2014-05-20 21:59:08 +02:00
|
|
|
|
;;; GNU Guix --- Functional package management for GNU
|
2016-01-01 22:41:35 +01:00
|
|
|
|
;;; Copyright © 2013, 2014, 2015, 2016 Ludovic Courtès <ludo@gnu.org>
|
2014-05-20 21:59:08 +02:00
|
|
|
|
;;;
|
|
|
|
|
;;; This file is part of GNU Guix.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is free software; you can redistribute it and/or modify it
|
|
|
|
|
;;; under the terms of the GNU General Public License as published by
|
|
|
|
|
;;; the Free Software Foundation; either version 3 of the License, or (at
|
|
|
|
|
;;; your option) any later version.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is distributed in the hope that it will be useful, but
|
|
|
|
|
;;; WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
|
;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
|
;;; GNU General Public License for more details.
|
|
|
|
|
;;;
|
|
|
|
|
;;; You should have received a copy of the GNU General Public License
|
|
|
|
|
;;; along with GNU Guix. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
|
|
|
|
|
|
(define-module (gnu system file-systems)
|
2015-06-28 06:39:43 +02:00
|
|
|
|
#:use-module (ice-9 match)
|
2014-05-20 21:59:08 +02:00
|
|
|
|
#:use-module (guix records)
|
2015-04-20 22:21:51 +02:00
|
|
|
|
#:use-module (guix store)
|
2016-01-01 22:41:35 +01:00
|
|
|
|
#:use-module ((gnu build file-systems)
|
|
|
|
|
#:select (string->uuid uuid->string))
|
|
|
|
|
#:re-export (string->uuid
|
|
|
|
|
uuid->string)
|
2014-05-20 21:59:08 +02:00
|
|
|
|
#:export (<file-system>
|
|
|
|
|
file-system
|
|
|
|
|
file-system?
|
|
|
|
|
file-system-device
|
2014-06-02 23:58:50 +02:00
|
|
|
|
file-system-title
|
2014-05-20 21:59:08 +02:00
|
|
|
|
file-system-mount-point
|
|
|
|
|
file-system-type
|
|
|
|
|
file-system-needed-for-boot?
|
|
|
|
|
file-system-flags
|
|
|
|
|
file-system-options
|
2015-12-22 00:25:40 +01:00
|
|
|
|
file-system-mount?
|
2014-07-22 22:53:36 +02:00
|
|
|
|
file-system-check?
|
|
|
|
|
file-system-create-mount-point?
|
2015-07-17 19:24:15 +02:00
|
|
|
|
file-system-dependencies
|
2014-05-20 21:59:08 +02:00
|
|
|
|
|
2015-06-28 06:39:43 +02:00
|
|
|
|
file-system->spec
|
2016-08-04 19:08:08 +02:00
|
|
|
|
specification->file-system-mapping
|
2015-07-14 15:06:46 +02:00
|
|
|
|
uuid
|
2015-06-28 06:39:43 +02:00
|
|
|
|
|
2014-05-20 21:59:08 +02:00
|
|
|
|
%fuse-control-file-system
|
2014-07-22 16:57:57 +02:00
|
|
|
|
%binary-format-file-system
|
2014-07-23 08:13:34 +02:00
|
|
|
|
%shared-memory-file-system
|
|
|
|
|
%pseudo-terminal-file-system
|
2015-04-20 22:21:51 +02:00
|
|
|
|
%immutable-store
|
2015-06-19 02:40:57 +02:00
|
|
|
|
%control-groups
|
2015-09-03 22:58:08 +02:00
|
|
|
|
%elogind-file-systems
|
2014-07-22 16:57:57 +02:00
|
|
|
|
|
2014-09-11 23:39:15 +02:00
|
|
|
|
%base-file-systems
|
2015-06-28 06:42:16 +02:00
|
|
|
|
%container-file-systems
|
2014-09-11 23:39:15 +02:00
|
|
|
|
|
2015-06-27 16:45:34 +02:00
|
|
|
|
<file-system-mapping>
|
|
|
|
|
file-system-mapping
|
|
|
|
|
file-system-mapping?
