1 |
5b237745
|
Scott Ullrich
|
#!/bin/sh
|
2 |
ac24dc24
|
Renato Botelho
|
#
|
3 |
|
|
# pfSense-rc
|
4 |
|
|
#
|
5 |
|
|
# part of pfSense (https://www.pfsense.org)
|
6 |
81299b5c
|
Renato Botelho
|
# Copyright (c) 2004-2016 Rubicon Communications, LLC (Netgate)
|
7 |
ac24dc24
|
Renato Botelho
|
# All rights reserved.
|
8 |
|
|
#
|
9 |
e5cd29a0
|
Scott Ullrich
|
# originally based on m0n0wall (http://neon1.net/m0n0wall)
|
10 |
c5d81585
|
Renato Botelho
|
# Copyright (c) 2003-2004 Manuel Kasper <mk@neon1.net>.
|
11 |
5b237745
|
Scott Ullrich
|
# All rights reserved.
|
12 |
ac24dc24
|
Renato Botelho
|
#
|
13 |
b12ea3fb
|
Renato Botelho
|
# Licensed under the Apache License, Version 2.0 (the "License");
|
14 |
|
|
# you may not use this file except in compliance with the License.
|
15 |
|
|
# You may obtain a copy of the License at
|
16 |
ac24dc24
|
Renato Botelho
|
#
|
17 |
b12ea3fb
|
Renato Botelho
|
# http://www.apache.org/licenses/LICENSE-2.0
|
18 |
ac24dc24
|
Renato Botelho
|
#
|
19 |
b12ea3fb
|
Renato Botelho
|
# Unless required by applicable law or agreed to in writing, software
|
20 |
|
|
# distributed under the License is distributed on an "AS IS" BASIS,
|
21 |
|
|
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
22 |
|
|
# See the License for the specific language governing permissions and
|
23 |
|
|
# limitations under the License.
|
24 |
d8a2ce2c
|
Scott Ullrich
|
|
25 |
|
|
#/bin/stty status '^T'
|
26 |
|
|
#/bin/stty susp '^-' intr '^-' quit '^-'
|
27 |
|
|
|
28 |
|
|
#trap : 2
|
29 |
|
|
#trap : 3
|
30 |
5b237745
|
Scott Ullrich
|
|
31 |
|
|
HOME=/
|
32 |
ce823053
|
Scott Ullrich
|
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
33 |
5b237745
|
Scott Ullrich
|
export HOME PATH
|
34 |
|
|
|
35 |
55f81e30
|
Phil Davis
|
get_version ()
|
36 |
|
|
{
|
37 |
|
|
# Set our current version
|
38 |
|
|
version=`/bin/cat /etc/version`
|
39 |
|
|
|
40 |
|
|
# Version patch
|
41 |
|
|
version_patch="0"
|
42 |
|
|
if [ -f /etc/version.patch ]; then
|
43 |
|
|
version_patch=`/bin/cat /etc/version.patch`
|
44 |
|
|
fi
|
45 |
842878b5
|
Scott Ullrich
|
|
46 |
55f81e30
|
Phil Davis
|
if [ "${version_patch}" = "0" ]; then
|
47 |
|
|
version_patch=""
|
48 |
|
|
else
|
49 |
|
|
version_patch=" (Patch ${version_patch})"
|
50 |
|
|
fi
|
51 |
|
|
}
|
52 |
5a0235ca
|
Renato Botelho
|
|
53 |
55f81e30
|
Phil Davis
|
get_version
|
54 |
5a0235ca
|
Renato Botelho
|
|
55 |
e4121dde
|
Renato Botelho
|
# Read product_name from $g, defaults to pfSense
|
56 |
|
|
# Use php -n here because we are not ready to load extensions yet
|
57 |
|
|
product=$(/usr/local/bin/php -n /usr/local/sbin/read_global_var product_name pfSense)
|
58 |
c580e34c
|
Renato Botelho
|
|
59 |
e5323cca
|
jim-p
|
# Setup dumpdev/ddb/savecore"
|
60 |
|
|
echo "Configuring crash dumps..."
