2013-03-19 16:07:36 +00:00
#!/usr/bin/python
2012-08-03 01:29:10 +00:00
# -*- coding: utf-8 -*-
2012-03-26 19:49:13 +00:00
# (c) 2012, Flowroute LLC
# Written by Matthew Williams <matthew@flowroute.com>
# Based on yum module written by Seth Vidal <skvidal at fedoraproject.org>
#
# This module is free software: you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation, either version 3 of the License, or
# (at your option) any later version.
#
# This software is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this software. If not, see <http://www.gnu.org/licenses/>.
#
2012-09-28 20:35:29 +00:00
DOCUMENTATION = '''
---
module: apt
2012-09-28 23:51:55 +00:00
short_description: Manages apt-packages
2012-09-28 20:35:29 +00:00
description:
2012-11-21 17:49:30 +00:00
- Manages I(apt) packages (such as for Debian/Ubuntu).
2012-09-28 20:35:29 +00:00
version_added: "0.0.2"
options:
2012-09-29 16:23:13 +00:00
pkg:
2012-09-28 20:35:29 +00:00
description:
2013-08-12 13:58:02 +00:00
- A package name or package specifier with version, like C(foo) or C(foo=1.0). Shell like wildcards (fnmatch) like apt* are also supported.
2013-06-18 23:25:46 +00:00
required: false
2012-09-28 20:35:29 +00:00
default: null
state:
description:
2012-10-03 02:32:17 +00:00
- Indicates the desired package state
2012-09-28 20:35:29 +00:00
required: false
default: present
2012-10-12 22:14:09 +00:00
choices: [ "latest", "absent", "present" ]
2012-09-28 20:35:29 +00:00
update_cache:
description:
2012-11-21 17:49:30 +00:00
- Run the equivalent of C(apt-get update) before the operation. Can be run as part of the package installation or as a separate step
2012-09-28 20:35:29 +00:00
required: false
2013-10-09 11:52:23 +00:00
default: no
2012-09-28 20:35:29 +00:00
choices: [ "yes", "no" ]
2013-04-23 19:55:04 +00:00
cache_valid_time:
description:
- If C(update_cache) is specified and the last run is less or equal than I(cache_valid_time) seconds ago, the C(update_cache) gets skipped.
required: false
2013-10-09 11:52:23 +00:00
default: no
2012-09-28 20:35:29 +00:00
purge:
description:
2012-11-21 17:49:30 +00:00
- Will force purging of configuration files if the module state is set to I(absent).
2012-09-28 20:35:29 +00:00
required: false
2013-10-09 11:52:23 +00:00
default: no
2012-09-28 20:35:29 +00:00
choices: [ "yes", "no" ]
default_release:
description:
2012-09-28 23:51:55 +00:00
- Corresponds to the C(-t) option for I(apt) and sets pin priorities
2012-09-28 20:35:29 +00:00
required: false
default: null
install_recommends:
description:
2012-09-28 23:51:55 +00:00
- Corresponds to the C(--no-install-recommends) option for I(apt), default behavior works as apt's default behavior, C(no) does not install recommended packages. Suggested packages are never installed.
2012-09-28 20:35:29 +00:00
required: false
2013-10-09 11:52:23 +00:00
default: yes
2012-09-28 20:35:29 +00:00
choices: [ "yes", "no" ]
force:
description:
2012-10-03 02:32:17 +00:00
- If C(yes), force installs/removes.
2012-09-28 20:35:29 +00:00
required: false
default: "no"
choices: [ "yes", "no" ]
2013-02-03 09:46:23 +00:00
upgrade:
description:
2013-04-11 12:15:35 +00:00
- 'If yes or safe, performs an aptitude safe-upgrade.'
- 'If full, performs an aptitude full-upgrade.'
- 'If dist, performs an apt-get dist-upgrade.'
- 'Note: This does not upgrade a specific package, use state=latest for that.'
