install_script.sh 55 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536
  1. #!/usr/bin/env bash
  2. PATH=/bin:/sbin:/usr/bin:/usr/sbin:/usr/local/bin:/usr/local/sbin:~/bin
  3. export PATH
  4. # System Required: CentOS 7+/Ubuntu 18+/Debian 10+
  5. # Version: v2.0.5
  6. # Description: One click Install Trojan Panel server
  7. # Author: jonssonyan <https://jonssonyan.com>
  8. # Github: https://github.com/trojanpanel/install-script
  9. init_var() {
  10. ECHO_TYPE="echo -e"
  11. package_manager=""
  12. release=""
  13. get_arch=""
  14. can_google=0
  15. # Docker
  16. DOCKER_MIRROR='"https://registry.docker-cn.com","https://hub-mirror.c.163.com","https://docker.mirrors.ustc.edu.cn"'
  17. # 项目目录
  18. TP_DATA="/tpdata/"
  19. STATIC_HTML="https://github.com/trojanpanel/install-script/releases/download/v1.0.0/html.tar.gz"
  20. # Caddy
  21. CADDY_DATA="/tpdata/caddy/"
  22. CADDY_Config="/tpdata/caddy/config.json"
  23. CADDY_SRV="/tpdata/caddy/srv/"
  24. CADDY_CERT="/tpdata/caddy/cert/"
  25. CADDY_LOG="/tpdata/caddy/logs/"
  26. DOMAIN_FILE="/tpdata/caddy/domain.lock"
  27. CADDY_CERT_DIR="/tpdata/caddy/cert/certificates/acme-v02.api.letsencrypt.org-directory/"
  28. domain=""
  29. caddy_port=80
  30. caddy_remote_port=8863
  31. your_email=""
  32. ssl_option=1
  33. ssl_module_type=1
  34. ssl_module="acme"
  35. crt_path=""
  36. key_path=""
  37. # MariaDB
  38. MARIA_DATA="/tpdata/mariadb/"
  39. mariadb_ip="127.0.0.1"
  40. mariadb_port=9507
  41. mariadb_user="root"
  42. mariadb_pas=""
  43. #Redis
  44. REDIS_DATA="/tpdata/redis/"
  45. redis_host="127.0.0.1"
  46. redis_port=6378
  47. redis_pass=""
  48. # Trojan Panel
  49. TROJAN_PANEL_DATA="/tpdata/trojan-panel/"
  50. TROJAN_PANEL_WEBFILE="/tpdata/trojan-panel/webfile/"
  51. TROJAN_PANEL_LOGS="/tpdata/trojan-panel/logs/"
  52. # Trojan Panel UI
  53. TROJAN_PANEL_UI_DATA="/tpdata/trojan-panel-ui/"
  54. # Nginx
  55. NGINX_DATA="/tpdata/nginx/"
  56. NGINX_CONFIG="/tpdata/nginx/default.conf"
  57. trojan_panel_ui_port=8888
  58. https_enable=1
  59. # Trojan Panel Core
  60. TROJAN_PANEL_CORE_DATA="/tpdata/trojan-panel-core/"
  61. TROJAN_PANEL_CORE_LOGS="/tpdata/trojan-panel-core/logs/"
  62. TROJAN_PANEL_CORE_SQLITE="/tpdata/trojan-panel-core/config/sqlite/"
  63. database="trojan_panel_db"
  64. account_table="account"
  65. grpc_port=8100
  66. # Update
  67. trojan_panel_current_version=""
  68. trojan_panel_latest_version="v2.0.5"
  69. trojan_panel_core_current_version=""
  70. trojan_panel_core_latest_version="v2.0.4"
  71. # SQL
  72. sql_200="alter table \`system\` add template_config varchar(512) default '' not null comment '模板设置' after email_config;update \`system\` set template_config = \"{\\\"systemName\\\":\\\"Trojan Panel\\\"}\" where name = \"trojan-panel\";insert into \`casbin_rule\` values ('p','sysadmin','/api/nodeServer/nodeServerState','GET','','','');insert into \`casbin_rule\` values ('p','user','/api/node/selectNodeInfo','GET','','','');insert into \`casbin_rule\` values ('p','sysadmin','/api/node/selectNodeInfo','GET','','','');"
  73. sql_203="alter table node add node_server_grpc_port int(10) unsigned default 8100 not null comment 'gRPC端口' after node_server_ip;alter table node_server add grpc_port int(10) unsigned default 8100 not null comment 'gRPC端口' after name;alter table node_xray add xray_flow varchar(32) default 'xtls-rprx-vision' not null comment 'Xray流控' after protocol;alter table node_xray add xray_ss_method varchar(32) default 'aes-256-gcm' not null comment 'Xray Shadowsocks加密方式' after xray_flow;"
  74. sql_205="DROP TABLE IF EXISTS \`file_task\`;CREATE TABLE \`file_task\` ( \`id\` bigint(20) NOT NULL AUTO_INCREMENT COMMENT '自增主键', \`name\` varchar(64) NOT NULL DEFAULT '' COMMENT '文件名称', \`path\` varchar(128) NOT NULL DEFAULT '' COMMENT '文件路径', \`type\` tinyint(2) unsigned NOT NULL DEFAULT '1' COMMENT '类型 1/用户导入 2/服务器导入 3/用户导出 4/服务器导出', \`status\` tinyint(1) NOT NULL DEFAULT '0' COMMENT '状态 -1/失败 0/等待 1/正在执行 2/成功', \`err_msg\` varchar(128) NOT NULL DEFAULT '' COMMENT '错误信息', \`account_id\` bigint(20) unsigned NOT NULL DEFAULT '0' COMMENT '账户id', \`account_username\` varchar(64) NOT NULL DEFAULT '' COMMENT '账户登录用户名', \`create_time\` datetime NOT NULL DEFAULT CURRENT_TIMESTAMP COMMENT '创建时间', \`update_time\` datetime NOT NULL DEFAULT CURRENT_TIMESTAMP ON UPDATE CURRENT_TIMESTAMP COMMENT '更新时间', PRIMARY KEY (\`id\`) ) ENGINE=InnoDB DEFAULT CHARSET=utf8mb4 COMMENT='文件任务';INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/account/exportAccount', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/account/importAccount', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/system/uploadLogo', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/nodeServer/exportNodeServer', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/nodeServer/importNodeServer', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/fileTask/selectFileTaskPage', 'GET', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/fileTask/deleteFileTaskById', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/fileTask/downloadFileTask', 'POST', '', '', '');INSERT INTO trojan_panel_db.casbin_rule (p_type, v0, v1, v2, v3, v4, v5) VALUES ('p', 'sysadmin', '/api/fileTask/downloadCsvTemplate', 'POST', '', '', '');"
  75. }
  76. echo_content() {
  77. case $1 in
  78. "red")
  79. ${ECHO_TYPE} "\033[31m$2\033[0m"
  80. ;;
  81. "green")
  82. ${ECHO_TYPE} "\033[32m$2\033[0m"
  83. ;;
  84. "yellow")
  85. ${ECHO_TYPE} "\033[33m$2\033[0m"
  86. ;;
  87. "blue")
  88. ${ECHO_TYPE} "\033[34m$2\033[0m"
  89. ;;
  90. "purple")
  91. ${ECHO_TYPE} "\033[35m$2\033[0m"
  92. ;;
  93. "skyBlue")
  94. ${ECHO_TYPE} "\033[36m$2\033[0m"
  95. ;;
  96. "white")
  97. ${ECHO_TYPE} "\033[37m$2\033[0m"
  98. ;;
  99. esac
  100. }
  101. mkdir_tools() {
  102. # 项目目录
  103. mkdir -p ${TP_DATA}
  104. # Caddy
  105. mkdir -p ${CADDY_DATA}
  106. touch ${CADDY_Config}
  107. mkdir -p ${CADDY_SRV}
  108. mkdir -p ${CADDY_CERT}
  109. mkdir -p ${CADDY_LOG}
  110. # MariaDB
  111. mkdir -p ${MARIA_DATA}
  112. # Redis
  113. mkdir -p ${REDIS_DATA}
  114. # Trojan Panel
  115. mkdir -p ${TROJAN_PANEL_DATA}
  116. mkdir -p ${TROJAN_PANEL_LOGS}
  117. # Trojan Panel UI
  118. mkdir -p ${TROJAN_PANEL_UI_DATA}
