forked from lix-project/lix
24eaa086f0
One of our CI machines installs Nix via the official script and then sources the nix-profile.sh script to setup the environment. However, it doesn't have XDG_STATE_HOME set, which causes sourcing the script to fail.
64 lines
2.7 KiB
Bash
64 lines
2.7 KiB
Bash
# Only execute this file once per shell.
|
|
if [ -n "${__ETC_PROFILE_NIX_SOURCED:-}" ]; then return; fi
|
|
__ETC_PROFILE_NIX_SOURCED=1
|
|
|
|
NIX_LINK=$HOME/.nix-profile
|
|
if [ -n "${XDG_STATE_HOME-}" ]; then
|
|
NIX_LINK_NEW="$XDG_STATE_HOME/nix/profile"
|
|
else
|
|
NIX_LINK_NEW=$HOME/.local/state/nix/profile
|
|
fi
|
|
if ! [ -e "$NIX_LINK" ]; then
|
|
NIX_LINK="$NIX_LINK_NEW"
|
|
else
|
|
if [ -t 2 ] && [ -e "$NIX_LINK_NEW" ]; then
|
|
warning="\033[1;35mwarning:\033[0m"
|
|
printf "$warning Both %s and legacy %s exist; using the latter.\n" "$NIX_LINK_NEW" "$NIX_LINK" 1>&2
|
|
if [ "$(realpath "$NIX_LINK")" = "$(realpath "$NIX_LINK_NEW")" ]; then
|
|
printf " Since the profiles match, you can safely delete either of them.\n" 1>&2
|
|
else
|
|
# This should be an exceptionally rare occasion: the only way to get it would be to
|
|
# 1. Update to newer Nix;
|
|
# 2. Remove .nix-profile;
|
|
# 3. Set the $NIX_LINK_NEW to something other than the default user profile;
|
|
# 4. Roll back to older Nix.
|
|
# If someone did all that, they can probably figure out how to migrate the profile.
|
|
printf "$warning Profiles do not match. You should manually migrate from %s to %s.\n" "$NIX_LINK" "$NIX_LINK_NEW" 1>&2
|
|
fi
|
|
fi
|
|
fi
|
|
|
|
export NIX_PROFILES="@localstatedir@/nix/profiles/default $NIX_LINK"
|
|
|
|
# Set $NIX_SSL_CERT_FILE so that Nixpkgs applications like curl work.
|
|
if [ -n "${NIX_SSL_CERT_FILE:-}" ]; then
|
|
: # Allow users to override the NIX_SSL_CERT_FILE
|
|
elif [ -e /etc/ssl/certs/ca-certificates.crt ]; then # NixOS, Ubuntu, Debian, Gentoo, Arch
|
|
export NIX_SSL_CERT_FILE=/etc/ssl/certs/ca-certificates.crt
|
|
elif [ -e /etc/ssl/ca-bundle.pem ]; then # openSUSE Tumbleweed
|
|
export NIX_SSL_CERT_FILE=/etc/ssl/ca-bundle.pem
|
|
elif [ -e /etc/ssl/certs/ca-bundle.crt ]; then # Old NixOS
|
|
export NIX_SSL_CERT_FILE=/etc/ssl/certs/ca-bundle.crt
|
|
elif [ -e /etc/pki/tls/certs/ca-bundle.crt ]; then # Fedora, CentOS
|
|
export NIX_SSL_CERT_FILE=/etc/pki/tls/certs/ca-bundle.crt
|
|
else
|
|
# Fall back to what is in the nix profiles, favouring whatever is defined last.
|
|
check_nix_profiles() {
|
|
if [ -n "$ZSH_VERSION" ]; then
|
|
# Zsh by default doesn't split words in unquoted parameter expansion.
|
|
# Set local_options for these options to be reverted at the end of the function
|
|
# and shwordsplit to force splitting words in $NIX_PROFILES below.
|
|
setopt local_options shwordsplit
|
|
fi
|
|
for i in $NIX_PROFILES; do
|
|
if [ -e "$i/etc/ssl/certs/ca-bundle.crt" ]; then
|
|
export NIX_SSL_CERT_FILE=$i/etc/ssl/certs/ca-bundle.crt
|
|
fi
|
|
done
|
|
}
|
|
check_nix_profiles
|
|
unset -f check_nix_profiles
|
|
fi
|
|
|
|
export PATH="$NIX_LINK/bin:@localstatedir@/nix/profiles/default/bin:$PATH"
|
|
unset NIX_LINK
|