softy 45.7 KB
Newer Older
Igor Pečovnik's avatar
Igor Pečovnik committed
1
#!/bin/bash
Igor Pecovnik's avatar
Igor Pecovnik committed
2
#
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
3
# Copyright (c) 2017 Igor Pecovnik, igor.pecovnik@gma**.com
Igor Pecovnik's avatar
Igor Pecovnik committed
4
#
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
5
6
7
# This file is licensed under the terms of the GNU General Public
# License version 2. This program is licensed "as is" without any
# warranty of any kind, whether express or implied.
8

9
10
export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin

11
12
13
14
15
16
17
18
function check_status
{
#------------------------------------------------------------------------------------------------------------------------------------------
# Chech if service is already installed
#------------------------------------------------------------------------------------------------------------------------------------------
LIST=()
LIST_CONST=5
# Samba
ThomasKaiser's avatar
ThomasKaiser committed
19
SAMBA_STATUS="$(check_if_installed samba && echo "on" || echo "off" )"
20
21
LIST+=( "Samba" "Windows compatible file sharing" "$SAMBA_STATUS" )
# cups
ThomasKaiser's avatar
ThomasKaiser committed
22
CUPS_STATUS="$(check_if_installed cups && echo "on" || echo "off" )"
23
24
LIST+=( "CUPS" "Common UNIX Printing System (CUPS)" "$CUPS_STATUS" )
# tvheadend
ThomasKaiser's avatar
ThomasKaiser committed
25
TVHEADEND_STATUS="$(check_if_installed tvheadend && echo "on" || echo "off" )"
26
27
LIST+=( "TV headend" "TV streaming / proxy" "$TVHEADEND_STATUS" )
# synthing
ThomasKaiser's avatar
ThomasKaiser committed
28
SYNCTHING_STATUS="$(check_if_installed syncthing && echo "on" || echo "off" )"
29
30
31
32
LIST+=( "Syncthing" "Personal cloud @syncthing.net" "$SYNCTHING_STATUS" )
# vpn server
VPN_SERVER_STATUS="$([[ -d /usr/local/vpnserver ]] && echo "on" || echo "off" )"
LIST+=( "VPN server" "VPN server" "$VPN_SERVER_STATUS" )
33
34
35
# vpn client
VPN_CLIENT_STATUS="$([[ -d /usr/local/vpnclient ]] && echo "on" || echo "off" )"
LIST+=( "VPN client" "VPN client" "$VPN_CLIENT_STATUS" )
36
# OMV
ThomasKaiser's avatar
ThomasKaiser committed
37
OMV_STATUS="$(check_if_installed openmediavault && echo "on" || echo "off" )"
Thomas Kaiser's avatar
Thomas Kaiser committed
38
[[ "$family" != "Ubuntu" ]] && LIST+=( "OMV" "OpenMediaVault NAS solution" "$OMV_STATUS" ) && LIST_CONST=4
39
# MINIdlna
ThomasKaiser's avatar
ThomasKaiser committed
40
MINIDLNA_STATUS="$(check_if_installed minidlna && echo "on" || echo "off" )"
41
42
43
44
45
LIST+=( "Minidlna" "Lightweight DLNA/UPnP-AV server" "$MINIDLNA_STATUS" )
# Pi hole
PI_HOLE_STATUS="$([[ -d /etc/pihole ]] && echo "on" || echo "off" )"
LIST+=( "Pi hole" "Ad blocker" "$PI_HOLE_STATUS" )
# Transmission
ThomasKaiser's avatar
ThomasKaiser committed
46
TRANSMISSION_STATUS="$(check_if_installed transmission-daemon && echo "on" || echo "off" )"
47
48
49
LIST+=( "Transmission" "Torrent downloading" "$TRANSMISSION_STATUS" )
# ISPconfig
ISPCONFIG_STATUS="$([[ -d /usr/local/ispconfig ]] && echo "on" || echo "off" )"
Igor Pecovnik's avatar
Igor Pecovnik committed
50
LIST+=( "ISPConfig" "SMTP mail, IMAP, POP3 & LAMP/LEMP web server" "$ISPCONFIG_STATUS" )
51
52
}

53
54
function choose_webserver
{
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
55
56
57
#------------------------------------------------------------------------------------------------------------------------------------------
# Target web server selection
#------------------------------------------------------------------------------------------------------------------------------------------
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
check_if_installed openmediavault
case $? in
	0)
		# OMV installed, prevent switching from nginx to apache which would trash OMV installation
		server="nginx"
		;;
	*)
		dialog --title "Choose a webserver" --backtitle "$backtitle" --yes-label "Apache" --no-label "Nginx" \
		--yesno "\nChoose a web server which you are familiar with. They both work almost the same." 8 70
		response=$?
		case $response in
			0) server="apache";;
			1) server="nginx";;
			255) exit;;
		esac
		;;
esac
75
76
77
78
79
}


function server_conf
{
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
80
81
82
#------------------------------------------------------------------------------------------------------------------------------------------
# Add some reqired date for installation
#------------------------------------------------------------------------------------------------------------------------------------------
83
exec 3>&1
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
84
dialog --title "Server configuration" --separate-widget $'\n' --ok-label "Install" --backtitle "$backtitle" \
85
86
87
88
89
90
91
92
--form "\nPlease fill out this form:\n " \
12 70 0 \
"Your FQDN for $serverip:"	1 1 "$hostnamefqdn"         1 31 32 0 \
"Mysql root password:" 	  	2 1 "$mysql_pass"       			2 31 32 0 \
2>&1 1>&3 | {

read -r hostnamefqdn
read -r mysql_pass
ThomasKaiser's avatar
ThomasKaiser committed
93
94
echo $mysql_pass > ${TEMP_DIR}/mysql_pass
echo $hostnamefqdn > ${TEMP_DIR}/hostnamefqdn
95
96
97
98
# end
}
exec 3>&-
# read variables back
ThomasKaiser's avatar
ThomasKaiser committed
99
100
read MYSQL_PASS < ${TEMP_DIR}/mysql_pass
read HOSTNAMEFQDN < ${TEMP_DIR}/hostnamefqdn
101
102
103
104
105
}


install_packet ()
{
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
106
#------------------------------------------------------------------------------------------------------------------------------------------
107
# Install missing packets
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
108
#------------------------------------------------------------------------------------------------------------------------------------------
109
110
i=0
j=1
Igor Pecovnik's avatar
Igor Pecovnik committed
111
IFS=" "
112
113
114
115
declare -a PACKETS=($1)
skupaj=${#PACKETS[@]}
while [[ $i -lt $skupaj ]]; do
procent=$(echo "scale=2;($j/$skupaj)*100"|bc)
Igor Pecovnik's avatar
Igor Pecovnik committed
116
117
		x=${PACKETS[$i]}
		if [ $(dpkg-query -W -f='${Status}' $x 2>/dev/null | grep -c "ok installed") -eq 0 ]; then
118
			printf '%.0f\n' $procent | dialog \
Igor Pecovnik's avatar
Fix    
Igor Pecovnik committed
119
			--backtitle "$backtitle" \
120
121
			--title "Installing" \
			--gauge "\n$2\n\n$x" 10 70
ThomasKaiser's avatar
ThomasKaiser committed
122
		if [ "$(DEBIAN_FRONTEND=noninteractive apt-get -qq -y install $x >${TEMP_DIR}/install.log 2>&1 || echo 'Installation failed' \
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
123
		| grep 'Installation failed')" != "" ]; then
124
			echo -e "[\e[0;31m error \x1B[0m] Installation failed"
ThomasKaiser's avatar
ThomasKaiser committed
125
			tail ${TEMP_DIR}/install.log
126
127
128
129
130
131
132
			exit
		fi
		fi
		i=$[$i+1]
		j=$[$j+1]
done
echo ""
Igor Pecovnik's avatar
Igor Pecovnik committed
133
134
135
}


Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
136
137
138
139
140
check_port ()
{
#------------------------------------------------------------------------------------------------------------------------------------------
# Check if something is running on port $1 and display info
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
141
[[ -n $(netstat -lnt | awk '$6 == "LISTEN" && $4 ~ ".'$1'"') ]] && dialog --backtitle "$backtitle" --title "Checking service" \
142
--msgbox "\nIt looks good.\n\nThere is $2 service on port $1" 9 52
Igor Pecovnik's avatar
Igor Pecovnik committed
143
}
144
145


