mirror of
https://github.com/community-scripts/ProxmoxVE.git
synced 2026-07-27 16:22:53 +02:00
Compare commits
4 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| aeaa9ad96c | |||
| 6beceb2b8f | |||
| 123e37bf4a | |||
| 174d3296b3 |
@@ -1,61 +0,0 @@
|
|||||||
#!/usr/bin/env bash
|
|
||||||
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
|
||||||
# Copyright (c) 2021-2026 community-scripts ORG
|
|
||||||
# Author: MickLesk (CanbiZ)
|
|
||||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
|
||||||
# Source: https://docspell.org/
|
|
||||||
|
|
||||||
APP="Docspell"
|
|
||||||
var_tags="${var_tags:-documents;ocr;paperless;productivity}"
|
|
||||||
var_cpu="${var_cpu:-4}"
|
|
||||||
var_ram="${var_ram:-4096}"
|
|
||||||
var_disk="${var_disk:-16}"
|
|
||||||
var_os="${var_os:-debian}"
|
|
||||||
var_version="${var_version:-13}"
|
|
||||||
var_arm64="${var_arm64:-yes}"
|
|
||||||
var_unprivileged="${var_unprivileged:-1}"
|
|
||||||
|
|
||||||
header_info "$APP"
|
|
||||||
variables
|
|
||||||
color
|
|
||||||
catch_errors
|
|
||||||
|
|
||||||
function update_script() {
|
|
||||||
header_info
|
|
||||||
check_container_storage
|
|
||||||
check_container_resources
|
|
||||||
|
|
||||||
if [[ ! -f /etc/docspell-restserver/docspell-server.conf ]]; then
|
|
||||||
msg_error "No ${APP} Installation Found!"
|
|
||||||
exit
|
|
||||||
fi
|
|
||||||
|
|
||||||
if check_for_gh_release "docspell-joex" "eikek/docspell"; then
|
|
||||||
msg_info "Stopping Services"
|
|
||||||
systemctl stop docspell-joex docspell-restserver
|
|
||||||
msg_ok "Stopped Services"
|
|
||||||
|
|
||||||
create_backup /etc/docspell-joex/docspell-joex.conf \
|
|
||||||
/etc/docspell-restserver/docspell-server.conf
|
|
||||||
|
|
||||||
DPKG_FORCE_CONFOLD=1 fetch_and_deploy_gh_release "docspell-joex" "eikek/docspell" "binary" "latest" "/opt/docspell" "docspell-joex_*_all.deb"
|
|
||||||
DPKG_FORCE_CONFOLD=1 fetch_and_deploy_gh_release "docspell-restserver" "eikek/docspell" "binary" "latest" "/opt/docspell" "docspell-restserver_*_all.deb"
|
|
||||||
|
|
||||||
restore_backup
|
|
||||||
|
|
||||||
msg_info "Starting Services"
|
|
||||||
systemctl start docspell-restserver docspell-joex
|
|
||||||
msg_ok "Started Services"
|
|
||||||
msg_ok "Updated successfully!"
