2004-04-21 17:54:05 +03:00
|
|
|
#! @shell@ -e
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2004-04-21 17:54:05 +03:00
|
|
|
url=$1
|
2005-04-07 17:01:51 +03:00
|
|
|
expHash=$2
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2006-08-05 03:33:52 +03:00
|
|
|
# needed to make it work on NixOS
|
|
|
|
export PATH=$PATH:@coreutils@
|
|
|
|
|
2005-02-24 19:36:42 +02:00
|
|
|
hashType=$NIX_HASH_ALGO
|
|
|
|
if test -z "$hashType"; then
|
2007-01-22 11:53:36 +02:00
|
|
|
hashType=sha256
|
2005-03-14 19:05:20 +02:00
|
|
|
fi
|
|
|
|
|
|
|
|
hashFormat=
|
2005-03-14 20:55:46 +02:00
|
|
|
if test "$hashType" != "md5"; then
|
2005-03-14 19:05:20 +02:00
|
|
|
hashFormat=--base32
|
|
|
|
fi
|
* Removed the `id' attribute hack.
* Formalise the notion of fixed-output derivations, i.e., derivations
for which a cryptographic hash of the output is known in advance.
Changes to such derivations should not propagate upwards through the
dependency graph. Previously this was done by specifying the hash
component of the output path through the `id' attribute, but this is
insecure since you can lie about it (i.e., you can specify any hash
and then produce a completely different output). Now the
responsibility for checking the output is moved from the builder to
Nix itself.
A fixed-output derivation can be created by specifying the
`outputHash' and `outputHashAlgo' attributes, the latter taking
values `md5', `sha1', and `sha256', and the former specifying the
actual hash in hexadecimal or in base-32 (auto-detected by looking
at the length of the attribute value). MD5 is included for
compatibility but should be considered deprecated.
* Removed the `drvPath' pseudo-attribute in derivation results. It's
no longer necessary.
* Cleaned up the support for multiple output paths in derivation store
expressions. Each output now has a unique identifier (e.g., `out',
`devel', `docs'). Previously there was no way to tell output paths
apart at the store expression level.
* `nix-hash' now has a flag `--base32' to specify that the hash should
be printed in base-32 notation.
* `fetchurl' accepts parameters `sha256' and `sha1' in addition to
`md5'.
* `nix-prefetch-url' now prints out a SHA-1 hash in base-32. (TODO: a
flag to specify the hash.)
2005-01-17 18:55:19 +02:00
|
|
|
|
2004-04-21 17:54:05 +03:00
|
|
|
if test -z "$url"; then
|
2005-04-07 17:01:51 +03:00
|
|
|
echo "syntax: nix-prefetch-url URL [EXPECTED-HASH]" >&2
|
2004-04-21 17:54:05 +03:00
|
|
|
exit 1
|
|
|
|
fi
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2005-04-07 17:01:51 +03:00
|
|
|
name=$(basename "$url")
|
|
|
|
if test -z "$name"; then echo "invalid url"; exit 1; fi
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2004-12-13 15:35:36 +02:00
|
|
|
|
2005-04-07 17:01:51 +03:00
|
|
|
# If the hash was given, a file with that hash may already be in the
|
|
|
|
# store.
|
|
|
|
if test -n "$expHash"; then
|
|
|
|
finalPath=$(@bindir@/nix-store --print-fixed-path "$hashType" "$expHash" "$name")
|
|
|
|
if ! @bindir@/nix-store --check-validity "$finalPath" 2> /dev/null; then
|
|
|
|
finalPath=
|
2004-12-13 15:35:36 +02:00
|
|
|
fi
|
2005-04-07 17:01:51 +03:00
|
|
|
hash=$expHash
|
|
|
|
fi
|
|
|
|
|
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
doDownload() {
|
2007-08-15 12:24:06 +03:00
|
|
|
@curl@ $cacheFlags --fail -# --location --max-redirs 20 --disable-epsv \
|
2007-08-10 02:16:44 +03:00
|
|
|
--cookie-jar $tmpPath/cookies "$url" -o $tmpFile
|
|
|
|
}
|
|
|
|
|
|
|
|
|
2005-04-07 17:01:51 +03:00
|
|
|
# If we don't know the hash or a file with that hash doesn't exist,
|
|
|
|
# download the file and add it to the store.
|
|
|
|
if test -z "$finalPath"; then
|
|
|
|
|
|
|
|
tmpPath=/tmp/nix-prefetch-url-$$ # !!! security?
