freedombone-image-mesh 23KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642
  1. #!/bin/bash
  2. #
  3. # .---. . .
  4. # | | |
  5. # |--- .--. .-. .-. .-.| .-. .--.--. |.-. .-. .--. .-.
  6. # | | (.-' (.-' ( | ( )| | | | )( )| | (.-'
  7. # ' ' --' --' -' - -' ' ' -' -' -' ' - --'
  8. #
  9. # Freedom in the Cloud
  10. #
  11. # This command is run on initial install in order to set up a mesh router
  12. #
  13. # License
  14. # =======
  15. #
  16. # This program is free software: you can redistribute it and/or modify
  17. # it under the terms of the GNU Affero General Public License as published by
  18. # the Free Software Foundation, either version 3 of the License, or
  19. # (at your option) any later version.
  20. #
  21. # This program is distributed in the hope that it will be useful,
  22. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  23. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  24. # GNU Affero General Public License for more details.
  25. #
  26. # You should have received a copy of the GNU Affero General Public License
  27. # along with this program. If not, see <http://www.gnu.org/licenses/>.
  28. PROJECT_NAME='freedombone'
  29. export TEXTDOMAIN=${PROJECT_NAME}-image-mesh
  30. export TEXTDOMAINDIR="/usr/share/locale"
  31. # The browser application to use
  32. BROWSER=midori
  33. BROWSER_OPTIONS='-p'
  34. MY_USERNAME='fbone'
  35. PEER_ID=
  36. INSTALL_DIR=/root/build
  37. INSTALL_LOG=/var/log/${PROJECT_NAME}.log
  38. DEFAULT_USERNAME=fbone
  39. TOX_NODES=
  40. #TOX_NODES=(
  41. # '192.254.75.102,2607:5600:284::2,33445,951C88B7E75C867418ACDB5D273821372BB5BD652740BCDF623A4FA293E75D2F,Tox RELENG,US'
  42. # '144.76.60.215,2a01:4f8:191:64d6::1,33445,04119E835DF3E78BACF0F84235B300546AF8B936F035185E2A8E9E0A67C8924F,sonOfRa,DE'
  43. #)
  44. MESH_INSTALL_DIR=/var/lib
  45. MESH_INSTALL_COMPLETED=/root/.mesh_setup_completed
  46. MESH_INSTALL_SETUP=/root/.initial_mesh_setup
  47. MESH_AMNESIC=/root/.amnesic
  48. FIRST_BOOT=/home/$MY_USERNAME/.first_boot
  49. # Tomb containing logs
  50. TOMB_LOG_SIZE_MB=10
  51. # tmp directory
  52. TOMB_TMP_SIZE_MB=10
  53. # size of the tomb used to store qtox settings
  54. TOMB_TOX_SIZE_MB=10
  55. # Tomb containing tox bootstrap
  56. TOMB_TOX_BOOTSTRAP_SIZE_MB=10
  57. MESH_INSTALL_DIR=/var/lib
  58. IPFS_PORT=4001
  59. CURRENT_BLOG_INDEX=/home/$MY_USERNAME/.blog-index
  60. # Debian stretch has a problem where the formerly predictable wlan0 and eth0
  61. # device names get assigned random names. This is a hacky workaround.
  62. # Also adding net.ifnames=0 to kernel options on bootloader may work.
