#!/bin/bash CONFIG_DIR="/config" CONFIG_FILE="$CONFIG_DIR/watchdog.conf" STATE_FILE="$CONFIG_DIR/watch_state.json" # Sicherstellen, dass die Datei existiert und valides JSON ist if [ ! -f "$STATE_FILE" ] || [ ! -s "$STATE_FILE" ]; then echo "{}" > "$STATE_FILE"; fi while true; do if [ -f "$CONFIG_FILE" ]; then source "$CONFIG_FILE" else echo "❌ Fehler: $CONFIG_FILE nicht gefunden!" sleep 60; continue fi INTERVAL=${CHECK_INTERVAL:-3600} UPDATES_FOUND="" echo "--- Starte Check: $(date) ---" for entry in "${TARGETS[@]}"; do IFS="|" read -r TYPE REPO EXTRA <<< "$entry" KEY="${TYPE}_${REPO//[\/\.]/_}_${EXTRA}" # Aktuellen Wert aus Datei lesen OLD_VAL=$(jq -r ".[\"$KEY\"] // empty" "$STATE_FILE") NEW_VAL="" echo "Prüfe $TYPE: $REPO:$EXTRA..." if [ "$TYPE" == "DOCKER" ]; then if [[ "$REPO" != *"."* ]] || [[ "$REPO" == *"docker.io"* ]]; then CLEAN_REPO=${REPO#docker.io/} [[ "$CLEAN_REPO" != *"/"* ]] && CLEAN_REPO="library/$CLEAN_REPO" NEW_VAL=$(curl -s "https://hub.docker.com/v2/repositories/${CLEAN_REPO}/tags/${EXTRA}" | jq -r '.last_updated // empty') else REG_HOST=$(echo $REPO | cut -d/ -f1) IMG_NAME=$(echo $REPO | cut -d/ -f2-) TOKEN=$(curl -s "https://${REG_HOST}/v2/token?service=${REG_HOST}&scope=repository:${IMG_NAME}:pull" | jq -r '.token // empty') [[ -n "$TOKEN" && "$TOKEN" != "null" ]] && AUTH_H="Authorization: Bearer $TOKEN" || AUTH_H="X-No-Auth: true" RESPONSE=$(curl -s -i -L -H "$AUTH_H" -H "Accept: application/vnd.docker.distribution.manifest.v2+json" "https://${REG_HOST}/v2/${IMG_NAME}/manifests/${EXTRA}") NEW_VAL=$(echo "$RESPONSE" | grep -i "docker-content-digest" | awk '{print $2}' | tr -d '\r') [[ -z "$NEW_VAL" ]] && NEW_VAL=$(echo "$RESPONSE" | grep -i "etag" | awk '{print $2}' | tr -d '\r' | tr -d '"') fi elif [ "$TYPE" == "GITHUB" ]; then NEW_VAL=$(curl -s "https://api.github.com/repos/${REPO}/branches/${EXTRA}" | jq -r '.commit.sha // empty') fi if [ -z "$NEW_VAL" ] || [ "$NEW_VAL" == "null" ]; then echo " ⚠️ Fehler: Keine Daten empfangen." continue fi # Logik: Wenn kein alter Wert da ist ODER der neue Wert anders ist if [ -z "$OLD_VAL" ]; then echo " 🆕 Erstaufnahme in Datenbank." # Wir schreiben hier sofort, damit der Zustand gespeichert wird TEMP_JSON=$(jq ".[\"$KEY\"] = \"$NEW_VAL\"" "$STATE_FILE") echo "$TEMP_JSON" > "$STATE_FILE" elif [ "$OLD_VAL" != "$NEW_VAL" ]; then MSG="Update für $REPO ($EXTRA)! Alt: $OLD_VAL | Neu: $NEW_VAL" echo " 🔔 $MSG" UPDATES_FOUND="${UPDATES_FOUND}${MSG}\n" # Wert aktualisieren TEMP_JSON=$(jq ".[\"$KEY\"] = \"$NEW_VAL\"" "$STATE_FILE") echo "$TEMP_JSON" > "$STATE_FILE" else echo " ✅ Aktuell." fi done # E-Mail Versand if [ -n "$UPDATES_FOUND" ]; then # Dynamische msmtp config (wie vorher) cat < /etc/msmtprc defaults auth on tls on tls_trust_file /etc/ssl/certs/ca-certificates.crt account default host $SMTP_HOST port $SMTP_PORT from $EMAIL_FROM user $SMTP_USER password $SMTP_PASS EOF chmod 600 /etc/msmtprc echo -e "Subject: Watchdog Alert\n\n$UPDATES_FOUND" | msmtp "$EMAIL_TO" echo " 📧 E-Mail gesendet." fi echo "Nächster Scan in $INTERVAL s." sleep "$INTERVAL" done