freedombone-image-mesh 58KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517
  1. #!/bin/bash
  2. #
  3. # .---. . .
  4. # | | |
  5. # |--- .--. .-. .-. .-.| .-. .--.--. |.-. .-. .--. .-.
  6. # | | (.-' (.-' ( | ( )| | | | )( )| | (.-'
  7. # ' ' --' --' -' - -' ' ' -' -' -' ' - --'
  8. #
  9. # Freedom in the Cloud
  10. #
  11. # This command is run on initial install in order to set up a mesh router
  12. #
  13. # License
  14. # =======
  15. #
  16. # This program is free software: you can redistribute it and/or modify
  17. # it under the terms of the GNU Affero General Public License as published by
  18. # the Free Software Foundation, either version 3 of the License, or
  19. # (at your option) any later version.
  20. #
  21. # This program is distributed in the hope that it will be useful,
  22. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  23. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  24. # GNU Affero General Public License for more details.
  25. #
  26. # You should have received a copy of the GNU Affero General Public License
  27. # along with this program. If not, see <http://www.gnu.org/licenses/>.
  28. PROJECT_NAME='freedombone'
  29. export TEXTDOMAIN=${PROJECT_NAME}-image-mesh
  30. export TEXTDOMAINDIR="/usr/share/locale"
  31. # The browser application to use
  32. BROWSER=firefox
  33. BROWSER_OPTIONS='-private -url'
  34. MY_USERNAME='fbone'
  35. PEER_ID=
  36. INSTALL_DIR=/root/build
  37. INSTALL_LOG=/var/log/${PROJECT_NAME}.log
  38. DEFAULT_USERNAME=fbone
  39. TOX_NODES=
  40. #TOX_NODES=(
  41. # '192.254.75.102,2607:5600:284::2,33445,951C88B7E75C867418ACDB5D273821372BB5BD652740BCDF623A4FA293E75D2F,Tox RELENG,US'
  42. # '144.76.60.215,2a01:4f8:191:64d6::1,33445,04119E835DF3E78BACF0F84235B300546AF8B936F035185E2A8E9E0A67C8924F,sonOfRa,DE'
  43. #)
  44. MESH_INSTALL_DIR=/var/lib
  45. MESH_INSTALL_COMPLETED=/root/.mesh_setup_completed
  46. MESH_INSTALL_SETUP=/root/.initial_mesh_setup
  47. MESH_AMNESIC=/root/.amnesic
  48. FIRST_BOOT=/home/$MY_USERNAME/.first_boot
  49. # Tomb containing logs
  50. TOMB_LOG_SIZE_MB=10
  51. # tmp directory
  52. TOMB_TMP_SIZE_MB=10
  53. # size of the tomb used to store qtox settings
  54. TOMB_TOX_SIZE_MB=10
  55. # Tomb containing tox bootstrap
  56. TOMB_TOX_BOOTSTRAP_SIZE_MB=10
  57. MESH_INSTALL_DIR=/var/lib
  58. IPFS_PORT=4001
  59. CURRENT_BLOG_INDEX=/home/$MY_USERNAME/.blog-index
  60. OPENVPN_SERVER_NAME="server"
  61. OPENVPN_KEY_FILENAME='client.ovpn'
  62. VPN_COUNTRY_CODE="US"
  63. VPN_AREA="Apparent Free Speech Zone"
  64. VPN_LOCATION="Freedomville"
  65. VPN_ORGANISATION="Freedombone"
  66. VPN_UNIT="Freedombone Unit"
  67. STUNNEL_PORT=3439
  68. VPN_TLS_PORT=553
  69. VPN_MESH_TLS_PORT=653
  70. SCUTTLEBOT_PORT=8010
  71. CRYPTPAD_PORT=9003
  72. CRYPTPAD_DIR=/etc/cryptpad
  73. PEERTUBE_DIR=/etc/peertube
  74. function run_system_query_postgresql {
  75. query=$1
  76. cd /etc/postgresql || exit 2648246824
  77. sudo -u postgres psql -c "$query"
  78. }
  79. function create_password {
  80. openssl rand -base64 32 | tr -dc A-Za-z0-9 | head -c "${1}" ; echo -n ''
  81. }
  82. function enable_peertube {
  83. if [ ! -d $PEERTUBE_DIR ]; then
  84. return
  85. fi
  86. PEERTUBE_ADMIN_PASSWORD="$(create_password 10)"
  87. if [ -d $PEERTUBE_DIR/videos ]; then
  88. rm -rf $PEERTUBE_DIR/videos/*
  89. fi
  90. if [ -d $PEERTUBE_DIR/thumbnails ]; then
  91. rm -rf $PEERTUBE_DIR/thumbnails/*
  92. fi
  93. systemctl restart postgresql
  94. run_system_query_postgresql "DROP DATABASE peertube;"
  95. run_system_query_postgresql "CREATE USER peertube WITH PASSWORD '$PEERTUBE_ADMIN_PASSWORD';"
  96. run_system_query_postgresql "CREATE DATABASE peertube OWNER peertube;"
  97. run_system_query_postgresql "GRANT ALL PRIVILEGES ON DATABASE peertube to peertube;"
  98. run_system_query_postgresql "set statement_timeout to 40000;"
  99. peertube_config_file=$PEERTUBE_DIR/config/production.yaml
  100. sed -i "s|hostname:.*|hostname: 'P$PEER_ID.local'|g" $peertube_config_file
  101. sed -i "s|password:.*|password: '$PEERTUBE_ADMIN_PASSWORD'|g" $peertube_config_file
  102. peertube_nginx_file=/etc/nginx/sites-available/peertube
  103. sed -i "s|server_name.*|server_name P$PEER_ID.local;|g" $peertube_nginx_file
  104. chown -R peertube:peertube $PEERTUBE_DIR
  105. # Set up the web server
  106. ln -s /etc/nginx/sites-available/peertube /etc/nginx/sites-enabled/peertube
  107. if [ -f /etc/nginx/sites-enabled/default ]; then
  108. rm /etc/nginx/sites-enabled/default
  109. fi
  110. systemctl enable peertube
  111. systemctl daemon-reload
  112. systemctl start peertube
  113. }
  114. function enable_cryptpad {
  115. if [ ! -d $CRYPTPAD_DIR ]; then
  116. return
  117. fi
  118. # Set up the web server
  119. ln -s /etc/nginx/sites-available/cryptpad /etc/nginx/sites-enabled/cryptpad
  120. if [ -f /etc/nginx/sites-enabled/default ]; then
  121. rm /etc/nginx/sites-enabled/default
  122. fi
  123. if [ ! -d $CRYPTPAD_DIR/customize/api ]; then
  124. mkdir -p $CRYPTPAD_DIR/customize/api
  125. fi
  126. if [ -f $CRYPTPAD_DIR/config.js ]; then
  127. sed -i "s|myDomain:.*|myDomain: 'http://P${PEER_ID}.local',|g" $CRYPTPAD_DIR/config.js
  128. fi
  129. wget 127.0.0.1:$CRYPTPAD_PORT/api/config -O $CRYPTPAD_DIR/customize/api/config
  130. if [ ! -f $CRYPTPAD_DIR/customize/api/config ]; then
  131. echo $'Unable to wget api/config'
  132. exit 89252
  133. fi
  134. chown -R cryptpad:cryptpad $CRYPTPAD_DIR
  135. }
  136. # Debian stretch has a problem where the formerly predictable wlan0 and eth0
  137. # device names get assigned random names. This is a hacky workaround.
  138. # Also adding net.ifnames=0 to kernel options on bootloader may work.
