mirror of
				https://github.com/spantaleev/matrix-docker-ansible-deploy.git
				synced 2025-11-04 00:58:56 +01:00 
			
		
		
		
	Merge pull request #892 from MarcProe/master
add support for mautrix-instagram
This commit is contained in:
		@@ -8,6 +8,11 @@ This brings the total number of bridges supported by the playbook up to 18. See
 | 
			
		||||
 | 
			
		||||
To get started, follow our [Setting up MX Puppet GroupMe](docs/configuring-playbook-bridge-mx-puppet-groupme.md) docs.
 | 
			
		||||
 | 
			
		||||
## Mautrix Instagram bridging support
 | 
			
		||||
 | 
			
		||||
The playbook now supports bridging with [Instagram](https://www.instagram.com/) by installing the [mautrix-instagram](https://github.com/tulir/mautrix-instagram) bridge. This playbook functionality is available thanks to [@MarcProe](https://github.com/MarcProe).
 | 
			
		||||
 | 
			
		||||
Additional details are available in [Setting up Mautrix Instagram bridging](docs/configuring-playbook-bridge-mautrix-instagram.md).
 | 
			
		||||
 | 
			
		||||
## Synapse workers support
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
@@ -53,6 +53,8 @@ Using this playbook, you can get the following services configured on your serve
 | 
			
		||||
 | 
			
		||||
- (optional) the [mautrix-hangouts](https://github.com/tulir/mautrix-hangouts) bridge for bridging your Matrix server to [Google Hangouts](https://en.wikipedia.org/wiki/Google_Hangouts)
 | 
			
		||||
 | 
			
		||||
- (optional) the [mautrix-instagram](https://github.com/tulir/mautrix-instagram) bridge for bridging your Matrix server to [Instagram](https://instagram.com/)
 | 
			
		||||
 | 
			
		||||
- (optional) the [mautrix-signal](https://github.com/tulir/mautrix-signal) bridge for bridging your Matrix server to [Signal](https://www.signal.org/)
 | 
			
		||||
 | 
			
		||||
- (optional) the [matrix-appservice-irc](https://github.com/matrix-org/matrix-appservice-irc) bridge for bridging your Matrix server to [IRC](https://wikipedia.org/wiki/Internet_Relay_Chat)
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										17
									
								
								docs/configuring-playbook-bridge-mautrix-instagram.md
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										17
									
								
								docs/configuring-playbook-bridge-mautrix-instagram.md
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,17 @@
 | 
			
		||||
# Setting up Mautrix Instagram (optional)
 | 
			
		||||
 | 
			
		||||
The playbook can install and configure [mautrix-instagram](https://github.com/tulir/mautrix-instagram) for you.
 | 
			
		||||
 | 
			
		||||
See the project's [documentation](https://docs.mau.fi/bridges/python/instagram/index.html) to learn what it does and why it might be useful to you.
 | 
			
		||||
 | 
			
		||||
```yaml
 | 
			
		||||
matrix_mautrix_instagram_enabled: true
 | 
			
		||||
```
 | 
			
		||||
 | 
			
		||||
## Usage
 | 
			
		||||
 | 
			
		||||
You then need to start a chat with `@instagrambot:YOUR_DOMAIN` (where `YOUR_DOMAIN` is your base domain, not the `matrix.` domain).
 | 
			
		||||
 | 
			
		||||
Send `login YOUR_INSTAGRAM_EMAIL_ADDRESS YOUR_INSTAGRAM_PASSWORD` to the bridge bot to enable bridging for your instagram/Messenger account.
 | 
			
		||||
 | 
			
		||||
You can learn more here about authentication from the bridge's [official documentation on Authentication](https://docs.mau.fi/bridges/python/instagram/authentication.html).
 | 
			
		||||
@@ -96,6 +96,8 @@ When you're done with all the configuration you'd like to do, continue with [Ins
 | 
			
		||||
 | 
			
		||||
- [Setting up Mautrix Hangouts bridging](configuring-playbook-bridge-mautrix-hangouts.md) (optional)
 | 
			
		||||
 | 
			
		||||
- [Setting up Mautrix Instagram bridging](configuring-playbook-bridge-mautrix-instagram.md) (optional)
 | 
			
		||||
 | 
			
		||||
- [Setting up Mautrix Signal bridging](configuring-playbook-bridge-mautrix-signal.md) (optional)
 | 
			
		||||
 | 
			
		||||
- [Setting up Appservice IRC bridging](configuring-playbook-bridge-appservice-irc.md) (optional)
 | 
			
		||||
 
 | 
			
		||||
@@ -48,6 +48,8 @@ These services are not part of our default installation, but can be enabled by [
 | 
			
		||||
 | 
			
		||||
- [tulir/mautrix-hangouts](https://mau.dev/tulir/mautrix-hangouts/container_registry) - the [mautrix-hangouts](https://github.com/tulir/mautrix-hangouts) bridge to [Google Hangouts](https://en.wikipedia.org/wiki/Google_Hangouts) (optional)
 | 
			
		||||
 | 
			
		||||
- [tulir/mautrix-instagram](https://mau.dev/tulir/mautrix-instagram/container_registry) - the [mautrix-instagram](https://github.com/tulir/mautrix-instagram) bridge to [Instagram](https://instagram.com/) (optional)
 | 
			
		||||
 | 
			
		||||
- [tulir/mautrix-signal](https://mau.dev/tulir/mautrix-signal/container_registry) - the [mautrix-signal](https://github.com/tulir/mautrix-signal) bridge to [Signal](https://www.signal.org/) (optional)
 | 
			
		||||
 | 
			
		||||
- [matrixdotorg/matrix-appservice-irc](https://hub.docker.com/r/matrixdotorg/matrix-appservice-irc) - the [matrix-appservice-irc](https://github.com/matrix-org/matrix-appservice-irc) bridge to [IRC](https://wikipedia.org/wiki/Internet_Relay_Chat) (optional)
 | 
			
