#!/bin/bash # from # https://github.com/spiritLHLS/pve # 2023.10.09 # ./buildct.sh CTID 密码 CPU核数 内存 硬盘 SSH端口 80端口 443端口 外网端口起 外网端口止 系统 存储盘 独立IPV6 # ./buildct.sh 102 1234567 1 512 5 20001 20002 20003 30000 30025 debian11 local N # 用颜色输出信息 _red() { echo -e "\033[31m\033[01m$@\033[0m"; } _green() { echo -e "\033[32m\033[01m$@\033[0m"; } _yellow() { echo -e "\033[33m\033[01m$@\033[0m"; } _blue() { echo -e "\033[36m\033[01m$@\033[0m"; } reading() { read -rp "$(_green "$1")" "$2"; } utf8_locale=$(locale -a 2>/dev/null | grep -i -m 1 -E "UTF-8|utf8") if [[ -z "$utf8_locale" ]]; then echo "No UTF-8 locale found" else export LC_ALL="$utf8_locale" export LANG="$utf8_locale" export LANGUAGE="$utf8_locale" echo "Locale set to $utf8_locale" fi get_system_arch() { local sysarch="$(uname -m)" if [ "${sysarch}" = "unknown" ] || [ "${sysarch}" = "" ]; then local sysarch="$(arch)" fi # 根据架构信息设置系统位数并下载文件,其余 * 包括了 x86_64 case "${sysarch}" in "i386" | "i686" | "x86_64") system_arch="x86" ;; "armv7l" | "armv8" | "armv8l" | "aarch64") system_arch="arch" ;; *) system_arch="" ;; esac } check_china() { _yellow "IP area being detected ......" if [[ -z "${CN}" ]]; then if [[ $(curl -m 6 -s https://ipapi.co/json | grep 'China') != "" ]]; then _yellow "根据ipapi.co提供的信息,当前IP可能在中国,使用中国镜像下载" CN=true else if [[ $? -ne 0 ]]; then if [[ $(curl -m 6 -s cip.cc) =~ "中国" ]]; then _yellow "根据cip.cc提供的信息,当前IP可能在中国,使用中国镜像下载" CN=true fi fi fi fi } get_system_arch check_china if [ -z "${system_arch}" ] || [ ! -v system_arch ]; then _red "This script can only run on machines under x86_64 or arm architecture." exit 1 fi cd /root >/dev/null 2>&1 CTID="${1:-102}" password="${2:-123456}" core="${3:-1}" memory="${4:-512}" disk="${5:-5}" sshn="${6:-20001}" web1_port="${7:-20002}" web2_port="${8:-20003}" port_first="${9:-29975}" port_last="${10:-30000}" system_ori="${11:-debian11}" storage="${12:-local}" independent_ipv6="${13:-N}" independent_ipv6=$(echo "$independent_ipv6" | tr '[:upper:]' '[:lower:]') rm -rf "ct$name" en_system=$(echo "$system_ori" | sed 's/[0-9]*//g') num_system=$(echo "$system_ori" | sed 's/[a-zA-Z]*//g') system="$en_system-$num_system" if [ "$system_arch" = "arch" ]; then if [ "$en_system" = "ubuntu" ]; then case "$system_ori" in ubuntu14) version="trusty" ;; ubuntu16) version="xenial" ;; ubuntu18) version="bionic" ;; ubuntu20) version="focal" ;; ubuntu22) version="jammy" ;; *) echo "Unsupported Ubuntu version." exit 1 ;; esac elif [ "$en_system" = "debian" ]; then case "$system_ori" in debian6) version="squeeze" ;; debian7) version="wheezy" ;; debian8) version="jessie" ;; debian9) version="stretch" ;; debian10) version="buster" ;; debian11) version="bullseye" ;; debian12) version="bookworm" ;; *) echo "Unsupported Debian version." exit 1 ;; esac else version=${num_system} fi if [[ -z "${CN}" || "${CN}" != true ]]; then curl -o "/var/lib/vz/template/cache/${en_system}-arm64-${version}-cloud.tar.xz" "https://jenkins.linuxcontainers.org/view/LXC/job/image-${en_system}/architecture=arm64,release=${version},variant=cloud/lastSuccessfulBuild/artifact/rootfs.tar.xz" else # https://mirror.tuna.tsinghua.edu.cn/lxc-images/images/ URL="https://mirror.tuna.tsinghua.edu.cn/lxc-images/images/${en_system}/${version}/arm64/cloud/" HTML=$(curl -s "$URL") folder_links_dates=$(echo "$HTML" | grep -oE '([^<]+)' | sed -E 's/([^<]+)/\1 \2/') sorted_links=$(echo "$folder_links_dates" | sort -k2 -r) latest_folder_link=$(echo "$sorted_links" | head -n 1 | awk '{print $1}') latest_folder_url="${URL}${latest_folder_link}" curl -o "/var/lib/vz/template/cache/${en_system}-arm64-${version}-cloud.tar.xz" "${latest_folder_url}/rootfs.tar.xz" fi else