]> git.proxmox.com Git - pve-installer.git/blob - Proxmox/Install.pm
ZFS: detect and handle secure boot
[pve-installer.git] / Proxmox / Install.pm
1 package Proxmox::Install;
2
3 use strict;
4 use warnings;
5
6 use Cwd 'abs_path';
7 use Encode;
8 use POSIX ":sys_wait_h";
9
10 use Proxmox::Install::ISOEnv;
11 use Proxmox::Install::RunEnv;
12
13 use Proxmox::Install::Config;
14 use Proxmox::Install::StorageConfig;
15
16 use Proxmox::Sys::Block qw(get_cached_disks wipe_disk partition_bootable_disk);
17 use Proxmox::Sys::Command qw(run_command syscmd);
18 use Proxmox::Sys::File qw(file_read_all file_read_firstline file_write_all);
19 use Proxmox::UI;
20
21 # TODO: move somewhere better?
22 my $postfix_main_cf = <<_EOD;
23 # See /usr/share/postfix/main.cf.dist for a commented, more complete version
24
25 myhostname=__FQDN__
26
27 smtpd_banner = \$myhostname ESMTP \$mail_name (Debian/GNU)
28 biff = no
29
30 # appending .domain is the MUA's job.
31 append_dot_mydomain = no
32
33 # Uncomment the next line to generate "delayed mail" warnings
34 #delay_warning_time = 4h
35
36 alias_maps = hash:/etc/aliases
37 alias_database = hash:/etc/aliases
38 mydestination = \$myhostname, localhost.\$mydomain, localhost
39 relayhost =
40 mynetworks = 127.0.0.0/8
41 inet_interfaces = loopback-only
42 recipient_delimiter = +
43
44 compatibility_level = 2
45
46 _EOD
47
48 my ($last_display_change, $display_info_counter) = (0, 0);
49 my $display_info_items = [
50 "extract1-license.htm",
51 "extract2-rulesystem.htm",
52 "extract3-spam.htm",
53 "extract4-virus.htm",
54 ];
55
56 sub reset_last_display_change {
57 $last_display_change = 0;
58 }
59
60 sub display_info {
61 my $min_display_time = 15;
62
63 my $ctime = time();
64 return if ($ctime - $last_display_change) < $min_display_time;
65
66 my $page = $display_info_items->[$display_info_counter % scalar(@$display_info_items)];
67 $display_info_counter++;
68
69 Proxmox::UI::display_html($page);
70 $last_display_change = time();
71 }
72
73
74 sub update_progress {
75 my ($frac, $start, $end, $text) = @_;
76
77 my $res = Proxmox::UI::progress($frac, $start, $end, $text);
78
79 display_info() if $res < 0.9;
80
81 Proxmox::UI::process_events();
82 }
83
84 my $fssetup = {
85 ext4 => {
86 mkfs => 'mkfs.ext4 -F',
87 mkfs_root_opt => '',
88 mkfs_data_opt => '-m 0',
89 root_mountopt => 'errors=remount-ro',
90 },
91 xfs => {
92 mkfs => 'mkfs.xfs -f',
93 mkfs_root_opt => '',
94 mkfs_data_opt => '',
95 root_mountopt => '',
96 },
97 };
98
99 sub create_filesystem {
100 my ($dev, $name, $type, $start, $end, $fs, $fe) = @_;
101
102 my $range = $end - $start;
103 my $rs = $start + $range*$fs;
104 my $re = $start + $range*$fe;
105 my $max = 0;
106
107 my $fsdata = $fssetup->{$type} || die "internal error - unknown file system '$type'";
108 my $opts = $name eq 'root' ? $fsdata->{mkfs_root_opt} : $fsdata->{mkfs_data_opt};
109
110 update_progress(0, $rs, $re, "creating $name filesystem");
111
112 run_command("$fsdata->{mkfs} $opts $dev", sub {
113 my $line = shift;
114
115 if ($line =~ m/Writing inode tables:\s+(\d+)\/(\d+)/) {
116 $max = $2;
117 } elsif ($max && $line =~ m/(\d+)\/$max/) {
118 update_progress(($1/$max)*0.9, $rs, $re);
119 } elsif ($line =~ m/Creating journal.*done/) {
120 update_progress(0.95, $rs, $re);
121 } elsif ($line =~ m/Writing superblocks and filesystem.*done/) {
122 update_progress(1, $rs, $re);
123 }
124 });
125 }
126
127 sub debconfig_set {
128 my ($targetdir, $dcdata) = @_;
129
130 my $cfgfile = "/tmp/debconf.txt";
131 file_write_all("$targetdir/$cfgfile", $dcdata);
132 syscmd("chroot $targetdir debconf-set-selections $cfgfile");
133 unlink "$targetdir/$cfgfile";
134 }
135
136 sub diversion_add {
137 my ($targetdir, $cmd, $new_cmd) = @_;
138
139 syscmd("chroot $targetdir dpkg-divert --package proxmox --add --rename $cmd") == 0
140 || die "unable to exec dpkg-divert\n";
141
142 syscmd("ln -sf ${new_cmd} $targetdir/$cmd") == 0
143 || die "unable to link diversion to ${new_cmd}\n";
144 }
145
146 sub diversion_remove {
147 my ($targetdir, $cmd) = @_;
148
149 syscmd("mv $targetdir/${cmd}.distrib $targetdir/${cmd};") == 0
150 || die "unable to remove $cmd diversion\n";
151
152 syscmd("chroot $targetdir dpkg-divert --remove $cmd") == 0
153 || die "unable to remove $cmd diversion\n";
154 }
155
156 sub btrfs_create {
157 my ($partitions, $mode) = @_;
158
159 die "unknown btrfs mode '$mode'"
160 if !($mode eq 'single' || $mode eq 'raid0' || $mode eq 'raid1' || $mode eq 'raid10');
161
162 my $cmd = ['mkfs.btrfs', '-f'];
163
164 push @$cmd, '-d', $mode, '-m', $mode;
165
166 push @$cmd, @$partitions;
167
168 syscmd($cmd);
169 }
170
171 sub zfs_create_rpool {
172 my ($vdev, $pool_name, $root_volume_name) = @_;
173
174 my $iso_env = Proxmox::Install::ISOEnv::get();
175
176 my $zfs_opts = Proxmox::Install::Config::get_zfs_opt();
177
178 my $cmd = "zpool create -f -o cachefile=none";
179 $cmd .= " -o ashift=$zfs_opts->{ashift}" if defined($zfs_opts->{ashift});
180
181 syscmd("$cmd $pool_name $vdev") == 0 || die "unable to create zfs root pool\n";
182
183 syscmd("zfs create $pool_name/ROOT") == 0 || die "unable to create zfs $pool_name/ROOT volume\n";
184
185 syscmd("zfs create $pool_name/ROOT/$root_volume_name") == 0 ||
186 die "unable to create zfs $pool_name/ROOT/$root_volume_name volume\n";
187
188 if ($iso_env->{product} eq 'pve') {
189 syscmd("zfs create $pool_name/data") == 0 || die "unable to create zfs $pool_name/data volume\n";
190 syscmd("zfs create -o mountpoint=/$pool_name/ROOT/$root_volume_name/var/lib/vz $pool_name/var-lib-vz") == 0 ||
191 die "unable to create zfs $pool_name/var-lib-vz volume\n";
192 }
193
