install-eg.sh: fix issues with nginx install, remove apache2-websockets stuff
[sitka/sitka-tools.git] / deployment / install-eg.sh
1 #!/bin/bash
2 # IMPORTANT! This script assumes you have already installed OpenSRF.
3
4 HOSTNAME="nonprod"
5 DEFAULT_USER="opensrf"
6 INSTALL_USER="opensrf"
7 BUILDDIR="/home/${INSTALL_USER}/evergreen"
8 INSTALLDIR="/srv/openils"
9 BRANCH="user/jeffdavis/eg317-tpac"
10 STAMP_ID="rel_3_1_7"
11 ALT_STAMP_IDS="3_1_7"
12 VERSION="3.1.7.sitka.1"
13 SITKACONF="/home/${DEFAULT_USER}/sysadmin"
14 SITKACONF_BRANCH="master"
15 SITKATOOLS="/root/sitka-tools"
16
17 THISHOST=`hostname -s`
18
19 suwrap() {
20   su -s /bin/bash -c "source ~/.bashrc ; $1" $2
21 }
22
23 while getopts ":pecWbtu" opt ; do
24   case $opt in
25     p ) PROD="prod";;
26     e ) EDI="edi";;
27     c ) CRONTAB="crontab";;
28     W ) SKIPWEBCLIENT="skipwebclient";;
29     b ) USEBUNDLE="usebundle";;
30     t ) TARBALL="tarball";;
31     u ) UPDATEONLY="updateonly";;
32   esac
33 done
34 shift $(($OPTIND - 1))
35
36 if [[ -n "$PROD" ]] ; then
37   echo 'this is a production install'
38   [ "$HOSTNAME" == "nonprod" ] && HOSTNAME="prod"
39 else
40   echo 'this is NOT a production install'
41 fi
42
43 # as DEFAULT_USER
44
45 # grab Sitka config files
46 if [ ! -d "${SITKACONF}" ]
47 then
48   # this will fail unless DEFAULT_USER has read access to the repo
49   suwrap "cd /home/${DEFAULT_USER} && git clone git+ssh://git@git.sitka.bclibraries.ca/sitka-infra/sysadmin" ${DEFAULT_USER} || { echo "Could not get config files; exiting." ; exit 1; }
50 fi
51 suwrap "cd ${SITKACONF} && git fetch origin && git checkout ${SITKACONF_BRANCH} && git pull" ${DEFAULT_USER} || { echo "Could not checkout ${SITKACONF_BRANCH} config files; exiting." ; exit 1; }
52
53 if [[ -n "$TARBALL" ]] ; then
54   EGRELEASE="Evergreen-ILS-${VERSION}"
55   EGRELEASETGZ="${EGRELEASE}.tar.gz"
56   [ ${VERSION} == "3.1.0" ] && EGRELEASETGZ="Evergreen-ILS-3.1.0a.tar.gz"
57   BUILDDIR="/home/${INSTALL_USER}/${EGRELEASE}"
58   BRANCH="$VERSION"
59   echo "installing packaged upstream release ${EGRELEASE}"
60   # download and unpack EG release
61   rm -rf ${BUILDDIR}
62   if [ ! -f "/home/${INSTALL_USER}/${EGRELEASETGZ}" ] ; then
63     suwrap "cd /home/${INSTALL_USER} && wget http://open-ils.org/downloads/${EGRELEASETGZ}" ${INSTALL_USER} || { echo "Could not download EG release tarball ${EGRELEASETGZ}" ; exit 1; }
64   fi
65   suwrap "cd /home/${INSTALL_USER} && tar xzf ${EGRELEASETGZ}" ${INSTALL_USER}
66 else
67   # checkout EG source
68   if [ ! -d "${BUILDDIR}" ]
69   then
70     suwrap "cd /home/${INSTALL_USER} && git clone git+ssh://git@git.sitka.bclibraries.ca/sitka/evergreen evergreen" ${INSTALL_USER}
71   fi
72   suwrap "cd ${BUILDDIR} && git fetch origin && git checkout ${BRANCH} && git pull" ${INSTALL_USER}
73 fi
74
75 # as root
76 cd ${BUILDDIR} && make -f Open-ILS/src/extras/Makefile.install ubuntu-xenial
77 if [[ ! -n "$TARBALL" ]] ; then
78   cd ${BUILDDIR} && make -f Open-ILS/src/extras/Makefile.install ubuntu-xenial-developer # required for web client
79 fi
80 # by default, CPAN needs some manual input at this point; you can just accept all defaults
81  
82 # web client
83 if [[ ! -n "$TARBALL" && ! -n "$SKIPWEBCLIENT" ]] ; then
84   if [[ -n "$USEBUNDLE" ]] ; then
85     # use bundled web client dependencies from upstream
86     if [ ! -d "/home/${INSTALL_USER}/web-client-deps" ] ; then
87       suwrap "cd /home/${INSTALL_USER} && git clone git://git.sitka.bclibraries.ca/sitka/web-client-deps web-client-deps" ${INSTALL_USER}
