selkies-gstreamer-entrypoint.sh 9.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188
  1. #!/bin/bash
  2. # This Source Code Form is subject to the terms of the Mozilla Public
  3. # License, v. 2.0. If a copy of the MPL was not distributed with this
  4. # file, You can obtain one at https://mozilla.org/MPL/2.0/.
  5. set -e
  6. # Wait for XDG_RUNTIME_DIR
  7. until [ -d "${XDG_RUNTIME_DIR}" ]; do sleep 0.5; done
  8. # Configure joystick interposer
  9. export SELKIES_INTERPOSER='/usr/$LIB/selkies_joystick_interposer.so'
  10. export LD_PRELOAD="${SELKIES_INTERPOSER}${LD_PRELOAD:+:${LD_PRELOAD}}"
  11. export SDL_JOYSTICK_DEVICE=/dev/input/js0
  12. # Set default display
  13. export DISPLAY="${DISPLAY:-:20}"
  14. # PipeWire-Pulse server socket path
  15. export PIPEWIRE_LATENCY="128/48000"
  16. export XDG_RUNTIME_DIR="${XDG_RUNTIME_DIR:-/tmp}"
  17. export PIPEWIRE_RUNTIME_DIR="${PIPEWIRE_RUNTIME_DIR:-${XDG_RUNTIME_DIR:-/tmp}}"
  18. export PULSE_RUNTIME_PATH="${PULSE_RUNTIME_PATH:-${XDG_RUNTIME_DIR:-/tmp}/pulse}"
  19. export PULSE_SERVER="${PULSE_SERVER:-unix:${PULSE_RUNTIME_PATH:-${XDG_RUNTIME_DIR:-/tmp}/pulse}/native}"
  20. # Export environment variables required for Selkies
  21. export GST_DEBUG="${GST_DEBUG:-*:2}"
  22. export GSTREAMER_PATH=/opt/gstreamer
  23. # Source environment for GStreamer
  24. . /opt/gstreamer/gst-env
  25. export SELKIES_ENCODER="${SELKIES_ENCODER:-x264enc}"
  26. export SELKIES_ENABLE_RESIZE="${SELKIES_ENABLE_RESIZE:-false}"
  27. if [ -z "${SELKIES_TURN_REST_URI}" ] && { { [ -z "${SELKIES_TURN_USERNAME}" ] || [ -z "${SELKIES_TURN_PASSWORD}" ]; } && [ -z "${SELKIES_TURN_SHARED_SECRET}" ] || [ -z "${SELKIES_TURN_HOST}" ] || [ -z "${SELKIES_TURN_PORT}" ]; }; then
  28. export TURN_RANDOM_PASSWORD="$(tr -dc 'A-Za-z0-9' < /dev/urandom 2>/dev/null | head -c 24)"
  29. export SELKIES_TURN_HOST="${SELKIES_TURN_HOST:-$(dig -4 TXT +short @ns1.google.com o-o.myaddr.l.google.com 2>/dev/null | { read output; if [ -z "$output" ] || echo "$output" | grep -q '^;;'; then exit 1; else echo "$(echo $output | sed 's,\",,g')"; fi } || dig -6 TXT +short @ns1.google.com o-o.myaddr.l.google.com 2>/dev/null | { read output; if [ -z "$output" ] || echo "$output" | grep -q '^;;'; then exit 1; else echo "[$(echo $output | sed 's,\",,g')]"; fi } || hostname -I 2>/dev/null | awk '{print $1; exit}' || echo '127.0.0.1')}"
  30. export TURN_EXTERNAL_IP="${TURN_EXTERNAL_IP:-$(getent ahostsv4 $(echo ${SELKIES_TURN_HOST} | tr -d '[]') 2>/dev/null | awk '{print $1; exit}' || getent ahostsv6 $(echo ${SELKIES_TURN_HOST} | tr -d '[]') 2>/dev/null | awk '{print "[" $1 "]"; exit}')}"
  31. export SELKIES_TURN_PORT="${SELKIES_TURN_PORT:-3478}"
  32. export SELKIES_TURN_USERNAME="selkies"
  33. export SELKIES_TURN_PASSWORD="${TURN_RANDOM_PASSWORD}"
  34. export SELKIES_TURN_PROTOCOL="${SELKIES_TURN_PROTOCOL:-tcp}"
  35. export SELKIES_STUN_HOST="${SELKIES_STUN_HOST:-stun.l.google.com}"
  36. export SELKIES_STUN_PORT="${SELKIES_STUN_PORT:-19302}"
  37. /etc/start-turnserver.sh &
  38. fi
  39. # Extract NVRTC dependency, https://developer.download.nvidia.com/compute/cuda/redist/cuda_nvrtc/LICENSE.txt
  40. if command -v nvidia-smi &> /dev/null && nvidia-smi >/dev/null 2>&1; then
