Compare commits

..

10 Commits

Author SHA1 Message Date
community-scripts-pr-app[bot] 6bb15007d5 Update CHANGELOG.md (#16468)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-08-13 20:05:32 +00:00
Tim Moore c92639eb89 fix(stirling-pdf): remove the LibreOffice listener that collides with unoserver on UNO port 2002 (#16460)
libreoffice-listener.service binds 127.0.0.1:2002, and unoserver — started
with no --uno-port — defaults to the same port and launches its own
LibreOffice. The second soffice.bin cannot bind and spins in its URP Acceptor
thread indefinitely, burning a full core from boot.

It stays invisible because unoserver's client side dials 127.0.0.1:2002 and
reaches the listener's instance, so conversions succeed and systemctl --failed
stays empty.

unoserver supervises its own LibreOffice, so the separate listener is
redundant; port 2002 is still served after the change. Both
Requires=libreoffice-listener lines are dropped with it, and update_script()
migrates existing installs, which all still carry the collision.
2026-08-13 22:05:09 +02:00
community-scripts-pr-app[bot] d09a294ade Update CHANGELOG.md (#16467)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-08-13 19:41:46 +00:00
kylemd 68881dde4d fix(reitti): enable SNI for tile cache (#16463) 2026-08-13 21:41:17 +02:00
community-scripts-pr-app[bot] 3d9a7c25d6 Update CHANGELOG.md (#16459)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-08-13 08:00:43 +00:00
Johann Grobe f1386ecbae [wanderer] refactor (#16448)
* refactor wanderer script

* fix script error

* refactor meilisearch bind

* delete .meilisearch versioning

* delete meilisearch on migration

* delete /usr/bin/meilisearch

* meilisearch migration fix

* simplify meilisearch check

* fix migration check

* next try

* fix meilisearch migration

* try fixing meilisearch error

* meilisearch binary missing

* edit setup_meilisearch

* delete old update script for meiliesearch

* refactor script

* fix services

* start wanderer-web after migration
2026-08-13 10:00:20 +02:00
community-scripts-pr-app[bot] 0456f7642c Update CHANGELOG.md (#16458)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-08-13 07:54:06 +00:00
Crazy-Duck 68fe5d6b8b feat: Update koillection-install.sh to support API usage (#16425)
* feat: Update koillection-install.sh to support API usage

Current config is missing the generation of the SSH keys necessary to create JWT tokens, as well as the Apache config necessary to allow through Authorization headers.

See:
- https://github.com/benjaminjonard/koillection/wiki/manual-installation
- https://symfony.com/bundles/LexikJWTAuthenticationBundle/current/index.html?utm_source=chatgpt.com#important-note-for-apache-users

* fix: missing backslash

* feat: ensure subsequent executions don't replace keys
2026-08-13 09:53:37 +02:00
community-scripts-pr-app[bot] a222d32a31 Update CHANGELOG.md (#16457)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-08-13 06:59:00 +00:00
push-app-to-main[bot] cc47798d1f SuggestArr (#16449)
* Add suggestarr (ct)