2013-02-03 18:14:37 +00:00
version_added: "1.1"
2013-02-03 09:46:23 +00:00
required: false
2013-04-11 12:15:35 +00:00
default: "yes"
choices: [ "yes", "safe", "full", "dist"]
2013-10-03 17:14:52 +00:00
dpkg_options:
description:
- Add dpkg options to apt command. Defaults to '-o "Dpkg::Options::=--force-confdef" -o "Dpkg::Options::=--force-confold"'
- Options should be supplied as comma separated list
required: false
default: 'force-confdef,force-confold'
2013-05-11 14:31:47 +00:00
requirements: [ python-apt, aptitude ]
2012-09-28 20:35:29 +00:00
author: Matthew Williams
2013-05-11 14:31:47 +00:00
notes:
2013-05-17 14:12:30 +00:00
- Three of the upgrade modes (C(full), C(safe) and its alias C(yes)) require C(aptitude), otherwise
2013-05-11 14:31:47 +00:00
C(apt-get) suffices.
2012-09-28 20:35:29 +00:00
'''
2013-06-14 09:53:43 +00:00
EXAMPLES = '''
# Update repositories cache and install "foo" package
- apt: pkg=foo update_cache=yes
# Remove "foo" package
- apt: pkg=foo state=absent
# Install the package "foo"
- apt: pkg=foo state=present
# Install the version '1.00' of package "foo"
- apt: pkg=foo=1.00 state=present
# Update the repository cache and update package "nginx" to latest version using default release squeeze-backport
- apt: pkg=nginx state=latest default_release=squeeze-backports update_cache=yes
2013-10-03 17:14:52 +00:00
# Install latest version of "openjdk-6-jdk" ignoring "install-recommends"
2013-06-14 09:53:43 +00:00
- apt: pkg=openjdk-6-jdk state=latest install_recommends=no
# Update all packages to the latest version
- apt: upgrade=dist
# Run the equivalent of "apt-get update" as a separate step
- apt: update_cache=yes
# Only run "update_cache=yes" if the last one is more than more than 3600 seconds ago
- apt: update_cache=yes cache_valid_time=3600
2013-10-03 17:14:52 +00:00
# Pass options to dpkg on run
- apt: upgrade=dist update_cache=yes dpkg_options='force-confold,force-confdef'
2013-06-14 09:53:43 +00:00
'''
2012-03-26 20:48:02 +00:00
import traceback
2012-07-10 23:50:08 +00:00
# added to stave off future warnings about apt api
2012-08-11 16:35:58 +00:00
import warnings
2012-07-10 23:50:08 +00:00
warnings.filterwarnings('ignore', "apt API not stable yet", FutureWarning)
2013-04-23 19:54:35 +00:00
import os
import datetime
2013-05-13 19:01:02 +00:00
import fnmatch
2013-04-23 19:54:35 +00:00
2012-07-26 11:59:15 +00:00
# APT related constants
2013-04-11 12:15:35 +00:00
APT_ENVVARS = "DEBIAN_FRONTEND=noninteractive DEBIAN_PRIORITY=critical"
2013-10-03 17:14:52 +00:00
DPKG_OPTIONS = 'force-confdef,force-confold'
2013-09-28 23:45:19 +00:00
APT_GET_ZERO = "0 upgraded, 0 newly installed"
APTITUDE_ZERO = "0 packages upgraded, 0 newly installed"
2013-04-23 19:54:35 +00:00
APT_LISTS_PATH = "/var/lib/apt/lists"
2013-04-24 20:21:38 +00:00
APT_UPDATE_SUCCESS_STAMP_PATH = "/var/lib/apt/periodic/update-success-stamp"
2012-03-26 19:49:13 +00:00
2013-09-12 04:33:59 +00:00
HAS_PYTHON_APT = True
try:
import apt
import apt_pkg
except:
HAS_PYTHON_APT = False
2012-04-22 00:48:58 +00:00
def package_split(pkgspec):
parts = pkgspec.split('=')
if len(parts) > 1:
return parts[0], parts[1]
else:
return parts[0], None
2013-02-19 22:18:17 +00:00
def package_status(m, pkgname, version, cache, state):
2012-03-26 19:49:13 +00:00
try:
