rebuild.sh 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707
  1. # User account rebuild
  2. rebuild_user_conf() {
  3. # Get user variables
  4. source $USER_DATA/user.conf
  5. # Creating user data files
  6. chmod 770 $USER_DATA
  7. chmod 660 $USER_DATA/user.conf
  8. touch $USER_DATA/backup.conf
  9. chmod 660 $USER_DATA/backup.conf
  10. touch $USER_DATA/history.log
  11. chmod 660 $USER_DATA/history.log
  12. touch $USER_DATA/stats.log
  13. chmod 660 $USER_DATA/stats.log
  14. # Run template trigger
  15. if [ -x "$VESTA/data/packages/$PACKAGE.sh" ]; then
  16. $VESTA/data/packages/$PACKAGE.sh "$user" "$CONTACT" "$FNAME" "$LNAME"
  17. fi
  18. # Rebuild user
  19. shell=$(grep -w "$SHELL" /etc/shells |head -n1)
  20. /usr/sbin/useradd "$user" -s "$shell" -c "$CONTACT" \
  21. -m -d "$HOMEDIR/$user" > /dev/null 2>&1
  22. # Update user shell
  23. /usr/bin/chsh -s "$shell" "$user" &>/dev/null
  24. # Update password
  25. shadow=$(grep ^$user: /etc/shadow)
  26. shdw3=$(echo "$shadow" | cut -f3 -d :)
  27. shdw4=$(echo "$shadow" | cut -f4 -d :)
  28. shdw5=$(echo "$shadow" | cut -f5 -d :)
  29. shdw6=$(echo "$shadow" | cut -f6 -d :)
  30. shdw7=$(echo "$shadow" | cut -f7 -d :)
  31. shdw8=$(echo "$shadow" | cut -f8 -d :)
  32. shdw9=$(echo "$shadow" | cut -f9 -d :)
  33. shadow_str="$user:$MD5:$shdw3:$shdw4:$shdw5:$shdw6"
  34. shadow_str="$shadow_str:$shdw7:$shdw8:$shdw9"
  35. chmod u+w /etc/shadow
  36. sed -i "/^$user:*/d" /etc/shadow
  37. echo "$shadow_str" >> /etc/shadow
  38. chmod u-w /etc/shadow
  39. # Building directory tree
  40. if [ -e "$HOMEDIR/$user/conf" ]; then
  41. chattr -i $HOMEDIR/$user/conf
  42. fi
  43. mkdir -p $HOMEDIR/$user/conf
  44. chmod a+x $HOMEDIR/$user
  45. chmod a+x $HOMEDIR/$user/conf
  46. chown $user:$user $HOMEDIR/$user
  47. chown root:root $HOMEDIR/$user/conf
  48. # Update disk pipe
  49. sed -i "/ $user$/d" $VESTA/data/queue/disk.pipe
  50. echo "$BIN/v-update-user-disk $user" >> $VESTA/data/queue/disk.pipe
  51. # WEB
  52. if [ ! -z "$WEB_SYSTEM" ] && [ "$WEB_SYSTEM" != 'no' ]; then
  53. mkdir -p $USER_DATA/ssl
  54. chmod 770 $USER_DATA/ssl
  55. touch $USER_DATA/web.conf
  56. chmod 660 $USER_DATA/web.conf
  57. if [ "$(grep -w $user $VESTA/data/queue/traffic.pipe)" ]; then
  58. echo "$BIN/v-update-web-domains-traff $user" \
  59. >> $VESTA/data/queue/traffic.pipe
  60. fi
  61. echo "$BIN/v-update-web-domains-disk $user" \
  62. >> $VESTA/data/queue/disk.pipe
  63. mkdir -p $HOMEDIR/$user/conf/web
  64. mkdir -p $HOMEDIR/$user/web
  65. mkdir -p $HOMEDIR/$user/tmp
  66. chmod 751 $HOMEDIR/$user/conf/web
  67. chmod 751 $HOMEDIR/$user/web
  68. chmod 771 $HOMEDIR/$user/tmp
  69. chown $user:$user $HOMEDIR/$user/web