Igor Pečovnik's avatar
Igor Pečovnik committed
146
install_basic (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
147
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
148
# Set hostname, FQDN, add to sources list
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
149
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
150
IFS=" "
151
152
set ${HOSTNAMEFQDN//./ }
HOSTNAMESHORT="$1"
Igor Pečovnik's avatar
Igor Pečovnik committed
153
154
cp /etc/hosts /etc/hosts.backup
cp /etc/hostname /etc/hostname.backup
Igor Pecovnik's avatar
Igor Pecovnik committed
155
156
# create new
echo "127.0.0.1   localhost.localdomain   localhost" > /etc/hosts
Igor Pecovnik's avatar
Igor Pecovnik committed
157
echo "${serverIP} ${HOSTNAMEFQDN} ${HOSTNAMESHORT} #ispconfig " >> /etc/hosts
Igor Pečovnik's avatar
Igor Pečovnik committed
158
159
echo "$HOSTNAMESHORT" > /etc/hostname
/etc/init.d/hostname.sh start >/dev/null 2>&1
Igor Pecovnik's avatar
Igor Pecovnik committed
160
if [[ $family == "Ubuntu" ]]; then
161
162
	# set hostname in Ubuntu
	hostnamectl set-hostname $HOSTNAMESHORT
Igor Pecovnik's avatar
Igor Pecovnik committed
163
	# disable AppArmor
164
165
166
167
168
	if [[ -n $(service apparmor status | grep -w active | grep -w running) ]]; then
		service apparmor stop
		update-rc.d -f apparmor remove
		apt-get -y -qq remove apparmor apparmor-utils
	fi
169
170
171
172
else
	grep -q "contrib" /etc/apt/sources.list || sed -i 's|main|main contrib|' /etc/apt/sources.list
	grep -q "non-free" /etc/apt/sources.list || sed -i 's|contrib|contrib non-free|' /etc/apt/sources.list
	debconf-apt-progress -- apt-get update
Igor Pecovnik's avatar
Igor Pecovnik committed
173
fi
Igor Pečovnik's avatar
Igor Pečovnik committed
174
175
176
}


Igor Pečovnik's avatar
Igor Pečovnik committed
177
create_ispconfig_configuration (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
178
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
179
# ISPConfig autoconfiguration
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
180
#------------------------------------------------------------------------------------------------------------------------------------------
ThomasKaiser's avatar
ThomasKaiser committed
181
cat > ${TEMP_DIR}/isp.conf.php <<EOF
Igor Pečovnik's avatar
Igor Pečovnik committed
182
183
184
185
186
187
188
<?php
\$autoinstall['language'] = 'en'; // de, en (default)
\$autoinstall['install_mode'] = 'standard'; // standard (default), expert

\$autoinstall['hostname'] = '$HOSTNAMEFQDN'; // default
\$autoinstall['mysql_hostname'] = 'localhost'; // default: localhost
\$autoinstall['mysql_root_user'] = 'root'; // default: root
189
\$autoinstall['mysql_root_password'] = '$MYSQL_PASS';
Igor Pečovnik's avatar
Igor Pečovnik committed
190
191
\$autoinstall['mysql_database'] = 'dbispconfig'; // default: dbispcongig
\$autoinstall['mysql_charset'] = 'utf8'; // default: utf8
Igor Pecovnik's avatar
Igor Pecovnik committed
192
193
194
\$autoinstall['mysql_port'] = '3306'; // default: 3306
\$autoinstall['configure_jailkit'] = 'n'; // y (default), n
\$autoinstall['configure_dns'] = 'n'; // y (default), n
Igor Pečovnik's avatar
Igor Pečovnik committed
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
\$autoinstall['http_server'] = '$server'; // apache (default), nginx
\$autoinstall['ispconfig_port'] = '8080'; // default: 8080
\$autoinstall['ispconfig_use_ssl'] = 'y'; // y (default), n

/* SSL Settings */
\$autoinstall['ssl_cert_country'] = 'AU';
\$autoinstall['ssl_cert_state'] = 'Some-State';
\$autoinstall['ssl_cert_locality'] = 'Chicago';
\$autoinstall['ssl_cert_organisation'] = 'Internet Widgits Pty Ltd';
\$autoinstall['ssl_cert_organisation_unit'] = 'IT department';
\$autoinstall['ssl_cert_common_name'] = \$autoinstall['hostname'];
?>
EOF
}

210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
install_cups (){
#--------------------------------------------------------------------------------------------------------------------------------
# Install printer system
#--------------------------------------------------------------------------------------------------------------------------------
debconf-apt-progress -- apt-get -y install cups lpr cups-filters
# cups-filters if jessie
sed -e 's/Listen localhost:631/Listen 631/g' -i /etc/cups/cupsd.conf
sed -e 's/<Location \/>/<Location \/>\nallow $SUBNET/g' -i /etc/cups/cupsd.conf
sed -e 's/<Location \/admin>/<Location \/admin>\nallow $SUBNET/g' -i /etc/cups/cupsd.conf
sed -e 's/<Location \/admin\/conf>/<Location \/admin\/conf>\nallow $SUBNET/g' -i /etc/cups/cupsd.conf
service cups restart
service samba restart | service smbd restart >/dev/null 2>&1
}

install_samba (){
#---------------------------------------------------------------------------------------------------------------------------------
# install Samba file sharing
#---------------------------------------------------------------------------------------------------------------------------------
# Read samba user / pass / group
local SECTION="Samba"
SMBUSER=$(whiptail --inputbox "What is your samba username?" 8 78 $SMBUSER --title "$SECTION" 3>&1 1>&2 2>&3)
exitstatus=$?; if [ $exitstatus = 1 ]; then exit 1; fi
SMBPASS=$(whiptail --inputbox "What is your samba password?" 8 78 $SMBPASS --title "$SECTION" 3>&1 1>&2 2>&3)
exitstatus=$?; if [ $exitstatus = 1 ]; then exit 1; fi
SMBGROUP=$(whiptail --inputbox "What is your samba group?" 8 78 $SMBGROUP --title "$SECTION" 3>&1 1>&2 2>&3)
exitstatus=$?; if [ $exitstatus = 1 ]; then exit 1; fi
#
Igor Pečovnik's avatar
Igor Pečovnik committed
237
debconf-apt-progress -- apt-get -y install samba samba-common-bin samba-vfs-modules
238
239
240
241
useradd $SMBUSER
echo -ne "$SMBPASS\n$SMBPASS\n" | passwd $SMBUSER >/dev/null 2>&1
echo -ne "$SMBPASS\n$SMBPASS\n" | smbpasswd -a -s $SMBUSER >/dev/null 2>&1
service samba stop | service smbd stop >/dev/null 2>&1
242
243
244
245
246
247
248
249
250
251
252
253
254
cp /etc/samba/smb.conf /etc/samba/smb.conf.stock
cat > /etc/samba/smb.conf.tmp << EOF
[global]
	workgroup = SMBGROUP
	server string = %h server
	hosts allow = SUBNET
	log file = /var/log/samba/log.%m
	max log size = 1000
	syslog = 0
	panic action = /usr/share/samba/panic-action %d
	load printers = yes
	printing = cups
	printcap name = cups
255
256
257
258
	min receivefile size = 16384
	write cache size = 524288
	getwd cache = yes
	socket options = TCP_NODELAY IPTOS_LOWDELAY
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295

[printers]
	comment = All Printers
	path = /var/spool/samba
	browseable = no
	public = yes
	guest ok = yes
	writable = no
	printable = yes
	printer admin = SMBUSER

[print$]
	comment = Printer Drivers
	path = /etc/samba/drivers
	browseable = yes
	guest ok = no
	read only = yes
	write list = SMBUSER

[ext]
	comment = Storage
	path = /ext
	writable = yes
	public = no
	valid users = SMBUSER
	force create mode = 0777
EOF
sed -i "s/SMBGROUP/$SMBGROUP/" /etc/samba/smb.conf.tmp
sed -i "s/SMBUSER/$SMBUSER/" /etc/samba/smb.conf.tmp
sed -i "s/SUBNET/$SUBNET/" /etc/samba/smb.conf.tmp
dialog --backtitle "$backtitle" --title "Review samba configuration" --no-collapse --editbox /etc/samba/smb.conf.tmp 30 0 2> /etc/samba/smb.conf.tmp.out
if [[ $? = 0 ]]; then
	mv /etc/samba/smb.conf.tmp.out /etc/samba/smb.conf
	install -m 755 -g $SMBUSER -o $SMBUSER -d /ext
	service service smbd stop >/dev/null 2>&1
	sleep 3
	service service smbd start >/dev/null 2>&1
Igor Pecovnik's avatar
Igor Pecovnik committed
296
fi
297
}
Igor Pečovnik's avatar
Igor Pečovnik committed
298

