ChatMatrix

From FlowerHouseWiki
Matrix-logo.png

Network


IP: 192.168.88.19
MAC: BE:B1:89:38:28:44
Domain: chat.flowerhouse.at

System


OS: Debian Bullseye
RAM: 4096MB
Cores: 2
Privileged: No

The ChatMatrix-LXC is reachable under 192.168.88.19 which is located in the ServerVLAN.

The subdomain is chat.flowerhouse.at which is handled by the ReverseProxy.

Basic Setup

Be up to date

apt update && apt upgrade

Change timezone

timedatectl set-timezone Europe/Berlin

Change locales to de_AT.UTF-8 for special characters

dpkg-reconfigure locales

Installation

Install required packages

apt install -y lsb-release wget apt-transport-https

Add repository

wget -O /usr/share/keyrings/matrix-org-archive-keyring.gpg https://packages.matrix.org/debian/matrix-org-archive-keyring.gpg
echo "deb [signed-by=/usr/share/keyrings/matrix-org-archive-keyring.gpg] https://packages.matrix.org/debian/ $(lsb_release -cs) main" | tee /etc/apt/sources.list.d/matrix-org.list
apt update

Install matrix-synapse

apt install matrix-synapse-py3

Check status

systemctl status matrix-synapse

Postgres database

Install required packages

apt install libpq5 postgresql

Open Postgres console

su - postgres

Create user for matrix-synapse

createuser --pwprompt synapse_user

Create database for matrix-synapse

createdb --encoding=UTF8 --locale=C --template=template0 --owner=synapse_user synapse

Exit Postgres console

exit

Edit matrix-synapse configuration file

nano /etc/matrix-synapse/homeserver.yaml

Edit the database entry

database:
  name: psycopg2
  args:
    user: synapse_user
    password: <pass>
    database: synapse
    host: localhost
    cp_min: 5
    cp_max: 10

Check if it works

systemctl restart matrix-synapse
systemctl status matrix-synapse

Setting up reverse proxy

NGINX Proxy Manager configuration without exposing admin API

Details:
  Scheme: http
  Forward Hostname / IP: 192.168.88.19
  Port: 80
Custom Locations:
  location: ~ ^(/_matrix|/_synapse/client)
  Scheme: http
  Forward Hostname / IP: 192.168.88.19
  Port: 8008
Advanced:
  listen 8448 ssl http2 default_server;
  listen [::]:8448 ssl http2 default_server;

  server_name matrix.flowerhouse.at;

If you want to expose admin api change location

location: ~ ^(/_matrix|/_synapse)

Check if federation configuration is correct: https://federationtester.matrix.org/

.well-known

NGINX Proxy Manager configuration without exposing admin API

Details:
  Scheme: http
  Forward Hostname / IP: 192.168.88.19
  Port: 80
Custom Locations:
  location: ~ ^(/_matrix|/_synapse/client)
  Scheme: http
  Forward Hostname / IP: 192.168.88.19
  Port: 8008
Advanced:
  listen 8448 ssl http2 default_server;
  listen [::]:8448 ssl http2 default_server;

  server_name matrix.flowerhouse.at;

Add User

register_new_matrix_user -c /etc/matrix-synapse/homeserver.yaml http://localhost:8008

Optional

Configure puppeting

Install required packages

apt install pip git pwgen

Activate synapse virtual enviroment

cd /opt/venvs/matrix-synapse
source ./bin/activate

Install packages

pip install git+https://github.com/devture/matrix-synapse-shared-secret-auth
deactivate

Generate shared secret

pwgen -s 128 1

Edit configuration and add configuration

nano /etc/matrix-synapse/homeserver.yaml

General information about puppeting

Administration

Administration-Tools:

Or make API-Request with curl

Install Bridges

ffmpeg is needed to support media files

apt install ffmpeg

WhatsApp

Installation

Create user for mautrix-whatsapp

adduser --system mautrix-whatsapp --home /opt/mautrix-whatsapp

Enter user folder

cd /opt/mautrix-whatsapp

Download binary from https://github.com/mautrix/whatsapp/releases

Rename binary

mv mautrix-whatsapp-amd64 mautrix-whatsapp

Create database

Open Postgres console

su - postgres

Create user for mautrix-whatsapp

createuser --pwprompt whatsapp_user

Create database for mautrix-whatsapp

createdb --encoding=UTF8 --locale=C --template=template0 --owner=whatsapp_user whatsapp

Exit Postgres console

exit

Configuration

Create and paste config file: mautrix-whatsapp-config.yaml

nano config.yaml

Modify permissions

chmod 755 mautrix-whatsapp

Generate the appservice registration file

./mautrix-whatsapp -g

Modify permissions

chmod 555 registration.yaml

Edit matrix-synapse configuration file

nano /etc/matrix-synapse/homeserver.yaml

To register WhatsApp add following lines

app_service_config_files:
- /opt/mautrix-whatsapp/registration.yaml

Restart matrix-synapse

systemctl restart matrix-synapse

Check if bridge works

./mautrix-whatsapp

systemd service

Create systemd service file and copy from service

nano /etc/systemd/system/mautrix-whatsapp.service

Apply changes

systemctl daemon-reload

Start and check status

systemctl start mautrix-whatsapp
systemctl status mautrix-whatsapp

Enable autostart

systemctl enable mautrix-whatsapp

Signal

Install Bridge

Create user for mautrix-signal

adduser --system mautrix-signal --home /opt/mautrix-signal
usermod -aG signald mautrix-signal

