Merge branch '15370-install-docker'
[arvados.git] / lib / install / deps.go
1 // Copyright (C) The Arvados Authors. All rights reserved.
2 //
3 // SPDX-License-Identifier: AGPL-3.0
4
5 package install
6
7 import (
8         "bufio"
9         "bytes"
10         "context"
11         "errors"
12         "flag"
13         "fmt"
14         "io"
15         "os"
16         "os/exec"
17         "os/user"
18         "path/filepath"
19         "strconv"
20         "strings"
21         "syscall"
22         "time"
23
24         "git.arvados.org/arvados.git/lib/cmd"
25         "git.arvados.org/arvados.git/sdk/go/ctxlog"
26         "github.com/lib/pq"
27 )
28
29 var Command cmd.Handler = &installCommand{}
30
31 const goversion = "1.17.7"
32
33 const (
34         rubyversion             = "2.7.5"
35         bundlerversion          = "2.2.19"
36         singularityversion      = "3.9.9"
37         pjsversion              = "1.9.8"
38         geckoversion            = "0.24.0"
39         gradleversion           = "5.3.1"
40         nodejsversion           = "v12.22.11"
41         devtestDatabasePassword = "insecure_arvados_test"
42         workbench2version       = "5e020488f67b5bc919796e0dc8b0b9f3b3ff23b0"
43 )
44
45 type installCommand struct {
46         ClusterType    string
47         SourcePath     string
48         PackageVersion string
49         EatMyData      bool
50 }
51
52 func (inst *installCommand) RunCommand(prog string, args []string, stdin io.Reader, stdout, stderr io.Writer) int {
53         logger := ctxlog.New(stderr, "text", "info")
54         ctx := ctxlog.Context(context.Background(), logger)
55         ctx, cancel := context.WithCancel(ctx)
56         defer cancel()
57
58         var err error
59         defer func() {
60                 if err != nil {
61                         logger.WithError(err).Info("exiting")
62                 }
63         }()
64
65         flags := flag.NewFlagSet(prog, flag.ContinueOnError)
66         flags.SetOutput(stderr)
67         versionFlag := flags.Bool("version", false, "Write version information to stdout and exit 0")
68         flags.StringVar(&inst.ClusterType, "type", "production", "cluster `type`: development, test, production, or package")
69         flags.StringVar(&inst.SourcePath, "source", "/arvados", "source tree location (required for -type=package)")
70         flags.StringVar(&inst.PackageVersion, "package-version", "0.0.0", "version string to embed in executable files")
71         flags.BoolVar(&inst.EatMyData, "eatmydata", false, "use eatmydata to speed up install")
72
73         if ok, code := cmd.ParseFlags(flags, prog, args, "", stderr); !ok {
74                 return code
75         } else if *versionFlag {
76                 return cmd.Version.RunCommand(prog, args, stdin, stdout, stderr)
77         }
78
79         var dev, test, prod, pkg bool
80         switch inst.ClusterType {
81         case "development":
82                 dev = true
83         case "test":
84                 test = true
85         case "production":
86                 prod = true
87         case "package":
88                 pkg = true
89         default:
90                 err = fmt.Errorf("invalid cluster type %q (must be 'development', 'test', 'production', or 'package')", inst.ClusterType)
91                 return 2
92         }
93
94         if prod {
95                 err = errors.New("production install is not yet implemented")
96                 return 1
97         }
98
99         osv, err := identifyOS()
100         if err != nil {
101                 return 1
102         }
103
104         listdir, err := os.Open("/var/lib/apt/lists")
105         if err != nil {
106                 logger.Warnf("error while checking whether to run apt-get update: %s", err)
107         } else if names, _ := listdir.Readdirnames(1); len(names) == 0 {
108                 // Special case for a base docker image where the
109                 // package cache has been deleted and all "apt-get
110                 // install" commands will fail unless we fetch repos.
