os.path.join(dst, srcfile)
968
srcfile = os.path.join(srcdir, srcfile)
969
587
dstdir = os.path.split(dstfile)[0]
970
588
if not os.path.isdir(dstdir):
971
589
action_mkdir(dstdir, dry)
972
590
print "cp -f", srcfile, dstfile
975
shutil.copyfile(srcfile, dstfile)
976
shutil.copymode(srcfile, dstfile)
592
shutil.copyfile(srcfile, dstfile)
980
594
def action_copyfile(src, dst, dry):
981
595
"""Copies one file to a new location. Creates all parent directories
983
Warn if file not found.
985
598
dstdir = os.path.split(dst)[0]
986
599
if not os.path.isdir(dstdir):
987
600
action_mkdir(dstdir, dry)
988
601
print "cp -f", src, dst
991
shutil.copyfile(src, dst)
992
shutil.copymode(src, dst)
993
except (shutil.Error, IOError), e:
994
print "Warning: " + str(e)
603
shutil.copyfile(src, dst)
996
605
def action_symlink(src, dst, dry):
997
606
"""Creates a symlink in a given location. Creates all parent directories