update.sh 36 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840
  1. #!/usr/bin/env bash
  2. # Check permissions
  3. if [ "$(id -u)" -ne "0" ]; then
  4. echo "You need to be root"
  5. exit 1
  6. fi
  7. SCRIPT_DIR="$( cd "$( dirname "${BASH_SOURCE[0]}" )" && pwd )"
  8. # Run pre-update-hook
  9. if [ -f "${SCRIPT_DIR}/pre_update_hook.sh" ]; then
  10. bash "${SCRIPT_DIR}/pre_update_hook.sh"
  11. fi
  12. if [[ "$(uname -r)" =~ ^4\.15\.0-60 ]]; then
  13. echo "DO NOT RUN mailcow ON THIS UBUNTU KERNEL!";
  14. echo "Please update to 5.x or use another distribution."
  15. exit 1
  16. fi
  17. if [[ "$(uname -r)" =~ ^4\.4\. ]]; then
  18. if grep -q Ubuntu <<< $(uname -a); then
  19. echo "DO NOT RUN mailcow ON THIS UBUNTU KERNEL!"
  20. echo "Please update to linux-generic-hwe-16.04 by running \"apt-get install --install-recommends linux-generic-hwe-16.04\""
  21. exit 1
  22. fi
  23. echo "mailcow on a 4.4.x kernel is not supported. It may or may not work, please upgrade your kernel or continue at your own risk."
  24. read -p "Press any key to continue..." < /dev/tty
  25. fi
  26. # Exit on error and pipefail
  27. set -o pipefail
  28. # Setting high dc timeout
  29. export COMPOSE_HTTP_TIMEOUT=600
  30. # Add /opt/bin to PATH
  31. PATH=$PATH:/opt/bin
  32. umask 0022
  33. ############## Begin Function Section ##############
  34. check_online_status() {
  35. CHECK_ONLINE_IPS=(1.1.1.1 9.9.9.9 8.8.8.8)
  36. for ip in "${CHECK_ONLINE_IPS[@]}"; do
  37. if timeout 3 ping -c 1 ${ip} > /dev/null; then
  38. return 0
  39. fi
  40. done
  41. return 1
  42. }
  43. prefetch_images() {
  44. [[ -z ${BRANCH} ]] && { echo -e "\e[33m\nUnknown branch...\e[0m"; exit 1; }
  45. git fetch origin #${BRANCH}
  46. while read image; do
  47. if [[ "${image}" == "robbertkl/ipv6nat" ]]; then
  48. if ! grep -qi "ipv6nat-mailcow" docker-compose.yml || grep -qi "enable_ipv6: false" docker-compose.yml; then
  49. continue
  50. fi
  51. fi
  52. RET_C=0
  53. until docker pull ${image}; do
  54. RET_C=$((RET_C + 1))
  55. echo -e "\e[33m\nError pulling $image, retrying...\e[0m"
  56. [ ${RET_C} -gt 3 ] && { echo -e "\e[31m\nToo many failed retries, exiting\e[0m"; exit 1; }
  57. sleep 1
  58. done
  59. done < <(git show origin/${BRANCH}:docker-compose.yml | grep "image:" | awk '{ gsub("image:","", $3); print $2 }')
  60. }
  61. docker_garbage() {
  62. IMGS_TO_DELETE=()
  63. for container in $(grep -oP "image: \Kmailcow.+" "${SCRIPT_DIR}/docker-compose.yml"); do
  64. REPOSITORY=${container/:*}
  65. TAG=${container/*:}
  66. V_MAIN=${container/*.}
  67. V_SUB=${container/*.}
  68. EXISTING_TAGS=$(docker images | grep ${REPOSITORY} | awk '{ print $2 }')
  69. for existing_tag in ${EXISTING_TAGS[@]}; do
  70. V_MAIN_EXISTING=${existing_tag/*.}
  71. V_SUB_EXISTING=${existing_tag/*.}
  72. # Not an integer
  73. [[ ! $V_MAIN_EXISTING =~ ^[0-9]+$ ]] && continue
  74. [[ ! $V_SUB_EXISTING =~ ^[0-9]+$ ]] && continue
  75. if [[ $V_MAIN_EXISTING == "latest" ]]; then
  76. echo "Found deprecated label \"latest\" for repository $REPOSITORY, it should be deleted."
  77. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  78. elif [[ $V_MAIN_EXISTING -lt $V_MAIN ]]; then
  79. echo "Found tag $existing_tag for $REPOSITORY, which is older than the current tag $TAG and should be deleted."
  80. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  81. elif [[ $V_SUB_EXISTING -lt $V_SUB ]]; then
  82. echo "Found tag $existing_tag for $REPOSITORY, which is older than the current tag $TAG and should be deleted."
  83. IMGS_TO_DELETE+=($REPOSITORY:$existing_tag)
  84. fi
  85. done
  86. done
  87. if [[ ! -z ${IMGS_TO_DELETE[*]} ]]; then
  88. echo "Run the following command to delete unused image tags:"
  89. echo
  90. echo " docker rmi ${IMGS_TO_DELETE[*]}"
  91. echo
  92. if [ ! $FORCE ]; then
  93. read -r -p "Do you want to delete old image tags right now? [y/N] " response
  94. if [[ "$response" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  95. docker rmi ${IMGS_TO_DELETE[*]}
  96. else
  97. echo "OK, skipped."
  98. fi
  99. else
  100. echo "Running image removal without extra confirmation due to force mode."
  101. docker rmi ${IMGS_TO_DELETE[*]}
  102. fi
  103. echo -e "\e[32mFurther cleanup...\e[0m"
  104. echo "If you want to cleanup further garbage collected by Docker, please make sure all containers are up and running before cleaning your system by executing \"docker system prune\""
  105. fi
  106. }
  107. in_array() {
  108. local e match="$1"
  109. shift
  110. for e; do [[ "$e" == "$match" ]] && return 0; done
  111. return 1
  112. }
  113. migrate_docker_nat() {
  114. NAT_CONFIG='{"ipv6":true,"fixed-cidr-v6":"fd00:dead:beef:c0::/80","experimental":true,"ip6tables":true}'
  115. # Min Docker version
  116. DOCKERV_REQ=20.10.2
  117. # Current Docker version
  118. DOCKERV_CUR=$(docker version -f '{{.Server.Version}}')
  119. if grep -qi "ipv6nat-mailcow" docker-compose.yml && grep -qi "enable_ipv6: true" docker-compose.yml; then
  120. echo -e "\e[32mNative IPv6 implementation available.\e[0m"
  121. echo "This will enable experimental features in the Docker daemon and configure Docker to do the IPv6 NATing instead of ipv6nat-mailcow."
