mirror of
https://github.com/tiredofit/docker-db-backup.git
synced 2025-12-22 05:33:53 +01:00
Compare commits
12 Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
a9f2d51ff9 | ||
|
|
7f455abc1a | ||
|
|
c16add4525 | ||
|
|
d5769b1588 | ||
|
|
0b2c7836cf | ||
|
|
535e011740 | ||
|
|
5a391b908a | ||
|
|
fddca646c8 | ||
|
|
68f954c59b | ||
|
|
0ab0a6d182 | ||
|
|
f6bf2993f7 | ||
|
|
5cf00a8b8e |
47
CHANGELOG.md
47
CHANGELOG.md
@@ -1,3 +1,50 @@
|
|||||||
|
## 4.0.11 2023-11-11 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- Resolve issue with backing up ALL databases with PGSQL and MySQL
|
||||||
|
|
||||||
|
|
||||||
|
## 4.0.10 2023-11-11 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- Change environment variable parsing routines to properly accomodate for Passwords containing '=='
|
||||||
|
|
||||||
|
|
||||||
|
## 4.0.9 2023-11-11 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- Fix issue with quotes being wrapped around _PASS variables
|
||||||
|
|
||||||
|
|
||||||
|
## 4.0.8 2023-11-11 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- Tidy up file_encryption() routines
|
||||||
|
- Change environment variable _ENCRYPT_PUBKEY to _ENCRYPT_PUBLIC_KEY
|
||||||
|
- Add new environment variable _ENCRYPT_PRIVATE_KEY
|
||||||
|
|
||||||
|
|
||||||
|
## 4.0.7 2023-11-11 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Added
|
||||||
|
- Add seperate permissions for _FILESYSTEM_PATH
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- More output and debugging additions
|
||||||
|
- SQLite3 now backs up without running into file permission/access problems
|
||||||
|
- Cleanup old sqlite backups from temp directory
|
||||||
|
- Handle multiple SQLite3 backups concurrently
|
||||||
|
|
||||||
|
|
||||||
|
## 4.0.6 2023-11-10 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
|
### Added
|
||||||
|
- Add additional DEBUG_ statements
|
||||||
|
|
||||||
|
### Changed
|
||||||
|
- Fix issue with Influx DB not properly detecting the correct version
|
||||||
|
|
||||||
|
|
||||||
## 4.0.5 2023-11-10 <dave at tiredofit dot ca>
|
## 4.0.5 2023-11-10 <dave at tiredofit dot ca>
|
||||||
|
|
||||||
### Added
|
### Added
|
||||||
|
|||||||
35
README.md
35
README.md
@@ -214,12 +214,13 @@ If these are set and no other defaults or variables are set explicitly, they wil
|
|||||||
|
|
||||||
Encryption occurs after compression and the encrypted filename will have a `.gpg` suffix
|
Encryption occurs after compression and the encrypted filename will have a `.gpg` suffix
|
||||||
|
|
||||||
| Variable | Description | Default |
|
| Variable | Description | Default | `_FILE` |
|
||||||
| ---------------------------- | ------------------------------------------- | ------- |
|
| ----------------------------- | -------------------------------------------- | ------- | ------- |
|
||||||
| `DEFAULT_ENCRYPT` | Encrypt file after backing up with GPG | `FALSE` |
|
| `DEFAULT_ENCRYPT` | Encrypt file after backing up with GPG | `FALSE` | |
|
||||||
| `DEFAULT_ENCRYPT_PASSPHRASE` | Passphrase to encrypt file with GPG | |
|
| `DEFAULT_ENCRYPT_PASSPHRASE` | Passphrase to encrypt file with GPG | | x |
|
||||||
| *or* | | |
|
| *or* | | | |
|
||||||
| `DEFAULT_ENCRYPT_PUBKEY` | Path of public key to encrypt file with GPG | |
|
| `DEFAULT_ENCRYPT_PUBLIC_KEY` | Path of public key to encrypt file with GPG | | x |
|
||||||
|
| `DEFAULT_ENCRYPT_PRIVATE_KEY` | Path of private key to encrypt file with GPG | | x |
|
||||||
|
|
||||||
##### Scheduling Options
|
##### Scheduling Options
|
||||||
|
|
||||||
@@ -323,11 +324,12 @@ Options that are related to the value of `DEFAULT_BACKUP_LOCATION`
|
|||||||
If `DEFAULT_BACKUP_LOCTION` = `FILESYSTEM` then the following options are used:
|
If `DEFAULT_BACKUP_LOCTION` = `FILESYSTEM` then the following options are used:
|
||||||
|
|
||||||
| Variable | Description | Default |
|
| Variable | Description | Default |
|
||||||
| --------------------------------- | ----------------------------------------------------------------------------------------------------- | ------------------------------------- |
|
| ------------------------------------ | ----------------------------------------------------------------------------------------------------- | ------------------------------------- |
|
||||||
| `DEFAULT_CREATE_LATEST_SYMLINK` | Create a symbolic link pointing to last backup in this format: `latest-(DB_TYPE)-(DB_NAME)-(DB_HOST)` | `TRUE` |
|
| `DEFAULT_CREATE_LATEST_SYMLINK` | Create a symbolic link pointing to last backup in this format: `latest-(DB_TYPE)-(DB_NAME)-(DB_HOST)` | `TRUE` |
|
||||||
| `DEFAULT_FILESYSTEM_PATH` | Directory where the database dumps are kept. | `/backup` |
|
| `DEFAULT_FILESYSTEM_PATH` | Directory where the database dumps are kept. | `/backup` |
|
||||||
|
| `DEFAULT_FILESYSTEM_PATH_PERMISSION` | Permissions to apply to backup directory | `700` |
|
||||||
| `DEFAULT_FILESYSTEM_ARCHIVE_PATH` | Optional Directory where the database dumps archives are kept | `${DEFAULT_FILESYSTEM_PATH}/archive/` |
|
| `DEFAULT_FILESYSTEM_ARCHIVE_PATH` | Optional Directory where the database dumps archives are kept | `${DEFAULT_FILESYSTEM_PATH}/archive/` |
|
||||||
| `DEFAULT_FILESYSTEM_PERMISSION` | Directory and File permissions to apply to files. | `600` |
|
| `DEFAULT_FILESYSTEM_PERMISSION` | Permissions to apply to files. | `600` |
|
||||||
|
|
||||||
###### S3
|
###### S3
|
||||||
|
|
||||||
@@ -475,12 +477,14 @@ Otherwise, override them per backup job. Additional backup jobs can be scheduled
|
|||||||
|
|
||||||
Encryption will occur after compression and the resulting filename will have a `.gpg` suffix
|
Encryption will occur after compression and the resulting filename will have a `.gpg` suffix