  63. function enable_predictable_device_names {
  64. ln -s /dev/null /etc/udev/rules.d/80-net-setup-link.rules
  65. update-initramfs -u
  66. }
  67. function create_avahi_mesh_service {
  68. service_name=$1
  69. service_type=$2
  70. service_protocol=$3
  71. service_port=$4
  72. service_description="$5"
  73. if [ ! -d /etc/avahi ]; then
  74. echo $'create_avahi_mesh_service: avahi was not installed'
  75. exit 52925
  76. fi
  77. echo '<?xml version="1.0" standalone="no"?><!--*-nxml-*-->' > /etc/avahi/services/${service_name}.service
  78. echo '<!DOCTYPE service-group SYSTEM "avahi-service.dtd">' >> /etc/avahi/services/${service_name}.service
  79. echo '<service-group>' >> /etc/avahi/services/${service_name}.service
  80. echo " <name replace-wildcards=\"yes\">%h ${service_type}</name>" >> /etc/avahi/services/${service_name}.service
  81. echo ' <service>' >> /etc/avahi/services/${service_name}.service
  82. echo " <type>_${service_type}._${service_protocol}</type>" >> /etc/avahi/services/${service_name}.service
  83. echo " <port>${service_port}</port>" >> /etc/avahi/services/${service_name}.service
  84. echo " <txt-record>$service_description</txt-record>" >> /etc/avahi/services/${service_name}.service
  85. echo ' </service>' >> /etc/avahi/services/${service_name}.service
  86. echo '</service-group>' >> /etc/avahi/services/${service_name}.service
  87. }
  88. function create_ram_disk {
  89. ramdisk_size_mb=$1
  90. if [ ! -d /mnt/ramdisk ]; then
  91. mkdir -p /mnt/ramdisk
  92. fi
  93. if ! grep -q "ramdisk" /etc/fstab; then
  94. mount -t tmpfs -o size=${ramdisk_size_mb}m tmpfs /mnt/ramdisk
  95. echo "tmpfs /mnt/ramdisk tmpfs nodev,nosuid,noexec,nodiratime,size=${ramdisk_size_mb}M 0 0" >> /etc/fstab
  96. echo $"${ramdisk_size_mb}M ramdisk created for /tmp" >> $INSTALL_LOG
  97. fi
  98. }
  99. function make_root_read_only {
  100. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  101. if ! grep -q 'ro,subvol=@' /etc/fstab; then
  102. sed -i 's|subvol=@|ro,subvol=@|g' /etc/fstab
  103. echo $'Root filesystem set to read only' >> $INSTALL_LOG
  104. fi
  105. fi
  106. }
  107. function tmp_ram_disk {
  108. ramdisk_size_mb=$1
  109. if [ ! -d /tmp ]; then
  110. mkdir -p /tmp
  111. fi
  112. if ! grep -q '/tmp' /etc/fstab; then
  113. mount -t tmpfs -o size=${ramdisk_size_mb}m tmpfs /tmp
  114. echo "tmpfs /tmp tmpfs nodev,nosuid,noexec,nodiratime,size=${ramdisk_size_mb}M 0 0" >> /etc/fstab
  115. fi
  116. }
  117. function set_hostname {
  118. DEFAULT_DOMAIN_NAME="$1"
  119. echo "$DEFAULT_DOMAIN_NAME" > /etc/hostname
  120. echo "$DEFAULT_DOMAIN_NAME" > /etc/mailname
  121. hostname $DEFAULT_DOMAIN_NAME
  122. if grep -q "127.0.1.1" /etc/hosts; then
  123. sed -i "s/127.0.1.1.*/127.0.1.1 $DEFAULT_DOMAIN_NAME/g" /etc/hosts
  124. else
  125. echo "127.0.1.1 $DEFAULT_DOMAIN_NAME" >> /etc/hosts
  126. fi
  127. }
  128. function change_avahi_name {
  129. decarray=( 1 2 3 4 5 6 7 8 9 0 )
  130. PEER_ID=${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}${decarray[$RANDOM%10]}
  131. sed -i "s|#host-name=.*|host-name=P$PEER_ID|g" /etc/avahi/avahi-daemon.conf