  122. echo '!!! This step is recommended !!!'
  123. echo "mailcow will try to roll back the changes if starting Docker fails after modifying the daemon.json configuration file."
  124. read -r -p "Should we try to enable the native IPv6 implementation in Docker now (recommended)? [y/N] " dockernatresponse
  125. if [[ ! "${dockernatresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  126. echo "OK, skipping this step."
  127. return 0
  128. fi
  129. fi
  130. # Sort versions and check if we are running a newer or equal version to req
  131. if [ $(printf "${DOCKERV_REQ}\n${DOCKERV_CUR}" | sort -V | tail -n1) == "${DOCKERV_CUR}" ]; then
  132. # If Dockerd daemon json exists
  133. if [ -s /etc/docker/daemon.json ]; then
  134. IFS=',' read -r -a dockerconfig <<< $(cat /etc/docker/daemon.json | tr -cd '[:alnum:],')
  135. if ! in_array ipv6true "${dockerconfig[@]}" || \
  136. ! in_array experimentaltrue "${dockerconfig[@]}" || \
  137. ! in_array ip6tablestrue "${dockerconfig[@]}" || \
  138. ! grep -qi "fixed-cidr-v6" /etc/docker/daemon.json; then
  139. echo -e "\e[33mWarning:\e[0m You seem to have modified the /etc/docker/daemon.json configuration by yourself and not fully/correctly activated the native IPv6 NAT implementation."
  140. echo "You will need to merge your existing configuration manually or fix/delete the existing daemon.json configuration before trying the update process again."
  141. echo -e "Please merge the following content and restart the Docker daemon:\n"
  142. echo ${NAT_CONFIG}
  143. return 1
  144. fi
  145. else
  146. echo "Working on IPv6 NAT, please wait..."
  147. echo ${NAT_CONFIG} > /etc/docker/daemon.json
  148. ip6tables -F -t nat
  149. [[ -e /etc/alpine-release ]] && rc-service docker restart || systemctl restart docker.service
  150. if [[ $? -ne 0 ]]; then
  151. echo -e "\e[31mError:\e[0m Failed to activate IPv6 NAT! Reverting and exiting."
  152. rm /etc/docker/daemon.json
  153. if [[ -e /etc/alpine-release ]]; then
  154. rc-service docker restart
  155. else
  156. systemctl reset-failed docker.service
  157. systemctl restart docker.service
  158. fi
  159. return 1
  160. fi
  161. fi
  162. # Removing legacy container
  163. sed -i '/ipv6nat-mailcow:$/,/^$/d' docker-compose.yml
  164. if [ -s docker-compose.override.yml ]; then
  165. sed -i '/ipv6nat-mailcow:$/,/^$/d' docker-compose.override.yml
  166. if [[ "$(cat docker-compose.override.yml | sed '/^\s*$/d' | wc -l)" == "2" ]]; then
  167. mv docker-compose.override.yml docker-compose.override.yml_backup
  168. fi
  169. fi
  170. echo -e "\e[32mGreat! \e[0mNative IPv6 NAT is active.\e[0m"
  171. else
  172. echo -e "\e[31mPlease upgrade Docker to version ${DOCKERV_REQ} or above.\e[0m"
  173. return 0
  174. fi
  175. }
  176. remove_obsolete_nginx_ports() {
  177. # Removing obsolete docker-compose.override.yml
  178. for override in docker-compose.override.yml docker-compose.override.yaml; do
  179. if [ -s $override ] ; then
  180. if cat $override | grep nginx-mailcow > /dev/null 2>&1; then
  181. if cat $override | grep -E '(\[::])' > /dev/null 2>&1; then
  182. if cat $override | grep -w 80:80 > /dev/null 2>&1 && cat $override | grep -w 443:443 > /dev/null 2>&1 ; then
  183. echo -e "\e[33mBacking up ${override} to preserve custom changes...\e[0m"
  184. echo -e "\e[33m!!! Manual Merge needed (if other overrides are set) !!!\e[0m"
  185. sleep 3
  186. cp $override ${override}_backup
  187. sed -i '/nginx-mailcow:$/,/^$/d' $override
  188. echo -e "\e[33mRemoved obsolete NGINX IPv6 Bind from original override File.\e[0m"
  189. if [[ "$(cat $override | sed '/^\s*$/d' | wc -l)" == "2" ]]; then
  190. mv $override ${override}_backup
  191. echo -e "\e[31m${override} is empty. Renamed it to ensure mailcow is startable.\e[0m"
  192. fi
  193. fi
  194. fi
  195. fi
  196. fi
  197. done
  198. }
  199. update_compose(){
  200. if [[ ${NO_UPDATE_COMPOSE} == "y" ]]; then
  201. echo -e "\e[33mNot fetching latest docker-compose, please check for updates manually!\e[0m"
  202. return 0
  203. elif [[ -e /etc/alpine-release ]]; then
  204. echo -e "\e[33mNot fetching latest docker-compose, because you are using Alpine Linux without glibc support. Please update docker-compose via apk!\e[0m"
  205. return 0
  206. else
  207. if [ ! $FORCE ]; then
  208. read -r -p "Do you want to update your docker-compose Version? It will automatic upgrade your docker-compose installation (recommended)? [y/N] " updatecomposeresponse
  209. if [[ ! "${updatecomposeresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  210. echo "OK, not updating docker-compose."
