2025-04-17 06:15:55 +01:00
|
|
|
#!/bin/bash
|
|
|
|
|
|
|
|
MODE="$1" # 'rw' or 'readonly'
|
2025-04-18 02:34:24 +01:00
|
|
|
PERSON="$2"
|
2025-04-17 06:15:55 +01:00
|
|
|
CONTAINER="$SSH_ORIGINAL_COMMAND"
|
|
|
|
IMAGE="analytics-backend-workspace" # change to match your setup
|
|
|
|
TMUX_SESSION="analytics-backend"
|
|
|
|
DEV_USER="devuser"
|
|
|
|
|
2025-04-17 13:00:48 +01:00
|
|
|
log() {
|
|
|
|
echo "[$(date '+%Y-%m-%d %H:%M:%S')] $*"
|
|
|
|
}
|
|
|
|
|
|
|
|
if [[ ! "$CONTAINER" =~ ^[a-zA-Z0-9._-]+$ ]]; then
|
|
|
|
log "❌ Invalid container name: $CONTAINER"
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
2025-04-17 06:15:55 +01:00
|
|
|
# Function to start the container if not running
|
|
|
|
start_container_if_needed() {
|
|
|
|
if ! podman container exists "$CONTAINER"; then
|
2025-04-17 13:00:48 +01:00
|
|
|
log "🚀 Creating container $CONTAINER..."
|
2025-04-17 06:15:55 +01:00
|
|
|
podman run -dit \
|
2025-04-17 06:41:56 +01:00
|
|
|
--userns=keep-id \
|
2025-04-17 06:15:55 +01:00
|
|
|
--name "$CONTAINER" \
|
|
|
|
--user "$DEV_USER" \
|
2025-04-17 06:41:56 +01:00
|
|
|
--hostname "$CONTAINER" \
|
2025-04-17 06:15:55 +01:00
|
|
|
--label auto-cleanup=true \
|
2025-04-17 06:41:56 +01:00
|
|
|
-v "${XDG_RUNTIME_DIR}"/podman/podman.sock:/run/podman/podman.sock \
|
2025-04-17 16:02:51 +01:00
|
|
|
"$IMAGE"
|
2025-04-17 06:15:55 +01:00
|
|
|
elif ! podman inspect -f '{{.State.Running}}' "$CONTAINER" | grep -q true; then
|
2025-04-17 13:00:48 +01:00
|
|
|
log "⚡ Starting existing container $CONTAINER..."
|
2025-04-18 01:10:56 +01:00
|
|
|
podman start "$CONTAINER" >/dev/null 2>&1
|
2025-04-17 06:15:55 +01:00
|
|
|
fi
|
2025-04-18 01:10:56 +01:00
|
|
|
sleep 1
|
2025-04-17 06:15:55 +01:00
|
|
|
}
|
|
|
|
|
|
|
|
# After devuser exits...
|
|
|
|
check_devuser_attached() {
|
|
|
|
# Get list of clients
|
2025-04-18 03:25:46 +01:00
|
|
|
client_users=$(podman exec "$CONTAINER" tmux list-clients -t "$TMUX_SESSION" -F "#{client_user}" 2>/dev/null)
|
2025-04-17 06:15:55 +01:00
|
|
|
|
2025-04-17 13:00:48 +01:00
|
|
|
if echo "$client_users" | grep -q "$DEV_USER"; then
|
|
|
|
log "💡 devuser still attached — container stays running"
|
2025-04-17 06:15:55 +01:00
|
|
|
return 0
|
|
|
|
else
|
2025-04-18 02:34:24 +01:00
|
|
|
log "🏃 $PERSON has logged out — stopping container"
|
2025-04-18 01:10:56 +01:00
|
|
|
podman stop "$CONTAINER" >/dev/null 2>&1
|
2025-04-17 06:15:55 +01:00
|
|
|
return 1
|
|
|
|
fi
|
|
|
|
}
|
|
|
|
|
|
|
|
# === Main ===
|
|
|
|
|
|
|
|
case "$MODE" in
|
|
|
|
rw)
|
|
|
|
start_container_if_needed
|
|
|
|
|
2025-04-18 03:25:46 +01:00
|
|
|
# Run tmux session inside the container
|
|
|
|
if ! podman exec -it --user "$DEV_USER" "$CONTAINER" tmux has-session -t "$TMUX_SESSION" >/dev/null 2>&1; then
|
|
|
|
if ! podman exec -it --user "$DEV_USER" "$CONTAINER" tmux new-session -d -s "$TMUX_SESSION" >/dev/null 2>&1; then
|
|
|
|
log "❌ Could not create new tmux session. Please contact admin or try again later."
|
2025-04-17 06:55:36 +01:00
|
|
|
exit 1
|
|
|
|
fi
|
2025-04-17 06:15:55 +01:00
|
|
|
fi
|
|
|
|
|
2025-04-18 02:56:25 +01:00
|
|
|
log "⚡ $PERSON is working on $CONTAINER"
|
2025-04-18 03:25:46 +01:00
|
|
|
if ! podman exec -it --user "$DEV_USER" "$CONTAINER" tmux attach -t "$TMUX_SESSION"; then
|
|
|
|
log "❌ Could not attach to tmux session. Please contact admin or try again later."
|
2025-04-18 02:56:25 +01:00
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
log "⚡ $PERSON finished working on $CONTAINER"
|
|
|
|
|
2025-04-17 06:15:55 +01:00
|
|
|
check_devuser_attached
|
2025-04-17 06:36:42 +01:00
|
|
|
exit 0
|
2025-04-17 06:15:55 +01:00
|
|
|
;;
|
|
|
|
ro)
|
2025-04-18 01:10:56 +01:00
|
|
|
if (podman container exists "$CONTAINER" && podman inspect -f '{{.State.Running}}' "$CONTAINER" | grep -q true) >/dev/null 2>&1; then
|
2025-04-18 02:56:25 +01:00
|
|
|
log "📜 $PERSON is viewing $CONTAINER"
|
2025-04-18 03:25:46 +01:00
|
|
|
if ! podman exec -it --user "$DEV_USER" "$CONTAINER" tmux attach -r -t "$TMUX_SESSION"; then
|
|
|
|
log "❌ Could not attach to tmux session. Please contact admin or try again later."
|
2025-04-17 06:55:36 +01:00
|
|
|
exit 1
|
|
|
|
fi
|
2025-04-18 02:56:25 +01:00
|
|
|
log "🏃 $PERSON stopped viewing $CONTAINER"
|
2025-04-17 06:36:42 +01:00
|
|
|
exit 0
|
|
|
|
else
|
2025-04-17 13:00:48 +01:00
|
|
|
log "❌ Container $CONTAINER does not exist."
|
2025-04-17 06:15:55 +01:00
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
;;
|
|
|
|
*)
|
2025-04-17 13:00:48 +01:00
|
|
|
log "❌ Invalid access mode: $MODE"
|
2025-04-17 06:15:55 +01:00
|
|
|
exit 1
|
|
|
|
;;
|
|
|
|
esac
|