111                 cmd := exec.CommandContext(ctx, "apt-get", "update")
112                 cmd.Stdout = stdout
113                 cmd.Stderr = stderr
114                 err = cmd.Run()
115                 if err != nil {
116                         return 1
117                 }
118         }
119
120         if inst.EatMyData {
121                 cmd := exec.CommandContext(ctx, "apt-get", "install", "--yes", "--no-install-recommends", "eatmydata")
122                 cmd.Env = append(os.Environ(), "DEBIAN_FRONTEND=noninteractive")
123                 cmd.Stdout = stdout
124                 cmd.Stderr = stderr
125                 err = cmd.Run()
126                 if err != nil {
127                         return 1
128                 }
129         }
130
131         pkgs := prodpkgs(osv)
132
133         if pkg {
134                 pkgs = append(pkgs,
135                         "dpkg-dev",
136                         "eatmydata", // install it for later steps, even if we're not using it now
137                 )
138         }
139
140         if dev || test || pkg {
141                 pkgs = append(pkgs,
142                         "automake",
143                         "bison",
144                         "bsdmainutils",
145                         "build-essential",
146                         "cadaver",
147                         "curl",
148                         "cython3",
149                         "default-jdk-headless",
150                         "default-jre-headless",
151                         "gettext",
152                         "iceweasel",
153                         "libattr1-dev",
154                         "libcrypt-ssleay-perl",
155                         "libfuse-dev",
156                         "libgnutls28-dev",
157                         "libjson-perl",
158                         "libpam-dev",
159                         "libpcre3-dev",
160                         "libpq-dev",
161                         "libreadline-dev",
162                         "libssl-dev",
163                         "libwww-perl",
164                         "libxml2-dev",
165                         "libxslt1-dev",
166                         "linkchecker",
167                         "lsof",
168                         "make",
169                         "net-tools",
170                         "pandoc",
171                         "perl-modules",
172                         "pkg-config",
173                         "postgresql",
174                         "postgresql-contrib",
175                         "python3-dev",
176                         "python3-venv",
177                         "python3-virtualenv",
178                         "r-base",
179                         "r-cran-testthat",
180                         "r-cran-devtools",
181                         "r-cran-knitr",
182                         "r-cran-markdown",
183                         "r-cran-roxygen2",
184                         "r-cran-xml",
185                         "rsync",
186                         "sudo",
187                         "uuid-dev",
188                         "wget",
189                         "xvfb",
190                 )
191                 if dev || test {
192                         pkgs = append(pkgs, "squashfs-tools") // for singularity
193                         pkgs = append(pkgs, "gnupg")          // for docker install recipe
194                 }
195                 switch {
196                 case osv.Debian && osv.Major >= 10:
197                         pkgs = append(pkgs, "libcurl4")
198                 default:
199                         pkgs = append(pkgs, "libcurl3")
200                 }
201                 cmd := exec.CommandContext(ctx, "apt-get")
202                 if inst.EatMyData {
203                         cmd = exec.CommandContext(ctx, "eatmydata", "apt-get")
204                 }
205                 cmd.Args = append(cmd.Args, "install", "--yes", "--no-install-recommends")
206                 cmd.Args = append(cmd.Args, pkgs...)