  41. NVRTC_DEST_PREFIX="${NVRTC_DEST_PREFIX-/opt/gstreamer}"
  42. CUDA_DRIVER_SYSTEM="$(nvidia-smi --version | grep 'CUDA Version' | cut -d: -f2 | tr -d ' ')"
  43. NVRTC_ARCH="${NVRTC_ARCH-$(dpkg --print-architecture | sed -e 's/arm64/sbsa/' -e 's/ppc64el/ppc64le/' -e 's/i.*86/x86/' -e 's/amd64/x86_64/' -e 's/unknown/x86_64/')}"
  44. # TEMPORARY: Cap CUDA version to 12.9 if the detected version is 13.0 or higher for NVRTC compatibility, https://gitlab.freedesktop.org/gstreamer/gstreamer/-/issues/4655
  45. if [ -n "${CUDA_DRIVER_SYSTEM}" ]; then
  46. CUDA_MAJOR_VERSION=$(echo "${CUDA_DRIVER_SYSTEM}" | cut -d. -f1)
  47. if [ "${CUDA_MAJOR_VERSION}" -ge 13 ]; then
  48. CUDA_DRIVER_SYSTEM="12.9"
  49. fi
  50. fi
  51. NVRTC_URL="https://developer.download.nvidia.com/compute/cuda/redist/cuda_nvrtc/linux-${NVRTC_ARCH}/"
  52. NVRTC_ARCHIVE="$(curl -fsSL "${NVRTC_URL}" | grep -oP "(?<=href=')cuda_nvrtc-linux-${NVRTC_ARCH}-${CUDA_DRIVER_SYSTEM}\.[0-9]+-archive\.tar\.xz" | sort -V | tail -n 1)"
  53. if [ -z "${NVRTC_ARCHIVE}" ]; then
  54. FALLBACK_VERSION="${CUDA_DRIVER_SYSTEM}.0"
  55. NVRTC_ARCHIVE=$((curl -fsSL "${NVRTC_URL}" | grep -oP "(?<=href=')cuda_nvrtc-linux-${NVRTC_ARCH}-.*?\.tar\.xz" ; \
  56. echo "cuda_nvrtc-linux-${NVRTC_ARCH}-${FALLBACK_VERSION}-archive.tar.xz") | \
  57. sort -V | grep -B 1 --fixed-strings "${FALLBACK_VERSION}" | head -n 1)
  58. fi
  59. if [ -z "${NVRTC_ARCHIVE}" ]; then
  60. echo "ERROR: Could not find a compatible NVRTC archive." >&2
  61. fi
  62. echo "Selected NVRTC archive: ${NVRTC_ARCHIVE}"
  63. NVRTC_LIB_ARCH="$(dpkg --print-architecture | sed -e 's/arm64/aarch64-linux-gnu/' -e 's/armhf/arm-linux-gnueabihf/' -e 's/riscv64/riscv64-linux-gnu/' -e 's/ppc64el/powerpc64le-linux-gnu/' -e 's/s390x/s390x-linux-gnu/' -e 's/i.*86/i386-linux-gnu/' -e 's/amd64/x86_64-linux-gnu/' -e 's/unknown/x86_64-linux-gnu/')"
  64. cd /tmp && curl -fsSL "${NVRTC_URL}${NVRTC_ARCHIVE}" | tar -xJf - -C /tmp && mv -f cuda_nvrtc* cuda_nvrtc && cd cuda_nvrtc/lib && chmod -f 755 libnvrtc* && rm -f "${NVRTC_DEST_PREFIX}/lib/${NVRTC_LIB_ARCH}/"libnvrtc* && mv -f libnvrtc* "${NVRTC_DEST_PREFIX}/lib/${NVRTC_LIB_ARCH}/" && cd /tmp && rm -rf /tmp/cuda_nvrtc && cd "${HOME}"
  65. fi
  66. # Wait for X server to start
  67. echo 'Waiting for X Socket' && until [ -S "/tmp/.X11-unix/X${DISPLAY#*:}" ]; do sleep 0.5; done && echo 'X Server is ready'
  68. # Configure NGINX
  69. if [ "$(echo ${SELKIES_ENABLE_BASIC_AUTH} | tr '[:upper:]' '[:lower:]')" != "false" ]; then htpasswd -bcm "${XDG_RUNTIME_DIR}/.htpasswd" "${SELKIES_BASIC_AUTH_USER:-${USER}}" "${SELKIES_BASIC_AUTH_PASSWORD:-${PASSWD}}"; fi
  70. echo "# Selkies NGINX Configuration
  71. server {
  72. access_log /dev/stdout;
  73. error_log /dev/stderr;
  74. listen ${NGINX_PORT:-8080} $(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "ssl"; fi);
  75. listen [::]:${NGINX_PORT:-8080} $(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "ssl"; fi);
  76. ssl_certificate ${SELKIES_HTTPS_CERT-/etc/ssl/certs/ssl-cert-snakeoil.pem};
  77. ssl_certificate_key ${SELKIES_HTTPS_KEY-/etc/ssl/private/ssl-cert-snakeoil.key};
