committed by
GitHub
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
25 changed files with 1381 additions and 478 deletions
-
57CHANGELOG.md
-
6README.md
-
50actions.toml
-
20check_process
-
4conf/app.src
-
5conf/extra_php-fpm.conf
-
4conf/nginx.conf
-
426conf/php-fpm.conf
-
2conf/sql/multisite.sql
-
2conf/sql/single.sql
-
68config_panel.toml
-
4manifest.json
-
7pull_request_template.md
-
366scripts/_common.sh
-
132scripts/_ynh_add_fpm_config
-
56scripts/actions/disable_maintenance
-
80scripts/actions/public_private
-
128scripts/actions/reset_default_app
-
80scripts/actions/reset_default_system
-
2scripts/backup
-
24scripts/change_url
-
174scripts/config
-
32scripts/install
-
10scripts/restore
-
120scripts/upgrade
@ -0,0 +1,57 @@ |
|||
Changelog |
|||
========= |
|||
|
|||
## Unreleased |
|||
- Nothing for now... |
|||
|
|||
## [5.4.0~ynh1](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85) - 2020-05-02 |
|||
|
|||
#### Added |
|||
* [Add action and config-panel feature](https://github.com/YunoHost-Apps/wordpress_ynh/pull/79) |
|||
* [Add changelog](https://github.com/YunoHost-Apps/wordpress_ynh/pull/82) |
|||
* [New reset actions](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/10a1fe6bf94a8b2eed2386b614771a51e093d958) |
|||
* [Add an action to remove maintenance mode](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/373685d5736eba2b42495867eb4119db9991a60d) |
|||
|
|||
#### Fixed |
|||
- [fix config is_public](https://github.com/YunoHost-Apps/wordpress_ynh/pull/84) |
|||
|
|||
#### Changed |
|||
* [Use ynh_get_scalable_phpfpm](https://github.com/YunoHost-Apps/wordpress_ynh/pull/80) |
|||
* [Update to 5.3.2](https://github.com/YunoHost-Apps/wordpress_ynh/pull/81) |
|||
* [Update to 5.4.0](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/00a1a6e7dd5c814f5084c11c2810f886a32bdf61) |
|||
- [Remove php template](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/9eb618f88afd8294a0c3c8e0573a055038ec5423) |
|||
- [Fix buster install](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/5e68805ed1afa47778f7cd4823f636e417594c5a) |
|||
- [specify php version to use](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/59baee2ef9d85e3284ecf47fc3c7bd16a3c08ac3) |
|||
- [Always show YunoHost tile](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/1b63bd778af287f605314b0383e5bd21f25b8007) |
|||
- [Replace wp-fail2ban by wp-fail2ban-redux](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/3faae6b27694ed363d4c3605c4718963eb3d994f) |
|||
- [Add new badges](https://github.com/YunoHost-Apps/wordpress_ynh/pull/85/commits/063a5404691d54b50b88a52addfd5e3d6de5ebd0) |
|||
|
|||
|
|||
## [5.3~ynh1](https://github.com/YunoHost-Apps/wordpress_ynh/pull/77) - 2019-12-26 |
|||
|
|||
#### Fixed |
|||
- [Get the database prefix before modifying data](https://github.com/YunoHost-Apps/wordpress_ynh/pull/77/commits/75d6e64c758443a06ca6bfd42a75291806618f03) |
|||
|
|||
#### Changed |
|||
* [Upgrade to 5.3](https://github.com/YunoHost-Apps/wordpress_ynh/pull/77/commits/7d6f1e0048ebac0c1fef06a8789192f33a8220eb) |
|||
- [Increase memory limit to support some plugin](https://github.com/YunoHost-Apps/wordpress_ynh/pull/77/commits/e5b1bb7e3449e9be49e9e60eaf3d986072a30f06) |
|||
|
|||
|
|||
## [5.2~ynh1](https://github.com/YunoHost-Apps/wordpress_ynh/pull/65) - 2019-06-05 |
|||
|
|||
#### Fixed |
|||
- [Force upgrade with a cron](https://github.com/YunoHost-Apps/wordpress_ynh/pull/63/commits/7e4808ebc3318b3b6096729a28260fc936af4e78) |
|||
|
|||
#### Changed |
|||
* [Upgrade to wordpress 5.2](https://github.com/YunoHost-Apps/wordpress_ynh/pull/63/commits/21b087ea6ebb499124745384771bfb0ddd866f11) |
|||
- [Global upgrade of the package](https://github.com/YunoHost-Apps/wordpress_ynh/pull/64/commits/87e36e665c56dfbe110f44a35a4ccc9724e89a75) |
|||
|
|||
|
|||
## [5.0.3~ynh1](https://github.com/YunoHost-Apps/wordpress_ynh/pull/56) - 2019-03-12 |
|||
|
|||
#### Added |
|||
- [Progress bar](https://github.com/YunoHost-Apps/wordpress_ynh/pull/56/commits/d140c510ea068f654ebefdd66c4e51ad3aa85067) |
|||
|
|||
#### Changed |
|||
- [Update to last packaging standard](https://github.com/YunoHost-Apps/wordpress_ynh/pull/56/commits/bb64ee0d9b8883db13da35c252ed10899559f016) |
|||
* [Update to wordpress 5.0.3](https://github.com/YunoHost-Apps/wordpress_ynh/pull/56/commits/04e76b93af5724fe23d19da2bc05e0f728398d43) |
|||
@ -0,0 +1,50 @@ |
|||
[public_private] |
|||
name = "Move to public or private" |
|||
command = "/bin/bash scripts/actions/public_private" |
|||
accepted_return_codes = [0] |
|||
description = "Change the public access of the app." |
|||
|
|||
[public_private.arguments] |
|||
[public_private.arguments.is_public] |
|||
type = "boolean" |
|||
ask = "Is it a public app ?" |
|||
default = true |
|||
|
|||
[reset_default_nginx] |
|||
name = "Reset the nginx config for this app." |
|||
command = "/bin/bash scripts/actions/reset_default_system nginx" |
|||
# user = "root" # optional |
|||
# cwd = "/" # optional |
|||
# accepted_return_codes = [0, 1, 2, 3] # optional |
|||
accepted_return_codes = [0] |
|||
description = "Reset the nginx config for this app." |
|||
|
|||
|
|||
[reset_default_phpfpm] |
|||
name = "Reset the php-fpm config for this app." |
|||
command = "/bin/bash scripts/actions/reset_default_system phpfpm" |
|||
# user = "root" # optional |
|||
# cwd = "/" # optional |
|||
# accepted_return_codes = [0, 1, 2, 3] # optional |
|||
accepted_return_codes = [0] |
|||
description = "Reset the php-fpm config for this app." |
|||
|
|||
|
|||
[reset_default_app] |
|||
name = "Reset the app with a default configuration." |
|||
command = "/bin/bash scripts/actions/reset_default_app" |
|||
# user = "root" # optional |
|||
# cwd = "/" # optional |
|||
# accepted_return_codes = [0, 1, 2, 3] # optional |
|||
accepted_return_codes = [0] |
|||
description = "Reset the app to its default configuration to try to fix potential issues.<br>This action won't remove any data added to the app.<br>However, if you have modified any configuration, it will be overwritten." |
|||
|
|||
|
|||
[disable_maintenance] |
|||
name = "Disable the maintenance mode of Wordpress" |
|||
command = "/bin/bash scripts/actions/disable_maintenance" |
|||
# user = "root" # optional |
|||
# cwd = "/" # optional |
|||
# accepted_return_codes = [0, 1, 2, 3] # optional |
|||
accepted_return_codes = [0] |
|||
description = "Disable the maintenance mode of Wordpress if you're stuck after an upgrade" |
|||
@ -1,5 +1,5 @@ |
|||
SOURCE_URL=https://wordpress.org/wordpress-5.3.tar.gz |
|||
SOURCE_SUM=b4ffcc17cbe6a6546fba4112d55e8ba5 |
|||
SOURCE_URL=https://wordpress.org/wordpress-5.4.tar.gz |
|||
SOURCE_SUM=28e230c169031b92a4766d1e9cd105e1 |
|||
SOURCE_SUM_PRG=md5sum |
|||
ARCH_FORMAT=tar.gz |
|||
SOURCE_IN_SUBDIR=true |
|||
|
|||
@ -0,0 +1,5 @@ |
|||
; Additional php.ini defines, specific to this pool of workers. |
|||
|
|||
php_admin_value[upload_max_filesize] = 50M |
|||
php_admin_value[memory_limit] = 64M |
|||
php_admin_value[post_max_size] = 50M |
|||
@ -1,426 +0,0 @@ |
|||
; Start a new pool named 'www'. |
|||
; the variable $pool can be used in any directive and will be replaced by the |
|||
; pool name ('www' here) |
|||
[__NAMETOCHANGE__] |
|||
|
|||
; Per pool prefix |
|||