  211. return 0
  212. fi
  213. fi
  214. echo -e "\e[32mFetching new docker-compose version...\e[0m"
  215. echo -e "\e[32mTrying to determine GLIBC version...\e[0m"
  216. if ldd --version > /dev/null; then
  217. GLIBC_V=$(ldd --version | grep -E '(GLIBC|GNU libc)' | rev | cut -d ' ' -f1 | rev | cut -d '.' -f2)
  218. if [ ! -z "${GLIBC_V}" ] && [ ${GLIBC_V} -gt 27 ]; then
  219. DC_DL_SUFFIX=
  220. else
  221. DC_DL_SUFFIX=legacy
  222. fi
  223. else
  224. DC_DL_SUFFIX=legacy
  225. fi
  226. sleep 1
  227. if [[ ! -z $(which pip) && $(pip list --local 2>&1 | grep -v DEPRECATION | grep -c docker-compose) == 1 ]]; then
  228. true
  229. #prevent breaking a working docker-compose installed with pip
  230. elif [[ $(curl -sL -w "%{http_code}" https://www.servercow.de/docker-compose/latest.php?vers=${DC_DL_SUFFIX} -o /dev/null) == "200" ]]; then
  231. LATEST_COMPOSE=$(curl -#L https://www.servercow.de/docker-compose/latest.php)
  232. COMPOSE_VERSION=$(docker-compose version --short)
  233. if [[ "$LATEST_COMPOSE" != "$COMPOSE_VERSION" ]]; then
  234. COMPOSE_PATH=$(which docker-compose)
  235. if [[ -w ${COMPOSE_PATH} ]]; then
  236. curl -#L https://github.com/docker/compose/releases/download/v${LATEST_COMPOSE}/docker-compose-$(uname -s)-$(uname -m) > $COMPOSE_PATH
  237. chmod +x $COMPOSE_PATH
  238. else
  239. echo -e "\e[33mWARNING: $COMPOSE_PATH is not writable, but new version $LATEST_COMPOSE is available (installed: $COMPOSE_VERSION)\e[0m"
  240. return 1
  241. fi
  242. fi
  243. else
  244. echo -e "\e[33mCannot determine latest docker-compose version, skipping...\e[0m"
  245. return 1
  246. fi
  247. fi
  248. }
  249. ############## End Function Section ##############
  250. for bin in curl docker git awk sha1sum; do
  251. if [[ -z $(which ${bin}) ]]; then
  252. echo "Cannot find ${bin}, exiting..."
  253. exit 1;
  254. elif [[ -z $(which docker-compose) ]]; then
  255. echo "Cannot find docker-compose Standalone. Please install it manually regarding to this doc site: https://mailcow.github.io/mailcow-dockerized-docs/i_u_m/i_u_m_install/"
  256. sleep 3
  257. exit 1;
  258. fi
  259. done
  260. ## Check if docker-compose >= v2
  261. if ! docker-compose version --short | grep "^2." > /dev/null 2>&1; then
  262. echo -e "\e[33mYour docker-compose Version is not up to date!\e[0m"
  263. echo -e "\e[33mmailcow needs docker-compose >= 2.5!\e[0m"
  264. echo -e "\e[33mYour current installed Version: $(docker-compose version --short)\e[0m"
  265. sleep 3
  266. update_compose
  267. if [[ ! "${updatecomposeresponse}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  268. echo -e "\e[31mmailcow does not work with docker-compose <= 2.X anymore!\e[0m"
  269. echo -e "\e[31mPlease update your docker-compose manually, to run mailcow.\e[0m"
  270. echo -e "\e[31mExiting...\e[0m"
  271. exit 1
  272. fi
  273. fi
  274. export LC_ALL=C
  275. DATE=$(date +%Y-%m-%d_%H_%M_%S)
  276. BRANCH=$(cd ${SCRIPT_DIR}; git rev-parse --abbrev-ref HEAD)
  277. while (($#)); do
  278. case "${1}" in
  279. --check|-c)
  280. echo "Checking remote code for updates..."
  281. LATEST_REV=$(git ls-remote --exit-code --refs --quiet https://github.com/mailcow/mailcow-dockerized ${BRANCH} | cut -f1)
  282. if [ $? -ne 0 ]; then
  283. echo "A problem occurred while trying to fetch the latest revision from github."
  284. exit 99
  285. fi
  286. if [[ -z $(git log HEAD --pretty=format:"%H" | grep "${LATEST_REV}") ]]; then
  287. echo -e "Updated code is available.\nThe changes can be found here: https://github.com/mailcow/mailcow-dockerized/commits/master"
  288. git log --date=short --pretty=format:"%ad - %s" $(git rev-parse --short HEAD)..origin/master
  289. exit 0
  290. else
  291. echo "No updates available."
  292. exit 3
  293. fi
  294. ;;
  295. --ours)
  296. MERGE_STRATEGY=ours
  297. ;;
  298. --skip-start)
  299. SKIP_START=y
  300. ;;
  301. --gc)
  302. echo -e "\e[32mCollecting garbage...\e[0m"
  303. docker_garbage
  304. exit 0
  305. ;;
  306. --prefetch)
  307. echo -e "\e[32mPrefetching images...\e[0m"
  308. prefetch_images
  309. exit 0
  310. ;;
  311. -f|--force)
  312. echo -e "\e[32mRunning in forced mode...\e[0m"
  313. FORCE=y
  314. ;;
  315. --no-update-compose)
  316. NO_UPDATE_COMPOSE=y
  317. ;;
  318. --skip-ping-check)
  319. SKIP_PING_CHECK=y
  320. ;;
  321. --help|-h)
  322. echo './update.sh [-c|--check, --ours, --gc, --no-update-compose, --prefetch, --skip-start, --skip-ping-check, -f|--force, -h|--help]
  323. -c|--check - Check for updates and exit (exit codes => 0: update available, 3: no updates)
  324. --ours - Use merge strategy option "ours" to solve conflicts in favor of non-mailcow code (local changes over remote changes), not recommended!
  325. --gc - Run garbage collector to delete old image tags
  326. --no-update-compose - Do not update docker-compose
  327. --prefetch - Only prefetch new images and exit (useful to prepare updates)
  328. --skip-start - Do not start mailcow after update
  329. --skip-ping-check - Skip ICMP Check to public DNS resolvers (Use it only if you´ve blocked any ICMP Connections to your mailcow machine).
