You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

install.go 22KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Copyright 2021 The Gitea Authors. All rights reserved.
  3. // SPDX-License-Identifier: MIT
  4. package install
  5. import (
  6. "fmt"
  7. "net/http"
  8. "os"
  9. "os/exec"
  10. "path/filepath"
  11. "strconv"
  12. "strings"
  13. "time"
  14. "code.gitea.io/gitea/models/db"
  15. db_install "code.gitea.io/gitea/models/db/install"
  16. "code.gitea.io/gitea/models/migrations"
  17. system_model "code.gitea.io/gitea/models/system"
  18. user_model "code.gitea.io/gitea/models/user"
  19. "code.gitea.io/gitea/modules/auth/password/hash"
  20. "code.gitea.io/gitea/modules/base"
  21. "code.gitea.io/gitea/modules/context"
  22. "code.gitea.io/gitea/modules/generate"
  23. "code.gitea.io/gitea/modules/graceful"
  24. "code.gitea.io/gitea/modules/log"
  25. "code.gitea.io/gitea/modules/setting"
  26. "code.gitea.io/gitea/modules/templates"
  27. "code.gitea.io/gitea/modules/translation"
  28. "code.gitea.io/gitea/modules/user"
  29. "code.gitea.io/gitea/modules/util"
  30. "code.gitea.io/gitea/modules/web"
  31. "code.gitea.io/gitea/modules/web/middleware"
  32. "code.gitea.io/gitea/routers/common"
  33. "code.gitea.io/gitea/services/forms"
  34. "gitea.com/go-chi/session"
  35. )
  36. const (
  37. // tplInstall template for installation page
  38. tplInstall base.TplName = "install"
  39. tplPostInstall base.TplName = "post-install"
  40. )
  41. // getSupportedDbTypeNames returns a slice for supported database types and names. The slice is used to keep the order
  42. func getSupportedDbTypeNames() (dbTypeNames []map[string]string) {
  43. for _, t := range setting.SupportedDatabaseTypes {
  44. dbTypeNames = append(dbTypeNames, map[string]string{"type": t, "name": setting.DatabaseTypeNames[t]})
  45. }
  46. return dbTypeNames
  47. }
  48. // Contexter prepare for rendering installation page
  49. func Contexter() func(next http.Handler) http.Handler {
  50. rnd := templates.HTMLRenderer()
  51. dbTypeNames := getSupportedDbTypeNames()
  52. envConfigKeys := setting.CollectEnvConfigKeys()
  53. return func(next http.Handler) http.Handler {
  54. return http.HandlerFunc(func(resp http.ResponseWriter, req *http.Request) {
  55. base, baseCleanUp := context.NewBaseContext(resp, req)
  56. defer baseCleanUp()
  57. ctx := context.NewWebContext(base, rnd, session.GetSession(req))
  58. ctx.AppendContextValue(context.WebContextKey, ctx)
  59. ctx.Data.MergeFrom(middleware.CommonTemplateContextData())
  60. ctx.Data.MergeFrom(middleware.ContextData{
  61. "Context": ctx, // TODO: use "ctx" in template and remove this
  62. "locale": ctx.Locale,
  63. "Title": ctx.Locale.Tr("install.install"),
  64. "PageIsInstall": true,
  65. "DbTypeNames": dbTypeNames,
  66. "EnvConfigKeys": envConfigKeys,
  67. "CustomConfFile": setting.CustomConf,
  68. "AllLangs": translation.AllLangs(),
  69. "PasswordHashAlgorithms": hash.RecommendedHashAlgorithms,
  70. })
  71. next.ServeHTTP(resp, ctx.Req)
  72. })
  73. }
  74. }
  75. // Install render installation page
  76. func Install(ctx *context.Context) {
  77. if setting.InstallLock {
  78. InstallDone(ctx)
  79. return
  80. }
  81. form := forms.InstallForm{}
  82. // Database settings
  83. form.DbHost = setting.Database.Host
  84. form.DbUser = setting.Database.User
  85. form.DbPasswd = setting.Database.Passwd
  86. form.DbName = setting.Database.Name
  87. form.DbPath = setting.Database.Path
  88. form.DbSchema = setting.Database.Schema
  89. form.SSLMode = setting.Database.SSLMode
  90. curDBType := setting.Database.Type.String()
  91. var isCurDBTypeSupported bool
  92. for _, dbType := range setting.SupportedDatabaseTypes {
  93. if dbType == curDBType {
  94. isCurDBTypeSupported = true
  95. break
  96. }
  97. }
  98. if !isCurDBTypeSupported {
  99. curDBType = "mysql"
  100. }
  101. ctx.Data["CurDbType"] = curDBType
  102. // Application general settings
  103. form.AppName = setting.AppName
  104. form.RepoRootPath = setting.RepoRootPath
  105. form.LFSRootPath = setting.LFS.Storage.Path
  106. // Note(unknown): it's hard for Windows users change a running user,
  107. // so just use current one if config says default.
