mysql: revoke permissions when dropping database
[hcoop/domtool2.git] / src / plugins / domtool-mysql
1 #!/bin/bash -e
2
3 WHERE="'%.hcoop.net'"
4
5 case $1 in
6 adduser)
7 USERNAME=$2
8 PASSWORD=$3
9
10 sudo -H mysql -e "CREATE USER '$USERNAME'@$WHERE IDENTIFIED BY '$PASSWORD';"
11 ;;
12
13 passwd)
14 USERNAME=$2
15 PASSWORD=$3
16
17 sudo -H mysql -e "SET PASSWORD FOR '$USERNAME'@$WHERE = PASSWORD('$PASSWORD');"
18 ;;
19
20 createdb)
21 USERNAME=$2
22 DBNAME_BASE=$3
23 DBNAME="${USERNAME}_${DBNAME_BASE}"
24 DIR=/srv/databases/${USERNAME:0:1}/${USERNAME:0:2}/$USERNAME/mysql
25
26 if [ ! -d $DIR ]; then
27 echo WARNING: $DIR must already exist!
28 fi
29
30 mkdir $DIR/$DBNAME
31 chown mysql:mysql $DIR/$DBNAME
32 chmod 770 $DIR/$DBNAME
33 ln -sf $DIR/$DBNAME /var/lib/mysql/$DBNAME
34 chmod g+rw -R $DIR/$DBNAME/
35 sudo -H mysql -e "GRANT ALL ON TABLE * TO '$USERNAME'@$WHERE WITH GRANT OPTION;" $DBNAME
36
37 sudo -H mysql -e "FLUSH PRIVILEGES;"
38 ;;
39
40 dropdb)
41 USERNAME=$2
42 DBNAME_BASE=$3
43 DBNAME="${USERNAME}_${DBNAME_BASE}"
44
45 sudo -H mysql -e "REVOKE ALL ON TABLE * FROM '$USERNAME'@$WHERE;" $DBNAME
46 sudo -H mysql -e "REVOKE GRANT OPTION ON TABLE * FROM '$USERNAME'@$WHERE;" $DBNAME
47 sudo -H mysql -e "DROP DATABASE $DBNAME;"
48
49 ;;
50
51 grant)
52 USERNAME=$2
53 DBNAME_BASE=$3
54 DBNAME="${USERNAME}_${DBNAME_BASE}"
55
56 sudo -H mysql -e "GRANT ALL ON TABLE * TO '$USERNAME'@$WHERE WITH GRANT OPTION;" $DBNAME
57 ;;
58
59 *)
60 echo "Usage: domtool-mysql [adduser <user> <password> | passwd <user> <password> | createdb <user> <db> | dropdb <user> <db> | grant <user> <db>]"
61 ;;
62 esac