|
|
|
|
|
file-system-mapping-source
|
|
|
|
|
file-system-mapping-target
|
|
|
|
|
file-system-mapping-writable?
|
|
|
|
|
|
|
|
|
|
%store-mapping))
|
2014-05-20 21:59:08 +02:00
|
|
|
|
|
|
|
|
|
;;; Commentary:
|
|
|
|
|
;;;
|
|
|
|
|
;;; Declaring file systems to be mounted.
|
|
|
|
|
;;;
|
|
|
|
|
;;; Code:
|
|
|
|
|
|
|
|
|
|
;; File system declaration.
|
|
|
|
|
(define-record-type* <file-system> file-system
|
|
|
|
|
make-file-system
|
|
|
|
|
file-system?
|
|
|
|
|
(device file-system-device) ; string
|
2014-06-02 23:58:50 +02:00
|
|
|
|
(title file-system-title ; 'device | 'label | 'uuid
|
|
|
|
|
(default 'device))
|
2014-05-20 21:59:08 +02:00
|
|
|
|
(mount-point file-system-mount-point) ; string
|
|
|
|
|
(type file-system-type) ; string
|
|
|
|
|
(flags file-system-flags ; list of symbols
|
|
|
|
|
(default '()))
|
|
|
|
|
(options file-system-options ; string or #f
|
|
|
|
|
(default #f))
|
2015-12-22 00:25:40 +01:00
|
|
|
|
(mount? file-system-mount? ; Boolean
|
|
|
|
|
(default #t))
|
2014-11-25 16:01:21 +01:00
|
|
|
|
(needed-for-boot? %file-system-needed-for-boot? ; Boolean
|
2014-05-20 21:59:08 +02:00
|
|
|
|
(default #f))
|
|
|
|
|
(check? file-system-check? ; Boolean
|
2014-07-22 22:53:36 +02:00
|
|
|
|
(default #t))
|
|
|
|
|
(create-mount-point? file-system-create-mount-point? ; Boolean
|
2015-07-17 19:24:15 +02:00
|
|
|
|
(default #f))
|
2015-10-29 18:22:19 +01:00
|
|
|
|
(dependencies file-system-dependencies ; list of <file-system>
|
|
|
|
|
(default '()))) ; or <mapped-device>
|
2014-05-20 21:59:08 +02:00
|
|
|
|
|
2014-11-25 16:01:21 +01:00
|
|
|
|
(define-inlinable (file-system-needed-for-boot? fs)
|
|
|
|
|
"Return true if FS has the 'needed-for-boot?' flag set, or if it's the root
|
|
|
|
|
file system."
|
|
|
|
|
(or (%file-system-needed-for-boot? fs)
|
|
|
|
|
(string=? "/" (file-system-mount-point fs))))
|
|
|
|
|
|
2015-06-28 06:39:43 +02:00
|
|
|
|
(define (file-system->spec fs)
|
|
|
|
|
"Return a list corresponding to file-system FS that can be passed to the
|
|
|
|
|
initrd code."
|
|
|
|
|
(match fs
|
2015-12-22 00:25:40 +01:00
|
|
|
|
(($ <file-system> device title mount-point type flags options _ _ check?)
|
2015-06-28 06:39:43 +02:00
|
|
|
|
(list device title mount-point type flags options check?))))
|
|
|
|
|
|
2016-08-04 19:08:08 +02:00
|
|
|
|
(define (specification->file-system-mapping spec writable?)
|
|
|
|
|
"Read the SPEC and return the corresponding <file-system-mapping>. SPEC is
|
|
|
|
|
a string of the form \"SOURCE\" or \"SOURCE=TARGET\". The former specifies
|
|
|
|
|
that SOURCE from the host should be mounted at SOURCE in the other system.
