Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 1 | #!/bin/bash |
| 2 | |
| 3 | # This is a script to build a Debian image that can run in a VM created via AVF. |
| 4 | # TODOs: |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 5 | # - Add Android-specific packages via a new class |
| 6 | # - Use a stable release from debian-cloud-images |
| 7 | |
| 8 | show_help() { |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 9 | echo "Usage: sudo $0 [OPTION]... [FILE]" |
| 10 | echo "Builds a debian image and save it to FILE. [sudo is required]" |
| 11 | echo "Options:" |
| 12 | echo "-h Print usage and this help message and exit." |
| 13 | echo "-a ARCH Architecture of the image [default is aarch64]" |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 14 | echo "-r Release mode build" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 15 | } |
| 16 | |
| 17 | check_sudo() { |
| 18 | if [ "$EUID" -ne 0 ]; then |
| 19 | echo "Please run as root." |
| 20 | exit |
| 21 | fi |
| 22 | } |
| 23 | |
| 24 | parse_options() { |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 25 | while getopts "hra:" option; do |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 26 | case ${option} in |
| 27 | h) |
| 28 | show_help |
| 29 | exit;; |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 30 | a) |
| 31 | if [[ "$OPTARG" != "aarch64" && "$OPTARG" != "x86_64" ]]; then |
| 32 | echo "Invalid architecture: $OPTARG" |
| 33 | exit |
| 34 | fi |
| 35 | arch="$OPTARG" |
| 36 | if [[ "$arch" == "x86_64" ]]; then |
| 37 | debian_arch="amd64" |
| 38 | fi |
| 39 | ;; |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 40 | r) |
| 41 | mode=release |
| 42 | ;; |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 43 | *) |
| 44 | echo "Invalid option: $OPTARG" |
| 45 | exit |
| 46 | ;; |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 47 | esac |
| 48 | done |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 49 | if [[ "${*:$OPTIND:1}" ]]; then |
| 50 | built_image="${*:$OPTIND:1}" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 51 | fi |
| 52 | } |
| 53 | |
Jiyong Park | 879ee4a | 2024-11-29 14:00:47 +0900 | [diff] [blame] | 54 | prepare_build_id() { |
| 55 | local file=${workdir}/build_id |
| 56 | if [ -z "${KOKORO_BUILD_NUMBER}" ]; then |
| 57 | echo eng-$(hostname)-$(date --utc) > ${file} |
| 58 | else |
| 59 | echo ${KOKOR_BUILD_NUMBER} > ${file} |
| 60 | fi |
| 61 | echo ${file} |
| 62 | } |
| 63 | |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 64 | install_prerequisites() { |
Jiyong Park | 0e565ed | 2024-09-24 12:39:53 +0900 | [diff] [blame] | 65 | apt update |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 66 | packages=( |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 67 | automake |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 68 | binfmt-support |
| 69 | build-essential |
| 70 | ca-certificates |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 71 | cmake |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 72 | curl |
| 73 | debsums |
| 74 | dosfstools |
| 75 | fai-server |
| 76 | fai-setup-storage |
| 77 | fdisk |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 78 | git |
| 79 | libjson-c-dev |
| 80 | libtool |
| 81 | libwebsockets-dev |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 82 | make |
Jeongik Cha | ce3a396 | 2024-10-12 03:47:23 +0900 | [diff] [blame] | 83 | protobuf-compiler |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 84 | python3 |
| 85 | python3-libcloud |
| 86 | python3-marshmallow |
| 87 | python3-pytest |
| 88 | python3-yaml |
| 89 | qemu-user-static |
| 90 | qemu-utils |
| 91 | sudo |
| 92 | udev |
| 93 | ) |
| 94 | if [[ "$arch" == "aarch64" ]]; then |
