mirror of
https://github.com/community-scripts/ProxmoxVE.git
synced 2026-08-14 16:46:14 +02:00
Compare commits
10 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
| d247079e89 | |||
| bd4f8fd8ae | |||
| c9413b0ccf | |||
| 97c773a435 | |||
| 50c5e9c386 | |||
| dd30b01b82 | |||
| 04ec69b582 | |||
| ab9fb6279f | |||
| 3e687478d9 | |||
| 1c7d875d85 |
@@ -521,6 +521,21 @@ Exercise vigilance regarding copycat or coat-tailing sites that seek to exploit
|
||||
|
||||
</details>
|
||||
|
||||
## 2026-08-14
|
||||
|
||||
### 🆕 New Scripts
|
||||
|
||||
- GoDoxy ([#16470](https://github.com/community-scripts/ProxmoxVE/pull/16470))
|
||||
- Mumble ([#16474](https://github.com/community-scripts/ProxmoxVE/pull/16474))
|
||||
- Fleet ([#16472](https://github.com/community-scripts/ProxmoxVE/pull/16472))
|
||||
- Newt ([#16473](https://github.com/community-scripts/ProxmoxVE/pull/16473))
|
||||
|
||||
### 🚀 Updated Scripts
|
||||
|
||||
- #### 🐞 Bug Fixes
|
||||
|
||||
- fix(ampache): update to PHP 8.5 asset, auto-upgrade PHP on update [@CervezaStallone](https://github.com/CervezaStallone) ([#16484](https://github.com/community-scripts/ProxmoxVE/pull/16484))
|
||||
|
||||
## 2026-08-13
|
||||
|
||||
### 🆕 New Scripts
|
||||
|
||||
+9
-1
@@ -39,7 +39,15 @@ function update_script() {
|
||||
/opt/ampache/public/play/.htaccess \
|
||||
/opt/ampache/advanced-config
|
||||
|
||||
fetch_and_deploy_gh_release "Ampache" "ampache/ampache" "prebuild" "latest" "/opt/ampache" "ampache-*_all_php8.4.zip"
|
||||
if ! dpkg -l 2>/dev/null | grep -q "libapache2-mod-php8.5"; then
|
||||
PHP_VERSION="8.5" PHP_APACHE="YES" setup_php
|
||||
sed -i -e 's/upload_max_filesize = .*/upload_max_filesize = 100M/' \
|
||||
-e 's/post_max_size = .*/post_max_size = 100M/' \
|
||||
-e 's/max_execution_time = .*/max_execution_time = 600/' \
|
||||
-e 's/memory_limit = .*/memory_limit = 512M/' /etc/php/8.5/apache2/php.ini
|
||||
fi
|
||||
|
||||
fetch_and_deploy_gh_release "Ampache" "ampache/ampache" "prebuild" "latest" "/opt/ampache" "ampache-*_all_php8.5.zip"
|
||||
|
||||
restore_backup
|
||||
chmod 664 /opt/ampache/public/rest/.htaccess /opt/ampache/public/play/.htaccess
|
||||
|
||||
+63
@@ -0,0 +1,63 @@
|
||||
#!/usr/bin/env bash
|
||||
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ)
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/fleetdm/fleet
|
||||
|
||||
APP="Fleet"
|
||||
var_tags="${var_tags:-monitoring;device-management;security}"
|
||||
var_cpu="${var_cpu:-2}"
|
||||
var_ram="${var_ram:-2048}"
|
||||
var_disk="${var_disk:-8}"
|
||||
var_os="${var_os:-ubuntu}"
|
||||
var_version="${var_version:-24.04}"
|
||||
#var_arm64="${var_arm64:-no}" # unset = ask the user; set yes/no only when verified
|
||||
var_unprivileged="${var_unprivileged:-1}"
|
||||
|
||||
header_info "$APP"
|
||||
variables
|
||||
color
|
||||
catch_errors
|
||||
|
||||
function update_script() {
|
||||
header_info
|
||||
check_container_storage
|
||||
check_container_resources
|
||||
|
||||
if [[ ! -f /opt/fleet/fleet ]]; then
|
||||
msg_error "No ${APP} Installation Found!"
|
||||
exit
|
||||
fi
|
||||
|
||||
if check_for_gh_release "fleet" "fleetdm/fleet"; then
|
||||
msg_info "Stopping Service"
|
||||
systemctl stop fleet
|
||||
msg_ok "Stopped Service"
|
||||
|
||||
fetch_and_deploy_gh_release "fleet" "fleetdm/fleet" "prebuild" "latest" "/opt/fleet" "fleet_v*_linux.tar.gz"
|
||||
chmod +x /opt/fleet/fleet
|
||||
|
||||
msg_info "Running Database Migrations"
|
||||
set -a && source /opt/fleet/.env && set +a
|
||||
$STD /opt/fleet/fleet prepare db --no-prompt
|
||||
msg_ok "Ran Database Migrations"
|
||||
|
||||
msg_info "Starting Service"
|
||||
systemctl start fleet
|
||||
msg_ok "Started Service"
|
||||
msg_ok "Updated successfully!"