|
61 |
dc61252a
|
Renato Botelho
|
/etc/rc.dumpon
|
62 |
e5323cca
|
jim-p
|
|
63 |
dc61252a
|
Renato Botelho
|
# Setup ddb on all platforms.
|
64 |
6346f188
|
jim-p
|
if [ ! -z "`sysctl -Nq debug.ddb.scripting.scripts`" ]; then
|
65 |
a7d88d2c
|
Renato Botelho
|
/sbin/ddb /etc/${product}-ddb.conf
|
66 |
6346f188
|
jim-p
|
fi
|
67 |
|
|
|
68 |
411f439a
|
Renato Botelho
|
fsck_forced_iterations=`/bin/kenv -q pfsense.fsck.force`
|
69 |
92a78939
|
jim-p
|
if [ ! -z "${fsck_forced_iterations}" ]; then
|
70 |
|
|
echo "Forcing filesystem check (${fsck_forced_iterations} times)..."
|
71 |
|
|
while [ ${fsck_forced_iterations} -gt 0 ]; do
|
72 |
cc82c328
|
Renato Botelho
|
/sbin/fsck -y -t ufs
|
73 |
92a78939
|
jim-p
|
fsck_forced_iterations=$((fsck_forced_iterations - 1))
|
74 |
|
|
done
|
75 |
|
|
fi
|
76 |
|
|
|
77 |
|
|
if [ -e /root/force_growfs ]; then
|
78 |
|
|
/etc/rc.d/growfs onestart
|
79 |
302c005e
|
Ermal
|
fi
|
80 |
|
|
|
81 |
60f164f3
|
Renato Botelho
|
FSCK_ACTION_NEEDED=0
|
82 |
cc82c328
|
Renato Botelho
|
/sbin/fsck -p
|
83 |
60f164f3
|
Renato Botelho
|
case $? in
|
84 |
|
|
0)
|
85 |
|
|
echo "Filesystems are clean, continuing..."
|
86 |
|
|
echo "Mounting filesystems..."
|
87 |
|
|
;;
|
88 |
|
|
8)
|
89 |
|
|
echo "Preen mode recommended running a check that will be performed now."
|
90 |
|
|
FSCK_ACTION_NEEDED=1
|
91 |
|
|
;;
|
92 |
|
|
*)
|
93 |
|
|
echo "Stopping boot is recommended because filesystem manual action is needed, nevertheless automated repair of the filesystem will be attempted."
|
94 |
|
|
FSCK_ACTION_NEEDED=1
|
95 |
|
|
;;
|
96 |
|
|
esac
|
97 |
|
|
|
98 |
|
|
if [ ${FSCK_ACTION_NEEDED} = 1 ]; then
|
99 |
|
|
echo "WARNING: Trying to recover filesystem from inconsistency..."
|
100 |
cc82c328
|
Renato Botelho
|
/sbin/fsck -y -t ufs
|
101 |
60f164f3
|
Renato Botelho
|
fi
|
102 |
842878b5
|
Scott Ullrich
|
|
103 |
60f164f3
|
Renato Botelho
|
/sbin/mount -a 2>/dev/null
|
104 |
|
|
mount_rc=$?
|
105 |
|
|
attempts=0
|
106 |
cc82c328
|
Renato Botelho
|
while [ ${mount_rc} -ne 0 -a ${attempts} -lt 10 ]; do
|
107 |
|
|
/sbin/fsck -y -t ufs
|
108 |
f2e36920
|
Ermal LUÇI
|
/sbin/mount -a 2>/dev/null
|
109 |
|
|
mount_rc=$?
