use stdenv on nixos-deploy derivation
This commit is contained in:
parent
8a1af741dd
commit
79a2576dfd
1 changed files with 120 additions and 97 deletions
|
|
@ -1,111 +1,134 @@
|
||||||
{
|
{ lib
|
||||||
lib,
|
, stdenv
|
||||||
writeShellScript,
|
, nixos-rebuild
|
||||||
nixos-rebuild,
|
, openssh
|
||||||
openssh,
|
, coreutils
|
||||||
coreutils,
|
, gnugrep
|
||||||
gnugrep,
|
, gawk
|
||||||
gawk,
|
|
||||||
}:
|
}:
|
||||||
|
|
||||||
writeShellScript "nixos-deploy" ''
|
stdenv.mkDerivation rec {
|
||||||
set -euo pipefail
|
pname = "nixos-deploy";
|
||||||
|
version = "1.0";
|
||||||
|
|
||||||
LOCAL_BUILD=false
|
src = lib.fakeSha256; # will be ignored since we're using `installPhase`
|
||||||
ACTION="switch"
|
|
||||||
FLAKE_URI=""
|
|
||||||
TARGET_HOST=""
|
|
||||||
SSH_USER=""
|
|
||||||
SSH_HOST=""
|
|
||||||
|
|
||||||
show_usage() {
|
dontUnpack = true;
|
||||||
echo -e "Usage: nixos-deploy [--local-build] [--boot] <flake-uri> [user@]host"
|
|
||||||
echo ""
|
|
||||||
echo -e "Arguments:"
|
|
||||||
echo " flake-uri Flake URI (e.g., .#hostname)"
|
|
||||||
echo " [user@]host Target host, optionally with user"
|
|
||||||
echo ""
|
|
||||||
echo -e "Options:"
|
|
||||||
echo " --local-build Build locally instead of on remote"
|
|
||||||
echo " --boot Use 'boot' instead of 'switch' action"
|
|
||||||
echo ""
|
|
||||||
echo -e "Examples:"
|
|
||||||
echo " nixos-deploy .#hostname user@192.168.1.10"
|
|
||||||
echo " nixos-deploy --local-build .#hostname 192.168.1.10"
|
|
||||||
echo " nixos-deploy --boot .#hostname 192.168.1.10"
|
|
||||||
echo " nixos-deploy .#hostname 192.168.1.10 # uses current user"
|
|
||||||
exit 1
|
|
||||||
}
|
|
||||||
|
|
||||||
while [[ $# -gt 0 ]]; do
|
buildInputs = [ ];
|
||||||
case $1 in
|
|
||||||
--local-build)
|
|
||||||
LOCAL_BUILD=true
|
|
||||||
shift
|
|
||||||
;;
|
|
||||||
--boot)
|
|
||||||
ACTION="boot"
|
|
||||||
shift
|
|
||||||
;;
|
|
||||||
--help|-h)
|
|
||||||
show_usage
|
|
||||||
;;
|
|
||||||
-*)
|
|
||||||
echo -e "Unknown option: $1"
|
|
||||||
show_usage
|
|
||||||
;;
|
|
||||||
*)
|
|
||||||
if [[ -z "$FLAKE_URI" ]]; then
|
|
||||||
FLAKE_URI="$1"
|
|
||||||
elif [[ -z "$TARGET_HOST" ]]; then
|
|
||||||
TARGET_HOST="$1"
|
|
||||||
else
|
|
||||||
echo -e "Too many arguments"
|
|
||||||
show_usage
|
|
||||||
fi
|
|
||||||
shift
|
|
||||||
;;
|
|
||||||
esac
|
|
||||||
done
|
|
||||||
|
|
||||||
if [[ -z "$FLAKE_URI" ]]; then
|
installPhase = ''
|
||||||
echo -e "flake-uri is required"
|
mkdir -p $out/bin
|
||||||
show_usage
|
cat > $out/bin/nixos-deploy << 'EOF'
|
||||||
fi
|
#!/usr/bin/env bash
|
||||||
|
set -euo pipefail
|
||||||
|
|
||||||
if [[ -z "$TARGET_HOST" ]]; then
|
LOCAL_BUILD=false
|
||||||
echo -e "target host is required"
|
ACTION="switch"
|
||||||
show_usage
|
FLAKE_URI=""
|
||||||
fi
|
TARGET_HOST=""
|
||||||
|
SSH_USER=""
|
||||||
|
SSH_HOST=""
|
||||||
|
|
||||||
if [[ "$TARGET_HOST" == *"@"* ]]; then
|
show_usage() {
|
||||||
SSH_USER="''${TARGET_HOST%@*}"
|
echo -e "Usage: nixos-deploy [--local-build] [--boot] <flake-uri> [user@]host"
|
||||||
SSH_HOST="''${TARGET_HOST#*@}"
|
echo ""
|
||||||
else
|
echo -e "Arguments:"
|
||||||
SSH_USER="$(${coreutils}/bin/whoami)"
|
echo " flake-uri Flake URI (e.g., .#hostname)"
|
||||||
SSH_HOST="$TARGET_HOST"
|
echo " [user@]host Target host, optionally with user"
|
||||||
fi
|
echo ""
|
||||||
|
echo -e "Options:"
|
||||||
|
echo " --local-build Build locally instead of on remote"
|
||||||
|
echo " --boot Use 'boot' instead of 'switch' action"
|
||||||
