You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

install.go 22KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Copyright 2021 The Gitea Authors. All rights reserved.
  3. // SPDX-License-Identifier: MIT
  4. package install
  5. import (
  6. "fmt"
  7. "net/http"
  8. "os"
  9. "os/exec"
  10. "path/filepath"
  11. "strconv"
  12. "strings"
  13. "time"
  14. "code.gitea.io/gitea/models/db"
  15. db_install "code.gitea.io/gitea/models/db/install"
  16. "code.gitea.io/gitea/models/migrations"
  17. system_model "code.gitea.io/gitea/models/system"
  18. user_model "code.gitea.io/gitea/models/user"
  19. "code.gitea.io/gitea/modules/auth/password/hash"
  20. "code.gitea.io/gitea/modules/base"
  21. "code.gitea.io/gitea/modules/context"
  22. "code.gitea.io/gitea/modules/generate"
  23. "code.gitea.io/gitea/modules/graceful"
  24. "code.gitea.io/gitea/modules/log"
  25. "code.gitea.io/gitea/modules/setting"
  26. "code.gitea.io/gitea/modules/templates"
  27. "code.gitea.io/gitea/modules/translation"
  28. "code.gitea.io/gitea/modules/user"
  29. "code.gitea.io/gitea/modules/util"
  30. "code.gitea.io/gitea/modules/web"
  31. "code.gitea.io/gitea/modules/web/middleware"
  32. "code.gitea.io/gitea/routers/common"
  33. "code.gitea.io/gitea/services/forms"
  34. "gitea.com/go-chi/session"
  35. )
  36. const (
  37. // tplInstall template for installation page
  38. tplInstall base.TplName = "install"
  39. tplPostInstall base.TplName = "post-install"
  40. )
  41. // getSupportedDbTypeNames returns a slice for supported database types and names. The slice is used to keep the order
  42. func getSupportedDbTypeNames() (dbTypeNames []map[string]string) {
  43. for _, t := range setting.SupportedDatabaseTypes {
  44. dbTypeNames = append(dbTypeNames, map[string]string{"type": t, "name": setting.DatabaseTypeNames[t]})
  45. }
  46. return dbTypeNames
  47. }
  48. // Contexter prepare for rendering installation page
  49. func Contexter() func(next http.Handler) http.Handler {
  50. rnd := templates.HTMLRenderer()
  51. dbTypeNames := getSupportedDbTypeNames()
  52. envConfigKeys := setting.CollectEnvConfigKeys()
  53. return func(next http.Handler) http.Handler {
  54. return http.HandlerFunc(func(resp http.ResponseWriter, req *http.Request) {
  55. base, baseCleanUp := context.NewBaseContext(resp, req)
  56. defer baseCleanUp()
  57. ctx := context.NewWebContext(base, rnd, session.GetSession(req))
  58. ctx.AppendContextValue(context.WebContextKey, ctx)
  59. ctx.Data.MergeFrom(middleware.CommonTemplateContextData())
  60. ctx.Data.MergeFrom(middleware.ContextData{
  61. "Context": ctx, // TODO: use "ctx" in template and remove this
  62. "locale": ctx.Locale,
  63. "Title": ctx.Locale.Tr("install.install"),
  64. "PageIsInstall": true,
  65. "DbTypeNames": dbTypeNames,
  66. "EnvConfigKeys": envConfigKeys,
  67. "CustomConfFile": setting.CustomConf,
  68. "AllLangs": translation.AllLangs(),
  69. "PasswordHashAlgorithms": hash.RecommendedHashAlgorithms,
  70. })
  71. next.ServeHTTP(resp, ctx.Req)
  72. })
  73. }
  74. }
  75. // Install render installation page
  76. func Install(ctx *context.Context) {
  77. if setting.InstallLock {
  78. InstallDone(ctx)
  79. return
  80. }
  81. form := forms.InstallForm{}
  82. // Database settings
  83. form.DbHost = setting.Database.Host
  84. form.DbUser = setting.Database.User
  85. form.DbPasswd = setting.Database.Passwd
  86. form.DbName = setting.Database.Name
  87. form.DbPath = setting.Database.Path
  88. form.DbSchema = setting.Database.Schema
  89. form.SSLMode = setting.Database.SSLMode
  90. curDBType := setting.Database.Type.String()
  91. var isCurDBTypeSupported bool
  92. for _, dbType := range setting.SupportedDatabaseTypes {
  93. if dbType == curDBType {
  94. isCurDBTypeSupported = true
  95. break
  96. }
  97. }
  98. if !isCurDBTypeSupported {
  99. curDBType = "mysql"
  100. }
  101. ctx.Data["CurDbType"] = curDBType
  102. // Application general settings
  103. form.AppName = setting.AppName
  104. form.RepoRootPath = setting.RepoRootPath
  105. form.LFSRootPath = setting.LFS.Storage.Path
  106. // Note(unknown): it's hard for Windows users change a running user,
  107. // so just use current one if config says default.