194 # default to `relatime` on, fast enough for the installer and production
195 syscmd("zfs set atime=on relatime=on $pool_name") == 0 || die "unable to set zfs properties\n";
196
197 my $value = $zfs_opts->{compress} // 'on';
198 syscmd("zfs set compression=$value $pool_name") if defined($value) && $value ne 'off';
199
200 $value = $zfs_opts->{checksum} // 'on';
201 syscmd("zfs set checksum=$value $pool_name") if defined($value) && $value ne 'on';
202
203 $value = $zfs_opts->{copies} // 1;
204 syscmd("zfs set copies=$value $pool_name") if defined($value) && $value != 1;
205
206 syscmd("zfs set acltype=posix $pool_name/ROOT/$root_volume_name");
207 }
208
209 my $get_raid_devlist = sub {
210
211 my $dev_name_hash = {};
212
213 my $cached_disks = get_cached_disks();
214 my $devlist = [];
215 for (my $i = 0; $i < @$cached_disks; $i++) {
216 my $disk_id = Proxmox::Install::Config::get_disk_selection($i) // next;
217
218 my $hd = $cached_disks->[$disk_id];
219 my ($disk, $devname, $size, $model, $logical_bsize) = @$hd;
220 die "device '$devname' is used more than once\n" if $dev_name_hash->{$devname};
221 $dev_name_hash->{$devname} = $hd;
222 push @$devlist, $hd;
223 }
224
225 return $devlist;
226 };
227
228 sub zfs_mirror_size_check {
229 my ($expected, $actual) = @_;
230
231 die "mirrored disks must have same size\n"
232 if abs($expected - $actual) > $expected / 10;
233 }
234
235 sub legacy_bios_4k_check {
236 my ($lbs) = @_;
237 my $run_env = Proxmox::Install::RunEnv::get();
238 die "Booting from 4kn drive in legacy BIOS mode is not supported.\n"
239 if $run_env->{boot_type} ne 'efi' && $lbs == 4096;
240 }
241
242 sub get_zfs_raid_setup {
243 my $filesys = Proxmox::Install::Config::get_filesys();
244
245 my $devlist = &$get_raid_devlist();
246
247 my $diskcount = scalar(@$devlist);
248 die "$filesys needs at least one device\n" if $diskcount < 1;
249
250 my $cmd= '';
251 if ($filesys eq 'zfs (RAID0)') {
252 foreach my $hd (@$devlist) {
253 legacy_bios_4k_check(@$hd[4]);
254 $cmd .= " @$hd[1]";
255 }
256 } elsif ($filesys eq 'zfs (RAID1)') {
257 die "zfs (RAID1) needs at least 2 device\n" if $diskcount < 2;
258 $cmd .= ' mirror ';
259 my $hd = @$devlist[0];
260 my $expected_size = @$hd[2]; # all disks need approximately same size
261 foreach my $hd (@$devlist) {
262 zfs_mirror_size_check($expected_size, @$hd[2]);
263 legacy_bios_4k_check(@$hd[4]);
264 $cmd .= " @$hd[1]";
265 }
266 } elsif ($filesys eq 'zfs (RAID10)') {
267 die "zfs (RAID10) needs at least 4 device\n" if $diskcount < 4;
268 die "zfs (RAID10) needs an even number of devices\n" if $diskcount & 1;
269
270 for (my $i = 0; $i < $diskcount; $i+=2) {
271 my $hd1 = @$devlist[$i];
272 my $hd2 = @$devlist[$i+1];
273 zfs_mirror_size_check(@$hd1[2], @$hd2[2]); # pairs need approximately same size
274 legacy_bios_4k_check(@$hd1[4]);
275 legacy_bios_4k_check(@$hd2[4]);
276 $cmd .= ' mirror ' . @$hd1[1] . ' ' . @$hd2[1];
277 }
278
279 } elsif ($filesys =~ m/^zfs \(RAIDZ-([123])\)$/) {
280 my $level = $1;
281 my $mindisks = 2 + $level;
282 die "zfs (RAIDZ-$level) needs at least $mindisks devices\n" if scalar(@$devlist) < $mindisks;
283 my $hd = @$devlist[0];
284 my $expected_size = @$hd[2]; # all disks need approximately same size
285 $cmd .= " raidz$level";
286 foreach my $hd (@$devlist) {
287 zfs_mirror_size_check($expected_size, @$hd[2]);
288 legacy_bios_4k_check(@$hd[4]);
289 $cmd .= " @$hd[1]";
290 }
291 } else {
292 die "unknown zfs mode '$filesys'\n";
293 }
294
295 return ($devlist, $cmd);
296 }
297
298 # If the maximum ARC size for ZFS was explicitly changed by the user, applies
299 # it to the new system by setting the `zfs_arc_max` module parameter in /etc/modprobe.d/zfs.conf
300 my sub zfs_setup_module_conf {
301 my ($targetdir) = @_;
302
303 my $arc_max_mib = Proxmox::Install::Config::get_zfs_opt('arc_max');
304 my $arc_max = Proxmox::Install::RunEnv::clamp_zfs_arc_max($arc_max_mib) * 1024 * 1024;
305
306 if ($arc_max > 0) {
307 file_write_all("$targetdir/etc/modprobe.d/zfs.conf", "options zfs zfs_arc_max=$arc_max\n")
308 }
309 }
310
311 sub get_btrfs_raid_setup {
312 my $filesys = Proxmox::Install::Config::get_filesys();
313
314 my $devlist = &$get_raid_devlist();
315
316 my $diskcount = scalar(@$devlist);
317 die "$filesys needs at least one device\n" if $diskcount < 1;
318
319 foreach my $hd (@$devlist) {
320 legacy_bios_4k_check(@$hd[4]);
321 }
322
323 my $mode;
324
325 if ($diskcount == 1) {
326 $mode = 'single';
327 } else {
328 if ($filesys eq 'btrfs (RAID0)') {
329 $mode = 'raid0';
330 } elsif ($filesys eq 'btrfs (RAID1)') {
331 die "btrfs (RAID1) needs at least 2 device\n" if $diskcount < 2;
332 $mode = 'raid1';
333 } elsif ($filesys eq 'btrfs (RAID10)') {
334 die "btrfs (RAID10) needs at least 4 device\n" if $diskcount < 4;
335 $mode = 'raid10';
336 } else {
337 die "unknown btrfs mode '$filesys'\n";
338 }
339 }
340
341 return ($devlist, $mode);
342 }
343
344 sub get_pv_list_from_vgname {
345 my ($vgname) = @_;
346
347 my $res;
348
349 my $parser = sub {
350 my $line = shift;
351 $line =~ s/^\s+//;
352 $line =~ s/\s+$//;
353 return if !$line;
354 my ($pv, $vg_uuid) = split(/\s+/, $line);
355
356 if (!defined($res->{$vg_uuid}->{pvs})) {
357 $res->{$vg_uuid}->{pvs} = "$pv";
358 } else {
359 $res->{$vg_uuid}->{pvs} .= ", $pv";
360 }
361 };
362 run_command("pvs --noheadings -o pv_name,vg_uuid -S vg_name='$vgname'", $parser, undef, 1);
363
364 return $res;
365 }
366
367 sub ask_existing_vg_rename_or_abort {
368 my ($vgname) = @_;
369
370 # this normally only happens if one put a disk with a PVE installation in
371 # this server and that disk is not the installation target.
