You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

install.go 22KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Copyright 2021 The Gitea Authors. All rights reserved.
  3. // SPDX-License-Identifier: MIT
  4. package install
  5. import (
  6. "fmt"
  7. "net/http"
  8. "net/mail"
  9. "os"
  10. "os/exec"
  11. "path/filepath"
  12. "strconv"
  13. "strings"
  14. "time"
  15. "code.gitea.io/gitea/models/db"
  16. db_install "code.gitea.io/gitea/models/db/install"
  17. "code.gitea.io/gitea/models/migrations"
  18. system_model "code.gitea.io/gitea/models/system"
  19. user_model "code.gitea.io/gitea/models/user"
  20. "code.gitea.io/gitea/modules/auth/password/hash"
  21. "code.gitea.io/gitea/modules/base"
  22. "code.gitea.io/gitea/modules/context"
  23. "code.gitea.io/gitea/modules/generate"
  24. "code.gitea.io/gitea/modules/graceful"
  25. "code.gitea.io/gitea/modules/log"
  26. "code.gitea.io/gitea/modules/setting"
  27. "code.gitea.io/gitea/modules/templates"
  28. "code.gitea.io/gitea/modules/translation"
  29. "code.gitea.io/gitea/modules/user"
  30. "code.gitea.io/gitea/modules/util"
  31. "code.gitea.io/gitea/modules/web"
  32. "code.gitea.io/gitea/modules/web/middleware"
  33. "code.gitea.io/gitea/routers/common"
  34. "code.gitea.io/gitea/services/forms"
  35. "gitea.com/go-chi/session"
  36. )
  37. const (
  38. // tplInstall template for installation page
  39. tplInstall base.TplName = "install"
  40. tplPostInstall base.TplName = "post-install"
  41. )
  42. // getSupportedDbTypeNames returns a slice for supported database types and names. The slice is used to keep the order
  43. func getSupportedDbTypeNames() (dbTypeNames []map[string]string) {
  44. for _, t := range setting.SupportedDatabaseTypes {
  45. dbTypeNames = append(dbTypeNames, map[string]string{"type": t, "name": setting.DatabaseTypeNames[t]})
  46. }
  47. return dbTypeNames
  48. }
  49. // Contexter prepare for rendering installation page
  50. func Contexter() func(next http.Handler) http.Handler {
  51. rnd := templates.HTMLRenderer()
  52. dbTypeNames := getSupportedDbTypeNames()
  53. envConfigKeys := setting.CollectEnvConfigKeys()
  54. return func(next http.Handler) http.Handler {
  55. return http.HandlerFunc(func(resp http.ResponseWriter, req *http.Request) {
  56. base, baseCleanUp := context.NewBaseContext(resp, req)
  57. defer baseCleanUp()
  58. ctx := context.NewWebContext(base, rnd, session.GetSession(req))
  59. ctx.AppendContextValue(context.WebContextKey, ctx)
  60. ctx.Data.MergeFrom(middleware.CommonTemplateContextData())
  61. ctx.Data.MergeFrom(middleware.ContextData{
  62. "Context": ctx, // TODO: use "ctx" in template and remove this
  63. "locale": ctx.Locale,
  64. "Title": ctx.Locale.Tr("install.install"),
  65. "PageIsInstall": true,
  66. "DbTypeNames": dbTypeNames,
  67. "EnvConfigKeys": envConfigKeys,
  68. "CustomConfFile": setting.CustomConf,
  69. "AllLangs": translation.AllLangs(),
  70. "PasswordHashAlgorithms": hash.RecommendedHashAlgorithms,
  71. })
  72. next.ServeHTTP(resp, ctx.Req)
  73. })
  74. }
  75. }
  76. // Install render installation page
  77. func Install(ctx *context.Context) {
  78. if setting.InstallLock {
  79. InstallDone(ctx)
  80. return
  81. }
  82. form := forms.InstallForm{}
  83. // Database settings
  84. form.DbHost = setting.Database.Host
  85. form.DbUser = setting.Database.User
  86. form.DbPasswd = setting.Database.Passwd
  87. form.DbName = setting.Database.Name
  88. form.DbPath = setting.Database.Path
  89. form.DbSchema = setting.Database.Schema
  90. form.SSLMode = setting.Database.SSLMode
  91. curDBType := setting.Database.Type.String()
  92. var isCurDBTypeSupported bool
  93. for _, dbType := range setting.SupportedDatabaseTypes {
  94. if dbType == curDBType {
  95. isCurDBTypeSupported = true
  96. break
  97. }
  98. }
  99. if !isCurDBTypeSupported {
  100. curDBType = "mysql"
  101. }
  102. ctx.Data["CurDbType"] = curDBType
  103. // Application general settings
  104. form.AppName = setting.AppName
  105. form.RepoRootPath = setting.RepoRootPath
  106. form.LFSRootPath = setting.LFS.Storage.Path
  107. // Note(unknown): it's hard for Windows users change a running user,
  108. // so just use current one if config says default.
