2017-04-08 04:04:27 +02:00
|
|
|
#!/bin/bash
|
|
|
|
|
2018-05-01 18:48:06 +02:00
|
|
|
|
|
|
|
# Execute a command as another user
|
|
|
|
# usage: exec_as USER COMMAND [ARG ...]
|
|
|
|
exec_as() {
|
|
|
|
local user=$1
|
|
|
|
shift 1
|
|
|
|
|
|
|
|
if [[ $user = $(whoami) ]]; then
|
|
|
|
eval "$@"
|
|
|
|
else
|
|
|
|
sudo --login --user="$user" "$@"
|
|
|
|
fi
|
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
#=================================================
|
2017-04-10 04:55:10 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# POSTGRES HELPERS
|
|
|
|
#
|
|
|
|
# Point of contact : Jean-Baptiste Holcroft <jean-baptiste@holcroft.fr>
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
# Create a master password and set up global settings
|
|
|
|
# Please always call this script in install and restore scripts
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_test_if_first_run
|
|
|
|
|
|
|
|
ynh_psql_test_if_first_run() {
|
|
|
|
if [ -f /etc/yunohost/psql ];
|
|
|
|
then
|
|
|
|
echo "PostgreSQL is already installed, no need to create master password"
|
|
|
|
else
|
|
|
|
pgsql=$(ynh_string_random)
|
|
|
|
pg_hba=""
|
|
|
|
echo "$pgsql" >> /etc/yunohost/psql
|
|
|
|
|
|
|
|
if [ -e /etc/postgresql/9.4/ ]
|
|
|
|
then
|
|
|
|
pg_hba=/etc/postgresql/9.4/main/pg_hba.conf
|
|
|
|
elif [ -e /etc/postgresql/9.6/ ]
|
|
|
|
then
|
|
|
|
pg_hba=/etc/postgresql/9.6/main/pg_hba.conf
|
|
|
|
else
|
|
|
|
ynh_die "postgresql shoud be 9.4 or 9.6"
|
|
|
|
fi
|
|
|
|
|
|
|
|
systemctl start postgresql
|
|
|
|
sudo --login --user=postgres psql -c"ALTER user postgres WITH PASSWORD '$pgsql'" postgres
|
|
|
|
|
|
|
|
# force all user to connect to local database using passwords
|
|
|
|
# https://www.postgresql.org/docs/current/static/auth-pg-hba-conf.html#EXAMPLE-PG-HBA.CONF
|
|
|
|
# Note: we can't use peer since YunoHost create users with nologin
|
|
|
|
# See: https://github.com/YunoHost/yunohost/blob/unstable/data/helpers.d/user
|
|
|
|
sed -i '/local\s*all\s*all\s*peer/i \
|
|
|
|
local all all password' "$pg_hba"
|
|
|
|
systemctl enable postgresql
|
|
|
|
systemctl reload postgresql
|
|
|
|
fi
|
2017-04-08 04:04:27 +02:00
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
# Open a connection as a user
|
2017-04-08 04:04:27 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# example: ynh_psql_connect_as 'user' 'pass' <<< "UPDATE ...;"
|
|
|
|
# example: ynh_psql_connect_as 'user' 'pass' < /path/to/file.sql
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_connect_as user pwd [db]
|
|
|
|
# | arg: user - the user name to connect as
|
|
|
|
# | arg: pwd - the user password
|
|
|
|
# | arg: db - the database to connect to
|
|
|
|
ynh_psql_connect_as() {
|
|
|
|
user="$1"
|
|
|
|
pwd="$2"
|
|
|
|
db="$3"
|
|
|
|
sudo --login --user=postgres PGUSER="$user" PGPASSWORD="$pwd" psql "$db"
|
2017-04-08 04:04:27 +02:00
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
# # Execute a command as root user
|
2017-04-11 11:47:25 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# usage: ynh_psql_execute_as_root sql [db]
|
|
|
|
# | arg: sql - the SQL command to execute
|
|
|
|
# | arg: db - the database to connect to
|
|
|
|
ynh_psql_execute_as_root () {
|
|
|
|
sql="$1"
|
|
|
|
sudo --login --user=postgres psql <<< "$sql"
|
|
|
|
}
|
|
|
|
|
|
|
|
# Execute a command from a file as root user
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_execute_file_as_root file [db]
|
|
|
|
# | arg: file - the file containing SQL commands
|
|
|
|
# | arg: db - the database to connect to
|
|
|
|
ynh_psql_execute_file_as_root() {
|
|
|
|
file="$1"
|
|
|
|
db="$2"
|
|
|
|
sudo --login --user=postgres psql "$db" < "$file"
|
2017-04-11 11:47:25 +02:00
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
# Create a database, an user and its password. Then store the password in the app's config
|
2017-04-08 04:04:27 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# After executing this helper, the password of the created database will be available in $db_pwd