299

Igor Pecovnik's avatar
Igor Pecovnik committed
300
install_omv (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
301
#------------------------------------------------------------------------------------------------------------------------------------------
302
# On Debian install OpenMediaVault 3 (Jessie) or 4 (Stretch)
303
#------------------------------------------------------------------------------------------------------------------------------------------
ThomasKaiser's avatar
ThomasKaiser committed
304
# TODO: Some OMV packages lack authentication, flashmemory-plugin currently doesn't work as expected
305

306
if [[ "$family" == "Ubuntu" ]]; then
307
	dialog --backtitle "$backtitle" --title "Dependencies not met" --msgbox "\nOpenMediaVault can only be installed on Debian." 7 52
308
	sleep 5
Thomas Kaiser's avatar
Thomas Kaiser committed
309
	exit 1
310
311
fi

312
313
314
315
316
317
318
319
320
321
322
case $distribution in
	jessie)
		OMV_Name="erasmus"
		OMV_EXTRAS_URL="https://github.com/OpenMediaVault-Plugin-Developers/packages/raw/master/openmediavault-omvextrasorg_latest_all3.deb"
		;;
	stretch)
		OMV_Name="arrakis"
		OMV_EXTRAS_URL="https://github.com/OpenMediaVault-Plugin-Developers/packages/raw/master/openmediavault-omvextrasorg_latest_all4.deb"
		;;
esac

ThomasKaiser's avatar
ThomasKaiser committed
323
324
325
326
327
export APT_LISTCHANGES_FRONTEND=none
if [ ! -f /etc/armbian-release ]; then
	sed -i "s/^# en_US.UTF-8/en_US.UTF-8/" /etc/locale.gen
	locale-gen
fi
328
329

cat > /etc/apt/sources.list.d/openmediavault.list << EOF
330
deb https://openmediavault.github.io/packages/ ${OMV_Name} main
331
332

## Uncomment the following line to add software from the proposed repository.
333
deb https://openmediavault.github.io/packages/ ${OMV_Name}-proposed main
334
335
336

## This software is not part of OpenMediaVault, but is offered by third-party
## developers as a service to OpenMediaVault users.
337
# deb https://openmediavault.github.io/packages/ ${OMV_Name} partner
338
339
EOF

ThomasKaiser's avatar
ThomasKaiser committed
340
341
debconf-apt-progress -- apt-get update

342
343
344
read HOSTNAME </etc/hostname
read TZ </etc/timezone
debconf-set-selections <<< "postfix postfix/mailname string ${HOSTNAME}"
345
SPACE_NEEDED=$(apt-get --assume-no --allow-unauthenticated --fix-missing --no-install-recommends install openmediavault postfix dirmngr 2>/dev/null | awk -F" " '/additional disk space will be used/ {print $4}')
ThomasKaiser's avatar
ThomasKaiser committed
346
347
348
349
350
SPACE_AVAIL=$(df -k / | awk -F" " '/\/$/ {printf ("%0.0f",$4/1200); }')
if [ ${SPACE_AVAIL} -lt ${SPACE_NEEDED} ]; then
	dialog --backtitle "$backtitle" --title "No space left on device" --msgbox "\nOpenMediaVault needs ${SPACE_NEEDED} MB for installation while only ${SPACE_AVAIL} MB are available." 7 52
	exit 1
fi
ThomasKaiser's avatar
ThomasKaiser committed
351
352
apt-get --allow-unauthenticated install openmediavault-keyring
apt-key adv --keyserver hkp://keyserver.ubuntu.com:80 --recv-keys 7AA630A1EDEE7D73
353
debconf-apt-progress -- apt-get -y --allow-unauthenticated --fix-missing --no-install-recommends install openmediavault postfix dirmngr
ThomasKaiser's avatar
ThomasKaiser committed
354
FILE="${TEMP_DIR}/omv_extras.deb"; wget "$OMV_EXTRAS_URL" -qO $FILE && dpkg -i $FILE ; rm $FILE
ThomasKaiser's avatar
ThomasKaiser committed
355
356
357
358
# /usr/sbin/omv-update
debconf-apt-progress -- apt-get update
debconf-apt-progress -- apt-get --yes --force-yes --fix-missing --auto-remove --allow-unauthenticated \
  --show-upgraded --option DPkg::Options::="--force-confold" dist-upgrade
359
360
361
362

# Install flashmemory plugin and netatalk by default, use nice logo for the latter,
# disable OMV monitoring by default
. /usr/share/openmediavault/scripts/helper-functions
ThomasKaiser's avatar
ThomasKaiser committed
363
debconf-apt-progress -- apt-get -y --fix-missing --no-install-recommends --auto-remove install openmediavault-flashmemory openmediavault-netatalk
364
365
366
367
368
369
370
371
372
373
374
375
376
AFP_Options="mimic model = Macmini"
SMB_Options="min receivefile size = 16384\nwrite cache size = 524288\ngetwd cache = yes\nsocket options = TCP_NODELAY IPTOS_LOWDELAY"
xmlstarlet ed -L -u "/config/services/afp/extraoptions" -v "$(echo -e "${AFP_Options}")" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/services/smb/extraoptions" -v "$(echo -e "${SMB_Options}")" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/services/flashmemory/enable" -v "1" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/services/ssh/enable" -v "1" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/services/ssh/permitrootlogin" -v "1" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/system/time/ntp/enable" -v "1" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/system/time/timezone" -v "${TZ}" ${OMV_CONFIG_FILE}
xmlstarlet ed -L -u "/config/system/network/dns/hostname" -v "${HOSTNAME}" ${OMV_CONFIG_FILE}
/usr/sbin/omv-rpc -u admin "perfstats" "set" '{"enable":false}'
/usr/sbin/omv-rpc -u admin "config" "applyChanges" '{ "modules": ["monit","rrdcached","collectd"],"force": true }'
sed -i 's|-j /var/lib/rrdcached/journal/ ||' /etc/init.d/rrdcached
377
for i in netatalk samba flashmemory ssh ntp timezone monit rrdcached collectd ; do
378
379
	/usr/sbin/omv-mkconf $i
done
ThomasKaiser's avatar
ThomasKaiser committed
380
/sbin/folder2ram -enablesystemd 2>/dev/null
381

ThomasKaiser's avatar
ThomasKaiser committed
382
# Prevent accidentally destroying board performance by clicking around in OMV UI since
Igor Pecovnik's avatar
Igor Pecovnik committed
383
# OMV sets 'powersave' governor when touching 'Power Management' settings.
384
385
if [ -f /etc/default/cpufrequtils ]; then
	. /etc/default/cpufrequtils
ThomasKaiser's avatar
ThomasKaiser committed
386
387
388
389
390
391
392
393
394
else
	DEFAULT_GOV="$(zgrep "^CONFIG_CPU_FREQ_DEFAULT_GOV_" /proc/config.gz 2>/dev/null | sed 's/CONFIG_CPU_FREQ_DEFAULT_GOV_//')"
	if [ -n "${DEFAULT_GOV}" ]; then
		GOVERNOR=$(cut -f1 -d= <<<"${DEFAULT_GOV}" | tr '[:upper:]' '[:lower:]')
	else
		GOVERNOR=ondemand
	fi
	MIN_SPEED="0"
	MAX_SPEED="0"
395
fi
ThomasKaiser's avatar
ThomasKaiser committed
396
397
398
echo -e "OMV_CPUFREQUTILS_GOVERNOR=${GOVERNOR}" >>/etc/default/openmediavault
echo -e "OMV_CPUFREQUTILS_MINSPEED=${MIN_SPEED}" >>/etc/default/openmediavault
echo -e "OMV_CPUFREQUTILS_MAXSPEED=${MAX_SPEED}" >>/etc/default/openmediavault
399
400

