Procházet zdrojové kódy

Another attempt at rocketchat using snap

Bob Mottram před 7 roky
rodič
revize
399c705f17
1 změnil soubory, kde provedl 357 přidání a 0 odebrání
  1. 357
    0
      src/freedombone-app-rocketchat

+ 357
- 0
src/freedombone-app-rocketchat Zobrazit soubor

@@ -0,0 +1,357 @@
1
+#!/bin/bash
2
+#
3
+#  _____               _           _
4
+# |   __|___ ___ ___ _| |___ _____| |_ ___ ___ ___
5
+# |   __|  _| -_| -_| . | . |     | . | . |   | -_|
6
+# |__|  |_| |___|___|___|___|_|_|_|___|___|_|_|___|
7
+#
8
+#                              Freedom in the Cloud
9
+#
10
+# License
11
+# =======
12
+#
13
+# Copyright (C) 2018 Bob Mottram <bob@freedombone.net>
14
+#
15
+# This program is free software: you can redistribute it and/or modify
16
+# it under the terms of the GNU Affero General Public License as published by
17
+# the Free Software Foundation, either version 3 of the License, or
18
+# (at your option) any later version.
19
+#
20
+# This program is distributed in the hope that it will be useful,
21
+# but WITHOUT ANY WARRANTY; without even the implied warranty of
22
+# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
23
+# GNU Affero General Public License for more details.
24
+#
25
+# You should have received a copy of the GNU Affero General Public License
26
+# along with this program.  If not, see <http://www.gnu.org/licenses/>.
27
+
28
+VARIANTS='full full-vim'
29
+
30
+IN_DEFAULT_INSTALL=0
31
+SHOW_ON_ABOUT=1
32
+
33
+ROCKETCHAT_DOMAIN_NAME=
34
+ROCKETCHAT_CODE=
35
+ROCKETCHAT_ONION_PORT=9722
36
+ROCKETCHAT_PORT_INTERNAL=1233
37
+
38
+rocketchat_variables=(ONION_ONLY
39
+                      ROCKETCHAT_DOMAIN_NAME
40
+                      ROCKETCHAT_CODE
41
+                      DDNS_PROVIDER
42
+                      MY_USERNAME)
43
+
44
+function logging_on_rocketchat {
45
+    echo -n ''
46
+}
47
+
48
+function logging_off_rocketchat {
49
+    echo -n ''
50
+}
51
+
52
+function remove_user_rocketchat {
53
+    remove_username="$1"
54
+
55
+    "${PROJECT_NAME}-pass" -u "$remove_username" --rmapp rocketchat
56
+}
57
+
58
+function add_user_rocketchat {
59
+    new_username="$1"
60
+    new_user_password="$2"
61
+
62
+    "${PROJECT_NAME}-pass" -u "$new_username" -a rocketchat -p "$new_user_password"
63
+    echo '0'
64
+}
65
+
66
+function install_interactive_rocketchat {
67
+    if [ ! "$ONION_ONLY" ]; then
68
+        ONION_ONLY='no'
69
+    fi
70
+
71
+    if [[ "$ONION_ONLY" != "no" ]]; then
72
+        ROCKETCHAT_DOMAIN_NAME='rocketchat.local'
73
+        write_config_param "ROCKETCHAT_DOMAIN_NAME" "$ROCKETCHAT_DOMAIN_NAME"
74
+    else
75
+        interactive_site_details "rocketchat" "ROCKETCHAT_DOMAIN_NAME" "ROCKETCHAT_CODE"
76
+    fi
77
+    APP_INSTALLED=1
78
+}
79
+
80
+function change_password_rocketchat {
81
+    curr_username="$1"
82
+    new_user_password="$2"
83
+
84
+    read_config_param 'ROCKETCHAT_DOMAIN_NAME'
85
+
86
+    "${PROJECT_NAME}-pass" -u "$curr_username" -a rocketchat -p "$new_user_password"
87
+}
88
+
89
+function reconfigure_rocketchat {
90
+    # This is used if you need to switch identity. Dump old keys and generate new ones
91
+    echo -n ''
92
+}
93
+
94
+function configure_interactive_rocketchat {
95
+    W=(1 $"Option 1"
96
+       2 $"Option 2")
97
+
98
+    while true
99
+    do
100