|
||||
fi
|
||||
exit
|
||||
}
|
||||
|
||||
start
|
||||
build_container
|
||||
description
|
||||
|
||||
msg_ok "Completed Successfully!\n"
|
||||
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||
echo -e "${GATEWAY}${BGN}http://${IP}:8080${CL}"
|
||||
echo -e "${INFO}${YW} Admin Email:${CL} ${BGN}admin@fleet.local${CL}"
|
||||
echo -e "${INFO}${YW} Admin Password:${CL} ${BGN}Check inside the container: cat /opt/fleet/.env${CL}"
|
||||
@@ -0,0 +1,64 @@
|
||||
#!/usr/bin/env bash
|
||||
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ) | Co-Authors: yusing
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/yusing/godoxy
|
||||
|
||||
APP="GoDoxy"
|
||||
var_tags="${var_tags:-reverse-proxy;webserver;network}"
|
||||
var_cpu="${var_cpu:-1}"
|
||||
var_ram="${var_ram:-512}"
|
||||
var_disk="${var_disk:-2}"
|
||||
var_os="${var_os:-debian}"
|
||||
var_version="${var_version:-13}"
|
||||
var_arm64="${var_arm64:-yes}"
|
||||
var_unprivileged="${var_unprivileged:-1}"
|
||||
|
||||
header_info "$APP"
|
||||
variables
|
||||
color
|
||||
catch_errors
|
||||
|
||||
function update_script() {
|
||||
header_info
|
||||
check_container_storage
|
||||
check_container_resources
|
||||
|
||||
if [[ ! -f /opt/godoxy/godoxy ]]; then
|
||||
msg_error "No ${APP} Installation Found!"
|
||||
exit
|
||||
fi
|
||||
|
||||
if check_for_gh_release "godoxy" "yusing/godoxy"; then
|
||||
msg_info "Stopping Service"
|
||||
systemctl stop godoxy
|
||||
msg_ok "Stopped Service"
|
||||
|
||||
create_backup \
|
||||
/opt/godoxy/config \
|
||||
/opt/godoxy/data \
|
||||
/opt/godoxy/error_pages \
|
||||
/etc/godoxy.env \
|
||||
/etc/ssl/godoxy
|
||||
|
||||
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "godoxy" "yusing/godoxy" "singlefile" "latest" "/opt/godoxy" "godoxy-linux-$(arch_resolve)"
|
||||
restore_backup
|
||||
|
||||
msg_info "Starting Service"
|
||||
systemctl start godoxy
|
||||
msg_ok "Started Service"
|
||||
msg_ok "Updated successfully!"
|
||||
fi
|
||||
exit
|
||||
}
|
||||
|
||||
start
|
||||
build_container
|
||||
description
|
||||
|
||||
msg_ok "Completed Successfully!\n"
|
||||
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||
echo -e "${GATEWAY}${BGN}https://${IP}${CL}"
|
||||
echo -e "${INFO}${YW}Login as admin; the generated password is stored in /etc/godoxy.env.${CL}"
|
||||
@@ -0,0 +1,6 @@
|
||||
________ __
|
||||
/ ____/ /__ ___ / /_
|
||||
/ /_ / / _ \/ _ \/ __/
|
||||
/ __/ / / __/ __/ /_
|
||||
/_/ /_/\___/\___/\__/
|
||||
|
||||
@@ -0,0 +1,6 @@
|
||||
______ ____
|
||||
/ ____/___ / __ \____ _ ____ __
|
||||
/ / __/ __ \/ / / / __ \| |/_/ / / /
|
||||
/ /_/ / /_/ / /_/ / /_/ /> </ /_/ /
|
||||
\____/\____/_____/\____/_/|_|\__, /
|
||||
/____/
|
||||
@@ -0,0 +1,6 @@
|
||||
__ ___ __ __
|
||||
/ |/ /_ ______ ___ / /_ / /__
|
||||
/ /|_/ / / / / __ `__ \/ __ \/ / _ \
|
||||
/ / / / /_/ / / / / / / /_/ / / __/
|
||||
/_/ /_/\__,_/_/ /_/ /_/_.___/_/\___/
|
||||
|
||||
@@ -0,0 +1,6 @@
|
||||
_ __ __
|
||||
/ | / /__ _ __/ /_
|
||||
/ |/ / _ \ | /| / / __/
|
||||
/ /| / __/ |/ |/ / /_
|
||||
/_/ |_/\___/|__/|__/\__/
|
||||
|
||||
@@ -0,0 +1,65 @@
|
||||
#!/usr/bin/env bash
|
||||
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ)
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://www.mumble.info/
|
||||
|
||||
APP="Mumble"
|
||||
var_tags="${var_tags:-voice;chat;gaming}"
|
||||
var_cpu="${var_cpu:-1}"
|
||||
var_ram="${var_ram:-512}"
|
||||
var_disk="${var_disk:-4}"
|
||||
var_os="${var_os:-debian}"
|
||||
var_version="${var_version:-13}"
|
||||
var_arm64="${var_arm64:-yes}"
|
||||
var_unprivileged="${var_unprivileged:-1}"
|
||||
|
||||
header_info "$APP"
|
||||
variables
|
||||
color
|
||||
catch_errors
|
||||
|
||||
function update_script() {
|
||||
header_info
|
||||
check_container_storage
|
||||
check_container_resources
|
||||
|
||||
if [[ ! -f /etc/mumble/mumble-server.ini ]]; then
|
||||
msg_error "No ${APP} Installation Found!"
