Compare commits

..

5 Commits

Author SHA1 Message Date
MickLesk af111bf419 Refactor nginx management to use helper
Replace direct nginx systemctl/ln calls with the `nginx_enable_site` helper function across multiple update scripts. Also use `get_php_fpm_socket` in paymenter.sh for dynamic PHP socket path instead of hardcoded version string.
2026-07-28 15:02:51 +02:00
MickLesk b7688ff97a Standardize nginx setup in install scripts
Refactors many install scripts to use the shared `nginx_enable_site` helper instead of manual symlink/default-site/reload sequences, making webserver setup more consistent and less error-prone. It also replaces hardcoded PHP-FPM socket paths with `get_php_fpm_socket` (including templated substitutions where needed) across nginx and caddy configs to improve compatibility with varying PHP versions and socket locations.
2026-07-28 14:57:58 +02:00
MickLesk f862ce0c13 Add nginx site helper and PHP socket resolver
Introduce `get_php_fpm_socket` to reliably resolve the active PHP-FPM Unix socket, preferring the configured PHP version and falling back to the highest running socket under `/run/php`. Add `nginx_enable_site` to safely enable a site by removing defaults, linking configs, testing `nginx -t`, enabling the service, and restarting through the existing safe restart path.
2026-07-28 14:55:52 +02:00
community-scripts-pr-app[bot] 57e02eee1b Update .app files (#16114)
Co-authored-by: GitHub Actions <github-actions[bot]@users.noreply.github.com>
2026-07-28 13:38:55 +02:00
community-scripts-pr-app[bot] 45053ea4c3 Update CHANGELOG.md (#16115)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
2026-07-28 11:37:14 +00:00
52 changed files with 175 additions and 166 deletions
+1 -1
View File
@@ -100,7 +100,7 @@ server {
}
}
EOF
systemctl reload nginx
nginx_enable_site dispatcharr.conf
msg_ok "Migrated Nginx Configuration"
fi
+1 -3
View File
@@ -59,9 +59,7 @@ function update_script() {
envsubst </opt/feishin/settings.js.template >/etc/nginx/conf.d/settings.js
envsubst '${PUBLIC_PATH}' </opt/feishin/ng.conf.template >/etc/nginx/sites-available/feishin
ln -sf /etc/nginx/sites-available/feishin /etc/nginx/sites-enabled/feishin
rm -f /etc/nginx/sites-enabled/default
systemctl restart nginx
nginx_enable_site feishin
msg_ok "Published Web Assets"
msg_ok "Updated successfully!"
+3 -2
View File
@@ -34,8 +34,9 @@ function update_script() {
if [[ "$CURRENT_PHP" != "8.3" ]]; then
PHP_VERSION="8.3" PHP_FPM="YES" setup_php
setup_composer
sed -i 's|php8\.2-fpm\.sock|php8.3-fpm.sock|g' /etc/nginx/sites-available/paymenter.conf
$STD systemctl reload nginx
PHP_SOCK=$(get_php_fpm_socket)
sed -i "s|fastcgi_pass unix:.*|fastcgi_pass unix:${PHP_SOCK};|" /etc/nginx/sites-available/paymenter.conf
nginx_enable_site paymenter.conf
fi
if check_for_gh_release "paymenter" "paymenter/paymenter"; then
+2 -2
View File
@@ -62,9 +62,9 @@ function update_script() {
msg_ok "Updated Configuration"
msg_info "Starting Services"
$STD nginx -t
systemctl daemon-reload
systemctl start nginx rackula-api
nginx_enable_site rackula
systemctl start rackula-api
msg_ok "Started Services"
msg_ok "Updated successfully!"
