docker-entrypoint.sh 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169
  1. #!/bin/bash
  2. function array_by_comma { local IFS=","; echo "$*"; }
  3. # Wait for containers
  4. while ! mysqladmin status --socket=/var/run/mysqld/mysqld.sock -u${DBUSER} -p${DBPASS} --silent; do
  5. echo "Waiting for SQL..."
  6. sleep 2
  7. done
  8. until [[ $(redis-cli -h redis-mailcow PING) == "PONG" ]]; do
  9. echo "Waiting for Redis..."
  10. sleep 2
  11. done
  12. # Set a default release format
  13. if [[ -z $(redis-cli --raw -h redis-mailcow GET Q_RELEASE_FORMAT) ]]; then
  14. redis-cli --raw -h redis-mailcow SET Q_RELEASE_FORMAT raw
  15. fi
  16. # Set max age of q items - if unset
  17. if [[ -z $(redis-cli --raw -h redis-mailcow GET Q_MAX_AGE) ]]; then
  18. redis-cli --raw -h redis-mailcow SET Q_MAX_AGE 365
  19. fi
  20. # Check mysql_upgrade
  21. CONTAINER_ID=
  22. until [[ ! -z "${CONTAINER_ID}" ]] && [[ "${CONTAINER_ID}" =~ ^[[:alnum:]]*$ ]]; do
  23. CONTAINER_ID=$(curl --silent --insecure https://dockerapi/containers/json | jq -r ".[] | {name: .Config.Labels[\"com.docker.compose.service\"], id: .Id}" 2> /dev/null | jq -rc "select( .name | tostring | contains(\"mysql-mailcow\")) | .id" 2> /dev/null)
  24. done
  25. echo "MySQL @ ${CONTAINER_ID}"
  26. SQL_LOOP_C=0
  27. SQL_CHANGED=0
  28. until [[ ${SQL_UPGRADE_STATUS} == 'success' ]]; do
  29. if [ ${SQL_LOOP_C} -gt 4 ]; then
  30. echo "Tried to upgrade MySQL and failed, giving up after ${SQL_LOOP_C} retries and starting container (oops, not good)"
  31. break
  32. fi
  33. SQL_FULL_UPGRADE_RETURN=$(curl --silent --insecure -XPOST https://dockerapi/containers/${CONTAINER_ID}/exec -d '{"cmd":"system", "task":"mysql_upgrade"}' --silent -H 'Content-type: application/json')
  34. SQL_UPGRADE_STATUS=$(echo ${SQL_FULL_UPGRADE_RETURN} | jq -r .type)
  35. SQL_LOOP_C=$((SQL_LOOP_C+1))
  36. echo "SQL upgrade iteration #${SQL_LOOP_C}"
  37. if [[ ${SQL_UPGRADE_STATUS} == 'warning' ]]; then
  38. SQL_CHANGED=1
  39. echo "MySQL applied an upgrade, debug output:"
  40. echo ${SQL_FULL_UPGRADE_RETURN}
  41. sleep 3
  42. while ! mysqladmin status --socket=/var/run/mysqld/mysqld.sock -u${DBUSER} -p${DBPASS} --silent; do
  43. echo "Waiting for SQL to return, please wait"
  44. sleep 2
  45. done
  46. continue
  47. elif [[ ${SQL_UPGRADE_STATUS} == 'success' ]]; then
  48. echo "MySQL is up-to-date - debug output:"
  49. echo ${SQL_FULL_UPGRADE_RETURN}
  50. else
  51. echo "No valid reponse for mysql_upgrade was received, debug output:"
  52. echo ${SQL_FULL_UPGRADE_RETURN}
  53. fi
  54. done
  55. # doing post-installation stuff, if SQL was upgraded
  56. if [ ${SQL_CHANGED} -eq 1 ]; then
  57. POSTFIX=($(curl --silent --insecure https://dockerapi/containers/json | jq -r '.[] | {name: .Config.Labels["com.docker.compose.service"], id: .Id}' | jq -rc 'select( .name | tostring | contains("postfix-mailcow")) | .id' | tr "\n" " "))
  58. if [[ -z ${POSTFIX} ]]; then
  59. echo "Could not determine Postfix container ID, skipping Postfix restart."
  60. else
  61. echo "Restarting Postfix"
  62. curl -X POST --silent --insecure https://dockerapi/containers/${POSTFIX}/restart | jq -r '.msg'
  63. echo "Sleeping 5 seconds..."