; It only applies on the following directives: |
|||
; - 'access.log' |
|||
; - 'slowlog' |
|||
; - 'listen' (unixsocket) |
|||
; - 'chroot' |
|||
; - 'chdir' |
|||
; - 'php_values' |
|||
; - 'php_admin_values' |
|||
; When not set, the global prefix (or /usr) applies instead. |
|||
; Note: This directive can also be relative to the global prefix. |
|||
; Default Value: none |
|||
;prefix = /path/to/pools/$pool |
|||
|
|||
; Unix user/group of processes |
|||
; Note: The user is mandatory. If the group is not set, the default user's group |
|||
; will be used. |
|||
user = __USER__ |
|||
group = __USER__ |
|||
|
|||
; The address on which to accept FastCGI requests. |
|||
; Valid syntaxes are: |
|||
; 'ip.add.re.ss:port' - to listen on a TCP socket to a specific IPv4 address on |
|||
; a specific port; |
|||
; 'port' - to listen on a TCP socket to all addresses on a |
|||
; specific port; |
|||
; '[ip:6:addr:ess]:port' - to listen on a TCP socket to a specific IPv6 address on |
|||
; a specific port; |
|||
; 'port' - to listen on a TCP socket to all addresses |
|||
; (IPv6 and IPv4-mapped) on a specific port; |
|||
; '/path/to/unix/socket' - to listen on a unix socket. |
|||
; Note: This value is mandatory. |
|||
listen = /var/run/php/php7.0-fpm-__NAMETOCHANGE__.sock |
|||
|
|||
; Set listen(2) backlog. |
|||
; Default Value: 511 (-1 on FreeBSD and OpenBSD) |
|||
;listen.backlog = 511 |
|||
|
|||
; Set permissions for unix socket, if one is used. In Linux, read/write |
|||
; permissions must be set in order to allow connections from a web server. Many |
|||
; BSD-derived systems allow connections regardless of permissions. |
|||
; Default Values: user and group are set as the running user |
|||
; mode is set to 0660 |
|||
listen.owner = www-data |
|||
listen.group = www-data |
|||
;listen.mode = 0660 |
|||
|
|||
; When POSIX Access Control Lists are supported you can set them using |
|||
; these options, value is a comma separated list of user/group names. |
|||
; When set, listen.owner and listen.group are ignored |
|||
;listen.acl_users = |
|||
;listen.acl_groups = |
|||
|
|||
; List of addresses (IPv4/IPv6) of FastCGI clients which are allowed to connect. |
|||
; Equivalent to the FCGI_WEB_SERVER_ADDRS environment variable in the original |
|||
; PHP FCGI (5.2.2+). Makes sense only with a tcp listening socket. Each address |
|||
; must be separated by a comma. If this value is left blank, connections will be |
|||
; accepted from any ip address. |
|||
; Default Value: any |
|||
;listen.allowed_clients = 127.0.0.1 |
|||
|
|||
; Specify the nice(2) priority to apply to the pool processes (only if set) |
|||
; The value can vary from -19 (highest priority) to 20 (lower priority) |
|||
; Note: - It will only work if the FPM master process is launched as root |
|||
; - The pool processes will inherit the master process priority |
|||
; unless it specified otherwise |
|||
; Default Value: no set |
|||
; process.priority = -19 |
|||
|
|||
; Set the process dumpable flag (PR_SET_DUMPABLE prctl) even if the process user |
|||
; or group is differrent than the master process user. It allows to create process |
|||
; core dump and ptrace the process for the pool user. |
|||
; Default Value: no |
|||
; process.dumpable = yes |
|||
|
|||
; Choose how the process manager will control the number of child processes. |
|||
; Possible Values: |
|||
; static - a fixed number (pm.max_children) of child processes; |
|||
; dynamic - the number of child processes are set dynamically based on the |
|||
; following directives. With this process management, there will be |
|||
; always at least 1 children. |
|||
; pm.max_children - the maximum number of children that can |
|||
; be alive at the same time. |
|||
; pm.start_servers - the number of children created on startup. |
|||
; pm.min_spare_servers - the minimum number of children in 'idle' |
|||
; state (waiting to process). If the number |
|||
; of 'idle' processes is less than this |
|||
; number then some children will be created. |
|||
; pm.max_spare_servers - the maximum number of children in 'idle' |
|||
; state (waiting to process). If the number |
|||
; of 'idle' processes is greater than this |
|||
; number then some children will be killed. |
|||
; ondemand - no children are created at startup. Children will be forked when |
|||
; new requests will connect. The following parameter are used: |
|||
; pm.max_children - the maximum number of children that |
|||
; can be alive at the same time. |
|||
; pm.process_idle_timeout - The number of seconds after which |
|||
; an idle process will be killed. |
|||
; Note: This value is mandatory. |
|||
pm = dynamic |
|||
|
|||
; The number of child processes to be created when pm is set to 'static' and the |
|||
; maximum number of child processes when pm is set to 'dynamic' or 'ondemand'. |
|||
; This value sets the limit on the number of simultaneous requests that will be |
|||
; served. Equivalent to the ApacheMaxClients directive with mpm_prefork. |
|||
; Equivalent to the PHP_FCGI_CHILDREN environment variable in the original PHP |
|||
; CGI. The below defaults are based on a server without much resources. Don't |
|||
; forget to tweak pm.* to fit your needs. |
|||
; Note: Used when pm is set to 'static', 'dynamic' or 'ondemand' |
|||
; Note: This value is mandatory. |
|||
pm.max_children = 10 |
|||
|
|||
; The number of child processes created on startup. |
|||
; Note: Used only when pm is set to 'dynamic' |
|||
; Default Value: min_spare_servers + (max_spare_servers - min_spare_servers) / 2 |
|||
pm.start_servers = 2 |
|||
|
|||
; The desired minimum number of idle server processes. |
|||
; Note: Used only when pm is set to 'dynamic' |
|||
; Note: Mandatory when pm is set to 'dynamic' |
|||
pm.min_spare_servers = 1 |
|||
|
|||
; The desired maximum number of idle server processes. |
|||
; Note: Used only when pm is set to 'dynamic' |
|||
; Note: Mandatory when pm is set to 'dynamic' |
|||
pm.max_spare_servers = 3 |
|||
|
|||
; The number of seconds after which an idle process will be killed. |
|||
; Note: Used only when pm is set to 'ondemand' |
|||
; Default Value: 10s |
|||
;pm.process_idle_timeout = 10s; |
|||
|
|||
; The number of requests each child process should execute before respawning. |
|||
; This can be useful to work around memory leaks in 3rd party libraries. For |
|||
; endless request processing specify '0'. Equivalent to PHP_FCGI_MAX_REQUESTS. |
|||
; Default Value: 0 |
|||
; pm.max_requests = 500 |
|||
|
|||
; The URI to view the FPM status page. If this value is not set, no URI will be |
|||
; recognized as a status page. It shows the following informations: |
|||
; pool - the name of the pool; |
|||
; process manager - static, dynamic or ondemand; |
|||
; start time - the date and time FPM has started; |
|||
; start since - number of seconds since FPM has started; |
|||
; accepted conn - the number of request accepted by the pool; |
|||
; listen queue - the number of request in the queue of pending |
|||
; connections (see backlog in listen(2)); |
|||
; max listen queue - the maximum number of requests in the queue |
|||
; of pending connections since FPM has started; |
|||
; listen queue len - the size of the socket queue of pending connections; |