|
||||||
|
|
||||||
| Variable | Description | Default |
|
|
||||||
| ------------------------- | ------------------------------------------- | ------- |
|
| Variable | Description | Default | `_FILE` |
|
||||||
| `DB01_ENCRYPT` | Encrypt file after backing up with GPG | `FALSE` |
|
| -------------------------- | -------------------------------------------- | ------- | ------- |
|
||||||
| `DB01_ENCRYPT_PASSPHRASE` | Passphrase to encrypt file with GPG | |
|
| `DB01_ENCRYPT` | Encrypt file after backing up with GPG | `FALSE` | |
|
||||||
| *or* | | |
|
| `DB01_ENCRYPT_PASSPHRASE` | Passphrase to encrypt file with GPG | | x |
|
||||||
| `DB01_ENCRYPT_PUBKEY` | Path of public key to encrypt file with GPG | |
|
| *or* | | | |
|
||||||
|
| `DB01_ENCRYPT_PUBLIC_KEY` | Path of public key to encrypt file with GPG | | x |
|
||||||
|
| `DB01_ENCRYPT_PRIVATE_KEY` | Path of private key to encrypt file with GPG | | x |
|
||||||
|
|
||||||
##### Scheduling Options
|
##### Scheduling Options
|
||||||
|
|
||||||
@@ -598,9 +602,10 @@ Options that are related to the value of `DB01_BACKUP_LOCATION`
|
|||||||
If `DB01_BACKUP_LOCTION` = `FILESYSTEM` then the following options are used:
|
If `DB01_BACKUP_LOCTION` = `FILESYSTEM` then the following options are used:
|
||||||
|
|
||||||
| Variable | Description | Default |
|
| Variable | Description | Default |
|
||||||
| ------------------------------ | ----------------------------------------------------------------------------------------------------- | --------------------------------- |
|
| --------------------------------- | ----------------------------------------------------------------------------------------------------- | --------------------------------- |
|
||||||
| `DB01_CREATE_LATEST_SYMLINK` | Create a symbolic link pointing to last backup in this format: `latest-(DB_TYPE)-(DB_NAME)-(DB_HOST)` | `TRUE` |
|
| `DB01_CREATE_LATEST_SYMLINK` | Create a symbolic link pointing to last backup in this format: `latest-(DB_TYPE)-(DB_NAME)-(DB_HOST)` | `TRUE` |
|
||||||
| `DB01_FILESYSTEM_PATH` | Directory where the database dumps are kept. | `/backup` |
|
| `DB01_FILESYSTEM_PATH` | Directory where the database dumps are kept. | `/backup` |
|
||||||
|
| `DB01_FILESYSTEM_PATH_PERMISSION` | Permissions to apply to backup directory | `700` |
|
||||||
| `DB01_FILESYSTEM_ARCHIVE_PATH` | Optional Directory where the database dumps archives are kept | `${DB01_FILESYSTEM_PATH/archive/` |
|
| `DB01_FILESYSTEM_ARCHIVE_PATH` | Optional Directory where the database dumps archives are kept | `${DB01_FILESYSTEM_PATH/archive/` |
|
||||||
| `DB01_FILESYSTEM_PERMISSION` | Directory and File permissions to apply to files. | `600` |
|
| `DB01_FILESYSTEM_PERMISSION` | Directory and File permissions to apply to files. | `600` |
|
||||||
|
|
||||||
|
|||||||
@@ -8,8 +8,11 @@ source /assets/functions/10-db-backup
|
|||||||
source /assets/defaults/10-db-backup
|
source /assets/defaults/10-db-backup
|
||||||
bootstrap_variables backup_init {{BACKUP_NUMBER}}
|
bootstrap_variables backup_init {{BACKUP_NUMBER}}
|
||||||
bootstrap_variables parse_variables {{BACKUP_NUMBER}}
|
bootstrap_variables parse_variables {{BACKUP_NUMBER}}
|
||||||
PROCESS_NAME="{{BACKUP_NUMBER}}-${backup_job_db_host}__${backup_job_db_name}"
|
if [ -z "${backup_job_db_name}" ]; then
|
||||||
|
PROCESS_NAME="{{BACKUP_NUMBER}}${backup_job_db_host//\//_}"
|
||||||
|
else
|
||||||
|
PROCESS_NAME="{{BACKUP_NUMBER}}-${backup_job_db_host//\//_}__${backup_job_db_name}"
|
||||||
|
fi
|
||||||
|
|
||||||
trap ctrl_c INT
|
trap ctrl_c INT
|
||||||
|
|
||||||
|
|||||||
@@ -2,7 +2,7 @@
|
|||||||
|
|
||||||
BACKUP_JOB_CONCURRENCY=${BACKUP_JOB_CONCURRENCY:-"1"}
|
BACKUP_JOB_CONCURRENCY=${BACKUP_JOB_CONCURRENCY:-"1"}
|
||||||
DBBACKUP_USER=${DBBACKUP_USER:-"dbbackup"}
|
DBBACKUP_USER=${DBBACKUP_USER:-"dbbackup"}
|
||||||
DBBACKUP_GROUP=${DBBACKUP_USER:-"${DBBACKUP_USER}"} # Must go after DBBACKUP_USER
|
DBBACKUP_GROUP=${DBBACKUP_GROUP:-"${DBBACKUP_USER}"} # Must go after DBBACKUP_USER
|
||||||
DEFAULT_BACKUP_BEGIN=${DEFAULT_BACKUP_BEGIN:-+0}
|
DEFAULT_BACKUP_BEGIN=${DEFAULT_BACKUP_BEGIN:-+0}
|
||||||
DEFAULT_BACKUP_INTERVAL=${DEFAULT_BACKUP_INTERVAL:-1440}
|
DEFAULT_BACKUP_INTERVAL=${DEFAULT_BACKUP_INTERVAL:-1440}
|
||||||
DEFAULT_BACKUP_INTERVAL=${DEFAULT_BACKUP_INTERVAL:-1440}
|
DEFAULT_BACKUP_INTERVAL=${DEFAULT_BACKUP_INTERVAL:-1440}
|
||||||
@@ -15,6 +15,7 @@ DEFAULT_CREATE_LATEST_SYMLINK=${DEFAULT_CREATE_LATEST_SYMLINK:-"TRUE"}
|
|||||||
DEFAULT_ENABLE_PARALLEL_COMPRESSION=${DEFAULT_ENABLE_PARALLEL_COMPRESSION:-"TRUE"}
|
DEFAULT_ENABLE_PARALLEL_COMPRESSION=${DEFAULT_ENABLE_PARALLEL_COMPRESSION:-"TRUE"}
|
||||||
DEFAULT_ENCRYPT=${DEFAULT_ENCRYPT:-"FALSE"}
|
DEFAULT_ENCRYPT=${DEFAULT_ENCRYPT:-"FALSE"}
|
||||||
DEFAULT_FILESYSTEM_PATH=${DEFAULT_FILESYSTEM_PATH:-"/backup"}
|
DEFAULT_FILESYSTEM_PATH=${DEFAULT_FILESYSTEM_PATH:-"/backup"}
|
||||||
|
DEFAULT_FILESYSTEM_PATH_PERMISSION=${DEFAULT_FILESYSTEM_PATH_PERMISSION:-"700"}
|
||||||
DEFAULT_FILESYSTEM_PERMISSION=${DEFAULT_FILESYSTEM_PERMISSION:-"600"}
|
DEFAULT_FILESYSTEM_PERMISSION=${DEFAULT_FILESYSTEM_PERMISSION:-"600"}
|
||||||
DEFAULT_FILESYSTEM_ARCHIVE_PATH=${DEFAULT_FILESYSTEM_ARCHIVE_PATH:-"${DEFAULT_FILESYSTEM_PATH}/archive/"}
|
DEFAULT_FILESYSTEM_ARCHIVE_PATH=${DEFAULT_FILESYSTEM_ARCHIVE_PATH:-"${DEFAULT_FILESYSTEM_PATH}/archive/"}
|
||||||
DEFAULT_LOG_LEVEL=${DEFAULT_LOG_LEVEL:-"notice"}
|
DEFAULT_LOG_LEVEL=${DEFAULT_LOG_LEVEL:-"notice"}
|
||||||
|
|||||||
@@ -6,11 +6,11 @@ bootstrap_filesystem() {
|
|||||||
mkdir -p "${backup_job_filesystem_path}"
|
mkdir -p "${backup_job_filesystem_path}"
|
||||||
fi
|
fi
|
||||||