  108. if setting.IsWindows && setting.RunUser == "git" {
  109. form.RunUser = user.CurrentUsername()
  110. } else {
  111. form.RunUser = setting.RunUser
  112. }
  113. form.Domain = setting.Domain
  114. form.SSHPort = setting.SSH.Port
  115. form.HTTPPort = setting.HTTPPort
  116. form.AppURL = setting.AppURL
  117. form.LogRootPath = setting.Log.RootPath
  118. // E-mail service settings
  119. if setting.MailService != nil {
  120. form.SMTPAddr = setting.MailService.SMTPAddr
  121. form.SMTPPort = setting.MailService.SMTPPort
  122. form.SMTPFrom = setting.MailService.From
  123. form.SMTPUser = setting.MailService.User
  124. form.SMTPPasswd = setting.MailService.Passwd
  125. }
  126. form.RegisterConfirm = setting.Service.RegisterEmailConfirm
  127. form.MailNotify = setting.Service.EnableNotifyMail
  128. // Server and other services settings
  129. form.OfflineMode = setting.OfflineMode
  130. form.DisableGravatar = setting.DisableGravatar // when installing, there is no database connection so that given a default value
  131. form.EnableFederatedAvatar = setting.EnableFederatedAvatar // when installing, there is no database connection so that given a default value
  132. form.EnableOpenIDSignIn = setting.Service.EnableOpenIDSignIn
  133. form.EnableOpenIDSignUp = setting.Service.EnableOpenIDSignUp
  134. form.DisableRegistration = setting.Service.DisableRegistration
  135. form.AllowOnlyExternalRegistration = setting.Service.AllowOnlyExternalRegistration
  136. form.EnableCaptcha = setting.Service.EnableCaptcha
  137. form.RequireSignInView = setting.Service.RequireSignInView
  138. form.DefaultKeepEmailPrivate = setting.Service.DefaultKeepEmailPrivate
  139. form.DefaultAllowCreateOrganization = setting.Service.DefaultAllowCreateOrganization
  140. form.DefaultEnableTimetracking = setting.Service.DefaultEnableTimetracking
  141. form.NoReplyAddress = setting.Service.NoReplyAddress
  142. form.PasswordAlgorithm = hash.ConfigHashAlgorithm(setting.PasswordHashAlgo)
  143. middleware.AssignForm(form, ctx.Data)
  144. ctx.HTML(http.StatusOK, tplInstall)
  145. }
  146. func checkDatabase(ctx *context.Context, form *forms.InstallForm) bool {
  147. var err error
  148. if (setting.Database.Type == "sqlite3") &&
  149. len(setting.Database.Path) == 0 {
  150. ctx.Data["Err_DbPath"] = true
  151. ctx.RenderWithErr(ctx.Tr("install.err_empty_db_path"), tplInstall, form)
  152. return false
  153. }
  154. // Check if the user is trying to re-install in an installed database
  155. db.UnsetDefaultEngine()
  156. defer db.UnsetDefaultEngine()
  157. if err = db.InitEngine(ctx); err != nil {
  158. if strings.Contains(err.Error(), `Unknown database type: sqlite3`) {
  159. ctx.Data["Err_DbType"] = true
  160. ctx.RenderWithErr(ctx.Tr("install.sqlite3_not_available", "https://docs.gitea.com/installation/install-from-binary"), tplInstall, form)
  161. } else {
  162. ctx.Data["Err_DbSetting"] = true
  163. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  164. }
  165. return false
  166. }
  167. err = db_install.CheckDatabaseConnection()
  168. if err != nil {
  169. ctx.Data["Err_DbSetting"] = true
