mirror of
https://github.com/community-scripts/ProxmoxVE.git
synced 2026-08-11 23:26:12 +02:00
Compare commits
25 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| edfc6d5445 | |||
| c396fa0e65 | |||
| a755db8f0f | |||
| eb1d9051fd | |||
| 2f0900d34c | |||
| 935d2ebeef | |||
| 4f613d334d | |||
| f3bdffbeac | |||
| ae69372d9a | |||
| 314d7a387a | |||
| dac41766f0 | |||
| 8c1d4f33ff | |||
| 962dbbb569 | |||
| 7f913fa083 | |||
| 5c10a942a1 | |||
| dbbdc93a0b | |||
| 1001309bde | |||
| d9d34761d2 | |||
| b7bc9d7d06 | |||
| 5a75054083 | |||
| c41d0149c4 | |||
| a631eafe27 | |||
| 45cfab02a9 | |||
| 3c9540f491 | |||
| 72e0ac5cf7 |
@@ -521,8 +521,47 @@ Exercise vigilance regarding copycat or coat-tailing sites that seek to exploit
|
|||||||
|
|
||||||
</details>
|
</details>
|
||||||
|
|
||||||
|
## 2026-08-11
|
||||||
|
|
||||||
|
### 🚀 Updated Scripts
|
||||||
|
|
||||||
|
- Update source URL for Reactive Resume [@MickLesk](https://github.com/MickLesk) ([#16407](https://github.com/community-scripts/ProxmoxVE/pull/16407))
|
||||||
|
|
||||||
|
- #### 🐞 Bug Fixes
|
||||||
|
|
||||||
|
- Pelican-Panel: add php artisan p:environment:database [@MickLesk](https://github.com/MickLesk) ([#16397](https://github.com/community-scripts/ProxmoxVE/pull/16397))
|
||||||
|
- outline: fix URL sed matching wrong line in .env.sample // refactor .env generation [@MickLesk](https://github.com/MickLesk) ([#16408](https://github.com/community-scripts/ProxmoxVE/pull/16408))
|
||||||
|
- paperless-ngx: reindex Tantivy search index on webserver start [@MickLesk](https://github.com/MickLesk) ([#16395](https://github.com/community-scripts/ProxmoxVE/pull/16395))
|
||||||
|
- karakeep: pin Node.js to 22 LTS, avoid Node 24.19 better-sqlite3 crash [@MickLesk](https://github.com/MickLesk) ([#16396](https://github.com/community-scripts/ProxmoxVE/pull/16396))
|
||||||
|
|
||||||
|
- #### ✨ New Features
|
||||||
|
|
||||||
|
- Open WebUI: add optional OpenTelemetry package install [@irishpadres](https://github.com/irishpadres) ([#16415](https://github.com/community-scripts/ProxmoxVE/pull/16415))
|
||||||
|
|
||||||
|
### 🧰 Tools
|
||||||
|
|
||||||
|
- #### 🐞 Bug Fixes
|
||||||
|
|
||||||
|
- fix(add-tailscale-lxc): stop spinner before whiptail menu [@halcycon](https://github.com/halcycon) ([#16402](https://github.com/community-scripts/ProxmoxVE/pull/16402))
|
||||||
|
|
||||||
|
- #### 🔧 Refactor
|
||||||
|
|
||||||
|
- arcane: fix projects/builds dir ownership for non-root container UID [@MickLesk](https://github.com/MickLesk) ([#16411](https://github.com/community-scripts/ProxmoxVE/pull/16411))
|
||||||
|
|
||||||
## 2026-08-10
|
## 2026-08-10
|
||||||
|
|
||||||
|
### 🆕 New Scripts
|
||||||
|
|
||||||
|
- GitLab ([#16386](https://github.com/community-scripts/ProxmoxVE/pull/16386))
|
||||||
|
- TeslaMate ([#16385](https://github.com/community-scripts/ProxmoxVE/pull/16385))
|
||||||
|
- tor-snowflake ([#15684](https://github.com/community-scripts/ProxmoxVE/pull/15684))
|
||||||
|
|
||||||
|
### 🚀 Updated Scripts
|
||||||
|
|
||||||
|
- #### 🐞 Bug Fixes
|
||||||
|
|
||||||
|
- ErsatzTV: update ffmpeg to 8.1 version [@MickLesk](https://github.com/MickLesk) ([#16383](https://github.com/community-scripts/ProxmoxVE/pull/16383))
|
||||||
|
|
||||||
### 🧰 Tools
|
### 🧰 Tools
|
||||||
|
|
||||||
- post-pdm-install ([#16368](https://github.com/community-scripts/ProxmoxVE/pull/16368))
|
- post-pdm-install ([#16368](https://github.com/community-scripts/ProxmoxVE/pull/16368))
|
||||||
|
|||||||
+12
-1
@@ -172,8 +172,19 @@ dev_mode="trace,keep" bash -c "$(curl -fsSL https://raw.githubusercontent.com/co
|
|||||||
| `pause` | Pauses execution at key points before customization |
|
| `pause` | Pauses execution at key points before customization |
|
||||||
| `breakpoint` | Drops to a shell at hardcoded `breakpoint` calls in scripts |
|
| `breakpoint` | Drops to a shell at hardcoded `breakpoint` calls in scripts |
|
||||||
| `logs` | Saves detailed build logs to `/var/log/community-scripts/` |
|
| `logs` | Saves detailed build logs to `/var/log/community-scripts/` |
|
||||||
| `dryrun` | Bypasses actual container creation (limited support) |
|
|
||||||
| `motd` | Forces an update of the Message of the Day |
|
| `motd` | Forces an update of the Message of the Day |
|
||||||
|
| `net` | Logs every engine fetch: HTTP status, duration and URL |
|
||||||
|
| `timing` | Times each step and lists the slowest ones at the end |
|
||||||
|
|
||||||
|
Any flag also prints the resolved context first — where the engine came from,
|
||||||
|
both roots and URLs, the app, platform and versions — and repaints the greens
|
||||||
|
red, so a dev run is never mistaken for a normal install.
|
||||||
|
|
||||||
|
Setting `dev_mode` without naming a flag (`dev_mode=`, `=1`, `=ask`) opens a
|
||||||
|
picker before the install menu.
|
||||||
|
|
||||||
|
`dryrun` was removed: it only intercepted the `silent()` wrapper, so `pct
|
||||||
|
create` still ran and the container was still built.