207                 cmd.Env = append(os.Environ(), "DEBIAN_FRONTEND=noninteractive")
208                 cmd.Stdout = stdout
209                 cmd.Stderr = stderr
210                 err = cmd.Run()
211                 if err != nil {
212                         return 1
213                 }
214         }
215
216         if dev || test {
217                 if havedockerversion, err := exec.Command("docker", "--version").CombinedOutput(); err == nil {
218                         logger.Printf("%s installed, assuming that version is ok", bytes.TrimSuffix(havedockerversion, []byte("\n")))
219                 } else if osv.Debian {
220                         var codename string
221                         switch osv.Major {
222                         case 10:
223                                 codename = "buster"
224                         case 11:
225                                 codename = "bullseye"
226                         default:
227                                 err = fmt.Errorf("don't know how to install docker-ce for debian %d", osv.Major)
228                                 return 1
229                         }
230                         err = inst.runBash(`
231 rm -f /usr/share/keyrings/docker-archive-keyring.gpg
232 curl -fsSL https://download.docker.com/linux/debian/gpg | gpg --dearmor -o /usr/share/keyrings/docker-archive-keyring.gpg
233 echo 'deb [arch=amd64 signed-by=/usr/share/keyrings/docker-archive-keyring.gpg] https://download.docker.com/linux/debian/ `+codename+` stable' | \
234     tee /etc/apt/sources.list.d/docker.list
235 apt-get update
236 DEBIAN_FRONTEND=noninteractive apt-get --yes --no-install-recommends install docker-ce
237 `, stdout, stderr)
238                         if err != nil {
239                                 return 1
240                         }
241                 } else {
242                         err = fmt.Errorf("don't know how to install docker for osversion %v", osv)
243                         return 1
244                 }
245         }
246
247         os.Mkdir("/var/lib/arvados", 0755)
248         os.Mkdir("/var/lib/arvados/tmp", 0700)
249         if prod || pkg {
250                 os.Mkdir("/var/lib/arvados/wwwtmp", 0700)
251                 u, er := user.Lookup("www-data")
252                 if er != nil {
253                         err = fmt.Errorf("user.Lookup(%q): %w", "www-data", er)
254                         return 1
255                 }
256                 uid, _ := strconv.Atoi(u.Uid)
257                 gid, _ := strconv.Atoi(u.Gid)
258                 err = os.Chown("/var/lib/arvados/wwwtmp", uid, gid)
259                 if err != nil {
260                         return 1
261                 }
262         }
263         rubyversion := "2.7.2"
264         rubymajorversion := rubyversion[:strings.LastIndex(rubyversion, ".")]
265         if haverubyversion, err := exec.Command("/var/lib/arvados/bin/ruby", "-v").CombinedOutput(); err == nil && bytes.HasPrefix(haverubyversion, []byte("ruby "+rubyversion)) {
266                 logger.Print("ruby " + rubyversion + " already installed")
267         } else {
268                 err = inst.runBash(`
269 tmp="$(mktemp -d)"
270 trap 'rm -r "${tmp}"' ERR EXIT
271 wget --progress=dot:giga -O- https://cache.ruby-lang.org/pub/ruby/`+rubymajorversion+`/ruby-`+rubyversion+`.tar.gz | tar -C "${tmp}" -xzf -
272 cd "${tmp}/ruby-`+rubyversion+`"
273 ./configure --disable-install-static-library --enable-shared --disable-install-doc --prefix /var/lib/arvados
274 make -j8
275 make install
276 /var/lib/arvados/bin/gem install bundler --no-document
277 `, stdout, stderr)
278                 if err != nil {
279                         return 1
280                 }
281         }
282
283         if !prod {
284                 if havegoversion, err := exec.Command("/usr/local/bin/go", "version").CombinedOutput(); err == nil && bytes.HasPrefix(havegoversion, []byte("go version go"+goversion+" ")) {
285                         logger.Print("go " + goversion + " already installed")
286                 } else {
287                         err = inst.runBash(`
288 cd /tmp
289 rm -rf /var/lib/arvados/go/
290 wget --progress=dot:giga -O- https://storage.googleapis.com/golang/go`+goversion+`.linux-amd64.tar.gz | tar -C /var/lib/arvados -xzf -
291 ln -sf /var/lib/arvados/go/bin/* /usr/local/bin/
292 `, stdout, stderr)
293                         if err != nil {
294                                 return 1
295                         }
296                 }
297         }
298
299         if !prod && !pkg {
300                 pjsversion := "1.9.8"