|
|
|
|
|
The latter format specifies that SOURCE from the host should be mounted at
|
|
|
|
|
TARGET in the other system."
|
|
|
|
|
(let ((index (string-index spec #\=)))
|
|
|
|
|
(if index
|
|
|
|
|
(file-system-mapping
|
|
|
|
|
(source (substring spec 0 index))
|
|
|
|
|
(target (substring spec (+ 1 index)))
|
|
|
|
|
(writable? writable?))
|
|
|
|
|
(file-system-mapping
|
|
|
|
|
(source spec)
|
|
|
|
|
(target spec)
|
|
|
|
|
(writable? writable?)))))
|
|
|
|
|
|
2015-07-14 15:06:46 +02:00
|
|
|
|
(define-syntax uuid
|
|
|
|
|
(lambda (s)
|
|
|
|
|
"Return the bytevector corresponding to the given UUID representation."
|
|
|
|
|
(syntax-case s ()
|
|
|
|
|
((_ str)
|
|
|
|
|
(string? (syntax->datum #'str))
|
|
|
|
|
;; A literal string: do the conversion at expansion time.
|
2015-07-16 09:49:36 +02:00
|
|
|
|
(let ((bv (string->uuid (syntax->datum #'str))))
|
|
|
|
|
(unless bv
|
|
|
|
|
(syntax-violation 'uuid "invalid UUID" s))
|
|
|
|
|
(datum->syntax #'str bv)))
|
2015-07-14 15:06:46 +02:00
|
|
|
|
((_ str)
|
|
|
|
|
#'(string->uuid str)))))
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
;;;
|
|
|
|
|
;;; Common file systems.
|
|
|
|
|
;;;
|
|
|
|
|
|
2014-05-20 21:59:08 +02:00
|
|
|
|
(define %fuse-control-file-system
|
|
|
|
|
;; Control file system for Linux' file systems in user-space (FUSE).
|
|
|
|
|
(file-system
|
|
|
|
|
(device "fusectl")
|
|
|
|
|
(mount-point "/sys/fs/fuse/connections")
|
|
|
|
|
(type "fusectl")
|
|
|
|
|
(check? #f)))
|
|
|
|
|
|
|
|
|
|
(define %binary-format-file-system
|
|
|
|
|
;; Support for arbitrary executable binary format.
|
|
|
|
|
(file-system
|
|
|
|
|
(device "binfmt_misc")
|
|
|
|
|
(mount-point "/proc/sys/fs/binfmt_misc")
|
|
|
|
|
(type "binfmt_misc")
|
|
|
|
|
(check? #f)))
|
|
|
|
|
|
2014-07-22 23:13:53 +02:00
|
|
|
|
(define %tty-gid
|
|
|
|
|
;; ID of the 'tty' group. Allocate it statically to make it easy to refer
|
|
|
|
|
;; to it from here and from the 'tty' group definitions.
|
2014-07-25 00:12:35 +02:00
|
|
|
|
996)
|
2014-07-22 23:13:53 +02:00
|
|
|
|
|
|
|
|
|
(define %pseudo-terminal-file-system
|
|
|
|
|
;; The pseudo-terminal file system. It needs to be mounted so that
|
|
|
|
|
;; statfs(2) returns DEVPTS_SUPER_MAGIC like libc's getpt(3) expects (and
|
|
|
|
|
;; thus openpty(3) and its users, such as xterm.)
|
|
|
|
|
(file-system
|
|
|
|
|
(device "none")
|
|
|
|
|
(mount-point "/dev/pts")
|
|
|
|
|
(type "devpts")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(needed-for-boot? #f)
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
(options (string-append "gid=" (number->string %tty-gid) ",mode=620"))))
|
2014-07-22 16:57:57 +02:00
|
|
|
|
|
2014-07-23 01:25:01 +02:00
|
|
|
|
(define %shared-memory-file-system
|
|
|
|
|
;; Shared memory.