  119. # # Nginx
  120. mkdir -p ${NGINX_DATA}
  121. touch ${NGINX_CONFIG}
  122. # Trojan Panel Core
  123. mkdir -p ${TROJAN_PANEL_CORE_DATA}
  124. mkdir -p ${TROJAN_PANEL_CORE_LOGS}
  125. mkdir -p ${TROJAN_PANEL_CORE_SQLITE}
  126. }
  127. can_connect() {
  128. ping -c2 -i0.3 -W1 "$1" &>/dev/null
  129. if [[ "$?" == "0" ]]; then
  130. return 0
  131. else
  132. return 1
  133. fi
  134. }
  135. check_sys() {
  136. if [[ $(command -v yum) ]]; then
  137. package_manager='yum'
  138. elif [[ $(command -v dnf) ]]; then
  139. package_manager='dnf'
  140. elif [[ $(command -v apt) ]]; then
  141. package_manager='apt'
  142. elif [[ $(command -v apt-get) ]]; then
  143. package_manager='apt-get'
  144. fi
  145. if [[ -z "${package_manager}" ]]; then
  146. echo_content red "暂不支持该系统"
  147. exit 0
  148. fi
  149. if [[ -n $(find /etc -name "redhat-release") ]] || grep </proc/version -q -i "centos"; then
  150. release="centos"
  151. elif grep </etc/issue -q -i "debian" && [[ -f "/etc/issue" ]] || grep </etc/issue -q -i "debian" && [[ -f "/proc/version" ]]; then
  152. release="debian"
  153. elif grep </etc/issue -q -i "ubuntu" && [[ -f "/etc/issue" ]] || grep </etc/issue -q -i "ubuntu" && [[ -f "/proc/version" ]]; then
  154. release="ubuntu"
  155. fi
  156. if [[ -z "${release}" ]]; then
  157. echo_content red "仅支持CentOS 7+/Ubuntu 18+/Debian 10+系统"
  158. exit 0
  159. fi
  160. if [[ $(arch) =~ ("x86_64"|"amd64"|"arm64"|"aarch64"|"arm"|"s390x") ]]; then
  161. get_arch=$(arch)
  162. fi
  163. if [[ -z "${get_arch}" ]]; then
  164. echo_content red "仅支持amd64/arm64/arm/s390x处理器架构"
  165. exit 0
  166. fi
  167. can_connect www.google.com
  168. [[ "$?" == "0" ]] && can_google=1
  169. }
  170. depend_install() {
  171. if [[ "${package_manager}" != 'yum' && "${package_manager}" != 'dnf' ]]; then
  172. ${package_manager} update -y
  173. fi
  174. ${package_manager} install -y \
  175. curl \
  176. wget \
  177. tar \
  178. lsof \
  179. systemd
  180. }
  181. # 安装Docker
  182. install_docker() {
  183. if [[ ! $(docker -v 2>/dev/null) ]]; then
  184. echo_content green "---> 安装Docker"
  185. # 关闭防火墙
  186. if [[ "$(firewall-cmd --state 2>/dev/null)" == "running" ]]; then
  187. systemctl stop firewalld.service && systemctl disable firewalld.service
  188. fi
  189. # 时区
  190. timedatectl set-timezone Asia/Shanghai
  191. if [[ ${can_google} == 0 ]]; then
  192. sh <(curl -sL https://get.docker.com) --mirror Aliyun
  193. # 设置Docker国内源
  194. mkdir -p /etc/docker &&
  195. cat >/etc/docker/daemon.json <<EOF
  196. {
  197. "registry-mirrors":[${DOCKER_MIRROR}],
  198. "log-driver":"json-file",
  199. "log-opts":{
  200. "max-size":"50m",
  201. "max-file":"3"
  202. },
  203. "ipv6": true
  204. }
  205. EOF
  206. else
  207. sh <(curl -sL https://get.docker.com)
  208. mkdir -p /etc/docker &&
  209. cat >/etc/docker/daemon.json <<EOF
  210. {
  211. "log-driver":"json-file",
  212. "log-opts":{
  213. "max-size":"50m",
  214. "max-file":"3"
  215. },
  216. "ipv6": true
  217. }
  218. EOF
  219. fi
  220. systemctl enable docker &&
  221. systemctl restart docker
  222. if [[ $(docker -v 2>/dev/null) ]]; then
  223. echo_content skyBlue "---> Docker安装完成"
  224. else
  225. echo_content red "---> Docker安装失败"
  226. exit 0
  227. fi
  228. else
  229. echo_content skyBlue "---> 你已经安装了Docker"
  230. fi
  231. }
  232. # 安装Caddy TLS
  233. install_caddy_tls() {
  234. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-caddy$") ]]; then
  235. echo_content green "---> 安装Caddy TLS"
  236. wget --no-check-certificate -O ${CADDY_DATA}html.tar.gz ${STATIC_HTML} &&
  237. tar -zxvf ${CADDY_DATA}html.tar.gz -C ${CADDY_SRV}
  238. read -r -p "请输入Caddy的端口(默认:80): " caddy_port
  239. [[ -z "${caddy_port}" ]] && caddy_port=80
  240. read -r -p "请输入Caddy的转发端口(默认:8863): " caddy_remote_port
  241. [[ -z "${caddy_remote_port}" ]] && caddy_remote_port=8863
  242. echo_content yellow "提示:请确认域名已经解析到本机 否则可能安装失败"
  243. while read -r -p "请输入你的域名(必填): " domain; do
  244. if [[ -z "${domain}" ]]; then
  245. echo_content red "域名不能为空"
  246. else
  247. break
  248. fi
  249. done
  250. read -r -p "请输入你的邮箱(可选): " your_email
  251. while read -r -p "请选择设置证书的方式?(1/自动申请和续签证书 2/手动设置证书路径 默认:1/自动申请和续签证书): " ssl_option; do
  252. if [[ -z ${ssl_option} || ${ssl_option} == 1 ]]; then
  253. while read -r -p "请选择申请证书的方式(1/acme 2/zerossl 默认:1/acme): " ssl_module_type; do
  254. if [[ -z "${ssl_module_type}" || ${ssl_module_type} == 1 ]]; then
  255. ssl_module="acme"
  256. CADDY_CERT_DIR="/tpdata/caddy/cert/certificates/acme-v02.api.letsencrypt.org-directory/"
  257. break
  258. elif [[ ${ssl_module_type} == 2 ]]; then
  259. ssl_module="zerossl"
  260. CADDY_CERT_DIR="/tpdata/caddy/cert/certificates/acme.zerossl.com-v2-dv90/"
  261. break
  262. else
  263. echo_content red "不可以输入除1和2之外的其他字符"
  264. fi
  265. done
  266. cat >${CADDY_Config} <<EOF
  267. {
  268. "admin":{
  269. "disabled":true
  270. },
  271. "logging":{
  272. "logs":{
  273. "default":{
  274. "writer":{
  275. "output":"file",
  276. "filename":"${CADDY_LOG}error.log"
  277. },
  278. "level":"ERROR"
  279. }
  280. }
  281. },
  282. "storage":{
  283. "module":"file_system",
  284. "root":"${CADDY_CERT}"
  285. },
  286. "apps":{
  287. "http":{
  288. "http_port": ${caddy_port},
  289. "servers":{
  290. "srv0":{
  291. "listen":[
  292. ":${caddy_port}"
  293. ],
  294. "routes":[
  295. {
  296. "match":[
  297. {
  298. "host":[
  299. "${domain}"
  300. ]
  301. }
  302. ],
  303. "handle":[
  304. {
  305. "handler":"static_response",
  306. "headers":{
  307. "Location":[
  308. "https://{http.request.host}:${caddy_remote_port}{http.request.uri}"
  309. ]
  310. },
  311. "status_code":301
  312. }
  313. ]
  314. }
  315. ]
  316. },
  317. "srv1":{
  318. "listen":[
  319. ":${caddy_remote_port}"
  320. ],
  321. "routes":[
  322. {
  323. "handle":[
  324. {
  325. "handler":"subroute",
  326. "routes":[
  327. {
  328. "match":[
  329. {
  330. "host":[
  331. "${domain}"
  332. ]
  333. }
  334. ],
  335. "handle":[
  336. {
  337. "handler":"file_server",
  338. "root":"${CADDY_SRV}",
  339. "index_names":[
  340. "index.html",
  341. "index.htm"
  342. ]
  343. }
  344. ],
