upgrade 5.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153
  1. #!/bin/bash
  2. source _common.sh
  3. source /usr/share/yunohost/helpers
  4. #=================================================
  5. # SPECIAL UPGRADE FOR VERSIONS < 2.0
  6. #=================================================
  7. # Removing configuration files with naming that occured in versions < 1.2.0 ("vpnadmin" instead off "$app")
  8. if [ -d /var/www/vpnadmin ]; then
  9. ynh_secure_remove /var/www/vpnadmin
  10. fi
  11. # Old stuff
  12. if [ -f /etc/nginx/conf.d/*.d/$app.conf ]; then
  13. ynh_secure_remove /etc/nginx/conf.d/*.d/$app.conf
  14. ynh_systemd_action --service_name=nginx --action=reload
  15. fi
  16. for php_path in $(ls /etc/php/*/fpm/pool.d/$app.conf 2> /dev/null); do
  17. ynh_secure_remove $php_path
  18. done
  19. if [ -d /var/www/$app ]; then
  20. ynh_secure_remove /var/www/$app
  21. fi
  22. [ -z "${domain:-}" ] || ynh_app_setting_delete $app domain
  23. [ -z "${path:-}" ] || ynh_app_setting_delete $app path
  24. [ -z "${is_public:-}" ] || ynh_app_setting_delete $app is_public
  25. [ -z "${install_dir:-}" ] || ynh_app_setting_delete $app install_dir
  26. if [ -e "/etc/sudoers.d/${app}_ynh" ]; then
  27. ynh_secure_remove "/etc/sudoers.d/${app}_ynh"
  28. fi
  29. if [ -e "/etc/yunohost/hooks.d/90-vpnclient.tpl" ]; then
  30. ynh_secure_remove "/etc/yunohost/hooks.d/90-vpnclient.tpl"
  31. fi
  32. if [ -e "/etc/openvpn/client.conf.tpl" ]; then
  33. ynh_secure_remove "/etc/openvpn/client.conf.tpl"
  34. fi
  35. # New stuff
  36. if [ -z "${dns_method:-}" ]; then
  37. ynh_app_setting_set --app=$app --key=dns_method --value=custom
  38. fi
  39. if [ -z "${nameservers:-}" ]; then
  40. nameservers="$(grep -o -P '\s*nameserver\s+\K[abcdefabcdef\d.:]+' /etc/resolv.dnsmasq.conf | sort | uniq | paste -s -d, -)"
  41. ynh_app_setting_set --app=$app --key=nameservers --value="$nameservers"
  42. fi
  43. if [ -z "${service_enabled:-}" ]; then
  44. ynh_app_setting_set --app=$app --key=service_enabled --value=0
  45. fi
  46. if [ -z "${ip6_addr:-}" ]; then
  47. ynh_app_setting_set --app=$app --key=ip6_addr --value=""
  48. fi
  49. if [ -z "${ip6_net:-}" ]; then
  50. ynh_app_setting_set --app=$app --key=ip6_net --value=""
  51. fi
  52. if [ -z "${ip6_send_over_tun_enabled:-}" ]; then
  53. ynh_app_setting_set --app=$app --key=ip6_send_over_tun_enabled --value=0
  54. fi
  55. #=================================================
  56. # UPGRADE FROM BUSTER TO BULLSEYE
  57. #=================================================
  58. if [ -e "/etc/systemd/system/openvpn@.service" ]; then
  59. ynh_secure_remove "/etc/systemd/system/openvpn@.service"
  60. fi
  61. #=================================================
  62. # DEPLOY FILES FROM PACKAGE
  63. #=================================================
  64. ynh_print_info --message="Stopping VPN client to apply config changes..."
  65. ynh_systemd_action --action="stop" --service_name="$service_checker_name.timer"
  66. yunohost service stop $service_name
  67. # Keep a copy of existing config files before overwriting them
  68. tmp_dir=$(mktemp -d /tmp/vpnclient-upgrade-XXX)
  69. for config_file in /etc/openvpn/client.{conf,cube,ovpn}; do
  70. if [[ -f "${config_file}" ]]; then
  71. cp "${config_file}" "${tmp_dir}/"
  72. fi
  73. done
  74. # Deploy files from package
  75. vpnclient_deploy_files_and_services
  76. # Generate config file from the uploaded .cube or .ovpn file, if available
  77. if [[ -f "$tmp_dir/client.cube" ]]
  78. then
  79. cp -f "$tmp_dir/client.cube" "$tmp_dir/client.conf"
  80. convert_cube_file "$tmp_dir/client.conf"
  81. elif [[ -f "$tmp_dir/client.ovpn" ]]
  82. then
  83. cp -f "$tmp_dir/client.ovpn" "$tmp_dir/client.conf"
  84. convert_ovpn_file "$tmp_dir/client.conf"
  85. # In case we didn't keep the uploaded .ovpn file, we create one from the current config...
  86. elif [[ -f "$tmp_dir/client.conf" ]]
  87. then
  88. cp -f "$tmp_dir/client.conf" "$tmp_dir/client.ovpn"
  89. convert_ovpn_file "$tmp_dir/client.conf"
  90. fi
  91. # Restore previously existing config files
  92. for config_file in ${tmp_dir}/client.{conf,cube,ovpn}; do
  93. if [[ -f "${config_file}" ]]; then
  94. cp "${config_file}" /etc/openvpn/
  95. fi
  96. done
  97. ynh_secure_remove ${tmp_dir}
  98. #=================================================
  99. # SERVICE INTEGRATION IN YUNOHOST
  100. #=================================================
  101. ### Make sure that the yunohost services have a description and need-lock enabled
  102. ynh_print_info "Configuring VPN client services..."
  103. # main service
  104. yunohost service add $service_name --description "Tunnels the internet traffic through a VPN" --need_lock --test_status="systemctl is-active openvpn@client.service" --log "/var/log/ynh-vpnclient.log"
  105. ynh_use_logrotate --logfile="/var/log/ynh-vpnclient.log"
  106. ynh_use_logrotate --logfile="/var/log/openvpn-client.log"
  107. # checker service (this service was previously integrated in yunohost but we do not do this anymore)
  108. if ynh_exec_warn_less yunohost service status $service_checker_name >/dev/null
  109. then
  110. yunohost service remove $service_checker_name
  111. fi
  112. #=================================================
  113. # RESTART RELEVANT SERVICES
  114. #=================================================
  115. ynh_print_info "Restart services..."
  116. # this is meant to propagate the new files and configs
  117. yunohost service start $service_name
  118. ynh_systemd_action --action="start" --service_name="$service_checker_name.timer"
  119. #=================================================
  120. # END OF SCRIPT
  121. #=================================================
  122. ynh_print_info "Upgrade of $app completed"