		||||
 
 | 
			
		||||
@@ -265,6 +265,46 @@ matrix_mautrix_hangouts_database_password: "{{ matrix_synapse_macaroon_secret_ke
 | 
			
		||||
######################################################################
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
######################################################################
 | 
			
		||||
#
 | 
			
		||||
# matrix-bridge-mautrix-instagram
 | 
			
		||||
#
 | 
			
		||||
######################################################################
 | 
			
		||||
 | 
			
		||||
# We don't enable bridges by default.
 | 
			
		||||
matrix_mautrix_instagram_enabled: false
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_container_image_self_build: "{{ matrix_architecture not in ['amd64', 'arm64'] }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_systemd_required_services_list: |
 | 
			
		||||
  {{
 | 
			
		||||
    ['docker.service']
 | 
			
		||||
    +
 | 
			
		||||
    (['matrix-synapse.service'] if matrix_synapse_enabled else [])
 | 
			
		||||
    +
 | 
			
		||||
    (['matrix-postgres.service'] if matrix_postgres_enabled else [])
 | 
			
		||||
  }}
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_appservice_token: "{{ matrix_synapse_macaroon_secret_key | password_hash('sha512', 'ig.as.token') | to_uuid }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_homeserver_token: "{{ matrix_synapse_macaroon_secret_key | password_hash('sha512', 'ig.hs.token') | to_uuid }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_login_shared_secret: "{{ matrix_synapse_ext_password_provider_shared_secret_auth_shared_secret if matrix_synapse_ext_password_provider_shared_secret_auth_enabled else '' }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_bridge_presence: "{{ matrix_synapse_use_presence if matrix_synapse_enabled else true }}"
 | 
			
		||||
 | 
			
		||||
# We'd like to force-set people with external Postgres to SQLite, so the bridge role can complain
 | 
			
		||||
# and point them to a migration path.
 | 
			
		||||
matrix_mautrix_instagram_database_engine: "{{ 'postgres' if matrix_postgres_enabled else 'sqlite' }}"
 | 
			
		||||
matrix_mautrix_instagram_database_password: "{{ matrix_synapse_macaroon_secret_key | password_hash('sha512', 'mau.ig.db') | to_uuid }}"
 | 
			
		||||
 | 
			
		||||
######################################################################
 | 
			
		||||
#
 | 
			
		||||
# /matrix-bridge-mautrix-instagram
 | 
			
		||||
#
 | 
			
		||||
######################################################################
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
######################################################################
 | 
			
		||||
#
 | 
			
		||||
# matrix-bridge-mautrix-signal
 | 
			
		||||
@@ -1179,6 +1219,12 @@ matrix_postgres_additional_databases: |
 | 
			
		||||
      'password': matrix_mautrix_hangouts_database_password,
 | 
			
		||||
    }] if (matrix_mautrix_hangouts_enabled and matrix_mautrix_hangouts_database_engine == 'postgres' and matrix_mautrix_hangouts_database_hostname == 'matrix-postgres') else [])
 | 
			
		||||
    +
 | 
			
		||||
    ([{
 | 
			
		||||
      'name': matrix_mautrix_instagram_database_name,
 | 
			
		||||
      'username': matrix_mautrix_instagram_database_username,
 | 
			
		||||
      'password': matrix_mautrix_instagram_database_password,
 | 
			
		||||
    }] if (matrix_mautrix_instagram_enabled and matrix_mautrix_instagram_database_engine == 'postgres' and matrix_mautrix_instagram_database_hostname == 'matrix-postgres') else [])
 | 
			
		||||
    +    
 | 
			
		||||
    ([{
 | 
			
		||||
      'name': matrix_mautrix_signal_database_name,
 | 
			
		||||
      'username': matrix_mautrix_signal_database_username,
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										103
									
								
								roles/matrix-bridge-mautrix-instagram/defaults/main.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										103
									
								
								roles/matrix-bridge-mautrix-instagram/defaults/main.yml
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,103 @@
 | 
			
		||||
# mautrix-instagram is a Matrix <-> Instagram bridge
 | 
			
		||||
# See: https://github.com/tulir/mautrix-instagram
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_enabled: true
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_container_image_self_build: false
 | 
			
		||||
matrix_mautrix_instagram_container_image_self_build_repo: "https://github.com/tulir/mautrix-instagram.git"
 | 
			
		||||
 | 
			
		||||
# See: https://mau.dev/tulir/mautrix-instagram/container_registry
 | 
			
		||||
matrix_mautrix_instagram_docker_image: "{{ matrix_mautrix_instagram_docker_image_name_prefix }}tulir/mautrix-instagram:latest"
 | 
			
		||||
matrix_mautrix_instagram_docker_image_name_prefix: "{{ 'localhost/' if matrix_mautrix_instagram_container_image_self_build else 'dock.mau.dev/' }}"
 | 
			
		||||
matrix_mautrix_instagram_docker_image_force_pull: "{{ matrix_mautrix_instagram_docker_image.endswith(':latest') }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_base_path: "{{ matrix_base_data_path }}/mautrix-instagram"
 | 
			
		||||
matrix_mautrix_instagram_config_path: "{{ matrix_mautrix_instagram_base_path }}/config"
 | 
			
		||||
matrix_mautrix_instagram_data_path: "{{ matrix_mautrix_instagram_base_path }}/data"
 | 
			
		||||
matrix_mautrix_instagram_docker_src_files_path: "{{ matrix_mautrix_instagram_base_path }}/docker-src"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_homeserver_address: 'http://matrix-synapse:8008'
 | 
			
		||||
matrix_mautrix_instagram_homeserver_domain: '{{ matrix_domain }}'
 | 
			
		||||
matrix_mautrix_instagram_appservice_address: 'http://matrix-mautrix-instagram:29330'
 | 
			
		||||
 | 
			
		||||
# A list of extra arguments to pass to the container
 | 
			
		||||
matrix_mautrix_instagram_container_extra_arguments: []
 | 
			
		||||
 | 
			
		||||
# List of systemd services that matrix-mautrix-instagram.service depends on.
 | 
			
