backup_and_restore.sh 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275
  1. #!/usr/bin/env bash
  2. if [[ ! -z ${MAILCOW_BACKUP_LOCATION} ]]; then
  3. BACKUP_LOCATION="${MAILCOW_BACKUP_LOCATION}"
  4. fi
  5. if [[ ! ${1} =~ (backup|restore) ]]; then
  6. echo "First parameter needs to be 'backup' or 'restore'"
  7. exit 1
  8. fi
  9. if [[ ${1} == "backup" && ! ${2} =~ (crypt|vmail|redis|rspamd|postfix|mysql|all|--delete-days) ]]; then
  10. echo "Second parameter needs to be 'vmail', 'crypt', 'redis', 'rspamd', 'postfix', 'mysql', 'all' or '--delete-days'"
  11. exit 1
  12. fi
  13. if [[ -z ${BACKUP_LOCATION} ]]; then
  14. while [[ -z ${BACKUP_LOCATION} ]]; do
  15. read -ep "Backup location (absolute path, starting with /): " BACKUP_LOCATION
  16. done
  17. fi
  18. if [[ ! ${BACKUP_LOCATION} =~ ^/ ]]; then
  19. echo "Backup directory needs to be given as absolute path (starting with /)."
  20. exit 1
  21. fi
  22. if [[ -f ${BACKUP_LOCATION} ]]; then
  23. echo "${BACKUP_LOCATION} is a file!"
  24. exit 1
  25. fi
  26. if [[ ! -d ${BACKUP_LOCATION} ]]; then
  27. echo "${BACKUP_LOCATION} is not a directory"
  28. read -p "Create it now? [y|N] " CREATE_BACKUP_LOCATION
  29. if [[ ! ${CREATE_BACKUP_LOCATION,,} =~ ^(yes|y)$ ]]; then
  30. exit 1
  31. else
  32. mkdir -p ${BACKUP_LOCATION}
  33. chmod 755 ${BACKUP_LOCATION}
  34. fi
  35. else
  36. if [[ ${1} == "backup" ]] && [[ -z $(echo $(stat -Lc %a ${BACKUP_LOCATION}) | grep -oE '[0-9][0-9][5-7]') ]]; then
  37. echo "${BACKUP_LOCATION} is not write-able for others, that's required for a backup."
  38. exit 1
  39. fi
  40. fi
  41. BACKUP_LOCATION=$(echo ${BACKUP_LOCATION} | sed 's#/$##')
  42. SCRIPT_DIR="$( cd "$( dirname "${BASH_SOURCE[0]}" )" && pwd )"
  43. COMPOSE_FILE=${SCRIPT_DIR}/../docker-compose.yml
  44. echo "Using ${BACKUP_LOCATION} as backup/restore location."