372 my $duplicate_vgs = get_pv_list_from_vgname($vgname);
373 return if !$duplicate_vgs;
374
375 my $message = "Detected existing '$vgname' Volume Group(s)! Do you want to:\n";
376
377 for my $vg_uuid (keys %$duplicate_vgs) {
378 my $vg = $duplicate_vgs->{$vg_uuid};
379
380 # no high randomnes properties, but this is only for the cases where
381 # we either have multiple "$vgname" vgs from multiple old PVE disks, or
382 # we have a disk with both a "$vgname" and "$vgname-old"...
383 my $short_uid = sprintf "%08X", rand(0xffffffff);
384 $vg->{new_vgname} = "$vgname-OLD-$short_uid";
385
386 $message .= "rename VG backed by PV '$vg->{pvs}' to '$vg->{new_vgname}'\n";
387 }
388 $message .= "or cancel the installation?";
389
390 my $response_ok = Proxmox::UI::prompt($message);
391
392 if ($response_ok) {
393 for my $vg_uuid (keys %$duplicate_vgs) {
394 my $vg = $duplicate_vgs->{$vg_uuid};
395 my $new_vgname = $vg->{new_vgname};
396
397 syscmd("vgrename $vg_uuid $new_vgname") == 0 ||
398 die "could not rename VG from '$vg->{pvs}' ($vg_uuid) to '$new_vgname'!\n";
399 }
400 } else {
401 warn "Canceled installation by user, due to already existing volume group '$vgname'\n";
402 die "\n"; # causes abort without re-showing an error dialogue
403 }
404 }
405
406 sub create_lvm_volumes {
407 my ($lvmdev, $os_size, $swap_size) = @_;
408
409 my $iso_env = Proxmox::Install::ISOEnv::get();
410 my $vgname = $iso_env->{product};
411
412 ask_existing_vg_rename_or_abort($vgname);
413
414 my $rootdev = "/dev/$vgname/root";
415 my $datadev = "/dev/$vgname/data";
416 my $swapfile;
417
418 # we use --metadatasize 250k, which results in "pe_start = 512"
419 # so pe_start is aligned on a 128k boundary (advantage for SSDs)
420 syscmd("/sbin/pvcreate --metadatasize 250k -y -ff $lvmdev") == 0 ||
421 die "unable to initialize physical volume $lvmdev\n";
422 syscmd("/sbin/vgcreate $vgname $lvmdev") == 0 ||
423 die "unable to create volume group '$vgname'\n";
424
425 my $hdgb = int($os_size / (1024 * 1024));
426
427 # always leave some space at the end to avoid roudning issues with LVM's physical extent (PE)
428 # size of 4 MB.
429 my $space = $hdgb <= 32 ? 4 * 1024 : (($hdgb > 128 ? 16 : $hdgb / 8) * 1024 * 1024);
430
431 my $rootsize;
432 my $datasize = 0;
433
434 if ($iso_env->{product} eq 'pve') {
435
436 my $maxroot_mb;
437 if (my $maxroot = Proxmox::Install::Config::get_maxroot()) {
438 $maxroot_mb = $maxroot * 1024;
439 } else {
440 $maxroot_mb = 96 * 1024;
441 }
442
443 my $rest = $os_size - $swap_size;
444 my $rest_mb = int($rest / 1024);
445
446 my $rootsize_mb;
447 if ($rest_mb < 12 * 1024) {
448 # no point in wasting space, try to get us actually installed and align down to 4 MB
449 $rootsize_mb = ($rest_mb - 4) & ~3;
450 } elsif ($rest_mb < 48 * 1024) {
451 my $masked = int($rest_mb / 2) & ~3; # align down to 4 MB
452 $rootsize_mb = $masked;
453 } else {
454 $rootsize_mb = $rest_mb / 4 + 12 * 1024;
455 }
456
457 $rootsize_mb = $maxroot_mb if $rootsize_mb > $maxroot_mb;
458 $rootsize = int($rootsize_mb * 1024);
459 $rootsize &= ~0xFFF; # align down to 4 MB boundaries
460
461 $rest -= $rootsize; # in KB
462
463 my $minfree = $space;
464 if (defined(my $cfg_minfree = Proxmox::Install::Config::get_minfree())) {
465 $minfree = $cfg_minfree * 1024 * 1024 >= $rest ? $space : $cfg_minfree * 1024 * 1024;
466 }
467
468 $rest = int($rest - $minfree) & ~0xFFF; # align down to 4 MB boundaries
469
470 if (defined(my $maxvz = Proxmox::Install::Config::get_maxvz())) {
471 $rest = $maxvz * 1024 * 1024 <= $rest ? $maxvz * 1024 * 1024 : $rest;
472 }
473
474 $datasize = $rest;
475
476 } else {
477 my $cfg_minfree = Proxmox::Install::Config::get_minfree();
478 my $minfree = defined($cfg_minfree) ? $cfg_minfree * 1024 * 1024 : $space;
479 $rootsize = int($os_size - $minfree - $swap_size); # in KB
480 $rootsize &= ~0xFFF; # align down to 4 MB boundaries
481 }
482
483 if ($swap_size) {
484 syscmd("/sbin/lvcreate -Wy --yes -L${swap_size}K -nswap $vgname") == 0 ||
485 die "unable to create swap volume\n";
486
487 $swapfile = "/dev/$vgname/swap";
488 }
489
490 syscmd("/sbin/lvcreate -Wy --yes -L${rootsize}K -nroot $vgname") == 0 ||
491 die "unable to create root volume\n";
492
493 if ($datasize > 4 * 1024 * 1024) {
494 my $metadatasize = int($datasize/100); # default 1% of data
495 $metadatasize = 1024*1024 if $metadatasize < 1024*1024; # but at least 1G
496 $metadatasize = 16*1024*1024 if $metadatasize > 16*1024*1024; # but at most 16G
497 $metadatasize &= ~0xFFF; # align down to 4 MB boundaries
498
499 # otherwise the metadata is taken out of $minfree
500 $datasize -= 2 * $metadatasize;
501
502 # 1 4MB PE to allow for rounding
503 $datasize -= 4 * 1024;
504
505 syscmd("/sbin/lvcreate -Wy --yes -L${datasize}K -ndata $vgname") == 0 ||
506 die "unable to create data volume\n";
507
508 syscmd("/sbin/lvconvert --yes --type thin-pool --poolmetadatasize ${metadatasize}K $vgname/data") == 0 ||
509 die "unable to create data thin-pool\n";
510 } else {
511 my $maxvz = Proxmox::Install::Config::get_maxvz();
512 if ($iso_env->{product} eq 'pve' && !defined($maxvz)) {
513 Proxmox::UI::message("Skipping auto-creation of LVM thinpool for guest data due to low space.");
514 }
515 $datadev = undef;
516 }
517
518 syscmd("/sbin/vgchange -a y $vgname") == 0 ||
519 die "unable to activate volume group\n";
520
521 return ($rootdev, $swapfile, $datadev);
522 }
523
524 sub compute_swapsize {
525 my ($hdsize) = @_;
526
527 my $hdgb = int($hdsize/(1024*1024));
528
529 my $swapsize_kb;
530 if (defined(my $swapsize = Proxmox::Install::Config::get_swapsize())) {
531 $swapsize_kb = $swapsize * 1024 * 1024;
532 } else {
533 my $run_env = Proxmox::Install::RunEnv::get();
534 my $ss = int($run_env->{total_memory});
535 $ss = 4096 if $ss < 4096 && $hdgb >= 64;
536 $ss = 2048 if $ss < 2048 && $hdgb >= 32;
537 $ss = 1024 if $ss >= 2048 && $hdgb <= 16;
538 $ss = 512 if $ss < 512;
539 $ss = int($hdgb * 128) if $ss > $hdgb * 128;
540 $ss = 8192 if $ss > 8192;
541 $swapsize_kb = int($ss * 1024) & ~0xFFF; # align to 4 MB to avoid all to odd SWAP size
542 }
543
544 return $swapsize_kb;
545 }
546
547 my sub chroot_chown {
548 my ($root, $path, %param) = @_;