if [ "$(stat -c %U "${backup_job_filesystem_path}")" != "${DBBACKUP_USER}" ] ; then chown -R "${DBBACKUP_USER}":"${DBBACKUP_GROUP}" "${backup_job_filesystem_path}" ; fi
|
if [ "$(stat -c %U "${backup_job_filesystem_path}")" != "${DBBACKUP_USER}" ] ; then chown -R "${DBBACKUP_USER}":"${DBBACKUP_GROUP}" "${backup_job_filesystem_path}" ; fi
|
||||||
if [ "$(stat -c %a "${backup_job_filesystem_path}")" != "${backup_job_filesystem_permission}" ] ; then chmod -R "${backup_job_filesystem_permission}" "${backup_job_filesystem_path}" ; fi
|
if [ "$(stat -c %a "${backup_job_filesystem_path}")" != "${backup_job_filesystem_path_permission}" ] ; then chmod "${backup_job_filesystem_path_permission}" "${backup_job_filesystem_path}" ; fi
|
||||||
|
|
||||||
if [ -d "${backup_job_filesystem_archive_path}" ]; then
|
if [ -d "${backup_job_filesystem_archive_path}" ]; then
|
||||||
if [ "$(stat -c %U "${backup_job_filesystem_archive_path}")" != "${DBBACKUP_USER}" ] ; then chown -R "${DBBACKUP_USER}":"${DBBACKUP_GROUP}" "${backup_job_filesystem_archive_path}" ; fi
|
if [ "$(stat -c %U "${backup_job_filesystem_archive_path}")" != "${DBBACKUP_USER}" ] ; then chown -R "${DBBACKUP_USER}":"${DBBACKUP_GROUP}" "${backup_job_filesystem_archive_path}" ; fi
|
||||||
if [ "$(stat -c %a "${backup_job_filesystem_archive_path}")" != "${backup_job_filesystem_permission}" ] ; then chmod -R "${backup_job_filesystem_permission}" "${backup_job_filesystem_archive_path}" ; fi
|
if [ "$(stat -c %a "${backup_job_filesystem_archive_path}")" != "${backup_job_filesystem_path_permission}" ] ; then chmod "${backup_job_filesystem_path_permission}" "${backup_job_filesystem_archive_path}" ; fi
|
||||||
fi
|
fi
|
||||||
|
|
||||||
if [ ! -d "${LOG_PATH}" ]; then
|
if [ ! -d "${LOG_PATH}" ]; then
|
||||||
@@ -48,7 +48,8 @@ bootstrap_variables() {
|
|||||||
DEFAULT_USER \
|
DEFAULT_USER \
|
||||||
DEFAULT_PASS \
|
DEFAULT_PASS \
|
||||||
DEFAULT_ENCRYPT_PASSPHRASE \
|
DEFAULT_ENCRYPT_PASSPHRASE \
|
||||||
DEFAULT_ENCRYPT_PUBKEY \
|
DEFAULT_ENCRYPT_PUBLIC_KEY \
|
||||||
|
DEFAULT_ENCRYPT_PRIVATE_KEY \
|
||||||
DEFAULT_MONGO_CUSTOM_URI \
|
DEFAULT_MONGO_CUSTOM_URI \
|
||||||
DEFAULT_MYSQL_TLS_CA_FILE \
|
DEFAULT_MYSQL_TLS_CA_FILE \
|
||||||
DEFAULT_MYSQL_TLS_CERT_FILE \
|
DEFAULT_MYSQL_TLS_CERT_FILE \
|
||||||
@@ -74,7 +75,8 @@ bootstrap_variables() {
|
|||||||
DB"${backup_instance_number}"_USER \
|
DB"${backup_instance_number}"_USER \
|
||||||
DB"${backup_instance_number}"_PASS \
|
DB"${backup_instance_number}"_PASS \
|
||||||
DB"${backup_instance_number}"_ENCRYPT_PASSPHRASE \
|
DB"${backup_instance_number}"_ENCRYPT_PASSPHRASE \
|
||||||
DB"${backup_instance_number}"_ENCRYPT_PUBKEY \
|
DB"${backup_instance_number}"_ENCRYPT_PUBLIC_KEY \
|
||||||
|
DB"${backup_instance_number}"_ENCRYPT_PRIVATE_KEY \
|
||||||
DB"${backup_instance_number}"_MONGO_CUSTOM_URI \
|
DB"${backup_instance_number}"_MONGO_CUSTOM_URI \
|
||||||
DB"${backup_instance_number}"_MYSQL_TLS_CA_FILE \
|
DB"${backup_instance_number}"_MYSQL_TLS_CA_FILE \
|
||||||
DB"${backup_instance_number}"_MYSQL_TLS_CERT_FILE \
|
DB"${backup_instance_number}"_MYSQL_TLS_CERT_FILE \
|
||||||
@@ -151,18 +153,23 @@ bootstrap_variables() {
|
|||||||
fi
|
fi
|
||||||
##
|
##
|
||||||
|
|
||||||
|
if grep -qo ".*_PASS='.*'" "${backup_instance_vars}"; then
|
||||||
|
print_debug "[bootstrap_variables] [backup_init] Found _PASS variable with quotes"
|
||||||
|
sed -i "s|_PASS='\(.*\)'|_PASS=\1|g" "${backup_instance_vars}"
|
||||||
|
fi
|
||||||
|
|
||||||
transform_backup_instance_variable() {
|
transform_backup_instance_variable() {
|
||||||
if grep -q "^DB${1}_${2}=" "${backup_instance_vars}" && [ "$(grep "^DB${1}_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
if grep -q "^DB${1}_${2}=" "${backup_instance_vars}" && [ "$(grep "^DB${1}_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
||||||
export "$3"="$(grep "^DB${1}_${2}=" "${backup_instance_vars}" | cut -d = -f2)"
|
export "$3"="$(grep "^DB${1}_${2}=" "${backup_instance_vars}" | cut -d = -f2-)"
|
||||||
elif grep -q "^DB_${2}=" "${backup_instance_vars}" && [ "$(grep "^DB_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
elif grep -q "^DB_${2}=" "${backup_instance_vars}" && [ "$(grep "^DB_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
||||||
# Allow old legacy work, perhaps remove old DB_ functionality in future? This should allow for seamless upgrades
|
# Allow old legacy work, perhaps remove old DB_ functionality in future? This should allow for seamless upgrades
|
||||||
#print_warn "Legacy Variable 'DB_${2}'' detected - Please upgrade your variables as they will be removed in version 4.3.0"
|
#print_warn "Legacy Variable 'DB_${2}'' detected - Please upgrade your variables as they will be removed in version 4.3.0"
|
||||||
export "$3"="$(grep "^DB_${2}=" "${backup_instance_vars}" | cut -d = -f2)"
|
export "$3"="$(grep "^DB_${2}=" "${backup_instance_vars}" | cut -d = -f2-)"
|
||||||
elif grep -q "^${2}=" "${backup_instance_vars}" && [ "$(grep "^${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
elif grep -q "^${2}=" "${backup_instance_vars}" && [ "$(grep "^${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
||||||
print_warn "Legacy unsupported variable '${2}' detected - Please upgrade your variables as they will be removed in version 4.3.0"
|
print_warn "Legacy unsupported variable '${2}' detected - Please upgrade your variables as they will be removed in version 4.3.0"
|
||||||
export "$3"="$(grep "^${2}=" "${backup_instance_vars}" | cut -d = -f2)"
|
export "$3"="$(grep "^${2}=" "${backup_instance_vars}" | cut -d = -f2-)"
|
||||||
elif grep -q "^DEFAULT_${2}=" "${backup_instance_vars}" && [ "$(grep "^DEFAULT_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
elif grep -q "^DEFAULT_${2}=" "${backup_instance_vars}" && [ "$(grep "^DEFAULT_${2}=" "${backup_instance_vars}" | cut -d = -f2)" != "unset" ]; then