  345. "terminal":true
  346. }
  347. ]
  348. }
  349. ]
  350. }
  351. ],
  352. "tls_connection_policies":[
  353. {
  354. "match":{
  355. "sni":[
  356. "${domain}"
  357. ]
  358. }
  359. }
  360. ],
  361. "automatic_https":{
  362. "disable":true
  363. }
  364. }
  365. }
  366. },
  367. "tls":{
  368. "certificates":{
  369. "automate":[
  370. "${domain}"
  371. ]
  372. },
  373. "automation":{
  374. "policies":[
  375. {
  376. "issuers":[
  377. {
  378. "module":"${ssl_module}",
  379. "email":"${your_email}"
  380. }
  381. ]
  382. }
  383. ]
  384. }
  385. }
  386. }
  387. }
  388. EOF
  389. break
  390. elif [[ ${ssl_option} == 2 ]]; then
  391. while read -r -p "请输入证书的.crt文件路径(必填): " crt_path; do
  392. if [[ -z "${crt_path}" ]]; then
  393. echo_content red "路径不能为空"
  394. else
  395. if [[ ! -f "${crt_path}" ]]; then
  396. echo_content red "证书的.crt文件路径不存在"
  397. else
  398. cp "${crt_path}" "${CADDY_CERT}${domain}.crt"
  399. break
  400. fi
  401. fi
  402. done
  403. while read -r -p "请输入证书的.key文件路径(必填): " key_path; do
  404. if [[ -z "${key_path}" ]]; then
  405. echo_content red "路径不能为空"
  406. else
  407. if [[ ! -f "${key_path}" ]]; then
  408. echo_content red "证书的.key文件路径不存在"
  409. else
  410. cp "${key_path}" "${CADDY_CERT}${domain}.key"
  411. break
  412. fi
  413. fi
  414. done
  415. cat >${CADDY_Config} <<EOF
  416. {
  417. "admin":{
  418. "disabled":true
  419. },
  420. "logging":{
  421. "logs":{
  422. "default":{
  423. "writer":{
  424. "output":"file",
  425. "filename":"${CADDY_LOG}error.log"
  426. },
  427. "level":"ERROR"
  428. }
  429. }
  430. },
  431. "storage":{
  432. "module":"file_system",
  433. "root":"${CADDY_CERT}"
  434. },
  435. "apps":{
  436. "http":{
  437. "http_port": ${caddy_port},
  438. "servers":{
  439. "srv0":{
  440. "listen":[
  441. ":${caddy_port}"
  442. ],
  443. "routes":[
  444. {
  445. "match":[
  446. {
  447. "host":[
  448. "${domain}"
  449. ]
  450. }
  451. ],
  452. "handle":[
  453. {
  454. "handler":"static_response",
  455. "headers":{
  456. "Location":[
  457. "https://{http.request.host}:${caddy_remote_port}{http.request.uri}"
  458. ]
  459. },
  460. "status_code":301
  461. }
  462. ]
  463. }
  464. ]
  465. },
  466. "srv1":{
  467. "listen":[
  468. ":${caddy_remote_port}"
  469. ],
  470. "routes":[
  471. {
  472. "handle":[
  473. {
  474. "handler":"subroute",
  475. "routes":[
  476. {
  477. "match":[
  478. {
  479. "host":[
  480. "${domain}"
  481. ]
  482. }
  483. ],
  484. "handle":[
  485. {
  486. "handler":"file_server",
  487. "root":"${CADDY_SRV}",
  488. "index_names":[
  489. "index.html",
  490. "index.htm"
  491. ]
  492. }
  493. ],
  494. "terminal":true
  495. }
  496. ]
  497. }
  498. ]
  499. }
  500. ],
  501. "tls_connection_policies":[
  502. {
  503. "match":{
  504. "sni":[
  505. "${domain}"
  506. ]
  507. }
  508. }
  509. ],
  510. "automatic_https":{
  511. "disable":true
  512. }
  513. }
  514. }
  515. },
  516. "tls":{
  517. "certificates":{
  518. "automate":[
  519. "${domain}"
  520. ],
  521. "load_files":[
  522. {
  523. "certificate":"${CADDY_CERT_DIR}${domain}/${domain}.crt",
  524. "key":"${CADDY_CERT_DIR}${domain}/${domain}.key"
  525. }
  526. ]
  527. },
  528. "automation":{
  529. "policies":[
  530. {
  531. "issuers":[
  532. {
  533. "module":"${ssl_module}",
  534. "email":"${your_email}"
  535. }
  536. ]
  537. }
  538. ]
  539. }
  540. }
  541. }
  542. }
  543. EOF
  544. break
  545. else
  546. echo_content red "不可以输入除1和2之外的其他字符"
  547. fi
  548. done
  549. if [[ -n $(lsof -i:${caddy_port},443 -t) ]]; then
  550. kill -9 "$(lsof -i:${caddy_port},443 -t)"
  551. fi
  552. docker pull caddy:2.6.2 &&
  553. docker run -d --name trojan-panel-caddy --restart always \
  554. --network=host \
  555. -v "${CADDY_Config}":"${CADDY_Config}" \
  556. -v ${CADDY_CERT}:"${CADDY_CERT_DIR}${domain}/" \
  557. -v ${CADDY_SRV}:${CADDY_SRV} \
  558. -v ${CADDY_LOG}:${CADDY_LOG} \
  559. caddy:2.6.2 caddy run --config ${CADDY_Config}
  560. if [[ -n $(docker ps -q -f "name=^trojan-panel-caddy$" -f "status=running") ]]; then
  561. cat >${DOMAIN_FILE} <<EOF
  562. ${domain}
  563. EOF
  564. echo_content skyBlue "---> Caddy安装完成"
  565. else
  566. echo_content red "---> Caddy安装失败或运行异常,请尝试修复或卸载重装"
  567. exit 0
  568. fi
  569. else
  570. domain=$(cat "${DOMAIN_FILE}")
  571. echo_content skyBlue "---> 你已经安装了Caddy"
  572. fi
  573. }
  574. # 安装MariaDB
  575. install_mariadb() {
  576. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-mariadb$") ]]; then
  577. echo_content green "---> 安装MariaDB"
  578. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  579. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  580. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  581. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  582. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  583. if [[ -z "${mariadb_pas}" ]]; then
  584. echo_content red "密码不能为空"
  585. else
  586. break
  587. fi
  588. done
  589. if [[ "${mariadb_user}" == "root" ]]; then
  590. docker pull mariadb:10.7.3 &&
  591. docker run -d --name trojan-panel-mariadb --restart always \
  592. --network=host \
  593. -e MYSQL_DATABASE="trojan_panel_db" \
  594. -e MYSQL_ROOT_PASSWORD="${mariadb_pas}" \
  595. -e TZ=Asia/Shanghai \
  596. mariadb:10.7.3 \
  597. --port ${mariadb_port} \
  598. --character-set-server=utf8mb4 \
  599. --collation-server=utf8mb4_unicode_ci
  600. else
  601. docker pull mariadb:10.7.3 &&
  602. docker run -d --name trojan-panel-mariadb --restart always \
  603. --network=host \
  604. -e MYSQL_DATABASE="trojan_panel_db" \
  605. -e MYSQL_ROOT_PASSWORD="${mariadb_pas}" \
  606. -e MYSQL_USER="${mariadb_user}" \
  607. -e MYSQL_PASSWORD="${mariadb_pas}" \
  608. -e TZ=Asia/Shanghai \
  609. mariadb:10.7.3 \
  610. --port ${mariadb_port} \
  611. --character-set-server=utf8mb4 \
  612. --collation-server=utf8mb4_unicode_ci
  613. fi
  614. if [[ -n $(docker ps -q -f "name=^trojan-panel-mariadb$" -f "status=running") ]]; then
  615. echo_content skyBlue "---> MariaDB安装完成"
  616. echo_content yellow "---> MariaDB root的数据库密码(请妥善保存): ${mariadb_pas}"
  617. if [[ "${mariadb_user}" != "root" ]]; then
