You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

install.go 16KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Use of this source code is governed by a MIT-style
  3. // license that can be found in the LICENSE file.
  4. package routers
  5. import (
  6. "fmt"
  7. "net/http"
  8. "os"
  9. "os/exec"
  10. "path/filepath"
  11. "strings"
  12. "time"
  13. "code.gitea.io/gitea/models"
  14. "code.gitea.io/gitea/modules/base"
  15. "code.gitea.io/gitea/modules/context"
  16. "code.gitea.io/gitea/modules/generate"
  17. "code.gitea.io/gitea/modules/graceful"
  18. "code.gitea.io/gitea/modules/log"
  19. "code.gitea.io/gitea/modules/setting"
  20. "code.gitea.io/gitea/modules/templates"
  21. "code.gitea.io/gitea/modules/user"
  22. "code.gitea.io/gitea/modules/util"
  23. "code.gitea.io/gitea/modules/web"
  24. "code.gitea.io/gitea/modules/web/middleware"
  25. "code.gitea.io/gitea/services/forms"
  26. "gitea.com/go-chi/session"
  27. "gopkg.in/ini.v1"
  28. )
  29. const (
  30. // tplInstall template for installation page
  31. tplInstall base.TplName = "install"
  32. tplPostInstall base.TplName = "post-install"
  33. )
  34. // InstallInit prepare for rendering installation page
  35. func InstallInit(next http.Handler) http.Handler {
  36. var rnd = templates.HTMLRenderer()
  37. return http.HandlerFunc(func(resp http.ResponseWriter, req *http.Request) {
  38. if setting.InstallLock {
  39. resp.Header().Add("Refresh", "1; url="+setting.AppURL+"user/login")
  40. _ = rnd.HTML(resp, 200, string(tplPostInstall), nil)
  41. return
  42. }
  43. var locale = middleware.Locale(resp, req)
  44. var startTime = time.Now()
  45. var ctx = context.Context{
  46. Resp: context.NewResponse(resp),
  47. Flash: &middleware.Flash{},
  48. Locale: locale,
  49. Render: rnd,
  50. Session: session.GetSession(req),
  51. Data: map[string]interface{}{
  52. "Title": locale.Tr("install.install"),
  53. "PageIsInstall": true,
  54. "DbOptions": setting.SupportedDatabases,
  55. "i18n": locale,
  56. "Language": locale.Language(),
  57. "CurrentURL": setting.AppSubURL + req.URL.RequestURI(),
  58. "PageStartTime": startTime,
  59. "TmplLoadTimes": func() string {
  60. return time.Since(startTime).String()
  61. },
  62. "PasswordHashAlgorithms": models.AvailableHashAlgorithms,
  63. },
  64. }
  65. ctx.Req = context.WithContext(req, &ctx)
  66. next.ServeHTTP(resp, ctx.Req)
  67. })
  68. }
  69. // Install render installation page
  70. func Install(ctx *context.Context) {
  71. form := forms.InstallForm{}
  72. // Database settings
  73. form.DbHost = setting.Database.Host
  74. form.DbUser = setting.Database.User
  75. form.DbPasswd = setting.Database.Passwd
  76. form.DbName = setting.Database.Name
  77. form.DbPath = setting.Database.Path
  78. form.DbSchema = setting.Database.Schema
  79. form.Charset = setting.Database.Charset
  80. var curDBOption = "MySQL"
  81. switch setting.Database.Type {
  82. case "postgres":
  83. curDBOption = "PostgreSQL"
  84. case "mssql":
  85. curDBOption = "MSSQL"
  86. case "sqlite3":
  87. if setting.EnableSQLite3 {
  88. curDBOption = "SQLite3"
  89. }
  90. }
  91. ctx.Data["CurDbOption"] = curDBOption
  92. // Application general settings
  93. form.AppName = setting.AppName
  94. form.RepoRootPath = setting.RepoRootPath
  95. form.LFSRootPath = setting.LFS.Path
  96. // Note(unknown): it's hard for Windows users change a running user,
  97. // so just use current one if config says default.
  98. if setting.IsWindows && setting.RunUser == "git" {
  99. form.RunUser = user.CurrentUsername()
  100. } else {
  101. form.RunUser = setting.RunUser
  102. }
  103. form.Domain = setting.Domain
  104. form.SSHPort = setting.SSH.Port
  105. form.HTTPPort = setting.HTTPPort
  106. form.AppURL = setting.AppURL
  107. form.LogRootPath = setting.LogRootPath
  108. // E-mail service settings
  109. if setting.MailService != nil {
  110. form.SMTPHost = setting.MailService.Host
  111. form.SMTPFrom = setting.MailService.From
  112. form.SMTPUser = setting.MailService.User
  113. }
  114. form.RegisterConfirm = setting.Service.RegisterEmailConfirm
  115. form.MailNotify = setting.Service.EnableNotifyMail
  116. // Server and other services settings
  117. form.OfflineMode = setting.OfflineMode
  118. form.DisableGravatar = setting.DisableGravatar
  119. form.EnableFederatedAvatar = setting.EnableFederatedAvatar
  120. form.EnableOpenIDSignIn = setting.Service.EnableOpenIDSignIn
  121. form.EnableOpenIDSignUp = setting.Service.EnableOpenIDSignUp
  122. form.DisableRegistration = setting.Service.DisableRegistration
  123. form.AllowOnlyExternalRegistration = setting.Service.AllowOnlyExternalRegistration
  124. form.EnableCaptcha = setting.Service.EnableCaptcha
  125. form.RequireSignInView = setting.Service.RequireSignInView
  126. form.DefaultKeepEmailPrivate = setting.Service.DefaultKeepEmailPrivate
  127. form.DefaultAllowCreateOrganization = setting.Service.DefaultAllowCreateOrganization
  128. form.DefaultEnableTimetracking = setting.Service.DefaultEnableTimetracking
  129. form.NoReplyAddress = setting.Service.NoReplyAddress
  130. form.PasswordAlgorithm = setting.PasswordHashAlgo
  131. middleware.AssignForm(form, ctx.Data)
  132. ctx.HTML(http.StatusOK, tplInstall)
  133. }
  134. // InstallPost response for submit install items
  135. func InstallPost(ctx *context.Context) {
  136. form := *web.GetForm(ctx).(*forms.InstallForm)
  137. var err error
  138. ctx.Data["CurDbOption"] = form.DbType
  139. if ctx.HasError() {
  140. if ctx.HasValue("Err_SMTPUser") {
  141. ctx.Data["Err_SMTP"] = true
  142. }
  143. if ctx.HasValue("Err_AdminName") ||
  144. ctx.HasValue("Err_AdminPasswd") ||
  145. ctx.HasValue("Err_AdminEmail") {
  146. ctx.Data["Err_Admin"] = true
  147. }
  148. ctx.HTML(http.StatusOK, tplInstall)
  149. return
  150. }
  151. if _, err = exec.LookPath("git"); err != nil {
  152. ctx.RenderWithErr(ctx.Tr("install.test_git_failed", err), tplInstall, &form)
  153. return
  154. }
  155. // Pass basic check, now test configuration.
  156. // Test database setting.
  157. setting.Database.Type = setting.GetDBTypeByName(form.DbType)
  158. setting.Database.Host = form.DbHost
  159. setting.Database.User = form.DbUser
  160. setting.Database.Passwd = form.DbPasswd
  161. setting.Database.Name = form.DbName
  162. setting.Database.Schema = form.DbSchema
  163. setting.Database.SSLMode = form.SSLMode
  164. setting.Database.Charset = form.Charset
  165. setting.Database.Path = form.DbPath
  166. setting.PasswordHashAlgo = form.PasswordAlgorithm
  167. if (setting.Database.Type == "sqlite3") &&
  168. len(setting.Database.Path) == 0 {
  169. ctx.Data["Err_DbPath"] = true
  170. ctx.RenderWithErr(ctx.Tr("install.err_empty_db_path"), tplInstall, &form)
  171. return
  172. }
  173. // Set test engine.
  174. if err = models.NewTestEngine(); err != nil {
  175. if strings.Contains(err.Error(), `Unknown database type: sqlite3`) {
  176. ctx.Data["Err_DbType"] = true
  177. ctx.RenderWithErr(ctx.Tr("install.sqlite3_not_available", "https://docs.gitea.io/en-us/install-from-binary/"), tplInstall, &form)
  178. } else {
  179. ctx.Data["Err_DbSetting"] = true
  180. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, &form)
  181. }
  182. return
  183. }
  184. // Test repository root path.