|
110 |
60f164f3
|
Renato Botelho
|
attempts=$((attempts+1))
|
111 |
|
|
done
|
112 |
217935fe
|
Ermal LUÇI
|
|
113 |
cc82c328
|
Renato Botelho
|
if [ ${mount_rc} -ne 0 ]; then
|
114 |
|
|
echo "ERROR: Impossible to mount filesystem, use interactive shell to attempt to recover it"
|
115 |
|
|
/bin/sh
|
116 |
|
|
/sbin/reboot
|
117 |
|
|
fi
|
118 |
|
|
|
119 |
b712dd52
|
Renato Botelho
|
# Handle ZFS read-only case
|
120 |
fcf164d6
|
Renato Botelho
|
unset USE_ZFS
|
121 |
|
|
if /sbin/kldstat -qm zfs; then
|
122 |
b712dd52
|
Renato Botelho
|
ZFSFSAVAILABLE=$(/sbin/zfs mount 2>/dev/null | wc -l)
|
123 |
|
|
if [ $ZFSFSAVAILABLE -eq 0 ]; then
|
124 |
|
|
/sbin/kldunload zfs
|
125 |
fcf164d6
|
Renato Botelho
|
else
|
126 |
|
|
USE_ZFS=1
|
127 |
|
|
ZFSROOT=$(/sbin/zfs mount | /usr/bin/awk '$2 == "/" {print $1}')
|
128 |
|
|
if [ -n "$ZFSROOT" ]; then
|
129 |
b712dd52
|
Renato Botelho
|
/sbin/zfs set readonly=off $ZFSROOT
|
130 |
|
|
fi
|
131 |
fcf164d6
|
Renato Botelho
|
/sbin/zfs mount -a
|
132 |
b712dd52
|
Renato Botelho
|
fi
|
133 |
|
|
fi
|
134 |
|
|
|
135 |
60f164f3
|
Renato Botelho
|
# If /conf is a directory, convert it to a symlink to /cf/conf
|
136 |
|
|
if [ -d "/conf" ]; then
|
137 |
|
|
# If item is not a symlink then rm and recreate
|
138 |
|
|
CONFPOINTSTO=`readlink /conf`
|
139 |
|
|
if ! test "x$CONFPOINTSTO" = "x/cf/conf"; then
|
140 |
|
|
/bin/rm -rf /conf
|
141 |
|
|
/bin/ln -s /cf/conf /conf
|
142 |
c4995e62
|
Chris Buechler
|
fi
|
143 |
60f164f3
|
Renato Botelho
|
fi
|
144 |
efc0e29a
|
jim-p
|
|
145 |
60f164f3
|
Renato Botelho
|
USE_MFS_TMPVAR=$(/usr/local/sbin/read_xml_tag.sh boolean system/use_mfs_tmpvar)
|
146 |
fcf164d6
|
Renato Botelho
|
|
147 |
60f164f3
|
Renato Botelho
|
unset MOVE_PKG_DATA
|
148 |
dc61252a
|
Renato Botelho
|
# If use MFS var is disabled, move files back to place
|
149 |
|
|
if [ "${USE_MFS_TMPVAR}" != "true" -a -f /root/var/db/pkg/local.sqlite ]; then
|
150 |
|
|
MOVE_PKG_DATA=1
|
151 |
|
|
rm -rf /var/db/pkg 2>/dev/null
|
152 |
|
|
rm -rf /var/cache/pkg 2>/dev/null
|
153 |
9bf6cdc1
|
Renato Botelho
|
mv -f /root/var/db/pkg /var/db
|
154 |
|
|
mv -f /root/var/cache/pkg /var/cache
|
155 |
dc61252a
|
Renato Botelho
|
# If use MFS var is enabled, move files to a safe place
|
156 |
|
|
elif [ "${USE_MFS_TMPVAR}" = "true" -a -f /var/db/pkg/local.sqlite ]; then
|
157 |
60f164f3
|
Renato Botelho
|
MOVE_PKG_DATA=1
|
158 |
9bf6cdc1
|
Renato Botelho
|
rm -rf /root/var/db/pkg 2>/dev/null
|
159 |
|
|
rm -rf /root/var/cache/pkg 2>/dev/null
|
160 |
dc61252a
|
Renato Botelho
|
/bin/mkdir -p /root/var/db /root/var/cache
|
161 |
9bf6cdc1
|
Renato Botelho
|
mv -f /var/db/pkg /root/var/db
|
162 |
|
|
mv -f /var/cache/pkg /root/var/cache
|
163 |
60f164f3
|
Renato Botelho