  170. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  171. return false
  172. }
  173. hasPostInstallationUser, err := db_install.HasPostInstallationUsers()
  174. if err != nil {
  175. ctx.Data["Err_DbSetting"] = true
  176. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "user", err), tplInstall, form)
  177. return false
  178. }
  179. dbMigrationVersion, err := db_install.GetMigrationVersion()
  180. if err != nil {
  181. ctx.Data["Err_DbSetting"] = true
  182. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "version", err), tplInstall, form)
  183. return false
  184. }
  185. if hasPostInstallationUser && dbMigrationVersion > 0 {
  186. log.Error("The database is likely to have been used by Gitea before, database migration version=%d", dbMigrationVersion)
  187. confirmed := form.ReinstallConfirmFirst && form.ReinstallConfirmSecond && form.ReinstallConfirmThird
  188. if !confirmed {
  189. ctx.Data["Err_DbInstalledBefore"] = true
  190. ctx.RenderWithErr(ctx.Tr("install.reinstall_error"), tplInstall, form)
  191. return false
  192. }
  193. log.Info("User confirmed re-installation of Gitea into a pre-existing database")
  194. }
  195. if hasPostInstallationUser || dbMigrationVersion > 0 {
  196. log.Info("Gitea will be installed in a database with: hasPostInstallationUser=%v, dbMigrationVersion=%v", hasPostInstallationUser, dbMigrationVersion)
  197. }
  198. return true
  199. }
  200. // SubmitInstall response for submit install items
  201. func SubmitInstall(ctx *context.Context) {
  202. if setting.InstallLock {
  203. InstallDone(ctx)
  204. return
  205. }
  206. var err error
  207. form := *web.GetForm(ctx).(*forms.InstallForm)
  208. // fix form values
  209. if form.AppURL != "" && form.AppURL[len(form.AppURL)-1] != '/' {
  210. form.AppURL += "/"
  211. }
  212. ctx.Data["CurDbType"] = form.DbType
  213. if ctx.HasError() {
  214. ctx.Data["Err_SMTP"] = ctx.Data["Err_SMTPUser"] != nil
  215. ctx.Data["Err_Admin"] = ctx.Data["Err_AdminName"] != nil || ctx.Data["Err_AdminPasswd"] != nil || ctx.Data["Err_AdminEmail"] != nil
  216. ctx.HTML(http.StatusOK, tplInstall)
  217. return
  218. }
  219. if _, err = exec.LookPath("git"); err != nil {
  220. ctx.RenderWithErr(ctx.Tr("install.test_git_failed", err), tplInstall, &form)
  221. return
  222. }
  223. // ---- Basic checks are passed, now test configuration.
  224. // Test database setting.
  225. setting.Database.Type = setting.DatabaseType(form.DbType)
  226. setting.Database.Host = form.DbHost
  227. setting.Database.User = form.DbUser
  228. setting.Database.Passwd = form.DbPasswd
  229. setting.Database.Name = form.DbName
  230. setting.Database.Schema = form.DbSchema
  231. setting.Database.SSLMode = form.SSLMode
  232. setting.Database.Path = form.DbPath
  233. setting.Database.LogSQL = !setting.IsProd
  234. if !checkDatabase(ctx, &form) {
  235. return
  236. }
  237. // Prepare AppDataPath, it is very important for Gitea
  238. if err = setting.PrepareAppDataPath(); err != nil {
  239. ctx.RenderWithErr(ctx.Tr("install.invalid_app_data_path", err), tplInstall, &form)
  240. return
  241. }
  242. // Test repository root path.
  243. form.RepoRootPath = strings.ReplaceAll(form.RepoRootPath, "\\", "/")
  244. if err = os.MkdirAll(form.RepoRootPath, os.ModePerm); err != nil {
  245. ctx.Data["Err_RepoRootPath"] = true
  246. ctx.RenderWithErr(ctx.Tr("install.invalid_repo_path", err), tplInstall, &form)
  247. return
  248. }
  249. // Test LFS root path if not empty, empty meaning disable LFS
  250. if form.LFSRootPath != "" {
  251. form.LFSRootPath = strings.ReplaceAll(form.LFSRootPath, "\\", "/")
  252. if err := os.MkdirAll(form.LFSRootPath, os.ModePerm); err != nil {
  253. ctx.Data["Err_LFSRootPath"] = true
  254. ctx.RenderWithErr(ctx.Tr("install.invalid_lfs_path", err), tplInstall, &form)
  255. return
  256. }
  257. }
  258. // Test log root path.
  259. form.LogRootPath = strings.ReplaceAll(form.LogRootPath, "\\", "/")
  260. if err = os.MkdirAll(form.LogRootPath, os.ModePerm); err != nil {
  261. ctx.Data["Err_LogRootPath"] = true
  262. ctx.RenderWithErr(ctx.Tr("install.invalid_log_root_path", err), tplInstall, &form)
  263. return
  264. }
  265. currentUser, match := setting.IsRunUserMatchCurrentUser(form.RunUser)
  266. if !match {
  267. ctx.Data["Err_RunUser"] = true
  268. ctx.RenderWithErr(ctx.Tr("install.run_user_not_match", form.RunUser, currentUser), tplInstall, &form)
  269. return
  270. }
  271. // Check logic loophole between disable self-registration and no admin account.
  272. if form.DisableRegistration && len(form.AdminName) == 0 {
  273. ctx.Data["Err_Services"] = true
  274. ctx.Data["Err_Admin"] = true
  275. ctx.RenderWithErr(ctx.Tr("install.no_admin_and_disable_registration"), tplInstall, form)
  276. return
  277. }
  278. // Check admin user creation
  279. if len(form.AdminName) > 0 {
  280. // Ensure AdminName is valid
  281. if err := user_model.IsUsableUsername(form.AdminName); err != nil {
  282. ctx.Data["Err_Admin"] = true
  283. ctx.Data["Err_AdminName"] = true
  284. if db.IsErrNameReserved(err) {
  285. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_reserved"), tplInstall, form)
  286. return
  287. } else if db.IsErrNamePatternNotAllowed(err) {
  288. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_pattern_not_allowed"), tplInstall, form)
  289. return
  290. }
  291. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_invalid"), tplInstall, form)
  292. return
  293. }
  294. // Check Admin email
  295. if len(form.AdminEmail) == 0 {
  296. ctx.Data["Err_Admin"] = true
  297. ctx.Data["Err_AdminEmail"] = true
  298. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_email"), tplInstall, form)
  299. return
  300. }
  301. // Check admin password.
  302. if len(form.AdminPasswd) == 0 {
  303. ctx.Data["Err_Admin"] = true
  304. ctx.Data["Err_AdminPasswd"] = true
  305. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_password"), tplInstall, form)
  306. return
  307. }
  308. if form.AdminPasswd != form.AdminConfirmPasswd {
  309. ctx.Data["Err_Admin"] = true
  310. ctx.Data["Err_AdminPasswd"] = true
  311. ctx.RenderWithErr(ctx.Tr("form.password_not_match"), tplInstall, form)
  312. return
  313. }
  314. }
  315. // Init the engine with migration
  316. if err = db.InitEngineWithMigration(ctx, migrations.Migrate); err != nil {
  317. db.UnsetDefaultEngine()
  318. ctx.Data["Err_DbSetting"] = true
  319. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, &form)
  320. return
  321. }
  322. // Save settings.
  323. cfg, err := setting.NewConfigProviderFromFile(setting.CustomConf)
  324. if err != nil {
  325. log.Error("Failed to load custom conf '%s': %v", setting.CustomConf, err)
  326. }
  327. cfg.Section("").Key("APP_NAME").SetValue(form.AppName)
  328. cfg.Section("").Key("RUN_USER").SetValue(form.RunUser)
  329. cfg.Section("").Key("WORK_PATH").SetValue(setting.AppWorkPath)
  330. cfg.Section("").Key("RUN_MODE").SetValue("prod")
  331. cfg.Section("database").Key("DB_TYPE").SetValue(setting.Database.Type.String())
  332. cfg.Section("database").Key("HOST").SetValue(setting.Database.Host)
  333. cfg.Section("database").Key("NAME").SetValue(setting.Database.Name)
  334. cfg.Section("database").Key("USER").SetValue(setting.Database.User)
  335. cfg.Section("database").Key("PASSWD").SetValue(setting.Database.Passwd)
  336. cfg.Section("database").Key("SCHEMA").SetValue(setting.Database.Schema)
  337. cfg.Section("database").Key("SSL_MODE").SetValue(setting.Database.SSLMode)
  338. cfg.Section("database").Key("PATH").SetValue(setting.Database.Path)
  339. cfg.Section("database").Key("LOG_SQL").SetValue("false") // LOG_SQL is rarely helpful
  340. cfg.Section("repository").Key("ROOT").SetValue(form.RepoRootPath)
  341. cfg.Section("server").Key("SSH_DOMAIN").SetValue(form.Domain)
  342. cfg.Section("server").Key("DOMAIN").SetValue(form.Domain)
  343. cfg.Section("server").Key("HTTP_PORT").SetValue(form.HTTPPort)
  344. cfg.Section("server").Key("ROOT_URL").SetValue(form.AppURL)
  345. cfg.Section("server").Key("APP_DATA_PATH").SetValue(setting.AppDataPath)
  346. if form.SSHPort == 0 {
  347. cfg.Section("server").Key("DISABLE_SSH").SetValue("true")
  348. } else {
  349. cfg.Section("server").Key("DISABLE_SSH").SetValue("false")
  350. cfg.Section("server").Key("SSH_PORT").SetValue(fmt.Sprint(form.SSHPort))
  351. }
  352. if form.LFSRootPath != "" {
  353. cfg.Section("server").Key("LFS_START_SERVER").SetValue("true")
  354. cfg.Section("lfs").Key("PATH").SetValue(form.LFSRootPath)
  355. var lfsJwtSecret string
  356. if _, lfsJwtSecret, err = generate.NewJwtSecretBase64(); err != nil {
  357. ctx.RenderWithErr(ctx.Tr("install.lfs_jwt_secret_failed", err), tplInstall, &form)
  358. return
  359. }
  360. cfg.Section("server").Key("LFS_JWT_SECRET").SetValue(lfsJwtSecret)
  361. } else {
  362. cfg.Section("server").Key("LFS_START_SERVER").SetValue("false")
  363. }
  364. if len(strings.TrimSpace(form.SMTPAddr)) > 0 {
  365. cfg.Section("mailer").Key("ENABLED").SetValue("true")
  366. cfg.Section("mailer").Key("SMTP_ADDR").SetValue(form.SMTPAddr)
  367. cfg.Section("mailer").Key("SMTP_PORT").SetValue(form.SMTPPort)
  368. cfg.Section("mailer").Key("FROM").SetValue(form.SMTPFrom)
  369. cfg.Section("mailer").Key("USER").SetValue(form.SMTPUser)
  370. cfg.Section("mailer").Key("PASSWD").SetValue(form.SMTPPasswd)
  371. } else {
  372. cfg.Section("mailer").Key("ENABLED").SetValue("false")
  373. }
  374. cfg.Section("service").Key("REGISTER_EMAIL_CONFIRM").SetValue(fmt.Sprint(form.RegisterConfirm))
  375. cfg.Section("service").Key("ENABLE_NOTIFY_MAIL").SetValue(fmt.Sprint(form.MailNotify))
  376. cfg.Section("server").Key("OFFLINE_MODE").SetValue(fmt.Sprint(form.OfflineMode))
  377. // if you are reinstalling, this maybe not right because of missing version
  378. if err := system_model.SetSettingNoVersion(ctx, system_model.KeyPictureDisableGravatar, strconv.FormatBool(form.DisableGravatar)); err != nil {
  379. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  380. return
  381. }
  382. if err := system_model.SetSettingNoVersion(ctx, system_model.KeyPictureEnableFederatedAvatar, strconv.FormatBool(form.EnableFederatedAvatar)); err != nil {
  383. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  384. return
  385. }
  386. cfg.Section("openid").Key("ENABLE_OPENID_SIGNIN").SetValue(fmt.Sprint(form.EnableOpenIDSignIn))
  387. cfg.Section("openid").Key("ENABLE_OPENID_SIGNUP").SetValue(fmt.Sprint(form.EnableOpenIDSignUp))
  388. cfg.Section("service").Key("DISABLE_REGISTRATION").SetValue(fmt.Sprint(form.DisableRegistration))
  389. cfg.Section("service").Key("ALLOW_ONLY_EXTERNAL_REGISTRATION").SetValue(fmt.Sprint(form.AllowOnlyExternalRegistration))
  390. cfg.Section("service").Key("ENABLE_CAPTCHA").SetValue(fmt.Sprint(form.EnableCaptcha))
  391. cfg.Section("service").Key("REQUIRE_SIGNIN_VIEW").SetValue(fmt.Sprint(form.RequireSignInView))
  392. cfg.Section("service").Key("DEFAULT_KEEP_EMAIL_PRIVATE").SetValue(fmt.Sprint(form.DefaultKeepEmailPrivate))
  393. cfg.Section("service").Key("DEFAULT_ALLOW_CREATE_ORGANIZATION").SetValue(fmt.Sprint(form.DefaultAllowCreateOrganization))
  394. cfg.Section("service").Key("DEFAULT_ENABLE_TIMETRACKING").SetValue(fmt.Sprint(form.DefaultEnableTimetracking))
  395. cfg.Section("service").Key("NO_REPLY_ADDRESS").SetValue(fmt.Sprint(form.NoReplyAddress))
  396. cfg.Section("cron.update_checker").Key("ENABLED").SetValue(fmt.Sprint(form.EnableUpdateChecker))
  397. cfg.Section("session").Key("PROVIDER").SetValue("file")
  398. cfg.Section("log").Key("MODE").MustString("console")
  399. cfg.Section("log").Key("LEVEL").SetValue(setting.Log.Level.String())
  400. cfg.Section("log").Key("ROOT_PATH").SetValue(form.LogRootPath)
  401. cfg.Section("repository.pull-request").Key("DEFAULT_MERGE_STYLE").SetValue("merge")
  402. cfg.Section("repository.signing").Key("DEFAULT_TRUST_MODEL").SetValue("committer")
  403. cfg.Section("security").Key("INSTALL_LOCK").SetValue("true")
  404. // the internal token could be read from INTERNAL_TOKEN or INTERNAL_TOKEN_URI (the file is guaranteed to be non-empty)
  405. // if there is no InternalToken, generate one and save to security.INTERNAL_TOKEN
  406. if setting.InternalToken == "" {
  407. var internalToken string
  408. if internalToken, err = generate.NewInternalToken(); err != nil {
  409. ctx.RenderWithErr(ctx.Tr("install.internal_token_failed", err), tplInstall, &form)
  410. return
  411. }
  412. cfg.Section("security").Key("INTERNAL_TOKEN").SetValue(internalToken)
  413. }
  414. // if there is already a SECRET_KEY, we should not overwrite it, otherwise the encrypted data will not be able to be decrypted
  415. if setting.SecretKey == "" {
  416. var secretKey string
  417. if secretKey, err = generate.NewSecretKey(); err != nil {
  418. ctx.RenderWithErr(ctx.Tr("install.secret_key_failed", err), tplInstall, &form)
  419. return
  420. }
  421. cfg.Section("security").Key("SECRET_KEY").SetValue(secretKey)
  422. }
  423. if len(form.PasswordAlgorithm) > 0 {
  424. var algorithm *hash.PasswordHashAlgorithm
  425. setting.PasswordHashAlgo, algorithm = hash.SetDefaultPasswordHashAlgorithm(form.PasswordAlgorithm)
  426. if algorithm == nil {
  427. ctx.RenderWithErr(ctx.Tr("install.invalid_password_algorithm"), tplInstall, &form)
  428. return
  429. }
  430. cfg.Section("security").Key("PASSWORD_HASH_ALGO").SetValue(form.PasswordAlgorithm)
  431. }
  432. log.Info("Save settings to custom config file %s", setting.CustomConf)
  433. err = os.MkdirAll(filepath.Dir(setting.CustomConf), os.ModePerm)
  434. if err != nil {