2013-09-12 04:33:59 +00:00
# get the package from the cache, as well as the
# the low-level apt_pkg.Package object which contains
# state fields not directly acccesible from the
# higher-level apt.package.Package object.
2012-04-22 00:48:58 +00:00
pkg = cache[pkgname]
2013-09-12 04:33:59 +00:00
ll_pkg = cache._cache[pkgname] # the low-level package object
2012-04-22 00:48:58 +00:00
except KeyError:
2013-02-19 22:18:17 +00:00
if state == 'install':
m.fail_json(msg="No package matching '%s' is available" % pkgname)
else:
2013-06-19 07:06:33 +00:00
return False, False, False
2013-06-19 08:56:43 +00:00
try:
has_files = len(pkg.installed_files) > 0
2013-11-13 14:48:56 +00:00
except UnicodeDecodeError:
has_files = True
2013-06-19 08:56:43 +00:00
except AttributeError:
has_files = False # older python-apt cannot be used to determine non-purged
2012-04-22 00:48:58 +00:00
if version:
2012-06-13 18:57:47 +00:00
try :
2013-09-12 04:33:59 +00:00
return ll_pkg.current_state == apt_pkg.CURSTATE_INSTALLED and \
fnmatch.fnmatch(pkg.installed.version, version), False, has_files
2012-07-30 22:20:43 +00:00
except AttributeError:
2012-06-13 18:57:47 +00:00
#assume older version of python-apt is installed
2013-09-12 04:33:59 +00:00
return ll_pkg.current_state == apt_pkg.CURSTATE_INSTALLED and \
fnmatch.fnmatch(pkg.installedVersion, version), False, has_files
2012-04-22 00:48:58 +00:00
else:
2012-06-13 18:57:47 +00:00
try :
2013-09-12 04:33:59 +00:00
return ll_pkg.current_state == apt_pkg.CURSTATE_INSTALLED, pkg.is_upgradable, has_files
2012-07-30 22:20:43 +00:00
except AttributeError:
2012-06-13 18:57:47 +00:00
#assume older version of python-apt is installed
2013-09-12 04:33:59 +00:00
return ll_pkg.current_state == apt_pkg.CURSTATE_INSTALLED, pkg.isUpgradable, has_files
2012-03-26 20:48:02 +00:00
2013-10-03 17:14:52 +00:00
def expand_dpkg_options(dpkg_options_compressed):
options_list = dpkg_options_compressed.split(',')
dpkg_options = ""
for dpkg_option in options_list:
dpkg_options = '%s -o "Dpkg::Options::=--%s"' \
% (dpkg_options, dpkg_option)
return dpkg_options.strip()
2013-08-12 13:58:02 +00:00
def expand_pkgspec_from_fnmatches(m, pkgspec, cache):
new_pkgspec = []
for pkgname_or_fnmatch_pattern in pkgspec:
# note that any of these chars is not allowed in a (debian) pkgname
if [c for c in pkgname_or_fnmatch_pattern if c in "*?[]!"]:
if "=" in pkgname_or_fnmatch_pattern:
m.fail_json(msg="pkgname wildcard and version can not be mixed")
2013-10-03 17:14:52 +00:00
# handle multiarch pkgnames, the idea is that "apt*" should
2013-08-12 13:58:02 +00:00
# only select native packages. But "apt*:i386" should still work
if not ":" in pkgname_or_fnmatch_pattern:
matches = fnmatch.filter(
[pkg.name for pkg in cache
if not ":" in pkg.name], pkgname_or_fnmatch_pattern)
else:
matches = fnmatch.filter(
[pkg.name for pkg in cache], pkgname_or_fnmatch_pattern)
2013-08-12 16:26:31 +00:00
if len(matches) == 0:
m.fail_json(msg="No package(s) matching '%s' available" % str(pkgname_or_fnmatch_pattern))
else:
new_pkgspec.extend(matches)
2013-08-12 13:58:02 +00:00
else:
new_pkgspec.append(pkgname_or_fnmatch_pattern)
return new_pkgspec
2013-10-03 17:14:52 +00:00