  109. if setting.IsWindows && setting.RunUser == "git" {
  110. form.RunUser = user.CurrentUsername()
  111. } else {
  112. form.RunUser = setting.RunUser
  113. }
  114. form.Domain = setting.Domain
  115. form.SSHPort = setting.SSH.Port
  116. form.HTTPPort = setting.HTTPPort
  117. form.AppURL = setting.AppURL
  118. form.LogRootPath = setting.Log.RootPath
  119. // E-mail service settings
  120. if setting.MailService != nil {
  121. form.SMTPAddr = setting.MailService.SMTPAddr
  122. form.SMTPPort = setting.MailService.SMTPPort
  123. form.SMTPFrom = setting.MailService.From
  124. form.SMTPUser = setting.MailService.User
  125. form.SMTPPasswd = setting.MailService.Passwd
  126. }
  127. form.RegisterConfirm = setting.Service.RegisterEmailConfirm
  128. form.MailNotify = setting.Service.EnableNotifyMail
  129. // Server and other services settings
  130. form.OfflineMode = setting.OfflineMode
  131. form.DisableGravatar = setting.DisableGravatar // when installing, there is no database connection so that given a default value
  132. form.EnableFederatedAvatar = setting.EnableFederatedAvatar // when installing, there is no database connection so that given a default value
  133. form.EnableOpenIDSignIn = setting.Service.EnableOpenIDSignIn
  134. form.EnableOpenIDSignUp = setting.Service.EnableOpenIDSignUp
  135. form.DisableRegistration = setting.Service.DisableRegistration
  136. form.AllowOnlyExternalRegistration = setting.Service.AllowOnlyExternalRegistration
  137. form.EnableCaptcha = setting.Service.EnableCaptcha
  138. form.RequireSignInView = setting.Service.RequireSignInView
  139. form.DefaultKeepEmailPrivate = setting.Service.DefaultKeepEmailPrivate
  140. form.DefaultAllowCreateOrganization = setting.Service.DefaultAllowCreateOrganization
  141. form.DefaultEnableTimetracking = setting.Service.DefaultEnableTimetracking
  142. form.NoReplyAddress = setting.Service.NoReplyAddress
  143. form.PasswordAlgorithm = hash.ConfigHashAlgorithm(setting.PasswordHashAlgo)
  144. middleware.AssignForm(form, ctx.Data)
  145. ctx.HTML(http.StatusOK, tplInstall)
  146. }
  147. func checkDatabase(ctx *context.Context, form *forms.InstallForm) bool {
  148. var err error
  149. if (setting.Database.Type == "sqlite3") &&
  150. len(setting.Database.Path) == 0 {
  151. ctx.Data["Err_DbPath"] = true
  152. ctx.RenderWithErr(ctx.Tr("install.err_empty_db_path"), tplInstall, form)
  153. return false
  154. }
  155. // Check if the user is trying to re-install in an installed database
  156. db.UnsetDefaultEngine()
  157. defer db.UnsetDefaultEngine()
  158. if err = db.InitEngine(ctx); err != nil {
  159. if strings.Contains(err.Error(), `Unknown database type: sqlite3`) {
  160. ctx.Data["Err_DbType"] = true
  161. ctx.RenderWithErr(ctx.Tr("install.sqlite3_not_available", "https://docs.gitea.com/installation/install-from-binary"), tplInstall, form)
  162. } else {
  163. ctx.Data["Err_DbSetting"] = true
  164. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  165. }
  166. return false
  167. }
  168. err = db_install.CheckDatabaseConnection()
  169. if err != nil {
  170. ctx.Data["Err_DbSetting"] = true