  435. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  436. return
  437. }
  438. setting.EnvironmentToConfig(cfg, os.Environ())
  439. if err = cfg.SaveTo(setting.CustomConf); err != nil {
  440. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  441. return
  442. }
  443. // unset default engine before reload database setting
  444. db.UnsetDefaultEngine()
  445. // ---- All checks are passed
  446. // Reload settings (and re-initialize database connection)
  447. setting.InitCfgProvider(setting.CustomConf)
  448. setting.LoadCommonSettings()
  449. setting.MustInstalled()
  450. setting.LoadDBSetting()
  451. if err := common.InitDBEngine(ctx); err != nil {
  452. log.Fatal("ORM engine initialization failed: %v", err)
  453. }
  454. // Create admin account
  455. if len(form.AdminName) > 0 {
  456. u := &user_model.User{
  457. Name: form.AdminName,
  458. Email: form.AdminEmail,
  459. Passwd: form.AdminPasswd,
  460. IsAdmin: true,
  461. }
  462. overwriteDefault := &user_model.CreateUserOverwriteOptions{
  463. IsRestricted: util.OptionalBoolFalse,
  464. IsActive: util.OptionalBoolTrue,
  465. }
  466. if err = user_model.CreateUser(u, overwriteDefault); err != nil {
  467. if !user_model.IsErrUserAlreadyExist(err) {
  468. setting.InstallLock = false
  469. ctx.Data["Err_AdminName"] = true
  470. ctx.Data["Err_AdminEmail"] = true
  471. ctx.RenderWithErr(ctx.Tr("install.invalid_admin_setting", err), tplInstall, &form)
  472. return
  473. }
  474. log.Info("Admin account already exist")
  475. u, _ = user_model.GetUserByName(ctx, u.Name)
  476. }
  477. days := 86400 * setting.LogInRememberDays
  478. ctx.SetSiteCookie(setting.CookieUserName, u.Name, days)
  479. ctx.SetSuperSecureCookie(base.EncodeMD5(u.Rands+u.Passwd),
  480. setting.CookieRememberName, u.Name, days)
  481. // Auto-login for admin
  482. if err = ctx.Session.Set("uid", u.ID); err != nil {
  483. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  484. return
  485. }
  486. if err = ctx.Session.Set("uname", u.Name); err != nil {
  487. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  488. return
  489. }
  490. if err = ctx.Session.Release(); err != nil {
  491. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  492. return
  493. }
  494. }
  495. setting.ClearEnvConfigKeys()
  496. log.Info("First-time run install finished!")
  497. InstallDone(ctx)
  498. go func() {
  499. // Sleep for a while to make sure the user's browser has loaded the post-install page and its assets (images, css, js)
  500. // What if this duration is not long enough? That's impossible -- if the user can't load the simple page in time, how could they install or use Gitea in the future ....
  501. time.Sleep(3 * time.Second)
  502. // Now get the http.Server from this request and shut it down
  503. // NB: This is not our hammerable graceful shutdown this is http.Server.Shutdown
  504. srv := ctx.Value(http.ServerContextKey).(*http.Server)
  505. if err := srv.Shutdown(graceful.GetManager().HammerContext()); err != nil {
  506. log.Error("Unable to shutdown the install server! Error: %v", err)
  507. }
  508. // After the HTTP server for "install" shuts down, the `runWeb()` will continue to run the "normal" server
  509. }()
  510. }
  511. // InstallDone shows the "post-install" page, makes it easier to develop the page.
  512. // The name is not called as "PostInstall" to avoid misinterpretation as a handler for "POST /install"
  513. func InstallDone(ctx *context.Context) { //nolint
  514. ctx.HTML(http.StatusOK, tplPostInstall)
  515. }