freedombone-trove 7.5KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243
  1. #!/bin/bash
  2. #
  3. # .---. . .
  4. # | | |
  5. # |--- .--. .-. .-. .-.| .-. .--.--. |.-. .-. .--. .-.
  6. # | | (.-' (.-' ( | ( )| | | | )( )| | (.-'
  7. # ' ' --' --' -' - -' ' ' -' -' -' ' - --'
  8. #
  9. # Freedom in the Cloud
  10. #
  11. # Mirror git repos which the project depends on
  12. #
  13. # License
  14. # =======
  15. #
  16. # Copyright (C) 2015-2016 Bob Mottram <bob@robotics.uk.to>
  17. #
  18. # This program is free software: you can redistribute it and/or modify
  19. # it under the terms of the GNU General Public License as published by
  20. # the Free Software Foundation, either version 3 of the License, or
  21. # (at your option) any later version.
  22. #
  23. # This program is distributed in the hope that it will be useful,
  24. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  25. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  26. # GNU General Public License for more details.
  27. #
  28. # You should have received a copy of the GNU General Public License
  29. # along with this program. If not, see <http://www.gnu.org/licenses/>.
  30. PROJECT_NAME='freedombone'
  31. export TEXTDOMAIN=${PROJECT_NAME}-trove
  32. export TEXTDOMAINDIR="/usr/share/locale"
  33. # Minimum number of characters in a password
  34. MINIMUM_PASSWORD_LENGTH=10
  35. CONFIGURATION_FILE="/root/${PROJECT_NAME}.cfg"
  36. # if this is blank then just use the default repos
  37. FRIENDS_TROVE_SERVER=
  38. REPOS=
  39. TROVE_BASE=/home/trove/trove
  40. MY_TROVE_PASSWORD=
  41. FRIENDS_TROVE_PASSWORD=
  42. NEW_TROVE='no'
  43. FRIENDS_TROVE_SSH_PORT=2222
  44. MAIN_COMMAND=/usr/local/bin/${PROJECT_NAME}
  45. if [ ! -f $MAIN_COMMAND ]; then
  46. MAIN_COMMAND=/usr/bin/${PROJECT_NAME}
  47. fi
  48. REPOS=($(cat ${MAIN_COMMAND} | grep "_REPO=\"" | uniq -u | sed 's|${PROJECT_NAME}|'"${PROJECT_NAME}"'|g'))
  49. # obtain the trove password if it exists
  50. if [ -f $CONFIGURATION_FILE ]; then
  51. if ! grep -q "MY_TROVE_PASSWORD" $CONFIGURATION_FILE; then
  52. MY_TROVE_PASSWORD=$(grep "MY_TROVE_PASSWORD" $CONFIGURATION_FILE | awk -F '=' '{print $2}')
  53. fi
  54. if ! grep -q "FRIENDS_TROVE_SERVER" $CONFIGURATION_FILE; then
  55. FRIENDS_TROVE_SERVER=$(grep "FRIENDS_TROVE_SERVER" $CONFIGURATION_FILE | awk -F '=' '{print $2}')
  56. fi
  57. if ! grep -q "FRIENDS_TROVE_PASSWORD" $CONFIGURATION_FILE; then
  58. FRIENDS_TROVE_PASSWORD=$(grep "FRIENDS_TROVE_PASSWORD" $CONFIGURATION_FILE | awk -F '=' '{print $2}')
  59. fi
  60. if ! grep -q "FRIENDS_TROVE_SSH_PORT" $CONFIGURATION_FILE; then
  61. FRIENDS_TROVE_SSH_PORT=$(grep "FRIENDS_TROVE_SSH_PORT" $CONFIGURATION_FILE | awk -F '=' '{print $2}')
  62. fi
  63. fi
  64. function show_help {
  65. echo ''
  66. echo $"${PROJECT_NAME}-trove --sync [domain/url] -p [password]"
  67. echo ''
  68. echo $'Creates or syncs with a set of git repositories'
  69. echo ''
  70. echo $' --help Show help'
  71. echo $' -n|--new [yes|no] Start a new trove'
  72. echo $" -p|--password [yes|no] Friend's trove user password"
  73. echo $" -m|--mypassword [yes|no] Local trove user password"
  74. echo $" --port [number] Friend's server ssh port number"
  75. echo $" -s|--sync [domain] Friend's server domain to sync with"
  76. echo ''
  77. exit 0
  78. }
  79. function create_trove_user {
  80. if [ -d /home/trove ]; then
  81. return
  82. fi
  83. create_password='no'
  84. if [ ! "$MY_TROVE_PASSWORD" ]; then
  85. create_password='yes'
  86. fi
  87. if [ ${#MY_TROVE_PASSWORD} -lt ${MINIMUM_PASSWORD_LENGTH} ]; then
  88. echo $'Password is too short. Creating new one.'