  618. echo_content yellow "---> MariaDB ${mariadb_user}的数据库密码(请妥善保存): ${mariadb_pas}"
  619. fi
  620. else
  621. echo_content red "---> MariaDB安装失败或运行异常,请尝试修复或卸载重装"
  622. exit 0
  623. fi
  624. else
  625. echo_content skyBlue "---> 你已经安装了MariaDB"
  626. fi
  627. }
  628. # 安装Redis
  629. install_redis() {
  630. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-redis$") ]]; then
  631. echo_content green "---> 安装Redis"
  632. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  633. [[ -z "${redis_port}" ]] && redis_port=6378
  634. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  635. if [[ -z "${redis_pass}" ]]; then
  636. echo_content red "密码不能为空"
  637. else
  638. break
  639. fi
  640. done
  641. docker pull redis:6.2.7 &&
  642. docker run -d --name trojan-panel-redis --restart always \
  643. --network=host \
  644. redis:6.2.7 \
  645. redis-server --requirepass "${redis_pass}" --port ${redis_port}
  646. if [[ -n $(docker ps -q -f "name=^trojan-panel-redis$" -f "status=running") ]]; then
  647. echo_content skyBlue "---> Redis安装完成"
  648. echo_content yellow "---> Redis的数据库密码(请妥善保存): ${redis_pass}"
  649. else
  650. echo_content red "---> Redis安装失败或运行异常,请尝试修复或卸载重装"
  651. exit 0
  652. fi
  653. else
  654. echo_content skyBlue "---> 你已经安装了Redis"
  655. fi
  656. }
  657. # 安装TrojanPanel
  658. install_trojan_panel() {
  659. if [[ -z $(docker ps -a -q -f "name=^trojan-panel$") ]]; then
  660. echo_content green "---> 安装Trojan Panel"
  661. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  662. [[ -z "${mariadb_ip}" ]] && mariadb_ip="127.0.0.1"
  663. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  664. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  665. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  666. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  667. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  668. if [[ -z "${mariadb_pas}" ]]; then
  669. echo_content red "密码不能为空"
  670. else
  671. break
  672. fi
  673. done
  674. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -e "create database if not exists trojan_panel_db;" &>/dev/null
  675. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  676. [[ -z "${redis_host}" ]] && redis_host="127.0.0.1"
  677. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  678. [[ -z "${redis_port}" ]] && redis_port=6378
  679. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  680. if [[ -z "${redis_pass}" ]]; then
  681. echo_content red "密码不能为空"
  682. else
  683. break
  684. fi
  685. done
  686. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  687. docker pull jonssonyan/trojan-panel &&
  688. docker run -d --name trojan-panel --restart always \
  689. --network=host \
  690. -v ${CADDY_SRV}:${TROJAN_PANEL_WEBFILE} \
  691. -v ${TROJAN_PANEL_LOGS}:${TROJAN_PANEL_LOGS} \
  692. -v /etc/localtime:/etc/localtime \
  693. -e "mariadb_ip=${mariadb_ip}" \
  694. -e "mariadb_port=${mariadb_port}" \
  695. -e "mariadb_user=${mariadb_user}" \
  696. -e "mariadb_pas=${mariadb_pas}" \
  697. -e "redis_host=${redis_host}" \
  698. -e "redis_port=${redis_port}" \
  699. -e "redis_pass=${redis_pass}" \
  700. jonssonyan/trojan-panel
  701. if [[ -n $(docker ps -q -f "name=^trojan-panel$" -f "status=running") ]]; then
  702. echo_content skyBlue "---> Trojan Panel后端安装完成"
  703. else
  704. echo_content red "---> Trojan Panel后端安装失败或运行异常,请尝试修复或卸载重装"
  705. exit 0
  706. fi
  707. else
  708. echo_content skyBlue "---> 你已经安装了Trojan Panel后端"
  709. fi
  710. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-ui$") ]]; then
  711. read -r -p "请输入Trojan Panel前端端口(默认:8888): " trojan_panel_ui_port
  712. [[ -z "${trojan_panel_ui_port}" ]] && trojan_panel_ui_port="8888"
  713. while read -r -p "请选择Trojan Panel前端是否开启https?(0/关闭 1/开启 默认:1/开启): " https_enable; do
  714. if [[ -z ${https_enable} || ${https_enable} == 1 ]]; then
  715. # 配置Nginx
  716. cat >${NGINX_CONFIG} <<-EOF
  717. server {
  718. listen ${trojan_panel_ui_port} ssl;
  719. server_name ${domain};
  720. #强制ssl
  721. ssl on;
  722. ssl_certificate ${CADDY_CERT}${domain}.crt;
  723. ssl_certificate_key ${CADDY_CERT}${domain}.key;
  724. #缓存有效期
  725. ssl_session_timeout 5m;
  726. #安全链接可选的加密协议
  727. ssl_protocols TLSv1 TLSv1.1 TLSv1.2 TLSv1.3;
  728. #加密算法
  729. ssl_ciphers ECDHE-RSA-AES128-GCM-SHA256:ECDHE:ECDH:AES:HIGH:!NULL:!aNULL:!MD5:!ADH:!RC4;
  730. #使用服务器端的首选算法
  731. ssl_prefer_server_ciphers on;
  732. #access_log /var/log/nginx/host.access.log main;
  733. location / {
  734. root ${TROJAN_PANEL_UI_DATA};
  735. index index.html index.htm;
  736. }
  737. location /api {
  738. proxy_pass http://127.0.0.1:8081;
  739. }
  740. #error_page 404 /404.html;
  741. #497 http->https
  742. error_page 497 https://\$host:${trojan_panel_ui_port}\$uri?\$args;
  743. # redirect server error pages to the static page /50x.html
  744. #
  745. error_page 500 502 503 504 /50x.html;
  746. location = /50x.html {
  747. root /usr/share/nginx/html;
  748. }
  749. }
  750. EOF
  751. break
  752. else
  753. if [[ ${https_enable} != 0 ]]; then
  754. echo_content red "不可以输入除0和1之外的其他字符"
  755. else
  756. cat >${NGINX_CONFIG} <<-EOF
  757. server {
  758. listen ${trojan_panel_ui_port};
  759. server_name localhost;
  760. location / {
  761. root ${TROJAN_PANEL_UI_DATA};
  762. index index.html index.htm;
  763. }
  764. location /api {
  765. proxy_pass http://127.0.0.1:8081;
  766. }
  767. error_page 497 http://\$host:${trojan_panel_ui_port}\$uri?\$args;
  768. error_page 500 502 503 504 /50x.html;
  769. location = /50x.html {
  770. root /usr/share/nginx/html;
  771. }
  772. }
  773. EOF
  774. break
  775. fi
  776. fi
  777. done
  778. docker pull jonssonyan/trojan-panel-ui &&
  779. docker run -d --name trojan-panel-ui --restart always \
  780. --network=host \
  781. -v "${NGINX_CONFIG}":"/etc/nginx/conf.d/default.conf" \
  782. -v ${CADDY_CERT}:${CADDY_CERT} \
  783. jonssonyan/trojan-panel-ui
  784. if [[ -n $(docker ps -q -f "name=^trojan-panel-ui$" -f "status=running") ]]; then
  785. echo_content skyBlue "---> Trojan Panel前端安装完成"
  786. else
  787. echo_content red "---> Trojan Panel前端安装失败或运行异常,请尝试修复或卸载重装"
  788. exit 0
  789. fi
  790. else
  791. echo_content skyBlue "---> 你已经安装了Trojan Panel前端"