  132. sed -i "s|host-name=.*|host-name=P$PEER_ID|g" /etc/avahi/avahi-daemon.conf
  133. set_hostname P$PEER_ID
  134. systemctl restart avahi-daemon
  135. echo "New avahi name for this peer is P$PEER_ID"
  136. echo $"avahi name changed to P${PEER_ID}.local" >> $INSTALL_LOG
  137. }
  138. function configure_toxcore {
  139. echo $'Configuring toxcore' >> $INSTALL_LOG
  140. TOXIC_FILE=$(cat /usr/share/${PROJECT_NAME}/apps/${PROJECT_NAME}-app-tox | grep "TOXIC_FILE=" | head -n 1 | awk -F '=' '{print $2}')
  141. if [ -f $MESH_AMNESIC ]; then
  142. # change to the amnesic mount
  143. sed -i 's|/var/lib/tox-bootstrapd|/media/tox-bootstrapd|g' /etc/tox-bootstrapd.conf
  144. systemctl stop tox-bootstrapd.service
  145. sed -i 's|WorkingDirectory=.*|WorkingDirectory=/media/tox-bootstrapd|g' /etc/systemd/system/tox-bootstrapd.service
  146. systemctl daemon-reload
  147. userdel -r tox-bootstrapd
  148. useradd --home-dir /media/tox-bootstrapd --create-home --system --shell /sbin/nologin --comment "Account to run Tox's DHT bootstrap daemon" --user-group tox-bootstrapd
  149. chmod 700 /media/tox-bootstrapd
  150. fi
  151. echo $'Enabling toxcore daemon' >> $INSTALL_LOG
  152. chmod +x /etc/systemd/system/tox-bootstrapd.service
  153. systemctl enable tox-bootstrapd.service
  154. echo $'Regenerating Tox bootstrap node keys' >> $INSTALL_LOG
  155. systemctl stop tox-bootstrapd.service
  156. if [ -f /var/lib/tox-bootstrapd/keys ]; then
  157. rm /var/lib/tox-bootstrapd/keys
  158. fi
  159. systemctl start tox-bootstrapd.service
  160. # sleep for a while so that the tox keys can be generated
  161. sleep 30
  162. TOX_BOOTSTRAP_ID_FILE=/var/lib/tox-bootstrapd/pubkey.txt
  163. if [ -f $MESH_AMNESIC ]; then
  164. TOX_BOOTSTRAP_ID_FILE=/media/tox-bootstrapd/pubkey.txt
  165. fi
  166. TOX_PUBLIC_KEY=$(cat /var/log/syslog | grep tox | grep "Public Key" | awk -F ' ' '{print $8}' | tail -1)
  167. if [ ${#TOX_PUBLIC_KEY} -lt 30 ]; then
  168. echo $'WARNING: Could not obtain the tox node public key' >> $INSTALL_LOG
  169. exit 46362
  170. fi
  171. # save the public key for later reference
  172. echo "$TOX_PUBLIC_KEY" > $TOX_BOOTSTRAP_ID_FILE
  173. echo $'Configured toxcore' >> $INSTALL_LOG
  174. }
  175. function create_tox_user {
  176. # remove any existing user
  177. if [ -f /home/${MY_USERNAME}/.config/tox/data.tox ]; then
  178. rm -f /home/${MY_USERNAME}/.config/tox/data*
  179. fi
  180. if [ -d /home/${MY_USERNAME}/.config/tox/avatars ]; then
  181. rm -rf /home/${MY_USERNAME}/.config/tox/avatars
  182. fi
  183. if [ ! -f /home/${MY_USERNAME}/.first_boot ]; then
  184. touch /home/${MY_USERNAME}/.first_boot
  185. fi
  186. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  187. return
  188. fi
  189. toxid -u $MY_USERNAME -n data
  190. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config/tox
  191. chmod +x /home/$MY_USERNAME/Desktop/*.desktop
  192. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/Desktop/*
  193. echo $'Created Tox user' >> $INSTALL_LOG
  194. }
  195. function show_desktop_icons {
  196. if [ ! -d /home/$MY_USERNAME/Desktop ]; then
  197. return
  198. fi
  199. echo '#!/bin/bash' > /home/$MY_USERNAME/.showhelp