* fix: source line

---------

Co-authored-by: push-app-to-main[bot] <203845782+push-app-to-main[bot]@users.noreply.github.com>
Co-authored-by: Tobias <96661824+CrazyWolf13@users.noreply.github.com>
2026-08-13 08:58:35 +02:00
8 changed files with 170 additions and 67 deletions
+18
View File
@@ -521,6 +521,24 @@ Exercise vigilance regarding copycat or coat-tailing sites that seek to exploit
</details> </details>
## 2026-08-13
### 🆕 New Scripts
- SuggestArr ([#16449](https://github.com/community-scripts/ProxmoxVE/pull/16449))
### 🚀 Updated Scripts
- #### 🐞 Bug Fixes
- fix(stirling-pdf): LibreOffice listener collides with unoserver on UNO port 2002, burning a core [@angusmaul](https://github.com/angusmaul) ([#16460](https://github.com/community-scripts/ProxmoxVE/pull/16460))
- fix(reitti): enable SNI for tile cache [@kylemd](https://github.com/kylemd) ([#16463](https://github.com/community-scripts/ProxmoxVE/pull/16463))
- [wanderer] refactor [@johanngrobe](https://github.com/johanngrobe) ([#16448](https://github.com/community-scripts/ProxmoxVE/pull/16448))
- #### ✨ New Features
- feat: Update koillection-install.sh to support API usage [@Crazy-Duck](https://github.com/Crazy-Duck) ([#16425](https://github.com/community-scripts/ProxmoxVE/pull/16425))
## 2026-08-12 ## 2026-08-12
### 🆕 New Scripts ### 🆕 New Scripts
+2
View File
@@ -223,6 +223,8 @@ http {
proxy_pass $upstream_url; proxy_pass $upstream_url;
proxy_set_header Host $proxy_host; proxy_set_header Host $proxy_host;
proxy_set_header User-Agent "Reitti/1.0"; proxy_set_header User-Agent "Reitti/1.0";
proxy_ssl_server_name on;
proxy_ssl_name $proxy_host;
proxy_cache tiles; proxy_cache tiles;
proxy_cache_key $upstream_url; proxy_cache_key $upstream_url;
proxy_cache_valid 200 30d; proxy_cache_valid 200 30d;
+14 -2
View File
@@ -43,8 +43,20 @@ function update_script() {
find /usr/lib -name "libicudata.so.*" -exec patchelf --clear-execstack {} \; || true find /usr/lib -name "libicudata.so.*" -exec patchelf --clear-execstack {} \; || true
msg_ok "Patched Native Libraries" msg_ok "Patched Native Libraries"
if [[ -f /etc/systemd/system/libreoffice-listener.service ]]; then
msg_info "Removing Conflicting LibreOffice Listener"
systemctl disable -q --now libreoffice-listener
rm -f /etc/systemd/system/libreoffice-listener.service
sed -i '/^Requires=libreoffice-listener.service$/d' /etc/systemd/system/stirlingpdf.service /etc/systemd/system/unoserver.service
sed -i 's/^After=syslog.target network.target libreoffice-listener.service$/After=syslog.target network.target unoserver.service/' /etc/systemd/system/stirlingpdf.service
sed -i 's/^After=libreoffice-listener.service$/After=network.target/' /etc/systemd/system/unoserver.service
systemctl daemon-reload
systemctl reset-failed libreoffice-listener.service 2>/dev/null || true
msg_ok "Removed Conflicting LibreOffice Listener"
fi
msg_info "Stopping Services" msg_info "Stopping Services"
systemctl stop stirlingpdf libreoffice-listener unoserver systemctl stop stirlingpdf unoserver
msg_ok "Stopped Services" msg_ok "Stopped Services"
if [[ -f ~/.Stirling-PDF-login ]]; then if [[ -f ~/.Stirling-PDF-login ]]; then
@@ -59,7 +71,7 @@ function update_script() {
msg_ok "Font Cache Updated" msg_ok "Font Cache Updated"
msg_info "Starting Services" msg_info "Starting Services"
systemctl start stirlingpdf libreoffice-listener unoserver systemctl start unoserver stirlingpdf
msg_ok "Started Services" msg_ok "Started Services"
msg_ok "Updated successfully!" msg_ok "Updated successfully!"
fi fi
+96 -15
View File
@@ -25,17 +25,111 @@ function update_script() {
check_container_storage check_container_storage
check_container_resources check_container_resources
if [[ ! -f /opt/wanderer/start.sh ]]; then if [[ ! -d /opt/wanderer/source ]]; then
msg_error "No wanderer Installation Found!" msg_error "No wanderer Installation Found!"