  108. if setting.IsWindows && setting.RunUser == "git" {
  109. form.RunUser = user.CurrentUsername()
  110. } else {
  111. form.RunUser = setting.RunUser
  112. }
  113. form.Domain = setting.Domain
  114. form.SSHPort = setting.SSH.Port
  115. form.HTTPPort = setting.HTTPPort
  116. form.AppURL = setting.AppURL
  117. form.LogRootPath = setting.Log.RootPath
  118. // E-mail service settings
  119. if setting.MailService != nil {
  120. form.SMTPAddr = setting.MailService.SMTPAddr
  121. form.SMTPPort = setting.MailService.SMTPPort
  122. form.SMTPFrom = setting.MailService.From
  123. form.SMTPUser = setting.MailService.User
  124. form.SMTPPasswd = setting.MailService.Passwd
  125. }
  126. form.RegisterConfirm = setting.Service.RegisterEmailConfirm
  127. form.MailNotify = setting.Service.EnableNotifyMail
  128. // Server and other services settings
  129. form.OfflineMode = setting.OfflineMode
  130. form.DisableGravatar = setting.DisableGravatar // when installing, there is no database connection so that given a default value
  131. form.EnableFederatedAvatar = setting.EnableFederatedAvatar // when installing, there is no database connection so that given a default value
  132. form.EnableOpenIDSignIn = setting.Service.EnableOpenIDSignIn
  133. form.EnableOpenIDSignUp = setting.Service.EnableOpenIDSignUp
  134. form.DisableRegistration = setting.Service.DisableRegistration
  135. form.AllowOnlyExternalRegistration = setting.Service.AllowOnlyExternalRegistration
  136. form.EnableCaptcha = setting.Service.EnableCaptcha
  137. form.RequireSignInView = setting.Service.RequireSignInView
  138. form.DefaultKeepEmailPrivate = setting.Service.DefaultKeepEmailPrivate
  139. form.DefaultAllowCreateOrganization = setting.Service.DefaultAllowCreateOrganization
  140. form.DefaultEnableTimetracking = setting.Service.DefaultEnableTimetracking
  141. form.NoReplyAddress = setting.Service.NoReplyAddress
  142. form.PasswordAlgorithm = hash.ConfigHashAlgorithm(setting.PasswordHashAlgo)
  143. middleware.AssignForm(form, ctx.Data)
  144. ctx.HTML(http.StatusOK, tplInstall)
  145. }
  146. func checkDatabase(ctx *context.Context, form *forms.InstallForm) bool {
  147. var err error
  148. if (setting.Database.Type == "sqlite3") &&
  149. len(setting.Database.Path) == 0 {
  150. ctx.Data["Err_DbPath"] = true
  151. ctx.RenderWithErr(ctx.Tr("install.err_empty_db_path"), tplInstall, form)
  152. return false
  153. }
  154. // Check if the user is trying to re-install in an installed database
  155. db.UnsetDefaultEngine()
  156. defer db.UnsetDefaultEngine()
  157. if err = db.InitEngine(ctx); err != nil {
  158. if strings.Contains(err.Error(), `Unknown database type: sqlite3`) {
  159. ctx.Data["Err_DbType"] = true
  160. ctx.RenderWithErr(ctx.Tr("install.sqlite3_not_available", "https://docs.gitea.com/installation/install-from-binary"), tplInstall, form)
  161. } else {
  162. ctx.Data["Err_DbSetting"] = true
  163. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  164. }
  165. return false
  166. }
  167. err = db_install.CheckDatabaseConnection()
  168. if err != nil {
  169. ctx.Data["Err_DbSetting"] = true