		||||
matrix_mautrix_instagram_systemd_required_services_list: ['docker.service']
 | 
			
		||||
 | 
			
		||||
# List of systemd services that matrix-mautrix-instagram.service wants
 | 
			
		||||
matrix_mautrix_instagram_systemd_wanted_services_list: []
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_appservice_token: ''
 | 
			
		||||
matrix_mautrix_instagram_homeserver_token: ''
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
# Database-related configuration fields.
 | 
			
		||||
# 
 | 
			
		||||
# To use Postgres:
 | 
			
		||||
# - adjust your database credentials via the `matrix_mautrix_instagram_postgres_*` variables
 | 
			
		||||
matrix_mautrix_instagram_database_engine: 'postgres'
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_database_username: 'matrix_mautrix_instagram'
 | 
			
		||||
matrix_mautrix_instagram_database_password: 'some-password'
 | 
			
		||||
matrix_mautrix_instagram_database_hostname: 'matrix-postgres'
 | 
			
		||||
matrix_mautrix_instagram_database_port: 5432
 | 
			
		||||
matrix_mautrix_instagram_database_name: 'matrix_mautrix_instagram'
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_database_connection_string: 'postgres://{{ matrix_mautrix_instagram_database_username }}:{{ matrix_mautrix_instagram_database_password }}@{{ matrix_mautrix_instagram_database_hostname }}:{{ matrix_mautrix_instagram_database_port }}/{{ matrix_mautrix_instagram_database_name }}'
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_appservice_database: "{{
 | 
			
		||||
	{
 | 
			
		||||
		'postgres': matrix_mautrix_instagram_database_connection_string,
 | 
			
		||||
	}[matrix_mautrix_instagram_database_engine]
 | 
			
		||||
}}"
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
# Can be set to enable automatic double-puppeting via Shared Secret Auth (https://github.com/devture/matrix-synapse-shared-secret-auth).
 | 
			
		||||
matrix_mautrix_instagram_login_shared_secret: ''
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_bridge_login_shared_secret_map: "{{ {matrix_mautrix_instagram_homeserver_domain: matrix_mautrix_instagram_login_shared_secret} if matrix_mautrix_instagram_login_shared_secret else {} }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_appservice_bot_username: instagrambot
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_bridge_presence: true
 | 
			
		||||
 | 
			
		||||
# Default configuration template which covers the generic use case.
 | 
			
		||||
# You can customize it by controlling the various variables inside it.
 | 
			
		||||
#
 | 
			
		||||
# For a more advanced customization, you can extend the default (see `matrix_mautrix_instagram_configuration_extension_yaml`)
 | 
			
		||||
# or completely replace this variable with your own template.
 | 
			
		||||
matrix_mautrix_instagram_configuration_yaml: "{{ lookup('template', 'templates/config.yaml.j2') }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_configuration_extension_yaml: |
 | 
			
		||||
  # Your custom YAML configuration goes here.
 | 
			
		||||
  # This configuration extends the default starting configuration (`matrix_mautrix_instagram_configuration_yaml`).
 | 
			
		||||
  #
 | 
			
		||||
  # You can override individual variables from the default configuration, or introduce new ones.
 | 
			
		||||
  #
 | 
			
		||||
  # If you need something more special, you can take full control by
 | 
			
		||||
  # completely redefining `matrix_mautrix_instagram_configuration_yaml`.
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_configuration_extension: "{{ matrix_mautrix_instagram_configuration_extension_yaml|from_yaml if matrix_mautrix_instagram_configuration_extension_yaml|from_yaml is mapping else {} }}"
 | 
			
		||||
 | 
			
		||||
# Holds the final configuration (a combination of the default and its extension).
 | 
			
		||||
# You most likely don't need to touch this variable. Instead, see `matrix_mautrix_instagram_configuration_yaml`.
 | 
			
		||||
matrix_mautrix_instagram_configuration: "{{ matrix_mautrix_instagram_configuration_yaml|from_yaml|combine(matrix_mautrix_instagram_configuration_extension, recursive=True) }}"
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_registration_yaml: |
 | 
			
		||||
  id: instagram
 | 
			
		||||
  as_token: "{{ matrix_mautrix_instagram_appservice_token }}"
 | 
			
		||||
  hs_token: "{{ matrix_mautrix_instagram_homeserver_token }}"
 | 
			
		||||
  namespaces:
 | 
			
		||||
    users:
 | 
			
		||||
    - exclusive: true
 | 
			
		||||
      regex: '^@instagram_.+:{{ matrix_mautrix_instagram_homeserver_domain|regex_escape }}$'
 | 
			
		||||
    - exclusive: true
 | 
			
		||||
      regex: '^@{{ matrix_mautrix_instagram_appservice_bot_username|regex_escape }}:{{ matrix_mautrix_instagram_homeserver_domain|regex_escape }}$'
 | 
			
		||||
  url: {{ matrix_mautrix_instagram_appservice_address }}
 | 
			
		||||
  # See https://github.com/tulir/mautrix-signal/issues/43
 | 
			
		||||
  sender_localpart: _bot_{{ matrix_mautrix_instagram_appservice_bot_username }}
 | 
			
		||||
  rate_limited: false
 | 
			
		||||
 | 
			
		||||
matrix_mautrix_instagram_registration: "{{ matrix_mautrix_instagram_registration_yaml|from_yaml }}"
 | 
			
		||||
							
								
								