  792. fi
  793. https_flag=$([[ -z ${https_enable} || ${https_enable} == 1 ]] && echo "https" || echo "http")
  794. echo_content red "\n=============================================================="
  795. echo_content skyBlue "Trojan Panel 安装成功"
  796. echo_content yellow "MariaDB ${mariadb_user}的密码(请妥善保存): ${mariadb_pas}"
  797. echo_content yellow "Redis的密码(请妥善保存): ${redis_pass}"
  798. echo_content yellow "管理面板地址: ${https_flag}://${domain}:${trojan_panel_ui_port}"
  799. echo_content yellow "系统管理员 默认用户名: sysadmin 默认密码: 123456 请及时登陆管理面板修改密码"
  800. echo_content yellow "Trojan Panel私钥和证书目录: ${CADDY_CERT}"
  801. echo_content red "\n=============================================================="
  802. }
  803. # 安装Trojan Panel Core
  804. install_trojan_panel_core() {
  805. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-core$") ]]; then
  806. echo_content green "---> 安装Trojan Panel Core"
  807. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  808. [[ -z "${mariadb_ip}" ]] && mariadb_ip="127.0.0.1"
  809. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  810. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  811. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  812. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  813. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  814. if [[ -z "${mariadb_pas}" ]]; then
  815. echo_content red "密码不能为空"
  816. else
  817. break
  818. fi
  819. done
  820. read -r -p "请输入数据库名称(默认:trojan_panel_db): " database
  821. [[ -z "${database}" ]] && database="trojan_panel_db"
  822. read -r -p "请输入数据库的用户表名称(默认:account): " account_table
  823. [[ -z "${account_table}" ]] && account_table="account"
  824. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  825. [[ -z "${redis_host}" ]] && redis_host="127.0.0.1"
  826. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  827. [[ -z "${redis_port}" ]] && redis_port=6378
  828. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  829. if [[ -z "${redis_pass}" ]]; then
  830. echo_content red "密码不能为空"
  831. else
  832. break
  833. fi
  834. done
  835. read -r -p "请输入API的端口(默认:8100): " grpc_port
  836. [[ -z "${grpc_port}" ]] && grpc_port=8100
  837. domain=$(cat "${DOMAIN_FILE}")
  838. docker pull jonssonyan/trojan-panel-core &&
  839. docker run -d --name trojan-panel-core --restart always \
  840. --network=host \
  841. -v ${TROJAN_PANEL_CORE_DATA}bin/xray/config:${TROJAN_PANEL_CORE_DATA}bin/xray/config \
  842. -v ${TROJAN_PANEL_CORE_DATA}bin/trojango/config:${TROJAN_PANEL_CORE_DATA}bin/trojango/config \
  843. -v ${TROJAN_PANEL_CORE_DATA}bin/hysteria/config:${TROJAN_PANEL_CORE_DATA}bin/hysteria/config \
  844. -v ${TROJAN_PANEL_CORE_DATA}bin/naiveproxy/config:${TROJAN_PANEL_CORE_DATA}bin/naiveproxy/config \
  845. -v ${TROJAN_PANEL_CORE_LOGS}:${TROJAN_PANEL_CORE_LOGS} \
  846. -v ${TROJAN_PANEL_CORE_SQLITE}:${TROJAN_PANEL_CORE_SQLITE} \
  847. -v ${CADDY_CERT}:${CADDY_CERT} \
  848. -v ${CADDY_SRV}:${CADDY_SRV} \
  849. -v /etc/localtime:/etc/localtime \
  850. -e "mariadb_ip=${mariadb_ip}" \
  851. -e "mariadb_port=${mariadb_port}" \
  852. -e "mariadb_user=${mariadb_user}" \
  853. -e "mariadb_pas=${mariadb_pas}" \
  854. -e "database=${database}" \
  855. -e "account-table=${account_table}" \
  856. -e "redis_host=${redis_host}" \
  857. -e "redis_port=${redis_port}" \
  858. -e "redis_pass=${redis_pass}" \
  859. -e "crt_path=${CADDY_CERT}${domain}.crt" \
  860. -e "key_path=${CADDY_CERT}${domain}.key" \
  861. -e "grpc_port=${grpc_port}" \
  862. jonssonyan/trojan-panel-core
  863. if [[ -n $(docker ps -q -f "name=^trojan-panel-core$" -f "status=running") ]]; then
  864. echo_content skyBlue "---> Trojan Panel Core安装完成"
  865. else
  866. echo_content red "---> Trojan Panel Core后端安装失败或运行异常,请尝试修复或卸载重装"
  867. exit 0
  868. fi
  869. else
  870. echo_content skyBlue "---> 你已经安装了Trojan Panel Core"
  871. fi
  872. }
  873. # 更新Trojan Panel数据结构
  874. update__trojan_panel_database() {
  875. echo_content skyBlue "---> 更新Trojan Panel数据结构"
  876. if [[ "${trojan_panel_current_version}" == "v1.3.1" ]]; then
  877. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -Dtrojan_panel_db -e "${sql_200}" &>/dev/null &&
  878. trojan_panel_current_version="v2.0.0"
  879. fi
  880. version_200_203=("v2.0.0" "v2.0.1" "v2.0.2")
  881. if [[ "${version_200_203[*]}" =~ "${trojan_panel_current_version}" ]]; then
  882. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -Dtrojan_panel_db -e "${sql_203}" &>/dev/null &&
  883. trojan_panel_current_version="v2.0.3"
  884. fi
  885. version_203_205=("v2.0.3" "v2.0.4")
  886. if [[ "${version_203_205[*]}" =~ "${trojan_panel_current_version}" ]]; then
  887. docker exec trojan-panel-mariadb mysql -h"${mariadb_ip}" -P"${mariadb_port}" -u"${mariadb_user}" -p"${mariadb_pas}" -Dtrojan_panel_db -e "${sql_205}" &>/dev/null &&
  888. trojan_panel_current_version="v2.0.5"
  889. fi
  890. echo_content skyBlue "---> Trojan Panel数据结构更新完成"
  891. }
  892. # 更新Trojan Panel Core数据结构
  893. update__trojan_panel_core_database() {
  894. echo_content skyBlue "---> 更新Trojan Panel Core数据结构"
  895. echo_content skyBlue "---> Trojan Panel Core数据结构更新完成"
  896. }
  897. # 更新Trojan Panel
  898. update_trojan_panel() {
  899. # 判断Trojan Panel是否安装
  900. if [[ -z $(docker ps -a -q -f "name=^trojan-panel$") ]]; then
  901. echo_content red "---> 请先安装Trojan Panel"
  902. exit 0
  903. fi
  904. trojan_panel_current_version=$(docker exec trojan-panel ./trojan-panel -version)
  905. if [[ -z "${trojan_panel_current_version}" || ! "${trojan_panel_current_version}" =~ ^v.* ]]; then
  906. echo_content red "---> 当前版本不支持自动化更新"
  907. exit 0
  908. fi
  909. echo_content yellow "提示:Trojan Panel后端(trojan-panel)当前版本为 ${trojan_panel_current_version} 最新版本为 ${trojan_panel_latest_version}"
  910. if [[ "${trojan_panel_current_version}" != "${trojan_panel_latest_version}" ]]; then
  911. echo_content green "---> 更新Trojan Panel"
  912. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  913. [[ -z "${mariadb_ip}" ]] && mariadb_ip="127.0.0.1"
  914. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  915. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  916. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  917. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  918. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  919. if [[ -z "${mariadb_pas}" ]]; then