  170. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, form)
  171. return false
  172. }
  173. hasPostInstallationUser, err := db_install.HasPostInstallationUsers()
  174. if err != nil {
  175. ctx.Data["Err_DbSetting"] = true
  176. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "user", err), tplInstall, form)
  177. return false
  178. }
  179. dbMigrationVersion, err := db_install.GetMigrationVersion()
  180. if err != nil {
  181. ctx.Data["Err_DbSetting"] = true
  182. ctx.RenderWithErr(ctx.Tr("install.invalid_db_table", "version", err), tplInstall, form)
  183. return false
  184. }
  185. if hasPostInstallationUser && dbMigrationVersion > 0 {
  186. log.Error("The database is likely to have been used by Gitea before, database migration version=%d", dbMigrationVersion)
  187. confirmed := form.ReinstallConfirmFirst && form.ReinstallConfirmSecond && form.ReinstallConfirmThird
  188. if !confirmed {
  189. ctx.Data["Err_DbInstalledBefore"] = true
  190. ctx.RenderWithErr(ctx.Tr("install.reinstall_error"), tplInstall, form)
  191. return false
  192. }
  193. log.Info("User confirmed re-installation of Gitea into a pre-existing database")
  194. }
  195. if hasPostInstallationUser || dbMigrationVersion > 0 {
  196. log.Info("Gitea will be installed in a database with: hasPostInstallationUser=%v, dbMigrationVersion=%v", hasPostInstallationUser, dbMigrationVersion)
  197. }
  198. return true
  199. }
  200. // SubmitInstall response for submit install items
  201. func SubmitInstall(ctx *context.Context) {
  202. if setting.InstallLock {
  203. InstallDone(ctx)
  204. return
  205. }
  206. var err error
  207. form := *web.GetForm(ctx).(*forms.InstallForm)
  208. // fix form values
  209. if form.AppURL != "" && form.AppURL[len(form.AppURL)-1] != '/' {
  210. form.AppURL += "/"
  211. }
  212. ctx.Data["CurDbType"] = form.DbType
  213. if ctx.HasError() {
  214. ctx.Data["Err_SMTP"] = ctx.Data["Err_SMTPUser"] != nil
  215. ctx.Data["Err_Admin"] = ctx.Data["Err_AdminName"] != nil || ctx.Data["Err_AdminPasswd"] != nil || ctx.Data["Err_AdminEmail"] != nil
  216. ctx.HTML(http.StatusOK, tplInstall)
  217. return
  218. }
  219. if _, err = exec.LookPath("git"); err != nil {
  220. ctx.RenderWithErr(ctx.Tr("install.test_git_failed", err), tplInstall, &form)
  221. return
  222. }
  223. // ---- Basic checks are passed, now test configuration.
  224. // Test database setting.
  225. setting.Database.Type = setting.DatabaseType(form.DbType)
  226. setting.Database.Host = form.DbHost
  227. setting.Database.User = form.DbUser
  228. setting.Database.Passwd = form.DbPasswd
  229. setting.Database.Name = form.DbName
  230. setting.Database.Schema = form.DbSchema
  231. setting.Database.SSLMode = form.SSLMode
  232. setting.Database.Path = form.DbPath
  233. setting.Database.LogSQL = !setting.IsProd
  234. if !checkDatabase(ctx, &form) {
  235. return
  236. }
  237. // Prepare AppDataPath, it is very important for Gitea
  238. if err = setting.PrepareAppDataPath(); err != nil {
  239. ctx.RenderWithErr(ctx.Tr("install.invalid_app_data_path", err), tplInstall, &form)
  240. return
  241. }
  242. // Test repository root path.