|||
; idle processes - the number of idle processes; |
|||
; active processes - the number of active processes; |
|||
; total processes - the number of idle + active processes; |
|||
; max active processes - the maximum number of active processes since FPM |
|||
; has started; |
|||
; max children reached - number of times, the process limit has been reached, |
|||
; when pm tries to start more children (works only for |
|||
; pm 'dynamic' and 'ondemand'); |
|||
; Value are updated in real time. |
|||
; Example output: |
|||
; pool: www |
|||
; process manager: static |
|||
; start time: 01/Jul/2011:17:53:49 +0200 |
|||
; start since: 62636 |
|||
; accepted conn: 190460 |
|||
; listen queue: 0 |
|||
; max listen queue: 1 |
|||
; listen queue len: 42 |
|||
; idle processes: 4 |
|||
; active processes: 11 |
|||
; total processes: 15 |
|||
; max active processes: 12 |
|||
; max children reached: 0 |
|||
; |
|||
; By default the status page output is formatted as text/plain. Passing either |
|||
; 'html', 'xml' or 'json' in the query string will return the corresponding |
|||
; output syntax. Example: |
|||
; http://www.foo.bar/status |
|||
; http://www.foo.bar/status?json |
|||
; http://www.foo.bar/status?html |
|||
; http://www.foo.bar/status?xml |
|||
; |
|||
; By default the status page only outputs short status. Passing 'full' in the |
|||
; query string will also return status for each pool process. |
|||
; Example: |
|||
; http://www.foo.bar/status?full |
|||
; http://www.foo.bar/status?json&full |
|||
; http://www.foo.bar/status?html&full |
|||
; http://www.foo.bar/status?xml&full |
|||
; The Full status returns for each process: |
|||
; pid - the PID of the process; |
|||
; state - the state of the process (Idle, Running, ...); |
|||
; start time - the date and time the process has started; |
|||
; start since - the number of seconds since the process has started; |
|||
; requests - the number of requests the process has served; |
|||
; request duration - the duration in µs of the requests; |
|||
; request method - the request method (GET, POST, ...); |
|||
; request URI - the request URI with the query string; |
|||
; content length - the content length of the request (only with POST); |
|||
; user - the user (PHP_AUTH_USER) (or '-' if not set); |
|||
; script - the main script called (or '-' if not set); |
|||
; last request cpu - the %cpu the last request consumed |
|||
; it's always 0 if the process is not in Idle state |
|||
; because CPU calculation is done when the request |
|||
; processing has terminated; |
|||
; last request memory - the max amount of memory the last request consumed |
|||
; it's always 0 if the process is not in Idle state |
|||
; because memory calculation is done when the request |
|||
; processing has terminated; |
|||
; If the process is in Idle state, then informations are related to the |
|||
; last request the process has served. Otherwise informations are related to |
|||
; the current request being served. |
|||
; Example output: |
|||
; ************************ |
|||
; pid: 31330 |
|||
; state: Running |
|||
; start time: 01/Jul/2011:17:53:49 +0200 |
|||
; start since: 63087 |
|||
; requests: 12808 |
|||
; request duration: 1250261 |
|||
; request method: GET |
|||
; request URI: /test_mem.php?N=10000 |
|||
; content length: 0 |
|||
; user: - |
|||
; script: /home/fat/web/docs/php/test_mem.php |
|||
; last request cpu: 0.00 |
|||
; last request memory: 0 |
|||
; |
|||
; Note: There is a real-time FPM status monitoring sample web page available |
|||
; It's available in: /usr/share/php/7.0/fpm/status.html |
|||
; |
|||
; Note: The value must start with a leading slash (/). The value can be |
|||
; anything, but it may not be a good idea to use the .php extension or it |
|||
; may conflict with a real PHP file. |
|||
; Default Value: not set |
|||
;pm.status_path = /status |
|||
|
|||
; The ping URI to call the monitoring page of FPM. If this value is not set, no |
|||
; URI will be recognized as a ping page. This could be used to test from outside |
|||
; that FPM is alive and responding, or to |
|||
; - create a graph of FPM availability (rrd or such); |
|||
; - remove a server from a group if it is not responding (load balancing); |
|||
; - trigger alerts for the operating team (24/7). |
|||
; Note: The value must start with a leading slash (/). The value can be |
|||
; anything, but it may not be a good idea to use the .php extension or it |
|||
; may conflict with a real PHP file. |
|||
; Default Value: not set |
|||
;ping.path = /ping |
|||
|
|||
; This directive may be used to customize the response of a ping request. The |
|||
; response is formatted as text/plain with a 200 response code. |
|||
; Default Value: pong |
|||
;ping.response = pong |
|||
|
|||
; The access log file |
|||
; Default: not set |
|||
;access.log = log/$pool.access.log |
|||
|
|||
; The access log format. |
|||
; The following syntax is allowed |
|||
; %%: the '%' character |
|||
; %C: %CPU used by the request |
|||
; it can accept the following format: |
|||
; - %{user}C for user CPU only |
|||
; - %{system}C for system CPU only |
|||
; - %{total}C for user + system CPU (default) |
|||
; %d: time taken to serve the request |
|||
; it can accept the following format: |
|||
; - %{seconds}d (default) |
|||
; - %{miliseconds}d |
|||
; - %{mili}d |
|||
; - %{microseconds}d |
|||
; - %{micro}d |
|||
; %e: an environment variable (same as $_ENV or $_SERVER) |
|||
; it must be associated with embraces to specify the name of the env |
|||
; variable. Some exemples: |
|||
; - server specifics like: %{REQUEST_METHOD}e or %{SERVER_PROTOCOL}e |
|||
; - HTTP headers like: %{HTTP_HOST}e or %{HTTP_USER_AGENT}e |
|||
; %f: script filename |
|||
; %l: content-length of the request (for POST request only) |
|||
; %m: request method |
|||
; %M: peak of memory allocated by PHP |
|||
; it can accept the following format: |
|||
; - %{bytes}M (default) |
|||
; - %{kilobytes}M |
|||
; - %{kilo}M |
|||
; - %{megabytes}M |
|||
; - %{mega}M |
|||
; %n: pool name |
|||
; %o: output header |
|||
; it must be associated with embraces to specify the name of the header: |
|||
; - %{Content-Type}o |
|||
; - %{X-Powered-By}o |
|||
; - %{Transfert-Encoding}o |
|||
; - .... |
|||
; %p: PID of the child that serviced the request |
|||
; %P: PID of the parent of the child that serviced the request |
|||
; %q: the query string |
|||
; %Q: the '?' character if query string exists |
|||
; %r: the request URI (without the query string, see %q and %Q) |
|||
; %R: remote IP address |
|||
; %s: status (response code) |
|||
; %t: server time the request was received |
|||
; it can accept a strftime(3) format: |
|||
; %d/%b/%Y:%H:%M:%S %z (default) |
|||
; The strftime(3) format must be encapsuled in a %{<strftime_format>}t tag |
|||
; e.g. for a ISO8601 formatted timestring, use: %{%Y-%m-%dT%H:%M:%S%z}t |
|||
; %T: time the log has been written (the request has finished) |
|||
; it can accept a strftime(3) format: |
|||
; %d/%b/%Y:%H:%M:%S %z (default) |
|||
; The strftime(3) format must be encapsuled in a %{<strftime_format>}t tag |
|||
; e.g. for a ISO8601 formatted timestring, use: %{%Y-%m-%dT%H:%M:%S%z}t |
|||
; %u: remote user |
