Introduce scripts/source/paths.sh as the canonical path resolver for three independently-relocatable roots: LP_SYSTEM_DIR manager-owned control plane (configs/logs/install/db/ssl/ssh/migrate) LP_CONTAINERS_DIR container-user-owned live app data LP_BACKUPS_DIR container-user-owned backup repos (own mount-able) Roots come from the environment when set (install bakes them; CLI/app inherit from init.sh), else default to /libreportal-*. A transitional compat default keeps EXISTING installs (legacy single /docker tree, by config marker) on /docker until a deliberate reinstall, so deploying this never strands a running box. - init.sh derives the same vars inline (self-contained for the bare /root/init.sh reinstall case); paths.sh mirrors it for the standalone task/check processors, which now self-locate their scripts dir and source it. - Replace functional /docker literals with the derived vars across runtime, install, backup, crontab, crowdsec/restic, headscale, and reinstall paths; clean the inert '== /docker/containers/*' guard fallbacks to the variable form. - backend: CONTAINERS_DIR now from LP_CONTAINERS_DIR (compose env, filled at generation via a new CONTAINERS_DIR_TAG), legacy-safe default for un-recreated containers. - backup default path falls back to the backups root; exclude paths.sh from the sourced-file arrays (bootstrap file, sourced explicitly). The CLI-wrapper heredoc + root helpers still reference /docker; those get baked in phase 3. No layout/ownership change yet (phase 2). Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com> Signed-off-by: librelad <librelad@digitalangels.vip>
38 lines
1.2 KiB
Bash
Executable File
38 lines
1.2 KiB
Bash
Executable File
#!/bin/bash
|
|
|
|
# LibrePortal WebUI Atomic Write Utilities
|
|
# Provides atomic file writing functionality for web UI safety
|
|
|
|
# Atomic file write function for web UI safety
|
|
atomicWriteWebUI() {
|
|
local content="$1"
|
|
local target_file="$2"
|
|
local temp_file="${target_file}.tmp.$$"
|
|
|
|
# Every step runs as the path's owner so the manager-run runtime (Model A)
|
|
# can write the dockerinstall-owned WebUI/app files. Temp + rename share the
|
|
# target's directory, so the mv stays atomic (same filesystem, same owner).
|
|
local op="runInstallOp" wop="runInstallWrite"
|
|
if [[ "$target_file" == "$containers_dir"* || "$target_file" == "${LP_CONTAINERS_DIR:-/libreportal-containers}"/* ]]; then
|
|
op="runFileOp"; wop="runFileWrite"
|
|
fi
|
|
|
|
# Ensure directory exists
|
|
$op mkdir -p "$(dirname "$target_file")"
|
|
|
|
# Write to temp file first
|
|
printf '%s' "$content" | $wop "$temp_file"
|
|
|
|
# Set proper permissions
|
|
$op chmod 644 "$temp_file"
|
|
|
|
# Atomic rename (instantaneous - no partial reads)
|
|
$op mv "$temp_file" "$target_file"
|
|
|
|
if [ $? -eq 0 ]; then
|
|
echo "✓ Atomic write successful: $target_file"
|
|
else
|
|
echo "✗ Atomic write failed: $target_file"
|
|
fi
|
|
}
|