|
|
||||||
fi
|
|
||||||
exit
|
|
||||||
}
|
|
||||||
|
|
||||||
start
|
|
||||||
build_container
|
|
||||||
description
|
|
||||||
|
|
||||||
msg_ok "Completed Successfully!\n"
|
|
||||||
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
|
||||||
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
|
||||||
echo -e "${GATEWAY}${BGN}http://${IP}:7880${CL}"
|
|
||||||
@@ -1,6 +0,0 @@
|
|||||||
____ ____
|
|
||||||
/ __ \____ ______________ ___ / / /
|
|
||||||
/ / / / __ \/ ___/ ___/ __ \/ _ \/ / /
|
|
||||||
/ /_/ / /_/ / /__(__ ) /_/ / __/ / /
|
|
||||||
/_____/\____/\___/____/ .___/\___/_/_/
|
|
||||||
/_/
|
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
__ ___ __ __
|
||||||
|
/ |/ /___ ______/ /_____ ____/ /___ ____
|
||||||
|
/ /|_/ / __ `/ ___/ __/ __ \/ __ / __ \/ __ \
|
||||||
|
/ / / / /_/ (__ ) /_/ /_/ / /_/ / /_/ / / / /
|
||||||
|
/_/ /_/\__,_/____/\__/\____/\__,_/\____/_/ /_/
|
||||||
|
|
||||||
@@ -0,0 +1,81 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://github.com/mastodon/mastodon
|
||||||
|
|
||||||
|
APP="Mastodon"
|
||||||
|
var_tags="${var_tags:-social;fediverse;activitypub}"
|
||||||
|
var_cpu="${var_cpu:-4}"
|
||||||
|
var_ram="${var_ram:-4096}"
|
||||||
|
var_disk="${var_disk:-20}"
|
||||||
|
var_os="${var_os:-debian}"
|
||||||
|
var_version="${var_version:-13}"
|
||||||
|
var_arm64="${var_arm64:-yes}"
|
||||||
|
var_unprivileged="${var_unprivileged:-1}"
|
||||||
|
|
||||||
|
header_info "$APP"
|
||||||
|
variables
|
||||||
|
color
|
||||||
|
catch_errors
|
||||||
|
|
||||||
|
function update_script() {
|
||||||
|
header_info
|
||||||
|
check_container_storage
|
||||||
|
check_container_resources
|
||||||
|
|
||||||
|
if [[ ! -d /opt/mastodon ]]; then
|
||||||
|
msg_error "No ${APP} Installation Found!"
|
||||||
|
exit
|
||||||
|
fi
|
||||||
|
|
||||||
|
if check_for_gh_release "mastodon" "mastodon/mastodon"; then
|
||||||
|
msg_info "Stopping Services"
|
||||||
|
systemctl stop mastodon-web mastodon-sidekiq mastodon-streaming
|
||||||
|
msg_ok "Stopped Services"
|
||||||
|
|
||||||
|
create_backup /opt/mastodon/public/system /opt/mastodon/.env.production
|
||||||
|
|
||||||
|
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "mastodon" "mastodon/mastodon" "tarball"
|
||||||
|
sed -i "s/config.force_ssl = true/config.force_ssl = ENV.fetch('LOCAL_HTTPS', 'false') == 'true'/" /opt/mastodon/config/environments/production.rb
|
||||||
|
sed -i "s/https = Rails.env.production? || ENV\['LOCAL_HTTPS'\] == 'true'/https = ENV.fetch('LOCAL_HTTPS', 'false') == 'true'/" /opt/mastodon/config/initializers/1_hosts.rb
|
||||||
|
|
||||||
|
msg_info "Installing Ruby Dependencies"
|
||||||
|
cd /opt/mastodon
|
||||||
|
export PATH="$HOME/.rbenv/shims:$HOME/.rbenv/bin:$PATH"
|
||||||
|
$STD bundle config set --local without 'development test'
|
||||||
|
$STD bundle config set --local deployment 'true'
|
||||||
|
$STD bundle install -j"$(nproc)"
|
||||||
|
msg_ok "Installed Ruby Dependencies"
|
||||||
|
|
||||||
|
msg_info "Installing Node.js Dependencies"
|
||||||
|
$STD yarn install
|
||||||
|
msg_ok "Installed Node.js Dependencies"
|
||||||
|
|
||||||
|
restore_backup
|
||||||
|
|
||||||
|
msg_info "Running Database Migrations"
|
||||||
|
RAILS_ENV=production $STD bundle exec rails db:migrate
|
||||||
|
msg_ok "Ran Database Migrations"
|
||||||
|
|
||||||
|
msg_info "Precompiling Assets"
|
||||||
|
RAILS_ENV=production SECRET_KEY_BASE_DUMMY=1 $STD bundle exec rails assets:precompile
|
||||||
|
msg_ok "Precompiled Assets"
|
||||||
|
|
||||||
|
msg_info "Starting Services"
|
||||||
|
systemctl start mastodon-web mastodon-sidekiq mastodon-streaming
|
||||||
|
msg_ok "Started Services"
|
||||||
|
msg_ok "Updated successfully!"