fi
+1 -1
View File
@@ -75,7 +75,7 @@ function update_script() {
systemctl reload angie
elif [[ -f /etc/nginx/sites-available/romm ]]; then
sed -i "s|alias .*/library/;|alias ${ROMM_BASE}/library/;|" /etc/nginx/sites-available/romm
systemctl reload nginx
nginx_enable_site romm
fi
msg_ok "Updated ROMM"
+2 -1
View File
@@ -93,7 +93,8 @@ EOF
msg_ok "Refreshed SparkyFitness Service"
msg_info "Starting Services"
$STD systemctl start sparkyfitness-server nginx
$STD systemctl start sparkyfitness-server
nginx_enable_site sparkyfitness
msg_ok "Started Services"
msg_ok "Updated successfully!"
fi
+2 -1
View File
@@ -49,6 +49,7 @@ chmod -R 755 /opt/2fauth
msg_ok "Setup 2fauth"
msg_info "Configure Service"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/conf.d/2fauth.conf
server {
listen 80;
@@ -67,7 +68,7 @@ server {
error_page 404 /index.php;
location ~ \.php\$ {
fastcgi_pass unix:/var/run/php/php${PHP_VERSION}-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$realpath_root\$fastcgi_script_name;
include fastcgi_params;
}
+1 -3
View File
@@ -207,9 +207,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/affine.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
systemctl enable -q --now nginx
nginx_enable_site affine.conf
msg_ok "Configured Nginx"
motd_ssh
+1 -4
View File
@@ -89,10 +89,7 @@ server {
}
EOF
ln -sf /etc/nginx/sites-available/babybuddy /etc/nginx/sites-enabled/babybuddy
rm /etc/nginx/sites-enabled/default
systemctl enable -q --now nginx
service nginx reload
nginx_enable_site babybuddy
msg_ok "Configured NGINX"
motd_ssh
+3 -4
View File
@@ -73,6 +73,7 @@ $STD npm run build
msg_ok "Installed Salt Rim"
msg_info "Creating Service"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/barassistant.conf
server {
listen 80 default_server;
@@ -126,7 +127,7 @@ server {
error_page 404 /index.php;
location ~ ^/index\.php(/|$) {
fastcgi_pass unix:/var/run/php/php$PHPVER-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$realpath_root\$fastcgi_script_name;
include fastcgi_params;
fastcgi_hide_header X-Powered-By;
@@ -148,9 +149,7 @@ server {
}
EOF
ln -s /etc/nginx/sites-available/barassistant.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site barassistant.conf
msg_ok "Created Service"
motd_ssh
+1 -3
View File
@@ -122,9 +122,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/checkmate /etc/nginx/sites-enabled/checkmate
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site checkmate
msg_ok "Configured Nginx Reverse Proxy"
motd_ssh
+1 -5
View File
@@ -185,11 +185,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/databasus /etc/nginx/sites-enabled/databasus
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
$STD systemctl enable -q --now nginx
$STD systemctl reload nginx
nginx_enable_site databasus
msg_ok "Configured Nginx"
motd_ssh
+1 -3
View File
@@ -174,9 +174,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/dawarich.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
systemctl enable -q --now nginx
nginx_enable_site dawarich.conf
msg_ok "Configured Nginx"
motd_ssh
+1 -4
View File
@@ -207,10 +207,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/discourse /etc/nginx/sites-enabled/discourse
rm -f /etc/nginx/sites-enabled/default
$STD systemctl enable --now nginx
$STD systemctl reload nginx
nginx_enable_site discourse
msg_ok "Configured Nginx"
