taler-merchant-dbconfig (4603B)
1 #!/bin/bash 2 # This file is part of GNU TALER. 3 # Copyright (C) 2023 Taler Systems SA 4 # 5 # TALER is free software; you can redistribute it and/or modify it under the 6 # terms of the GNU Lesser General Public License as published by the Free Software 7 # Foundation; either version 2.1, or (at your option) any later version. 8 # 9 # TALER is distributed in the hope that it will be useful, but WITHOUT ANY 10 # WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR 11 # A PARTICULAR PURPOSE. See the GNU Lesser General Public License for more details. 12 # 13 # You should have received a copy of the GNU Lesser General Public License along with 14 # TALER; see the file COPYING. If not, see <http://www.gnu.org/licenses/> 15 # 16 # @author Christian Grothoff 17 # 18 # 19 # Error checking on 20 set -eu 21 22 RESET_DB=0 23 SKIP_DBINIT=0 24 DBUSER="taler-merchant-httpd" 25 CFGFILE="/etc/taler-merchant/taler-merchant.conf" 26 27 # Parse command-line options 28 while getopts 'c:hrsu:' OPTION; do 29 case "$OPTION" in 30 c) 31 CFGFILE="$OPTARG" 32 ;; 33 h) 34 echo 'Supported options:' 35 echo " -c FILENAME -- use configuration FILENAME (default: $CFGFILE)" 36 echo " -h -- print this help text" 37 echo " -r -- reset database (dangerous)" 38 echo " -s -- skip database initialization" 39 echo " -u USER -- taler-merchant to be run by USER (default: $DBUSER)" 40 exit 0 41 ;; 42 r) 43 RESET_DB="1" 44 ;; 45 s) 46 SKIP_DBINIT="1" 47 ;; 48 u) 49 DBUSER="$OPTARG" 50 ;; 51 ?) 52 echo "Unrecognized command line option '$OPTION'" 1 &>2 53 exit 1 54 ;; 55 esac 56 done 57 58 if ! id postgres >/dev/null; then 59 echo "Could not find 'postgres' user. Please install Postgresql first" 60 exit 1 61 fi 62 63 if [ "$(id -u)" -ne 0 ]; then 64 echo "This script must be run as root" 65 exit 1 66 fi 67 68 if [ 0 = "$SKIP_DBINIT" ]; then 69 if ! command -v taler-merchant-dbinit >/dev/null 2>&1; then 70 echo "Required 'taler-merchant-dbinit' not found in PATH." >&2 71 echo "Install package 'taler-merchant' (same suite as libgnunet)." >&2 72 exit 1 73 fi 74 DBINIT=$(command -v taler-merchant-dbinit) 75 # Binary may exist but fail to load (e.g. missing libgnunet). 76 DBINIT_ERR=$(mktemp) 77 if ! "$DBINIT" -v >"$DBINIT_ERR" 2>&1; then 78 echo "Required 'taler-merchant-dbinit' is installed ($DBINIT) but failed to run:" >&2 79 sed 's/^/ /' "$DBINIT_ERR" >&2 || true 80 rm -f "$DBINIT_ERR" 81 echo "Common cause: missing or mismatched shared libraries (often libgnunet)." >&2 82 echo "Try: ldd \"$DBINIT\" | grep 'not found'" >&2 83 echo "Install matching libgnunet packages for this Debian suite, then re-run." >&2 84 exit 1 85 fi 86 rm -f "$DBINIT_ERR" 87 fi 88 89 if ! id "$DBUSER" >/dev/null; then 90 echo "Could not find '$DBUSER' user. Please set it up first" 91 exit 1 92 fi 93 94 echo "Setting up database user $DBUSER." 1>&2 95 96 if ! sudo -i -u postgres createuser "$DBUSER" 2>/dev/null; then 97 echo "Database user '$DBUSER' already existed. Continuing anyway." 1>&2 98 fi 99 100 # Allow user to change the session_replication_role setting, 101 # required during migrations. 102 103 ret=0 104 sudo -i -u postgres psql -v dbuser="$DBUSER" <<'EOF' || ret=$? 105 GRANT SET ON PARAMETER session_replication_role TO :"dbuser"; 106 EOF 107 108 if [[ $ret -ne 0 ]]; then 109 echo "Failed to grant permissions to $DBUSER" >&2 110 exit 1 111 fi 112 113 DBPATH=$(taler-merchant-config \ 114 -c "$CFGFILE" \ 115 -s merchantdb-postgres \ 116 -o CONFIG) 117 118 if ! echo "$DBPATH" | grep "postgres://" >/dev/null; then 119 echo "Invalid database configuration value '$DBPATH'." 1>&2 120 exit 1 121 fi 122 123 DBNAME=$(echo "$DBPATH" | 124 sed \ 125 -e "s/postgres:\/\/.*\///" \ 126 -e "s/?.*//") 127 128 if sudo -i -u postgres psql "$DBNAME" </dev/null 2>/dev/null; then 129 if [ 1 = "$RESET_DB" ]; then 130 echo "Deleting existing database $DBNAME." 1>&2 131 if ! sudo -i -u postgres dropdb "$DBNAME"; then 132 echo "Failed to delete existing database '$DBNAME'" 133 exit 1 134 fi 135 DO_CREATE=1 136 else 137 echo "Database '$DBNAME' already exists, continuing anyway." 138 DO_CREATE=0 139 fi 140 else 141 DO_CREATE=1 142 fi 143 144 if [ 1 = "$DO_CREATE" ]; then 145 echo "Creating database $DBNAME." 1>&2 146 if ! sudo -i -u postgres createdb -O "$DBUSER" "$DBNAME"; then 147 echo "Failed to create database '$DBNAME'" 148 exit 1 149 fi 150 fi 151 152 if [ 0 = "$SKIP_DBINIT" ]; then 153 echo "Initializing database $DBNAME." 1>&2 154 if ! sudo -u "$DBUSER" "$DBINIT" -c "$CFGFILE"; then 155 echo "Failed to initialize database schema." >&2 156 echo "Command was: sudo -u $DBUSER $DBINIT -c $CFGFILE" >&2 157 echo "Re-run that command for full errors; ensure Postgres is up and CONFIG is correct." >&2 158 exit 1 159 fi 160 fi 161 162 echo "Database configuration finished." 1>&2 163 164 exit 0