  139. function enable_predictable_device_names {
  140. ln -s /dev/null /etc/udev/rules.d/80-net-setup-link.rules
  141. update-initramfs -u
  142. }
  143. function create_avahi_mesh_service {
  144. service_name=$1
  145. service_type=$2
  146. service_protocol=$3
  147. service_port=$4
  148. service_description="$5"
  149. if [ ! -d /etc/avahi ]; then
  150. echo $'create_avahi_mesh_service: avahi was not installed'
  151. exit 52925
  152. fi
  153. { echo '<?xml version="1.0" standalone="no"?><!--*-nxml-*-->';
  154. echo '<!DOCTYPE service-group SYSTEM "avahi-service.dtd">';
  155. echo '<service-group>';
  156. echo " <name replace-wildcards=\"yes\">%h ${service_type}</name>";
  157. echo ' <service>';
  158. echo " <type>_${service_type}._${service_protocol}</type>";
  159. echo " <port>${service_port}</port>";
  160. echo " <txt-record>$service_description</txt-record>";
  161. echo ' </service>';
  162. echo '</service-group>'; } > "/etc/avahi/services/${service_name}.service"
  163. }
  164. function create_ram_disk {
  165. ramdisk_size_mb=$1
  166. if [ ! -d /mnt/ramdisk ]; then
  167. mkdir -p /mnt/ramdisk
  168. fi
  169. if ! grep -q "ramdisk" /etc/fstab; then
  170. mount -t tmpfs -o size="${ramdisk_size_mb}m" tmpfs /mnt/ramdisk
  171. echo "tmpfs /mnt/ramdisk tmpfs nodev,nosuid,noexec,nodiratime,size=${ramdisk_size_mb}M 0 0" >> /etc/fstab
  172. echo $"${ramdisk_size_mb}M ramdisk created for /tmp" >> $INSTALL_LOG
  173. fi
  174. }
  175. function make_root_read_only {
  176. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  177. if ! grep -q 'ro,subvol=@' /etc/fstab; then
  178. sed -i 's|subvol=@|ro,subvol=@|g' /etc/fstab
  179. echo $'Root filesystem set to read only' >> $INSTALL_LOG
  180. fi
  181. fi
  182. }
  183. function tmp_ram_disk {
  184. ramdisk_size_mb=$1
  185. if [ ! -d /tmp ]; then
  186. mkdir -p /tmp
  187. fi
  188. if ! grep -q '/tmp' /etc/fstab; then
  189. mount -t tmpfs -o size="${ramdisk_size_mb}m" tmpfs /tmp
  190. echo "tmpfs /tmp tmpfs nodev,nosuid,noexec,nodiratime,size=${ramdisk_size_mb}M 0 0" >> /etc/fstab
  191. fi
  192. }
  193. function set_hostname {
  194. DEFAULT_DOMAIN_NAME="$1"
  195. echo "$DEFAULT_DOMAIN_NAME" > /etc/hostname
  196. echo "$DEFAULT_DOMAIN_NAME" > /etc/mailname
  197. hostname "$DEFAULT_DOMAIN_NAME"
  198. if grep -q "127.0.1.1" /etc/hosts; then
  199. sed -i "s/127.0.1.1.*/127.0.1.1 $DEFAULT_DOMAIN_NAME/g" /etc/hosts
  200. else
  201. echo "127.0.1.1 $DEFAULT_DOMAIN_NAME" >> /etc/hosts
  202. fi
  203. }
  204. function change_avahi_name {
  205. decarray=( 1 2 3 4 5 6 7 8 9 0 )
  206. PEER_ID=${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}
  207. sed -i "s|#host-name=.*|host-name=P$PEER_ID|g" /etc/avahi/avahi-daemon.conf
  208. sed -i "s|host-name=.*|host-name=P$PEER_ID|g" /etc/avahi/avahi-daemon.conf
  209. set_hostname "P$PEER_ID"
  210. systemctl restart avahi-daemon
  211. echo "New avahi name for this peer is P$PEER_ID"
  212. echo $"avahi name changed to P${PEER_ID}.local" >> $INSTALL_LOG
  213. }
  214. function configure_toxcore {
  215. echo $'Configuring toxcore' >> $INSTALL_LOG
  216. TOXIC_FILE=$(grep "TOXIC_FILE=" "/usr/share/${PROJECT_NAME}/apps/${PROJECT_NAME}-app-tox" | head -n 1 | awk -F '=' '{print $2}')
  217. if [ -f $MESH_AMNESIC ]; then
  218. # change to the amnesic mount
  219. sed -i 's|/var/lib/tox-bootstrapd|/media/tox-bootstrapd|g' /etc/tox-bootstrapd.conf
  220. systemctl stop tox-bootstrapd.service
  221. sed -i 's|WorkingDirectory=.*|WorkingDirectory=/media/tox-bootstrapd|g' /etc/systemd/system/tox-bootstrapd.service
  222. systemctl daemon-reload
  223. userdel -r tox-bootstrapd
  224. useradd --home-dir /media/tox-bootstrapd --create-home --system --shell /sbin/nologin --comment "Account to run Tox's DHT bootstrap daemon" --user-group tox-bootstrapd
  225. chmod 700 /media/tox-bootstrapd
  226. fi
  227. echo $'Enabling toxcore daemon' >> $INSTALL_LOG
  228. chmod +x /etc/systemd/system/tox-bootstrapd.service
  229. systemctl enable tox-bootstrapd.service
  230. echo $'Regenerating Tox bootstrap node keys' >> $INSTALL_LOG
  231. systemctl stop tox-bootstrapd.service
  232. if [ -f /var/lib/tox-bootstrapd/keys ]; then
  233. rm /var/lib/tox-bootstrapd/keys
  234. fi
  235. systemctl start tox-bootstrapd.service
  236. # sleep for a while so that the tox keys can be generated
  237. sleep 30
  238. TOX_BOOTSTRAP_ID_FILE=/var/lib/tox-bootstrapd/pubkey.txt
  239. if [ -f $MESH_AMNESIC ]; then
  240. TOX_BOOTSTRAP_ID_FILE=/media/tox-bootstrapd/pubkey.txt
  241. fi
  242. TOX_PUBLIC_KEY=$(grep tox /var/log/syslog | grep "Public Key" | awk -F ' ' '{print $8}' | tail -1)
  243. if [ ${#TOX_PUBLIC_KEY} -lt 30 ]; then
  244. echo $'WARNING: Could not obtain the tox node public key' >> $INSTALL_LOG
  245. exit 46362
  246. fi
  247. # save the public key for later reference
  248. echo "$TOX_PUBLIC_KEY" > $TOX_BOOTSTRAP_ID_FILE
  249. echo $'Configured toxcore' >> $INSTALL_LOG
  250. }
  251. function create_tox_user {
  252. # remove any existing user
  253. if [ -f /home/${MY_USERNAME}/.config/tox/data.tox ]; then
  254. rm -f /home/${MY_USERNAME}/.config/tox/data*
  255. fi
  256. if [ -d /home/${MY_USERNAME}/.config/tox/avatars ]; then
  257. rm -rf /home/${MY_USERNAME}/.config/tox/avatars
  258. fi
  259. if [ ! -f /home/${MY_USERNAME}/.first_boot ]; then
  260. touch /home/${MY_USERNAME}/.first_boot
  261. fi
  262. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  263. return
  264. fi
  265. toxid -u $MY_USERNAME -n data
  266. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config/tox
  267. chmod +x /home/$MY_USERNAME/Desktop/*.desktop
  268. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/Desktop/*
  269. echo $'Created Tox user' >> $INSTALL_LOG
  270. }
  271. function show_desktop_icons {
  272. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  273. return
  274. fi
  275. echo '#!/bin/bash' > /home/$MY_USERNAME/.showhelp
  276. echo "pkill $BROWSER" >> /home/$MY_USERNAME/.showhelp
  277. echo "$BROWSER $BROWSER_OPTIONS /home/$MY_USERNAME/help/mesh.html" >> /home/$MY_USERNAME/.showhelp
  278. chmod +x /home/$MY_USERNAME/.showhelp
  279. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/.showhelp
  280. { echo '[Desktop Entry]';
  281. echo 'Version=1.0';
  282. echo 'Name=Help';
  283. echo "Name[el]=Βοήθεια";
  284. echo "Name[ar]=مساعدة";
  285. echo "Name[ca]=Ajuda";
  286. echo "Name[hi]=मदद";
  287. echo "Name[fr]=Aidez-moi";
  288. echo "Name[de]=Hilfe";
  289. echo "Name[es]=Ayuda";
  290. echo "Name[it]=Aiuto";
  291. echo "Name[ru]=Помогите";
  292. echo "Name[zh]=帮帮我";
  293. echo 'Type=Application';
  294. echo 'Comment=Show help';
  295. echo "Comment[el]=Εμφάνιση βοήθειας";
  296. echo "Comment[ar]=عرض المساعدة";
  297. echo "Comment[ca]=Mostra ajuda";
  298. echo "Comment[hi]=मदद दिखायें";
  299. echo "Comment[fr]=Afficher l'aide";
  300. echo "Comment[de]=Zeig Hilfe";
  301. echo "Comment[es]=Mostrar ayuda";
  302. echo "Comment[it]=Mostra aiuto";
  303. echo "Comment[ru]=Показать справку";
  304. echo "Comment[zh]=显示帮助";
  305. echo "Exec=bash -c /home/$MY_USERNAME/.showhelp";
  306. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_help.png";
  307. echo 'Terminal=false';
  308. echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/help.desktop"
  309. { echo '[Desktop Entry]';
  310. echo 'Version=1.0';
  311. echo 'Name=Wifi';
  312. echo "Name[el]=Wifi";
  313. echo "Name[ar]=واي فاي";
  314. echo "Name[ca]=Wifi";
  315. echo "Name[hi]=वाई - फाई";
  316. echo "Name[fr]=Wifi";
  317. echo "Name[de]=W-lan";
