Makefile 4.0 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394
  1. SHELL := /bin/bash
  2. .PHONY: depend
  3. depend:
  4. [ -f "/etc/debian_version" ] && make prereq-debs; /bin/true;
  5. make prereq-perl prereq-frontend
  6. .PHONY: install
  7. install:
  8. test -d www/themes || mkdir -p www/themes
  9. test -d data/files || mkdir -p data/files
  10. test -d www/assets || mkdir -p www/assets
  11. test -d www/statics || mkdir -p www/statics
  12. test -d totp/ || mkdir -p totp
  13. test -d ~/.tcms || mkdir ~/.tcms
  14. test -d /var/log && mkdir /var/log/www; /bin/true
  15. $(RM) pod2htmd.tmp;
  16. .PHONY: install-service
  17. install-service:
  18. mkdir -p ~/.config/systemd/user
  19. cp service-files/systemd.unit ~/.config/systemd/user/tCMS.service
  20. sed -ie 's#__REPLACEME__#$(shell pwd)#g' ~/.config/systemd/user/tCMS.service
  21. sed -ie 's#__PORT__#$(PORT)#g' ~/.config/systemd/user/tCMS.service
  22. systemctl --user daemon-reload
  23. systemctl --user enable tCMS
  24. systemctl --user start tCMS
  25. loginctl enable-linger $(USER)
  26. .PHONY: prereq-debian
  27. prereq-debian: prereq-debs prereq-perl prereq-frontend prereq-node
  28. .PHONY: prereq-debs
  29. prereq-debs:
  30. sudo apt-get update
  31. sudo apt-get install -y sqlite3 nodejs npm libsqlite3-dev libdbd-sqlite3-perl cpanminus starman libxml2 curl \
  32. uwsgi uwsgi-plugin-psgi fail2ban nginx certbot\
  33. libtext-xslate-perl libplack-perl libconfig-tiny-perl libdatetime-format-http-perl libjson-maybexs-perl \
  34. libuuid-tiny-perl libcapture-tiny-perl libconfig-simple-perl libdbi-perl libfile-slurper-perl libfile-touch-perl \
  35. libfile-copy-recursive-perl libxml-rss-perl libmodule-install-perl libio-string-perl \
  36. libmoose-perl libmoosex-types-datetime-perl libxml-libxml-perl liblist-moreutils-perl libclone-perl libpath-tiny-perl
  37. .PHONY: prereq-perl
  38. prereq-perl:
  39. sudo cpanm -n --installdeps .
  40. .PHONY: prereq-node
  41. prereq-node:
  42. npm i
  43. .PHONY: prereq-frontend
  44. prereq-frontend:
  45. mkdir -p www/scripts; pushd www/scripts && curl -L --remote-name-all \
  46. "https://raw.githubusercontent.com/chalda-pnuzig/emojis.json/master/dist/list.min.json" \
  47. "https://raw.githubusercontent.com/highlightjs/cdn-release/main/build/highlight.min.js"; popd
  48. mkdir -p www/styles; cd www/styles && curl -L --remote-name-all \
  49. "https://raw.githubusercontent.com/highlightjs/cdn-release/main/build/styles/obsidian.min.css"
  50. .PHONY: reset
  51. reset: reset-remove install
  52. .PHONY: reset-remove
  53. reset-remove:
  54. rm -rf data; /bin/true
  55. rm -rf www/themes; /bin/true
  56. rm -rf www/assets; /bin/true
  57. rm config/auth.db; /bin/true
  58. rm config/main.cfg; /bin/true
  59. rm config/has_users; /bin/true
  60. rm config/setup; /bin/true
  61. .PHONY: fail2ban
  62. fail2ban:
  63. sudo ln -sr fail2ban/tcms-jail.conf /etc/fail2ban/jail.d/tcms.conf
  64. sudo ln -sr fail2ban/tcms-filter.conf /etc/fail2ban/filter.d/tcms.conf
  65. .PHONY: nginx
  66. nginx:
  67. [ -n "$$SERVER_NAME" ] || ( echo "Please set the SERVER_NAME environment variable before running (e.g. test.test)" && /bin/false )
  68. [ -n "$$SERVER_PORT" ] || ( echo "Please set the SERVER_PORT environment variable before running (e.g. 5000)" && /bin/false )
  69. sed 's/\%SERVER_NAME\%/$(SERVER_NAME)/g' nginx/tcms.conf.tmpl > nginx/tcms.conf.intermediate
  70. sed 's/\%SERVER_PORT\%/$(SERVER_PORT)/g' nginx/tcms.conf.intermediate > nginx/tcms.conf
  71. rm nginx/tcms.conf.intermediate
  72. mkdir -p '/var/www/$(SERVER_NAME)'
  73. mkdir -p '/var/www/mail.$(SERVER_NAME)'
  74. mkdir -p '/etc/letsencrypt/live/$(SERVER_NAME)'
  75. ln -sr nginx/tcms.conf '/etc/nginx/sites-enabled/$(SERVER_NAME).conf'
  76. # Make a self-signed cert FIRST, because certbot has a chicken/egg problem
  77. openssl req -x509 -nodes -newkey -subj '/CN=$(SERVER_NAME)' -addext 'subjectAltName=DNS:www.$(SERVER_NAME),DNS:mail.$(SERVER_NAME)' rsa:4096 -keyout '/etc/letsencrypt/live/$(SERVER_NAME)/privkey.pem' -out '/etc/letsencrypt/live/$(SERVER_NAME)/fullchain.pem' -days 365
  78. # Now run certbot and get that http dcv
  79. certbot certonly --webroot -w '/var/www/$(SERVER_NAME)/' -d '$(SERVER_NAME)' -d 'www.$(SERVER_NAME)' -w '/var/www/mail.$(SERVER_NAME)' -d 'mail.$(SERVER_NAME)'
  80. systemctl restart nginx
  81. systemctl restart dovecot
  82. systemctl restart postfix