|
| 1 | +#!/bin/sh -e |
| 2 | +# |
| 3 | +# Based in part on the original TT-RSS Docker startup.sh |
| 4 | +# |
| 5 | + |
| 6 | +while ! mysqladmin ping -h $TTRSS_DB_HOST -u $TTRSS_DB_USER -p$TTRSS_DB_PASS; do |
| 7 | + echo waiting until $TTRSS_DB_HOST is ready... |
| 8 | + sleep 3 |
| 9 | +done |
| 10 | + |
| 11 | +DST_DIR=/var/www/tt-rss |
| 12 | +SRC_REPO=https://git.tt-rss.org/fox/tt-rss.git |
| 13 | + |
| 14 | +# Create the 'app' user |
| 15 | +if ! id app >/dev/null 2>&1; then |
| 16 | + addgroup --gid $OWNER_GID app |
| 17 | + useradd -d /var/www/tt-rss -g app -u $OWNER_UID app |
| 18 | + usermod -aG www-data,app app |
| 19 | +fi |
| 20 | + |
| 21 | +if [ ! -d $DST_DIR/.git ]; then |
| 22 | + mkdir -p $DST_DIR |
| 23 | + chown $OWNER_UID:$OWNER_GID $DST_DIR |
| 24 | + |
| 25 | + echo cloning tt-rss source from $SRC_REPO to $DST_DIR... |
| 26 | + sudo -u app git clone --depth 1 $SRC_REPO $DST_DIR || echo error: failed to clone master repository. |
| 27 | +else |
| 28 | + echo updating tt-rss source in $DST_DIR from $SRC_REPO... |
| 29 | + |
| 30 | + chown -R $OWNER_UID:$OWNER_GID $DST_DIR |
| 31 | + cd $DST_DIR && \ |
| 32 | + sudo -u app git config core.filemode false && \ |
| 33 | + sudo -u app git config pull.rebase false && \ |
| 34 | + sudo -u app git pull origin master || echo error: unable to update master repository. |
| 35 | +fi |
| 36 | + |
| 37 | +update-ca-certificates || true |
| 38 | + |
| 39 | +if [ ! -e $DST_DIR/index.php ]; then |
| 40 | + echo "error: tt-rss index.php missing (git clone failed?), unable to continue." |
| 41 | + exit 1 |
| 42 | +fi |
| 43 | + |
| 44 | +if [ ! -d $DST_DIR/plugins.local/nginx_xaccel ]; then |
| 45 | + echo cloning plugins.local/nginx_xaccel... |
| 46 | + sudo -u app git clone https://git.tt-rss.org/fox/ttrss-nginx-xaccel.git \ |
| 47 | + $DST_DIR/plugins.local/nginx_xaccel || echo warning: failed to clone nginx_xaccel. |
| 48 | +else |
| 49 | + if [ -z "$TTRSS_NO_STARTUP_PLUGIN_UPDATES" ]; then |
| 50 | + echo updating all local plugins... |
| 51 | + |
| 52 | + find $DST_DIR/plugins.local/ -maxdepth 1 -mindepth 1 -type d | while read PLUGIN; do |
| 53 | + if [ -d $PLUGIN/.git ]; then |
| 54 | + echo updating $PLUGIN... |
| 55 | + |
| 56 | + cd $PLUGIN && \ |
| 57 | + sudo -u app git config core.filemode false && \ |
| 58 | + sudo -u app git config pull.rebase false && \ |
| 59 | + sudo -u app git pull origin master || echo warning: attempt to update plugin $PLUGIN failed. |
| 60 | + fi |
| 61 | + done |
| 62 | + else |
| 63 | + echo updating plugins.local/nginx_xaccel... |
| 64 | + |
| 65 | + cd $DST_DIR/plugins.local/nginx_xaccel && \ |
| 66 | + sudo -u app git config core.filemode false && \ |
| 67 | + sudo -u app git config pull.rebase false && \ |
| 68 | + sudo -u app git pull origin master || echo warning: attempt to update plugin nginx_xaccel failed. |
| 69 | + fi |
| 70 | +fi |
| 71 | + |