  70. if [ -z "$create_user" ]; then
  71. $BIN/v-rebuild-web-domains $user $restart
  72. fi
  73. fi
  74. # DNS
  75. if [ ! -z "$DNS_SYSTEM" ] && [ "$DNS_SYSTEM" != 'no' ]; then
  76. mkdir -p $USER_DATA/dns
  77. chmod 770 $USER_DATA/dns
  78. touch $USER_DATA/dns.conf
  79. chmod 660 $USER_DATA/dns.conf
  80. mkdir -p $HOMEDIR/$user/conf/dns
  81. chmod 751 $HOMEDIR/$user/conf/dns
  82. if [ -z "$create_user" ]; then
  83. $BIN/v-rebuild-dns-domains $user $restart
  84. fi
  85. fi
  86. if [ ! -z "$MAIL_SYSTEM" ] && [ "$MAIL_SYSTEM" != 'no' ]; then
  87. mkdir -p $USER_DATA/mail
  88. chmod 770 $USER_DATA/mail
  89. touch $USER_DATA/mail.conf
  90. chmod 660 $USER_DATA/mail.conf
  91. echo "$BIN/v-update-mail-domains-disk $user" \
  92. >> $VESTA/data/queue/disk.pipe
  93. mkdir -p $HOMEDIR/$user/conf/mail
  94. mkdir -p $HOMEDIR/$user/mail
  95. chmod 751 $HOMEDIR/$user/mail
  96. chmod 751 $HOMEDIR/$user/conf/mail
  97. if [ -z "$create_user" ]; then
  98. $BIN/v-rebuild-mail-domains $user
  99. fi
  100. fi
  101. if [ ! -z "$DB_SYSTEM" ] && [ "$DB_SYSTEM" != 'no' ]; then
  102. touch $USER_DATA/db.conf
  103. chmod 660 $USER_DATA/db.conf
  104. echo "$BIN/v-update-databases-disk $user" >> $VESTA/data/queue/disk.pipe
  105. if [ -z "$create_user" ]; then
  106. $BIN/v-rebuild-databases $user
  107. fi
  108. fi
  109. if [ ! -z "$CRON_SYSTEM" ] && [ "$CRON_SYSTEM" != 'no' ]; then
  110. touch $USER_DATA/cron.conf
  111. chmod 660 $USER_DATA/cron.conf
  112. if [ -z "$create_user" ]; then
  113. $BIN/v-rebuild-cron-jobs $user $restart
  114. fi
  115. fi
  116. # Set immutable flag
  117. chattr +i $HOMEDIR/$user/conf
  118. }
  119. # WEB domain rebuild
  120. rebuild_web_domain_conf() {
  121. # Get domain values
  122. domain_idn=$(idn -t --quiet -a "$domain")
  123. get_domain_values 'web'
  124. ip=$(get_real_ip $IP)
  125. # Preparing domain values for the template substitution
  126. upd_web_domain_values
  127. # Rebuilding directories
  128. mkdir -p $HOMEDIR/$user/web/$domain \
  129. $HOMEDIR/$user/web/$domain/public_html \
  130. $HOMEDIR/$user/web/$domain/public_shtml \
  131. $HOMEDIR/$user/web/$domain/document_errors \
  132. $HOMEDIR/$user/web/$domain/cgi-bin \
  133. $HOMEDIR/$user/web/$domain/private \
  134. $HOMEDIR/$user/web/$domain/stats \
  135. $HOMEDIR/$user/web/$domain/logs
  136. # Create domain logs
  137. touch /var/log/$WEB_SYSTEM/domains/$domain.bytes \
  138. /var/log/$WEB_SYSTEM/domains/$domain.log \
  139. /var/log/$WEB_SYSTEM/domains/$domain.error.log
  140. # Create symlinks
  141. cd $HOMEDIR/$user/web/$domain/logs/
  142. ln -f -s /var/log/$WEB_SYSTEM/domains/$domain.log .
  143. ln -f -s /var/log/$WEB_SYSTEM/domains/$domain.error.log .
