install_script.sh 66 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958
  1. #!/usr/bin/env bash
  2. PATH=/bin:/sbin:/usr/bin:/usr/sbin:/usr/local/bin:/usr/local/sbin:~/bin
  3. export PATH
  4. # System Required: CentOS 7+/Ubuntu 18+/Debian 10+
  5. # Version: v1.0.0
  6. # Description: One click Install Trojan Panel server
  7. # Author: jonssonyan <https://jonssonyan.com>
  8. # Github: https://github.com/trojanpanel/install-script
  9. init_var() {
  10. ECHO_TYPE="echo -e"
  11. package_manager=""
  12. release=""
  13. get_arch=""
  14. can_google=0
  15. # Docker
  16. DOCKER_MIRROR='"https://registry.docker-cn.com","https://hub-mirror.c.163.com","https://docker.mirrors.ustc.edu.cn"'
  17. # 项目目录
  18. TP_DATA="/tpdata/"
  19. STATIC_HTML="https://github.com/trojanpanel/install-script/releases/download/v1.0.0/html.tar.gz"
  20. # MariaDB
  21. MARIA_DATA="/tpdata/mariadb/"
  22. mariadb_ip="trojan-panel-mariadb"
  23. mariadb_port=9507
  24. mariadb_user="root"
  25. mariadb_pas=""
  26. database="trojan_panel_db"
  27. account_table="account"
  28. #Redis
  29. REDIS_DATA="/tpdata/redis/"
  30. redis_host="trojan-panel-redis"
  31. redis_port=6378
  32. redis_pass=""
  33. # Trojan Panel
  34. TROJAN_PANEL_DATA="/tpdata/trojan-panel/"
  35. TROJAN_PANEL_WEBFILE="/tpdata/trojan-panel/webfile/"
  36. TROJAN_PANEL_LOGS="/tpdata/trojan-panel/logs/"
  37. # Trojan Panel Core
  38. TROJAN_PANEL_CORE_DATA="/tpdata/trojan-panel-core/"
  39. TROJAN_PANEL_CORE_LOGS="/tpdata/trojan-panel-core/logs/"
  40. # Trojan Panel UI
  41. TROJAN_PANEL_UI_DATA="/tpdata/trojan-panel-ui/"
  42. # Nginx
  43. NGINX_DATA="/tpdata/nginx/"
  44. NGINX_CONFIG="/tpdata/nginx/default.conf"
  45. # Caddy
  46. CADDY_DATA="/tpdata/caddy/"
  47. CADDY_Caddyfile="/tpdata/caddy/Caddyfile"
  48. CADDY_SRV="/tpdata/caddy/srv/"
  49. CADDY_ACME="/tpdata/caddy/acme/"
  50. DOMAIN_FILE="/tpdata/caddy/domain.lock"
  51. domain=""
  52. caddy_remote_port=8863
  53. your_email="[email protected]"
  54. crt_path=""
  55. key_path=""
  56. ssl_option=1
  57. # trojanGFW
  58. TROJANGFW_DATA="/tpdata/trojanGFW/"
  59. TROJANGFW_CONFIG="/tpdata/trojanGFW/config.json"
  60. TROJANGFW_STANDALONE_CONFIG="/tpdata/trojanGFW/standalone_config.json"
  61. trojanGFW_port=443
  62. # trojanGO
  63. TROJANGO_DATA="/tpdata/trojanGO/"
  64. TROJANGO_CONFIG="/tpdata/trojanGO/config.json"
  65. TROJANGO_STANDALONE_CONFIG="/tpdata/trojanGO/standalone_config.json"
  66. trojanGO_port=443
  67. trojanGO_websocket_enable=false
  68. trojanGO_websocket_path="trojan-panel-websocket-path"
  69. trojanGO_shadowsocks_enable=false
  70. trojanGO_shadowsocks_method="AES-128-GCM"
  71. trojanGO_shadowsocks_password=""
  72. trojanGO_mux_enable=true
  73. # trojan
  74. trojan_pas=""
  75. remote_addr="trojan-panel-caddy"
  76. # hysteria
  77. HYSTERIA_DATA="/tpdata/hysteria/"
  78. HYSTERIA_CONFIG="/tpdata/hysteria/config.json"
  79. HYSTERIA_STANDALONE_CONFIG="/tpdata/hysteria/standalone_config.json"
  80. hysteria_port=443
  81. hysteria_password=""
  82. hysteria_protocol="udp"
  83. hysteria_up_mbps=100
  84. hysteria_down_mbps=100
  85. trojan_panel_url=""
  86. }
  87. echo_content() {
  88. case $1 in
  89. "red")
  90. ${ECHO_TYPE} "\033[31m$2\033[0m"
  91. ;;
  92. "green")
  93. ${ECHO_TYPE} "\033[32m$2\033[0m"
  94. ;;
  95. "yellow")
  96. ${ECHO_TYPE} "\033[33m$2\033[0m"
  97. ;;
  98. "blue")
  99. ${ECHO_TYPE} "\033[34m$2\033[0m"
  100. ;;
  101. "purple")
  102. ${ECHO_TYPE} "\033[35m$2\033[0m"
  103. ;;
  104. "skyBlue")
  105. ${ECHO_TYPE} "\033[36m$2\033[0m"
  106. ;;
  107. "white")
  108. ${ECHO_TYPE} "\033[37m$2\033[0m"
  109. ;;
  110. esac
  111. }
  112. mkdir_tools() {
  113. # 项目目录
  114. mkdir -p ${TP_DATA}
  115. # MariaDB
  116. mkdir -p ${MARIA_DATA}
  117. # Redis
  118. mkdir -p ${REDIS_DATA}
  119. # Trojan Panel
  120. mkdir -p ${TROJAN_PANEL_DATA}
  121. mkdir -p ${TROJAN_PANEL_LOGS}
  122. # Trojan Panel Core
  123. mkdir -p ${TROJAN_PANEL_CORE_DATA}
  124. mkdir -p ${TROJAN_PANEL_CORE_LOGS}
  125. # Trojan Panel UI
  126. mkdir -p ${TROJAN_PANEL_UI_DATA}
  127. # # Nginx
  128. mkdir -p ${NGINX_DATA}
  129. touch ${NGINX_CONFIG}
  130. # Caddy
  131. mkdir -p ${CADDY_DATA}
  132. touch ${CADDY_Caddyfile}
  133. mkdir -p ${CADDY_SRV}
  134. mkdir -p ${CADDY_ACME}
  135. # trojanGFW
  136. mkdir -p ${TROJANGFW_DATA}
  137. touch ${TROJANGFW_CONFIG}
  138. touch ${TROJANGFW_STANDALONE_CONFIG}
  139. # trojanGO
  140. mkdir -p ${TROJANGO_DATA}
  141. touch ${TROJANGO_CONFIG}
  142. touch ${TROJANGO_STANDALONE_CONFIG}
  143. # hysteria
  144. mkdir -p ${HYSTERIA_DATA}
  145. touch ${HYSTERIA_CONFIG}
  146. touch ${HYSTERIA_STANDALONE_CONFIG}
  147. }
  148. can_connect() {
  149. ping -c2 -i0.3 -W1 "$1" &>/dev/null
  150. if [[ "$?" == "0" ]]; then
  151. return 0
  152. else
  153. return 1
  154. fi
  155. }
  156. check_sys() {
  157. if [[ $(command -v yum) ]]; then
  158. package_manager='yum'
  159. elif [[ $(command -v dnf) ]]; then
  160. package_manager='dnf'
  161. elif [[ $(command -v apt) ]]; then
  162. package_manager='apt'
  163. elif [[ $(command -v apt-get) ]]; then
  164. package_manager='apt-get'
  165. fi
  166. if [[ -z "${package_manager}" ]]; then
  167. echo_content red "暂不支持该系统"
  168. exit 0
  169. fi
  170. if [[ -n $(find /etc -name "redhat-release") ]] || grep </proc/version -q -i "centos"; then
  171. release="centos"
  172. elif grep </etc/issue -q -i "debian" && [[ -f "/etc/issue" ]] || grep </etc/issue -q -i "debian" && [[ -f "/proc/version" ]]; then
  173. release="debian"
  174. elif grep </etc/issue -q -i "ubuntu" && [[ -f "/etc/issue" ]] || grep </etc/issue -q -i "ubuntu" && [[ -f "/proc/version" ]]; then
  175. release="ubuntu"
  176. fi
  177. if [[ -z "${release}" ]]; then
  178. echo_content red "仅支持CentOS 7+/Ubuntu 18+/Debian 10+系统"
  179. exit 0
  180. fi
  181. if [[ $(arch) =~ ("x86_64"|"amd64"|"arm64"|"aarch64"|"arm"|"s390x") ]]; then
  182. get_arch=$(arch)
  183. fi
  184. if [[ -z "${get_arch}" ]]; then
  185. echo_content red "仅支持amd64/arm64/arm/s390x处理器架构"
  186. exit 0
  187. fi
  188. }
  189. depend_install() {
  190. if [[ "${package_manager}" != 'yum' && "${package_manager}" != 'dnf' ]]; then
  191. ${package_manager} update -y
  192. fi
  193. ${package_manager} install -y \
  194. curl \
  195. wget \
  196. tar \
  197. lsof \
  198. systemd
  199. }
  200. # 安装BBRPlus 仅支持CentOS系统
  201. install_bbr_plus() {
  202. kernel_version="4.14.129-bbrplus"
  203. if [[ ! -f /etc/redhat-release ]]; then
  204. echo_content yellow "仅支持CentOS系统"
  205. exit 0
  206. fi
  207. if [[ "$(uname -r)" == "${kernel_version}" ]]; then
  208. echo_content yellow "内核已经安装,无需重复执行"
  209. exit 0
  210. fi
  211. # 卸载原加速
  212. echo_content green "卸载加速..."
  213. sed -i '/net.core.default_qdisc/d' /etc/sysctl.conf
  214. sed -i '/net.ipv4.tcp_congestion_control/d' /etc/sysctl.conf
  215. if [[ -e /appex/bin/serverSpeeder.sh ]]; then
  216. wget --no-check-certificate -O appex.sh https://raw.githubusercontent.com/0oVicero0/serverSpeeder_Install/master/appex.sh && chmod +x appex.sh && bash appex.sh uninstall
  217. rm -f appex.sh
  218. fi
  219. echo_content green "下载内核..."
  220. wget https://github.com/cx9208/bbrplus/raw/master/centos7/x86_64/kernel-${kernel_version}.rpm
  221. echo_content green "安装内核..."
  222. yum install -y kernel-${kernel_version}.rpm
  223. # 检查内核是否安装成功
  224. list="$(awk -F\' '$1=="menuentry " {print i++ " : " $2}' /etc/grub2.cfg)"
  225. target="CentOS Linux (${kernel_version})"
  226. result=$(echo "${list}" | grep "${target}")
  227. if [[ -z "${result}" ]]; then
  228. echo_content red "内核安装失败"
  229. exit 1
  230. fi
  231. echo_content green "切换内核..."
  232. grub2-set-default "CentOS Linux (${kernel_version}) 7 (Core)"
  233. echo_content green "启用模块..."
  234. echo "net.core.default_qdisc=fq" >>/etc/sysctl.conf
  235. echo "net.ipv4.tcp_congestion_control=bbrplus" >>/etc/sysctl.conf
  236. rm -f kernel-${kernel_version}.rpm
  237. read -r -p "BBRPlusPlus安装完成,现在重启 ? [Y/n] :" yn
  238. [[ -z "${yn}" ]] && yn="y"
  239. if [[ $yn == [Yy] ]]; then
  240. echo_content green "重启中..."
  241. reboot
  242. fi
  243. }
  244. # 安装Docker
  245. install_docker() {
  246. if [[ ! $(docker -v 2>/dev/null) ]]; then
  247. echo_content green "---> 安装Docker"
  248. # 关闭防火墙
  249. if [[ "$(firewall-cmd --state 2>/dev/null)" == "running" ]]; then
  250. systemctl stop firewalld.service && systemctl disable firewalld.service
  251. fi
  252. # 时区
  253. timedatectl set-timezone Asia/Shanghai
  254. can_connect www.google.com
  255. [[ "$?" == "0" ]] && can_google=1
  256. if [[ ${can_google} == 0 ]]; then
  257. sh <(curl -sL https://get.docker.com) --mirror Aliyun
  258. # 设置Docker国内源
  259. mkdir -p /etc/docker &&
  260. cat >/etc/docker/daemon.json <<EOF
  261. {
  262. "registry-mirrors":[${DOCKER_MIRROR}],
  263. "log-driver":"json-file",
  264. "log-opts":{
  265. "max-size":"50m",
  266. "max-file":"3"
  267. }
  268. }
  269. EOF
  270. else
  271. sh <(curl -sL https://get.docker.com)
  272. fi
  273. systemctl enable docker &&
  274. systemctl restart docker &&
  275. docker network create trojan-panel-network
  276. if [[ $(docker -v 2>/dev/null) ]]; then
  277. echo_content skyBlue "---> Docker安装完成"
  278. else
  279. echo_content red "---> Docker安装失败"
  280. exit 0
  281. fi
  282. else
  283. if [[ -z $(docker network ls | grep "trojan-panel-network") ]]; then
  284. docker network create trojan-panel-network
  285. fi
  286. echo_content skyBlue "---> 你已经安装了Docker"
  287. fi
  288. }
  289. # 安装Caddy TLS
  290. install_caddy_tls() {
  291. if [[ -z $(docker ps -q -f "name=^trojan-panel-caddy$") ]]; then
  292. echo_content green "---> 安装Caddy TLS"
  293. wget --no-check-certificate -O ${CADDY_DATA}html.tar.gz ${STATIC_HTML} &&
  294. tar -zxvf ${CADDY_DATA}html.tar.gz -C ${CADDY_SRV}
  295. read -r -p "请输入Caddy的转发端口(用于申请证书,默认:8863): " caddy_remote_port
  296. [[ -z "${caddy_remote_port}" ]] && caddy_remote_port=8863
  297. while read -r -p "请输入你的域名(必填): " domain; do
  298. if [[ -z "${domain}" ]]; then
  299. echo_content red "域名不能为空"
  300. else
  301. break
  302. fi
  303. done
  304. mkdir "${CADDY_ACME}${domain}"
  305. while read -r -p "请选择设置证书的方式?(1/自动申请和续签证书 2/手动设置证书路径 默认:1/自动申请和续签证书): " ssl_option; do
  306. if [[ -z ${ssl_option} || ${ssl_option} == 1 ]]; then
  307. echo_content yellow "正在检测域名,请稍后..."
  308. ping_ip=$(ping "${domain}" -s1 -c1 | grep "ttl=" | head -n1 | cut -d"(" -f2 | cut -d")" -f1)
  309. curl_ip=$(curl ifconfig.me)
  310. if [[ "${ping_ip}" != "${curl_ip}" ]]; then
  311. echo_content yellow "你的域名没有解析到本机IP,请稍后再试"
  312. echo_content red "---> Caddy安装失败"
  313. exit 0
  314. fi
  315. read -r -p "请输入你的邮箱(用于申请证书,默认:[email protected]): " your_email
  316. [[ -z "${your_email}" ]] && your_email="[email protected]"
  317. cat >${CADDY_Caddyfile} <<EOF
  318. http://${domain}:80 {
  319. redir https://${domain}:${caddy_remote_port}{url}
  320. }
  321. https://${domain}:${caddy_remote_port} {
  322. gzip
  323. tls ${your_email}
  324. root ${CADDY_SRV}
  325. }
  326. EOF
  327. break
  328. else
  329. if [[ ${ssl_option} != 2 ]]; then
  330. echo_content red "不可以输入除1和2之外的其他字符"
  331. else
  332. while read -r -p "请输入证书的.crt文件路径(必填): " crt_path; do
  333. if [[ -z "${crt_path}" ]]; then
  334. echo_content red "路径不能为空"
  335. else
  336. if [[ ! -f "${crt_path}" ]]; then
  337. echo_content red "证书的.crt文件路径不存在"
  338. else
  339. cp "${crt_path}" "${CADDY_ACME}${domain}/${domain}.crt"
  340. break
  341. fi
  342. fi
  343. done
  344. while read -r -p "请输入证书的.key文件路径(必填): " key_path; do
  345. if [[ -z "${key_path}" ]]; then
  346. echo_content red "路径不能为空"
  347. else
  348. if [[ ! -f "${key_path}" ]]; then
  349. echo_content red "证书的.key文件路径不存在"
  350. else
  351. cp "${key_path}" "${CADDY_ACME}${domain}/${domain}.key"
  352. break
  353. fi
  354. fi
  355. done
  356. cat >${CADDY_Caddyfile} <<EOF
  357. http://${domain}:80 {
  358. redir https://${domain}:${caddy_remote_port}{url}
  359. }
  360. https://${domain}:${caddy_remote_port} {
  361. gzip
  362. tls /root/.caddy/acme/acme-v02.api.letsencrypt.org/sites/${domain}/${domain}.crt /root/.caddy/acme/acme-v02.api.letsencrypt.org/sites/${domain}/${domain}.key
  363. root ${CADDY_SRV}
  364. }
  365. EOF
  366. break
  367. fi
  368. fi
  369. done
  370. if [[ -n $(lsof -i:80,443 -t) ]]; then
  371. kill -9 "$(lsof -i:80,443 -t)"
  372. fi
  373. docker pull teddysun/caddy:1.0.5 &&
  374. docker run -d --name trojan-panel-caddy --restart always \
  375. --network=trojan-panel-network \
  376. -p 80:80 \
  377. -p ${caddy_remote_port}:${caddy_remote_port} \
  378. -v ${CADDY_Caddyfile}:"/etc/caddy/Caddyfile" \
  379. -v ${CADDY_ACME}:"/root/.caddy/acme/acme-v02.api.letsencrypt.org/sites/" \
  380. -v ${CADDY_SRV}:${CADDY_SRV} \
  381. teddysun/caddy:1.0.5
  382. if [[ -n $(docker ps -q -f "name=^trojan-panel-caddy$") ]]; then
  383. cat >${DOMAIN_FILE} <<EOF
  384. ${domain}
  385. EOF
  386. echo_content skyBlue "---> Caddy安装完成"
  387. else
  388. echo_content red "---> Caddy安装失败"
  389. exit 0
  390. fi
  391. else
  392. domain=$(cat "${DOMAIN_FILE}")
  393. echo_content skyBlue "---> 你已经安装了Caddy"
  394. fi
  395. }
  396. # 安装MariaDB
  397. install_mariadb() {
  398. if [[ -z $(docker ps -q -f "name=^trojan-panel-mariadb$") ]]; then
  399. echo_content green "---> 安装MariaDB"
  400. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  401. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  402. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  403. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  404. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  405. if [[ -z "${mariadb_pas}" ]]; then
  406. echo_content red "密码不能为空"
  407. else
  408. break
  409. fi
  410. done
  411. if [[ "${mariadb_user}" == "root" ]]; then
  412. docker pull mariadb:10.7.3 &&
  413. docker run -d --name trojan-panel-mariadb --restart always \
  414. --network=trojan-panel-network \
  415. -p ${mariadb_port}:3306 \
  416. -v ${MARIA_DATA}:/var/lib/mysql \
  417. -e MYSQL_DATABASE="trojan_panel_db" \
  418. -e MYSQL_ROOT_PASSWORD="${mariadb_pas}" \
  419. -e TZ=Asia/Shanghai \
  420. mariadb:10.7.3
  421. else
  422. docker pull mariadb:10.7.3 &&
  423. docker run -d --name trojan-panel-mariadb --restart always \
  424. --network=trojan-panel-network \
  425. -p ${mariadb_port}:3306 \
  426. -v ${MARIA_DATA}:/var/lib/mysql \
  427. -e MYSQL_DATABASE="trojan_panel_db" \
  428. -e MYSQL_ROOT_PASSWORD="${mariadb_pas}" \
  429. -e MYSQL_USER="${mariadb_user}" \
  430. -e MYSQL_PASSWORD="${mariadb_pas}" \
  431. -e TZ=Asia/Shanghai \
  432. mariadb:10.7.3
  433. fi
  434. if [[ -n $(docker ps -q -f "name=^trojan-panel-mariadb$") ]]; then
  435. echo_content skyBlue "---> MariaDB安装完成"
  436. echo_content yellow "---> MariaDB root的数据库密码(请妥善保存): ${mariadb_pas}"
  437. if [[ "${mariadb_user}" != "root" ]]; then
  438. echo_content yellow "---> MariaDB ${mariadb_user}的数据库密码(请妥善保存): ${mariadb_pas}"
  439. fi
  440. else
  441. echo_content red "---> MariaDB安装失败"
  442. exit 0
  443. fi
  444. else
  445. echo_content skyBlue "---> 你已经安装了MariaDB"
  446. fi
  447. }
  448. # 安装Redis
  449. install_redis() {
  450. if [[ -z $(docker ps -q -f "name=^trojan-panel-redis$") ]]; then
  451. echo_content green "---> 安装Redis"
  452. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  453. [[ -z "${redis_port}" ]] && redis_port=6378
  454. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  455. if [[ -z "${redis_pass}" ]]; then
  456. echo_content red "密码不能为空"
  457. else
  458. break
  459. fi
  460. done
  461. docker pull redis:6.2.7 &&
  462. docker run -d --name trojan-panel-redis --restart always \
  463. --network=trojan-panel-network \
  464. -p ${redis_port}:6379 \
  465. -v ${REDIS_DATA}:/data redis:6.2.7 \
  466. redis-server --requirepass "${redis_pass}"
  467. if [[ -n $(docker ps -q -f "name=^trojan-panel-redis$") ]]; then
  468. echo_content skyBlue "---> Redis安装完成"
  469. echo_content yellow "---> Redis的数据库密码(请妥善保存): ${redis_pass}"
  470. else
  471. echo_content red "---> Redis安装失败"
  472. exit 0
  473. fi
  474. else
  475. echo_content skyBlue "---> 你已经安装了Redis"
  476. fi
  477. }
  478. # 安装TrojanPanel
  479. install_trojan_panel() {
  480. if [[ -z $(docker ps -q -f "name=^trojan-panel$") ]]; then
  481. echo_content green "---> 安装Trojan Panel"
  482. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  483. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  484. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  485. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  486. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  487. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  488. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  489. if [[ -z "${mariadb_pas}" ]]; then
  490. echo_content red "密码不能为空"
  491. else
  492. break
  493. fi
  494. done
  495. if [[ "${mariadb_ip}" == "trojan-panel-mariadb" ]]; then
  496. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "drop database trojan_panel_db;" &&
  497. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "create database trojan_panel_db;"
  498. else
  499. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "drop database trojan_panel_db;" &>/dev/null &&
  500. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "create database trojan_panel_db;" &>/dev/null
  501. fi
  502. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  503. [[ -z "${redis_host}" ]] && redis_host="trojan-panel-redis"
  504. read -r -p "请输入Redis的端口(默认:本机Redis端口): " redis_port
  505. [[ -z "${redis_port}" ]] && redis_port=6379
  506. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  507. if [[ -z "${redis_pass}" ]]; then
  508. echo_content red "密码不能为空"
  509. else
  510. break
  511. fi
  512. done
  513. if [[ "${mariadb_ip}" == "trojan-panel-redis" ]]; then
  514. docker exec trojan-panel-redis redis-cli -a "${redis_pass}" -e "flushall" &>/dev/null
  515. else
  516. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  517. fi
  518. docker pull jonssonyan/trojan-panel &&
  519. docker run -d --name trojan-panel --restart always \
  520. --network=trojan-panel-network \
  521. -p 8081:8081 \
  522. -v ${CADDY_SRV}:${TROJAN_PANEL_WEBFILE} \
  523. -v ${TROJAN_PANEL_LOGS}:${TROJAN_PANEL_LOGS} \
  524. -v /etc/localtime:/etc/localtime \
  525. -e "mariadb_ip=${mariadb_ip}" \
  526. -e "mariadb_port=${mariadb_port}" \
  527. -e "mariadb_user=${mariadb_user}" \
  528. -e "mariadb_pas=${mariadb_pas}" \
  529. -e "redis_host=${redis_host}" \
  530. -e "redis_port=${redis_port}" \
  531. -e "redis_pass=${redis_pass}" \
  532. jonssonyan/trojan-panel
  533. if [[ -n $(docker ps -q -f "name=^trojan-panel$") ]]; then
  534. echo_content skyBlue "---> Trojan Panel后端安装完成"
  535. else
  536. echo_content red "---> Trojan Panel后端安装失败"
  537. exit 0
  538. fi
  539. else
  540. echo_content skyBlue "---> 你已经安装了Trojan Panel"
  541. fi
  542. if [[ -z $(docker ps -q -f "name=^trojan-panel-ui$") ]]; then
  543. # 配置Nginx
  544. cat >${NGINX_CONFIG} <<-EOF
  545. server {
  546. listen 80;
  547. listen 443 ssl;
  548. server_name localhost;
  549. #强制ssl
  550. ssl on;
  551. ssl_certificate ${CADDY_ACME}${domain}/${domain}.crt;
  552. ssl_certificate_key ${CADDY_ACME}${domain}/${domain}.key;
  553. #缓存有效期
  554. ssl_session_timeout 5m;
  555. #安全链接可选的加密协议
  556. ssl_protocols TLSv1 TLSv1.1 TLSv1.2;
  557. #加密算法
  558. ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
  559. #使用服务器端的首选算法
  560. ssl_prefer_server_ciphers on;
  561. #access_log /var/log/nginx/host.access.log main;
  562. location / {
  563. root ${TROJAN_PANEL_UI_DATA};
  564. index index.html index.htm;
  565. }
  566. location /api {
  567. proxy_pass http://trojan-panel:8081;
  568. }
  569. #error_page 404 /404.html;
  570. #497 http->https
  571. error_page 497 https://\$host:8888\$uri?\$args;
  572. # redirect server error pages to the static page /50x.html
  573. #
  574. error_page 500 502 503 504 /50x.html;
  575. location = /50x.html {
  576. root /usr/share/nginx/html;
  577. }
  578. }
  579. EOF
  580. docker pull jonssonyan/trojan-panel-ui &&
  581. docker run -d --name trojan-panel-ui --restart always \
  582. --network=trojan-panel-network \
  583. -p 8888:80 \
  584. -v ${NGINX_CONFIG}:/etc/nginx/conf.d/default.conf \
  585. -v ${CADDY_ACME}"${domain}":${CADDY_ACME}"${domain}" \
  586. jonssonyan/trojan-panel-ui
  587. if [[ -n $(docker ps -q -f "name=^trojan-panel-ui$") ]]; then
  588. echo_content skyBlue "---> Trojan Panel前端安装完成"
  589. else
  590. echo_content red "---> Trojan Panel前端安装失败"
  591. exit 0
  592. fi
  593. else
  594. echo_content skyBlue "---> 你已经安装了Trojan Panel UI"
  595. fi
  596. echo_content red "\n=============================================================="
  597. echo_content skyBlue "Trojan Panel 安装成功"
  598. echo_content yellow "MariaDB ${mariadb_user}的密码(请妥善保存): ${mariadb_pas}"
  599. echo_content yellow "Redis的密码(请妥善保存): ${redis_pass}"
  600. echo_content yellow "管理面板地址: https://${domain}:8888"
  601. echo_content yellow "系统管理员 默认用户名: sysadmin 默认密码: 123456 请及时登陆管理面板修改密码"
  602. echo_content yellow "Trojan Panel私钥和证书目录: ${CADDY_ACME}${domain}/"
  603. echo_content red "\n=============================================================="
  604. }
  605. install_trojan_panel_core() {
  606. if [[ -z $(docker ps -q -f "name=^trojan-panel-core$") ]]; then
  607. echo_content green "---> 安装Trojan Panel Core"
  608. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  609. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  610. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  611. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  612. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  613. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  614. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  615. if [[ -z "${mariadb_pas}" ]]; then
  616. echo_content red "密码不能为空"
  617. else
  618. break
  619. fi
  620. done
  621. read -r -p "请输入数据库名称(默认:trojan_panel_db): " database
  622. [[ -z "${database}" ]] && database="trojan_panel_db"
  623. read -r -p "请输入数据库的用户表名称(默认:account): " account_table
  624. [[ -z "${account_table}" ]] && account_table="account"
  625. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  626. [[ -z "${redis_host}" ]] && redis_host="trojan-panel-redis"
  627. read -r -p "请输入Redis的端口(默认:本机Redis端口): " redis_port
  628. [[ -z "${redis_port}" ]] && redis_port=6379
  629. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  630. if [[ -z "${redis_pass}" ]]; then
  631. echo_content red "密码不能为空"
  632. else
  633. break
  634. fi
  635. done
  636. docker pull jonssonyan/trojan-panel-core &&
  637. docker run -d --name trojan-panel-core --restart always \
  638. --network=trojan-panel-network \
  639. -p 443:443 \
  640. -p 8100:8100 \
  641. -v ${TROJAN_PANEL_CORE_LOGS}:${TROJAN_PANEL_CORE_LOGS} \
  642. -v /etc/localtime:/etc/localtime \
  643. -e "mariadb_ip=${mariadb_ip}" \
  644. -e "mariadb_port=${mariadb_port}" \
  645. -e "mariadb_user=${mariadb_user}" \
  646. -e "mariadb_pas=${mariadb_pas}" \
  647. -e "database=${database}" \
  648. -e "account-table=${account_table}" \
  649. -e "redis_host=${redis_host}" \
  650. -e "redis_port=${redis_port}" \
  651. -e "redis_pass=${redis_pass}" \
  652. jonssonyan/trojan-panel-core
  653. if [[ -n $(docker ps -q -f "name=^trojan-panel-core$") ]]; then
  654. echo_content skyBlue "---> Trojan Panel Core安装完成"
  655. else
  656. echo_content red "---> Trojan Panel Core后端安装失败"
  657. exit 0
  658. fi
  659. else
  660. echo_content skyBlue "---> 你已经安装了Trojan Panel Core"
  661. fi
  662. }
  663. # 安装TrojanGFW 数据库版
  664. install_trojan_gfw() {
  665. if [[ -z $(docker ps -q -f "name=^trojan-panel-trojanGFW$") ]]; then
  666. echo_content green "---> 安装TrojanGFW"
  667. read -r -p "请输入TrojanGFW的端口(默认:443): " trojanGFW_port
  668. [[ -z "${trojanGFW_port}" ]] && trojanGFW_port=443
  669. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  670. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  671. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  672. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  673. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  674. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  675. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  676. if [[ -z "${mariadb_pas}" ]]; then
  677. echo_content red "密码不能为空"
  678. else
  679. break
  680. fi
  681. done
  682. cat >${TROJANGFW_CONFIG} <<EOF
  683. {
  684. "run_type": "server",
  685. "local_addr": "0.0.0.0",
  686. "local_port": ${trojanGFW_port},
  687. "remote_addr": "${remote_addr}",
  688. "remote_port": 80,
  689. "password": [],
  690. "log_level": 1,
  691. "ssl": {
  692. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  693. "key": "${CADDY_ACME}${domain}/${domain}.key",
  694. "key_password": "",
  695. "cipher": "ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384",
  696. "cipher_tls13": "TLS_AES_128_GCM_SHA256:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_256_GCM_SHA384",
  697. "prefer_server_cipher": true,
  698. "alpn": [
  699. "http/1.1"
  700. ],
  701. "alpn_port_override": {
  702. "h2": 81
  703. },
  704. "reuse_session": true,
  705. "session_ticket": false,
  706. "session_timeout": 600,
  707. "plain_http_response": "",
  708. "curves": "",
  709. "dhparam": ""
  710. },
  711. "tcp": {
  712. "prefer_ipv4": false,
  713. "no_delay": true,
  714. "keep_alive": true,
  715. "reuse_port": false,
  716. "fast_open": false,
  717. "fast_open_qlen": 20
  718. },
  719. "mysql": {
  720. "enabled": true,
  721. "server_addr": "${mariadb_ip}",
  722. "server_port": ${mariadb_port},
  723. "database": "trojan_panel_db",
  724. "username": "${mariadb_user}",
  725. "password": "${mariadb_pas}",
  726. "key": "",
  727. "cert": "",
  728. "ca": ""
  729. }
  730. }
  731. EOF
  732. docker pull trojangfw/trojan &&
  733. docker run -d --name trojan-panel-trojanGFW --restart always \
  734. --network=trojan-panel-network \
  735. -p ${trojanGFW_port}:${trojanGFW_port} \
  736. -v ${TROJANGFW_CONFIG}:"/config/config.json" \
  737. -v ${CADDY_ACME}:${CADDY_ACME} \
  738. trojangfw/trojan
  739. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGFW$") ]]; then
  740. echo_content skyBlue "---> TrojanGFW 数据库版 安装完成"
  741. echo_content red "\n=============================================================="
  742. echo_content skyBlue "TrojanGFW+Caddy+Web+TLS节点 数据库版 安装成功"
  743. echo_content yellow "域名: ${domain}"
  744. echo_content yellow "TrojanGFW的端口: ${trojanGFW_port}"
  745. echo_content yellow "TrojanGFW的密码: 用户名&密码"
  746. echo_content red "\n=============================================================="
  747. else
  748. echo_content red "---> TrojanGFW 数据库版 安装失败"
  749. exit 0
  750. fi
  751. else
  752. echo_content skyBlue "---> 你已经安装了TrojanGFW 数据库版"
  753. fi
  754. }
  755. # 安装TrojanGFW 单机版
  756. install_trojan_gfw_standalone() {
  757. if [[ -z $(docker ps -q -f "name=^trojan-panel-trojanGFW-standalone$") ]]; then
  758. echo_content green "---> 安装TrojanGFW"
  759. read -r -p "请输入TrojanGFW的端口(默认:443): " trojanGFW_port
  760. [[ -n ${trojanGFW_port} ]] && trojanGFW_port=443
  761. while read -r -p "请输入TrojanGFW的密码(必填): " trojan_pas; do
  762. if [[ -z "${trojan_pas}" ]]; then
  763. echo_content red "密码不能为空"
  764. else
  765. break
  766. fi
  767. done
  768. cat >${TROJANGFW_STANDALONE_CONFIG} <<EOF
  769. {
  770. "run_type": "server",
  771. "local_addr": "0.0.0.0",
  772. "local_port": ${trojanGFW_port},
  773. "remote_addr": "${remote_addr}",
  774. "remote_port": 80,
  775. "password": [
  776. "${trojan_pas}"
  777. ],
  778. "log_level": 1,
  779. "ssl": {
  780. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  781. "key": "${CADDY_ACME}${domain}/${domain}.key",
  782. "key_password": "",
  783. "cipher": "ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384",
  784. "cipher_tls13": "TLS_AES_128_GCM_SHA256:TLS_CHACHA20_POLY1305_SHA256:TLS_AES_256_GCM_SHA384",
  785. "prefer_server_cipher": true,
  786. "alpn": [
  787. "http/1.1"
  788. ],
  789. "alpn_port_override": {
  790. "h2": 81
  791. },
  792. "reuse_session": true,
  793. "session_ticket": false,
  794. "session_timeout": 600,
  795. "plain_http_response": "",
  796. "curves": "",
  797. "dhparam": ""
  798. },
  799. "tcp": {
  800. "prefer_ipv4": false,
  801. "no_delay": true,
  802. "keep_alive": true,
  803. "reuse_port": false,
  804. "fast_open": false,
  805. "fast_open_qlen": 20
  806. },
  807. "mysql": {
  808. "enabled": false,
  809. "server_addr": "127.0.0.1",
  810. "server_port": 3306,
  811. "database": "",
  812. "username": "",
  813. "password": "",
  814. "key": "",
  815. "cert": "",
  816. "ca": ""
  817. }
  818. }
  819. EOF
  820. docker pull trojangfw/trojan &&
  821. docker run -d --name trojan-panel-trojanGFW-standalone --restart always \
  822. --network=trojan-panel-network \
  823. -p ${trojanGFW_port}:${trojanGFW_port} \
  824. -v ${TROJANGFW_STANDALONE_CONFIG}:"/config/config.json" \
  825. -v ${CADDY_ACME}:${CADDY_ACME} \
  826. trojangfw/trojan
  827. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGFW-standalone$") ]]; then
  828. echo_content skyBlue "---> TrojanGFW 单机版 安装完成"
  829. echo_content red "\n=============================================================="
  830. echo_content skyBlue "TrojanGFW+Caddy+Web+TLS节点 单机版 安装成功"
  831. echo_content yellow "域名: ${domain}"
  832. echo_content yellow "TrojanGFW的端口: ${trojanGFW_port}"
  833. echo_content yellow "TrojanGFW的密码: ${trojan_pas}"
  834. echo_content red "\n=============================================================="
  835. else
  836. echo_content red "---> TrojanGFW 单机版 安装失败"
  837. exit 0
  838. fi
  839. else
  840. echo_content skyBlue "---> 你已经安装了TrojanGFW 单机版"
  841. fi
  842. }
  843. # 安装TrojanGO 数据库版
  844. install_trojanGO() {
  845. if [[ -z $(docker ps -q -f "name=^trojan-panel-trojanGO$") ]]; then
  846. echo_content green "---> 安装TrojanGO 数据库版"
  847. read -r -p "请输入TrojanGO的端口(默认:443): " trojanGO_port
  848. [[ -z "${trojanGO_port}" ]] && trojanGO_port=443
  849. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  850. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  851. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  852. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  853. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  854. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  855. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  856. if [[ -z "${mariadb_pas}" ]]; then
  857. echo_content red "密码不能为空"
  858. else
  859. break
  860. fi
  861. done
  862. while read -r -p "是否开启多路复用?(false/关闭 true/开启 默认:true/开启): " trojanGO_mux_enable; do
  863. if [[ -z "${trojanGO_mux_enable}" || ${trojanGO_mux_enable} == true ]]; then
  864. trojanGO_mux_enable=true
  865. break
  866. else
  867. if [[ ${trojanGO_mux_enable} != false ]]; then
  868. echo_content red "不可以输入除false和true之外的其他字符"
  869. else
  870. break
  871. fi
  872. fi
  873. done
  874. while read -r -p "是否开启Websocket?(false/关闭 true/开启 默认:false/关闭): " trojanGO_websocket_enable; do
  875. if [[ -z "${trojanGO_websocket_enable}" || ${trojanGO_websocket_enable} == false ]]; then
  876. trojanGO_websocket_enable=false
  877. break
  878. else
  879. if [[ ${trojanGO_websocket_enable} != true ]]; then
  880. echo_content red "不可以输入除false和true之外的其他字符"
  881. else
  882. read -r -p "请输入Websocket路径(默认:trojan-panel-websocket-path): " trojanGO_websocket_path
  883. [[ -z "${trojanGO_websocket_path}" ]] && trojanGO_websocket_path="trojan-panel-websocket-path"
  884. break
  885. fi
  886. fi
  887. done
  888. while read -r -p "是否启用Shadowsocks AEAD加密?(false/关闭 true/开启 默认:false/关闭): " trojanGO_shadowsocks_enable; do
  889. if [[ -z "${trojanGO_shadowsocks_enable}" || ${trojanGO_shadowsocks_enable} == false ]]; then
  890. trojanGO_shadowsocks_enable=false
  891. break
  892. else
  893. if [[ ${trojanGO_shadowsocks_enable} != true ]]; then
  894. echo_content yellow "不可以输入除false和true之外的其他字符"
  895. else
  896. echo_content skyBlue "Shadowsocks AEAD加密方式如下:"
  897. echo_content yellow "1. AES-128-GCM(默认)"
  898. echo_content yellow "2. CHACHA20-IETF-POLY1305"
  899. echo_content yellow "3. AES-256-GCM"
  900. read -r -p "请输入Shadowsocks AEAD加密方式(默认:1): " select_method_type
  901. [[ -z "${select_method_type}" ]] && select_method_type=1
  902. case ${select_method_type} in
  903. 1)
  904. trojanGO_shadowsocks_method="AES-128-GCM"
  905. ;;
  906. 2)
  907. trojanGO_shadowsocks_method="CHACHA20-IETF-POLY1305"
  908. ;;
