update.sh 36 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845
  1. #!/usr/bin/env bash
  2. ############## Begin Function Section ##############
  3. check_online_status() {
  4. CHECK_ONLINE_IPS=(1.1.1.1 9.9.9.9 8.8.8.8)
  5. for ip in "${CHECK_ONLINE_IPS[@]}"; do
  6. if timeout 3 ping -c 1 ${ip} > /dev/null; then
  7. return 0
  8. fi
  9. done
  10. return 1
  11. }
  12. prefetch_images() {
  13. [[ -z ${BRANCH} ]] && { echo -e "\e[33m\nUnknown branch...\e[0m"; exit 1; }
  14. git fetch origin #${BRANCH}
  15. while read image; do
  16. if [[ "${image}" == "robbertkl/ipv6nat" ]]; then
  17. if ! grep -qi "ipv6nat-mailcow" docker-compose.yml || grep -qi "enable_ipv6: false" docker-compose.yml; then
  18. continue
  19. fi
  20. fi
  21. RET_C=0
  22. until docker pull ${image}; do
  23. RET_C=$((RET_C + 1))
  24. echo -e "\e[33m\nError pulling $image, retrying...\e[0m"
  25. [ ${RET_C} -gt 3 ] && { echo -e "\e[31m\nToo many failed retries, exiting\e[0m"; exit 1; }
  26. sleep 1
  27. done
  28. done < <(git show origin/${BRANCH}:docker-compose.yml | grep "image:" | awk '{ gsub("image:","", $3); print $2 }')
  29. }
  30. docker_garbage() {
  31. IMGS_TO_DELETE=()
  32. for container in $(grep -oP "image: \Kmailcow.+" "${SCRIPT_DIR}/docker-compose.yml"); do
  33. REPOSITORY=${container/:*}
  34. TAG=${container/*:}
  35. V_MAIN=${container/*.}
  36. V_SUB=${container/*.}
  37. EXISTING_TAGS=$(docker images | grep ${REPOSITORY} | awk '{ print $2 }')
  38. for existing_tag in ${EXISTING_TAGS[@]}; do
  39. V_MAIN_EXISTING=${existing_tag/*.}
  40. V_SUB_EXISTING=${existing_tag/*.}
  41. # Not an integer
  42. [[ ! $V_MAIN_EXISTING =~ ^[0-9]+$ ]] && continue
  43. [[ ! $V_SUB_EXISTING =~ ^[0-9]+$ ]] && continue
  44. if [[ $V_MAIN_EXISTING == "latest" ]]; then
  45. echo "Found deprecated label \"latest\" for repository $REPOSITORY, it should be deleted."
  46. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  47. elif [[ $V_MAIN_EXISTING -lt $V_MAIN ]]; then
  48. echo "Found tag $existing_tag for $REPOSITORY, which is older than the current tag $TAG and should be deleted."
  49. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  50. elif [[ $V_SUB_EXISTING -lt $V_SUB ]]; then
  51. echo "Found tag $existing_tag for $REPOSITORY, which is older than the current tag $TAG and should be deleted."
  52. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  53. fi
  54. done
  55. done
  56. if [[ ! -z ${IMGS_TO_DELETE[*]} ]]; then
  57. echo "Run the following command to delete unused image tags:"
  58. echo
  59. echo " docker rmi ${IMGS_TO_DELETE[*]}"
  60. echo
  61. if [ ! $FORCE ]; then
  62. read -r -p "Do you want to delete old image tags right now? [y/N] " response
  63. if [[ "$response" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  64. docker rmi ${IMGS_TO_DELETE[*]}
  65. else
  66. echo "OK, skipped."
  67. fi
  68. else
  69. echo "Running image removal without extra confirmation due to force mode."
  70. docker rmi ${IMGS_TO_DELETE[*]}
  71. fi
  72. echo -e "\e[32mFurther cleanup...\e[0m"
  73. echo "If you want to cleanup further garbage collected by Docker, please make sure all containers are up and running before cleaning your system by executing \"docker system prune\""
  74. fi
  75. }
  76. in_array() {
  77. local e match="$1"
  78. shift
  79. for e; do [[ "$e" == "$match" ]] && return 0; done
  80. return 1
  81. }
  82. migrate_docker_nat() {
  83. NAT_CONFIG='{"ipv6":true,"fixed-cidr-v6":"fd00:dead:beef:c0::/80","experimental":true,"ip6tables":true}'
  84. # Min Docker version
  85. DOCKERV_REQ=20.10.2
  86. # Current Docker version
  87. DOCKERV_CUR=$(docker version -f '{{.Server.Version}}')
  88. if grep -qi "ipv6nat-mailcow" docker-compose.yml && grep -qi "enable_ipv6: true" docker-compose.yml; then
  89. echo -e "\e[32mNative IPv6 implementation available.\e[0m"
  90. echo "This will enable experimental features in the Docker daemon and configure Docker to do the IPv6 NATing instead of ipv6nat-mailcow."
  91. echo '!!! This step is recommended !!!'
  92. echo "mailcow will try to roll back the changes if starting Docker fails after modifying the daemon.json configuration file."
  93. read -r -p "Should we try to enable the native IPv6 implementation in Docker now (recommended)? [y/N] " dockernatresponse
  94. if [[ ! "${dockernatresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  95. echo "OK, skipping this step."
  96. return 0
  97. fi
  98. fi
  99. # Sort versions and check if we are running a newer or equal version to req
  100. if [ $(printf "${DOCKERV_REQ}\n${DOCKERV_CUR}" | sort -V | tail -n1) == "${DOCKERV_CUR}" ]; then
  101. # If Dockerd daemon json exists
  102. if [ -s /etc/docker/daemon.json ]; then
  103. IFS=',' read -r -a dockerconfig <<< $(cat /etc/docker/daemon.json | tr -cd '[:alnum:],')
  104. if ! in_array ipv6true "${dockerconfig[@]}" || \
  105. ! in_array experimentaltrue "${dockerconfig[@]}" || \
  106. ! in_array ip6tablestrue "${dockerconfig[@]}" || \
  107. ! grep -qi "fixed-cidr-v6" /etc/docker/daemon.json; then
  108. echo -e "\e[33mWarning:\e[0m You seem to have modified the /etc/docker/daemon.json configuration by yourself and not fully/correctly activated the native IPv6 NAT implementation."