|
||||
exit
|
||||
fi
|
||||
|
||||
if check_for_gh_release "mumble" "mumble-voip/mumble"; then
|
||||
msg_info "Stopping Service"
|
||||
systemctl stop mumble-server
|
||||
msg_ok "Stopped Service"
|
||||
|
||||
create_backup /etc/mumble/mumble-server.ini /var/lib/mumble-server/mumble-server.sqlite
|
||||
|
||||
msg_info "Updating Mumble"
|
||||
$STD apt update
|
||||
$STD apt install -y mumble-server
|
||||
cat <<EOF >~/.mumble
|
||||
$(get_latest_github_release "mumble-voip/mumble")
|
||||
EOF
|
||||
msg_ok "Updated Mumble"
|
||||
|
||||
restore_backup
|
||||
|
||||
msg_info "Starting Service"
|
||||
systemctl start mumble-server
|
||||
msg_ok "Started Service"
|
||||
msg_ok "Updated successfully!"
|
||||
fi
|
||||
exit
|
||||
}
|
||||
|
||||
start
|
||||
build_container
|
||||
description
|
||||
|
||||
msg_ok "Completed Successfully!\n"
|
||||
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||
echo -e "${INFO}${YW}Connect using:${CL}"
|
||||
echo -e "${GATEWAY}${BGN}${IP}:64738${CL}"
|
||||
+53
@@ -0,0 +1,53 @@
|
||||
#!/usr/bin/env bash
|
||||
source <(curl -fsSL https://raw.githubusercontent.com/community-scripts/ProxmoxVE/main/misc/build.func)
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: Arubinu
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/fosrl/newt
|
||||
|
||||
APP="Newt"
|
||||
var_tags="${var_tags:-network;tunnel}"
|
||||
var_cpu="${var_cpu:-1}"
|
||||
var_ram="${var_ram:-256}"
|
||||
var_disk="${var_disk:-2}"
|
||||
var_os="${var_os:-debian}"
|
||||
var_version="${var_version:-13}"
|
||||
var_arm64="${var_arm64:-yes}"
|
||||
var_unprivileged="${var_unprivileged:-1}"
|
||||
|
||||
header_info "$APP"
|
||||
variables
|
||||
color
|
||||
catch_errors
|
||||
|
||||
function update_script() {
|
||||
header_info
|
||||
check_container_storage
|
||||
check_container_resources
|
||||
|
||||
if [[ ! -f /etc/newt/newt.env ]]; then
|
||||
msg_error "No ${APP} Installation Found!"
|
||||
exit
|
||||
fi
|
||||
|
||||
if check_for_gh_release "newt" "fosrl/newt"; then
|
||||
msg_info "Stopping Service"
|
||||
systemctl stop newt
|
||||
msg_ok "Stopped Service"
|
||||
|
||||
fetch_and_deploy_gh_release "newt" "fosrl/newt" "singlefile" "latest" "/opt/newt" "newt_linux_$(arch_resolve)"
|
||||
ln -sf /opt/newt/newt /usr/local/bin/newt
|
||||
|
||||
msg_info "Starting Service"
|
||||
systemctl start newt
|
||||
msg_ok "Started Service"
|
||||
fi
|
||||
exit
|
||||
}
|
||||
|
||||
start
|
||||
build_container
|
||||
description
|
||||
|
||||
msg_ok "Completed Successfully!\n"
|
||||
echo -e "${INFO}${YW} Check the site status in your Pangolin dashboard.${CL}"
|
||||
+16
-27
@@ -28,37 +28,27 @@ function update_script() {
|
||||
msg_error "No ${APP} Installation Found!"
|
||||
exit
|
||||
fi
|
||||
|
||||
if [[ -f /opt/projectsend/includes/sys.config.php ]]; then
|
||||
msg_error "This container runs ProjectSend Legacy (pre-2.0)."
|
||||
msg_error "2.0 is a new application, not an update - there is no in-place upgrade."
|
||||
msg_error "Set up a fresh ProjectSend container and use projectsend/v1-migration-tool to bring your data across."
