Update 'installer.sh'
This commit is contained in:
42
installer.sh
42
installer.sh
@@ -16,7 +16,7 @@ echo "Ubuntu 18.04 VestaCP install"
|
|||||||
echo "Welk domein (zonder WWW) mag gekoppeld worden?"
|
echo "Welk domein (zonder WWW) mag gekoppeld worden?"
|
||||||
read domain
|
read domain
|
||||||
echo "Algemeen wachtwoord"
|
echo "Algemeen wachtwoord"
|
||||||
read passwd
|
read password
|
||||||
echo "Administrator email"
|
echo "Administrator email"
|
||||||
read email
|
read email
|
||||||
echo "Webserver:"
|
echo "Webserver:"
|
||||||
@@ -110,34 +110,34 @@ while true; do
|
|||||||
done
|
done
|
||||||
|
|
||||||
cd /tmp
|
cd /tmp
|
||||||
curl -O http://vestacp.com/pub/vst-install.sh
|
wget http://vestacp.com/pub/vst-install.sh
|
||||||
bash vst-install.sh -f "$webserver" --named no --remi yes "$ftp" --iptables yes --fail2ban yes --quota no "$mail" --softaculous no --mysql yes --postgresql no --hostname "$domain" --email "$email" --password "$passwd" --interactive yes
|
bash vst-install.sh -f "$webserver" --named no --remi yes "$ftp" --iptables yes --fail2ban yes --quota no "$mail" --softaculous no --mysql yes --postgresql no --hostname "$domain" --email "$email" --password "$password" --interactive yes
|
||||||
|
|
||||||
##-------------##
|
##-------------##
|
||||||
# Certbot #
|
# Certbot #
|
||||||
##-------------##
|
##-------------##
|
||||||
|
|
||||||
case $webserver in
|
#case $webserver in
|
||||||
"NGINX+PHP-FPM")
|
# "NGINX+PHP-FPM")
|
||||||
certbot --nginx -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
# certbot --nginx -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
||||||
sed -i 's/ssl ipv6only/ssl http2 ipv6only/g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's/ssl ipv6only/ssl http2 ipv6only/g' /etc/nginx/sites-available/"$domain"
|
||||||
sed -i 's/listen 443 ssl/listen 443 ssl http2/g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's/listen 443 ssl/listen 443 ssl http2/g' /etc/nginx/sites-available/"$domain"
|
||||||
sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain"
|
||||||
break;;
|
# break;;
|
||||||
"NGINX+apache")
|
# "NGINX+apache")
|
||||||
certbot --nginx -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
# certbot --nginx -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
||||||
sed -i 's/ssl ipv6only/ssl http2 ipv6only/g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's/ssl ipv6only/ssl http2 ipv6only/g' /etc/nginx/sites-available/"$domain"
|
||||||
sed -i 's/listen 443 ssl/listen 443 ssl http2/g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's/listen 443 ssl/listen 443 ssl http2/g' /etc/nginx/sites-available/"$domain"
|
||||||
sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain"
|
# sed -i 's#include /etc/letsencrypt/options-ssl-nginx.conf;#ssl_ciphers EECDH+CHACHA20:EECDH+AES128:RSA+AES128:EECDH+AES256:RSA+AES256:EECDH+3DES:RSA+3DES:!MD5;#g' /etc/nginx/sites-available/"$domain"
|
||||||
break;;
|
# break;;
|
||||||
"Apache")
|
# "Apache")
|
||||||
certbot --apache -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
# certbot --apache -n -d "$domain" -d "www.$domain" -m "$email" --hsts --redirect --no-eff-email --agree-tos
|
||||||
break;;
|
# break;;
|
||||||
esac
|
#esac
|
||||||
|
|
||||||
cp /etc/letsencrypt/live/"$domain"/cert.pem /usr/local/vesta/ssl/certificate.crt
|
cp /etc/letsencrypt/live/"$domain"/cert.pem /usr/local/vesta/ssl/certificate.crt
|
||||||
cp /etc/letsencrypt/live/"$domain"/privkey.pem /usr/local/vesta/ssl/certificate.key
|
cp /etc/letsencrypt/live/"$domain"/privkey.pem /usr/local/vesta/ssl/certificate.key
|
||||||
service vesta restart
|
systemctl restart vesta
|
||||||
|
|
||||||
##-------------##
|
##-------------##
|
||||||
# Netdata #
|
# Netdata #
|
||||||
|
|||||||
Reference in New Issue
Block a user