Files
aws-glacier-backup/backup.sh

95 lines
2.4 KiB
Bash
Raw Normal View History

2019-04-13 20:40:37 +02:00
#!/usr/bin/env bash
set -o nounset
set -o errexit
2019-04-13 20:51:27 +02:00
set -o xtrace
2019-04-13 22:10:45 +02:00
dir="$( cd "$( dirname "${BASH_SOURCE[0]}" )" >/dev/null 2>&1 && pwd )"
if [[ ! -e "${dir}/venv" ]] ; then
python3 -m venv "${dir}/venv"
2019-04-13 22:04:29 +02:00
fi
2019-04-13 22:10:45 +02:00
source "${dir}/venv/bin/activate"
command -v aws || pip install -r "${dir}/requirements.txt"
2019-04-13 22:04:29 +02:00
2019-04-13 22:10:45 +02:00
export GNUPGHOME="$(mktemp -d)"
2019-04-13 21:10:58 +02:00
2019-04-13 20:51:27 +02:00
bucket="${1}" ; shift
name="${1}" ; shift
2019-04-18 18:58:35 +02:00
backup_sources_file="${1}" ; shift
declare -a backup_sources
readarray backup_sources < "${backup_sources_file}"
2019-04-13 20:40:37 +02:00
2019-04-13 21:10:58 +02:00
install --directory --owner $(id -u) --group $(id -g) --mode 700 "${GNUPGHOME}"
2019-04-13 20:40:37 +02:00
cleanup() {
2019-04-13 21:10:58 +02:00
rm -rf "${GNUPGHOME}"
2019-04-13 20:40:37 +02:00
}
trap cleanup EXIT
tmpgpg() {
gpg \
--batch \
2019-04-18 18:58:35 +02:00
--keyid-format=0xlong \
2019-04-13 20:40:37 +02:00
--no-default-keyring \
--no-options \
2019-04-13 21:10:58 +02:00
--trust-model always \
2019-04-13 20:40:37 +02:00
"${@}"
}
2019-04-13 22:10:45 +02:00
tmpgpg --import "${dir}/pubkey.asc"
2019-04-18 18:58:35 +02:00
tmpgpg -k
timestamp="$(date --utc -Iseconds)"
for backup_dir in "${backup_sources[@]}" ; do
backup_dir_expanded=($(eval "echo $backup_dir"))
for dir in "${backup_dir_expanded[@]}" ; do
echo $dir
set -x
find \
"${dir[@]}" \
\( \
-regex "${dir}.*/files_trashbin" \
-o \
-regex "${dir}.*nextcloud.log.*" \
-o \
-regex "${dir}.*registry/docker/registry" \
-o \
-regex "${dir}.*/gogs.log.*" \
-o \
-regex "${dir}.*gogs/data/sessions/.*" \
-o \
-regex "${dir}.*/cache/.*" \
\) \
-prune \
-o \
-print0 \
| tar \
--create \
--verbose \
--no-auto-compress \
--ignore-failed-read \
--acls \
--selinux \
--xattrs \
--null \
--force-local \
--no-recursion \
--files-from - \
--file - \
| gzip \
--to-stdout \
| tmpgpg \
--output - \
--encrypt \
--recipient 0x078A167A8741BD30 \
| aws \
s3 cp \
- \
2019-04-18 19:09:54 +02:00
"s3://${bucket}/${name}-${timestamp}/${dir##/}.tar.gz.gpg"
2019-04-18 18:58:35 +02:00
done
done