  243. form.RepoRootPath = strings.ReplaceAll(form.RepoRootPath, "\\", "/")
  244. if err = os.MkdirAll(form.RepoRootPath, os.ModePerm); err != nil {
  245. ctx.Data["Err_RepoRootPath"] = true
  246. ctx.RenderWithErr(ctx.Tr("install.invalid_repo_path", err), tplInstall, &form)
  247. return
  248. }
  249. // Test LFS root path if not empty, empty meaning disable LFS
  250. if form.LFSRootPath != "" {
  251. form.LFSRootPath = strings.ReplaceAll(form.LFSRootPath, "\\", "/")
  252. if err := os.MkdirAll(form.LFSRootPath, os.ModePerm); err != nil {
  253. ctx.Data["Err_LFSRootPath"] = true
  254. ctx.RenderWithErr(ctx.Tr("install.invalid_lfs_path", err), tplInstall, &form)
  255. return
  256. }
  257. }
  258. // Test log root path.
  259. form.LogRootPath = strings.ReplaceAll(form.LogRootPath, "\\", "/")
  260. if err = os.MkdirAll(form.LogRootPath, os.ModePerm); err != nil {
  261. ctx.Data["Err_LogRootPath"] = true
  262. ctx.RenderWithErr(ctx.Tr("install.invalid_log_root_path", err), tplInstall, &form)
  263. return
  264. }
  265. currentUser, match := setting.IsRunUserMatchCurrentUser(form.RunUser)
  266. if !match {
  267. ctx.Data["Err_RunUser"] = true
  268. ctx.RenderWithErr(ctx.Tr("install.run_user_not_match", form.RunUser, currentUser), tplInstall, &form)
  269. return
  270. }
  271. // Check logic loophole between disable self-registration and no admin account.
  272. if form.DisableRegistration && len(form.AdminName) == 0 {
  273. ctx.Data["Err_Services"] = true
  274. ctx.Data["Err_Admin"] = true
  275. ctx.RenderWithErr(ctx.Tr("install.no_admin_and_disable_registration"), tplInstall, form)
  276. return
  277. }
  278. // Check admin user creation
  279. if len(form.AdminName) > 0 {
  280. // Ensure AdminName is valid
  281. if err := user_model.IsUsableUsername(form.AdminName); err != nil {
  282. ctx.Data["Err_Admin"] = true
  283. ctx.Data["Err_AdminName"] = true
  284. if db.IsErrNameReserved(err) {
  285. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_reserved"), tplInstall, form)
  286. return
  287. } else if db.IsErrNamePatternNotAllowed(err) {
  288. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_pattern_not_allowed"), tplInstall, form)
  289. return
  290. }
  291. ctx.RenderWithErr(ctx.Tr("install.err_admin_name_is_invalid"), tplInstall, form)
  292. return
  293. }
  294. // Check Admin email
  295. if len(form.AdminEmail) == 0 {
  296. ctx.Data["Err_Admin"] = true
  297. ctx.Data["Err_AdminEmail"] = true
  298. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_email"), tplInstall, form)
  299. return
  300. }
  301. // Check admin password.
  302. if len(form.AdminPasswd) == 0 {
  303. ctx.Data["Err_Admin"] = true
  304. ctx.Data["Err_AdminPasswd"] = true
  305. ctx.RenderWithErr(ctx.Tr("install.err_empty_admin_password"), tplInstall, form)
  306. return
  307. }
  308. if form.AdminPasswd != form.AdminConfirmPasswd {
  309. ctx.Data["Err_Admin"] = true
  310. ctx.Data["Err_AdminPasswd"] = true
  311. ctx.RenderWithErr(ctx.Tr("form.password_not_match"), tplInstall, form)
  312. return
  313. }
  314. }
  315. // Init the engine with migration
  316. if err = db.InitEngineWithMigration(ctx, migrations.Migrate); err != nil {
  317. db.UnsetDefaultEngine()
  318. ctx.Data["Err_DbSetting"] = true
  319. ctx.RenderWithErr(ctx.Tr("install.invalid_db_setting", err), tplInstall, &form)
  320. return
  321. }
  322. // Save settings.