|
||||||
export "$3"="$(grep "^DEFAULT_${2}=" "${backup_instance_vars}" | cut -d = -f2)"
|
export "$3"="$(grep "^DEFAULT_${2}=" "${backup_instance_vars}" | cut -d = -f2-)"
|
||||||
fi
|
fi
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -185,12 +192,14 @@ bootstrap_variables() {
|
|||||||
transform_backup_instance_variable "${backup_instance_number}" ENABLE_PARALLEL_COMPRESSION backup_job_parallel_compression
|
transform_backup_instance_variable "${backup_instance_number}" ENABLE_PARALLEL_COMPRESSION backup_job_parallel_compression
|
||||||
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT backup_job_encrypt
|
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT backup_job_encrypt
|
||||||
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT_PASSPHRASE backup_job_encrypt_passphrase
|
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT_PASSPHRASE backup_job_encrypt_passphrase
|
||||||
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT_PUBKEY backup_job_encrypt_pubkey
|
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT_PRIVATE_KEY backup_job_encrypt_private_key
|
||||||
|
transform_backup_instance_variable "${backup_instance_number}" ENCRYPT_PUBLIC_KEY backup_job_encrypt_public_key
|
||||||
transform_backup_instance_variable "${backup_instance_number}" EXTRA_DUMP_OPTS backup_job_extra_dump_opts
|
transform_backup_instance_variable "${backup_instance_number}" EXTRA_DUMP_OPTS backup_job_extra_dump_opts
|
||||||
transform_backup_instance_variable "${backup_instance_number}" EXTRA_ENUMERATION_OPTS backup_job_extra_enumeration_opts
|
transform_backup_instance_variable "${backup_instance_number}" EXTRA_ENUMERATION_OPTS backup_job_extra_enumeration_opts
|
||||||
transform_backup_instance_variable "${backup_instance_number}" EXTRA_OPTS backup_job_extra_opts
|
transform_backup_instance_variable "${backup_instance_number}" EXTRA_OPTS backup_job_extra_opts
|
||||||
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_ARCHIVE_PATH backup_job_filesystem_archive_path
|
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_ARCHIVE_PATH backup_job_filesystem_archive_path
|
||||||
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_PATH backup_job_filesystem_path
|
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_PATH backup_job_filesystem_path
|
||||||
|
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_PATH_PERMISSION backup_job_filesystem_path_permission
|
||||||
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_PERMISSION backup_job_filesystem_permission
|
transform_backup_instance_variable "${backup_instance_number}" FILESYSTEM_PERMISSION backup_job_filesystem_permission
|
||||||
transform_backup_instance_variable "${backup_instance_number}" GZ_RSYNCABLE backup_job_gz_rsyncable
|
transform_backup_instance_variable "${backup_instance_number}" GZ_RSYNCABLE backup_job_gz_rsyncable
|
||||||
transform_backup_instance_variable "${backup_instance_number}" HOST backup_job_db_host
|
transform_backup_instance_variable "${backup_instance_number}" HOST backup_job_db_host
|
||||||
@@ -237,6 +246,14 @@ bootstrap_variables() {
|
|||||||
transform_backup_instance_variable "${backup_instance_number}" USER backup_job_db_user
|
transform_backup_instance_variable "${backup_instance_number}" USER backup_job_db_user
|
||||||
|
|
||||||
backup_job_backup_begin=$(echo "${backup_job_backup_begin}" | sed -e "s|'||g" -e 's|"||g')
|
backup_job_backup_begin=$(echo "${backup_job_backup_begin}" | sed -e "s|'||g" -e 's|"||g')
|
||||||
|
if var_true "${DEBUG_BACKUP_INSTANCE_VARIABLE}" ; then cat <<EOF
|
||||||
|
## BEGIN Variable Dump $(TZ=${TIMEZONE} date)
|
||||||
|
|
||||||
|
$(cat ${backup_instance_vars})
|
||||||
|
|
||||||
|
## END
|
||||||
|
EOF
|
||||||
|
fi
|
||||||
rm -rf "${backup_instance_vars}"
|
rm -rf "${backup_instance_vars}"
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -315,7 +332,7 @@ bootstrap_variables() {
|
|||||||
## Check is Variable is Defined
|
## Check is Variable is Defined
|
||||||
## Usage: check_var transformed_varname real_varname "Description"
|
## Usage: check_var transformed_varname real_varname "Description"
|
||||||
output_off
|
output_off
|
||||||
print_debug "Looking for existence of $2 environment variable"
|
print_debug "[parse_variables] Looking for existence of $2 environment variable"
|
||||||
if [ ! -v "$1" ]; then
|
if [ ! -v "$1" ]; then
|
||||||
print_error "No '$3' Entered! - Set '\$$2' environment variable - Halting Backup Number ${v_instance}"
|
print_error "No '$3' Entered! - Set '\$$2' environment variable - Halting Backup Number ${v_instance}"
|
||||||
s6-svc -d /var/run/s6/legacy-services/dbbackup-"${v_instance}"
|
s6-svc -d /var/run/s6/legacy-services/dbbackup-"${v_instance}"
|
||||||
@@ -451,12 +468,7 @@ backup_couch() {
|
|||||||
prepare_dbbackup
|
prepare_dbbackup
|
||||||
backup_job_filename=couch_${backup_job_db_name}_${backup_job_db_host#*//}_${now}.txt
|
backup_job_filename=couch_${backup_job_db_name}_${backup_job_db_host#*//}_${now}.txt
|
||||||
backup_job_filename_base=couch_${backup_job_db_name}_${backup_job_db_host#*//}
|
backup_job_filename_base=couch_${backup_job_db_name}_${backup_job_db_host#*//}
|
||||||
compression
|
compressionzyclonite
|
||||||
pre_dbbackup ${backup_job_db_name}
|
|
||||||
write_log notice "Dumping CouchDB database: '${backup_job_db_name}' ${compression_string}"
|
|
||||||
if var_true "${DEBUG_BACKUP_COUCH}" ; then debug on; fi
|
|
||||||
run_as_user curl -sSL -X GET ${backup_job_db_host}:${backup_job_db_port}/${backup_job_db_name}/_all_docs?include_docs=true | ${compress_cmd} | run_as_user tee "${TEMP_PATH}"/"${backup_job_filename}" > /dev/null
|
|
||||||
exit_code=$?