  330. -f|--force - Force update, do not ask questions
  331. '
  332. exit 1
  333. esac
  334. shift
  335. done
  336. [[ ! -f mailcow.conf ]] && { echo "mailcow.conf is missing"; exit 1;}
  337. chmod 600 mailcow.conf
  338. source mailcow.conf
  339. DOTS=${MAILCOW_HOSTNAME//[^.]};
  340. if [ ${#DOTS} -lt 2 ]; then
  341. echo "MAILCOW_HOSTNAME (${MAILCOW_HOSTNAME}) is not a FQDN!"
  342. echo "Please change it to a FQDN and run docker-compose down followed by docker-compose up -d"
  343. exit 1
  344. fi
  345. if grep --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox grep detected, please install gnu grep, \"apk add --no-cache --upgrade grep\""; exit 1; fi
  346. # This will also cover sort
  347. if cp --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox cp detected, please install coreutils, \"apk add --no-cache --upgrade coreutils\""; exit 1; fi
  348. if sed --help 2>&1 | head -n 1 | grep -q -i "busybox"; then echo "BusyBox sed detected, please install gnu sed, \"apk add --no-cache --upgrade sed\""; exit 1; fi
  349. CONFIG_ARRAY=(
  350. "SKIP_LETS_ENCRYPT"
  351. "SKIP_SOGO"
  352. "USE_WATCHDOG"
  353. "WATCHDOG_NOTIFY_EMAIL"
  354. "WATCHDOG_NOTIFY_BAN"
  355. "WATCHDOG_EXTERNAL_CHECKS"
  356. "WATCHDOG_SUBJECT"
  357. "SKIP_CLAMD"
  358. "SKIP_IP_CHECK"
  359. "ADDITIONAL_SAN"
  360. "DOVEADM_PORT"
  361. "IPV4_NETWORK"
  362. "IPV6_NETWORK"
  363. "LOG_LINES"
  364. "SNAT_TO_SOURCE"
  365. "SNAT6_TO_SOURCE"
  366. "COMPOSE_PROJECT_NAME"
  367. "SQL_PORT"
  368. "API_KEY"
  369. "API_KEY_READ_ONLY"
  370. "API_ALLOW_FROM"
  371. "MAILDIR_GC_TIME"
  372. "MAILDIR_SUB"
  373. "ACL_ANYONE"
  374. "SOLR_HEAP"
  375. "SKIP_SOLR"
  376. "ENABLE_SSL_SNI"
  377. "ALLOW_ADMIN_EMAIL_LOGIN"
  378. "SKIP_HTTP_VERIFICATION"
  379. "SOGO_EXPIRE_SESSION"
  380. "REDIS_PORT"
  381. "DOVECOT_MASTER_USER"
  382. "DOVECOT_MASTER_PASS"
  383. "MAILCOW_PASS_SCHEME"
  384. "ADDITIONAL_SERVER_NAMES"
  385. "ACME_CONTACT"
  386. "WATCHDOG_VERBOSE"
  387. "WEBAUTHN_ONLY_TRUSTED_VENDORS"
  388. )
  389. sed -i --follow-symlinks '$a\' mailcow.conf
  390. for option in ${CONFIG_ARRAY[@]}; do
  391. if [[ ${option} == "ADDITIONAL_SAN" ]]; then
  392. if ! grep -q ${option} mailcow.conf; then
  393. echo "Adding new option \"${option}\" to mailcow.conf"
  394. echo "${option}=" >> mailcow.conf
  395. fi
  396. elif [[ ${option} == "COMPOSE_PROJECT_NAME" ]]; then
  397. if ! grep -q ${option} mailcow.conf; then
  398. echo "Adding new option \"${option}\" to mailcow.conf"
  399. echo "COMPOSE_PROJECT_NAME=mailcowdockerized" >> mailcow.conf
  400. fi
  401. elif [[ ${option} == "DOVEADM_PORT" ]]; then
  402. if ! grep -q ${option} mailcow.conf; then
  403. echo "Adding new option \"${option}\" to mailcow.conf"
  404. echo "DOVEADM_PORT=127.0.0.1:19991" >> mailcow.conf
  405. fi
  406. elif [[ ${option} == "WATCHDOG_NOTIFY_EMAIL" ]]; then
  407. if ! grep -q ${option} mailcow.conf; then
  408. echo "Adding new option \"${option}\" to mailcow.conf"
  409. echo "WATCHDOG_NOTIFY_EMAIL=" >> mailcow.conf
  410. fi
  411. elif [[ ${option} == "LOG_LINES" ]]; then
  412. if ! grep -q ${option} mailcow.conf; then
  413. echo "Adding new option \"${option}\" to mailcow.conf"
  414. echo '# Max log lines per service to keep in Redis logs' >> mailcow.conf
  415. echo "LOG_LINES=9999" >> mailcow.conf
  416. fi
  417. elif [[ ${option} == "IPV4_NETWORK" ]]; then
  418. if ! grep -q ${option} mailcow.conf; then
  419. echo "Adding new option \"${option}\" to mailcow.conf"
  420. echo '# Internal IPv4 /24 subnet, format n.n.n. (expands to n.n.n.0/24)' >> mailcow.conf
  421. echo "IPV4_NETWORK=172.22.1" >> mailcow.conf
  422. fi
  423. elif [[ ${option} == "IPV6_NETWORK" ]]; then
  424. if ! grep -q ${option} mailcow.conf; then
  425. echo "Adding new option \"${option}\" to mailcow.conf"
  426. echo '# Internal IPv6 subnet in fc00::/7' >> mailcow.conf
  427. echo "IPV6_NETWORK=fd4d:6169:6c63:6f77::/64" >> mailcow.conf
  428. fi
  429. elif [[ ${option} == "SQL_PORT" ]]; then
  430. if ! grep -q ${option} mailcow.conf; then
  431. echo "Adding new option \"${option}\" to mailcow.conf"
  432. echo '# Bind SQL to 127.0.0.1 on port 13306' >> mailcow.conf
  433. echo "SQL_PORT=127.0.0.1:13306" >> mailcow.conf
  434. fi
  435. elif [[ ${option} == "API_KEY" ]]; then
  436. if ! grep -q ${option} mailcow.conf; then
  437. echo "Adding new option \"${option}\" to mailcow.conf"
  438. echo '# Create or override API key for web UI' >> mailcow.conf
  439. echo "#API_KEY=" >> mailcow.conf
  440. fi
  441. elif [[ ${option} == "API_KEY_READ_ONLY" ]]; then
  442. if ! grep -q ${option} mailcow.conf; then
  443. echo "Adding new option \"${option}\" to mailcow.conf"
  444. echo '# Create or override read-only API key for web UI' >> mailcow.conf
  445. echo "#API_KEY_READ_ONLY=" >> mailcow.conf
  446. fi
  447. elif [[ ${option} == "API_ALLOW_FROM" ]]; then
  448. if ! grep -q ${option} mailcow.conf; then
  449. echo "Adding new option \"${option}\" to mailcow.conf"
  450. echo '# Must be set for API_KEY to be active' >> mailcow.conf
  451. echo '# IPs only, no networks (networks can be set via UI)' >> mailcow.conf