  323. cfg, err := setting.NewConfigProviderFromFile(setting.CustomConf)
  324. if err != nil {
  325. log.Error("Failed to load custom conf '%s': %v", setting.CustomConf, err)
  326. }
  327. cfg.Section("").Key("APP_NAME").SetValue(form.AppName)
  328. cfg.Section("").Key("RUN_USER").SetValue(form.RunUser)
  329. cfg.Section("").Key("WORK_PATH").SetValue(setting.AppWorkPath)
  330. cfg.Section("").Key("RUN_MODE").SetValue("prod")
  331. cfg.Section("database").Key("DB_TYPE").SetValue(setting.Database.Type.String())
  332. cfg.Section("database").Key("HOST").SetValue(setting.Database.Host)
  333. cfg.Section("database").Key("NAME").SetValue(setting.Database.Name)
  334. cfg.Section("database").Key("USER").SetValue(setting.Database.User)
  335. cfg.Section("database").Key("PASSWD").SetValue(setting.Database.Passwd)
  336. cfg.Section("database").Key("SCHEMA").SetValue(setting.Database.Schema)
  337. cfg.Section("database").Key("SSL_MODE").SetValue(setting.Database.SSLMode)
  338. cfg.Section("database").Key("PATH").SetValue(setting.Database.Path)
  339. cfg.Section("database").Key("LOG_SQL").SetValue("false") // LOG_SQL is rarely helpful
  340. cfg.Section("repository").Key("ROOT").SetValue(form.RepoRootPath)
  341. cfg.Section("server").Key("SSH_DOMAIN").SetValue(form.Domain)
  342. cfg.Section("server").Key("DOMAIN").SetValue(form.Domain)
  343. cfg.Section("server").Key("HTTP_PORT").SetValue(form.HTTPPort)
  344. cfg.Section("server").Key("ROOT_URL").SetValue(form.AppURL)
  345. cfg.Section("server").Key("APP_DATA_PATH").SetValue(setting.AppDataPath)
  346. if form.SSHPort == 0 {
  347. cfg.Section("server").Key("DISABLE_SSH").SetValue("true")
  348. } else {
  349. cfg.Section("server").Key("DISABLE_SSH").SetValue("false")
  350. cfg.Section("server").Key("SSH_PORT").SetValue(fmt.Sprint(form.SSHPort))
  351. }
  352. if form.LFSRootPath != "" {
  353. cfg.Section("server").Key("LFS_START_SERVER").SetValue("true")
  354. cfg.Section("lfs").Key("PATH").SetValue(form.LFSRootPath)
  355. var lfsJwtSecret string
  356. if _, lfsJwtSecret, err = generate.NewJwtSecretBase64(); err != nil {
  357. ctx.RenderWithErr(ctx.Tr("install.lfs_jwt_secret_failed", err), tplInstall, &form)
  358. return
  359. }
  360. cfg.Section("server").Key("LFS_JWT_SECRET").SetValue(lfsJwtSecret)
  361. } else {
  362. cfg.Section("server").Key("LFS_START_SERVER").SetValue("false")
  363. }
  364. if len(strings.TrimSpace(form.SMTPAddr)) > 0 {
  365. cfg.Section("mailer").Key("ENABLED").SetValue("true")
  366. cfg.Section("mailer").Key("SMTP_ADDR").SetValue(form.SMTPAddr)
  367. cfg.Section("mailer").Key("SMTP_PORT").SetValue(form.SMTPPort)
  368. cfg.Section("mailer").Key("FROM").SetValue(form.SMTPFrom)
  369. cfg.Section("mailer").Key("USER").SetValue(form.SMTPUser)
  370. cfg.Section("mailer").Key("PASSWD").SetValue(form.SMTPPasswd)
  371. } else {
  372. cfg.Section("mailer").Key("ENABLED").SetValue("false")
  373. }
  374. cfg.Section("service").Key("REGISTER_EMAIL_CONFIRM").SetValue(fmt.Sprint(form.RegisterConfirm))
  375. cfg.Section("service").Key("ENABLE_NOTIFY_MAIL").SetValue(fmt.Sprint(form.MailNotify))
  376. cfg.Section("server").Key("OFFLINE_MODE").SetValue(fmt.Sprint(form.OfflineMode))
  377. if err := system_model.SetSettings(ctx, map[string]string{
  378. setting.Config().Picture.DisableGravatar.DynKey(): strconv.FormatBool(form.DisableGravatar),
  379. setting.Config().Picture.EnableFederatedAvatar.DynKey(): strconv.FormatBool(form.EnableFederatedAvatar),