|
echo ""
|
||||||
|
echo -e "Examples:"
|
||||||
|
echo " nixos-deploy .#hostname user@192.168.1.10"
|
||||||
|
echo " nixos-deploy --local-build .#hostname 192.168.1.10"
|
||||||
|
echo " nixos-deploy --boot .#hostname 192.168.1.10"
|
||||||
|
echo " nixos-deploy .#hostname 192.168.1.10 # uses current user"
|
||||||
|
exit 1
|
||||||
|
}
|
||||||
|
|
||||||
echo "Deploying $FLAKE_URI to $SSH_HOST as user $SSH_USER (action: $ACTION)"
|
while [[ $# -gt 0 ]]; do
|
||||||
|
case $1 in
|
||||||
|
--local-build)
|
||||||
|
LOCAL_BUILD=true
|
||||||
|
shift
|
||||||
|
;;
|
||||||
|
--boot)
|
||||||
|
ACTION="boot"
|
||||||
|
shift
|
||||||
|
;;
|
||||||
|
--help|-h)
|
||||||
|
show_usage
|
||||||
|
;;
|
||||||
|
-*)
|
||||||
|
echo -e "Unknown option: $1"
|
||||||
|
show_usage
|
||||||
|
;;
|
||||||
|
*)
|
||||||
|
if [[ -z "$FLAKE_URI" ]]; then
|
||||||
|
FLAKE_URI="$1"
|
||||||
|
elif [[ -z "$TARGET_HOST" ]]; then
|
||||||
|
TARGET_HOST="$1"
|
||||||
|
else
|
||||||
|
echo -e "Too many arguments"
|
||||||
|
show_usage
|
||||||
|
fi
|
||||||
|
shift
|
||||||
|
;;
|
||||||
|
esac
|
||||||
|
done
|
||||||
|
|
||||||
if [[ "$LOCAL_BUILD" != "true" ]]; then
|
if [[ -z "$FLAKE_URI" ]]; then
|
||||||
GC_ROOT_PATH="/tmp/nixos-deploy-$SSH_HOST-$"
|
echo -e "flake-uri is required"
|
||||||
fi
|
show_usage
|
||||||
|
fi
|
||||||
|
|
||||||
REBUILD_CMD="${nixos-rebuild}/bin/nixos-rebuild $ACTION --flake $FLAKE_URI --target-host $TARGET_HOST"
|
if [[ -z "$TARGET_HOST" ]]; then
|
||||||
|
echo -e "target host is required"
|
||||||
|
show_usage
|
||||||
|
fi
|
||||||
|
|
||||||
if [[ "$LOCAL_BUILD" == "true" ]]; then
|
if [[ "$TARGET_HOST" == *"@"* ]]; then
|
||||||
echo -e "Building locally and deploying to remote host"
|
SSH_USER="${TARGET_HOST%@*}"
|
||||||
else
|
SSH_HOST="${TARGET_HOST#*@}"
|
||||||
REBUILD_CMD="$REBUILD_CMD --build-host $SSH_HOST"
|
else
|
||||||
echo -e "Building on remote host"
|
SSH_USER="$("${coreutils}/bin/whoami")"
|
||||||
fi
|
SSH_HOST="$TARGET_HOST"
|
||||||
|
fi
|
||||||
|
|
||||||
if [[ "$SSH_USER" != "root" ]]; then
|
echo "Deploying $FLAKE_URI to $SSH_HOST as user $SSH_USER (action: $ACTION)"
|
||||||
REBUILD_CMD="$REBUILD_CMD --use-remote-sudo"
|
|
||||||
echo -e "Using remote sudo for non-root user"
|
if [[ "$LOCAL_BUILD" != "true" ]]; then
|
||||||
fi
|
GC_ROOT_PATH="/tmp/nixos-deploy-$SSH_HOST-$$"
|
||||||
|
fi
|
||||||
|
|
||||||
|
REBUILD_CMD="${nixos-rebuild}/bin/nixos-rebuild $ACTION --flake $FLAKE_URI --target-host $TARGET_HOST"
|
||||||
|
|
||||||
|
if [[ "$LOCAL_BUILD" == "true" ]]; then
|
||||||
|
echo -e "Building locally and deploying to remote host"
|
||||||
|
else
|
||||||
|
REBUILD_CMD="$REBUILD_CMD --build-host $SSH_HOST"
|
||||||
|
echo -e "Building on remote host"
|
||||||
|
fi
|
||||||
|
|
||||||
|
if [[ "$SSH_USER" != "root" ]]; then
|
||||||
|
REBUILD_CMD="$REBUILD_CMD --use-remote-sudo"
|
||||||
|
echo -e "Using remote sudo for non-root user"
|
||||||
|
fi
|
||||||
|
|
||||||
|
echo -e "Running: $REBUILD_CMD"
|
||||||
|
exec $REBUILD_CMD
|
||||||
|
EOF
|
||||||
|
chmod +x $out/bin/nixos-deploy
|
||||||
|
'';
|
||||||
|
|
||||||
|
meta = with lib; {
|
||||||
|
description = "Tool to deploy a NixOS flake to a remote host using nixos-rebuild";
|
||||||
|
license = licenses.mit;
|
||||||
|
maintainers = with maintainers; [ ];
|
||||||
|
platforms = platforms.unix;
|
||||||
|
};
|
||||||
|
}
|
||||||
|
|
||||||
echo -e "Running: $REBUILD_CMD"
|
|
||||||
exec $REBUILD_CMD
|
|
||||||
''
|
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue