-
Notifications
You must be signed in to change notification settings - Fork 2
Expand file tree
/
Copy pathgui-install.sh
More file actions
executable file
·243 lines (191 loc) · 5.53 KB
/
gui-install.sh
File metadata and controls
executable file
·243 lines (191 loc) · 5.53 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
#!/usr/bin/env bash
set -e
cd "$(dirname "$0")"
# Colors for output
GREEN='\033[0;32m'
YELLOW='\033[1;33m'
RED='\033[0;31m'
NC='\033[0m'
# Logging functions
log_info() { echo -e "${GREEN}[INFO]${NC} $1"; }
log_warn() { echo -e "${YELLOW}[WARN]${NC} $1"; }
log_error() { echo -e "${RED}[ERROR]${NC} $1"; }
# Default values (Override via environment variables)
DOMAIN="${DOMAIN:-manager.example.com}"
EMAIL="${EMAIL:-admin@example.com}"
ADMIN_USER="${ADMIN_USER:-admin}"
ADMIN_PASS="${ADMIN_PASS:-changeme}"
NODE_VERSION="${NODE_VERSION:-20.9.0}"
# Install system dependencies
install_dependencies() {
log_info "Updating system and installing dependencies..."
apt-get update -y
apt-get install -y \
python3 \
python3-pip \
python3-venv \
nginx \
certbot \
curl \
git \
python3-certbot-nginx \
build-essential \
openssl
}
# Install and setup nvm
install_nvm() {
log_info "Installing NVM (Node Version Manager)..."
if ! command -v nvm &> /dev/null; then
curl -fsSL https://raw.githubusercontent.com/nvm-sh/nvm/v0.39.4/install.sh | bash
export NVM_DIR="$HOME/.nvm"
[ -s "$NVM_DIR/nvm.sh" ] && \. "$NVM_DIR/nvm.sh"
[ -s "$NVM_DIR/bash_completion" ] && \. "$NVM_DIR/bash_completion"
else
log_info "NVM is already installed."
fi
}
# Install Node.js using nvm
install_nodejs() {
install_nvm
export NVM_DIR="$HOME/.nvm"
[ -s "$NVM_DIR/nvm.sh" ] && \. "$NVM_DIR/nvm.sh"
log_info "Installing Node.js $NODE_VERSION..."
nvm install "$NODE_VERSION"
nvm use "$NODE_VERSION"
nvm alias default "$NODE_VERSION"
log_info "Node.js version installed:"
node --version
npm --version
}
# Check system requirements
check_requirements() {
if [ "$EUID" -ne 0 ]; then
log_error "This script must be run as root (use sudo)"
exit 1
fi
}
# Setup Python virtual environment and install backend
setup_backend() {
log_info "Setting up backend..."
cd ui/backend
python3 -m venv venv
source venv/bin/activate
pip install --upgrade pip
pip install -r requirements.txt
cat > /etc/systemd/system/lightstack-backend.service << EOF
[Unit]
Description=Lightstack Backend
After=network.target
[Service]
Type=simple
User=root
Group=root
WorkingDirectory=$(pwd)
ExecStart=$(pwd)/venv/bin/python -m uvicorn main:app --host 0.0.0.0 --port 8005
Restart=always
RestartSec=5
StartLimitInterval=500
StartLimitBurst=5
[Install]
WantedBy=multi-user.target
EOF
systemctl daemon-reload
systemctl enable lightstack-backend
systemctl start lightstack-backend
cd ../..
}
# Build and setup frontend
setup_frontend() {
log_info "Setting up frontend..."
cd ui/frontend
export NVM_DIR="$HOME/.nvm"
[ -s "$NVM_DIR/nvm.sh" ] && \. "$NVM_DIR/nvm.sh"
nvm use "$NODE_VERSION"
rm -rf node_modules package-lock.json
npm cache clean --force
npm install
npm run build
mkdir -p /var/www/lightstack
cp -r dist/* /var/www/lightstack/
chown -R www-data:www-data /var/www/lightstack
chmod -R 755 /var/www/lightstack
cd ../..
}
# Setup nginx configuration
setup_nginx() {
log_info "Setting up nginx configuration for $DOMAIN..."
mkdir -p /etc/nginx/sites-available /etc/nginx/sites-enabled
cat > /etc/nginx/sites-available/lightstack << EOF
upstream backend {
server 127.0.0.1:8005;
}
server {
listen 8443 ssl;
server_name ${DOMAIN};
ssl_certificate /etc/letsencrypt/live/${DOMAIN}/fullchain.pem;
ssl_certificate_key /etc/letsencrypt/live/${DOMAIN}/privkey.pem;
include /etc/letsencrypt/options-ssl-nginx.conf;
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem;
root /var/www/lightstack;
location / {
try_files \$uri \$uri/ /index.html;
add_header Cache-Control "no-cache, no-store, must-revalidate";
}
location /api/ {
proxy_pass http://backend/;
proxy_http_version 1.1;
proxy_set_header Upgrade \$http_upgrade;
proxy_set_header Connection 'upgrade';
proxy_set_header Host \$host;
proxy_cache_bypass \$http_upgrade;
}
}
EOF
ln -sf /etc/nginx/sites-available/lightstack /etc/nginx/sites-enabled/
rm -f /etc/nginx/sites-enabled/default
nginx -t
systemctl reload nginx || systemctl start nginx
}
# Setup SSL certificates
setup_ssl() {
log_info "Setting up SSL certificates..."
apt-get install -y python3-certbot-nginx
if [ -d "/etc/letsencrypt/live/$DOMAIN" ]; then
log_info "SSL certificate already exists. Skipping renewal..."
else
certbot certonly --nginx --non-interactive --agree-tos --email "$EMAIL" --domains "$DOMAIN"
fi
}
# Generate environment configuration
generate_env() {
log_info "Generating environment configuration..."
JWT_SECRET=$(openssl rand -hex 32)
cat > ui/backend/.env << EOF
DOMAIN=$DOMAIN
JWT_SECRET_KEY=$JWT_SECRET
ADMIN_USER=$ADMIN_USER
ADMIN_PASS=$ADMIN_PASS
NODE_ENV=production
EOF
chmod 600 ui/backend/.env
}
# Main script
main() {
clear
log_info "Starting Lightstack UI Installation (Non-Interactive Mode)"
check_requirements
install_dependencies
install_nodejs
systemctl stop lightstack-backend 2>/dev/null || true
generate_env
setup_backend
setup_frontend
setup_ssl
setup_nginx
log_info "Installation completed successfully!"
echo
echo "Access at https://$DOMAIN:8443"
echo "Username: $ADMIN_USER"
}
trap 'echo -e "\n${RED}Error: Installation interrupted${NC}"; exit 1' ERR
main