  171. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  172. return false
  173. }
  174. hasPostInstallationUser, err := db_install.HasPostInstallationUsers()
  175. if err != nil {
  176. ctx.Data["Err_DbSetting"] = true
  177. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "user", err), tplInstall, form)
  178. return false
  179. }
  180. dbMigrationVersion, err := db_install.GetMigrationVersion()
  181. if err != nil {
  182. ctx.Data["Err_DbSetting"] = true
  183. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "version", err), tplInstall, form)
  184. return false
  185. }
  186. if hasPostInstallationUser && dbMigrationVersion > 0 {
  187. log.Error("The database is likely to have been used by Gitea before, database migration version=%d", dbMigrationVersion)
  188. confirmed := form.ReinstallConfirmFirst && form.ReinstallConfirmSecond && form.ReinstallConfirmThird
  189. if !confirmed {
  190. ctx.Data["Err_DbInstalledBefore"] = true
  191. ctx.RenderWithErr(ctx.Tr("install.reinstall_error"), tplInstall, form)
  192. return false
  193. }
  194. log.Info("User confirmed re-installation of Gitea into a pre-existing database")
  195. }
  196. if hasPostInstallationUser || dbMigrationVersion > 0 {
  197. log.Info("Gitea will be installed in a database with: hasPostInstallationUser=%v, dbMigrationVersion=%v", hasPostInstallationUser, dbMigrationVersion)
  198. }
  199. return true
  200. }
  201. // SubmitInstall response for submit install items
  202. func SubmitInstall(ctx *context.Context) {
  203. if setting.InstallLock {
  204. InstallDone(ctx)
  205. return
  206. }
  207. var err error
  208. form := *web.GetForm(ctx).(*forms.InstallForm)
  209. // fix form values
  210. if form.AppURL != "" && form.AppURL[len(form.AppURL)-1] != '/' {
  211. form.AppURL += "/"
  212. }
  213. ctx.Data["CurDbType"] = form.DbType
  214. if ctx.HasError() {
  215. ctx.Data["Err_SMTP"] = ctx.Data["Err_SMTPUser"] != nil
  216. ctx.Data["Err_Admin"] = ctx.Data["Err_AdminName"] != nil || ctx.Data["Err_AdminPasswd"] != nil || ctx.Data["Err_AdminEmail"] != nil
  217. ctx.HTML(http.StatusOK, tplInstall)
  218. return
  219. }
  220. if _, err = exec.LookPath("git"); err != nil {
  221. ctx.RenderWithErr(ctx.Tr("install.test_git_failed", err), tplInstall, &form)
  222. return
  223. }
  224. // ---- Basic checks are passed, now test configuration.
  225. // Test database setting.
  226. setting.Database.Type = setting.DatabaseType(form.DbType)
  227. setting.Database.Host = form.DbHost
  228. setting.Database.User = form.DbUser
  229. setting.Database.Passwd = form.DbPasswd
  230. setting.Database.Name = form.DbName
  231. setting.Database.Schema = form.DbSchema
  232. setting.Database.SSLMode = form.SSLMode
  233. setting.Database.Path = form.DbPath
  234. setting.Database.LogSQL = !setting.IsProd
  235. if !checkDatabase(ctx, &form) {
  236. return
  237. }
  238. // Prepare AppDataPath, it is very important for Gitea
  239. if err = setting.PrepareAppDataPath(); err != nil {
  240. ctx.RenderWithErr(ctx.Tr("install.invalid_app_data_path", err), tplInstall, &form)
  241. return
  242. }
  243. // Test repository root path.