/usr/sbin/omv-initsystem
ThomasKaiser's avatar
ThomasKaiser committed
401
check_port 80 "OMV web"
402
403
404
}


Igor Pečovnik's avatar
Igor Pečovnik committed
405
install_tvheadend (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
406
#------------------------------------------------------------------------------------------------------------------------------------------
407
# TVheadend https://tvheadend.org/ unofficial port https://tvheadend.org/boards/5/topics/21528
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
408
#------------------------------------------------------------------------------------------------------------------------------------------
409
410
if !(grep -qs djbenson "/etc/apt/sources.list.d/tvheadend.list");then
	echo "deb https://dl.bintray.com/djbenson/deb wheezy stable" >> /etc/apt/sources.list.d/tvheadend.list
Igor Pecovnik's avatar
Igor Pecovnik committed
411
	apt-key adv --keyserver hkp://keyserver.ubuntu.com:80 --recv-keys 379CE192D401AB61 >/dev/null 2>&1
Igor Pečovnik's avatar
Igor Pečovnik committed
412
fi
Igor Pecovnik's avatar
Igor Pecovnik committed
413

Igor Pecovnik's avatar
Igor Pecovnik committed
414
debconf-apt-progress -- apt-get update
Igor Pecovnik's avatar
Igor Pecovnik committed
415
debconf-apt-progress -- apt-get -y install libssl-doc libssl1.0.0 zlib1g-dev tvheadend xmltv-util
Igor Pečovnik's avatar
Igor Pečovnik committed
416
417
418
419
}


install_transmission (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
420
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
421
# transmission
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
422
#------------------------------------------------------------------------------------------------------------------------------------------
Chris Rohlfs's avatar
Chris Rohlfs committed
423
install_packet "debconf-utils unzip build-essential html2text apt-transport-https" "Downloading dependencies"
Igor Pečovnik's avatar
Igor Pečovnik committed
424
install_packet "transmission-cli transmission-common transmission-daemon" "Install torrent server"
425
426
427
428
429
430
431
# systemd workaround
# https://forum.armbian.com/index.php?/topic/4017-programs-does-not-start-automatically-at-boot/
sed -e 's/exit 0//g' -i /etc/rc.local
	cat >> /etc/rc.local <<"EOF"
service transmission-daemon restart
exit 0
EOF
432
433
434
dialog --title "Seed Armbian torrents" --backtitle "$BACKTITLE" --yes-label "Yes" --no-label "Cancel" --yesno "\nDo you want to help \
community and seed armbian torrent files? It will ensure faster download for everyone. We need around 50Gb of your space." 10 44
if [[ $? = 0 ]]; then
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
# adjust network buffers if necessary
rmem_recommended=4194304
wmem_recommended=1048576
rmem_actual=$(sysctl net.core.rmem_max | awk -F" " '{print $3}')
if [ ${rmem_actual} -lt ${rmem_recommended} ]; then
	grep -q net.core.rmem_max /etc/sysctl.conf && \
		sed -i "s/net.core.rmem_max =.*/net.core.rmem_max = ${rmem_recommended}/" /etc/sysctl.conf || \
		echo "net.core.rmem_max = ${rmem_recommended}" >> /etc/sysctl.conf
fi
wmem_actual=$(sysctl net.core.wmem_max | awk -F" " '{print $3}')
if [ ${wmem_actual} -lt ${wmem_recommended} ]; then
	grep -q net.core.wmem_max /etc/sysctl.conf && \
		sed -i "s/net.core.wmem_max =.*/net.core.wmem_max = ${wmem_recommended}/" /etc/sysctl.conf || \
		echo "net.core.wmem_max = ${wmem_recommended}" >> /etc/sysctl.conf
fi
/sbin/sysctl -p
# create cron job for daily sync with official Armbian torrents
452
cat > /etc/cron.daily/seed-armbian-torrent <<"EOF"
453
454
455
456
457
#!/bin/bash
#
# armbian torrents auto update
#
# download latest torrent pack
ThomasKaiser's avatar
ThomasKaiser committed
458
wget -qO- -O ${TEMP_DIR}/armbian-torrents.zip https://dl.armbian.com/torrent/all-torrents.zip
459
# test zip for corruption
ThomasKaiser's avatar
ThomasKaiser committed
460
unzip -t ${TEMP_DIR}/armbian-torrents.zip >/dev/null 2>&1
Igor Pecovnik's avatar
Bugfix    
Igor Pecovnik committed
461
[[ $? -ne 0 ]] && echo "Error in zip" && exit
462
# extract zip
ThomasKaiser's avatar
ThomasKaiser committed
463
unzip -o ${TEMP_DIR}/armbian-torrents.zip -d ${TEMP_DIR}/torrent-tmp >/dev/null 2>&1
464
# create list of current active torrents
ThomasKaiser's avatar
ThomasKaiser committed
465
transmission-remote -n 'transmission:transmission' -l | sed '1d; $d' > ${TEMP_DIR}/torrent-tmp/active.torrents
466
# loop and add/update torrent files
ThomasKaiser's avatar
ThomasKaiser committed
467
for f in ${TEMP_DIR}/torrent-tmp/*.torrent; do
468
469
        transmission-remote -n 'transmission:transmission' -a $f > /dev/null 2>&1
        # remove added from the list
Igor Pecovnik's avatar
Igor Pecovnik committed
470
        pattern="${f//.torrent}"; pattern="${pattern##*/}";
ThomasKaiser's avatar
ThomasKaiser committed
471
        sed -i "/$pattern/d" ${TEMP_DIR}/torrent-tmp/active.torrents
472
473
474
475
done
# remove old armbian torrents
while read i; do
        [[ $i == *Armbian_* ]] && transmission-remote -n 'transmission:transmission' -t $(echo "$i" | awk '{print $1}';) --remove-and-delete
ThomasKaiser's avatar
ThomasKaiser committed
476
done < ${TEMP_DIR}/torrent-tmp/active.torrents
477
478
479
# remove temporally files and direcotories
EOF
chmod +x /etc/cron.daily/seed-armbian-torrent
480
/etc/cron.daily/seed-armbian-torrent &
481
fi
Igor Pečovnik's avatar
Igor Pečovnik committed
482
483
484
}


485
install_syncthing (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
486
#------------------------------------------------------------------------------------------------------------------------------------------
487
# Install Personal cloud https://syncthing.net/
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
488
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
489
curl -s https://syncthing.net/release-key.txt | apt-key add -
Igor Pecovnik's avatar
Igor Pecovnik committed
490
491
492
	if !(grep -qs syncthing "/etc/apt/sources.list.d/syncthing.list");then
	echo "deb http://apt.syncthing.net/ syncthing release" | tee /etc/apt/sources.list.d/syncthing.list
	debconf-apt-progress -- apt-get update
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
	install_packet "syncthing syncthing-inotify" "Install Personal cloud https://syncthing.net/"
cat > /etc/systemd/system/syncthing.service <<"EOF"
[Unit]
Description=Syncthing - Open Source Continuous File Synchronization
Documentation=man:syncthing(1)
After=network.target

[Service]
ExecStart=/usr/bin/syncthing -no-browser -no-restart -logfile=/var/log/syncthing.log -logflags=3
Restart=on-failure
SuccessExitStatus=3 4
RestartForceExitStatus=3 4
User=root

[Install]
WantedBy=default.target

Igor Pečovnik's avatar
Igor Pečovnik committed
510
EOF
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
cat > /etc/systemd/system/syncthing-inotify.service <<"EOF"
[Unit]
Description=Syncthing Inotify File Watcher
After=network.target syncthing.service
Requires=syncthing.service

[Service]
User=root
ExecStart=/usr/bin/syncthing-inotify -logfile=/var/log/syncthing-inotify.log -logflags=3
SuccessExitStatus=2
RestartForceExitStatus=3
Restart=on-failure
ProtectSystem=full
ProtectHome=read-only

