freedombone-app-pleroma 23KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675
  1. #!/bin/bash
  2. #
  3. # .---. . .
  4. # | | |
  5. # |--- .--. .-. .-. .-.| .-. .--.--. |.-. .-. .--. .-.
  6. # | | (.-' (.-' ( | ( )| | | | )( )| | (.-'
  7. # ' ' --' --' -' - -' ' ' -' -' -' ' - --'
  8. #
  9. # Freedom in the Cloud
  10. #
  11. # Pleroma backend application
  12. #
  13. # License
  14. # =======
  15. #
  16. # Copyright (C) 2017 Bob Mottram <bob@freedombone.net>
  17. #
  18. # This program is free software: you can redistribute it and/or modify
  19. # it under the terms of the GNU Affero General Public License as published by
  20. # the Free Software Foundation, either version 3 of the License, or
  21. # (at your option) any later version.
  22. #
  23. # This program is distributed in the hope that it will be useful,
  24. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  25. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  26. # GNU Affero General Public License for more details.
  27. #
  28. # You should have received a copy of the GNU Affero General Public License
  29. # along with this program. If not, see <http://www.gnu.org/licenses/>.
  30. VARIANTS='full full-vim social'
  31. IN_DEFAULT_INSTALL=0
  32. SHOW_ON_ABOUT=1
  33. PLEROMA_DOMAIN_NAME=
  34. PLEROMA_CODE=
  35. PLEROMA_PORT=4000
  36. PLEROMA_ONION_PORT=8011
  37. PLEROMA_REPO="https://git.pleroma.social/pleroma/pleroma.git"
  38. PLEROMA_COMMIT='7252f6b054dfdfac1f9bac77c442c5a1ebd898af'
  39. PLEROMA_ADMIN_PASSWORD=
  40. PLEROMA_DIR=/etc/pleroma
  41. PLEROMA_BACKGROUND_IMAGE_URL=
  42. PLEROMA_TITLE='Pleroma Server'
  43. # Number of months after which posts expire
  44. PLEROMA_EXPIRE_MONTHS=3
  45. pleroma_variables=(ONION_ONLY
  46. PLEROMA_DOMAIN_NAME
  47. PLEROMA_CODE
  48. PLEROMA_WELCOME_MESSAGE
  49. PLEROMA_BACKGROUND_IMAGE_URL
  50. DDNS_PROVIDER
  51. PLEROMA_TITLE
  52. PLEROMA_EXPIRE_MONTHS
  53. MY_EMAIL_ADDRESS
  54. MY_USERNAME)
  55. function logging_on_pleroma {
  56. echo -n ''
  57. }
  58. function logging_off_pleroma {
  59. echo -n ''
  60. }
  61. function remove_user_pleroma {
  62. remove_username="$1"
  63. ${PROJECT_NAME}-pass -u $remove_username --rmapp pleroma
  64. }
  65. function add_user_pleroma {
  66. new_username="$1"
  67. new_user_password="$2"
  68. ${PROJECT_NAME}-pass -u $new_username -a pleroma -p "$new_user_password"
  69. echo '0'
  70. }
  71. function install_interactive_pleroma {
  72. if [ ! $ONION_ONLY ]; then
  73. ONION_ONLY='no'
  74. fi
  75. if [[ $ONION_ONLY != "no" ]]; then
  76. PLEROMA_DOMAIN_NAME='pleroma.local'
  77. else
  78. PLEROMA_DETAILS_COMPLETE=
  79. while [ ! $PLEROMA_DETAILS_COMPLETE ]
  80. do
  81. data=$(tempfile 2>/dev/null)
  82. trap "rm -f $data" 0 1 2 5 15
  83. if [[ $DDNS_PROVIDER == "default@freedns.afraid.org" ]]; then
  84. dialog --backtitle $"Freedombone Configuration" \
  85. --title $"Pleroma Configuration" \
  86. --form $"\nPlease enter your Pleroma details. The background image URL can be left blank.\n\nIMPORTANT: This should be a domain name which is supported by Let's Encrypt:" 16 65 4 \
  87. $"Domain:" 1 1 "$(grep 'PLEROMA_DOMAIN_NAME' temp.cfg | awk -F '=' '{print $2}')" 1 25 33 40 \
  88. $"Title:" 2 1 "$(grep '$PLEROMA_TITLE' temp.cfg | awk -F '=' '{print $2}')" 2 25 255 255 \
  89. $"Background image URL:" 3 1 "$(grep '$PLEROMA_BACKGROUND_IMAGE_URL' temp.cfg | awk -F '=' '{print $2}')" 3 25 255 255 \
  90. $"Code:" 4 1 "$(grep 'PLEROMA_CODE' temp.cfg | awk -F '=' '{print $2}')" 4 25 33 255 \
  91. 2> $data
  92. else
  93. dialog --backtitle $"Freedombone Configuration" \
  94. --title $"Pleroma Configuration" \
  95. --form $"\nPlease enter your Pleroma details. The background image URL can be left blank.\n\nIMPORTANT: This should be a domain name which is supported by Let's Encrypt:" 16 65 4 \
  96. $"Domain:" 1 1 "$(grep 'PLEROMA_DOMAIN_NAME' temp.cfg | awk -F '=' '{print $2}')" 1 25 33 40 \
  97. $"Title:" 2 1 "$(grep '$PLEROMA_TITLE' temp.cfg | awk -F '=' '{print $2}')" 2 25 255 255 \
  98. $"Background image URL:" 3 1 "$(grep '$PLEROMA_BACKGROUND_IMAGE_URL' temp.cfg | awk -F '=' '{print $2}')" 3 25 255 255 \
  99. 2> $data
  100. fi
  101. sel=$?