|
||||
exit
|
||||
fi
|
||||
setup_mariadb
|
||||
|
||||
if check_for_gh_release "projectsend" "projectsend/projectsend"; then
|
||||
msg_info "Stopping Services"
|
||||
systemctl stop nginx projectsend-worker
|
||||
msg_ok "Stopped Services"
|
||||
msg_info "Stopping Service"
|
||||
systemctl stop apache2
|
||||
msg_ok "Stopped Service"
|
||||
|
||||
create_backup /opt/projectsend/.env /opt/projectsend/storage/app/files
|
||||
php_ver=$(php -v | head -n 1 | awk '{print $2}')
|
||||
if [[ ! $php_ver == "8.4"* ]]; then
|
||||
PHP_VERSION="8.4" PHP_APACHE="YES" setup_php
|
||||
fi
|
||||
|
||||
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "projectsend" "projectsend/projectsend" "prebuild" "latest" "/opt/projectsend"
|
||||
|
||||
restore_backup
|
||||
|
||||
msg_info "Updating ProjectSend"
|
||||
cd /opt/projectsend
|
||||
mv /opt/projectsend/includes/sys.config.php /opt/sys.config.php
|
||||
CLEAN_INSTALL=1 fetch_and_deploy_gh_release "projectsend" "projectsend/projectsend" "prebuild" "latest" "/opt/projectsend" "projectsend-r*.zip"
|
||||
mv /opt/sys.config.php /opt/projectsend/includes/sys.config.php
|
||||
chown -R www-data:www-data /opt/projectsend
|
||||
chmod -R 775 /opt/projectsend/storage /opt/projectsend/bootstrap/cache
|
||||
$STD sudo -u www-data php artisan migrate --force
|
||||
$STD sudo -u www-data php artisan projectsend:ensure-roles
|
||||
$STD sudo -u www-data php artisan optimize:clear
|
||||
msg_ok "Updated ProjectSend"
|
||||
chmod -R 775 /opt/projectsend
|
||||
|
||||
msg_info "Starting Services"
|
||||
systemctl start nginx projectsend-worker
|
||||
msg_ok "Started Services"
|
||||
msg_info "Starting Service"
|
||||
systemctl start apache2
|
||||
msg_ok "Started Service"
|
||||
msg_ok "Updated successfully!"
|
||||
fi
|
||||
exit
|
||||
@@ -71,5 +61,4 @@ description
|
||||
msg_ok "Completed successfully!\n"
|
||||
echo -e "${CREATING}${GN}${APP} setup has been successfully initialized!${CL}"
|
||||
echo -e "${INFO}${YW}Access it using the following URL:${CL}"
|
||||
echo -e "${GATEWAY}${BGN}http://${IP}${CL}"
|
||||
echo -e "${INFO}${YW}Admin credentials saved to ~/projectsend.creds${CL}"
|
||||
echo -e "${GATEWAY}${BGN}http://${IP}/install for the initial setup${CL}"
|
||||
|
||||
@@ -27,11 +27,11 @@ $STD apt install -y \
|
||||
libvpx-dev
|
||||
msg_ok "Installed dependencies"
|
||||
|
||||
PHP_VERSION="8.4" PHP_APACHE="YES" setup_php
|
||||
PHP_VERSION="8.5" PHP_APACHE="YES" setup_php
|
||||
setup_mariadb
|
||||
MARIADB_DB_USER="ampache" MARIADB_DB_NAME="ampache" setup_mariadb_db
|
||||
|
||||
fetch_and_deploy_gh_release "ampache" "ampache/ampache" "prebuild" "latest" "/opt/ampache" "ampache-*_all_php8.4.zip"
|
||||
fetch_and_deploy_gh_release "ampache" "ampache/ampache" "prebuild" "latest" "/opt/ampache" "ampache-*_all_php8.5.zip"
|
||||
|
||||
msg_info "Setting up Ampache"
|
||||
rm -rf /var/www/html
|
||||
@@ -58,7 +58,7 @@ msg_info "Configuring PHP"
|
||||
sed -i -e 's/upload_max_filesize = .*/upload_max_filesize = 100M/' \
|
||||
-e 's/post_max_size = .*/post_max_size = 100M/' \
|
||||
-e 's/max_execution_time = .*/max_execution_time = 600/' \
|
||||
-e 's/memory_limit = .*/memory_limit = 512M/' /etc/php/8.4/apache2/php.ini
|
||||
-e 's/memory_limit = .*/memory_limit = 512M/' /etc/php/8.5/apache2/php.ini
|
||||
$STD a2enmod rewrite
|
||||
$STD systemctl restart apache2
|
||||
msg_ok "Configured PHP"
|
||||
|
||||
@@ -0,0 +1,93 @@
|
||||
#!/usr/bin/env bash
|
||||
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ)
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/fleetdm/fleet
|
||||
|
||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||
color
|
||||
verb_ip6
|
||||
catch_errors
|
||||
setting_up_container
|
||||
network_check
|
||||
update_os
|
||||
|
||||
msg_info "Installing Dependencies"
|
||||
$STD apt install -y redis-server mysql-server
|
||||
msg_ok "Installed Dependencies"
|
||||
|
||||
MYSQL_DB_NAME="fleet" MYSQL_DB_USER="fleet" setup_mysql_db
|
||||
fetch_and_deploy_gh_release "fleet" "fleetdm/fleet" "prebuild" "latest" "/opt/fleet" "fleet_v*_linux.tar.gz"
|
||||
|
||||
msg_info "Configuring Application"
|
||||