  909. 3)
  910. trojanGO_shadowsocks_method="AES-256-GCM"
  911. ;;
  912. *)
  913. trojanGO_shadowsocks_method="AES-128-GCM"
  914. ;;
  915. esac
  916. while read -r -p "请输入Shadowsocks AEAD加密密码(必填): " trojanGO_shadowsocks_password; do
  917. if [[ -z "${trojanGO_shadowsocks_password}" ]]; then
  918. echo_content red "密码不能为空"
  919. else
  920. break
  921. fi
  922. done
  923. break
  924. fi
  925. fi
  926. done
  927. cat >${TROJANGO_CONFIG} <<EOF
  928. {
  929. "run_type": "server",
  930. "local_addr": "0.0.0.0",
  931. "local_port": ${trojanGO_port},
  932. "remote_addr": "${remote_addr}",
  933. "remote_port": 80,
  934. "log_level": 1,
  935. "log_file": "",
  936. "password": [],
  937. "disable_http_check": false,
  938. "udp_timeout": 60,
  939. "ssl": {
  940. "verify": true,
  941. "verify_hostname": true,
  942. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  943. "key": "${CADDY_ACME}${domain}/${domain}.key",
  944. "key_password": "",
  945. "cipher": "",
  946. "curves": "",
  947. "prefer_server_cipher": false,
  948. "sni": "",
  949. "alpn": [
  950. "http/1.1"
  951. ],
  952. "session_ticket": true,
  953. "reuse_session": true,
  954. "plain_http_response": "",
  955. "fallback_addr": "",
  956. "fallback_port": 80,
  957. "fingerprint": ""
  958. },
  959. "tcp": {
  960. "no_delay": true,
  961. "keep_alive": true,
  962. "prefer_ipv4": false
  963. },
  964. "mux": {
  965. "enabled": ${trojanGO_mux_enable},
  966. "concurrency": 8,
  967. "idle_timeout": 60
  968. },
  969. "websocket": {
  970. "enabled": ${trojanGO_websocket_enable},
  971. "path": "/${trojanGO_websocket_path}",
  972. "host": "${domain}"
  973. },
  974. "shadowsocks": {
  975. "enabled": ${trojanGO_shadowsocks_enable},
  976. "method": "${trojanGO_shadowsocks_method}",
  977. "password": "${trojanGO_shadowsocks_password}"
  978. },
  979. "mysql": {
  980. "enabled": true,
  981. "server_addr": "${mariadb_ip}",
  982. "server_port": ${mariadb_port},
  983. "database": "trojan_panel_db",
  984. "username": "${mariadb_user}",
  985. "password": "${mariadb_pas}",
  986. "check_rate": 60
  987. }
  988. }
  989. EOF
  990. docker pull p4gefau1t/trojan-go &&
  991. docker run -d --name trojan-panel-trojanGO --restart=always \
  992. --network=trojan-panel-network \
  993. -p ${trojanGO_port}:${trojanGO_port} \
  994. -v ${TROJANGO_CONFIG}:"/etc/trojan-go/config.json" \
  995. -v ${CADDY_ACME}:${CADDY_ACME} \
  996. p4gefau1t/trojan-go
  997. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGO$") ]]; then
  998. echo_content skyBlue "---> TrojanGO 数据库版 安装完成"
  999. echo_content red "\n=============================================================="
  1000. echo_content skyBlue "TrojanGO+Caddy+Web+TLS+Websocket节点 数据库版 安装成功"
  1001. echo_content yellow "域名: ${domain}"
  1002. echo_content yellow "TrojanGO的端口: ${trojanGO_port}"
  1003. echo_content yellow "TrojanGO的密码: 用户名&密码"
  1004. echo_content yellow "TrojanGO私钥和证书目录: ${CADDY_ACME}${domain}/"
  1005. if [[ ${trojanGO_websocket_enable} == true ]]; then
  1006. echo_content yellow "Websocket路径: ${trojanGO_websocket_path}"
  1007. fi
  1008. if [[ ${trojanGO_shadowsocks_enable} == true ]]; then
  1009. echo_content yellow "Shadowsocks AEAD加密方式: ${trojanGO_shadowsocks_method}"
  1010. echo_content yellow "Shadowsocks AEAD加密密码: ${trojanGO_shadowsocks_password}"
  1011. fi
  1012. echo_content red "\n=============================================================="
  1013. else
  1014. echo_content red "---> TrojanGO 数据库版 安装失败"
  1015. exit 0
  1016. fi
  1017. else
  1018. echo_content skyBlue "---> 你已经安装了TrojanGO 数据库版"
  1019. fi
  1020. }
  1021. # 安装TrojanGO 单机版
  1022. install_trojanGO_standalone() {
  1023. if [[ -z $(docker ps -q -f "name=^trojan-panel-trojanGO-standalone$") ]]; then
  1024. echo_content green "---> 安装TrojanGO 单机版"
  1025. read -r -p "请输入TrojanGO的端口(默认:443): " trojanGO_port
  1026. [[ -z "${trojanGO_port}" ]] && trojanGO_port=443
  1027. while read -r -p "请输入TrojanGO的密码(必填): " trojan_pas; do
  1028. if [[ -z "${trojan_pas}" ]]; then
  1029. echo_content red "密码不能为空"
  1030. else
  1031. break
  1032. fi
  1033. done
  1034. while read -r -p "是否开启多路复用?(false/关闭 true/开启 默认:true/开启): " trojanGO_mux_enable; do
  1035. if [[ -z "${trojanGO_mux_enable}" || ${trojanGO_mux_enable} == true ]]; then
  1036. trojanGO_mux_enable=true
  1037. break
  1038. else
  1039. if [[ ${trojanGO_mux_enable} != false ]]; then
  1040. echo_content red "不可以输入除false和true之外的其他字符"
  1041. else
  1042. break
  1043. fi
  1044. fi
  1045. done
  1046. while read -r -p "是否开启Websocket?(false/关闭 true/开启 默认:false/关闭): " trojanGO_websocket_enable; do
  1047. if [[ -z "${trojanGO_websocket_enable}" || ${trojanGO_websocket_enable} == false ]]; then
  1048. trojanGO_websocket_enable=false
  1049. break
  1050. else
  1051. if [[ ${trojanGO_websocket_enable} != true ]]; then
  1052. echo_content red "不可以输入除false和true之外的其他字符"
  1053. else
  1054. read -r -p "请输入Websocket路径(默认:trojan-panel-websocket-path): " trojanGO_websocket_path
  1055. [[ -z "${trojanGO_websocket_path}" ]] && trojanGO_websocket_path="trojan-panel-websocket-path"
  1056. break
  1057. fi
  1058. fi
  1059. done
  1060. while read -r -p "是否启用Shadowsocks AEAD加密?(false/关闭 true/开启 默认:false/关闭): " trojanGO_shadowsocks_enable; do
  1061. if [[ -z "${trojanGO_shadowsocks_enable}" || ${trojanGO_shadowsocks_enable} == false ]]; then
  1062. trojanGO_shadowsocks_enable=false
  1063. break
  1064. else
  1065. if [[ ${trojanGO_shadowsocks_enable} != true ]]; then
  1066. echo_content yellow "不可以输入除false和true之外的其他字符"
  1067. else
  1068. echo_content skyBlue "Shadowsocks AEAD加密方式如下:"
  1069. echo_content yellow "1. AES-128-GCM(默认)"
  1070. echo_content yellow "2. CHACHA20-IETF-POLY1305"
  1071. echo_content yellow "3. AES-256-GCM"
  1072. read -r -p "请输入Shadowsocks AEAD加密方式(默认:1): " select_method_type
  1073. [[ -z "${select_method_type}" ]] && select_method_type=1
  1074. case ${select_method_type} in
  1075. 1)
  1076. trojanGO_shadowsocks_method="AES-128-GCM"
  1077. ;;
  1078. 2)
  1079. trojanGO_shadowsocks_method="CHACHA20-IETF-POLY1305"
  1080. ;;
  1081. 3)
  1082. trojanGO_shadowsocks_method="AES-256-GCM"
  1083. ;;
  1084. *)
  1085. trojanGO_shadowsocks_method="AES-128-GCM"
  1086. ;;
  1087. esac
  1088. while read -r -p "请输入Shadowsocks AEAD加密密码(必填): " trojanGO_shadowsocks_password; do
  1089. if [[ -z "${trojanGO_shadowsocks_password}" ]]; then
  1090. echo_content red "密码不能为空"
  1091. else
  1092. break
  1093. fi
  1094. done
  1095. break
  1096. fi
  1097. fi
  1098. done
  1099. cat >${TROJANGO_STANDALONE_CONFIG} <<EOF
  1100. {
  1101. "run_type": "server",
  1102. "local_addr": "0.0.0.0",
  1103. "local_port": ${trojanGO_port},
  1104. "remote_addr": "${remote_addr}",
  1105. "remote_port": 80,
  1106. "log_level": 1,
  1107. "log_file": "",
  1108. "password": [
  1109. "${trojan_pas}"
  1110. ],
  1111. "disable_http_check": false,
  1112. "udp_timeout": 60,
  1113. "ssl": {
  1114. "verify": true,
  1115. "verify_hostname": true,
  1116. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  1117. "key": "${CADDY_ACME}${domain}/${domain}.key",
  1118. "key_password": "",
  1119. "cipher": "",
  1120. "curves": "",
  1121. "prefer_server_cipher": false,
  1122. "sni": "",
  1123. "alpn": [
  1124. "http/1.1"
  1125. ],
  1126. "session_ticket": true,
  1127. "reuse_session": true,
  1128. "plain_http_response": "",
  1129. "fallback_addr": "",
  1130. "fallback_port": 80,
  1131. "fingerprint": ""
  1132. },
  1133. "tcp": {
  1134. "no_delay": true,
  1135. "keep_alive": true,
  1136. "prefer_ipv4": false
  1137. },
  1138. "mux": {
  1139. "enabled": ${trojanGO_mux_enable},
  1140. "concurrency": 8,
  1141. "idle_timeout": 60
  1142. },
  1143. "websocket": {
  1144. "enabled": ${trojanGO_websocket_enable},
  1145. "path": "/${trojanGO_websocket_path}",
  1146. "host": "${domain}"
  1147. },
  1148. "shadowsocks": {
  1149. "enabled": ${trojanGO_shadowsocks_enable},
  1150. "method": "${trojanGO_shadowsocks_method}",
  1151. "password": "${trojanGO_shadowsocks_password}"
  1152. },
  1153. "mysql": {
  1154. "enabled": false,
  1155. "server_addr": "localhost",
  1156. "server_port": 3306,
  1157. "database": "",
  1158. "username": "",
  1159. "password": "",
  1160. "check_rate": 60
  1161. }
  1162. }
  1163. EOF
  1164. docker pull p4gefau1t/trojan-go &&
  1165. docker run -d --name trojan-panel-trojanGO-standalone --restart=always \