  244. form.RepoRootPath = strings.ReplaceAll(form.RepoRootPath, "\\", "/")
  245. if err = os.MkdirAll(form.RepoRootPath, os.ModePerm); err != nil {
  246. ctx.Data["Err_RepoRootPath"] = true
  247. ctx.RenderWithErr(ctx.Tr("install.invalid_repo_path", err), tplInstall, &form)
  248. return
  249. }
  250. // Test LFS root path if not empty, empty meaning disable LFS
  251. if form.LFSRootPath != "" {
  252. form.LFSRootPath = strings.ReplaceAll(form.LFSRootPath, "\\", "/")
  253. if err := os.MkdirAll(form.LFSRootPath, os.ModePerm); err != nil {
  254. ctx.Data["Err_LFSRootPath"] = true
  255. ctx.RenderWithErr(ctx.Tr("install.invalid_lfs_path", err), tplInstall, &form)
  256. return
  257. }
  258. }
  259. // Test log root path.
  260. form.LogRootPath = strings.ReplaceAll(form.LogRootPath, "\\", "/")
  261. if err = os.MkdirAll(form.LogRootPath, os.ModePerm); err != nil {
  262. ctx.Data["Err_LogRootPath"] = true
  263. ctx.RenderWithErr(ctx.Tr("install.invalid_log_root_path", err), tplInstall, &form)
  264. return
  265. }
  266. currentUser, match := setting.IsRunUserMatchCurrentUser(form.RunUser)
  267. if !match {
  268. ctx.Data["Err_RunUser"] = true
  269. ctx.RenderWithErr(ctx.Tr("install.run_user_not_match", form.RunUser, currentUser), tplInstall, &form)
  270. return
  271. }
  272. // Check logic loophole between disable self-registration and no admin account.
  273. if form.DisableRegistration && len(form.AdminName) == 0 {
  274. ctx.Data["Err_Services"] = true
  275. ctx.Data["Err_Admin"] = true
  276. ctx.RenderWithErr(ctx.Tr("install.no_admin_and_disable_registration"), tplInstall, form)
  277. return
  278. }
  279. // Check admin user creation
  280. if len(form.AdminName) > 0 {
  281. // Ensure AdminName is valid
  282. if err := user_model.IsUsableUsername(form.AdminName); err != nil {
  283. ctx.Data["Err_Admin"] = true
  284. ctx.Data["Err_AdminName"] = true
  285. if db.IsErrNameReserved(err) {
  286. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_reserved"), tplInstall, form)
  287. return
  288. } else if db.IsErrNamePatternNotAllowed(err) {
  289. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_pattern_not_allowed"), tplInstall, form)
  290. return
  291. }
  292. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_invalid"), tplInstall, form)
  293. return
  294. }
  295. // Check Admin email
  296. if len(form.AdminEmail) == 0 {
  297. ctx.Data["Err_Admin"] = true
  298. ctx.Data["Err_AdminEmail"] = true
  299. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_email"), tplInstall, form)
  300. return
  301. }
  302. // Check admin password.
  303. if len(form.AdminPasswd) == 0 {
  304. ctx.Data["Err_Admin"] = true
  305. ctx.Data["Err_AdminPasswd"] = true
  306. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_password"), tplInstall, form)
  307. return
  308. }
  309. if form.AdminPasswd != form.AdminConfirmPasswd {
  310. ctx.Data["Err_Admin"] = true
  311. ctx.Data["Err_AdminPasswd"] = true
  312. ctx.RenderWithErr(ctx.Tr("form.password_not_match"), tplInstall, form)
  313. return
  314. }
  315. }
  316. // Init the engine with migration
  317. if err = db.InitEngineWithMigration(ctx, migrations.Migrate); err != nil {
  318. db.UnsetDefaultEngine()
  319. ctx.Data["Err_DbSetting"] = true
  320. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, &form)
  321. return
  322. }
  323. // Save settings.