|
|
||||||
if var_true "${DEBUG_BACKUP_COUCH}" ; then debug off; fi
|
if var_true "${DEBUG_BACKUP_COUCH}" ; then debug off; fi
|
||||||
check_exit_code backup "${backup_job_filename}"
|
check_exit_code backup "${backup_job_filename}"
|
||||||
timer backup finish
|
timer backup finish
|
||||||
@@ -470,15 +482,16 @@ backup_couch() {
|
|||||||
backup_influx() {
|
backup_influx() {
|
||||||
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
||||||
if [ "${backup_job_db_name,,}" = "all" ] ; then
|
if [ "${backup_job_db_name,,}" = "all" ] ; then
|
||||||
write_log debug "Preparing to back up everything"
|
write_log debug "[backup_influx] Preparing to back up everything"
|
||||||
db_names=justbackupeverything
|
db_names=justbackupeverything
|
||||||
else
|
else
|
||||||
db_names=$(echo "${backup_job_db_name}" | tr ',' '\n')
|
db_names=$(echo "${backup_job_db_name}" | tr ',' '\n')
|
||||||
fi
|
fi
|
||||||
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug off; fi
|
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug off; fi
|
||||||
|
|
||||||
case "${backup_job_db_influx_version,,}" in
|
case "${backup_job_influx_version,,}" in
|
||||||
1 )
|
1 )
|
||||||
|
print_debug "[backup_influx] Influx DB Version 1 selected"
|
||||||
for db in ${db_names}; do
|
for db in ${db_names}; do
|
||||||
prepare_dbbackup
|
prepare_dbbackup
|
||||||
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
||||||
@@ -507,6 +520,7 @@ backup_influx() {
|
|||||||
done
|
done
|
||||||
;;
|
;;
|
||||||
2 )
|
2 )
|
||||||
|
print_debug "[backup_influx] Influx DB Version 2 selected"
|
||||||
for db in ${db_names}; do
|
for db in ${db_names}; do
|
||||||
prepare_dbbackup
|
prepare_dbbackup
|
||||||
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
if var_true "${DEBUG_BACKUP_INFLUX}" ; then debug on; fi
|
||||||
@@ -720,7 +734,7 @@ backup_pgsql() {
|
|||||||
fi
|
fi
|
||||||
if [ "${backup_job_db_name,,}" = "all" ] ; then
|
if [ "${backup_job_db_name,,}" = "all" ] ; then
|
||||||
write_log debug "Preparing to back up all databases"
|
write_log debug "Preparing to back up all databases"
|
||||||
db_names=$(run_as_user psql -h ${backup_job_db_host} -U ${backup_job_db_user} -p ${backup_job_db_port} -d ${authdb} -c 'COPY (SELECT datname FROM pg_database WHERE datistemplate = false) TO STDOUT;' )
|
db_names=$(psql -h ${backup_job_db_host} -U ${backup_job_db_user} -p ${backup_job_db_port} -d ${authdb} -c 'COPY (SELECT datname FROM pg_database WHERE datistemplate = false) TO STDOUT;' )
|
||||||
if [ -n "${backup_job_db_name_exclude}" ] ; then
|
if [ -n "${backup_job_db_name_exclude}" ] ; then
|
||||||
db_names_exclusions=$(echo "${backup_job_db_name_exclude}" | tr ',' '\n')
|
db_names_exclusions=$(echo "${backup_job_db_name_exclude}" | tr ',' '\n')
|
||||||
for db_exclude in ${db_names_exclusions} ; do
|
for db_exclude in ${db_names_exclusions} ; do
|
||||||
@@ -768,7 +782,7 @@ backup_pgsql() {
|
|||||||
pre_dbbackup all
|
pre_dbbackup all
|
||||||
write_log notice "Dumping all PostgreSQL databases: '$(echo ${db_names} | xargs | tr ' ' ',')' ${compression_string}"
|
write_log notice "Dumping all PostgreSQL databases: '$(echo ${db_names} | xargs | tr ' ' ',')' ${compression_string}"
|
||||||
if var_true "${DEBUG_BACKUP_PGSQL}" ; then debug on; fi
|
if var_true "${DEBUG_BACKUP_PGSQL}" ; then debug on; fi
|
||||||
tmp_db_names=$(run_as_user psql -h ${backup_job_db_host} -p ${backup_job_db_port} -U ${backup_job_db_user} -d ${authdb} -c 'COPY (SELECT datname FROM pg_database WHERE datistemplate = false) TO STDOUT;' )
|
tmp_db_names=$(psql -h ${backup_job_db_host} -p ${backup_job_db_port} -U ${backup_job_db_user} -d ${authdb} -c 'COPY (SELECT datname FROM pg_database WHERE datistemplate = false) TO STDOUT;' )
|
||||||
for r_db_name in $(echo $db_names | xargs); do
|
for r_db_name in $(echo $db_names | xargs); do
|
||||||
tmp_db_names=$(echo "$tmp_db_names" | xargs | sed "s|${r_db_name}||g" )
|
tmp_db_names=$(echo "$tmp_db_names" | xargs | sed "s|${r_db_name}||g" )
|
||||||
done
|
done
|
||||||
@@ -833,16 +847,21 @@ backup_sqlite3() {
|
|||||||
db="${db%.*}"
|
db="${db%.*}"
|
||||||
backup_job_filename=sqlite3_${db}_${now}.sqlite3
|
backup_job_filename=sqlite3_${db}_${now}.sqlite3
|
||||||
backup_job_filename_base=sqlite3_${db}.sqlite3
|
backup_job_filename_base=sqlite3_${db}.sqlite3
|
||||||
compression
|
|
||||||
pre_dbbackup "${db}"
|
pre_dbbackup "${db}"
|
||||||
write_log notice "Dumping sqlite3 database: '${backup_job_db_host}' ${compression_string}"
|
write_log notice "Dumping sqlite3 database: '${backup_job_db_host}' ${compression_string}"
|
||||||
if var_true "${DEBUG_BACKUP_SQLITE3}" ; then debug on; fi
|
if var_true "${DEBUG_BACKUP_SQLITE3}" ; then debug on; fi
|
||||||
silent run_as_user ${play_fair} sqlite3 "${backup_job_db_host}" ".backup '${TEMP_PATH}/backup.sqlite3'"
|
silent ${play_fair} sqlite3 "${backup_job_db_host}" ".backup '${TEMP_PATH}/backup_${now}.sqlite3'"
|
||||||
exit_code=$?
|
exit_code=$?