motd_ssh
+1 -3
View File
@@ -139,9 +139,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/dispatcharr.conf /etc/nginx/sites-enabled/dispatcharr.conf
rm -f /etc/nginx/sites-enabled/default
systemctl restart nginx
nginx_enable_site dispatcharr.conf
msg_ok "Configured Nginx"
msg_info "Creating Services"
+1 -5
View File
@@ -46,11 +46,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/espconnect /etc/nginx/sites-enabled/espconnect
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q nginx
systemctl restart nginx
nginx_enable_site espconnect
msg_ok "Configured Nginx"
motd_ssh
+1 -3
View File
@@ -108,9 +108,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/excalidash /etc/nginx/sites-enabled/excalidash
rm -f /etc/nginx/sites-enabled/default
systemctl reload nginx
nginx_enable_site excalidash
msg_ok "Configured Nginx"
msg_info "Creating Service"
+1 -4
View File
@@ -57,10 +57,7 @@ set +a
envsubst </opt/feishin/settings.js.template >/etc/nginx/conf.d/settings.js
envsubst '${PUBLIC_PATH}' </opt/feishin/ng.conf.template >/etc/nginx/sites-available/feishin
ln -sf /etc/nginx/sites-available/feishin /etc/nginx/sites-enabled/feishin
rm -f /etc/nginx/sites-enabled/default
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site feishin
msg_ok "Published Web Assets"
motd_ssh
+1 -4
View File
@@ -178,10 +178,7 @@ server {
error_log /var/log/geopulse/nginx/error.log;
}
EOF
ln -sf /etc/nginx/sites-available/geopulse.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site geopulse.conf
msg_ok "Configured Nginx"
msg_info "Creating Admin Helper"
+2 -7
View File
@@ -26,9 +26,7 @@ chown -R www-data:www-data /opt/grav
msg_info "Configuring Nginx"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_FPM_SOCK=$(find /run/php -maxdepth 1 -name "php*-fpm.sock" -type s | sort -V | tail -1)
unlink /etc/nginx/sites-enabled/default
rm -f /etc/nginx/sites-available/default
PHP_FPM_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/grav
server {
listen 80;
@@ -99,11 +97,8 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/grav /etc/nginx/sites-enabled/grav
systemctl enable -q --now php${PHP_VER}-fpm
$STD nginx -t
systemctl enable -q --now nginx
$STD nginx -s reload
nginx_enable_site grav
msg_ok "Configured Nginx"
motd_ssh
+3 -4
View File
@@ -115,6 +115,7 @@ chmod -R 775 /opt/investbrain/bootstrap/cache
msg_ok "Installed Investbrain"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/investbrain.conf
server {
listen 8000 default_server;
@@ -135,7 +136,7 @@ server {
}
location ~ \.php\$ {
fastcgi_pass unix:/var/run/php/php${PHP_VERSION}-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$realpath_root\$fastcgi_script_name;
include fastcgi_params;
fastcgi_hide_header X-Powered-By;
@@ -150,9 +151,7 @@ server {
access_log /var/log/nginx/investbrain_access.log;
}
EOF
ln -sf /etc/nginx/sites-available/investbrain.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site investbrain.conf
msg_ok "Configured Nginx"
msg_info "Setting up Supervisor"
+4 -4
View File
@@ -110,6 +110,7 @@ chown -R www-data:www-data /opt/invoiceninja
msg_ok "Set up Database"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<'EOF' >/etc/nginx/sites-available/invoiceninja
server {
listen 8080;
@@ -130,7 +131,7 @@ server {
}
location = /index.php {
fastcgi_pass unix:/run/php/php8.4-fpm.sock;
fastcgi_pass unix:__PHP_SOCK__;
fastcgi_param SCRIPT_FILENAME $realpath_root$fastcgi_script_name;
include fastcgi_params;
fastcgi_param HTTP_X_FORWARDED_HOST $http_host;
@@ -151,9 +152,8 @@ server {
}
EOF
ln -sf /etc/nginx/sites-available/invoiceninja /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
sed -i "s|__PHP_SOCK__|${PHP_SOCK}|" /etc/nginx/sites-available/invoiceninja
nginx_enable_site invoiceninja
msg_ok "Configured Nginx"
msg_info "Setting up Queue Worker"
+2 -1
View File
@@ -56,10 +56,11 @@ msg_ok "Set up InvoiceShelf"
msg_info "Configuring Caddy"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/caddy/Caddyfile
:80 {
root * /opt/invoiceshelf/public
php_fastcgi unix//run/php/php${PHP_VER}-fpm.sock
php_fastcgi unix/${PHP_SOCK}
file_server
encode gzip
}
+1 -4
View File
@@ -86,7 +86,6 @@ systemctl enable -q --now kitchenowl
msg_ok "Created and Started Service"
msg_info "Configuring Nginx"
rm -f /etc/nginx/sites-enabled/default
cat <<'EOF' >/etc/nginx/sites-available/kitchenowl.conf
server {
listen 80;
@@ -134,9 +133,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/kitchenowl.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site kitchenowl.conf
msg_ok "Configured Nginx"
motd_ssh
+4 -4
View File
@@ -129,6 +129,7 @@ $STD systemctl restart php8.4-fpm
msg_ok "Tuned PHP-FPM"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<'EOF' >/etc/nginx/sites-available/koel
server {
listen 80;
@@ -156,7 +157,7 @@ server {
location ~ \.php$ {
try_files $uri $uri/ /index.php?$args;
fastcgi_pass unix:/run/php/php8.4-fpm.sock;
fastcgi_pass unix:__PHP_SOCK__;
fastcgi_index index.php;
fastcgi_split_path_info ^(.+\.php)(/.+)$;
fastcgi_intercept_errors on;
@@ -171,9 +172,8 @@ server {
}
}
EOF
rm -f /etc/nginx/sites-enabled/default
ln -sf /etc/nginx/sites-available/koel /etc/nginx/sites-enabled/koel
$STD systemctl reload nginx
sed -i "s|__PHP_SOCK__|${PHP_SOCK}|" /etc/nginx/sites-available/koel
nginx_enable_site koel
msg_ok "Configured Nginx"
msg_info "Setting up Cron Job"
+2 -3
View File
@@ -80,7 +80,7 @@ sed -i "s/listen = \/run\/php\/php8.4-fpm.sock/listen = \/run\/php-fpm-librenms.
msg_ok "Configured PHP-FPM"
msg_info "Configure Nginx"
cat <<EOF >/etc/nginx/sites-enabled/librenms
cat <<EOF >/etc/nginx/sites-available/librenms
server {
listen 80;
server_name ${LOCAL_IP};
@@ -103,8 +103,7 @@ server {
}
}
EOF
rm /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site librenms
systemctl restart php8.4-fpm
msg_ok "Configured Nginx"
+2 -4
View File
@@ -115,10 +115,8 @@ server {
}
}
EOF
$STD rm -f /etc/nginx/sites-enabled/default
$STD ln -sf /etc/nginx/sites-available/linkding /etc/nginx/sites-enabled/linkding
systemctl enable -q --now nginx linkding linkding-tasks
systemctl restart nginx
systemctl enable -q --now linkding linkding-tasks
nginx_enable_site linkding
msg_ok "Created Services"
motd_ssh
+2 -1
View File
@@ -56,10 +56,11 @@ chown -R www-data:www-data /opt/lychee
msg_info "Configuring Caddy"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/caddy/Caddyfile
:80 {
root * /opt/lychee/public
php_fastcgi unix//run/php/php${PHP_VER}-fpm.sock
php_fastcgi unix/${PHP_SOCK}
file_server
encode gzip
}
+1 -3
View File
@@ -134,9 +134,7 @@ server {
}
}
EOF
ln -s /etc/nginx/sites-available/manyfold.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site manyfold.conf
msg_ok "Created Services"
motd_ssh
+1 -5
View File
@@ -262,12 +262,8 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/mastodon /etc/nginx/sites-enabled/mastodon
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q --now redis-server
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site mastodon
msg_ok "Configured Nginx"
motd_ssh
+2 -1
View File
@@ -45,12 +45,13 @@ msg_ok "Set up Matomo"
msg_info "Configuring Caddy"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/caddy/Caddyfile
:80 {
root * /opt/matomo
@blocked path /config /config/* /tmp /tmp/* /.* /.*/*
respond @blocked 403
php_fastcgi unix//run/php/php${PHP_VER}-fpm.sock
php_fastcgi unix/${PHP_SOCK}
file_server
encode gzip
}
+1 -3
View File
@@ -59,7 +59,6 @@ USE_ORIGINAL_FILENAME=true fetch_and_deploy_gh_release "netboot-xyz-multiarch-im
USE_ORIGINAL_FILENAME=true fetch_and_deploy_gh_release "netboot-xyz-checksums" "netbootxyz/netboot.xyz" "singlefile" "latest" "/var/www/html" "netboot.xyz-sha256-checksums.txt"
msg_info "Configuring Webserver"
rm -f /etc/nginx/sites-enabled/default
cat <<'EOF' >/etc/nginx/sites-available/netboot-xyz
server {
listen 80 default_server;
@@ -83,8 +82,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/netboot-xyz /etc/nginx/sites-enabled/netboot-xyz
$STD systemctl reload nginx
nginx_enable_site netboot-xyz
msg_ok "Configured Webserver"
msg_info "Configuring TFTP Server"
+1 -5
View File
@@ -55,11 +55,7 @@ server {
}
EOF
ln -sf /etc/nginx/sites-available/omnitools /etc/nginx/sites-enabled/omnitools
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site omnitools
msg_ok "Configured Nginx"
motd_ssh
+1 -3
View File
@@ -62,9 +62,7 @@ server {
}
EOF
ln -s /etc/nginx/sites-available/ots.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site ots.conf
msg_ok "Configured nginx"
msg_info "Creating Services"
+3 -4
View File
@@ -57,6 +57,7 @@ $STD php artisan app:user:create paymenter admin admin@paymenter.org paymenter 1
msg_ok "Created Admin User"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/paymenter.conf
server {
listen 80;
@@ -72,7 +73,7 @@ server {
location ~ \.php\$ {
include snippets/fastcgi-php.conf;
fastcgi_pass unix:/var/run/php/php8.3-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$document_root\$fastcgi_script_name;
include fastcgi_params;
}
@@ -82,9 +83,7 @@ server {
}
}
EOF
ln -s /etc/nginx/sites-available/paymenter.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site paymenter.conf
chown -R www-data:www-data /opt/paymenter/*
msg_ok "Configured Nginx"
+1 -3
View File
@@ -376,9 +376,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/plane.conf /etc/nginx/sites-enabled/plane.conf
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site plane.conf
msg_ok "Configured Nginx"
motd_ssh
+1 -5
View File
@@ -236,11 +236,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/postiz /etc/nginx/sites-enabled/postiz
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q nginx
systemctl reload -q nginx
nginx_enable_site postiz
msg_ok "Configured Nginx"
motd_ssh
+3 -6
View File
@@ -29,6 +29,7 @@ chown -R www-data:www-data /var/www/html
msg_ok "Deployed Poznote"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/poznote
server {
listen 8040;
@@ -41,7 +42,7 @@ server {
location ~ \.php$ {
include fastcgi_params;
fastcgi_pass unix:/run/php/php8.4-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$document_root\$fastcgi_script_name;
fastcgi_param DOCUMENT_ROOT \$document_root;
}
@@ -51,11 +52,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/poznote /etc/nginx/sites-enabled/poznote
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site poznote
msg_ok "Configured Nginx"
motd_ssh
+3 -4
View File
@@ -37,6 +37,7 @@ systemctl restart php8.2-fpm
msg_ok "Configured PHP"
msg_info "Configuring Universal Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/privatebin.conf
server {
listen 80 default_server;
@@ -60,7 +61,7 @@ server {
location ~ \.php\$ {
include snippets/fastcgi-php.conf;
fastcgi_pass unix:/var/run/php/php8.2-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$document_root\$fastcgi_script_name;
include fastcgi_params;
}
@@ -75,9 +76,7 @@ server {
add_header X-XSS-Protection "1; mode=block";
}
EOF
ln -s /etc/nginx/sites-available/privatebin.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
systemctl reload nginx
nginx_enable_site privatebin.conf
msg_ok "Nginx Configured"
motd_ssh
+1 -3
View File
@@ -55,9 +55,7 @@ msg_ok "Set up Rackula"
msg_info "Configuring nginx"
cp /opt/rackula/config/nginx.conf /etc/nginx/sites-available/rackula
rm -f /etc/nginx/sites-enabled/default
ln -sf /etc/nginx/sites-available/rackula /etc/nginx/sites-enabled/rackula
$STD nginx -t
nginx_enable_site rackula
msg_ok "Configured nginx"
msg_info "Creating Services"
+1 -4
View File
@@ -93,10 +93,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/shlink-web-client /etc/nginx/sites-enabled/shlink-web-client
rm -f /etc/nginx/sites-enabled/default
systemctl enable -q nginx
$STD systemctl restart nginx
nginx_enable_site shlink-web-client
msg_ok "Set up Web Client"
fi
+2 -1
View File
@@ -40,6 +40,7 @@ $STD php artisan key:generate --force
msg_ok "Configured Snipe-IT"
msg_info "Creating Service"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/conf.d/snipeit.conf
server {
listen 80;
@@ -55,7 +56,7 @@ server {
location ~ \.php\$ {
include fastcgi.conf;
include snippets/fastcgi-php.conf;
fastcgi_pass unix:/run/php/php8.3-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_split_path_info ^(.+\.php)(/.+)\$;
fastcgi_param SCRIPT_FILENAME \$document_root\$fastcgi_script_name;
include fastcgi_params;
+2 -1
View File
@@ -68,10 +68,11 @@ msg_ok "Set up SolidTime"
msg_info "Configuring Caddy"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/caddy/Caddyfile
:80 {
root * /opt/solidtime/public
php_fastcgi unix//run/php/php${PHP_VER}-fpm.sock
php_fastcgi unix/${PHP_SOCK}
file_server
encode gzip
}
+1 -5
View File
@@ -91,11 +91,7 @@ sed \
-e 's|root /usr/share/nginx/html;|root /var/www/sparkyfitness;|g' \
-e 's|server_name localhost;|server_name _;|g' \
"/opt/sparkyfitness/docker/nginx.conf" >/etc/nginx/sites-available/sparkyfitness
ln -sf /etc/nginx/sites-available/sparkyfitness /etc/nginx/sites-enabled/sparkyfitness
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
$STD systemctl enable -q --now nginx
$STD systemctl reload nginx
nginx_enable_site sparkyfitness
msg_ok "Configured Nginx"
motd_ssh
+3 -4
View File
@@ -120,6 +120,7 @@ EOF
msg_ok "Set up Scheduler"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/speedtest-tracker
server {
listen 80;
@@ -143,7 +144,7 @@ server {
error_page 404 /index.php;
location ~ \.php$ {