+        # shellcheck disable=SC2068
101
+        selection=$(dialog --backtitle $"Freedombone Administrator Control Panel" --title $"rocketchat" --menu $"Choose an operation, or ESC for main menu:" 14 70 3 "${W[@]}" 3>&2 2>&1 1>&3)
102
+
103
+        if [ ! "$selection" ]; then
104
+            break
105
+        fi
106
+        case $selection in
107
+            1) # call some function for option 1
108
+            ;;
109
+            2) # call some function for option 2
110
+            ;;
111
+        esac
112
+    done
113
+}
114
+
115
+function upgrade_rocketchat {
116
+    echo -n ''
117
+}
118
+
119
+function backup_local_rocketchat {
120
+    ROCKETCHAT_DOMAIN_NAME='rocketchat'
121
+    if grep -q "rocketchat domain" "$COMPLETION_FILE"; then
122
+        ROCKETCHAT_DOMAIN_NAME=$(get_completion_param "rocketchat domain")
123
+    fi
124
+
125
+    source_directory=/var/snap/rocketchat-server
126
+
127
+    suspend_site "${ROCKETCHAT_DOMAIN_NAME}"
128
+
129
+    systemctl stop rocketchat
130
+
131
+    dest_directory=rocketchat
132
+    backup_directory_to_usb "$source_directory" $dest_directory
133
+
134
+    restart_site
135
+    systemctl start rocketchat
136
+}
137
+
138
+function restore_local_rocketchat {
139
+    if ! grep -q "rocketchat domain" "$COMPLETION_FILE"; then
140
+        return
141
+    fi
142
+    ROCKETCHAT_DOMAIN_NAME=$(get_completion_param "rocketchat domain")
143
+    if [ ! "$ROCKETCHAT_DOMAIN_NAME" ]; then
144
+        return
145
+    fi
146
+    suspend_site "${ROCKETCHAT_DOMAIN_NAME}"
147
+    systemctl stop rocketchat
148
+
149
+    temp_restore_dir=/root/temprocketchat
150
+    rocketchat_dir=/var/snap/rocketchat-server
151
+
152
+    restore_directory_from_usb $temp_restore_dir rocketchat
153
+    if [ -d $temp_restore_dir ]; then
154
+        if [ -d "$temp_restore_dir$rocketchat_dir" ]; then
155
+            cp -rp "$temp_restore_dir$rocketchat_dir"/* "$rocketchat_dir"/
156
+        else
157
+            if [ ! -d "$rocketchat_dir" ]; then
158
+                mkdir "$rocketchat_dir"
159
+            fi
160
+            cp -rp "$temp_restore_dir"/* "$rocketchat_dir"/
161
+        fi
162
+        rm -rf $temp_restore_dir
163
+    fi
164
+    systemctl start rocketchat
165
+
166
+    restart_site
167
+}
168
+
169
+function backup_remote_rocketchat {
170
+    ROCKETCHAT_DOMAIN_NAME='rocketchat'
171
+    if grep -q "rocketchat domain" "$COMPLETION_FILE"; then
172
+        ROCKETCHAT_DOMAIN_NAME=$(get_completion_param "rocketchat domain")
173
+    fi
174
+
175
+    source_directory=/var/snap/rocketchat-server
176
+
177
+    suspend_site "${ROCKETCHAT_DOMAIN_NAME}"
178
+    systemctl stop rocketchat
179
+
180
+    dest_directory=rocketchat
181
+    backup_directory_to_friend "$source_directory" $dest_directory
182
+
183
+    systemctl start rocketchat
184
+
185
+    restart_site
186
+}
187
+
188
+function restore_remote_rocketchat {
189
+    if ! grep -q "rocketchat domain" "$COMPLETION_FILE"; then
190
+        return
191
+    fi
192
+    ROCKETCHAT_DOMAIN_NAME=$(get_completion_param "rocketchat domain")
193
+    if [ ! "$ROCKETCHAT_DOMAIN_NAME" ]; then
194
+        return
195
+    fi
196
+    suspend_site "${ROCKETCHAT_DOMAIN_NAME}"
197
+    systemctl stop rocketchat
198
+
199
+    temp_restore_dir=/root/temprocketchat
200