  102. case $sel in
  103. 1) exit 1;;
  104. 255) exit 1;;
  105. esac
  106. PLEROMA_DOMAIN_NAME=$(cat $data | sed -n 1p)
  107. title=$(cat $data | sed -n 2p)
  108. if [ ${#title} -gt 1 ]; then
  109. PLEROMA_TITLE=$welcome_msg
  110. fi
  111. img_url=$(cat $data | sed -n 3p)
  112. if [ ${#img_url} -gt 1 ]; then
  113. PLEROMA_BACKGROUND_IMAGE_URL=$img_url
  114. fi
  115. if [ $PLEROMA_DOMAIN_NAME ]; then
  116. if [[ $PLEROMA_DOMAIN_NAME == "$HUBZILLA_DOMAIN_NAME" ]]; then
  117. PLEROMA_DOMAIN_NAME=""
  118. fi
  119. TEST_DOMAIN_NAME=$PLEROMA_DOMAIN_NAME
  120. validate_domain_name
  121. if [[ $TEST_DOMAIN_NAME != $PLEROMA_DOMAIN_NAME ]]; then
  122. PLEROMA_DOMAIN_NAME=
  123. dialog --title $"Domain name validation" --msgbox "$TEST_DOMAIN_NAME" 15 50
  124. else
  125. if [[ $DDNS_PROVIDER == "default@freedns.afraid.org" ]]; then
  126. PLEROMA_CODE=$(cat $data | sed -n 4p)
  127. validate_freedns_code "$PLEROMA_CODE"
  128. if [ ! $VALID_CODE ]; then
  129. PLEROMA_DOMAIN_NAME=
  130. fi
  131. fi
  132. fi
  133. fi
  134. if [ $PLEROMA_DOMAIN_NAME ]; then
  135. PLEROMA_DETAILS_COMPLETE="yes"
  136. fi
  137. done
  138. # remove any invalid characters
  139. if [ ${#PLEROMA_TITLE} -gt 0 ]; then
  140. new_title=$(echo "$PLEROMA_TITLE" | sed "s|'||g")
  141. PLEROMA_TITLE="$new_title"
  142. fi
  143. # save the results in the config file
  144. write_config_param "PLEROMA_CODE" "$PLEROMA_CODE"
  145. write_config_param "PLEROMA_TITLE" "$PLEROMA_TITLE"
  146. write_config_param "PLEROMA_BACKGROUND_IMAGE_URL" "$PLEROMA_BACKGROUND_IMAGE_URL"
  147. fi
  148. write_config_param "PLEROMA_DOMAIN_NAME" "$PLEROMA_DOMAIN_NAME"
  149. APP_INSTALLED=1
  150. }
  151. function change_password_pleroma {
  152. curr_username="$1"
  153. new_user_password="$2"
  154. #${PROJECT_NAME}-pass -u "$curr_username" -a pleroma -p "$new_user_password"
  155. }
  156. function pleroma_create_database {
  157. if [ -f $IMAGE_PASSWORD_FILE ]; then
  158. PLEROMA_ADMIN_PASSWORD="$(printf `cat $IMAGE_PASSWORD_FILE`)"
  159. else
  160. if [ ! $PLEROMA_ADMIN_PASSWORD ]; then
  161. PLEROMA_ADMIN_PASSWORD="$(create_password ${MINIMUM_PASSWORD_LENGTH})"
  162. fi
  163. fi
  164. if [ ! $PLEROMA_ADMIN_PASSWORD ]; then
  165. return
  166. fi
  167. add_postgresql_user pleroma "$PLEROMA_ADMIN_PASSWORD" encrypted
  168. run_system_query_postgresql "GRANT ALL ON ALL tables IN SCHEMA public TO pleroma;"
  169. run_system_query_postgresql "GRANT ALL ON ALL sequences IN SCHEMA public TO pleroma;"
  170. cd $PLEROMA_DIR
  171. mix ecto.create
  172. mix ecto.migrate
  173. }
  174. function reconfigure_pleroma {
  175. echo -n ''
  176. }
  177. function pleroma_set_background_image {
  178. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  179. data=$(tempfile 2>/dev/null)
  180. trap "rm -f $data" 0 1 2 5 15
  181. dialog --title $"Pleroma" \
  182. --backtitle $"Freedombone Control Panel" \
  183. --inputbox $'Set a background image URL' 10 60 2>$data
  184. sel=$?