[Install]
WantedBy=multi-user.target
EOF
	# increase open file limit
	echo -e "fs.inotify.max_user_watches=204800" | tee -a /etc/sysctl.conf
	systemctl enable syncthing
	systemctl start syncthing
	systemctl enable syncthing-inotify
	systemctl start syncthing-inotify
Igor Pecovnik's avatar
Igor Pecovnik committed
535
	fi
Igor Pečovnik's avatar
Igor Pečovnik committed
536
537
538
539
}


install_vpn_server (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
540
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
541
# Script downloads latest stable
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
542
#------------------------------------------------------------------------------------------------------------------------------------------
ThomasKaiser's avatar
ThomasKaiser committed
543
cd ${TEMP_DIR}
Igor Pečovnik's avatar
Igor Pečovnik committed
544
PREFIX="http://www.softether-download.com/files/softether/"
Igor Pecovnik's avatar
Igor Pecovnik committed
545
install_packet "debconf-utils unzip build-essential html2text apt-transport-https" "Downloading basic packages"
Igor Pečovnik's avatar
Igor Pečovnik committed
546
547
548
URL=$(wget -q $PREFIX -O - | html2text | grep rtm | awk ' { print $(NF) }' | tail -1)
SUFIX="${URL/-tree/}"
if [ "$(dpkg --print-architecture | grep armhf)" != "" ]; then
Igor Pecovnik's avatar
URL fix    
Igor Pecovnik committed
549
DLURL=$PREFIX$URL"/Linux/SoftEther_VPN_Server/32bit_-_ARM_EABI/softether-vpnserver-$SUFIX-linux-arm_eabi-32bit.tar.gz"
Igor Pečovnik's avatar
Igor Pečovnik committed
550
else
Igor Pecovnik's avatar
Igor Pecovnik committed
551
install_packet "gcc-multilib" "Install libraries"
Igor Pecovnik's avatar
URL fix    
Igor Pecovnik committed
552
DLURL=$PREFIX$URL"/Linux/SoftEther_VPN_Server/32bit_-_Intel_x86/softether-vpnserver-$SUFIX-linux-x86-32bit.tar.gz"
Igor Pečovnik's avatar
Igor Pečovnik committed
553
fi
Igor Pecovnik's avatar
Igor Pecovnik committed
554
wget -q $DLURL -O - | tar -xz
Igor Pečovnik's avatar
Igor Pečovnik committed
555
cd vpnserver
Igor Pecovnik's avatar
Igor Pecovnik committed
556
make i_read_and_agree_the_license_agreement | dialog --backtitle "$BACKTITLE" --title "Compiling SoftEther VPN" --progressbox $TTY_Y $TTY_X
Igor Pečovnik's avatar
Igor Pečovnik committed
557
558
559
560
561
562
cd ..
cp -R vpnserver /usr/local
cd /usr/local/vpnserver/
chmod 600 *
chmod 700 vpncmd
chmod 700 vpnserver
Igor Pecovnik's avatar
Igor Pecovnik committed
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
if [[ -d /run/systemd/system/ ]]; then
cat <<EOT >/lib/systemd/system/ethervpn.service
[Unit]
Description=VPN service

[Service]
Type=oneshot
ExecStart=/usr/local/vpnserver/vpnserver start
ExecStop=/usr/local/vpnserver/vpnserver stop
RemainAfterExit=yes

[Install]
WantedBy=multi-user.target
EOT
systemctl enable ethervpn.service
service ethervpn start

Igor Pecovnik's avatar
Igor Pecovnik committed
580
else
Igor Pecovnik's avatar
Igor Pecovnik committed
581

Igor Pečovnik's avatar
Igor Pečovnik committed
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
cat <<EOT > /etc/init.d/vpnserver
#!/bin/sh
### BEGIN INIT INFO
# Provides:          vpnserver
# Required-Start:    \$remote_fs \$syslog
# Required-Stop:     \$remote_fs \$syslog
# Default-Start:     2 3 4 5
# Default-Stop:      0 1 6
# Short-Description: Start daemon at boot time
# Description:       Enable Softether by daemon.
### END INIT INFO
DAEMON=/usr/local/vpnserver/vpnserver
LOCK=/var/lock/vpnserver
test -x $DAEMON || exit 0
case "\$1" in
start)
\$DAEMON start
touch \$LOCK
;;
stop)
\$DAEMON stop
rm \$LOCK
;;
restart)
\$DAEMON stop
sleep 3
\$DAEMON start
;;
*)
echo "Usage: \$0 {start|stop|restart}"
exit 1
esac
exit 0
EOT
chmod 755 /etc/init.d/vpnserver
mkdir /var/lock/subsys
Igor Pecovnik's avatar
Igor Pecovnik committed
618
update-rc.d vpnserver defaults >> $logfile
Igor Pečovnik's avatar
Igor Pečovnik committed
619
/etc/init.d/vpnserver start
Igor Pecovnik's avatar
Igor Pecovnik committed
620
fi
Igor Pečovnik's avatar
Igor Pečovnik committed
621
622
623
}


624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
install_vpn_client (){
#------------------------------------------------------------------------------------------------------------------------------------------
# Script downloads latest stable
#------------------------------------------------------------------------------------------------------------------------------------------
cd ${TEMP_DIR}
PREFIX="http://www.softether-download.com/files/softether/"
install_packet "debconf-utils unzip build-essential html2text apt-transport-https" "Downloading basic packages"
URL=$(wget -q $PREFIX -O - | html2text | grep rtm | awk ' { print $(NF) }' | tail -1)
SUFIX="${URL/-tree/}"
if [ "$(dpkg --print-architecture | grep armhf)" != "" ]; then
DLURL=$PREFIX$URL"/Linux/SoftEther_VPN_Client/32bit_-_ARM_EABI/softether-vpnclient-$SUFIX-linux-arm_eabi-32bit.tar.gz"
else
install_packet "gcc-multilib" "Install libraries"
DLURL=$PREFIX$URL"/Linux/SoftEther_VPN_Client/32bit_-_Intel_x86/softether-vpnclient-$SUFIX-linux-x86-32bit.tar.gz"
fi
wget -q $DLURL -O - | tar -xz
cd vpnclient
make i_read_and_agree_the_license_agreement | dialog --backtitle "$BACKTITLE" --title "Compiling SoftEther VPN vpnclient" --progressbox $TTY_Y $TTY_X
cd ..
cp -R vpnclient /usr/local
cd /usr/local/vpnclient/
chmod 600 *
chmod 700 vpncmd
chmod 700 vpnclient
}


Igor Pečovnik's avatar
Igor Pečovnik committed
651
install_DashNTP (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
652
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
653
# Install DASH and ntp service
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
654
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
655
656
echo "dash dash/sh boolean false" | debconf-set-selections
dpkg-reconfigure -f noninteractive dash > /dev/null 2>&1
657
install_packet "ntp ntpdate" "Install DASH and ntp service"
Igor Pecovnik's avatar
Igor Pecovnik committed
658
}
Igor Pečovnik's avatar
Igor Pečovnik committed
659
660


Igor Pecovnik's avatar
Igor Pecovnik committed
661
install_MySQL (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
662
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
663
# Maria SQL
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
664
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
665
666
667
install_packet "mariadb-client mariadb-server" "Install Mysql client / server"
#Allow MySQL to listen on all interfaces
cp /etc/mysql/my.cnf /etc/mysql/my.cnf.backup
Igor Pecovnik's avatar
Igor Pecovnik committed
668
sed -i 's|bind-address           = 127.0.0.1|#bind-address           = 127.0.0.1|' /etc/mysql/my.cnf
Igor Pecovnik's avatar
Igor Pecovnik committed
669
670
671
672
673
674
675
676
677
678
679
680
681
682
683
684
685
686
687
688
689
690
691
692
SECURE_MYSQL=$(expect -c "
set timeout 3
spawn mysql_secure_installation
expect \"Enter current password for root (enter for none):\"
send \"\r\"
expect \"root password?\"
send \"y\r\"
expect \"New password:\"
send \"$MYSQL_PASS\r\"
expect \"Re-enter new password:\"
send \"$MYSQL_PASS\r\"
expect \"Remove anonymous users?\"
send \"y\r\"
expect \"Disallow root login remotely?\"
send \"y\r\"
expect \"Remove test database and access to it?\"
send \"y\r\"
expect \"Reload privilege tables now?\"
send \"y\r\"
expect eof
")
#
# Execution mysql_secure_installation
#
Igor Pecovnik's avatar
Igor Pecovnik committed
693
echo "${SECURE_MYSQL}" >> /dev/null
Igor Pecovnik's avatar
Igor Pecovnik committed
694
695
696
697
service mysql restart >> /dev/null
}