  185. form.RepoRootPath = strings.ReplaceAll(form.RepoRootPath, "\\", "/")
  186. if err = os.MkdirAll(form.RepoRootPath, os.ModePerm); err != nil {
  187. ctx.Data["Err_RepoRootPath"] = true
  188. ctx.RenderWithErr(ctx.Tr("install.invalid_repo_path", err), tplInstall, &form)
  189. return
  190. }
  191. // Test LFS root path if not empty, empty meaning disable LFS
  192. if form.LFSRootPath != "" {
  193. form.LFSRootPath = strings.ReplaceAll(form.LFSRootPath, "\\", "/")
  194. if err := os.MkdirAll(form.LFSRootPath, os.ModePerm); err != nil {
  195. ctx.Data["Err_LFSRootPath"] = true
  196. ctx.RenderWithErr(ctx.Tr("install.invalid_lfs_path", err), tplInstall, &form)
  197. return
  198. }
  199. }
  200. // Test log root path.
  201. form.LogRootPath = strings.ReplaceAll(form.LogRootPath, "\\", "/")
  202. if err = os.MkdirAll(form.LogRootPath, os.ModePerm); err != nil {
  203. ctx.Data["Err_LogRootPath"] = true
  204. ctx.RenderWithErr(ctx.Tr("install.invalid_log_root_path", err), tplInstall, &form)
  205. return
  206. }
  207. currentUser, match := setting.IsRunUserMatchCurrentUser(form.RunUser)
  208. if !match {
  209. ctx.Data["Err_RunUser"] = true
  210. ctx.RenderWithErr(ctx.Tr("install.run_user_not_match", form.RunUser, currentUser), tplInstall, &form)
  211. return
  212. }
  213. // Check logic loophole between disable self-registration and no admin account.
  214. if form.DisableRegistration && len(form.AdminName) == 0 {
  215. ctx.Data["Err_Services"] = true
  216. ctx.Data["Err_Admin"] = true
  217. ctx.RenderWithErr(ctx.Tr("install.no_admin_and_disable_registration"), tplInstall, form)
  218. return
  219. }
  220. // Check admin user creation
  221. if len(form.AdminName) > 0 {
  222. // Ensure AdminName is valid
  223. if err := models.IsUsableUsername(form.AdminName); err != nil {
  224. ctx.Data["Err_Admin"] = true
  225. ctx.Data["Err_AdminName"] = true
  226. if models.IsErrNameReserved(err) {
  227. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_reserved"), tplInstall, form)
  228. return
  229. } else if models.IsErrNamePatternNotAllowed(err) {
  230. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_pattern_not_allowed"), tplInstall, form)
  231. return
  232. }
  233. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_invalid"), tplInstall, form)
  234. return
  235. }
  236. // Check Admin email
  237. if len(form.AdminEmail) == 0 {
  238. ctx.Data["Err_Admin"] = true
  239. ctx.Data["Err_AdminEmail"] = true
  240. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_email"), tplInstall, form)
  241. return
  242. }
  243. // Check admin password.
  244. if len(form.AdminPasswd) == 0 {
  245. ctx.Data["Err_Admin"] = true
  246. ctx.Data["Err_AdminPasswd"] = true
  247. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_password"), tplInstall, form)
  248. return
  249. }
  250. if form.AdminPasswd != form.AdminConfirmPasswd {
  251. ctx.Data["Err_Admin"] = true
  252. ctx.Data["Err_AdminPasswd"] = true
  253. ctx.RenderWithErr(ctx.Tr("form.password_not_match"), tplInstall, form)
  254. return
  255. }
  256. }
  257. if form.AppURL[len(form.AppURL)-1] != '/' {
  258. form.AppURL += "/"
  259. }
  260. // Save settings.
  261. cfg := ini.Empty()
  262. isFile, err := util.IsFile(setting.CustomConf)
  263. if err != nil {
  264. log.Error("Unable to check if %s is a file. Error: %v", setting.CustomConf, err)
  265. }
  266. if isFile {
  267. // Keeps custom settings if there is already something.