+    rocketchat_dir=/var/snap/rocketchat-server
201
+
202
+    restore_directory_from_friend $temp_restore_dir rocketchat
203
+    if [ -d $temp_restore_dir ]; then
204
+        if [ -d "$temp_restore_dir$rocketchat_dir" ]; then
205
+            cp -rp "$temp_restore_dir$rocketchat_dir"/* "$rocketchat_dir"/
206
+        else
207
+            if [ ! -d "$rocketchat_dir" ]; then
208
+                mkdir "$rocketchat_dir"
209
+            fi
210
+            cp -rp $temp_restore_dir/* "$rocketchat_dir"/
211
+        fi
212
+        rm -rf $temp_restore_dir
213
+    fi
214
+    systemctl start rocketchat
215
+
216
+    restart_site
217
+}
218
+
219
+function remove_rocketchat {
220
+    nginx_dissite "$ROCKETCHAT_DOMAIN_NAME"
221
+    remove_certs "$ROCKETCHAT_DOMAIN_NAME"
222
+
223
+    remove_nodejs rocketchat
224
+
225
+    if [ -d "/var/www/$ROCKETCHAT_DOMAIN_NAME" ]; then
226
+        rm -rf "/var/www/$ROCKETCHAT_DOMAIN_NAME"
227
+    fi
228
+    if [ -f "/etc/nginx/sites-available/$ROCKETCHAT_DOMAIN_NAME" ]; then
229
+        rm "/etc/nginx/sites-available/$ROCKETCHAT_DOMAIN_NAME"
230
+    fi
231
+    remove_onion_service rocketchat "${ROCKETCHAT_ONION_PORT}"
232
+    if grep -q "rocketchat" /etc/crontab; then
233
+        sed -i "/rocketchat/d" /etc/crontab
234
+    fi
235
+    remove_app rocketchat
236
+    remove_completion_param install_rocketchat
237
+    sed -i '/rocketchat/d' "$COMPLETION_FILE"
238
+
239
+    remove_ddns_domain "$ROCKETCHAT_DOMAIN_NAME"
240
+
241
+    snap remove rocketchat-server
242
+}
243
+
244
+function install_rocketchat {
245
+    apt-get -qy install snapd
246
+    snap install rocketchat-server
247
+
248
+    install_nodejs rocketchat
249
+    if [ ! "$ROCKETCHAT_DOMAIN_NAME" ]; then
250
+        echo $'No domain name was given'
251
+        exit 3568356
252
+    fi
253
+
254
+    if [ -d "/var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs" ]; then
255
+        rm -rf "/var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs"
256
+    fi
257
+    mkdir -p "/var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs"
258
+
259
+    chmod g+w "/var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs"
260
+    chown -R www-data:www-data "/var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs"
261
+
262
+    add_ddns_domain "$ROCKETCHAT_DOMAIN_NAME"
263
+
264
+    ROCKETCHAT_ONION_HOSTNAME=$(add_onion_service rocketchat 80 "${ROCKETCHAT_ONION_PORT}")
265
+
266
+    rocketchat_nginx_site=/etc/nginx/sites-available/$ROCKETCHAT_DOMAIN_NAME
267
+    if [[ "$ONION_ONLY" == "no" ]]; then
268
+        nginx_http_redirect "$ROCKETCHAT_DOMAIN_NAME" "index index.html"
269
+        { echo 'server {';
270
+          echo '  listen 443 ssl;';
271
+          echo '  #listen [::]:443 ssl;';
272
+          echo "  server_name $ROCKETCHAT_DOMAIN_NAME;";
273
+          echo ''; } >> "$rocketchat_nginx_site"
274
+        nginx_compress "$ROCKETCHAT_DOMAIN_NAME"
275
+        echo '' >> "$rocketchat_nginx_site"
276
+        echo '  # Security' >> "$rocketchat_nginx_site"
277
+        nginx_ssl "$ROCKETCHAT_DOMAIN_NAME"
278
+
279
+        nginx_security_options "$ROCKETCHAT_DOMAIN_NAME"
280
+
281
+        { echo '  add_header Strict-Transport-Security max-age=15768000;';
282
+          echo '';
283
+          echo '  # Logs';
284
