2017-10-06 15:36:42 +02:00
|
|
|
#!/bin/bash
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# GENERIC START
|
|
|
|
#=================================================
|
|
|
|
# IMPORT GENERIC HELPERS
|
|
|
|
#=================================================
|
|
|
|
set -eu
|
|
|
|
source _common.sh
|
|
|
|
source /usr/share/yunohost/helpers
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# MANAGE SCRIPT FAILURE
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
# Exit if an error occurs during the execution of the script
|
|
|
|
ynh_abort_if_errors
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# RETRIEVE ARGUMENTS FROM THE MANIFEST
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
domain=$YNH_APP_ARG_DOMAIN
|
|
|
|
path_url=$YNH_APP_ARG_PATH
|
|
|
|
admin=$YNH_APP_ARG_ADMIN
|
|
|
|
is_public=$YNH_APP_ARG_IS_PUBLIC
|
|
|
|
|
|
|
|
# This is a multi-instance app, meaning it can be installed several times independently
|
|
|
|
# The id of the app as stated in the manifest is available as $YNH_APP_ID
|
|
|
|
# The instance number is available as $YNH_APP_INSTANCE_NUMBER (equals "1", "2", ...)
|
|
|
|
# The app instance name is available as $YNH_APP_INSTANCE_NAME
|
|
|
|
# - the first time the app is installed, YNH_APP_INSTANCE_NAME = ynhexample
|
|
|
|
# - the second time the app is installed, YNH_APP_INSTANCE_NAME = ynhexample__2
|
|
|
|
# - ynhexample__{N} for the subsequent installations, with N=3,4, ...
|
|
|
|
# The app instance name is probably what you are interested the most, since this is
|
|
|
|
# guaranteed to be unique. This is a good unique identifier to define installation path,
|
|
|
|
# db names, ...
|
|
|
|
app=$YNH_APP_INSTANCE_NAME
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# CHECK IF THE APP CAN BE INSTALLED WITH THESE ARGS
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
# Normalize the url path syntax
|
|
|
|
path_url=$(ynh_normalize_url_path "$path_url")
|
|
|
|
|
|
|
|
# Check web path availability
|
|
|
|
ynh_webpath_available "$domain" "$path_url"
|
|
|
|
# Register (book) web path
|
|
|
|
ynh_webpath_register "$app" "$domain" "$path_url"
|
|
|
|
|
|
|
|
final_path=/var/www/$app
|
|
|
|
test ! -e "$final_path" || ynh_die "This path already contains a folder"
|
|
|
|
|
|
|
|
mkdir -p "$final_path"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# STORE SETTINGS FROM MANIFEST
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
ynh_app_setting_set "$app" domain "$domain"
|
|
|
|
ynh_app_setting_set "$app" path "$path_url"
|
|
|
|
ynh_app_setting_set "$app" admin "$admin"
|
|
|
|
ynh_app_setting_set "$app" is_public "$is_public"
|
|
|
|
ynh_app_setting_set "$app" final_path "$final_path"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# STANDARD MODIFICATIONS
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# INSTALL DEPENDENCIES
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
ynh_install_app_dependencies git python-virtualenv libgit2-dev \
|
2017-11-23 22:56:00 +01:00
|
|
|
libjpeg-dev gcc libffi-dev python-dev python-cffi \
|
|
|
|
postgresql python-psycopg2 \
|
|
|
|
uwsgi uwsgi-plugin-python
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# CREATE A PostgreSQL DATABASE
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
ynh_psql_test_if_first_run
|
|
|
|
|
|
|
|
db_name=$(ynh_sanitize_dbid "$app")
|
|
|
|
db_pwd=$(ynh_string_random)
|
|
|
|
# Initialize database and store postgres password for upgrade
|
|
|
|
ynh_psql_create_db "$db_name" "$app" "$db_pwd"
|
|
|
|
ynh_app_setting_set "$app" db_name "$db_name"
|
|
|
|
ynh_app_setting_set "$app" db_pwd "$db_pwd"
|
|
|
|
|
|
|
|
systemctl reload postgresql
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# NGINX CONFIGURATION
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
# Create a dedicated nginx config
|
|
|
|
ynh_add_nginx_config
|
2017-10-06 15:36:42 +02:00
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# CREATE DEDICATED USER