  268. if err = cfg.Append(setting.CustomConf); err != nil {
  269. log.Error("Failed to load custom conf '%s': %v", setting.CustomConf, err)
  270. }
  271. }
  272. cfg.Section("database").Key("DB_TYPE").SetValue(setting.Database.Type)
  273. cfg.Section("database").Key("HOST").SetValue(setting.Database.Host)
  274. cfg.Section("database").Key("NAME").SetValue(setting.Database.Name)
  275. cfg.Section("database").Key("USER").SetValue(setting.Database.User)
  276. cfg.Section("database").Key("PASSWD").SetValue(setting.Database.Passwd)
  277. cfg.Section("database").Key("SCHEMA").SetValue(setting.Database.Schema)
  278. cfg.Section("database").Key("SSL_MODE").SetValue(setting.Database.SSLMode)
  279. cfg.Section("database").Key("CHARSET").SetValue(setting.Database.Charset)
  280. cfg.Section("database").Key("PATH").SetValue(setting.Database.Path)
  281. cfg.Section("database").Key("LOG_SQL").SetValue("false") // LOG_SQL is rarely helpful
  282. cfg.Section("").Key("APP_NAME").SetValue(form.AppName)
  283. cfg.Section("repository").Key("ROOT").SetValue(form.RepoRootPath)
  284. cfg.Section("").Key("RUN_USER").SetValue(form.RunUser)
  285. cfg.Section("server").Key("SSH_DOMAIN").SetValue(form.Domain)
  286. cfg.Section("server").Key("DOMAIN").SetValue(form.Domain)
  287. cfg.Section("server").Key("HTTP_PORT").SetValue(form.HTTPPort)
  288. cfg.Section("server").Key("ROOT_URL").SetValue(form.AppURL)
  289. if form.SSHPort == 0 {
  290. cfg.Section("server").Key("DISABLE_SSH").SetValue("true")
  291. } else {
  292. cfg.Section("server").Key("DISABLE_SSH").SetValue("false")
  293. cfg.Section("server").Key("SSH_PORT").SetValue(fmt.Sprint(form.SSHPort))
  294. }
  295. if form.LFSRootPath != "" {
  296. cfg.Section("server").Key("LFS_START_SERVER").SetValue("true")
  297. cfg.Section("server").Key("LFS_CONTENT_PATH").SetValue(form.LFSRootPath)
  298. var secretKey string
  299. if secretKey, err = generate.NewJwtSecret(); err != nil {
  300. ctx.RenderWithErr(ctx.Tr("install.lfs_jwt_secret_failed", err), tplInstall, &form)
  301. return
  302. }
  303. cfg.Section("server").Key("LFS_JWT_SECRET").SetValue(secretKey)
  304. } else {
  305. cfg.Section("server").Key("LFS_START_SERVER").SetValue("false")
  306. }
  307. if len(strings.TrimSpace(form.SMTPHost)) > 0 {
  308. cfg.Section("mailer").Key("ENABLED").SetValue("true")
  309. cfg.Section("mailer").Key("HOST").SetValue(form.SMTPHost)
  310. cfg.Section("mailer").Key("FROM").SetValue(form.SMTPFrom)
  311. cfg.Section("mailer").Key("USER").SetValue(form.SMTPUser)
  312. cfg.Section("mailer").Key("PASSWD").SetValue(form.SMTPPasswd)
  313. } else {
  314. cfg.Section("mailer").Key("ENABLED").SetValue("false")
  315. }
  316. cfg.Section("service").Key("REGISTER_EMAIL_CONFIRM").SetValue(fmt.Sprint(form.RegisterConfirm))
  317. cfg.Section("service").Key("ENABLE_NOTIFY_MAIL").SetValue(fmt.Sprint(form.MailNotify))
  318. cfg.Section("server").Key("OFFLINE_MODE").SetValue(fmt.Sprint(form.OfflineMode))
  319. cfg.Section("picture").Key("DISABLE_GRAVATAR").SetValue(fmt.Sprint(form.DisableGravatar))
  320. cfg.Section("picture").Key("ENABLE_FEDERATED_AVATAR").SetValue(fmt.Sprint(form.EnableFederatedAvatar))
  321. cfg.Section("openid").Key("ENABLE_OPENID_SIGNIN").SetValue(fmt.Sprint(form.EnableOpenIDSignIn))
  322. cfg.Section("openid").Key("ENABLE_OPENID_SIGNUP").SetValue(fmt.Sprint(form.EnableOpenIDSignUp))
  323. cfg.Section("service").Key("DISABLE_REGISTRATION").SetValue(fmt.Sprint(form.DisableRegistration))
  324. cfg.Section("service").Key("ALLOW_ONLY_EXTERNAL_REGISTRATION").SetValue(fmt.Sprint(form.AllowOnlyExternalRegistration))
  325. cfg.Section("service").Key("ENABLE_CAPTCHA").SetValue(fmt.Sprint(form.EnableCaptcha))