301                 if havepjsversion, err := exec.Command("/usr/local/bin/phantomjs", "--version").CombinedOutput(); err == nil && string(havepjsversion) == "1.9.8\n" {
302                         logger.Print("phantomjs " + pjsversion + " already installed")
303                 } else {
304                         err = inst.runBash(`
305 PJS=phantomjs-`+pjsversion+`-linux-x86_64
306 wget --progress=dot:giga -O- https://cache.arvados.org/$PJS.tar.bz2 | tar -C /var/lib/arvados -xjf -
307 ln -sf /var/lib/arvados/$PJS/bin/phantomjs /usr/local/bin/
308 `, stdout, stderr)
309                         if err != nil {
310                                 return 1
311                         }
312                 }
313
314                 geckoversion := "0.24.0"
315                 if havegeckoversion, err := exec.Command("/usr/local/bin/geckodriver", "--version").CombinedOutput(); err == nil && strings.Contains(string(havegeckoversion), " "+geckoversion+" ") {
316                         logger.Print("geckodriver " + geckoversion + " already installed")
317                 } else {
318                         err = inst.runBash(`
319 GD=v`+geckoversion+`
320 wget --progress=dot:giga -O- https://github.com/mozilla/geckodriver/releases/download/$GD/geckodriver-$GD-linux64.tar.gz | tar -C /var/lib/arvados/bin -xzf - geckodriver
321 ln -sf /var/lib/arvados/bin/geckodriver /usr/local/bin/
322 `, stdout, stderr)
323                         if err != nil {
324                                 return 1
325                         }
326                 }
327
328                 nodejsversion := "v12.22.2"
329                 if havenodejsversion, err := exec.Command("/usr/local/bin/node", "--version").CombinedOutput(); err == nil && string(havenodejsversion) == nodejsversion+"\n" {
330                         logger.Print("nodejs " + nodejsversion + " already installed")
331                 } else {
332                         err = inst.runBash(`
333 NJS=`+nodejsversion+`
334 wget --progress=dot:giga -O- https://nodejs.org/dist/${NJS}/node-${NJS}-linux-x64.tar.xz | sudo tar -C /var/lib/arvados -xJf -
335 ln -sf /var/lib/arvados/node-${NJS}-linux-x64/bin/{node,npm} /usr/local/bin/
336 `, stdout, stderr)
337                         if err != nil {
338                                 return 1
339                         }
340                 }
341
342                 gradleversion := "5.3.1"
343                 if havegradleversion, err := exec.Command("/usr/local/bin/gradle", "--version").CombinedOutput(); err == nil && strings.Contains(string(havegradleversion), "Gradle "+gradleversion+"\n") {
344                         logger.Print("gradle " + gradleversion + " already installed")
345                 } else {
346                         err = inst.runBash(`
347 G=`+gradleversion+`
348 zip=/var/lib/arvados/tmp/gradle-${G}-bin.zip
349 trap "rm ${zip}" ERR
350 wget --progress=dot:giga -O${zip} https://services.gradle.org/distributions/gradle-${G}-bin.zip
351 unzip -o -d /var/lib/arvados ${zip}
352 ln -sf /var/lib/arvados/gradle-${G}/bin/gradle /usr/local/bin/
353 rm ${zip}
354 `, stdout, stderr)
355                         if err != nil {
356                                 return 1
357                         }
358                 }
359
360                 singularityversion := "3.7.4"
361                 if havesingularityversion, err := exec.Command("/var/lib/arvados/bin/singularity", "--version").CombinedOutput(); err == nil && strings.Contains(string(havesingularityversion), singularityversion) {
362                         logger.Print("singularity " + singularityversion + " already installed")
363                 } else if dev || test {
364                         err = inst.runBash(`
365 S=`+singularityversion+`
366 tmp=/var/lib/arvados/tmp/singularity
367 trap "rm -r ${tmp}" ERR EXIT
368 cd /var/lib/arvados/tmp
369 git clone https://github.com/sylabs/singularity
370 cd singularity
371 git checkout v${S}
372 ./mconfig --prefix=/var/lib/arvados
373 make -C ./builddir
374 make -C ./builddir install
375 `, stdout, stderr)
376                         if err != nil {
377                                 return 1
378                         }
379                 }
380
381                 err = inst.runBash(`
382 install /usr/bin/nsenter /var/lib/arvados/bin/nsenter
383 setcap "cap_sys_admin+pei cap_sys_chroot+pei" /var/lib/arvados/bin/nsenter
384 `, stdout, stderr)
385                 if err != nil {
386                         return 1
387                 }
388
389                 // The entry in /etc/locale.gen is "en_US.UTF-8"; once
390                 // it's installed, locale -a reports it as
391                 // "en_US.utf8".