88     fi
89     suwrap "cd /home/${INSTALL_USER}/web-client-deps && git checkout ${STAMP_ID}" ${INSTALL_USER}
90     if [ -d "${BUILDDIR}/Open-ILS/web/js/ui/default/staff/build" ] ; then rm -rf ${BUILDDIR}/Open-ILS/web/js/ui/default/staff/build ; fi
91     suwrap "cp -r /home/${INSTALL_USER}/web-client-deps/build ${BUILDDIR}/Open-ILS/web/js/ui/default/staff/build" ${INSTALL_USER}
92   else
93     # install dependencies
94     cd ${BUILDDIR}/Open-ILS/web/js/ui/default/staff/
95     suwrap "npm install" ${INSTALL_USER}
96     suwrap "npm run build-prod && npm run test" ${INSTALL_USER} || { echo 'Could not install files for web-based staff client' ; exit 1; }
97   fi
98 fi
99
100 # as INSTALL_USER
101 [ ! -n "$TARBALL" ] && suwrap "cd ${BUILDDIR} && autoreconf -i" ${INSTALL_USER} # not required for release versions
102 suwrap "PATH=${INSTALLDIR}/bin:\$PATH cd ${BUILDDIR} && PATH=${INSTALLDIR}/bin:\$PATH ./configure -C --prefix=${INSTALLDIR} --sysconfdir=${INSTALLDIR}/conf --with-opensrf-headers=${INSTALLDIR}/include/ --with-opensrf-libs=${INSTALLDIR}/lib/" ${INSTALL_USER}
103 suwrap "cd ${BUILDDIR} && make" ${INSTALL_USER}
104 suwrap "cd ${BUILDDIR}/build/i18n && make LOCALE=fr-CA install && make LOCALE=en-CA install" ${INSTALL_USER}
105  
106 # as root
107 cd ${BUILDDIR} && make STAFF_CLIENT_VERSION=${VERSION} STAFF_CLIENT_STAMP_ID=${STAMP_ID} install
108 mv ${INSTALLDIR}/var/web/reports/fm_IDL.xml ${INSTALLDIR}/var/web/reports/fm_IDL.xml.orig && cp ${INSTALLDIR}/conf/fm_IDL.xml ${INSTALLDIR}/var/web/reports/
109  
110 # setup start page
111 if [ ! -d "${INSTALLDIR}/var/web/news" ]
112 then
113   mkdir ${INSTALLDIR}/var/web/news
114 fi
115 if [ ! -d "${INSTALLDIR}/var/web/news/media" ]
116 then
117   mkdir ${INSTALLDIR}/var/web/news/media
118 fi
119 NEWSFILES="index.html style.css media/logo.png media/book.png media/policy.png media/dash.png media/delete.png"
120 for NEWSFILE in ${NEWSFILES}
121 do
122   if [ -f "${SITKACONF}/files/${INSTALLDIR}/var/web/news/${NEWSFILE}/${HOSTNAME}" ]
123   then
124     cp ${SITKACONF}/files/${INSTALLDIR}/var/web/news/${NEWSFILE}/${HOSTNAME} ${INSTALLDIR}/var/web/news/${NEWSFILE}
125   fi
126 done
127 if [[ -n "$PROD" ]] ; then
128   if [ ! -e "${INSTALLDIR}/var/web/news/wikipull.pl" ] ; then cp ${SITKACONF}/files/${INSTALLDIR}/var/web/news/wikipull.pl/${HOSTNAME} ${INSTALLDIR}/var/web/news/wikipull.pl ; fi
129   if [ ! -e "/etc/cron.d/news" ] ; then cp ${SITKACONF}/files/etc/cron.d/news/${HOSTNAME} /etc/cron.d/news ; fi
130 else
131   # nonprod server, auto-update splash page with install info
132   TODAY=`date +'%A %d %B %Y'`
133   sed -i "s|__THISHOST__|${THISHOST}|g" ${INSTALLDIR}/var/web/news/index.html
134   sed -i "s|__TODAY__|${TODAY}|g" ${INSTALLDIR}/var/web/news/index.html
135   sed -i "s|__VERSION__|${VERSION}|g" ${INSTALLDIR}/var/web/news/index.html
136   sed -i "s|__BRANCH__|${BRANCH}|g" ${INSTALLDIR}/var/web/news/index.html
137 fi
138
139 # setup/update test server banner
140 if [[ ! -n "$PROD" ]] ; then
141   SITECONFIGS="/etc/apache2/sites-available/test-server.conf"
142   for SITECONFIG in ${SITECONFIGS} ; do
143     cp ${SITKACONF}/files/${SITECONFIG}/${HOSTNAME} ${SITECONFIG}
144     sed -i "s|__NONPROD__|${THISHOST}|g" ${SITECONFIG}
145     sed -i "s|__VERSION__|${VERSION}|g" ${SITECONFIG}
146   done
147   a2ensite test-server.conf
148 fi
149
150 # if we are just updating an existing EG install, we're all done!