exit exit
fi fi
if [[ ! -f /etc/systemd/system/meilisearch.service ]]; then
msg_info "Migrating MeiliSearch"
systemctl stop wanderer-web
rm -rf /opt/wanderer/source/search
MEILI_MASTER_KEY_VAL=$(grep -oP '^MEILI_MASTER_KEY=\K.*' /opt/wanderer/.env)
cat <<EOF >/etc/meilisearch.toml
env = "production"
master_key = "$MEILI_MASTER_KEY_VAL"
db_path = "/opt/wanderer/data/meili_data"
dump_dir = "/var/lib/meilisearch/dumps"
snapshot_dir = "/var/lib/meilisearch/snapshots"
no_analytics = true
http_addr = "127.0.0.1:7700"
EOF
mkdir -p /var/lib/meilisearch/dumps /var/lib/meilisearch/snapshots
cat <<EOF >/etc/systemd/system/meilisearch.service
[Unit]
Description=Meilisearch
After=network.target
[Service]
ExecStart=/usr/bin/meilisearch --config-file-path /etc/meilisearch.toml
Restart=always
[Install]
WantedBy=multi-user.target
EOF
systemctl daemon-reload
systemctl enable -q --now meilisearch
sed -i \
-e "s|^MEILI_HTTP_ADDR=.*|MEILI_HTTP_ADDR=127.0.0.1:7700|" \
-e "s|^MEILI_URL=.*|MEILI_URL=http://127.0.0.1:7700|" \
/opt/wanderer/.env
msg_ok "Migrated Meilisearch"
fi
setup_meilisearch
if [[ -f /opt/wanderer/start.sh ]]; then
msg_info "Migrating wanderer services"
systemctl stop wanderer-web
rm -f /opt/wanderer/start.sh
rm -rf /opt/wanderer/source/search
cat <<EOF >/etc/systemd/system/wanderer-pocketbase.service
[Unit]
Description=wanderer PocketBase
Wants=network.target
After=network.target
PartOf=wanderer-web.service
StartLimitIntervalSec=10
StartLimitBurst=5
[Service]
Type=simple
WorkingDirectory=/opt/wanderer/source/db
EnvironmentFile=/opt/wanderer/.env
ExecStart=/opt/wanderer/source/db/pocketbase serve --http=\${PB_URL} --dir=\${PB_DB_LOCATION}
Restart=always
RestartSec=1
[Install]
WantedBy=multi-user.target
EOF
cat <<EOF >/etc/systemd/system/wanderer-web.service
[Unit]
Description=wanderer
Wants=network.target meilisearch.service wanderer-pocketbase.service
After=network.target meilisearch.service wanderer-pocketbase.service
StartLimitIntervalSec=10
StartLimitBurst=5
[Service]
Type=simple
WorkingDirectory=/opt/wanderer/source/web
EnvironmentFile=/opt/wanderer/.env
ExecStart=/usr/bin/node build
Restart=always
RestartSec=1
[Install]
WantedBy=multi-user.target
EOF
systemctl daemon-reload
systemctl enable -q wanderer-pocketbase
systemctl start wanderer-web
msg_ok "Migrated wanderer services"
fi
if check_for_gh_release "wanderer" "open-wanderer/wanderer"; then if check_for_gh_release "wanderer" "open-wanderer/wanderer"; then
msg_info "Stopping service" msg_info "Stopping service"
systemctl stop wanderer-web systemctl stop wanderer-web
msg_ok "Stopped service" msg_ok "Stopped service"
create_backup /opt/wanderer/source/search create_backup /opt/wanderer/source
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "wanderer" "open-wanderer/wanderer" "tarball" "latest" "/opt/wanderer/source" CLEAN_INSTALL=1 fetch_and_deploy_gh_release "wanderer" "open-wanderer/wanderer" "tarball" "latest" "/opt/wanderer/source"
restore_backup restore_backup
@@ -60,19 +154,6 @@ function update_script() {
msg_ok "Started service" msg_ok "Started service"
msg_ok "Update Successful" msg_ok "Update Successful"
fi fi
if check_for_gh_release "meilisearch" "meilisearch/meilisearch"; then
msg_info "Stopping service"
systemctl stop wanderer-web
msg_ok "Stopped service"
fetch_and_deploy_gh_release "meilisearch" "meilisearch/meilisearch" "binary" "latest" "/opt/wanderer/source/search"
grep -q -- '--upgrade-db' /opt/wanderer/start.sh || sed -i 's|meilisearch --master-key|meilisearch --upgrade-db --master-key|' /opt/wanderer/start.sh
msg_info "Starting service"
systemctl start wanderer-web
msg_ok "Started service"
msg_ok "Update Successful"
fi
exit exit
} }
+2
View File
@@ -38,6 +38,7 @@ export APP_RUNTIME='Symfony\Component\Runtime\SymfonyRuntime'
$STD composer install --no-dev -o --no-interaction --classmap-authoritative $STD composer install --no-dev -o --no-interaction --classmap-authoritative
