anchorage_layer_simple/add-watermark-certificate.sh
ncantu 26a53327a4 Enhance: Complete dashboard documentation and new services integration
**Motivations:**
- Complete documentation for dashboard, domains, ports and environment configuration
- Add new services (ClamAV API, Watermark API) to the infrastructure
- Enhance dashboard with new pages and improved functionality
- Improve deployment scripts and service configurations

**Root causes:**
- Missing comprehensive documentation for infrastructure setup
- Need for antivirus scanning service integration
- Need for watermark service integration
- Dashboard required additional pages and features

**Correctifs:**
- Added comprehensive documentation in docs/ (DASHBOARD.md, DOMAINS_AND_PORTS.md, ENVIRONMENT.md)
- Updated systemd service files with proper environment variables
- Enhanced nginx proxy configuration script
- Updated maintenance documentation

**Evolutions:**
- Added new ClamAV API service (api-clamav) for file scanning
- Added new Watermark API service (api-filigrane) for document watermarking
- Enhanced signet-dashboard with new learn.html page
- Improved dashboard UI with better styles and navigation
- Enhanced app.js with new functionality and better error handling
- Updated API documentation page with complete endpoint descriptions
- Added deployment scripts for watermark and nginx configuration
- Updated hash and UTXO lists with latest data
- Enhanced server.js with new routes and improved Bitcoin RPC integration

**Pages affectées:**
- docs/DASHBOARD.md: New comprehensive dashboard documentation
- docs/DOMAINS_AND_PORTS.md: New infrastructure domains and ports documentation
- docs/ENVIRONMENT.md: New environment variables documentation
- docs/MAINTENANCE.md: Updated maintenance procedures
- docs/README.md: Updated main documentation
- signet-dashboard/public/app.js: Enhanced with new features
- signet-dashboard/public/styles.css: Improved styling
- signet-dashboard/public/index.html: Enhanced main page
- signet-dashboard/public/learn.html: New educational page
- signet-dashboard/public/api-docs.html: Enhanced API documentation
- signet-dashboard/public/hash-list.html: Updated hash list page
- signet-dashboard/public/utxo-list.html: Updated UTXO list page
- signet-dashboard/public/join-signet.html: Updated join signet page
- signet-dashboard/src/server.js: Enhanced server with new routes
- signet-dashboard/start.sh: Updated startup script
- signet-dashboard/signet-dashboard.service: Updated systemd service
- api-anchorage/anchorage-api.service: Updated systemd service
- api-faucet/faucet-api.service: Updated systemd service
- configure-nginx-proxy.sh: Enhanced nginx configuration script
- add-watermark-certificate.sh: New watermark certificate script
- deploy-watermark-nginx.sh: New deployment script
- api-clamav/: New ClamAV API service
- api-filigrane/: New Watermark API service
- hash_list.txt, utxo_list.txt: Updated with latest data
- anchor_count.txt: Updated anchor count
2026-01-25 17:43:05 +01:00

93 lines
2.9 KiB
Bash
Executable File

#!/bin/bash
# Script pour ajouter le certificat SSL pour watermark.certificator.4nkweb.com
# Usage: sudo ./add-watermark-certificate.sh
set -e
DOMAIN="watermark.certificator.4nkweb.com"
NGINX_SITES_AVAILABLE="/etc/nginx/sites-available"
NGINX_SITES_ENABLED="/etc/nginx/sites-enabled"
echo "=== Ajout du certificat SSL pour ${DOMAIN} ==="
echo ""
# Vérifier les permissions
if [ "$EUID" -ne 0 ]; then
echo "⚠️ Ce script nécessite les permissions root"
echo " Utilisez: sudo $0"
exit 1
fi
# Vérifier que Nginx est installé
if ! command -v nginx &> /dev/null && [ ! -f /usr/sbin/nginx ] && [ ! -f /usr/bin/nginx ]; then
echo "❌ Nginx n'est pas installé"
exit 1
fi
# Vérifier que Certbot est installé
if ! command -v certbot &> /dev/null && [ ! -f /usr/bin/certbot ]; then
echo "⚠️ Certbot n'est pas installé. Installation..."
apt-get update
apt-get install -y certbot python3-certbot-nginx
fi
# Vérifier que la configuration HTTP existe
if [ ! -f "${NGINX_SITES_AVAILABLE}/${DOMAIN}" ]; then
echo "❌ La configuration HTTP pour ${DOMAIN} n'existe pas"
echo " Exécutez d'abord: sudo ./configure-nginx-proxy.sh"
exit 1
fi
# Vérifier que le site est activé
if [ ! -L "${NGINX_SITES_ENABLED}/${DOMAIN}" ]; then
echo "⚠️ Le site n'est pas activé. Activation..."
ln -sf "${NGINX_SITES_AVAILABLE}/${DOMAIN}" "${NGINX_SITES_ENABLED}/${DOMAIN}"
fi
# Tester la configuration Nginx
echo "🔍 Test de la configuration Nginx..."
if nginx -t; then
echo "✅ Configuration Nginx valide"
else
echo "❌ Erreur dans la configuration Nginx"
exit 1
fi
# Recharger Nginx pour s'assurer que la config HTTP est active
echo "🔄 Rechargement de Nginx..."
systemctl reload nginx || service nginx reload
# Générer le certificat SSL
echo ""
echo "🔐 Génération du certificat SSL pour ${DOMAIN}..."
echo " Certbot va automatiquement modifier la configuration pour ajouter HTTPS"
echo ""
if certbot --nginx -d "${DOMAIN}" --non-interactive --agree-tos --email admin@4nkweb.com --redirect; then
echo "✅ Certificat SSL généré et configuration HTTPS créée pour ${DOMAIN}"
else
echo "❌ Erreur lors de la génération du certificat"
echo ""
echo "Vous pouvez essayer manuellement avec:"
echo " sudo certbot --nginx -d ${DOMAIN}"
exit 1
fi
# Recharger Nginx final
echo ""
echo "🔄 Rechargement final de Nginx..."
systemctl reload nginx || service nginx reload
echo ""
echo "✅ Certificat SSL ajouté avec succès !"
echo ""
echo "📋 Vérification:"
echo " - Test HTTPS: curl -I https://${DOMAIN}/health"
echo " - Vérifier le certificat: openssl s_client -connect ${DOMAIN}:443 -servername ${DOMAIN} < /dev/null 2>/dev/null | openssl x509 -noout -dates"
echo ""
echo "🔍 Logs:"
echo " - Nginx: tail -f /var/log/nginx/${DOMAIN}.error.log"
echo " - Certbot: tail -f /var/log/letsencrypt/letsencrypt.log"
echo ""