  1166. --network=trojan-panel-network \
  1167. -p ${trojanGO_port}:${trojanGO_port} \
  1168. -v ${TROJANGO_STANDALONE_CONFIG}:"/etc/trojan-go/config.json" \
  1169. -v ${CADDY_ACME}:${CADDY_ACME} \
  1170. p4gefau1t/trojan-go
  1171. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGO-standalone$") ]]; then
  1172. echo_content skyBlue "---> TrojanGO 单机版 安装完成"
  1173. echo_content red "\n=============================================================="
  1174. echo_content skyBlue "TrojanGO+Caddy+Web+TLS+Websocket节点 单机版 安装成功"
  1175. echo_content yellow "域名: ${domain}"
  1176. echo_content yellow "TrojanGO的端口: ${trojanGO_port}"
  1177. echo_content yellow "TrojanGO的密码: ${trojan_pas}"
  1178. echo_content yellow "TrojanGO私钥和证书目录: ${CADDY_ACME}${domain}/"
  1179. if [[ ${trojanGO_websocket_enable} == true ]]; then
  1180. echo_content yellow "Websocket路径: ${trojanGO_websocket_path}"
  1181. fi
  1182. if [[ ${trojanGO_shadowsocks_enable} == true ]]; then
  1183. echo_content yellow "Shadowsocks AEAD加密方式: ${trojanGO_shadowsocks_method}"
  1184. echo_content yellow "Shadowsocks AEAD加密密码: ${trojanGO_shadowsocks_password}"
  1185. fi
  1186. echo_content red "\n=============================================================="
  1187. else
  1188. echo_content red "---> TrojanGO 单机版 安装失败"
  1189. exit 0
  1190. fi
  1191. else
  1192. echo_content skyBlue "---> 你已经了安装了TrojanGO 单机版"
  1193. fi
  1194. }
  1195. install_hysteria() {
  1196. if [[ -z $(docker ps -q -f "name=^trojan-panel-hysteria$") ]]; then
  1197. echo_content green "---> 安装Hysteria 数据库版"
  1198. echo_content skyBlue "Hysteria的模式如下:"
  1199. echo_content yellow "1. udp(默认)"
  1200. echo_content yellow "2. faketcp"
  1201. read -r -p "请输入Hysteria的模式(默认:1): " selectProtocolType
  1202. [[ -z "${selectProtocolType}" ]] && selectProtocolType=1
  1203. case ${selectProtocolType} in
  1204. 1)
  1205. hysteria_protocol="udp"
  1206. ;;
  1207. 2)
  1208. hysteria_protocol="faketcp"
  1209. ;;
  1210. *)
  1211. hysteria_protocol="udp"
  1212. ;;
  1213. esac
  1214. read -r -p "请输入Hysteria的端口(默认:443): " hysteria_port
  1215. [[ -z "${hysteria_port}" ]] && hysteria_port=443
  1216. read -r -p "请输入单客户端最大上传速度/Mbps(默认:100): " hysteria_up_mbps
  1217. [[ -z "${hysteria_up_mbps}" ]] && hysteria_up_mbps=100
  1218. read -r -p "请输入单客户端最大下载速度/Mbps(默认:100): " hysteria_down_mbps
  1219. [[ -z "${hysteria_down_mbps}" ]] && hysteria_down_mbps=100
  1220. read -r -p "请输入Trojan Panel的域名(默认:本机): " trojan_panel_url
  1221. [[ -z "${trojan_panel_url}" ]] && trojan_panel_url=${domain}
  1222. cat >${HYSTERIA_CONFIG} <<EOF
  1223. {
  1224. "listen": ":${hysteria_port}",
  1225. "protocol": "${hysteria_protocol}",
  1226. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  1227. "key": "${CADDY_ACME}${domain}/${domain}.key",
  1228. "up_mbps": ${hysteria_up_mbps},
  1229. "down_mbps": ${hysteria_down_mbps},
  1230. "auth": {
  1231. "mode": "external",
  1232. "config": {
  1233. "http": "https://${trojan_panel_url}:8888/api/auth/hysteria"
  1234. }
  1235. },
  1236. "prometheus_listen": ":8801"
  1237. }
  1238. EOF
  1239. docker pull tobyxdd/hysteria &&
  1240. docker run -d --name trojan-panel-hysteria --restart=always \
  1241. --network=trojan-panel-network \
  1242. -p ${hysteria_port}:${hysteria_port}/udp \
  1243. -p 8801:8801 \
  1244. -v ${HYSTERIA_CONFIG}:/etc/hysteria.json \
  1245. -v ${CADDY_ACME}:${CADDY_ACME} \
  1246. tobyxdd/hysteria -c /etc/hysteria.json server
  1247. if [[ -n $(docker ps -q -f "name=^trojan-panel-hysteria$") ]]; then
  1248. echo_content skyBlue "---> Hysteria 数据版 安装完成"
  1249. echo_content red "\n=============================================================="
  1250. echo_content skyBlue "Hysteria节点 数据版 安装成功"
  1251. echo_content yellow "域名: ${domain}"
  1252. echo_content yellow "Hysteria的端口: ${hysteria_port}"
  1253. echo_content yellow "Hysteria的密码: 用户名&密码"
  1254. echo_content yellow "Hysteria私钥和证书目录: ${CADDY_ACME}${domain}/"
  1255. echo_content red "\n=============================================================="
  1256. else
  1257. echo_content red "---> Hysteria 数据版 安装失败"
  1258. exit 0
  1259. fi
  1260. else
  1261. echo_content skyBlue "---> 你已经安装了Hysteria 数据版"
  1262. fi
  1263. }
  1264. install_hysteria_standalone() {
  1265. if [[ -z $(docker ps -q -f "name=^trojan-panel-hysteria-standalone$") ]]; then
  1266. echo_content green "---> 安装Hysteria 单机版"
  1267. echo_content skyBlue "Hysteria的模式如下:"
  1268. echo_content yellow "1. udp(默认)"
  1269. echo_content yellow "2. faketcp"
  1270. read -r -p "请输入Hysteria的模式(默认:1): " selectProtocolType
  1271. [[ -z "${selectProtocolType}" ]] && selectProtocolType=1
  1272. case ${selectProtocolType} in
  1273. 1)
  1274. hysteria_protocol="udp"
  1275. ;;
  1276. 2)
  1277. hysteria_protocol="faketcp"
  1278. ;;
  1279. *)
  1280. hysteria_protocol="udp"
  1281. ;;
  1282. esac
  1283. read -r -p "请输入Hysteria的端口(默认:443): " hysteria_port
  1284. [[ -z ${hysteria_port} ]] && hysteria_port=443
  1285. read -r -p "请输入单客户端最大上传速度/Mbps(默认:100): " hysteria_up_mbps
  1286. [[ -z "${hysteria_up_mbps}" ]] && hysteria_up_mbps=100
  1287. read -r -p "请输入单客户端最大下载速度/Mbps(默认:100): " hysteria_down_mbps
  1288. [[ -z "${hysteria_down_mbps}" ]] && hysteria_down_mbps=100
  1289. while read -r -p "请输入Hysteria的密码(必填): " hysteria_password; do
  1290. if [[ -z ${hysteria_password} ]]; then
  1291. echo_content red "密码不能为空"
  1292. else
  1293. break
  1294. fi
  1295. done
  1296. cat >${HYSTERIA_STANDALONE_CONFIG} <<EOF
  1297. {
  1298. "listen": ":${hysteria_port}",
  1299. "protocol": "${hysteria_protocol}",
  1300. "cert": "${CADDY_ACME}${domain}/${domain}.crt",
  1301. "key": "${CADDY_ACME}${domain}/${domain}.key",
  1302. "up_mbps": ${hysteria_up_mbps},
  1303. "down_mbps": ${hysteria_down_mbps},
  1304. "obfs": "${hysteria_password}"
  1305. }
  1306. EOF
  1307. docker pull tobyxdd/hysteria &&
  1308. docker run -d --name trojan-panel-hysteria-standalone --restart=always \
  1309. --network=trojan-panel-network \
  1310. -p ${hysteria_port}:${hysteria_port}/udp \
  1311. -v ${HYSTERIA_STANDALONE_CONFIG}:/etc/hysteria.json \
  1312. -v ${CADDY_ACME}:${CADDY_ACME} \
  1313. tobyxdd/hysteria -c /etc/hysteria.json server
  1314. if [[ -n $(docker ps -q -f "name=^trojan-panel-hysteria-standalone$") ]]; then
  1315. echo_content skyBlue "---> Hysteria 单机版 安装完成"
  1316. echo_content red "\n=============================================================="
  1317. echo_content skyBlue "Hysteria节点 单机版 安装成功"
  1318. echo_content yellow "域名: ${domain}"
  1319. echo_content yellow "Hysteria的端口: ${hysteria_port}"
  1320. echo_content yellow "Hysteria的密码: ${hysteria_password}"
  1321. echo_content yellow "Hysteria私钥和证书目录: ${CADDY_ACME}${domain}/"
  1322. echo_content red "\n=============================================================="
  1323. else
  1324. echo_content red "---> Hysteria 单机版 安装失败"
  1325. exit 0
  1326. fi
  1327. else
  1328. echo_content skyBlue "---> 你已经安装了Hysteria 单机版"
  1329. fi
  1330. }
  1331. # 更新Trojan Panel
  1332. update_trojan_panel() {
  1333. # 判断Trojan Panel是否安装
  1334. if [[ -z $(docker ps -q -f "name=^trojan-panel$") ]]; then
  1335. echo_content red "---> 请先安装Trojan Panel"
  1336. exit 0
  1337. fi
  1338. echo_content green "---> 更新Trojan Panel"
  1339. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  1340. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  1341. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  1342. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  1343. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  1344. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  1345. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  1346. if [[ -z "${mariadb_pas}" ]]; then
  1347. echo_content red "密码不能为空"
  1348. else
  1349. break
  1350. fi
  1351. done
  1352. if [[ "${mariadb_ip}" == "trojan-panel-mariadb" ]]; then
  1353. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "drop database trojan_panel_db;"
  1354. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "create database trojan_panel_db;"
  1355. else
  1356. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "drop database trojan_panel_db;" &>/dev/null
  1357. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "create database trojan_panel_db;" &>/dev/null
  1358. fi
  1359. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  1360. [[ -z "${redis_host}" ]] && redis_host="trojan-panel-redis"