  200. echo "pkill $BROWSER" >> /home/$MY_USERNAME/.showhelp
  201. echo "$BROWSER $BROWSER_OPTIONS /home/$MY_USERNAME/help/mesh.html" >> /home/$MY_USERNAME/.showhelp
  202. chmod +x /home/$MY_USERNAME/.showhelp
  203. chown $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/.showhelp
  204. echo '[Desktop Entry]' > /home/$MY_USERNAME/Desktop/help.desktop
  205. echo 'Version=1.0' >> /home/$MY_USERNAME/Desktop/help.desktop
  206. echo 'Name=Help' >> /home/$MY_USERNAME/Desktop/help.desktop
  207. echo 'Type=Application' >> /home/$MY_USERNAME/Desktop/help.desktop
  208. echo 'Comment=Show help' >> /home/$MY_USERNAME/Desktop/help.desktop
  209. echo "Exec=bash -c /home/$MY_USERNAME/.showhelp" >> /home/$MY_USERNAME/Desktop/help.desktop
  210. echo 'Icon=/usr/share/freedombone/avatars/help.png' >> /home/$MY_USERNAME/Desktop/help.desktop
  211. echo 'Terminal=false' >> /home/$MY_USERNAME/Desktop/help.desktop
  212. echo 'Categories=Application;' >> /home/$MY_USERNAME/Desktop/help.desktop
  213. echo '[Desktop Entry]' > /home/$MY_USERNAME/Desktop/wifi.desktop
  214. echo 'Version=1.0' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  215. echo 'Name=Wifi' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  216. echo 'Type=Application' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  217. echo 'Comment=Check wifi status' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  218. echo 'Exec=mate-terminal -e "sudo batman monitor"' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  219. echo 'Icon=/usr/share/freedombone/avatars/wifi.png' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  220. echo 'Terminal=false' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  221. echo 'Categories=Application;' >> /home/$MY_USERNAME/Desktop/wifi.desktop
  222. echo '[Desktop Entry]' > /home/$MY_USERNAME/Desktop/restart.desktop
  223. echo 'Version=1.0' >> /home/$MY_USERNAME/Desktop/restart.desktop
  224. echo 'Name=Network Restart' >> /home/$MY_USERNAME/Desktop/restart.desktop
  225. echo 'Type=Application' >> /home/$MY_USERNAME/Desktop/restart.desktop
  226. echo 'Comment=Restart batman' >> /home/$MY_USERNAME/Desktop/restart.desktop
  227. echo 'Exec=mate-terminal -e "sudo batman restart 2> /dev/null"' >> /home/$MY_USERNAME/Desktop/restart.desktop
  228. echo 'Icon=/usr/share/freedombone/avatars/restart.png' >> /home/$MY_USERNAME/Desktop/restart.desktop
  229. echo 'Terminal=false' >> /home/$MY_USERNAME/Desktop/restart.desktop
  230. echo 'Categories=Application;' >> /home/$MY_USERNAME/Desktop/restart.desktop
  231. echo '[Desktop Entry]' > /home/$MY_USERNAME/Desktop/new_identity.desktop
  232. echo 'Version=1.0' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  233. echo 'Name=New Identity' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  234. echo 'Type=Application' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  235. echo 'Comment=Create a new identity' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  236. echo 'Exec=mate-terminal -e freedombone-mesh-reset' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  237. echo 'Icon=/usr/share/freedombone/avatars/newidentity.png' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  238. echo 'Terminal=false' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  239. echo 'Categories=Application;' >> /home/$MY_USERNAME/Desktop/new_identity.desktop