  318. echo "Name[es]=Wifi";
  319. echo "Name[it]=Wi-Fi";
  320. echo "Name[ru]=вай-фай";
  321. echo "Name[zh]=无线上网";
  322. echo 'Type=Application';
  323. echo 'Comment=Check wifi status';
  324. echo "Comment[el]=Ελέγξτε την κατάσταση wifi";
  325. echo "Comment[ar]=التحقق من حالة واي فاي";
  326. echo "Comment[ca]=Comprova l'estat de wifi";
  327. echo "Comment[hi]=वाईफ़ाई स्थिति की जांच करें";
  328. echo "Comment[fr]=Vérifier l'état du wifi";
  329. echo "Comment[de]=WLAN-Status überprüfen";
  330. echo "Comment[es]=Verificar el estado del wifi";
  331. echo "Comment[it]=Controllare lo stato wifi";
  332. echo "Comment[ru]=Проверить статус wifi";
  333. echo "Comment[zh]=检查wifi状态";
  334. echo 'Exec=mate-terminal --full-screen -e "sudo batman monitor"';
  335. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_wifi.png";
  336. echo 'Terminal=false';
  337. echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/wifi.desktop"
  338. { echo '[Desktop Entry]';
  339. echo 'Version=1.0';
  340. echo 'Name=Network Restart';
  341. echo "Name[el]=Δικτυακή επανεκκίνηση";
  342. echo "Name[ar]=إعادة تشغيل الشبكة";
  343. echo "Name[ca]=Reinicia la xarxa";
  344. echo "Name[hi]=नेटवर्क पुनरारंभ करें";
  345. echo "Name[fr]=Redémarrage du réseau";
  346. echo "Name[de]=Netzwerk Neustart";
  347. echo "Name[es]=Reinicio de red";
  348. echo "Name[it]=Riavvia rete";
  349. echo "Name[ru]=Перезапуск сети";
  350. echo "Name[zh]=网络重新启动";
  351. echo 'Type=Application';
  352. echo 'Comment=Restart the mesh network daemon';
  353. echo "Comment[el]=Κάντε επανεκκίνηση του δαίμονα του δικτύου ματιών";
  354. echo "Comment[ar]=إعادة تشغيل شبكة شبكة الخفي";
  355. echo "Comment[ca]=Reinicia el dimoni de la xarxa de malla";
  356. echo "Comment[hi]=जाल नेटवर्क डेमॉन को पुनरारंभ करें";
  357. echo "Comment[fr]=Redémarrez le démon réseau maillé";
  358. echo "Comment[de]=Starten Sie den Mesh-Netzwerk-Daemon neu.";
  359. echo "Comment[es]=Reinicie el daemon de red de malla";
  360. echo "Comment[it]=Riavviare il daemon della rete mesh";
  361. echo "Comment[ru]=Перезапустить демон сетчатой сети";
  362. echo "Comment[zh]=重新启动网状网络守护程序";
  363. echo 'Exec=mate-terminal -e "sudo batman restart 2> /dev/null"';
  364. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_restart_network.png";
  365. echo 'Terminal=false';
  366. echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/restart.desktop"
  367. { echo '[Desktop Entry]';
  368. echo 'Version=1.0';
  369. echo 'Name=New Identity';
  370. echo "Name[el]=Νέα ταυτότητα";
  371. echo "Name[ar]=هوية جديدة";
  372. echo "Name[ca]=Nova identitat";
  373. echo "Name[hi]=नई पहचान";
  374. echo "Name[fr]=Nouvelle identité";
  375. echo "Name[de]=Neue Identität";
  376. echo "Name[es]=Nueva identidad";
  377. echo "Name[it]=Nuova Identità";
  378. echo "Name[ru]=Новая идентификация";
  379. echo "Name[zh]=新身份";
  380. echo 'Type=Application';
  381. echo 'Comment=Create a new identity';
  382. echo "Comment[el]=Δημιουργήστε μια νέα ταυτότητα";
  383. echo "Comment[ar]=إنشاء هوية جديدة";
  384. echo "Comment[ca]=Crea una nova identitat";
  385. echo "Comment[hi]=एक नई पहचान बनाएँ";
  386. echo "Comment[fr]=Créer une nouvelle identité";
  387. echo "Comment[de]=Erstellen Sie eine neue Identität";
  388. echo "Comment[es]=Crea una nueva identidad";
  389. echo "Comment[it]=Crea una nuova identità";
  390. echo "Comment[ru]=Создайте новое удостоверение личности";
  391. echo "Comment[zh]=创建一个新的身份";
  392. echo "Exec=${PROJECT_NAME}-mesh-reset";
  393. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_new_identity.png";
  394. echo 'Terminal=false';
  395. echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/new_identity.desktop"
  396. { echo '[Desktop Entry]';
  397. echo 'Name=Social';
  398. echo 'Name[el]=Κοινωνικός';
  399. echo 'Name[ar]=اجتماعي';
  400. echo 'Name[ca]=Social';
  401. echo 'Name[hi]=सामाजिक';
  402. echo 'Name[fr]=Social';
  403. echo 'Name[de]=Soziale';
  404. echo 'Name[es]=Social';
  405. echo 'Name[it]=Sociale';
  406. echo 'Name[ru]=Социальное';
  407. echo 'Name[zh]=社会';
  408. echo 'Type=Application';
  409. echo "Comment=A decentralized messaging and sharing app built on top of Secure Scuttlebutt";
  410. echo "Comment[el]=Μια αποκεντρωμένη εφαρμογή ανταλλαγής μηνυμάτων και κοινής χρήσης που είναι ενσωματωμένη στην κορυφή του Secure Scuttlebutt";
  411. echo "Comment[ar]=والرسائل اللامركزية وتبادل التطبيق بنيت على رأس سكوتليبوت الآمنة (سب)";
  412. echo "Comment[ca]=Una aplicació de missatgeria i distribució descentralitzada integrada a Secure Scuttlebutt";
  413. echo "Comment[hi]=सिक्योर स्कूटलबट (एसएसबी) के शीर्ष पर निर्मित एक विकेन्द्रीकृत संदेश और साझाकरण ऐप";
  414. echo "Comment[fr]=Une application de messagerie et de partage décentralisée basée sur Secure Scuttlebutt";
  415. echo "Comment[de]=Eine dezentralisierte Messaging- und Sharing-App, die auf Secure Scuttlebutt basiert";
  416. echo "Comment[es]=Una aplicación de mensajería y uso compartido descentralizada construida sobre Secure Scuttlebutt";
  417. echo "Comment[it]=Un'applicazione decentralizzata di messaggistica e condivisione costruita sulla base di Secure Shuttlebutt";
  418. echo "Comment[ru]=Децентрализованное приложение для обмена сообщениями и совместного использования, построенное на основе Secure Scuttlebutt";
  419. echo "Comment[zh]=安全Scuttlebutt之上构建的分散式消息和共享应用程序";
  420. echo 'Exec=bash /usr/bin/start_patchwork';
  421. echo "Icon=/usr/share/$PROJECT_NAME/avatars/icon_social.png";
  422. echo 'Terminal=false';
  423. echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/social.desktop"
  424. cp "/root/${PROJECT_NAME}/img/icon_kdenlive.png" "/usr/share/${PROJECT_NAME}/avatars/icon_kdenlive.png"
  425. { echo '#!/usr/bin/env xdg-open';
  426. echo '# KDE Config File';
  427. echo '';
  428. echo '[Desktop Entry]';
  429. echo 'Name=Video Editor';
  430. echo 'Name[ast]=Kdenlive';
  431. echo 'Name[bs]=Kdenlive';
  432. echo 'Name[ca]=Kdenlive';
  433. echo 'Name[ca@valencia]=Kdenlive';
  434. echo 'Name[cs]=Kdenlive';
  435. echo 'Name[da]=Kdenlive';
  436. echo 'Name[de]=Kdenlive';
  437. echo 'Name[el]=Kdenlive';
  438. echo 'Name[en_GB]=Video Editor';
  439. echo 'Name[es]=Kdenlive';
  440. echo 'Name[et]=Kdenlive';
  441. echo 'Name[fi]=Kdenlive';
  442. echo 'Name[fr]=Kdenlive';
  443. echo 'Name[ga]=Kdenlive';
  444. echo 'Name[gl]=Kdenlive';
  445. echo 'Name[hu]=Kdenlive';
  446. echo 'Name[it]=Kdenlive';
  447. echo 'Name[ja]=Kdenlive';
  448. echo 'Name[km]=Kdenlive';
  449. echo 'Name[lt]=Kdenlive';
  450. echo 'Name[lv]=Kdenlive';
  451. echo 'Name[mr]=के-डि-एनलाइव्ह';
  452. echo 'Name[nb]=Kdenlive';
  453. echo 'Name[nds]=Kdenlive';
  454. echo 'Name[nl]=Kdenlive';
  455. echo 'Name[nn]=Kdenlive';
  456. echo 'Name[pl]=Kdenlive';
  457. echo 'Name[pt]=Kdenlive';
  458. echo 'Name[pt_BR]=Kdenlive';
  459. echo 'Name[ro]=Kdenlive';
  460. echo 'Name[ru]=Kdenlive';
  461. echo 'Name[sk]=Kdenlive';
  462. echo 'Name[sl]=Kdenlive';
  463. echo 'Name[sv]=Kdenlive';
  464. echo 'Name[tr]=Kdenlive';
  465. echo 'Name[ug]=Kdenlive';
  466. echo 'Name[uk]=Kdenlive';
  467. echo 'Name[x-test]=xxKdenlivexx';
  468. echo 'Name[zh_CN]=Kdenlive';
  469. echo 'Name[zh_TW]=Kdenlive';
  470. echo 'GenericName=Video Editor';
  471. echo 'GenericName[ar]=محرّر فيديوهات';
  472. echo 'GenericName[ast]=Editor de videu';
  473. echo 'GenericName[bs]=Video uređivač';
  474. echo 'GenericName[ca]=Editor de vídeo';
  475. echo 'GenericName[ca@valencia]=Editor de vídeo';
  476. echo 'GenericName[cs]=Editor videí';
