Complete rewrite of kappa from a sequential build tool into a
system-agnostic package manager with runtime init switching.
Core additions:
- 5 init system backends: systemd, openrc, s6, runit, dinit
(service file generation, enable/disable, init_paths)
- 2 bootloader backends: grub, limine (config generation, fallback entries)
- Parallel scheduler with worker pool, depth-based priority (Beta/Alpha/Zeta),
atomic claiming, dependency tracking, deduplication, and failure propagation
- Init-switch impact analysis: only rebuild packages using ${enabledinit}
- Init-agnostic service definitions: flat NamedService blocks replace
per-init nesting
- Package conflicts: mutual incompatibility detection in resolver
- System groups: init-agnostic group creation in DSL
- Init-agnostic hostname/timezone: direct /etc/hostname and /etc/localtime writes
- Source tarball caching at /kappa/cache/ with atomic write-then-rename
- Package recipe caching with remote fetching and version comparison
- remotes = [...] block in system config for package repositories
- Auto-fetch: rebuild resolves missing packages from remotes
- uninstall phase in package definitions
- ${enabledinit} eval variable for init-conditional builds
- Shared util module (to_lower, shell_escape)
- 54 integration tests across two shell test suites
- Comprehensive README and CONTRIBUTING guide
Bug fixes from review:
- CRITICAL: Replace std::system() with fork+execvp (command injection)
- CRITICAL: Fix scheduler deadlock on successful completion
- CRITICAL: Fix rebuild init/kernel/bootloader change detection
- HIGH: Fix path traversal via unsanitized package names in cache
- HIGH: Fix TOCTOU race in cache write with atomic rename
- HIGH: Fix formatter dropping remotes/imports blocks
- HIGH: Fix formatter stripping empty-string assert values
- HIGH: Fix formatter non-idempotent output (sorted key iteration)
- HIGH: Populate ${enabledinit} from boot.init in BuildStep
- MEDIUM: Fix data race on non-atomic scheduler stop flag
- MEDIUM: Fix compute_depths() traversal direction
- MEDIUM: Add runit to doctor supported-init warning
- MEDIUM: Extract to_lower/shell_escape to shared kappa::util
- MEDIUM: Consolidate generator declarations in headers
58 lines
1.5 KiB
C++
58 lines
1.5 KiB
C++
#include "kappa/service/service.hpp"
|
|
#include "kappa/util.hpp"
|
|
|
|
#include <format>
|
|
#include <sstream>
|
|
|
|
namespace kappa::service {
|
|
|
|
std::string generate_runit_service(const ServiceSpec& spec) {
|
|
std::ostringstream out;
|
|
|
|
// Shebang
|
|
out << "#!/bin/sh\n";
|
|
|
|
// Header
|
|
out << "# Generated by kappa — do not edit manually\n";
|
|
out << std::format("# runit service: {}\n", spec.name);
|
|
out << std::format("# Type: {}\n", spec.type);
|
|
|
|
// Forking note
|
|
if (spec.type == "forking") {
|
|
out << "# NOTE: runit requires foreground execution.\n";
|
|
out << "# If the daemon forks, pass --foreground or equivalent"
|
|
" flag.\n";
|
|
}
|
|
|
|
// Oneshot note
|
|
if (spec.type == "oneshot") {
|
|
out << "# NOTE: runit has no native oneshot support. This service"
|
|
" will restart on exit.\n";
|
|
}
|
|
|
|
// Redirect stderr to stdout for logging
|
|
out << "exec 2>&1\n";
|
|
|
|
// Working directory
|
|
if (!spec.working_dir.empty()) {
|
|
out << std::format("cd \"{}\"\n", util::shell_escape(spec.working_dir));
|
|
}
|
|
|
|
// Environment variables
|
|
for (const auto& [key, value] : spec.env) {
|
|
out << std::format("export {}=\"{}\"\n", key, util::shell_escape(value));
|
|
}
|
|
|
|
// Final exec — replace the shell with the daemon
|
|
if (!spec.user.empty()) {
|
|
out << std::format("exec chpst -u {} {}\n",
|
|
util::shell_escape(spec.user), spec.exec);
|
|
} else {
|
|
out << "exec " << spec.exec << "\n";
|
|
}
|
|
|
|
return out.str();
|
|
}
|
|
|
|
} // namespace kappa::service
|