  240. # set permissions
  241. chmod +x /home/$MY_USERNAME/Desktop/*.desktop
  242. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/Desktop/*
  243. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/.config
  244. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/.config/tox
  245. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/.config/autostart
  246. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/*.sh
  247. # link to Tahoe-LAFS Magic folder
  248. #ln -s /home/${MY_USERNAME}/Desktop/${TAHOELAFS_SHARED_DIR} /home/${MY_USERNAME}/${TAHOELAFS_SHARED_DIR}
  249. # restart caja
  250. killall caja
  251. killall mate-panel
  252. }
  253. function enable_batman_daemon {
  254. systemctl enable batman
  255. systemctl daemon-reload
  256. }
  257. function mesh_amnesic {
  258. if [ ! -f $MESH_AMNESIC ]; then
  259. return
  260. fi
  261. echo '#!/bin/bash' > /usr/bin/amnesic
  262. echo '' >> /usr/bin/amnesic
  263. echo 'MY_USERNAME=$1' >> /usr/bin/amnesic
  264. echo 'tomb slam all' >> /usr/bin/amnesic
  265. echo "if [ -f /home/${MY_USERNAME}/.bash_history ]; then" >> /usr/bin/amnesic
  266. echo " shred -zu /home/${MY_USERNAME}/.bash_history" >> /usr/bin/amnesic
  267. echo 'fi' >> /usr/bin/amnesic
  268. echo "if [ -f /home/${MY_USERNAME}/.xsession-errors ]; then" >> /usr/bin/amnesic
  269. echo " shred -zu /home/${MY_USERNAME}/.xsession-errors" >> /usr/bin/amnesic
  270. echo 'fi' >> /usr/bin/amnesic
  271. echo '' >> /usr/bin/amnesic
  272. echo 'exit 0' >> /usr/bin/amnesic
  273. chmod +x /usr/bin/amnesic
  274. if [ ! -f /etc/systemd/system/amnesic.service ]; then
  275. echo '[Unit]' > /etc/systemd/system/amnesic.service
  276. echo 'Description=Amnesic Mesh' >> /etc/systemd/system/amnesic.service
  277. echo '' >> /etc/systemd/system/amnesic.service
  278. echo '[Service]' >> /etc/systemd/system/amnesic.service
  279. echo 'User=root' >> /etc/systemd/system/amnesic.service
  280. echo 'Group=root' >> /etc/systemd/system/amnesic.service
  281. echo 'Type=oneshot' >> /etc/systemd/system/amnesic.service
  282. echo 'RemainAfterExit=true' >> /etc/systemd/system/amnesic.service
  283. echo 'ExecStart=/bin/true' >> /etc/systemd/system/amnesic.service
  284. echo "ExecStop=/usr/bin/amnesic $MY_USERNAME" >> /etc/systemd/system/amnesic.service
  285. echo '' >> /etc/systemd/system/amnesic.service
  286. echo '[Install]' >> /etc/systemd/system/amnesic.service
  287. echo 'WantedBy=multi-user.target' >> /etc/systemd/system/amnesic.service
  288. chmod +x /etc/systemd/system/amnesic.service
  289. systemctl daemon-reload
  290. fi
  291. systemctl enable amnesic
  292. systemctl start amnesic
  293. }
  294. function mesh_restart_daemons {
  295. systemctl restart avahi-daemon
  296. systemctl restart tox-bootstrapd
  297. echo $'Daemons restarted' >> $INSTALL_LOG
  298. }
  299. function create_tomb {
  300. tomb_name=$1
  301. tomb_size=$2
  302. if [ -f /tmp/${tomb_name}.tomb ]; then