chmod +x /opt/fleet/fleet
|
||||
PRIVATE_KEY=$(openssl rand -hex 32)
|
||||
cat <<EOF >/opt/fleet/.env
|
||||
FLEET_MYSQL_ADDRESS=127.0.0.1:3306
|
||||
FLEET_MYSQL_DATABASE=fleet
|
||||
FLEET_MYSQL_USERNAME=fleet
|
||||
FLEET_MYSQL_PASSWORD=${MYSQL_DB_PASS}
|
||||
FLEET_SERVER_ADDRESS=0.0.0.0:8080
|
||||
FLEET_SERVER_TLS=false
|
||||
FLEET_SERVER_PRIVATE_KEY=${PRIVATE_KEY}
|
||||
FLEET_REDIS_ADDRESS=127.0.0.1:6379
|
||||
FLEET_LOGGING_JSON=true
|
||||
EOF
|
||||
msg_ok "Configured Application"
|
||||
|
||||
msg_info "Running Database Migrations"
|
||||
set -a && source /opt/fleet/.env && set +a
|
||||
$STD /opt/fleet/fleet prepare db --no-prompt
|
||||
msg_ok "Ran Database Migrations"
|
||||
|
||||
msg_info "Creating Service"
|
||||
cat <<EOF >/etc/systemd/system/fleet.service
|
||||
[Unit]
|
||||
Description=Fleet
|
||||
After=network.target mysql.service redis-server.service
|
||||
Requires=mysql.service redis-server.service
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
User=root
|
||||
WorkingDirectory=/opt/fleet
|
||||
EnvironmentFile=/opt/fleet/.env
|
||||
ExecStart=/opt/fleet/fleet serve
|
||||
Restart=on-failure
|
||||
RestartSec=5
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
EOF
|
||||
systemctl enable -q --now fleet redis-server
|
||||
msg_ok "Created Service"
|
||||
|
||||
msg_info "Initializing Fleet"
|
||||
FLEET_ADMIN_EMAIL="admin@fleet.local"
|
||||
FLEET_ADMIN_PASS="$(openssl rand -hex 8)1!"
|
||||
ELAPSED=0
|
||||
until curl -sf "http://127.0.0.1:8080/healthz" >/dev/null 2>&1; do
|
||||
sleep 2
|
||||
ELAPSED=$((ELAPSED + 2))
|
||||
[[ $ELAPSED -ge 60 ]] && break
|
||||
done
|
||||
SETUP_RESPONSE=$(curl -s -X POST "http://127.0.0.1:8080/api/v1/setup" \
|
||||
-H "Content-Type: application/json" \
|
||||
-d "{\"admin\":{\"admin\":true,\"email\":\"${FLEET_ADMIN_EMAIL}\",\"name\":\"Admin\",\"password\":\"${FLEET_ADMIN_PASS}\"},\"org_info\":{\"org_name\":\"Fleet\",\"org_logo_url\":\"\"},\"server_url\":\"http://127.0.0.1:8080\"}")
|
||||
FLEET_TOKEN=$(echo "${SETUP_RESPONSE}" | grep -o '"token":"[^"]*"' | cut -d'"' -f4) || true
|
||||
if [[ -n "${FLEET_TOKEN}" ]]; then
|
||||
curl -s -X PATCH "http://127.0.0.1:8080/api/latest/fleet/config" \
|
||||
-H "Content-Type: application/json" \
|
||||
-H "Authorization: Bearer ${FLEET_TOKEN}" \
|
||||
-d "{\"server_settings\":{\"server_url\":\"http://${LOCAL_IP}:8080\"}}" >/dev/null
|
||||
fi
|
||||
cat <<EOF >>/opt/fleet/.env
|
||||
FLEET_ADMIN_EMAIL=${FLEET_ADMIN_EMAIL}
|
||||
FLEET_ADMIN_PASSWORD=${FLEET_ADMIN_PASS}
|
||||
EOF
|
||||
msg_ok "Initialized Fleet"
|
||||
|
||||
motd_ssh
|
||||
customize
|
||||
cleanup_lxc
|
||||
@@ -0,0 +1,88 @@
|
||||
#!/usr/bin/env bash
|
||||
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ)
|
||||
# Co-Authors: yusing
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/yusing/godoxy
|
||||
|
||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||
color
|
||||
verb_ip6
|
||||
catch_errors
|
||||
setting_up_container
|
||||
network_check
|
||||
update_os
|
||||
|
||||
fetch_and_deploy_gh_release "godoxy" "yusing/godoxy" "singlefile" "latest" "/opt/godoxy" "godoxy-linux-$(arch_resolve)"
|
||||
|
||||
msg_info "Generating Self-Signed Certificate"
|
||||
create_self_signed_cert "godoxy"
|
||||
msg_ok "Generated Self-Signed Certificate"
|
||||
|
||||
msg_info "Configuring GoDoxy"
|
||||
mkdir -p \
|
||||
/opt/godoxy/config/middlewares \
|
||||
/opt/godoxy/data \
|
||||
/opt/godoxy/error_pages
|
||||
|
||||
cat <<EOF >/opt/godoxy/config/config.yml
|
||||
autocert:
|
||||
provider: local
|
||||
cert_path: /etc/ssl/godoxy/godoxy.crt
|
||||
key_path: /etc/ssl/godoxy/godoxy.key
|
||||
|
||||
providers:
|
||||
include:
|
||||
- routes.yml
|
||||
|
||||
webui:
|
||||
aliases:
|
||||
- "${LOCAL_IP}"
|
||||
EOF
|
||||
|
||||
cat <<'EOF' >/opt/godoxy/config/routes.yml
|
||||
{}
|
||||
EOF
|
||||
|
||||
cat <<EOF >/etc/godoxy.env
|
||||
GODOXY_API_USER="admin"
|
||||
GODOXY_API_PASSWORD="$(openssl rand -hex 16)"
|
||||
GODOXY_API_JWT_SECRET="$(openssl rand -base64 32)"
|
||||
EOF
|
||||
chmod 600 /etc/godoxy.env
|
||||
msg_ok "Configured GoDoxy"
|
||||
|
||||
msg_info "Creating Service"