  380. }); err != nil {
  381. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  382. return
  383. }
  384. cfg.Section("openid").Key("ENABLE_OPENID_SIGNIN").SetValue(fmt.Sprint(form.EnableOpenIDSignIn))
  385. cfg.Section("openid").Key("ENABLE_OPENID_SIGNUP").SetValue(fmt.Sprint(form.EnableOpenIDSignUp))
  386. cfg.Section("service").Key("DISABLE_REGISTRATION").SetValue(fmt.Sprint(form.DisableRegistration))
  387. cfg.Section("service").Key("ALLOW_ONLY_EXTERNAL_REGISTRATION").SetValue(fmt.Sprint(form.AllowOnlyExternalRegistration))
  388. cfg.Section("service").Key("ENABLE_CAPTCHA").SetValue(fmt.Sprint(form.EnableCaptcha))
  389. cfg.Section("service").Key("REQUIRE_SIGNIN_VIEW").SetValue(fmt.Sprint(form.RequireSignInView))
  390. cfg.Section("service").Key("DEFAULT_KEEP_EMAIL_PRIVATE").SetValue(fmt.Sprint(form.DefaultKeepEmailPrivate))
  391. cfg.Section("service").Key("DEFAULT_ALLOW_CREATE_ORGANIZATION").SetValue(fmt.Sprint(form.DefaultAllowCreateOrganization))
  392. cfg.Section("service").Key("DEFAULT_ENABLE_TIMETRACKING").SetValue(fmt.Sprint(form.DefaultEnableTimetracking))
  393. cfg.Section("service").Key("NO_REPLY_ADDRESS").SetValue(fmt.Sprint(form.NoReplyAddress))
  394. cfg.Section("cron.update_checker").Key("ENABLED").SetValue(fmt.Sprint(form.EnableUpdateChecker))
  395. cfg.Section("session").Key("PROVIDER").SetValue("file")
  396. cfg.Section("log").Key("MODE").MustString("console")
  397. cfg.Section("log").Key("LEVEL").SetValue(setting.Log.Level.String())
  398. cfg.Section("log").Key("ROOT_PATH").SetValue(form.LogRootPath)
  399. cfg.Section("repository.pull-request").Key("DEFAULT_MERGE_STYLE").SetValue("merge")
  400. cfg.Section("repository.signing").Key("DEFAULT_TRUST_MODEL").SetValue("committer")
  401. cfg.Section("security").Key("INSTALL_LOCK").SetValue("true")
  402. // the internal token could be read from INTERNAL_TOKEN or INTERNAL_TOKEN_URI (the file is guaranteed to be non-empty)
  403. // if there is no InternalToken, generate one and save to security.INTERNAL_TOKEN
  404. if setting.InternalToken == "" {
  405. var internalToken string
  406. if internalToken, err = generate.NewInternalToken(); err != nil {
  407. ctx.RenderWithErr(ctx.Tr("install.internal_token_failed", err), tplInstall, &form)
  408. return
  409. }
  410. cfg.Section("security").Key("INTERNAL_TOKEN").SetValue(internalToken)
  411. }
  412. // if there is already a SECRET_KEY, we should not overwrite it, otherwise the encrypted data will not be able to be decrypted
  413. if setting.SecretKey == "" {
  414. var secretKey string
  415. if secretKey, err = generate.NewSecretKey(); err != nil {
  416. ctx.RenderWithErr(ctx.Tr("install.secret_key_failed", err), tplInstall, &form)
  417. return
  418. }
  419. cfg.Section("security").Key("SECRET_KEY").SetValue(secretKey)
  420. }
  421. if len(form.PasswordAlgorithm) > 0 {
  422. var algorithm *hash.PasswordHashAlgorithm
  423. setting.PasswordHashAlgo, algorithm = hash.SetDefaultPasswordHashAlgorithm(form.PasswordAlgorithm)
  424. if algorithm == nil {
  425. ctx.RenderWithErr(ctx.Tr("install.invalid_password_algorithm"), tplInstall, &form)
  426. return
  427. }
  428. cfg.Section("security").Key("PASSWORD_HASH_ALGO").SetValue(form.PasswordAlgorithm)
  429. }
  430. log.Info("Save settings to custom config file %s", setting.CustomConf)
  431. err = os.MkdirAll(filepath.Dir(setting.CustomConf), os.ModePerm)
  432. if err != nil {
  433. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  434. return
  435. }
