nixpkgs/pkgs/os-specific/linux/sysdig/default.nix

Ignoring revisions in .git-blame-ignore-revs. Click here to bypass and see the normal blame view.

116 lines
3.6 KiB
Nix
Raw Normal View History

2021-12-16 11:32:14 +00:00
{ lib, stdenv, fetchFromGitHub, fetchpatch, cmake, kernel, installShellFiles, pkg-config
, luajit, ncurses, perl, jsoncpp, libb64, openssl, curl, jq, gcc, elfutils, tbb, protobuf, grpc
2022-05-14 04:58:07 +00:00
, libyamlcpp, nlohmann_json
}:
2021-01-15 14:45:37 +00:00
with lib;
2021-12-16 11:32:14 +00:00
let
# Compare with https://github.com/draios/sysdig/blob/dev/cmake/modules/falcosecurity-libs.cmake
2022-05-14 04:58:07 +00:00
libsRev = "e5c53d648f3c4694385bbe488e7d47eaa36c229a";
libsSha256 = "sha256-pG10y5PpDqaF/cq8oAvax5B/ls2UTRQd7tCfBjWVf0U=";
# Compare with https://github.com/falcosecurity/libs/blob/master/cmake/modules/valijson.cmake#L17
valijson = fetchFromGitHub {
owner = "tristanpenman";
repo = "valijson";
rev = "v0.6";
sha256 = "sha256-ZD19Q2MxMQd3yEKbY90GFCrerie5/jzgO8do4JQDoKM=";
};
2021-12-16 11:32:14 +00:00
in
stdenv.mkDerivation rec {
pname = "sysdig";
2022-05-14 04:58:07 +00:00
version = "0.29.3";
2017-05-08 17:59:39 +00:00
src = fetchFromGitHub {
owner = "draios";
repo = "sysdig";
rev = version;
2022-05-14 04:58:07 +00:00
sha256 = "sha256-dMLeroOd9CgvmgQdPfX8oBxQSyksZi/hP4vO03JhlF0=";
};
2021-12-16 11:32:14 +00:00
nativeBuildInputs = [ cmake perl installShellFiles pkg-config ];
buildInputs = [
2022-05-14 04:58:07 +00:00
luajit
ncurses
libb64
openssl
curl
jq
gcc
elfutils
tbb
protobuf
grpc
libyamlcpp
jsoncpp
nlohmann_json
] ++ optionals (kernel != null) kernel.moduleBuildDependencies;
hardeningDisable = [ "pic" ];
2021-12-16 11:32:14 +00:00
postUnpack = ''
cp -r ${fetchFromGitHub {
owner = "falcosecurity";
repo = "libs";
rev = libsRev;
sha256 = libsSha256;
}} libs
chmod -R +w libs
2022-05-14 04:58:07 +00:00
cmakeFlagsArray+=("-DFALCOSECURITY_LIBS_SOURCE_DIR=$(pwd)/libs" "-DVALIJSON_INCLUDE=${valijson}/include")
2021-12-16 11:32:14 +00:00
'';
cmakeFlags = [
2015-12-12 20:25:17 +00:00
"-DUSE_BUNDLED_DEPS=OFF"
"-DSYSDIG_VERSION=${version}"
2019-12-19 09:49:37 +00:00
"-DCREATE_TEST_TARGETS=OFF"
2014-05-12 20:08:45 +00:00
] ++ optional (kernel == null) "-DBUILD_DRIVER=OFF";
# needed since luajit-2.1.0-beta3
2019-10-30 02:23:29 +00:00
NIX_CFLAGS_COMPILE = "-DluaL_reg=luaL_Reg -DluaL_getn(L,i)=((int)lua_objlen(L,i))";
2014-05-06 20:54:41 +00:00
preConfigure = ''
2022-05-14 04:58:07 +00:00
if ! grep -q "${libsRev}" cmake/modules/falcosecurity-libs.cmake; then
echo "falcosecurity-libs checksum needs to be updated!"
exit 1
fi
2021-09-12 08:49:06 +00:00
cmakeFlagsArray+=(-DCMAKE_EXE_LINKER_FLAGS="-ltbb -lcurl -labsl_synchronization")
'' + optionalString (kernel != null) ''
2021-12-16 11:32:14 +00:00
export INSTALL_MOD_PATH="$out"
2014-05-06 20:54:41 +00:00
export KERNELDIR="${kernel.dev}/lib/modules/${kernel.modDirVersion}/build"
'';
postInstall =
''
# Fix the bash completion location
installShellCompletion --bash $out/etc/bash_completion.d/sysdig
rm $out/etc/bash_completion.d/sysdig
rmdir $out/etc/bash_completion.d
rmdir $out/etc
''
+ optionalString (kernel != null) ''
make install_driver
kernel_dev=${kernel.dev}
kernel_dev=''${kernel_dev#/nix/store/}
kernel_dev=''${kernel_dev%%-linux*dev*}
2021-12-16 11:32:14 +00:00
if test -f "$out/lib/modules/${kernel.modDirVersion}/extra/scap.ko"; then
sed -i "s#$kernel_dev#................................#g" $out/lib/modules/${kernel.modDirVersion}/extra/scap.ko
else
2021-12-16 11:32:14 +00:00
xz -d $out/lib/modules/${kernel.modDirVersion}/extra/scap.ko.xz
sed -i "s#$kernel_dev#................................#g" $out/lib/modules/${kernel.modDirVersion}/extra/scap.ko
xz $out/lib/modules/${kernel.modDirVersion}/extra/scap.ko
fi
'';
2017-05-08 17:59:39 +00:00
meta = {
description = "A tracepoint-based system tracing tool for Linux (with clients for other OSes)";
license = with licenses; [ asl20 gpl2 mit ];
maintainers = [maintainers.raskin];
2018-08-10 10:19:50 +00:00
platforms = ["x86_64-linux"] ++ platforms.darwin;
2018-12-29 23:53:59 +00:00
broken = kernel != null && versionOlder kernel.version "4.14";
homepage = "https://sysdig.com/opensource/";
2014-08-03 16:53:00 +00:00
downloadPage = "https://github.com/draios/sysdig/releases";
};
}