  45. echo
  46. source ${SCRIPT_DIR}/../mailcow.conf
  47. CMPS_PRJ=$(echo $COMPOSE_PROJECT_NAME | tr -cd "[A-Za-z-_]")
  48. function backup() {
  49. DATE=$(date +"%Y-%m-%d-%H-%M-%S")
  50. mkdir -p "${BACKUP_LOCATION}/mailcow-${DATE}"
  51. chmod 755 "${BACKUP_LOCATION}/mailcow-${DATE}"
  52. cp "${SCRIPT_DIR}/../mailcow.conf" "${BACKUP_LOCATION}/mailcow-${DATE}"
  53. while (( "$#" )); do
  54. case "$1" in
  55. vmail|all)
  56. docker run --rm \
  57. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup \
  58. -v $(docker volume ls -qf name=${CMPS_PRJ}_vmail-vol-1):/vmail:ro \
  59. debian:stretch-slim /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable --best" -Pcvpf /backup/backup_vmail.tar.gz /vmail
  60. ;;&
  61. crypt|all)
  62. docker run --rm \
  63. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup \
  64. -v $(docker volume ls -qf name=${CMPS_PRJ}_crypt-vol-1):/crypt:ro \
  65. debian:stretch-slim /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable --best" -Pcvpf /backup/backup_crypt.tar.gz /crypt
  66. ;;&
  67. redis|all)
  68. docker exec $(docker ps -qf name=redis-mailcow) redis-cli save
  69. docker run --rm \
  70. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup \
  71. -v $(docker volume ls -qf name=${CMPS_PRJ}_redis-vol-1):/redis:ro \
  72. debian:stretch-slim /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable --best" -Pcvpf /backup/backup_redis.tar.gz /redis
  73. ;;&
  74. rspamd|all)
  75. docker run --rm \
  76. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup \
  77. -v $(docker volume ls -qf name=${CMPS_PRJ}_rspamd-vol-1):/rspamd:ro \
  78. debian:stretch-slim /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable --best" -Pcvpf /backup/backup_rspamd.tar.gz /rspamd
  79. ;;&
  80. postfix|all)
  81. docker run --rm \
  82. -v ${BACKUP_LOCATION}/mailcow-${DATE}:/backup \
  83. -v $(docker volume ls -qf name=${CMPS_PRJ}_postfix-vol-1):/postfix:ro \
  84. debian:stretch-slim /bin/tar --warning='no-file-ignored' --use-compress-program="gzip --rsyncable --best" -Pcvpf /backup/backup_postfix.tar.gz /postfix
  85. ;;&
  86. mysql|all)
  87. SQLIMAGE=$(grep -iEo '(mysql|mariadb)\:.+' ${COMPOSE_FILE})
  88. docker run --rm \
  89. --network $(docker network ls -qf name=${CMPS_PRJ}_) \
  90. -v $(docker volume ls -qf name=${CMPS_PRJ}_mysql-vol-1):/var/lib/mysql/:ro \
  91. --entrypoint= \
  92. -v ${BACKUP_LOCATION}/mailcow-${DATE}/mysql:/backup \
  93. ${SQLIMAGE} /bin/sh -c "mariabackup --host mysql --user root --password ${DBROOT} --backup --rsync --target-dir=/backup"
  94. docker run --rm \
  95. --network $(docker network ls -qf name=${CMPS_PRJ}_) \
  96. --entrypoint= \
  97. -v ${BACKUP_LOCATION}/mailcow-${DATE}/mysql:/backup \
  98. ${SQLIMAGE} /bin/sh -c "mariabackup --prepare --target-dir=/backup"
  99. ;;&
  100. --delete-days)
  101. shift
  102. if [[ "${1}" =~ ^[0-9]+$ ]]; then
  103. find ${BACKUP_LOCATION}/* -maxdepth 0 -mmin +$((${1}*60*24)) -exec rm -rvf {} \;
  104. else
  105. echo "Parameter of --delete-days is not a number."
  106. fi
  107. ;;
  108. esac
  109. shift
  110. done
  111. }
  112. function restore() {
  113. docker stop $(docker ps -qf name=watchdog-mailcow)
  114. RESTORE_LOCATION="${1}"
  115. shift
  116. while (( "$#" )); do
  117. case "$1" in
  118. vmail)
  119. docker stop $(docker ps -qf name=dovecot-mailcow)
  120. docker run -it --rm \
  121. -v ${RESTORE_LOCATION}:/backup \
  122. -v $(docker volume ls -qf name=${CMPS_PRJ}_vmail-vol-1):/vmail \
  123. debian:stretch-slim /bin/tar -Pxvzf /backup/backup_vmail.tar.gz
  124. docker start $(docker ps -aqf name=dovecot-mailcow)
  125. echo
  126. echo "In most cases it is not required to run a full resync, you can run the command printed below at any time after testing wether the restore process broke a mailbox:"
  127. echo
  128. echo "docker exec $(docker ps -qf name=dovecot-mailcow) doveadm force-resync -A '*'"
  129. echo
  130. read -p "Force a resync now? [y|N] " FORCE_RESYNC
  131. if [[ ${FORCE_RESYNC,,} =~ ^(yes|y)$ ]]; then
  132. docker exec $(docker ps -qf name=dovecot-mailcow) doveadm force-resync -A '*'
  133. else
  134. echo "OK, skipped."