Igor Pečovnik's avatar
Igor Pečovnik committed
698
install_MySQLDovecot (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
699
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
700
# Install Postfix, Dovecot, Saslauthd, phpMyAdmin, rkhunter, binutils
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
701
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
702
703
echo "postfix postfix/main_mailer_type select Internet Site" | debconf-set-selections
echo "postfix postfix/mailname string $HOSTNAMEFQDN" | debconf-set-selections
704
705
install_packet "postfix postfix-mysql postfix-doc openssl getmail4 rkhunter binutils dovecot-imapd dovecot-pop3d dovecot-mysql \
dovecot-sieve sudo libsasl2-modules" "postfix, dovecot, saslauthd, phpMyAdmin, rkhunter, binutils"
Igor Pečovnik's avatar
Igor Pečovnik committed
706
707
708
709
710
711
712
713
714
715
716
717
718
#Uncommenting some Postfix configuration files
cp /etc/postfix/master.cf /etc/postfix/master.cf.backup
sed -i 's|#submission inet n       -       -       -       -       smtpd|submission inet n       -       -       -       -       smtpd|' /etc/postfix/master.cf
sed -i 's|#  -o syslog_name=postfix/submission|  -o syslog_name=postfix/submission|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_tls_security_level=encrypt|  -o smtpd_tls_security_level=encrypt|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_sasl_auth_enable=yes|  -o smtpd_sasl_auth_enable=yes|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_client_restrictions=permit_sasl_authenticated,reject|  -o smtpd_client_restrictions=permit_sasl_authenticated,reject|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_sasl_auth_enable=yes|  -o smtpd_sasl_auth_enable=yes|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_sasl_auth_enable=yes|  -o smtpd_sasl_auth_enable=yes|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_sasl_auth_enable=yes|  -o smtpd_sasl_auth_enable=yes|' /etc/postfix/master.cf
sed -i 's|#smtps     inet  n       -       -       -       -       smtpd|smtps     inet  n       -       -       -       -       smtpd|' /etc/postfix/master.cf
sed -i 's|#  -o syslog_name=postfix/smtps|  -o syslog_name=postfix/smtps|' /etc/postfix/master.cf
sed -i 's|#  -o smtpd_tls_wrappermode=yes|  -o smtpd_tls_wrappermode=yes|' /etc/postfix/master.cf
Igor Pečovnik's avatar
Igor Pečovnik committed
719
720
service postfix restart >> /dev/null
}
Igor Pečovnik's avatar
Igor Pečovnik committed
721
722
723


install_Virus (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
724
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
725
# Install Amavisd-new, SpamAssassin, And Clamav
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
726
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
727
install_packet "amavisd-new spamassassin clamav clamav-daemon zoo unzip bzip2 arj p7zip unrar-free ripole rpm nomarch lzop \
728
cabextract apt-listchanges libnet-ldap-perl libauthen-sasl-perl clamav-docs daemon libio-string-perl libio-socket-ssl-perl \
729
730
libnet-ident-perl zip libnet-dns-perl postgrey" "amavisd, spamassassin, clamav"
sed -i "s/^AllowSupplementaryGroups.*/AllowSupplementaryGroups true/" /etc/clamav/clamd.conf
Igor Pecovnik's avatar
fix    
Igor Pecovnik committed
731
732
service spamassassin stop
systemctl disable spamassassin
Igor Pečovnik's avatar
Igor Pečovnik committed
733
734
}

735
install_hhvm (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
736
#------------------------------------------------------------------------------------------------------------------------------------------
737
# Install HipHop Virtual Machine
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
738
#------------------------------------------------------------------------------------------------------------------------------------------
739
740
741
742
743
744
745
apt-get -y -qq install software-properties-common
apt-key adv --recv-keys --keyserver hkp://keyserver.ubuntu.com:80 0x5a16e7281be7a449
add-apt-repository "deb http://dl.hhvm.com/ubuntu $distribution main"
apt-get update
apt-get -y -qq install hhvm
}

Igor Pečovnik's avatar
Igor Pečovnik committed
746

747
install_apache (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
748
#------------------------------------------------------------------------------------------------------------------------------------------
749
# Install Apache2, PHP5, phpMyAdmin, FCGI, suExec, Pear and mcrypt
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
750
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
751
752
753
754
755
756
757
758
clear_console
echo "========================================================================="
echo "You will be prompted for some information during the install of phpmyadmin."
echo "Select NO when asked to configure using dbconfig-common"
echo "Please enter them where needed."
echo "========================================================================="
echo "Press ENTER to continue.."
read DUMMY
759
#echo 'phpmyadmin phpmyadmin/reconfigure-webserver multiselect apache2' | debconf-set-selections
Igor Pečovnik's avatar
Igor Pečovnik committed
760
761
762
763

#BELOW ARE STILL NOT WORKING
#echo 'phpmyadmin      phpmyadmin/dbconfig-reinstall   boolean false' | debconf-set-selections
#echo 'phpmyadmin      phpmyadmin/dbconfig-install     boolean false' | debconf-set-selections
764
765
766

if [[ $family == "Ubuntu" ]]; then

Igor Pecovnik's avatar
Typo    
Igor Pecovnik committed
767
install_packet "apache2 apache2-doc apache2-utils libapache2-mod-php php7.0 php7.0-common php7.0-gd php7.0-mysql \
768
php7.0-imap php7.0-cli php7.0-cgi libapache2-mod-fcgid apache2-suexec-pristine php-pear php-auth php7.0-mcrypt mcrypt \
769
imagemagick libruby libapache2-mod-python php7.0-curl php7.0-intl php7.0-pspell php7.0-recode php7.0-sqlite3 php7.0-tidy php7.0-xmlrpc \
770
php7.0-xsl memcached php-memcache php-imagick php-gettext php7.0-zip php7.0-mbstring" "apache2, PHP5, FCGI, suExec, pear and mcrypt"
771
# PHP Opcode cache
Igor Pecovnik's avatar
Igor Pecovnik committed
772
install_packet "php7.0-opcache php-apcu" "PHP Opcode cache"
773
774
775
# PHP-FPM
install_packet "libapache2-mod-fastcgi php7.0-fpm" "PHP-FPM"
a2enmod actions fastcgi alias
776
service apache2 restart
777
778
779
780
781
# Install Let's Encrypt
install_packet "letsencrypt" "Install Let's Encrypt"

else

Igor Pecovnik's avatar
Igor Pecovnik committed
782
install_packet "apache2 apache2.2-common apache2-doc apache2-mpm-prefork apache2-utils libexpat1 ssl-cert libapache2-mod-php5 php5 \
783
php5-common php5-gd php5-mysql php5-imap php5-cli php5-cgi libapache2-mod-fcgid apache2-suexec php-pear php-auth php5-mcrypt \
Igor Pecovnik's avatar
Igor Pecovnik committed
784
mcrypt php5-imagick imagemagick libruby libapache2-mod-python php5-curl php5-intl php5-memcache php5-memcached php5-pspell php5-recode \
785
786
php5-sqlite php5-tidy php5-xmlrpc php5-xsl memcached libapache2-mod-passenger" "apache2, PHP5, CGI, suExec, pear and mcrypt"

787
788
789
790
791
#Install XCache
install_packet "php5-xcache libapache2-mod-fastcgi php5-fpm" "Install XCache PHP Fpm"
a2enmod actions fastcgi alias >> /dev/null

fi
Igor Pecovnik's avatar
Igor Pecovnik committed
792

793
794
795
#phpmyadmin
debconf-apt-progress -- apt-get install -y phpmyadmin

796
# fix HTTPOXY vulnerability
Igor Pecovnik's avatar
Igor Pecovnik committed
797
798
799
cat <<EOT > /etc/apache2/conf-available/httpoxy.conf
<IfModule mod_headers.c>
    RequestHeader unset Proxy early
Igor Pečovnik's avatar
Igor Pečovnik committed
800
801
</IfModule>

Igor Pecovnik's avatar
Igor Pecovnik committed
802
803
804
EOT
a2enconf httpoxy >> /dev/null

805
# enable modules
Igor Pecovnik's avatar
Igor Pecovnik committed
806
807
a2enmod suexec rewrite ssl actions include >> /dev/null
a2enmod dav_fs dav auth_digest cgi headers >> /dev/null
Igor Pečovnik's avatar
Igor Pečovnik committed
808
809