fastcgi_pass unix:/var/run/php/php8.4-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_param SCRIPT_FILENAME \$realpath_root\$fastcgi_script_name;
include fastcgi_params;
}
@@ -154,9 +155,7 @@ server {
}
EOF
ln -sf /etc/nginx/sites-available/speedtest-tracker /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
systemctl reload nginx
nginx_enable_site speedtest-tracker
msg_ok "Configured Nginx"
motd_ssh
+4 -4
View File
@@ -93,6 +93,7 @@ chmod -R 755 /opt/wallabag/{var,web/assets}
msg_ok "Installed Wallabag"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<'EOF' >/etc/nginx/sites-available/wallabag
server {
listen 8000;
@@ -110,7 +111,7 @@ server {
}
location ~ ^/app\.php(/|$) {
fastcgi_pass unix:/run/php/php8.3-fpm.sock;
fastcgi_pass unix:__PHP_SOCK__;
fastcgi_split_path_info ^(.+\.php)(/.*)$;
include fastcgi_params;
fastcgi_param SCRIPT_FILENAME $realpath_root$fastcgi_script_name;
@@ -131,9 +132,8 @@ server {
}
EOF
ln -sf /etc/nginx/sites-available/wallabag /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
sed -i "s|__PHP_SOCK__|${PHP_SOCK}|" /etc/nginx/sites-available/wallabag
nginx_enable_site wallabag
msg_ok "Configured Nginx"
msg_info "Enabling Services"
+1 -4
View File
@@ -69,10 +69,7 @@ sed -i \
-e "s|/var/www/html|/opt/warracker/frontend|g" \
-e "s/client_max_body_size __NGINX_MAX_BODY_SIZE_CONFIG_VALUE__/client_max_body_size 32M/" \
/etc/nginx/sites-available/warracker.conf
ln -s /etc/nginx/sites-available/warracker.conf /etc/nginx/sites-enabled/warracker.conf
rm /etc/nginx/sites-enabled/default
systemctl restart nginx
nginx_enable_site warracker.conf
msg_ok "Configured Nginx"
msg_info "Creating systemd services"
+2 -1
View File
@@ -32,10 +32,11 @@ msg_ok "Set up Webtrees"
msg_info "Configuring Caddy"
PHP_VER=$(php -r 'echo PHP_MAJOR_VERSION . "." . PHP_MINOR_VERSION;')
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/caddy/Caddyfile
:80 {
root * /opt/webtrees
php_fastcgi unix//run/php/php${PHP_VER}-fpm.sock
php_fastcgi unix/${PHP_SOCK}
file_server
encode gzip
}
+3 -6
View File
@@ -48,6 +48,7 @@ chown -R www-data:www-data /opt/yourls
msg_ok "Configured YOURLS"
msg_info "Configuring Nginx"
PHP_SOCK=$(get_php_fpm_socket)
cat <<EOF >/etc/nginx/sites-available/yourls
server {
listen 80 default_server;
@@ -62,7 +63,7 @@ server {
location ~ \.php\$ {
try_files \$uri =404;
fastcgi_split_path_info ^(.+\.php)(/.+)\$;
fastcgi_pass unix:/run/php/php8.3-fpm.sock;
fastcgi_pass unix:${PHP_SOCK};
fastcgi_index index.php;
include fastcgi_params;
fastcgi_param SCRIPT_FILENAME \$document_root\$fastcgi_script_name;
@@ -79,11 +80,7 @@ server {
}
}
EOF
ln -sf /etc/nginx/sites-available/yourls /etc/nginx/sites-enabled/yourls
rm -f /etc/nginx/sites-enabled/default
$STD nginx -t
systemctl enable -q --now nginx
systemctl reload nginx
nginx_enable_site yourls
msg_ok "Configured Nginx"
motd_ssh
+1 -3
View File
@@ -65,9 +65,7 @@ msg_ok "Installed Zammad"
msg_info "Setup Services"
cp /opt/zammad/contrib/nginx/zammad.conf /etc/nginx/sites-available/zammad.conf
sed -i "s/server_name localhost;/server_name $LOCAL_IP;/g" /etc/nginx/sites-available/zammad.conf
ln -sf /etc/nginx/sites-available/zammad.conf /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
$STD systemctl reload nginx
nginx_enable_site zammad.conf
msg_ok "Created Service"
motd_ssh
+82
View File
@@ -8173,6 +8173,88 @@ EOF
msg_ok "Setup PHP ${INSTALLED_VERSION}"