549
550 my $recursive = $param{recursive} ? ' -R' : '';
551 my $user = $param{user};
552 die "can not chown without user parameter\n" if !defined($user);
553 my $group = $param{group} // $user;
554
555 syscmd("chroot $root /bin/chown $user:$group $recursive $path") == 0 ||
556 die "chroot: unable to change owner for '$path'\n";
557 }
558
559 my sub chroot_chmod {
560 my ($root, $path, %param) = @_;
561
562 my $recursive = $param{recursive} ? ' -R' : '';
563 my $mode = $param{mode};
564 die "can not chmod without mode parameter\n" if !defined($mode);
565
566 syscmd("chroot $root /bin/chmod $mode $recursive $path") == 0 ||
567 die "chroot: unable to change permission mode for '$path'\n";
568 }
569
570 sub prepare_proxmox_boot_esp {
571 my ($espdev, $targetdir) = @_;
572
573 my $mode = '';
574
575 # detect secure boot being enabled and switch to grub-on-ESP if it is
576 if (-d "/sys/firmware/efi") {
577 my $content = eval { file_read_all("/sys/firmware/efi/efivars/SecureBoot-8be4df61-93ca-11d2-aa0d-00e098032b8c") };
578 if ($@) {
579 warn "Failed to read secure boot state: $@\n";
580 } else {
581 my @secureboot = unpack("CCCCC", $content);
582 $mode = 'grub' if $secureboot[4] == 1;
583 }
584 }
585
586 syscmd("chroot $targetdir proxmox-boot-tool init $espdev $mode") == 0 ||
587 die "unable to init ESP and install proxmox-boot loader on '$espdev'\n";
588 }
589
590 sub prepare_grub_efi_boot_esp {
591 my ($dev, $espdev, $targetdir) = @_;
592
593 syscmd("mount -n $espdev -t vfat $targetdir/boot/efi") == 0 ||
594 die "unable to mount $espdev\n";
595
596 eval {
597 my $rc = syscmd("chroot $targetdir /usr/sbin/grub-install --target x86_64-efi --no-floppy --bootloader-id='proxmox' $dev");
598 if ($rc != 0) {
599 my $run_env = Proxmox::Install::RunEnv::get();
600 if ($run_env->{boot_type} eq 'efi') {
601 die "unable to install the EFI boot loader on '$dev'\n";
602 } else {
603 warn "unable to install the EFI boot loader on '$dev', ignoring (not booted using UEFI)\n";
604 }
605 }
606 # also install fallback boot file (OVMF does not boot without)
607 mkdir("$targetdir/boot/efi/EFI/BOOT");
608 syscmd("cp $targetdir/boot/efi/EFI/proxmox/grubx64.efi $targetdir/boot/efi/EFI/BOOT/BOOTx64.EFI") == 0 ||
609 die "unable to copy efi boot loader\n";
610 };
611 my $err = $@;
612
613 eval {
614 syscmd("umount $targetdir/boot/efi") == 0 ||
615 die "unable to umount $targetdir/boot/efi\n";
616 };
617 warn $@ if $@;
618
619 die "failed to prepare EFI boot using Grub on '$espdev': $err" if $err;
620 }
621
622 sub extract_data {
623 my $iso_env = Proxmox::Install::ISOEnv::get();
624 my $run_env = Proxmox::Install::RunEnv::get();
625
626 my $proxmox_libdir = $iso_env->{locations}->{lib};
627 my $proxmox_cddir = $iso_env->{locations}->{iso};
628 my $proxmox_pkgdir = "${proxmox_cddir}/proxmox/packages/";
629
630 my $targetdir = is_test_mode() ? "target" : "/target";
631 mkdir $targetdir;
632 my $basefile = "${proxmox_cddir}/$iso_env->{product}-base.squashfs";
633
634 die "target '$targetdir' does not exist\n" if ! -d $targetdir;
635
636 my $starttime = [Time::HiRes::gettimeofday];
637
638 my $bootdevinfo = [];
639
640 my ($swapfile, $rootdev, $datadev);
641 my ($use_zfs, $use_btrfs) = (0, 0);
642
643 my $filesys = Proxmox::Install::Config::get_filesys();
644 my $hdsize = Proxmox::Install::Config::get_hdsize();
645
646 my $zfs_pool_name = Proxmox::Install::StorageConfig::get_zfs_pool_name();
647 my $zfs_root_volume_name = Proxmox::Install::StorageConfig::get_zfs_root_volume_name();
648
649 if ($filesys =~ m/zfs/) {
650 Proxmox::Install::Config::set_target_hd(undef); # do not use this config
651 $use_zfs = 1;
652 $targetdir = "/$zfs_pool_name/ROOT/$zfs_root_volume_name";
653 } elsif ($filesys =~ m/btrfs/) {
654 Proxmox::Install::Config::set_target_hd(undef); # do not use this config
655 $use_btrfs = 1;
656 }
657
658 if ($use_zfs) {
659 my $i;
660 for ($i = 5; $i > 0; $i--) {
661 syscmd("modprobe zfs");
662 last if -c "/dev/zfs";
663 sleep(1);
664 }
665
666 die "unable to load zfs kernel module\n" if !$i;
667 }
668
669 my $bootloader_err;
670
671 eval {
672 my $maxper = 0.25;
673
674 update_progress(0, 0, $maxper, "cleanup root-disks");
675
676 syscmd("vgchange -an") if !is_test_mode(); # deactivate all detected VGs
677
678 if (is_test_mode()) {
679
680 my $test_images = Proxmox::Install::ISOEnv::get_test_images();
681 $rootdev = abs_path($test_images->[0]); # FIXME: use all selected for test too!
682 syscmd("umount $rootdev");
683
684 if ($use_btrfs) {
685
686 die "unsupported btrfs mode (for testing environment)\n"
687 if $filesys ne 'btrfs (RAID0)';
688
689 btrfs_create([$rootdev], 'single');
690
691 } elsif ($use_zfs) {
692
693 die "unsupported zfs mode (for testing environment)\n"
694 if $filesys ne 'zfs (RAID0)';
695
696 syscmd("zpool destroy $zfs_pool_name");
697
698 zfs_create_rpool($rootdev, $zfs_pool_name, $zfs_root_volume_name);
699
700 } else {
701
702 # nothing to do
703 }
704
705 } elsif ($use_btrfs) {
706
707 my ($devlist, $btrfs_mode) = get_btrfs_raid_setup();
708
709 foreach my $hd (@$devlist) {
710 wipe_disk(@$hd[1]);
711 }
712
713 update_progress(0, 0.02, $maxper, "create partitions");
714
715 my $btrfs_partitions = [];
716 foreach my $hd (@$devlist) {
717 my $devname = @$hd[1];
718 my $logical_bsize = @$hd[4];
719
720 my ($size, $osdev, $efidev) = partition_bootable_disk($devname, $hdsize, '8300');
721 $rootdev = $osdev if !defined($rootdev); # simply point to first disk
722 my $by_id = Proxmox::Sys::Block::get_disk_by_id_path($devname);
723 push @$bootdevinfo, {
724 esp => $efidev,
725 devname => $devname,
726 osdev => $osdev,
727 by_id => $by_id,
728 logical_bsize => $logical_bsize,
729 };
730 push @$btrfs_partitions, $osdev;
731 }
732
733 Proxmox::Sys::Block::udevadm_trigger_block();
734
735 update_progress(0, 0.03, $maxper, "create btrfs");
736
737 btrfs_create($btrfs_partitions, $btrfs_mode);
738
739 } elsif ($use_zfs) {
740
741 my ($devlist, $vdev) = get_zfs_raid_setup();
742
743 foreach my $hd (@$devlist) {
744 wipe_disk(@$hd[1]);
745 }
746
747 update_progress(0, 0.02, $maxper, "create partitions");
748
749 # install esp/boot part on all, we can only win!