  185. case $sel in
  186. 0)
  187. temp_background=$(<$data)
  188. if [ ${#temp_background} -gt 0 ]; then
  189. PLEROMA_BACKGROUND_IMAGE_URL="$temp_background"
  190. write_config_param "PLEROMA_BACKGROUND_IMAGE_URL" "$PLEROMA_BACKGROUND_IMAGE_URL"
  191. if [[ $(pleroma_set_background_image_from_url "$PLEROMA_DOMAIN_NAME" "$PLEROMA_BACKGROUND_IMAGE_URL" "$PLEROMA_TITLE" | tail -n 1) == "0" ]]; then
  192. dialog --title $"Set Pleroma login background" \
  193. --msgbox $"The background image has been set" 6 60
  194. fi
  195. fi
  196. ;;
  197. esac
  198. rm $data
  199. }
  200. function pleroma_set_title {
  201. data=$(tempfile 2>/dev/null)
  202. trap "rm -f $data" 0 1 2 5 15
  203. dialog --title $"Pleroma" \
  204. --backtitle $"Freedombone Control Panel" \
  205. --inputbox $'Set a title' 10 60 2>$data
  206. sel=$?
  207. case $sel in
  208. 0)
  209. new_title=$(<$data)
  210. if [ ${#new_title} -gt 0 ]; then
  211. PLEROMA_TITLE="$new_title"
  212. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  213. write_config_param "PLEROMA_TITLE" "$PLEROMA_TITLE"
  214. cd /var/www/$PLEROMA_DOMAIN_NAME/htdocs/static
  215. sed -i "s|\"name\":.*|\"name\": \"${PLEROMA_TITLE}\",|g" config.json
  216. dialog --title $"Set Pleroma title" \
  217. --msgbox $"The title has been set" 6 60
  218. fi
  219. ;;
  220. esac
  221. rm $data
  222. }
  223. function pleroma_set_expire_months {
  224. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  225. read_config_param "PLEROMA_EXPIRE_MONTHS"
  226. data=$(tempfile 2>/dev/null)
  227. trap "rm -f $data" 0 1 2 5 15
  228. dialog --title $"Pleroma" \
  229. --backtitle $"Freedombone Control Panel" \
  230. --inputbox $'Set an expiry period for posts in months. Anything older will be deleted. Lower values help to keep the database size small and as fast as possible.' 12 60 "$PLEROMA_EXPIRE_MONTHS" 2>$data
  231. sel=$?