151 if [[ -n "$UPDATEONLY" ]] ; then
152     exit 0
153 fi
154
155 if [[ ! -n "$SKIPWEBCLIENT" ]] ; then
156     apt-get install -y nginx
157 fi
158
159 # Apache stuff (as root):
160 APACHEFILES="/etc/apache2/mods-available/mpm_prefork.conf"
161 for APACHEFILE in ${APACHEFILES}
162 do
163   [[ -e "${APACHEFILE}" ]] && mv ${APACHEFILE} ${APACHEFILE}.`date +%Y-%m-%d-%H%M%S`
164   cp ${SITKACONF}/files/${APACHEFILE}/${HOSTNAME} ${APACHEFILE}
165 done
166 cp ${BUILDDIR}/Open-ILS/examples/apache/eg_startup /etc/apache2/eg_startup
167 sed -i 's/export APACHE_RUN_USER=www-data/export APACHE_RUN_USER=opensrf/' /etc/apache2/envvars
168 if [ ! -d "/etc/apache2/includes" ] ; then
169   mkdir /etc/apache2/includes
170 fi
171 a2dismod mpm_event
172 a2enmod mpm_prefork
173 a2enmod headers
174 # ensure opensrf can run Apache
175 chown -R opensrf:opensrf /var/lock/apache2
176
177 # More Apache stuff for non-production sites
178 if [[ ! -n "$PROD" ]] ; then
179   a2dissite 000-default
180   if [ ! -d "/etc/apache2/ssl/libraries.coop/star.catalogue.libraries.coop" ]
181   then
182     mkdir -p /etc/apache2/ssl/libraries.coop/star.catalogue.libraries.coop
183     cp ${SITKACONF}/files/etc/ssl/apache2/star.catalogue.libraries.coop/star.catalogue.libraries.coop.crt /etc/apache2/ssl/libraries.coop/star.catalogue.libraries.coop/star_catalogue_libraries_coop.crt
184     cp ${SITKACONF}/files/etc/ssl/apache2/star.catalogue.libraries.coop/star.catalogue.libraries.coop.key /etc/apache2/ssl/libraries.coop/star.catalogue.libraries.coop/star_catalogue_libraries_coop.key
185     cp ${SITKACONF}/files/etc/ssl/apache2/star.catalogue.libraries.coop/star.catalogue.libraries.coop.ca /etc/apache2/ssl/libraries.coop/star.catalogue.libraries.coop/star_catalogue_libraries_coop.ca
186   fi
187 fi
188
189 # websockets config
190 if [[ ! -n "$SKIPWEBCLIENT" ]] ; then
191     cp -b ${SITKACONF}/files/etc/nginx/sites-available/osrf-ws-http-proxy/${HOSTNAME} /etc/nginx/sites-available/osrf-ws-http-proxy
192     ln -s /etc/nginx/sites-available/osrf-ws-http-proxy /etc/nginx/sites-enabled/osrf-ws-http-proxy
193     rm /etc/nginx/sites-enabled/default
194     cp -b ${SITKACONF}/files/etc/apache2/ports.conf/${HOSTNAME} /etc/apache2/ports.conf
195     WSJSFILES="opensrf_ws.js opensrf_ws_shared.js"
196     for WSJSFILE in ${WSJSFILES} ; do
197         # NOTE: this should be unnecessary if we installed OpenSRF with ./configure --with-websockets-port=443
198         sed -i 's/var WEBSOCKET_PORT_SSL = 7682;/var WEBSOCKET_PORT_SSL = 443;/g' ${INSTALLDIR}/lib/javascript/$WSJSFILE
199     done
200 fi
201
202 # install default crontab, if specified
203 if [[ -c "$CRONTAB" ]]; then
204   if [ ! -f "/etc/cron.d/evergreen-dailies" ] ; then