750 for my $hd (@$devlist) {
751 my $devname = @$hd[1];
752 my $logical_bsize = @$hd[4];
753
754 my ($size, $osdev, $efidev) = partition_bootable_disk($devname, $hdsize, 'BF01');
755
756 push @$bootdevinfo, {
757 esp => $efidev,
758 devname => $devname,
759 osdev => $osdev,
760 logical_bsize => $logical_bsize,
761 };
762 }
763
764 Proxmox::Sys::Block::udevadm_trigger_block();
765
766 foreach my $di (@$bootdevinfo) {
767 my $devname = $di->{devname};
768 $di->{by_id} = Proxmox::Sys::Block::get_disk_by_id_path($devname);
769
770 my $osdev = Proxmox::Sys::Block::get_disk_by_id_path($di->{osdev}) || $di->{osdev};
771
772 $vdev =~ s/ $devname/ $osdev/;
773 }
774
775 foreach my $hd (@$devlist) {
776 my $devname = @$hd[1];
777 my $by_id = Proxmox::Sys::Block::get_disk_by_id_path($devname);
778
779 $vdev =~ s/ $devname/ $by_id/ if $by_id;
780 }
781
782 update_progress(0, 0.03, $maxper, "create rpool");
783
784 zfs_create_rpool($vdev, $zfs_pool_name, $zfs_root_volume_name);
785
786 } else {
787 my $target_hd = Proxmox::Install::Config::get_target_hd();
788 die "target '$target_hd' is not a valid block device\n" if ! -b $target_hd;
789
790 wipe_disk($target_hd);
791
792 update_progress(0, 0.02, $maxper, "create partitions");
793
794 my $logical_bsize = Proxmox::Sys::Block::logical_blocksize($target_hd);
795
796 my ($os_size, $osdev, $efidev) = partition_bootable_disk($target_hd, $hdsize, '8E00');
797
798 Proxmox::Sys::Block::udevadm_trigger_block();
799
800 my $by_id = Proxmox::Sys::Block::get_disk_by_id_path($target_hd);
801 push @$bootdevinfo, {
802 esp => $efidev,
803 devname => $target_hd,
804 osdev => $osdev,
805 by_id => $by_id,
806 logical_bsize => $logical_bsize,
807 };
808
809 update_progress(0, 0.03, $maxper, "create LVs");
810
811 my $swap_size = compute_swapsize($os_size);
812 ($rootdev, $swapfile, $datadev) =
813 create_lvm_volumes($osdev, $os_size, $swap_size);
814
815 # trigger udev to create /dev/disk/by-uuid
816 Proxmox::Sys::Block::udevadm_trigger_block(1);
817 }
818
819 if ($use_zfs) {
820 # to be fast during installation
821 syscmd("zfs set sync=disabled $zfs_pool_name") == 0 ||
822 die "unable to set zfs properties\n";
823 }
824
825 update_progress(0.04, 0, $maxper, "create swap space");
826 if ($swapfile) {
827 syscmd("mkswap -f $swapfile") == 0 ||
828 die "unable to create swap space\n";
829 }
830
831 update_progress(0.045, 0, $maxper, "creating root filesystems");
832
833 foreach my $di (@$bootdevinfo) {
834 next if !$di->{esp};
835 # FIXME remove '-s1' once https://github.com/dosfstools/dosfstools/issues/111 is fixed
836 my $vfat_extra_opts = ($di->{logical_bsize} == 4096) ? '-s1' : '';
837 syscmd("mkfs.vfat $vfat_extra_opts -F32 $di->{esp}") == 0 ||
838 die "unable to initialize EFI ESP on device $di->{esp}\n";
839 }
840
841 if ($use_zfs) {
842 # do nothing
843 } elsif ($use_btrfs) {
844 # do nothing
845 } else {
846 create_filesystem($rootdev, 'root', $filesys, 0.05, $maxper, 0, 1);
847 }
848
849 update_progress(1, 0.05, $maxper, "mounting target $rootdev");
850
851 if ($use_zfs) {
852 # do nothing
853 } else {
854 my $mount_opts = 'noatime';
855 $mount_opts .= ',nobarrier'
856 if $use_btrfs || $filesys =~ /^ext\d$/;
857
858 syscmd("mount -n $rootdev -o $mount_opts $targetdir") == 0 ||
859 die "unable to mount $rootdev\n";
860 }
861
862 mkdir "$targetdir/boot";
863 mkdir "$targetdir/boot/efi";
864
865 mkdir "$targetdir/var";
866 mkdir "$targetdir/var/lib";
867
868 if ($iso_env->{product} eq 'pve') {
869 mkdir "$targetdir/var/lib/vz";
870 mkdir "$targetdir/var/lib/pve";
871
872 if ($use_btrfs) {
873 syscmd("btrfs subvolume create $targetdir/var/lib/pve/local-btrfs") == 0 ||
874 die "unable to create btrfs subvolume\n";
875 }
876 }
877
878 mkdir "$targetdir/mnt";
879 mkdir "$targetdir/mnt/hostrun";
880 syscmd("mount --bind /run $targetdir/mnt/hostrun") == 0 ||
881 die "unable to bindmount run on $targetdir/mnt/hostrun\n";
882
883 update_progress(1, 0.05, $maxper, "extracting base system");
884
885 my ($dev,$ino,$mode,$nlink,$uid,$gid,$rdev,$size) = stat ($basefile);
886 $ino || die "unable to open file '$basefile' - $!\n";
887
888 my $files = file_read_firstline("${proxmox_cddir}/proxmox/$iso_env->{product}-base.cnt") ||
889 die "unable to read base file count\n";
890
891 my $per = 0;
892 my $count = 0;
893
894 run_command("unsquashfs -f -dest $targetdir -i $basefile", sub {
895 my $line = shift;
896 return if $line !~ m/^$targetdir/;
897 $count++;
898 my $nper = int (($count *100)/$files);
899 if ($nper != $per) {
900 $per = $nper;
901 my $frac = $per > 100 ? 1 : $per/100;
902 update_progress($frac, $maxper, 0.5);
903 }
904 });
905
906 syscmd("mount -n -t tmpfs tmpfs $targetdir/tmp") == 0 || die "unable to mount tmpfs on $targetdir/tmp\n";
907
908 mkdir "$targetdir/tmp/pkg";
909 syscmd("mount -n --bind '$proxmox_pkgdir' '$targetdir/tmp/pkg'") == 0
910 || die "unable to bind-mount packages on $targetdir/tmp/pkg\n";
911 syscmd("mount -n -t proc proc $targetdir/proc") == 0 || die "unable to mount proc on $targetdir/proc\n";
912 syscmd("mount -n -t sysfs sysfs $targetdir/sys") == 0 || die "unable to mount sysfs on $targetdir/sys\n";
913 if ($run_env->{boot_type} eq 'efi') {
914 syscmd("mount -n -t efivarfs efivarfs $targetdir/sys/firmware/efi/efivars") == 0 ||
915 die "unable to mount efivarfs on $targetdir/sys/firmware/efi/efivars: $!\n";
916 }
917 syscmd("chroot $targetdir mount --bind /mnt/hostrun /run") == 0 ||
918 die "unable to re-bindmount hostrun on /run in chroot\n";
919
920 update_progress(1, $maxper, 0.5, "configuring base system");
921
922 # configure hosts
923 my $hostname = Proxmox::Install::Config::get_hostname();
924 my $domain = Proxmox::Install::Config::get_domain();
925 my $ip_addr = Proxmox::Install::Config::get_ip_addr();
926
927 my $hosts =
928 "127.0.0.1 localhost.localdomain localhost\n" .