|
||||
cat <<'EOF' >/etc/systemd/system/godoxy.service
|
||||
[Unit]
|
||||
Description=GoDoxy Reverse Proxy
|
||||
Wants=network-online.target
|
||||
After=network-online.target
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
User=root
|
||||
Group=root
|
||||
WorkingDirectory=/opt/godoxy
|
||||
EnvironmentFile=/etc/godoxy.env
|
||||
ExecStart=/opt/godoxy/godoxy
|
||||
Restart=on-failure
|
||||
RestartSec=5
|
||||
CapabilityBoundingSet=CAP_NET_BIND_SERVICE
|
||||
NoNewPrivileges=true
|
||||
PrivateTmp=true
|
||||
ProtectHome=true
|
||||
ProtectSystem=full
|
||||
ReadWritePaths=/opt/godoxy /etc/ssl/godoxy
|
||||
UMask=0077
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
EOF
|
||||
systemctl enable -q --now godoxy
|
||||
msg_ok "Created Service"
|
||||
|
||||
motd_ssh
|
||||
customize
|
||||
cleanup_lxc
|
||||
@@ -0,0 +1,69 @@
|
||||
#!/usr/bin/env bash
|
||||
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: MickLesk (CanbiZ)
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://www.mumble.info/
|
||||
|
||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||
color
|
||||
verb_ip6
|
||||
catch_errors
|
||||
setting_up_container
|
||||
network_check
|
||||
update_os
|
||||
|
||||
msg_info "Installing Mumble"
|
||||
$STD apt install -y mumble-server
|
||||
cat <<EOF >~/.mumble
|
||||
$(get_latest_github_release "mumble-voip/mumble")
|
||||
EOF
|
||||
msg_ok "Installed Mumble"
|
||||
|
||||
msg_info "Configuring Mumble"
|
||||
mkdir -p /var/lib/mumble-server
|
||||
cat <<EOF >/etc/mumble/mumble-server.ini
|
||||
database=/var/lib/mumble-server/mumble-server.sqlite
|
||||
sqlite_wal=2
|
||||
port=64738
|
||||
users=100
|
||||
bandwidth=558000
|
||||
allowping=true
|
||||
obfuscate=true
|
||||
ice="tcp -h 127.0.0.1 -p 6502"
|
||||
icesecretwrite=$(tr -d '-' </proc/sys/kernel/random/uuid)
|
||||
EOF
|
||||
chown -R mumble-server:mumble-server /var/lib/mumble-server
|
||||
chown root:mumble-server /etc/mumble/mumble-server.ini
|
||||
chmod 640 /etc/mumble/mumble-server.ini
|
||||
msg_ok "Configured Mumble"
|
||||
|
||||
msg_info "Setting SuperUser Password"
|
||||
MUMBLE_PASSWORD=$(tr -d '-' </proc/sys/kernel/random/uuid)
|
||||
mumble-server -ini /etc/mumble/mumble-server.ini -supw "$MUMBLE_PASSWORD"
|
||||
chown -R mumble-server:mumble-server /var/lib/mumble-server
|
||||
msg_ok "Set SuperUser password: ${MUMBLE_PASSWORD}"
|
||||
|
||||
msg_info "Creating Service"
|
||||
cat <<EOF >/etc/systemd/system/mumble-server.service
|
||||
[Unit]
|
||||
Description=Mumble Server
|
||||
After=network.target
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
User=mumble-server
|
||||
Group=mumble-server
|
||||
ExecStart=/usr/bin/mumble-server -ini /etc/mumble/mumble-server.ini -fg
|
||||
Restart=on-failure
|
||||
RestartSec=5
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
EOF
|
||||
systemctl enable -q --now mumble-server
|
||||
msg_ok "Created Service"
|
||||
|
||||
motd_ssh
|
||||
customize
|
||||
cleanup_lxc
|
||||
@@ -0,0 +1,69 @@
|
||||
#!/usr/bin/env bash
|
||||
|
||||
# Copyright (c) 2021-2026 community-scripts ORG
|
||||
# Author: Arubinu
|
||||
# License: MIT | https://github.com/community-scripts/ProxmoxVE/raw/main/LICENSE
|
||||
# Source: https://github.com/fosrl/newt
|
||||
|
||||
source /dev/stdin <<<"$FUNCTIONS_FILE_PATH"
|
||||
color
|
||||
verb_ip6
|
||||
catch_errors
|
||||
setting_up_container
|
||||
network_check
|
||||
update_os
|
||||
|
||||
fetch_and_deploy_gh_release "newt" "fosrl/newt" "singlefile" "latest" "/opt/newt" "newt_linux_$(arch_resolve)"
|
||||
ln -sf /opt/newt/newt /usr/local/bin/newt
|
||||
|
||||
if [[ -z "${NEWT_ID:-}" ]]; then
|
||||
read -rp "Newt ID (from your Pangolin dashboard): " NEWT_ID
|
||||
fi
|
||||
if [[ -z "${NEWT_SECRET:-}" ]]; then
|
||||
read -rsp "Newt Secret: " NEWT_SECRET
|
||||
echo
|
||||
fi
|
||||
if [[ -z "${PANGOLIN_ENDPOINT:-}" ]]; then
|
||||
read -rp "Pangolin endpoint (e.g. https://pangolin.example.com): " PANGOLIN_ENDPOINT
|
||||
fi
|
||||
|
||||
if [[ -z "$NEWT_ID" || -z "$NEWT_SECRET" || -z "$PANGOLIN_ENDPOINT" ]]; then
|
||||
msg_error "Newt ID, Secret and Endpoint are all required. Aborting."