  303. tomb slam /tmp/${tomb_name}.tomb
  304. fi
  305. # make a temporary password
  306. tomb dig -s ${tomb_size} /tmp/${tomb_name}.tomb
  307. if [ ! -f /tmp/${tomb_name}.tomb ]; then
  308. echo "WARNING: ${tomb_name} tomb did not install properly" >> /var/log/${PROJECT_NAME}.log
  309. tomb >> /var/log/${PROJECT_NAME}.log
  310. fi
  311. TOMB_TEMP_PASSWORD=$(openssl rand -base64 64 | tr -dc A-Za-z0-9 | head -c 30)
  312. tomb forge /mnt/ramdisk/${tomb_name}.tomb.key --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  313. tomb lock /tmp/${tomb_name}.tomb -k /mnt/ramdisk/${tomb_name}.tomb.key --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  314. tomb open /tmp/${tomb_name}.tomb -k /mnt/ramdisk/${tomb_name}.tomb.key --tomb-pwd "${TOMB_TEMP_PASSWORD}" --unsafe
  315. # stop stuff from popping up
  316. pkill caja
  317. # clear the temporary password
  318. TOMB_TEMP_PASSWORD=
  319. }
  320. function setup_amnesic_data {
  321. if [ ! -f $MESH_AMNESIC ]; then
  322. return
  323. fi
  324. if [ ! -d /mnt/ramdisk ]; then
  325. return
  326. fi
  327. # clear crypttab
  328. if [ -f /etc/crypttab ]; then
  329. shred -zu /etc/crypttab
  330. touch /etc/crypttab
  331. fi
  332. tomb_name=log
  333. create_tomb ${tomb_name} $TOMB_LOG_SIZE_MB
  334. if [ -d /media/${tomb_name} ]; then
  335. if [ -d /var/log ]; then
  336. if [ ! -d /var/log_base ]; then
  337. mv /var/log /var/log_base
  338. fi
  339. fi
  340. ln -s /media/${tomb_name} /var/log
  341. if [ -d /var/log_base ]; then
  342. cp -rp /var/log_base/* /media/${tomb_name}
  343. fi
  344. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  345. else
  346. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  347. fi
  348. tomb_name=tox-bootstrapd
  349. if [ -f /etc/systemd/system/${tomb_name}.service ]; then
  350. systemctl stop ${tomb_name}
  351. fi
  352. create_tomb ${tomb_name} $TOMB_TOX_BOOTSTRAP_SIZE_MB
  353. if [ -d /media/${tomb_name} ]; then
  354. if [ -d /var/lib/tox-bootstrapd ]; then
  355. if [ ! -d /var/lib/tox-bootstrapd_base ]; then
  356. mv /var/lib/tox-bootstrapd /var/lib/tox-bootstrapd_base
  357. fi
  358. fi
  359. if [ -d /var/lib/tox-bootstrapd ]; then
  360. shred -zu /var/lib/tox-bootstrapd/*
  361. rm -rf /var/lib/tox-bootstrapd
  362. fi
  363. ln -s /media/${tomb_name} /var/lib/tox-bootstrapd
  364. if [ -d /var/lib/tox-bootstrapd_base ]; then
  365. cp -rp /var/lib/tox-bootstrapd_base/* /media/${tomb_name}
  366. fi
  367. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  368. else
  369. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  370. fi
  371. tomb_name=tox
  372. create_tomb ${tomb_name} $TOMB_TOX_SIZE_MB
  373. if [ -d /media/${tomb_name} ]; then
  374. if [ ! -d /home/${MY_USERNAME}/.config ]; then
  375. mkdir -p /home/${MY_USERNAME}/.config
  376. chown ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config
  377. fi
  378. if [ -d /home/${MY_USERNAME}/.config/${tomb_name} ]; then
  379. rm -rf /home/${MY_USERNAME}/.config/${tomb_name}
  380. fi
  381. ln -s /media/${tomb_name} /home/${MY_USERNAME}/.config/${tomb_name}