|
fi
|
164 |
e7c1f181
|
Renato Botelho
|
|
165 |
5d81840b
|
Renato Botelho
|
# Mount /var and /tmp on ZFS filesystems when it's necessary
|
166 |
|
|
if [ -n "${USE_ZFS}" -a "${USE_MFS_TMPVAR}" = "true" ]; then
|
167 |
|
|
zfs list -H -o name,mountpoint |
|
168 |
|
|
while read volume mountpoint; do
|
169 |
|
|
[ "${mountpoint}" != "/var" -a "${mountpoint}" != "/tmp" ] \
|
170 |
|
|
&& continue
|
171 |
|
|
|
172 |
|
|
/sbin/zfs umount ${volume}
|
173 |
|
|
done
|
174 |
|
|
fi
|
175 |
|
|
|
176 |
dc61252a
|
Renato Botelho
|
if [ "${USE_MFS_TMPVAR}" = "true" ]; then
|
177 |
60f164f3
|
Renato Botelho
|
/etc/rc.embedded
|
178 |
|
|
fi
|
179 |
e7c1f181
|
Renato Botelho
|
|
180 |
60f164f3
|
Renato Botelho
|
if [ -n "${MOVE_PKG_DATA}" -o "${USE_MFS_TMPVAR}" = "true" ]; then
|
181 |
|
|
/bin/mkdir -p /var/db /var/cache
|
182 |
|
|
ln -sf ../../root/var/db/pkg /var/db/pkg
|
183 |
|
|
ln -sf ../../root/var/cache/pkg /var/cache/pkg
|
184 |
c4995e62
|
Chris Buechler
|
fi
|
185 |
|
|
|
186 |
029d6129
|
NOYB
|
# Restore contents of the RAM disk store
|
187 |
|
|
/etc/rc.restore_ramdisk_store
|
188 |
|
|
|
189 |
9235b25e
|
Renato Botelho
|
# Make sure /home exists
|
190 |
|
|
[ -d /home ] \
|
191 |
|
|
|| mkdir /home
|
192 |
|
|
|
193 |
990fa101
|
jim-p
|
/bin/rm -f /root/force_fsck
|
194 |
2085c6de
|
jim-p
|
/bin/rm -f /root/TRIM_set
|
195 |
|
|
/bin/rm -f /root/TRIM_unset
|
196 |
|
|
|
197 |
92ac3b3d
|
jim-p
|
# Disable APM on ATA drives. Leaving this on will kill drives long-term, especially laptop drives, by generating excessive Load Cycles.
|
198 |
06fd1952
|
Ermal
|
if [ -f /etc/rc.disable_hdd_apm ]; then
|
199 |
|
|
/etc/rc.disable_hdd_apm
|
200 |
|
|
fi
|
201 |
92ac3b3d
|
jim-p
|
|
202 |
6990ad35
|
Phil Davis
|
# Eject CD devices on 3G modems
|
203 |
2f8782fe
|
smos
|
MANUFACTURER="huawei|zte"
|
204 |
|
|
CDDEVICE=`dmesg |egrep -ie "($MANUFACTURER)" | awk -F: '/cd/ {print $1}'`
|
205 |
|
|
if [ "$CDDEVICE" != "" ]; then
|
206 |
|
|
cdcontrol -f /dev/"$CDDEVICE" eject
|
207 |
|
|
fi
|
208 |
793d3c96
|
smos
|
|
209 |
e4121dde
|
Renato Botelho
|
# Use php -n here because we are not ready to load extensions yet
|
210 |
|
|
varrunpath=$(/usr/local/bin/php -n /usr/local/sbin/read_global_var varrun_path "/var/run")
|
211 |
3d7639eb
|
Scott Ullrich
|
|
212 |
dc61252a
|
Renato Botelho
|
if [ "${USE_MFS_TMPVAR}" != "true" ]; then
|
213 |
7d3be92f
|
Ermal
|
/sbin/mdmfs -S -M -s 4m md $varrunpath
|
214 |
|
|
fi
|
215 |
|
|
|
216 |
1c44a77d
|
Scott Ullrich
|
echo
|
217 |
dd6c64d8
|
Renato Botelho
|
cat /usr/local/share/pfSense/ascii-art/pfsense-logo-small.txt
|
218 |
1c44a77d
|
Scott Ullrich
|
echo
|
219 |
|
|
echo
|
220 |
3f4a0df9
|
Renato Botelho
|
echo "Welcome to ${product} ${version}${version_patch}..."
