tis-wapt-python310-relocatable
Paquet d'installation silencieuse pour tis-wapt-python310-relocatable
3.10.20-79
- package: tis-wapt-python310-relocatable
- version: 3.10.20-79
- maintainer: sfonteneau
- locale: all
- target_os: linux
- architecture: x64
- signature_date:
- size: 58.38 Mo
package : tis-wapt-python310-relocatable
version : 3.10.20-79
architecture : x64
section : base
priority : optional
name :
categories :
maintainer : sfonteneau
description : Package for tis-wapt-python310-relocatable
depends :
conflicts :
maturity : PROD
locale : all
target_os : linux
min_wapt_version : 2.0
sources :
installed_size :
impacted_process :
description_fr : Paquet pour tis-wapt-python310-relocatable
description_pl : Pakiet dla tis-wapt-python310-relocatable
description_de : Paket für tis-wapt-python310-relocatable
description_es : Paquete para tis-wapt-python310-relocatable
description_pt : Pacote para tis-wapt-python310-relocatable
description_it : Pacchetto per tis-wapt-python310-relocatable
description_nl : Pakket voor tis-wapt-python310-relocatable
description_ru : Пакет для tis-wapt-python310-relocatable
audit_schedule :
editor :
keywords :
licence :
homepage :
package_uuid : 427b4c97-7bde-4354-aa11-9ad4c5a11352
valid_from :
valid_until :
forced_install_on :
changelog :
min_os_version :
max_os_version :
icon_sha256sum : b55b23fa81945c6cd4c2f4f114188aa9f8f3d0c3cbb9fb353b2803ffbb67b43b
signer : Tranquil IT
signer_fingerprint: 8c5127a75392be9cc9afd0dbae1222a673072c308c14d88ab246e23832e8c6bb
signature_date : 2026-06-29T18:07:58.000000
signed_attributes : package,version,architecture,section,priority,name,categories,maintainer,description,depends,conflicts,maturity,locale,target_os,min_wapt_version,sources,installed_size,impacted_process,description_fr,description_pl,description_de,description_es,description_pt,description_it,description_nl,description_ru,audit_schedule,editor,keywords,licence,homepage,package_uuid,valid_from,valid_until,forced_install_on,changelog,min_os_version,max_os_version,icon_sha256sum,signer,signer_fingerprint,signature_date,signed_attributes
signature : RjvlOtn45DhArHqWbnjTn9HPGucyPUOo6QxpU8TGxqvwtIZt/BUqSY+7RcTQfpyG9RWUHalEvzrvGoaj5UFdQcI+faGHjuHyy3WHV4srbB3EmLmi39JPUtLnFnnhlrUQjuytUa3mAcCbMOf8KXlrqsC1ysRccxfrlzV62AGCsx0yrnmo31ItcW8VhOJVJJcYMr0WMZPMvPPuVxPlCNfSq4RDcsuZAHDu5pv9N28Dv600YhPg+3eBKscXDF3RS7VbBIanT9xUsQLOEW8gqJhTP1tQDpIbnJ/c4qWZO4a/mfNMidXOQnB2tyTR40OCnsOn+lnWL+2ERHk1Z9p5/FumVg==
# -*- coding: utf-8 -*-
from setuphelpers import *
import glob
import tarfile
def install():
mkdirs('/opt/wapt/')
f= glob.glob('*.tar.gz')[0]
python_version = control.get_software_version()
with tarfile.open(f, 'r:gz') as tar:
tar.extractall(path='/opt/wapt')
# run('cd /opt/wapt/ ; tar -xzf %s' % makepath(basedir,f))
def audit():
python_version = run('/opt/wapt/bin/python3 -V').split(' ')[1].strip()
if Version(python_version) != control.get_software_version():
print('version install : %s' % python_version)
return "ERROR"
else:
return "OK"
# -*- coding: utf-8 -*-
from setupdevhelpers import *
from waptutils import CustomZipFile
from waptutils import create_recursive_zip
import distro
import platform
import tarfile
import json
import subprocess
import datetime
import sys
sys.path.append('.')