205     cp ${SITKACONF}/files/etc/cron.d/evergreen-dailies/${HOSTNAME} /etc/cron.d/evergreen-dailies
206   fi
207 fi
208
209 # set up log rotation
210 if [[ ! -n "$PROD" ]] ; then
211   if [ ! -f "/etc/logrotate.d/evergreen" ]
212   then
213     cp ${SITKACONF}/files/etc/logrotate.d/evergreen/${HOSTNAME} /etc/logrotate.d/evergreen
214   fi
215 fi
216
217 # remote logging (prod only)
218 if [[ -n "$PROD" ]] ; then
219   apt-get install syslog-ng
220   cp ${SITKACONF}/files/etc/syslog-ng/syslog-ng.conf/${HOSTNAME} /etc/syslog-ng/syslog-ng.conf
221   cp ${SITKACONF}/files/etc/syslog-ng/conf.d/sitka.conf/${HOSTNAME} /etc/syslog-ng/conf.d/sitka.conf
222   systemctl restart syslog-ng.service
223   cp ${SITKACONF}/files/usr/local/bin/eg-stats-collector-remote-log.pl /usr/local/bin/eg-stats-collector-remote-log.pl
224   cp ${SITKACONF}/files/usr/local/bin/eg-stats-keepalive.sh /usr/local/bin/eg-stats-keepalive.sh
225   cp ${SITKACONF}/files/etc/cron.d/eg-stats-keepalive/${HOSTNAME} /etc/cron.d/eg-stats-keepalive
226 fi
227
228 # action trigger filters (prod only)
229 if [[ -n "$PROD" ]] ; then
230   if [ -f "${INSTALLDIR}/conf/action_trigger_filters.json" ] ; then
231     mv ${INSTALLDIR}/conf/action_trigger_filters.json ${INSTALLDIR}/conf/action_trigger_filters.json.`date +%Y-%m-%d-%H%M%S`
232   fi
233   cp ${SITKACONF}/files/${INSTALLDIR}/conf/action_trigger_filters.json/${HOSTNAME} ${INSTALLDIR}/conf/action_trigger_filters.json
234 fi
235  
236 # 0. osrf conf stuff 
237 # FIXME: ensure osrf conf files point at a real, distinct db!
238 OSRFCONFFILES="${INSTALLDIR}/conf/opensrf.xml ${INSTALLDIR}/conf/opensrf_core.xml"
239 for OSRFCONFFILE in ${OSRFCONFFILES}
240 do
241   mv ${OSRFCONFFILE} ${OSRFCONFFILE}.`date +%Y-%m-%d-%H%M%S`
242   if [[ -n "$PROD" && -f "${SITKACONF}/files/${OSRFCONFFILE}/${HOSTNAME}-314" ]] ; then
243     cp ${SITKACONF}/files/${OSRFCONFFILE}/${HOSTNAME}-314 ${OSRFCONFFILE}
244   else
245     cp ${SITKACONF}/files/${OSRFCONFFILE}/${HOSTNAME} ${OSRFCONFFILE}
246   fi
247   sed -i "s|__HOSTNAME__|${THISHOST}|g" ${OSRFCONFFILE}
248 done
249 if [ ! -f "/home/opensrf/.srfsh.xml" ]
250 then
251   cp ${SITKACONF}/files/home/opensrf/.srfsh.xml/${HOSTNAME} /home/opensrf/.srfsh.xml
252   sed -i "s|__HOSTNAME__|${THISHOST}|g" /home/opensrf/.srfsh.xml
253 fi 
254
255 # 1. install dojo
256 if [ ! -f "/home/opensrf/dojo-release-1.3.3.tar.gz" ]
257 then
258   cd /home/opensrf && wget http://download.dojotoolkit.org/release-1.3.3/dojo-release-1.3.3.tar.gz
259 fi
260 tar -C ${INSTALLDIR}/var/web/js -xzf /home/opensrf/dojo-release-1.3.3.tar.gz
261 cp -r ${INSTALLDIR}/var/web/js/dojo-release-1.3.3/* ${INSTALLDIR}/var/web/js/dojo/.