  144. cd - > /dev/null
  145. # Propagate html skeleton
  146. if [ ! -e "$WEBTPL/skel/document_errors/" ]; then
  147. cp -r $WEBTPL/skel/document_errors/ $HOMEDIR/$user/web/$domain/
  148. fi
  149. # Set folder permissions
  150. chmod 551 $HOMEDIR/$user/web/$domain \
  151. $HOMEDIR/$user/web/$domain/stats \
  152. $HOMEDIR/$user/web/$domain/logs
  153. chmod 751 $HOMEDIR/$user/web/$domain/private \
  154. $HOMEDIR/$user/web/$domain/cgi-bin \
  155. $HOMEDIR/$user/web/$domain/public_html \
  156. $HOMEDIR/$user/web/$domain/public_shtml \
  157. $HOMEDIR/$user/web/$domain/document_errors
  158. chmod 640 /var/log/$WEB_SYSTEM/domains/$domain.*
  159. # Set ownership
  160. chown $user:$user $HOMEDIR/$user/web/$domain \
  161. $HOMEDIR/$user/web/$domain/private \
  162. $HOMEDIR/$user/web/$domain/cgi-bin \
  163. $HOMEDIR/$user/web/$domain/public_html \
  164. $HOMEDIR/$user/web/$domain/public_shtml
  165. chown -R $user:$user $HOMEDIR/$user/web/$domain/document_errors
  166. chown root:$user /var/log/$WEB_SYSTEM/domains/$domain.*
  167. # Adding tmp conf
  168. tpl_file="$WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.tpl"
  169. conf="$HOMEDIR/$user/conf/web/tmp_$WEB_SYSTEM.conf"
  170. add_web_config
  171. chown root:$user $conf
  172. chmod 640 $conf
  173. # Running template trigger
  174. if [ -x $WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.sh ]; then
  175. $WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.sh \
  176. $user $domain $ip $HOMEDIR $docroot
  177. fi
  178. # Checking aliases
  179. if [ ! -z "$ALIAS" ]; then
  180. aliases=$(echo "$ALIAS"|tr ',' '\n'| wc -l)
  181. user_aliases=$((user_aliases + aliases))
  182. fi
  183. # Checking stats
  184. if [ ! -z "$STATS" ]; then
  185. cat $WEBTPL/$STATS/$STATS.tpl |\
  186. sed -e "s|%ip%|$ip|g" \
  187. -e "s|%web_system%|$WEB_SYSTEM|g" \
  188. -e "s|%web_port%|$WEB_PORT|g" \
  189. -e "s|%web_ssl_port%|$WEB_SSL_PORT|g" \
  190. -e "s|%backend_lsnr%|$backend_lsnr|g" \
  191. -e "s|%proxy_port%|$PROXY_PORT|g" \
  192. -e "s|%proxy_ssl_port%|$PROXY_SSL_PORT|g" \
  193. -e "s|%domain_idn%|$domain_idn|g" \
  194. -e "s|%domain%|$domain|g" \
  195. -e "s|%user%|$user|g" \
  196. -e "s|%home%|$HOMEDIR|g" \
  197. -e "s|%alias%|${aliases//,/ }|g" \
  198. -e "s|%alias_idn%|${aliases_idn//,/ }|g" \
  199. > $HOMEDIR/$user/conf/web/$STATS.$domain.conf
  200. if [ "$STATS" == 'awstats' ]; then
  201. if [ ! -e "/etc/awstats/$STATS.$domain_idn.conf" ]; then
  202. ln -f -s $HOMEDIR/$user/conf/web/$STATS.$domain.conf \
  203. /etc/awstats/$STATS.$domain_idn.conf
  204. fi
  205. fi
  206. webstats="$BIN/v-update-web-domain-stat $user $domain"
  207. check_webstats=$(grep "$webstats" $VESTA/data/queue/webstats.pipe)
  208. if [ -z "$check_webstats" ]; then
  209. echo "$webstats" >> $VESTA/data/queue/webstats.pipe
  210. fi
  211. if [ ! -z "$STATS_USER" ]; then
  212. stats_dir="$HOMEDIR/$user/web/$domain/stats"
  213. # Adding htaccess file
  214. echo "AuthUserFile $stats_dir/.htpasswd" > $stats_dir/.htaccess