|
||||||
|
|
||||||
---
|
---
|
||||||
|
|
||||||
|
|||||||
+1
-1
@@ -47,7 +47,7 @@ function update_script() {
|
|||||||
systemctl stop ersatzTV
|
systemctl stop ersatzTV
|
||||||
msg_ok "Stopped ErsatzTV"
|
msg_ok "Stopped ErsatzTV"
|
||||||
|
|
||||||
fetch_and_deploy_gh_release "ersatztv-ffmpeg" "ErsatzTV/ErsatzTV-ffmpeg" "prebuild" "latest" "/opt/ErsatzTV-ffmpeg" "*-$(arch_resolve "linux64" "linuxarm64")-gpl-7.1.tar.xz"
|
fetch_and_deploy_gh_release "ersatztv-ffmpeg" "ErsatzTV/ErsatzTV-ffmpeg" "prebuild" "latest" "/opt/ErsatzTV-ffmpeg" "*-$(arch_resolve "linux64" "linuxarm64")-gpl-8.1.tar.xz"
|
||||||
|
|
||||||
msg_info "Set ErsatzTV-ffmpeg links"
|
msg_info "Set ErsatzTV-ffmpeg links"
|
||||||
chmod +x /opt/ErsatzTV-ffmpeg/bin/*
|
chmod +x /opt/ErsatzTV-ffmpeg/bin/*
|
||||||
|
|||||||
@@ -0,0 +1,54 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://about.gitlab.com/
|
||||||
|
|
||||||
|
APP="GitLab"
|
||||||
|
var_tags="${var_tags:-git;devtools}"
|
||||||
|
var_cpu="${var_cpu:-4}"
|
||||||
|
var_ram="${var_ram:-8192}"
|
||||||
|
var_disk="${var_disk:-40}"
|
||||||
|
var_os="${var_os:-debian}"
|
||||||
|
var_version="${var_version:-13}"
|
||||||
|
#var_arm64="${var_arm64:-no}" # unset = ask the user; set yes/no only when verified
|
||||||
|
var_unprivileged="${var_unprivileged:-1}"
|
||||||
|
|
||||||
|
header_info "$APP"
|
||||||
|
variables
|
||||||
|
color
|
||||||
|
catch_errors
|
||||||
|
|
||||||
|
function update_script() {
|
||||||
|
header_info
|
||||||
|
check_container_storage
|
||||||
|
check_container_resources
|
||||||
|
|
||||||
|
if [[ ! -d /opt/gitlab ]]; then
|
||||||
|
msg_error "No ${APP} Installation Found!"
|
||||||
|
exit
|
||||||
|
fi
|
||||||
|
|
||||||
|
msg_info "Updating GitLab (Patience)"
|
||||||
|
$STD apt update
|
||||||
|
$STD apt install -y gitlab-ce
|
||||||
|
msg_ok "Updated GitLab"
|
||||||
|
|
||||||
|
msg_info "Reconfiguring GitLab (Patience)"
|
||||||
|
$STD gitlab-ctl reconfigure
|
||||||
|
msg_ok "Reconfigured GitLab"
|
||||||
|
msg_ok "Updated successfully!"
|
||||||
|
exit
|
||||||
|
}
|
||||||
|
|
||||||
|
start
|
||||||
|
build_container
|
||||||
|
description
|
||||||
|
|
||||||
|
msg_ok "Completed Successfully!\n"
|
||||||
|
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||||
|
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||||
|
echo -e "${GATEWAY}${BGN}http://${IP}${CL}"
|
||||||
|
echo -e "${INFO}${YW}The initial root password is valid for 24 hours:${CL}"
|
||||||
|
echo -e "${TAB}${DEFAULT}${BGN}cat /etc/gitlab/initial_root_password${CL}"
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
_______ __ __ __
|
||||||
|
/ ____(_) /_/ / ____ _/ /_
|
||||||
|
/ / __/ / __/ / / __ `/ __ \
|
||||||
|
/ /_/ / / /_/ /___/ /_/ / /_/ /
|
||||||
|
\____/_/\__/_____/\__,_/_.___/
|
||||||
|
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
______ __ __ ___ __
|
||||||
|
/_ __/__ _____/ /___ _/ |/ /___ _/ /____
|
||||||
|
/ / / _ \/ ___/ / __ `/ /|_/ / __ `/ __/ _ \
|
||||||
|
/ / / __(__ ) / /_/ / / / / /_/ / /_/ __/
|
||||||
|
/_/ \___/____/_/\__,_/_/ /_/\__,_/\__/\___/
|
||||||
|
|
||||||
@@ -0,0 +1,6 @@
|
|||||||
|
__ ______ __
|
||||||
|
/ /_____ _____ _________ ____ _ __/ __/ /___ _/ /_____
|
||||||
|
/ __/ __ \/ ___/_____/ ___/ __ \/ __ \ | /| / / /_/ / __ `/ //_/ _ \
|
||||||
|
/ /_/ /_/ / / /_____(__ ) / / / /_/ / |/ |/ / __/ / /_/ / ,< / __/
|
||||||
|
\__/\____/_/ /____/_/ /_/\____/|__/|__/_/ /_/\__,_/_/|_|\___/
|
||||||
|
|
||||||
+3
-1
@@ -88,8 +88,9 @@ EOF
|
|||||||
$STD corepack disable
|
$STD corepack disable
|
||||||
fi
|
fi
|
||||||
sed -i "s/^SERVER_VERSION=.*$/SERVER_VERSION=${CHECK_UPDATE_RELEASE#v}/" /etc/karakeep/karakeep.env
|
sed -i "s/^SERVER_VERSION=.*$/SERVER_VERSION=${CHECK_UPDATE_RELEASE#v}/" /etc/karakeep/karakeep.env
|
||||||
|
# Node 24.19.x crashes better-sqlite3 on cleanup (karakeep-app/karakeep#2989); stay on 22 LTS until upstream reverts.
|
||||||
MODULE_VERSION="$(jq -r '.packageManager | split("@")[1]' /opt/karakeep/package.json)"
|
MODULE_VERSION="$(jq -r '.packageManager | split("@")[1]' /opt/karakeep/package.json)"
|
||||||
NODE_VERSION="24" NODE_MODULE="corepack,pnpm@${MODULE_VERSION}" setup_nodejs
|
NODE_VERSION="22" NODE_MODULE="corepack,pnpm@${MODULE_VERSION}" setup_nodejs
|
||||||
setup_meilisearch
|
setup_meilisearch
|
||||||
|
|
||||||
msg_info "Updating Karakeep"
|
msg_info "Updating Karakeep"
|
||||||
@@ -103,6 +104,7 @@ EOF
|
|||||||
$STD pnpm build
|
$STD pnpm build
|
||||||
cd /opt/karakeep/apps/workers
|
cd /opt/karakeep/apps/workers
|
||||||
$STD pnpm install --frozen-lockfile
|
$STD pnpm install --frozen-lockfile
|
||||||
|
$STD pnpm rebuild better-sqlite3
|
||||||
$STD pnpm build
|
$STD pnpm build
|
||||||
cd /opt/karakeep/apps/cli
|
cd /opt/karakeep/apps/cli
|
||||||
$STD pnpm install --frozen-lockfile
|
$STD pnpm install --frozen-lockfile
|
||||||
|
|||||||
+8
-1
@@ -114,7 +114,14 @@ EOF
|
|||||||
|
|
||||||
msg_info "Updating Open WebUI via uv"
|
msg_info "Updating Open WebUI via uv"
|
||||||
PYTHON_VERSION="3.12" setup_uv
|
PYTHON_VERSION="3.12" setup_uv
|
||||||
$STD uv tool install --force --python 3.12 --constraint <(echo "numba>=0.60") open-webui[all]
|
OWUI_PYTHON="/root/.local/share/uv/tools/open-webui/bin/python3.12"
|
||||||
|
OTEL_ARGS=()
|
||||||
|
if [[ -x "$OWUI_PYTHON" ]]; then
|
||||||
|
while IFS= read -r pkg; do
|
||||||
|
OTEL_ARGS+=(--with "$pkg")
|
||||||
|
done < <(uv pip list --python "$OWUI_PYTHON" --format freeze 2>/dev/null | grep -i '^opentelemetry-' | cut -d= -f1)
|
||||||
|
fi
|
||||||
|
$STD uv tool install --force --python 3.12 --constraint <(echo "numba>=0.60") "${OTEL_ARGS[@]}" open-webui[all]
|
||||||
systemctl restart open-webui
|
systemctl restart open-webui
|
||||||
msg_ok "Updated Open WebUI"
|
msg_ok "Updated Open WebUI"
|
||||||
msg_ok "Updated successfully!"