|
|
|
|
|
(file-system
|
|
|
|
|
(device "tmpfs")
|
|
|
|
|
(mount-point "/dev/shm")
|
|
|
|
|
(type "tmpfs")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(flags '(no-suid no-dev))
|
|
|
|
|
(options "size=50%") ;TODO: make size configurable
|
|
|
|
|
(create-mount-point? #t)))
|
|
|
|
|
|
2015-04-20 22:21:51 +02:00
|
|
|
|
(define %immutable-store
|
|
|
|
|
;; Read-only store to avoid users or daemons accidentally modifying it.
|
|
|
|
|
;; 'guix-daemon' has provisions to remount it read-write in its own name
|
|
|
|
|
;; space.
|
|
|
|
|
(file-system
|
|
|
|
|
(device (%store-prefix))
|
|
|
|
|
(mount-point (%store-prefix))
|
|
|
|
|
(type "none")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(flags '(read-only bind-mount))))
|
|
|
|
|
|
2015-06-19 02:40:57 +02:00
|
|
|
|
(define %control-groups
|
2015-07-17 19:25:09 +02:00
|
|
|
|
(let ((parent (file-system
|
|
|
|
|
(device "cgroup")
|
|
|
|
|
(mount-point "/sys/fs/cgroup")
|
|
|
|
|
(type "tmpfs")
|
|
|
|
|
(check? #f))))
|
|
|
|
|
(cons parent
|
|
|
|
|
(map (lambda (subsystem)
|
|
|
|
|
(file-system
|
|
|
|
|
(device "cgroup")
|
|
|
|
|
(mount-point (string-append "/sys/fs/cgroup/" subsystem))
|
|
|
|
|
(type "cgroup")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(options subsystem)
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
|
|
|
|
|
;; This must be mounted after, and unmounted before the
|
|
|
|
|
;; parent directory.
|
|
|
|
|
(dependencies (list parent))))
|
|
|
|
|
'("cpuset" "cpu" "cpuacct" "memory" "devices" "freezer"
|
|
|
|
|
"blkio" "perf_event" "hugetlb")))))
|
2015-06-19 02:40:57 +02:00
|
|
|
|
|
2015-09-03 22:58:08 +02:00
|
|
|
|
(define %elogind-file-systems
|
|
|
|
|
;; We don't use systemd, but these file systems are needed for elogind,
|
|
|
|
|
;; which was extracted from systemd.
|
|
|
|
|
(list (file-system
|
|
|
|
|
(device "none")
|
|
|
|
|
(mount-point "/run/systemd")
|
|
|
|
|
(type "tmpfs")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(flags '(no-suid no-dev no-exec))
|
|
|
|
|
(options "mode=0755")
|
|
|
|
|
(create-mount-point? #t))
|
|
|
|
|
(file-system
|
|
|
|
|
(device "none")
|
|
|
|
|
(mount-point "/run/user")
|
|
|
|
|
(type "tmpfs")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(flags '(no-suid no-dev no-exec))
|
|
|
|
|
(options "mode=0755")
|
2016-03-02 20:29:47 +01:00
|
|
|
|
(create-mount-point? #t))
|
|
|
|
|
;; Elogind uses cgroups to organize processes, allowing it to map PIDs
|
|
|
|
|
;; to sessions. Elogind's cgroup hierarchy isn't associated with any
|
|
|
|
|
;; resource controller ("subsystem").
|
|
|
|
|
(file-system
|
|
|
|
|
(device "cgroup")
|
|
|
|
|
(mount-point "/sys/fs/cgroup/elogind")
|
|
|
|
|
(type "cgroup")
|
|
|
|
|
(check? #f)
|
|
|
|
|
(options "none,name=elogind")
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
(dependencies (list (car %control-groups))))))
|
2015-09-03 22:58:08 +02:00
|
|
|
|
|
2014-07-22 16:57:57 +02:00
|
|
|
|
(define %base-file-systems
|
|
|
|
|
;; List of basic file systems to be mounted. Note that /proc and /sys are
|
|
|
|
|
;; currently mounted by the initrd.