  109. echo "You will need to merge your existing configuration manually or fix/delete the existing daemon.json configuration before trying the update process again."
  110. echo -e "Please merge the following content and restart the Docker daemon:\n"
  111. echo ${NAT_CONFIG}
  112. return 1
  113. fi
  114. else
  115. echo "Working on IPv6 NAT, please wait..."
  116. echo ${NAT_CONFIG} > /etc/docker/daemon.json
  117. ip6tables -F -t nat
  118. [[ -e /etc/alpine-release ]] && rc-service docker restart || systemctl restart docker.service
  119. if [[ $? -ne 0 ]]; then
  120. echo -e "\e[31mError:\e[0m Failed to activate IPv6 NAT! Reverting and exiting."
  121. rm /etc/docker/daemon.json
  122. if [[ -e /etc/alpine-release ]]; then
  123. rc-service docker restart
  124. else
  125. systemctl reset-failed docker.service
  126. systemctl restart docker.service
  127. fi
  128. return 1
  129. fi
  130. fi
  131. # Removing legacy container
  132. sed -i '/ipv6nat-mailcow:$/,/^$/d' docker-compose.yml
  133. if [ -s docker-compose.override.yml ]; then
  134. sed -i '/ipv6nat-mailcow:$/,/^$/d' docker-compose.override.yml
  135. if [[ "$(cat docker-compose.override.yml | sed '/^\s*$/d' | wc -l)" == "2" ]]; then
  136. mv docker-compose.override.yml docker-compose.override.yml_backup
  137. fi
  138. fi
  139. echo -e "\e[32mGreat! \e[0mNative IPv6 NAT is active.\e[0m"
  140. else
  141. echo -e "\e[31mPlease upgrade Docker to version ${DOCKERV_REQ} or above.\e[0m"
  142. return 0
  143. fi
  144. }
  145. remove_obsolete_nginx_ports() {
  146. # Removing obsolete docker-compose.override.yml
  147. for override in docker-compose.override.yml docker-compose.override.yaml; do
  148. if [ -s $override ] ; then
  149. if cat $override | grep nginx-mailcow > /dev/null 2>&1; then
  150. if cat $override | grep -E '(\[::])' > /dev/null 2>&1; then
  151. if cat $override | grep -w 80:80 > /dev/null 2>&1 && cat $override | grep -w 443:443 > /dev/null 2>&1 ; then
  152. echo -e "\e[33mBacking up ${override} to preserve custom changes...\e[0m"
  153. echo -e "\e[33m!!! Manual Merge needed (if other overrides are set) !!!\e[0m"
  154. sleep 3
  155. cp $override ${override}_backup
  156. sed -i '/nginx-mailcow:$/,/^$/d' $override
  157. echo -e "\e[33mRemoved obsolete NGINX IPv6 Bind from original override File.\e[0m"
  158. if [[ "$(cat $override | sed '/^\s*$/d' | wc -l)" == "2" ]]; then
  159. mv $override ${override}_empty
  160. echo -e "\e[31m${override} is empty. Renamed it to ensure mailcow is startable.\e[0m"
  161. fi
  162. fi
  163. fi
  164. fi
  165. fi
  166. done
  167. }
  168. update_compose(){
  169. if [[ ${NO_UPDATE_COMPOSE} == "y" ]]; then
  170. echo -e "\e[33mNot fetching latest docker-compose, please check for updates manually!\e[0m"
  171. return 0
  172. elif [[ -e /etc/alpine-release ]]; then
  173. echo -e "\e[33mNot fetching latest docker-compose, because you are using Alpine Linux without glibc support. Please update docker-compose via apk!\e[0m"
  174. return 0
  175. else
  176. if [ ! $FORCE ]; then
  177. read -r -p "Do you want to update your docker-compose Version? It will automatic upgrade your docker-compose installation (recommended)? [y/N] " updatecomposeresponse
  178. if [[ ! "${updatecomposeresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  179. echo "OK, not updating docker-compose."
  180. return 0
  181. fi
  182. fi
  183. echo -e "\e[32mFetching new docker-compose version...\e[0m"
  184. echo -e "\e[32mTrying to determine GLIBC version...\e[0m"
  185. if ldd --version > /dev/null; then
  186. GLIBC_V=$(ldd --version | grep -E '(GLIBC|GNU libc)' | rev | cut -d ' ' -f1 | rev | cut -d '.' -f2)
  187. if [ ! -z "${GLIBC_V}" ] && [ ${GLIBC_V} -gt 27 ]; then
  188. DC_DL_SUFFIX=
  189. else
  190. DC_DL_SUFFIX=legacy
  191. fi
  192. else
  193. DC_DL_SUFFIX=legacy
  194. fi
  195. sleep 1
  196. if [[ -z $(which pip) && $(pip list --local 2>&1 | grep -v DEPRECATION | grep -c docker-compose) == 1 ]]; then
  197. echo -e "\e[33mFound a docker-compose Version installed with pip!\e[0m"
  198. echo -e "\e[33mPlease uninstall the pip Version of docker-compose since it doesn´t support Versions higher than 1.29.2.\e[0m"
  199. sleep 2
  200. echo -e "\e[33mExiting...\e[0m"
  201. exit 1
  202. #prevent breaking a working docker-compose installed with pip
  203. elif [[ $(curl -sL -w "%{http_code}" https://www.servercow.de/docker-compose/latest.php?vers=${DC_DL_SUFFIX} -o /dev/null) == "200" ]]; then
  204. LATEST_COMPOSE=$(curl -#L https://www.servercow.de/docker-compose/latest.php)
  205. COMPOSE_VERSION=$(docker-compose version --short)
  206. if [[ "$LATEST_COMPOSE" != "$COMPOSE_VERSION" ]]; then
  207. COMPOSE_PATH=$(which docker-compose)
  208. if [[ -w ${COMPOSE_PATH} ]]; then
  209. curl -#L https://github.com/docker/compose/releases/download/v${LATEST_COMPOSE}/docker-compose-$(uname -s)-$(uname -m) > $COMPOSE_PATH
  210. chmod +x $COMPOSE_PATH
  211. else
  212. echo -e "\e[33mWARNING: $COMPOSE_PATH is not writable, but new version $LATEST_COMPOSE is available (installed: $COMPOSE_VERSION)\e[0m"
  213. return 1
  214. fi
  215. fi
  216. else
  217. echo -e "\e[33mCannot determine latest docker-compose version, skipping...\e[0m"
  218. return 1
  219. fi
  220. fi
  221. }
  222. ############## End Function Section ##############
  223. # Check permissions
  224. if [ "$(id -u)" -ne "0" ]; then
  225. echo "You need to be root"
  226. exit 1
  227. fi
  228. SCRIPT_DIR="$( cd "$( dirname "${BASH_SOURCE[0]}" )" && pwd )"
  229. # Run pre-update-hook
  230. if [ -f "${SCRIPT_DIR}/pre_update_hook.sh" ]; then
  231. bash "${SCRIPT_DIR}/pre_update_hook.sh"
  232. fi
  233. if [[ "$(uname -r)" =~ ^4\.15\.0-60 ]]; then
  234. echo "DO NOT RUN mailcow ON THIS UBUNTU KERNEL!";
  235. echo "Please update to 5.x or use another distribution."