  135. fi
  136. ;;
  137. redis)
  138. docker stop $(docker ps -qf name=redis-mailcow)
  139. docker run -it --rm \
  140. -v ${RESTORE_LOCATION}:/backup \
  141. -v $(docker volume ls -qf name=${CMPS_PRJ}_redis-vol-1):/redis \
  142. debian:stretch-slim /bin/tar -Pxvzf /backup/backup_redis.tar.gz
  143. docker start $(docker ps -aqf name=redis-mailcow)
  144. ;;
  145. crypt)
  146. docker stop $(docker ps -qf name=dovecot-mailcow)
  147. docker run -it --rm \
  148. -v ${RESTORE_LOCATION}:/backup \
  149. -v $(docker volume ls -qf name=${CMPS_PRJ}_crypt-vol-1):/crypt \
  150. debian:stretch-slim /bin/tar -Pxvzf /backup/backup_crypt.tar.gz
  151. docker start $(docker ps -aqf name=dovecot-mailcow)
  152. ;;
  153. rspamd)
  154. docker stop $(docker ps -qf name=rspamd-mailcow)
  155. docker run -it --rm \
  156. -v ${RESTORE_LOCATION}:/backup \
  157. -v $(docker volume ls -qf name=${CMPS_PRJ}_rspamd-vol-1):/rspamd \
  158. debian:stretch-slim /bin/tar -Pxvzf /backup/backup_rspamd.tar.gz
  159. docker start $(docker ps -aqf name=rspamd-mailcow)
  160. ;;
  161. postfix)
  162. docker stop $(docker ps -qf name=postfix-mailcow)
  163. docker run -it --rm \
  164. -v ${RESTORE_LOCATION}:/backup \
  165. -v $(docker volume ls -qf name=${CMPS_PRJ}_postfix-vol-1):/postfix \
  166. debian:stretch-slim /bin/tar -Pxvzf /backup/backup_postfix.tar.gz
  167. docker start $(docker ps -aqf name=postfix-mailcow)
  168. ;;
  169. mysql)
  170. SQLIMAGE=$(grep -iEo '(mysql|mariadb)\:.+' ${COMPOSE_FILE})
  171. docker stop $(docker ps -qf name=mysql-mailcow)
  172. if [[ -d "${RESTORE_LOCATION}/mysql" ]]; then
  173. docker run --rm \
  174. --network $(docker network ls -qf name=${CMPS_PRJ}_) \
  175. -v $(docker volume ls -qf name=${CMPS_PRJ}_mysql-vol-1):/var/lib/mysql/:rw \
  176. --entrypoint= \
  177. -v ${RESTORE_LOCATION}/mysql:/backup \
  178. ${SQLIMAGE} /bin/bash -c "shopt -s dotglob ; /bin/rm -rf /var/lib/mysql/* ; rsync -avh --usermap=root:mysql --groupmap=root:mysql /backup/ /var/lib/mysql/"
  179. elif [[ -f "${RESTORE_LOCATION}/backup_mysql.gz" ]]; then
  180. docker run \
  181. -it --rm \
  182. -v $(docker volume ls -qf name=${CMPS_PRJ}_mysql-vol-1):/var/lib/mysql/ \
  183. --entrypoint= \
  184. -u mysql \
  185. -v ${RESTORE_LOCATION}:/backup \
  186. ${SQLIMAGE} /bin/sh -c "mysqld --skip-grant-tables & \
  187. until mysqladmin ping; do sleep 3; done && \
  188. echo Restoring... && \
  189. gunzip < backup/backup_mysql.gz | mysql -uroot && \
  190. mysql -uroot -e SHUTDOWN;"
  191. fi
  192. docker start $(docker ps -aqf name=mysql-mailcow)
  193. ;;