392                 wantlocale := "en_US.UTF-8"
393                 if havelocales, err := exec.Command("locale", "-a").CombinedOutput(); err == nil && bytes.Contains(havelocales, []byte(strings.Replace(wantlocale+"\n", "UTF-", "utf", 1))) {
394                         logger.Print("locale " + wantlocale + " already installed")
395                 } else {
396                         err = inst.runBash(`sed -i 's/^# *\(`+wantlocale+`\)/\1/' /etc/locale.gen && locale-gen`, stdout, stderr)
397                         if err != nil {
398                                 return 1
399                         }
400                 }
401
402                 var pgc struct {
403                         Version       string
404                         Cluster       string
405                         Port          int
406                         Status        string
407                         Owner         string
408                         DataDirectory string
409                         LogFile       string
410                 }
411                 if pgLsclusters, err2 := exec.Command("pg_lsclusters", "--no-header").CombinedOutput(); err2 != nil {
412                         err = fmt.Errorf("pg_lsclusters: %s", err2)
413                         return 1
414                 } else if pgclusters := strings.Split(strings.TrimSpace(string(pgLsclusters)), "\n"); len(pgclusters) != 1 {
415                         logger.Warnf("pg_lsclusters returned %d postgresql clusters -- skipping postgresql initdb/startup, hope that's ok", len(pgclusters))
416                 } else if _, err = fmt.Sscanf(pgclusters[0], "%s %s %d %s %s %s %s", &pgc.Version, &pgc.Cluster, &pgc.Port, &pgc.Status, &pgc.Owner, &pgc.DataDirectory, &pgc.LogFile); err != nil {
417                         err = fmt.Errorf("error parsing pg_lsclusters output: %s", err)
418                         return 1
419                 } else if pgc.Status == "online" {
420                         logger.Infof("postgresql cluster %s-%s is online", pgc.Version, pgc.Cluster)
421                 } else {
422                         logger.Infof("postgresql cluster %s-%s is %s; trying to start", pgc.Version, pgc.Cluster, pgc.Status)
423                         cmd := exec.Command("pg_ctlcluster", "--foreground", pgc.Version, pgc.Cluster, "start")
424                         cmd.Stdout = stdout
425                         cmd.Stderr = stderr
426                         err = cmd.Start()
427                         if err != nil {
428                                 return 1
429                         }
430                         defer func() {
431                                 cmd.Process.Signal(syscall.SIGTERM)
432                                 logger.Info("sent SIGTERM; waiting for postgres to shut down")
433                                 cmd.Wait()
434                         }()
435                         err = waitPostgreSQLReady()
436                         if err != nil {
437                                 return 1
438                         }
439                 }
440
441                 if os.Getpid() == 1 {
442                         // We are the init process (presumably in a
443                         // docker container) so although postgresql is
444                         // installed, it's not running, and initdb
445                         // might never have been run.
446                 }
447
448                 var needcoll []string
449                 // If the en_US.UTF-8 locale wasn't installed when
450                 // postgresql initdb ran, it needs to be added
451                 // explicitly before we can use it in our test suite.