									
										23
									
								
								roles/matrix-bridge-mautrix-instagram/tasks/init.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										23
									
								
								roles/matrix-bridge-mautrix-instagram/tasks/init.yml
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,23 @@
 | 
			
		||||
- set_fact:
 | 
			
		||||
    matrix_systemd_services_list: "{{ matrix_systemd_services_list + ['matrix-mautrix-instagram.service'] }}"
 | 
			
		||||
  when: matrix_mautrix_instagram_enabled|bool
 | 
			
		||||
 | 
			
		||||
# If the matrix-synapse role is not used, these variables may not exist.
 | 
			
		||||
- set_fact:
 | 
			
		||||
    matrix_synapse_container_extra_arguments: >
 | 
			
		||||
      {{ matrix_synapse_container_extra_arguments|default([]) }}
 | 
			
		||||
      +
 | 
			
		||||
      ["--mount type=bind,src={{ matrix_mautrix_instagram_config_path }}/registration.yaml,dst=/matrix-mautrix-instagram-registration.yaml,ro"]
 | 
			
		||||
 | 
			
		||||
    matrix_synapse_app_service_config_files: >
 | 
			
		||||
      {{ matrix_synapse_app_service_config_files|default([]) }}
 | 
			
		||||
      +
 | 
			
		||||
      {{ ["/matrix-mautrix-instagram-registration.yaml"] }}
 | 
			
		||||
  when: matrix_mautrix_instagram_enabled|bool
 | 
			
		||||
 | 
			
		||||
# ansible lower than 2.8, does not support docker_image build parameters
 | 
			
		||||
# for self buildig it is explicitly needed, so we rather fail here
 | 
			
		||||
- name: Fail if running on Ansible lower than 2.8 and trying self building
 | 
			
		||||
  fail:
 | 
			
		||||
    msg: "To self build Mautrix instagram image, you should usa ansible 2.8 or higher. E.g. pip contains such packages."
 | 
			
		||||
  when: "ansible_version.major == 2 and ansible_version.minor < 8 and matrix_mautrix_instagram_container_image_self_build"
 | 
			
		||||
							
								
								
									
										21
									
								
								roles/matrix-bridge-mautrix-instagram/tasks/main.yml
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										21
									
								
								roles/matrix-bridge-mautrix-instagram/tasks/main.yml
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,21 @@
 | 
			
		||||
- import_tasks: "{{ role_path }}/tasks/init.yml"
 | 
			
		||||
  tags:
 | 
			
		||||
    - always
 | 
			
		||||
 | 
			
		||||
- import_tasks: "{{ role_path }}/tasks/validate_config.yml"
 | 
			
		||||
  when: "run_setup|bool and matrix_mautrix_instagram_enabled|bool"
 | 
			
		||||
  tags:
 | 
			
		||||
    - setup-all
 | 
			
		||||
    - setup-mautrix-instagram
 | 
			
		||||
 | 
			
		||||
- import_tasks: "{{ role_path }}/tasks/setup_install.yml"
 | 
			
		||||
  when: "run_setup|bool and matrix_mautrix_instagram_enabled|bool"
 | 
			
		||||
  tags:
 | 
			
		||||
    - setup-all
 | 
			
		||||
    - setup-mautrix-instagram
 | 
			
		||||
 | 
			
		||||
- import_tasks: "{{ role_path }}/tasks/setup_uninstall.yml"
 | 
			
		||||
  when: "run_setup|bool and not matrix_mautrix_instagram_enabled|bool"
 | 
			
		||||
  tags:
 | 
			
		||||
    - setup-all
 | 
			
		||||
    - setup-mautrix-instagram
 | 
			
		||||
@@ -0,0 +1,80 @@
 | 
			
		||||
---
 | 
			
		||||
# If the matrix-synapse role is not used, `matrix_synapse_role_executed` won't exist.
 | 
			
		||||
# We don't want to fail in such cases.
 | 
			
		||||
- name: Fail if matrix-synapse role already executed
 | 
			
		||||
  fail:
 | 
			
		||||
    msg: >-
 | 
			
		||||
      The matrix-bridge-mautrix-instagram role needs to execute before the matrix-synapse role.
 | 
			
		||||
  when: "matrix_synapse_role_executed|default(False)"
 | 
			
		||||
 | 
			
		||||
- name: Ensure Mautrix instagram image is pulled
 | 
			
		||||
  docker_image:
 | 
			
		||||
    name: "{{ matrix_mautrix_instagram_docker_image }}"
 | 
			
		||||
    source: "{{ 'pull' if ansible_version.major > 2 or ansible_version.minor > 7 else omit }}"
 | 
			
		||||
    force_source: "{{ matrix_mautrix_instagram_docker_image_force_pull if ansible_version.major > 2 or ansible_version.minor >= 8 else omit }}"
 | 
			
		||||
    force: "{{ omit if ansible_version.major > 2 or ansible_version.minor >= 8 else matrix_mautrix_instagram_docker_image_force_pull }}"
 | 
			
		||||
  when: matrix_mautrix_instagram_enabled|bool and not matrix_mautrix_instagram_container_image_self_build
 | 
			
		||||
 | 
			
		||||
- name: Ensure Mautrix instagram paths exist
 | 
			
		||||
  file:
 | 
			
		||||
    path: "{{ item.path }}"
 | 
			
		||||
    state: directory
 | 
			
		||||
    mode: 0750
 | 
			
		||||
    owner: "{{ matrix_user_username }}"
 | 
			
		||||
    group: "{{ matrix_user_groupname }}"
 | 
			
		||||
  with_items:
 | 
			
		||||
    - { path: "{{ matrix_mautrix_instagram_base_path }}", when: true }
 | 
			
		||||
    - { path: "{{ matrix_mautrix_instagram_config_path }}", when: true }
 | 
			
		||||
    - { path: "{{ matrix_mautrix_instagram_data_path }}", when: true }
 | 
			
		||||
    - {
 | 
			
		||||
        path: "{{ matrix_mautrix_instagram_docker_src_files_path }}",
 | 
			
		||||
        when: "{{ matrix_mautrix_instagram_container_image_self_build }}",
 | 
			
		||||
      }
 | 
			
		||||
  when: item.when|bool
 | 
			
		||||
 | 
			
		||||
- name: Ensure Mautrix instagram repository is present on self-build
 | 
			
		||||
  git:
 | 
			
		||||
    repo: "{{ matrix_mautrix_instagram_container_image_self_build_repo }}"
 | 
			