|
msg_ok "Updated successfully!"
|
||||||
|
|||||||
@@ -166,6 +166,8 @@ function update_script() {
|
|||||||
msg_info "Updating Paperless-ngx"
|
msg_info "Updating Paperless-ngx"
|
||||||
if ((BRIDGE_UPDATE == 0)); then
|
if ((BRIDGE_UPDATE == 0)); then
|
||||||
sed -i 's|^ExecStart=.*|ExecStart=uv run -- granian --interface asginl --ws --loop uvloop "paperless.asgi:application"|' /etc/systemd/system/paperless-webserver.service
|
sed -i 's|^ExecStart=.*|ExecStart=uv run -- granian --interface asginl --ws --loop uvloop "paperless.asgi:application"|' /etc/systemd/system/paperless-webserver.service
|
||||||
|
grep -q "document_index reindex" /etc/systemd/system/paperless-webserver.service ||
|
||||||
|
sed -i '/^ExecStart=/i ExecStartPre=uv run -- python manage.py document_index reindex --if-needed --no-progress-bar' /etc/systemd/system/paperless-webserver.service
|
||||||
$STD systemctl daemon-reload
|
$STD systemctl daemon-reload
|
||||||
fi
|
fi
|
||||||
cd /opt/paperless
|
cd /opt/paperless
|
||||||
|
|||||||
@@ -3,7 +3,7 @@ source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxV
|
|||||||
# Copyright (c) 2021-2026 community-scripts ORG
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
# Author: vhsdream | MickLesk (CanbiZ)
|
# Author: vhsdream | MickLesk (CanbiZ)
|
||||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
# Source: https://rxresume.org | Github: https://github.com/amruthpillai/reactive-resume
|
# Source: https://rxresu.me/ | Github: https://github.com/amruthpillai/reactive-resume
|
||||||
|
|
||||||
APP="Reactive-Resume"
|
APP="Reactive-Resume"
|
||||||
var_tags="${var_tags:-documents}"
|
var_tags="${var_tags:-documents}"
|
||||||
@@ -45,7 +45,6 @@ function update_script() {
|
|||||||
msg_info "Updating Reactive Resume (Patience)"
|
msg_info "Updating Reactive Resume (Patience)"
|
||||||
cd /opt/reactive-resume
|
cd /opt/reactive-resume
|
||||||
export COREPACK_ENABLE_DOWNLOAD_PROMPT=0
|
export COREPACK_ENABLE_DOWNLOAD_PROMPT=0
|
||||||
|
|
||||||
corepack prepare --activate
|
corepack prepare --activate
|
||||||
export CI="true"
|
export CI="true"
|
||||||
export NODE_ENV="production"
|
export NODE_ENV="production"
|
||||||
|
|||||||
@@ -0,0 +1,69 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://github.com/teslamate-org/teslamate
|
||||||
|
|
||||||
|
APP="TeslaMate"
|
||||||
|
var_tags="${var_tags:-car;monitoring}"
|
||||||
|
var_cpu="${var_cpu:-2}"
|
||||||
|
var_ram="${var_ram:-4096}"
|
||||||
|
var_disk="${var_disk:-16}"
|
||||||
|
var_os="${var_os:-debian}"
|
||||||
|
var_version="${var_version:-13}"
|
||||||
|
#var_arm64="${var_arm64:-no}" # unset = ask the user; set yes/no only when verified
|
||||||
|
var_unprivileged="${var_unprivileged:-1}"
|
||||||
|
|
||||||
|
header_info "$APP"
|
||||||
|
variables
|
||||||
|
color
|
||||||
|
catch_errors
|
||||||
|
|
||||||
|
function update_script() {
|
||||||
|
header_info
|
||||||
|
check_container_storage
|
||||||
|
check_container_resources
|
||||||
|
|
||||||
|
if [[ ! -d /opt/teslamate ]]; then
|
||||||
|
msg_error "No ${APP} Installation Found!"
|
||||||
|
exit
|
||||||
|
fi
|
||||||
|
|
||||||
|
if check_for_gh_release "teslamate" "teslamate-org/teslamate"; then
|
||||||
|
msg_info "Stopping Service"
|
||||||
|
systemctl stop teslamate
|
||||||
|
msg_ok "Stopped Service"
|
||||||
|
|
||||||
|
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "teslamate" "teslamate-org/teslamate" "tarball"
|
||||||
|
|
||||||
|
msg_info "Building TeslaMate (Patience)"
|
||||||
|
cd /opt/teslamate
|
||||||
|
export MIX_ENV=prod
|
||||||
|
$STD mix local.hex --force
|
||||||
|
$STD mix local.rebar --force
|
||||||
|
$STD mix deps.get --only prod
|
||||||
|
$STD npm install --prefix ./assets
|
||||||
|
$STD npm run deploy --prefix ./assets
|
||||||
|
$STD mix do phx.digest, release --overwrite
|
||||||
|
msg_ok "Built TeslaMate"
|
||||||
|
|
||||||
|
msg_info "Starting Service"
|
||||||
|
systemctl start teslamate
|
||||||
|
systemctl restart grafana-server
|
||||||
|
msg_ok "Started Service"
|
||||||
|
msg_ok "Updated successfully!"
