This file shows how to install and configure mollysocket on your system using a systemd service.
This should be relevant if you use docker
First of all, you need to install mollysocket on your system.
The service will run with a dedicated account, so create it and switch to that user:
sudo useradd mollysocket -m -d /opt/mollysocket
sudo -su mollysocket
cd
You have 2 solutions to install the binary.
-
Use an already compiled binary: https://github.com/mollyim/mollysocket/releases/. To follow the systemd service, and for ease of use, link the executable (replace with the right version of the binary):
ln -s /opt/mollysocket/mollysocket-amd64-1.2.0 /opt/mollysocket/ms
-
Use cargo. This method allows you to use cargo to maintain mollysocket up to date. First of all, you need to install cargo (you need at least version 1.59). Then, install mollysocket using cargo:
cargo install mollysocket
. You probably need to install some system packages, like libssl-dev libsqlite3-dev. To follow the systemd service, and for ease of use, link the executable:ln -s /opt/mollysocket/.cargo/bin/mollysocket /opt/mollysocket/ms
.
Download a sample of the config file: wget -O /opt/mollysocket/prod.toml https://github.com/mollyim/mollysocket/raw/main/config-sample.toml
.
Switch back to your usual account: exit
.
If you host your own Push server, then explicitly add it to the allowed endpoints. In /opt/mollysocket/prod.toml
, edit allowed_endpoints = ['*', 'https://push.mydomain.tld']
(remove '*'
if you will use your push server only).
Download the systemd unit file and place it in the right direction /etc/systemd/system/
.
You should be able to see that service now systemctl status mollysocket
.
You can enable it systemctl enable --now mollysocket
, the service is now active (systemctl status mollysocket
), and will be started on system boot.
You will need to proxy everything from /
to http://127.0.0.1:8020/
(8020 is the value define in the systemd unit file for $ROCKET_PORT
, it can be changed if needed).
You will have to switch on air gapped mode on Molly (Android). It will have a command to copy to run on your server. You must run this command as user mollysocket
with MOLLY_CONF=/opt/mollysocket/prod.toml
.
For instance sudo -su mollysocket MOLLY_CONF=/opt/mollysocket/prod.toml /opt/mollysocket/ms connection add baab32b9-d60b-4c39-9e14-15d8f6e1527e 2 thisisrandom 'https://push.mydomain.tld/upthisisrandom?up'
.
Once you have registered Molly (with option A or B), and you will be the only user using this service, you can restrict allowed_uuids = ['baab32b9-d60b-4c39-9e14-15d8f6e1527e']
and allowed_endpoints = ['https://push.mydomain.tld/upthisisrandom?up']
in the config file.