  477. echo 'GenericName[da]=Videoredigering';
  478. echo 'GenericName[de]=Video-Editor';
  479. echo 'GenericName[el]=Επεξεργαστής βίντεο';
  480. echo 'GenericName[en_GB]=Video Editor';
  481. echo 'GenericName[es]=Editor de video';
  482. echo 'GenericName[et]=Videoredaktor';
  483. echo 'GenericName[fi]=Videomuokkain';
  484. echo 'GenericName[fr]=Éditeur vidéo';
  485. echo 'GenericName[ga]=Eagarthóir Físe';
  486. echo 'GenericName[gl]=Editor de vídeo';
  487. echo 'GenericName[hu]=Videoszerkesztő';
  488. echo 'GenericName[it]=Editor video';
  489. echo 'GenericName[ja]=ビデオエディタ';
  490. echo 'GenericName[km]=កម្មវិធី​កែសម្រួល​វីដេអូ';
  491. echo 'GenericName[lt]=Video redaktorius';
  492. echo 'GenericName[lv]=Video redaktors';
  493. echo 'GenericName[mr]=व्हिडीओ संपादक';
  494. echo 'GenericName[nb]=Videoredigeringsprogram';
  495. echo 'GenericName[nl]=Video-bewerker';
  496. echo 'GenericName[nn]=Videoredigering';
  497. echo 'GenericName[pl]=Edytor wideo';
  498. echo 'GenericName[pt]=Editor de Víde';
  499. echo 'GenericName[pt_BR]=Editor de Vídeo';
  500. echo 'GenericName[ro]=Redactor de imagini';
  501. echo 'GenericName[ru]=Видеоредактор';
  502. echo 'GenericName[sk]=Editor videa';
  503. echo 'GenericName[sl]=Urejevalnik videa';
  504. echo 'GenericName[sv]=Videoeditor';
  505. echo 'GenericName[tr]=Video Düzenleyici';
  506. echo 'GenericName[uk]=Відеоредактор';
  507. echo 'GenericName[x-test]=xxVideo Editorxx';
  508. echo 'GenericName[zh_CN]=视频编辑器';
  509. echo 'GenericName[zh_TW]=影像編輯器';
  510. echo 'Comment=Nonlinear video editor for KDE';
  511. echo 'Comment[ar]=محرّر فيديوهات غير خطّيّ لكدي';
  512. echo 'Comment[ast]=Editor de videu non llinial pa KDE';
  513. echo 'Comment[bs]=Nelinearni video uređivač za KDE';
  514. echo 'Comment[ca]=Editor de vídeo no lineal per al KDE';
  515. echo 'Comment[ca@valencia]=Editor de vídeo no lineal per al KDE';
  516. echo 'Comment[cs]=Nelineární editor videí pro KDE';
  517. echo 'Comment[da]=Ikke-lineær videoredigering til KDE';
  518. echo 'Comment[de]=Nichtlinearer Video-Editor für KDE';
  519. echo 'Comment[el]=Μη γραμμικός επεξεργαστής βίντεο για το KDE';
  520. echo 'Comment[en_GB]=Nonlinear video editor for KDE';
  521. echo 'Comment[es]=Editor no lineal de video para KDE';
  522. echo 'Comment[et]=KDE mittelineaarne videoredaktor';
  523. echo 'Comment[fi]=Epälineaarinen videomuokkain KDE:lle';
  524. echo 'Comment[fr]=Éditeur vidéo non linéaire pour KDE';
  525. echo 'Comment[gl]=Editor de vídeo non linear para KDE';
  526. echo 'Comment[hu]=Nemlineáris videoszerkesztő a KDE-hez';
  527. echo 'Comment[it]=Editor di video non lineare per KDE';
  528. echo 'Comment[ja]=KDE 向けノンリニアビデオエディタ';
  529. echo 'Comment[km]=កម្មវិធី​កែសម្រួល​វីដេអូ​មិន​លីនេអ៊ែរ​សម្រាប់ KDE';
  530. echo 'Comment[lt]=Nelinijinis veido redaktorius skirtas KDE';
  531. echo 'Comment[lv]=Nelineārais video redaktors KDE videi';
  532. echo 'Comment[mr]=केडीई करिता अरेषीय व्हिडीओ संपादक';
  533. echo 'Comment[nb]=Videoredigeringsprogram for KDE med dataklipping';
  534. echo 'Comment[nl]=Niet-lineaire video-bewerker voor KDE';
  535. echo 'Comment[nn]=Program for ikkje-lineær videoredigering';
  536. echo 'Comment[pl]=Nieliniowy edytor wideo dla KDE';
  537. echo 'Comment[pt]=Editor de vídeo não-linear para o KDE';
  538. echo 'Comment[pt_BR]=Editor de vídeo não-linear para o KDE';
  539. echo 'Comment[ro]=Redactor de imagini neliniar pentru KDE';
  540. echo 'Comment[ru]=Нелинейный видеоредактор от KDE';
  541. echo 'Comment[sk]=Nelineárny editor videa pre KDE';
  542. echo 'Comment[sl]=Ne-linearni urejevalnik videa za KDE';
  543. echo 'Comment[sv]=Icke-linjär videoeditor för KDE';
  544. echo 'Comment[tr]=KDE için doğrusal olmayan video düzenleyici';
  545. echo 'Comment[ug]=KDE ئۈچۈن سىزىقسىز سىن تەھرىرلىگۈچ';
  546. echo 'Comment[uk]=Нелінійний редактор відео для KDE';
  547. echo 'Comment[x-test]=xxNonlinear video editor for KDExx';
  548. echo 'Comment[zh_CN]=KDE 的非线性视频编辑器';
  549. echo 'Comment[zh_TW]=KDE 上的非線性影像編輯器';
  550. echo 'Type=Application';
  551. echo 'Exec=kdenlive %U';
  552. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_kdenlive.png";
  553. echo 'X-DocPath=kdenlive/index.html';
  554. echo 'X-DocPath[cs]=http://cs.wikibooks.org/wiki/Kdenlive';
  555. echo 'Terminal=false';
  556. echo 'MimeType=application/x-kdenlive;';
  557. echo 'Categories=Qt;KDE;AudioVideo;AudioVideoEditing;';
  558. echo 'Keywords=editing;video;audio;mlt;kde;';
  559. echo 'Keywords[ca]=edició;vídeo;àudio;mlt;kde;';
  560. echo 'Keywords[ca@valencia]=edició;vídeo;àudio;mlt;kde;';
  561. echo 'Keywords[da]=redigering;video;lyd;mlt;kde;';
  562. echo 'Keywords[de]=Editing;Bearbeitung;Schnitt;Videoschnitt;Video;Audio;MLT;';
  563. echo 'Keywords[en_GB]=editing;video;audio;mlt;kde;';
  564. echo 'Keywords[es]=edición;video;audio;mlt;kde;';
  565. echo 'Keywords[et]=redigeerimine;muutmine;video;audio;heli;mlt;kde;';
  566. echo 'Keywords[fi]=editing;video;audio;mlt;kde;editointi;ääni;';
  567. echo 'Keywords[fr]=montage;vidéo;audio;mlt;kde;';
  568. echo 'Keywords[gl]=editing;edición;video;vídeo;audio;son;mlt;kde;';
  569. echo 'Keywords[it]=editing;video;audio;mlt;kde;';
  570. echo 'Keywords[nl]=bewerken;video;audio;mlt;kde;';
  571. echo 'Keywords[nn]=redigering;video;lyd;mlt;kde;';
  572. echo 'Keywords[pl]=edytowanie;video;wideo;filmy;audio;dźwięk;mlt;kde;';
  573. echo 'Keywords[pt]=edição;vídeo;áudio;MLT;kde;';
  574. echo 'Keywords[pt_BR]=edição;vídeo;áudio;mlt;kde;';
  575. echo 'Keywords[sk]=editovanie;video;audio;mlt;kde;';
  576. echo 'Keywords[sl]=urejanje;video;zvok;mlt;kde;';
  577. echo 'Keywords[sv]=redigering;video;ljud;mlt;kde;';
  578. echo 'Keywords[uk]=editing;video;audio;mlt;kde;редагування;відео;звук;аудіо;млт;кдє;';
  579. echo 'Keywords[x-test]=xxeditingxx;xxvideoxx;xxaudioxx;xxmltxx;xxkdexx;';
  580. echo 'Keywords[zh_CN]=editing;video;audio;mlt;kde;编辑;视频;音频;';
  581. echo 'Keywords[zh_TW]=editing;video;audio;mlt;kde;';
  582. echo 'X-DBUS-ServiceName=org.kde.kdenlive'; } > "/home/$MY_USERNAME/Desktop/kdenlive.desktop"
  583. cp "/root/${PROJECT_NAME}/img/icon_photos.png" "/usr/share/${PROJECT_NAME}/avatars/icon_photos.png"
  584. { echo '#!/usr/bin/env xdg-open';
  585. echo '[Desktop Entry]';
  586. echo 'Version=1.0';
  587. echo 'Name[ar]=شُتْ‌وِل';
  588. echo 'Name[as]=Photos';
  589. echo 'Name[bn_IN]=Shotwell';
  590. echo 'Name[bs]=Shotwell';
  591. echo 'Name[ca]=Shotwell';
  592. echo 'Name[cs]=Shotwell';
  593. echo 'Name[da]=Shotwell';
  594. echo 'Name[de]=Shotwell';
  595. echo 'Name[el]=Shotwell';
  596. echo 'Name[en_GB]=Photos';
  597. echo 'Name[es]=Shotwell';
  598. echo 'Name[et]=Shotwell';
  599. echo 'Name[eu]=Shotwell';
  600. echo 'Name[fi]=Shotwell';
  601. echo 'Name[fr]=Shotwell';
  602. echo 'Name[gd]=Shotwell';
  603. echo 'Name[gl]=Shotwell';
  604. echo 'Name[gu]=Shotwell';
  605. echo 'Name[he]=Shotwell';
  606. echo 'Name[hi]=शॉटवेल';
  607. echo 'Name[hr]=Shotwell';
  608. echo 'Name[hu]=Shotwell';
  609. echo 'Name[id]=Shotwell';
  610. echo 'Name[it]=Shotwell';
  611. echo 'Name[ja]=Shotwell';
  612. echo 'Name[kk]=Shotwell';
  613. echo 'Name[kn]=Shotwell';
  614. echo 'Name[ko]=샷웰';
  615. echo 'Name[lt]=Shotwell';
  616. echo 'Name[lv]=Shotwell';
  617. echo 'Name[ml]=ഷോട്ട്‌‌വെല്‍';
  618. echo 'Name[mr]=शॉटवेल';
  619. echo 'Name[nb]=Shotwell';
  620. echo 'Name[nl]=Shotwell';
  621. echo 'Name[oc]=Shotwell';
  622. echo 'Name[or]=Shotwell';
  623. echo 'Name[pa]=ਸ਼ੂਟਵੈੱਲ';
  624. echo 'Name[pl]=Shotwell';
  625. echo 'Name[pt]=Shotwell';
  626. echo 'Name[pt_BR]=Shotwell';