		||||
    dest: "{{ matrix_mautrix_instagram_docker_src_files_path }}"
 | 
			
		||||
    force: "yes"
 | 
			
		||||
  register: matrix_mautrix_instagram_git_pull_results
 | 
			
		||||
  when: "matrix_mautrix_instagram_enabled|bool and matrix_mautrix_instagram_container_image_self_build"
 | 
			
		||||
 | 
			
		||||
- name: Ensure Mautrix instagram Docker image is built
 | 
			
		||||
  docker_image:
 | 
			
		||||
    name: "{{ matrix_mautrix_instagram_docker_image }}"
 | 
			
		||||
    source: build
 | 
			
		||||
    force_source: "{{ matrix_mautrix_instagram_git_pull_results.changed }}"
 | 
			
		||||
    build:
 | 
			
		||||
      dockerfile: Dockerfile
 | 
			
		||||
      path: "{{ matrix_mautrix_instagram_docker_src_files_path }}"
 | 
			
		||||
      pull: yes
 | 
			
		||||
  when: "matrix_mautrix_instagram_enabled|bool and matrix_mautrix_instagram_container_image_self_build|bool"
 | 
			
		||||
 | 
			
		||||
- name: Ensure mautrix-instagram config.yaml installed
 | 
			
		||||
  copy:
 | 
			
		||||
    content: "{{ matrix_mautrix_instagram_configuration|to_nice_yaml }}"
 | 
			
		||||
    dest: "{{ matrix_mautrix_instagram_config_path }}/config.yaml"
 | 
			
		||||
    mode: 0644
 | 
			
		||||
    owner: "{{ matrix_user_username }}"
 | 
			
		||||
    group: "{{ matrix_user_groupname }}"
 | 
			
		||||
 | 
			
		||||
- name: Ensure mautrix-instagram registration.yaml installed
 | 
			
		||||
  copy:
 | 
			
		||||
    content: "{{ matrix_mautrix_instagram_registration|to_nice_yaml }}"
 | 
			
		||||
    dest: "{{ matrix_mautrix_instagram_config_path }}/registration.yaml"
 | 
			
		||||
    mode: 0644
 | 
			
		||||
    owner: "{{ matrix_user_username }}"
 | 
			
		||||
    group: "{{ matrix_user_groupname }}"
 | 
			
		||||
 | 
			
		||||
- name: Ensure matrix-mautrix-instagram.service installed
 | 
			
		||||
  template:
 | 
			
		||||
    src: "{{ role_path }}/templates/systemd/matrix-mautrix-instagram.service.j2"
 | 
			
		||||
    dest: "{{ matrix_systemd_path }}/matrix-mautrix-instagram.service"
 | 
			
		||||
    mode: 0644
 | 
			
		||||
  register: matrix_mautrix_instagram_systemd_service_result
 | 
			
		||||
 | 
			
		||||
- name: Ensure systemd reloaded after matrix-mautrix-instagram.service installation
 | 
			
		||||
  service:
 | 
			
		||||
    daemon_reload: yes
 | 
			
		||||
  when: "matrix_mautrix_instagram_systemd_service_result.changed"
 | 
			
		||||
@@ -0,0 +1,23 @@
 | 
			
		||||
---
 | 
			
		||||
- name: Check existence of matrix-mautrix-instagram service
 | 
			
		||||
  stat:
 | 
			
		||||
    path: "{{ matrix_systemd_path }}/matrix-mautrix-instagram.service"
 | 
			
		||||
  register: matrix_mautrix_instagram_service_stat
 | 
			
		||||
 | 
			
		||||
- name: Ensure matrix-mautrix-instagram is stopped
 | 
			
		||||
  service:
 | 
			
		||||
    name: matrix-mautrix-instagram
 | 
			
		||||
    state: stopped
 | 
			
		||||
    daemon_reload: yes
 | 
			
		||||
  when: "matrix_mautrix_instagram_service_stat.stat.exists"
 | 
			
		||||
 | 
			
		||||
- name: Ensure matrix-mautrix-instagram.service doesn't exist
 | 
			
		||||
  file:
 | 
			
		||||
    path: "{{ matrix_systemd_path }}/matrix-mautrix-instagram.service"
 | 
			
		||||
    state: absent
 | 
			
		||||
  when: "matrix_mautrix_instagram_service_stat.stat.exists"
 | 
			
		||||
 | 
			
		||||
- name: Ensure systemd reloaded after matrix-mautrix-instagram.service removal
 | 
			
		||||
  service:
 | 
			
		||||
    daemon_reload: yes
 | 
			
		||||
  when: "matrix_mautrix_instagram_service_stat.stat.exists"
 | 
			
		||||
@@ -0,0 +1,9 @@
 | 
			
		||||
---
 | 
			
		||||
- name: Fail if required settings not defined
 | 
			
		||||
  fail:
 | 
			
		||||
    msg: >-
 | 
			
		||||
      You need to define a required configuration setting (`{{ item }}`).
 | 
			
		||||
  when: "vars[item] == ''"
 | 
			
		||||
  with_items:
 | 
			
		||||
    - "matrix_mautrix_instagram_appservice_token"
 | 
			
		||||
    - "matrix_mautrix_instagram_homeserver_token"
 | 
			
		||||
							
								
								
									
										234
									
								
								roles/matrix-bridge-mautrix-instagram/templates/config.yaml.j2
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										234
									
								
								roles/matrix-bridge-mautrix-instagram/templates/config.yaml.j2
									
									
									
									
									
