Rev 97 | Blame | Compare with Previous | Last modification | View Log | RSS feed
# -*-Shell-script-*-## functions This file contains functions to be used by most or all# shell scripts in the /etc/init.d directory.#TEXTDOMAIN=initscripts# Make sure umask is saneumask 022# Set up a default search path.PATH="/sbin:/usr/sbin:/bin:/usr/bin"export PATH# Get a sane screen width[ -z "${COLUMNS:-}" ] && COLUMNS=80[ -z "${CONSOLETYPE:-}" ] && CONSOLETYPE="$(/sbin/consoletype)"if [ -f /etc/sysconfig/i18n -a -z "${NOLOCALE:-}" -a -z "${LANGSH_SOURCED:-}" ] ; then. /etc/profile.d/lang.sh 2>/dev/null# avoid propagating LANGSH_SOURCED any furtherunset LANGSH_SOURCEDfi# Read in our configurationif [ -z "${BOOTUP:-}" ]; thenif [ -f /etc/sysconfig/init ]; then. /etc/sysconfig/initelse# This all seem confusing? Look in /etc/sysconfig/init,# or in /usr/doc/initscripts-*/sysconfig.txtBOOTUP=colorRES_COL=60MOVE_TO_COL="echo -en \\033[${RES_COL}G"SETCOLOR_SUCCESS="echo -en \\033[1;32m"SETCOLOR_FAILURE="echo -en \\033[1;31m"SETCOLOR_WARNING="echo -en \\033[1;33m"SETCOLOR_NORMAL="echo -en \\033[0;39m"LOGLEVEL=1fiif [ "$CONSOLETYPE" = "serial" ]; thenBOOTUP=serialMOVE_TO_COL=SETCOLOR_SUCCESS=SETCOLOR_FAILURE=SETCOLOR_WARNING=SETCOLOR_NORMAL=fifi# Interpret escape sequences in an fstab entryfstab_decode_str() {fstab-decode echo "$1"}# Check if any of $pid (could be plural) are runningcheckpid() {local ifor i in $* ; do[ -d "/proc/$i" ] && return 0donereturn 1}__readlink() {ls -bl "$@" 2>/dev/null| awk '{ print $NF }'}__fgrep() {s=$1f=$2while read line; doif strstr "$line" "$s"; thenecho $linereturn 0fidone < $freturn 1}__kill_pids_term_kill_checkpids() {local base_stime=$1shift 1local pid=local pids=$*local remaining=local stat=local stime=for pid in $pids ; do[ -e "/proc/$pid" ] || continueread -r line < "/proc/$pid/stat" 2> /dev/null || continuestat=($line)stime=${stat[21]}[ -n "$stime" ] && [ "$base_stime" -lt "$stime" ] && continueremaining+="$pid "doneecho "$remaining"[ -n "$remaining" ] && return 1return 0}__kill_pids_term_kill() {local try=0local delay=3;local pid=local stat=local base_stime=# We can't initialize stat & base_stime on the same line where 'local'# keyword is, otherwise the sourcing of this file will fail for ksh...stat=($(< /proc/self/stat))base_stime=${stat[21]}if [ "$1" = "-d" ]; thendelay=$2shift 2filocal kill_list=$*kill_list=$(__kill_pids_term_kill_checkpids $base_stime $kill_list)[ -z "$kill_list" ] && return 0kill -TERM $kill_list >/dev/null 2>&1usleep 100000kill_list=$(__kill_pids_term_kill_checkpids $base_stime $kill_list)if [ -n "$kill_list" ] ; thenwhile [ $try -lt $delay ] ; dosleep 1kill_list=$(__kill_pids_term_kill_checkpids $base_stime $kill_list)[ -z "$kill_list" ] && breaklet try+=1doneif [ -n "$kill_list" ] ; thenkill -KILL $kill_list >/dev/null 2>&1usleep 100000kill_list=$(__kill_pids_term_kill_checkpids $base_stime $kill_list)fifi[ -n "$kill_list" ] && return 1return 0}# __umount_loop awk_program fstab_file first_msg retry_msg retry_umount_args# awk_program should process fstab_file and return a list of fstab-encoded# paths; it doesn't have to handle comments in fstab_file.