backup_and_restore.sh 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371
  1. #!/usr/bin/env bash
  2. DEBIAN_DOCKER_IMAGE="debian:bullseye-slim"
  3. if [[ ! -z ${MAILCOW_BACKUP_LOCATION} ]]; then
  4. BACKUP_LOCATION="${MAILCOW_BACKUP_LOCATION}"
  5. fi
  6. if [[ ! ${1} =~ (backup|restore) ]]; then
  7. echo "First parameter needs to be 'backup' or 'restore'"
  8. exit 1
  9. fi
  10. if [[ ${1} == "backup" && ! ${2} =~ (crypt|vmail|redis|rspamd|postfix|mysql|all|--delete-days) ]]; then
  11. echo "Second parameter needs to be 'vmail', 'crypt', 'redis', 'rspamd', 'postfix', 'mysql', 'all' or '--delete-days'"
  12. exit 1
  13. fi
  14. if [[ -z ${BACKUP_LOCATION} ]]; then
  15. while [[ -z ${BACKUP_LOCATION} ]]; do
  16. read -ep "Backup location (absolute path, starting with /): " BACKUP_LOCATION
  17. done
  18. fi
  19. if [[ ! ${BACKUP_LOCATION} =~ ^/ ]]; then
  20. echo "Backup directory needs to be given as absolute path (starting with /)."
  21. exit 1
  22. fi
  23. if [[ -f ${BACKUP_LOCATION} ]]; then
  24. echo "${BACKUP_LOCATION} is a file!"
  25. exit 1
  26. fi
  27. if [[ ! -d ${BACKUP_LOCATION} ]]; then
  28. echo "${BACKUP_LOCATION} is not a directory"
  29. read -p "Create it now? [y|N] " CREATE_BACKUP_LOCATION
  30. if [[ ! ${CREATE_BACKUP_LOCATION,,} =~ ^(yes|y)$ ]]; then
  31. exit 1
  32. else
  33. mkdir -p ${BACKUP_LOCATION}
  34. chmod 755 ${BACKUP_LOCATION}
  35. fi
  36. else
  37. if [[ ${1} == "backup" ]] && [[ -z $(echo $(stat -Lc %a ${BACKUP_LOCATION}) | grep -oE '[0-9][0-9][5-7]') ]]; then
  38. echo "${BACKUP_LOCATION} is not write-able for others, that's required for a backup."
  39. exit 1
  40. fi
  41. fi
  42. BACKUP_LOCATION=$(echo ${BACKUP_LOCATION} | sed 's#/$##')
  43. SCRIPT_DIR="$( cd "$( dirname "${BASH_SOURCE[0]}" )" && pwd )"
  44. COMPOSE_FILE=${SCRIPT_DIR}/../docker-compose.yml
  45. ENV_FILE=${SCRIPT_DIR}/../.env
  46. if [ ! -f ${COMPOSE_FILE} ]; then
  47. echo "Compose file not found"
  48. exit 1
  49. fi
  50. if [ ! -f ${ENV_FILE} ]; then
  51. echo "Environment file not found"
  52. exit 1
  53. fi
  54. echo "Using ${BACKUP_LOCATION} as backup/restore location."