| 72 | +cp ${SCRIPT_ROOT}/config.docker.php $DST_DIR/config.php |
| 73 | +chmod 644 $DST_DIR/config.php |
| 74 | + |
| 75 | +for d in cache lock feed-icons; do |
| 76 | + chmod 777 $DST_DIR/$d |
| 77 | + find $DST_DIR/$d -type f -exec chmod 666 {} \; |
| 78 | +done |
| 79 | + |
| 80 | +# Configure PHP |
| 81 | +echo "Setting PHP memory_limit to ${PHP_WORKER_MEMORY_LIMIT}" |
| 82 | +sed -i.bak "s/^\(memory_limit\) = \(.*\)/\1 = ${PHP_WORKER_MEMORY_LIMIT}/" \ |
| 83 | + /etc/php/8.1/fpm/php.ini |
| 84 | + |
| 85 | +echo "Setting PHP pm.max_children to ${PHP_WORKER_MAX_CHILDREN}" |
| 86 | +sed -i.bak "s/^\(pm.max_children\) = \(.*\)/\1 = ${PHP_WORKER_MAX_CHILDREN}/" \ |
| 87 | + /etc/php/8.1/fpm/pool.d/www.conf |
| 88 | + |
| 89 | +# Update schema if necessary |
| 90 | +sudo -Eu app ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --update-schema=force-yes |
| 91 | + |
| 92 | +if [ ! -z "$ADMIN_USER_PASS" ]; then |
| 93 | + sudo -Eu app ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --user-set-password "admin:$ADMIN_USER_PASS" |
| 94 | +else |
| 95 | + if sudo -Eu app ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --user-check-password "admin:password"; then |
| 96 | + RANDOM_PASS=$(tr -dc A-Za-z0-9 </dev/urandom | head -c 16 ; echo '') |
| 97 | + |
| 98 | + echo "*****************************************************************************" |
| 99 | + echo "* Setting initial built-in admin user password to '$RANDOM_PASS' *" |
| 100 | + echo "* If you want to set it manually, use ADMIN_USER_PASS environment variable. *" |
| 101 | + echo "*****************************************************************************" |
| 102 | + |
| 103 | + sudo -Eu app ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --user-set-password "admin:$RANDOM_PASS" |
| 104 | + fi |
| 105 | +fi |
| 106 | + |
| 107 | +if [ ! -z "$ADMIN_USER_ACCESS_LEVEL" ]; then |
| 108 | + sudo -Eu app ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --user-set-access-level "admin:$ADMIN_USER_ACCESS_LEVEL" |
| 109 | +fi |
| 110 | + |
| 111 | +if [ ! -z "$AUTO_CREATE_USER" ]; then |
| 112 | + sudo -Eu app /bin/sh -c "php $DST_DIR/update.php --user-exists $AUTO_CREATE_USER || |
| 113 | + ${TTRSS_PHP_EXECUTABLE} $DST_DIR/update.php --force-yes --user-add \"$AUTO_CREATE_USER:$AUTO_CREATE_USER_PASS:$AUTO_CREATE_USER_ACCESS_LEVEL\"" |
| 114 | +fi |
| 115 | + |
| 116 | +rm -f /tmp/error.log && mkfifo /tmp/error.log && chown app:app /tmp/error.log |
| 117 | + |
| 118 | +(tail -q -f /tmp/error.log >> /proc/1/fd/2) & |
| 119 | + |
| 120 | +unset ADMIN_USER_PASS |
| 121 | +unset AUTO_CREATE_USER_PASS |
| 122 | + |
| 123 | +# cleanup any old lockfiles |
| 124 | +rm -vf -- /var/www/tt-rss/lock/*.lock |
| 125 | + |
| 126 | +touch $DST_DIR/.app_is_ready |
| 127 | + |
| 128 | +# Run it all :) |
| 129 | +echo "Starting daemons for $TTRSS_SELF_URL_PATH" |
| 130 | +/usr/bin/supervisord -n -c /etc/supervisor/conf.d/supervisord.conf |
0 commit comments