|
||||||
|
fi
|
||||||
|
exit
|
||||||
|
}
|
||||||
|
|
||||||
|
start
|
||||||
|
build_container
|
||||||
|
description
|
||||||
|
|
||||||
|
msg_ok "Completed Successfully!\n"
|
||||||
|
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||||
|
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||||
|
echo -e "${GATEWAY}${BGN}http://${IP}:4000${CL}"
|
||||||
|
echo -e "${INFO}${YW}Grafana dashboards (admin/admin):${CL}"
|
||||||
|
echo -e "${TAB}${GATEWAY}${BGN}http://${IP}:3000${CL}"
|
||||||
@@ -0,0 +1,64 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||||
|
# Copyright (c) 2021-2025 community-scripts ORG
|
||||||
|
# Author: KernelSailor
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://snowflake.torproject.org/
|
||||||
|
|
||||||
|
APP="tor-snowflake"
|
||||||
|
var_tags="${var_tags:-privacy;proxy;tor}"
|
||||||
|
var_cpu="${var_cpu:-1}"
|
||||||
|
var_ram="${var_ram:-512}"
|
||||||
|
var_disk="${var_disk:-4}"
|
||||||
|
var_os="${var_os:-debian}"
|
||||||
|
var_version="${var_version:-13}"
|
||||||
|
var_arm64="${var_arm64:-yes}"
|
||||||
|
var_unprivileged="${var_unprivileged:-1}"
|
||||||
|
var_nesting="${var_nesting:-0}"
|
||||||
|
|
||||||
|
header_info "$APP"
|
||||||
|
variables
|
||||||
|
color
|
||||||
|
catch_errors
|
||||||
|
|
||||||
|
function update_script() {
|
||||||
|
header_info
|
||||||
|
check_container_storage
|
||||||
|
check_container_resources
|
||||||
|
|
||||||
|
msg_info "Updating Container OS"
|
||||||
|
$STD apt update
|
||||||
|
$STD apt upgrade -y
|
||||||
|
msg_ok "Updated Container OS"
|
||||||
|
|
||||||
|
if [[ ! -d /opt/tor-snowflake ]]; then
|
||||||
|
msg_error "No ${APP} Installation Found!"
|
||||||
|
exit
|
||||||
|
fi
|
||||||
|
|
||||||
|
if GITLAB_URL="https://gitlab.torproject.org" check_for_gl_release "tor-snowflake" "tpo/anti-censorship/pluggable-transports/snowflake"; then
|
||||||
|
msg_info "Stopping Service"
|
||||||
|
systemctl stop snowflake-proxy
|
||||||
|
msg_ok "Stopped Service"
|
||||||
|
|
||||||
|
CLEAN_INSTALL=1 GITLAB_URL="https://gitlab.torproject.org" fetch_and_deploy_gl_release "tor-snowflake" "tpo/anti-censorship/pluggable-transports/snowflake" "tarball"
|
||||||
|
|
||||||
|
msg_info "Building Snowflake"
|
||||||
|
cd /opt/tor-snowflake/proxy
|
||||||
|
$STD go build -o snowflake-proxy .
|
||||||
|
msg_ok "Built Snowflake"
|
||||||
|
|
||||||
|
msg_info "Starting Service"
|
||||||
|
systemctl start snowflake-proxy
|
||||||
|
msg_ok "Started Service"
|
||||||
|
msg_ok "Updated successfully!"
|
||||||
|
fi
|
||||||
|
exit
|
||||||
|
}
|
||||||
|
|
||||||
|
start
|
||||||
|
build_container
|
||||||
|
description
|
||||||
|
|
||||||
|
msg_ok "Completed Successfully!\n"
|
||||||
|
|
||||||
@@ -15,7 +15,7 @@ update_os
|
|||||||
|
|
||||||
setup_hwaccel
|
setup_hwaccel
|
||||||
fetch_and_deploy_gh_release "ersatztv" "ErsatzTV/ErsatzTV" "prebuild" "latest" "/opt/ErsatzTV" "*linux-$(arch_resolve "x64" "arm64").tar.gz"
|
fetch_and_deploy_gh_release "ersatztv" "ErsatzTV/ErsatzTV" "prebuild" "latest" "/opt/ErsatzTV" "*linux-$(arch_resolve "x64" "arm64").tar.gz"
|
||||||
fetch_and_deploy_gh_release "ersatztv-ffmpeg" "ErsatzTV/ErsatzTV-ffmpeg" "prebuild" "latest" "/opt/ErsatzTV-ffmpeg" "*-$(arch_resolve "linux64" "linuxarm64")-gpl-7.1.tar.xz"
|
fetch_and_deploy_gh_release "ersatztv-ffmpeg" "ErsatzTV/ErsatzTV-ffmpeg" "prebuild" "latest" "/opt/ErsatzTV-ffmpeg" "*-$(arch_resolve "linux64" "linuxarm64")-gpl-8.1.tar.xz"
|
||||||
|
|
||||||
msg_info "Set ErsatzTV-ffmpeg links"
|
msg_info "Set ErsatzTV-ffmpeg links"
|
||||||
chmod +x /opt/ErsatzTV-ffmpeg/bin/*
|
chmod +x /opt/ErsatzTV-ffmpeg/bin/*
|
||||||
|
|||||||
@@ -0,0 +1,51 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://about.gitlab.com/
|
||||||
|
|
||||||
|
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||||
|
color
|
||||||
|
verb_ip6
|
||||||
|
catch_errors
|
||||||
|
setting_up_container
|
||||||
|
network_check
|
||||||
|
update_os
|
||||||
|
|
||||||
|
msg_info "Installing Dependencies"
|
||||||
|
$STD apt install -y \
|
||||||
|
openssh-server \
|
||||||
|
perl \
|
||||||
|
tzdata
|
||||||
|
msg_ok "Installed Dependencies"
|
||||||
|
|
||||||
|
setup_deb822_repo \
|
||||||
|
"gitlab-ce" \
|
||||||
|
"https://packages.gitlab.com/gitlab/gitlab-ce/gpgkey" \
|
||||||
|
"https://packages.gitlab.com/gitlab/gitlab-ce/debian" \
|
||||||
|
"$(get_os_info codename)" \
|
||||||
|
"main"
|
||||||
|
|
||||||
|
msg_info "Configuring GitLab"
|
||||||
|
mkdir -p /etc/gitlab
|
||||||
|
cat <<EOF >/etc/gitlab/gitlab.rb
|
||||||
|
external_url 'http://${LOCAL_IP}'