Enter user folder

cd /opt/mautrix-signal

Download binary from https://github.com/mautrix/signal/releases

Rename binary

mv mautrix-signal-amd64 mautrix-signal

Create database

Open Postgres console

su - postgres

Create user for mautrix-whatsapp

createuser --pwprompt signal_user

Create database for mautrix-whatsapp

createdb --encoding=UTF8 --locale=C --template=template0 --owner=signal_user signal

Exit Postgres console

exit

Configuration

Copy configuration file and edit...

cp example-config.yaml config.yaml

Modify permissions

chmod 755 mautrix-signal

Generate the appservice registration file

./mautrix-signal -g

Modify permissions

chmod 555 registration.yaml

Edit matrix-synapse configuration file

nano /etc/matrix-synapse/homeserver.yaml

To register mautrix-signal add following lines

app_service_config_files:
- /opt/mautrix-signal/registration.yaml

Restart matrix-synapse

systemctl restart matrix-synapse

Check if bridge works

./mautrix-signal

systemd service

Create systemd service file and copy from service

nano /etc/systemd/system/mautrix-signal.service

Apply changes

systemctl daemon-reload

Start and check status

systemctl start mautrix-signal
systemctl status mautrix-signal

Enable autostart

systemctl enable mautrix-signal

Telegram

Installation

Create user for bridge

adduser --system mautrix-telegram --home /opt/mautrix-telegram

Go to directory

cd /opt/mautrix-telegram

Create virtual environment

virtualenv -p /usr/bin/python3 .

Activate virtual environment

source ./bin/activate

Install signal bridge

pip install --upgrade mautrix-telegram[all]

Create database

Open Postgres console

su - postgres

Create user for mautrix-whatsapp

createuser --pwprompt telegram_user

Create database for mautrix-whatsapp

createdb --encoding=UTF8 --locale=C --template=template0 --owner=telegram_user telegram

Exit Postgres console

exit

Configuration

Copy configuration file and edit...

cp example-config.yaml config.yaml

Generate access file

python -m mautrix_telegram -g

Set permissions

chown -R mautrix-telegram:root ../mautrix-telegram/

Edit matrix-synapse configuration file

nano /etc/matrix-synapse/homeserver.yaml

To register WhatsApp add following lines

app_service_config_files:
- /opt/mautrix-telegram/registration.yaml

Restart matrix-synapse

systemctl restart matrix-synapse

Check if bridge works

python -m mautrix_telegram

systemd service

Create systemd service file and copy from service

nano /etc/systemd/system/mautrix-telegram.service

Apply changes

systemctl daemon-reload

Start and check status

systemctl start mautrix-telegram
systemctl status mautrix-telegram

Enable autostart

systemctl enable mautrix-telegram

IRC

Installation

Create user for bridge

adduser --system mautrix-irc --home /opt/mautrix-irc

Go to directory

cd /opt/mautrix-irc

Create virtual environment

virtualenv -p /usr/bin/python3 .

Activate virtual environment

source ./bin/activate

Install heisenbridge

pip install --upgrade heisenbridge[all]

Generate access file

python -m heisenbridge -c /opt/mautrix-irc/registration.yaml --generate

Set permissions

chown -R mautrix-irc:root ../mautrix-irc/

Edit matrix-synapse configuration file

nano /etc/matrix-synapse/homeserver.yaml

To register WhatsApp add following lines

app_service_config_files:
- /opt/mautrix-irc/registration.yaml

Restart matrix-synapse

systemctl restart matrix-synapse

Check if bridge works

python -m heisenbridge -c /opt/mautrix-irc/registration.yaml

If no .well-known file is configured, startup may take a few minutes

systemd service

Create systemd service file and copy from mautrix-irc.service

nano /etc/systemd/system/mautrix-irc.service

Apply changes

systemctl daemon-reload

Start and check status

systemctl start mautrix-irc
systemctl status mautrix-irc

Enable autostart

systemctl enable mautrix-irc

Configuration

This bridge is not configured with an config file but via the bot chat.

The first person chatting with the bot will automatically be set as the admin.

Set mediaurl

MEDIAURL https://matrix.flowerhouse.at

Install Element WebClient

Install webserver

apt install apache2

Go to directory

cd /var/www

Download binary from: https://github.com/vector-im/element-web/releases/

Untar and rename

tar -xvf element-v1.11.1.tar.gz
mv element-v1.11.1 element
rm element-v1.11.1.tar.gz

Configure host

nano /etc/apache2/sites-available/element.conf

Add to file

<VirtualHost *:80>
    DocumentRoot /var/www/element
    <Directory /var/www/element>
        AllowOverride All
        Order Allow,Deny
        Allow from All
    </Directory>

    ErrorLog /var/log/apache2/element_error.log
</VirtualHost>

Activate new site

ln -s /etc/apache2/sites-available/element.conf /etc/apache2/sites-enabled/element.conf

To access via the IP-Address of the server

rm /etc/apache2/sites-enabled/000-default.conf

Configure apache to show pretty URL pathes

a2enmod rewrite

Restart webserver

service apache2 restart

Create config file

cd element
cp config.sample.json config.json

Edit config file

nano config.json