|
||||||
|
fi
|
||||||
|
exit
|
||||||
|
}
|
||||||
|
|
||||||
|
start
|
||||||
|
build_container
|
||||||
|
description
|
||||||
|
|
||||||
|
msg_ok "Completed Successfully!\n"
|
||||||
|
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||||
|
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||||
|
echo -e "${GATEWAY}${BGN}http://${IP}${CL}"
|
||||||
@@ -1,108 +0,0 @@
|
|||||||
#!/usr/bin/env bash
|
|
||||||
|
|
||||||
# Copyright (c) 2021-2026 community-scripts ORG
|
|
||||||
# Author: MickLesk (CanbiZ)
|
|
||||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
|
||||||
# Source: https://docspell.org/
|
|
||||||
|
|
||||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
|
||||||
color
|
|
||||||
verb_ip6
|
|
||||||
catch_errors
|
|
||||||
setting_up_container
|
|
||||||
network_check
|
|
||||||
update_os
|
|
||||||
|
|
||||||
msg_info "Installing Dependencies"
|
|
||||||
$STD apt install -y \
|
|
||||||
ocrmypdf \
|
|
||||||
tesseract-ocr \
|
|
||||||
tesseract-ocr-deu \
|
|
||||||
tesseract-ocr-eng \
|
|
||||||
unpaper \
|
|
||||||
weasyprint \
|
|
||||||
libreoffice-core \
|
|
||||||
ghostscript \
|
|
||||||
libreoffice-writer \
|
|
||||||
libreoffice-calc \
|
|
||||||
python3-pip \
|
|
||||||
python3-uno \
|
|
||||||
python3-venv
|
|
||||||
|
|
||||||
python3 -m venv \
|
|
||||||
--system-site-packages \
|
|
||||||
/opt/unoserver
|
|
||||||
|
|
||||||
$STD /opt/unoserver/bin/pip install --upgrade pip
|
|
||||||
$STD /opt/unoserver/bin/pip install unoserver
|
|
||||||
msg_ok "Installed Dependencies"
|
|
||||||
|
|
||||||
JAVA_VERSION="21" setup_java
|
|
||||||
PG_VERSION="17" setup_postgresql
|
|
||||||
PG_DB_NAME="docspell" PG_DB_USER="docspell" setup_postgresql_db
|
|
||||||
|
|
||||||
fetch_and_deploy_gh_release "docspell-joex" "eikek/docspell" "binary" "latest" "/opt/docspell" "docspell-joex_*_all.deb"
|
|
||||||
fetch_and_deploy_gh_release "docspell-restserver" "eikek/docspell" "binary" "latest" "/opt/docspell" "docspell-restserver_*_all.deb"
|
|
||||||
|
|
||||||
msg_info "Configuring Docspell"
|
|
||||||
DOCSPELL_SECRET=$(openssl rand -hex 32)
|
|
||||||
DOCSPELL_ADMIN_SECRET=$(openssl rand -hex 32)
|
|
||||||
cat <<EOF >/etc/docspell-restserver/docspell-server.conf
|
|
||||||
docspell.server {
|
|
||||||
app-id = "rest1"
|
|
||||||
base-url = "http://${LOCAL_IP}:7880"
|
|
||||||
internal-url = "http://127.0.0.1:7880"
|
|
||||||
bind {
|
|
||||||
address = "0.0.0.0"
|
|
||||||
port = 7880
|
|
||||||
}
|
|
||||||
auth.server-secret = "hex:${DOCSPELL_SECRET}"
|
|
||||||
admin-endpoint.secret = "${DOCSPELL_ADMIN_SECRET}"
|
|
||||||
full-text-search {
|
|
||||||
enabled = true
|
|
||||||
backend = "postgresql"
|
|
||||||
postgresql.use-default-connection = true
|
|
||||||
}
|
|
||||||
backend {
|
|
||||||
jdbc {
|
|
||||||
url = "jdbc:postgresql://127.0.0.1:5432/${PG_DB_NAME}"
|
|
||||||
user = "${PG_DB_USER}"
|
|
||||||
password = "${PG_DB_PASS}"
|
|
||||||