|
||||||
|
|
||||||
|
# Omnibus runs 'sysctl -e --system' during reconfigure, which fails in an
|
||||||
|
# unprivileged LXC because most kernel keys are not writable.
|
||||||
|
package['modify_kernel_parameters'] = false
|
||||||
|
EOF
|
||||||
|
msg_ok "Configured GitLab"
|
||||||
|
|
||||||
|
msg_info "Installing GitLab CE (Patience)"
|
||||||
|
$STD apt install -y gitlab-ce
|
||||||
|
msg_ok "Installed GitLab CE"
|
||||||
|
|
||||||
|
msg_info "Reconfiguring GitLab (Patience)"
|
||||||
|
$STD gitlab-ctl reconfigure
|
||||||
|
msg_ok "Reconfigured GitLab"
|
||||||
|
|
||||||
|
motd_ssh
|
||||||
|
customize
|
||||||
|
cleanup_lxc
|
||||||
@@ -31,8 +31,9 @@ setup_meilisearch
|
|||||||
|
|
||||||
fetch_and_deploy_gh_release "karakeep" "karakeep-app/karakeep" "tarball"
|
fetch_and_deploy_gh_release "karakeep" "karakeep-app/karakeep" "tarball"
|
||||||
cd /opt/karakeep
|
cd /opt/karakeep
|
||||||
|
# Node 24.19.x crashes better-sqlite3 on cleanup (karakeep-app/karakeep#2989); stay on 22 LTS until upstream reverts.
|
||||||
MODULE_VERSION="$(jq -r '.packageManager | split("@")[1]' /opt/karakeep/package.json)"
|
MODULE_VERSION="$(jq -r '.packageManager | split("@")[1]' /opt/karakeep/package.json)"
|
||||||
NODE_VERSION="24" NODE_MODULE="pnpm@${MODULE_VERSION}" setup_nodejs
|
NODE_VERSION="22" NODE_MODULE="pnpm@${MODULE_VERSION}" setup_nodejs
|
||||||
|
|
||||||
msg_info "Installing external JavaScript Extension for yt-dlp"
|
msg_info "Installing external JavaScript Extension for yt-dlp"
|
||||||
$STD pip install -U yt-dlp-ejs --break-system-packages
|
$STD pip install -U yt-dlp-ejs --break-system-packages
|
||||||
|
|||||||
@@ -25,8 +25,28 @@ setup_hwaccel
|
|||||||
|
|
||||||
PYTHON_VERSION="3.12" setup_uv
|
PYTHON_VERSION="3.12" setup_uv
|
||||||
|
|
||||||
|
OTEL_ARGS=()
|
||||||
|
read -r -p "${TAB3}Would you like to install OpenTelemetry instrumentation packages (requires manual .env configuration)? <y/N> " prompt
|
||||||
|
if [[ ${prompt,,} =~ ^(y|yes)$ ]]; then
|
||||||
|
for pkg in \
|
||||||
|
opentelemetry-api \
|
||||||
|
opentelemetry-sdk \
|
||||||
|
opentelemetry-exporter-otlp \
|
||||||
|
opentelemetry-exporter-otlp-proto-http \
|
||||||
|
opentelemetry-instrumentation-fastapi \
|
||||||
|
opentelemetry-instrumentation-aiohttp-client \
|
||||||
|
opentelemetry-instrumentation-httpx \
|
||||||
|
opentelemetry-instrumentation-sqlalchemy \
|
||||||
|
opentelemetry-instrumentation-requests \
|
||||||
|
opentelemetry-instrumentation-logging \
|
||||||
|
opentelemetry-instrumentation-redis \
|
||||||
|
opentelemetry-instrumentation-system-metrics; do
|
||||||
|
OTEL_ARGS+=(--with "$pkg")
|
||||||
|
done
|
||||||
|
fi
|
||||||
|
|
||||||
msg_info "Installing Open WebUI"
|
msg_info "Installing Open WebUI"
|
||||||
$STD uv tool install --python 3.12 --constraint <(echo "numba>=0.60") open-webui[all]
|
$STD uv tool install --python 3.12 --constraint <(echo "numba>=0.60") "${OTEL_ARGS[@]}" open-webui[all]
|
||||||
msg_ok "Installed Open WebUI"
|
msg_ok "Installed Open WebUI"
|
||||||
|
|
||||||
read -r -p "${TAB3}Would you like to add Ollama? <y/N> " prompt
|
read -r -p "${TAB3}Would you like to add Ollama? <y/N> " prompt
|
||||||
|
|||||||
@@ -28,21 +28,23 @@ fetch_and_deploy_gh_release "outline" "outline/outline" "tarball"
|
|||||||
|
|
||||||
msg_info "Configuring Outline (Patience)"
|
msg_info "Configuring Outline (Patience)"
|
||||||
SECRET_KEY="$(openssl rand -hex 32)"
|
SECRET_KEY="$(openssl rand -hex 32)"
|
||||||
|
UTILS_SECRET="$(openssl rand -hex 32)"
|
||||||
cd /opt/outline
|
cd /opt/outline
|
||||||
cp .env.sample .env
|
cp .env.sample .env
|
||||||
export NODE_ENV=development
|
export NODE_ENV=development
|
||||||
sed -i 's/NODE_ENV=production/NODE_ENV=development/g' /opt/outline/.env
|
sed -i "s#^NODE_ENV=.*#NODE_ENV=development#" /opt/outline/.env
|
||||||
sed -i "s/generate_a_new_key/${SECRET_KEY}/g" /opt/outline/.env
|
sed -i "s#^SECRET_KEY=.*#SECRET_KEY=${SECRET_KEY}#" /opt/outline/.env
|
||||||
sed -i "s/user:pass@postgres/${PG_DB_USER}:${PG_DB_PASS}@localhost/g" /opt/outline/.env
|
sed -i "s#^UTILS_SECRET=.*#UTILS_SECRET=${UTILS_SECRET}#" /opt/outline/.env
|
||||||
sed -i 's/redis:6379/localhost:6379/g' /opt/outline/.env
|
sed -i "s#^DATABASE_URL=.*#DATABASE_URL=postgres://${PG_DB_USER}:${PG_DB_PASS}@localhost:5432/${PG_DB_NAME}#" /opt/outline/.env
|
||||||
sed -i "5s#URL=#URL=http://${LOCAL_IP}#g" /opt/outline/.env
|
sed -i "s#^REDIS_URL=.*#REDIS_URL=redis://localhost:6379#" /opt/outline/.env
|
||||||
sed -i 's/FORCE_HTTPS=true/FORCE_HTTPS=false/g' /opt/outline/.env
|
sed -i "s#^URL=.*#URL=http://${LOCAL_IP}#" /opt/outline/.env
|
||||||
|
sed -i "s#^FORCE_HTTPS=.*#FORCE_HTTPS=false#" /opt/outline/.env
|
||||||
export NODE_OPTIONS="--max-old-space-size=3584"
|
export NODE_OPTIONS="--max-old-space-size=3584"
|
||||||
export COREPACK_ENABLE_DOWNLOAD_PROMPT=0
|
export COREPACK_ENABLE_DOWNLOAD_PROMPT=0
|
||||||
|
|
||||||
$STD yarn install --immutable
|