|
221 |
1c44a77d
|
Scott Ullrich
|
echo
|
222 |
|
|
|
223 |
6fa9f38c
|
Renato Botelho
|
/sbin/conscontrol mute off >/dev/null
|
224 |
d5f60dba
|
Scott Ullrich
|
|
225 |
dc61252a
|
Renato Botelho
|
SWAPDEVICE=`/bin/cat /etc/fstab | /usr/bin/grep swap | /usr/bin/cut -f1`
|
226 |
|
|
/sbin/swapon -a 2>/dev/null >/dev/null
|
227 |
|
|
/etc/rc.savecore
|
228 |
5621d2d5
|
Scott Ullrich
|
|
229 |
080b4ce1
|
Ermal
|
# make some directories in /var
|
230 |
b6355bdc
|
jim-p
|
/bin/mkdir -p $varrunpath /var/log /var/etc /var/db/entropy /var/db/rrd /var/at/jobs/ /var/empty /var/log/nginx 2>/dev/null
|
231 |
3e20b9ca
|
Phil Davis
|
|
232 |
|
|
# turn off the immutable flag, set /var/empty to read-only, make it immutable again
|
233 |
|
|
chflags noschg /var/empty
|
234 |
c01bdca9
|
Renato Botelho
|
chmod 0555 /var/empty
|
235 |
3e20b9ca
|
Phil Davis
|
chflags schg /var/empty
|
236 |
|
|
|
237 |
080b4ce1
|
Ermal
|
/bin/rm -rf $varrunpath/*
|
238 |
|
|
|
239 |
9e9bc51c
|
Ermal
|
# Cleanup configuration files from previous instance
|
240 |
|
|
/bin/rm -rf /var/etc/*
|
241 |
|
|
|
242 |
96fcf698
|
Renato Botelho
|
# Workaround for ipsec symlinks, otherwise it's going to break
|
243 |
|
|
# strongswan pkg upgrade
|
244 |
|
|
|
245 |
|
|
if [ -L /usr/local/etc/ipsec.d ]; then
|
246 |
|
|
rm -f /usr/local/etc/ipsec.d
|
247 |
|
|
fi
|
248 |
|
|
if [ -L /usr/local/etc/ipsec.conf ]; then
|
249 |
|
|
rm -f /usr/local/etc/ipsec.conf
|
250 |
|
|
fi
|
251 |
47220a8c
|
Renato Botelho
|
if [ -L /usr/local/etc/strongswan.d ]; then
|
252 |
|
|
rm -f /usr/local/etc/strongswan.d
|
253 |
|
|
fi
|
254 |
96fcf698
|
Renato Botelho
|
if [ -L /usr/local/etc/strongswan.conf ]; then
|
255 |
|
|
rm -f /usr/local/etc/strongswan.conf
|
256 |
|
|
fi
|
257 |
|
|
|
258 |
fc84b222
|
Renato Botelho
|
# Remove deprecated symlinks - #5538
|
259 |
|
|
for f in /etc/hosts \
|
260 |
|
|
/etc/resolv.conf \
|
261 |
|
|
/etc/resolvconf.conf \
|
262 |
|
|
/etc/syslog.conf; do
|
263 |
|
|
if [ -L "${f}" ]; then
|
264 |
|
|
rm -f ${f}
|
265 |
9e9bc51c
|
Ermal
|
fi
|
266 |
fc84b222
|
Renato Botelho
|
done
|
267 |
30501526
|
Warren Baker
|
|
268 |
4be3f6cf
|
Seth Mos
|
# Make sure our /tmp is 777 + Sticky
|
269 |
e8d0903d
|
Ermal
|
/bin/chmod 1777 /tmp
|
270 |
0652f3ae
|
Seth Mos
|
|
271 |
6484bb83
|
Scott Ullrich
|
if [ ! -L /etc/dhclient.conf ]; then
|
272 |
e173dd74
|
Phil Davis
|
/bin/rm -rf /etc/dhclient.conf
|
273 |
6484bb83
|
Scott Ullrich
|
fi
|
274 |
c8fcdb2f
|
Scott Ullrich
|
|
275 |
544156a7
|
Scott Ullrich
|
if [ ! -d /var/tmp ]; then
|
276 |
e8d0903d
|
Ermal
|
/bin/mkdir -p /var/tmp
|
277 |
544156a7
|
Scott Ullrich
|
fi
|
278 |
fc1caa41
|
Renato Botelho
|
# Make sure our /var/tmp is 777 + Sticky
|
279 |
bc8eedaa
|
Renato Botelho
|
/bin/chmod 1777 /var/tmp
|
280 |
4aa70cd8
|
Scott Ullrich
|
|
281 |
5b237745
|
Scott Ullrich
|
set -T
|
282 |
|
|
trap "echo 'Reboot interrupted'; exit 1" 3
|
283 |
|
|
|
284 |
2e269da2
|
Scott Ullrich
|
echo -n "."