  55. echo
  56. source ${SCRIPT_DIR}/../mailcow.conf
  57. if [[ -z ${COMPOSE_PROJECT_NAME} ]]; then
  58. echo "Could not determine compose project name"
  59. exit 1
  60. else
  61. echo "Found project name ${COMPOSE_PROJECT_NAME}"
  62. CMPS_PRJ=$(echo ${COMPOSE_PROJECT_NAME} | tr -cd "[0-9A-Za-z-_]")
  63. fi
  64. echo "checking docker compose version...";
  65. if docker compose >/dev/null 2>&1; then
  66. echo -e "\e[32mFound Compose v2!\e[0m"
  67. COMPOSE_COMMAND="docker compose"
  68. elif docker-compose version --short | grep -m1 "^2" > /dev/null 2>&1; then
  69. echo -e "\e[32mFound Compose v2!\e[0m"
  70. COMPOSE_COMMAND="docker-compose"
  71. elif docker-compose version --short | grep -m1 "^1" > /dev/null 2>&1; then
  72. echo -e "\e[33mWARN: Your machine is using Docker-Compose v1!\e[0m"
  73. echo -e "\e[33mmailcow will drop the Docker-Compose v1 Support in December 2022\e[0m"
  74. echo -e "\e[33mPlease consider a upgrade to Docker-Compose v2.\e[0m"
  75. echo
  76. echo
  77. echo -e "\e[33mContinuing...\e[0m"
  78. sleep 3
  79. COMPOSE_COMMAND="docker-compose"
  80. else
  81. echo -e "\e[31mCannot find Docker-Compose v1 or v2 on your System. Please install Docker-Compose v2 and re-run the Script.\e[0m"
  82. exit 1
  83. fi
  84. if grep --help 2>&1 | head -n 1 | grep -q -i "busybox"; then
  85. >&2 echo -e "\e[31mBusyBox grep detected on local system, please install GNU grep\e[0m"
  86. exit 1
  87. fi
  88. function backup() {
  89. DATE=$(date +"%Y-%m-%d-%H-%M-%S")
  90. mkdir -p "${BACKUP_LOCATION}/mailcow-${DATE}"
  91. chmod 755 "${BACKUP_LOCATION}/mailcow-${DATE}"
  92. cp "${SCRIPT_DIR}/../mailcow.conf" "${BACKUP_LOCATION}/mailcow-${DATE}"
  93. while (( "$#" )); do
  94. case "$1" in
  95. vmail|all)
  96. docker run --name mailcow-backup --rm \
  97. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  98. -v $(docker volume ls -qf name=^${CMPS_PRJ}_vmail-vol-1$):/vmail:ro,z \
  99. ${DEBIAN_DOCKER_IMAGE} /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable" -Pcvpf /backup/backup_vmail.tar.gz /vmail
  100. ;;&
  101. crypt|all)
  102. docker run --name mailcow-backup --rm \
  103. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  104. -v $(docker volume ls -qf name=^${CMPS_PRJ}_crypt-vol-1$):/crypt:ro,z \
  105. ${DEBIAN_DOCKER_IMAGE} /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable" -Pcvpf /backup/backup_crypt.tar.gz /crypt
  106. ;;&
  107. redis|all)
  108. docker exec $(docker ps -qf name=redis-mailcow) redis-cli save
  109. docker run --name mailcow-backup --rm \
  110. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  111. -v $(docker volume ls -qf name=^${CMPS_PRJ}_redis-vol-1$):/redis:ro,z \
  112. ${DEBIAN_DOCKER_IMAGE} /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable" -Pcvpf /backup/backup_redis.tar.gz /redis
  113. ;;&
  114. rspamd|all)
  115. docker run --name mailcow-backup --rm \
  116. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  117. -v $(docker volume ls -qf name=^${CMPS_PRJ}_rspamd-vol-1$):/rspamd:ro,z \
  118. ${DEBIAN_DOCKER_IMAGE} /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable" -Pcvpf /backup/backup_rspamd.tar.gz /rspamd
  119. ;;&
  120. postfix|all)
  121. docker run --name mailcow-backup --rm \
  122. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  123. -v $(docker volume ls -qf name=^${CMPS_PRJ}_postfix-vol-1$):/postfix:ro,z \
  124. ${DEBIAN_DOCKER_IMAGE} /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable" -Pcvpf /backup/backup_postfix.tar.gz /postfix
  125. ;;&
  126. mysql|all)
  127. SQLIMAGE=$(grep -iEo '(mysql|mariadb)\:.+' ${COMPOSE_FILE})
  128. if [[ -z "${SQLIMAGE}" ]]; then
  129. echo "Could not determine SQL image version, skipping backup..."
  130. shift
  131. continue
  132. else
  133. echo "Using SQL image ${SQLIMAGE}, starting..."
  134. docker run --name mailcow-backup --rm \
  135. --network $(docker network ls -qf name=^${CMPS_PRJ}_mailcow-network$) \
  136. -v $(docker volume ls -qf name=^${CMPS_PRJ}_mysql-vol-1$):/var/lib/mysql/:ro,z \
  137. -t --entrypoint= \
  138. --sysctl net.ipv6.conf.all.disable_ipv6=1 \
  139. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup:z \
  140. ${SQLIMAGE} /bin/sh -c "mariabackup --host mysql --user root --password ${DBROOT} --backup --rsync --target-dir=/backup_mariadb ; \
  141. mariabackup --prepare --target-dir=/backup_mariadb ; \
  142. chown -R 999:999 /backup_mariadb ; \
  143. /bin/tar --warning='no-file-ignored' --use-compress-program='gzip --rsyncable' -Pcvpf /backup/backup_mariadb.tar.gz /backup_mariadb ;"
  144. fi
  145. ;;&
  146. --delete-days)
  147. shift
  148. if [[ "${1}" =~ ^[0-9]+$ ]]; then
  149. find ${BACKUP_LOCATION}/mailcow-* -maxdepth 0 -mmin +$((${1}*60*24)) -exec rm -rvf {} \;
  150. else
  151. echo "Parameter of --delete-days is not a number."