929 "$ip_addr $hostname.$domain $hostname\n\n" .
930 "# The following lines are desirable for IPv6 capable hosts\n\n" .
931 "::1 ip6-localhost ip6-loopback\n" .
932 "fe00::0 ip6-localnet\n" .
933 "ff00::0 ip6-mcastprefix\n" .
934 "ff02::1 ip6-allnodes\n" .
935 "ff02::2 ip6-allrouters\n" .
936 "ff02::3 ip6-allhosts\n";
937
938 file_write_all("$targetdir/etc/hosts", $hosts);
939
940 file_write_all("$targetdir/etc/hostname", "$hostname\n");
941
942 syscmd("/bin/hostname $hostname") if !is_test_mode();
943
944 # configure interfaces
945
946 my $ifaces = "auto lo\niface lo inet loopback\n\n";
947
948 my $ip_version = Proxmox::Install::Config::get_ip_version();
949 my $ntype = $ip_version == 4 ? 'inet' : 'inet6';
950
951 my $ethdev = Proxmox::Install::Config::get_mngmt_nic();
952 my $cidr = Proxmox::Install::Config::get_cidr();
953 my $gateway = Proxmox::Install::Config::get_gateway();
954
955 if ($iso_env->{cfg}->{bridged_network}) {
956 $ifaces .= "iface $ethdev $ntype manual\n";
957
958 $ifaces .=
959 "\nauto vmbr0\niface vmbr0 $ntype static\n" .
960 "\taddress $cidr\n" .
961 "\tgateway $gateway\n" .
962 "\tbridge-ports $ethdev\n" .
963 "\tbridge-stp off\n" .
964 "\tbridge-fd 0\n";
965 } else {
966 $ifaces .= "auto $ethdev\n" .
967 "iface $ethdev $ntype static\n" .
968 "\taddress $cidr\n" .
969 "\tgateway $gateway\n";
970 }
971
972 my $ipconf = $run_env->{ipconf};
973 foreach my $iface (sort keys %{$ipconf->{ifaces}}) {
974 my $name = $ipconf->{ifaces}->{$iface}->{name};
975 next if $name eq $ethdev;
976
977 $ifaces .= "\niface $name $ntype manual\n";
978 }
979
980 file_write_all("$targetdir/etc/network/interfaces", $ifaces);
981
982 # configure dns
983
984 my $dnsserver = Proxmox::Install::Config::get_dns();
985 my $resolvconf = "search $domain\nnameserver $dnsserver\n";
986 file_write_all("$targetdir/etc/resolv.conf", $resolvconf);
987
988 # configure fstab
989
990 my $fstab = "# <file system> <mount point> <type> <options> <dump> <pass>\n";
991
992 if ($use_zfs) {
993 # do nothing
994 } elsif ($use_btrfs) {
995 my $fsuuid;
996 my $cmd = "blkid -u filesystem -t TYPE=btrfs -o export $rootdev";
997 run_command($cmd, sub {
998 my $line = shift;
999
1000 if ($line =~ m/^UUID=([A-Fa-f0-9\-]+)$/) {
1001 $fsuuid = $1;
1002 }
1003 });
1004
1005 die "unable to detect FS UUID" if !defined($fsuuid);
1006
1007 $fstab .= "UUID=$fsuuid / btrfs defaults 0 1\n";
1008 } else {
1009 my $root_mountopt = $fssetup->{$filesys}->{root_mountopt} || 'defaults';
1010 $fstab .= "$rootdev / $filesys ${root_mountopt} 0 1\n";
1011 }
1012
1013 # mount /boot/efi
1014 # Note: this is required by current grub, but really dangerous, because
1015 # vfat does not have journaling, so it triggers manual fsck after each crash
1016 # so we only mount /boot/efi if really required (efi systems).
1017 if ($run_env->{boot_type} eq 'efi' && !$use_zfs) {
1018 if (scalar(@$bootdevinfo)) {
1019 my $di = @$bootdevinfo[0]; # simply use first disk
1020
1021 if ($di->{esp}) {
1022 my $efi_boot_uuid = $di->{esp};
1023 if (my $uuid = Proxmox::Sys::Block::get_dev_uuid($di->{esp})) {
1024 $efi_boot_uuid = "UUID=$uuid";
1025 }
1026
1027 $fstab .= "${efi_boot_uuid} /boot/efi vfat defaults 0 1\n";
1028 }
1029 }
1030 }
1031
1032
1033 $fstab .= "$swapfile none swap sw 0 0\n" if $swapfile;
1034
1035 $fstab .= "proc /proc proc defaults 0 0\n";
1036
1037 file_write_all("$targetdir/etc/fstab", $fstab);
1038 file_write_all("$targetdir/etc/mtab", "");
1039
1040 syscmd("cp ${proxmox_libdir}/policy-disable-rc.d $targetdir/usr/sbin/policy-rc.d") == 0 ||
1041 die "unable to copy policy-rc.d\n";
1042 syscmd("cp ${proxmox_libdir}/fake-start-stop-daemon $targetdir/sbin/") == 0 ||
1043 die "unable to copy start-stop-daemon\n";
1044
1045 diversion_add($targetdir, "/sbin/start-stop-daemon", "/sbin/fake-start-stop-daemon");
1046 diversion_add($targetdir, "/usr/sbin/update-grub", "/bin/true");
1047 diversion_add($targetdir, "/usr/sbin/update-initramfs", "/bin/true");
1048
1049 my $machine_id = run_command("systemd-id128 new");
1050 die "unable to create a new machine-id\n" if ! $machine_id;
1051 file_write_all("$targetdir/etc/machine-id", $machine_id);
1052
1053 syscmd("cp /etc/hostid $targetdir/etc/") == 0 ||
1054 die "unable to copy hostid\n";
1055
1056 syscmd("touch $targetdir/proxmox_install_mode");
1057
1058 my $grub_install_devices_txt = '';
1059 foreach my $di (@$bootdevinfo) {
1060 $grub_install_devices_txt .= ', ' if $grub_install_devices_txt;
1061 $grub_install_devices_txt .= $di->{by_id} || $di->{devname};
1062 }
1063
1064 my $keymap = Proxmox::Install::Config::get_keymap();
1065 # Note: keyboard-configuration/xbkb-keymap is used by console-setup
1066 my $xkmap = $iso_env->{locales}->{kmap}->{$keymap}->{x11} // 'us';
1067
1068 debconfig_set ($targetdir, <<_EOD);
1069 locales locales/default_environment_locale select en_US.UTF-8
1070 locales locales/locales_to_be_generated select en_US.UTF-8 UTF-8
1071 samba-common samba-common/dhcp boolean false
1072 samba-common samba-common/workgroup string WORKGROUP
1073 postfix postfix/main_mailer_type select No configuration
1074 keyboard-configuration keyboard-configuration/xkb-keymap select $xkmap
1075 d-i debian-installer/locale select en_US.UTF-8
1076 grub-pc grub-pc/install_devices select $grub_install_devices_txt
1077 _EOD
1078
1079 my $pkg_count = 0;
1080 while (<${proxmox_pkgdir}/*.deb>) { $pkg_count++ };
1081
1082 # btrfs/dpkg is extremely slow without --force-unsafe-io