|
||||||
check_exit_code backup "${backup_job_filename}"
|
check_exit_code backup "${backup_job_filename}"
|
||||||
run_as_user ${play_fair} cat "${TEMP_PATH}"/backup.sqlite3 | ${dir_compress_cmd} | run_as_user tee "${TEMP_PATH}/${backup_job_filename}" > /dev/null
|
if [ ! -f "${TEMP_PATH}"/backup_${now}.sqlite3 ] ; then
|
||||||
timer backup finish
|
print_error "SQLite3 backup failed! Exitting"
|
||||||
|
return 1
|
||||||
|
fi
|
||||||
|
compression
|
||||||
|
run_as_user ${play_fair} cat "${TEMP_PATH}"/backup_${now}.sqlite3 | ${dir_compress_cmd} | run_as_user tee "${TEMP_PATH}/${backup_job_filename}" > /dev/null
|
||||||
|
rm -rf "${TEMP_PATH}"/backup_${now}.sqlite3
|
||||||
if var_true "${DEBUG_BACKUP_SQLITE3}" ; then debug off; fi
|
if var_true "${DEBUG_BACKUP_SQLITE3}" ; then debug off; fi
|
||||||
|
timer backup finish
|
||||||
file_encryption
|
file_encryption
|
||||||
generate_checksum
|
generate_checksum
|
||||||
move_dbbackup
|
move_dbbackup
|
||||||
@@ -1049,6 +1068,7 @@ compression() {
|
|||||||
|
|
||||||
case "${backup_job_compression,,}" in
|
case "${backup_job_compression,,}" in
|
||||||
bz* )
|
bz* )
|
||||||
|
print_debug "[compression] Selected BZIP"
|
||||||
compress_cmd="${play_fair} pbzip2 -q -${backup_job_compression_level} -p${backup_job_parallel_compression_threads} "
|
compress_cmd="${play_fair} pbzip2 -q -${backup_job_compression_level} -p${backup_job_parallel_compression_threads} "
|
||||||
compression_type="bzip2"
|
compression_type="bzip2"
|
||||||
dir_compress_cmd=${compress_cmd}
|
dir_compress_cmd=${compress_cmd}
|
||||||
@@ -1057,6 +1077,7 @@ compression() {
|
|||||||
backup_job_filename=${backup_job_filename}.bz2
|
backup_job_filename=${backup_job_filename}.bz2
|
||||||
;;
|
;;
|
||||||
gz* )
|
gz* )
|
||||||
|
print_debug "[compression] Selected GZIP"
|
||||||
compress_cmd="${play_fair} pigz -q -${backup_job_compression_level} -p ${backup_job_parallel_compression_threads} ${gz_rsyncable}"
|
compress_cmd="${play_fair} pigz -q -${backup_job_compression_level} -p ${backup_job_parallel_compression_threads} ${gz_rsyncable}"
|
||||||
compression_type="gzip"
|
compression_type="gzip"
|
||||||
extension=".gz"
|
extension=".gz"
|
||||||
@@ -1065,6 +1086,7 @@ compression() {
|
|||||||
backup_job_filename=${backup_job_filename}.gz
|
backup_job_filename=${backup_job_filename}.gz
|
||||||
;;
|
;;
|
||||||
xz* )
|
xz* )
|
||||||
|
print_debug "[compression] Selected XZIP"
|
||||||
compress_cmd="${play_fair} pixz -${backup_job_compression_level} -p ${backup_job_parallel_compression_threads} "
|
compress_cmd="${play_fair} pixz -${backup_job_compression_level} -p ${backup_job_parallel_compression_threads} "
|
||||||
compression_type="xzip"
|
compression_type="xzip"
|
||||||
dir_compress_cmd=${compress_cmd}
|
dir_compress_cmd=${compress_cmd}
|
||||||
@@ -1073,6 +1095,7 @@ compression() {
|
|||||||
backup_job_filename=${backup_job_filename}.xz
|
backup_job_filename=${backup_job_filename}.xz
|
||||||
;;
|
;;
|
||||||
zst* )
|
zst* )
|
||||||
|
print_debug "[compression] Selected ZSTD"
|
||||||
compress_cmd="${play_fair} zstd -q -q --rm -${backup_job_compression_level} -T${backup_job_parallel_compression_threads} ${gz_rsyncable}"
|
compress_cmd="${play_fair} zstd -q -q --rm -${backup_job_compression_level} -T${backup_job_parallel_compression_threads} ${gz_rsyncable}"
|
||||||
compression_type="zstd"
|
compression_type="zstd"
|
||||||
dir_compress_cmd=${compress_cmd}
|
dir_compress_cmd=${compress_cmd}
|
||||||
@@ -1121,9 +1144,10 @@ create_schedulers() {
|
|||||||
backup() {
|
backup() {
|
||||||
bootstrap_variables upgrade BACKUP
|
bootstrap_variables upgrade BACKUP
|
||||||
local backup_instances=$(printenv | sort | grep -c "^DB[0-9]._HOST")
|
local backup_instances=$(printenv | sort | grep -c "^DB[0-9]._HOST")
|
||||||
|
print_debug "[create_schedulers] Found '${backup_instances}' DB_HOST instances"
|
||||||
if [ -n "${DB_HOST}" ] && [ "${backup_instances}" ]; then
|
if [ -n "${DB_HOST}" ] && [ "${backup_instances}" ]; then
|
||||||
backup_instances=1;
|
backup_instances=1;
|
||||||
print_debug "Detected using old DB_ variables"
|
print_debug "[create_schedulers] Detected using old DB_ variables"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
for (( instance = 01; instance <= backup_instances; )) ; do
|
for (( instance = 01; instance <= backup_instances; )) ; do
|
||||||
@@ -1164,7 +1188,7 @@ EOF
|
|||||||
}
|
}
|
||||||
|
|
||||||
ctrl_c() {
|
ctrl_c() {
|
||||||
sed -i "/^{{BACKUP_NUMBER}}/d" /tmp/.container/db-backup-backups
|
sed -i "/^${backup_instance_number}/d" /tmp/.container/db-backup-backups
|
||||||
symlink_log
|
symlink_log
|
||||||
print_warn "User aborted"
|
print_warn "User aborted"
|
||||||
exit
|
exit
|
||||||
@@ -1179,7 +1203,11 @@ db_backup_container_init() {
|
|||||||
debug() {
|
debug() {
|
||||||
case "${1}" in
|
case "${1}" in
|
||||||
off)
|
off)
|
||||||
|
backup_job_log_level=$_original_job_log_level}
|
||||||
|
CONTAINER_LOG_LEVEL=${_original_container_log_level}
|
||||||
DEBUG_MODE=${_original_debug_mode}
|
DEBUG_MODE=${_original_debug_mode}
|
||||||
|
SHOW_OUTPUT=${_original_show_output}
|
||||||
|
|
||||||
if var_true "${DEBUG_MODE}" ; then
|
if var_true "${DEBUG_MODE}" ; then
|
||||||
set -x
|
set -x
|
||||||
else
|
else
|
||||||
@@ -1187,9 +1215,25 @@ debug() {
|
|||||||
fi
|
fi
|
||||||
;;
|
;;
|
||||||
on)
|
on)
|
||||||
|
if [ -z "${_original_container_log_level}" ]; then
|
||||||
|
_original_container_log_level="${CONTAINER_LOG_LEVEL}"
|
||||||
|
fi
|
||||||
|
if [ -z "${_original_job_log_level}" ]; then
|
||||||
|
_original_job_log_level="${backup_job_log_level}"
|
||||||
|
fi
|
||||||
|
|
||||||
if [ -z "${_original_debug_mode}" ]; then
|
if [ -z "${_original_debug_mode}" ]; then
|
||||||
_original_debug_mode="${DEBUG_MODE}"
|
_original_debug_mode="${DEBUG_MODE}"
|
||||||
fi
|
fi
|
||||||
|
if [ -z "${_original_show_output}" ]; then
|
||||||
|
_original_show_output="${SHOW_OUTPUT}"
|
||||||
|
if ! [[ "${_original_show_output,,}" =~ true|false ]]; then
|
||||||
|
__original_show_output="FALSE"
|
||||||
|
fi
|
||||||
|
fi
|
||||||
|
backup_job_log_level=DEBUG
|
||||||
|
CONTAINER_LOG_LEVEL=DEBUG
|
||||||
|
SHOW_OUTPUT=TRUE
|
||||||
set -x
|
set -x
|
||||||
;;
|
;;
|
||||||
esac
|
esac
|
||||||
@@ -1199,27 +1243,33 @@ file_encryption() {
|
|||||||
if var_true "${DEBUG_FILE_ENCRYPTION}" ; then debug on; fi
|
if var_true "${DEBUG_FILE_ENCRYPTION}" ; then debug on; fi
|
||||||
if var_true "${backup_job_encrypt}" ; then
|
if var_true "${backup_job_encrypt}" ; then
|
||||||
if [ "${exit_code}" = "0" ] ; then
|
if [ "${exit_code}" = "0" ] ; then
|
||||||
print_debug "Encrypting"
|
print_debug "[file_encryption] Encrypting"
|
||||||
output_off
|
output_off
|
||||||
if [ -n "${backup_job_encrypt_passphrase}" ] && [ -n "${backup_job_encrypt_pubkey}" ]; then
|
if [ -n "${backup_job_encrypt_passphrase}" ] && [ -n "${backup_job_encrypt_public_key}" ]; then
|
||||||
print_error "Can't encrypt as both ENCRYPT_PASSPHRASE and ENCRYPT_PUBKEY exist!"