$STD php bin/console doctrine:migrations:migrate --no-interaction $STD php bin/console doctrine:migrations:migrate --no-interaction
$STD php bin/console app:translations:dump $STD php bin/console app:translations:dump
$STD php bin/console lexik:jwt:generate-keypair --skip-if-exists
cd assets/ cd assets/
$STD yarn install $STD yarn install
$STD yarn build $STD yarn build
@@ -51,6 +52,7 @@ cat <<EOF >/etc/apache2/sites-available/koillection.conf
ServerName koillection ServerName koillection
DocumentRoot /opt/koillection/public DocumentRoot /opt/koillection/public
SetEnv APP_RUNTIME "Symfony\\Component\\Runtime\\SymfonyRuntime" SetEnv APP_RUNTIME "Symfony\\Component\\Runtime\\SymfonyRuntime"
SetEnvIf Authorization "(.*)" HTTP_AUTHORIZATION=\$1
<Directory /opt/koillection/public> <Directory /opt/koillection/public>
Options Indexes FollowSymLinks Options Indexes FollowSymLinks
AllowOverride All AllowOverride All
+2
View File
@@ -46,6 +46,8 @@ http {
proxy_pass $upstream_url; proxy_pass $upstream_url;
proxy_set_header Host $proxy_host; proxy_set_header Host $proxy_host;
proxy_set_header User-Agent "Reitti/1.0"; proxy_set_header User-Agent "Reitti/1.0";
proxy_ssl_server_name on;
proxy_ssl_name $proxy_host;
proxy_cache tiles; proxy_cache tiles;
proxy_cache_key $upstream_url; proxy_cache_key $upstream_url;
proxy_cache_valid 200 30d; proxy_cache_valid 200 30d;
+5 -22
View File
@@ -132,27 +132,12 @@ $STD fc-cache -fv
msg_ok "Font Cache Updated" msg_ok "Font Cache Updated"
msg_info "Creating Service" msg_info "Creating Service"
cat <<EOF >/etc/systemd/system/libreoffice-listener.service # unoserver starts and supervises its own LibreOffice on UNO port 2002, so a separate
[Unit] # listener on that port only collides with it. Do not reintroduce one.
Description=LibreOffice Headless Listener Service
After=network.target
[Service]
Type=simple
User=root
Group=root
ExecStart=/usr/lib/libreoffice/program/soffice --headless --invisible --nodefault --nofirststartwizard --nolockcheck --nologo --accept="socket,host=127.0.0.1,port=2002;urp;StarOffice.ComponentContext"
Restart=always
[Install]
WantedBy=multi-user.target
EOF
cat <<EOF >/etc/systemd/system/stirlingpdf.service cat <<EOF >/etc/systemd/system/stirlingpdf.service
[Unit] [Unit]
Description=Stirling-PDF service Description=Stirling-PDF service
After=syslog.target network.target libreoffice-listener.service After=syslog.target network.target unoserver.service
Requires=libreoffice-listener.service
[Service] [Service]
SuccessExitStatus=143 SuccessExitStatus=143
@@ -173,8 +158,7 @@ EOF
cat <<EOF >/etc/systemd/system/unoserver.service cat <<EOF >/etc/systemd/system/unoserver.service
[Unit] [Unit]
Description=UnoServer RPC Interface Description=UnoServer RPC Interface
After=libreoffice-listener.service After=network.target
Requires=libreoffice-listener.service
[Service] [Service]
Type=simple Type=simple
@@ -186,9 +170,8 @@ EnvironmentFile=/opt/Stirling-PDF/.env
WantedBy=multi-user.target WantedBy=multi-user.target
EOF EOF
systemctl enable -q --now libreoffice-listener
systemctl enable -q --now stirlingpdf
systemctl enable -q --now unoserver systemctl enable -q --now unoserver
systemctl enable -q --now stirlingpdf
msg_ok "Created Service" msg_ok "Created Service"
motd_ssh motd_ssh
+31 -28
View File
@@ -15,15 +15,10 @@ update_os
setup_go setup_go
NODE_VERSION="22" setup_nodejs NODE_VERSION="22" setup_nodejs
if [[ "$(arch_resolve)" == "arm64" ]]; then
fetch_and_deploy_gh_release "meilisearch" "meilisearch/meilisearch" "singlefile" "latest" "/usr/local/bin" "meilisearch-linux-aarch64"
else
fetch_and_deploy_gh_release "meilisearch" "meilisearch/meilisearch" "binary" "latest" "/opt/wanderer/source/search"
fi
mkdir -p /opt/wanderer/{source,data/pb_data,data/meili_data,data/plugins} mkdir -p /opt/wanderer/{source,data/pb_data,data/meili_data,data/plugins}
