mirror of
https://github.com/Py-KMS-Organization/py-kms.git
synced 2025-05-13 06:34:45 -04:00
77 lines
3 KiB
Python
Executable file
77 lines
3 KiB
Python
Executable file
#!/usr/bin/python3 -u
|
|
|
|
# Need root privileges to change timezone, and user uid/gid, file/folder ownernship
|
|
|
|
import grp
|
|
import logging
|
|
import os
|
|
import pwd
|
|
import subprocess
|
|
import sys
|
|
|
|
PYTHON3 = '/usr/bin/python3'
|
|
dbPath = os.path.join(os.sep, 'home', 'py-kms', 'db') # Do not include the database file name, as we must correct the folder permissions (the db file is recursively reachable)
|
|
log_level_bootstrap = log_level = os.getenv('LOGLEVEL', 'INFO')
|
|
if log_level_bootstrap == "MININFO":
|
|
log_level_bootstrap = "INFO"
|
|
loggersrv = logging.getLogger('logsrv')
|
|
loggersrv.setLevel(log_level_bootstrap)
|
|
streamhandler = logging.StreamHandler(sys.stdout)
|
|
streamhandler.setLevel(log_level_bootstrap)
|
|
formatter = logging.Formatter(fmt = '\x1b[94m%(asctime)s %(levelname)-8s %(message)s',
|
|
datefmt = '%a, %d %b %Y %H:%M:%S',)
|
|
streamhandler.setFormatter(formatter)
|
|
loggersrv.addHandler(streamhandler)
|
|
|
|
|
|
def change_uid_grp():
|
|
user_db_entries = pwd.getpwnam("py-kms")
|
|
user_grp_db_entries = grp.getgrnam("power_users")
|
|
uid = int(user_db_entries.pw_uid)
|
|
gid = int(user_grp_db_entries.gr_gid)
|
|
new_gid = int(os.getenv('GID', str(gid)))
|
|
new_uid = int(os.getenv('UID', str(uid)))
|
|
os.chown("/home/py-kms", new_uid, new_gid)
|
|
os.chown("/usr/bin/start.py", new_uid, new_gid)
|
|
if os.path.isdir(dbPath):
|
|
# Corret permissions recursively, as to access the database file, also its parent folder must be accessible
|
|
loggersrv.debug(f'Correcting owner permissions on {dbPath}.')
|
|
os.chown(dbPath, new_uid, new_gid)
|
|
for root, dirs, files in os.walk(dbPath):
|
|
for dName in dirs:
|
|
dPath = os.path.join(root, dName)
|
|
loggersrv.debug(f'Correcting owner permissions on {dPath}.')
|
|
os.chown(dPath, new_uid, new_gid)
|
|
for fName in files:
|
|
fPath = os.path.join(root, fName)
|
|
loggersrv.debug(f'Correcting owner permissions on {fPath}.')
|
|
os.chown(fPath, new_uid, new_gid)
|
|
loggersrv.debug(subprocess.check_output(['ls', '-la', dbPath]).decode())
|
|
if 'LOGFILE' in os.environ and os.path.exists(os.environ['LOGFILE']):
|
|
# Oh, the user also wants a custom log file -> make sure start.py can access it by setting the correct permissions (777)
|
|
os.chmod(os.environ['LOGFILE'], 0o777)
|
|
loggersrv.error(str(subprocess.check_output(['ls', '-la', os.environ['LOGFILE']])))
|
|
loggersrv.info("Setting gid to '%s'." % str(new_gid))
|
|
os.setgid(new_gid)
|
|
|
|
loggersrv.info("Setting uid to '%s'." % str(new_uid))
|
|
os.setuid(new_uid)
|
|
|
|
|
|
def change_tz():
|
|
tz = os.getenv('TZ', 'etc/UTC')
|
|
# TZ is not symlinked and defined TZ exists
|
|
if tz not in os.readlink('/etc/localtime') and os.path.isfile('/usr/share/zoneinfo/' + tz):
|
|
loggersrv.info("Setting timzeone to %s" % tz )
|
|
os.remove('/etc/localtime')
|
|
os.symlink(os.path.join('/usr/share/zoneinfo/', tz), '/etc/localtime')
|
|
f = open("/etc/timezone", "w")
|
|
f.write(tz)
|
|
f.close()
|
|
|
|
|
|
# Main
|
|
if (__name__ == "__main__"):
|
|
loggersrv.info("Log level: %s" % log_level)
|
|
change_tz()
|
|
subprocess.call(PYTHON3 + " -u /usr/bin/start.py", preexec_fn=change_uid_grp(), shell=True)
|