151 lines
6.3 KiB
PowerShell
151 lines
6.3 KiB
PowerShell
<#
|
|
.SYNOPSIS
|
|
Windows-Installer für den Newt-Client (MAIEREDV Managed Site Client).
|
|
Nutzt winget.pro für NSSM und BITS-Foreground für High-Speed Downloads.
|
|
#>
|
|
param([string]$mode = "install")
|
|
|
|
# 1. Stabilität & Encoding sicherstellen
|
|
[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12
|
|
[Console]::OutputEncoding = [System.Text.Encoding]::UTF8
|
|
|
|
# 2. Konfiguration
|
|
$Repo = "fosrl/newt"
|
|
$InstallDir = "C:\Program Files\me-msp-newt"
|
|
$ServiceName = "MAIEREDV-Managed-Site-Client"
|
|
$Symlink = "$InstallDir\newt_latest.exe"
|
|
$UpdaterTaskName = "MAIEREDV-Newt-Updater"
|
|
$GiteaUrl = "https://gitea.vmd55888.de/manuel.maier/update-install-newt/raw/branch/main/install_newt-msp-site-win_v2.ps1"
|
|
|
|
# Helfer-Funktion für Ausgaben
|
|
function Write-Log($msg, $color = "White") {
|
|
Write-Host "[$(Get-Date -Format 'HH:mm:ss')] $msg" -ForegroundColor $color
|
|
}
|
|
|
|
# 3. Umgebung vorbereiten (Winget & NSSM)
|
|
function Prepare-Environment {
|
|
if (!(Get-Command winget -ErrorAction SilentlyContinue)) {
|
|
Write-Log "Winget fehlt. Installiere via winget.pro (High Speed)..." "Cyan"
|
|
try {
|
|
# Schnelle Installation von Winget auf Servern
|
|
Invoke-RestMethod -Uri "https://winget.pro/install.ps1" | Invoke-Expression
|
|
# Pfad-Refresher
|
|
$env:Path = [System.Environment]::GetEnvironmentVariable("Path","Machine") + ";" + [System.Environment]::GetEnvironmentVariable("Path","User")
|
|
} catch {
|
|
Write-Log "FEHLER: Winget konnte nicht installiert werden." "Red"; exit 1
|
|
}
|
|
}
|
|
|
|
if (!(Get-Command nssm -ErrorAction SilentlyContinue)) {
|
|
Write-Log "NSSM wird via Winget geladen..." "Cyan"
|
|
winget install nssm --silent --accept-package-agreements --accept-source-agreements | Out-Null
|
|
$env:Path = [System.Environment]::GetEnvironmentVariable("Path","Machine") + ";" + [System.Environment]::GetEnvironmentVariable("Path","User")
|
|
}
|
|
}
|
|
|
|
# 4. Version abfragen
|
|
function Get-LatestVersion {
|
|
try {
|
|
$url = "https://api.github.com/repos/$Repo/releases/latest"
|
|
$json = Invoke-RestMethod -Uri $url -UseBasicParsing
|
|
return $json.tag_name # z.B. "v1.9.0"
|
|
} catch {
|
|
Write-Log "FEHLER: GitHub API antwortet nicht." "Red"; exit 1
|
|
}
|
|
}
|
|
|
|
# 5. Download mit Turbo-BITS
|
|
function Download-Newt {
|
|
param($FullVersion)
|
|
|
|
$ArchSuffix = if ([Environment]::Is64BitOperatingSystem) { "windows_amd64.exe" } else { "windows_386.exe" }
|
|
$VersionOnly = $FullVersion.TrimStart('v')
|
|
$Url = "https://github.com/$Repo/releases/download/$VersionOnly/newt_$ArchSuffix"
|
|
$Target = "$InstallDir\newt_$VersionOnly.exe"
|
|
|
|
if (!(Test-Path $InstallDir)) { New-Item -ItemType Directory -Path $InstallDir -Force | Out-Null }
|
|
|
|
Write-Log "Starte Turbo-Download von $VersionOnly..." "Cyan"
|
|
try {
|
|
# Priority Foreground umgeht die künstliche BITS-Drosselung (Hintergrundbremse)
|
|
Start-BitsTransfer -Source $Url -Destination $Target -Priority Foreground -ErrorAction Stop
|
|
Copy-Item -Path $Target -Destination $Symlink -Force
|
|
Write-Log "Download erfolgreich beendet." "Green"
|
|
} catch {
|
|
Write-Log "BITS-Turbo fehlgeschlagen. Versuche Web-Fallback..." "Yellow"
|
|
Invoke-WebRequest -Uri $Url -OutFile $Target -UseBasicParsing
|
|
Copy-Item -Path $Target -Destination $Symlink -Force
|
|
}
|
|
}
|
|
|
|
# 6. Dienst mit NSSM erstellen
|
|
function Setup-Service {
|
|
if (!(Get-Service $ServiceName -ErrorAction SilentlyContinue)) {
|
|
Write-Log "--- Dienst-Konfiguration ---" "Yellow"
|
|
$PangolinID = Read-Host "Bitte Pangolin ID eingeben"
|
|
$PangolinSecret = Read-Host "Bitte Secret eingeben"
|
|
$PangolinEndpoint = Read-Host "Bitte Endpoint eingeben"
|
|
|
|
if ([string]::IsNullOrWhiteSpace($PangolinID)) { Write-Log "FEHLER: ID darf nicht leer sein!" "Red"; exit 1 }
|
|
|
|
$ArgList = "--id $PangolinID --secret $PangolinSecret --endpoint $PangolinEndpoint"
|
|
|
|
Write-Log "Registriere Dienst via NSSM..." "Cyan"
|
|
# NSSM managed den Konsolenprozess perfekt
|
|
& nssm install $ServiceName "$Symlink" $ArgList
|
|
& nssm set $ServiceName Description "MAIEREDV Managed Site Client"
|
|
& nssm set $ServiceName AppExit Default Restart
|
|
& nssm set $ServiceName AppRestartDelay 5000
|
|
& nssm set $ServiceName AppStdout "$InstallDir\newt_service.log"
|
|
& nssm set $ServiceName AppStderr "$InstallDir\newt_service.log"
|
|
|
|
Start-Service $ServiceName
|
|
Write-Log "Dienst aktiv und gestartet." "Green"
|
|
} else {
|
|
Write-Log "Dienst bereits vorhanden. Starte neu..." "Yellow"
|
|
Restart-Service $ServiceName
|
|
}
|
|
}
|
|
|
|
# 7. Updater Task
|
|
function Setup-UpdaterTask {
|
|
$ActionCommand = "powershell.exe -NoProfile -ExecutionPolicy Bypass -Command `"[Net.ServicePointManager]::SecurityProtocol = [Net.SecurityProtocolType]::Tls12; iex ((New-Object System.Net.WebClient).DownloadString('$GiteaUrl')) -mode update`""
|
|
$Action = New-ScheduledTaskAction -Execute "powershell.exe" -Argument $ActionCommand
|
|
$Trigger = New-ScheduledTaskTrigger -Daily -At 3am
|
|
|
|
Register-ScheduledTask -Action $Action -Trigger $Trigger -TaskName $UpdaterTaskName -User "SYSTEM" -Force | Out-Null
|
|
Write-Log "Update-Timer (03:00 Uhr) ist scharfgeschaltet." "Green"
|
|
}
|
|
|
|
# --- Main Logic ---
|
|
Prepare-Environment
|
|
|
|
switch ($mode) {
|
|
"install" {
|
|
$v = Get-LatestVersion
|
|
Download-Newt $v
|
|
Setup-Service
|
|
Setup-UpdaterTask
|
|
Write-Log "🚀 Mission erfolgreich! Newt ist bereit." "Green"
|
|
}
|
|
"update" {
|
|
$v = Get-LatestVersion
|
|
$vOnly = $v.TrimStart('v')
|
|
if (Test-Path "$InstallDir\newt_$vOnly.exe") {
|
|
Write-Log "System ist auf dem neuesten Stand ($vOnly)." "Cyan"
|
|
} else {
|
|
Download-Newt $v
|
|
Restart-Service $ServiceName
|
|
Write-Log "🚀 Update auf $v erfolgreich eingespielt." "Green"
|
|
}
|
|
}
|
|
"uninstall" {
|
|
Write-Log "Entferne alles..." "Yellow"
|
|
if (Get-Service $ServiceName -ErrorAction SilentlyContinue) {
|
|
Stop-Service $ServiceName -Force -ErrorAction SilentlyContinue
|
|
& nssm remove $ServiceName confirm
|
|
}
|
|
Unregister-ScheduledTask -TaskName $UpdaterTaskName -Confirm:$false -ErrorAction SilentlyContinue
|
|
Write-Log "🧹 Server ist wieder Newt-frei." "Green"
|
|
}
|
|
} |