|||
; |
|||
; Default: "%R - %u %t \"%m %r\" %s" |
|||
; access.format = "%R - %u %t \"%m %r%Q%q\" %s %f %{mili}d %{kilo}M %C%%" |
|||
|
|||
; The log file for slow requests |
|||
; Default Value: not set |
|||
; Note: slowlog is mandatory if request_slowlog_timeout is set |
|||
; slowlog = log/$pool.log.slow |
|||
|
|||
; The timeout for serving a single request after which a PHP backtrace will be |
|||
; dumped to the 'slowlog' file. A value of '0s' means 'off'. |
|||
; Available units: s(econds)(default), m(inutes), h(ours), or d(ays) |
|||
; Default Value: 0 |
|||
;request_slowlog_timeout = 0 |
|||
|
|||
; The timeout for serving a single request after which the worker process will |
|||
; be killed. This option should be used when the 'max_execution_time' ini option |
|||
; does not stop script execution for some reason. A value of '0' means 'off'. |
|||
; Available units: s(econds)(default), m(inutes), h(ours), or d(ays) |
|||
; Default Value: 0 |
|||
request_terminate_timeout = 1d |
|||
|
|||
; Set open file descriptor rlimit. |
|||
; Default Value: system defined value |
|||
;rlimit_files = 1024 |
|||
|
|||
; Set max core size rlimit. |
|||
; Possible Values: 'unlimited' or an integer greater or equal to 0 |
|||
; Default Value: system defined value |
|||
;rlimit_core = 0 |
|||
|
|||
; Chroot to this directory at the start. This value must be defined as an |
|||
; absolute path. When this value is not set, chroot is not used. |
|||
; Note: you can prefix with '$prefix' to chroot to the pool prefix or one |
|||
; of its subdirectories. If the pool prefix is not set, the global prefix |
|||
; will be used instead. |
|||
; Note: chrooting is a great security feature and should be used whenever |
|||
; possible. However, all PHP paths will be relative to the chroot |
|||
; (error_log, sessions.save_path, ...). |
|||
; Default Value: not set |
|||
;chroot = |
|||
|
|||
; Chdir to this directory at the start. |
|||
; Note: relative path can be used. |
|||
; Default Value: current directory or / when chroot |
|||
chdir = __FINALPATH__ |
|||
|
|||
; Redirect worker stdout and stderr into main error log. If not set, stdout and |
|||
; stderr will be redirected to /dev/null according to FastCGI specs. |
|||
; Note: on highloaded environement, this can cause some delay in the page |
|||
; process time (several ms). |
|||
; Default Value: no |
|||
;catch_workers_output = yes |
|||
|
|||
; Clear environment in FPM workers |
|||
; Prevents arbitrary environment variables from reaching FPM worker processes |
|||
; by clearing the environment in workers before env vars specified in this |
|||
; pool configuration are added. |
|||
; Setting to "no" will make all environment variables available to PHP code |
|||
; via getenv(), $_ENV and $_SERVER. |
|||
; Default Value: yes |
|||
;clear_env = no |
|||
|
|||
; Limits the extensions of the main script FPM will allow to parse. This can |
|||
; prevent configuration mistakes on the web server side. You should only limit |
|||
; FPM to .php extensions to prevent malicious users to use other extensions to |
|||
; execute php code. |
|||
; Note: set an empty value to allow all extensions. |
|||
; Default Value: .php |
|||
;security.limit_extensions = .php .php3 .php4 .php5 .php7 |
|||
|
|||
; Pass environment variables like LD_LIBRARY_PATH. All $VARIABLEs are taken from |
|||
; the current environment. |
|||
; Default Value: clean env |
|||
;env[HOSTNAME] = $HOSTNAME |
|||
;env[PATH] = /usr/local/bin:/usr/bin:/bin |
|||
;env[TMP] = /tmp |
|||
;env[TMPDIR] = /tmp |
|||
;env[TEMP] = /tmp |
|||
|
|||
; Additional php.ini defines, specific to this pool of workers. These settings |
|||
; overwrite the values previously defined in the php.ini. The directives are the |
|||
; same as the PHP SAPI: |
|||
; php_value/php_flag - you can set classic ini defines which can |
|||
; be overwritten from PHP call 'ini_set'. |
|||
; php_admin_value/php_admin_flag - these directives won't be overwritten by |
|||
; PHP call 'ini_set' |
|||
; For php_*flag, valid values are on, off, 1, 0, true, false, yes or no. |
|||
|
|||
; Defining 'extension' will load the corresponding shared extension from |
|||
; extension_dir. Defining 'disable_functions' or 'disable_classes' will not |
|||
; overwrite previously defined php.ini values, but will append the new value |
|||
; instead. |
|||
|
|||
; Note: path INI options can be relative and will be expanded with the prefix |
|||
; (pool, global or /usr) |
|||
|
|||
; Default Value: nothing is defined by default except the values in php.ini and |
|||
; specified at startup with the -d argument |
|||
;php_admin_value[sendmail_path] = /usr/sbin/sendmail -t -i -f www@my.domain.com |
|||
;php_flag[display_errors] = off |
|||
;php_admin_value[error_log] = /var/log/fpm-php.www.log |
|||
;php_admin_flag[log_errors] = on |
|||
;php_admin_value[memory_limit] = 32M |
|||
|
|||
php_admin_value[upload_max_filesize] = 50M |
|||
php_admin_value[memory_limit] = 64M |
|||
php_admin_value[post_max_size] = 50M |
|||
@ -1 +1 @@ |
|||
INSERT INTO wp_sitemeta VALUES('',1,'sll_settings','a:14:{s:14:"account_suffix";s:0:"";s:7:"base_dn";s:27:"ou=users,dc=yunohost,dc=org";s:18:"domain_controllers";a:1:{i:0;s:9:"localhost";}s:9:"directory";s:2:"ol";s:4:"role";s:10:"subscriber";s:13:"high_security";s:5:"false";s:8:"ol_login";s:3:"uid";s:7:"use_tls";s:5:"false";s:9:"ldap_port";s:3:"389";s:12:"ldap_version";s:1:"3";s:12:"create_users";s:4:"true";s:7:"enabled";s:4:"true";s:7:"version";s:3:"1.5";s:6:"groups";a:1:{i:0;s:0:"";}}'); |
|||
INSERT INTO wp_sitemeta VALUES(NULL,1,'sll_settings','a:14:{s:14:"account_suffix";s:0:"";s:7:"base_dn";s:27:"ou=users,dc=yunohost,dc=org";s:18:"domain_controllers";a:1:{i:0;s:9:"localhost";}s:9:"directory";s:2:"ol";s:4:"role";s:10:"subscriber";s:13:"high_security";s:5:"false";s:8:"ol_login";s:3:"uid";s:7:"use_tls";s:5:"false";s:9:"ldap_port";s:3:"389";s:12:"ldap_version";s:1:"3";s:12:"create_users";s:4:"true";s:7:"enabled";s:4:"true";s:7:"version";s:3:"1.5";s:6:"groups";a:1:{i:0;s:0:"";}}'); |
|||
@ -1 +1 @@ |
|||
INSERT INTO wp_options VALUES('','sll_settings','a:14:{s:14:"account_suffix";s:0:"";s:7:"base_dn";s:27:"ou=users,dc=yunohost,dc=org";s:18:"domain_controllers";a:1:{i:0;s:9:"localhost";}s:9:"directory";s:2:"ol";s:4:"role";s:10:"subscriber";s:13:"high_security";s:5:"false";s:8:"ol_login";s:3:"uid";s:7:"use_tls";s:5:"false";s:9:"ldap_port";s:3:"389";s:12:"ldap_version";s:1:"3";s:12:"create_users";s:4:"true";s:7:"enabled";s:4:"true";s:7:"version";s:3:"1.5";s:6:"groups";a:1:{i:0;s:0:"";}}','yes'); |
|||
INSERT INTO wp_options VALUES(NULL,'sll_settings','a:14:{s:14:"account_suffix";s:0:"";s:7:"base_dn";s:27:"ou=users,dc=yunohost,dc=org";s:18:"domain_controllers";a:1:{i:0;s:9:"localhost";}s:9:"directory";s:2:"ol";s:4:"role";s:10:"subscriber";s:13:"high_security";s:5:"false";s:8:"ol_login";s:3:"uid";s:7:"use_tls";s:5:"false";s:9:"ldap_port";s:3:"389";s:12:"ldap_version";s:1:"3";s:12:"create_users";s:4:"true";s:7:"enabled";s:4:"true";s:7:"version";s:3:"1.5";s:6:"groups";a:1:{i:0;s:0:"";}}','yes'); |
|||
@ -0,0 +1,68 @@ |
|||
version = "0.1" |
|||
name = "Wordpress configuration panel" |
|||
|
|||
[main] |
|||
name = "Wordpress configuration" |
|||
|
|||
|
|||
[main.is_public] |