  78. $(if [ \"$(echo ${SELKIES_ENABLE_BASIC_AUTH} | tr '[:upper:]' '[:lower:]')\" != \"false\" ]; then echo "auth_basic \"Selkies\";"; echo -n " auth_basic_user_file ${XDG_RUNTIME_DIR}/.htpasswd;"; fi)
  79. location / {
  80. root /opt/gst-web/;
  81. index index.html index.htm;
  82. }
  83. location /health {
  84. proxy_http_version 1.1;
  85. proxy_read_timeout 3600s;
  86. proxy_send_timeout 3600s;
  87. proxy_connect_timeout 3600s;
  88. proxy_buffering off;
  89. client_max_body_size 10M;
  90. proxy_pass http$(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "s"; fi)://localhost:${SELKIES_PORT:-8081};
  91. }
  92. location /turn {
  93. proxy_http_version 1.1;
  94. proxy_read_timeout 3600s;
  95. proxy_send_timeout 3600s;
  96. proxy_connect_timeout 3600s;
  97. proxy_buffering off;
  98. client_max_body_size 10M;
  99. proxy_pass http$(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "s"; fi)://localhost:${SELKIES_PORT:-8081};
  100. }
  101. location /ws {
  102. proxy_set_header Upgrade \$http_upgrade;
  103. proxy_set_header Connection \"upgrade\";
  104. proxy_set_header Host \$host;
  105. proxy_set_header X-Real-IP \$remote_addr;
  106. proxy_set_header X-Forwarded-For \$proxy_add_x_forwarded_for;
  107. proxy_set_header X-Forwarded-Proto \$scheme;
  108. proxy_http_version 1.1;
  109. proxy_read_timeout 3600s;
  110. proxy_send_timeout 3600s;
  111. proxy_connect_timeout 3600s;
  112. proxy_buffering off;
  113. client_max_body_size 10M;
  114. proxy_pass http$(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "s"; fi)://localhost:${SELKIES_PORT:-8081};
  115. }
  116. location /webrtc/signalling {
  117. proxy_set_header Upgrade \$http_upgrade;
  118. proxy_set_header Connection \"upgrade\";
  119. proxy_set_header Host \$host;
  120. proxy_set_header X-Real-IP \$remote_addr;
  121. proxy_set_header X-Forwarded-For \$proxy_add_x_forwarded_for;
  122. proxy_set_header X-Forwarded-Proto \$scheme;
  123. proxy_http_version 1.1;
  124. proxy_read_timeout 3600s;
  125. proxy_send_timeout 3600s;
  126. proxy_connect_timeout 3600s;
  127. proxy_buffering off;
  128. client_max_body_size 10M;
  129. proxy_pass http$(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "s"; fi)://localhost:${SELKIES_PORT:-8081};
  130. }
  131. location /metrics {
  132. proxy_http_version 1.1;
  133. proxy_read_timeout 3600s;
  134. proxy_send_timeout 3600s;
  135. proxy_connect_timeout 3600s;
  136. proxy_buffering off;
  137. client_max_body_size 10M;
  138. proxy_pass http$(if [ \"$(echo ${SELKIES_ENABLE_HTTPS} | tr '[:upper:]' '[:lower:]')\" = \"true\" ]; then echo -n "s"; fi)://localhost:${SELKIES_METRICS_HTTP_PORT:-9081};
  139. }
  140. error_page 500 502 503 504 /50x.html;
  141. location = /50x.html {
  142. root /opt/gst-web/;
  143. }
  144. }" | tee /etc/nginx/sites-available/default > /dev/null
  145. # Clear the cache registry
  146. rm -rf "${HOME}/.cache/gstreamer-1.0"
  147. # Start the Selkies WebRTC HTML5 remote desktop application
  148. selkies-gstreamer \
  149. --addr="localhost" \
  150. --port="${SELKIES_PORT:-8081}" \
  151. --enable_basic_auth="false" \
  152. --enable_metrics_http="true" \
  153. --metrics_http_port="${SELKIES_METRICS_HTTP_PORT:-9081}" \
  154. $@