|
||||
exit 1
|
||||
fi
|
||||
|
||||
msg_info "Configuring Newt"
|
||||
mkdir -p /etc/newt
|
||||
cat <<EOF >/etc/newt/newt.env
|
||||
NEWT_ID=${NEWT_ID}
|
||||
NEWT_SECRET=${NEWT_SECRET}
|
||||
PANGOLIN_ENDPOINT=${PANGOLIN_ENDPOINT}
|
||||
EOF
|
||||
chmod 600 /etc/newt/newt.env
|
||||
msg_ok "Configured Newt"
|
||||
|
||||
msg_info "Creating Service"
|
||||
cat <<EOF >/etc/systemd/system/newt.service
|
||||
[Unit]
|
||||
Description=Newt (Pangolin tunnel client)
|
||||
Wants=network-online.target
|
||||
After=network-online.target
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
EnvironmentFile=/etc/newt/newt.env
|
||||
ExecStart=/usr/local/bin/newt
|
||||
Restart=always
|
||||
RestartSec=2
|
||||
UMask=0077
|
||||
PrivateTmp=true
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
EOF
|
||||
systemctl enable -q --now newt
|
||||
msg_ok "Created Service"
|
||||
|
||||
motd_ssh
|
||||
customize
|
||||
cleanup_lxc
|
||||
@@ -13,106 +13,46 @@ setting_up_container
|
||||
network_check
|
||||
update_os
|
||||
|
||||
msg_info "Installing Dependencies"
|
||||
$STD apt install -y nginx
|
||||
msg_ok "Installed Dependencies"
|
||||
|
||||
PHP_VERSION="8.4" PHP_FPM="YES" PHP_MODULE="ldap,pcntl" setup_php
|
||||
PHP_VERSION="8.4" PHP_APACHE="YES" setup_php
|
||||
setup_mariadb
|
||||
MARIADB_DB_NAME="projectsend"
|
||||
MARIADB_DB_USER="projectsend"
|
||||
setup_mariadb_db
|
||||
fetch_and_deploy_gh_release "projectsend" "projectsend/projectsend" "prebuild" "latest" "/opt/projectsend" "projectsend-*.zip"
|
||||
MARIADB_DB_NAME="projectsend" MARIADB_DB_USER="projectsend" setup_mariadb_db
|
||||
fetch_and_deploy_gh_release "projectsend" "projectsend/projectsend" "prebuild" "latest" "/opt/projectsend" "projectsend-r*.zip"
|
||||
|
||||
msg_info "Configuring ProjectSend"
|
||||
cd /opt/projectsend
|
||||
cp .env.example .env
|
||||
ADMIN_EMAIL="admin@example.com"
|
||||
ADMIN_PASSWORD=$(openssl rand -base64 18 | tr -dc 'a-zA-Z0-9' | head -c13)
|
||||
sed -i \
|
||||
-e "s|^APP_ENV=.*|APP_ENV=production|" \
|
||||
-e "s|^APP_DEBUG=.*|APP_DEBUG=false|" \
|
||||
-e "s|^APP_URL=.*|APP_URL=http://${LOCAL_IP}|" \
|
||||
-e "s|^DB_HOST=.*|DB_HOST=localhost|" \
|
||||
-e "s|^DB_DATABASE=.*|DB_DATABASE=${MARIADB_DB_NAME}|" \
|
||||
-e "s|^DB_USERNAME=.*|DB_USERNAME=${MARIADB_DB_USER}|" \
|
||||
-e "s|^DB_PASSWORD=.*|DB_PASSWORD=${MARIADB_DB_PASS}|" \
|
||||
-e "s|^SESSION_DRIVER=.*|SESSION_DRIVER=database|" \
|
||||
-e "s|^CACHE_STORE=.*|CACHE_STORE=database|" \
|
||||
-e "s|^QUEUE_CONNECTION=.*|QUEUE_CONNECTION=database|" \
|
||||
.env
|
||||
msg_info "Installing ProjectSend"
|
||||
mv /opt/projectsend/includes/sys.config.sample.php /opt/projectsend/includes/sys.config.php
|
||||
chown -R www-data:www-data /opt/projectsend
|
||||
chmod -R 775 /opt/projectsend/storage /opt/projectsend/bootstrap/cache
|
||||
$STD sudo -u www-data php artisan key:generate --force --no-interaction
|
||||
$STD sudo -u www-data php artisan migrate --force
|
||||
$STD sudo -u www-data php artisan storage:link --force
|
||||
$STD sudo -u www-data php artisan projectsend:ensure-roles
|
||||
$STD sudo -u www-data php artisan projectsend:admin --if-none \
|
||||