}
|
|
||||||
signup.mode = "open"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
EOF
|
|
||||||
cat <<EOF >/etc/docspell-joex/docspell-joex.conf
|
|
||||||
docspell.joex {
|
|
||||||
app-id = "joex1"
|
|
||||||
base-url = "http://127.0.0.1:7878"
|
|
||||||
bind {
|
|
||||||
address = "127.0.0.1"
|
|
||||||
port = 7878
|
|
||||||
}
|
|
||||||
jdbc {
|
|
||||||
url = "jdbc:postgresql://127.0.0.1:5432/${PG_DB_NAME}"
|
|
||||||
user = "${PG_DB_USER}"
|
|
||||||
password = "${PG_DB_PASS}"
|
|
||||||
}
|
|
||||||
full-text-search {
|
|
||||||
enabled = true
|
|
||||||
backend = "postgresql"
|
|
||||||
postgresql.use-default-connection = true
|
|
||||||
}
|
|
||||||
scheduler.pool-size = 1
|
|
||||||
text-analysis.nlp.mode = "basic"
|
|
||||||
}
|
|
||||||
EOF
|
|
||||||
chown root:docspell /etc/docspell-joex/docspell-joex.conf /etc/docspell-restserver/docspell-server.conf
|
|
||||||
chmod 640 /etc/docspell-joex/docspell-joex.conf /etc/docspell-restserver/docspell-server.conf
|
|
||||||
msg_ok "Configured Docspell"
|
|
||||||
|
|
||||||
msg_info "Creating Services"
|
|
||||||
systemctl enable -q --now docspell-restserver docspell-joex
|
|
||||||
msg_ok "Created Services"
|
|
||||||
|
|
||||||
motd_ssh
|
|
||||||
customize
|
|
||||||
cleanup_lxc
|
|
||||||
@@ -0,0 +1,275 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://github.com/mastodon/mastodon
|
||||||
|
|
||||||
|
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||||
|
color
|
||||||
|
verb_ip6
|
||||||
|
catch_errors
|
||||||
|
setting_up_container
|
||||||
|
network_check
|
||||||
|
update_os
|
||||||
|
|
||||||
|
msg_info "Installing Dependencies"
|
||||||
|
$STD apt install -y \
|
||||||
|
git \
|
||||||
|
imagemagick \
|
||||||
|
libvips-tools \
|
||||||
|
libpq-dev \
|
||||||
|
libxslt1-dev \
|
||||||
|
file \
|
||||||
|
protobuf-compiler \
|
||||||
|
pkg-config \
|
||||||
|
autoconf \
|
||||||
|
bison \
|
||||||
|
build-essential \
|
||||||
|
libssl-dev \
|
||||||
|
libyaml-dev \
|
||||||
|
libreadline-dev \
|
||||||
|
zlib1g-dev \
|
||||||
|
libffi-dev \
|
||||||
|
libgdbm-dev \
|
||||||
|
libidn-dev \
|
||||||
|
libicu-dev \
|
||||||
|
libjemalloc-dev \
|
||||||
|
libjemalloc2 \
|
||||||
|
redis-server \
|
||||||
|
nginx
|
||||||
|
msg_ok "Installed Dependencies"
|
||||||
|
|
||||||
|
setup_ffmpeg
|
||||||
|
NODE_VERSION="24" NODE_MODULE="corepack" setup_nodejs
|
||||||
|
$STD corepack enable
|
||||||
|
|
||||||
|
PG_VERSION="17" setup_postgresql
|
||||||
|
PG_DB_NAME="mastodon_production" PG_DB_USER="mastodon" PG_DB_SKIP_ALTER_ROLE="true" setup_postgresql_db
|
||||||
|
$STD sudo -u postgres psql -c "ALTER USER mastodon CREATEDB;"
|
||||||
|
|
||||||
|
RUBY_VERSION="4.0.5" RUBY_INSTALL_RAILS="false" setup_ruby
|
||||||
|
export PATH="$HOME/.rbenv/shims:$HOME/.rbenv/bin:$PATH"
|
||||||
|
|
||||||
|
fetch_and_deploy_gh_release "mastodon" "mastodon/mastodon" "tarball"
|
||||||
|