1083 my $dpkg_opts = $use_btrfs ? "--force-unsafe-io" : "";
1084
1085 $count = 0;
1086 while (<${proxmox_pkgdir}/*.deb>) {
1087 chomp;
1088 my $path = $_;
1089 my ($deb) = $path =~ m/${proxmox_pkgdir}\/(.*\.deb)/;
1090
1091 # the grub-pc/grub-efi-amd64 packages (w/o -bin) are the ones actually updating grub
1092 # upon upgrade - and conflict with each other - install the fitting one only
1093 next if ($deb =~ /grub-pc_/ && $run_env->{boot_type} ne 'bios');
1094 next if ($deb =~ /grub-efi-amd64_/ && $run_env->{boot_type} ne 'efi');
1095
1096 update_progress($count/$pkg_count, 0.5, 0.75, "extracting $deb");
1097 print STDERR "extracting: $deb\n";
1098 syscmd("chroot $targetdir dpkg $dpkg_opts --force-depends --no-triggers --unpack /tmp/pkg/$deb") == 0
1099 || die "installation of package $deb failed\n";
1100 update_progress((++$count)/$pkg_count, 0.5, 0.75);
1101 }
1102
1103 # needed for postfix postinst in case no other NIC is active
1104 syscmd("chroot $targetdir ifup lo");
1105
1106 my $cmd = "chroot $targetdir dpkg $dpkg_opts --force-confold --configure -a";
1107 $count = 0;
1108 run_command($cmd, sub {
1109 my $line = shift;
1110 if ($line =~ m/Setting up\s+(\S+)/) {
1111 update_progress((++$count)/$pkg_count, 0.75, 0.95, "configuring $1");
1112 }
1113 });
1114
1115 unlink "$targetdir/etc/mailname";
1116 $postfix_main_cf =~ s/__FQDN__/${hostname}.${domain}/;
1117 file_write_all("$targetdir/etc/postfix/main.cf", $postfix_main_cf);
1118
1119 # make sure we have all postfix directories
1120 syscmd("chroot $targetdir /usr/sbin/postfix check");
1121 # cleanup mail queue
1122 syscmd("chroot $targetdir /usr/sbin/postsuper -d ALL");
1123 # create /etc/aliases.db (/etc/aliases is shipped in the base squashfs)
1124 syscmd("chroot $targetdir /usr/bin/newaliases");
1125
1126 unlink "$targetdir/proxmox_install_mode";
1127
1128 my $country = Proxmox::Install::Config::get_country();
1129 my $timezone = Proxmox::Install::Config::get_timezone();
1130
1131 # set timezone
1132 unlink ("$targetdir/etc/localtime");
1133 symlink ("/usr/share/zoneinfo/$timezone", "$targetdir/etc/localtime");
1134 file_write_all("$targetdir/etc/timezone", "$timezone\n");
1135
1136 # set apt mirror
1137 if (my $mirror = $iso_env->{locales}->{country}->{$country}->{mirror}) {
1138 my $fn = "$targetdir/etc/apt/sources.list";
1139 syscmd("sed -i 's/ftp\\.debian\\.org/$mirror/' '$fn'");
1140 }
1141
1142 # create extended_states for apt (avoid cron job warning if that
1143 # file does not exist)
1144 file_write_all("$targetdir/var/lib/apt/extended_states", '');
1145
1146 # allow ssh root login
1147 syscmd(['sed', '-i', 's/^#\?PermitRootLogin.*/PermitRootLogin yes/', "$targetdir/etc/ssh/sshd_config"]);
1148
1149 if ($iso_env->{product} eq 'pmg') {
1150 # install initial clamav DB
1151 my $srcdir = "${proxmox_cddir}/proxmox/clamav";
1152 foreach my $fn ("main.cvd", "bytecode.cvd", "daily.cvd", "safebrowsing.cvd") {
1153 syscmd("cp \"$srcdir/$fn\" \"$targetdir/var/lib/clamav\"") == 0 ||
1154 die "installation of clamav db file '$fn' failed\n";
1155 }
1156 syscmd("chroot $targetdir /bin/chown clamav:clamav -R /var/lib/clamav") == 0 ||
1157 die "unable to set owner for clamav database files\n";
1158
1159 # on-access scanner (blocks file access if it thinks file is bad) needs to be explicit
1160 # configured by the user, otherwise it fails, and it doesn't make sense for most users.
1161 unlink "$targetdir/etc/systemd/system/multi-user.target.wants/clamav-clamonacc.service"
1162 or warn "failed to disable clamav-clamonacc.service - $!";
1163 }
1164
1165 if ($iso_env->{product} eq 'pve') {
1166 # save installer settings
1167 my $ucc = uc ($country);
1168 debconfig_set($targetdir, "pve-manager pve-manager/country string $ucc\n");
1169 }
1170
1171 update_progress(0.8, 0.95, 1, "make system bootable");
1172 my $target_cmdline='';
1173 if ($target_cmdline = Proxmox::Install::Config::get_target_cmdline()) {
1174 my $target_cmdline_snippet = '';
1175 if ($target_cmdline =~ /console=ttyS(\d+),(\d+)/) {
1176 $target_cmdline_snippet .= "GRUB_TERMINAL_INPUT=\"console serial\"\n";
1177 $target_cmdline_snippet .= "GRUB_TERMINAL_OUTPUT=\"gfxterm serial\"\n";
1178 $target_cmdline_snippet .= "GRUB_SERIAL_COMMAND=\"serial --unit=$1 --speed=$2\"\n";
1179 }
1180 $target_cmdline_snippet .= "GRUB_CMDLINE_LINUX=\"\$GRUB_CMDLINE_LINUX $target_cmdline\"";
1181 file_write_all("$targetdir/etc/default/grub.d/installer.cfg", $target_cmdline_snippet);
1182 }
1183
1184 if ($use_zfs) {
1185 # add ZFS options while preserving existing kernel cmdline
1186 my $zfs_snippet = "GRUB_CMDLINE_LINUX=\"\$GRUB_CMDLINE_LINUX root=ZFS=$zfs_pool_name/ROOT/$zfs_root_volume_name boot=zfs\"";
1187 file_write_all("$targetdir/etc/default/grub.d/zfs.cfg", $zfs_snippet);
1188
1189 file_write_all("$targetdir/etc/kernel/cmdline", "root=ZFS=$zfs_pool_name/ROOT/$zfs_root_volume_name boot=zfs $target_cmdline\n");
1190
1191 zfs_setup_module_conf($targetdir);
1192 }
1193
1194 diversion_remove($targetdir, "/usr/sbin/update-grub");
1195 diversion_remove($targetdir, "/usr/sbin/update-initramfs");
1196
1197 my $kapi;
1198 foreach my $fn (<$targetdir/lib/modules/*>) {
1199 if ($fn =~ m!/(\d+\.\d+\.\d+-\d+-pve)$!) {
1200 die "found multiple kernels\n" if defined($kapi);
1201 $kapi = $1;
1202 }
1203 }
1204 die "unable to detect kernel version\n" if !defined($kapi);
1205
1206 if (!is_test_mode()) {
1207