$STD yarn install --immutable
|
||||||
export NODE_ENV=production
|
export NODE_ENV=production
|
||||||
sed -i 's/NODE_ENV=development/NODE_ENV=production/g' /opt/outline/.env
|
sed -i "s#^NODE_ENV=.*#NODE_ENV=production#" /opt/outline/.env
|
||||||
$STD yarn build
|
$STD yarn build
|
||||||
msg_ok "Configured Outline"
|
msg_ok "Configured Outline"
|
||||||
|
|
||||||
|
|||||||
@@ -151,6 +151,7 @@ Requires=redis.service
|
|||||||
|
|
||||||
[Service]
|
[Service]
|
||||||
WorkingDirectory=/opt/paperless/src
|
WorkingDirectory=/opt/paperless/src
|
||||||
|
ExecStartPre=uv run -- python manage.py document_index reindex --if-needed --no-progress-bar
|
||||||
ExecStart=uv run -- granian --interface asginl --ws --loop uvloop "paperless.asgi:application"
|
ExecStart=uv run -- granian --interface asginl --ws --loop uvloop "paperless.asgi:application"
|
||||||
Environment=GRANIAN_HOST=::
|
Environment=GRANIAN_HOST=::
|
||||||
Environment=GRANIAN_PORT=8000
|
Environment=GRANIAN_PORT=8000
|
||||||
|
|||||||
@@ -27,6 +27,7 @@ msg_info "Installing Pelican Panel"
|
|||||||
cd /opt/pelican-panel
|
cd /opt/pelican-panel
|
||||||
$STD composer install --no-dev --optimize-autoloader --no-interaction
|
$STD composer install --no-dev --optimize-autoloader --no-interaction
|
||||||
$STD php artisan p:environment:setup
|
$STD php artisan p:environment:setup
|
||||||
|
echo "yes" | $STD php artisan p:environment:database --driver mariadb --host localhost --port 3306 --database "$MARIADB_DB_NAME" --username "$MARIADB_DB_USER" --password "$MARIADB_DB_PASS"
|
||||||
$STD php artisan p:environment:queue-service --no-interaction
|
$STD php artisan p:environment:queue-service --no-interaction
|
||||||
echo "* * * * * php /opt/pelican-panel/artisan schedule:run >> /dev/null 2>&1" | crontab -u www-data -
|
echo "* * * * * php /opt/pelican-panel/artisan schedule:run >> /dev/null 2>&1" | crontab -u www-data -
|
||||||
chown -R www-data:www-data /opt/pelican-panel
|
chown -R www-data:www-data /opt/pelican-panel
|
||||||
|
|||||||
@@ -3,7 +3,7 @@
|
|||||||
# Copyright (c) 2021-2026 community-scripts ORG
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
# Author: vhsdream | Rewrite: MickLesk (CanbiZ)
|
# Author: vhsdream | Rewrite: MickLesk (CanbiZ)
|
||||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
# Source: https://rxresume.org | Github: https://github.com/amruthpillai/reactive-resume
|
# Source: https://rxresu.me/ | Github: https://github.com/amruthpillai/reactive-resume
|
||||||
|
|
||||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||||
color
|
color
|
||||||
@@ -39,7 +39,6 @@ msg_ok "Built Reactive Resume"
|
|||||||
|
|
||||||
msg_info "Configuring Reactive Resume"
|
msg_info "Configuring Reactive Resume"
|
||||||
AUTH_SECRET=$(openssl rand -hex 32)
|
AUTH_SECRET=$(openssl rand -hex 32)
|
||||||
|
|
||||||
cat <<EOF >/opt/reactive-resume/.env
|
cat <<EOF >/opt/reactive-resume/.env
|
||||||
# Reactive Resume v5 Configuration
|
# Reactive Resume v5 Configuration
|
||||||
NODE_ENV=production
|
NODE_ENV=production
|
||||||
|
|||||||
@@ -0,0 +1,183 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
|
||||||
|
# Copyright (c) 2021-2026 community-scripts ORG
|
||||||
|
# Author: MickLesk (CanbiZ)
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://github.com/teslamate-org/teslamate
|
||||||
|
|
||||||
|
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||||
|
color
|
||||||
|
verb_ip6
|
||||||
|
catch_errors
|
||||||
|
setting_up_container
|
||||||
|
network_check
|
||||||
|
update_os
|
||||||
|
|
||||||
|
msg_info "Installing Dependencies"
|
||||||
|
$STD apt install -y \
|
||||||
|
build-essential \
|
||||||
|
erlang \
|
||||||
|
erlang-dev \
|
||||||
|
erlang-syntax-tools \
|
||||||
|
elixir \
|
||||||
|
mosquitto \
|
||||||
|
locales
|
||||||
|
sed -i 's/^# *\(en_US.UTF-8\)/\1/' /etc/locale.gen
|
||||||
|
$STD locale-gen
|
||||||
|
systemctl enable -q --now mosquitto
|
||||||
|
msg_ok "Installed Dependencies"
|
||||||
|
|
||||||
|
PG_VERSION="17" setup_postgresql
|
||||||
|
PG_DB_NAME="teslamate" PG_DB_USER="teslamate" PG_DB_GRANT_SUPERUSER="true" setup_postgresql_db
|
||||||
|
NODE_VERSION="22" setup_nodejs
|
||||||
|
|
||||||
|
setup_deb822_repo \
|
||||||
|
"grafana" \
|
||||||
|
"https://apt.grafana.com/gpg.key" \
|
||||||
|
"https://apt.grafana.com" \
|
||||||
|
"stable" \
|
||||||
|
"main"
|
||||||
|
|
||||||
|
msg_info "Installing Grafana"
|
||||||
|
$STD apt install -y grafana
|
||||||
|
msg_ok "Installed Grafana"
|
||||||
|
|
||||||
|
fetch_and_deploy_gh_release "teslamate" "teslamate-org/teslamate" "tarball"
|
||||||
|
|
||||||
|
msg_info "Building TeslaMate (Patience)"
|
||||||
|
cd /opt/teslamate
|
||||||
|
export MIX_ENV=prod
|
||||||
|
$STD mix local.hex --force
|
||||||
|
$STD mix local.rebar --force
|
||||||
|
$STD mix deps.get --only prod
|
||||||
|
$STD npm install --prefix ./assets
|
||||||
|
$STD npm run deploy --prefix ./assets
|
||||||
|
$STD mix do phx.digest, release --overwrite
