LibrePortal/scripts/webui/webui_install_systemd.sh
librelad 2d24a764a8 refactor(storage): route elevation tests and the WebUI tree through paths.sh
Two mechanical sweeps, no behaviour change on a single-root install.

The 14 `[[ "$p" == "$containers_dir"* ]]` prefix tests that decide
manager-vs-container-user elevation become pathIsContainerData, so a file
on a second storage root is no longer misclassified as manager-owned —
which would have written it with the wrong owner and failed later, far
from the cause. The 65 references to the WebUI's own tree become
webuiDir(), which is pinned to the primary root by design.

Two traps found while doing it:

run_privileged.sh is sourced directly by init.sh without paths.sh, so it
needs a fallback. Defining one named pathIsContainerData was wrong:
generate_function_manifest.sh indexes top-level definitions, and the
resulting autoload stub would have shadowed the real multi-root
implementation with the primary-only fallback — silently classifying
every file on a second disk as manager-owned, which is exactly the bug
this sweep exists to prevent. Renamed to _runCfgIsContainerPath, which
delegates when the real one is loaded.

setup_lock.sh built its path in a top-level assignment, so it was
evaluated at source time and needed the file flagged eager. Made it a
function instead: the path resolves on call, and the file drops off
LP_EAGER_FILES entirely.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
2026-08-24 04:04:19 +01:00

48 lines
2.1 KiB
Bash
Executable File

#!/bin/bash
# LibrePortal Task Processor Systemd Service Setup
# Replaces crontabSetupTaskProcessor with systemd service.
#
# Idempotent: computes the desired unit for the CURRENT docker mode and only
# rewrites + daemon-reloads + restarts when it actually differs from what's on
# disk. So routine re-runs are no-ops (no needless restart that would kill an
# in-flight task), while a rooted<->rootless switch — which changes the env
# block — triggers exactly one rewrite + restart so the processor re-reads the
# new mode. Safe to call from install AND from the docker-type switcher.
installLibrePortalWebUITaskService()
{
[[ "$CFG_REQUIREMENT_WEBUI_SERVICE" == "true" ]] || return 0
local task_processor_script="$install_scripts_dir/task/crontab_task_processor.sh"
local task_dir="$(webuiDir)/frontend/data/tasks"
# Point the processor at the task dir (idempotent). This edits the
# manager-owned install tree, so no privilege is needed.
if [ -f "$task_processor_script" ]; then
sed -i "s|TASK_DIR=\".*\"|TASK_DIR=\"$task_dir\"|g" "$task_processor_script"
chmod +x "$task_processor_script"
else
isNotice "Task processor script not found"
fi
# The unit itself is generated + installed by the root-owned svc helper (it
# reads the mode + install-user uid from config to build the rootless
# DOCKER_HOST/XDG_RUNTIME_DIR Environment= lines). Idempotent: only restarts on
# an actual change, so a rooted<->rootless switch re-reads the new mode without
# bouncing the processor on routine re-runs.
local svc_result
svc_result="$(runSvc install)"
if [[ "$svc_result" == "updated" ]]; then
isSuccessful "LibrePortal task processor service installed/updated ($CFG_DOCKER_INSTALL_TYPE)."
else
isSuccessful "LibrePortal task processor service already up to date."
fi
# Drop the legacy crontab entry if present (superseded by the service). We are
# the manager, so operate on its own crontab directly.
if crontab -l 2>/dev/null | grep -q "task_processor.sh"; then
crontab -l 2>/dev/null | grep -v "task_processor.sh" | crontab -
isNotice "Removed task processor from crontab"
fi
}