  152. fi
  153. ;;
  154. esac
  155. shift
  156. done
  157. }
  158. function restore() {
  159. echo
  160. echo "Stopping watchdog-mailcow..."
  161. docker stop $(docker ps -qf name=watchdog-mailcow)
  162. echo
  163. RESTORE_LOCATION="${1}"
  164. shift
  165. while (( "$#" )); do
  166. case "$1" in
  167. vmail)
  168. docker stop $(docker ps -qf name=dovecot-mailcow)
  169. docker run -it --name mailcow-backup --rm \
  170. -v ${RESTORE_LOCATION}:/backup:z \
  171. -v $(docker volume ls -qf name=^${CMPS_PRJ}_vmail-vol-1$):/vmail:z \
  172. ${DEBIAN_DOCKER_IMAGE} /bin/tar -Pxvzf /backup/backup_vmail.tar.gz
  173. docker start $(docker ps -aqf name=dovecot-mailcow)
  174. echo
  175. echo "In most cases it is not required to run a full resync, you can run the command printed below at any time after testing wether the restore process broke a mailbox:"
  176. echo
  177. echo "docker exec $(docker ps -qf name=dovecot-mailcow) doveadm force-resync -A '*'"
  178. echo
  179. read -p "Force a resync now? [y|N] " FORCE_RESYNC
  180. if [[ ${FORCE_RESYNC,,} =~ ^(yes|y)$ ]]; then
  181. docker exec $(docker ps -qf name=dovecot-mailcow) doveadm force-resync -A '*'
  182. else
  183. echo "OK, skipped."
  184. fi
  185. ;;
  186. redis)
  187. docker stop $(docker ps -qf name=redis-mailcow)
  188. docker run -it --name mailcow-backup --rm \
  189. -v ${RESTORE_LOCATION}:/backup:z \
  190. -v $(docker volume ls -qf name=^${CMPS_PRJ}_redis-vol-1$):/redis:z \
  191. ${DEBIAN_DOCKER_IMAGE} /bin/tar -Pxvzf /backup/backup_redis.tar.gz
  192. docker start $(docker ps -aqf name=redis-mailcow)
  193. ;;
  194. crypt)
  195. docker stop $(docker ps -qf name=dovecot-mailcow)
  196. docker run -it --name mailcow-backup --rm \
  197. -v ${RESTORE_LOCATION}:/backup:z \
  198. -v $(docker volume ls -qf name=^${CMPS_PRJ}_crypt-vol-1$):/crypt:z \
  199. ${DEBIAN_DOCKER_IMAGE} /bin/tar -Pxvzf /backup/backup_crypt.tar.gz
  200. docker start $(docker ps -aqf name=dovecot-mailcow)
  201. ;;
  202. rspamd)
  203. docker stop $(docker ps -qf name=rspamd-mailcow)
  204. docker run -it --name mailcow-backup --rm \
  205. -v ${RESTORE_LOCATION}:/backup:z \
  206. -v $(docker volume ls -qf name=^${CMPS_PRJ}_rspamd-vol-1$):/rspamd:z \
  207. ${DEBIAN_DOCKER_IMAGE} /bin/tar -Pxvzf /backup/backup_rspamd.tar.gz
  208. docker start $(docker ps -aqf name=rspamd-mailcow)
  209. ;;
  210. postfix)
  211. docker stop $(docker ps -qf name=postfix-mailcow)
  212. docker run -it --name mailcow-backup --rm \
  213. -v ${RESTORE_LOCATION}:/backup:z \
  214. -v $(docker volume ls -qf name=^${CMPS_PRJ}_postfix-vol-1$):/postfix:z \
  215. ${DEBIAN_DOCKER_IMAGE} /bin/tar -Pxvzf /backup/backup_postfix.tar.gz
  216. docker start $(docker ps -aqf name=postfix-mailcow)
  217. ;;
  218. mysql|mariadb)
  219. SQLIMAGE=$(grep -iEo '(mysql|mariadb)\:.+' ${COMPOSE_FILE})
  220. if [[ -z "${SQLIMAGE}" ]]; then
  221. echo "Could not determine SQL image version, skipping restore..."