|||
name = "Public access" |
|||
|
|||
[main.is_public.is_public] |
|||
ask = "Is it a public WordPress site ?" |
|||
type = "boolean" |
|||
default = true |
|||
|
|||
|
|||
[main.overwrite_files] |
|||
name = "Overwriting config files" |
|||
|
|||
[main.overwrite_files.overwrite_nginx] |
|||
ask = "Overwrite the nginx config file ?" |
|||
type = "boolean" |
|||
default = true |
|||
help = "If the file is overwritten, a backup will be created." |
|||
|
|||
[main.overwrite_files.overwrite_phpfpm] |
|||
ask = "Overwrite the php-fpm config file ?" |
|||
type = "boolean" |
|||
default = true |
|||
help = "If the file is overwritten, a backup will be created." |
|||
|
|||
|
|||
[main.global_config] |
|||
name = "Global configuration" |
|||
|
|||
[main.global_config.email_type] |
|||
ask = "Send HTML email to admin ?" |
|||
type = "boolean" |
|||
default = true |
|||
help = "Allow app scripts to send HTML mails instead of plain text." |
|||
|
|||
|
|||
[main.php_fpm_config] |
|||
name = "PHP-FPM configuration" |
|||
|
|||
[main.php_fpm_config.footprint] |
|||
ask = "Memory footprint of the service ?" |
|||
choices = ["low", "medium", "high", "specific"] |
|||
default = "low" |
|||
help = "low <= 20Mb per pool. medium between 20Mb and 40Mb per pool. high > 40Mb per pool.<br>Use specific to set a value with the following option." |
|||
|
|||
[main.php_fpm_config.free_footprint] |
|||
ask = "Memory footprint of the service ?" |
|||
type = "number" |
|||
default = "0" |
|||
help = "Free field to specify exactly the footprint in Mb if you don't want to use one of the three previous values." |
|||
|
|||
[main.php_fpm_config.usage] |
|||
ask = "Expected usage of the service ?" |
|||
choices = ["low", "medium", "high"] |
|||
default = "low" |
|||
help = "low: Personal usage, behind the sso. No RAM footprint when not used, but the impact on the processor can be high if many users are using the service.<br>medium: Low usage, few people or/and publicly accessible. Low RAM footprint, medium processor footprint when used.<br>high: High usage, frequently visited website. High RAM footprint, but lower on processor usage and quickly responding." |
|||
|
|||
[main.php_fpm_config.force_max_children] |
|||
ask = "Force the value of pm.max_children ?" |
|||
type = "number" |
|||
default = "0" |
|||
help = "Do not change this value unless you're sure about what you're doing !<br>pm.max_children is automatically defined by this formula: $max_ram / 2 / $footprint<br>You can force that value, and ignore the formula by changing the value here.<br>To reset to the default value, set to 0." |
|||
@ -0,0 +1,132 @@ |
|||
#!/bin/bash |
|||
|
|||
# Create a dedicated php-fpm config |
|||
# |
|||
# usage 1: ynh_add_fpm_config [--phpversion=7.X] [--use_template] |
|||
# | arg: -v, --phpversion - Version of php to use. |
|||
# | arg: -t, --use_template - Use this helper in template mode. |
|||
# |
|||
# ----------------------------------------------------------------------------- |
|||
# |
|||
# usage 2: ynh_add_fpm_config [--phpversion=7.X] --usage=usage --footprint=footprint |
|||
# | arg: -v, --phpversion - Version of php to use.# |
|||
# | arg: -f, --footprint - Memory footprint of the service (low/medium/high). |
|||
# low - Less than 20Mb of ram by pool. |
|||
# medium - Between 20Mb and 40Mb of ram by pool. |
|||
# high - More than 40Mb of ram by pool. |
|||
# Or specify exactly the footprint, the load of the service as Mb by pool instead of having a standard value. |
|||
# To have this value, use the following command and stress the service. |
|||
# watch -n0.5 ps -o user,cmd,%cpu,rss -u APP |
|||
# |
|||
# | arg: -u, --usage - Expected usage of the service (low/medium/high). |
|||
# low - Personal usage, behind the sso. |
|||
# medium - Low usage, few people or/and publicly accessible. |
|||
# high - High usage, frequently visited website. |
|||
# |
|||
# Requires YunoHost version 2.7.2 or higher. |
|||
ynh_add_fpm_config () { |
|||
# Declare an array to define the options of this helper. |
|||
local legacy_args=vtuf |
|||
declare -Ar args_array=( [v]=phpversion= [t]=use_template [u]=usage= [f]=footprint= ) |
|||
local phpversion |
|||
local use_template |
|||
local usage |
|||
local footprint |
|||
# Manage arguments with getopts |
|||
ynh_handle_getopts_args "$@" |
|||
# The default behaviour is to use the template. |
|||
use_template="${use_template:-1}" |
|||
usage="${usage:-}" |
|||
footprint="${footprint:-}" |
|||
if [ -n "$usage" ] || [ -n "$footprint" ]; then |
|||
use_template=0 |
|||
fi |
|||
|
|||
# Configure PHP-FPM 7.0 by default |
|||
phpversion="${phpversion:-7.0}" |
|||
|
|||
local fpm_config_dir="/etc/php/$phpversion/fpm" |
|||
local fpm_service="php${phpversion}-fpm" |
|||
# Configure PHP-FPM 5 on Debian Jessie |
|||
if [ "$(ynh_get_debian_release)" == "jessie" ]; then |
|||
fpm_config_dir="/etc/php5/fpm" |
|||
fpm_service="php5-fpm" |
|||
fi |
|||
ynh_app_setting_set --app=$app --key=fpm_config_dir --value="$fpm_config_dir" |
|||
ynh_app_setting_set --app=$app --key=fpm_service --value="$fpm_service" |
|||
finalphpconf="$fpm_config_dir/pool.d/$app.conf" |
|||
ynh_backup_if_checksum_is_different --file="$finalphpconf" |
|||
|
|||
if [ $use_template -eq 1 ] |
|||
then |
|||
# Usage 1, use the template in ../conf/php-fpm.conf |
|||
sudo cp ../conf/php-fpm.conf "$finalphpconf" |
|||
ynh_replace_string --match_string="__NAMETOCHANGE__" --replace_string="$app" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string="__FINALPATH__" --replace_string="$final_path" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string="__USER__" --replace_string="$app" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string="__PHPVERSION__" --replace_string="$phpversion" --target_file="$finalphpconf" |
|||
|
|||
else |
|||
# Store settings |
|||
ynh_app_setting_set --app=$app --key=fpm_footprint --value=$footprint |
|||
ynh_app_setting_set --app=$app --key=fpm_usage --value=$usage |
|||
|
|||
# Usage 2, generate a php-fpm config file with ynh_get_scalable_phpfpm |
|||
ynh_get_scalable_phpfpm --usage=$usage --footprint=$footprint |
|||
|
|||
# Copy the default file |
|||
sudo cp "$fpm_config_dir/pool.d/www.conf" "$finalphpconf" |
|||
|
|||
# Replace standard variables into the default file |
|||
ynh_replace_string --match_string="^\[www\]" --replace_string="[$app]" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*listen = .*" --replace_string="listen = /var/run/php/php7.0-fpm-$app.sock" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string="^user = .*" --replace_string="user = $app" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string="^group = .*" --replace_string="group = $app" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*chdir = .*" --replace_string="chdir = $final_path" --target_file="$finalphpconf" |
|||
|
|||
# Configure fpm children |
|||
ynh_replace_string --match_string=".*pm = .*" --replace_string="pm = $php_pm" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*pm.max_children = .*" --replace_string="pm.max_children = $php_max_children" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*pm.max_requests = .*" --replace_string="pm.max_requests = 500" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*request_terminate_timeout = .*" --replace_string="request_terminate_timeout = 1d" --target_file="$finalphpconf" |