--name="Administrator" \
|
||||
--email="${ADMIN_EMAIL}" \
|
||||
--password="${ADMIN_PASSWORD}"
|
||||
cat <<EOF >~/projectsend.creds
|
||||
ProjectSend Credentials
|
||||
Admin Email: ${ADMIN_EMAIL}
|
||||
Admin Password: ${ADMIN_PASSWORD}
|
||||
EOF
|
||||
msg_ok "Configured ProjectSend"
|
||||
chmod -R 775 /opt/projectsend
|
||||
chmod 644 /opt/projectsend/includes/sys.config.php
|
||||
sed -i -e "s/\(define('DB_NAME', \).*/\1'$MARIADB_DB_NAME');/" \
|
||||
-e "s/\(define('DB_USER', \).*/\1'$MARIADB_DB_USER');/" \
|
||||
-e "s/\(define('DB_PASSWORD', \).*/\1'$MARIADB_DB_PASS');/" \
|
||||
/opt/projectsend/includes/sys.config.php
|
||||
sed -i -e "s/^\(memory_limit = \).*/\1 256M/" \
|
||||
-e "s/^\(post_max_size = \).*/\1 256M/" \
|
||||
-e "s/^\(upload_max_filesize = \).*/\1 256M/" \
|
||||
-e "s/^\(max_execution_time = \).*/\1 300/" \
|
||||
/etc/php/8.4/apache2/php.ini
|
||||
msg_ok "Installed projectsend"
|
||||
|
||||
msg_info "Creating Service"
|
||||
PHP_SOCK=$(get_php_fpm_socket)
|
||||
cat <<EOF >/etc/nginx/sites-available/projectsend.conf
|
||||
server {
|
||||
listen 80 default_server;
|
||||
server_name _;
|
||||
root /opt/projectsend/public;
|
||||
index index.php;
|
||||
cat <<EOF >/etc/apache2/sites-available/projectsend.conf
|
||||
<VirtualHost *:80>
|
||||
ServerName projectsend
|
||||
DocumentRoot /opt/projectsend
|
||||
<Directory /opt/projectsend>
|
||||
Options FollowSymLinks
|
||||
AllowOverride All
|
||||
Require all granted
|
||||
</Directory>
|
||||
|
||||
client_max_body_size 100m;
|
||||
|
||||
location / {
|
||||
try_files \$uri \$uri/ /index.php?\$query_string;
|
||||
}
|
||||
|
||||
location /protected-files/ {
|
||||
internal;
|
||||
alias /opt/projectsend/storage/app/files/;
|
||||
}
|
||||
|
||||
location ~ \.php\$ {
|
||||
try_files \$uri =404;
|
||||
fastcgi_pass unix:${PHP_SOCK};
|
||||
fastcgi_index index.php;
|
||||
fastcgi_param SCRIPT_FILENAME \$realpath_root\$fastcgi_script_name;
|
||||
include fastcgi_params;
|
||||
fastcgi_buffer_size 32k;
|
||||
fastcgi_buffers 8 32k;
|
||||
}
|
||||
|
||||
location ~ /\.(?!well-known) {
|
||||
deny all;
|
||||
}
|
||||
}
|
||||
ErrorLog /var/log/apache2/projectsend_error.log
|
||||
CustomLog /var/log/apache2/projectsend_access.log combined
|
||||
</VirtualHost>
|
||||
EOF
|
||||
nginx_enable_site projectsend.conf
|
||||
|
||||
cat <<EOF >/etc/systemd/system/projectsend-worker.service
|
||||
[Unit]
|
||||
Description=ProjectSend queue worker
|
||||
After=network.target mariadb.service
|
||||
|
||||
[Service]
|
||||
User=www-data
|
||||
Group=www-data
|
||||
Restart=always
|
||||
WorkingDirectory=/opt/projectsend
|
||||
ExecStart=/usr/bin/php artisan queue:work --tries=3 --backoff=3
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
EOF
|
||||
systemctl enable -q --now projectsend-worker
|
||||
|
||||
echo "* * * * * cd /opt/projectsend && php artisan schedule:run >> /dev/null 2>&1" | crontab -u www-data -
|
||||
$STD a2ensite projectsend
|
||||
$STD a2enmod rewrite
|
||||
$STD a2dissite 000-default.conf
|
||||
$STD systemctl reload apache2
|
||||
msg_ok "Created Service"
|
||||
|
||||
motd_ssh
|
||||
|
||||
Reference in New Issue
Block a user