|
print_error "Can't encrypt as both ENCRYPT_PASSPHRASE and ENCRYPT_PUBKEY exist!"
|
||||||
return
|
return
|
||||||
elif [ -n "${backup_job_encrypt_passphrase}" ] && [ -z "${backup_job_encrypt_pubkey}" ]; then
|
elif [ -n "${backup_job_encrypt_passphrase}" ] && [ -z "${backup_job_encrypt_public_key}" ]; then
|
||||||
print_notice "Encrypting with GPG Passphrase"
|
print_notice "Encrypting with GPG Passphrase"
|
||||||
encrypt_routines_start_time=$(date +'%s')
|
encrypt_routines_start_time=$(date +'%s')
|
||||||
encrypt_tmp_dir=$(run_as_user mktemp -d)
|
encrypt_tmp_dir=$(run_as_user mktemp -d)
|
||||||
echo "${backup_job_encrypt_passphrase}" | silent run_as_user ${play_fair} gpg --batch --home ${encrypt_tmp_dir} --yes --passphrase-fd 0 -c "${TEMP_PATH}"/"${backup_job_filename}"
|
echo "${backup_job_encrypt_passphrase}" | silent run_as_user ${play_fair} gpg --batch --home ${encrypt_tmp_dir} --yes --passphrase-fd 0 -c "${TEMP_PATH}"/"${backup_job_filename}"
|
||||||
rm -rf "${encrypt_tmp_dir}"
|
rm -rf "${encrypt_tmp_dir}"
|
||||||
elif [ -z "${backup_job_encrypt_passphrase}" ] && [ -n "${backup_job_encrypt_pubkey}" ]; then
|
elif [ -z "${backup_job_encrypt_passphrase}" ] && [ -n "${backup_job_encrypt_public_key}" ] && [ -n "${backup_job_encrypt_private_key}" ]; then
|
||||||
if [ -f "${backup_job_encrypt_pubkey}" ]; then
|
if [ -f "${backup_job_encrypt_private_key}" ]; then
|
||||||
encrypt_routines_start_time=$(date +'%s')
|
encrypt_routines_start_time=$(date +'%s')
|
||||||
print_notice "Encrypting with GPG Public Key"
|
print_notice "Encrypting with GPG Private Key"
|
||||||
encrypt_tmp_dir=$(run_as_user mktemp -d)
|
encrypt_tmp_dir=$(run_as_user mktemp -d)
|
||||||
silent run_as_user ${play_fair} gpg --batch --yes --home "${encrypt_tmp_dir}" --recipient-file "${backup_job_encrypt_pubkey}" -c "${TEMP_PATH}"/"${backup_job_filename}"
|
cat "${backup_job_encrypt_private_key}" | run_as_user tee "${encrypt_tmp_dir}"/private_key.asc > /dev/null
|
||||||
|
print_debug "[file_encryption] [key] Importing Private Key"
|
||||||
|
silent run_as_user gpg --home ${encrypt_tmp_dir} --batch --import "${encrypt_tmp_dir}"/private_key.asc
|
||||||
|
print_debug "[file_encryption] [key] Encrypting to Public Key"
|
||||||
|
cat "${backup_job_encrypt_public_key}" | run_as_user tee "${encrypt_tmp_dir}"/public_key.asc > /dev/null
|
||||||
|
silent run_as_user ${play_fair} gpg --batch --yes --home "${encrypt_tmp_dir}" --encrypt --recipient-file "${encrypt_tmp_dir}"/public_key.asc "${TEMP_PATH}"/"${backup_job_filename}"
|
||||||
rm -rf "${encrypt_tmp_dir}"
|
rm -rf "${encrypt_tmp_dir}"
|
||||||
fi
|
fi
|
||||||
fi
|
fi
|
||||||
if [ -f "${TEMP_PATH}"/"${backup_job_filename}".gpg ]; then
|
if [ -f "${TEMP_PATH}"/"${backup_job_filename}".gpg ]; then
|
||||||
|
print_debug "[file_encryption] Deleting original file"
|
||||||
rm -rf "${TEMP_PATH:?}"/"${backup_job_filename:?}"
|
rm -rf "${TEMP_PATH:?}"/"${backup_job_filename:?}"
|
||||||
backup_job_filename="${backup_job_filename}.gpg"
|
backup_job_filename="${backup_job_filename}.gpg"
|
||||||
|
|
||||||
@@ -1229,6 +1279,9 @@ file_encryption() {
|
|||||||
- dbbackup.backup.encrypt.duration.[${backup_job_db_host}.${backup_job_db_name}] ${encrypt_routines_total_time}
|
- dbbackup.backup.encrypt.duration.[${backup_job_db_host}.${backup_job_db_name}] ${encrypt_routines_total_time}
|
||||||
EOF
|
EOF
|
||||||
)
|
)
|
||||||
|
else
|
||||||
|
print_error "Encryption failed! Could not detect encrypted file"
|
||||||
|
return 99
|
||||||
fi
|
fi
|
||||||
else
|
else
|
||||||
write_log error "Skipping encryption because backup did not complete successfully"
|
write_log error "Skipping encryption because backup did not complete successfully"
|
||||||
@@ -1395,23 +1448,23 @@ EOF
|
|||||||
for notification_type in $notification_types ; do
|
for notification_type in $notification_types ; do
|
||||||
case "${notification_type,,}" in
|
case "${notification_type,,}" in
|
||||||
"custom" )
|
"custom" )
|
||||||
print_debug "Sending Notification via custom"
|
print_debug "[notify] Sending Notification via custom"
|
||||||
notification_custom "${1}" "${2}" "${3}" "${4}" "${5}"
|
notification_custom "${1}" "${2}" "${3}" "${4}" "${5}"
|
||||||
;;
|
;;
|
||||||
"email" | "mail" )
|
"email" | "mail" )
|
||||||
print_debug "Sending Notification via email"
|
print_debug "[notify] Sending Notification via email"
|
||||||
notification_email "${1}" "${2}" "${3}" "${4}" "${5}"
|
notification_email "${1}" "${2}" "${3}" "${4}" "${5}"
|
||||||
;;
|
;;
|
||||||
"matrix" )
|
"matrix" )
|
||||||
print_debug "Sending Notification via Matrix"
|
print_debug "[notify] Sending Notification via Matrix"
|
