eolisation

This commit is contained in:
Emmanuel Garette 2020-10-19 21:47:42 +02:00
parent 730845c861
commit 586ce3455c
5 changed files with 13 additions and 2 deletions

1
db/lemur.sql Normal file
View File

@ -0,0 +1 @@
CREATE EXTENSION pg_trgm;

View File

@ -17,11 +17,13 @@
<variable name='lemur_db_user' type='string' description="Nom de l'utilisateur de la base de donnée de Lemur" mode="expert"> <variable name='lemur_db_user' type='string' description="Nom de l'utilisateur de la base de donnée de Lemur" mode="expert">
<value>lemur</value> <value>lemur</value>
</variable> </variable>
<variable name='lemur_admin_password' type='password' description="Mot de passe de l'utilisateur admin de Lemur" auto_save="True"/>
</family> </family>
</variables> </variables>
<constraints> <constraints>
<fill name='gen_random_base64' target='lemur_secret'/> <fill name='gen_random_base64' target='lemur_secret'/>
<fill name='gen_random_base64' target='lemur_token_secret'/> <fill name='gen_random_base64' target='lemur_token_secret'/>
<fill name='gen_random_base64' target='lemur_encrypt_keys'/> <fill name='gen_random_base64' target='lemur_encrypt_keys'/>
<fill name='gen_random' target='lemur_admin_password'/>
</constraints> </constraints>
</creole> </creole>

View File

@ -5,4 +5,10 @@ set -e
# install unrelease python modules # install unrelease python modules
pip3 install alembic-autogenerate-enums==0.0.2 asyncpool==1.0 certsrv==2.1.1 cryptography==3.1.1 dnspython3==1.15.0 dyn==1.8.1 flask-replicated==1.4 javaobj-py3==0.4.0.1 jsonlines==1.2.0 logmatic-python==0.1.7 marshmallow==2.20.4 pycryptodomex==3.9.7 pyjks==20.0.0 raven[flask]==6.10.0 twofish==0.3.0 pip3 install alembic-autogenerate-enums==0.0.2 asyncpool==1.0 certsrv==2.1.1 cryptography==3.1.1 dnspython3==1.15.0 dyn==1.8.1 flask-replicated==1.4 javaobj-py3==0.4.0.1 jsonlines==1.2.0 logmatic-python==0.1.7 marshmallow==2.20.4 pycryptodomex==3.9.7 pyjks==20.0.0 raven[flask]==6.10.0 twofish==0.3.0
cd /usr/share/lemur/
systemctl start postgresql.service
lemur --config=/etc/lemur/lemur.conf.py init --password $(CreoleGet lemur_admin_password)
systemctl stop postgresql.service
rm -f *.log
exit 0 exit 0

View File

@ -51,7 +51,7 @@ LOG_FILE = "lemur.log"
# modify this if you are not using a local database # modify this if you are not using a local database
SQLALCHEMY_DATABASE_PASSWORD = 'replaceme' SQLALCHEMY_DATABASE_PASSWORD = 'replaceme'
SQLALCHEMY_DATABASE_URI = f'postgresql://%%lemur_db_user:{SQLALCHEMY_DATABASE_PASSWORD}@localhost:5432/%%lemur_db_name' SQLALCHEMY_DATABASE_URI = f'postgresql:///%%lemur_db_name?host=/var/run/postgresql&user=%%lemur_db_user&password={SQLALCHEMY_DATABASE_PASSWORD}'
# AWS # AWS

View File

@ -12,5 +12,7 @@ dbport: 5432
dbtype: postgres dbtype: postgres
dbname: %%dbname dbname: %%dbname
template: 'template0' template: 'template0'
sqlscripts:
- /usr/share/eole/db/lemur/gen/lemur.sql
pwd_files: pwd_files:
- {'file': '/etc/lemur/lemur.conf.py', 'pattern': 'SQLALCHEMY_DATABASE_PASSWORD = "'} - {'file': '/etc/lemur/lemur.conf.py', 'pattern': "SQLALCHEMY_DATABASE_PASSWORD = '"}