__umount_loop() {local remaining sig=local retry=3 countremaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)while [ -n "$remaining" -a "$retry" -gt 0 ]; doif [ "$retry" -eq 3 ]; thenaction "$3" fstab-decode umount $remainingelseaction "$4" fstab-decode umount $5 $remainingficount=4remaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)while [ "$count" -gt 0 ]; do[ -z "$remaining" ] && breakcount=$(($count-1))usleep 500000remaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)done[ -z "$remaining" ] && breakkill $sig $(fstab-decode /sbin/fuser -m $remaining 2>/dev/null | sed -e "s/\b$$\b//g") > /dev/nullsleep 3retry=$(($retry -1))sig=-9done}# Similar to __umount loop above, without calling fuser__umount_loop_2() {local remaining=local countlocal kill_list#call regular umountremaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)action "$3" fstab-decode umount $remainingcount=4remaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)while [ "$count" -gt 0 ]; do[ -z "$remaining" ] && breakcount=$(($count-1))usleep 500000remaining=$(LC_ALL=C awk "/^#/ {next} $1" "$2" | sort -r)done[ -z "$remaining" ] && return 0devs=$(stat -c "%d" $remaining)action "$4" fstab-decode umount "-l" $remaining# find fds that don't start with /, are not sockets or pipes or other.# these are potentially detached fdsdetached_fds=$(find /proc/ -regex '/proc/[0-9]+/fd/.*' -printf "%p %l\n" 2>/dev/null |\grep -Ev '/proc/[0-9]+/fd/[0-9]+ (/.*|inotify|\[.+\]|(socket|pipe):\[[0-9]+\])')# check each detached fd to see if it has the same device# as one of our lazy umounted filesystemskill_list=[ -n "$detached_fds" ] && while read fdline; dofd=${fdline%% *}pid=$(echo $fdline | sed -r 's/\/proc\/([0-9]+).+/\1/')fd_dev=$(stat -L -c "%d" $fd)for dev in $devs ; do[ "$dev" = "$fd_dev" ] && kill_list+="$pid "donedone <<< "$detached_fds"if [ -n "$kill_list" ] ; thenSTRING=$"Killing processes with open filedescriptors on the unmounted disk:"__kill_pids_term_kill $kill_list && success "$STRING" || failure "$STRING"echofi}__source_netdevs_fstab() {NFSFSTAB=$(LC_ALL=C awk '!/^#/ && $3 ~ /^nfs/ && $3 != "nfsd" && $4 !~ /noauto/ { print $2 }' /etc/fstab)CIFSFSTAB=$(LC_ALL=C awk '!/^#/ && $3 == "cifs" && $4 !~ /noauto/ { print $2 }' /etc/fstab)NCPFSTAB=$(LC_ALL=C awk '!/^#/ && $3 == "ncpfs" && $4 !~ /noauto/ { print $2 }' /etc/fstab)GLUSTERFSFSTAB=$(LC_ALL=C awk '!/^#/ && $3 == "glusterfs" && $4 !~ /noauto/ { print $2 }' /etc/fstab)NETDEVFSTAB=$(LC_ALL=C awk '!/^#/ && $4 ~/_netdev/ && $4 !