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
ynh_system_user_create "$app" "${final_path}"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# SPECIFIC SETUP
|
|
|
|
#=================================================
|
2017-11-23 22:56:00 +01:00
|
|
|
# setup pagure.cfg
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
secret_key=$(ynh_string_random)
|
|
|
|
salt_email=$(ynh_string_random)
|
|
|
|
|
|
|
|
cp ../conf/pagure.cfg.sample "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__SECRET_KEY__" "$secret_key" "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__DB_USER__" "$app" "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__DB_PWD__" "$db_pwd" "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__DB_NAME__" "$db_name" "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__DOMAIN__" "$domain" "$final_path/pagure.cfg"
|
|
|
|
ynh_replace_string "__SALT_EMAIL__" "$salt_email" "$final_path/pagure.cfg"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# setup pagure.wsgi
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
cp ../conf/pagure.wsgi "$final_path/pagure.wsgi"
|
|
|
|
ynh_replace_string "__FINALPATH__" "$final_path" "$final_path/pagure.wsgi"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# setup uwsgi service
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
ynh_add_uwsgi_service
|
2017-10-06 15:36:42 +02:00
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# Get Pagure source
|
|
|
|
#=================================================
|
|
|
|
|
2018-05-12 13:44:46 +02:00
|
|
|
ynh_setup_source_local "${final_path}"
|
2017-12-28 13:37:21 +01:00
|
|
|
ln -s "${final_path}/pagure-3.13.2" "${final_path}/pagure"
|
2017-10-06 15:36:42 +02:00
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# PIP INSTALLATION
|
|
|
|
#=================================================
|
|
|
|
virtualenv "${final_path}/venv"
|
|
|
|
#run source in a 'sub shell'
|
|
|
|
(
|
2017-12-28 13:37:21 +01:00
|
|
|
set +o nounset
|
2017-10-06 15:36:42 +02:00
|
|
|
source "${final_path}/venv/bin/activate"
|
2017-12-28 13:37:21 +01:00
|
|
|
set -o nounset
|
|
|
|
pip install cffi
|
|
|
|
pip install pygit2==0.24
|
|
|
|
pip install -r "${final_path}/pagure/requirements.txt"
|
|
|
|
pip install psycopg2 cryptography py-bcrypt python-fedora
|
2017-10-06 15:36:42 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# SPECIFIC SETUP Filling up the database
|
|
|
|
#==========================================
|
|
|
|
|
|
|
|
# Create the folder that will receive the projects, forks, docs, requests and tickets' git repo:
|
2017-11-28 00:06:36 +01:00
|
|
|
mkdir -p "${final_path}"/lcl/{repos,docs,forks,tickets,requests,remotes,attachments,releases}
|
2017-10-06 15:36:42 +02:00
|
|
|
|
|
|
|
(
|
|
|
|
set +eu
|
|
|
|
source "${final_path}/venv/bin/activate"
|
|
|
|
cd "${final_path}/pagure"
|
2017-11-23 22:56:00 +01:00
|
|
|
PAGURE_CONFIG=${final_path}/pagure.cfg python createdb.py
|
2017-10-06 15:36:42 +02:00
|
|
|
)
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# GENERIC FINALIZATION
|
|
|
|
#=================================================
|
|
|
|
# SECURE FILES AND DIRECTORIES
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
# Set permissions to app files
|
|
|
|
chown -R "$app": "$final_path"
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# SETUP SSOWAT
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
if [ "$is_public" -eq 0 ]
|
|
|
|
then # Remove the public access
|
|
|
|
ynh_app_setting_delete "$app" skipped_uris
|
|
|
|
fi
|
|
|
|
# Make app public if necessary
|
|
|
|
if [ "$is_public" -eq 1 ]
|
|
|
|
then
|
|
|
|
# unprotected_uris allows SSO credentials to be passed anyway.
|
|
|
|
ynh_app_setting_set "$app" unprotected_uris "/"
|
|
|
|
fi
|
|
|
|
|
|
|
|
#=================================================
|
|
|
|
# RELOAD NGINX
|
|
|
|
#=================================================
|
|
|
|
|
|
|
|
systemctl reload nginx
|