|
||||||
|
msg_ok "Built TeslaMate"
|
||||||
|
|
||||||
|
msg_info "Configuring TeslaMate"
|
||||||
|
cat <<EOF >/opt/teslamate.env
|
||||||
|
HOME=/opt/teslamate
|
||||||
|
LANG=en_US.UTF-8
|
||||||
|
LC_CTYPE=en_US.UTF-8
|
||||||
|
TZ=UTC
|
||||||
|
PORT=4000
|
||||||
|
ENCRYPTION_KEY=$(openssl rand -hex 32)
|
||||||
|
DATABASE_USER=teslamate
|
||||||
|
DATABASE_PASS=${PG_DB_PASS}
|
||||||
|
DATABASE_NAME=teslamate
|
||||||
|
DATABASE_HOST=127.0.0.1
|
||||||
|
DATABASE_PORT=5432
|
||||||
|
MQTT_HOST=127.0.0.1
|
||||||
|
EOF
|
||||||
|
chmod 600 /opt/teslamate.env
|
||||||
|
msg_ok "Configured TeslaMate"
|
||||||
|
|
||||||
|
msg_info "Provisioning Grafana"
|
||||||
|
mkdir -p /etc/grafana/provisioning/{datasources,dashboards}
|
||||||
|
cat <<EOF >/etc/grafana/provisioning/datasources/teslamate.yml
|
||||||
|
apiVersion: 1
|
||||||
|
|
||||||
|
datasources:
|
||||||
|
- name: TeslaMate
|
||||||
|
type: postgres
|
||||||
|
url: 127.0.0.1:5432
|
||||||
|
user: teslamate
|
||||||
|
access: proxy
|
||||||
|
isDefault: true
|
||||||
|
secureJsonData:
|
||||||
|
password: ${PG_DB_PASS}
|
||||||
|
jsonData:
|
||||||
|
postgresVersion: 1700
|
||||||
|
sslmode: disable
|
||||||
|
database: teslamate
|
||||||
|
version: 1
|
||||||
|
editable: true
|
||||||
|
EOF
|
||||||
|
|
||||||
|
cat <<EOF >/etc/grafana/provisioning/dashboards/teslamate.yml
|
||||||
|
apiVersion: 1
|
||||||
|
|
||||||
|
providers:
|
||||||
|
- name: "teslamate"
|
||||||
|
orgId: 1
|
||||||
|
folder: TeslaMate
|
||||||
|
folderUid: Nr4ofiDZk
|
||||||
|
type: file
|
||||||
|
disableDeletion: false
|
||||||
|
allowUiUpdates: true
|
||||||
|
updateIntervalSeconds: 86400
|
||||||
|
options:
|
||||||
|
path: /opt/teslamate/grafana/dashboards
|
||||||
|
foldersFromFilesStructure: false
|
||||||
|
- name: "teslamate_internal"
|
||||||
|
orgId: 1
|
||||||
|
folder: Internal
|
||||||
|
folderUid: Nr5ofiDZk
|
||||||
|
type: file
|
||||||
|
disableDeletion: false
|
||||||
|
allowUiUpdates: true
|
||||||
|
updateIntervalSeconds: 86400
|
||||||
|
options:
|
||||||
|
path: /opt/teslamate/grafana/dashboards/internal
|
||||||
|
- name: "teslamate_reports"
|
||||||
|
orgId: 1
|
||||||
|
folder: Reports
|
||||||
|
folderUid: Nr6ofiDZk
|
||||||
|
type: file
|
||||||
|
disableDeletion: false
|
||||||
|
allowUiUpdates: true
|
||||||
|
updateIntervalSeconds: 86400
|
||||||
|
options:
|
||||||
|
path: /opt/teslamate/grafana/dashboards/reports
|
||||||
|
EOF
|
||||||
|
|
||||||
|
cat <<EOF >/etc/grafana/grafana.ini
|
||||||
|
[analytics]
|
||||||
|
reporting_enabled = false
|
||||||
|
check_for_updates = false
|
||||||
|
check_for_plugin_updates = false
|
||||||
|
|
||||||
|
[security]
|
||||||
|
allow_embedding = true
|
||||||
|
disable_gravatar = true
|
||||||
|
|
||||||
|
[users]
|
||||||
|
allow_sign_up = false
|
||||||
|
|
||||||
|
[dashboards]
|
||||||
|
default_home_dashboard_path = /opt/teslamate/grafana/dashboards/internal/home.json
|
||||||
|
|
||||||
|
[date_formats]
|
||||||
|
use_browser_locale = true
|
||||||
|
EOF
|
||||||
|
systemctl enable -q --now grafana-server
|
||||||
|
msg_ok "Provisioned Grafana"
|
||||||
|
|
||||||
|
msg_info "Creating Service"
|
||||||
|
cat <<EOF >/etc/systemd/system/teslamate.service
|
||||||
|
[Unit]
|
||||||
|
Description=TeslaMate
|
||||||
|
Wants=network-online.target
|
||||||
|
After=network-online.target postgresql.service mosquitto.service
|
||||||
|
|
||||||
|
[Service]
|
||||||
|
Type=simple
|
||||||
|
User=root
|
||||||
|
WorkingDirectory=/opt/teslamate
|
||||||
|
EnvironmentFile=/opt/teslamate.env
|
||||||
|
ExecStartPre=/opt/teslamate/_build/prod/rel/teslamate/bin/teslamate eval "TeslaMate.Release.migrate"
|
||||||
|
ExecStart=/opt/teslamate/_build/prod/rel/teslamate/bin/teslamate start
|
||||||
|
ExecStop=/opt/teslamate/_build/prod/rel/teslamate/bin/teslamate stop
|
||||||
|
Restart=on-failure
|
||||||
|
RestartSec=5
|
||||||
|
|
||||||
|
[Install]
|
||||||
|
WantedBy=multi-user.target
|
||||||
|
EOF
|
||||||
|
systemctl enable -q --now teslamate
|
||||||
|
msg_ok "Created Service"
|
||||||
|
|
||||||
|
motd_ssh
|
||||||
|
customize
|
||||||
|
cleanup_lxc
|
||||||
@@ -0,0 +1,47 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
|
||||||
|
# Copyright (c) 2021-2025 community-scripts ORG
|
||||||
|
# Author: KernelSailor
|
||||||
|
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||||
|
# Source: https://snowflake.torproject.org/
|
||||||
|
|
||||||
|
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||||
|
color
|
||||||
|
verb_ip6
|
||||||
|
catch_errors
|
||||||
|
setting_up_container
|
||||||
|
network_check
|
||||||
|
update_os
|
||||||
|
|
||||||
|
setup_go
|
||||||
|
|
||||||
|
msg_info "Building Snowflake"
|
||||||
|
GITLAB_URL="https://gitlab.torproject.org" fetch_and_deploy_gl_release "tor-snowflake" "tpo/anti-censorship/pluggable-transports/snowflake" "tarball"
|
||||||
|
cd /opt/tor-snowflake/proxy
|
||||||
|
$STD go build -o snowflake-proxy .