~ /noauto/ { print $1 }' /etc/fstab)}__source_netdevs_mtab() {NFSMTAB=$(LC_ALL=C awk '$3 ~ /^nfs/ && $3 != "nfsd" && $2 != "/" { print $2 }' /proc/mounts)CIFSMTAB=$(LC_ALL=C awk '$3 == "cifs" { print $2 }' /proc/mounts)NCPMTAB=$(LC_ALL=C awk '$3 == "ncpfs" { print $2 }' /proc/mounts)GLUSTERFSMTAB=$(LC_ALL=C awk '$3 == "fuse.glusterfs" { print $2 }' /proc/mounts)NETDEVMTAB=$(LC_ALL=C awk '$4 ~ /_netdev/ && $2 != "/" { print $2 }' /etc/mtab)ALLNETDEVMTAB="$NFSMTAB $CIFSMTAB $NCPMTAB $GLUSTERFSMTAB $NETDEVMTAB"}# Similar to __umount loop above, specialized for loopback devices__umount_loopback_loop() {local remaining devremaining sig=local retry=3__find_mounts() {if [ "$1" = "--netdev" ] ; then__source_netdevs_mtabremaining=devremaining=local mount= netdev= _restwhile read -r dev mount _rest ; do[ "$dev" = "${dev##/dev/loop}" ] && continuelocal back_file=$(losetup $dev | sed -e 's/^\/dev\/loop[0-9]\+: \[[0-9a-f]\+\]:[0-9]\+ (\(.*\))$/\1/')for netdev in $ALLNETDEVMTAB ; dolocal netdev_decoded=netdev="${netdev}/"netdev_decoded=$(fstab_decode_str ${netdev})if [ "$mount" != "${mount##$netdev}" ] || [ "$back_file" != "${back_file##$netdev_decoded}" ] ; thenremaining="$remaining $mount"#device might be mounted in other location,#but then losetup -d will be noop, so mehdevremaining="$devremaining $dev"continue 2fidonedone < /proc/mountselseremaining=$(awk '$1 ~ /^\/dev\/loop/ && $2 != "/" {print $2}' /proc/mounts)devremaining=$(awk '$1 ~ /^\/dev\/loop/ && $2 != "/" {print $1}' /proc/mounts)fi}__find_mounts $1while [ -n "$remaining" -a "$retry" -gt 0 ]; doif [ "$retry" -eq 3 ]; thenaction $"Unmounting loopback filesystems: " \fstab-decode umount $remainingelseaction $"Unmounting loopback filesystems (retry):" \fstab-decode umount $remainingfifor dev in $devremaining ; doif [ "$1" = "--netdev" ] ; then#some loopdevices might be mounted on top of non-netdev#so ignore failureslosetup -d $dev > /dev/null 2>&1elselosetup $dev > /dev/null 2>&1 && \action $"Detaching loopback device $dev: " \losetup -d $devfidone#check what is still mounted__find_mounts $1[ -z "$remaining" ] && breakfstab-decode /sbin/fuser -k -m $sig $remaining >/dev/nullsleep 3retry=$(($retry -1))sig=-9done}# __proc_pids {program} [pidfile]# Set $pid to pids from /var/run* for {program}. $pid should be declared# local in the caller.# Returns LSB exit code for the 'status' action.__pids_var_run() {local base=${1##*/}local pid_file=${2:-/var/run/$base.pid}local pid_dir=$(/usr/bin/dirname $pid_file)local binary=$3[ -d "$pid_dir" -a ! -r "$pid_dir" ] && return 4pid=if [ -f "$pid_file" ] ; thenlocal line p[ ! -r "$pid_file" ] && return 4 # "user had insufficient privilege"while : ; doread line[ -z "$line" ] && breakfor p in $line ; doif [ -z "${p//[0-9]/}" -a -d "/proc/$p" ] ; thenif [ -n "$binary" ] ; thenlocal b=$(readlink /proc/$p/exe | sed -e 's/\s*(deleted)$//')[ "$b" != "$binary" ] && continuefipid="$pid $p"fidonedone < "$pid_file"if [ -n "$pid" ]; thenreturn 0fireturn 1 # "Program is dead and /var/run pid file exists"fireturn 3 # "Program is not running"}# Output PIDs of matching processes, found using pidof__pids_pidof() {pidof -c -m -o $$ -o $PPID -o %PPID -x "$1" || \pidof -c -m -o $$ -o $PPID -o %PPID -x "${1##*/}"}# A function to start a program.daemon() {# Test syntax.local gotbase= force= nicelevel corelimitlocal pid base= user= nice= bg= pid_file=local cgroup=nicelevel=0while [ "$1" != "${1##[-+]}" ]; docase $1 in'') echo $"$0: Usage: daemon [+/-nicelevel] {program}" "[arg1]..."return 1;;--check)base=$2gotbase="yes"shift 2;;--check=?