# Wordpress [![Build Status](https://build.coopcloud.tech/api/badges/coop-cloud/wordpress/status.svg)](https://build.coopcloud.tech/coop-cloud/wordpress) Coöp Cloud + [Wordpress](https://wordpress.org) = 🥳 * **Category**: Apps * **Status**: 4 * **Image**: [`wordpress`](https://hub.docker.com/_/wordpress), 4, upstream * **Healthcheck**: Yes * **Backups**: Yes * **Email**: 3 * **Tests**: 2 * **SSO**: 2 ## Quick start * `abra app new wordpress` * `abra app config ` * `abra app secret generate -a ` * `abra app deploy ` * `abra app cmd app core_install` ### Admin password By default, WordPress generates a random admin password during `core_install` and prints it to the command output. To set a known password managed as a Docker secret: 1. Uncomment `SECRET_ADMIN_PASSWORD_VERSION=v1` in your app config 2. `abra app secret generate -a ` (creates a random password) 3. `abra app deploy ` 4. `abra app cmd app core_install` The password is stored in `_admin_password_v1` — you can view it with `abra app secret show admin_password`. ### Auto-install on first deploy To skip the manual `abra app cmd ... core_install` step, enable auto-install: 1. Set `AUTO_INSTALL=1` in your app config 2. Uncomment `TITLE` and `ADMIN_EMAIL` (also `LOCALE` if needed) 3. (Optional) Uncomment `SECRET_ADMIN_PASSWORD_VERSION=v1` and run `abra app secret generate` 4. `abra app deploy ` On first deploy, the container will wait for the database, then automatically run `wp core install` and configure the site. It only runs once — subsequent deploys detect WordPress is already installed and skip. ### Plugin and theme auto-updates By default, plugin and theme auto-updates are enabled during install and deploy. To disable this: 1. Set `AUTO_UPDATES=0` in your app config 2. `abra app deploy ` This affects `abra app cmd app core_install`, `abra app cmd app update`, and the `AUTO_INSTALL` background process. ## Disable the web installer When migrating a site (importing a DB dump from an existing install), the web-based WordPress installer at `wp-admin/install.php` is a security risk — someone could accidentally run it and overwrite your data. To block it: 1. Set `DISABLE_WEB_INSTALLER=1` in your app config 2. `abra app deploy ` Apache inside the container will deny all requests to `wp-admin/install.php`. The CLI-based `abra app cmd app core_install` still works unaffected. ## Email There is a local or remote SMTP relay configuration available. * **local**: `COMPOSE_FILE=compose.yml:compose.mailrelay.yml` * **remote**: `COMPOSE_FILE=compose.yml:compose.mailrelay.yml:compose.smtp.yml` Below are the instructions for the local relay. 1. Deploy [`postfix-relay`][cc-postfix-relay] 2. `abra app config `, and uncomment the email lines; change `MAIL_FROM` to make sure the domain is the same as `postfix-relay`'s `$DOMAIN` or in its `$EXTRA_SENDER_DOMAINS` 3. `abra app deploy ` ## WP-CLI You can either run using `abra app cmd`: ```bash abra app cmd app wp -- core check-update --major ``` Or by entering the app shell: 1. `abra app run app bash` 2. `su -s /bin/bash www-data -c "wp core check-update --major"` ## Network (Multi-site) 1. Set up as above 2. `abra app config `, and uncomment `#MULTISITE=enable` 3. `abra app deploy ` 4. Log into the WordPress admin dashboard, go to **Tools → Network Setup** 5. Don't worry about the suggested file changes 6. `abra app config ` again and set `MULTISITE` to either `subdomain` or `subfolder` depending on your setup. 7. `abra app deploy ` ## Installing a custom theme `abra app cp ~/path/to/local/theme wordpress:/var/www/html/wp-content/themes/` ## Authentik Integration Configure the following envs via `abra app config `: ```bash COMPOSE_FILE="$COMPOSE_FILE:compose.authentik.yml" AUTHENTIK_DOMAIN=authentik.example.com AUTHENTIK_SECRET_NAME=authentik_example_com_wordpress_secret_v1 # the same as in authentik AUTHENTIK_ID_NAME=authentik_example_com_wordpress_id_v1 # the same as in authentik ``` `abra app cmd app set_authentik` ## Tests Run the full test suite for this repository: ```sh bash tests/run.sh ``` ### Prerequisites The test suite uses several tools. Install them with your equivalent of: ```sh brew install shellcheck gomplate ``` Some tests skip gracefully if their dependencies are missing. ## Migrate from a non-Co-op Cloud WordPress install Make a `.tar.gz` backup of the site's `wp-content` dir and a `.sql.gz` backup of the database. 1. `abra app wp.example.com restore app wp-content.tar.gz` 2. `abra app wp.example.com restore db wordpress.sql.gz` Lastly, if there's a domain name change, run a search and replace: `abra app wp.example.com wp "search-replace https://old.example.com https://wp.example.com"` [abra]: https://git.autonomic.zone/autonomic-cooperative/abra [cc-traefik]: https://git.autonomic.zone/coop-cloud/traefik [cc-postfix-relay]: https://git.autonomic.zone/coop-cloud/postfix-relay