docker-entrypoint.sh 4.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115
  1. #!/bin/bash
  2. function array_by_comma { local IFS=","; echo "$*"; }
  3. # Wait for containers
  4. while ! mysqladmin status --socket=/var/run/mysqld/mysqld.sock -u${DBUSER} -p${DBPASS} --silent; do
  5. echo "Waiting for SQL..."
  6. sleep 2
  7. done
  8. until [[ $(redis-cli -h redis-mailcow PING) == "PONG" ]]; do
  9. echo "Waiting for Redis..."
  10. sleep 2
  11. done
  12. # Set a default release format
  13. if [[ -z $(redis-cli --raw -h redis-mailcow GET Q_RELEASE_FORMAT) ]]; then
  14. redis-cli --raw -h redis-mailcow SET Q_RELEASE_FORMAT raw
  15. fi
  16. # Set max age of q items - if unset
  17. if [[ -z $(redis-cli --raw -h redis-mailcow GET Q_MAX_AGE) ]]; then
  18. redis-cli --raw -h redis-mailcow SET Q_MAX_AGE 365
  19. fi
  20. # Check of mysql_upgrade
  21. CONTAINER_ID=
  22. # Todo: Better check if upgrade failed
  23. # This can happen due to a broken sogo_view
  24. [ -s /mysql_upgrade_loop ] && SQL_LOOP_C=$(cat /mysql_upgrade_loop)
  25. [ -z ${SQL_LOOP_C} ] && SQL_LOOP_C=0
  26. until [[ ! -z "${CONTAINER_ID}" ]] && [[ "${CONTAINER_ID}" =~ ^[[:alnum:]]*$ ]]; do
  27. CONTAINER_ID=$(curl --silent --insecure https://dockerapi/containers/json | jq -r ".[] | {name: .Config.Labels[\"com.docker.compose.service\"], id: .Id}" 2> /dev/null | jq -rc "select( .name | tostring | contains(\"mysql-mailcow\")) | .id" 2> /dev/null)
  28. done
  29. echo "MySQL @ ${CONTAINER_ID}"
  30. SQL_UPGRADE_RETURN=$(curl --silent --insecure -XPOST https://dockerapi/containers/${CONTAINER_ID}/exec -d '{"cmd":"system", "task":"mysql_upgrade"}' --silent -H 'Content-type: application/json' | jq -r .type)
  31. if [[ ${SQL_UPGRADE_RETURN} == 'warning' ]]; then
  32. sleep 2
  33. if [ ${SQL_LOOP_C} -lt 2 ]; then
  34. echo $((SQL_LOOP_C+1)) > /mysql_upgrade_loop
  35. echo "MySQL applied an upgrade"
  36. POSTFIX=($(curl --silent --insecure https://dockerapi/containers/json | jq -r '.[] | {name: .Config.Labels["com.docker.compose.service"], id: .Id}' | jq -rc 'select( .name | tostring | contains("postfix-mailcow")) | .id' | tr "\n" " "))
  37. if [[ -z ${POSTFIX} ]]; then
  38. echo "Could not determine Postfix container ID, skipping Postfix restart."
  39. else
  40. echo "Restarting Postfix"
  41. curl -X POST --silent --insecure https://dockerapi/containers/${POSTFIX}/restart | jq -r '.msg'
  42. echo "Sleeping 10 seconds..."
  43. sleep 10
  44. fi
  45. echo "Restarting PHP-FPM, bye"
  46. exit 1
  47. else
  48. rm /mysql_upgrade_loop
  49. echo "MySQL upgrade was not applied previously, skipping. Restart php-fpm-mailcow to retry or run mysql_upgrade manually."
  50. while ! mysqladmin status --socket=/var/run/mysqld/mysqld.sock -u${DBUSER} -p${DBPASS} --silent; do
  51. echo "Waiting for SQL to return..."
  52. sleep 2
  53. done
  54. fi
  55. else
  56. echo "MySQL is up-to-date"
  57. fi
  58. # Trigger db init
  59. echo "Running DB init..."
  60. php -c /usr/local/etc/php -f /web/inc/init_db.inc.php
  61. # Migrate domain map
  62. declare -a DOMAIN_ARR
  63. redis-cli -h redis-mailcow DEL DOMAIN_MAP
  64. while read line
  65. do
  66. DOMAIN_ARR+=("$line")
  67. done < <(mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} -e "SELECT domain FROM domain" -Bs)
  68. while read line
  69. do
  70. DOMAIN_ARR+=("$line")
  71. done < <(mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} -e "SELECT alias_domain FROM alias_domain" -Bs)
  72. if [[ ! -z ${DOMAIN_ARR} ]]; then
  73. for domain in "${DOMAIN_ARR[@]}"; do
  74. redis-cli -h redis-mailcow HSET DOMAIN_MAP ${domain} 1
  75. done
  76. fi
  77. # Set API options if env vars are not empty
  78. if [[ ${API_ALLOW_FROM} != "invalid" ]] && \
  79. [[ ${API_KEY} != "invalid" ]] && \
  80. [[ ! -z ${API_KEY} ]] && \
  81. [[ ! -z ${API_ALLOW_FROM} ]]; then
  82. IFS=',' read -r -a API_ALLOW_FROM_ARR <<< "${API_ALLOW_FROM}"
  83. declare -a VALIDATED_API_ALLOW_FROM_ARR
  84. REGEX_IP6='^([0-9a-fA-F]{0,4}:){1,7}[0-9a-fA-F]{0,4}$'
  85. REGEX_IP4='^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+$'
  86. for IP in "${API_ALLOW_FROM_ARR[@]}"; do
  87. if [[ ${IP} =~ ${REGEX_IP6} ]] || [[ ${IP} =~ ${REGEX_IP4} ]]; then
  88. VALIDATED_API_ALLOW_FROM_ARR+=("${IP}")
  89. fi
  90. done
  91. VALIDATED_IPS=$(array_by_comma ${VALIDATED_API_ALLOW_FROM_ARR[*]})
  92. if [[ ! -z ${VALIDATED_IPS} ]]; then
  93. mysql --socket=/var/run/mysqld/mysqld.sock -u ${DBUSER} -p${DBPASS} ${DBNAME} << EOF
  94. DELETE FROM api;
  95. INSERT INTO api (api_key, active, allow_from) VALUES ("${API_KEY}", "1", "${VALIDATED_IPS}");
  96. EOF
  97. fi
  98. fi
  99. exec "$@"