  452. echo "#API_ALLOW_FROM=" >> mailcow.conf
  453. fi
  454. elif [[ ${option} == "SNAT_TO_SOURCE" ]]; then
  455. if ! grep -q ${option} mailcow.conf; then
  456. echo "Adding new option \"${option}\" to mailcow.conf"
  457. echo '# Use this IPv4 for outgoing connections (SNAT)' >> mailcow.conf
  458. echo "#SNAT_TO_SOURCE=" >> mailcow.conf
  459. fi
  460. elif [[ ${option} == "SNAT6_TO_SOURCE" ]]; then
  461. if ! grep -q ${option} mailcow.conf; then
  462. echo "Adding new option \"${option}\" to mailcow.conf"
  463. echo '# Use this IPv6 for outgoing connections (SNAT)' >> mailcow.conf
  464. echo "#SNAT6_TO_SOURCE=" >> mailcow.conf
  465. fi
  466. elif [[ ${option} == "MAILDIR_GC_TIME" ]]; then
  467. if ! grep -q ${option} mailcow.conf; then
  468. echo "Adding new option \"${option}\" to mailcow.conf"
  469. echo '# Garbage collector cleanup' >> mailcow.conf
  470. echo '# Deleted domains and mailboxes are moved to /var/vmail/_garbage/timestamp_sanitizedstring' >> mailcow.conf
  471. echo '# How long should objects remain in the garbage until they are being deleted? (value in minutes)' >> mailcow.conf
  472. echo '# Check interval is hourly' >> mailcow.conf
  473. echo 'MAILDIR_GC_TIME=1440' >> mailcow.conf
  474. fi
  475. elif [[ ${option} == "ACL_ANYONE" ]]; then
  476. if ! grep -q ${option} mailcow.conf; then
  477. echo "Adding new option \"${option}\" to mailcow.conf"
  478. echo '# Set this to "allow" to enable the anyone pseudo user. Disabled by default.' >> mailcow.conf
  479. echo '# When enabled, ACL can be created, that apply to "All authenticated users"' >> mailcow.conf
  480. echo '# This should probably only be activated on mail hosts, that are used exclusivly by one organisation.' >> mailcow.conf
  481. echo '# Otherwise a user might share data with too many other users.' >> mailcow.conf
  482. echo 'ACL_ANYONE=disallow' >> mailcow.conf
  483. fi
  484. elif [[ ${option} == "SOLR_HEAP" ]]; then
  485. if ! grep -q ${option} mailcow.conf; then
  486. echo "Adding new option \"${option}\" to mailcow.conf"
  487. echo '# Solr heap size, there is no recommendation, please see Solr docs.' >> mailcow.conf
  488. echo '# Solr is a prone to run OOM on large systems and should be monitored. Unmonitored Solr setups are not recommended.' >> mailcow.conf
  489. echo '# Solr will refuse to start with total system memory below or equal to 2 GB.' >> mailcow.conf
  490. echo "SOLR_HEAP=1024" >> mailcow.conf
  491. fi
  492. elif [[ ${option} == "SKIP_SOLR" ]]; then
  493. if ! grep -q ${option} mailcow.conf; then
  494. echo "Adding new option \"${option}\" to mailcow.conf"
  495. echo '# Solr is disabled by default after upgrading from non-Solr to Solr-enabled mailcows.' >> mailcow.conf
  496. echo '# Disable Solr or if you do not want to store a readable index of your mails in solr-vol-1.' >> mailcow.conf
  497. echo "SKIP_SOLR=y" >> mailcow.conf
  498. fi
  499. elif [[ ${option} == "ENABLE_SSL_SNI" ]]; then
  500. if ! grep -q ${option} mailcow.conf; then
  501. echo "Adding new option \"${option}\" to mailcow.conf"
  502. echo '# Create seperate certificates for all domains - y/n' >> mailcow.conf
  503. echo '# this will allow adding more than 100 domains, but some email clients will not be able to connect with alternative hostnames' >> mailcow.conf
  504. echo '# see https://wiki.dovecot.org/SSL/SNIClientSupport' >> mailcow.conf
  505. echo "ENABLE_SSL_SNI=n" >> mailcow.conf
  506. fi
  507. elif [[ ${option} == "SKIP_SOGO" ]]; then
  508. if ! grep -q ${option} mailcow.conf; then
  509. echo "Adding new option \"${option}\" to mailcow.conf"
  510. echo '# Skip SOGo: Will disable SOGo integration and therefore webmail, DAV protocols and ActiveSync support (experimental, unsupported, not fully implemented) - y/n' >> mailcow.conf
  511. echo "SKIP_SOGO=n" >> mailcow.conf
  512. fi
  513. elif [[ ${option} == "MAILDIR_SUB" ]]; then
  514. if ! grep -q ${option} mailcow.conf; then
  515. echo "Adding new option \"${option}\" to mailcow.conf"
  516. echo '# MAILDIR_SUB defines a path in a users virtual home to keep the maildir in. Leave empty for updated setups.' >> mailcow.conf
  517. echo "#MAILDIR_SUB=Maildir" >> mailcow.conf
  518. echo "MAILDIR_SUB=" >> mailcow.conf
  519. fi
  520. elif [[ ${option} == "WATCHDOG_NOTIFY_BAN" ]]; then
  521. if ! grep -q ${option} mailcow.conf; then
  522. echo "Adding new option \"${option}\" to mailcow.conf"
  523. echo '# Notify about banned IP. Includes whois lookup.' >> mailcow.conf
  524. echo "WATCHDOG_NOTIFY_BAN=y" >> mailcow.conf
  525. fi
  526. elif [[ ${option} == "WATCHDOG_SUBJECT" ]]; then
  527. if ! grep -q ${option} mailcow.conf; then
  528. echo "Adding new option \"${option}\" to mailcow.conf"
  529. echo '# Subject for watchdog mails. Defaults to "Watchdog ALERT" followed by the error message.' >> mailcow.conf
  530. echo "#WATCHDOG_SUBJECT=" >> mailcow.conf
  531. fi
  532. elif [[ ${option} == "WATCHDOG_EXTERNAL_CHECKS" ]]; then
  533. if ! grep -q ${option} mailcow.conf; then
  534. echo "Adding new option \"${option}\" to mailcow.conf"
  535. echo '# Checks if mailcow is an open relay. Requires a SAL. More checks will follow.' >> mailcow.conf