  920. echo_content red "密码不能为空"
  921. else
  922. break
  923. fi
  924. done
  925. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  926. [[ -z "${redis_host}" ]] && redis_host="127.0.0.1"
  927. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  928. [[ -z "${redis_port}" ]] && redis_port=6378
  929. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  930. if [[ -z "${redis_pass}" ]]; then
  931. echo_content red "密码不能为空"
  932. else
  933. break
  934. fi
  935. done
  936. update__trojan_panel_database
  937. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  938. docker rm -f trojan-panel &&
  939. docker rmi -f jonssonyan/trojan-panel
  940. docker pull jonssonyan/trojan-panel &&
  941. docker run -d --name trojan-panel --restart always \
  942. --network=host \
  943. -v ${CADDY_SRV}:${TROJAN_PANEL_WEBFILE} \
  944. -v ${TROJAN_PANEL_LOGS}:${TROJAN_PANEL_LOGS} \
  945. -v /etc/localtime:/etc/localtime \
  946. -e "mariadb_ip=${mariadb_ip}" \
  947. -e "mariadb_port=${mariadb_port}" \
  948. -e "mariadb_user=${mariadb_user}" \
  949. -e "mariadb_pas=${mariadb_pas}" \
  950. -e "redis_host=${redis_host}" \
  951. -e "redis_port=${redis_port}" \
  952. -e "redis_pass=${redis_pass}" \
  953. jonssonyan/trojan-panel
  954. if [[ -n $(docker ps -q -f "name=^trojan-panel$" -f "status=running") ]]; then
  955. echo_content skyBlue "---> Trojan Panel后端更新完成"
  956. else
  957. echo_content red "---> Trojan Panel后端更新失败或运行异常,请尝试修复或卸载重装"
  958. fi
  959. docker rm -f trojan-panel-ui &&
  960. docker rmi -f jonssonyan/trojan-panel-ui &&
  961. rm -rf ${TROJAN_PANEL_UI_DATA}
  962. docker pull jonssonyan/trojan-panel-ui &&
  963. docker run -d --name trojan-panel-ui --restart always \
  964. --network=host \
  965. -v "${NGINX_CONFIG}":"/etc/nginx/conf.d/default.conf" \
  966. -v ${CADDY_CERT}:${CADDY_CERT} \
  967. jonssonyan/trojan-panel-ui
  968. if [[ -n $(docker ps -q -f "name=^trojan-panel-ui$" -f "status=running") ]]; then
  969. echo_content skyBlue "---> Trojan Panel前端更新完成"
  970. else
  971. echo_content red "---> Trojan Panel前端更新失败或运行异常,请尝试修复或卸载重装"
  972. fi
  973. else
  974. echo_content skyBlue "---> 你安装的Trojan Panel已经是最新版"
  975. fi
  976. }
  977. # 更新Trojan Panel Core
  978. update_trojan_panel_core() {
  979. # 判断Trojan Panel Core是否安装
  980. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-core$") ]]; then
  981. echo_content red "---> 请先安装Trojan Panel Core"
  982. exit 0
  983. fi
  984. trojan_panel_core_current_version=$(docker exec trojan-panel-core ./trojan-panel-core -version)
  985. if [[ -z "${trojan_panel_core_current_version}" || ! "${trojan_panel_core_current_version}" =~ ^v.* ]]; then
  986. echo_content red "---> 当前版本不支持自动化更新"
  987. exit 0
  988. fi
  989. echo_content yellow "提示:Trojan Panel内核(trojan-panel-core)当前版本为 ${trojan_panel_core_current_version} 最新版本为 ${trojan_panel_core_latest_version}"
  990. if [[ "${trojan_panel_core_current_version}" != "${trojan_panel_core_latest_version}" ]]; then
  991. echo_content green "---> 更新Trojan Panel Core"
  992. read -r -p "请输入数据库的IP地址(默认:本机数据库): " mariadb_ip
  993. [[ -z "${mariadb_ip}" ]] && mariadb_ip="127.0.0.1"
  994. read -r -p "请输入数据库的端口(默认:9507): " mariadb_port
  995. [[ -z "${mariadb_port}" ]] && mariadb_port=9507
  996. read -r -p "请输入数据库的用户名(默认:root): " mariadb_user
  997. [[ -z "${mariadb_user}" ]] && mariadb_user="root"
  998. while read -r -p "请输入数据库的密码(必填): " mariadb_pas; do
  999. if [[ -z "${mariadb_pas}" ]]; then
  1000. echo_content red "密码不能为空"
  1001. else
  1002. break
  1003. fi
  1004. done
  1005. read -r -p "请输入数据库名称(默认:trojan_panel_db): " database
  1006. [[ -z "${database}" ]] && database="trojan_panel_db"
  1007. read -r -p "请输入数据库的用户表名称(默认:account): " account_table
  1008. [[ -z "${account_table}" ]] && account_table="account"
  1009. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  1010. [[ -z "${redis_host}" ]] && redis_host="127.0.0.1"
  1011. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  1012. [[ -z "${redis_port}" ]] && redis_port=6378
  1013. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  1014. if [[ -z "${redis_pass}" ]]; then
  1015. echo_content red "密码不能为空"
  1016. else
  1017. break
  1018. fi
  1019. done
  1020. read -r -p "请输入API的端口(默认:8100): " grpc_port
  1021. [[ -z "${grpc_port}" ]] && grpc_port=8100
  1022. update__trojan_panel_core_database
  1023. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  1024. docker rm -f trojan-panel-core &&
  1025. docker rmi -f jonssonyan/trojan-panel-core
  1026. domain=$(cat "${DOMAIN_FILE}")
  1027. docker pull jonssonyan/trojan-panel-core &&
  1028. docker run -d --name trojan-panel-core --restart always \
  1029. --network=host \
  1030. -v ${TROJAN_PANEL_CORE_DATA}bin/xray/config:${TROJAN_PANEL_CORE_DATA}bin/xray/config \
  1031. -v ${TROJAN_PANEL_CORE_DATA}bin/trojango/config:${TROJAN_PANEL_CORE_DATA}bin/trojango/config \
  1032. -v ${TROJAN_PANEL_CORE_DATA}bin/hysteria/config:${TROJAN_PANEL_CORE_DATA}bin/hysteria/config \
  1033. -v ${TROJAN_PANEL_CORE_DATA}bin/naiveproxy/config:${TROJAN_PANEL_CORE_DATA}bin/naiveproxy/config \
  1034. -v ${TROJAN_PANEL_CORE_LOGS}:${TROJAN_PANEL_CORE_LOGS} \
  1035. -v ${TROJAN_PANEL_CORE_SQLITE}:${TROJAN_PANEL_CORE_SQLITE} \
  1036. -v ${CADDY_CERT}:${CADDY_CERT} \
  1037. -v ${CADDY_SRV}:${CADDY_SRV} \
  1038. -v /etc/localtime:/etc/localtime \
  1039. -e "mariadb_ip=${mariadb_ip}" \
  1040. -e "mariadb_port=${mariadb_port}" \
  1041. -e "mariadb_user=${mariadb_user}" \
  1042. -e "mariadb_pas=${mariadb_pas}" \
  1043. -e "database=${database}" \
  1044. -e "account-table=${account_table}" \
  1045. -e "redis_host=${redis_host}" \
  1046. -e "redis_port=${redis_port}" \
  1047. -e "redis_pass=${redis_pass}" \
  1048. -e "crt_path=${CADDY_CERT}${domain}.crt" \
  1049. -e "key_path=${CADDY_CERT}${domain}.key" \
  1050. -e "grpc_port=${grpc_port}" \
  1051. jonssonyan/trojan-panel-core
  1052. if [[ -n $(docker ps -q -f "name=^trojan-panel-core$" -f "status=running") ]]; then
  1053. echo_content skyBlue "---> Trojan Panel Core更新完成"
  1054. else
  1055. echo_content red "---> Trojan Panel Core更新失败或运行异常,请尝试修复或卸载重装"