										Normal file
									
								
							@@ -0,0 +1,234 @@
 | 
			
		||||
#jinja2: lstrip_blocks: "True"
 | 
			
		||||
# Homeserver details
 | 
			
		||||
homeserver:
 | 
			
		||||
  # The address that this appservice can use to connect to the homeserver.
 | 
			
		||||
  address: {{ matrix_mautrix_instagram_homeserver_address }}
 | 
			
		||||
  # The domain of the homeserver (for MXIDs, etc).
 | 
			
		||||
  domain: {{ matrix_mautrix_instagram_homeserver_domain }}
 | 
			
		||||
  # Whether or not to verify the SSL certificate of the homeserver.
 | 
			
		||||
  # Only applies if address starts with https://
 | 
			
		||||
  verify_ssl: true
 | 
			
		||||
  # Whether or not the homeserver supports asmux-specific endpoints,
 | 
			
		||||
  # such as /_matrix/client/unstable/net.maunium.asmux/dms for atomically
 | 
			
		||||
  # updating m.direct.
 | 
			
		||||
  asmux: false
 | 
			
		||||
 | 
			
		||||
# Application service host/registration related details
 | 
			
		||||
# Changing these values requires regeneration of the registration.
 | 
			
		||||
appservice:
 | 
			
		||||
  # The address that the homeserver can use to connect to this appservice.
 | 
			
		||||
  address: {{ matrix_mautrix_instagram_appservice_address }}
 | 
			
		||||
  # When using https:// the TLS certificate and key files for the address.
 | 
			
		||||
  tls_cert: false
 | 
			
		||||
  tls_key: false
 | 
			
		||||
 | 
			
		||||
  # The hostname and port where this appservice should listen.
 | 
			
		||||
  hostname: 0.0.0.0
 | 
			
		||||
  port: 29330
 | 
			
		||||
  # The maximum body size of appservice API requests (from the homeserver) in mebibytes
 | 
			
		||||
  # Usually 1 is enough, but on high-traffic bridges you might need to increase this to avoid 413s
 | 
			
		||||
  max_body_size: 1
 | 
			
		||||
 | 
			
		||||
  # The full URI to the database. Only Postgres is currently supported.
 | 
			
		||||
  database: {{ matrix_mautrix_instagram_appservice_database|to_json }}
 | 
			
		||||
  # Additional arguments for asyncpg.create_pool()
 | 
			
		||||
  # https://magicstack.github.io/asyncpg/current/api/index.html#asyncpg.pool.create_pool
 | 
			
		||||
  database_opts:
 | 
			
		||||
    min_size: 5
 | 
			
		||||
    max_size: 10
 | 
			
		||||
 | 
			
		||||
  # The unique ID of this appservice.
 | 
			
		||||
  id: instagram
 | 
			
		||||
  # Username of the appservice bot.
 | 
			
		||||
  bot_username: {{ matrix_mautrix_instagram_appservice_bot_username|to_json }}
 | 
			
		||||
  # Display name and avatar for bot. Set to "remove" to remove display name/avatar, leave empty
 | 
			
		||||
  # to leave display name/avatar as-is.
 | 
			
		||||
  bot_displayname: instagram bridge bot
 | 
			
		||||
  bot_avatar: mxc://maunium.net/JxjlbZUlCPULEeHZSwleUXQv
 | 
			
		||||
 | 
			
		||||
  # Community ID for bridged users (changes registration file) and rooms.
 | 
			
		||||
  # Must be created manually.
 | 
			
		||||
  #
 | 
			
		||||
  # Example: "+instagram:example.com". Set to false to disable.
 | 
			
		||||
  community_id: false
 | 
			
		||||
 | 
			
		||||
  # Whether or not to receive ephemeral events via appservice transactions.
 | 
			
		||||
  # Requires MSC2409 support (i.e. Synapse 1.22+).
 | 
			
		||||
  # You should disable bridge -> sync_with_custom_puppets when this is enabled.
 | 
			
		||||
  ephemeral_events: false
 | 
			
		||||
 | 
			
		||||
  # Authentication tokens for AS <-> HS communication.
 | 
			
		||||
  as_token: "{{ matrix_mautrix_instagram_appservice_token }}"
 | 
			
		||||
  hs_token: "{{ matrix_mautrix_instagram_homeserver_token }}"
 | 
			
		||||
 | 
			
		||||
# Prometheus telemetry config. Requires prometheus-client to be installed.
 | 
			
		||||
metrics:
 | 
			
		||||
  enabled: false
 | 
			
		||||
  listen_port: 8000
 | 
			
		||||
 | 
			
		||||
instagram:
 | 
			
		||||
  # Seed for generating devices. This is secret because the seed is used to generate
 | 
			
		||||
  # device IDs, which can apparently be used to bypass two-factor authentication after
 | 
			
		||||
  # logging out, because Instagram is insecure.
 | 
			
		||||
  device_seed: generate
 | 
			
		||||
 | 
			
		||||
# Bridge config
 | 
			
		||||
bridge:
 | 
			
		||||
  # Localpart template of MXIDs for Instagram users.
 | 
			
		||||
  # {userid} is replaced with the user ID of the Instagram user.
 | 
			
		||||
  username_template: "instagram_{userid}"
 | 
			
		||||
  # Displayname template for Instagram users.
 | 
			
		||||
  # {displayname} is replaced with the display name of the Instagram user.
 | 
			
		||||
  # {username} is replaced with the username of the Instagram user.
 | 
			
		||||
  displayname_template: "{username} (Instagram)"
 | 
			
		||||
 | 
			
		||||
  # Maximum length of displayname
 | 
			
		||||
  displayname_max_length: 100
 | 
			
		||||
 | 
			
		||||
  # Maximum number of seconds since the last activity in a chat to automatically create portals.
 | 
			
		||||
  portal_create_max_age: 86400
 | 
			
		||||
  # Maximum number of chats to fetch for startup sync
 | 
			
		||||
  chat_sync_limit: 100
 | 
			
		||||
  # Whether or not to use /sync to get read receipts and typing notifications
 | 
			
		||||
  # when double puppeting is enabled
 | 
			
		||||
  sync_with_custom_puppets: true
 | 
			
		||||
  # Whether or not to update the m.direct account data event when double puppeting is enabled.
 | 
			
		||||
  # Note that updating the m.direct event is not atomic (except with mautrix-asmux)
 | 
			
		||||
  # and is therefore prone to race conditions.
 | 
			
		||||
  sync_direct_chat_list: false
 | 
			
		||||
  # Allow using double puppeting from any server with a valid client .well-known file.
 | 
			
		||||
  double_puppet_allow_discovery: false
 | 
			
		||||
  # Servers to allow double puppeting from, even if double_puppet_allow_discovery is false.
 | 
			