*)base=${1#--check=}gotbase="yes"shift;;--user)user=$2shift 2;;--user=?*)user=${1#--user=}shift;;--pidfile)pid_file=$2shift 2;;--pidfile=?*)pid_file=${1#--pidfile=}shift;;--force)force="force"shift;;[-+][0-9]*)nice="nice -n $1"shift;;*) echo $"$0: Usage: daemon [+/-nicelevel] {program}" "[arg1]..."return 1;;esacdone# Save basename.[ -z "$gotbase" ] && base=${1##*/}# See if it's already running. Look *only* at the pid file.__pids_var_run "$base" "$pid_file"[ -n "$pid" -a -z "$force" ] && return# make sure it doesn't core dump anywhere unless requestedcorelimit="ulimit -S -c ${DAEMON_COREFILE_LIMIT:-0}"# if they set NICELEVEL in /etc/sysconfig/foo, honor it[ -n "${NICELEVEL:-}" ] && nice="nice -n $NICELEVEL"# if they set CGROUP_DAEMON in /etc/sysconfig/foo, honor itif [ -n "${CGROUP_DAEMON}" ]; thenif [ ! -x /bin/cgexec ]; thenecho -n "Cgroups not installed"; warningechoelsecgroup="/bin/cgexec";for i in $CGROUP_DAEMON; docgroup="$cgroup -g $i";donefifi# Echo daemon[ "${BOOTUP:-}" = "verbose" -a -z "${LSB:-}" ] && echo -n " $base"# And start it up.if [ -z "$user" ]; then$cgroup $nice /bin/bash -c "$corelimit >/dev/null 2>&1 ; $*"else$cgroup $nice runuser -s /bin/bash $user -c "$corelimit >/dev/null 2>&1 ; $*"fi[ "$?" -eq 0 ] && success $"$base startup" || failure $"$base startup"}# A function to stop a program.killproc() {local RC killlevel= base pid pid_file= delay try binary=RC=0; delay=3; try=0# Test syntax.if [ "$#" -eq 0 ]; thenecho $"Usage: killproc [-p pidfile] [ -d delay] {program} [-signal]"return 1fiif [ "$1" = "-p" ]; thenpid_file=$2shift 2fiif [ "$1" = "-b" ]; thenif [ -z $pid_file ]; thenecho $"-b option can be used only with -p"echo $"Usage: killproc -p pidfile -b binary program"return 1fibinary=$2shift 2fiif [ "$1" = "-d" ]; thendelay=$(echo $2 | awk -v RS=' ' -v IGNORECASE=1 '{if($1!~/^[0-9.]+[smhd]?$/) exit 1;d=$1~/s$|^[0-9.]*$/?1:$1~/m$/?60:$1~/h$/?60*60:$1~/d$/?24*60*60:-1;if(d==-1) exit 1;delay+=d*$1} END {printf("%d",delay+0.5)}')if [ "$?" -eq 1 ]; thenecho $"Usage: killproc [-p pidfile] [ -d delay] {program} [-signal]"return 1fishift 2fi# check for second arg to be kill level[ -n "${2:-}" ] && killlevel=$2# Save basename.base=${1##*/}# Find pid.__pids_var_run "$1" "$pid_file" "$binary"RC=$?if [ -z "$pid" ]; thenif [ -z "$pid_file" ]; thenpid="$(__pids_pidof "$1")"else[ "$RC" = "4" ] && { failure $"$base shutdown" ; return $RC ;}fifi# Kill it.if [ -n "$pid" ] ; then[ "$BOOTUP" = "verbose" -a -z "${LSB:-}" ] && echo -n "$base "if [ -z "$killlevel" ] ; then__kill_pids_term_kill -d $delay $pidRC=$?[ "$RC" -eq 0 ] && success $"$base shutdown" || failure $"$base shutdown"# use specified level onlyelseif checkpid $pid; thenkill $killlevel $pid >/dev/null 2>&1RC=$?