  236. exit 1
  237. fi
  238. if [[ "$(uname -r)" =~ ^4\.4\. ]]; then
  239. if grep -q Ubuntu <<< $(uname -a); then
  240. echo "DO NOT RUN mailcow ON THIS UBUNTU KERNEL!"
  241. echo "Please update to linux-generic-hwe-16.04 by running \"apt-get install --install-recommends linux-generic-hwe-16.04\""
  242. exit 1
  243. fi
  244. echo "mailcow on a 4.4.x kernel is not supported. It may or may not work, please upgrade your kernel or continue at your own risk."
  245. read -p "Press any key to continue..." < /dev/tty
  246. fi
  247. # Exit on error and pipefail
  248. set -o pipefail
  249. # Setting high dc timeout
  250. export COMPOSE_HTTP_TIMEOUT=600
  251. # Add /opt/bin to PATH
  252. PATH=$PATH:/opt/bin
  253. umask 0022
  254. for bin in curl docker git awk sha1sum; do
  255. if [[ -z $(which ${bin}) ]]; then
  256. echo "Cannot find ${bin}, exiting..."
  257. exit 1;
  258. elif [[ -z $(which docker-compose) ]]; then
  259. echo -e "\e[31mCannot find docker-compose Standalone.\e[0m"
  260. echo -e "\e[31mPlease install it manually regarding to this doc site: https://mailcow.github.io/mailcow-dockerized-docs/i_u_m/i_u_m_install/\e[0m"
  261. sleep 3
  262. exit 1;
  263. fi
  264. done
  265. ## Check if docker-compose >= v2
  266. if ! docker-compose version --short | grep "^2." > /dev/null 2>&1; then
  267. echo -e "\e[33mYour docker-compose Version is not up to date!\e[0m"
  268. echo -e "\e[33mmailcow needs docker-compose >= 2.5!\e[0m"
  269. echo -e "\e[33mYour current installed Version: $(docker-compose version --short)\e[0m"
  270. sleep 3
  271. update_compose
  272. if [[ ! "${updatecomposeresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  273. echo -e "\e[31mmailcow does not work with docker-compose <= 2.X anymore!\e[0m"
  274. echo -e "\e[31mPlease update your docker-compose manually, to run mailcow.\e[0m"
  275. echo -e "\e[31mExiting...\e[0m"
  276. exit 1
  277. fi
  278. fi
  279. export LC_ALL=C
  280. DATE=$(date +%Y-%m-%d_%H_%M_%S)
  281. BRANCH=$(cd ${SCRIPT_DIR}; git rev-parse --abbrev-ref HEAD)
  282. while (($#)); do
  283. case "${1}" in
  284. --check|-c)
  285. echo "Checking remote code for updates..."
  286. LATEST_REV=$(git ls-remote --exit-code --refs --quiet https://github.com/mailcow/mailcow-dockerized ${BRANCH} | cut -f1)
  287. if [ $? -ne 0 ]; then
  288. echo "A problem occurred while trying to fetch the latest revision from github."
  289. exit 99
  290. fi
  291. if [[ -z $(git log HEAD --pretty=format:"%H" | grep "${LATEST_REV}") ]]; then
  292. echo -e "Updated code is available.\nThe changes can be found here: https://github.com/mailcow/mailcow-dockerized/commits/master"
  293. git log --date=short --pretty=format:"%ad - %s" $(git rev-parse --short HEAD)..origin/master
  294. exit 0
  295. else
  296. echo "No updates available."
  297. exit 3
  298. fi
  299. ;;
  300. --ours)
  301. MERGE_STRATEGY=ours
  302. ;;
  303. --skip-start)
  304. SKIP_START=y
  305. ;;
  306. --gc)
  307. echo -e "\e[32mCollecting garbage...\e[0m"
  308. docker_garbage
  309. exit 0
  310. ;;
  311. --prefetch)
  312. echo -e "\e[32mPrefetching images...\e[0m"
  313. prefetch_images
  314. exit 0
  315. ;;
  316. -f|--force)
  317. echo -e "\e[32mRunning in forced mode...\e[0m"
  318. FORCE=y
  319. ;;
  320. --no-update-compose)
  321. NO_UPDATE_COMPOSE=y
  322. ;;
  323. --skip-ping-check)
  324. SKIP_PING_CHECK=y
  325. ;;
  326. --help|-h)
  327. echo './update.sh [-c|--check, --ours, --gc, --no-update-compose, --prefetch, --skip-start, --skip-ping-check, -f|--force, -h|--help]
  328. -c|--check - Check for updates and exit (exit codes => 0: update available, 3: no updates)
  329. --ours - Use merge strategy option "ours" to solve conflicts in favor of non-mailcow code (local changes over remote changes), not recommended!