|||
if [ "$php_pm" = "dynamic" ] |
|||
then |
|||
ynh_replace_string --match_string=".*pm.start_servers = .*" --replace_string="pm.start_servers = $php_start_servers" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*pm.min_spare_servers = .*" --replace_string="pm.min_spare_servers = $php_min_spare_servers" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*pm.max_spare_servers = .*" --replace_string="pm.max_spare_servers = $php_max_spare_servers" --target_file="$finalphpconf" |
|||
elif [ "$php_pm" = "ondemand" ] |
|||
then |
|||
ynh_replace_string --match_string=".*pm.process_idle_timeout = .*" --replace_string="pm.process_idle_timeout = 10s" --target_file="$finalphpconf" |
|||
fi |
|||
|
|||
# Comment unused parameters |
|||
if [ "$php_pm" != "dynamic" ] |
|||
then |
|||
ynh_replace_string --match_string=".*\(pm.start_servers = .*\)" --replace_string=";\1" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*\(pm.min_spare_servers = .*\)" --replace_string=";\1" --target_file="$finalphpconf" |
|||
ynh_replace_string --match_string=".*\(pm.max_spare_servers = .*\)" --replace_string=";\1" --target_file="$finalphpconf" |
|||
fi |
|||
if [ "$php_pm" != "ondemand" ] |
|||
then |
|||
ynh_replace_string --match_string=".*\(pm.process_idle_timeout = .*\)" --replace_string=";\1" --target_file="$finalphpconf" |
|||
fi |
|||
|
|||
# Concatene the extra config. |
|||
if [ -e ../conf/extra_php-fpm.conf ]; then |
|||
cat ../conf/extra_php-fpm.conf >> "$finalphpconf" |
|||
fi |
|||
fi |
|||
sudo chown root: "$finalphpconf" |
|||
ynh_store_file_checksum --file="$finalphpconf" |
|||
|
|||
if [ -e "../conf/php-fpm.ini" ] |
|||
then |
|||
echo "Packagers ! Please do not use a separate php ini file, merge your directives in the pool file instead." >&2 |
|||
finalphpini="$fpm_config_dir/conf.d/20-$app.ini" |
|||
ynh_backup_if_checksum_is_different "$finalphpini" |
|||
sudo cp ../conf/php-fpm.ini "$finalphpini" |
|||
sudo chown root: "$finalphpini" |
|||
ynh_store_file_checksum "$finalphpini" |
|||
fi |
|||
ynh_systemd_action --service_name=$fpm_service --action=reload |
|||
} |
|||
@ -0,0 +1,56 @@ |
|||
#!/bin/bash |
|||
|
|||
#================================================= |
|||
# GENERIC STARTING |
|||
#================================================= |
|||
# IMPORT GENERIC HELPERS |
|||
#================================================= |
|||
|
|||
source scripts/_common.sh |
|||
source /usr/share/yunohost/helpers |
|||
|
|||
#================================================= |
|||
# MANAGE SCRIPT FAILURE |
|||
#================================================= |
|||
|
|||
# Exit if an error occurs during the execution of the script |
|||
ynh_abort_if_errors |
|||
|
|||
#================================================= |
|||
# RETRIEVE ARGUMENTS |
|||
#================================================= |
|||
|
|||
app=${YNH_APP_INSTANCE_NAME} |
|||
|
|||
final_path=$(ynh_app_setting_get --app=$app --key=final_path) |
|||
|
|||
#================================================= |
|||
# CHECK IF ARGUMENTS ARE CORRECT |
|||
#================================================= |
|||
|
|||
#================================================= |
|||
# CHECK IF AN ACTION HAS TO BE DONE |
|||
#================================================= |
|||
|
|||
# Check the current status of the maintenance mode |
|||
|
|||
if [ ! -e "$final_path/.maintenance" ] |
|||
then |
|||
ynh_die --message="Wordpress isn't currently under maintenance." --ret_code=0 |
|||
fi |
|||
|
|||
#================================================= |
|||
# SPECIFIC ACTION |
|||
#================================================= |
|||
# DISABLE THE MAINTENANCE MODE |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Disabling maintenance mode..." |
|||
|
|||
ynh_secure_remove --file="$final_path/.maintenance" |
|||
|
|||
#================================================= |
|||
# END OF SCRIPT |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Execution completed" --last |
|||
@ -0,0 +1,80 @@ |
|||
#!/bin/bash |
|||
|
|||
#================================================= |
|||
# GENERIC STARTING |
|||
#================================================= |
|||
# IMPORT GENERIC HELPERS |
|||
#================================================= |
|||
|
|||
source /usr/share/yunohost/helpers |
|||
|
|||
#================================================= |
|||
# MANAGE SCRIPT FAILURE |
|||
#================================================= |
|||
|
|||
# Exit if an error occurs during the execution of the script |
|||
ynh_abort_if_errors |
|||
|
|||
#================================================= |
|||
# RETRIEVE ARGUMENTS |
|||
#================================================= |
|||
|
|||
# Get is_public |
|||
is_public=${YNH_ACTION_IS_PUBLIC} |
|||
|
|||
app=$YNH_APP_INSTANCE_NAME |
|||
|
|||
#================================================= |
|||
# CHECK IF ARGUMENTS ARE CORRECT |
|||
#================================================= |
|||
|
|||
#================================================= |
|||
# CHECK IF AN ACTION HAS TO BE DONE |
|||
#================================================= |
|||
|
|||
is_public_old=$(ynh_app_setting_get --app=$app --key=is_public) |
|||
|
|||
if [ $is_public -eq $is_public_old ] |
|||
then |
|||
ynh_die --message="is_public is already set as $is_public." --ret_code=0 |
|||
fi |
|||
|
|||
#================================================= |
|||
# SPECIFIC ACTION |
|||
#================================================= |
|||
# MOVE TO PUBLIC OR PRIVATE |
|||
#================================================= |
|||
|
|||
if [ $is_public -eq 0 ]; then |
|||
public_private="private" |
|||
else |
|||
public_private="public" |
|||
fi |
|||
ynh_script_progression --message="Moving the application to $public_private..." --weight=3 |
|||
|
|||
if [ $is_public -eq 0 ] |
|||
then |
|||
ynh_app_setting_delete --app=$app --key=unprotected_uris |
|||
else |
|||
ynh_app_setting_set --app=$app --key=unprotected_uris --value="/" |
|||
fi |
|||
|
|||
ynh_script_progression --message="Upgrading SSOwat configuration..." |
|||
# Regen ssowat configuration |
|||
yunohost app ssowatconf |
|||
|
|||
# Update the config of the app |
|||
ynh_app_setting_set --app=$app --key=is_public --value=$is_public |
|||
|
|||
#================================================= |
|||
# RELOAD NGINX |
|||
#================================================= |
|||
ynh_script_progression --message="Reloading nginx web server..." |
|||
|
|||
ynh_systemd_action --service_name=nginx --action=reload |
|||
|
|||
#================================================= |
|||
# END OF SCRIPT |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Execution completed" --last |
|||
@ -0,0 +1,128 @@ |
|||
#!/bin/bash |
|||
|
|||
#================================================= |
|||
# GENERIC STARTING |
|||
#================================================= |
|||
# IMPORT GENERIC HELPERS |
|||
#================================================= |
|||
|
|||
source scripts/_common.sh |
|||
source /usr/share/yunohost/helpers |
|||
source scripts/_ynh_add_fpm_config |
|||
|
|||
#================================================= |