  326. cfg.Section("service").Key("REQUIRE_SIGNIN_VIEW").SetValue(fmt.Sprint(form.RequireSignInView))
  327. cfg.Section("service").Key("DEFAULT_KEEP_EMAIL_PRIVATE").SetValue(fmt.Sprint(form.DefaultKeepEmailPrivate))
  328. cfg.Section("service").Key("DEFAULT_ALLOW_CREATE_ORGANIZATION").SetValue(fmt.Sprint(form.DefaultAllowCreateOrganization))
  329. cfg.Section("service").Key("DEFAULT_ENABLE_TIMETRACKING").SetValue(fmt.Sprint(form.DefaultEnableTimetracking))
  330. cfg.Section("service").Key("NO_REPLY_ADDRESS").SetValue(fmt.Sprint(form.NoReplyAddress))
  331. cfg.Section("").Key("RUN_MODE").SetValue("prod")
  332. cfg.Section("session").Key("PROVIDER").SetValue("file")
  333. cfg.Section("log").Key("MODE").SetValue("console")
  334. cfg.Section("log").Key("LEVEL").SetValue(setting.LogLevel.String())
  335. cfg.Section("log").Key("ROOT_PATH").SetValue(form.LogRootPath)
  336. cfg.Section("log").Key("ROUTER").SetValue("console")
  337. cfg.Section("security").Key("INSTALL_LOCK").SetValue("true")
  338. var secretKey string
  339. if secretKey, err = generate.NewSecretKey(); err != nil {
  340. ctx.RenderWithErr(ctx.Tr("install.secret_key_failed", err), tplInstall, &form)
  341. return
  342. }
  343. cfg.Section("security").Key("SECRET_KEY").SetValue(secretKey)
  344. if len(form.PasswordAlgorithm) > 0 {
  345. cfg.Section("security").Key("PASSWORD_HASH_ALGO").SetValue(form.PasswordAlgorithm)
  346. }
  347. err = os.MkdirAll(filepath.Dir(setting.CustomConf), os.ModePerm)
  348. if err != nil {
  349. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  350. return
  351. }
  352. if err = cfg.SaveTo(setting.CustomConf); err != nil {
  353. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  354. return
  355. }
  356. // Re-read settings
  357. PostInstallInit(ctx.Req.Context())
  358. // Create admin account
  359. if len(form.AdminName) > 0 {
  360. u := &models.User{
  361. Name: form.AdminName,
  362. Email: form.AdminEmail,
  363. Passwd: form.AdminPasswd,
  364. IsAdmin: true,
  365. IsActive: true,
  366. }
  367. if err = models.CreateUser(u); err != nil {
  368. if !models.IsErrUserAlreadyExist(err) {
  369. setting.InstallLock = false
  370. ctx.Data["Err_AdminName"] = true
  371. ctx.Data["Err_AdminEmail"] = true
  372. ctx.RenderWithErr(ctx.Tr("install.invalid_admin_setting", err), tplInstall, &form)
  373. return
  374. }
  375. log.Info("Admin account already exist")
  376. u, _ = models.GetUserByName(u.Name)
  377. }
  378. days := 86400 * setting.LogInRememberDays
  379. ctx.SetCookie(setting.CookieUserName, u.Name, days)
  380. ctx.SetSuperSecureCookie(base.EncodeMD5(u.Rands+u.Passwd),
  381. setting.CookieRememberName, u.Name, days)
  382. // Auto-login for admin
  383. if err = ctx.Session.Set("uid", u.ID); err != nil {
  384. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  385. return
  386. }
  387. if err = ctx.Session.Set("uname", u.Name); err != nil {
  388. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  389. return
  390. }
  391. if err = ctx.Session.Release(); err != nil {
  392. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  393. return
  394. }
  395. }
  396. log.Info("First-time run install finished!")
  397. ctx.Flash.Success(ctx.Tr("install.install_success"))
  398. ctx.Header().Add("Refresh", "1; url="+setting.AppURL+"user/login")
  399. ctx.HTML(http.StatusOK, tplPostInstall)
  400. // Now get the http.Server from this request and shut it down
  401. // NB: This is not our hammerable graceful shutdown this is http.Server.Shutdown
  402. srv := ctx.Req.Context().Value(http.ServerContextKey).(*http.Server)
  403. go func() {
  404. if err := srv.Shutdown(graceful.GetManager().HammerContext()); err != nil {
  405. log.Error("Unable to shutdown the install server! Error: %v", err)
  406. }
  407. }()
  408. }