def install(m, pkgspec, cache, upgrade=False, default_release=None,
install_recommends=True, force=False,
dpkg_options=expand_dpkg_options(DPKG_OPTIONS)):
2012-08-01 16:43:39 +00:00
packages = ""
2013-08-12 13:58:02 +00:00
pkgspec = expand_pkgspec_from_fnmatches(m, pkgspec, cache)
2012-08-01 16:09:30 +00:00
for package in pkgspec:
name, version = package_split(package)
2013-06-19 07:06:33 +00:00
installed, upgradable, has_files = package_status(m, name, version, cache, state='install')
2012-08-01 16:09:30 +00:00
if not installed or (upgrade and upgradable):
2012-08-01 16:43:39 +00:00
packages += "'%s' " % package
2012-08-07 00:07:02 +00:00
2012-08-01 16:43:39 +00:00
if len(packages) != 0:
2012-07-06 15:17:59 +00:00
if force:
force_yes = '--force-yes'
else:
force_yes = ''
2013-04-24 10:02:05 +00:00
if m.check_mode:
check_arg = '--simulate'
else:
check_arg = ''
2013-10-03 17:14:52 +00:00
cmd = "%s %s -y %s %s %s install %s" % (APT_ENVVARS, APT_GET_CMD, dpkg_options, force_yes, check_arg, packages)
2013-04-24 10:02:05 +00:00
2012-04-22 22:17:07 +00:00
if default_release:
cmd += " -t '%s'" % (default_release,)
2012-07-06 19:12:04 +00:00
if not install_recommends:
cmd += " --no-install-recommends"
2012-07-26 10:51:49 +00:00
Update modules to use run_command in module_common.py
This updates apt, apt_repository, command, cron, easy_install, facter,
fireball, git, group, mount, ohai, pip, service, setup, subversion,
supervisorctl, svr4pkg, user, and yum to take advantage of run_command
in module_common.py.
2013-01-12 06:10:21 +00:00
rc, out, err = m.run_command(cmd)
2012-07-26 11:59:15 +00:00
if rc:
2013-09-28 23:26:08 +00:00
m.fail_json(msg="'apt-get install %s' failed: %s" % (packages, err), stdout=out, stderr=err)
2012-07-26 11:59:15 +00:00
else:
2013-09-28 23:26:08 +00:00
m.exit_json(changed=True, stdout=out, stderr=err)
2012-04-03 19:44:53 +00:00
else:
2012-07-26 11:59:15 +00:00
m.exit_json(changed=False)
2012-03-26 20:48:02 +00:00
2013-10-03 17:14:52 +00:00
def remove(m, pkgspec, cache, purge=False,
dpkg_options=expand_dpkg_options(DPKG_OPTIONS)):
2012-08-01 16:43:39 +00:00
packages = ""
2012-08-01 16:09:30 +00:00
for package in pkgspec:
name, version = package_split(package)
2013-06-19 07:06:33 +00:00
installed, upgradable, has_files = package_status(m, name, version, cache, state='remove')
if installed or (has_files and purge):
2012-08-01 16:43:39 +00:00
packages += "'%s' " % package
2012-08-07 00:07:02 +00:00
2012-08-01 16:09:30 +00:00
if len(packages) == 0:
2012-07-26 11:59:15 +00:00
m.exit_json(changed=False)
2012-03-26 19:49:13 +00:00
else:
2013-02-19 22:18:17 +00:00
if purge:
purge = '--purge'
2013-06-19 06:37:14 +00:00
else:
purge = ''
2013-10-03 17:14:52 +00:00
cmd = "%s %s -q -y %s %s remove %s" % (APT_ENVVARS, APT_GET_CMD, dpkg_options, purge, packages)
2013-02-18 07:15:27 +00:00
if m.check_mode:
m.exit_json(changed=True)
Update modules to use run_command in module_common.py
This updates apt, apt_repository, command, cron, easy_install, facter,
fireball, git, group, mount, ohai, pip, service, setup, subversion,
supervisorctl, svr4pkg, user, and yum to take advantage of run_command
in module_common.py.