|
285 |
a5c36eb2
|
Renato Botelho
|
DISABLESYSLOGCLOG=$(/usr/local/sbin/read_xml_tag.sh boolean system/disablesyslogclog)
|
286 |
8acd1331
|
jim-p
|
LOG_FILES="system filter dhcpd vpn poes l2tps openvpn portalauth ipsec ppp relayd wireless nginx ntpd gateways resolver routing"
|
287 |
c7a3356e
|
jim-p
|
|
288 |
a5c36eb2
|
Renato Botelho
|
DEFAULT_LOG_FILE_SIZE=$(/usr/local/sbin/read_xml_tag.sh string syslog/logfilesize)
|
289 |
|
|
DEFAULT_LOG_FILE_SIZE=${DEFAULT_LOG_FILE_SIZE:-"511488"}
|
290 |
c7a3356e
|
jim-p
|
|
291 |
973b2663
|
Ermal
|
for logfile in $LOG_FILES; do
|
292 |
a5c36eb2
|
Renato Botelho
|
if [ "$DISABLESYSLOGCLOG" = "true" ]; then
|
293 |
973b2663
|
Ermal
|
/usr/bin/touch /var/log/$logfile.log
|
294 |
e173dd74
|
Phil Davis
|
else
|
295 |
973b2663
|
Ermal
|
if [ ! -f /var/log/$logfile.log ]; then
|
296 |
41df62c1
|
jim-p
|
/usr/local/sbin/clog -i -s ${DEFAULT_LOG_FILE_SIZE} /var/log/$logfile.log
|
297 |
e8197e56
|
Ermal
|
fi
|
298 |
e173dd74
|
Phil Davis
|
fi
|
299 |
973b2663
|
Ermal
|
done
|
300 |
|
|
|
301 |
41df62c1
|
jim-p
|
# change permissions on newly created log files.
|
302 |
e8d0903d
|
Ermal
|
/bin/chmod 0600 /var/log/*.log
|
303 |
8d418ca9
|
Scott Ullrich
|
|
304 |
2e269da2
|
Scott Ullrich
|
echo -n "."
|
305 |
6fa9f38c
|
Renato Botelho
|
DEVFS=`/sbin/mount | /usr/bin/grep devfs | /usr/bin/wc -l | /usr/bin/cut -d" " -f8`
|
306 |
|
|
if [ "$DEVFS" = "0" ]; then
|
307 |
|
|
mount_devfs devfs /dev
|
308 |
f93c5384
|
Scott Ullrich
|
fi
|
309 |
5b237745
|
Scott Ullrich
|
|
310 |
|
|
# Create an initial utmp file
|
311 |
7d3be92f
|
Ermal
|
cd $varrunpath && /bin/cp /dev/null utmp && /bin/chmod 644 utmp
|
312 |
5b237745
|
Scott Ullrich
|
|
313 |
2e269da2
|
Scott Ullrich
|
echo -n "."
|
314 |
6fe4f291
|
Scott Ullrich
|
/sbin/ldconfig -elf /usr/lib /usr/local/lib /lib
|
315 |
05dd0c32
|
Ermal
|
/etc/rc.d/ldconfig start 2>/dev/null
|
316 |
c268f10f
|
Scott Ullrich
|
|
317 |
6fa9f38c
|
Renato Botelho
|
# Launching kbdmux(4)
|
318 |
|
|
if [ -f "/dev/kbdmux0" ]; then
|
319 |
|
|
echo -n "."
|
320 |
|
|
/usr/sbin/kbdcontrol -k /dev/kbdmux0 < /dev/console
|
321 |
|
|
[ -c "/dev/atkbd0" ] && kbdcontrol -a atkbd0 < /dev/console
|
322 |
|
|
[ -c "/dev/ukbd0" ] && kbdcontrol -a ukbd0 < /dev/console
|
323 |
|
|
fi
|
324 |
4e7b2b27
|
Scott Ullrich
|
|
325 |
6fa9f38c
|
Renato Botelho
|
# Fire up unionfs if mount points exist.
|
326 |
|
|
if [ -f /dist/uniondirs ]; then
|
327 |
|
|
echo -n "."
|
328 |
|
|
/etc/rc.d/unionfs start
|
329 |
b1ce7649
|
Scott Ullrich
|
fi
|
330 |
fa8f44ce
|
Scott Ullrich
|
|
331 |
2e269da2
|
Scott Ullrich
|
echo "done."