  627. echo 'Name[ro]=Shotwell';
  628. echo 'Name[ru]=Shotwell';
  629. echo 'Name[sk]=Shotwell';
  630. echo 'Name[sl]=Shotwell';
  631. echo 'Name[sr]=Фото-бунар';
  632. echo 'Name[sr@latin]=Foto-bunar';
  633. echo 'Name[sv]=Shotwell';
  634. echo 'Name[ta]=ஷாட்வெல்';
  635. echo 'Name[te]=షాట్‌వెల్';
  636. echo 'Name[tr]=Shotwell';
  637. echo 'Name[uk]=Shotwell';
  638. echo 'Name[vi]=Shotwell';
  639. echo 'Name[zh_CN]=Shotwell';
  640. echo 'Name[zh_HK]=Shotwell';
  641. echo 'Name[zh_TW]=Shotwell';
  642. echo 'Name=Photos';
  643. echo 'GenericName[af]=Foto Organiseerder';
  644. echo 'GenericName[ar]=مدير الصور';
  645. echo "GenericName[as]=ফ'টো ব্যৱস্থাপক";
  646. echo 'GenericName[ast]=Xestor de semeyes';
  647. echo 'GenericName[bg]=Мениджър на снимки';
  648. echo 'GenericName[bn]=ফটো ম্যানেজার';
  649. echo 'GenericName[bn_IN]=ছবি পরিচালন ব্যবস্থা';
  650. echo 'GenericName[bs]=Organizator Slika';
  651. echo 'GenericName[ca]=Gestor fotogràfic';
  652. echo 'GenericName[cs]=Správce fotografií';
  653. echo 'GenericName[da]=Billedhåndtering';
  654. echo 'GenericName[de]=Fotoverwaltung';
  655. echo 'GenericName[el]=Διαχειριστής εικόνων';
  656. echo 'GenericName[en_GB]=Photo Manager';
  657. echo 'GenericName[es]=Gestor de fotos';
  658. echo 'GenericName[et]=Fotohaldur';
  659. echo 'GenericName[eu]=Argazki-kudeatzailea';
  660. echo 'GenericName[fi]=Valokuvien hallinta';
  661. echo 'GenericName[fr]=Gestionnaire de photos';
  662. echo 'GenericName[gd]=Manaidsear dhealbhan';
  663. echo 'GenericName[gl]=Xestor de fotos';
  664. echo 'GenericName[gu]=ફોટો સંચાલક';
  665. echo 'GenericName[he]=מנהל תמונות';
  666. echo 'GenericName[hi]=फ़ोटो प्रबंधक';
  667. echo 'GenericName[hr]=Upravitelj fotografija';
  668. echo 'GenericName[hu]=Fényképkezelő';
  669. echo 'GenericName[ia]=Administrator de photos';
  670. echo 'GenericName[id]=Manajer Foto';
  671. echo 'GenericName[it]=Gestore di fotografie';
  672. echo 'GenericName[ja]=Shotwell 写真管理ツール';
  673. echo 'GenericName[kk]=Фотосуреттерді басқару қолданбасы';
  674. echo 'GenericName[km]=កម្ម​វិធី​គ្រប់​គ្រង​រូប​ថត';
  675. echo 'GenericName[kn]=ಫೋಟೊ ವ್ಯವಸ್ಥಾಪಕ';
  676. echo 'GenericName[ko]=사진 관리자';
  677. echo 'GenericName[ky]=Фотография менеджери';
  678. echo 'GenericName[lt]=Nuotraukų tvarkytuvė';
  679. echo 'GenericName[lv]=Fotogrāfiju pārvaldnieks';
  680. echo 'GenericName[mk]=Менаџер на фотографии';
  681. echo 'GenericName[ml]=ചിത്ര പാലകന്‍';
  682. echo 'GenericName[mr]=छायाचित्र व्यवस्थापक';
  683. echo 'GenericName[nb]=Fotobehandler';
  684. echo 'GenericName[nl]=Fotobeheerder';
  685. echo 'GenericName[oc]=Gestionari de fòtos';
  686. echo 'GenericName[or]=ଫୋଟୋ ପରିଚାଳକ';
  687. echo 'GenericName[pa]=ਫੋਟੋ ਮੈਨੇਜਰ';
  688. echo 'GenericName[pl]=Menedżer zdjęć';
  689. echo 'GenericName[pt]=Gestor de fotografias';
  690. echo 'GenericName[pt_BR]=Organizador de fotos';
  691. echo 'GenericName[ro]=Administrator de fotografii';
  692. echo 'GenericName[ru]=Менеджер фотографий';
  693. echo 'GenericName[sk]=Správca fotografií';
  694. echo 'GenericName[sl]=Upravljalnik fotografij';
  695. echo 'GenericName[sr]=Управник фотографија';
  696. echo 'GenericName[sr@latin]=Upravnik fotografija';
  697. echo 'GenericName[sv]=Bildhanterare';
  698. echo 'GenericName[ta]=புகைப்பட அடுக்கு';
  699. echo 'GenericName[te]=ఫోటో నిర్వాహకం';
  700. echo 'GenericName[th]=ตัวจัดการภาพถ่าย';
  701. echo 'GenericName[tr]=Fotoğraf Yöneticisi';
  702. echo 'GenericName[uk]=Впорядник фотографій';
  703. echo 'GenericName[vi]=Trình quản lý ảnh';
  704. echo 'GenericName[zh_CN]=照片管理器';
  705. echo 'GenericName[zh_HK]=相片管理員';
  706. echo 'GenericName[zh_TW]=相片管理員';
  707. echo 'GenericName=Photo Manager';
  708. echo 'Comment[cs]=Roztřiďte si své fotografie';
  709. echo 'Comment[da]=Organisér dine billeder';
  710. echo 'Comment[de]=Ihre Fotos organisieren';
  711. echo 'Comment[es]=Organice sus fotos';
  712. echo 'Comment[fi]=Hallitse kuviasi';
  713. echo 'Comment[gd]=Cuir rian air na dealbhan agad';
  714. echo 'Comment[he]=ארגון התמונות שלך';
  715. echo 'Comment[hr]=Organizirajte svoje fotografije';
  716. echo 'Comment[hu]=Rendszerezze a fényképeit';
  717. echo 'Comment[id]=Organisasikan foto Anda';
  718. echo 'Comment[kk]=Фотосуреттеріңізді реттеңіз';
  719. echo 'Comment[kn]=ನಿಮ್ಮ ಚಿತ್ರಗಳನ್ನು ವ್ಯವಸ್ಥಿತವಾಗಿ ಜೋಡಿಸಿ';
  720. echo 'Comment[ko]=사진을 정리합니다.';
  721. echo 'Comment[lv]=Organizē savas fotogrāfijas';
  722. echo 'Comment[pl]=Organizowanie zdjęć';
  723. echo 'Comment[pt]=Organize as suas fotografias';
  724. echo 'Comment[pt_BR]=Organize suas fotos';
  725. echo 'Comment[sk]=Organizuje vaše fotografie';
  726. echo 'Comment[sr]=Организујте ваше фотографије';
  727. echo 'Comment[sr@latin]=Organizujte vaše fotografije';
  728. echo 'Comment[sv]=Organisera dina bilder';
  729. echo 'Comment[uk]=Впорядкуйте ваші фотографії';
  730. echo 'Comment=Organize your photos';
  731. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_photos.png";
  732. echo 'Exec=shotwell %U';
  733. echo 'Terminal=false';
  734. echo 'Type=Application';
  735. echo 'MimeType=x-content/image-dcf;';
  736. echo 'Categories=Graphics;Photography;GNOME;GTK;';
  737. echo 'X-GIO-NoFuse=true';
  738. echo 'X-GNOME-Gettext-Domain=shotwell';
  739. echo 'X-GNOME-FullName=Shotwell Photo Manager'; } > "/home/$MY_USERNAME/Desktop/photos.desktop"
  740. #{ echo '[Desktop Entry]';
  741. #echo 'Name=Audio/Music';
  742. #echo 'Type=Application';
  743. #echo 'Comment=Audio publishing and streaming';
  744. #echo 'Exec=bash /usr/bin/start_ferment';
  745. #echo "Icon=/etc/patchwork/icon_ferment.png";
  746. #echo 'Terminal=false';
  747. #echo 'Categories=Application;'; } > "/home/$MY_USERNAME/Desktop/audio.desktop"
  748. { echo '[Desktop Entry]';
  749. echo 'Type=Application';
  750. echo 'Name=Routing Protocol';
  751. echo 'Name[el]=Πρωτόκολλο δρομολόγησης';
  752. echo 'Name[ar]=بروتوكول التوجيه';
  753. echo "Name[ca]=Protocol d'enrutament";
  754. echo 'Name[hi]=रूटिंग प्रोटोकॉल';
  755. echo 'Name[fr]=Protocole de routage';
  756. echo 'Name[de]=Routingprotokoll';
  757. echo 'Name[es]=Protocolo de enrutamiento';
  758. echo 'Name[it]=Protocollo di routing';
  759. echo 'Name[ru]=Протокол маршрутизации';
  760. echo 'Name[zh]=路由协议';
  761. echo 'Comment=Select the mesh routing protocol';
  762. echo 'Comment[el]=Επιλέξτε το πρωτόκολλο δρομολόγησης πλέγματος';
  763. echo 'Comment[ar]=حدد بروتوكول توجيه الشبكة';
  764. echo "Comment[ca]=Seleccioneu el protocol d'enrutament de malles";
  765. echo 'Comment[hi]=जाल रूटिंग प्रोटोकॉल का चयन करें';
  766. echo 'Comment[fr]=Sélectionnez le protocole de routage de maillage';
  767. echo 'Comment[de]=Wählen Sie das Mesh-Routing-Protokoll';
  768. echo 'Comment[es]=Seleccione el protocolo de enrutamiento de malla';
  769. echo "Comment[it]=Seleziona il protocollo di instradamento della mesh";
  770. echo 'Comment[ru]=Выберите протокол маршрутизации сетки';
  771. echo 'Comment[zh]=选择网状路由协议';
  772. echo "Exec=mate-terminal -e \"/usr/local/bin/${PROJECT_NAME}-mesh-routing\"";
  773. echo "Icon=/usr/share/${PROJECT_NAME}/avatars/icon_routing.png";
  774. echo 'Terminal=false';
  775. echo 'Categories=Application'; } > "/home/$MY_USERNAME/Desktop/routing.desktop"
  776. # set permissions
  777. chmod +x "/home/$MY_USERNAME/Desktop/*.desktop"
  778. chown "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/Desktop/"*
  779. chown "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/.config"
  780. chown -R "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/.config/tox"