2013-01-12 06:10:21 +00:00
rc, out, err = m.run_command(cmd)
2012-07-26 11:59:15 +00:00
if rc:
2013-09-28 23:26:08 +00:00
m.fail_json(msg="'apt-get remove %s' failed: %s" % (packages, err), stdout=out, stderr=err)
m.exit_json(changed=True, stdout=out, stderr=err)
2012-07-30 22:20:43 +00:00
2013-10-03 17:14:52 +00:00
def upgrade(m, mode="yes", force=False,
dpkg_options=expand_dpkg_options(DPKG_OPTIONS)):
2013-04-01 01:48:08 +00:00
if m.check_mode:
check_arg = '--simulate'
else:
check_arg = ''
2013-07-22 19:15:55 +00:00
apt_cmd = None
2013-02-03 09:46:23 +00:00
if mode == "dist":
2013-04-11 12:15:35 +00:00
# apt-get dist-upgrade
apt_cmd = APT_GET_CMD
upgrade_command = "dist-upgrade"
2013-10-03 17:14:52 +00:00
elif mode == "full":
2013-04-11 12:15:35 +00:00
# aptitude full-upgrade
apt_cmd = APTITUDE_CMD
upgrade_command = "full-upgrade"
2013-04-01 01:41:58 +00:00
else:
2013-04-11 12:15:35 +00:00
# aptitude safe-upgrade # mode=yes # default
apt_cmd = APTITUDE_CMD
upgrade_command = "safe-upgrade"
2013-07-09 08:57:19 +00:00
if force:
force_yes = '--force-yes'
else:
force_yes = ''
2013-04-11 12:15:35 +00:00
apt_cmd_path = m.get_bin_path(apt_cmd, required=True)
2013-10-03 17:14:52 +00:00
cmd = '%s %s -y %s %s %s %s' % (APT_ENVVARS, apt_cmd_path, dpkg_options,
2013-07-09 08:57:19 +00:00
force_yes, check_arg, upgrade_command)
2013-04-11 12:15:35 +00:00
rc, out, err = m.run_command(cmd)
if rc:
2013-11-12 03:27:47 +00:00
m.fail_json(msg="'%s %s' failed: %s" % (apt_cmd, upgrade_command, err), stdout=out)
2013-04-11 12:15:35 +00:00
if (apt_cmd == APT_GET_CMD and APT_GET_ZERO in out) or (apt_cmd == APTITUDE_CMD and APTITUDE_ZERO in out):
2013-09-28 23:26:08 +00:00
m.exit_json(changed=False, msg=out, stdout=out, stderr=err)
m.exit_json(changed=True, msg=out, stdout=out, stderr=err)
2012-03-26 19:49:13 +00:00
2012-07-26 10:51:49 +00:00
def main():
module = AnsibleModule(
argument_spec = dict(
2012-08-18 15:37:14 +00:00
state = dict(default='installed', choices=['installed', 'latest', 'removed', 'absent', 'present']),
2013-10-09 11:47:08 +00:00
update_cache = dict(default=False, aliases=['update-cache'], type='bool'),
2013-04-23 19:54:35 +00:00
cache_valid_time = dict(type='int'),
2013-10-09 11:47:08 +00:00
purge = dict(default=False, type='bool'),
2012-07-26 10:51:49 +00:00
package = dict(default=None, aliases=['pkg', 'name']),
default_release = dict(default=None, aliases=['default-release']),
2013-10-03 17:14:52 +00:00
install_recommends = dict(default='yes', aliases=['install-recommends'], type='bool'),
force = dict(default='no', type='bool'),
upgrade = dict(choices=['yes', 'safe', 'full', 'dist']),
dpkg_options = dict(default=DPKG_OPTIONS)
2013-02-18 07:15:27 +00:00
),
2013-03-05 22:46:34 +00:00
mutually_exclusive = [['package', 'upgrade']],
required_one_of = [['package', 'upgrade', 'update_cache']],
2013-02-18 07:15:27 +00:00
supports_check_mode = True
2012-07-26 10:51:49 +00:00
)
2013-09-12 04:33:59 +00:00
if not HAS_PYTHON_APT:
2013-10-21 14:39:18 +00:00
try:
module.run_command('apt-get install python-apt -y -q')
global apt, apt_pkg
import apt
import apt_pkg
except:
module.fail_json(msg="Could not import python modules: apt, apt_pkg. Please install python-apt package.")
2012-07-26 11:59:15 +00:00
2013-05-18 23:49:25 +00:00
global APTITUDE_CMD
APTITUDE_CMD = module.get_bin_path("aptitude", False)
global APT_GET_CMD
APT_GET_CMD = module.get_bin_path("apt-get")
2013-05-15 04:50:28 +00:00
2013-07-22 19:15:55 +00:00
p = module.params
if not APTITUDE_CMD and p.get('upgrade', None) in [ 'full', 'safe', 'yes' ]:
2013-07-20 16:47:46 +00:00
module.fail_json(msg="Could not find aptitude. Please ensure it is installed.")