|
|
|
|
# It will also be stored as "psqlpwd" into the app settings.
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_setup_db user name [pwd]
|
|
|
|
# | arg: user - Owner of the database
|
|
|
|
# | arg: name - Name of the database
|
|
|
|
# | arg: pwd - Password of the database. If not given, a password will be generated
|
|
|
|
ynh_psql_setup_db () {
|
|
|
|
db_user="$1"
|
|
|
|
app="$1"
|
|
|
|
db_name="$2"
|
|
|
|
new_db_pwd=$(ynh_string_random) # Generate a random password
|
|
|
|
# If $3 is not given, use new_db_pwd instead for db_pwd.
|
|
|
|
db_pwd="${3:-$new_db_pwd}"
|
|
|
|
ynh_psql_create_db "$db_name" "$db_user" "$db_pwd" # Create the database
|
|
|
|
ynh_app_setting_set "$app" psqlpwd "$db_pwd" # Store the password in the app's config
|
|
|
|
}
|
|
|
|
|
|
|
|
# Create a database and grant privilegies to a user
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_create_db db [user [pwd]]
|
2017-04-08 04:04:27 +02:00
|
|
|
# | arg: db - the database name to create
|
|
|
|
# | arg: user - the user to grant privilegies
|
2018-05-01 11:29:25 +02:00
|
|
|
# | arg: pwd - the user password
|
2017-04-08 04:04:27 +02:00
|
|
|
ynh_psql_create_db() {
|
2018-05-01 11:29:25 +02:00
|
|
|
db="$1"
|
|
|
|
user="$2"
|
|
|
|
pwd="$3"
|
|
|
|
ynh_psql_create_user "$user" "$pwd"
|
|
|
|
sudo --login --user=postgres createdb --owner="$user" "$db"
|
2017-04-08 04:04:27 +02:00
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
# Drop a database
|
2017-04-10 21:13:13 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# usage: ynh_psql_drop_db db
|
2017-04-10 21:13:13 +02:00
|
|
|
# | arg: db - the database name to drop
|
2018-05-01 11:29:25 +02:00
|
|
|
# | arg: user - the user to drop
|
|
|
|
ynh_psql_remove_db() {
|
|
|
|
db="$1"
|
|
|
|
user="$2"
|
|
|
|
sudo --login --user=postgres dropdb "$db"
|
|
|
|
ynh_psql_drop_user "$user"
|
2017-04-10 21:13:13 +02:00
|
|
|
}
|
|
|
|
|
2018-05-01 11:29:25 +02:00
|
|
|
# Dump a database
|
2017-04-08 04:04:27 +02:00
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# example: ynh_psql_dump_db 'roundcube' > ./dump.sql
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_dump_db db
|
|
|
|
# | arg: db - the database name to dump
|
|
|
|
# | ret: the psqldump output
|
|
|
|
ynh_psql_dump_db() {
|
|
|
|
db="$1"
|
|
|
|
sudo --login --user=postgres pg_dump "$db"
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
# Create a user
|
|
|
|
#
|
|
|
|
# usage: ynh_psql_create_user user pwd [host]
|
|
|
|
# | arg: user - the user name to create
|
|
|
|
ynh_psql_create_user() {
|
|
|
|
user="$1"
|
|
|
|
pwd="$2"
|
2018-06-13 00:23:05 +02:00
|
|
|
sudo --login --user=postgres psql -c"CREATE USER $user WITH PASSWORD '$pwd';" postgres
|
2017-04-08 04:04:27 +02:00
|
|
|
}
|
|
|
|
|
|
|
|
# Drop a user
|
|
|
|
#
|
2018-05-01 11:29:25 +02:00
|
|
|
# usage: ynh_psql_drop_user user
|
2017-04-08 04:04:27 +02:00
|
|
|
# | arg: user - the user name to drop
|
|
|
|
ynh_psql_drop_user() {
|
2018-05-01 11:29:25 +02:00
|
|
|
user="$1"
|
|
|
|
sudo --login --user=postgres dropuser "$user"
|
2017-04-11 11:47:25 +02:00
|
|
|
}
|