  64. sleep 5
  65. fi
  66. fi
  67. # Check mysql tz import
  68. TZ_CHECK=$(mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} -e "SELECT CONVERT_TZ('2019-11-02 23:33:00','Europe/Berlin','UTC') AS time;" -BN 2> /dev/null)
  69. if [[ -z ${TZ_CHECK} ]] || [[ "${TZ_CHECK}" == "NULL" ]]; then
  70. SQL_FULL_TZINFO_IMPORT_RETURN=$(curl --silent --insecure -XPOST https://dockerapi/containers/${CONTAINER_ID}/exec -d '{"cmd":"system", "task":"mysql_tzinfo_to_sql"}' --silent -H 'Content-type: application/json')
  71. echo "MySQL mysql_tzinfo_to_sql - debug output:"
  72. echo ${SQL_FULL_TZINFO_IMPORT_RETURN}
  73. fi
  74. # Trigger db init
  75. echo "Running DB init..."
  76. php -c /usr/local/etc/php -f /web/inc/init_db.inc.php
  77. # Recreating domain map
  78. echo "Rebuilding domain map in Redis..."
  79. declare -a DOMAIN_ARR
  80. redis-cli -h redis-mailcow DEL DOMAIN_MAP > /dev/null
  81. while read line
  82. do
  83. DOMAIN_ARR+=("$line")
  84. done < <(mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} -e "SELECT domain FROM domain" -Bs)
  85. while read line
  86. do
  87. DOMAIN_ARR+=("$line")
  88. done < <(mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} -e "SELECT alias_domain FROM alias_domain" -Bs)
  89. if [[ ! -z ${DOMAIN_ARR} ]]; then
  90. for domain in "${DOMAIN_ARR[@]}"; do
  91. redis-cli -h redis-mailcow HSET DOMAIN_MAP ${domain} 1 > /dev/null
  92. done
  93. fi
  94. # Create dummy for custom overrides of mailcow style
  95. [[ ! -f /web/css/build/0081-custom-mailcow.css ]] && echo '/* Autogenerated by mailcow */' > /web/css/build/0081-custom-mailcow.css
  96. # Set API options if env vars are not empty
  97. if [[ ${API_ALLOW_FROM} != "invalid" ]] && \
  98. [[ ${API_KEY} != "invalid" ]] && \
  99. [[ ! -z ${API_KEY} ]] && \
  100. [[ ! -z ${API_ALLOW_FROM} ]]; then
  101. IFS=',' read -r -a API_ALLOW_FROM_ARR <<< "${API_ALLOW_FROM}"
  102. declare -a VALIDATED_API_ALLOW_FROM_ARR
  103. REGEX_IP6='^([0-9a-fA-F]{0,4}:){1,7}[0-9a-fA-F]{0,4}$'
  104. REGEX_IP4='^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+$'
  105. for IP in "${API_ALLOW_FROM_ARR[@]}"; do
  106. if [[ ${IP} =~ ${REGEX_IP6} ]] || [[ ${IP} =~ ${REGEX_IP4} ]]; then
  107. VALIDATED_API_ALLOW_FROM_ARR+=("${IP}")
  108. fi
  109. done
  110. VALIDATED_IPS=$(array_by_comma ${VALIDATED_API_ALLOW_FROM_ARR[*]})
  111. if [[ ! -z ${VALIDATED_IPS} ]]; then
  112. mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} << EOF
  113. DELETE FROM api;
  114. INSERT INTO api (api_key, active, allow_from) VALUES ("${API_KEY}", "1", "${VALIDATED_IPS}");
  115. EOF
  116. fi
  117. fi
  118. # Create events
  119. mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} << EOF
  120. DROP EVENT IF EXISTS clean_spamalias;
  121. DELIMITER //
  122. CREATE EVENT clean_spamalias
  123. ON SCHEDULE EVERY 1 DAY DO
  124. BEGIN
  125. DELETE FROM spamalias WHERE validity < UNIX_TIMESTAMP();
  126. END;
  127. //
  128. DELIMITER ;
  129. DROP EVENT IF EXISTS clean_oauth2;
  130. DELIMITER //
  131. CREATE EVENT clean_oauth2
  132. ON SCHEDULE EVERY 1 DAY DO
  133. BEGIN
  134. DELETE FROM oauth_refresh_tokens WHERE expires < NOW();
  135. DELETE FROM oauth_access_tokens WHERE expires < NOW();
  136. DELETE FROM oauth_authorization_codes WHERE expires < NOW();
  137. END;
  138. //
  139. DELIMITER ;
  140. EOF
  141. # Run hooks
  142. for file in /hooks/*; do
  143. if [ -x "${file}" ]; then
  144. echo "Running hook ${file}"
  145. "${file}"
  146. fi
  147. done
  148. exec "$@"