  215. echo "AuthName \"Web Statistics\"" >> $stats_dir/.htaccess
  216. echo "AuthType Basic" >> $stats_dir/.htaccess
  217. echo "Require valid-user" >> $stats_dir/.htaccess
  218. # Generating htaccess user and password
  219. echo "$STATS_USER:$STATS_CRYPT" > $stats_dir/.htpasswd
  220. fi
  221. fi
  222. # Checking SSL
  223. if [ "$SSL" = 'yes' ]; then
  224. # Adding domain to the web conf
  225. conf="$HOMEDIR/$user/conf/web/tmp_s$WEB_SYSTEM.conf"
  226. tpl_file="$WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.stpl"
  227. add_web_config
  228. chown root:$user $conf
  229. chmod 640 $conf
  230. cp -f $USER_DATA/ssl/$domain.crt \
  231. $HOMEDIR/$user/conf/web/ssl.$domain.crt
  232. cp -f $USER_DATA/ssl/$domain.key \
  233. $HOMEDIR/$user/conf/web/ssl.$domain.key
  234. cp -f $USER_DATA/ssl/$domain.pem \
  235. $HOMEDIR/$user/conf/web/ssl.$domain.pem
  236. if [ -e "$USER_DATA/ssl/$domain.ca" ]; then
  237. cp -f $USER_DATA/ssl/$domain.ca \
  238. $HOMEDIR/$user/conf/web/ssl.$domain.ca
  239. fi
  240. # Running template trigger
  241. if [ -x $WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.sh ]; then
  242. $WEBTPL/$WEB_SYSTEM/$WEB_BACKEND/$TPL.sh \
  243. $user $domain $ip $HOMEDIR $sdocroot
  244. fi
  245. user_ssl=$((user_ssl + 1))
  246. ssl_change='yes'
  247. fi
  248. # Checking proxy
  249. if [ ! -z "$PROXY_SYSTEM" ] && [ ! -z "$PROXY" ]; then
  250. tpl_file="$WEBTPL/$PROXY_SYSTEM/$PROXY.tpl"
  251. conf="$HOMEDIR/$user/conf/web/tmp_$PROXY_SYSTEM.conf"
  252. add_web_config
  253. chown root:$user $conf
  254. chmod 640 $conf
  255. proxy_change='yes'
  256. fi
  257. if [ ! -z "$PROXY_SYSTEM" ] && [ "$SSL" = 'yes' ]; then
  258. tpl_file="$WEBTPL/$PROXY_SYSTEM/$PROXY.stpl"
  259. if [ -z "$PROXY" ]; then
  260. tpl_file="$WEBTPL/$PROXY_SYSTEM/default.stpl"
  261. fi
  262. conf="$HOMEDIR/$user/conf/web/tmp_s$PROXY_SYSTEM.conf"
  263. add_web_config
  264. chown root:$user $conf
  265. chmod 640 $conf
  266. proxy_change='yes'
  267. fi
  268. if [ "$SUSPENDED" = 'yes' ]; then
  269. suspended_web=$((suspended_web + 1))
  270. fi
  271. user_domains=$((user_domains + 1))
  272. # Running template trigger
  273. if [ -x $WEBTPL/$PROXY_SYSTEM/$PROXY.sh ]; then
  274. $WEBTPL/$PROXY_SYSTEM/$PROXY.sh $user $domain $ip $HOMEDIR $docroot
  275. fi
  276. # Defining ftp user shell
  277. if [ -z "$FTP_SHELL" ]; then
  278. shell='/sbin/nologin'
  279. if [ -e "/usr/bin/rssh" ]; then
  280. shell='/usr/bin/rssh'
  281. fi
  282. else
  283. shell=$FTP_SHELL
  284. fi
  285. # Checking ftp users
  286. for ftp_user in ${FTP_USER//:/ }; do
  287. if [ -z "$(grep ^$ftp_user: /etc/passwd)" ]; then
  288. # Parsing ftp user variables
  289. position=$(echo $FTP_USER | tr ':' '\n' | grep -n '' |\
  290. grep ":$ftp_user$" | cut -f 1 -d:)
  291. ftp_path=$(echo $FTP_PATH | tr ':' '\n' | grep -n '' |\
  292. grep "^$position:" | cut -f 2 -d :)
  293. ftp_md5=$(echo $FTP_MD5 | tr ':' '\n' | grep -n '' |\
  294. grep "^$position:" | cut -f 2 -d :)