|
|
|
|
tmpFile=$tmpPath/$name
|
|
|
|
mkdir $tmpPath
|
2004-12-13 15:35:36 +02:00
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
# Optionally do timestamp-based caching of the download.
|
|
|
|
# Actually, the only thing that we cache in $NIX_DOWNLOAD_CACHE is
|
|
|
|
# the hash and the timestamp of the file at $url. The caching of
|
|
|
|
# the file *contents* is done in Nix store, where it can be
|
|
|
|
# garbage-collected independently.
|
|
|
|
if test -n "$NIX_DOWNLOAD_CACHE"; then
|
2007-08-10 03:22:21 +03:00
|
|
|
echo -n "$url" > $tmpPath/url
|
|
|
|
urlHash=$(nix-hash --type sha256 --base32 --flat $tmpPath/url)
|
2007-08-10 02:16:44 +03:00
|
|
|
echo "$url" > "$NIX_DOWNLOAD_CACHE/$urlHash.url"
|
|
|
|
cachedHashFN="$NIX_DOWNLOAD_CACHE/$urlHash.$hashType"
|
|
|
|
cachedTimestampFN="$NIX_DOWNLOAD_CACHE/$urlHash.stamp"
|
|
|
|
cacheFlags="--remote-time"
|
|
|
|
if test -e "$cachedTimestampFN" -a -e "$cachedHashFN"; then
|
|
|
|
# Only download the file if it is newer than the cached version.
|
|
|
|
cacheFlags="$cacheFlags --time-cond $cachedTimestampFN"
|
|
|
|
fi
|
|
|
|
fi
|
|
|
|
|
2005-02-22 23:14:41 +02:00
|
|
|
# Perform the download.
|
2007-08-10 02:16:44 +03:00
|
|
|
doDownload
|
|
|
|
|
|
|
|
if test -n "$NIX_DOWNLOAD_CACHE" -a ! -e $tmpFile; then
|
|
|
|
# Curl didn't create $tmpFile, so apparently there's no newer
|
|
|
|
# file on the server.
|
|
|
|
hash=$(cat $cachedHashFN)
|
|
|
|
finalPath=$(@bindir@/nix-store --print-fixed-path "$hashType" "$hash" "$name")
|
|
|
|
if ! @bindir@/nix-store --check-validity "$finalPath" 2> /dev/null; then
|
|
|
|
echo "cached contents of \`$url' disappeared, redownloading..." >&2
|
|
|
|
finalPath=
|
|
|
|
cacheFlags="--remote-time"
|
|
|
|
doDownload
|
|
|
|
fi
|
|
|
|
fi
|
|
|
|
|
|
|
|
if test -z "$finalPath"; then
|
|
|
|
|
|
|
|
# Compute the hash.
|
|
|
|
hash=$(@bindir@/nix-hash --type "$hashType" $hashFormat --flat $tmpFile)
|
|
|
|
if ! test -n "$QUIET"; then echo "hash is $hash" >&2; fi
|
2004-10-20 17:40:54 +03:00
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
if test -n "$NIX_DOWNLOAD_CACHE"; then
|
|
|
|
echo $hash > $cachedHashFN
|
|
|
|
touch -r $tmpFile $cachedTimestampFN
|
|
|
|
fi
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
# Add the downloaded file to the Nix store.
|
|
|
|
finalPath=$(@bindir@/nix-store --add-fixed "$hashType" $tmpFile)
|
2003-08-15 13:13:41 +03:00
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
if test -n "$tmpPath"; then rm -rf $tmpPath || true; fi
|
2005-04-07 17:01:51 +03:00
|
|
|
|
2007-08-10 02:16:44 +03:00
|
|
|
if test -n "$expHash" -a "$expHash" != "$hash"; then
|
|
|
|
echo "hash mismatch for URL \`$url'" >&2
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
2005-04-07 17:01:51 +03:00
|
|
|
fi
|
2004-10-20 17:40:54 +03:00
|
|
|
fi
|
2003-08-15 13:13:41 +03:00
|
|
|
|
|
|
|
|
2004-12-13 15:35:36 +02:00
|
|
|
if ! test -n "$QUIET"; then echo "path is $finalPath" >&2; fi
|
2003-11-22 20:45:56 +02:00
|
|
|
|
2004-04-21 17:54:05 +03:00
|
|
|
echo $hash
|
2004-06-21 12:51:23 +03:00
|
|
|
|
|
|
|
if test -n "$PRINT_PATH"; then
|
|
|
|
echo $finalPath
|
|
|
|
fi
|