]> git.donarmstrong.com Git - dak.git/blob - tools/debianqueued-0.9/config-security
cb4fa4408a9b4820371179957913c2e4de160727
[dak.git] / tools / debianqueued-0.9 / config-security
1 #
2 # example configuration file for debianqueued
3 #
4
5 # set to != 0 for debugging output (to log file)
6 $debug = 0;
7
8 # various programs:
9 # -----------------
10 $gpg       = "/usr/bin/gpg";
11 $ssh       = "/usr/bin/ssh";
12 $scp       = "/usr/bin/scp";
13 $ssh_agent = "/usr/bin/ssh-agent";
14 $ssh_add   = "/usr/bin/ssh-add";
15 $md5sum    = "/usr/bin/md5sum";
16 $mail      = "/usr/sbin/sendmail";
17 $mkfifo    = "/usr/bin/mkfifo";
18 $tar       = "/bin/tar"; # must be GNU tar!
19 $gzip      = "/bin/gzip";
20 $ar        = "/usr/bin/ar"; # must support p option, optional
21 $ls        = "/bin/ls";
22 $cp        = "/bin/cp";
23 $chmod     = "/bin/chmod";
24
25 # binaries which existance should be tested before each queue run
26 #@test_binaries = ();
27
28 # general options to ssh/scp
29 $ssh_options = "-o'BatchMode yes' -o'FallBackToRsh no' ".
30                "-o'ForwardAgent no' -o'ForwardX11 no' ".
31                "-o'PasswordAuthentication no' -o'StrictHostKeyChecking yes'";
32
33 # ssh key file to use for connects to master (empty: default ~/.ssh/identity)
34 $ssh_key_file = "";
35
36 # the incoming dir we live in
37 $incoming = "/srv/queued/ftpmaster";
38
39 # the delayed incoming directories
40 $incoming_delayed = "/srv/queued/UploadQueue/DELAYED/%d-day";
41
42 # maximum delay directory, -1 for no delayed directory,
43 # incoming_delayed and target_delayed need to exist.
44 $max_delayed = -1;
45
46 # files not to delete in $incoming (regexp)
47 $keep_files = '(status|\.message|README)$';
48
49 # file patterns that aren't deleted right away
50 $valid_files = '(\.changes|\.tar\.(?:gz|bz2|xz)|\.dsc|\.u?deb|diff\.gz|\.sh)$';
51
52 # Change files to mode 644 locally (after md5 check) or only on master?
53 $chmod_on_target = 0;
54
55 # Do an md5sum check?
56 $check_md5sum = 0;
57
58 # name of the status file or named pipe in the incoming dir
59 $statusfile = "$incoming/status";
60
61 # if 0, status file implemented as FIFO; if > 0, status file is plain
62 # file and updated with a delay of this many seconds
63 $statusdelay = 30;
64
65 # names of the keyring files
66 @keyrings = ( "/srv/keyring.debian.org/keyrings/debian-keyring.gpg",
67               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-alpha-keyring.gpg",
68               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-amd64-keyring.gpg",
69               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-arm64-keyring.gpg",
70               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-armhf-keyring.gpg",
71               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-armel-keyring.gpg",
72               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-hurd-i386-keyring.gpg",
73               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-i386-keyring.gpg",
74               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-ia64-keyring.gpg",
75               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-kfreebsd-amd64-keyring.gpg",
76               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-kfreebsd-i386-keyring.gpg",
77               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-mipsel-keyring.gpg",
78               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-mips-keyring.gpg",
79               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-powerpc-keyring.gpg",
80               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-s390-keyring.gpg",
81               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-s390x-keyring.gpg",
82               "/srv/keyring.debian.org/keyrings/buildd-keyrings/buildd-sparc-keyring.gpg");
83
84 # our log file
85 $logfile = "$queued_dir/run/log";
86
87 # our pid file
88 $pidfile = "$queued_dir/run/pid";
89
90 # upload method (ssh, copy, ftp)
91 $upload_method = "ftp";
92
93 # name of target host (ignored on copy method)
94 $target = "ftp.upload.debian.org";
95
96 # login name on target host (for ssh, always 'ftp' for ftp, ignored for copy)
97 $targetlogin = "ftp";
98
99 # incoming on target host
100 $targetdir = "/pub/UploadQueue/";
101
102 # incoming/delayed on target host
103 $targetdir_delayed = "/srv/queued/DEFERRED/%d-day";
104
105 # select FTP debugging
106 $ftpdebug = 0;
107
108 # FTP timeout
109 $ftptimeout = 900;
110
111 # max. number of tries to upload
112 $max_upload_retries = 8;
113
114 # delay after first failed upload
115 $upload_delay_1 = 30*60; # 30 min.
116
117 # delay between successive failed uploads
118 $upload_delay_2 = 4*60*60; # 4 hours
119
120 # packages that must go to nonus.debian.org and thus are rejected here
121 #@nonus_packages = qw(gpg-rsaidea);
122
123 # timings:
124 # --------
125 #   time between two queue checks
126 $queue_delay = 5*60; # 5 min.
127 #   when are stray files deleted?
128 $stray_remove_timeout = 24*60*60; # 1 day
129 #   delay before reporting problems with a .changes file (not
130 #   immediately for to-be-continued uploads)
131 $problem_report_timeout = 30*60; # 30 min.
132 #   delay before reporting that a .changes file is missing (not
133 #   immediately for to-be-continued uploads)
134 $no_changes_timeout = 30*60; # 30 min.
135 #   when are .changes with persistent problems removed?
136 $bad_changes_timeout = 2*24*60*60; # 2 days
137 #   how long may a remote operation (ssh/scp) take?
138 $remote_timeout = 3*60*60; # 3 hours
139
140 # mail address of maintainer
141 $maintainer_mail = "ftpmaster\@debian.org";
142
143 # to override the TO address of ALL outgoing mail, set this value.
144 $overridemail = "dak\@security.debian.org";
145
146
147 # logfile rotating:
148 # -----------------
149 #    how often to rotate (in days)
150 $log_age = 7;
151 #    how much old logs to keep
152 $log_keep = 4;
153 #    send summary mail when rotating logs?
154 $mail_summary = 1;
155 #    write summary to file when rotating logs? (no if name empty)
156 $summary_file = "$queued_dir/summary";
157
158 # don't remove this, Perl needs it!
159 1;