452                 for _, collname := range []string{"en_US", "en_US.UTF-8"} {
453                         cmd := exec.Command("sudo", "-u", "postgres", "psql", "-t", "-c", "SELECT 1 FROM pg_catalog.pg_collation WHERE collname='"+collname+"' AND collcollate IN ('en_US.UTF-8', 'en_US.utf8')")
454                         cmd.Dir = "/"
455                         out, err2 := cmd.CombinedOutput()
456                         if err != nil {
457                                 err = fmt.Errorf("error while checking postgresql collations: %s", err2)
458                                 return 1
459                         }
460                         if strings.Contains(string(out), "1") {
461                                 logger.Infof("postgresql supports collation %s", collname)
462                         } else {
463                                 needcoll = append(needcoll, collname)
464                         }
465                 }
466                 if len(needcoll) > 0 && os.Getpid() != 1 {
467                         // In order for the CREATE COLLATION statement
468                         // below to work, the locale must have existed
469                         // when PostgreSQL started up. If we're
470                         // running as init, we must have started
471                         // PostgreSQL ourselves after installing the
472                         // locales. Otherwise, it might need a
473                         // restart, so we attempt to restart it with
474                         // systemd.
475                         if err = inst.runBash(`sudo systemctl restart postgresql`, stdout, stderr); err != nil {
476                                 logger.Warn("`systemctl restart postgresql` failed; hoping postgresql does not need to be restarted")
477                         } else if err = waitPostgreSQLReady(); err != nil {
478                                 return 1
479                         }
480                 }
481                 for _, collname := range needcoll {
482                         cmd := exec.Command("sudo", "-u", "postgres", "psql", "-c", "CREATE COLLATION \""+collname+"\" (LOCALE = \"en_US.UTF-8\")")
483                         cmd.Stdout = stdout
484                         cmd.Stderr = stderr
485                         cmd.Dir = "/"
486                         err = cmd.Run()
487                         if err != nil {
488                                 err = fmt.Errorf("error adding postgresql collation %s: %s", collname, err)
489                                 return 1
490                         }
491                 }
492
493                 withstuff := "WITH LOGIN SUPERUSER ENCRYPTED PASSWORD " + pq.QuoteLiteral(devtestDatabasePassword)
494                 cmd := exec.Command("sudo", "-u", "postgres", "psql", "-c", "ALTER ROLE arvados "+withstuff)
495                 cmd.Dir = "/"
496                 if err := cmd.Run(); err == nil {
497                         logger.Print("arvados role exists; superuser privileges added, password updated")
498                 } else {
499                         cmd := exec.Command("sudo", "-u", "postgres", "psql", "-c", "CREATE ROLE arvados "+withstuff)
500                         cmd.Dir = "/"
501                         cmd.Stdout = stdout
502                         cmd.Stderr = stderr
503                         err = cmd.Run()
504                         if err != nil {
505                                 return 1
506                         }
507                 }
508         }
509
510         if prod || pkg {
511                 // Install Rails apps to /var/lib/arvados/{railsapi,workbench1}/
512                 for dstdir, srcdir := range map[string]string{
513                         "railsapi":   "services/api",
514                         "workbench1": "apps/workbench",
515                 } {
516                         fmt.Fprintf(stderr, "building %s...\n", srcdir)
517                         cmd := exec.Command("rsync",
518                                 "-a", "--no-owner", "--no-group", "--delete-after", "--delete-excluded",
519                                 "--exclude", "/coverage",
520                                 "--exclude", "/log",
521                                 "--exclude", "/tmp",
522                                 "--exclude", "/vendor",
523                                 "--exclude", "/config/environments",
524                                 "./", "/var/lib/arvados/"+dstdir+"/")
525                         cmd.Dir = filepath.Join(inst.SourcePath, srcdir)
526                         cmd.Stdout = stdout
527                         cmd.Stderr = stderr
528                         err = cmd.Run()
529                         if err != nil {
530                                 return 1
531                         }
532                         for _, cmdline := range [][]string{
533                                 {"mkdir", "-p", "log", "tmp", ".bundle", "/var/www/.gem", "/var/www/.bundle", "/var/www/.passenger"},
534                                 {"touch", "log/production.log"},
535                                 {"chown", "-R", "--from=root", "www-data:www-data", "/var/www/.gem", "/var/www/.bundle", "/var/www/.passenger", "log", "tmp", ".bundle", "Gemfile.lock", "config.ru", "config/environment.rb"},
536                                 {"sudo", "-u", "www-data", "/var/lib/arvados/bin/gem", "install", "--user", "--conservative", "--no-document", "bundler:2.2.19"},
537                                 {"sudo", "-u", "www-data", "/var/lib/arvados/bin/bundle", "install", "--deployment", "--jobs", "8", "--path", "/var/www/.gem"},
538                                 {"sudo", "-u", "www-data", "/var/lib/arvados/bin/bundle", "exec", "passenger-config", "build-native-support"},
539                                 {"sudo", "-u", "www-data", "/var/lib/arvados/bin/bundle", "exec", "passenger-config", "install-standalone-runtime"},
540                         } {
541                                 cmd = exec.Command(cmdline[0], cmdline[1:]...)