  436. setting.EnvironmentToConfig(cfg, os.Environ())
  437. if err = cfg.SaveTo(setting.CustomConf); err != nil {
  438. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  439. return
  440. }
  441. // unset default engine before reload database setting
  442. db.UnsetDefaultEngine()
  443. // ---- All checks are passed
  444. // Reload settings (and re-initialize database connection)
  445. setting.InitCfgProvider(setting.CustomConf)
  446. setting.LoadCommonSettings()
  447. setting.MustInstalled()
  448. setting.LoadDBSetting()
  449. if err := common.InitDBEngine(ctx); err != nil {
  450. log.Fatal("ORM engine initialization failed: %v", err)
  451. }
  452. // Create admin account
  453. if len(form.AdminName) > 0 {
  454. u := &user_model.User{
  455. Name: form.AdminName,
  456. Email: form.AdminEmail,
  457. Passwd: form.AdminPasswd,
  458. IsAdmin: true,
  459. }
  460. overwriteDefault := &user_model.CreateUserOverwriteOptions{
  461. IsRestricted: util.OptionalBoolFalse,
  462. IsActive: util.OptionalBoolTrue,
  463. }
  464. if err = user_model.CreateUser(ctx, u, overwriteDefault); err != nil {
  465. if !user_model.IsErrUserAlreadyExist(err) {
  466. setting.InstallLock = false
  467. ctx.Data["Err_AdminName"] = true
  468. ctx.Data["Err_AdminEmail"] = true
  469. ctx.RenderWithErr(ctx.Tr("install.invalid_admin_setting", err), tplInstall, &form)
  470. return
  471. }
  472. log.Info("Admin account already exist")
  473. u, _ = user_model.GetUserByName(ctx, u.Name)
  474. }
  475. days := 86400 * setting.LogInRememberDays
  476. ctx.SetSiteCookie(setting.CookieUserName, u.Name, days)
  477. ctx.SetSuperSecureCookie(base.EncodeMD5(u.Rands+u.Passwd),
  478. setting.CookieRememberName, u.Name, days)
  479. // Auto-login for admin
  480. if err = ctx.Session.Set("uid", u.ID); err != nil {
  481. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  482. return
  483. }
  484. if err = ctx.Session.Set("uname", u.Name); err != nil {
  485. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  486. return
  487. }
  488. if err = ctx.Session.Release(); err != nil {
  489. ctx.RenderWithErr(ctx.Tr("install.save_config_failed", err), tplInstall, &form)
  490. return
  491. }
  492. }
  493. setting.ClearEnvConfigKeys()
  494. log.Info("First-time run install finished!")
  495. InstallDone(ctx)
  496. go func() {
  497. // Sleep for a while to make sure the user's browser has loaded the post-install page and its assets (images, css, js)
  498. // What if this duration is not long enough? That's impossible -- if the user can't load the simple page in time, how could they install or use Gitea in the future ....
  499. time.Sleep(3 * time.Second)
  500. // Now get the http.Server from this request and shut it down
  501. // NB: This is not our hammerable graceful shutdown this is http.Server.Shutdown
  502. srv := ctx.Value(http.ServerContextKey).(*http.Server)
  503. if err := srv.Shutdown(graceful.GetManager().HammerContext()); err != nil {
  504. log.Error("Unable to shutdown the install server! Error: %v", err)
  505. }
  506. // After the HTTP server for "install" shuts down, the `runWeb()` will continue to run the "normal" server
  507. }()
  508. }
  509. // InstallDone shows the "post-install" page, makes it easier to develop the page.
  510. // The name is not called as "PostInstall" to avoid misinterpretation as a handler for "POST /install"
  511. func InstallDone(ctx *context.Context) { //nolint
  512. ctx.HTML(http.StatusOK, tplPostInstall)
  513. }