forked from lix-project/lix
f3dc231250
* Formalise the notion of fixed-output derivations, i.e., derivations for which a cryptographic hash of the output is known in advance. Changes to such derivations should not propagate upwards through the dependency graph. Previously this was done by specifying the hash component of the output path through the `id' attribute, but this is insecure since you can lie about it (i.e., you can specify any hash and then produce a completely different output). Now the responsibility for checking the output is moved from the builder to Nix itself. A fixed-output derivation can be created by specifying the `outputHash' and `outputHashAlgo' attributes, the latter taking values `md5', `sha1', and `sha256', and the former specifying the actual hash in hexadecimal or in base-32 (auto-detected by looking at the length of the attribute value). MD5 is included for compatibility but should be considered deprecated. * Removed the `drvPath' pseudo-attribute in derivation results. It's no longer necessary. * Cleaned up the support for multiple output paths in derivation store expressions. Each output now has a unique identifier (e.g., `out', `devel', `docs'). Previously there was no way to tell output paths apart at the store expression level. * `nix-hash' now has a flag `--base32' to specify that the hash should be printed in base-32 notation. * `fetchurl' accepts parameters `sha256' and `sha1' in addition to `md5'. * `nix-prefetch-url' now prints out a SHA-1 hash in base-32. (TODO: a flag to specify the hash.)
74 lines
1.4 KiB
C++
74 lines
1.4 KiB
C++
#ifndef __STOREEXPR_H
|
|
#define __STOREEXPR_H
|
|
|
|
#include "aterm.hh"
|
|
#include "store.hh"
|
|
|
|
|
|
/* Abstract syntax of store expressions. */
|
|
|
|
struct ClosureElem
|
|
{
|
|
PathSet refs;
|
|
};
|
|
|
|
typedef map<Path, ClosureElem> ClosureElems;
|
|
|
|
struct Closure
|
|
{
|
|
PathSet roots;
|
|
ClosureElems elems;
|
|
};
|
|
|
|
|
|
struct DerivationOutput
|
|
{
|
|
Path path;
|
|
string hashAlgo; /* hash used for expected hash computation */
|
|
string hash; /* expected hash, may be null */
|
|
DerivationOutput()
|
|
{
|
|
}
|
|
DerivationOutput(Path path, string hashAlgo, string hash)
|
|
{
|
|
this->path = path;
|
|
this->hashAlgo = hashAlgo;
|
|
this->hash = hash;
|
|
}
|
|
};
|
|
|
|
typedef map<string, DerivationOutput> DerivationOutputs;
|
|
typedef map<string, string> StringPairs;
|
|
|
|
struct Derivation
|
|
{
|
|
DerivationOutputs outputs; /* keyed on symbolic IDs */
|
|
PathSet inputs; /* store expressions, not actual inputs */
|
|
string platform;
|
|
Path builder;
|
|
Strings args;
|
|
StringPairs env;
|
|
};
|
|
|
|
struct StoreExpr
|
|
{
|
|
enum { neClosure, neDerivation } type;
|
|
Closure closure;
|
|
Derivation derivation;
|
|
};
|
|
|
|
|
|
/* Hash an aterm. */
|
|
Hash hashTerm(ATerm t);
|
|
|
|
/* Write an aterm to the Nix store directory, and return its path. */
|
|
Path writeTerm(ATerm t, const string & suffix);
|
|
|
|
/* Parse a store expression. */
|
|
StoreExpr parseStoreExpr(ATerm t);
|
|
|
|
/* Parse a store expression. */
|
|
ATerm unparseStoreExpr(const StoreExpr & ne);
|
|
|
|
|
|
#endif /* !__STOREEXPR_H */
|