}
# ------------------------------------------------------------------------------
# Resolves the path of the active PHP-FPM unix socket.
#
# Description:
# - Prefers the socket of ${PHP_VERSION} when that variable is set, which is
# the deterministic case directly after setup_php ran
# - Falls back to the highest version found below /run/php
# - Webserver-agnostic: works for nginx (fastcgi_pass) and Caddy (php_fastcgi)
#
# Notes:
# - Prints the path to stdout, diagnostics go to stderr, so the result can be
# captured via command substitution
# - Deliberately avoids `head -n1`: it closes the pipe early and with
# `set -o pipefail` (see catch_errors) SIGPIPE would abort the install
# - php-fpm has to be running, the socket only exists after the service start
#
# Usage:
# PHP_SOCK=$(get_php_fpm_socket)
# echo "fastcgi_pass unix:${PHP_SOCK};"
# ------------------------------------------------------------------------------
get_php_fpm_socket() {
local sock
if [[ -n "${PHP_VERSION:-}" && -S "/run/php/php${PHP_VERSION}-fpm.sock" ]]; then
echo "/run/php/php${PHP_VERSION}-fpm.sock"
return 0
fi
sock=$(find /run/php -maxdepth 1 -name "php*-fpm.sock" -type s 2>/dev/null | sort -V | tail -1)
if [[ -z "$sock" ]]; then
msg_error "No active PHP-FPM socket found under /run/php"
return 1
fi
echo "$sock"
}
# ------------------------------------------------------------------------------
# Enables an nginx site, validates the configuration and reloads the service.
#
# Description:
# - Removes the packaged default vhost (idempotent, unlike `unlink`)
# - Links the site from sites-available into sites-enabled
# - Runs `nginx -t` and aborts before a broken config reaches a running service
# - Enables the unit so nginx survives a reboot, then restarts it via
# safe_service_restart so a failed start is actually reported
#
# Variables:
# $1 - site name, has to exist as /etc/nginx/sites-available/<name>
#
# Usage:
# cat <<EOF >/etc/nginx/sites-available/myapp
# ...
# EOF
# nginx_enable_site myapp
# ------------------------------------------------------------------------------
nginx_enable_site() {
local site="${1:-}"
if [[ -z "$site" ]]; then
msg_error "nginx_enable_site: no site name given"
return 1
fi
if [[ ! -f "/etc/nginx/sites-available/${site}" ]]; then
msg_error "nginx site config not found: /etc/nginx/sites-available/${site}"
return 1
fi
rm -f /etc/nginx/sites-enabled/default /etc/nginx/sites-available/default
ln -sf "/etc/nginx/sites-available/${site}" "/etc/nginx/sites-enabled/${site}"
if ! $STD nginx -t; then
msg_error "nginx configuration test failed for site '${site}'"
return 1
fi
$STD systemctl enable -q nginx
safe_service_restart nginx
}
# ------------------------------------------------------------------------------
# Installs or upgrades PostgreSQL and optional extensions/modules.
#
@@ -0,0 +1,6 @@
__ __ __ __ __ __ __ __
____ ______/ /___ ______ _/ / / /_ __ ______/ /___ ____ / /_ ____ _________ ____ ___ ___ / /_/ /_ ___ __ _______ ___ _ ______ ____ _____/ /____ _____
/ __ `/ ___/ __/ / / / __ `/ /_____/ __ \/ / / / __ / __ `/ _ \/ __/_____/ __ \/ ___/ __ \/ __ `__ \/ _ \/ __/ __ \/ _ \/ / / / ___/_____/ _ \| |/_/ __ \/ __ \/ ___/ __/ _ \/ ___/
/ /_/ / /__/ /_/ /_/ / /_/ / /_____/ /_/ / /_/ / /_/ / /_/ / __/ /_/_____/ /_/ / / / /_/ / / / / / / __/ /_/ / / / __/ /_/ (__ )_____/ __/> </ /_/ / /_/ / / / /_/ __/ /
\__,_/\___/\__/\__,_/\__,_/_/ /_.___/\__,_/\__,_/\__, /\___/\__/ / .___/_/ \____/_/ /_/ /_/\___/\__/_/ /_/\___/\__,_/____/ \___/_/|_/ .___/\____/_/ \__/\___/_/
/____/ /_/ /_/