  295. # Adding ftp user
  296. /usr/sbin/useradd $ftp_user \
  297. -s $shell \
  298. -o -u $(id -u $user) \
  299. -g $(id -u $user) \
  300. -M -d "$HOMEDIR/$user/web/$domain${ftp_path}" >/dev/null 2>&1
  301. # Updating ftp user password
  302. shadow=$(grep "^$ftp_user:" /etc/shadow)
  303. shdw3=$(echo "$shadow" | cut -f3 -d :)
  304. shdw4=$(echo "$shadow" | cut -f4 -d :)
  305. shdw5=$(echo "$shadow" | cut -f5 -d :)
  306. shdw6=$(echo "$shadow" | cut -f6 -d :)
  307. shdw7=$(echo "$shadow" | cut -f7 -d :)
  308. shdw8=$(echo "$shadow" | cut -f8 -d :)
  309. shdw9=$(echo "$shadow" | cut -f9 -d :)
  310. shadow_str="$ftp_user:$ftp_md5:$shdw3:$shdw4:$shdw5:$shdw6"
  311. shadow_str="$shadow_str:$shdw7:$shdw8:$shdw9"
  312. chmod u+w /etc/shadow
  313. sed -i "/^$ftp_user:*/d" /etc/shadow
  314. echo "$shadow_str" >> /etc/shadow
  315. chmod u-w /etc/shadow
  316. fi
  317. done
  318. # Adding http auth protection
  319. htaccess="$HOMEDIR/$user/conf/web/$WEB_SYSTEM.$domain.conf_htaccess"
  320. htpasswd="$HOMEDIR/$user/conf/web/$WEB_SYSTEM.$domain.htpasswd"
  321. docroot="$HOMEDIR/$user/web/$domain/public_html"
  322. for auth_user in ${AUTH_USER//:/ }; do
  323. # Parsing auth user variables
  324. position=$(echo $AUTH_USER | tr ':' '\n' | grep -n '' |\
  325. grep ":$auth_user$" | cut -f 1 -d:)
  326. auth_hash=$(echo $AUTH_HASH | tr ':' '\n' | grep -n '' |\
  327. grep "^$position:" | cut -f 2 -d :)
  328. # Adding http auth user
  329. touch $htpasswd
  330. sed -i "/^$auth_user:/d" $htpasswd
  331. echo "$auth_user:$auth_hash" >> $htpasswd
  332. # Checking web server include
  333. if [ ! -e "$htaccess" ]; then
  334. if [ "$WEB_SYSTEM" != 'nginx' ]; then
  335. echo "<Directory $docroot>" > $htaccess
  336. echo " AuthUserFile $htpasswd" >> $htaccess
  337. echo " AuthName \"$domain access\"" >> $htaccess
  338. echo " AuthType Basic" >> $htaccess
  339. echo " Require valid-user" >> $htaccess
  340. echo "</Directory>" >> $htaccess
  341. else
  342. echo "auth_basic \"$domain password access\";" > $htaccess
  343. echo "auth_basic_user_file $htpasswd;" >> $htaccess
  344. fi
  345. fi
  346. done
  347. chmod 640 $htpasswd $htaccess >/dev/null 2>&1
  348. }
  349. # DNS domain rebuild
  350. rebuild_dns_domain_conf() {
  351. # Get domain values
  352. get_domain_values 'dns'
  353. domain_idn=$(idn -t --quiet -a "$domain")
  354. # Checking zone file
  355. if [ ! -e "$USER_DATA/dns/$domain.conf" ]; then
  356. cat $DNSTPL/$TPL.tpl |\
  357. sed -e "s/%ip%/$IP/g" \
  358. -e "s/%domain_idn%/$domain_idn/g" \
  359. -e "s/%domain%/$domain/g" \
  360. -e "s/%ns1%/$ns1/g" \
  361. -e "s/%ns2%/$ns2/g" \
  362. -e "s/%ns3%/$ns3/g" \
  363. -e "s/%ns4%/$ns4/g" \
  364. -e "s/%time%/$TIME/g" \
  365. -e "s/%date%/$DATE/g" > $USER_DATA/dns/$domain.conf
  366. fi
  367. # Sorting records
  368. sort_dns_records
  369. # Updating zone
  370. update_domain_zone
  371. # Set permissions
  372. if [ "$DNS_SYSTEM" = 'named' ]; then
  373. dns_group='named'