  330. --gc - Run garbage collector to delete old image tags
  331. --no-update-compose - Do not update docker-compose
  332. --prefetch - Only prefetch new images and exit (useful to prepare updates)
  333. --skip-start - Do not start mailcow after update
  334. --skip-ping-check - Skip ICMP Check to public DNS resolvers (Use it only if you´ve blocked any ICMP Connections to your mailcow machine).
  335. -f|--force - Force update, do not ask questions
  336. '
  337. exit 1
  338. esac
  339. shift
  340. done
  341. [[ ! -f mailcow.conf ]] && { echo "mailcow.conf is missing"; exit 1;}
  342. chmod 600 mailcow.conf
  343. source mailcow.conf
  344. DOTS=${MAILCOW_HOSTNAME//[^.]};
  345. if [ ${#DOTS} -lt 2 ]; then
  346. echo "MAILCOW_HOSTNAME (${MAILCOW_HOSTNAME}) is not a FQDN!"
  347. echo "Please change it to a FQDN and run docker-compose down followed by docker-compose up -d"
  348. exit 1
  349. fi
  350. if grep --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox grep detected, please install gnu grep, \"apk add --no-cache --upgrade grep\""; exit 1; fi
  351. # This will also cover sort
  352. if cp --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox cp detected, please install coreutils, \"apk add --no-cache --upgrade coreutils\""; exit 1; fi
  353. if sed --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox sed detected, please install gnu sed, \"apk add --no-cache --upgrade sed\""; exit 1; fi
  354. CONFIG_ARRAY=(
  355. "SKIP_LETS_ENCRYPT"
  356. "SKIP_SOGO"
  357. "USE_WATCHDOG"
  358. "WATCHDOG_NOTIFY_EMAIL"
  359. "WATCHDOG_NOTIFY_BAN"
  360. "WATCHDOG_EXTERNAL_CHECKS"
  361. "WATCHDOG_SUBJECT"
  362. "SKIP_CLAMD"
  363. "SKIP_IP_CHECK"
  364. "ADDITIONAL_SAN"
  365. "DOVEADM_PORT"
  366. "IPV4_NETWORK"
  367. "IPV6_NETWORK"
  368. "LOG_LINES"
  369. "SNAT_TO_SOURCE"
  370. "SNAT6_TO_SOURCE"
  371. "COMPOSE_PROJECT_NAME"
  372. "SQL_PORT"
  373. "API_KEY"
  374. "API_KEY_READ_ONLY"
  375. "API_ALLOW_FROM"
  376. "MAILDIR_GC_TIME"
  377. "MAILDIR_SUB"
  378. "ACL_ANYONE"
  379. "SOLR_HEAP"
  380. "SKIP_SOLR"
  381. "ENABLE_SSL_SNI"
  382. "ALLOW_ADMIN_EMAIL_LOGIN"
  383. "SKIP_HTTP_VERIFICATION"
  384. "SOGO_EXPIRE_SESSION"
  385. "REDIS_PORT"
  386. "DOVECOT_MASTER_USER"
  387. "DOVECOT_MASTER_PASS"
  388. "MAILCOW_PASS_SCHEME"
  389. "ADDITIONAL_SERVER_NAMES"
  390. "ACME_CONTACT"
  391. "WATCHDOG_VERBOSE"
  392. "WEBAUTHN_ONLY_TRUSTED_VENDORS"
  393. )
  394. sed -i --follow-symlinks '$a\' mailcow.conf
  395. for option in ${CONFIG_ARRAY[@]}; do
  396. if [[ ${option} == "ADDITIONAL_SAN" ]]; then
  397. if ! grep -q ${option} mailcow.conf; then
  398. echo "Adding new option \"${option}\" to mailcow.conf"
  399. echo "${option}=" >> mailcow.conf
  400. fi
  401. elif [[ ${option} == "COMPOSE_PROJECT_NAME" ]]; then
  402. if ! grep -q ${option} mailcow.conf; then
  403. echo "Adding new option \"${option}\" to mailcow.conf"
  404. echo "COMPOSE_PROJECT_NAME=mailcowdockerized" >> mailcow.conf
  405. fi
  406. elif [[ ${option} == "DOVEADM_PORT" ]]; then
  407. if ! grep -q ${option} mailcow.conf; then
  408. echo "Adding new option \"${option}\" to mailcow.conf"
  409. echo "DOVEADM_PORT=127.0.0.1:19991" >> mailcow.conf
  410. fi
  411. elif [[ ${option} == "WATCHDOG_NOTIFY_EMAIL" ]]; then
  412. if ! grep -q ${option} mailcow.conf; then
  413. echo "Adding new option \"${option}\" to mailcow.conf"
  414. echo "WATCHDOG_NOTIFY_EMAIL=" >> mailcow.conf
  415. fi
  416. elif [[ ${option} == "LOG_LINES" ]]; then
  417. if ! grep -q ${option} mailcow.conf; then
  418. echo "Adding new option \"${option}\" to mailcow.conf"
  419. echo '# Max log lines per service to keep in Redis logs' >> mailcow.conf
  420. echo "LOG_LINES=9999" >> mailcow.conf
  421. fi
  422. elif [[ ${option} == "IPV4_NETWORK" ]]; then
  423. if ! grep -q ${option} mailcow.conf; then
  424. echo "Adding new option \"${option}\" to mailcow.conf"
  425. echo '# Internal IPv4 /24 subnet, format n.n.n. (expands to n.n.n.0/24)' >> mailcow.conf
  426. echo "IPV4_NETWORK=172.22.1" >> mailcow.conf
  427. fi
  428. elif [[ ${option} == "IPV6_NETWORK" ]]; then
  429. if ! grep -q ${option} mailcow.conf; then
  430. echo "Adding new option \"${option}\" to mailcow.conf"
  431. echo '# Internal IPv6 subnet in fc00::/7' >> mailcow.conf
  432. echo "IPV6_NETWORK=fd4d:6169:6c63:6f77::/64" >> mailcow.conf
  433. fi
  434. elif [[ ${option} == "SQL_PORT" ]]; then
  435. if ! grep -q ${option} mailcow.conf; then
  436. echo "Adding new option \"${option}\" to mailcow.conf"
  437. echo '# Bind SQL to 127.0.0.1 on port 13306' >> mailcow.conf
  438. echo "SQL_PORT=127.0.0.1:13306" >> mailcow.conf
  439. fi
  440. elif [[ ${option} == "API_KEY" ]]; then
  441. if ! grep -q ${option} mailcow.conf; then
  442. echo "Adding new option \"${option}\" to mailcow.conf"
  443. echo '# Create or override API key for web UI' >> mailcow.conf