		||||
  double_puppet_server_map: {}
 | 
			
		||||
  #    example.com: https://example.com
 | 
			
		||||
  # Allow using double puppeting from any server with a valid client .well-known file.
 | 
			
		||||
  double_puppet_allow_discovery: false
 | 
			
		||||
  # Shared secrets for https://github.com/devture/matrix-synapse-shared-secret-auth
 | 
			
		||||
  #
 | 
			
		||||
  # If set, custom puppets will be enabled automatically for local users
 | 
			
		||||
  # instead of users having to find an access token and run `login-matrix`
 | 
			
		||||
  # manually.
 | 
			
		||||
  # If using this for other servers than the bridge's server,
 | 
			
		||||
  # you must also set the URL in the double_puppet_server_map.
 | 
			
		||||
  login_shared_secret_map:
 | 
			
		||||
    {{ matrix_mautrix_instagram_bridge_login_shared_secret_map|to_json }}
 | 
			
		||||
  # Whether or not to update avatars when syncing all contacts at startup.
 | 
			
		||||
  update_avatar_initial_sync: true
 | 
			
		||||
  # Whether or not created rooms should have federation enabled.
 | 
			
		||||
  # If false, created portal rooms will never be federated.
 | 
			
		||||
  federate_rooms: true
 | 
			
		||||
  # Settings for backfilling messages from Instagram.
 | 
			
		||||
  backfill:
 | 
			
		||||
    # Whether or not the Instagram users of logged in Matrix users should be
 | 
			
		||||
    # invited to private chats when backfilling history from Instagram. This is
 | 
			
		||||
    # usually needed to prevent rate limits and to allow timestamp massaging.
 | 
			
		||||
    invite_own_puppet: true
 | 
			
		||||
    # Maximum number of messages to backfill initially.
 | 
			
		||||
    # Set to 0 to disable backfilling when creating portal.
 | 
			
		||||
    initial_limit: 0
 | 
			
		||||
    # Maximum number of messages to backfill if messages were missed while
 | 
			
		||||
    # the bridge was disconnected.
 | 
			
		||||
    # Set to 0 to disable backfilling missed messages.
 | 
			
		||||
    missed_limit: 1000
 | 
			
		||||
    # If using double puppeting, should notifications be disabled
 | 
			
		||||
    # while the initial backfill is in progress?
 | 
			
		||||
    disable_notifications: false
 | 
			
		||||
  periodic_reconnect:
 | 
			
		||||
    # Interval in seconds in which to automatically reconnect all users.
 | 
			
		||||
    # This can be used to automatically mitigate the bug where Instagram stops sending messages.
 | 
			
		||||
    # Set to -1 to disable periodic reconnections entirely.
 | 
			
		||||
    interval: -1
 | 
			
		||||
    # Whether or not the bridge should backfill chats when reconnecting.
 | 
			
		||||
    resync: true
 | 
			
		||||
    # Should even disconnected users be reconnected?
 | 
			
		||||
    always: false  
 | 
			
		||||
  # End-to-bridge encryption support options. These require matrix-nio to be installed with pip
 | 
			
		||||
  # and login_shared_secret to be configured in order to get a device for the bridge bot.
 | 
			
		||||
  #
 | 
			
		||||
  # Additionally, https://github.com/matrix-org/synapse/pull/5758 is required if using a normal
 | 
			
		||||
  # application service.
 | 
			
		||||
  encryption:
 | 
			
		||||
    # Allow encryption, work in group chat rooms with e2ee enabled
 | 
			
		||||
    allow: false
 | 
			
		||||
    # Default to encryption, force-enable encryption in all portals the bridge creates
 | 
			
		||||
    # This will cause the bridge bot to be in private chats for the encryption to work properly.
 | 
			
		||||
    default: false
 | 
			
		||||
    # Options for automatic key sharing.
 | 
			
		||||
    key_sharing:
 | 
			
		||||
      # Enable key sharing? If enabled, key requests for rooms where users are in will be fulfilled.
 | 
			
		||||
      # You must use a client that supports requesting keys from other users to use this feature.
 | 
			
		||||
      allow: false
 | 
			
		||||
      # Require the requesting device to have a valid cross-signing signature?
 | 
			
		||||
      # This doesn't require that the bridge has verified the device, only that the user has verified it.
 | 
			
		||||
      # Not yet implemented.
 | 
			
		||||
      require_cross_signing: false
 | 
			
		||||
      # Require devices to be verified by the bridge?
 | 
			
		||||
      # Verification by the bridge is not yet implemented.
 | 
			
		||||
      require_verification: true
 | 
			
		||||
  # Whether or not to explicitly set the avatar and room name for private
 | 
			
		||||
  # chat portal rooms. This will be implicitly enabled if encryption.default is true.
 | 
			
		||||
  private_chat_portal_meta: false
 | 
			
		||||
  # Whether or not the bridge should send a read receipt from the bridge bot when a message has
 | 
			
		||||
  # been sent to Instagram.
 | 
			
		||||
  delivery_receipts: false
 | 
			
		||||
  # Whether or not delivery errors should be reported as messages in the Matrix room.
 | 
			
		||||
  delivery_error_reports: false
 | 
			
		||||
  # Set this to true to tell the bridge to re-send m.bridge events to all rooms on the next run.
 | 
			
		||||
  # This field will automatically be changed back to false after it,
 | 
			
		||||
  # except if the config file is not writable.
 | 
			
		||||
  resend_bridge_info: false
 | 
			
		||||
  # Whether or not unimportant bridge notices should be sent to the user.
 | 
			