from get_cots import download_cots, get_cots_version, get_cots_filename
python_name_file = str(platform.system().lower() + '_' + platform.machine().lower() + '_' .strip('_'))
download_directory = r'c:\tranquilit'
def update_package():
if platform.system() =='Linux':
update_package_linux()
return
elif platform.system() =='Windows':
update_package_windows()
return
elif platform.system() == 'Darwin':
update_package_macos()
else:
print('non supported os')
raise()
def update_package_linux():
#Download and extract python source
python_version_from_control = control.version.split('-')[0]
python_version_from_sbom = get_cots_version('Python')
if python_version_from_control !=python_version_from_sbom:
raise Exception('Different version in sbom and in control file, please check')
python_version = python_version_from_sbom
unix_python_dir='/opt/wapt'
print("[UTC %s] start building chroot env" % datetime.datetime.utcnow())
if type_debian():
subprocess.run('bash step1_prepare_debian_chroot.sh %s' % unix_python_dir, shell=True, stderr=sys.stdout, stdout=open('/root/compile_python.log','w'), check=True)
elif type_redhat():
subprocess.run('bash step1_prepare_redhat_chroot.sh %s' % unix_python_dir, shell=True, stderr=sys.stdout, stdout=open('/root/compile_python.log','w'), check=True)
print("[UTC %s] start downloading cots" % datetime.datetime.utcnow())
download_cots(download_directory=r'/root/python_build_chroot/root/')
print("[UTC %s] start compiling python" % datetime.datetime.utcnow())
filecopyto('step2_compile_python_in_chroot.sh','/root/python_build_chroot/root/')
filecopyto('fix_python_ssl_3.5.7_support.patch','/root/python_build_chroot/root/')
subprocess.run('chroot /root/python_build_chroot /bin/bash /root/step2_compile_python_in_chroot.sh %s' % unix_python_dir, shell=True, stderr=sys.stdout, stdout=open('/root/compile_python.log','a'), check=True)
print("[UTC %s] targzipping python distrib" % datetime.datetime.utcnow())
run('tar -zcf %s/python-%s.tar.gz -C /root/python_build_chroot/%s .' % (basedir, python_name_file, unix_python_dir))
if params:
commit_count = params.get("commit_count",0)
else:
val = subprocess.check_output('git rev-list --count HEAD', shell=True)
commit_count = int(val)
control.version = "%s-%s" % (Version(python_version), commit_count)
control.save_control_to_wapt()
def print_utc(message):
print("[UTC %s] %s" % (datetime.datetime.utcnow(), message))
def update_package_windows():
#Download and extract python source
python_version_from_control = control.version.split('-')[0]
python_version_from_sbom = get_cots_version('Python')
if python_version_from_control !=python_version_from_sbom:
raise Exception('Different version in sbom and in control file, please check')
python_version = python_version_from_sbom
print_utc("start building")
#remove linux specific files from include dir
remove_file('*.sh')
print_utc("start downloading cots")
download_cots(download_directory=basedir)
unzip_with_7zip(f'Python-{python_version}.tgz',f'Python-{python_version}-tar')
unzip_with_7zip(rf'Python-{python_version}-tar\Python-{python_version}.tar','.')
remove_tree(f'Python-{python_version}-tar')
remove_file(f'Python-{python_version}.tgz')
#Download and extract openssl source
openssl_version =get_cots_version('openssl')
unzip_with_7zip(rf'openssl-{openssl_version}.tar.gz',rf'openssl-{openssl_version}-tar')
unzip_with_7zip(rf'openssl-{openssl_version}-tar\openssl-{openssl_version}.tar','.')
