Skip to content

Latest commit

 

History

History
145 lines (104 loc) · 6.14 KB

init.md

File metadata and controls

145 lines (104 loc) · 6.14 KB

Sample init scripts and service configuration for defid

Sample scripts and configuration files for systemd, Upstart and OpenRC can be found in the contrib/init folder.

contrib/init/defid.service:    systemd service unit configuration
contrib/init/defid.openrc:     OpenRC compatible SysV style init script
contrib/init/defid.openrcconf: OpenRC conf.d file
contrib/init/defid.conf:       Upstart service configuration file
contrib/init/defid.init:       CentOS compatible SysV style init script

Service User

All three Linux startup configurations assume the existence of a "defi" user and group. They must be created before attempting to use these scripts. The macOS configuration assumes defid will be set up for the current user.

Configuration

At a bare minimum, defid requires that the rpcpassword setting be set when running as a daemon. If the configuration file does not exist or this setting is not set, defid will shut down promptly after startup.

This password does not have to be remembered or typed as it is mostly used as a fixed token that defid and client programs read from the configuration file, however it is recommended that a strong and secure password be used as this password is security critical to securing the wallet should the wallet be enabled.

If defid is run with the "-server" flag (set by default), and no rpcpassword is set, it will use a special cookie file for authentication. The cookie is generated with random content when the daemon starts, and deleted when it exits. Read access to this file controls who can access it through RPC.

By default the cookie is stored in the data directory, but it's location can be overridden with the option '-rpccookiefile'.

This allows for running defid without having to do any manual configuration.

conf, pid, and wallet accept relative paths which are interpreted as relative to the data directory. wallet only supports relative paths.

For an example configuration file that describes the configuration settings, see share/examples/defi.conf.

Paths

Linux

All three configurations assume several paths that might need to be adjusted.

Binary: /usr/bin/defid
Configuration file: /etc/defi/defi.conf
Data directory: /var/lib/defid
PID file: /var/run/defi/defid.pid (OpenRC and Upstart) or /run/defi/defid.pid (systemd) Lock file: /var/lock/subsys/defid (CentOS)

The PID directory (if applicable) and data directory should both be owned by the defi user and group. It is advised for security reasons to make the configuration file and data directory only readable by the defi user and group. Access to defi-cli and other defid rpc clients can then be controlled by group membership.

NOTE: When using the systemd .service file, the creation of the aforementioned directories and the setting of their permissions is automatically handled by systemd. Directories are given a permission of 710, giving the defi group access to files under it if the files themselves give permission to the defi group to do so (e.g. when -sysperms is specified). This does not allow for the listing of files under the directory.

NOTE: It is not currently possible to override datadir in /etc/defi/defi.conf with the current systemd, OpenRC, and Upstart init files out-of-the-box. This is because the command line options specified in the init files take precedence over the configurations in /etc/defi/defi.conf. However, some init systems have their own configuration mechanisms that would allow for overriding the command line options specified in the init files (e.g. setting DEFID_DATADIR for OpenRC).

macOS

Binary: /usr/local/bin/defid
Configuration file: ~/Library/Application Support/DeFi/defi.conf
Data directory: ~/Library/Application Support/DeFi
Lock file: ~/Library/Application Support/DeFi/.lock

Installing Service Configuration

systemd

Installing this .service file consists of just copying it to /usr/lib/systemd/system directory, followed by the command systemctl daemon-reload in order to update running systemd configuration.

To test, run systemctl start defid and to enable for system startup run systemctl enable defid

NOTE: When installing for systemd in Debian/Ubuntu the .service file needs to be copied to the /lib/systemd/system directory instead.

OpenRC

Rename defid.openrc to defid and drop it in /etc/init.d. Double check ownership and permissions and make it executable. Test it with /etc/init.d/defid start and configure it to run on startup with rc-update add defid

Upstart (for Debian/Ubuntu based distributions)

Upstart is the default init system for Debian/Ubuntu versions older than 15.04. If you are using version 15.04 or newer and haven't manually configured upstart you should follow the systemd instructions instead.

Drop defid.conf in /etc/init. Test by running service defid start it will automatically start on reboot.

NOTE: This script is incompatible with CentOS 5 and Amazon Linux 2014 as they use old versions of Upstart and do not supply the start-stop-daemon utility.

CentOS

Copy defid.init to /etc/init.d/defid. Test by running service defid start.

Using this script, you can adjust the path and flags to the defid program by setting the DEFID and FLAGS environment variables in the file /etc/sysconfig/defid. You can also use the DAEMONOPTS environment variable here.

macOS

Copy org.defi.defid.plist into ~/Library/LaunchAgents. Load the launch agent by running launchctl load ~/Library/LaunchAgents/org.defi.defid.plist.

This Launch Agent will cause defid to start whenever the user logs in.

NOTE: This approach is intended for those wanting to run defid as the current user. You will need to modify org.defi.defid.plist if you intend to use it as a Launch Daemon with a dedicated defi user.

Auto-respawn

Auto respawning is currently only configured for Upstart and systemd. Reasonable defaults have been chosen but YMMV.