542                                 cmd.Dir = "/var/lib/arvados/" + dstdir
543                                 cmd.Stdout = stdout
544                                 cmd.Stderr = stderr
545                                 fmt.Fprintf(stderr, "... %s\n", cmd.Args)
546                                 err = cmd.Run()
547                                 if err != nil {
548                                         return 1
549                                 }
550                         }
551                         cmd = exec.Command("sudo", "-u", "www-data", "/var/lib/arvados/bin/bundle", "exec", "passenger-config", "validate-install")
552                         cmd.Dir = "/var/lib/arvados/" + dstdir
553                         cmd.Stdout = stdout
554                         cmd.Stderr = stderr
555                         err = cmd.Run()
556                         if err != nil && !strings.Contains(err.Error(), "exit status 2") {
557                                 // Exit code 2 indicates there were warnings (like
558                                 // "other passenger installations have been detected",
559                                 // which we can't expect to avoid) but no errors.
560                                 // Other non-zero exit codes (1, 9) indicate errors.
561                                 return 1
562                         }
563                 }
564
565                 // Install Go programs to /var/lib/arvados/bin/
566                 for _, srcdir := range []string{
567                         "cmd/arvados-client",
568                         "cmd/arvados-server",
569                         "services/arv-git-httpd",
570                         "services/crunch-dispatch-local",
571                         "services/crunch-dispatch-slurm",
572                         "services/health",
573                         "services/keep-balance",
574                         "services/keep-web",
575                         "services/keepproxy",
576                         "services/keepstore",
577                         "services/ws",
578                 } {
579                         fmt.Fprintf(stderr, "building %s...\n", srcdir)
580                         cmd := exec.Command("go", "install", "-ldflags", "-X git.arvados.org/arvados.git/lib/cmd.version="+inst.PackageVersion+" -X main.version="+inst.PackageVersion)
581                         cmd.Env = append(cmd.Env, os.Environ()...)
582                         cmd.Env = append(cmd.Env, "GOBIN=/var/lib/arvados/bin")
583                         cmd.Dir = filepath.Join(inst.SourcePath, srcdir)
584                         cmd.Stdout = stdout
585                         cmd.Stderr = stderr
586                         err = cmd.Run()
587                         if err != nil {
588                                 return 1
589                         }
590                 }
591
592                 // Copy assets from source tree to /var/lib/arvados/share
593                 cmd := exec.Command("install", "-v", "-t", "/var/lib/arvados/share", filepath.Join(inst.SourcePath, "sdk/python/tests/nginx.conf"))
594                 cmd.Stdout = stdout
595                 cmd.Stderr = stderr
596                 err = cmd.Run()
597                 if err != nil {
598                         return 1
599                 }
600         }
601
602         return 0
603 }
604
605 type osversion struct {
606         Debian bool
607         Ubuntu bool
608         Centos bool
609         Major  int
610 }
611
612 func identifyOS() (osversion, error) {
613         var osv osversion
614         f, err := os.Open("/etc/os-release")
615         if err != nil {
616                 return osv, err
617         }
618         defer f.Close()
619
620         kv := map[string]string{}
621         scanner := bufio.NewScanner(f)
622         for scanner.Scan() {
623                 line := strings.TrimSpace(scanner.Text())
624                 if strings.HasPrefix(line, "#") {
625                         continue
626                 }
627                 toks := strings.SplitN(line, "=", 2)
628                 if len(toks) != 2 {