  222. shift
  223. continue
  224. elif [ ! -f "${RESTORE_LOCATION}/mailcow.conf" ]; then
  225. echo "Could not find the corresponding mailcow.conf in ${RESTORE_LOCATION}, skipping restore."
  226. echo "If you lost that file, copy the last working mailcow.conf file to ${RESTORE_LOCATION} and restart the restore process."
  227. shift
  228. continue
  229. else
  230. read -p "mailcow will be stopped and the currently active mailcow.conf will be modified to use the DB parameters found in ${RESTORE_LOCATION}/mailcow.conf - do you want to proceed? [Y|n] " MYSQL_STOP_MAILCOW
  231. if [[ ${MYSQL_STOP_MAILCOW,,} =~ ^(no|n|N)$ ]]; then
  232. echo "OK, skipped."
  233. shift
  234. continue
  235. else
  236. echo "Stopping mailcow..."
  237. ${COMPOSE_COMMAND} -f ${COMPOSE_FILE} --env-file ${ENV_FILE} down
  238. fi
  239. #docker stop $(docker ps -qf name=mysql-mailcow)
  240. if [[ -d "${RESTORE_LOCATION}/mysql" ]]; then
  241. docker run --name mailcow-backup --rm \
  242. -v $(docker volume ls -qf name=^${CMPS_PRJ}_mysql-vol-1$):/var/lib/mysql/:rw,z \
  243. --entrypoint= \
  244. -v ${RESTORE_LOCATION}/mysql:/backup:z \
  245. ${SQLIMAGE} /bin/bash -c "shopt -s dotglob ; /bin/rm -rf /var/lib/mysql/* ; rsync -avh --usermap=root:mysql --groupmap=root:mysql /backup/ /var/lib/mysql/"
  246. elif [[ -f "${RESTORE_LOCATION}/backup_mysql.gz" ]]; then
  247. docker run \
  248. -it --name mailcow-backup --rm \
  249. -v $(docker volume ls -qf name=^${CMPS_PRJ}_mysql-vol-1$):/var/lib/mysql/:z \
  250. --entrypoint= \
  251. -u mysql \
  252. -v ${RESTORE_LOCATION}:/backup:z \
  253. ${SQLIMAGE} /bin/sh -c "mysqld --skip-grant-tables & \
  254. until mysqladmin ping; do sleep 3; done && \
  255. echo Restoring... && \
  256. gunzip < backup/backup_mysql.gz | mysql -uroot && \
  257. mysql -uroot -e SHUTDOWN;"
  258. elif [[ -f "${RESTORE_LOCATION}/backup_mariadb.tar.gz" ]]; then
  259. docker run --name mailcow-backup --rm \
  260. -v $(docker volume ls -qf name=^${CMPS_PRJ}_mysql-vol-1$):/backup_mariadb/:rw,z \
  261. --entrypoint= \
  262. -v ${RESTORE_LOCATION}:/backup:z \
  263. ${SQLIMAGE} /bin/bash -c "shopt -s dotglob ; \
  264. /bin/rm -rf /backup_mariadb/* ; \
  265. /bin/tar -Pxvzf /backup/backup_mariadb.tar.gz"
  266. fi
  267. echo "Modifying mailcow.conf..."
  268. source ${RESTORE_LOCATION}/mailcow.conf
  269. sed -i --follow-symlinks "/DBNAME/c\DBNAME=${DBNAME}" ${SCRIPT_DIR}/../mailcow.conf
  270. sed -i --follow-symlinks "/DBUSER/c\DBUSER=${DBUSER}" ${SCRIPT_DIR}/../mailcow.conf
  271. sed -i --follow-symlinks "/DBPASS/c\DBPASS=${DBPASS}" ${SCRIPT_DIR}/../mailcow.conf
  272. sed -i --follow-symlinks "/DBROOT/c\DBROOT=${DBROOT}" ${SCRIPT_DIR}/../mailcow.conf
  273. source ${SCRIPT_DIR}/../mailcow.conf
  274. echo "Starting mailcow..."