  536. echo '# No data is collected. Opt-in and anonymous.' >> mailcow.conf
  537. echo '# Will only work with unmodified mailcow setups.' >> mailcow.conf
  538. echo "WATCHDOG_EXTERNAL_CHECKS=n" >> mailcow.conf
  539. fi
  540. elif [[ ${option} == "SOGO_EXPIRE_SESSION" ]]; then
  541. if ! grep -q ${option} mailcow.conf; then
  542. echo "Adding new option \"${option}\" to mailcow.conf"
  543. echo '# SOGo session timeout in minutes' >> mailcow.conf
  544. echo "SOGO_EXPIRE_SESSION=480" >> mailcow.conf
  545. fi
  546. elif [[ ${option} == "REDIS_PORT" ]]; then
  547. if ! grep -q ${option} mailcow.conf; then
  548. echo "Adding new option \"${option}\" to mailcow.conf"
  549. echo "REDIS_PORT=127.0.0.1:7654" >> mailcow.conf
  550. fi
  551. elif [[ ${option} == "DOVECOT_MASTER_USER" ]]; then
  552. if ! grep -q ${option} mailcow.conf; then
  553. echo "Adding new option \"${option}\" to mailcow.conf"
  554. echo '# DOVECOT_MASTER_USER and _PASS must _both_ be provided. No special chars.' >> mailcow.conf
  555. echo '# Empty by default to auto-generate master user and password on start.' >> mailcow.conf
  556. echo '# User expands to DOVECOT_MASTER_USER@mailcow.local' >> mailcow.conf
  557. echo '# LEAVE EMPTY IF UNSURE' >> mailcow.conf
  558. echo "DOVECOT_MASTER_USER=" >> mailcow.conf
  559. fi
  560. elif [[ ${option} == "DOVECOT_MASTER_PASS" ]]; then
  561. if ! grep -q ${option} mailcow.conf; then
  562. echo "Adding new option \"${option}\" to mailcow.conf"
  563. echo '# LEAVE EMPTY IF UNSURE' >> mailcow.conf
  564. echo "DOVECOT_MASTER_PASS=" >> mailcow.conf
  565. fi
  566. elif [[ ${option} == "MAILCOW_PASS_SCHEME" ]]; then
  567. if ! grep -q ${option} mailcow.conf; then
  568. echo "Adding new option \"${option}\" to mailcow.conf"
  569. echo '# Password hash algorithm' >> mailcow.conf
  570. echo '# Only certain password hash algorithm are supported. For a fully list of supported schemes,' >> mailcow.conf
  571. echo '# see https://mailcow.github.io/mailcow-dockerized-docs/models/model-passwd/' >> mailcow.conf
  572. echo "MAILCOW_PASS_SCHEME=BLF-CRYPT" >> mailcow.conf
  573. fi
  574. elif [[ ${option} == "ADDITIONAL_SERVER_NAMES" ]]; then
  575. if ! grep -q ${option} mailcow.conf; then
  576. echo '# Additional server names for mailcow UI' >> mailcow.conf
  577. echo '#' >> mailcow.conf
  578. echo '# Specify alternative addresses for the mailcow UI to respond to' >> mailcow.conf
  579. echo '# This is useful when you set mail.* as ADDITIONAL_SAN and want to make sure mail.maildomain.com will always point to the mailcow UI.' >> mailcow.conf
  580. echo '# If the server name does not match a known site, Nginx decides by best-guess and may redirect users to the wrong web root.' >> mailcow.conf
  581. echo '# You can understand this as server_name directive in Nginx.' >> mailcow.conf
  582. echo '# Comma separated list without spaces! Example: ADDITIONAL_SERVER_NAMES=a.b.c,d.e.f' >> mailcow.conf
  583. echo 'ADDITIONAL_SERVER_NAMES=' >> mailcow.conf
  584. fi
  585. elif [[ ${option} == "ACME_CONTACT" ]]; then
  586. if ! grep -q ${option} mailcow.conf; then
  587. echo '# Lets Encrypt registration contact information' >> mailcow.conf
  588. echo '# Optional: Leave empty for none' >> mailcow.conf
  589. echo '# This value is only used on first order!' >> mailcow.conf
  590. echo '# Setting it at a later point will require the following steps:' >> mailcow.conf
  591. echo '# https://mailcow.github.io/mailcow-dockerized-docs/troubleshooting/debug-reset_tls/' >> mailcow.conf
  592. echo 'ACME_CONTACT=' >> mailcow.conf
  593. fi
  594. elif [[ ${option} == "WEBAUTHN_ONLY_TRUSTED_VENDORS" ]]; then
  595. if ! grep -q ${option} mailcow.conf; then
  596. echo "# WebAuthn device manufacturer verification" >> mailcow.conf
  597. echo '# After setting WEBAUTHN_ONLY_TRUSTED_VENDORS=y only devices from trusted manufacturers are allowed' >> mailcow.conf
  598. echo '# root certificates can be placed for validation under mailcow-dockerized/data/web/inc/lib/WebAuthn/rootCertificates' >> mailcow.conf
  599. echo 'WEBAUTHN_ONLY_TRUSTED_VENDORS=n' >> mailcow.conf
  600. fi
  601. elif [[ ${option} == "WATCHDOG_VERBOSE" ]]; then
  602. if ! grep -q ${option} mailcow.conf; then
  603. echo '# Enable watchdog verbose logging' >> mailcow.conf
  604. echo 'WATCHDOG_VERBOSE=n' >> mailcow.conf
  605. fi
  606. elif ! grep -q ${option} mailcow.conf; then
  607. echo "Adding new option \"${option}\" to mailcow.conf"
  608. echo "${option}=n" >> mailcow.conf
  609. fi
  610. done
  611. if [[( ${SKIP_PING_CHECK} == "y")]]; then
  612. echo -e "\e[32mSkipping Ping Check...\e[0m"
  613. else
  614. echo -en "Checking internet connection... "
  615. if ! check_online_status; then
  616. echo -e "\e[31mfailed\e[0m"
  617. exit 1
  618. else
  619. echo -e "\e[32mOK\e[0m"
  620. fi
  621. fi
  622. echo -e "\e[32mChecking for newer update script...\e[0m"
  623. SHA1_1=$(sha1sum update.sh)
  624. git fetch origin #${BRANCH}
  625. git checkout origin/${BRANCH} update.sh
  626. SHA1_2=$(sha1sum update.sh)
  627. if [[ ${SHA1_1} != ${SHA1_2} ]]; then
  628. echo "update.sh changed, please run this script again, exiting."