629                         return osv, fmt.Errorf("invalid line in /etc/os-release: %q", line)
630                 }
631                 k := toks[0]
632                 v := strings.Trim(toks[1], `"`)
633                 if v == toks[1] {
634                         v = strings.Trim(v, `'`)
635                 }
636                 kv[k] = v
637         }
638         if err = scanner.Err(); err != nil {
639                 return osv, err
640         }
641         switch kv["ID"] {
642         case "ubuntu":
643                 osv.Ubuntu = true
644         case "debian":
645                 osv.Debian = true
646         case "centos":
647                 osv.Centos = true
648         default:
649                 return osv, fmt.Errorf("unsupported ID in /etc/os-release: %q", kv["ID"])
650         }
651         vstr := kv["VERSION_ID"]
652         if i := strings.Index(vstr, "."); i > 0 {
653                 vstr = vstr[:i]
654         }
655         osv.Major, err = strconv.Atoi(vstr)
656         if err != nil {
657                 return osv, fmt.Errorf("incomprehensible VERSION_ID in /etc/os-release: %q", kv["VERSION_ID"])
658         }
659         return osv, nil
660 }
661
662 func waitPostgreSQLReady() error {
663         for deadline := time.Now().Add(10 * time.Second); ; {
664                 output, err := exec.Command("pg_isready").CombinedOutput()
665                 if err == nil {
666                         return nil
667                 } else if time.Now().After(deadline) {
668                         return fmt.Errorf("timed out waiting for pg_isready (%q)", output)
669                 } else {
670                         time.Sleep(time.Second)
671                 }
672         }
673 }
674
675 func (inst *installCommand) runBash(script string, stdout, stderr io.Writer) error {
676         cmd := exec.Command("bash", "-")
677         if inst.EatMyData {
678                 cmd = exec.Command("eatmydata", "bash", "-")
679         }
680         cmd.Stdin = bytes.NewBufferString("set -ex -o pipefail\n" + script)
681         cmd.Stdout = stdout
682         cmd.Stderr = stderr
683         return cmd.Run()
684 }
685
686 func prodpkgs(osv osversion) []string {
687         pkgs := []string{
688                 "ca-certificates",
689                 "curl",
690                 "fuse",
691                 "git",
692                 "gitolite3",
693                 "graphviz",
694                 "haveged",
695                 "libcurl3-gnutls",
696                 "libxslt1.1",
697                 "nginx",
698                 "python",
699                 "sudo",
700         }
701         if osv.Debian || osv.Ubuntu {
702                 if osv.Debian && osv.Major == 8 {
703                         pkgs = append(pkgs, "libgnutls-deb0-28") // sdk/cwl
704                 } else if osv.Debian && osv.Major >= 10 || osv.Ubuntu && osv.Major >= 16 {
705                         pkgs = append(pkgs, "python3-distutils") // sdk/cwl
706                 }
707                 return append(pkgs,
708                         "g++",
709                         "libcurl4-openssl-dev", // services/api
710                         "libpq-dev",
711                         "libpython2.7", // services/fuse
712                         "mime-support", // keep-web
713                         "zlib1g-dev",   // services/api
714                 )
715         } else if osv.Centos {
716                 return append(pkgs,
717                         "fuse-libs", // services/fuse
718                         "gcc",
719                         "gcc-c++",
720                         "libcurl-devel",    // services/api
721                         "mailcap",          // keep-web
722                         "postgresql-devel", // services/api
723                 )
724         } else {
725                 panic("os version not supported")
726         }
727 }
728
729 func ProductionDependencies() ([]string, error) {
730         osv, err := identifyOS()
731         if err != nil {
732                 return nil, err
733         }
734         return prodpkgs(osv), nil
735 }