sed -i "s/config.force_ssl = true/config.force_ssl = ENV.fetch('LOCAL_HTTPS', 'false') == 'true'/" /opt/mastodon/config/environments/production.rb
|
||||||
|
sed -i "s/https = Rails.env.production? || ENV\['LOCAL_HTTPS'\] == 'true'/https = ENV.fetch('LOCAL_HTTPS', 'false') == 'true'/" /opt/mastodon/config/initializers/1_hosts.rb
|
||||||
|
|
||||||
|
msg_info "Installing Ruby Dependencies"
|
||||||
|
cd /opt/mastodon
|
||||||
|
$STD bundle config set --local without 'development test'
|
||||||
|
$STD bundle config set --local deployment 'true'
|
||||||
|
$STD bundle install -j"$(nproc)"
|
||||||
|
msg_ok "Installed Ruby Dependencies"
|
||||||
|
|
||||||
|
msg_info "Installing Node.js Dependencies"
|
||||||
|
$STD yarn install
|
||||||
|
msg_ok "Installed Node.js Dependencies"
|
||||||
|
|
||||||
|
msg_info "Configuring Mastodon"
|
||||||
|
SECRET_KEY_BASE=$(RAILS_ENV=production bundle exec rails secret)
|
||||||
|
OTP_SECRET=$(RAILS_ENV=production bundle exec rails secret)
|
||||||
|
|
||||||
|
VAPID_OUTPUT=$(RAILS_ENV=production bundle exec rails mastodon:webpush:generate_vapid_key 2>/dev/null)
|
||||||
|
VAPID_PRIVATE_KEY=$(echo "$VAPID_OUTPUT" | grep "^VAPID_PRIVATE_KEY=" | cut -d= -f2-)
|
||||||
|
VAPID_PUBLIC_KEY=$(echo "$VAPID_OUTPUT" | grep "^VAPID_PUBLIC_KEY=" | cut -d= -f2-)
|
||||||
|
|
||||||
|
ENCRYPT_OUTPUT=$(RAILS_ENV=production bundle exec rails db:encryption:init 2>/dev/null)
|
||||||
|
AR_DET_KEY=$(echo "$ENCRYPT_OUTPUT" | grep "^ACTIVE_RECORD_ENCRYPTION_DETERMINISTIC_KEY=" | cut -d= -f2-)
|
||||||
|
AR_SALT=$(echo "$ENCRYPT_OUTPUT" | grep "^ACTIVE_RECORD_ENCRYPTION_KEY_DERIVATION_SALT=" | cut -d= -f2-)
|
||||||
|
AR_PRIMARY=$(echo "$ENCRYPT_OUTPUT" | grep "^ACTIVE_RECORD_ENCRYPTION_PRIMARY_KEY=" | cut -d= -f2-)
|
||||||
|
|
||||||
|
mkdir -p /opt/mastodon/public/system
|
||||||
|
cat <<EOF >/opt/mastodon/.env.production
|
||||||
|
LOCAL_DOMAIN=${LOCAL_IP}
|
||||||
|
LOCAL_HTTPS=false
|
||||||
|
REDIS_HOST=127.0.0.1
|
||||||
|
REDIS_PORT=6379
|
||||||
|
DB_HOST=127.0.0.1
|
||||||
|
DB_USER=mastodon
|
||||||
|
DB_NAME=mastodon_production
|
||||||
|
DB_PASS=${PG_DB_PASS}
|
||||||
|
DB_PORT=5432
|
||||||
|
RAILS_ENV=production
|
||||||
|
NODE_ENV=production
|
||||||
|
RAILS_SERVE_STATIC_FILES=true
|
||||||
|
BIND=0.0.0.0
|
||||||
|
SECRET_KEY_BASE=${SECRET_KEY_BASE}
|
||||||
|
OTP_SECRET=${OTP_SECRET}
|
||||||
|
VAPID_PRIVATE_KEY=${VAPID_PRIVATE_KEY}
|
||||||
|
VAPID_PUBLIC_KEY=${VAPID_PUBLIC_KEY}
|
||||||
|
ACTIVE_RECORD_ENCRYPTION_DETERMINISTIC_KEY=${AR_DET_KEY}
|
||||||
|
ACTIVE_RECORD_ENCRYPTION_KEY_DERIVATION_SALT=${AR_SALT}
|
||||||
|
ACTIVE_RECORD_ENCRYPTION_PRIMARY_KEY=${AR_PRIMARY}
|
||||||
|
SMTP_SERVER=
|
||||||
|
SMTP_PORT=587
|
||||||
|
SMTP_FROM_ADDRESS=notifications@${LOCAL_IP}
|
||||||
|
EOF
|
||||||
|
msg_ok "Configured Mastodon"
|
||||||
|
|
||||||
|
msg_info "Setting up Database"
|
||||||
|
RAILS_ENV=production $STD bundle exec rails db:setup
|
||||||
|
msg_ok "Set up Database"
