2016-04-17 11:53:20 -04:00
|
|
|
|
;;; GNU Guix --- Functional package management for GNU
|
|
|
|
|
;;; Copyright © 2014, 2015, 2016 Ludovic Courtès <ludo@gnu.org>
|
|
|
|
|
;;;
|
|
|
|
|
;;; This file is part of GNU Guix.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is free software; you can redistribute it and/or modify it
|
|
|
|
|
;;; under the terms of the GNU General Public License as published by
|
|
|
|
|
;;; the Free Software Foundation; either version 3 of the License, or (at
|
|
|
|
|
;;; your option) any later version.
|
|
|
|
|
;;;
|
|
|
|
|
;;; GNU Guix is distributed in the hope that it will be useful, but
|
|
|
|
|
;;; WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
|
;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
|
;;; GNU General Public License for more details.
|
|
|
|
|
;;;
|
|
|
|
|
;;; You should have received a copy of the GNU General Public License
|
|
|
|
|
;;; along with GNU Guix. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
|
|
|
|
|
|
(define-module (gnu system mapped-devices)
|
2016-04-17 11:59:58 -04:00
|
|
|
|
#:use-module (guix gexp)
|
2016-04-17 11:53:20 -04:00
|
|
|
|
#:use-module (guix records)
|
2016-04-17 12:09:11 -04:00
|
|
|
|
#:use-module (gnu services)
|
|
|
|
|
#:use-module (gnu services shepherd)
|
2016-04-17 11:59:58 -04:00
|
|
|
|
#:autoload (gnu packages cryptsetup) (cryptsetup)
|
2016-04-17 18:23:16 -04:00
|
|
|
|
#:use-module (srfi srfi-1)
|
2016-04-17 12:09:11 -04:00
|
|
|
|
#:use-module (ice-9 match)
|
2016-04-17 11:53:20 -04:00
|
|
|
|
#:export (mapped-device
|
|
|
|
|
mapped-device?
|
|
|
|
|
mapped-device-source
|
|
|
|
|
mapped-device-target
|
|
|
|
|
mapped-device-type
|
|
|
|
|
|
|
|
|
|
mapped-device-kind
|
|
|
|
|
mapped-device-kind?
|
|
|
|
|
mapped-device-kind-open
|
2016-04-17 11:59:58 -04:00
|
|
|
|
mapped-device-kind-close
|
|
|
|
|
|
2016-04-17 12:09:11 -04:00
|
|
|
|
device-mapping-service-type
|
|
|
|
|
device-mapping-service
|
|
|
|
|
|
2016-04-17 11:59:58 -04:00
|
|
|
|
luks-device-mapping))
|
2016-04-17 11:53:20 -04:00
|
|
|
|
|
|
|
|
|
;;; Commentary:
|
|
|
|
|
;;;
|
|
|
|
|
;;; This module supports "device mapping", a concept implemented by Linux's
|
|
|
|
|
;;; device-mapper.
|
|
|
|
|
;;;
|
|
|
|
|
;;; Code:
|
|
|
|
|
|
|
|
|
|
(define-record-type* <mapped-device> mapped-device
|
|
|
|
|
make-mapped-device
|
|
|
|
|
mapped-device?
|
|
|
|
|
(source mapped-device-source) ;string
|
|
|
|
|
(target mapped-device-target) ;string
|
|
|
|
|
(type mapped-device-type)) ;<mapped-device-kind>
|
|
|
|
|
|
|
|
|
|
(define-record-type* <mapped-device-type> mapped-device-kind
|
|
|
|
|
make-mapped-device-kind
|
|
|
|
|
mapped-device-kind?
|
|
|
|
|
(open mapped-device-kind-open) ;source target -> gexp
|
|
|
|
|
(close mapped-device-kind-close ;source target -> gexp
|
|
|
|
|
(default (const #~(const #f)))))
|
|
|
|
|
|
2016-04-17 12:09:11 -04:00
|
|
|
|
|
|
|
|
|
;;;
|
|
|
|
|
;;; Device mapping as a Shepherd service.