  382. chown -R ${MY_USERNAME}:${MY_USERNAME} /home/${MY_USERNAME}/.config/${tomb_name}
  383. chown -R ${MY_USERNAME}:${MY_USERNAME} /media/${tomb_name}
  384. echo "${tomb_name} tomb created" >> $INSTALL_LOG
  385. else
  386. echo "WARNING: ${tomb_name} tomb not found" >> $INSTALL_LOG
  387. fi
  388. }
  389. function setup_ipfs {
  390. IPFS_PATH=/usr/bin
  391. IPFS_KEY_LENGTH=2048
  392. IPFS_COMMAND=$IPFS_PATH/ipfs
  393. IPFS_PUBLIC=/home/$MY_USERNAME/.ipfs-public
  394. su -c "systemctl --user enable ipfs" - $MY_USERNAME
  395. if [ -f $CURRENT_BLOG_INDEX ]; then
  396. shred -zu $CURRENT_BLOG_INDEX
  397. fi
  398. if [ -d /home/$MY_USERNAME/Public ]; then
  399. rm /home/$MY_USERNAME/Desktop/Public
  400. rm -rf /home/$MY_USERNAME/Public
  401. fi
  402. if [ -d /home/$MY_USERNAME/CreateBlog/content/images ]; then
  403. shred -zu /home/$MY_USERNAME/CreateBlog/content/images/*
  404. fi
  405. if [ -d /home/$MY_USERNAME/CreateBlog/content ]; then
  406. shred -zu /home/$MY_USERNAME/CreateBlog/content/*
  407. if grep -q "THEME=" /home/$MY_USERNAME/CreateBlog/pelicanconf.py; then
  408. sed -i "s|THEME=.*|THEME='themes/nice-blog'|g" /home/$MY_USERNAME/CreateBlog/pelicanconf.py
  409. else
  410. echo "THEME='themes/nice-blog'" >> /home/$MY_USERNAME/CreateBlog/pelicanconf.py
  411. fi
  412. fi
  413. if [ -d /home/$MY_USERNAME/.ipfs ]; then
  414. shred -zu /home/$MY_USERNAME/.ipfs/config
  415. rm -rf /home/$MY_USERNAME/.ipfs
  416. su -c "systemctl --user restart ipfs" - $MY_USERNAME
  417. else
  418. su -c "systemctl --user start ipfs" - $MY_USERNAME
  419. fi
  420. if [ -f /home/$MY_USERNAME/.blog-index ]; then
  421. shred -zu /home/$MY_USERNAME/.blog-index
  422. fi
  423. if [ -f /home/$MY_USERNAME/.blog-theme-index ]; then
  424. shred -zu /home/$MY_USERNAME/.blog-theme-index
  425. fi
  426. if [ -f /home/$MY_USERNAME/.ipfs-id ]; then
  427. shred -zu /home/$MY_USERNAME/.ipfs-id
  428. fi
  429. if [ -f /home/$MY_USERNAME/.ipfs-public ]; then
  430. shred -zu /home/$MY_USERNAME/.ipfs-public
  431. fi
  432. su -c "$IPFS_COMMAND init -b $IPFS_KEY_LENGTH" - $MY_USERNAME
  433. if [ ! -d /home/$MY_USERNAME/.ipfs ]; then
  434. echo "IPFS could not be initialised for user $MY_USERNAME" >> $INSTALL_LOG
  435. return
  436. fi
  437. MY_IPFS_ID=/home/$MY_USERNAME/.ipfs-id
  438. su -c "echo \$($IPFS_COMMAND id | grep '\"ID\":' | awk -F '\"' '{print \$4}') > $MY_IPFS_ID" - $MY_USERNAME
  439. if [ ! -f $MY_IPFS_ID ]; then
  440. echo 'No IPFS identity was created' >> $INSTALL_LOG
  441. return
  442. fi
  443. IPFS_PEER_ID=$(cat $MY_IPFS_ID)
  444. if [ ${#IPFS_PEER_ID} -lt 10 ]; then
  445. echo 'Invalid IPFS peer ID' >> $INSTALL_LOG
  446. echo "$IPFS_PEER_ID" >> $INSTALL_LOG
  447. return
  448. fi
  449. # make a public directory
  450. TOX_ID='none'
  451. if [ -d /home/$MY_USERNAME/Desktop ]; then
  452. if [ ! -d /home/$MY_USERNAME/Public ]; then
  453. mkdir /home/$MY_USERNAME/Public
  454. echo $'Files within this directory will be publicly visible on the network' > /home/$MY_USERNAME/Public/README.txt
  455. chown -R $MY_USERNAME:$MY_USERNAME /home/$MY_USERNAME/Public
  456. ln -s /home/$MY_USERNAME/Public /home/$MY_USERNAME/Desktop/Public