  444. echo "#API_KEY=" >> mailcow.conf
  445. fi
  446. elif [[ ${option} == "API_KEY_READ_ONLY" ]]; then
  447. if ! grep -q ${option} mailcow.conf; then
  448. echo "Adding new option \"${option}\" to mailcow.conf"
  449. echo '# Create or override read-only API key for web UI' >> mailcow.conf
  450. echo "#API_KEY_READ_ONLY=" >> mailcow.conf
  451. fi
  452. elif [[ ${option} == "API_ALLOW_FROM" ]]; then
  453. if ! grep -q ${option} mailcow.conf; then
  454. echo "Adding new option \"${option}\" to mailcow.conf"
  455. echo '# Must be set for API_KEY to be active' >> mailcow.conf
  456. echo '# IPs only, no networks (networks can be set via UI)' >> mailcow.conf
  457. echo "#API_ALLOW_FROM=" >> mailcow.conf
  458. fi
  459. elif [[ ${option} == "SNAT_TO_SOURCE" ]]; then
  460. if ! grep -q ${option} mailcow.conf; then
  461. echo "Adding new option \"${option}\" to mailcow.conf"
  462. echo '# Use this IPv4 for outgoing connections (SNAT)' >> mailcow.conf
  463. echo "#SNAT_TO_SOURCE=" >> mailcow.conf
  464. fi
  465. elif [[ ${option} == "SNAT6_TO_SOURCE" ]]; then
  466. if ! grep -q ${option} mailcow.conf; then
  467. echo "Adding new option \"${option}\" to mailcow.conf"
  468. echo '# Use this IPv6 for outgoing connections (SNAT)' >> mailcow.conf
  469. echo "#SNAT6_TO_SOURCE=" >> mailcow.conf
  470. fi
  471. elif [[ ${option} == "MAILDIR_GC_TIME" ]]; then
  472. if ! grep -q ${option} mailcow.conf; then
  473. echo "Adding new option \"${option}\" to mailcow.conf"
  474. echo '# Garbage collector cleanup' >> mailcow.conf
  475. echo '# Deleted domains and mailboxes are moved to /var/vmail/_garbage/timestamp_sanitizedstring' >> mailcow.conf
  476. echo '# How long should objects remain in the garbage until they are being deleted? (value in minutes)' >> mailcow.conf
  477. echo '# Check interval is hourly' >> mailcow.conf
  478. echo 'MAILDIR_GC_TIME=1440' >> mailcow.conf
  479. fi
  480. elif [[ ${option} == "ACL_ANYONE" ]]; then
  481. if ! grep -q ${option} mailcow.conf; then
  482. echo "Adding new option \"${option}\" to mailcow.conf"
  483. echo '# Set this to "allow" to enable the anyone pseudo user. Disabled by default.' >> mailcow.conf
  484. echo '# When enabled, ACL can be created, that apply to "All authenticated users"' >> mailcow.conf
  485. echo '# This should probably only be activated on mail hosts, that are used exclusivly by one organisation.' >> mailcow.conf
  486. echo '# Otherwise a user might share data with too many other users.' >> mailcow.conf
  487. echo 'ACL_ANYONE=disallow' >> mailcow.conf
  488. fi
  489. elif [[ ${option} == "SOLR_HEAP" ]]; then
  490. if ! grep -q ${option} mailcow.conf; then
  491. echo "Adding new option \"${option}\" to mailcow.conf"
  492. echo '# Solr heap size, there is no recommendation, please see Solr docs.' >> mailcow.conf
  493. echo '# Solr is a prone to run OOM on large systems and should be monitored. Unmonitored Solr setups are not recommended.' >> mailcow.conf
  494. echo '# Solr will refuse to start with total system memory below or equal to 2 GB.' >> mailcow.conf
  495. echo "SOLR_HEAP=1024" >> mailcow.conf
  496. fi
  497. elif [[ ${option} == "SKIP_SOLR" ]]; then
  498. if ! grep -q ${option} mailcow.conf; then
  499. echo "Adding new option \"${option}\" to mailcow.conf"
  500. echo '# Solr is disabled by default after upgrading from non-Solr to Solr-enabled mailcows.' >> mailcow.conf
  501. echo '# Disable Solr or if you do not want to store a readable index of your mails in solr-vol-1.' >> mailcow.conf
  502. echo "SKIP_SOLR=y" >> mailcow.conf
  503. fi
  504. elif [[ ${option} == "ENABLE_SSL_SNI" ]]; then
  505. if ! grep -q ${option} mailcow.conf; then
  506. echo "Adding new option \"${option}\" to mailcow.conf"
  507. echo '# Create seperate certificates for all domains - y/n' >> mailcow.conf
  508. echo '# this will allow adding more than 100 domains, but some email clients will not be able to connect with alternative hostnames' >> mailcow.conf
  509. echo '# see https://wiki.dovecot.org/SSL/SNIClientSupport' >> mailcow.conf
  510. echo "ENABLE_SSL_SNI=n" >> mailcow.conf
  511. fi
  512. elif [[ ${option} == "SKIP_SOGO" ]]; then
  513. if ! grep -q ${option} mailcow.conf; then
  514. echo "Adding new option \"${option}\" to mailcow.conf"
  515. echo '# Skip SOGo: Will disable SOGo integration and therefore webmail, DAV protocols and ActiveSync support (experimental, unsupported, not fully implemented) - y/n' >> mailcow.conf
  516. echo "SKIP_SOGO=n" >> mailcow.conf
  517. fi
  518. elif [[ ${option} == "MAILDIR_SUB" ]]; then
  519. if ! grep -q ${option} mailcow.conf; then
  520. echo "Adding new option \"${option}\" to mailcow.conf"
  521. echo '# MAILDIR_SUB defines a path in a users virtual home to keep the maildir in. Leave empty for updated setups.' >> mailcow.conf
  522. echo "#MAILDIR_SUB=Maildir" >> mailcow.conf
  523. echo "MAILDIR_SUB=" >> mailcow.conf