system_name=$(pveam available --section system | grep "$system" | awk '{print $2}' | head -n1) if ! pveam available --section system | grep "$system" >/dev/null; then _red "No such system" exit else _green "Use $system_name" fi pveam download local $system_name fi check_cdn() { local o_url=$1 for cdn_url in "${cdn_urls[@]}"; do if curl -sL -k "$cdn_url$o_url" --max-time 6 | grep -q "success" >/dev/null 2>&1; then export cdn_success_url="$cdn_url" return fi sleep 0.5 done export cdn_success_url="" } check_cdn_file() { check_cdn "https://raw.githubusercontent.com/spiritLHLS/ecs/main/back/test" if [ -n "$cdn_success_url" ]; then _yellow "CDN available, using CDN" else _yellow "No CDN available, no use CDN" fi } cdn_urls=("https://cdn.spiritlhl.workers.dev/" "https://cdn3.spiritlhl.net/" "https://cdn1.spiritlhl.net/" "https://ghproxy.com/" "https://cdn2.spiritlhl.net/") check_cdn_file first_digit=${CTID:0:1} second_digit=${CTID:1:1} third_digit=${CTID:2:1} if [ $first_digit -le 2 ]; then if [ $second_digit -eq 0 ]; then num=$third_digit else num=$second_digit$third_digit fi else num=$((first_digit - 2))$second_digit$third_digit fi # 检测IPV6相关的信息 if [ "$independent_ipv6" == "y" ]; then # 检测ndppd服务是否启动了 service_status=$(systemctl is-active ndpresponder.service) if [ "$service_status" == "active" ]; then _green "The ndpresponder service started successfully and is running, and the host can open a service with a separate IPV6 address." _green "ndpresponder服务启动成功且正在运行,宿主机可开设带独立IPV6地址的服务。" else _green "The status of the ndpresponder service is abnormal and the host may not open a service with a separate IPV6 address." _green "ndpresponder服务状态异常,宿主机不可开设带独立IPV6地址的服务。" exit 1 fi if [ -f /usr/local/bin/pve_check_ipv6 ]; then ipv6_address=$(cat /usr/local/bin/pve_check_ipv6) ipv6_address_without_last_segment="${ipv6_address%:*}:" fi if [ -f /usr/local/bin/pve_ipv6_prefixlen ]; then ipv6_prefixlen=$(cat /usr/local/bin/pve_ipv6_prefixlen) fi if [ -f /usr/local/bin/pve_ipv6_gateway ]; then ipv6_gateway=$(cat /usr/local/bin/pve_ipv6_gateway) fi else if [ -f /usr/local/bin/pve_check_ipv6 ]; then ipv6_address="2001:db8:1::2" IFS="/" read -ra parts <<<"$ipv6_address" part_1="${parts[0]}" part_2="${parts[1]}" IFS=":" read -ra part_1_parts <<<"$part_1" if [ ! -z "${part_1_parts[*]}" ]; then part_1_last="${part_1_parts[-1]}" if [ "$part_1_last" = "$CTID" ]; then ipv6_address="" else part_1_head=$(echo "$part_1" | awk -F':' 'BEGIN {OFS=":"} {last=""; for (i=1; i/etc/iptables/rules.v4 service netfilter-persistent restart # 容器的相关信息将会存储到对应的容器的NOTE中,可在WEB端查看 if [ "$independent_ipv6_status" == "Y" ]; then echo "$CTID $password $core $memory $disk $sshn $web1_port $web2_port $port_first $port_last $system_ori $storage ${ipv6_address_without_last_segment}${CTID}" >>"ct${CTID}" data=$(echo " CTID root密码-password CPU核数-CPU 内存-memory 硬盘-disk SSH端口 80端口 443端口 外网端口起-port-start 外网端口止-port-end 系统-system 存储盘-storage 独立IPV6地址-ipv6_address") else echo "$CTID $password $core $memory $disk $sshn $web1_port $web2_port $port_first $port_last $system_ori $storage" >>"ct${CTID}" data=$(echo " CTID root密码-password CPU核数-CPU 内存-memory 硬盘-disk SSH端口 80端口 443端口 外网端口起-port-start 外网端口止-port-end 系统-system 存储盘-storage") fi values=$(cat "ct${CTID}") IFS=' ' read -ra data_array <<<"$data" IFS=' ' read -ra values_array <<<"$values" length=${#data_array[@]} for ((i = 0; i < $length; i++)); do echo "${data_array[$i]} ${values_array[$i]}" echo "" done >"/tmp/temp${CTID}.txt" sed -i 's/^/# /' "/tmp/temp${CTID}.txt" cat "/etc/pve/lxc/${CTID}.conf" >>"/tmp/temp${CTID}.txt" cp "/tmp/temp${CTID}.txt" "/etc/pve/lxc/${CTID}.conf" rm -rf "/tmp/temp${CTID}.txt" cat "ct${CTID}"