1208 unlink ("$targetdir/etc/mtab");
1209 symlink ("/proc/mounts", "$targetdir/etc/mtab");
1210 syscmd("mount -n --bind /dev $targetdir/dev");
1211
1212 my $bootloader_err_list = [];
1213 eval {
1214 syscmd("chroot $targetdir /usr/sbin/update-initramfs -c -k $kapi") == 0 ||
1215 die "unable to install initramfs\n";
1216
1217 my $native_4k_disk_bootable = 0;
1218 foreach my $di (@$bootdevinfo) {
1219 $native_4k_disk_bootable |= ($di->{logical_bsize} == 4096);
1220 }
1221
1222 foreach my $di (@$bootdevinfo) {
1223 my $dev = $di->{devname};
1224 if ($use_zfs) {
1225 prepare_proxmox_boot_esp($di->{esp}, $targetdir);
1226 } else {
1227 if (!$native_4k_disk_bootable) {
1228 eval {
1229 syscmd("chroot $targetdir /usr/sbin/grub-install --target i386-pc --no-floppy --bootloader-id='proxmox' $dev") == 0 ||
1230 die "unable to install the i386-pc boot loader on '$dev'\n";
1231 };
1232 push @$bootloader_err_list, $@ if $@;
1233 }
1234
1235 if (my $esp = $di->{esp}) {
1236 eval { prepare_grub_efi_boot_esp($dev, $esp, $targetdir) };
1237 push @$bootloader_err_list, $@ if $@;
1238 }
1239 }
1240 }
1241
1242 syscmd("chroot $targetdir /usr/sbin/update-grub") == 0 ||
1243 die "unable to update boot loader config\n";
1244 };
1245 push @$bootloader_err_list, $@ if $@;
1246
1247 if (scalar(@$bootloader_err_list) > 0) {
1248 $bootloader_err = "bootloader setup errors:\n";
1249 map { $bootloader_err .= "- $_" } @$bootloader_err_list;
1250 warn $bootloader_err;
1251 }
1252
1253 syscmd("umount $targetdir/dev");
1254 }
1255
1256 # cleanup
1257
1258 unlink "$targetdir/usr/sbin/policy-rc.d";
1259
1260 diversion_remove($targetdir, "/sbin/start-stop-daemon");
1261
1262 # set root password
1263 my $octets = encode("utf-8", Proxmox::Install::Config::get_password());
1264 run_command("chroot $targetdir /usr/sbin/chpasswd", undef, "root:$octets\n");
1265
1266 my $mailto = Proxmox::Install::Config::get_mailto();
1267 if ($iso_env->{product} eq 'pmg') {
1268 # save admin email
1269 file_write_all("$targetdir/etc/pmg/pmg.conf", "section: admin\n\temail ${mailto}\n");
1270
1271 } elsif ($iso_env->{product} eq 'pve') {
1272
1273 # create pmxcfs DB
1274
1275 my $tmpdir = "$targetdir/tmp/pve";
1276 mkdir $tmpdir;
1277
1278 # write vnc keymap to datacenter.cfg
1279 my $vnckmap = $iso_env->{locales}->{kmap}->{$keymap}->{kvm} || 'en-us';
1280 file_write_all("$tmpdir/datacenter.cfg", "keyboard: $vnckmap\n");
1281
1282 # save admin email
1283 file_write_all("$tmpdir/user.cfg", "user:root\@pam:1:0:::${mailto}::\n");
1284
1285 # write storage.cfg
1286 my $storage_cfg;
1287 if ($use_zfs) {
1288 $storage_cfg = Proxmox::Install::StorageConfig::get_zfs_config($iso_env);
1289 } elsif ($use_btrfs) {
1290 $storage_cfg = Proxmox::Install::StorageConfig::get_btrfs_config();
1291 } elsif ($datadev) {
1292 $storage_cfg = Proxmox::Install::StorageConfig::get_lvm_thin_config();
1293 } else {
1294 $storage_cfg = Proxmox::Install::StorageConfig::get_local_config();
1295 }
1296 file_write_all("$tmpdir/storage.cfg", $storage_cfg);
1297
1298 run_command("chroot $targetdir /usr/bin/create_pmxcfs_db /tmp/pve /var/lib/pve-cluster/config.db");
1299
1300 syscmd("rm -rf $tmpdir");
1301 } elsif ($iso_env->{product} eq 'pbs') {
1302 my $base_cfg_path = "/etc/proxmox-backup";
1303 mkdir "$targetdir/$base_cfg_path";
1304
1305 chroot_chown($targetdir, $base_cfg_path, user => 'backup', recursive => 1);
1306 chroot_chmod($targetdir, $base_cfg_path, mode => '0700');
1307
1308 my $user_cfg_fn = "$base_cfg_path/user.cfg";
1309 file_write_all("$targetdir/$user_cfg_fn", "user: root\@pam\n\temail ${mailto}\n");
1310 chroot_chown($targetdir, $user_cfg_fn, user => 'root', group => 'backup');
1311 chroot_chmod($targetdir, $user_cfg_fn, mode => '0640');
1312 }
1313 };
1314
1315 my $err = $@;
1316
1317 update_progress(1, 0, 1, "");
1318
1319 print STDERR $err if $err && $err ne "\n";
1320
1321 if (is_test_mode()) {
1322 my $elapsed = Time::HiRes::tv_interval($starttime);
1323 print STDERR "Elapsed extract time: $elapsed\n";
1324
1325 syscmd("chroot $targetdir /usr/bin/dpkg-query -W --showformat='\${package}\n'> final.pkglist");
1326 }
1327
1328 syscmd("umount $targetdir/run");
1329 syscmd("umount $targetdir/mnt/hostrun");
1330 syscmd("umount $targetdir/tmp/pkg");
1331 syscmd("umount $targetdir/tmp");
1332 syscmd("umount $targetdir/proc");
1333 syscmd("umount $targetdir/sys/firmware/efi/efivars");
1334 syscmd("umount $targetdir/sys");
1335 rmdir("$targetdir/mnt/hostrun");
1336
1337 if ($use_zfs) {
1338 syscmd("zfs umount -a") == 0 ||
1339 die "unable to unmount zfs\n";
1340 } else {
1341 syscmd("umount -d $targetdir");
1342 }
1343
1344 if (!$err && $use_zfs) {
1345 syscmd("zfs set sync=standard $zfs_pool_name") == 0 ||
1346 die "unable to set zfs properties\n";
1347
1348 syscmd("zfs set mountpoint=/ $zfs_pool_name/ROOT/$zfs_root_volume_name") == 0 ||
1349 die "zfs set mountpoint failed\n";
1350
1351 if ($iso_env->{product} eq 'pve') {
1352 syscmd("zfs set mountpoint=/var/lib/vz $zfs_pool_name/var-lib-vz") == 0 ||
1353 die "zfs set mountpoint for var-lib-vz failed\n";
1354 }
1355
1356 syscmd("zpool set bootfs=$zfs_pool_name/ROOT/$zfs_root_volume_name $zfs_pool_name") == 0 ||
1357 die "zpool set bootfs failed\n";
1358 syscmd("zpool export $zfs_pool_name");
1359 }
1360
1361 if ($bootloader_err) {
1362 $err = $err && $err ne "\n" ? "$err\n$bootloader_err" : $bootloader_err;
1363 }
1364
1365 die $err if $err;
1366 }
1367
1368 1;