  232. case $sel in
  233. 0)
  234. new_expiry_months=$(<$data)
  235. if [ ${#new_expiry_months} -gt 0 ]; then
  236. # should contain no spaces
  237. if [[ "$new_expiry_months" == *" "* ]]; then
  238. return
  239. fi
  240. # should be a number
  241. re='^[0-9]+$'
  242. if ! [[ $new_expiry_months =~ $re ]] ; then
  243. return
  244. fi
  245. # set the new value
  246. PLEROMA_EXPIRE_MONTHS=$new_expiry_months
  247. write_config_param "PLEROMA_EXPIRE_MONTHS" "$PLEROMA_EXPIRE_MONTHS"
  248. # TODO
  249. dialog --title $"Set Pleroma post expiry period" \
  250. --msgbox $"Expiry period set to $PLEROMA_EXPIRE_MONTHS months" 6 60
  251. fi
  252. ;;
  253. esac
  254. rm $data
  255. }
  256. function configure_interactive_pleroma {
  257. read_config_param PLEROMA_EXPIRE_MONTHS
  258. while true
  259. do
  260. data=$(tempfile 2>/dev/null)
  261. trap "rm -f $data" 0 1 2 5 15
  262. dialog --backtitle $"Freedombone Control Panel" \
  263. --title $"Pleroma" \
  264. --radiolist $"Choose an operation:" 13 70 4 \
  265. 1 $"Set a background image" off \
  266. 2 $"Set the title" off \
  267. 3 $"Set post expiry period (currently $PLEROMA_EXPIRE_MONTHS months)" off \
  268. 4 $"Exit" on 2> $data
  269. sel=$?
  270. case $sel in
  271. 1) return;;
  272. 255) return;;
  273. esac
  274. case $(cat $data) in
  275. 1) pleroma_set_background_image;;
  276. 2) pleroma_set_title;;
  277. 3) pleroma_set_expire_months;;
  278. 4) break;;
  279. esac
  280. rm $data
  281. done
  282. }
  283. function upgrade_pleroma {
  284. echo -n ''
  285. }
  286. function backup_local_pleroma {
  287. PLEROMA_DOMAIN_NAME='pleroma'
  288. if grep -q "pleroma domain" $COMPLETION_FILE; then
  289. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  290. fi
  291. function_check suspend_site
  292. suspend_site ${PLEROMA_DOMAIN_NAME}
  293. source_directory=$PLEROMA_DIR
  294. dest_directory=pleroma
  295. backup_directory_to_usb $source_directory $dest_directory
  296. USE_POSTGRESQL=1
  297. function_check backup_database_to_usb
  298. backup_database_to_usb pleroma
  299. function_check restart_site
  300. restart_site
  301. }
  302. function restore_local_pleroma {
  303. if ! grep -q "pleroma domain" $COMPLETION_FILE; then
  304. return
  305. fi
  306. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  307. if [ $PLEROMA_DOMAIN_NAME ]; then
  308. echo $"Restoring pleroma"
  309. temp_restore_dir=/root/temppleroma
  310. pleroma_dir=$PLEROMA_DIR
  311. function_check pleroma_create_database
  312. pleroma_create_database
  313. USE_POSTGRESQL=1
  314. restore_database pleroma
  315. if [ -d $temp_restore_dir ]; then
  316. rm -rf $temp_restore_dir
  317. fi
  318. function_check restore_directory_from_usb
  319. restore_directory_from_usb $temp_restore_dir pleroma
  320. if [ -d $temp_restore_dir ]; then
  321. chown -R pleroma:pleroma $pleroma_dir
  322. rm -rf $temp_restore_dir
  323. fi
  324. echo $"Restore of pleroma complete"
  325. fi
  326. }
  327. function backup_remote_pleroma {
  328. PLEROMA_DOMAIN_NAME='pleroma'
  329. if grep -q "pleroma domain" $COMPLETION_FILE; then
  330. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  331. fi
  332. function_check suspend_site
  333. suspend_site ${PLEROMA_DOMAIN_NAME}
  334. source_directory=$PLEROMA_DIR
  335. dest_directory=pleroma
  336. backup_directory_to_friend $source_directory $dest_directory
  337. USE_POSTGRESQL=1
  338. function_check backup_database_to_friend