  629. chmod +x update.sh
  630. exit 2
  631. fi
  632. if [[ -f mailcow.conf ]]; then
  633. source mailcow.conf
  634. else
  635. echo -e "\e[31mNo mailcow.conf - is mailcow installed?\e[0m"
  636. exit 1
  637. fi
  638. if [ ! $FORCE ]; then
  639. read -r -p "Are you sure you want to update mailcow: dockerized? All containers will be stopped. [y/N] " response
  640. if [[ ! "${response}" =~ ^([yY][eE][sS]|[yY])+$ ]]; then
  641. echo "OK, exiting."
  642. exit 0
  643. fi
  644. migrate_docker_nat
  645. fi
  646. LATEST_COMPOSE=$(curl -#L https://www.servercow.de/docker-compose/latest.php)
  647. COMPOSE_VERSION=$(docker-compose version --short)
  648. if [[ "$LATEST_COMPOSE" != "$COMPOSE_VERSION" ]]; then
  649. echo -e "\e[33mA new docker-compose Version is available: $LATEST_COMPOSE\e[0m"
  650. echo -e "\e[33mYour Version is: $COMPOSE_VERSION\e[0m"
  651. update_compose
  652. else
  653. echo -e "\e[32mYour docker-compose Version is up to date! Not updating it...\e[0m"
  654. fi
  655. remove_obsolete_nginx_ports
  656. echo -e "\e[32mValidating docker-compose stack configuration...\e[0m"
  657. sed -i 's/HTTPS_BIND:-:/HTTPS_BIND:-/g' docker-compose.yml
  658. sed -i 's/HTTP_BIND:-:/HTTP_BIND:-/g' docker-compose.yml
  659. if ! docker-compose config -q; then
  660. echo -e "\e[31m\nOh no, something went wrong. Please check the error message above.\e[0m"
  661. exit 1
  662. fi
  663. echo -e "\e[32mChecking for conflicting bridges...\e[0m"
  664. MAILCOW_BRIDGE=$(docker-compose config | grep -i com.docker.network.bridge.name | cut -d':' -f2)
  665. while read NAT_ID; do
  666. iptables -t nat -D POSTROUTING $NAT_ID
  667. done < <(iptables -L -vn -t nat --line-numbers | grep $IPV4_NETWORK | grep -E 'MASQUERADE.*all' | grep -v ${MAILCOW_BRIDGE} | cut -d' ' -f1)
  668. DIFF_DIRECTORY=update_diffs
  669. DIFF_FILE=${DIFF_DIRECTORY}/diff_before_update_$(date +"%Y-%m-%d-%H-%M-%S")
  670. mv diff_before_update* ${DIFF_DIRECTORY}/ 2> /dev/null
  671. if ! git diff-index --quiet HEAD; then
  672. echo -e "\e[32mSaving diff to ${DIFF_FILE}...\e[0m"
  673. mkdir -p ${DIFF_DIRECTORY}
  674. git diff --stat > ${DIFF_FILE}
  675. git diff >> ${DIFF_FILE}
  676. fi
  677. echo -e "\e[32mPrefetching images...\e[0m"
  678. prefetch_images
  679. echo -e "\e[32mStopping mailcow...\e[0m"
  680. sleep 2
  681. MAILCOW_CONTAINERS=($(docker-compose ps -q))
  682. docker-compose down
  683. echo -e "\e[32mChecking for remaining containers...\e[0m"
  684. sleep 2
  685. for container in "${MAILCOW_CONTAINERS[@]}"; do
  686. docker rm -f "$container" 2> /dev/null
  687. done
  688. [[ -f data/conf/nginx/ZZZ-ejabberd.conf ]] && rm data/conf/nginx/ZZZ-ejabberd.conf
  689. # Silently fixing remote url from andryyy to mailcow
  690. git remote set-url origin https://github.com/mailcow/mailcow-dockerized
  691. echo -e "\e[32mCommitting current status...\e[0m"
  692. [[ -z "$(git config user.name)" ]] && git config user.name moo
  693. [[ -z "$(git config user.email)" ]] && git config user.email moo@cow.moo
  694. [[ ! -z $(git ls-files data/conf/rspamd/override.d/worker-controller-password.inc) ]] && git rm data/conf/rspamd/override.d/worker-controller-password.inc
  695. git add -u
  696. git commit -am "Before update on ${DATE}" > /dev/null
  697. echo -e "\e[32mFetching updated code from remote...\e[0m"
  698. git fetch origin #${BRANCH}
  699. echo -e "\e[32mMerging local with remote code (recursive, strategy: \"${MERGE_STRATEGY:-theirs}\", options: \"patience\"...\e[0m"
  700. git config merge.defaultToUpstream true
  701. git merge -X${MERGE_STRATEGY:-theirs} -Xpatience -m "After update on ${DATE}"