  524. fi
  525. elif [[ ${option} == "WATCHDOG_NOTIFY_BAN" ]]; then
  526. if ! grep -q ${option} mailcow.conf; then
  527. echo "Adding new option \"${option}\" to mailcow.conf"
  528. echo '# Notify about banned IP. Includes whois lookup.' >> mailcow.conf
  529. echo "WATCHDOG_NOTIFY_BAN=y" >> mailcow.conf
  530. fi
  531. elif [[ ${option} == "WATCHDOG_SUBJECT" ]]; then
  532. if ! grep -q ${option} mailcow.conf; then
  533. echo "Adding new option \"${option}\" to mailcow.conf"
  534. echo '# Subject for watchdog mails. Defaults to "Watchdog ALERT" followed by the error message.' >> mailcow.conf
  535. echo "#WATCHDOG_SUBJECT=" >> mailcow.conf
  536. fi
  537. elif [[ ${option} == "WATCHDOG_EXTERNAL_CHECKS" ]]; then
  538. if ! grep -q ${option} mailcow.conf; then
  539. echo "Adding new option \"${option}\" to mailcow.conf"
  540. echo '# Checks if mailcow is an open relay. Requires a SAL. More checks will follow.' >> mailcow.conf
  541. echo '# No data is collected. Opt-in and anonymous.' >> mailcow.conf
  542. echo '# Will only work with unmodified mailcow setups.' >> mailcow.conf
  543. echo "WATCHDOG_EXTERNAL_CHECKS=n" >> mailcow.conf
  544. fi
  545. elif [[ ${option} == "SOGO_EXPIRE_SESSION" ]]; then
  546. if ! grep -q ${option} mailcow.conf; then
  547. echo "Adding new option \"${option}\" to mailcow.conf"
  548. echo '# SOGo session timeout in minutes' >> mailcow.conf
  549. echo "SOGO_EXPIRE_SESSION=480" >> mailcow.conf
  550. fi
  551. elif [[ ${option} == "REDIS_PORT" ]]; then
  552. if ! grep -q ${option} mailcow.conf; then
  553. echo "Adding new option \"${option}\" to mailcow.conf"
  554. echo "REDIS_PORT=127.0.0.1:7654" >> mailcow.conf
  555. fi
  556. elif [[ ${option} == "DOVECOT_MASTER_USER" ]]; then
  557. if ! grep -q ${option} mailcow.conf; then
  558. echo "Adding new option \"${option}\" to mailcow.conf"
  559. echo '# DOVECOT_MASTER_USER and _PASS must _both_ be provided. No special chars.' >> mailcow.conf
  560. echo '# Empty by default to auto-generate master user and password on start.' >> mailcow.conf
  561. echo '# User expands to DOVECOT_MASTER_USER@mailcow.local' >> mailcow.conf
  562. echo '# LEAVE EMPTY IF UNSURE' >> mailcow.conf
  563. echo "DOVECOT_MASTER_USER=" >> mailcow.conf
  564. fi
  565. elif [[ ${option} == "DOVECOT_MASTER_PASS" ]]; then
  566. if ! grep -q ${option} mailcow.conf; then
  567. echo "Adding new option \"${option}\" to mailcow.conf"
  568. echo '# LEAVE EMPTY IF UNSURE' >> mailcow.conf
  569. echo "DOVECOT_MASTER_PASS=" >> mailcow.conf
  570. fi
  571. elif [[ ${option} == "MAILCOW_PASS_SCHEME" ]]; then
  572. if ! grep -q ${option} mailcow.conf; then
  573. echo "Adding new option \"${option}\" to mailcow.conf"
  574. echo '# Password hash algorithm' >> mailcow.conf
  575. echo '# Only certain password hash algorithm are supported. For a fully list of supported schemes,' >> mailcow.conf
  576. echo '# see https://mailcow.github.io/mailcow-dockerized-docs/models/model-passwd/' >> mailcow.conf
  577. echo "MAILCOW_PASS_SCHEME=BLF-CRYPT" >> mailcow.conf
  578. fi
  579. elif [[ ${option} == "ADDITIONAL_SERVER_NAMES" ]]; then
  580. if ! grep -q ${option} mailcow.conf; then
  581. echo '# Additional server names for mailcow UI' >> mailcow.conf
  582. echo '#' >> mailcow.conf
  583. echo '# Specify alternative addresses for the mailcow UI to respond to' >> mailcow.conf
  584. echo '# This is useful when you set mail.* as ADDITIONAL_SAN and want to make sure mail.maildomain.com will always point to the mailcow UI.' >> mailcow.conf
  585. echo '# If the server name does not match a known site, Nginx decides by best-guess and may redirect users to the wrong web root.' >> mailcow.conf
  586. echo '# You can understand this as server_name directive in Nginx.' >> mailcow.conf
  587. echo '# Comma separated list without spaces! Example: ADDITIONAL_SERVER_NAMES=a.b.c,d.e.f' >> mailcow.conf
  588. echo 'ADDITIONAL_SERVER_NAMES=' >> mailcow.conf
  589. fi
  590. elif [[ ${option} == "ACME_CONTACT" ]]; then
  591. if ! grep -q ${option} mailcow.conf; then
  592. echo '# Lets Encrypt registration contact information' >> mailcow.conf
  593. echo '# Optional: Leave empty for none' >> mailcow.conf
  594. echo '# This value is only used on first order!' >> mailcow.conf
  595. echo '# Setting it at a later point will require the following steps:' >> mailcow.conf
  596. echo '# https://mailcow.github.io/mailcow-dockerized-docs/troubleshooting/debug-reset_tls/' >> mailcow.conf
  597. echo 'ACME_CONTACT=' >> mailcow.conf
  598. fi
  599. elif [[ ${option} == "WEBAUTHN_ONLY_TRUSTED_VENDORS" ]]; then
  600. if ! grep -q ${option} mailcow.conf; then
  601. echo "# WebAuthn device manufacturer verification" >> mailcow.conf
  602. echo '# After setting WEBAUTHN_ONLY_TRUSTED_VENDORS=y only devices from trusted manufacturers are allowed' >> mailcow.conf