  339. backup_database_to_friend pleroma
  340. function_check restart_site
  341. restart_site
  342. }
  343. function restore_remote_pleroma {
  344. if ! grep -q "pleroma domain" $COMPLETION_FILE; then
  345. return
  346. fi
  347. PLEROMA_DOMAIN_NAME=$(get_completion_param "pleroma domain")
  348. if [ $PLEROMA_DOMAIN_NAME ]; then
  349. echo $"Restoring pleroma"
  350. temp_restore_dir=/root/temppleroma
  351. pleroma_dir=$PLEROMA_DIR
  352. function_check pleroma_create_database
  353. pleroma_create_database
  354. USE_POSTGRESQL=1
  355. function_check restore_database_from_friend
  356. restore_database_from_friend pleroma
  357. if [ -d $temp_restore_dir ]; then
  358. rm -rf $temp_restore_dir
  359. fi
  360. function_check restore_directory_from_friend
  361. restore_directory_from_friend $temp_restore_dir pleroma
  362. if [ -d $temp_restore_dir ]; then
  363. chown -R pleroma:pleroma $pleroma_dir
  364. rm -rf $temp_restore_dir
  365. fi
  366. pleroma_update_after_restore pleroma ${PLEROMA_DOMAIN_NAME}
  367. echo $"Restore of pleroma complete"
  368. fi
  369. }
  370. function remove_pleroma {
  371. if [ ${#PLEROMA_DOMAIN_NAME} -eq 0 ]; then
  372. return
  373. fi
  374. systemctl stop pleroma
  375. systemctl disable pleroma
  376. rm /etc/systemd/system/pleroma.service
  377. userdel pleroma
  378. apt-get -yq remove esl-erlang elixir
  379. function_check remove_nodejs
  380. remove_nodejs pleroma-backend
  381. read_config_param "PLEROMA_DOMAIN_NAME"
  382. read_config_param "MY_USERNAME"
  383. echo "Removing $PLEROMA_DOMAIN_NAME"
  384. nginx_dissite $PLEROMA_DOMAIN_NAME
  385. remove_certs $PLEROMA_DOMAIN_NAME
  386. if [ -d /var/www/$PLEROMA_DOMAIN_NAME ]; then
  387. rm -rf /var/www/$PLEROMA_DOMAIN_NAME
  388. fi
  389. if [ -f /etc/nginx/sites-available/$PLEROMA_DOMAIN_NAME ]; then
  390. rm /etc/nginx/sites-available/$PLEROMA_DOMAIN_NAME
  391. fi
  392. if [ -d $PLEROMA_DIR ]; then
  393. rm -rf $PLEROMA_DIR
  394. fi
  395. function_check drop_database_postgresql
  396. drop_database_postgresql
  397. function_check remove_onion_service
  398. remove_onion_service pleroma ${PLEROMA_ONION_PORT}
  399. remove_app pleroma
  400. remove_completion_param install_pleroma
  401. sed -i '/pleroma domain/d' $COMPLETION_FILE
  402. sed -i '/pleroma commit/d' $COMPLETION_FILE
  403. function_check remove_ddns_domain
  404. remove_ddns_domain $PLEROMA_DOMAIN_NAME
  405. }
  406. function install_elixir {
  407. apt-get -yq install wget build-essential
  408. if [ ! -d $INSTALL_DIR ]; then
  409. mkdir -p $INSTALL_DIR
  410. fi
  411. cd $INSTALL_DIR
  412. erlang_package=erlang-solutions_1.0_all.deb
  413. wget https://packages.erlang-solutions.com/$erlang_package
  414. if [ ! -f $INSTALL_DIR/$erlang_package ]; then
  415. exit 72853
  416. fi
  417. dpkg -i $erlang_package
  418. apt-get -yq update
  419. apt-get -yq install esl-erlang
  420. apt-get -yq install elixir
  421. if [ ! -f /usr/local/bin/mix ]; then
  422. echo $'/usr/local/bin/mix not found after elixir installation'
  423. exit 629352
  424. fi
  425. }
  426. function install_pleroma {
  427. if [ ! $ONION_ONLY ]; then
  428. ONION_ONLY='no'
  429. fi
  430. # We need elixir 1.4+ here, so the debian repo package won't do
  431. install_elixir
  432. function_check install_nodejs
  433. install_nodejs pleroma-backend
  434. install_postgresql
  435. if [ ! -d /var/www/$PLEROMA_DOMAIN_NAME ]; then
