Update git-auto-update.nix

This commit is contained in:
ska
2025-12-25 23:33:47 +00:00
parent c8bc8ac494
commit b5e0d81b85

View File

@@ -1,14 +1,8 @@
{ config, pkgs, ... }: { config, pkgs, ... }:
{ let
environment.etc."nix-git-auto-update.sh" = { gitUpdateScript = pkgs.writeShellScript "nix-git-auto-update" ''
mode = "0700"; set -euo pipefail
text = ''
#!/run/current-system/sw/bin/bash
set -e
export PATH="/run/current-system/sw/bin:/nix/var/nix/profiles/default/bin"
export NIX_PATH="nixpkgs=/nix/var/nix/profiles/per-user/root/channels/nixos"
LOCAL_PATH="/var/lib/nixos-config" LOCAL_PATH="/var/lib/nixos-config"
REPO_URL="https://git.skarockoi.de/ska/nixos-production.git" REPO_URL="https://git.skarockoi.de/ska/nixos-production.git"
@@ -16,43 +10,65 @@
if [ ! -d "$LOCAL_PATH/.git" ]; then if [ ! -d "$LOCAL_PATH/.git" ]; then
mkdir -p "$LOCAL_PATH" mkdir -p "$LOCAL_PATH"
chmod 700 "$LOCAL_PATH" chmod 700 "$LOCAL_PATH"
git clone "$REPO_URL" "$LOCAL_PATH" ${pkgs.git}/bin/git clone "$REPO_URL" "$LOCAL_PATH"
exit 0 exit 0
fi fi
cd "$LOCAL_PATH" cd "$LOCAL_PATH"
git fetch origin ${pkgs.git}/bin/git fetch origin
LOCAL_HEAD=$(git rev-parse HEAD)
REMOTE_HEAD=$(git rev-parse origin/main) LOCAL_HEAD=$(${pkgs.git}/bin/git rev-parse HEAD)
REMOTE_HEAD=$(${pkgs.git}/bin/git rev-parse origin/main)
if [ "$LOCAL_HEAD" != "$REMOTE_HEAD" ]; then if [ "$LOCAL_HEAD" != "$REMOTE_HEAD" ]; then
git reset --hard origin/main ${pkgs.git}/bin/git reset --hard origin/main
nixos-rebuild boot -I nixos-config="$LOCAL_PATH/configuration.nix" ${pkgs.nixos-rebuild}/bin/nixos-rebuild boot \
-I nixos-config="$LOCAL_PATH/configuration.nix"
fi fi
''; '';
in
{
##############################
# Git Auto Update Script
##############################
environment.etc."nix-git-auto-update.sh" = {
mode = "0700";
source = gitUpdateScript;
}; };
##############################
# systemd service
##############################
systemd.services.nix-git-auto-update = { systemd.services.nix-git-auto-update = {
description = "Automatically update NixOS from Git"; description = "Automatically update NixOS from Git";
script = "/etc/nix-git-auto-update.sh";
wants = [ "network-online.target" ];
after = [ "network-online.target" ];
serviceConfig = { serviceConfig = {
Type = "oneshot"; Type = "oneshot";
User = "root"; ExecStart = "/etc/nix-git-auto-update.sh";
Group = "root";
TimeoutStartSec = "10min"; TimeoutStartSec = "10min";
Restart = "on-failure"; Restart = "on-failure";
StandardOutput = "journal";
StandardError = "journal";
}; };
}; };
##############################
# systemd timer
##############################
systemd.timers.nix-git-auto-update = { systemd.timers.nix-git-auto-update = {
description = "Periodic NixOS Git update check"; description = "Periodic NixOS Git update check";
wantedBy = [ "timers.target" ]; wantedBy = [ "timers.target" ];
timerConfig = { timerConfig = {
OnBootSec = "60s"; OnBootSec = "2min";
OnUnitActiveSec = "5min"; OnUnitActiveSec = "5min";
Persistent = true;
}; };
}; };
} }