  702. # Need to use a variable to not pass return codes of if checks
  703. MERGE_RETURN=$?
  704. if [[ ${MERGE_RETURN} == 128 ]]; then
  705. echo -e "\e[31m\nOh no, what happened?\n=> You most likely added files to your local mailcow instance that were now added to the official mailcow repository. Please move them to another location before updating mailcow.\e[0m"
  706. exit 1
  707. elif [[ ${MERGE_RETURN} == 1 ]]; then
  708. echo -e "\e[93mPotenial conflict, trying to fix...\e[0m"
  709. git status --porcelain | grep -E "UD|DU" | awk '{print $2}' | xargs rm -v
  710. git add -A
  711. git commit -m "After update on ${DATE}" > /dev/null
  712. git checkout .
  713. echo -e "\e[32mRemoved and recreated files if necessary.\e[0m"
  714. elif [[ ${MERGE_RETURN} != 0 ]]; then
  715. echo -e "\e[31m\nOh no, something went wrong. Please check the error message above.\e[0m"
  716. echo
  717. echo "Run docker-compose up -d to restart your stack without updates or try again after fixing the mentioned errors."
  718. exit 1
  719. fi
  720. echo -e "\e[32mFetching new images, if any...\e[0m"
  721. sleep 2
  722. docker-compose pull
  723. # Fix missing SSL, does not overwrite existing files
  724. [[ ! -d data/assets/ssl ]] && mkdir -p data/assets/ssl
  725. cp -n -d data/assets/ssl-example/*.pem data/assets/ssl/
  726. echo -e "Checking IPv6 settings... "
  727. if grep -q 'SYSCTL_IPV6_DISABLED=1' mailcow.conf; then
  728. echo
  729. echo '!! IMPORTANT !!'
  730. echo
  731. echo 'SYSCTL_IPV6_DISABLED was removed due to complications. IPv6 can be disabled by editing "docker-compose.yml" and setting "enable_ipv6: true" to "enable_ipv6: false".'
  732. echo 'This setting will only be active after a complete shutdown of mailcow by running "docker-compose down" followed by "docker-compose up -d".'
  733. echo
  734. echo '!! IMPORTANT !!'
  735. echo
  736. read -p "Press any key to continue..." < /dev/tty
  737. fi
  738. # Checking for old project name bug
  739. sed -i --follow-symlinks 's#COMPOSEPROJECT_NAME#COMPOSE_PROJECT_NAME#g' mailcow.conf
  740. # Fix Rspamd maps
  741. if [ -f data/conf/rspamd/custom/global_from_blacklist.map ]; then
  742. mv data/conf/rspamd/custom/global_from_blacklist.map data/conf/rspamd/custom/global_smtp_from_blacklist.map
  743. fi
  744. if [ -f data/conf/rspamd/custom/global_from_whitelist.map ]; then
  745. mv data/conf/rspamd/custom/global_from_whitelist.map data/conf/rspamd/custom/global_smtp_from_whitelist.map
  746. fi
  747. # Fix deprecated metrics.conf
  748. if [ -f "data/conf/rspamd/local.d/metrics.conf" ]; then
  749. if [ ! -z "$(git diff --name-only origin/master data/conf/rspamd/local.d/metrics.conf)" ]; then
  750. echo -e "\e[33mWARNING\e[0m - Please migrate your customizations of data/conf/rspamd/local.d/metrics.conf to actions.conf and groups.conf after this update."
  751. echo "The deprecated configuration file metrics.conf will be moved to metrics.conf_deprecated after updating mailcow."
  752. fi
  753. mv data/conf/rspamd/local.d/metrics.conf data/conf/rspamd/local.d/metrics.conf_deprecated
  754. fi
  755. # Set app_info.inc.php
  756. mailcow_git_version=$(git describe --tags `git rev-list --tags --max-count=1`)
  757. if [ $? -eq 0 ]; then
  758. echo '<?php' > data/web/inc/app_info.inc.php
  759. echo ' $MAILCOW_GIT_VERSION="'$mailcow_git_version'";' >> data/web/inc/app_info.inc.php
  760. echo ' $MAILCOW_GIT_URL="https://github.com/mailcow/mailcow-dockerized";' >> data/web/inc/app_info.inc.php
  761. echo '?>' >> data/web/inc/app_info.inc.php
  762. else
  763. echo '<?php' > data/web/inc/app_info.inc.php
  764. echo ' $MAILCOW_GIT_VERSION="";' >> data/web/inc/app_info.inc.php
  765. echo ' $MAILCOW_GIT_URL="";' >> data/web/inc/app_info.inc.php
  766. echo '?>' >> data/web/inc/app_info.inc.php
  767. echo -e "\e[33mCannot determine current git repository version...\e[0m"
  768. fi
  769. if [[ ${SKIP_START} == "y" ]]; then
  770. echo -e "\e[33mNot starting mailcow, please run \"docker-compose up -d --remove-orphans\" to start mailcow.\e[0m"
  771. else
  772. echo -e "\e[32mStarting mailcow...\e[0m"
  773. sleep 2
  774. docker-compose up -d --remove-orphans
  775. fi
  776. echo -e "\e[32mCollecting garbage...\e[0m"
  777. docker_garbage
  778. # Run post-update-hook
  779. if [ -f "${SCRIPT_DIR}/post_update_hook.sh" ]; then
  780. bash "${SCRIPT_DIR}/post_update_hook.sh"
  781. fi
  782. # echo "In case you encounter any problem, hard-reset to a state before updating mailcow:"
  783. # echo
  784. # git reflog --color=always | grep "Before update on "
  785. # echo
  786. # echo "Use \"git reset --hard hash-on-the-left\" and run docker-compose up -d afterwards."