|
||||||
|
|
||||||
|
msg_info "Precompiling Assets (Patience)"
|
||||||
|
RAILS_ENV=production SECRET_KEY_BASE_DUMMY=1 $STD bundle exec rails assets:precompile
|
||||||
|
msg_ok "Precompiled Assets"
|
||||||
|
|
||||||
|
msg_info "Creating Admin Account"
|
||||||
|
if ! ADMIN_OUTPUT=$(EMAIL_DOMAIN_ALLOWLIST="${LOCAL_IP}" RAILS_ENV=production bundle exec bin/tootctl accounts create admin \
|
||||||
|
--email "admin@${LOCAL_IP}" \
|
||||||
|
--confirmed \
|
||||||
|
--approve \
|
||||||
|
--role Owner); then
|
||||||
|
msg_error "Failed to create Mastodon admin account"
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
|
ADMIN_PASS=$(echo "$ADMIN_OUTPUT" | sed -n 's/^New password: //p')
|
||||||
|
if [[ -z "$ADMIN_PASS" ]]; then
|
||||||
|
msg_error "Failed to retrieve Mastodon admin password"
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
|
RAILS_ENV=production $STD bundle exec bin/tootctl settings registrations approved
|
||||||
|
cat <<EOF > ~/mastodon.creds
|
||||||
|
Mastodon Admin Credentials
|
||||||
|
URL: http://${LOCAL_IP}
|
||||||
|
Email: admin@${LOCAL_IP}
|
||||||
|
Password: ${ADMIN_PASS}
|
||||||
|
EOF
|
||||||
|
msg_ok "Created Admin Account"
|
||||||
|
|
||||||
|
msg_info "Creating Services"
|
||||||
|
cat <<EOF >/etc/systemd/system/mastodon-web.service
|
||||||
|
[Unit]
|
||||||
|
Description=mastodon-web
|
||||||
|
After=network.target
|
||||||
|
|
||||||
|
[Service]
|
||||||
|
Type=simple
|
||||||
|
User=root
|
||||||
|
WorkingDirectory=/opt/mastodon
|
||||||
|
Environment=RAILS_ENV=production
|
||||||
|
Environment=PORT=3000
|
||||||
|
Environment=PATH=/root/.rbenv/shims:/root/.rbenv/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
|
||||||
|
ExecStart=/root/.rbenv/shims/bundle exec puma -C config/puma.rb
|
||||||
|
ExecReload=/bin/kill -SIGUSR1 \$MAINPID
|
||||||
|
TimeoutSec=15
|
||||||
|
Restart=always
|
||||||
|
|
||||||
|
[Install]
|
||||||
|
WantedBy=multi-user.target
|
||||||
|
EOF
|
||||||
|
|
||||||
|
cat <<EOF >/etc/systemd/system/mastodon-sidekiq.service
|
||||||
|
[Unit]
|
||||||
|
Description=mastodon-sidekiq
|
||||||
|
After=network.target
|
||||||
|
|
||||||
|
[Service]
|
||||||
|
Type=simple
|
||||||
|
User=root
|
||||||
|
WorkingDirectory=/opt/mastodon
|
||||||
|
Environment=RAILS_ENV=production
|
||||||
|
Environment=DB_POOL=25
|
||||||
|
Environment=PATH=/root/.rbenv/shims:/root/.rbenv/bin:/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
|
||||||
|
ExecStart=/root/.rbenv/shims/bundle exec sidekiq -c 25
|
||||||
|
TimeoutSec=15
|
||||||
|
Restart=always
|
||||||
|
|
||||||
|
[Install]
|
||||||
|
WantedBy=multi-user.target
|
||||||
|
EOF
|
||||||
|
|
||||||
|
cat <<EOF >/etc/systemd/system/mastodon-streaming.service
|
||||||
|
[Unit]
|
||||||
|
Description=mastodon-streaming
|
||||||
|
After=network.target
|
||||||
|
|
||||||
|
[Service]
|
||||||
|
Type=simple
|
||||||
|
User=root
|
||||||
|
WorkingDirectory=/opt/mastodon