remove_tree(rf'openssl-{openssl_version}-tar')
remove_file(rf'openssl-{openssl_version}.tar.gz')
if not isfile(r'C:\Program Files\NASM\nasm.exe'):
error(r'C:\Program Files\NASM\nasm.exe not found')
print_utc("running get_external.bat")
filecopyto('get_externals.bat',rf'Python-{python_version}\PCbuild\get_externals.bat')
run(rf'Python-{python_version}\PCbuild\get_externals.bat',timeout=5000)
data_custom = r"""## -*- mode: perl; -*-
## Personal configuration targets
my %targets = (
"VC-WIN32-rtt" => {
inherit_from => [ "VC-WIN32" ],
cflags => sub{my $v=pop; $v=~ s/\/MD/\/MT/ig; return $v},
lflags => "/nologo /release",
},
"VC-WIN64A-rtt" => {
inherit_from => [ "VC-WIN64A" ],
cflags => sub{my $v=pop; $v=~ s/\/MD/\/MT/ig; return $v},
lflags => "/nologo /release",
},
);"""
with open(rf'openssl-{openssl_version}\Configurations\60-custom.conf','w') as f:
f.write(data_custom)
add_to_system_path(r'C:\Program Files\NASM')
print_utc("compiling openssl")
run(rf'cd openssl-{openssl_version} & set path=C:\Program Files\NASM;%path% &"C:\Program Files (x86)\Microsoft Visual Studio\2019\BuildTools\VC\Auxiliary\Build\vcvars32.bat" &"C:\Strawberry\perl\bin\perl.exe" configure VC-WIN32-rtt & nmake',timeout=7200)
name_openssl_folder = glob.glob(rf'Python-{python_version}\externals\openssl-bin-*')[0].split('\\')[-1]
shutil.move(rf'Python-{python_version}\externals\{name_openssl_folder}\win32',rf'Python-{python_version}\externals\{name_openssl_folder}\win32old')
shutil.move(rf'openssl-{openssl_version}',rf'Python-{python_version}\externals\{name_openssl_folder}\win32')
filecopyto(rf'Python-{python_version}\externals\{name_openssl_folder}\win32old\include\applink.c',rf'Python-{python_version}\externals\{name_openssl_folder}\win32\include\applink.c')
with open(makepath(f'Python-{python_version}','PCbuild','openssl.props'), 'r') as f:
data=f.read()
data = data.replace(r"<_DLLSuffix>-1_1</_DLLSuffix>",r"<_DLLSuffix>-3</_DLLSuffix>")
with open(makepath(f'Python-{python_version}','PCbuild','openssl.props'), 'w') as f:
f.write(data)
#Disable VENV_REDIRECT, only for x86
for vcxproj in ['venvlauncher.vcxproj','venvwlauncher.vcxproj']:
with open(makepath(f'Python-{python_version}','PCbuild',vcxproj), 'r') as f:
data=f.read()
data = data.replace(r";VENV_REDIRECT;",r";")
with open(makepath(f'Python-{python_version}','PCbuild',vcxproj), 'w') as f:
f.write(data)
print_utc("compiling python")
run(rf'"C:\Program Files\Git\usr\bin\patch.exe" {basedir}\Python-{python_version}\Modules\_ssl.c < {basedir}\fix_python_ssl_3.5.7_support.patch')
run(rf'Python-{python_version}\PCbuild\build.bat -p Win32 -t Rebuild',timeout=5000)
run(rf'"C:\Program Files (x86)\Microsoft Visual Studio\2019\BuildTools\MSBuild\Current\Bin\msbuild.exe" "%s\Python-{python_version}\Tools\msi\make_zip.proj" /t:Build /p:OutputPath="%s"' % (basedir,basedir))
print_utc("packaging python")
name_generate = glob.glob('*.zip')[0]
os.rename(name_generate,f'Python-%s-x86.zip' % python_name_file)
remove_tree(f'Python-{python_version}')
#remove_tree(f'openssl-{openssl_version}')
remove_file('*.tar.gz')
remove_file('*.tar.xz')
remove_file('*.tar.bz2')
commit_count = params.get("commit_count",0)
control.version = "%s-%s" % (Version(python_version), commit_count)
control.save_control_to_wapt()
def update_package_macos():
#Download and extract python source
python_version_from_control = control.version.split('-')[0]
python_version_from_sbom = get_cots_version('Python')
if python_version_from_control !=python_version_from_sbom:
raise Exception('Different version in sbom and in control file, please check')
python_version = python_version_from_sbom
unix_python_dir = '/opt/python310'
print("[UTC %s] start downloading cots" % datetime.datetime.utcnow())
download_cots(download_directory=r'/var/root/')
print("[UTC %s] start compiling python" % datetime.datetime.utcnow())
filecopyto('step2_compile_python_macos.sh','/var/root/')
filecopyto('fix_python_ssl_3.5.7_support.patch','/var/root/')
filecopyto('gpatch','/var/root/')
run('chmod 755 /var/root/gpatch')
subprocess.run('/bin/bash step2_compile_python_macos.sh %s' % unix_python_dir, shell=True, stderr=sys.stdout, stdout=open('/var/root/compile_python.log','a'), check=True)