| 95 | packages+=( |
| 96 | gcc-aarch64-linux-gnu |
| 97 | libc6-dev-arm64-cross |
| 98 | qemu-system-arm |
| 99 | ) |
| 100 | else |
| 101 | packages+=( |
Jeongik Cha | 904d962 | 2024-10-21 11:16:37 +0900 | [diff] [blame] | 102 | qemu-system |
Jeongik Cha | 8e71198 | 2024-10-20 12:45:35 +0900 | [diff] [blame] | 103 | ) |
| 104 | fi |
| 105 | |
| 106 | # TODO(b/365955006): remove these lines when uboot supports x86_64 EFI application |
| 107 | if [[ "$arch" == "x86_64" ]]; then |
| 108 | packages+=( |
| 109 | libguestfs-tools |
Saswat Padhi | 79f5213 | 2024-11-27 03:56:40 +0000 | [diff] [blame] | 110 | linux-image-generic |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 111 | ) |
| 112 | fi |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 113 | DEBIAN_FRONTEND=noninteractive \ |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 114 | apt install --no-install-recommends --assume-yes "${packages[@]}" |
Jeongik Cha | b137a5f | 2024-10-02 12:53:05 +0900 | [diff] [blame] | 115 | |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 116 | if [ ! -f $"HOME"/.cargo/bin/cargo ]; then |
Seungjae Yoo | 198a0fb | 2024-10-04 16:29:12 +0900 | [diff] [blame] | 117 | curl --proto '=https' --tlsv1.2 -sSf https://sh.rustup.rs | sh -s -- -y |
| 118 | fi |
| 119 | |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 120 | source "$HOME"/.cargo/env |
| 121 | rustup target add "${arch}"-unknown-linux-gnu |
Jeongik Cha | 139ddfd | 2024-11-01 23:16:44 +0900 | [diff] [blame] | 122 | cargo install cargo-license |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 123 | } |
| 124 | |
| 125 | download_debian_cloud_image() { |
| 126 | local ver=master |
| 127 | local prj=debian-cloud-images |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 128 | local url="https://salsa.debian.org/cloud-team/${prj}/-/archive/${ver}/${prj}-${ver}.tar.gz" |
| 129 | local outdir="${debian_cloud_image}" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 130 | |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 131 | mkdir -p "${outdir}" |
| 132 | wget -O - "${url}" | tar xz -C "${outdir}" --strip-components=1 |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 133 | } |
| 134 | |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 135 | build_rust_binary_and_copy() { |
| 136 | pushd "$(dirname "$0")/../../guest/$1" > /dev/null |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 137 | local release_flag= |
| 138 | local artifact_mode=debug |
| 139 | if [[ "$mode" == "release" ]]; then |
| 140 | release_flag="--release" |
| 141 | artifact_mode=release |
| 142 | fi |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 143 | RUSTFLAGS="-C linker=${arch}-linux-gnu-gcc" cargo build \ |
| 144 | --target "${arch}-unknown-linux-gnu" \ |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 145 | --target-dir "${workdir}/$1" ${release_flag} |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 146 | mkdir -p "${dst}/files/usr/local/bin/$1" |
Jeongik Cha | 5d399fb | 2024-11-12 19:44:33 +0900 | [diff] [blame] | 147 | cp "${workdir}/$1/${arch}-unknown-linux-gnu/${artifact_mode}/$1" "${dst}/files/usr/local/bin/$1/AVF" |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 148 | chmod 777 "${dst}/files/usr/local/bin/$1/AVF" |
Jeongik Cha | 139ddfd | 2024-11-01 23:16:44 +0900 | [diff] [blame] | 149 | |
| 150 | mkdir -p "${dst}/files/usr/share/doc/$1" |
| 151 | cargo license > "${dst}/files/usr/share/doc/$1/copyright" |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 152 | popd > /dev/null |
| 153 | } |
| 154 | |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 155 | build_ttyd() { |
| 156 | local ttyd_version=1.7.7 |
