X-Git-Url: https://plomlompom.com/repos/?a=blobdiff_plain;f=buster%2Fsetup_scripts%2Fsetup_website.sh;h=008fd347c19e9abb1d4e2efe4ef9ac09efe06abf;hb=1f8bddc9121f9ca69eee4dd4c933bd3071aa6841;hp=2910eee52c8e377724d1bdffe282b9220fcf9a64;hpb=999fda5dd0f1a00d284f22644899ff9863a47e69;p=config diff --git a/buster/setup_scripts/setup_website.sh b/buster/setup_scripts/setup_website.sh index 2910eee..008fd34 100755 --- a/buster/setup_scripts/setup_website.sh +++ b/buster/setup_scripts/setup_website.sh @@ -1,15 +1,14 @@ #!/bin/sh set -e -set -x -# Heavily inspired by -if [ "$#" -ne 3 ]; then - echo 'Need domain name and mail and old server IP as argument.' +if [ "$#" -ne 4 ]; then + echo 'Need domain name and mail and old server IP and key ID as argument.' false fi domain="$1" mail="$2" old_server="$3" +gpg_key="$4" # Install configs, set up firewall. config_tree_prefix="${HOME}/config/buster" @@ -22,29 +21,83 @@ ln -sf /etc/nginx/sites-available/default /etc/nginx/sites-enabled/default certbot --nginx --agree-tos --redirect --no-eff-email -m "${mail}" -d "${domain}" rm /etc/nginx/sites-enabled/default +# Set up connection to old server. +cp "${config_tree_prefix}/setup_scripts/prepare_to_meet_server.sh" /home/plom/ +chown plom:plom /home/plom/prepare_to_meet_server.sh +su -lc "./prepare_to_meet_server.sh ${old_server}" plom +read -p'Hit Enter when you are done.' ignore +rm /home/plom/prepare_to_meet_server.sh + # Set up repos dir. mkdir /var/repos chown plom:plom /var/repos # To use this dir, "git clone --mirror" repo source paths into it as user plom. # As user plom, touch git-daemon-export-ok files into it to make the repo # publically available. +# Outcomment following lines if setting up new / not migrating. +cp "${config_tree_prefix}/setup_scripts/mirror_dir.sh" /home/plom/ +chmod a+w /var +su -lc "./mirror_dir.sh ${old_server} /var/repos" plom +chmod a-w /var +rm /home/plom/mirror_dir.sh # Prepare NGINX and GitWeb config. sed -i "s/REPLACE_fqdn_ECALPER/${domain}/g" /etc/gitweb.conf sed -i "s/REPLACE_fqdn_ECALPER/${domain}/g" /etc/nginx/sites-available/website.nginx ln -s /etc/nginx/sites-available/website.nginx /etc/nginx/sites-enabled/website.nginx -# Set up website. +# Set up website. TODO: use non-/var/www dir for better separation to dump site rm -rf /var/www mkdir /var/www chown plom:plom /var/www -cp "${config_tree_prefix}/setup_scripts/prepare_to_meet_server.sh" /home/plom/ -chown plom:plom /home/plom/prepare_to_meet_server.sh -su -lc plom "./prepare_to_meet_server.sh ${old_server}" -read -p'Hit Enter when you are done.' ignore -su -lc plom "cd /var/repos && git clone --mirror ${old_server}/repos/website" -cp "${config_tree_prefix}/other_files/website_hook_post-receive /var/repos/website.git/hooks/post-receive" -su -lc plom 'cd /var/www && git clone /var/repos/website.git .' +# Use next two lines if setting up new / not migrating. +#su -lc "cd /var/repos && git clone --mirror ${old_server}:repos/website" plom +#cp "${config_tree_prefix}/other_files/website_hook_post-receive" /var/repos/website.git/hooks/post-receive +su -lc 'cd /var/www && git clone /var/repos/website.git .' plom + +# Add encryption key. +keyservers='sks-keyservers.net/ keys.gnupg.net' +set +e +while true; do + do_break=0 + for keyserver in $(echo "${keyservers}"); do + su plom -c "gpg --no-tty --keyserver $keyserver --recv-key ${gpg_key}" + if [ $? -eq "0" ]; then + do_break=1 + break + fi + echo "Attempt with keyserver ${keyserver} unsuccessful, trying other." + done + if [ "${do_break}" -eq "1" ]; then + break + fi +done +set -e + +# Set up plomlombot. +irclogs_dir=/var/www/html/irclogs +irclogs_pw_dir=/var/www/irclogs_pw +mkdir -p "${irclogs_dir}" +chown -R plom:plom "${irclogs_dir}" +mkdir -p "${irclogs_pw_dir}" +chown -R plom:plom "${irclogs_pw_dir}" +# Use following lines if setting up new / not migrating. +#su -lc "cd /var/repos && git clone --mirror https://plomlompom.com/repos/clone/plomlombot-irc" plom +#su -lc "touch /var/repos/plomlombot-irc.git/git-daemon-export-ok" plom +#cp "${config_tree_prefix}/other_files/plomlombot_hook_post-receive" /var/repos/plomlombot-irc.git/hooks/post-receive + +su -lc "git clone /var/repos/plomlombot-irc.git" plom +cp "${config_tree_prefix}/other_files/plomlombot_daemon.sh" /home/plom/ +chown plom:plom /home/plom/plomlombot_daemon.sh +# Use upper outcommented instead of lower code if setting up new empty server. +#echo 'bot: plomlombog plomlombog #plomlomtest irc.freenode.net foo bar' >> /home/plom/.plomlombot +#chown plom:plom /home/plom/.plomlombot +cp "${config_tree_prefix}/setup_scripts/mirror_dir.sh" /home/plom/ +su -lc "./mirror_dir.sh ${old_server} /home/plom/plomlombot_db" plom +rm /home/plom/,mirror_dir.sh +su -lc "scp plom@${old_server}:.plomlombot ~" plom +systemctl enable plomlombot.service +service plomlombot start # TODO: # - commit git-daemon-export-ok directly into the public repos; rename