  324. cfg, err := setting.NewConfigProviderFromFile(setting.CustomConf)
  325. if err != nil {
  326. log.Error("Failed to load custom conf '%s': %v", setting.CustomConf, err)
  327. }
  328. cfg.Section("").Key("APP_NAME").SetValue(form.AppName)
  329. cfg.Section("").Key("RUN_USER").SetValue(form.RunUser)
  330. cfg.Section("").Key("WORK_PATH").SetValue(setting.AppWorkPath)
  331. cfg.Section("").Key("RUN_MODE").SetValue("prod")
  332. cfg.Section("database").Key("DB_TYPE").SetValue(setting.Database.Type.String())
  333. cfg.Section("database").Key("HOST").SetValue(setting.Database.Host)
  334. cfg.Section("database").Key("NAME").SetValue(setting.Database.Name)
  335. cfg.Section("database").Key("USER").SetValue(setting.Database.User)
  336. cfg.Section("database").Key("PASSWD").SetValue(setting.Database.Passwd)
  337. cfg.Section("database").Key("SCHEMA").SetValue(setting.Database.Schema)
  338. cfg.Section("database").Key("SSL_MODE").SetValue(setting.Database.SSLMode)
  339. cfg.Section("database").Key("PATH").SetValue(setting.Database.Path)
  340. cfg.Section("database").Key("LOG_SQL").SetValue("false") // LOG_SQL is rarely helpful
  341. cfg.Section("repository").Key("ROOT").SetValue(form.RepoRootPath)
  342. cfg.Section("server").Key("SSH_DOMAIN").SetValue(form.Domain)
  343. cfg.Section("server").Key("DOMAIN").SetValue(form.Domain)
  344. cfg.Section("server").Key("HTTP_PORT").SetValue(form.HTTPPort)
  345. cfg.Section("server").Key("ROOT_URL").SetValue(form.AppURL)
  346. cfg.Section("server").Key("APP_DATA_PATH").SetValue(setting.AppDataPath)
  347. if form.SSHPort == 0 {
  348. cfg.Section("server").Key("DISABLE_SSH").SetValue("true")
  349. } else {
  350. cfg.Section("server").Key("DISABLE_SSH").SetValue("false")
  351. cfg.Section("server").Key("SSH_PORT").SetValue(fmt.Sprint(form.SSHPort))
  352. }
  353. if form.LFSRootPath != "" {
  354. cfg.Section("server").Key("LFS_START_SERVER").SetValue("true")
  355. cfg.Section("lfs").Key("PATH").SetValue(form.LFSRootPath)
  356. var lfsJwtSecret string
  357. if _, lfsJwtSecret, err = generate.NewJwtSecretWithBase64(); err != nil {
  358. ctx.RenderWithErr(ctx.Tr("install.lfs_jwt_secret_failed", err), tplInstall, &form)
  359. return
  360. }
  361. cfg.Section("server").Key("LFS_JWT_SECRET").SetValue(lfsJwtSecret)
  362. } else {
  363. cfg.Section("server").Key("LFS_START_SERVER").SetValue("false")
  364. }
  365. if len(strings.TrimSpace(form.SMTPAddr)) > 0 {
  366. if _, err := mail.ParseAddress(form.SMTPFrom); err != nil {
  367. ctx.RenderWithErr(ctx.Tr("install.smtp_from_invalid"), tplInstall, &form)
  368. return
  369. }
  370. cfg.Section("mailer").Key("ENABLED").SetValue("true")
  371. cfg.Section("mailer").Key("SMTP_ADDR").SetValue(form.SMTPAddr)
  372. cfg.Section("mailer").Key("SMTP_PORT").SetValue(form.SMTPPort)
  373. cfg.Section("mailer").Key("FROM").SetValue(form.SMTPFrom)
  374. cfg.Section("mailer").Key("USER").SetValue(form.SMTPUser)
  375. cfg.Section("mailer").Key("PASSWD").SetValue(form.SMTPPasswd)
  376. } else {
  377. cfg.Section("mailer").Key("ENABLED").SetValue("false")
  378. }
  379. cfg.Section("service").Key("REGISTER_EMAIL_CONFIRM").SetValue(fmt.Sprint(form.RegisterConfirm))
  380. cfg.Section("service").Key("ENABLE_NOTIFY_MAIL").SetValue(fmt.Sprint(form.MailNotify))
  381. cfg.Section("server").Key("OFFLINE_MODE").SetValue(fmt.Sprint(form.OfflineMode))
  382. if err := system_model.SetSettings(ctx, map[string]string{
  383. setting.Config().Picture.DisableGravatar.DynKey(): strconv.FormatBool(form.DisableGravatar),