  781. chown -R "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/.config/autostart"
  782. chown "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/*.sh"
  783. # link to Tahoe-LAFS Magic folder
  784. #ln -s /home/${MY_USERNAME}/Desktop/${TAHOELAFS_SHARED_DIR} /home/${MY_USERNAME}/${TAHOELAFS_SHARED_DIR}
  785. # restart caja
  786. killall caja
  787. killall mate-panel
  788. }
  789. function enable_batman_daemon {
  790. systemctl enable batman
  791. systemctl daemon-reload
  792. }
  793. function mesh_amnesic {
  794. if [ ! -f $MESH_AMNESIC ]; then
  795. return
  796. fi
  797. { echo '#!/bin/bash';
  798. echo '';
  799. echo "MY_USERNAME=\$1";
  800. echo 'tomb slam all';
  801. echo "if [ -f /home/${MY_USERNAME}/.bash_history ]; then";
  802. echo " shred -zu /home/${MY_USERNAME}/.bash_history";
  803. echo 'fi';
  804. echo "if [ -f /home/${MY_USERNAME}/.xsession-errors ]; then";
  805. echo " shred -zu /home/${MY_USERNAME}/.xsession-errors";
  806. echo 'fi';
  807. echo '';
  808. echo 'exit 0'; } > /usr/bin/amnesic
  809. chmod +x /usr/bin/amnesic
  810. if [ ! -f /etc/systemd/system/amnesic.service ]; then
  811. { echo '[Unit]';
  812. echo 'Description=Amnesic Mesh';
  813. echo '';
  814. echo '[Service]';
  815. echo 'User=root';
  816. echo 'Group=root';
  817. echo 'Type=oneshot';
  818. echo 'RemainAfterExit=true';
  819. echo 'ExecStart=/bin/true';
  820. echo "ExecStop=/usr/bin/amnesic $MY_USERNAME";
  821. echo '';
  822. echo '[Install]';
  823. echo 'WantedBy=multi-user.target'; } > /etc/systemd/system/amnesic.service
  824. chmod +x /etc/systemd/system/amnesic.service
  825. systemctl daemon-reload
  826. fi
  827. systemctl enable amnesic
  828. systemctl start amnesic
  829. }
  830. function mesh_restart_daemons {
  831. systemctl restart avahi-daemon
  832. systemctl restart tox-bootstrapd
  833. systemctl restart nginx
  834. echo $'Daemons restarted' >> $INSTALL_LOG
  835. }
  836. function create_tomb {
  837. tomb_name=$1
  838. tomb_size=$2
  839. if [ -f "/tmp/${tomb_name}.tomb" ]; then
  840. tomb slam "/tmp/${tomb_name}.tomb"
  841. fi
  842. # make a temporary password
  843. tomb dig -s "${tomb_size}" "/tmp/${tomb_name}.tomb"
  844. if [ ! -f "/tmp/${tomb_name}.tomb" ]; then
  845. echo "WARNING: ${tomb_name} tomb did not install properly" >> /var/log/${PROJECT_NAME}.log
  846. tomb >> /var/log/${PROJECT_NAME}.log
  847. fi
  848. TOMB_TEMP_PASSWORD=$(openssl rand -base64 64 | tr -dc A-Za-z0-9 | head -c 30)
  849. tomb forge "/mnt/ramdisk/${tomb_name}.tomb.key" --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  850. tomb lock "/tmp/${tomb_name}.tomb" -k "/mnt/ramdisk/${tomb_name}.tomb.key" --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  851. tomb open "/tmp/${tomb_name}.tomb" -k "/mnt/ramdisk/${tomb_name}.tomb.key" --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  852. # stop stuff from popping up
  853. pkill caja
  854. # clear the temporary password
  855. TOMB_TEMP_PASSWORD=
  856. }
  857. function setup_amnesic_data {
  858. if [ ! -f $MESH_AMNESIC ]; then
  859. return
  860. fi
  861. if [ ! -d /mnt/ramdisk ]; then
  862. return
  863. fi
  864. # clear crypttab
  865. if [ -f /etc/crypttab ]; then
  866. shred -zu /etc/crypttab
  867. touch /etc/crypttab
  868. fi
  869. tomb_name=log
  870. create_tomb ${tomb_name} $TOMB_LOG_SIZE_MB
  871. if [ -d /media/${tomb_name} ]; then
  872. if [ -d /var/log ]; then
  873. if [ ! -d /var/log_base ]; then
  874. mv /var/log /var/log_base
  875. fi
  876. fi
  877. ln -s /media/${tomb_name} /var/log
  878. if [ -d /var/log_base ]; then
  879. cp -rp /var/log_base/* /media/${tomb_name}
  880. fi
  881. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  882. else
  883. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  884. fi
  885. tomb_name=tox-bootstrapd
  886. if [ -f /etc/systemd/system/${tomb_name}.service ]; then
  887. systemctl stop ${tomb_name}
  888. fi
  889. create_tomb ${tomb_name} $TOMB_TOX_BOOTSTRAP_SIZE_MB
  890. if [ -d /media/${tomb_name} ]; then
  891. if [ -d /var/lib/tox-bootstrapd ]; then
  892. if [ ! -d /var/lib/tox-bootstrapd_base ]; then
  893. mv /var/lib/tox-bootstrapd /var/lib/tox-bootstrapd_base
  894. fi
  895. fi
  896. if [ -d /var/lib/tox-bootstrapd ]; then
  897. shred -zu /var/lib/tox-bootstrapd/*
  898. rm -rf /var/lib/tox-bootstrapd
  899. fi
  900. ln -s /media/${tomb_name} /var/lib/tox-bootstrapd
  901. if [ -d /var/lib/tox-bootstrapd_base ]; then
  902. cp -rp /var/lib/tox-bootstrapd_base/* /media/${tomb_name}
  903. fi
  904. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  905. else
  906. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  907. fi
  908. tomb_name=tox
  909. create_tomb ${tomb_name} $TOMB_TOX_SIZE_MB
  910. if [ -d /media/${tomb_name} ]; then
  911. if [ ! -d /home/${MY_USERNAME}/.config ]; then
  912. mkdir -p /home/${MY_USERNAME}/.config
  913. chown ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config
  914. fi
  915. if [ -d /home/${MY_USERNAME}/.config/${tomb_name} ]; then
  916. rm -rf /home/${MY_USERNAME}/.config/${tomb_name}
  917. fi
  918. ln -s /media/${tomb_name} /home/${MY_USERNAME}/.config/${tomb_name}
  919. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config/${tomb_name}
  920. chown -R ${MY_USERNAME}:${MY_USERNAME} /media/${tomb_name}
  921. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  922. else
  923. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  924. fi
  925. }
  926. function setup_ipfs {
  927. IPFS_PATH=/usr/bin
  928. IPFS_KEY_LENGTH=2048
  929. IPFS_COMMAND=$IPFS_PATH/ipfs
  930. IPFS_PUBLIC=/home/$MY_USERNAME/.ipfs-public
  931. chmod 755 $IPFS_COMMAND
  932. su -c "systemctl --user enable ipfs" - $MY_USERNAME
  933. if [ -f $CURRENT_BLOG_INDEX ]; then
  934. shred -zu $CURRENT_BLOG_INDEX
  935. fi
  936. if [ -d /home/$MY_USERNAME/Public ]; then
  937. rm /home/$MY_USERNAME/Desktop/Public
  938. rm -rf /home/$MY_USERNAME/Public
  939. fi
  940. if [ -d /home/$MY_USERNAME/CreateBlog/content/images ]; then
  941. shred -zu /home/$MY_USERNAME/CreateBlog/content/images/*
  942. fi
  943. if [ -d /home/$MY_USERNAME/CreateBlog/content ]; then
  944. shred -zu /home/$MY_USERNAME/CreateBlog/content/*
  945. if grep -q "THEME=" /home/$MY_USERNAME/CreateBlog/pelicanconf.py; then
  946. sed -i "s|THEME=.*|THEME='themes/nice-blog'|g" /home/$MY_USERNAME/CreateBlog/pelicanconf.py
  947. else
  948. echo "THEME='themes/nice-blog'" >> /home/$MY_USERNAME/CreateBlog/pelicanconf.py
  949. fi
  950. fi
  951. if [ -d /home/$MY_USERNAME/.ipfs ]; then
  952. shred -zu /home/$MY_USERNAME/.ipfs/config
  953. rm -rf /home/$MY_USERNAME/.ipfs
  954. su -c "systemctl --user restart ipfs" - $MY_USERNAME
  955. else
  956. su -c "systemctl --user start ipfs" - $MY_USERNAME
  957. fi
  958. if [ -f /home/$MY_USERNAME/.blog-index ]; then
  959. shred -zu /home/$MY_USERNAME/.blog-index
  960. fi
  961. if [ -f /home/$MY_USERNAME/.blog-theme-index ]; then
  962. shred -zu /home/$MY_USERNAME/.blog-theme-index
  963. fi
  964. if [ -f /home/$MY_USERNAME/.ipfs-id ]; then
  965. shred -zu /home/$MY_USERNAME/.ipfs-id
  966. fi
  967. if [ -f /home/$MY_USERNAME/.ipfs-public ]; then
  968. shred -zu /home/$MY_USERNAME/.ipfs-public
  969. fi
  970. chmod 755 $IPFS_COMMAND
  971. su -c "$IPFS_COMMAND init -b $IPFS_KEY_LENGTH" - $MY_USERNAME
  972. if [ ! -d /home/$MY_USERNAME/.ipfs ]; then
  973. echo "IPFS could not be initialised for user $MY_USERNAME" >> $INSTALL_LOG
  974. return
  975. fi
  976. MY_IPFS_ID=/home/$MY_USERNAME/.ipfs-id