||||||
notification_matrix "${1}" "${2}" "${3}" "${4}" "${5}"
|
notification_matrix "${1}" "${2}" "${3}" "${4}" "${5}"
|
||||||
;;
|
;;
|
||||||
"mattermost" )
|
"mattermost" )
|
||||||
print_debug "Sending Notification via Mattermost"
|
print_debug "[notify] Sending Notification via Mattermost"
|
||||||
notification_mattermost "${1}" "${2}" "${3}" "${4}" "${5}"
|
notification_mattermost "${1}" "${2}" "${3}" "${4}" "${5}"
|
||||||
;;
|
;;
|
||||||
"rocketchat" )
|
"rocketchat" )
|
||||||
print_debug "Sending Notification via Rocketchat"
|
print_debug "[notify] Sending Notification via Rocketchat"
|
||||||
notification_rocketchat "${1}" "${2}" "${3}" "${4}" "${5}"
|
notification_rocketchat "${1}" "${2}" "${3}" "${4}" "${5}"
|
||||||
;;
|
;;
|
||||||
* )
|
* )
|
||||||
@@ -1454,8 +1507,37 @@ move_dbbackup() {
|
|||||||
write_log debug "Moving backup to filesystem"
|
write_log debug "Moving backup to filesystem"
|
||||||
run_as_user mkdir -p "${backup_job_filesystem_path}"
|
run_as_user mkdir -p "${backup_job_filesystem_path}"
|
||||||
if [ "${backup_job_checksum,,}" != "none" ] ; then run_as_user mv "${TEMP_PATH}"/*."${checksum_extension}" "${backup_job_filesystem_path}"/ ; fi
|
if [ "${backup_job_checksum,,}" != "none" ] ; then run_as_user mv "${TEMP_PATH}"/*."${checksum_extension}" "${backup_job_filesystem_path}"/ ; fi
|
||||||
|
if var_true "${DEBUG_MOVE_DBBACKUP}"; then
|
||||||
|
cat <<EOF
|
||||||
|
## BEGIN Before Moving file from TEMP_PATH $(TZ=${TIMEZONE} date)
|
||||||
|
##
|
||||||
|
|
||||||
|
$(ls -l "${TEMP_PATH}"/*)
|
||||||
|
|
||||||
|
## END
|
||||||
|
EOF
|
||||||
|
fi
|
||||||
run_as_user mv "${TEMP_PATH}"/"${backup_job_filename}" "${backup_job_filesystem_path}"/"${backup_job_filename}"
|
run_as_user mv "${TEMP_PATH}"/"${backup_job_filename}" "${backup_job_filesystem_path}"/"${backup_job_filename}"
|
||||||
move_exit_code=$?
|
move_exit_code=$?
|
||||||
|
if var_true "${DEBUG_MOVE_DBBACKUP}"; then
|
||||||
|
cat <<EOF
|
||||||
|
## BEGIN After Moving file from TEMP_PATH $(TZ=${TIMEZONE} date)
|
||||||
|
##
|
||||||
|
|
||||||
|
$(ls -l "${TEMP_PATH}"/*)
|
||||||
|
|
||||||
|
## END
|
||||||
|
|
||||||
|
## BEGIN After Moving file to _FILESYSTEM_PATH $(TZ=${TIMEZONE} date)
|
||||||
|
##
|
||||||
|
|
||||||
|
$(ls -l "${backup_job_filesystem_path}"/*)
|
||||||
|
|
||||||
|
## END
|
||||||
|
|
||||||
|
EOF
|
||||||
|
fi
|
||||||
|
|
||||||
if var_true "${backup_job_create_latest_symlink}" ; then
|
if var_true "${backup_job_create_latest_symlink}" ; then
|
||||||
run_as_user ln -sfr "${backup_job_filesystem_path}"/"${backup_job_filename}" "${backup_job_filesystem_path}"/latest-"${backup_job_filename_base}"
|
run_as_user ln -sfr "${backup_job_filesystem_path}"/"${backup_job_filename}" "${backup_job_filesystem_path}"/latest-"${backup_job_filename_base}"
|
||||||
fi
|
fi
|
||||||
@@ -1661,7 +1743,7 @@ process_limiter() {
|
|||||||
}
|
}
|
||||||
|
|
||||||
run_as_user() {
|
run_as_user() {
|
||||||
s6-setuidgid "${DBBACKUP_USER}" $@
|
sudo -Eu "${DBBACKUP_USER}" "$@"
|
||||||
}
|
}
|
||||||
|
|
||||||
setup_mode() {
|
setup_mode() {
|
||||||
@@ -1894,18 +1976,18 @@ timer() {
|
|||||||
;;
|
;;
|
||||||
datetime)
|
datetime)
|
||||||
time_begin=$(date -d "${backup_job_backup_begin}" +%s)
|
time_begin=$(date -d "${backup_job_backup_begin}" +%s)
|
||||||
print_debug "BACKUP_BEGIN time = ${time_begin}"
|
print_debug "[timer] [datetime] BACKUP_BEGIN time = ${time_begin}"
|
||||||
time_wait=$(( time_begin - time_current ))
|
time_wait=$(( time_begin - time_current ))
|
||||||
print_debug "Difference in seconds: ${time_wait}"
|
print_debug "[timer] [datetime] Difference in seconds: ${time_wait}"
|
||||||
|
|
||||||
if (( ${time_wait} < 0 )); then
|
if (( ${time_wait} < 0 )); then
|
||||||
time_wait=$(( (${time_wait} + (${backup_job_backup_interval} - 1)) / (${backup_job_backup_interval} * 60) ))
|
time_wait=$(( (${time_wait} + (${backup_job_backup_interval} - 1)) / (${backup_job_backup_interval} * 60) ))
|
||||||
time_wait=$(( ${time_wait} * -1 ))
|
time_wait=$(( ${time_wait} * -1 ))
|
||||||
print_debug "Difference in seconds (rounded) time_wait is in the past : ${time_wait}"
|
print_debug "[timer] [datetime] Difference in seconds (rounded) time_wait is in the past : ${time_wait}"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
time_future=$(( time_current + time_wait ))
|
time_future=$(( time_current + time_wait ))
|
||||||
print_debug "Future execution time = ${time_future}"
|
print_debug "[timer] [datetime] Future execution time = ${time_future}"
|
||||||
;;
|
;;
|
||||||
job)
|
job)
|
||||||
case "${2}" in
|
case "${2}" in
|
||||||
|
|||||||
Reference in New Issue
Block a user