[ "$RC" -eq 0 ] && success $"$base $killlevel" || failure $"$base $killlevel"elif [ -n "${LSB:-}" ]; thenRC=7 # Program is not runningfifielseif [ -n "${LSB:-}" -a -n "$killlevel" ]; thenRC=7 # Program is not runningelsefailure $"$base shutdown"RC=0fifi# Remove pid file if any.if [ -z "$killlevel" ]; thenrm -f "${pid_file:-/var/run/$base.pid}"fireturn $RC}# A function to find the pid of a program. Looks *only* at the pidfilepidfileofproc() {local pid# Test syntax.if [ "$#" = 0 ] ; thenecho $"Usage: pidfileofproc {program}"return 1fi__pids_var_run "$1"[ -n "$pid" ] && echo $pidreturn 0}# A function to find the pid of a program.pidofproc() {local RC pid pid_file=# Test syntax.if [ "$#" = 0 ]; thenecho $"Usage: pidofproc [-p pidfile] {program}"return 1fiif [ "$1" = "-p" ]; thenpid_file=$2shift 2fifail_code=3 # "Program is not running"# First try "/var/run/*.pid" files__pids_var_run "$1" "$pid_file"RC=$?if [ -n "$pid" ]; thenecho $pidreturn 0fi[ -n "$pid_file" ] && return $RC__pids_pidof "$1" || return $RC}status() {local base pid lock_file= pid_file= binary=# Test syntax.if [ "$#" = 0 ] ; thenecho $"Usage: status [-p pidfile] {program}"return 1fiif [ "$1" = "-p" ]; thenpid_file=$2shift 2fiif [ "$1" = "-l" ]; thenlock_file=$2shift 2fiif [ "$1" = "-b" ]; thenif [ -z $pid_file ]; thenecho $"-b option can be used only with -p"echo $"Usage: status -p pidfile -b binary program"return 1fibinary=$2shift 2fibase=${1##*/}# First try "pidof"__pids_var_run "$1" "$pid_file" "$binary"RC=$?if [ -z "$pid_file" -a -z "$pid" ]; thenpid="$(__pids_pidof "$1")"fiif [ -n "$pid" ]; thenecho $"${base} (pid $pid) is running..."return 0ficase "$RC" in0)echo $"${base} (pid $pid) is running..."return 0;;1)echo $"${base} dead but pid file exists"return 1;;4)echo $"${base} status unknown due to insufficient privileges."return 4;;esacif [ -z "${lock_file}" ]; thenlock_file=${base}fi# See if /var/lock/subsys/${lock_file} existsif [ -f /var/lock/subsys/${lock_file} ]; thenecho $"${base} dead but subsys locked"return 2fiecho $"${base} is stopped"return 3}echo_success() {[ "$BOOTUP" = "color" ] && $MOVE_TO_COLecho -n "["[ "$BOOTUP" = "color" ] && $SETCOLOR_SUCCESSecho -n $" OK "[ "$BOOTUP" = "color" ] && $SETCOLOR_NORMALecho -n "]"echo -ne "\r"return 0}echo_failure() {[ "$BOOTUP" = "color" ] && $MOVE_TO_COLecho -n "["[ "$BOOTUP" = "color" ] && $SETCOLOR_FAILUREecho -n $"FAILED"[ "$BOOTUP" = "color" ] && $SETCOLOR_NORMALecho -n "]"echo -ne "\r"return 1}echo_passed() {[ "$BOOTUP" = "color" ] && $MOVE_TO_COLecho -n "["[ "$BOOTUP" = "color" ] && $SETCOLOR_WARNINGecho -n $"PASSED"[ "$BOOTUP" = "color" ] && $SETCOLOR_NORMALecho -n "]"echo -ne "\r"return 1}echo_warning() {[ "$BOOTUP" = "color" ] && $MOVE_TO_COLecho -n "["[ "$BOOTUP" = "color" ] && $SETCOLOR_WARNINGecho -n $"WARNING"[ "$BOOTUP" = "color" ] && $SETCOLOR_NORMALecho -n "]"echo -ne "\r"return 1}# Inform the graphical boot of our current stateupdate_boot_stage() {if [ -x /bin/plymouth ]; then/bin/plymouth --update="$1"fireturn 0}# Log that something succeededsuccess() {[ "$BOOTUP" != "verbose" -a -z "${LSB:-}" ] && echo_successreturn 0}# Log that something failedfailure() {local rc=$?