  374. else
  375. dns_group='bind'
  376. fi
  377. # Set file permissions
  378. chmod 640 $HOMEDIR/$user/conf/dns/$domain.db
  379. chown root:$dns_group $HOMEDIR/$user/conf/dns/$domain.db
  380. # Get dns config path
  381. if [ -e '/etc/named.conf' ]; then
  382. dns_conf='/etc/named.conf'
  383. fi
  384. if [ -e '/etc/bind/named.conf' ]; then
  385. dns_conf='/etc/bind/named.conf'
  386. fi
  387. # Bind config check
  388. if [ "$SUSPENDED" = 'yes' ]; then
  389. rm_string=$(grep -n /etc/namedb/$domain.db $dns_conf | cut -d : -f 1)
  390. if [ ! -z "$rm_string" ]; then
  391. sed -i "$rm_string d" $dns_conf
  392. fi
  393. suspended_dns=$((suspended_dns + 1))
  394. else
  395. if [ -z "$(grep /$domain.db $dns_conf)" ]; then
  396. named="zone \"$domain_idn\" {type master; file"
  397. named="$named \"$HOMEDIR/$user/conf/dns/$domain.db\";};"
  398. echo "$named" >> $dns_conf
  399. fi
  400. fi
  401. user_domains=$((user_domains + 1))
  402. records=$(wc -l $USER_DATA/dns/$domain.conf | cut -f 1 -d ' ')
  403. user_records=$((user_records + records))
  404. update_object_value 'dns' 'DOMAIN' "$domain" '$RECORDS' "$records"
  405. }
  406. # MAIL domain rebuild
  407. rebuild_mail_domain_conf() {
  408. # Get domain values
  409. domain_idn=$(idn -t --quiet -a "$domain")
  410. get_domain_values 'mail'
  411. if [ "$SUSPENDED" = 'yes' ]; then
  412. SUSPENDED_MAIL=$((SUSPENDED_MAIL +1))
  413. fi
  414. # Rebuilding exim config structure
  415. if [[ "$MAIL_SYSTEM" =~ exim ]]; then
  416. rm -f /etc/$MAIL_SYSTEM/domains/$domain_idn
  417. mkdir -p $HOMEDIR/$user/conf/mail/$domain
  418. ln -s $HOMEDIR/$user/conf/mail/$domain \
  419. /etc/$MAIL_SYSTEM/domains/$domain_idn
  420. rm -f $HOMEDIR/$user/conf/mail/$domain/aliases
  421. rm -f $HOMEDIR/$user/conf/mail/$domain/antispam
  422. rm -f $HOMEDIR/$user/conf/mail/$domain/antivirus
  423. rm -f $HOMEDIR/$user/conf/mail/$domain/protection
  424. rm -f $HOMEDIR/$user/conf/mail/$domain/passwd
  425. rm -f $HOMEDIR/$user/conf/mail/$domain/fwd_only
  426. touch $HOMEDIR/$user/conf/mail/$domain/aliases
  427. touch $HOMEDIR/$user/conf/mail/$domain/passwd
  428. touch $HOMEDIR/$user/conf/mail/$domain/fwd_only
  429. # Adding antispam protection
  430. if [ "$ANTISPAM" = 'yes' ]; then
  431. touch $HOMEDIR/$user/conf/mail/$domain/antispam
  432. fi
  433. # Adding antivirus protection
  434. if [ "$ANTIVIRUS" = 'yes' ]; then
  435. touch $HOMEDIR/$user/conf/mail/$domain/antivirus
  436. fi
  437. # Adding dkim
  438. if [ "$DKIM" = 'yes' ]; then
  439. cp $USER_DATA/mail/$domain.pem \
  440. $HOMEDIR/$user/conf/mail/$domain/dkim.pem
  441. fi
  442. # Removing symbolic link if domain is suspended
  443. if [ "$SUSPENDED" = 'yes' ]; then
  444. rm -f /etc/exim/domains/$domain_idn
  445. fi
  446. # Adding mail directiry
  447. if [ ! -e $HOMEDIR/$user/mail/$domain_idn ]; then
  448. mkdir $HOMEDIR/$user/mail/$domain_idn
  449. fi
  450. # Adding catchall email
  451. dom_aliases=$HOMEDIR/$user/conf/mail/$domain/aliases