  89. create_password='yes'
  90. fi
  91. if [[ $create_password == 'yes' ]]; then
  92. MY_TROVE_PASSWORD="$(openssl rand -base64 20 | cut -c1-18)"
  93. fi
  94. useradd -m -p "$MY_TROVE_PASSWORD" -s /bin/bash trove
  95. # remove any existing user files
  96. rm -rf /home/trove/*
  97. # store the trove password
  98. if [ -f $CONFIGURATION_FILE ]; then
  99. if ! grep -q "MY_TROVE_PASSWORD" $CONFIGURATION_FILE; then
  100. echo "MY_TROVE_PASSWORD=$MY_TROVE_PASSWORD" >> $CONFIGURATION_FILE
  101. else
  102. sed -i "s|MY_TROVE_PASSWORD=.*|MY_TROVE_PASSWORD=${MY_TROVE_PASSWORD}|g" $CONFIGURATION_FILE
  103. fi
  104. fi
  105. }
  106. function enable_trove_via_onion {
  107. if ! grep -q 'Host *.onion' /home/trove/.ssh/config; then
  108. if [ ! -d /home/trove/.ssh ]; then
  109. mkdir /home/trove/.ssh
  110. fi
  111. echo 'Host *.onion' >> /home/trove/.ssh/config
  112. echo 'ProxyCommand connect -R remote -5 -S 127.0.0.1:9050 %h %p' >> /home/trove/.ssh/config
  113. chown trove:trove /home/trove/.ssh
  114. chown trove:trove /home/trove/.ssh/config
  115. fi
  116. }
  117. function update_repos_from_friend {
  118. if [ ! $FRIENDS_TROVE_SERVER ]; then
  119. return
  120. fi
  121. if [ ${#FRIENDS_TROVE_SERVER} -lt 2 ]; then
  122. return
  123. fi
  124. new_repos=()
  125. for line in "${REPOS[@]}"
  126. do
  127. repo_name=$(echo "$line" | awk -F '=' '{print $1}')
  128. trove_name=$(echo "$repo_name" | sed "s|_REPO||g" | awk '{print tolower($0)}')
  129. #repo_url=$(echo "$line" | awk -F '=' '{print $2}' | awk -F '"' '{print $2}')
  130. friends_repo_url="ssh://trove@${FRIENDS_TROVE_SERVER}:${FRIENDS_TROVE_SSH_PORT}/home/trove/${trove_name}"
  131. new_line="${repo_name}=\"${friends_repo_url}\""
  132. new_repos+=($new_line)
  133. done
  134. REPOS=("${new_repos[@]}")
  135. }
  136. function sync_trove_repos {
  137. for line in "${REPOS[@]}"
  138. do
  139. repo_name=$(echo "$line" | awk -F '=' '{print $1}')
  140. repo_url=$(echo "$line" | awk -F '=' '{print $2}' | awk -F '"' '{print $2}')
  141. trove_name=$(echo "$repo_name" | sed "s|_REPO||g" | awk '{print tolower($0)}')
  142. if [[ $NEW_TROVE == 'yes' ]]; then
  143. if [ -d /home/trove/${trove_name} ]; then
  144. rm -rf /home/trove/${trove_name}
  145. fi
  146. fi
  147. if [ ! -d /home/trove/${trove_name} ]; then
  148. if [[ ${repo_url} != 'ssh:'* ]]; then
  149. git clone --mirror ${repo_url} /home/trove/${trove_name}
  150. else
  151. sshpass -p "$FRIENDS_TROVE_PASSWORD" git clone --mirror ${repo_url} /home/trove/${trove_name}
  152. fi
  153. if [ ! -d /home/trove/${trove_name} ]; then
  154. echo $"WARNING: failed to mirror repo ${repo_url}"
  155. fi
  156. else
  157. cd /home/trove/${trove_name}
  158. git remote set-url origin ${repo_url}
  159. if [[ ${repo_url} != 'ssh:'* ]]; then
  160. git fetch -p origin
  161. else
  162. sshpass -p "$FRIENDS_TROVE_PASSWORD" git fetch -p origin
  163. fi
  164. fi
  165. done
  166. chown -R trove:trove /home/trove
  167. }
  168. while [[ $# > 1 ]]
  169. do
  170. key="$1"
  171. case $key in
  172. --help)
  173. show_help
  174. ;;
  175. -s|--sync)
  176. shift
  177. # use repos on another server
  178. FRIENDS_TROVE_SERVER="$1"
  179. ;;
  180. -m|--mypass|--mypassword)
  181. shift
  182. MY_TROVE_PASSWORD="$1"
  183. if [ -f $CONFIGURATION_FILE ]; then
  184. if ! grep -q "MY_TROVE_PASSWORD" $CONFIGURATION_FILE; then
  185. echo "MY_TROVE_PASSWORD=$MY_TROVE_PASSWORD" >> $CONFIGURATION_FILE
  186. else
  187. sed -i "s|MY_TROVE_PASSWORD=.*|MY_TROVE_PASSWORD=${MY_TROVE_PASSWORD}|g" $CONFIGURATION_FILE
  188. fi
  189. fi
  190. ;;
  191. -p|--pass|--password)
  192. shift
  193. FRIENDS_TROVE_PASSWORD="$1"
  194. if [ -f $CONFIGURATION_FILE ]; then
  195. if ! grep -q "FRIENDS_TROVE_PASSWORD" $CONFIGURATION_FILE; then
  196. echo "FRIENDS_TROVE_PASSWORD=$FRIENDS_TROVE_PASSWORD" >> $CONFIGURATION_FILE
  197. else
  198. sed -i "s|FRIENDS_TROVE_PASSWORD=.*|FRIENDS_TROVE_PASSWORD=${FRIENDS_TROVE_PASSWORD}|g" $CONFIGURATION_FILE
  199. fi
  200. fi
  201. ;;
  202. -n|--new)
  203. shift
  204. NEW_TROVE="$1"
  205. ;;
  206. --port)
  207. shift
  208. FRIENDS_TROVE_SSH_PORT=${1}
  209. ;;
  210. *)
  211. # unknown option
  212. ;;
  213. esac
  214. shift
  215. done
  216. create_trove_user
  217. enable_trove_via_onion
  218. update_repos_from_friend
  219. sync_trove_repos
  220. exit 0