  977. su -c "echo \$($IPFS_COMMAND id | grep '\"ID\":' | awk -F '\"' '{print \$4}') > $MY_IPFS_ID" - $MY_USERNAME
  978. if [ ! -f $MY_IPFS_ID ]; then
  979. echo 'No IPFS identity was created' >> $INSTALL_LOG
  980. return
  981. fi
  982. IPFS_PEER_ID=$(cat $MY_IPFS_ID)
  983. if [ ${#IPFS_PEER_ID} -lt 10 ]; then
  984. echo 'Invalid IPFS peer ID' >> $INSTALL_LOG
  985. echo "$IPFS_PEER_ID" >> $INSTALL_LOG
  986. return
  987. fi
  988. # make a public directory
  989. TOX_ID='none'
  990. if [ -d /home/$MY_USERNAME/Desktop ]; then
  991. if [ ! -d /home/$MY_USERNAME/Public ]; then
  992. mkdir -p /home/$MY_USERNAME/Public/Videos
  993. mkdir -p /home/$MY_USERNAME/Public/Music
  994. mkdir -p /home/$MY_USERNAME/Public/Podcasts
  995. mkdir -p /home/$MY_USERNAME/Public/Documents
  996. mkdir -p /home/$MY_USERNAME/Public/Pictures
  997. echo $'Files within this directory will be publicly visible on the network' > /home/$MY_USERNAME/Public/README.txt
  998. chown -R $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/Public
  999. ln -s /home/$MY_USERNAME/Public /home/$MY_USERNAME/Desktop/Public
  1000. su -c "echo \$($IPFS_COMMAND add -rq /home/$MY_USERNAME/Public | tail -n 1) > $IPFS_PUBLIC" - $MY_USERNAME
  1001. if [ ! -f $IPFS_PUBLIC ]; then
  1002. echo $'Unable to create public IPFS directory' >> $INSTALL_LOG
  1003. exit 368225
  1004. fi
  1005. fi
  1006. TOX_ID=$(su -c 'toxid' - $MY_USERNAME)
  1007. fi
  1008. create_avahi_mesh_service "ipfs_id" "ipfs_id" "udp" "$IPFS_PORT" "${IPFS_PEER_ID}:${TOX_ID}"
  1009. echo "IPFS installed with ID ${IPFS_PEER_ID}" >> $INSTALL_LOG
  1010. }
  1011. function setup_tahoelafs {
  1012. reconfigure_tahoelafs
  1013. TAHOELAFS_CONFIG=/home/${MY_USERNAME}/.tahoe/tahoe.cfg
  1014. if [ ! -f ${TAHOELAFS_CONFIG} ]; then
  1015. exit 673923
  1016. fi
  1017. echo $'Configured Tahoe-LAFS' >> $INSTALL_LOG
  1018. }
  1019. function create_user_vpn_key {
  1020. username=$1
  1021. if [ ! -d "/home/$username" ]; then
  1022. return
  1023. fi
  1024. echo $"Creating VPN key for $username" >> /var/log/${PROJECT_NAME}.log
  1025. cd /etc/openvpn/easy-rsa || exit 824527645247
  1026. if [ -f "/etc/openvpn/easy-rsa/keys/$username.crt" ]; then
  1027. rm "/etc/openvpn/easy-rsa/keys/$username.crt"
  1028. fi
  1029. if [ -f "/etc/openvpn/easy-rsa/keys/$username.key" ]; then
  1030. rm "/etc/openvpn/easy-rsa/keys/$username.key"
  1031. fi
  1032. if [ -f "/etc/openvpn/easy-rsa/keys/$username.csr" ]; then
  1033. rm "/etc/openvpn/easy-rsa/keys/$username.csr"
  1034. fi
  1035. sed -i 's| --interact||g' build-key
  1036. ./build-key "$username"
  1037. if [ ! -f "/etc/openvpn/easy-rsa/keys/$username.crt" ]; then
  1038. echo $'VPN user cert not generated' >> "/var/log/${PROJECT_NAME}.log"
  1039. exit 783528
  1040. fi
  1041. user_cert=$(cat "/etc/openvpn/easy-rsa/keys/$username.crt")
  1042. if [ ${#user_cert} -lt 10 ]; then
  1043. cat "/etc/openvpn/easy-rsa/keys/$username.crt"
  1044. echo $'User cert generation failed' >> /var/log/${PROJECT_NAME}.log
  1045. exit 634659
  1046. fi
  1047. if [ ! -f "/etc/openvpn/easy-rsa/keys/$username.key" ]; then
  1048. echo $'VPN user key not generated'
  1049. exit 682523
  1050. fi
  1051. user_key=$(cat "/etc/openvpn/easy-rsa/keys/$username.key")
  1052. if [ ${#user_key} -lt 10 ]; then
  1053. cat "/etc/openvpn/easy-rsa/keys/$username.key"
  1054. echo $'User key generation failed'
  1055. exit 285838
  1056. fi
  1057. user_vpn_cert_file=/home/$username/$OPENVPN_KEY_FILENAME
  1058. { echo 'client';
  1059. echo 'dev tun';
  1060. echo 'proto tcp';
  1061. echo "remote localhost $STUNNEL_PORT";
  1062. echo "route $DEFAULT_DOMAIN_NAME 255.255.255.255 net_gateway";
  1063. echo 'resolv-retry infinite';
  1064. echo 'nobind';
  1065. echo 'tun-mtu 1500';
  1066. echo 'tun-mtu-extra 32';
  1067. echo 'mssfix 1450';
  1068. echo 'persist-key';
  1069. echo 'persist-tun';
  1070. echo 'auth-nocache';
  1071. echo 'remote-cert-tls server';
  1072. echo 'comp-lzo';
  1073. echo 'verb 3';
  1074. echo '';
  1075. echo '<ca>';
  1076. cat "/etc/openvpn/ca.crt";
  1077. echo '</ca>';
  1078. echo '<cert>';
  1079. cat "/etc/openvpn/easy-rsa/keys/$username.crt";
  1080. echo '</cert>';
  1081. echo '<key>';
  1082. cat "/etc/openvpn/easy-rsa/keys/$username.key";
  1083. echo '</key>'; } > "$user_vpn_cert_file"
  1084. chown "$username":"$username" "$user_vpn_cert_file"
  1085. # keep a backup
  1086. cp "$user_vpn_cert_file" "/etc/openvpn/easy-rsa/keys/$username.ovpn"
  1087. #rm /etc/openvpn/easy-rsa/keys/$username.crt
  1088. #rm /etc/openvpn/easy-rsa/keys/$username.csr
  1089. shred -zu "/etc/openvpn/easy-rsa/keys/$username.key"
  1090. echo $"VPN key created at $user_vpn_cert_file" >> "/var/log/${PROJECT_NAME}.log"
  1091. }
  1092. function vpn_generate_keys {
  1093. # generate host keys
  1094. if [ ! -f /etc/openvpn/dh2048.pem ]; then
  1095. ${PROJECT_NAME}-dhparam -o /etc/openvpn/dh2048.pem
  1096. fi
  1097. if [ ! -f /etc/openvpn/dh2048.pem ]; then
  1098. echo $'vpn dhparams were not generated' >> /var/log/${PROJECT_NAME}.log
  1099. exit 73724523
  1100. fi
  1101. cp /etc/openvpn/dh2048.pem /etc/openvpn/easy-rsa/keys/dh2048.pem
  1102. cd /etc/openvpn/easy-rsa || exit 2452486824
  1103. # shellcheck disable=SC1091
  1104. . ./vars
  1105. ./clean-all
  1106. vpn_openssl_version='1.0.0'
  1107. if [ ! -f openssl-${vpn_openssl_version}.cnf ]; then
  1108. echo $"openssl-${vpn_openssl_version}.cnf was not found" >> /var/log/${PROJECT_NAME}.log
  1109. exit 7392353
  1110. fi
  1111. cp openssl-${vpn_openssl_version}.cnf openssl.cnf
  1112. if [ -f /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.crt ]; then
  1113. rm /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.crt
  1114. fi
  1115. if [ -f /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.key ]; then
  1116. rm /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.key
  1117. fi
  1118. if [ -f /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.csr ]; then
  1119. rm /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.csr
  1120. fi
  1121. sed -i 's| --interact||g' build-key-server
  1122. sed -i 's| --interact||g' build-ca
  1123. ./build-ca
  1124. ./build-key-server ${OPENVPN_SERVER_NAME}
  1125. if [ ! -f /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.crt ]; then
  1126. echo $'OpenVPN crt not found' >> /var/log/${PROJECT_NAME}.log
  1127. exit 7823352
  1128. fi
  1129. server_cert=$(cat /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.crt)
  1130. if [ ${#server_cert} -lt 10 ]; then
  1131. cat /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.crt
  1132. echo $'Server cert generation failed' >> /var/log/${PROJECT_NAME}.log
  1133. exit 3284682
  1134. fi
  1135. if [ ! -f /etc/openvpn/easy-rsa/keys/${OPENVPN_SERVER_NAME}.key ]; then
  1136. echo $'OpenVPN key not found' >> /var/log/${PROJECT_NAME}.log
  1137. exit 6839436
  1138. fi
  1139. if [ ! -f /etc/openvpn/easy-rsa/keys/ca.key ]; then
  1140. echo $'OpenVPN ca not found' >> /var/log/${PROJECT_NAME}.log
  1141. exit 7935203
  1142. fi
  1143. cp /etc/openvpn/easy-rsa/keys/{$OPENVPN_SERVER_NAME.crt,$OPENVPN_SERVER_NAME.key,ca.crt} /etc/openvpn
  1144. create_user_vpn_key ${MY_USERNAME}
  1145. }
  1146. function generate_stunnel_keys {
  1147. echo "Creating stunnel keys" >> /var/log/${PROJECT_NAME}.log
  1148. openssl req -x509 -nodes -days 3650 -sha256 \
  1149. -subj "/O=$VPN_ORGANISATION/OU=$VPN_UNIT/C=$VPN_COUNTRY_CODE/ST=$VPN_AREA/L=$VPN_LOCATION/CN=$HOSTNAME" \
  1150. -newkey rsa:2048 -keyout /etc/stunnel/key.pem \
  1151. -out /etc/stunnel/cert.pem