  1361. read -r -p "请输入Redis的端口(默认:本机Redis端口): " redis_port
  1362. [[ -z "${redis_port}" ]] && redis_port=6379
  1363. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  1364. if [[ -z "${redis_pass}" ]]; then
  1365. echo_content red "密码不能为空"
  1366. else
  1367. break
  1368. fi
  1369. done
  1370. if [[ "${mariadb_ip}" == "trojan-panel-redis" ]]; then
  1371. docker exec trojan-panel-redis redis-cli -a "${redis_pass}" -e "flushall" &>/dev/null
  1372. else
  1373. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  1374. fi
  1375. docker rm -f trojan-panel &&
  1376. docker rmi -f jonssonyan/trojan-panel &&
  1377. rm -rf ${TROJAN_PANEL_DATA}
  1378. docker rm -f trojan-panel-ui &&
  1379. docker rmi -f jonssonyan/trojan-panel-ui &&
  1380. rm -rf ${TROJAN_PANEL_UI_DATA}
  1381. docker pull jonssonyan/trojan-panel &&
  1382. docker run -d --name trojan-panel --restart always \
  1383. --network=trojan-panel-network \
  1384. -p 8081:8081 \
  1385. -v ${CADDY_SRV}:${TROJAN_PANEL_WEBFILE} \
  1386. -v ${TROJAN_PANEL_LOGS}:${TROJAN_PANEL_LOGS} \
  1387. -v /etc/localtime:/etc/localtime \
  1388. -e "mariadb_ip=${mariadb_ip}" \
  1389. -e "mariadb_port=${mariadb_port}" \
  1390. -e "mariadb_user=${mariadb_user}" \
  1391. -e "mariadb_pas=${mariadb_pas}" \
  1392. -e "redis_host=${redis_host}" \
  1393. -e "redis_port=${redis_port}" \
  1394. -e "redis_pass=${redis_pass}" \
  1395. jonssonyan/trojan-panel
  1396. if [[ "$?" == "0" ]]; then
  1397. echo_content skyBlue "---> Trojan Panel更新完成"
  1398. else
  1399. echo_content red "---> Trojan Panel更新失败"
  1400. fi
  1401. docker pull jonssonyan/trojan-panel-ui &&
  1402. docker run -d --name trojan-panel-ui --restart always \
  1403. --network=trojan-panel-network \
  1404. -p 8888:80 \
  1405. -v ${NGINX_CONFIG}:/etc/nginx/conf.d/default.conf \
  1406. -v ${CADDY_ACME}"${domain}":${CADDY_ACME}"${domain}" \
  1407. jonssonyan/trojan-panel-ui
  1408. if [[ "$?" == "0" ]]; then
  1409. echo_content skyBlue "---> Trojan Panel UI更新完成"
  1410. else
  1411. echo_content red "---> Trojan Panel UI更新失败"
  1412. fi
  1413. }
  1414. # 更新Trojan Panel Core
  1415. update_trojan_panel_core() {
  1416. # 判断Trojan Panel Core是否安装
  1417. if [[ -z $(docker ps -q -f "name=^trojan-panel-core$") ]]; then
  1418. echo_content red "---> 请先安装Trojan Panel Core"
  1419. exit 0
  1420. fi
  1421. echo_content green "---> 更新Trojan Panel Core"
  1422. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  1423. [[ -z "${mariadb_ip}" ]] && mariadb_ip="trojan-panel-mariadb"
  1424. read -r -p "请输入数据库的端口(默认:本机数据库端口): " mariadb_port
  1425. [[ -z "${mariadb_port}" ]] && mariadb_port=3306
  1426. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  1427. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  1428. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  1429. if [[ -z "${mariadb_pas}" ]]; then
  1430. echo_content red "密码不能为空"
  1431. else
  1432. break
  1433. fi
  1434. done
  1435. read -r -p "请输入数据库名称(默认:trojan_panel_db): " database
  1436. [[ -z "${database}" ]] && database="trojan_panel_db"
  1437. read -r -p "请输入数据库的用户表名称(默认:account): " account_table
  1438. [[ -z "${account_table}" ]] && account_table="account"
  1439. if [[ "${mariadb_ip}" == "trojan-panel-mariadb" ]]; then
  1440. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "drop database trojan_panel_db;"
  1441. docker exec trojan-panel-mariadb mysql -p"${mariadb_pas}" -e "create database trojan_panel_db;"
  1442. else
  1443. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "drop database trojan_panel_db;" &>/dev/null
  1444. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "create database trojan_panel_db;" &>/dev/null
  1445. fi
  1446. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  1447. [[ -z "${redis_host}" ]] && redis_host="trojan-panel-redis"
  1448. read -r -p "请输入Redis的端口(默认:本机Redis端口): " redis_port
  1449. [[ -z "${redis_port}" ]] && redis_port=6379
  1450. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  1451. if [[ -z "${redis_pass}" ]]; then
  1452. echo_content red "密码不能为空"
  1453. else
  1454. break
  1455. fi
  1456. done
  1457. if [[ "${mariadb_ip}" == "trojan-panel-redis" ]]; then
  1458. docker exec trojan-panel-redis redis-cli -a "${redis_pass}" -e "flushall" &>/dev/null
  1459. else
  1460. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  1461. fi
  1462. docker rm -f trojan-panel-core &&
  1463. docker rmi -f jonssonyan/trojan-panel-core &&
  1464. rm -rf ${TROJAN_PANEL_CORE_DATA}
  1465. docker pull jonssonyan/trojan-panel-core &&
  1466. docker run -d --name trojan-panel-core --restart always \
  1467. --network=trojan-panel-network \
  1468. -p 9000-10000:9000-10000 \
  1469. -v ${TROJAN_PANEL_CORE_LOGS}:${TROJAN_PANEL_CORE_LOGS} \
  1470. -v /etc/localtime:/etc/localtime \
  1471. -e "mariadb_ip=${mariadb_ip}" \
  1472. -e "mariadb_port=${mariadb_port}" \
  1473. -e "mariadb_user=${mariadb_user}" \
  1474. -e "mariadb_pas=${mariadb_pas}" \
  1475. -e "database=${database}" \
  1476. -e "account-table=${account_table}" \
  1477. -e "redis_host=${redis_host}" \
  1478. -e "redis_port=${redis_port}" \
  1479. -e "redis_pass=${redis_pass}" \
  1480. jonssonyan/trojan-panel-core
  1481. if [[ "$?" == "0" ]]; then
  1482. echo_content skyBlue "---> Trojan Panel Core更新完成"
  1483. else
  1484. echo_content red "---> Trojan Panel Core更新失败"
  1485. fi
  1486. }
  1487. # 卸载Caddy TLS
  1488. uninstall_caddy_tls() {
  1489. # 判断Caddy TLS是否安装
  1490. if [[ -n $(docker ps -q -f "name=^trojan-panel-caddy$") ]]; then
  1491. echo_content green "---> 卸载Caddy TLS"
  1492. docker rm -f trojan-panel-caddy &&
  1493. rm -rf ${CADDY_DATA}
  1494. echo_content skyBlue "---> Caddy TLS卸载完成"
  1495. else
  1496. echo_content red "---> 请先安装Caddy TLS"
  1497. fi
  1498. }
  1499. # 卸载MariaDB
  1500. uninstall_mariadb() {
  1501. # 判断MariaDB是否安装
  1502. if [[ -n $(docker ps -q -f "name=^trojan-panel-mariadb$") ]]; then
  1503. echo_content green "---> 卸载MariaDB"
  1504. docker rm -f trojan-panel-mariadb &&
  1505. rm -rf ${MARIA_DATA}
  1506. echo_content skyBlue "---> MariaDB卸载完成"
  1507. else
  1508. echo_content red "---> 请先安装MariaDB"
  1509. fi
  1510. }
  1511. # 卸载Redis
  1512. uninstall_redis() {
  1513. # 判断Redis是否安装
  1514. if [[ -n $(docker ps -q -f "name=^trojan-panel-redis$") ]]; then
  1515. echo_content green "---> 卸载Redis"
  1516. docker rm -f trojan-panel-redis &&
  1517. rm -rf ${REDIS_DATA}
  1518. echo_content skyBlue "---> Redis卸载完成"
  1519. else
  1520. echo_content red "---> 请先安装Redis"
  1521. fi
  1522. }
  1523. # 卸载Trojan Panel
  1524. uninstall_trojan_panel() {
  1525. # 判断Trojan Panel是否安装
  1526. if [[ -n $(docker ps -q -f "name=^trojan-panel$") ]]; then
  1527. echo_content green "---> 卸载Trojan Panel"
  1528. docker rm -f trojan-panel &&
  1529. docker rmi -f jonssonyan/trojan-panel &&
  1530. rm -rf ${TROJAN_PANEL_DATA}
  1531. docker rm -f trojan-panel-ui &&
  1532. docker rmi -f jonssonyan/trojan-panel-ui &&
  1533. rm -rf ${TROJAN_PANEL_UI_DATA} &&
  1534. rm -rf ${NGINX_DATA}
  1535. echo_content skyBlue "---> Trojan Panel卸载完成"
  1536. else
  1537. echo_content red "---> 请先安装Trojan Panel"
  1538. fi
  1539. }
  1540. # 卸载Trojan Panel Core
  1541. uninstall_trojan_panel_core() {
  1542. # 判断Trojan Panel Core是否安装
  1543. if [[ -n $(docker ps -q -f "name=^trojan-panel-core$") ]]; then
  1544. echo_content green "---> 卸载Trojan Panel Core"
  1545. docker rm -f trojan-panel-core &&
  1546. docker rmi -f jonssonyan/trojan-panel-core &&
  1547. rm -rf ${TROJAN_PANEL_CORE_DATA}
  1548. echo_content skyBlue "---> Trojan Panel Core卸载完成"
  1549. else
  1550. echo_content red "---> 请先安装Trojan Panel Core"
  1551. fi
  1552. }
  1553. # 卸载TrojanGFW+Caddy+Web+TLS节点 数据库版
  1554. uninstall_trojan_gfw() {
  1555. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGFW$") ]]; then
  1556. echo_content green "---> 卸载TrojanGFW+Caddy+Web+TLS节点 数据库版"
  1557. docker rm -f trojan-panel-trojanGFW &&
  1558. docker rmi -f trojangfw/trojan &&
  1559. rm -f ${TROJANGFW_CONFIG}
  1560. echo_content skyBlue "---> TrojanGFW+Caddy+Web+TLS节点 数据库版卸载完成"
  1561. else
  1562. echo_content red "---> 请先安装TrojanGFW+Caddy+Web+TLS节点 数据库版"
  1563. fi
  1564. }
  1565. # 卸载TrojanGFW+Caddy+Web+TLS节点 单机版
  1566. uninstall_trojan_gfw_standalone() {
  1567. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGFW-standalone$") ]]; then
  1568. echo_content green "---> 卸载TrojanGFW+Caddy+Web+TLS节点 单机版"