		||||
  # (e.g. connected, disconnected but will retry)
 | 
			
		||||
  unimportant_bridge_notices: true
 | 
			
		||||
 | 
			
		||||
  # The prefix for commands. Only required in non-management rooms.
 | 
			
		||||
  command_prefix: "!ig"
 | 
			
		||||
  # Permissions for using the bridge.
 | 
			
		||||
  # Permitted values:
 | 
			
		||||
  #       user - Use the bridge with puppeting.
 | 
			
		||||
  #      admin - Use and administrate the bridge.
 | 
			
		||||
  # Permitted keys:
 | 
			
		||||
  #        * - All Matrix users
 | 
			
		||||
  #   domain - All users on that homeserver
 | 
			
		||||
  #     mxid - Specific user
 | 
			
		||||
  permissions:
 | 
			
		||||
    "{{ matrix_mautrix_instagram_homeserver_domain }}": user
 | 
			
		||||
  # Provisioning API part of the web server for automated portal creation and fetching information.
 | 
			
		||||
  # Used by things like mautrix-manager (https://github.com/tulir/mautrix-manager).
 | 
			
		||||
  provisioning:
 | 
			
		||||
    # Whether or not the provisioning API should be enabled.
 | 
			
		||||
    enabled: true
 | 
			
		||||
    # The prefix to use in the provisioning API endpoints.
 | 
			
		||||
    prefix: /_matrix/provision/v1
 | 
			
		||||
    # The shared secret to authorize users of the API.
 | 
			
		||||
    # Set to "generate" to generate and save a new token.
 | 
			
		||||
    shared_secret: generate
 | 
			
		||||
 | 
			
		||||
# Python logging configuration.
 | 
			
		||||
#
 | 
			
		||||
# See section 16.7.2 of the Python documentation for more info:
 | 
			
		||||
# https://docs.python.org/3.6/library/logging.config.html#configuration-dictionary-schema
 | 
			
		||||
logging:
 | 
			
		||||
  version: 1
 | 
			
		||||
  formatters:
 | 
			
		||||
    colored:
 | 
			
		||||
      (): mautrix_instagram.util.ColorFormatter
 | 
			
		||||
      format: "[%(asctime)s] [%(levelname)s@%(name)s] %(message)s"
 | 
			
		||||
    normal:
 | 
			
		||||
      format: "[%(asctime)s] [%(levelname)s@%(name)s] %(message)s"
 | 
			
		||||
  handlers:
 | 
			
		||||
    console:
 | 
			
		||||
      class: logging.StreamHandler
 | 
			
		||||
      formatter: colored
 | 
			
		||||
  loggers:
 | 
			
		||||
    mau:
 | 
			
		||||
      level: DEBUG
 | 
			
		||||
    mauigpapi:
 | 
			
		||||
      level: DEBUG
 | 
			
		||||
    paho:
 | 
			
		||||
      level: INFO
 | 
			
		||||
    aiohttp:
 | 
			
		||||
      level: INFO
 | 
			
		||||
  root:
 | 
			
		||||
    level: DEBUG
 | 
			
		||||
    handlers: [console]
 | 
			
		||||
@@ -0,0 +1,42 @@
 | 
			
		||||
#jinja2: lstrip_blocks: "True"
 | 
			
		||||
[Unit]
 | 
			
		||||
Description=Matrix Mautrix Instagram bridge
 | 
			
		||||
{% for service in matrix_mautrix_instagram_systemd_required_services_list %}
 | 
			
		||||
Requires={{ service }}
 | 
			
		||||
After={{ service }}
 | 
			
		||||
{% endfor %}
 | 
			
		||||
{% for service in matrix_mautrix_instagram_systemd_wanted_services_list %}
 | 
			
		||||
Wants={{ service }}
 | 
			
		||||
{% endfor %}
 | 
			
		||||
DefaultDependencies=no
 | 
			
		||||
 | 
			
		||||
[Service]
 | 
			
		||||
Type=simple
 | 
			
		||||
Environment="HOME={{ matrix_systemd_unit_home_path }}"
 | 
			
		||||
ExecStartPre=-{{ matrix_host_command_sh }} -c '{{ matrix_host_command_docker }} kill matrix-mautrix-instagram 2>/dev/null'
 | 
			
		||||
ExecStartPre=-{{ matrix_host_command_sh }} -c '{{ matrix_host_command_docker }} rm matrix-mautrix-instagram 2>/dev/null'
 | 
			
		||||
 | 
			
		||||
# Intentional delay, so that the homeserver (we likely depend on) can manage to start.
 | 
			
		||||
ExecStartPre={{ matrix_host_command_sleep }} 5
 | 
			
		||||
 | 
			
		||||
ExecStart={{ matrix_host_command_docker }} run --rm --name matrix-mautrix-instagram \
 | 
			
		||||
			--log-driver=none \
 | 
			
		||||
			--user={{ matrix_user_uid }}:{{ matrix_user_gid }} \
 | 
			
		||||
			--cap-drop=ALL \
 | 
			
		||||
			--network={{ matrix_docker_network }} \
 | 
			
		||||
			-v {{ matrix_mautrix_instagram_config_path }}:/config:z \
 | 
			
		||||
			-v {{ matrix_mautrix_instagram_data_path }}:/data:z \
 | 
			
		||||
			{% for arg in matrix_mautrix_instagram_container_extra_arguments %}
 | 
			
		||||
			{{ arg }} \
 | 
			
		||||
			{% endfor %}
 | 
			
		||||
			{{ matrix_mautrix_instagram_docker_image }} \
 | 
			
		||||
			python3 -m mautrix_instagram -c /config/config.yaml --no-update
 | 
			
		||||
 | 
			
		||||
ExecStop=-{{ matrix_host_command_sh }} -c '{{ matrix_host_command_docker }} kill matrix-mautrix-instagram 2>/dev/null'
 | 
			
		||||
ExecStop=-{{ matrix_host_command_sh }} -c '{{ matrix_host_command_docker }} rm matrix-mautrix-instagram 2>/dev/null'
 | 
			
		||||
Restart=always
 | 
			
		||||
RestartSec=30
 | 
			
		||||
SyslogIdentifier=matrix-mautrix-instagram
 | 
			
		||||
 | 
			
		||||
[Install]
 | 
			
		||||
WantedBy=multi-user.target
 | 
			
		||||
		Reference in New Issue
	
	Block a user