262 # FIXME stock dojo is probably superfluous when we use the following Evergreen-specific tarball...
263 if [ ! -f "/home/opensrf/dojo.tgz" ] ; then
264   cd /home/opensrf && wget http://evergreen-ils.org/downloads/dojo.tgz
265 fi
266 tar -C ${INSTALLDIR}/var/web/js/dojo/ -zxf /home/opensrf/dojo.tgz
267  
268 # 2. set up staff client
269 cd ${INSTALLDIR}/var/web/xul && rm server && rm current
270 cd ${INSTALLDIR}/var/web/xul && ln -s ${STAMP_ID} current && ln -s current/server server
271 for ALT_STAMP_ID in ${ALT_STAMP_IDS}
272 do
273   cd ${INSTALLDIR}/var/web/xul && ln -s current ${ALT_STAMP_ID}
274 done
275  
276 # 3. install circ scripts and opac skins - DEPRECATED
277
278 # 4a. avoid 404s
279 touch ${INSTALLDIR}/var/web/css/skin/default/register_custom.css
280 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/patron_custom.properties
281 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/common_custom.properties
282 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/offline_custom.properties
283 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/auth_custom.properties
284 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/cat_custom.properties
285 touch ${INSTALLDIR}/var/web/xul/server/locale/en-CA/circ_custom.properties
286 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/patron_custom.properties
287 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/common_custom.properties
288 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/offline_custom.properties
289 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/auth_custom.properties
290 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/cat_custom.properties
291 touch ${INSTALLDIR}/var/web/xul/server/locale/en-US/circ_custom.properties
292 touch ${INSTALLDIR}/var/web/xul/server/skin/custom.js
293
294 # 4b. workaround for LP#1461683
295 cd ${INSTALLDIR}/var/web/xul/server/locale/en-CA && mv multiclass_search_help.html multiclass_search_help.html.orig && ln -s ../en-US/multiclass_search_help.html
296
297 # 5. locale hack - XXX deprecated?
298 #cd ${INSTALLDIR}/var/web/opac/locale && cp -fdr en-US en-US-bak && cp -fdr en-CA en-US
299  
300 # 6. deletepatron
301 # ensure apache conf contains deletepatron config (location should be ${INSTALLDIR}/var/web/deletepatron)
302 if [[ ! -d "${INSTALLDIR}/var/web/deletepatron" ]] ; then
303   NEW_DELETEPATRON_INSTALL="true"
304   cd ${INSTALLDIR}/var/web && git clone https://github.com/twirlip/deletepatron.git
305 fi
306 cd ${INSTALLDIR}/var/web/deletepatron && git checkout eg22
307 if [[ -n "$NEW_DELETEPATRON_INSTALL" ]] ; then
308   find ${INSTALLDIR}/var/web/deletepatron -name "*.pm" | xargs sed -i -e 's|/openils|/srv/openils|g'
309 fi
310 apt-get install -y libcgi-session-perl libhtml-template-perl
311
312 # 7. support scripts
313 cp ${BUILDDIR}/Open-ILS/src/support-scripts/generate_circ_notices.pl ${INSTALLDIR}/bin
314 cp ${BUILDDIR}/Open-ILS/src/support-scripts/oils_header.pl ${INSTALLDIR}/bin
315 cp ${BUILDDIR}/Open-ILS/src/support-scripts/badge_score_generator.pl ${INSTALLDIR}/bin
316
317 # 7.5 EDI (optional)
318 if [[ -n "$EDI" ]] ; then
319   cp -r ${BUILDDIR}/Open-ILS/src/edi_translator ${INSTALLDIR}/var/edi