|
||||||
|
Environment=NODE_ENV=production
|
||||||
|
Environment=PORT=4000
|
||||||
|
ExecStart=/usr/bin/node ./streaming
|
||||||
|
TimeoutSec=15
|
||||||
|
Restart=always
|
||||||
|
|
||||||
|
[Install]
|
||||||
|
WantedBy=multi-user.target
|
||||||
|
EOF
|
||||||
|
systemctl enable -q --now mastodon-web mastodon-sidekiq mastodon-streaming
|
||||||
|
msg_ok "Created Services"
|
||||||
|
|
||||||
|
msg_info "Configuring Nginx"
|
||||||
|
cat <<'EOF' >/etc/nginx/sites-available/mastodon
|
||||||
|
map $http_upgrade $connection_upgrade {
|
||||||
|
default upgrade;
|
||||||
|
'' close;
|
||||||
|
}
|
||||||
|
|
||||||
|
upstream mastodon_web {
|
||||||
|
server 127.0.0.1:3000 fail_timeout=0;
|
||||||
|
}
|
||||||
|
|
||||||
|
upstream mastodon_streaming {
|
||||||
|
server 127.0.0.1:4000 fail_timeout=0;
|
||||||
|
}
|
||||||
|
|
||||||
|
server {
|
||||||
|
listen 80;
|
||||||
|
server_name _;
|
||||||
|
client_max_body_size 99m;
|
||||||
|
root /opt/mastodon/public;
|
||||||
|
|
||||||
|
gzip on;
|
||||||
|
gzip_types text/plain application/json application/javascript text/css image/svg+xml;
|
||||||
|
|
||||||
|
location / {
|
||||||
|
try_files $uri @proxy;
|
||||||
|
}
|
||||||
|
|
||||||
|
location ~ ^/assets/ {
|
||||||
|
add_header Cache-Control "public, max-age=2419200, must-revalidate";
|
||||||
|
try_files $uri =404;
|
||||||
|
}
|
||||||
|
|
||||||
|
location ^~ /api/v1/streaming {
|
||||||
|
proxy_set_header Host $host;
|
||||||
|
proxy_set_header X-Real-IP $remote_addr;
|
||||||
|
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
||||||
|
proxy_set_header X-Forwarded-Proto $scheme;
|
||||||
|
proxy_pass http://mastodon_streaming;
|
||||||
|
proxy_buffering off;
|
||||||
|
proxy_redirect off;
|
||||||
|
proxy_http_version 1.1;
|
||||||
|
proxy_set_header Upgrade $http_upgrade;
|
||||||
|
proxy_set_header Connection $connection_upgrade;
|
||||||
|
tcp_nodelay on;
|
||||||
|
}
|
||||||
|
|
||||||
|
location @proxy {
|
||||||
|
proxy_set_header Host $host;
|
||||||
|
proxy_set_header X-Real-IP $remote_addr;
|
||||||
|
proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
|
||||||
|
proxy_set_header X-Forwarded-Proto $scheme;
|
||||||
|
proxy_pass http://mastodon_web;
|
||||||
|
proxy_buffering on;
|
||||||
|
proxy_redirect off;
|
||||||
|
proxy_http_version 1.1;
|
||||||
|
proxy_set_header Upgrade $http_upgrade;
|
||||||
|
proxy_set_header Connection $connection_upgrade;
|
||||||
|
}
|
||||||
|
}
|
||||||
|
EOF
|
||||||
|
ln -sf /etc/nginx/sites-available/mastodon /etc/nginx/sites-enabled/mastodon
|
||||||
|
rm -f /etc/nginx/sites-enabled/default
|
||||||
|
$STD nginx -t
|
||||||
|
systemctl enable -q --now redis-server
|
||||||
|
systemctl enable -q --now nginx
|
||||||
|
systemctl reload nginx
|
||||||
|
msg_ok "Configured Nginx"
|
||||||
|
|
||||||
|
motd_ssh
|
||||||
|
customize
|
||||||
|
cleanup_lxc
|
||||||
Reference in New Issue
Block a user