#Restart Apache
Igor Pečovnik's avatar
Igor Pečovnik committed
810
service apache2 restart >> /dev/null
Igor Pečovnik's avatar
Igor Pečovnik committed
811
812
813
}


814
install_nginx (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
815
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
816
# Install NginX, PHP5, phpMyAdmin, FCGI, suExec, Pear, And mcrypt
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
817
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
818

819
820
#echo 'phpmyadmin      phpmyadmin/reconfigure-webserver        multiselect' | debconf-set-selections
#echo 'phpmyadmin      phpmyadmin/dbconfig-install     boolean false' | debconf-set-selections
Igor Pečovnik's avatar
Igor Pečovnik committed
821
822

debconf-apt-progress -- apt-get install -y nginx
Igor Pečovnik's avatar
Igor Pečovnik committed
823
824
825
826
827
828
if [ $(dpkg-query -W -f='${Status}' apache2 2>/dev/null | grep -c "ok installed") -eq 1 ];
then
/etc/init.d/apache2 stop >> /dev/null
update-rc.d -f apache2 remove >> /dev/null
fi
service nginx start >> /dev/null
Igor Pečovnik's avatar
Igor Pečovnik committed
829

830
831
832
833
834
835
836
837
838
839
840
841
842
843
844
if [[ $family == "Ubuntu" ]]; then

debconf-apt-progress -- apt-get install -y php7.0-fpm
debconf-apt-progress -- apt-get install -y php7.0-opcache php7.0-fpm php7.0 php7.0-common php7.0-gd php7.0-mysql php7.0-imap php7.0-cli \
php7.0-cgi php-pear php-auth php7.0-mcrypt mcrypt imagemagick libruby php7.0-curl php7.0-intl php7.0-pspell php7.0-recode php7.0-sqlite3 \
php7.0-tidy php7.0-xmlrpc php7.0-xsl memcached php-memcache php-imagick php-gettext php7.0-zip php7.0-mbstring
phpenmod mcrypt
phpenmod mbstring
debconf-apt-progress -- apt-get install -y php-apcu
sed -i "s/^cgi.fix_pathinfo=.*/cgi.fix_pathinfo=0/" /etc/php/7.0/fpm/php.ini
tz=$(cat /etc/timezone | sed 's/\//\\\//g')
sed -i "s/^date.timezone=.*/date.timezone=""$ls""/" /etc/php/7.0/fpm/php.ini

else

Igor Pečovnik's avatar
Igor Pečovnik committed
845
debconf-apt-progress -- apt-get install -y php5-fpm
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
846
847
debconf-apt-progress -- apt-get install -y php5-mysql php5-curl php5-gd php5-intl php-pear php5-imagick php5-imap php5-mcrypt \
php5-memcache php5-memcached php5-ps php5-pspell php5-recode php5-snmp php5-sqlite php5-tidy php5-xmlrpc php5-xsl memcached
Igor Pečovnik's avatar
Igor Pečovnik committed
848
debconf-apt-progress -- apt-get install -y php-apc
849
850
851

fi

Igor Pečovnik's avatar
Igor Pečovnik committed
852
853
#PHP Configuration Stuff Goes Here
debconf-apt-progress -- apt-get install -y fcgiwrap
Igor Pečovnik's avatar
Igor Pečovnik committed
854
reset
Igor Pečovnik's avatar
Igor Pečovnik committed
855
856
857
858
859
860
861
862
863
echo "========================================================================="
echo "You will be prompted for some information during the install of phpmyadmin."
echo "Please enter them where needed."
echo "========================================================================="
echo "Press ENTER to continue.."
read DUMMY

DEBIAN_FRONTEND=noninteractive apt-get install -y dbconfig-common
debconf-apt-progress -- apt-get install -y phpmyadmin
Igor Pecovnik's avatar
fix    
Igor Pecovnik committed
864
865
866
867
868
if [[ $family == "Ubuntu" ]]; then
	service php7.0-fpm reload >> /dev/null
	else
	service php5-fpm reload >> /dev/null
fi
Igor Pečovnik's avatar
Igor Pečovnik committed
869
870
871
872
}


install_PureFTPD (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
873
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
874
# Install PureFTPd
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
875
#------------------------------------------------------------------------------------------------------------------------------------------
876
install_packet "pure-ftpd-common pure-ftpd-mysql" "p3ureFTPd"
Igor Pečovnik's avatar
Igor Pečovnik committed
877
878
879
880
881
882
883

sed -i 's/VIRTUALCHROOT=false/VIRTUALCHROOT=true/' /etc/default/pure-ftpd-common
echo 1 > /etc/pure-ftpd/conf/TLS
mkdir -p /etc/ssl/private/

openssl req -x509 -nodes -days 7300 -newkey rsa:2048 -subj "/C=/ST=/L=/O=/CN=$(hostname -f)" -keyout /etc/ssl/private/pure-ftpd.pem -out /etc/ssl/private/pure-ftpd.pem
chmod 600 /etc/ssl/private/pure-ftpd.pem
884
/etc/init.d/pure-ftpd-mysql restart  >> /dev/null
Igor Pečovnik's avatar
Igor Pečovnik committed
885
886
887
888
889
}



install_Bind (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
890
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
891
# Install BIND DNS Server
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
892
#------------------------------------------------------------------------------------------------------------------------------------------
893
install_packet "bind9 dnsutils" "Install BIND DNS Server"
Igor Pečovnik's avatar
Igor Pečovnik committed
894
895
896
897
}


install_Stats (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
898
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
899
# Install Vlogger, Webalizer, And AWstats
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
900
#------------------------------------------------------------------------------------------------------------------------------------------
901
install_packet "vlogger webalizer awstats geoip-database libclass-dbi-mysql-perl" "vlogger, webalizer, awstats"
Igor Pečovnik's avatar
Igor Pečovnik committed
902
903
904
905
906
907
sed -i "s/*/10 * * * * www-data/#*/10 * * * * www-data/" /etc/cron.d/awstats
sed -i "s/10 03 * * * www-data/#10 03 * * * www-data/" /etc/cron.d/awstats
}


install_Fail2BanDovecot() {
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
908
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
909
# Install fail2ban
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
910
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
Igor Pecovnik committed
911
install_packet "fail2ban ufw" "Install fail2ban and UFW Firewall"
Igor Pečovnik's avatar
Igor Pečovnik committed
912
913
914
915
916
917
918
919
920
921
922
923
924
925
926
927
928
929
930

cat > /etc/fail2ban/jail.local <<"EOF"
[pureftpd]
enabled  = true
port     = ftp
filter   = pureftpd
logpath  = /var/log/syslog
maxretry = 3

[dovecot-pop3imap]
enabled = true
filter = dovecot-pop3imap
action = iptables-multiport[name=dovecot-pop3imap, port="pop3,pop3s,imap,imaps", protocol=tcp]
logpath = /var/log/mail.log
maxretry = 5

[sasl]
enabled  = true
port     = smtp
Igor Pecovnik's avatar
Igor Pecovnik committed
931
filter   = postfix-sasl
Igor Pečovnik's avatar
Igor Pečovnik committed
932
933
934
935
936
937
938
logpath  = /var/log/mail.log
maxretry = 3
EOF
}


install_Fail2BanRulesDovecot() {
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
939
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
940
941
942
943
944
945
946
947
948
949
950
cat > /etc/fail2ban/filter.d/pureftpd.conf <<"EOF"
[Definition]
failregex = .*pure-ftpd: \(.*@<HOST>\) \[WARNING\] Authentication failed for user.*
ignoreregex =
EOF

cat > /etc/fail2ban/filter.d/dovecot-pop3imap.conf <<"EOF"
[Definition]
failregex = (?: pop3-login|imap-login): .*(?:Authentication failure|Aborted login \(auth failed|Aborted login \(tried to use disabled|Disconnected \(auth failed|Aborted login \(\d+ authentication attempts).*rip=(?P<host>\S*),.*
ignoreregex =
EOF
951
952
# Add the missing ignoreregex line
echo "ignoreregex =" >> /etc/fail2ban/filter.d/postfix-sasl.conf
Igor Pečovnik's avatar
Igor Pečovnik committed
953
service fail2ban restart >> /dev/null
Igor Pečovnik's avatar
Igor Pečovnik committed
954
955
956
957
}


install_ISPConfig (){
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
958
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pečovnik's avatar
Igor Pečovnik committed
959
# Install ISPConfig 3
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
960
#------------------------------------------------------------------------------------------------------------------------------------------
ThomasKaiser's avatar
ThomasKaiser committed
961
cd ${TEMP_DIR}
Igor Pečovnik's avatar
Igor Pečovnik committed
962
wget -q http://www.ispconfig.org/downloads/ISPConfig-3-stable.tar.gz -O - | tar -xz
ThomasKaiser's avatar
ThomasKaiser committed
963
cd ${TEMP_DIR}/ispconfig3_install/install/
Igor Pecovnik's avatar
Igor Pecovnik committed
964
#apt-get -y install php5-cli php5-mysql
ThomasKaiser's avatar
ThomasKaiser committed
965
php -q install.php --autoinstall=${TEMP_DIR}/isp.conf.php
Igor Pecovnik's avatar
Igor Pecovnik committed
966
echo "Admin panel: https://$serverIP:8080"
Igor Pecovnik's avatar
fix    
Igor Pecovnik committed
967
echo "PHPmyadmin: http://$serverIP:8081/phpmyadmin"
Igor Pečovnik's avatar
Igor Pečovnik committed
968
}
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
969
970