  436. mkdir /var/www/$PLEROMA_DOMAIN_NAME
  437. fi
  438. if [ -d $PLEROMA_DIR ]; then
  439. rm -rf $PLEROMA_DIR
  440. fi
  441. # get the repo
  442. if [ -d /repos/pleroma ]; then
  443. mkdir -p $PLEROMA_DIR
  444. cp -r -p /repos/pleroma/. $PLEROMA_DIR
  445. cd $PLEROMA_DIR
  446. git pull
  447. else
  448. function_check git_clone
  449. git_clone $PLEROMA_REPO $PLEROMA_DIR
  450. fi
  451. if [ ! -d $PLEROMA_DIR ]; then
  452. echo $'Unable to clone pleroma backend repo'
  453. exit 783523
  454. fi
  455. # create user
  456. useradd -d $PLEROMA_DIR -s /bin/false pleroma
  457. # checkout the commit
  458. cd $PLEROMA_DIR
  459. git checkout $PLEROMA_COMMIT -b $PLEROMA_COMMIT
  460. set_completion_param "pleroma commit" "$PLEROMA_COMMIT"
  461. chown -R pleroma:pleroma $PLEROMA_DIR
  462. # web config
  463. function_check add_ddns_domain
  464. add_ddns_domain $PLEROMA_DOMAIN_NAME
  465. PLEROMA_ONION_HOSTNAME=$(add_onion_service pleroma 80 ${PLEROMA_ONION_PORT})
  466. pleroma_nginx_site=/etc/nginx/sites-available/$PLEROMA_DOMAIN_NAME
  467. if [[ $ONION_ONLY == "no" ]]; then
  468. function_check nginx_http_redirect
  469. nginx_http_redirect $PLEROMA_DOMAIN_NAME "index index.html"
  470. echo 'server {' >> $pleroma_nginx_site
  471. echo ' listen 443 ssl;' >> $pleroma_nginx_site
  472. echo ' listen [::]:443 ssl;' >> $pleroma_nginx_site
  473. echo " server_name $PLEROMA_DOMAIN_NAME;" >> $pleroma_nginx_site
  474. echo '' >> $pleroma_nginx_site
  475. function_check nginx_compress
  476. nginx_compress $PLEROMA_DOMAIN_NAME
  477. echo '' >> $pleroma_nginx_site
  478. echo ' # Security' >> $pleroma_nginx_site
  479. function_check nginx_ssl
  480. nginx_ssl $PLEROMA_DOMAIN_NAME
  481. function_check nginx_disable_sniffing
  482. nginx_disable_sniffing $PLEROMA_DOMAIN_NAME
  483. echo ' add_header Strict-Transport-Security max-age=15768000;' >> $pleroma_nginx_site
  484. echo '' >> $pleroma_nginx_site
  485. echo ' # Logs' >> $pleroma_nginx_site
  486. echo ' access_log /dev/null;' >> $pleroma_nginx_site
  487. echo ' error_log /dev/null;' >> $pleroma_nginx_site
  488. echo '' >> $pleroma_nginx_site
  489. echo " root $PLEROMA_DIR;" >> $pleroma_nginx_site
  490. echo '' >> $pleroma_nginx_site
  491. echo ' index index.html;' >> $pleroma_nginx_site
  492. echo ' location / {' >> $pleroma_nginx_site
  493. function_check nginx_limits
  494. nginx_limits $PLEROMA_DOMAIN_NAME '15m'
  495. echo " proxy_pass http://localhost:$PLEROMA_PORT;" >> $pleroma_nginx_site
  496. echo ' }' >> $pleroma_nginx_site
  497. echo ' include snippets/well-known.conf;' >> $pleroma_nginx_site
  498. echo '}' >> $pleroma_nginx_site
  499. else
  500. echo -n '' > $pleroma_nginx_site
  501. fi
  502. echo 'server {' >> $pleroma_nginx_site
  503. echo " listen 127.0.0.1:$PLEROMA_ONION_PORT default_server;" >> $pleroma_nginx_site
  504. echo " server_name $PLEROMA_ONION_HOSTNAME;" >> $pleroma_nginx_site
  505. echo '' >> $pleroma_nginx_site
  506. function_check nginx_compress
  507. nginx_compress $PLEROMA_DOMAIN_NAME
  508. echo '' >> $pleroma_nginx_site
  509. function_check nginx_disable_sniffing
  510. nginx_disable_sniffing $PLEROMA_DOMAIN_NAME
  511. echo '' >> $pleroma_nginx_site
  512. echo ' # Logs' >> $pleroma_nginx_site
  513. echo ' access_log /dev/null;' >> $pleroma_nginx_site
  514. echo ' error_log /dev/null;' >> $pleroma_nginx_site
  515. echo '' >> $pleroma_nginx_site
  516. echo " root $PLEROMA_DIR;" >> $pleroma_nginx_site