320   cd ${INSTALLDIR}/var/edi && ./install.sh
321   cp ${BUILDDIR}/Open-ILS/src/support-scripts/edi_pusher.pl ${INSTALLDIR}/bin
322   cp ${BUILDDIR}/Open-ILS/src/support-scripts/edi_fetcher.pl ${INSTALLDIR}/bin
323   cp ${SYSADMIN}/files/${INSTALLDIR}/bin/edi_per_account_fetcher.sh ${INSTALLDIR}/bin/edi_per_account_fetcher.sh
324   # add local modifications to openils-mapper rubygem (eww, yuck, barf)
325   cp -b ${SYSADMIN}/files/var/lib/gems/2.3.0/gems/openils-mapper-0.9.9/lib/openils/mapper.rb /var/lib/gems/2.3.0/gems/openils-mapper-0.9.9/lib/openils/mapper.rb
326   cp -b ${SYSADMIN}/files/var/lib/gems/2.3.0/gems/openils-mapper-0.9.9/lib/edi/mapper.rb /var/lib/gems/2.3.0/gems/openils-mapper-0.9.9/lib/edi/mapper.rb
327 fi
328
329 # 8.5 offline patron list
330 if [ ! -d "${INSTALLDIR}/var/data/offline/blocked" ] ; then 
331   # TODO: handle prod - an NFS share should exist
332   if [[ ! -n "$PROD" ]] ; then
333     mkdir -p ${INSTALLDIR}/var/data/offline/blocked
334   fi
335 fi
336 if [ ! -e "${INSTALLDIR}/var/web/standalone/list.txt" ] ; then ln -sf ${INSTALLDIR}/var/data/offline/blocked/patron-block-list.txt ${INSTALLDIR}/var/web/standalone/list.txt ; fi
337 if [ ! -e "${INSTALLDIR}/bin/update-offline-blocked-list.sh" ] ; then cp ${SITKATOOLS}/maintenance/update-offline-blocked-list.sh ${INSTALLDIR}/bin/update-offline-blocked-list.sh ; fi
338
339 cp ${SITKACONF}/files${INSTALLDIR}/var/data/zips.txt/${HOSTNAME} ${INSTALLDIR}/var/data/zips.txt
340
341 cp -b --suffix=.`date +%Y-%m-%d-%H%M%S` ${SITKACONF}/files${INSTALLDIR}/var/web/robots.txt/${HOSTNAME} ${INSTALLDIR}/var/web/robots.txt
342
343 # 9. make sure opensrf owns all the stuff we just did
344 echo 'managing file permissions...'
345 if [[ ! -n "$PROD" ]] ; then
346   chown -R opensrf:opensrf ${INSTALLDIR} 2>/dev/null
347 else
348   for file in `ls -1 ${INSTALLDIR} | grep -v var` ; do chown -R opensrf:opensrf ${INSTALLDIR}/$file ; done
349   chown opensrf:opensrf ${INSTALLDIR}/var
350   for file in `ls -1 ${INSTALLDIR}/var | egrep -v '(data|tmp|web)'` ; do chown -R opensrf:opensrf ${INSTALLDIR}/var/$file ; done
351   chown opensrf:opensrf ${INSTALLDIR}/var/data ${INSTALLDIR}/var/web
352   for file in `ls -1 ${INSTALLDIR}/var/data | grep -v offline` ; do chown -R opensrf:opensrf ${INSTALLDIR}/var/data/$file ; done
353   for file in `ls -1 ${INSTALLDIR}/var/web | grep -v reporter` ; do chown -R opensrf:opensrf ${INSTALLDIR}/var/web/$file ; done
354 fi
355 chown -R opensrf:opensrf /home/opensrf
356 SKINDIRS="${INSTALLDIR}/var/skins ${INSTALLDIR}/var/web/css/skin"
357 for SKINDIR in ${SKINDIRS} ; do
358   if [[ ! -d "${SKINDIR}" ]] ; then mkdir ${SKINDIR} ; fi
359   chmod 777 ${SKINDIR}
360   chown -R ${DEFAULT_USER}:${DEFAULT_USER} ${SKINDIR}
361 done
362 chown -R ${DEFAULT_USER}:${DEFAULT_USER} ${INSTALLDIR}/conf/kpac ${INSTALLDIR}/var/web/images/kpac
363
364 # 10. staff client stuff
365 apt-get install -y nsis unzip
366
367 # 11. integrity checker prereqs
368 apt-get install -y libconfig-simple-perl libgit-repository-perl libdate-manip-perl
369
370 # 12. paper overdue prereqs
371 apt-get install -y python-reportlab python-reportlab-accel unifont
372
373 echo 'Evergreen is installed!'
374