971
972
973
974
975
976
977
978
979
980
981
982
check_if_installed (){
#------------------------------------------------------------------------------------------------------------------------------------------
# check dpkg status of $1 -- currently only 'not installed at all' case catched
#------------------------------------------------------------------------------------------------------------------------------------------
	local DPKG_Status="$(dpkg -s "$1" 2>/dev/null | awk -F": " '/^Status/ {print $2}')"
	if [ "X${DPKG_Status}" = "X" ]; then
		return 1
	else
		return 0
	fi
}

Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
983

984
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
985
# Main choices
986
#------------------------------------------------------------------------------------------------------------------------------------------
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
987
988
989
990
991
992
993
994
995

# check for root
#
if [[ $EUID != 0 ]]; then
	dialog --title "Warning" --infobox "\nThis script requires root privileges.\n\nExiting ..." 7 41
	sleep 3
	exit
fi

ThomasKaiser's avatar
ThomasKaiser committed
996
997
998
999
1000
# Create a safe temporary directory
TEMP_DIR=$(mktemp -d || exit 1)
chmod 700 ${TEMP_DIR}
trap "rm -rf \"${TEMP_DIR}\" ; exit 0" 0 1 2 3 15

Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1001
1002
# Install basic stuff
#
ThomasKaiser's avatar
ThomasKaiser committed
1003
echo -e "\nChecking dependencies. This might take a while."
1004
1005
apt-get -qq -y --no-install-recommends install debconf-utils unzip build-essential html2text apt-transport-https dialog whiptail \
lsb-release bc expect html2text > /dev/null
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1006
1007
1008

# gather some info
#
Igor Pecovnik's avatar
Igor Pecovnik committed
1009
1010
TTY_X=$(($(stty size | awk '{print $2}')-6)) # determine terminal width
TTY_Y=$(($(stty size | awk '{print $1}')-6)) # determine terminal height
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1011
1012
1013
1014
1015
1016
1017
1018
distribution=$(lsb_release -cs)
family=$(lsb_release -is)
serverIP=$(ip route get 8.8.8.8 | awk '{ print $NF; exit }')
set ${serverIP//./ }
SUBNET="$1.$2.$3."
hostnamefqdn=$(hostname -f)
mysql_pass=""
backtitle="Softy - Armbian post deployment scripts, http://www.armbian.com"
1019
SCRIPTDIR="$( cd "$( dirname "${BASH_SOURCE[0]}" )" && pwd )"
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1020
1021
1022
1023
1024
1025
1026

# main dialog routine
#
DIALOG_CANCEL=1
DIALOG_ESC=255

while true; do
1027
1028
1029
1030
1031

	# prepare menu items
	check_status
	LISTLENGHT="$(($LIST_CONST+${#LIST[@]}/2))"

Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1032
1033
1034
1035
1036
1037
	exec 3>&1
	selection=$(dialog --backtitle "$backtitle" --title "Installing to $family $distribution" --clear --cancel-label \
	"Exit" --checklist "\nChoose what you want to install:\n " $LISTLENGHT 70 15 "${LIST[@]}" 2>&1 1>&3)
	exit_status=$?
	exec 3>&-
	case $exit_status in
Igor Pecovnik's avatar
Igor Pecovnik committed
1038
	$DIALOG_ESC | $DIALOG_CANCEL)
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1039
1040
1041
1042
1043
		clear
		exit 1
		;;
	esac

1044
1045
1046
	# cycle trought all install options
	i=0
	while [ "$i" -lt "$LISTLENGHT" ]; do
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1047

1048
1049
1050
		if [[ "$selection" == *Samba* && "$SAMBA_STATUS" != "on" ]]; then
			install_samba
			check_port 445 "Samba"
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1051
1052
		fi

1053
1054
1055
1056
		if [[ "$selection" == *CUPS* && "$CUPS_STATUS" != "on" ]]; then
			install_cups
			check_port 445 "CUPS"
		fi
Igor Pecovnik's avatar
RFC #2    
Igor Pecovnik committed
1057

1058
1059
1060
1061
1062
1063
		if [[ "$selection" == *headend* && "$TVHEADEND_STATUS" != "on" ]]; then
			install_tvheadend
		fi

		if [[ "$selection" == *Minidlna* && "$MINIDLNA_STATUS" != "on" ]]; then
			install_packet "minidlna" "Install lightweight DLNA/UPnP-AV server"
1064
			check_port 8200 "minidlna"
1065
1066
1067
1068
1069
1070
1071
1072
		fi

		if [[ "$selection" == *ISPConfig* && "$ISPCONFIG_STATUS" != "on" ]]; then
			server_conf
			if [[ "$MYSQL_PASS" == "" ]]; then
				dialog --msgbox "Mysql password can't be blank. Exiting..." 7 70
				exit
			fi
1073
1074
1075
1076
1077
			if [[ "$(echo $HOSTNAMEFQDN | grep -P '(?=^.{1,254}$)(^(?>(?!\d+\.)[a-zA-Z0-9_\-]{1,63}\.?)+(?:[a-zA-Z]{2,})$)')" == "" ]]; then
				dialog --msgbox "Invalid FQDN. Exiting..." 7 70
				exit
			fi
			choose_webserver; install_basic; install_DashNTP; install_MySQL; install_MySQLDovecot; install_Virus; install_$server; install_hhvm
1078
1079
1080
1081
1082
1083
1084
1085
1086
1087
1088
			create_ispconfig_configuration; install_PureFTPD; install_Fail2BanDovecot; install_Fail2BanRulesDovecot;
			install_ISPConfig
			read -n 1 -s -p "Press any key to continue"
		fi

		if [[ "$selection" == *Syncthing* && "$SYNCTHING_STATUS" != "on" ]]; then
			install_syncthing
			check_port 8384 "Syncthing"
			read -n 1 -s -p "Press any key to continue"
		fi

1089
		if [[ "$selection" == *server* && "$VPN_SERVER_STATUS" != "on" ]]; then
1090
1091
1092
1093
			install_vpn_server
			read -n 1 -s -p "Press any key to continue"
		fi

1094
1095
1096
1097
1098
1099
		if [[ "$selection" == *client* && "$VPN_CLIENT_STATUS" != "on" ]]; then
			install_vpn_client
			read -n 1 -s -p "Press any key to continue"
		fi


1100
1101
1102
1103
1104
1105
		if [[ "$selection" == *OMV* && "$OMV_STATUS" != "on" ]]; then
			install_omv
			read -n 1 -s -p "Press any key to continue"
		fi

		if [[ "$selection" == *hole* && "$PI_HOLE_STATUS" != "on" ]]; then
ThomasKaiser's avatar
ThomasKaiser committed
1106
			curl -L "https://install.pi-hole.net" | bash
1107
1108
1109
1110
1111
			read -n 1 -s -p "Press any key to continue"
		fi

		if [[ "$selection" == *Transmission* && "$TRANSMISSION_STATUS" != "on" ]]; then
			install_transmission
ThomasKaiser's avatar
ThomasKaiser committed
1112
			check_port 9091 transmission
1113
1114
1115
1116
1117
1118
		fi

		# reread statuses
		check_status
		i=$[$i+1]
	done
1119
done