| 157 | local url="https://github.com/tsl0922/ttyd/archive/refs/tags/${ttyd_version}.tar.gz" |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 158 | cp -r "$(dirname "$0")/ttyd" "${workdir}/ttyd" |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 159 | |
| 160 | pushd "${workdir}" > /dev/null |
| 161 | wget "${url}" -O - | tar xz |
| 162 | cp ttyd/* ttyd-${ttyd_version}/scripts |
| 163 | pushd "$workdir/ttyd-${ttyd_version}" > /dev/null |
| 164 | bash -c "env BUILD_TARGET=${arch} ./scripts/cross-build.sh" |
| 165 | mkdir -p "${dst}/files/usr/local/bin/ttyd" |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 166 | cp "/tmp/stage/${arch}-linux-musl/bin/ttyd" "${dst}/files/usr/local/bin/ttyd/AVF" |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 167 | chmod 777 "${dst}/files/usr/local/bin/ttyd/AVF" |
Jeongik Cha | 139ddfd | 2024-11-01 23:16:44 +0900 | [diff] [blame] | 168 | mkdir -p "${dst}/files/usr/share/doc/ttyd" |
| 169 | cp LICENSE "${dst}/files/usr/share/doc/ttyd/copyright" |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 170 | popd > /dev/null |
| 171 | popd > /dev/null |
| 172 | } |
| 173 | |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 174 | copy_android_config() { |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 175 | local src |
| 176 | local dst |
| 177 | src="$(dirname "$0")/fai_config" |
| 178 | dst="${config_space}" |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 179 | |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 180 | cp -R "${src}"/* "${dst}" |
| 181 | cp "$(dirname "$0")/image.yaml" "${resources_dir}" |
Jeongik Cha | 5095206 | 2024-09-23 18:13:38 +0900 | [diff] [blame] | 182 | |
Jeongik Cha | 7e7f19d | 2024-10-31 20:50:24 +0900 | [diff] [blame] | 183 | build_ttyd |
Seungjae Yoo | 1cfcb58 | 2024-10-17 14:06:58 +0900 | [diff] [blame] | 184 | build_rust_binary_and_copy forwarder_guest |
| 185 | build_rust_binary_and_copy forwarder_guest_launcher |
| 186 | build_rust_binary_and_copy ip_addr_reporter |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 187 | } |
| 188 | |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 189 | run_fai() { |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 190 | local out="${built_image}" |
| 191 | make -C "${debian_cloud_image}" "image_bookworm_nocloud_${debian_arch}" |
| 192 | mv "${debian_cloud_image}/image_bookworm_nocloud_${debian_arch}.raw" "${out}" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 193 | } |
| 194 | |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 195 | extract_partitions() { |
| 196 | root_partition_num=1 |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 197 | bios_partition_num=14 |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 198 | efi_partition_num=15 |
| 199 | |
maciek swiech | 3919b8c | 2024-11-19 20:58:32 +0000 | [diff] [blame] | 200 | loop=$(losetup -f --show --partscan $built_image) |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 201 | dd if="${loop}p$root_partition_num" of=root_part |
| 202 | if [[ "$arch" == "x86_64" ]]; then |
| 203 | dd if="${loop}p$bios_partition_num" of=bios_part |
| 204 | fi |
| 205 | dd if="${loop}p$efi_partition_num" of=efi_part |
| 206 | losetup -d "${loop}" |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 207 | |
maciek swiech | 3919b8c | 2024-11-19 20:58:32 +0000 | [diff] [blame] | 208 | sed -i "s/{root_part_guid}/$(sfdisk --part-uuid $built_image $root_partition_num)/g" vm_config.json |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 209 | if [[ "$arch" == "x86_64" ]]; then |
| 210 | sed -i "s/{bios_part_guid}/$(sfdisk --part-uuid $built_image $bios_partition_num)/g" vm_config.json |
| 211 | fi |