  275. ${COMPOSE_COMMAND} -f ${COMPOSE_FILE} --env-file ${ENV_FILE} up -d
  276. #docker start $(docker ps -aqf name=mysql-mailcow)
  277. fi
  278. ;;
  279. esac
  280. shift
  281. done
  282. echo
  283. echo "Starting watchdog-mailcow..."
  284. docker start $(docker ps -aqf name=watchdog-mailcow)
  285. }
  286. if [[ ${1} == "backup" ]]; then
  287. backup ${@,,}
  288. elif [[ ${1} == "restore" ]]; then
  289. i=1
  290. declare -A FOLDER_SELECTION
  291. if [[ $(find ${BACKUP_LOCATION}/mailcow-* -maxdepth 1 -type d 2> /dev/null| wc -l) -lt 1 ]]; then
  292. echo "Selected backup location has no subfolders"
  293. exit 1
  294. fi
  295. for folder in $(ls -d ${BACKUP_LOCATION}/mailcow-*/); do
  296. echo "[ ${i} ] - ${folder}"
  297. FOLDER_SELECTION[${i}]="${folder}"
  298. ((i++))
  299. done
  300. echo
  301. input_sel=0
  302. while [[ ${input_sel} -lt 1 || ${input_sel} -gt ${i} ]]; do
  303. read -p "Select a restore point: " input_sel
  304. done
  305. i=1
  306. echo
  307. declare -A FILE_SELECTION
  308. RESTORE_POINT="${FOLDER_SELECTION[${input_sel}]}"
  309. if [[ -z $(find "${FOLDER_SELECTION[${input_sel}]}" -maxdepth 1 \( -type d -o -type f \) -regex ".*\(redis\|rspamd\|mariadb\|mysql\|crypt\|vmail\|postfix\).*") ]]; then
  310. echo "No datasets found"
  311. exit 1
  312. fi
  313. echo "[ 0 ] - all"
  314. # find all files in folder with *.gz extension, print their base names, remove backup_, remove .tar (if present), remove .gz
  315. FILE_SELECTION[0]=$(find "${FOLDER_SELECTION[${input_sel}]}" -maxdepth 1 \( -type d -o -type f \) \( -name '*.gz' -o -name 'mysql' \) -printf '%f\n' | sed 's/backup_*//' | sed 's/\.[^.]*$//' | sed 's/\.[^.]*$//')
  316. for file in $(ls -f "${FOLDER_SELECTION[${input_sel}]}"); do
  317. if [[ ${file} =~ vmail ]]; then
  318. echo "[ ${i} ] - Mail directory (/var/vmail)"
  319. FILE_SELECTION[${i}]="vmail"
  320. ((i++))
  321. elif [[ ${file} =~ crypt ]]; then
  322. echo "[ ${i} ] - Crypt data"
  323. FILE_SELECTION[${i}]="crypt"
  324. ((i++))
  325. elif [[ ${file} =~ redis ]]; then
  326. echo "[ ${i} ] - Redis DB"
  327. FILE_SELECTION[${i}]="redis"
  328. ((i++))
  329. elif [[ ${file} =~ rspamd ]]; then
  330. echo "[ ${i} ] - Rspamd data"
  331. FILE_SELECTION[${i}]="rspamd"
  332. ((i++))
  333. elif [[ ${file} =~ postfix ]]; then
  334. echo "[ ${i} ] - Postfix data"
  335. FILE_SELECTION[${i}]="postfix"
  336. ((i++))
  337. elif [[ ${file} =~ mysql ]] || [[ ${file} =~ mariadb ]]; then
  338. echo "[ ${i} ] - SQL DB"
  339. FILE_SELECTION[${i}]="mysql"
  340. ((i++))
  341. fi
  342. done
  343. echo
  344. input_sel=-1
  345. while [[ ${input_sel} -lt 0 || ${input_sel} -gt ${i} ]]; do
  346. read -p "Select a dataset to restore: " input_sel
  347. done
  348. echo "Restoring ${FILE_SELECTION[${input_sel}]} from ${RESTORE_POINT}..."
  349. restore "${RESTORE_POINT}" ${FILE_SELECTION[${input_sel}]}
  350. fi