MEILISEARCH_DB_PATH="/opt/wanderer/data/meili_data" setup_meilisearch
fetch_and_deploy_gh_release "wanderer" "open-wanderer/wanderer" "tarball" "latest" "/opt/wanderer/source" fetch_and_deploy_gh_release "wanderer" "open-wanderer/wanderer" "tarball" "latest" "/opt/wanderer/source"
mkdir -p /opt/wanderer/source/db/data mkdir -p /opt/wanderer/source/db/data
mkdir -p /opt/wanderer/source/search
[[ -e /opt/wanderer/source/db/data/plugins ]] || ln -sfn /opt/wanderer/data/plugins /opt/wanderer/source/db/data/plugins [[ -e /opt/wanderer/source/db/data/plugins ]] || ln -sfn /opt/wanderer/data/plugins /opt/wanderer/source/db/data/plugins
msg_info "Installing wanderer (patience)" msg_info "Installing wanderer (patience)"
@@ -42,14 +37,13 @@ done
msg_ok "Installed wanderer plugins" msg_ok "Installed wanderer plugins"
msg_info "Creating Service" msg_info "Creating Service"
MEILI_KEY=$(openssl rand -hex 32)
POCKETBASE_KEY=$(openssl rand -hex 16) POCKETBASE_KEY=$(openssl rand -hex 16)
cat <<EOF >/opt/wanderer/.env cat <<EOF >/opt/wanderer/.env
ORIGIN=http://${LOCAL_IP}:3000 ORIGIN=http://${LOCAL_IP}:3000
MEILI_HTTP_ADDR=${LOCAL_IP}:7700 MEILI_HTTP_ADDR=127.0.0.1:7700
MEILI_URL=http://${LOCAL_IP}:7700 MEILI_URL=http://127.0.0.1:7700
MEILI_MASTER_KEY=${MEILI_KEY} MEILI_MASTER_KEY=${MEILISEARCH_MASTER_KEY}
PB_URL=${LOCAL_IP}:8090 PB_URL=${LOCAL_IP}:8090
PUBLIC_POCKETBASE_URL=http://${LOCAL_IP}:8090 PUBLIC_POCKETBASE_URL=http://${LOCAL_IP}:8090
PUBLIC_VALHALLA_URL=https://valhalla1.openstreetmap.de PUBLIC_VALHALLA_URL=https://valhalla1.openstreetmap.de
@@ -58,20 +52,6 @@ PB_DB_LOCATION=/opt/wanderer/data/pb_data
MEILI_DB_PATH=/opt/wanderer/data/meili_data MEILI_DB_PATH=/opt/wanderer/data/meili_data
EOF EOF
cat <<EOF >/opt/wanderer/start.sh
#!/usr/bin/env bash
trap "kill 0" EXIT
cd /opt/wanderer/source/search && meilisearch --upgrade-db --master-key \$MEILI_MASTER_KEY &
sleep 1
cd /opt/wanderer/source/db && ./pocketbase serve --http=\$PB_URL --dir=\$PB_DB_LOCATION &
cd /opt/wanderer/source/web && node build &
wait -n
EOF
chmod +x /opt/wanderer/start.sh
cat <<'EOF' >/usr/local/bin/wanderer-pb cat <<'EOF' >/usr/local/bin/wanderer-pb
#!/usr/bin/env bash #!/usr/bin/env bash
set -a set -a
@@ -82,17 +62,40 @@ exec ./pocketbase "$@" --dir="$PB_DB_LOCATION"
EOF EOF
chmod +x /usr/local/bin/wanderer-pb chmod +x /usr/local/bin/wanderer-pb
cat <<EOF >/etc/systemd/system/wanderer-web.service cat <<EOF >/etc/systemd/system/wanderer-pocketbase.service
[Unit] [Unit]
Description=wanderer Description=wanderer PocketBase
Wants=network.target
After=network.target After=network.target
PartOf=wanderer-web.service
StartLimitIntervalSec=10 StartLimitIntervalSec=10
StartLimitBurst=5 StartLimitBurst=5
[Service] [Service]
Type=simple Type=simple
WorkingDirectory=/opt/wanderer/source/db
EnvironmentFile=/opt/wanderer/.env EnvironmentFile=/opt/wanderer/.env
ExecStart=/usr/bin/bash /opt/wanderer/start.sh ExecStart=/opt/wanderer/source/db/pocketbase serve --http=\${PB_URL} --dir=\${PB_DB_LOCATION}
Restart=always
RestartSec=1
[Install]
WantedBy=multi-user.target
EOF
cat <<EOF >/etc/systemd/system/wanderer-web.service
[Unit]
Description=wanderer
Wants=network.target meilisearch.service wanderer-pocketbase.service
After=network.target meilisearch.service wanderer-pocketbase.service
StartLimitIntervalSec=10
StartLimitBurst=5
[Service]
Type=simple
WorkingDirectory=/opt/wanderer/source/web
EnvironmentFile=/opt/wanderer/.env
ExecStart=/usr/bin/node build
Restart=always Restart=always
RestartSec=1 RestartSec=1
@@ -100,7 +103,7 @@ RestartSec=1
WantedBy=multi-user.target WantedBy=multi-user.target
EOF EOF
sleep 1 sleep 1
systemctl enable -q --now wanderer-web systemctl enable -q --now wanderer-pocketbase wanderer-web
msg_ok "Created Service" msg_ok "Created Service"
motd_ssh motd_ssh