  517. echo '' >> $pleroma_nginx_site
  518. echo ' index index.html;' >> $pleroma_nginx_site
  519. echo ' location / {' >> $pleroma_nginx_site
  520. function_check nginx_limits
  521. nginx_limits $PLEROMA_DOMAIN_NAME '15m'
  522. echo " proxy_pass http://localhost:$PLEROMA_PORT;" >> $pleroma_nginx_site
  523. echo ' }' >> $pleroma_nginx_site
  524. echo ' include snippets/well-known.conf;' >> $pleroma_nginx_site
  525. echo '}' >> $pleroma_nginx_site
  526. function_check create_site_certificate
  527. create_site_certificate $PLEROMA_DOMAIN_NAME 'yes'
  528. function_check nginx_ensite
  529. nginx_ensite $PLEROMA_DOMAIN_NAME
  530. systemctl restart postgresql
  531. systemctl restart nginx
  532. ${PROJECT_NAME}-pass -u $MY_USERNAME -a pleroma -p "$PLEROMA_ADMIN_PASSWORD"
  533. set_completion_param "pleroma domain" "$PLEROMA_DOMAIN_NAME"
  534. # back end
  535. cd $PLEROMA_DIR
  536. mix deps.get
  537. function_check pleroma_create_database
  538. pleroma_create_database
  539. pleroma_secret=config/dev.secret.exs
  540. cp config/dev.exs $pleroma_secret
  541. sed -i "s|username:.*|username: \"pleroma\",|g" $pleroma_secret
  542. sed -i "s|password:.*|password: \"$PLEROMA_ADMIN_PASSWORD\",|g" $pleroma_secret
  543. sed -i "s|database:.*|database: \"pleroma\",|g" $pleroma_secret
  544. sed -i "/config :pleroma, Pleroma.Web.Endpoint/a url: [host: \"$PLEROMA_DOMAIN_NAME\", scheme: \"https\", port: 443]," $pleroma_secret
  545. pleroma_config=config/config.exs
  546. sed -i "s|name: .*|name: \"$PLEROMA_TITLE\",|g" $pleroma_config
  547. sed -i "s|email: .*|email: \"$MY_EMAIL_ADDRESS\",|g" $pleroma_config
  548. # front end
  549. install_pleroma_front_end "pleroma" "$PLEROMA_DOMAIN_NAME" "$PLEROMA_BACKGROUND_IMAGE_URL" "$PLEROMA_TITLE"
  550. install_gnusocial_default_background "gnusocial" "$PLEROMA_DOMAIN_NAME"
  551. sed -i 's|"theme":.*|"theme": "base16-apathy.css",|g' /var/www/${PLEROMA_DOMAIN_NAME}/htdocs/static/config.json
  552. if [ $PLEROMA_BACKGROUND_IMAGE_URL ]; then
  553. pleroma_set_background_image_from_url "$PLEROMA_DOMAIN_NAME" "$PLEROMA_BACKGROUND_IMAGE_URL" "$PLEROMA_TITLE"
  554. fi
  555. # daemon
  556. echo '[Unit]' > /etc/systemd/system/pleroma.service
  557. echo 'Description=Pleroma social network' >> /etc/systemd/system/pleroma.service
  558. echo 'After=network.target postgresql.service' >> /etc/systemd/system/pleroma.service
  559. echo '' >> /etc/systemd/system/pleroma.service
  560. echo '[Service]' >> /etc/systemd/system/pleroma.service
  561. echo 'User=pleroma' >> /etc/systemd/system/pleroma.service
  562. echo "WorkingDirectory=$PLEROMA_DIR"
  563. echo "Environment=\"HOME=$PLEROMA_DIR\"" >> /etc/systemd/system/pleroma.service
  564. echo 'ExecStart=/usr/local/bin/mix phx.server' >> /etc/systemd/system/pleroma.service
  565. echo 'ExecReload=/bin/kill $MAINPID' >> /etc/systemd/system/pleroma.service
  566. echo 'KillMode=process' >> /etc/systemd/system/pleroma.service
  567. echo 'Restart=on-failure' >> /etc/systemd/system/pleroma.service
  568. echo '' >> /etc/systemd/system/pleroma.service
  569. echo '[Install]' >> /etc/systemd/system/pleroma.service
  570. echo 'WantedBy=multi-user.target' >> /etc/systemd/system/pleroma.service
  571. echo 'Alias=pleroma.service' >> /etc/systemd/system/pleroma.service
  572. systemctl daemon-reload
  573. systemctl enable pleroma
  574. systemctl start pleroma
  575. APP_INSTALLED=1
  576. }
  577. # NOTE: deliberately there is no "exit 0"