+          echo '  access_log /dev/null;';
285
+          echo '  error_log /dev/null;';
286
+          echo '';
287
+          echo '  # Root';
288
+          echo "  root /var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs;";
289
+          echo '';
290
+          echo '  index index.html;';
291
+          echo '  # Location';
292
+          echo '  location / {'; } >> "$rocketchat_nginx_site"
293
+        nginx_limits "$ROCKETCHAT_DOMAIN_NAME" '15m'
294
+        { echo "    proxy_pass http://localhost:$ROCKETCHAT_PORT_INTERNAL;";
295
+          echo '    proxy_http_version 1.1;';
296
+          echo "    proxy_set_header Upgrade \$http_upgrade;";
297
+          echo "    proxy_set_header Connection \"upgrade\";"
298
+          echo "    proxy_set_header Host \$http_host;"
299
+          echo '';
300
+          echo "    proxy_set_header X-Real-IP \$remote_addr;";
301
+          echo "    proxy_set_header X-Forward-For \$proxy_add_x_forwarded_for;";
302
+          echo '    proxy_set_header X-Forward-Proto http;';
303
+          echo '    proxy_set_header X-Nginx-Proxy true;';
304
+          echo '';
305
+          echo '    proxy_redirect off;';
306
+          echo '  }';
307
+          echo '}'; } >> "$rocketchat_nginx_site"
308
+    else
309
+        echo -n '' > "$rocketchat_nginx_site"
310
+    fi
311
+    { echo 'server {';
312
+      echo "    listen 127.0.0.1:$ROCKETCHAT_ONION_PORT default_server;";
313
+      echo "    server_name $ROCKETCHAT_ONION_HOSTNAME;";
314
+      echo ''; } >> "$rocketchat_nginx_site"
315
+    nginx_compress "$ROCKETCHAT_DOMAIN_NAME"
316
+    echo '' >> "$rocketchat_nginx_site"
317
+    nginx_security_options "$ROCKETCHAT_DOMAIN_NAME"
318
+    { echo '';
319
+      echo '  # Logs';
320
+      echo '  access_log /dev/null;';
321
+      echo '  error_log /dev/null;';
322
+      echo '';
323
+      echo '  # Root';
324
+      echo "  root /var/www/$ROCKETCHAT_DOMAIN_NAME/htdocs;";
325
+      echo '';
326
+      echo '  index index.html;';
327
+      echo '  # Location';
328
+      echo '  location / {'; } >> "$rocketchat_nginx_site"
329
+    nginx_limits "$ROCKETCHAT_DOMAIN_NAME" '15m'
330
+    { echo "    proxy_pass http://localhost:$ROCKETCHAT_PORT_INTERNAL;";
331
+      echo '    proxy_http_version 1.1;';
332
+      echo "    proxy_set_header Upgrade \$http_upgrade;";
333
+      echo "    proxy_set_header Connection \"upgrade\";"
334
+      echo "    proxy_set_header Host \$http_host;"
335
+      echo '';
336
+      echo "    proxy_set_header X-Real-IP \$remote_addr;";
337
+      echo "    proxy_set_header X-Forward-For \$proxy_add_x_forwarded_for;";
338
+      echo '    proxy_set_header X-Forward-Proto http;';
339
+      echo '    proxy_set_header X-Nginx-Proxy true;';
340
+      echo '';
341
+      echo '    proxy_redirect off;';
342
+      echo '  }';
343
+      echo '}'; } >> "$rocketchat_nginx_site"
344
+
345
+    create_site_certificate "$ROCKETCHAT_DOMAIN_NAME" 'yes'
346
+
347
+    nginx_ensite "$ROCKETCHAT_DOMAIN_NAME"
348
+
349
+    systemctl restart nginx
350
+
351
+    "${PROJECT_NAME}-pass" -u "$MY_USERNAME" -a rocketchat -p "$ROCKETCHAT_ADMIN_PASSWORD"
352
+    set_completion_param "rocketchat domain" "$ROCKETCHAT_DOMAIN_NAME"
353
+
354
+    APP_INSTALLED=1
355
+}
356
+
357
+# NOTE: deliberately there is no "exit 0"