133 lines
3.8 KiB
Bash
133 lines
3.8 KiB
Bash
#!/bin/bash
|
|
#
|
|
# Matrix Service
|
|
|
|
PATH=$HOME/.docker/cli-plugins:/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin
|
|
|
|
config_matrix() {
|
|
echo -ne "\n* Configuring /federated/apps/matrix container.."
|
|
spin &
|
|
SPINPID=$!
|
|
|
|
if [ ! -d "/federated/apps/matrix" ]; then
|
|
mkdir -p /federated/apps/matrix/data/matrix &> /dev/null
|
|
cp -rf /federated/apps/dns/data/etc/letsencrypt/archive/$DOMAIN/*.pem /federated/apps/matrix/data/matrix
|
|
chmod 644 /federated/apps/matrix/data/matrix/*.pem
|
|
fi
|
|
|
|
DOMAIN_ARRAY=(${DOMAIN//./ })
|
|
DOMAIN_FIRST=${DOMAIN_ARRAY[0]}
|
|
DOMAIN_LAST=${DOMAIN_ARRAY[1]}
|
|
|
|
cat > /federated/apps/matrix/docker-compose.yml <<EOF
|
|
version: '3.7'
|
|
|
|
services:
|
|
matrix:
|
|
image: matrixdotorg/synapse:\${IMAGE_VERSION}
|
|
container_name: matrix
|
|
hostname: matrix.$DOMAIN
|
|
domainname: $DOMAIN
|
|
restart: always
|
|
networks:
|
|
federated:
|
|
ipv4_address: 172.99.0.17
|
|
volumes:
|
|
- ./data/matrix:/data
|
|
env_file:
|
|
- ./.env
|
|
|
|
networks:
|
|
federated:
|
|
external: true
|
|
EOF
|
|
|
|
cat > /federated/apps/matrix/.env <<EOF
|
|
IMAGE_VERSION="v1.75.0"
|
|
VIRTUAL_PROTO=http
|
|
VIRTUAL_PORT=8008
|
|
VIRTUAL_HOST=matrix.$DOMAIN
|
|
EOF
|
|
chmod 600 /federated/apps/matrix/.env
|
|
|
|
# Generate the matrix homeserver.yaml file
|
|
docker run -it --rm -v "/federated/apps/matrix/data/matrix:/data" -e SYNAPSE_SERVER_NAME=matrix.$DOMAIN -e SYNAPSE_REPORT_STATS=yes matrixdotorg/synapse:latest generate &> /dev/null
|
|
[ $? -ne 0 ] && fail "Couldn't run docker matrixdotorg/synapse:latest generate"
|
|
|
|
# Take out default Sqlite database config
|
|
sed -i 's!database: /data/homeserver.db!!g' /federated/apps/matrix/data/matrix/homeserver.yaml
|
|
sed -i 's!database:!!g' /federated/apps/matrix/data/matrix/homeserver.yaml
|
|
sed -i 's!name: sqlite3!!g' /federated/apps/matrix/data/matrix/homeserver.yaml
|
|
sed -i 's!args:!!g' /federated/apps/matrix/data/matrix/homeserver.yaml
|
|
|
|
# Insert our Postgres and LDAP config
|
|
cat >> /federated/apps/matrix/data/matrix/homeserver.yaml <<EOF
|
|
|
|
database:
|
|
name: psycopg2
|
|
args:
|
|
user: matrix
|
|
password: $MATRIX_SECRET
|
|
host: postgresql.$DOMAIN
|
|
database: matrix
|
|
cp_min: 5
|
|
cp_max: 10
|
|
modules:
|
|
- module: "ldap_auth_provider.LdapAuthProviderModule"
|
|
config:
|
|
enabled: true
|
|
uri: "ldaps://ldap.$DOMAIN:636"
|
|
start_tls: true
|
|
base: "dc=$DOMAIN_FIRST,dc=$DOMAIN_LAST"
|
|
attributes:
|
|
uid: "cn"
|
|
mail: "mail"
|
|
name: "givenName"
|
|
bind_dn: cn=admin,dc=$DOMAIN_FIRST,dc=$DOMAIN_LAST
|
|
bind_password: $LDAP_SECRET
|
|
tls_options:
|
|
validate: true
|
|
local_certificate_file: /data/fullchain1.pem
|
|
local_private_key_file: /data/privkey1.pem
|
|
EOF
|
|
|
|
kill -9 $SPINPID &> /dev/null
|
|
echo -ne "done."
|
|
}
|
|
|
|
start_matrix() {
|
|
# Start /federated/apps/matrix with output to /dev/null
|
|
echo -ne "\n* Starting /federated/apps/matrix service.."
|
|
spin &
|
|
SPINPID=$!
|
|
|
|
if [ $DEBUG ]; then
|
|
# Start /federated/apps/matrix with output to console for debug
|
|
docker-compose -f /federated/apps/matrix/docker-compose.yml -p matrix up
|
|
[ $? -eq 0 ] && echo -ne "done.\n" || fail "There was a problem starting service /federated/apps/matrix"
|
|
else
|
|
docker-compose -f /federated/apps/matrix/docker-compose.yml -p matrix up -d &> /dev/null
|
|
|
|
# Keep trying matrix port 8008 to make sure it's up
|
|
# before we proceed
|
|
RETRY="30"
|
|
while [ $RETRY -gt 0 ]; do
|
|
nc -z 172.99.0.17 8008 &> /dev/null
|
|
if [ $? -eq 0 ]; then
|
|
break
|
|
else
|
|
if [ "$RETRY" == 1 ]; then
|
|
docker-compose -f /federated/apps/matrix/docker-compose.yml -p matrix down &> /dev/null
|
|
kill -9 $SPINPID &> /dev/null
|
|
fail "There was a problem starting service /federated/apps/matrix\nCheck the output of 'docker logs matrix' or turn on\ndebug with -d"
|
|
fi
|
|
((RETRY--))
|
|
sleep 7
|
|
fi
|
|
done
|
|
fi
|
|
|
|
kill -9 $SPINPID &> /dev/null
|
|
echo -ne "done."
|
|
}
|