**Motivations:** - Complete documentation for dashboard, domains, ports and environment configuration - Add new services (ClamAV API, Watermark API) to the infrastructure - Enhance dashboard with new pages and improved functionality - Improve deployment scripts and service configurations **Root causes:** - Missing comprehensive documentation for infrastructure setup - Need for antivirus scanning service integration - Need for watermark service integration - Dashboard required additional pages and features **Correctifs:** - Added comprehensive documentation in docs/ (DASHBOARD.md, DOMAINS_AND_PORTS.md, ENVIRONMENT.md) - Updated systemd service files with proper environment variables - Enhanced nginx proxy configuration script - Updated maintenance documentation **Evolutions:** - Added new ClamAV API service (api-clamav) for file scanning - Added new Watermark API service (api-filigrane) for document watermarking - Enhanced signet-dashboard with new learn.html page - Improved dashboard UI with better styles and navigation - Enhanced app.js with new functionality and better error handling - Updated API documentation page with complete endpoint descriptions - Added deployment scripts for watermark and nginx configuration - Updated hash and UTXO lists with latest data - Enhanced server.js with new routes and improved Bitcoin RPC integration **Pages affectées:** - docs/DASHBOARD.md: New comprehensive dashboard documentation - docs/DOMAINS_AND_PORTS.md: New infrastructure domains and ports documentation - docs/ENVIRONMENT.md: New environment variables documentation - docs/MAINTENANCE.md: Updated maintenance procedures - docs/README.md: Updated main documentation - signet-dashboard/public/app.js: Enhanced with new features - signet-dashboard/public/styles.css: Improved styling - signet-dashboard/public/index.html: Enhanced main page - signet-dashboard/public/learn.html: New educational page - signet-dashboard/public/api-docs.html: Enhanced API documentation - signet-dashboard/public/hash-list.html: Updated hash list page - signet-dashboard/public/utxo-list.html: Updated UTXO list page - signet-dashboard/public/join-signet.html: Updated join signet page - signet-dashboard/src/server.js: Enhanced server with new routes - signet-dashboard/start.sh: Updated startup script - signet-dashboard/signet-dashboard.service: Updated systemd service - api-anchorage/anchorage-api.service: Updated systemd service - api-faucet/faucet-api.service: Updated systemd service - configure-nginx-proxy.sh: Enhanced nginx configuration script - add-watermark-certificate.sh: New watermark certificate script - deploy-watermark-nginx.sh: New deployment script - api-clamav/: New ClamAV API service - api-filigrane/: New Watermark API service - hash_list.txt, utxo_list.txt: Updated with latest data - anchor_count.txt: Updated anchor count
93 lines
2.9 KiB
Bash
Executable File
93 lines
2.9 KiB
Bash
Executable File
#!/bin/bash
|
|
|
|
# Script pour ajouter le certificat SSL pour watermark.certificator.4nkweb.com
|
|
# Usage: sudo ./add-watermark-certificate.sh
|
|
|
|
set -e
|
|
|
|
DOMAIN="watermark.certificator.4nkweb.com"
|
|
NGINX_SITES_AVAILABLE="/etc/nginx/sites-available"
|
|
NGINX_SITES_ENABLED="/etc/nginx/sites-enabled"
|
|
|
|
echo "=== Ajout du certificat SSL pour ${DOMAIN} ==="
|
|
echo ""
|
|
|
|
# Vérifier les permissions
|
|
if [ "$EUID" -ne 0 ]; then
|
|
echo "⚠️ Ce script nécessite les permissions root"
|
|
echo " Utilisez: sudo $0"
|
|
exit 1
|
|
fi
|
|
|
|
# Vérifier que Nginx est installé
|
|
if ! command -v nginx &> /dev/null && [ ! -f /usr/sbin/nginx ] && [ ! -f /usr/bin/nginx ]; then
|
|
echo "❌ Nginx n'est pas installé"
|
|
exit 1
|
|
fi
|
|
|
|
# Vérifier que Certbot est installé
|
|
if ! command -v certbot &> /dev/null && [ ! -f /usr/bin/certbot ]; then
|
|
echo "⚠️ Certbot n'est pas installé. Installation..."
|
|
apt-get update
|
|
apt-get install -y certbot python3-certbot-nginx
|
|
fi
|
|
|
|
# Vérifier que la configuration HTTP existe
|
|
if [ ! -f "${NGINX_SITES_AVAILABLE}/${DOMAIN}" ]; then
|
|
echo "❌ La configuration HTTP pour ${DOMAIN} n'existe pas"
|
|
echo " Exécutez d'abord: sudo ./configure-nginx-proxy.sh"
|
|
exit 1
|
|
fi
|
|
|
|
# Vérifier que le site est activé
|
|
if [ ! -L "${NGINX_SITES_ENABLED}/${DOMAIN}" ]; then
|
|
echo "⚠️ Le site n'est pas activé. Activation..."
|
|
ln -sf "${NGINX_SITES_AVAILABLE}/${DOMAIN}" "${NGINX_SITES_ENABLED}/${DOMAIN}"
|
|
fi
|
|
|
|
# Tester la configuration Nginx
|
|
echo "🔍 Test de la configuration Nginx..."
|
|
if nginx -t; then
|
|
echo "✅ Configuration Nginx valide"
|
|
else
|
|
echo "❌ Erreur dans la configuration Nginx"
|
|
exit 1
|
|
fi
|
|
|
|
# Recharger Nginx pour s'assurer que la config HTTP est active
|
|
echo "🔄 Rechargement de Nginx..."
|
|
systemctl reload nginx || service nginx reload
|
|
|
|
# Générer le certificat SSL
|
|
echo ""
|
|
echo "🔐 Génération du certificat SSL pour ${DOMAIN}..."
|
|
echo " Certbot va automatiquement modifier la configuration pour ajouter HTTPS"
|
|
echo ""
|
|
|
|
if certbot --nginx -d "${DOMAIN}" --non-interactive --agree-tos --email admin@4nkweb.com --redirect; then
|
|
echo "✅ Certificat SSL généré et configuration HTTPS créée pour ${DOMAIN}"
|
|
else
|
|
echo "❌ Erreur lors de la génération du certificat"
|
|
echo ""
|
|
echo "Vous pouvez essayer manuellement avec:"
|
|
echo " sudo certbot --nginx -d ${DOMAIN}"
|
|
exit 1
|
|
fi
|
|
|
|
# Recharger Nginx final
|
|
echo ""
|
|
echo "🔄 Rechargement final de Nginx..."
|
|
systemctl reload nginx || service nginx reload
|
|
|
|
echo ""
|
|
echo "✅ Certificat SSL ajouté avec succès !"
|
|
echo ""
|
|
echo "📋 Vérification:"
|
|
echo " - Test HTTPS: curl -I https://${DOMAIN}/health"
|
|
echo " - Vérifier le certificat: openssl s_client -connect ${DOMAIN}:443 -servername ${DOMAIN} < /dev/null 2>/dev/null | openssl x509 -noout -dates"
|
|
echo ""
|
|
echo "🔍 Logs:"
|
|
echo " - Nginx: tail -f /var/log/nginx/${DOMAIN}.error.log"
|
|
echo " - Certbot: tail -f /var/log/letsencrypt/letsencrypt.log"
|
|
echo ""
|