  384. setting.Config().Picture.EnableFederatedAvatar.DynKey(): strconv.FormatBool(form.EnableFederatedAvatar),
  385. }); err != nil {
  386. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  387. return
  388. }
  389. cfg.Section("openid").Key("ENABLE_OPENID_SIGNIN").SetValue(fmt.Sprint(form.EnableOpenIDSignIn))
  390. cfg.Section("openid").Key("ENABLE_OPENID_SIGNUP").SetValue(fmt.Sprint(form.EnableOpenIDSignUp))
  391. cfg.Section("service").Key("DISABLE_REGISTRATION").SetValue(fmt.Sprint(form.DisableRegistration))
  392. cfg.Section("service").Key("ALLOW_ONLY_EXTERNAL_REGISTRATION").SetValue(fmt.Sprint(form.AllowOnlyExternalRegistration))
  393. cfg.Section("service").Key("ENABLE_CAPTCHA").SetValue(fmt.Sprint(form.EnableCaptcha))
  394. cfg.Section("service").Key("REQUIRE_SIGNIN_VIEW").SetValue(fmt.Sprint(form.RequireSignInView))
  395. cfg.Section("service").Key("DEFAULT_KEEP_EMAIL_PRIVATE").SetValue(fmt.Sprint(form.DefaultKeepEmailPrivate))
  396. cfg.Section("service").Key("DEFAULT_ALLOW_CREATE_ORGANIZATION").SetValue(fmt.Sprint(form.DefaultAllowCreateOrganization))
  397. cfg.Section("service").Key("DEFAULT_ENABLE_TIMETRACKING").SetValue(fmt.Sprint(form.DefaultEnableTimetracking))
  398. cfg.Section("service").Key("NO_REPLY_ADDRESS").SetValue(fmt.Sprint(form.NoReplyAddress))
  399. cfg.Section("cron.update_checker").Key("ENABLED").SetValue(fmt.Sprint(form.EnableUpdateChecker))
  400. cfg.Section("session").Key("PROVIDER").SetValue("file")
  401. cfg.Section("log").Key("MODE").MustString("console")
  402. cfg.Section("log").Key("LEVEL").SetValue(setting.Log.Level.String())
  403. cfg.Section("log").Key("ROOT_PATH").SetValue(form.LogRootPath)
  404. cfg.Section("repository.pull-request").Key("DEFAULT_MERGE_STYLE").SetValue("merge")
  405. cfg.Section("repository.signing").Key("DEFAULT_TRUST_MODEL").SetValue("committer")
  406. cfg.Section("security").Key("INSTALL_LOCK").SetValue("true")
  407. // the internal token could be read from INTERNAL_TOKEN or INTERNAL_TOKEN_URI (the file is guaranteed to be non-empty)
  408. // if there is no InternalToken, generate one and save to security.INTERNAL_TOKEN
  409. if setting.InternalToken == "" {
  410. var internalToken string
  411. if internalToken, err = generate.NewInternalToken(); err != nil {
  412. ctx.RenderWithErr(ctx.Tr("install.internal_token_failed", err), tplInstall, &form)
  413. return
  414. }
  415. cfg.Section("security").Key("INTERNAL_TOKEN").SetValue(internalToken)
  416. }
  417. // if there is already a SECRET_KEY, we should not overwrite it, otherwise the encrypted data will not be able to be decrypted
  418. if setting.SecretKey == "" {
  419. var secretKey string
  420. if secretKey, err = generate.NewSecretKey(); err != nil {
  421. ctx.RenderWithErr(ctx.Tr("install.secret_key_failed", err), tplInstall, &form)
  422. return
  423. }
  424. cfg.Section("security").Key("SECRET_KEY").SetValue(secretKey)
  425. }
  426. if len(form.PasswordAlgorithm) > 0 {
  427. var algorithm *hash.PasswordHashAlgorithm
  428. setting.PasswordHashAlgo, algorithm = hash.SetDefaultPasswordHashAlgorithm(form.PasswordAlgorithm)
  429. if algorithm == nil {
  430. ctx.RenderWithErr(ctx.Tr("install.invalid_password_algorithm"), tplInstall, &form)
  431. return
  432. }
  433. cfg.Section("security").Key("PASSWORD_HASH_ALGO").SetValue(form.PasswordAlgorithm)
  434. }
  435. log.Info("Save settings to custom config file %s", setting.CustomConf)
  436. err = os.MkdirAll(filepath.Dir(setting.CustomConf), os.ModePerm)
  437. if err != nil {