|
332 |
deff30cd
|
Scott Ullrich
|
|
333 |
ad0d7518
|
Scott Ullrich
|
# Recreate capabilities DB
|
334 |
416e6432
|
Ermal
|
/usr/bin/cap_mkdb /etc/login.conf
|
335 |
ad0d7518
|
Scott Ullrich
|
|
336 |
a5733f63
|
Renato Botelho
|
# Second upgrade stage
|
337 |
|
|
/usr/local/sbin/${product}-upgrade -y -b 2
|
338 |
842fc1e2
|
Renato Botelho
|
|
339 |
4ecaca5b
|
Renato Botelho
|
# Copy default openssl config file
|
340 |
|
|
[ -d /etc/ssl ] \
|
341 |
|
|
|| mkdir -p /etc/ssl
|
342 |
|
|
[ -f /usr/local/share/${product}/ssl/openssl.cnf ] \
|
343 |
|
|
&& cp -f /usr/local/share/${product}/ssl/openssl.cnf /etc/ssl
|
344 |
5051739d
|
Renato Botelho
|
mkdir -p /usr/local/openssl >/dev/null 2>&1
|
345 |
|
|
ln -sf /etc/ssl/openssl.cnf \
|
346 |
|
|
/usr/local/openssl/openssl.cnf
|
347 |
4ecaca5b
|
Renato Botelho
|
|
348 |
40e46009
|
Scott Ullrich
|
# Run the php.ini setup file and populate
|
349 |
3646fbcb
|
Renato Botelho
|
# /usr/local/etc/php.ini
|
350 |
aa840cf9
|
Scott Ullrich
|
/etc/rc.php_ini_setup 2>/tmp/php_errors.txt
|
351 |
3646fbcb
|
Renato Botelho
|
/usr/local/sbin/php-fpm -c /usr/local/etc/php.ini -y /usr/local/lib/php-fpm.conf -RD 2>&1 >/dev/null
|
352 |
0cf5aa69
|
Scott Ullrich
|
|
353 |
dc61252a
|
Renato Botelho
|
# Launch external configuration loader
|
354 |
|
|
/usr/local/sbin/fcgicli -f /etc/ecl.php
|
355 |
206f684d
|
Scott Ullrich
|
|
356 |
490615d3
|
Scott Ullrich
|
if [ -f /etc/rc.custom_boot_early ]; then
|
357 |
|
|
/bin/echo -n "Launching /etc/rc.custom_boot_early...";
|
358 |
|
|
/etc/rc.custom_boot_early
|
359 |
|
|
echo "Done"
|
360 |
|
|
fi
|
361 |
|
|
|
362 |
4aea91d8
|
Ermal
|
export fcgipath=/var/run/php-fpm.socket
|
363 |
01599e5e
|
Ermal
|
/usr/bin/nice -n20 /usr/local/sbin/check_reload_status
|
364 |
e8d0903d
|
Ermal
|
|
365 |
b406ae66
|
Scott Ullrich
|
# let the PHP-based configuration subsystem set up the system now
|
366 |
8e2eb65e
|
Scott Ullrich
|
echo -n "Launching the init system..."
|
367 |
e8d0903d
|
Ermal
|
/bin/rm -f /cf/conf/backup/backup.cache
|
368 |
|
|
/usr/bin/touch $varrunpath/booting
|
369 |
217935fe
|
Ermal LUÇI
|
|
370 |
ce9056f6
|
Renato Botelho
|
# Copy custom logo over if it's present
|
371 |
|
|
if [ -d /usr/local/share/${product}/custom_logos ]; then
|
372 |
|
|
cp -f /usr/local/share/${product}/custom_logos/*png \
|
373 |
|
|
/usr/local/www
|
374 |
|
|
fi
|
375 |
|
|
|
376 |
b406ae66
|
Scott Ullrich
|
/etc/rc.bootup
|
377 |
|
|
|
378 |
f658bac7
|
Ermal LUÇI
|
# /etc/rc.bootup unset $g['booting'], and removes file
|
379 |
|
|
# Be sure the file is removed to not create troubles after
|
380 |
|
|
if [ -f $varrunpath/booting ]; then
|
381 |
|
|
/bin/rm $varrunpath/booting
|
382 |
|
|
fi
|
383 |
5551d818
|
Renato Botelho
|
|
384 |
0c5e431d
|
Scott Ullrich
|
echo -n "Starting CRON... "
|
385 |
ea83ac64
|
Scott Ullrich
|
cd /tmp && /usr/sbin/cron -s 2>/dev/null
|
386 |
0c5e431d
|
Scott Ullrich
|
echo "done."