|
|
|
|
|
;;;
|
|
|
|
|
|
|
|
|
|
(define device-mapping-service-type
|
|
|
|
|
(shepherd-service-type
|
|
|
|
|
'device-mapping
|
|
|
|
|
(match-lambda
|
2016-04-17 12:26:50 -04:00
|
|
|
|
(($ <mapped-device> source target
|
|
|
|
|
($ <mapped-device-type> open close))
|
2016-04-17 12:09:11 -04:00
|
|
|
|
(shepherd-service
|
|
|
|
|
(provision (list (symbol-append 'device-mapping- (string->symbol target))))
|
|
|
|
|
(requirement '(udev))
|
|
|
|
|
(documentation "Map a device node using Linux's device mapper.")
|
2016-04-17 12:26:50 -04:00
|
|
|
|
(start #~(lambda () #$(open source target)))
|
|
|
|
|
(stop #~(lambda _ (not #$(close source target))))
|
2016-04-17 18:23:16 -04:00
|
|
|
|
(respawn? #f)
|
|
|
|
|
|
|
|
|
|
;; Add the modules needed by LUKS-DEVICE-MAPPING.
|
|
|
|
|
;; FIXME: This info should be propagated via gexps.
|
|
|
|
|
(modules `((rnrs bytevectors) ;bytevector?
|
|
|
|
|
((gnu build file-systems)
|
|
|
|
|
#:select (find-partition-by-luks-uuid))
|
|
|
|
|
,@%default-modules))
|
|
|
|
|
(imported-modules `((gnu build file-systems)
|
|
|
|
|
,@%default-imported-modules)))))))
|
2016-04-17 12:09:11 -04:00
|
|
|
|
|
2016-04-17 12:26:50 -04:00
|
|
|
|
(define (device-mapping-service mapped-device)
|
|
|
|
|
"Return a service that sets up @var{mapped-device}."
|
|
|
|
|
(service device-mapping-service-type mapped-device))
|
2016-04-17 12:09:11 -04:00
|
|
|
|
|
2016-04-17 11:59:58 -04:00
|
|
|
|
|
|
|
|
|
;;;
|
|
|
|
|
;;; Common device mappings.
|
|
|
|
|
;;;
|
|
|
|
|
|
|
|
|
|
(define (open-luks-device source target)
|
|
|
|
|
"Return a gexp that maps SOURCE to TARGET as a LUKS device, using
|
|
|
|
|
'cryptsetup'."
|
2016-04-17 18:23:16 -04:00
|
|
|
|
#~(let ((source #$source))
|
|
|
|
|
(zero? (system* (string-append #$cryptsetup "/sbin/cryptsetup")
|
|
|
|
|
"open" "--type" "luks"
|
|
|
|
|
|
|
|
|
|
;; Note: We cannot use the "UUID=source" syntax here
|
|
|
|
|
;; because 'cryptsetup' implements it by searching the
|
|
|
|
|
;; udev-populated /dev/disk/by-id directory but udev may
|
|
|
|
|
;; be unavailable at the time we run this.
|
|
|
|
|
(if (bytevector? source)
|
|
|
|
|
(or (find-partition-by-luks-uuid source)
|
|
|
|
|
(error "LUKS partition not found" source))
|
|
|
|
|
source)
|
|
|
|
|
|
|
|
|
|
#$target))))
|
2016-04-17 11:59:58 -04:00
|
|
|
|
|
|
|
|
|
(define (close-luks-device source target)
|
|
|
|
|
"Return a gexp that closes TARGET, a LUKS device."
|
|
|
|
|
#~(zero? (system* (string-append #$cryptsetup "/sbin/cryptsetup")
|
|
|
|
|
"close" #$target)))
|
|
|
|
|
|
|
|
|
|
(define luks-device-mapping
|
|
|
|
|
;; The type of LUKS mapped devices.
|
|
|
|
|
(mapped-device-kind
|
|
|
|
|
(open open-luks-device)
|
|
|
|
|
(close close-luks-device)))
|
|
|
|
|
|
2016-04-17 11:53:20 -04:00
|
|
|
|
;;; mapped-devices.scm ends here
|