  457. su -c "echo \$($IPFS_COMMAND add -rq /home/$MY_USERNAME/Public | tail -n 1) > $IPFS_PUBLIC" - $MY_USERNAME
  458. if [ ! -f $IPFS_PUBLIC ]; then
  459. echo $'Unable to create public IPFS directory' >> $INSTALL_LOG
  460. exit 368225
  461. fi
  462. fi
  463. TOX_ID=$(su -c 'toxid' - $MY_USERNAME)
  464. fi
  465. create_avahi_mesh_service "ipfs_id" "ipfs_id" "udp" "$IPFS_PORT" "${IPFS_PEER_ID}:${TOX_ID}"
  466. echo "IPFS installed with ID ${IPFS_PEER_ID}" >> $INSTALL_LOG
  467. }
  468. function setup_tahoelafs {
  469. reconfigure_tahoelafs
  470. TAHOELAFS_CONFIG=/home/${MY_USERNAME}/.tahoe/tahoe.cfg
  471. if [ ! -f ${TAHOELAFS_CONFIG} ]; then
  472. exit 673923
  473. fi
  474. echo $'Configured Tahoe-LAFS' >> $INSTALL_LOG
  475. }
  476. # whether to reset the identity
  477. set_new_identity=
  478. if [ $2 ]; then
  479. if [[ "$2" == $"new"* ]]; then
  480. if [ ! -f $MESH_INSTALL_SETUP ]; then
  481. touch $MESH_INSTALL_SETUP
  482. fi
  483. set_new_identity=1
  484. fi
  485. if [[ "$2" == $"amnesic"* ]]; then
  486. if [ ! -f $MESH_AMNESIC ]; then
  487. touch $MESH_AMNESIC
  488. fi
  489. if [ ! -f $MESH_INSTALL_SETUP ]; then
  490. touch $MESH_INSTALL_SETUP
  491. fi
  492. set_new_identity=1
  493. fi
  494. fi
  495. if [ -f $MESH_INSTALL_SETUP ]; then
  496. if [ $1 ]; then
  497. MY_USERNAME=$1
  498. fi
  499. if [ ! $set_new_identity ]; then
  500. # sleep in order to allow other daemons to start up
  501. sleep 5
  502. fi
  503. # clear the install log
  504. if [ -f $INSTALL_LOG ]; then
  505. rm $INSTALL_LOG
  506. fi
  507. echo $'Beginning mesh node setup' >> $INSTALL_LOG
  508. if [ -d /home/$MY_USERNAME/.config ]; then
  509. chown ${MY_USERNAME}:${MY_USERNAME} /home/$MY_USERNAME/.config
  510. fi
  511. #tomb slam all
  512. tmp_ram_disk 100
  513. enable_predictable_device_names
  514. enable_batman_daemon
  515. #create_ram_disk 1
  516. #setup_amnesic_data
  517. change_avahi_name
  518. configure_toxcore
  519. create_tox_user
  520. #setup_tahoelafs
  521. setup_ipfs
  522. mesh_amnesic
  523. make_root_read_only
  524. if [ ! -f $MESH_AMNESIC ]; then
  525. rm $MESH_INSTALL_SETUP
  526. systemctl disable mesh-setup.service
  527. fi
  528. show_desktop_icons
  529. mesh_restart_daemons
  530. if [ ! -f $MESH_INSTALL_COMPLETED ]; then
  531. echo $'Mesh node setup complete' >> $INSTALL_LOG
  532. touch $MESH_INSTALL_COMPLETED
  533. if [ -d /home/$MY_USERNAME/Desktop ]; then
  534. touch $FIRST_BOOT
  535. chown ${MY_USERNAME}:${MY_USERNAME} $FIRST_BOOT
  536. fi
  537. # set the desktop background
  538. if [ -d /home/$MY_USERNAME/Desktop ]; then
  539. MESH_DESKTOP_BACKGROUND_IMAGE=/usr/local/share/${PROJECT_NAME}_mesh_background.png
  540. cp $MESH_DESKTOP_BACKGROUND_IMAGE /usr/share/images/desktop-base/${PROJECT_NAME}_mesh_background.png
  541. rm /usr/share/images/desktop-base/desktop-background
  542. ln -s /usr/share/images/desktop-base/${PROJECT_NAME}_mesh_background.png /usr/share/images/desktop-base/desktop-background
  543. fi
  544. if [ -f /etc/default/grub ]; then
  545. update-grub
  546. fi
  547. systemctl reboot -i
  548. fi
  549. fi
  550. exit 0