[ "$BOOTUP" != "verbose" -a -z "${LSB:-}" ] && echo_failure[ -x /bin/plymouth ] && /bin/plymouth --detailsreturn $rc}# Log that something passed, but may have had errors. Useful for fsckpassed() {local rc=$?[ "$BOOTUP" != "verbose" -a -z "${LSB:-}" ] && echo_passedreturn $rc}# Log a warningwarning() {local rc=$?[ "$BOOTUP" != "verbose" -a -z "${LSB:-}" ] && echo_warningreturn $rc}# Run some action. Log its output.action() {local STRING rcSTRING=$1echo -n "$STRING "shift"$@" && success $"$STRING" || failure $"$STRING"rc=$?echoreturn $rc}# Run some action. Silently.action_silent() {local STRING rcSTRING=$1echo -n "$STRING "shift"$@" >/dev/null && success $"$STRING" || failure $"$STRING"rc=$?echoreturn $rc}# returns OK if $1 contains $2strstr() {[ "${1#*$2*}" = "$1" ] && return 1return 0}# Confirm whether we really want to run this serviceconfirm() {[ -x /bin/plymouth ] && /bin/plymouth --hide-splashwhile : ; doecho -n $"Start service $1 (Y)es/(N)o/(C)ontinue? [Y] "read answerif strstr $"yY" "$answer" || [ "$answer" = "" ] ; thenreturn 0elif strstr $"cC" "$answer" ; thenrm -f /var/run/confirm[ -x /bin/plymouth ] && /bin/plymouth --show-splashreturn 2elif strstr $"nN" "$answer" ; thenreturn 1fidone}# resolve a device node to its major:minor numbers in decimal or hexget_numeric_dev() {(fmt="%d:%d"if [ "$1" == "hex" ]; thenfmt="%x:%x"fils -lH "$2" | awk '{ sub(/,/, "", $5); printf("'"$fmt"'", $5, $6); }') 2>/dev/null}# Check whether file $1 is a backup or rpm-generated file and should be ignoredis_ignored_file() {case "$1" in*~ | *.bak | *.orig | *.rpmnew | *.rpmorig | *.rpmsave)return 0;;esacreturn 1}# Evaluate shvar-style booleansis_true() {case "$1" in[tT] | [yY] | [yY][eE][sS] | [tT][rR][uU][eE] | 1)return 0;;esacreturn 1}# Evaluate shvar-style booleansis_false() {case "$1" in[fF] | [nN] | [nN][oO] | [fF][aA][lL][sS][eE] | 0)return 0;;esacreturn 1}# Apply sysctl settings, including files in /etc/sysctl.dapply_sysctl() {sysctl -e -p /etc/sysctl.conf >/dev/null 2>&1for file in /etc/sysctl.d/* ; dois_ignored_file "$file" && continuetest -f "$file" && sysctl -e -p "$file" >/dev/null 2>&1done}key_is_random() {[ "$1" = "/dev/urandom" -o "$1" = "/dev/hw_random" \-o "$1" = "/dev/random" ]}find_crypto_mount_point() {local fs_spec fs_file fs_vfstype remaining_fieldslocal fswhile read fs_spec fs_file remaining_fields; doif [ "$fs_spec" = "/dev/mapper/$1" ]; thenecho $fs_filebreak;fidone < /etc/fstab}# Because of a chicken/egg problem, init_crypto must be run twice. /var may be# encrypted but /var/lib/random-seed is needed to initialize swap.init_crypto() {local have_random dst src key opt mode owner params makeswap skip arg optlocal param value rc ret mke2fs mdir prompt mount_pointret=0have_random=$1while read dst src key opt; do[ -z "$dst" -o "${dst#\#}" != "$dst" ] && continue[ -b "/dev/mapper/$dst" ] && continue;if [ "$have_random" = 0 ] && key_is_random "$key"; thencontinuefiif [ -n "$key" -a "x$key" != "xnone" ]; thenif test -e "$key" ; thenowner=$(ls -l $key | (read a b owner rest; echo $owner))if ! key_is_random "$key"; thenmode=$(ls -l "$key" | cut -c 5-10)if [ "$mode" != "------" ]; thenecho $"INSECURE MODE FOR $key"fifiif [ "$owner" != root ]; thenecho $"INSECURE OWNER FOR $key"fielseecho $"Key file for $dst not found, skipping"ret=1continuefielsekey=""fiparams=""makeswap=""mke2fs=""skip=""# Parse the src field for UUID= and convert to real device namesif [ "${src%%=*}" == "UUID" ]; thensrc=$(/sbin/blkid -t "$src" -l -o device)elif [ "${src/^\/dev\/disk\/by-uuid\/}" != "$src" ]; thensrc=$(__readlink $src)fi# Is it a block device?[ -b "$src" ] || continue# Is it already a device mapper slave? (this is gross)devesc=${src##/dev/}devesc=${devesc//\//!}for d in /sys/block/dm-*/slaves ; do[ -e $d/$devesc ] && continue 2done# Parse the options field, convert to cryptsetup parameters and# contruct the command linewhile [ -n "$opt" ]; doarg=${opt%%,*}opt=${opt##$arg}opt=${opt##,}param=${arg%%=*}value=${arg##$param=}case "$param" incipher)params="$params -c $value"if [ -z "$value" ]; thenecho $"$dst: no value for cipher option, skipping"skip="yes"fi;;size)params="$params -s $value"if [ -z "$value" ]; thenecho $"$dst: no value for size option, skipping"skip="yes"fi;;hash)params="$params -h $value"if [ -z "$value" ]; thenecho $"$dst: no value for hash option, skipping"skip="yes"fi;;verify)params="$params -y";;swap)makeswap=yes;;tmp)mke2fs=yesesacdoneif [ "$skip" = "yes" ]; thenret=1continuefiif [ -z "$makeswap" ] && cryptsetup isLuks "$src" 2>/dev/null ; thenif key_is_random "$key"; thenecho $"$dst: LUKS requires non-random key, skipping"ret=1continuefiif [ -n "$params" ]; thenecho "$dst: options are invalid for LUKS partitions," \"ignoring them"fiif [ -n "$key" ]; then/sbin/cryptsetup -d $key luksOpen "$src" "$dst" <&1 2>/dev/null && success || failurerc=$?elsemount_point="$(find_crypto_mount_point $dst)"[ -n "$mount_point" ] || mount_point=${src##*/}prompt=$(printf $"%s is password protected" "$mount_point")plymouth ask-for-password --prompt "$prompt" --command="/sbin/cryptsetup luksOpen -T1 $src $dst" <&1rc=$?fielse[ -z "$key" ] && plymouth --hide-splash/sbin/cryptsetup $params ${key:+-d $key} create "$dst" "$src" <&1 && success || failurerc=$?[ -z "$key" ] && plymouth --show-splashfiif [ $rc -ne 0 ]; thenret=1continuefiif [ -b "/dev/mapper/$dst" ]; thenif [ "$makeswap" = "yes" ]; thenmkswap "/dev/mapper/$dst" 2>/dev/null >/dev/nullfiif [ "$mke2fs" = "yes" ]; thenif mke2fs "/dev/mapper/$dst" 2>/dev/null >/dev/null \&& mdir=$(mktemp -d /tmp/mountXXXXXX); thenmount "/dev/mapper/$dst" "$mdir" && chmod 1777 "$mdir"umount "$mdir"rmdir "$mdir"fififidone < /etc/crypttabreturn $ret}# A sed expression to filter out the files that is_ignored_file recognizes__sed_discard_ignored_files='/\(~\|\.bak\|\.orig\|\.rpmnew\|\.rpmorig\|\.rpmsave\)$/d'#if we have privileges lets log to kmsg, otherwise to stderrif strstr "$(cat /proc/cmdline)" "rc.debug"; then[ -w /dev/kmsg ] && exec 30>/dev/kmsg && BASH_XTRACEFD=30set -xfi