  1056. fi
  1057. else
  1058. echo_content skyBlue "---> 你安装的Trojan Panel Core已经是最新版"
  1059. fi
  1060. }
  1061. # 卸载Caddy TLS
  1062. uninstall_caddy_tls() {
  1063. # 判断Caddy TLS是否安装
  1064. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-caddy$") ]]; then
  1065. echo_content green "---> 卸载Caddy TLS"
  1066. docker rm -f trojan-panel-caddy &&
  1067. rm -rf ${CADDY_DATA}
  1068. echo_content skyBlue "---> Caddy TLS卸载完成"
  1069. else
  1070. echo_content red "---> 请先安装Caddy TLS"
  1071. fi
  1072. }
  1073. # 卸载MariaDB
  1074. uninstall_mariadb() {
  1075. # 判断MariaDB是否安装
  1076. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-mariadb$") ]]; then
  1077. echo_content green "---> 卸载MariaDB"
  1078. docker rm -f trojan-panel-mariadb &&
  1079. rm -rf ${MARIA_DATA}
  1080. echo_content skyBlue "---> MariaDB卸载完成"
  1081. else
  1082. echo_content red "---> 请先安装MariaDB"
  1083. fi
  1084. }
  1085. # 卸载Redis
  1086. uninstall_redis() {
  1087. # 判断Redis是否安装
  1088. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-redis$") ]]; then
  1089. echo_content green "---> 卸载Redis"
  1090. docker rm -f trojan-panel-redis &&
  1091. rm -rf ${REDIS_DATA}
  1092. echo_content skyBlue "---> Redis卸载完成"
  1093. else
  1094. echo_content red "---> 请先安装Redis"
  1095. fi
  1096. }
  1097. # 卸载Trojan Panel
  1098. uninstall_trojan_panel() {
  1099. # 判断Trojan Panel是否安装
  1100. if [[ -n $(docker ps -a -q -f "name=^trojan-panel$") ]]; then
  1101. echo_content green "---> 卸载Trojan Panel"
  1102. docker rm -f trojan-panel &&
  1103. docker rmi -f jonssonyan/trojan-panel &&
  1104. rm -rf ${TROJAN_PANEL_DATA}
  1105. docker rm -f trojan-panel-ui &&
  1106. docker rmi -f jonssonyan/trojan-panel-ui &&
  1107. rm -rf ${TROJAN_PANEL_UI_DATA} &&
  1108. rm -rf ${NGINX_DATA}
  1109. echo_content skyBlue "---> Trojan Panel卸载完成"
  1110. else
  1111. echo_content red "---> 请先安装Trojan Panel"
  1112. fi
  1113. }
  1114. # 卸载Trojan Panel Core
  1115. uninstall_trojan_panel_core() {
  1116. # 判断Trojan Panel Core是否安装
  1117. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-core$") ]]; then
  1118. echo_content green "---> 卸载Trojan Panel Core"
  1119. docker rm -f trojan-panel-core &&
  1120. docker rmi -f jonssonyan/trojan-panel-core &&
  1121. rm -rf ${TROJAN_PANEL_CORE_DATA}
  1122. echo_content skyBlue "---> Trojan Panel Core卸载完成"
  1123. else
  1124. echo_content red "---> 请先安装Trojan Panel Core"
  1125. fi
  1126. }
  1127. # 卸载全部Trojan Panel相关的容器
  1128. uninstall_all() {
  1129. echo_content green "---> 卸载全部Trojan Panel相关的容器"
  1130. docker rm -f $(docker ps -a -q -f "name=^trojan-panel")
  1131. docker rmi -f $(docker images | grep "^jonssonyan/trojan-panel" | awk '{print $3}')
  1132. rm -rf ${TP_DATA}
  1133. echo_content skyBlue "---> 卸载全部Trojan Panel相关的容器完成"
  1134. }
  1135. # 修改Trojan Panel前端端口
  1136. update_trojan_panel_ui_port() {
  1137. if [[ -n $(docker ps -q -f "name=^trojan-panel-ui$" -f "status=running") ]]; then
  1138. echo_content green "---> 修改Trojan Panel前端端口"
  1139. trojan_panel_ui_port=$(grep 'listen.*ssl' ${NGINX_CONFIG} | awk '{print $2}')
  1140. echo_content yellow "提示:Trojan Panel前端(trojan-panel-ui)当前端口为 ${trojan_panel_ui_port}"
  1141. read -r -p "请输入Trojan Panel前端新端口(默认:8888): " trojan_panel_ui_port
  1142. [[ -z "${trojan_panel_ui_port}" ]] && trojan_panel_ui_port="8888"
  1143. sed -i "s/listen.*ssl;/listen ${trojan_panel_ui_port} ssl;/g" ${NGINX_CONFIG} &&
  1144. sed -i "s/https:\/\/\$host:.*\$uri?\$args/https:\/\/\$host:${trojan_panel_ui_port}\$uri?\$args/g" ${NGINX_CONFIG} &&
  1145. docker restart trojan-panel-ui
  1146. if [[ "$?" == "0" ]]; then
  1147. echo_content skyBlue "---> Trojan Panel前端端口修改完成"
  1148. else
  1149. echo_content red "---> Trojan Panel前端端口修改失败"
  1150. fi
  1151. else
  1152. echo_content red "---> Trojan Panel前端未安装或运行异常,请修复或卸载重装后重试"
  1153. fi
  1154. }
  1155. # 刷新Redis缓存
  1156. redis_flush_all() {
  1157. # 判断Redis是否安装
  1158. if [[ -z $(docker ps -a -q -f "name=^trojan-panel-redis$") ]]; then
  1159. echo_content red "---> 请先安装Redis"
  1160. exit 0
  1161. fi
  1162. if [[ -z $(docker ps -q -f "name=^trojan-panel-redis$" -f "status=running") ]]; then
  1163. echo_content red "---> Redis运行异常"
  1164. exit 0
  1165. fi
  1166. echo_content green "---> 刷新Redis缓存"
  1167. read -r -p "请输入Redis的IP地址(默认:本机Redis): " redis_host
  1168. [[ -z "${redis_host}" ]] && redis_host="127.0.0.1"
  1169. read -r -p "请输入Redis的端口(默认:6378): " redis_port
  1170. [[ -z "${redis_port}" ]] && redis_port=6378
  1171. while read -r -p "请输入Redis的密码(必填): " redis_pass; do
  1172. if [[ -z "${redis_pass}" ]]; then
  1173. echo_content red "密码不能为空"
  1174. else
  1175. break
  1176. fi
  1177. done
  1178. docker exec trojan-panel-redis redis-cli -h "${redis_host}" -p ${redis_port} -a "${redis_pass}" -e "flushall" &>/dev/null
  1179. echo_content skyBlue "---> Redis缓存刷新完成"
  1180. }
  1181. # 故障检测
  1182. failure_testing() {
  1183. echo_content green "---> 故障检测开始"
  1184. if [[ ! $(docker -v 2>/dev/null) ]]; then
  1185. echo_content red "---> Docker运行异常"
  1186. else
  1187. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-caddy$") ]]; then
  1188. if [[ -z $(docker ps -q -f "name=^trojan-panel-caddy$" -f "status=running") ]]; then
  1189. echo_content red "---> Caddy TLS运行异常 错误日志如下:"
  1190. docker logs trojan-panel-caddy
  1191. fi
  1192. domain=$(cat "${DOMAIN_FILE}")
  1193. if [[ -z $(cat "${DOMAIN_FILE}") || ! -d "${CADDY_CERT}" || ! -f "${CADDY_CERT}${domain}.crt" ]]; then
  1194. echo_content red "---> 证书申请异常,请尝试 1.换个子域名重新搭建 2.重启服务器将重新申请证书 3.重新搭建选择自定义证书选项 日志如下:"
  1195. if [[ -f ${CADDY_LOG}error.log ]]; then
  1196. tail -n 20 ${CADDY_LOG}error.log | grep error
  1197. else
  1198. docker logs trojan-panel-caddy
  1199. fi
  1200. fi
  1201. fi
  1202. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-mariadb$") && -z $(docker ps -q -f "name=^trojan-panel-mariadb$" -f "status=running") ]]; then
  1203. echo_content red "---> MariaDB运行异常 日志如下:"
  1204. docker logs trojan-panel-mariadb
  1205. fi
  1206. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-redis$") && -z $(docker ps -q -f "name=^trojan-panel-redis$" -f "status=running") ]]; then
  1207. echo_content red "---> Redis运行异常 日志如下:"