  194. esac
  195. shift
  196. done
  197. docker start $(docker ps -aqf name=watchdog-mailcow)
  198. }
  199. if [[ ${1} == "backup" ]]; then
  200. backup ${@,,}
  201. elif [[ ${1} == "restore" ]]; then
  202. i=1
  203. declare -A FOLDER_SELECTION
  204. if [[ $(find ${BACKUP_LOCATION}/mailcow-* -maxdepth 1 -type d 2> /dev/null| wc -l) -lt 1 ]]; then
  205. echo "Selected backup location has no subfolders"
  206. exit 1
  207. fi
  208. for folder in $(ls -d ${BACKUP_LOCATION}/mailcow-*/); do
  209. echo "[ ${i} ] - ${folder}"
  210. FOLDER_SELECTION[${i}]="${folder}"
  211. ((i++))
  212. done
  213. echo
  214. input_sel=0
  215. while [[ ${input_sel} -lt 1 || ${input_sel} -gt ${i} ]]; do
  216. read -p "Select a restore point: " input_sel
  217. done
  218. i=1
  219. echo
  220. declare -A FILE_SELECTION
  221. RESTORE_POINT="${FOLDER_SELECTION[${input_sel}]}"
  222. if [[ -z $(find "${FOLDER_SELECTION[${input_sel}]}" -maxdepth 1 -regex ".*\(redis\|rspamd\|mysql\|crypt\|vmail\|postfix\).*") ]]; then
  223. echo "No datasets found"
  224. exit 1
  225. fi
  226. echo "[ 0 ] - all"
  227. # find all files in folder with *.gz extension, print their base names, remove backup_, remove .tar (if present), remove .gz
  228. FILE_SELECTION[0]=$(find "${FOLDER_SELECTION[${input_sel}]}" -type f -name '*.gz' -printf '%f\n' | sed 's/backup_*//' | sed 's/\.[^.]*$//' | sed 's/\.[^.]*$//')
  229. for file in $(ls -f "${FOLDER_SELECTION[${input_sel}]}"); do
  230. if [[ ${file} =~ vmail ]]; then
  231. echo "[ ${i} ] - Mail directory (/var/vmail)"
  232. FILE_SELECTION[${i}]="vmail"
  233. ((i++))
  234. elif [[ ${file} =~ crypt ]]; then
  235. echo "[ ${i} ] - Crypt data"
  236. FILE_SELECTION[${i}]="crypt"
  237. ((i++))
  238. elif [[ ${file} =~ redis ]]; then
  239. echo "[ ${i} ] - Redis DB"
  240. FILE_SELECTION[${i}]="redis"
  241. ((i++))
  242. elif [[ ${file} =~ rspamd ]]; then
  243. echo "[ ${i} ] - Rspamd data"
  244. FILE_SELECTION[${i}]="rspamd"
  245. ((i++))
  246. elif [[ ${file} =~ postfix ]]; then
  247. echo "[ ${i} ] - Postfix data"
  248. FILE_SELECTION[${i}]="postfix"
  249. ((i++))
  250. elif [[ ${file} =~ mysql ]]; then
  251. echo "[ ${i} ] - SQL DB"
  252. FILE_SELECTION[${i}]="mysql"
  253. ((i++))
  254. fi
  255. done
  256. echo
  257. input_sel=-1
  258. while [[ ${input_sel} -lt 0 || ${input_sel} -gt ${i} ]]; do
  259. read -p "Select a dataset to restore: " input_sel
  260. done
  261. echo "Restoring ${FILE_SELECTION[${input_sel}]} from ${RESTORE_POINT}..."
  262. restore "${RESTORE_POINT}" ${FILE_SELECTION[${input_sel}]}
  263. fi