  438. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  439. return
  440. }
  441. setting.EnvironmentToConfig(cfg, os.Environ())
  442. if err = cfg.SaveTo(setting.CustomConf); err != nil {
  443. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  444. return
  445. }
  446. // unset default engine before reload database setting
  447. db.UnsetDefaultEngine()
  448. // ---- All checks are passed
  449. // Reload settings (and re-initialize database connection)
  450. setting.InitCfgProvider(setting.CustomConf)
  451. setting.LoadCommonSettings()
  452. setting.MustInstalled()
  453. setting.LoadDBSetting()
  454. if err := common.InitDBEngine(ctx); err != nil {
  455. log.Fatal("ORM engine initialization failed: %v", err)
  456. }
  457. // Create admin account
  458. if len(form.AdminName) > 0 {
  459. u := &user_model.User{
  460. Name: form.AdminName,
  461. Email: form.AdminEmail,
  462. Passwd: form.AdminPasswd,
  463. IsAdmin: true,
  464. }
  465. overwriteDefault := &user_model.CreateUserOverwriteOptions{
  466. IsRestricted: util.OptionalBoolFalse,
  467. IsActive: util.OptionalBoolTrue,
  468. }
  469. if err = user_model.CreateUser(ctx, u, overwriteDefault); err != nil {
  470. if !user_model.IsErrUserAlreadyExist(err) {
  471. setting.InstallLock = false
  472. ctx.Data["Err_AdminName"] = true
  473. ctx.Data["Err_AdminEmail"] = true
  474. ctx.RenderWithErr(ctx.Tr("install.invalid_admin_setting", err), tplInstall, &form)
  475. return
  476. }
  477. log.Info("Admin account already exist")
  478. u, _ = user_model.GetUserByName(ctx, u.Name)
  479. }
  480. days := 86400 * setting.LogInRememberDays
  481. ctx.SetSiteCookie(setting.CookieUserName, u.Name, days)
  482. ctx.SetSuperSecureCookie(base.EncodeMD5(u.Rands+u.Passwd),
  483. setting.CookieRememberName, u.Name, days)
  484. // Auto-login for admin
  485. if err = ctx.Session.Set("uid", u.ID); err != nil {
  486. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  487. return
  488. }
  489. if err = ctx.Session.Set("uname", u.Name); err != nil {
  490. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  491. return
  492. }
  493. if err = ctx.Session.Release(); err != nil {
  494. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  495. return
  496. }
  497. }
  498. setting.ClearEnvConfigKeys()
  499. log.Info("First-time run install finished!")
  500. InstallDone(ctx)
  501. go func() {
  502. // Sleep for a while to make sure the user's browser has loaded the post-install page and its assets (images, css, js)
  503. // What if this duration is not long enough? That's impossible -- if the user can't load the simple page in time, how could they install or use Gitea in the future ....
  504. time.Sleep(3 * time.Second)
  505. // Now get the http.Server from this request and shut it down
  506. // NB: This is not our hammerable graceful shutdown this is http.Server.Shutdown
  507. srv := ctx.Value(http.ServerContextKey).(*http.Server)
  508. if err := srv.Shutdown(graceful.GetManager().HammerContext()); err != nil {
  509. log.Error("Unable to shutdown the install server! Error: %v", err)
  510. }
  511. // After the HTTP server for "install" shuts down, the `runWeb()` will continue to run the "normal" server
  512. }()
  513. }
  514. // InstallDone shows the "post-install" page, makes it easier to develop the page.
  515. // The name is not called as "PostInstall" to avoid misinterpretation as a handler for "POST /install"
  516. func InstallDone(ctx *context.Context) { //nolint
  517. ctx.HTML(http.StatusOK, tplPostInstall)
  518. }