|
387 |
3e08b3c1
|
Scott Ullrich
|
|
388 |
5be5825e
|
Scott Ullrich
|
# Start packages
|
389 |
1590947b
|
Ermal
|
/usr/local/sbin/fcgicli -f /etc/rc.start_packages
|
390 |
3bd1bd72
|
Scott Ullrich
|
|
391 |
e8d0903d
|
Ermal
|
/bin/rm -rf /usr/local/pkg/pf/CVS
|
392 |
bc086d51
|
Scott Ullrich
|
|
393 |
0092b3bd
|
mgrooms
|
# Start ping handler every 240 seconds
|
394 |
7d3be92f
|
Ermal
|
/usr/local/bin/minicron 240 $varrunpath/ping_hosts.pid /usr/local/bin/ping_hosts.sh
|
395 |
f2025e91
|
Scott Ullrich
|
|
396 |
0092b3bd
|
mgrooms
|
# Start account expire handler every hour
|
397 |
1590947b
|
Ermal
|
/usr/local/bin/minicron 3600 $varrunpath/expire_accounts.pid '/usr/local/sbin/fcgicli -f /etc/rc.expireaccounts'
|
398 |
0092b3bd
|
mgrooms
|
|
399 |
f6ba4bd1
|
Scott Ullrich
|
# Start alias url updater every 24 hours
|
400 |
1590947b
|
Ermal
|
/usr/local/bin/minicron 86400 $varrunpath/update_alias_url_data.pid '/usr/local/sbin/fcgicli -f /etc/rc.update_alias_url_data'
|
401 |
f6ba4bd1
|
Scott Ullrich
|
|
402 |
c432da9c
|
Scott Ullrich
|
/bin/chmod a+rw /tmp/.
|
403 |
b569598b
|
Scott Ullrich
|
|
404 |
52398a6b
|
jim-p
|
# Check for GEOM mirrors
|
405 |
|
|
GMIRROR_STATUS=`/sbin/gmirror status`
|
406 |
|
|
if [ "${GMIRROR_STATUS}" != "" ]; then
|
407 |
|
|
# Using a flag file at bootup saves an expensive exec/check on each page load.
|
408 |
|
|
/usr/bin/touch /var/run/gmirror_active
|
409 |
|
|
# Setup monitoring/notifications
|
410 |
|
|
/usr/local/bin/minicron 60 /var/run/gmirror_status_check.pid /usr/local/sbin/gmirror_status_check.php
|
411 |
|
|
fi
|
412 |
|
|
|
413 |
a5733f63
|
Renato Botelho
|
/usr/local/sbin/${product}-upgrade -y -b 3
|
414 |
|
|
|
415 |
dcafc712
|
Adam Gibson
|
# Log product version to syslog
|
416 |
55f81e30
|
Phil Davis
|
get_version
|
417 |
4982e61e
|
Adam Gibson
|
BUILDTIME=`cat /etc/version.buildtime`
|
418 |
|
|
ARCH=`uname -m`
|
419 |
dc61252a
|
Renato Botelho
|
echo "$product ${version}${version_patch} $ARCH $BUILDTIME"
|
420 |
4982e61e
|
Adam Gibson
|
|
421 |
e393a4a8
|
Scott Ullrich
|
echo "Bootup complete"
|
422 |
1ba9533c
|
Scott Ullrich
|
|
423 |
2d4be1c5
|
Scott Ullrich
|
/usr/local/bin/beep.sh start 2>&1 >/dev/null
|
424 |
e393a4a8
|
Scott Ullrich
|
|
425 |
4171fa68
|
Scott Ullrich
|
# Reset the cache. read-only requires this.
|
426 |
7734aea6
|
Andrew Thompson
|
/bin/rm -f /tmp/config.cache
|
427 |
4171fa68
|
Scott Ullrich
|
|
428 |
d35cf0de
|
Scott Ullrich
|
exit 0
|