  1208. docker logs trojan-panel-redis
  1209. fi
  1210. if [[ -n $(docker ps -a -q -f "name=^trojan-panel$") && -z $(docker ps -q -f "name=^trojan-panel$" -f "status=running") ]]; then
  1211. echo_content red "---> Trojan Panel后端运行异常 日志如下:"
  1212. if [[ -f ${TROJAN_PANEL_LOGS}trojan-panel.log ]]; then
  1213. tail -n 20 ${TROJAN_PANEL_LOGS}trojan-panel.log | grep error
  1214. else
  1215. docker logs trojan-panel
  1216. fi
  1217. fi
  1218. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-ui$") && -z $(docker ps -q -f "name=^trojan-panel-ui$" -f "status=running") ]]; then
  1219. echo_content red "---> Trojan Panel前端运行异常 日志如下:"
  1220. docker logs trojan-panel-ui
  1221. fi
  1222. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-core$") && -z $(docker ps -q -f "name=^trojan-panel-core$" -f "status=running") ]]; then
  1223. echo_content red "---> Trojan Panel Core运行异常 日志如下:"
  1224. if [[ -f ${TROJAN_PANEL_CORE_LOGS}trojan-panel.log ]]; then
  1225. tail -n 20 ${TROJAN_PANEL_CORE_LOGS}trojan-panel.log | grep error
  1226. else
  1227. docker logs trojan-panel-core
  1228. fi
  1229. fi
  1230. fi
  1231. echo_content green "---> 故障检测结束"
  1232. }
  1233. log_query() {
  1234. while :; do
  1235. echo_content skyBlue "可以查询日志的应用如下:"
  1236. echo_content yellow "1. Trojan Panel"
  1237. echo_content yellow "2. Trojan Panel Core"
  1238. echo_content yellow "3. 退出"
  1239. read -r -p "请选择应用(默认:1): " select_log_query_type
  1240. [[ -z "${select_log_query_type}" ]] && select_log_query_type=1
  1241. case ${select_log_query_type} in
  1242. 1)
  1243. log_file_path=${TROJAN_PANEL_LOGS}trojan-panel.log
  1244. ;;
  1245. 2)
  1246. log_file_path=${TROJAN_PANEL_CORE_LOGS}trojan-panel-core.log
  1247. ;;
  1248. 3)
  1249. break
  1250. ;;
  1251. *)
  1252. echo_content red "没有这个选项"
  1253. continue
  1254. ;;
  1255. esac
  1256. read -r -p "请输入查询的行数(默认:20): " select_log_query_line_type
  1257. [[ -z "${select_log_query_line_type}" ]] && select_log_query_line_type=20
  1258. if [[ -f ${log_file_path} ]]; then
  1259. echo_content skyBlue "日志如下:"
  1260. tail -n ${select_log_query_line_type} ${log_file_path}
  1261. else
  1262. echo_content red "不存在日志文件"
  1263. fi
  1264. done
  1265. }
  1266. version_query() {
  1267. if [[ -n $(docker ps -a -q -f "name=^trojan-panel$") && -n $(docker ps -q -f "name=^trojan-panel$" -f "status=running") ]]; then
  1268. trojan_panel_current_version=$(docker exec trojan-panel ./trojan-panel -version)
  1269. echo_content yellow "Trojan Panel后端(trojan-panel)当前版本为 ${trojan_panel_current_version} 最新版本为 ${trojan_panel_latest_version}"
  1270. fi
  1271. if [[ -n $(docker ps -a -q -f "name=^trojan-panel-core$") && -n $(docker ps -q -f "name=^trojan-panel-core$" -f "status=running") ]]; then
  1272. trojan_panel_core_current_version=$(docker exec trojan-panel-core ./trojan-panel-core -version)
  1273. echo_content yellow "Trojan Panel内核(trojan-panel-core)当前版本为 ${trojan_panel_core_current_version} 最新版本为 ${trojan_panel_core_latest_version}"
  1274. fi
  1275. }
  1276. main() {
  1277. cd "$HOME" || exit 0
  1278. init_var
  1279. mkdir_tools
  1280. check_sys
  1281. depend_install
  1282. clear
  1283. echo_content red "\n=============================================================="
  1284. echo_content skyBlue "System Required: CentOS 7+/Ubuntu 18+/Debian 10+"
  1285. echo_content skyBlue "Version: v2.0.5"
  1286. echo_content skyBlue "Description: One click Install Trojan Panel server"
  1287. echo_content skyBlue "Author: jonssonyan <https://jonssonyan.com>"
  1288. echo_content skyBlue "Github: https://github.com/trojanpanel"
  1289. echo_content skyBlue "Docs: https://trojanpanel.github.io"
  1290. echo_content red "\n=============================================================="
  1291. echo_content yellow "1. 安装Trojan Panel"
  1292. echo_content yellow "2. 安装Trojan Panel Core"
  1293. echo_content yellow "3. 安装Caddy TLS"
  1294. echo_content yellow "4. 安装MariaDB"
  1295. echo_content yellow "5. 安装Redis"
  1296. echo_content green "\n=============================================================="
  1297. echo_content yellow "6. 更新Trojan Panel"
  1298. echo_content yellow "7. 更新Trojan Panel Core"
  1299. echo_content green "\n=============================================================="
  1300. echo_content yellow "8. 卸载Trojan Panel"
  1301. echo_content yellow "9. 卸载Trojan Panel Core"
  1302. echo_content yellow "10. 卸载Caddy TLS"
  1303. echo_content yellow "11. 卸载MariaDB"
  1304. echo_content yellow "12. 卸载Redis"
  1305. echo_content yellow "13. 卸载全部Trojan Panel相关的应用"
  1306. echo_content green "\n=============================================================="
  1307. echo_content yellow "14. 修改Trojan Panel前端端口"
  1308. echo_content yellow "15. 刷新Redis缓存"
  1309. echo_content green "\n=============================================================="
  1310. echo_content yellow "16. 故障检测"
  1311. echo_content yellow "17. 日志查询"
  1312. echo_content yellow "18. 版本查询"
  1313. read -r -p "请选择:" selectInstall_type
  1314. case ${selectInstall_type} in
  1315. 1)
  1316. install_docker
  1317. install_caddy_tls
  1318. install_mariadb
  1319. install_redis
  1320. install_trojan_panel
  1321. ;;
  1322. 2)
  1323. install_docker
  1324. install_caddy_tls
  1325. install_trojan_panel_core
  1326. ;;
  1327. 3)
  1328. install_docker
  1329. install_caddy_tls
  1330. ;;
  1331. 4)
  1332. install_docker
  1333. install_mariadb
  1334. ;;
  1335. 5)
  1336. install_docker
  1337. install_redis
  1338. ;;
  1339. 6)
  1340. update_trojan_panel
  1341. ;;
  1342. 7)
  1343. update_trojan_panel_core
  1344. ;;
  1345. 8)
  1346. uninstall_trojan_panel
  1347. ;;
  1348. 9)
  1349. uninstall_trojan_panel_core
  1350. ;;
  1351. 10)
  1352. uninstall_caddy_tls
  1353. ;;
  1354. 11)
  1355. uninstall_mariadb
  1356. ;;
  1357. 12)
  1358. uninstall_redis
  1359. ;;
  1360. 13)
  1361. uninstall_all
  1362. ;;
  1363. 14)
  1364. update_trojan_panel_ui_port
  1365. ;;
  1366. 15)
  1367. redis_flush_all
  1368. ;;
  1369. 16)
  1370. failure_testing
  1371. ;;
  1372. 17)
  1373. log_query
  1374. ;;
  1375. 18)
  1376. version_query
  1377. ;;
  1378. *)
  1379. echo_content red "没有这个选项"
  1380. ;;
  1381. esac
  1382. }
  1383. main