  1152. if [ ! -f /etc/stunnel/key.pem ]; then
  1153. echo $'stunnel key not created' >> /var/log/${PROJECT_NAME}.log
  1154. exit 793530
  1155. fi
  1156. if [ ! -f /etc/stunnel/cert.pem ]; then
  1157. echo $'stunnel cert not created' >> /var/log/${PROJECT_NAME}.log
  1158. exit 204587
  1159. fi
  1160. chmod 400 /etc/stunnel/key.pem
  1161. chmod 640 /etc/stunnel/cert.pem
  1162. cat /etc/stunnel/key.pem /etc/stunnel/cert.pem >> /etc/stunnel/stunnel.pem
  1163. chmod 640 /etc/stunnel/stunnel.pem
  1164. openssl pkcs12 -export -out /etc/stunnel/stunnel.p12 -inkey /etc/stunnel/key.pem -in /etc/stunnel/cert.pem -passout pass:
  1165. if [ ! -f /etc/stunnel/stunnel.p12 ]; then
  1166. echo $'stunnel pkcs12 not created' >> /var/log/${PROJECT_NAME}.log
  1167. exit 639353
  1168. fi
  1169. chmod 640 /etc/stunnel/stunnel.p12
  1170. cp /etc/stunnel/stunnel.pem /home/$MY_USERNAME/stunnel.pem
  1171. cp /etc/stunnel/stunnel.p12 /home/$MY_USERNAME/stunnel.p12
  1172. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/stunnel*
  1173. echo "stunnel keys created" >> /var/log/${PROJECT_NAME}.log
  1174. }
  1175. function mesh_setup_vpn {
  1176. vpn_generate_keys
  1177. cp /etc/stunnel/stunnel-client.conf /home/$MY_USERNAME/stunnel-client.conf
  1178. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/stunnel*
  1179. generate_stunnel_keys
  1180. sed -i 's|tun-mtu .*|tun-mtu 1532|g' /home/$MY_USERNAME/client.ovpn
  1181. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/client.ovpn
  1182. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/stunnel*
  1183. # create an archive of the vpn client files
  1184. cd /home/$MY_USERNAME || exit 24682468242
  1185. tar -czvf vpn.tar.gz stunnel* client.ovpn
  1186. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/vpn.tar.gz
  1187. systemctl restart openvpn
  1188. }
  1189. function initialise_scuttlebot_pub {
  1190. chown -R scuttlebot:scuttlebot /etc/scuttlebot
  1191. systemctl enable git_ssb.service
  1192. systemctl daemon-reload
  1193. systemctl start scuttlebot.service
  1194. sleep 10
  1195. if [ ! -d /etc/scuttlebot/.ssb ]; then
  1196. echo $'Scuttlebot config not generated' >> /var/log/${PROJECT_NAME}.log
  1197. systemctl status scuttlebot -l >> /var/log/${PROJECT_NAME}.log
  1198. exit 73528
  1199. fi
  1200. { echo '{';
  1201. echo " \"host\": \"$P{PEER_ID}.local\",";
  1202. echo " \"port\": ${SCUTTLEBOT_PORT},";
  1203. echo ' "allowPrivate": true,';
  1204. echo ' "timeout": 30000,';
  1205. echo ' "pub": true,';
  1206. echo ' "local": true,';
  1207. echo ' "friends": {';
  1208. echo ' "dunbar": 150,';
  1209. echo ' "hops": 3';
  1210. echo ' },';
  1211. echo ' "gossip": {';
  1212. echo ' "connections": 2';
  1213. echo ' },';
  1214. echo ' "master": [],';
  1215. echo ' "logging": {';
  1216. echo ' "level": "error"';
  1217. echo ' }';
  1218. echo '}'; } > /etc/scuttlebot/.ssb/config
  1219. chown scuttlebot:scuttlebot /etc/scuttlebot/.ssb/config
  1220. systemctl restart scuttlebot.service
  1221. echo "scuttlebot pub started" >> /var/log/${PROJECT_NAME}.log
  1222. # git ssb site
  1223. if [ -f /etc/nginx/sites-available/git_ssb ]; then
  1224. sed -i "s|server_name .*|server_name ${HOSTNAME}.local;|g" /etc/nginx/sites-available/git_ssb
  1225. ln -s /etc/nginx/sites-available/git_ssb /etc/nginx/sites-enabled/git_ssb
  1226. systemctl enable git_ssb.service
  1227. systemctl start git_ssb.service
  1228. fi
  1229. }
  1230. # whether to reset the identity
  1231. set_new_identity=
  1232. if [ "$2" ]; then
  1233. if [[ "$2" == $"new"* ]]; then
  1234. if [ ! -f $MESH_INSTALL_SETUP ]; then
  1235. touch $MESH_INSTALL_SETUP
  1236. fi
  1237. set_new_identity=1
  1238. fi
  1239. if [[ "$2" == $"amnesic"* ]]; then
  1240. if [ ! -f $MESH_AMNESIC ]; then
  1241. touch $MESH_AMNESIC
  1242. fi
  1243. if [ ! -f $MESH_INSTALL_SETUP ]; then
  1244. touch $MESH_INSTALL_SETUP
  1245. fi
  1246. set_new_identity=1
  1247. fi
  1248. fi
  1249. if [ -f $MESH_INSTALL_SETUP ]; then
  1250. if [ "$1" ]; then
  1251. MY_USERNAME=$1
  1252. fi
  1253. if [ ! $set_new_identity ]; then
  1254. # sleep in order to allow other daemons to start up
  1255. sleep 5
  1256. fi
  1257. # clear the install log
  1258. if [ -f $INSTALL_LOG ]; then
  1259. rm $INSTALL_LOG
  1260. fi
  1261. # Remove SSB/Patchwork files
  1262. if [ -d "/home/$MY_USERNAME/.ssb" ]; then
  1263. rm -rf "/home/$MY_USERNAME/.ssb"
  1264. fi
  1265. # Remove vpn host keys
  1266. if [ -d /etc/openvpn/easy-rsa/keys ]; then
  1267. rm -rf /etc/openvpn/easy-rsa/keys/*
  1268. fi
  1269. # Remove hidden service
  1270. if [ -d /var/lib/tor/hidden_service_mesh ]; then
  1271. rm -rf /var/lib/tor/hidden_service_mesh
  1272. fi
  1273. # Remove any existing vpn client keys
  1274. if [ -f "/home/$MY_USERNAME/vpn.tar.gz" ]; then
  1275. rm "/home/$MY_USERNAME/vpn.tar.gz"
  1276. fi
  1277. if [ -f "/home/$MY_USERNAME/stunnel.pem" ]; then
  1278. rm "/home/$MY_USERNAME/stunnel.pem"
  1279. fi
  1280. if [ -f "/home/$MY_USERNAME/stunnel.p12" ]; then
  1281. rm "/home/$MY_USERNAME/stunnel.p12"
  1282. fi
  1283. # Remove cryptpad datastore
  1284. if [ -d $CRYPTPAD_DIR/datastore ]; then
  1285. rm -rf $CRYPTPAD_DIR/datastore
  1286. fi
  1287. echo $'Beginning mesh node setup' >> $INSTALL_LOG
  1288. if [ -d "/home/$MY_USERNAME/.config" ]; then
  1289. chown "${MY_USERNAME}":"${MY_USERNAME}" "/home/$MY_USERNAME/.config"
  1290. fi
  1291. systemctl stop tor
  1292. systemctl disable tor
  1293. echo $'TOR disabled' >> $INSTALL_LOG
  1294. systemctl stop bmx6
  1295. systemctl disable bmx6
  1296. echo $'BMX6 disabled' >> $INSTALL_LOG
  1297. systemctl stop bmx7
  1298. systemctl disable bmx7
  1299. echo $'BMX7 disabled' >> $INSTALL_LOG
  1300. systemctl stop olsr2
  1301. systemctl disable olsr2
  1302. echo $'OLSR2 disabled' >> $INSTALL_LOG
  1303. systemctl stop babel
  1304. systemctl disable babel
  1305. echo $'Babel disabled' >> $INSTALL_LOG
  1306. #tomb slam all
  1307. tmp_ram_disk 100
  1308. enable_predictable_device_names
  1309. enable_batman_daemon
  1310. #create_ram_disk 1
  1311. #setup_amnesic_data
  1312. change_avahi_name
  1313. if [ -d $CRYPTPAD_DIR ]; then
  1314. systemctl start cryptpad
  1315. fi
  1316. configure_toxcore
  1317. create_tox_user
  1318. #setup_tahoelafs
  1319. mesh_setup_vpn
  1320. initialise_scuttlebot_pub
  1321. setup_ipfs
  1322. enable_cryptpad
  1323. enable_peertube
  1324. mesh_amnesic
  1325. make_root_read_only
  1326. if [ ! -f $MESH_AMNESIC ]; then
  1327. rm $MESH_INSTALL_SETUP
  1328. systemctl disable mesh-setup.service
  1329. fi
  1330. show_desktop_icons
  1331. mesh_restart_daemons
  1332. if [ ! -f $MESH_INSTALL_COMPLETED ]; then
  1333. echo $'Mesh node setup complete' >> $INSTALL_LOG
  1334. touch $MESH_INSTALL_COMPLETED
  1335. if [ -d "/home/$MY_USERNAME/Desktop" ]; then
  1336. touch $FIRST_BOOT
  1337. chown "${MY_USERNAME}":"${MY_USERNAME}" "$FIRST_BOOT"
  1338. fi
  1339. # set the desktop background
  1340. if [ -d "/home/$MY_USERNAME/Desktop" ]; then
  1341. MESH_DESKTOP_BACKGROUND_IMAGE=/usr/local/share/${PROJECT_NAME}_mesh_background.png
  1342. cp $MESH_DESKTOP_BACKGROUND_IMAGE /usr/share/images/desktop-base/${PROJECT_NAME}_mesh_background.png
  1343. rm /usr/share/images/desktop-base/desktop-background
  1344. ln -s /usr/share/images/desktop-base/${PROJECT_NAME}_mesh_background.png /usr/share/images/desktop-base/desktop-background
  1345. fi
  1346. if [ -f /etc/default/grub ]; then
  1347. update-grub
  1348. fi
  1349. systemctl reboot -i
  1350. fi
  1351. fi
  1352. exit 0