Files
kgva/deploy/provision-lxc.sh
T
karim ffe4aca72d fix: filebrowser scroll+lang hover+black-flash+shell one-line
- filebrowser: select() only scrollIntoView on keyboard, not hover
- lang-switch: .lang-switch:hover → invert rule (header excluded before)
- black-flash: color-scheme light; dark script sets colorScheme
- shell: flex-wrap nowrap; keepEnd() scrolls on input

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
2026-07-03 02:00:35 +02:00

47 lines
2.2 KiB
Bash
Executable File

#!/usr/bin/env bash
# Provision an LXC for the kgva website (Docker + compose). RUN ON THE PROXMOX NODE.
#
# SAFE CUTOVER (recommended): create this NEW container on a FREE/temporary IP,
# test it, then point Caddy's upstream at it. Remove the OLD container only after
# the new one is verified. Do NOT reuse the old IP up front (IP conflict + no
# rollback). Override any value via env, e.g.: CTID=141 IP=10.0.0.50/24 ./provision-lxc.sh
set -euo pipefail
CTID="${CTID:-141}" # must be free: pct status $CTID → should error
HOSTNAME_="${HOSTNAME_:-kgva}"
IP="${IP:-CHANGE_ME/24}" # NEW/temporary ip, NOT the old one yet
GW="${GW:-CHANGE_ME}"
BRIDGE="${BRIDGE:-vmbr0}"
STORAGE="${STORAGE:-local-lvm}"
TEMPLATE="${TEMPLATE:-local:vztmpl/debian-12-standard_12.7-1_amd64.tar.zst}"
REPO="${REPO:-https://git.kgva.ch/karim/kgva.git}"
DISK="${DISK:-6}"; CORES="${CORES:-2}"; RAM="${RAM:-1024}"
echo "Creating LXC $CTID ($HOSTNAME_) on $IP ..."
pct create "$CTID" "$TEMPLATE" \
--hostname "$HOSTNAME_" --cores "$CORES" --memory "$RAM" \
--rootfs "${STORAGE}:${DISK}" \
--net0 "name=eth0,bridge=${BRIDGE},ip=${IP},gw=${GW}" \
--features nesting=1 --unprivileged 1 --onboot 1
pct start "$CTID"
sleep 6
pct exec "$CTID" -- bash -lc '
set -e
export DEBIAN_FRONTEND=noninteractive
apt-get update && apt-get install -y ca-certificates curl git
install -m 0755 -d /etc/apt/keyrings
curl -fsSL https://download.docker.com/linux/debian/gpg -o /etc/apt/keyrings/docker.asc
chmod a+r /etc/apt/keyrings/docker.asc
echo "deb [arch=$(dpkg --print-architecture) signed-by=/etc/apt/keyrings/docker.asc] https://download.docker.com/linux/debian $(. /etc/os-release; echo $VERSION_CODENAME) stable" \
> /etc/apt/sources.list.d/docker.list
apt-get update && apt-get install -y docker-ce docker-ce-cli containerd.io docker-compose-plugin
rm -rf /opt/kgva && git clone '"$REPO"' /opt/kgva
cd /opt/kgva && docker compose up -d --build
'
echo
echo "done. test the new container: curl -I http://${IP%/*}:8080"
echo "then point Caddy at ${IP%/*}:8080 (see deploy/Caddyfile), reload caddy,"
echo "verify the domain, and only THEN remove the old container."