  1569. docker rm -f trojan-panel-trojanGFW-standalone &&
  1570. docker rmi -f trojangfw/trojan &&
  1571. rm -f ${TROJANGFW_STANDALONE_CONFIG}
  1572. echo_content skyBlue "---> TrojanGFW+Caddy+Web+TLS节点 单机版卸载完成"
  1573. else
  1574. echo_content red "---> 请先安装TrojanGFW+Caddy+Web+TLS节点 单机版"
  1575. fi
  1576. }
  1577. # 卸载TrojanGo+Caddy+Web+TLS+Websocket节点 数据库版
  1578. uninstall_trojanGO() {
  1579. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGO$") ]]; then
  1580. echo_content green "---> 卸载TrojanGo+Caddy+Web+TLS+Websocket节点 数据库版"
  1581. docker rm -f trojan-panel-trojanGO &&
  1582. docker rmi -f p4gefau1t/trojan-go &&
  1583. rm -f ${TROJANGO_CONFIG}
  1584. echo_content skyBlue "---> TrojanGo+Caddy+Web+TLS+Websocket节点 数据库版卸载完成"
  1585. else
  1586. echo_content red "---> 请先安装TrojanGo+Caddy+Web+TLS+Websocket节点 数据库版"
  1587. fi
  1588. }
  1589. # 卸载TrojanGo+Caddy+Web+TLS+Websocket节点 单机版
  1590. uninstall_trojanGO_standalone() {
  1591. if [[ -n $(docker ps -q -f "name=^trojan-panel-trojanGO-standalone$") ]]; then
  1592. echo_content green "---> 卸载TrojanGo+Caddy+Web+TLS+Websocket节点 单机版"
  1593. docker rm -f trojan-panel-trojanGO-standalone &&
  1594. docker rmi -f p4gefau1t/trojan-go &&
  1595. rm -f ${TROJANGO_STANDALONE_CONFIG}
  1596. echo_content skyBlue "---> TrojanGo+Caddy+Web+TLS+Websocket节点 单机版卸载完成"
  1597. else
  1598. echo_content red "---> 请先安装TrojanGo+Caddy+Web+TLS+Websocket节点 单机版"
  1599. fi
  1600. }
  1601. uninstall_hysteria() {
  1602. if [[ -n $(docker ps -q -f "name=^trojan-panel-hysteria") ]]; then
  1603. echo_content green "---> 卸载Hysteria节点 数据库版"
  1604. docker rm -f trojan-panel-hysteria &&
  1605. docker rmi -f tobyxdd/hysteria &&
  1606. rm -f ${HYSTERIA_CONFIG}
  1607. echo_content skyBlue "---> Hysteria节点 数据库版卸载完成"
  1608. else
  1609. echo_content red "---> 请先安装Hysteria节点 数据库版"
  1610. fi
  1611. }
  1612. uninstall_hysteria_standalone() {
  1613. if [[ -n $(docker ps -q -f "name=^trojan-panel-hysteria-standalone$") ]]; then
  1614. echo_content green "---> 卸载Hysteria节点 单机版"
  1615. docker rm -f trojan-panel-hysteria-standalone &&
  1616. docker rmi -f tobyxdd/hysteria &&
  1617. rm -f ${HYSTERIA_STANDALONE_CONFIG}
  1618. echo_content skyBlue "---> Hysteria节点 单机版卸载完成"
  1619. else
  1620. echo_content red "---> 请先安装Hysteria节点 单机版"
  1621. fi
  1622. }
  1623. uninstall_all() {
  1624. echo_content green "---> 卸载全部Trojan Panel相关的容器"
  1625. docker rm -f "$(docker ps -q -f "name=^trojan-panel")" &&
  1626. docker rmi -f "$(docker images | grep "^trojan-panel" | awk '{print $3}')" &&
  1627. rm -rf ${TP_DATA}
  1628. echo_content skyBlue "---> 卸载全部Trojan Panel相关的容器完成"
  1629. }
  1630. failure_testing() {
  1631. echo_content green "---> 故障检测开始"
  1632. if [[ ! $(docker -v 2>/dev/null) ]]; then
  1633. echo_content red "---> Docker运行异常"
  1634. else
  1635. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-caddy$") ]]; then
  1636. if [[ -z $(docker ps -q -f "name=^trojan-panel-caddy$" -f "status=running") ]]; then
  1637. echo_content red "---> Caddy TLS运行异常"
  1638. else
  1639. domain=$(cat "${DOMAIN_FILE}")
  1640. if [[ -z $(cat "${DOMAIN_FILE}") || ! -d "${CADDY_ACME}${domain}" || ! -f "${CADDY_ACME}${domain}/${domain}.crt" ]]; then
  1641. echo_content red "---> 证书申请异常,请尝试重启服务器将重新申请证书或者重新搭建选择自定义证书选项"
  1642. fi
  1643. fi
  1644. fi
  1645. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-mariadb$") && -z $(docker ps -q -f "name=^trojan-panel-mariadb$" -f "status=running") ]]; then
  1646. echo_content red "---> MariaDB运行异常"
  1647. fi
  1648. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-redis$") && -z $(docker ps -q -f "name=^trojan-panel-redis$" -f "status=running") ]]; then
  1649. echo_content red "---> Redis运行异常"
  1650. fi
  1651. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-ui$") && -z $(docker ps -q -f "name=^trojan-panel-ui$" -f "status=running") ]]; then
  1652. echo_content red "---> Trojan Panel前端运行异常"
  1653. fi
  1654. if [[ -n $(docker ps -a -q -f "name=^trojan-panel$") && -z $(docker ps -q -f "name=^trojan-panel$" -f "status=running") ]]; then
  1655. echo_content red "---> Trojan Panel后端运行异常"
  1656. fi
  1657. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-core$") && -z $(docker ps -q -f "name=^trojan-panel-core$" -f "status=running") ]]; then
  1658. echo_content red "---> Trojan Panel Core运行异常"
  1659. fi
  1660. fi
  1661. echo_content green "---> 故障检测结束"
  1662. }
  1663. # 卸载阿里云内置相关监控
  1664. uninstall_aliyun() {
  1665. # 卸载云监控(Cloudmonitor) Java 版
  1666. /usr/local/cloudmonitor/wrapper/bin/cloudmonitor.sh stop &&
  1667. /usr/local/cloudmonitor/wrapper/bin/cloudmonitor.sh remove &&
  1668. rm -rf /usr/local/cloudmonitor
  1669. # 卸载云盾(安骑士)
  1670. wget --no-check-certificate -O uninstall.sh http://update.aegis.aliyun.com/download/uninstall.sh && chmod +x uninstall.sh && ./uninstall.sh
  1671. wget --no-check-certificate -O quartz_uninstall.sh http://update.aegis.aliyun.com/download/quartz_uninstall.sh && chmod +x quartz_uninstall.sh && ./quartz_uninstall.sh
  1672. pkill aliyun-service
  1673. rm -fr /etc/init.d/agentwatch /usr/sbin/aliyun-service
  1674. rm -rf /usr/local/aegis*
  1675. iptables -I INPUT -s 140.205.201.0/28 -j DROP
  1676. iptables -I INPUT -s 140.205.201.16/29 -j DROP
  1677. iptables -I INPUT -s 140.205.201.32/28 -j DROP
  1678. iptables -I INPUT -s 140.205.225.192/29 -j DROP
  1679. iptables -I INPUT -s 140.205.225.200/30 -j DROP
  1680. iptables -I INPUT -s 140.205.225.184/29 -j DROP
  1681. iptables -I INPUT -s 140.205.225.183/32 -j DROP
  1682. iptables -I INPUT -s 140.205.225.206/32 -j DROP
  1683. iptables -I INPUT -s 140.205.225.205/32 -j DROP
  1684. iptables -I INPUT -s 140.205.225.195/32 -j DROP
  1685. iptables -I INPUT -s 140.205.225.204/32 -j DROP
  1686. }
  1687. main() {
  1688. cd "$HOME" || exit 0
  1689. init_var
  1690. mkdir_tools
  1691. check_sys
  1692. depend_install
  1693. clear
  1694. echo_content red "\n=============================================================="
  1695. echo_content skyBlue "System Required: CentOS 7+/Ubuntu 18+/Debian 10+"
  1696. echo_content skyBlue "Version: v1.0.0"
  1697. echo_content skyBlue "Description: One click Install Trojan Panel server"
  1698. echo_content skyBlue "Author: jonssonyan <https://jonssonyan.com>"
  1699. echo_content skyBlue "Github: https://github.com/trojanpanel/install-script"
  1700. echo_content red "\n=============================================================="
  1701. echo_content yellow "1. 卸载阿里云盾(仅支持阿里云服务器)"
  1702. echo_content yellow "2. 安装BBRPlus(仅支持CentOS系统)"
  1703. echo_content green "\n=============================================================="
  1704. echo_content yellow "3. 安装Trojan Panel"
  1705. echo_content yellow "4. 更新Trojan Panel(注意: 会清除数据)"
  1706. echo_content yellow "5. 卸载Trojan Panel"
  1707. echo_content green "\n=============================================================="
  1708. echo_content yellow "6. 安装Trojan Panel Core"
  1709. echo_content yellow "7. 更新Trojan Panel Core"
  1710. echo_content yellow "8. 卸载Trojan Panel Core"
  1711. echo_content green "\n=============================================================="
  1712. echo_content yellow "9. 卸载Caddy TLS"
  1713. echo_content yellow "10. 卸载MariaDB"
  1714. echo_content yellow "11. 卸载Redis"
  1715. echo_content yellow "12. 卸载全部Trojan Panel相关的容器"
  1716. echo_content green "\n=============================================================="
  1717. echo_content yellow "13. 故障检测"
  1718. read -r -p "请选择:" selectInstall_type
  1719. case ${selectInstall_type} in
  1720. 1)
  1721. uninstall_aliyun
  1722. ;;
  1723. 2)
  1724. install_bbr_plus
  1725. ;;
  1726. 3)
  1727. install_docker
  1728. install_caddy_tls
  1729. install_mariadb
  1730. install_redis
  1731. install_trojan_panel
  1732. ;;
  1733. 4)
  1734. update_trojan_panel
  1735. ;;
  1736. 5)
  1737. uninstall_trojan_panel
  1738. ;;
  1739. 6)
  1740. install_docker
  1741. install_caddy_tls
  1742. install_trojan_panel_core
  1743. ;;
  1744. 7)
  1745. update_trojan_panel_core
  1746. ;;
  1747. 8)
  1748. uninstall_trojan_panel_core
  1749. ;;
  1750. 9)
  1751. uninstall_caddy_tls
  1752. ;;
  1753. 10)
  1754. uninstall_mariadb
  1755. ;;
  1756. 11)
  1757. uninstall_redis
  1758. ;;
  1759. 12)
  1760. uninstall_all
  1761. ;;
  1762. 13)
  1763. failure_testing
  1764. ;;
  1765. *)
  1766. echo_content red "没有这个选项"
  1767. ;;
  1768. esac
  1769. }
  1770. main