|||
# MANAGE SCRIPT FAILURE |
|||
#================================================= |
|||
|
|||
# Exit if an error occurs during the execution of the script |
|||
ynh_abort_if_errors |
|||
|
|||
#================================================= |
|||
# RETRIEVE ARGUMENTS |
|||
#================================================= |
|||
|
|||
app=$YNH_APP_INSTANCE_NAME |
|||
|
|||
domain=$(ynh_app_setting_get --app=$app --key=domain) |
|||
path_url=$(ynh_app_setting_get --app=$app --key=path) |
|||
is_public=$(ynh_app_setting_get --app=$app --key=is_public) |
|||
final_path=$(ynh_app_setting_get --app=$app --key=final_path) |
|||
|
|||
#================================================= |
|||
# SPECIFIC ACTION |
|||
#================================================= |
|||
# ACTIVATE MAINTENANCE MODE |
|||
#================================================= |
|||
ynh_script_progression --message="Activating maintenance mode..." |
|||
|
|||
ynh_maintenance_mode_ON |
|||
|
|||
#================================================= |
|||
# NGINX CONFIGURATION |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Upgrading nginx web server configuration..." --weight=1 |
|||
|
|||
# Create a dedicated nginx config |
|||
yunohost app action run $app reset_default_nginx |
|||
|
|||
#================================================= |
|||
# CREATE DEDICATED USER |
|||
#================================================= |
|||
ynh_script_progression --message="Making sure dedicated system user exists..." |
|||
|
|||
# Create a dedicated user (if not existing) |
|||
ynh_system_user_create --username=$app |
|||
|
|||
#================================================= |
|||
# PHP-FPM CONFIGURATION |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Upgrading php-fpm configuration..." --weight=2 |
|||
|
|||
# Create a dedicated php-fpm config |
|||
yunohost app action run $app reset_default_phpfpm |
|||
|
|||
#================================================= |
|||
# CREATE A CRON TASK FOR AUTOMATIC UPDATE |
|||
#================================================= |
|||
|
|||
echo "# Reach everyday wp-cron.php?doing_wp_cron to trig the internal wordpress cron. |
|||
0 3 * * * root wget -q -O - https://$domain$path_url/wp-cron.php?doing_wp_cron >/dev/null 2>&1" > /etc/cron.d/$app |
|||
|
|||
#================================================= |
|||
# SECURE FILES AND DIRECTORIES |
|||
#================================================= |
|||
|
|||
# Set permissions to app files |
|||
# Files have to be own by the user of wordpress. To allow upgrade from the app. |
|||
chown -R $app: $final_path |
|||
# Except the file config wp-config.php |
|||
chown root: $final_path/wp-config.php |
|||
|
|||
# Reset permissions |
|||
find $final_path/ -type f -print0 | xargs -0 chmod 0644 |
|||
find $final_path/ -type d -print0 | xargs -0 chmod 0755 |
|||
|
|||
#================================================= |
|||
# UPGRADE FAIL2BAN |
|||
#================================================= |
|||
ynh_script_progression --message="Reconfiguring fail2ban..." --weight=5 |
|||
|
|||
# Create a dedicated fail2ban config |
|||
ynh_add_fail2ban_config --logpath="/var/log/nginx/${domain}-error.log" --failregex="PHP message: Leed: wrong login for .* client: <HOST>" --max_retry=5 |
|||
|
|||
#================================================= |
|||
# SETUP SSOWAT |
|||
#================================================= |
|||
ynh_script_progression --message="Upgrading SSOwat configuration..." --weight=1 |
|||
|
|||
# Remove skipped_uris if it's still present |
|||
ynh_app_setting_delete --app=$app --key=skipped_uris |
|||
if [ $is_public -eq 0 ]; then |
|||
# Remove the public access |
|||
ynh_app_setting_delete --app=$app --key=unprotected_uris |
|||
else |
|||
# Or replace skipped_uris by unprotected_uris |
|||
ynh_app_setting_set --app=$app --key=unprotected_uris --value="/" |
|||
fi |
|||
|
|||
#================================================= |
|||
# RELOAD NGINX |
|||
#================================================= |
|||
ynh_script_progression --message="Reloading nginx web server..." |
|||
|
|||
ynh_systemd_action --service_name=nginx --action=reload |
|||
|
|||
#================================================= |
|||
# DEACTIVE MAINTENANCE MODE |
|||
#================================================= |
|||
ynh_script_progression --message="Disabling maintenance mode..." |
|||
|
|||
ynh_maintenance_mode_OFF |
|||
|
|||
#================================================= |
|||
# END OF SCRIPT |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Execution completed" --last |
|||
@ -0,0 +1,80 @@ |
|||
#!/bin/bash |
|||
|
|||
#================================================= |
|||
# GENERIC STARTING |
|||
#================================================= |
|||
# IMPORT GENERIC HELPERS |
|||
#================================================= |
|||
|
|||
source scripts/_common.sh |
|||
source /usr/share/yunohost/helpers |
|||
source scripts/_ynh_add_fpm_config |
|||
|
|||
#================================================= |
|||
# MANAGE SCRIPT FAILURE |
|||
#================================================= |
|||
|
|||
# Exit if an error occurs during the execution of the script |
|||
ynh_abort_if_errors |
|||
|
|||
#================================================= |
|||
# RETRIEVE ARGUMENTS |
|||
#================================================= |
|||
|
|||
app=$YNH_APP_INSTANCE_NAME |
|||
|
|||
type=$1 |
|||
|
|||
domain=$(ynh_app_setting_get --app=$app --key=domain) |
|||
path_url=$(ynh_app_setting_get --app=$app --key=path) |
|||
final_path=$(ynh_app_setting_get --app=$app --key=final_path) |
|||
|
|||
multisite=$(ynh_app_setting_get --app=$app --key=multisite) |
|||
is_public=$(ynh_app_setting_get --app=$app --key=is_public) |
|||
|
|||
#================================================= |
|||
# SPECIFIC ACTION |
|||
#================================================= |
|||
# RESET THE CONFIG FILE |
|||
#================================================= |
|||
|
|||
if [ $type == nginx ]; then |
|||
name=Nginx |
|||
elif [ $type == phpfpm ]; then |
|||
name=PHP-FPM |
|||
else |
|||
ynh_die --message="The type $type is not recognized" |
|||
fi |
|||
|
|||
ynh_script_progression --message="Resetting the specific configuration of $name for the app $app..." --weight=3 |
|||
|
|||
if [ $type == nginx ] |
|||
then |
|||
(cd scripts; ynh_add_nginx_config) |
|||
|
|||
if [ $multisite -eq 1 ] |
|||
then |
|||
ynh_replace_string --match_string="#--MULTISITE--" --replace_string="" --target_file=/etc/nginx/conf.d/$domain.d/$app.conf |
|||
|
|||
ynh_store_file_checksum --file="/etc/nginx/conf.d/$domain.d/$app.conf" |
|||
|
|||
ynh_systemd_action --service_name=nginx --action=reload |
|||
fi |
|||
|
|||
elif [ $type == phpfpm ] |
|||
then |
|||
# If the app is private, set the usage to low, otherwise to high. |
|||
if [ $is_public -eq 0 ] |
|||
then |
|||
usage=low |
|||
else |
|||
usage=high |
|||
fi |
|||
(cd scripts; ynh_add_fpm_config --usage=$usage --footprint=medium) |
|||
fi |
|||
|
|||
#================================================= |
|||
# END OF SCRIPT |
|||
#================================================= |
|||
|
|||
ynh_script_progression --message="Execution completed" --last |
