#!/bin/bash # Retrieve arguments domain=$1 path=$2 admin=$3 # Check domain/path availability sudo yunohost app checkurl $domain$path -a phpmyadmin if [[ ! $? -eq 0 ]]; then exit 1 fi # Check that admin user is an existing account sudo yunohost user list --json | grep -q "\"username\": \"$admin\"" if [[ ! $? -eq 0 ]]; then echo "Error : the chosen admin user does not exist" exit 1 fi # Copy files to the right place version=$(cat ../conf/upstream_version) final_path=/var/www/phpmyadmin sudo rm -rf $final_path sudo mkdir -p $final_path echo "Downloading phpMyAdmin $version..." sudo wget -O ../phpMyAdmin.tar.gz https://files.phpmyadmin.net/phpMyAdmin/$version/phpMyAdmin-$version-all-languages.tar.gz > /dev/null 2>&1 echo "Extracting to $final_path..." sudo tar xvzf ../phpMyAdmin.tar.gz -C .. > /dev/null 2>&1 sudo cp -r ../phpMyAdmin-$version-all-languages/* $final_path # Create db echo "Setting up database..." db_user=phpmyadmin db_pwd=$(dd if=/dev/urandom bs=1 count=200 2> /dev/null | tr -c -d 'A-Za-z0-9' | sed -n 's/\(.\{24\}\).*/\1/p') cookie_pwd=$(dd if=/dev/urandom bs=1 count=200 2> /dev/null | tr -c -d 'A-Za-z0-9' | sed -n 's/\(.\{24\}\).*/\1/p') sed -i "s@YNH_PMA_USER@$db_user@g" ../conf/create_db.sql sudo yunohost app initdb $db_user -p $db_pwd mysql -u root -p$(sudo cat /etc/yunohost/mysql) < ../conf/create_db.sql mysql -u $db_user -p$db_pwd < $final_path/sql/create_tables.sql sudo yunohost app setting phpmyadmin mysqlpwd -v $db_pwd # Configuration echo "Configuring application..." sed -i "s@YNH_DOMAIN@$domain@g" ../conf/config.inc.php sed -i "s@YNH_PMA_USER@$db_user@g" ../conf/config.inc.php sed -i "s@YNH_PMA_PASSWORD@$db_pwd@g" ../conf/config.inc.php sed -i "s@YNH_MYSQL_ROOT_PASSWORD@$(sudo cat /etc/yunohost/mysql)@g" ../conf/config.inc.php sed -i "s@YNH_COOKIE_PASSWD@$cookie_pwd@g" ../conf/config.inc.php sudo cp ../conf/config.inc.php $final_path sudo yunohost app addaccess phpmyadmin -u $admin sudo yunohost app setting phpmyadmin admin -v $admin # Files owned by root, www-data can just read echo "Setting permission..." sudo chown -R root: $final_path sudo find $final_path -type f | xargs sudo chmod 644 sudo find $final_path -type d | xargs sudo chmod 755 # config.inc.php contains sensitive data, restrict its access sudo chown root:www-data $final_path/config.inc.php sudo chmod 640 $final_path/config.inc.php # Modify Nginx configuration file and copy it to Nginx conf directory echo "Setting up nginx configuration..." sed -i "s@YNH_WWW_PATH@$path@g" ../conf/nginx.conf sed -i "s@YNH_WWW_ALIAS@$final_path/@g" ../conf/nginx.conf sed -i "s@NAMETOCHANGE@phpmyadmin@g" ../conf/nginx.conf nginxconf=/etc/nginx/conf.d/$domain.d/phpmyadmin.conf sudo cp ../conf/nginx.conf $nginxconf sudo chown root: $nginxconf sudo chmod 600 $nginxconf # Add dedicated php-fpm to be able to upload bigger database sed -i "s@NAMETOCHANGE@phpmyadmin@g" ../conf/php-fpm.conf phpfpmconf=/etc/php5/fpm/pool.d/phpmyadmin.conf sudo cp ../conf/php-fpm.conf $phpfpmconf sudo chown root: $phpfpmconf sudo chmod 644 $phpfpmconf sudo service php5-fpm restart sudo service nginx reload sudo yunohost app ssowatconf