# should it be done for *.dylib also?
# should add more glob.glob for lib version evolution
for filename in glob.glob(os.path.join('opt','python311','lib') + "/**/*.so",recursive=True):
cmd = '/usr/bin/install_name_tool -rpath /opt/python311/lib/ /opt/wapt/lib/ %s' % filename
print("Updating rpath : %s " % cmd)
try:
run(cmd)
except:
print('error while changing rpath on %s ' % filename)
print(subprocess.check_output('/opt/wapt/bin/python3 %s ' % os.path.join(basedir,'fix_dylib_macos.py'),shell=True))
print("[UTC %s] targzipping python distrib" % datetime.datetime.utcnow())
run('tar -zcf %s/python-%s.tar.gz -C /opt/python310 .' % (basedir, python_name_file))
if params:
commit_count = params.get("commit_count",0)
else:
val = subprocess.check_output('git rev-list --count HEAD', shell=True)
commit_count = int(val)
control.version = "%s-%s" % (Version(python_version), commit_count)
control.save_control_to_wapt()
38d056ab130f7bf7c481c12636a4e9959de36561d3dfcbe54c6e3571bc0c1dc3 : WAPT/certificate.crt
180a59c4f25efb2cc384ab60d22fb747004227cd3613eb806369b33eea83afcb : WAPT/control
b55b23fa81945c6cd4c2f4f114188aa9f8f3d0c3cbb9fb353b2803ffbb67b43b : WAPT/icon.png
3abc78fd9135b020a7c610d3082bb81c496372e817fa4f53d0dca7cbb622f10c : WAPT/wapt.psproj
02518a680e8f358e65b4d4c38020564e2e4ef86123346f428920b46b16b3a723 : dnf_centos7.conf
ee28382904ece047ebc5fb04dff2b66cd0ecde370009fa7a37c4cfabe20d9a28 : fix_dylib_macos.py
1db59e9e807643d738cfaedbbea52a45cfd6545868635a4dbcbba48f06ead003 : fix_python_ssl_3.5.7_support.patch
f8b1554394dcefc950d8fc3411b0da482008abc897f98447464f4042022c18de : get_cots.py
8ef0718ef408bb3f69e98c415e65dc5d6d3eb455756df785ec8d038700b53a9a : luti.json
e07a6d2e7bfd5e3c1d09b68de3128b95cfb052c73437e7e4b77b44ad8ac660c5 : python-linux_x86_64.tar.gz
9a667fae2d8a9a4231d28e37ea0985d2bebeedcb5c21deaea0076a37d348bd11 : python_sbom.cdx.json
3b3faa17c95af406d9d5d736f4ca74ac71a4a27730d03d4a027a0640b7bdc2a6 : setup.py
4abf0f6462ad8b165dec404aaee5dc70e9a2d0179e8422539b0cde41c6c1a6b5 : step1_prepare_debian_chroot.sh
81de376778c27bf89795c9aa6dd51e506f1a75883343b6fa51f4cc58ba2fba26 : step1_prepare_redhat_chroot.sh
c3f17a58d740f67ef3662e93ac85b8f88e440bfa8fdf32e2bd18a3c2639a1780 : step2_compile_python_in_chroot.sh
4c5ecd485f7350dfd42276ea809fb580d59770993f8f1c0d4b9e95aeea29768a : step2_compile_python_macos.sh
d69f545885e9e04f098a9708df446b38f3e62668521fe587104ff9c7ea337aed : update_package.py