|
||||||
|
msg_ok "Built Snowflake Proxy"
|
||||||
|
|
||||||
|
msg_info "Creating Service"
|
||||||
|
cat <<EOF >/etc/systemd/system/snowflake-proxy.service
|
||||||
|
[Unit]
|
||||||
|
Description=Snowflake Proxy Service
|
||||||
|
Documentation=https://snowflake.torproject.org/
|
||||||
|
After=network-online.target
|
||||||
|
Wants=network-online.target
|
||||||
|
|
||||||
|
[Service]
|
||||||
|
Type=simple
|
||||||
|
WorkingDirectory=/opt/tor-snowflake/proxy
|
||||||
|
ExecStart=/opt/tor-snowflake/proxy/snowflake-proxy -verbose -unsafe-logging
|
||||||
|
Restart=always
|
||||||
|
RestartSec=10
|
||||||
|
|
||||||
|
[Install]
|
||||||
|
WantedBy=multi-user.target
|
||||||
|
EOF
|
||||||
|
systemctl enable -q --now snowflake-proxy
|
||||||
|
msg_ok "Created Service"
|
||||||
|
|
||||||
|
motd_ssh
|
||||||
|
customize
|
||||||
|
cleanup_lxc
|
||||||
@@ -57,6 +57,7 @@ while read -r line; do
|
|||||||
CTID_MENU+=("$TAG" "$ITEM" "OFF")
|
CTID_MENU+=("$TAG" "$ITEM" "OFF")
|
||||||
done < <(pct list | awk 'NR>1')
|
done < <(pct list | awk 'NR>1')
|
||||||
|
|
||||||
|
stop_spinner
|
||||||
CTID=""
|
CTID=""
|
||||||
while [[ -z "${CTID}" ]]; do
|
while [[ -z "${CTID}" ]]; do
|
||||||
CTID=$(whiptail --backtitle "Proxmox VE Helper Scripts" --title "Containers on $NODE" --radiolist \
|
CTID=$(whiptail --backtitle "Proxmox VE Helper Scripts" --title "Containers on $NODE" --radiolist \
|
||||||
|
|||||||
+14
-1
@@ -59,6 +59,8 @@ function uninstall() {
|
|||||||
# UPDATE
|
# UPDATE
|
||||||
# ==============================================================================
|
# ==============================================================================
|
||||||
function update() {
|
function update() {
|
||||||
|
chown -R 65532:65532 /etc/arcane/projects /etc/arcane/builds 2>/dev/null || true
|
||||||
|
|
||||||
msg_info "Pulling latest ${APP} image"
|
msg_info "Pulling latest ${APP} image"
|
||||||
cd "$INSTALL_PATH"
|
cd "$INSTALL_PATH"
|
||||||
$STD docker compose pull
|
$STD docker compose pull
|
||||||
@@ -83,15 +85,25 @@ function install() {
|
|||||||
msg_ok "Created ${INSTALL_PATH}"
|
msg_ok "Created ${INSTALL_PATH}"
|
||||||
|
|
||||||
# Generate secrets and config values
|
# Generate secrets and config values
|
||||||
local ENCRYPTION_KEY JWT_SECRET PROJ_DIR
|
local ENCRYPTION_KEY JWT_SECRET PROJ_DIR BUILDS_DIR
|
||||||
ENCRYPTION_KEY=$(openssl rand -base64 32 | tr -dc 'a-zA-Z0-9' | head -c32)
|
ENCRYPTION_KEY=$(openssl rand -base64 32 | tr -dc 'a-zA-Z0-9' | head -c32)
|
||||||
JWT_SECRET=$(openssl rand -base64 32 | tr -dc 'a-zA-Z0-9' | head -c32)
|
JWT_SECRET=$(openssl rand -base64 32 | tr -dc 'a-zA-Z0-9' | head -c32)
|
||||||
PROJ_DIR="/etc/arcane/projects"
|
PROJ_DIR="/etc/arcane/projects"
|
||||||
|
BUILDS_DIR="/etc/arcane/builds"
|
||||||
|
|
||||||
|
# Arcane drops root and runs as UID/GID 65532 by default (Dockerfile default,
|
||||||
|
# see backend/pkg/libarcane/startup/runtime_identity.go), so bind-mounted
|
||||||
|
# host directories must be owned by that UID or the container can't write to them.
|
||||||
msg_info "Creating stacks directory"
|
msg_info "Creating stacks directory"
|
||||||
mkdir -p "$PROJ_DIR"
|
mkdir -p "$PROJ_DIR"
|
||||||
|
chown -R 65532:65532 "$PROJ_DIR"
|
||||||
msg_ok "Created ${PROJ_DIR}"
|
msg_ok "Created ${PROJ_DIR}"
|
||||||
|
|
||||||
|
msg_info "Creating builds directory"
|
||||||
|
mkdir -p "$BUILDS_DIR"
|
||||||
|
chown -R 65532:65532 "$BUILDS_DIR"
|
||||||
|
msg_ok "Created ${BUILDS_DIR}"
|
||||||
|
|
||||||
msg_info "Downloading Docker Compose file"
|
msg_info "Downloading Docker Compose file"
|
||||||
curl -fsSL "https://raw.githubusercontent.com/getarcaneapp/arcane/refs/heads/main/docker/examples/compose.basic.yaml" -o "$COMPOSE_FILE"
|
curl -fsSL "https://raw.githubusercontent.com/getarcaneapp/arcane/refs/heads/main/docker/examples/compose.basic.yaml" -o "$COMPOSE_FILE"
|
||||||
msg_ok "Downloaded Docker Compose file"
|
msg_ok "Downloaded Docker Compose file"
|
||||||
@@ -103,6 +115,7 @@ function install() {
|
|||||||
|
|
||||||
msg_info "Configuring compose and env files"
|
msg_info "Configuring compose and env files"
|
||||||
sed -i '/^[[:space:]]*#/!s|/host/path/to/projects|'"$PROJ_DIR"'|g' "$COMPOSE_FILE"
|
sed -i '/^[[:space:]]*#/!s|/host/path/to/projects|'"$PROJ_DIR"'|g' "$COMPOSE_FILE"
|
||||||
|
sed -i '/^[[:space:]]*#/!s|/host/path/to/builds|'"$BUILDS_DIR"'|g' "$COMPOSE_FILE"
|
||||||
sed -i '/^[[:space:]]*#/!s|ENCRYPTION_KEY=.*|ENCRYPTION_KEY='"$ENCRYPTION_KEY"'|g' "$COMPOSE_FILE"
|
sed -i '/^[[:space:]]*#/!s|ENCRYPTION_KEY=.*|ENCRYPTION_KEY='"$ENCRYPTION_KEY"'|g' "$COMPOSE_FILE"
|
||||||
sed -i '/^[[:space:]]*#/!s|JWT_SECRET=.*|JWT_SECRET='"$JWT_SECRET"'|g' "$COMPOSE_FILE"
|
sed -i '/^[[:space:]]*#/!s|JWT_SECRET=.*|JWT_SECRET='"$JWT_SECRET"'|g' "$COMPOSE_FILE"
|
||||||
sed -i '/^[[:space:]]*#/!s|APP_URL=.*|APP_URL=http://localhost:'"$DEFAULT_PORT"'|g' "$ENV_FILE"
|
sed -i '/^[[:space:]]*#/!s|APP_URL=.*|APP_URL=http://localhost:'"$DEFAULT_PORT"'|g' "$ENV_FILE"
|
||||||
|
|||||||
Reference in New Issue
Block a user