  603. echo '# root certificates can be placed for validation under mailcow-dockerized/data/web/inc/lib/WebAuthn/rootCertificates' >> mailcow.conf
  604. echo 'WEBAUTHN_ONLY_TRUSTED_VENDORS=n' >> mailcow.conf
  605. fi
  606. elif [[ ${option} == "WATCHDOG_VERBOSE" ]]; then
  607. if ! grep -q ${option} mailcow.conf; then
  608. echo '# Enable watchdog verbose logging' >> mailcow.conf
  609. echo 'WATCHDOG_VERBOSE=n' >> mailcow.conf
  610. fi
  611. elif ! grep -q ${option} mailcow.conf; then
  612. echo "Adding new option \"${option}\" to mailcow.conf"
  613. echo "${option}=n" >> mailcow.conf
  614. fi
  615. done
  616. if [[( ${SKIP_PING_CHECK} == "y")]]; then
  617. echo -e "\e[32mSkipping Ping Check...\e[0m"
  618. else
  619. echo -en "Checking internet connection... "
  620. if ! check_online_status; then
  621. echo -e "\e[31mfailed\e[0m"
  622. exit 1
  623. else
  624. echo -e "\e[32mOK\e[0m"
  625. fi
  626. fi
  627. echo -e "\e[32mChecking for newer update script...\e[0m"
  628. SHA1_1=$(sha1sum update.sh)
  629. git fetch origin #${BRANCH}
  630. git checkout origin/${BRANCH} update.sh
  631. SHA1_2=$(sha1sum update.sh)
  632. if [[ ${SHA1_1} != ${SHA1_2} ]]; then
  633. echo "update.sh changed, please run this script again, exiting."
  634. chmod +x update.sh
  635. exit 2
  636. fi
  637. if [[ -f mailcow.conf ]]; then
  638. source mailcow.conf
  639. else
  640. echo -e "\e[31mNo mailcow.conf - is mailcow installed?\e[0m"
  641. exit 1
  642. fi
  643. if [ ! $FORCE ]; then
  644. read -r -p "Are you sure you want to update mailcow: dockerized? All containers will be stopped. [y/N] " response
  645. if [[ ! "${response}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  646. echo "OK, exiting."
  647. exit 0
  648. fi
  649. migrate_docker_nat
  650. fi
  651. LATEST_COMPOSE=$(curl -#L https://www.servercow.de/docker-compose/latest.php)
  652. COMPOSE_VERSION=$(docker-compose version --short)
  653. if [[ "$LATEST_COMPOSE" != "$COMPOSE_VERSION" ]]; then
  654. echo -e "\e[33mA new docker-compose Version is available: $LATEST_COMPOSE\e[0m"
  655. echo -e "\e[33mYour Version is: $COMPOSE_VERSION\e[0m"
  656. update_compose
  657. else
  658. echo -e "\e[32mYour docker-compose Version is up to date! Not updating it...\e[0m"
  659. fi
  660. remove_obsolete_nginx_ports
  661. echo -e "\e[32mValidating docker-compose stack configuration...\e[0m"
  662. sed -i 's/HTTPS_BIND:-:/HTTPS_BIND:-/g' docker-compose.yml
  663. sed -i 's/HTTP_BIND:-:/HTTP_BIND:-/g' docker-compose.yml
  664. if ! docker-compose config -q; then
  665. echo -e "\e[31m\nOh no, something went wrong. Please check the error message above.\e[0m"
  666. exit 1
  667. fi
  668. echo -e "\e[32mChecking for conflicting bridges...\e[0m"
  669. MAILCOW_BRIDGE=$(docker-compose config | grep -i com.docker.network.bridge.name | cut -d':' -f2)
  670. while read NAT_ID; do
  671. iptables -t nat -D POSTROUTING $NAT_ID
  672. done < <(iptables -L -vn -t nat --line-numbers | grep $IPV4_NETWORK | grep -E 'MASQUERADE.*all' | grep -v ${MAILCOW_BRIDGE} | cut -d' ' -f1)
  673. DIFF_DIRECTORY=update_diffs
  674. DIFF_FILE=${DIFF_DIRECTORY}/diff_before_update_$(date +"%Y-%m-%d-%H-%M-%S")
  675. mv diff_before_update* ${DIFF_DIRECTORY}/ 2> /dev/null
  676. if ! git diff-index --quiet HEAD; then
  677. echo -e "\e[32mSaving diff to ${DIFF_FILE}...\e[0m"
  678. mkdir -p ${DIFF_DIRECTORY}
  679. git diff --stat > ${DIFF_FILE}
  680. git diff >> ${DIFF_FILE}
  681. fi
  682. echo -e "\e[32mPrefetching images...\e[0m"
  683. prefetch_images
  684. echo -e "\e[32mStopping mailcow...\e[0m"
  685. sleep 2
  686. MAILCOW_CONTAINERS=($(docker-compose ps -q))
  687. docker-compose down
  688. echo -e "\e[32mChecking for remaining containers...\e[0m"
  689. sleep 2
  690. for container in "${MAILCOW_CONTAINERS[@]}"; do
  691. docker rm -f "$container" 2> /dev/null
  692. done
  693. [[ -f data/conf/nginx/ZZZ-ejabberd.conf ]] && rm data/conf/nginx/ZZZ-ejabberd.conf
  694. # Silently fixing remote url from andryyy to mailcow
  695. git remote set-url origin https://github.com/mailcow/mailcow-dockerized
  696. echo -e "\e[32mCommitting current status...\e[0m"
  697. [[ -z "$(git config user.name)" ]] && git config user.name moo
  698. [[ -z "$(git config user.email)" ]] && git config user.email moo@cow.moo
  699. [[ ! -z $(git ls-files data/conf/rspamd/override.d/worker-controller-password.inc) ]] && git rm data/conf/rspamd/override.d/worker-controller-password.inc
  700. git add -u
  701. git commit -am "Before update on ${DATE}" > /dev/null
  702. echo -e "\e[32mFetching updated code from remote...\e[0m"
  703. git fetch origin #${BRANCH}
  704. echo -e "\e[32mMerging local with remote code (recursive, strategy: \"${MERGE_STRATEGY:-theirs}\", options: \"patience\"...\e[0m"
  705. git config merge.defaultToUpstream true
  706. git merge -X${MERGE_STRATEGY:-theirs} -Xpatience -m "After update on ${DATE}"