  452. if [ ! -z "$CATCHALL" ]; then
  453. echo "*@$domain_idn:$CATCHALL" >> $dom_aliases
  454. fi
  455. fi
  456. # Rebuild domain accounts
  457. accs=0
  458. dom_diks=0
  459. if [ -e "$USER_DATA/mail/$domain.conf" ]; then
  460. accounts=$(search_objects "mail/$domain" 'SUSPENDED' "no" 'ACCOUNT')
  461. else
  462. accounts=''
  463. fi
  464. for account in $accounts; do
  465. (( ++accs))
  466. dom_diks=$((dom_diks + U_DISK))
  467. object=$(grep "ACCOUNT='$account'" $USER_DATA/mail/$domain.conf)
  468. FWD_ONLY='no'
  469. eval "$object"
  470. if [ "$SUSPENDED" = 'yes' ]; then
  471. MD5='SUSPENDED'
  472. fi
  473. if [[ "$MAIL_SYSTEM" =~ exim ]]; then
  474. if [ "$QUOTA" = 'unlimited' ]; then
  475. QUOTA=0
  476. fi
  477. str="$account:$MD5:$user:mail::$HOMEDIR/$user:$QUOTA"
  478. echo $str >> $HOMEDIR/$user/conf/mail/$domain/passwd
  479. for malias in ${ALIAS//,/ }; do
  480. echo "$malias@$domain_idn:$account@$domain_idn" >> $dom_aliases
  481. done
  482. if [ ! -z "$FWD" ]; then
  483. echo "$account@$domain_idn:$FWD" >> $dom_aliases
  484. fi
  485. if [ "$FWD_ONLY" = 'yes' ]; then
  486. echo "$account" >> $HOMEDIR/$user/conf/mail/$domain/fwd_only
  487. fi
  488. fi
  489. done
  490. # Set permissions and ownership
  491. if [[ "$MAIL_SYSTEM" =~ exim ]]; then
  492. chmod 660 $USER_DATA/mail/$domain.*
  493. chmod 771 $HOMEDIR/$user/conf/mail/$domain
  494. chmod 660 $HOMEDIR/$user/conf/mail/$domain/*
  495. chmod 771 /etc/$MAIL_SYSTEM/domains/$domain_idn
  496. chmod 770 $HOMEDIR/$user/mail/$domain_idn
  497. chown -R $MAIL_USER:mail $HOMEDIR/$user/conf/mail/$domain
  498. chown -R dovecot:mail $HOMEDIR/$user/conf/mail/$domain/passwd
  499. chown $user:mail $HOMEDIR/$user/mail/$domain_idn
  500. fi
  501. # Update counters
  502. update_object_value 'mail' 'DOMAIN' "$domain" '$ACCOUNTS' "$accs"
  503. update_object_value 'mail' 'DOMAIN' "$domain" '$U_DISK' "$dom_diks"
  504. U_MAIL_ACCOUNTS=$((U_MAIL_ACCOUNTS + accs))
  505. U_DISK_MAIL=$((U_DISK_MAIL + dom_diks))
  506. U_MAIL_DOMAINS=$((U_MAIL_DOMAINS + 1))
  507. }
  508. # Rebuild MySQL
  509. rebuild_mysql_database() {
  510. host_str=$(grep "HOST='$HOST'" $VESTA/conf/mysql.conf)
  511. eval $host_str
  512. if [ -z $HOST ] || [ -z $USER ] || [ -z $PASSWORD ]; then
  513. echo "Error: mysql config parsing failed"
  514. if [ ! -z "$send_mail" ]; then
  515. echo "Can't parse MySQL DB config" | $send_mail -s "$subj" $email
  516. fi
  517. log_event "$E_PARSING" "$EVENT"
  518. exit $E_PARSING
  519. fi
  520. query='SELECT VERSION()'
  521. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  522. if [ '0' -ne "$?" ]; then
  523. echo "Error: Database connection to $HOST failed"
  524. if [ ! -z "$send_mail" ]; then
  525. echo "Database connection to MySQL host $HOST failed" |\
  526. $send_mail -s "$subj" $email
  527. fi
  528. log_event "$E_CONNECT" "$EVENT"
  529. exit $E_CONNECT
  530. fi
  531. query="CREATE DATABASE \`$DB\` CHARACTER SET $CHARSET"