|||
@ -0,0 +1,174 @@ |
|||
#!/bin/bash |
|||
|
|||
#================================================= |
|||
# GENERIC STARTING |
|||
#================================================= |
|||
# IMPORT GENERIC HELPERS |
|||
#================================================= |
|||
|
|||
source _common.sh |
|||
source /usr/share/yunohost/helpers |
|||
source _ynh_add_fpm_config |
|||
|
|||
#================================================= |
|||
# RETRIEVE ARGUMENTS |
|||
#================================================= |
|||
|
|||
app=$YNH_APP_INSTANCE_NAME |
|||
|
|||
fpm_config_dir=$(ynh_app_setting_get --app=$app --key=fpm_config_dir) |
|||
|
|||
#================================================= |
|||
# LOAD VALUES |
|||
#================================================= |
|||
|
|||
# Load the real value from the app config or elsewhere. |
|||
# Then get the value from the form. |
|||
# If the form has a value for a variable, take the value from the form, |
|||
# Otherwise, keep the value from the app config. |
|||
|
|||
# is_public |
|||
old_is_public="$(ynh_app_setting_get --app=$app --key=is_public)" |
|||
is_public="${YNH_CONFIG_MAIN_IS_PUBLIC_IS_PUBLIC:-$old_is_public}" |
|||
|
|||
# Overwrite nginx configuration |
|||
old_overwrite_nginx="$(ynh_app_setting_get --app=$app --key=overwrite_nginx)" |
|||
overwrite_nginx="${YNH_CONFIG_MAIN_OVERWRITE_FILES_OVERWRITE_NGINX:-$old_overwrite_nginx}" |
|||
|
|||
# Overwrite php-fpm configuration |
|||
old_overwrite_phpfpm="$(ynh_app_setting_get --app=$app --key=overwrite_phpfpm)" |
|||
overwrite_phpfpm="${YNH_CONFIG_MAIN_OVERWRITE_FILES_OVERWRITE_PHPFPM:-$old_overwrite_phpfpm}" |
|||
|
|||
# Type of admin mail configuration |
|||
old_admin_mail_html="$(ynh_app_setting_get $app admin_mail_html)" |
|||
admin_mail_html="${YNH_CONFIG_MAIN_GLOBAL_CONFIG_EMAIL_TYPE:-$old_admin_mail_html}" |
|||
|
|||
# Footprint for php-fpm |
|||
old_fpm_footprint="$(ynh_app_setting_get --app=$app --key=fpm_footprint)" |
|||
fpm_footprint="${YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FOOTPRINT:-$old_fpm_footprint}" |
|||
|
|||
# Free footprint value for php-fpm |
|||
# Check if fpm_footprint is an integer |
|||
if [ "$fpm_footprint" -eq "$fpm_footprint" ] 2> /dev/null |
|||
then |
|||
# If fpm_footprint is an integer, that's a numeric value for the footprint |
|||
old_free_footprint=$fpm_footprint |
|||
fpm_footprint=specific |
|||
else |
|||
old_free_footprint=0 |
|||
fi |
|||
free_footprint="${YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FREE_FOOTPRINT:-$old_free_footprint}" |
|||
|
|||
# Usage for php-fpm |
|||
old_fpm_usage="$(ynh_app_setting_get --app=$app --key=fpm_usage)" |
|||
fpm_usage="${YNH_CONFIG_MAIN_PHP_FPM_CONFIG_USAGE:-$old_fpm_usage}" |
|||
|
|||
# php_forced_max_children for php-fpm |
|||
old_php_forced_max_children="$(ynh_app_setting_get --app=$app --key=php_forced_max_children)" |
|||
# If php_forced_max_children isn't into settings.yml, get the current value from the fpm config |
|||
if [ -z "$old_php_forced_max_children" ]; then |
|||
old_php_forced_max_children="$(grep "^pm.max_children" "$fpm_config_dir/pool.d/$app.conf" | awk '{print $3}')" |
|||
fi |
|||
php_forced_max_children="${YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FORCE_MAX_CHILDREN:-$old_php_forced_max_children}" |
|||
|
|||
#================================================= |
|||
# SHOW_CONFIG FUNCTION FOR 'SHOW' COMMAND |
|||
#================================================= |
|||
|
|||
show_config() { |
|||
# here you are supposed to read some config file/database/other then print the values |
|||
# ynh_return "YNH_CONFIG_${PANEL_ID}_${SECTION_ID}_${OPTION_ID}=value" |
|||
|
|||
ynh_return "YNH_CONFIG_MAIN_IS_PUBLIC_IS_PUBLIC=$is_public" |
|||
|
|||
ynh_return "YNH_CONFIG_MAIN_OVERWRITE_FILES_OVERWRITE_NGINX=$overwrite_nginx" |
|||
ynh_return "YNH_CONFIG_MAIN_OVERWRITE_FILES_OVERWRITE_PHPFPM=$overwrite_phpfpm" |
|||
|
|||
ynh_return "YNH_CONFIG_MAIN_GLOBAL_CONFIG_EMAIL_TYPE=$admin_mail_html" |
|||
|
|||
ynh_return "YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FOOTPRINT=$fpm_footprint" |
|||
ynh_return "YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FREE_FOOTPRINT=$free_footprint" |
|||
ynh_return "YNH_CONFIG_MAIN_PHP_FPM_CONFIG_USAGE=$fpm_usage" |
|||
ynh_return "YNH_CONFIG_MAIN_PHP_FPM_CONFIG_FORCE_MAX_CHILDREN=$php_forced_max_children" |
|||
} |
|||
|
|||
#================================================= |
|||
# MODIFY THE CONFIGURATION |
|||
#================================================= |
|||
|
|||
apply_config() { |
|||
|
|||
# Change public accessibility |
|||
if [ "$is_public" != "$old_is_public" ] |
|||
then |
|||
if [ "$is_public" = "1" ] |
|||
then |
|||
yunohost app action run $app public_private --args is_public=1 |
|||
else |
|||
yunohost app action run $app public_private --args is_public=0 |
|||
fi |
|||
fi |
|||
|
|||
#================================================= |
|||
# MODIFY OVERWRITTING SETTINGS |
|||
#================================================= |
|||
|
|||
# Set overwrite_nginx |
|||
ynh_app_setting_set --app=$app --key=overwrite_nginx --value="$overwrite_nginx" |
|||
|
|||
# Set overwrite_phpfpm |
|||
ynh_app_setting_set --app=$app --key=overwrite_phpfpm --value="$overwrite_phpfpm" |
|||
|
|||
#================================================= |
|||
# MODIFY EMAIL SETTING |
|||
#================================================= |
|||
|
|||
# Set admin_mail_html |
|||
ynh_app_setting_set --app=$app --key=admin_mail_html --value="$admin_mail_html" |
|||
|
|||
#================================================= |
|||
# RECONFIGURE PHP-FPM |
|||
#================================================= |
|||
|
|||
if [ "$fpm_usage" != "$old_fpm_usage" ] || \ |
|||
[ "$fpm_footprint" != "$old_fpm_footprint" ] || \ |
|||
[ "$free_footprint" != "$old_free_footprint" ] || \ |
|||
[ "$php_forced_max_children" != "$old_php_forced_max_children" ] |
|||
then |
|||
# If fpm_footprint is set to 'specific', use $free_footprint value. |
|||
if [ "$fpm_footprint" = "specific" ] |
|||
then |
|||
fpm_footprint=$free_footprint |
|||
fi |
|||
|
|||
if [ "$php_forced_max_children" != "$old_php_forced_max_children" ] |
|||
then |
|||
# Set php_forced_max_children |
|||
if [ $php_forced_max_children -ne 0 ] |
|||
then |
|||
ynh_app_setting_set --app=$app --key=php_forced_max_children --value="$php_forced_max_children" |
|||
else |
|||
# If the value is set to 0, remove the setting |
|||
ynh_app_setting_delete --app=$app --key=php_forced_max_children |
|||
fi |
|||
fi |
|||
|
|||
if [ "$fpm_footprint" != "0" ] |
|||
then |
|||
ynh_add_fpm_config --usage=$fpm_usage --footprint=$fpm_footprint |
|||
else |
|||
ynh_print_err --message="When selecting 'specific', you have to set a footprint value into the field below." |
|||
fi |
|||
fi |
|||
} |
|||
|
|||
#================================================= |
|||
# GENERIC FINALIZATION |
|||
#================================================= |
|||
# SELECT THE ACTION FOLLOWING THE GIVEN ARGUMENT |
|||
#================================================= |
|||
|
|||
case $1 in |
|||
show) show_config;; |
|||
apply) apply_config;; |
|||
esac |
|||
Write
Preview
Loading…
Cancel
Save
Reference in new issue