  707. # Need to use a variable to not pass return codes of if checks
  708. MERGE_RETURN=$?
  709. if [[ ${MERGE_RETURN} == 128 ]]; then
  710. echo -e "\e[31m\nOh no, what happened?\n=> You most likely added files to your local mailcow instance that were now added to the official mailcow repository. Please move them to another location before updating mailcow.\e[0m"
  711. exit 1
  712. elif [[ ${MERGE_RETURN} == 1 ]]; then
  713. echo -e "\e[93mPotenial conflict, trying to fix...\e[0m"
  714. git status --porcelain | grep -E "UD|DU" | awk '{print $2}' | xargs rm -v
  715. git add -A
  716. git commit -m "After update on ${DATE}" > /dev/null
  717. git checkout .
  718. echo -e "\e[32mRemoved and recreated files if necessary.\e[0m"
  719. elif [[ ${MERGE_RETURN} != 0 ]]; then
  720. echo -e "\e[31m\nOh no, something went wrong. Please check the error message above.\e[0m"
  721. echo
  722. echo "Run docker-compose up -d to restart your stack without updates or try again after fixing the mentioned errors."
  723. exit 1
  724. fi
  725. echo -e "\e[32mFetching new images, if any...\e[0m"
  726. sleep 2
  727. docker-compose pull
  728. # Fix missing SSL, does not overwrite existing files
  729. [[ ! -d data/assets/ssl ]] && mkdir -p data/assets/ssl
  730. cp -n -d data/assets/ssl-example/*.pem data/assets/ssl/
  731. echo -e "Checking IPv6 settings... "
  732. if grep -q 'SYSCTL_IPV6_DISABLED=1' mailcow.conf; then
  733. echo
  734. echo '!! IMPORTANT !!'
  735. echo
  736. echo 'SYSCTL_IPV6_DISABLED was removed due to complications. IPv6 can be disabled by editing "docker-compose.yml" and setting "enable_ipv6: true" to "enable_ipv6: false".'
  737. echo 'This setting will only be active after a complete shutdown of mailcow by running "docker-compose down" followed by "docker-compose up -d".'
  738. echo
  739. echo '!! IMPORTANT !!'
  740. echo
  741. read -p "Press any key to continue..." < /dev/tty
  742. fi
  743. # Checking for old project name bug
  744. sed -i --follow-symlinks 's#COMPOSEPROJECT_NAME#COMPOSE_PROJECT_NAME#g' mailcow.conf
  745. # Fix Rspamd maps
  746. if [ -f data/conf/rspamd/custom/global_from_blacklist.map ]; then
  747. mv data/conf/rspamd/custom/global_from_blacklist.map data/conf/rspamd/custom/global_smtp_from_blacklist.map
  748. fi
  749. if [ -f data/conf/rspamd/custom/global_from_whitelist.map ]; then
  750. mv data/conf/rspamd/custom/global_from_whitelist.map data/conf/rspamd/custom/global_smtp_from_whitelist.map
  751. fi
  752. # Fix deprecated metrics.conf
  753. if [ -f "data/conf/rspamd/local.d/metrics.conf" ]; then
  754. if [ ! -z "$(git diff --name-only origin/master data/conf/rspamd/local.d/metrics.conf)" ]; then
  755. echo -e "\e[33mWARNING\e[0m - Please migrate your customizations of data/conf/rspamd/local.d/metrics.conf to actions.conf and groups.conf after this update."
  756. echo "The deprecated configuration file metrics.conf will be moved to metrics.conf_deprecated after updating mailcow."
  757. fi
  758. mv data/conf/rspamd/local.d/metrics.conf data/conf/rspamd/local.d/metrics.conf_deprecated
  759. fi
  760. # Set app_info.inc.php
  761. mailcow_git_version=$(git describe --tags `git rev-list --tags --max-count=1`)
  762. if [ $? -eq 0 ]; then
  763. echo '<?php' > data/web/inc/app_info.inc.php
  764. echo ' $MAILCOW_GIT_VERSION="'$mailcow_git_version'";' >> data/web/inc/app_info.inc.php
  765. echo ' $MAILCOW_GIT_URL="https://github.com/mailcow/mailcow-dockerized";' >> data/web/inc/app_info.inc.php
  766. echo '?>' >> data/web/inc/app_info.inc.php
  767. else
  768. echo '<?php' > data/web/inc/app_info.inc.php
  769. echo ' $MAILCOW_GIT_VERSION="";' >> data/web/inc/app_info.inc.php
  770. echo ' $MAILCOW_GIT_URL="";' >> data/web/inc/app_info.inc.php
  771. echo '?>' >> data/web/inc/app_info.inc.php
  772. echo -e "\e[33mCannot determine current git repository version...\e[0m"
  773. fi
  774. if [[ ${SKIP_START} == "y" ]]; then
  775. echo -e "\e[33mNot starting mailcow, please run \"docker-compose up -d --remove-orphans\" to start mailcow.\e[0m"
  776. else
  777. echo -e "\e[32mStarting mailcow...\e[0m"
  778. sleep 2
  779. docker-compose up -d --remove-orphans
  780. fi
  781. echo -e "\e[32mCollecting garbage...\e[0m"
  782. docker_garbage
  783. # Run post-update-hook
  784. if [ -f "${SCRIPT_DIR}/post_update_hook.sh" ]; then
  785. bash "${SCRIPT_DIR}/post_update_hook.sh"
  786. fi
  787. # echo "In case you encounter any problem, hard-reset to a state before updating mailcow:"
  788. # echo
  789. # git reflog --color=always | grep "Before update on "
  790. # echo
  791. # echo "Use \"git reset --hard hash-on-the-left\" and run docker-compose up -d afterwards."