  532. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  533. query="GRANT ALL ON \`$DB\`.* TO \`$DBUSER\`@\`%\`"
  534. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  535. query="GRANT ALL ON \`$DB\`.* TO \`$DBUSER\`@localhost"
  536. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  537. query="UPDATE mysql.user SET Password='$MD5' WHERE User='$DBUSER';"
  538. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  539. query="FLUSH PRIVILEGES;"
  540. mysql -h $HOST -u $USER -p$PASSWORD -e "$query" > /dev/null 2>&1
  541. }
  542. # Rebuild PostgreSQL
  543. rebuild_pgsql_database() {
  544. host_str=$(grep "HOST='$HOST'" $VESTA/conf/pgsql.conf)
  545. eval $host_str
  546. export PGPASSWORD="$PASSWORD"
  547. if [ -z $HOST ] || [ -z $USER ] || [ -z $PASSWORD ] || [ -z $TPL ]; then
  548. echo "Error: postgresql config parsing failed"
  549. if [ ! -z "$send_mail" ]; then
  550. echo "Can't parse PostgreSQL config" | $send_mail -s "$subj" $email
  551. fi
  552. log_event "$E_PARSING" "$EVENT"
  553. exit $E_PARSING
  554. fi
  555. query='SELECT VERSION()'
  556. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  557. if [ '0' -ne "$?" ]; then
  558. echo "Error: Connection failed"
  559. if [ ! -z "$send_mail" ]; then
  560. echo "Database connection to PostgreSQL host $HOST failed" |\
  561. $send_mail -s "$subj" $email
  562. fi
  563. log_event "$E_CONNECT" "$EVENT"
  564. exit $E_CONNECT
  565. fi
  566. query="CREATE ROLE $DBUSER"
  567. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  568. query="UPDATE pg_authid SET rolpassword='$MD5' WHERE rolname='$DBUSER'"
  569. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  570. query="CREATE DATABASE $DB OWNER $DBUSER"
  571. if [ "$TPL" = 'template0' ]; then
  572. query="$query ENCODING '$CHARSET' TEMPLATE $TPL"
  573. else
  574. query="$query TEMPLATE $TPL"
  575. fi
  576. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  577. query="GRANT ALL PRIVILEGES ON DATABASE $DB TO $DBUSER"
  578. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  579. query="GRANT CONNECT ON DATABASE template1 to $dbuser"
  580. psql -h $HOST -U $USER -c "$query" > /dev/null 2>&1
  581. }
  582. # Import MySQL dump
  583. import_mysql_database() {
  584. host_str=$(grep "HOST='$HOST'" $VESTA/conf/mysql.conf)
  585. eval $host_str
  586. if [ -z $HOST ] || [ -z $USER ] || [ -z $PASSWORD ]; then
  587. echo "Error: mysql config parsing failed"
  588. log_event "$E_PARSING" "$EVENT"
  589. exit $E_PARSING
  590. fi
  591. mysql -h $HOST -u $USER -p$PASSWORD $DB < $1 > /dev/null 2>&1
  592. }
  593. # Import PostgreSQL dump
  594. import_pgsql_database() {
  595. host_str=$(grep "HOST='$HOST'" $VESTA/conf/pgsql.conf)
  596. eval $host_str
  597. export PGPASSWORD="$PASSWORD"
  598. if [ -z $HOST ] || [ -z $USER ] || [ -z $PASSWORD ] || [ -z $TPL ]; then
  599. echo "Error: postgresql config parsing failed"
  600. log_event "$E_PARSING" "$EVENT"
  601. exit $E_PARSING
  602. fi
  603. psql -h $HOST -U $USER $DB < $1 > /dev/null 2>&1
  604. }