maciek swiech | 3919b8c | 2024-11-19 20:58:32 +0000 | [diff] [blame] | 212 | sed -i "s/{efi_part_guid}/$(sfdisk --part-uuid $built_image $efi_partition_num)/g" vm_config.json |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 213 | } |
| 214 | |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 215 | clean_up() { |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 216 | rm -rf "${workdir}" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 217 | } |
| 218 | |
| 219 | set -e |
| 220 | trap clean_up EXIT |
| 221 | |
| 222 | built_image=image.raw |
| 223 | workdir=$(mktemp -d) |
Jiyong Park | 879ee4a | 2024-11-29 14:00:47 +0900 | [diff] [blame] | 224 | build_id=$(prepare_build_id) |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 225 | debian_cloud_image=${workdir}/debian_cloud_image |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 226 | debian_version=bookworm |
| 227 | config_space=${debian_cloud_image}/config_space/${debian_version} |
Jeongik Cha | 37047c3 | 2024-09-20 23:09:16 +0900 | [diff] [blame] | 228 | resources_dir=${debian_cloud_image}/src/debian_cloud_images/resources |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 229 | arch=aarch64 |
| 230 | debian_arch=arm64 |
Jeongik Cha | 06f4ac5 | 2024-11-12 15:56:05 +0900 | [diff] [blame] | 231 | mode=debug |
Jiyong Park | 879ee4a | 2024-11-29 14:00:47 +0900 | [diff] [blame] | 232 | |
maciek swiech | 0fdd051 | 2024-10-11 15:12:44 +0000 | [diff] [blame] | 233 | parse_options "$@" |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 234 | check_sudo |
Jiyong Park | a128bad | 2024-09-20 16:53:57 +0900 | [diff] [blame] | 235 | install_prerequisites |
| 236 | download_debian_cloud_image |
Jiyong Park | 44dd28f | 2024-09-20 18:47:40 +0900 | [diff] [blame] | 237 | copy_android_config |
Jiyong Park | 0e565ed | 2024-09-24 12:39:53 +0900 | [diff] [blame] | 238 | run_fai |
maciek swiech | 3919b8c | 2024-11-19 20:58:32 +0000 | [diff] [blame] | 239 | fdisk -l "${built_image}" |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 240 | images=() |
| 241 | |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 242 | cp "$(dirname "$0")/vm_config.json.${arch}" vm_config.json |
| 243 | |
| 244 | extract_partitions |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 245 | |
| 246 | if [[ "$arch" == "aarch64" ]]; then |
Mu-Le Lee | 955b658 | 2024-11-01 15:40:58 +0800 | [diff] [blame] | 247 | images+=( |
| 248 | root_part |
| 249 | efi_part |
| 250 | ) |
Jeongik Cha | 8e71198 | 2024-10-20 12:45:35 +0900 | [diff] [blame] | 251 | # TODO(b/365955006): remove these lines when uboot supports x86_64 EFI application |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 252 | elif [[ "$arch" == "x86_64" ]]; then |
Saswat Padhi | da6fb07 | 2024-11-27 23:07:31 +0000 | [diff] [blame] | 253 | rm -f vmlinuz initrd.img |
maciek swiech | 3919b8c | 2024-11-19 20:58:32 +0000 | [diff] [blame] | 254 | virt-get-kernel -a "${built_image}" |
Jeongik Cha | 8e71198 | 2024-10-20 12:45:35 +0900 | [diff] [blame] | 255 | mv vmlinuz* vmlinuz |
| 256 | mv initrd.img* initrd.img |
| 257 | images+=( |
Jeongik Cha | 53f696d | 2024-11-27 01:31:03 +0000 | [diff] [blame] | 258 | bios_part |
maciek swiech | e17e59f | 2024-11-25 20:13:23 +0000 | [diff] [blame] | 259 | root_part |
| 260 | efi_part |
Jeongik Cha | 8e71198 | 2024-10-20 12:45:35 +0900 | [diff] [blame] | 261 | vmlinuz |
| 262 | initrd.img |
| 263 | ) |
| 264 | fi |
Jeongik Cha | 904d962 | 2024-10-21 11:16:37 +0900 | [diff] [blame] | 265 | |
Jeongik Cha | 8e71198 | 2024-10-20 12:45:35 +0900 | [diff] [blame] | 266 | # --sparse option isn't supported in apache-commons-compress |
Jiyong Park | 879ee4a | 2024-11-29 14:00:47 +0900 | [diff] [blame] | 267 | tar czv -f images.tar.gz ${build_id} "${images[@]}" vm_config.json |