|
2015-09-20 21:44:39 +02:00
|
|
|
|
(append (list %pseudo-terminal-file-system
|
2015-06-19 02:40:57 +02:00
|
|
|
|
%shared-memory-file-system
|
|
|
|
|
%immutable-store)
|
2015-09-03 22:58:08 +02:00
|
|
|
|
%elogind-file-systems
|
2015-06-19 02:40:57 +02:00
|
|
|
|
%control-groups))
|
2014-07-22 16:57:57 +02:00
|
|
|
|
|
2015-06-28 06:42:16 +02:00
|
|
|
|
;; File systems for Linux containers differ from %base-file-systems in that
|
|
|
|
|
;; they impose additional restrictions such as no-exec or need different
|
|
|
|
|
;; options to function properly.
|
|
|
|
|
;;
|
|
|
|
|
;; The file system flags and options conform to the libcontainer
|
|
|
|
|
;; specification:
|
|
|
|
|
;; https://github.com/docker/libcontainer/blob/master/SPEC.md#filesystem
|
|
|
|
|
(define %container-file-systems
|
|
|
|
|
(list
|
2015-07-13 16:10:40 +02:00
|
|
|
|
;; Pseudo-terminal file system.
|
2015-06-28 06:42:16 +02:00
|
|
|
|
(file-system
|
|
|
|
|
(device "none")
|
|
|
|
|
(mount-point "/dev/pts")
|
|
|
|
|
(type "devpts")
|
|
|
|
|
(flags '(no-exec no-suid))
|
|
|
|
|
(needed-for-boot? #t)
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
(check? #f)
|
|
|
|
|
(options "newinstance,ptmxmode=0666,mode=620"))
|
|
|
|
|
;; Shared memory file system.
|
|
|
|
|
(file-system
|
|
|
|
|
(device "tmpfs")
|
|
|
|
|
(mount-point "/dev/shm")
|
|
|
|
|
(type "tmpfs")
|
|
|
|
|
(flags '(no-exec no-suid no-dev))
|
|
|
|
|
(options "mode=1777,size=65536k")
|
|
|
|
|
(needed-for-boot? #t)
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
(check? #f))
|
|
|
|
|
;; Message queue file system.
|
|
|
|
|
(file-system
|
|
|
|
|
(device "mqueue")
|
|
|
|
|
(mount-point "/dev/mqueue")
|
|
|
|
|
(type "mqueue")
|
|
|
|
|
(flags '(no-exec no-suid no-dev))
|
|
|
|
|
(needed-for-boot? #t)
|
|
|
|
|
(create-mount-point? #t)
|
|
|
|
|
(check? #f))))
|
|
|
|
|
|
2015-06-27 16:45:34 +02:00
|
|
|
|
|
|
|
|
|
;;;
|
|
|
|
|
;;; Shared file systems, for VMs/containers.
|
|
|
|
|
;;;
|
|
|
|
|
|
|
|
|
|
;; Mapping of host file system SOURCE to mount point TARGET in the guest.
|
|
|
|
|
(define-record-type* <file-system-mapping> file-system-mapping
|
|
|
|
|
make-file-system-mapping
|
|
|
|
|
file-system-mapping?
|
|
|
|
|
(source file-system-mapping-source) ;string
|
|
|
|
|
(target file-system-mapping-target) ;string
|
|
|
|
|
(writable? file-system-mapping-writable? ;Boolean
|
|
|
|
|
(default #f)))
|
|
|
|
|
|
|
|
|
|
(define %store-mapping
|
|
|
|
|
;; Mapping of the host's store into the guest.
|
|
|
|
|
(file-system-mapping
|
|
|
|
|
(source (%store-prefix))
|
|
|
|
|
(target (%store-prefix))
|
|
|
|
|
(writable? #f)))
|
|
|
|
|
|
2014-05-20 21:59:08 +02:00
|
|
|
|
;;; file-systems.scm ends here
|