2013-06-30 03:36:13 +00:00
2013-02-23 18:59:52 +00:00
install_recommends = p['install_recommends']
2013-10-03 17:14:52 +00:00
dpkg_options = expand_dpkg_options(p['dpkg_options'])
2012-07-30 22:20:43 +00:00
2013-03-13 22:11:23 +00:00
try:
cache = apt.Cache()
if p['default_release']:
apt_pkg.config['APT::Default-Release'] = p['default_release']
# reopen cache w/ modified config
cache.open(progress=None)
if p['update_cache']:
2013-04-23 19:54:35 +00:00
# Default is: always update the cache
cache_valid = False
if p['cache_valid_time']:
tdelta = datetime.timedelta(seconds=p['cache_valid_time'])
2013-04-24 20:21:38 +00:00
try:
mtime = os.stat(APT_UPDATE_SUCCESS_STAMP_PATH).st_mtime
except:
mtime = False
if mtime is False:
# Looks like the update-success-stamp is not available
# Fallback: Checking the mtime of the lists
try:
mtime = os.stat(APT_LISTS_PATH).st_mtime
except:
mtime = False
if mtime is False:
# No mtime could be read - looks like lists are not there
# We update the cache to be safe
cache_valid = False
else:
mtimestamp = datetime.datetime.fromtimestamp(mtime)
if mtimestamp + tdelta >= datetime.datetime.now():
# dont update the cache
# the old cache is less than cache_valid_time seconds old - so still valid
cache_valid = True
2013-04-23 19:54:35 +00:00
if cache_valid is not True:
cache.update()
cache.open(progress=None)
2013-04-11 21:58:15 +00:00
if not p['package'] and not p['upgrade']:
2013-03-13 22:11:23 +00:00
module.exit_json(changed=False)
2012-07-30 22:20:43 +00:00
2013-03-13 22:11:23 +00:00
force_yes = p['force']
2012-07-30 22:20:43 +00:00
2013-03-13 22:11:23 +00:00
if p['upgrade']:
2013-10-03 17:14:52 +00:00
upgrade(module, p['upgrade'], force_yes, dpkg_options)
2012-08-07 00:07:02 +00:00
2013-03-13 22:11:23 +00:00
packages = p['package'].split(',')
latest = p['state'] == 'latest'
for package in packages:
if package.count('=') > 1:
module.fail_json(msg="invalid package spec: %s" % package)
if latest and '=' in package:
module.fail_json(msg='version number inconsistent with state=latest: %s' % package)
2013-02-03 09:46:23 +00:00
2013-03-13 22:11:23 +00:00
if p['state'] == 'latest':
install(module, packages, cache, upgrade=True,
default_release=p['default_release'],
install_recommends=install_recommends,
2013-10-03 17:14:52 +00:00
force=force_yes, dpkg_options=dpkg_options)
2013-03-13 22:11:23 +00:00
elif p['state'] in [ 'installed', 'present' ]:
install(module, packages, cache, default_release=p['default_release'],
2013-10-03 17:14:52 +00:00
install_recommends=install_recommends,force=force_yes,
dpkg_options=dpkg_options)
2013-03-13 22:11:23 +00:00
elif p['state'] in [ 'removed', 'absent' ]:
2013-10-03 17:14:52 +00:00
remove(module, packages, cache, p['purge'], dpkg_options)
2012-07-30 22:20:43 +00:00
2013-03-13 22:21:16 +00:00
except apt.cache.LockFailedException:
2013-03-13 22:11:23 +00:00
module.fail_json(msg="Failed to lock apt for exclusive operation")
2012-07-30 22:20:43 +00:00
2012-07-26 10:51:49 +00:00
# this is magic, see lib/ansible/module_common.py
#<<INCLUDE_ANSIBLE_MODULE_COMMON>>
2012-03-26 19:49:13 +00:00
2012-07-26 10:51:49 +00:00
main()