Files
dotfiles/.local/bin/setup/ssh

56 lines
1.6 KiB
Plaintext
Raw Normal View History

2021-04-11 17:21:20 +01:00
#!/bin/bash
2021-04-16 12:26:33 +01:00
# Extract the login details from enpass
2021-04-16 00:29:01 +01:00
LABS=$(enpasscli -vault="$HOME/Documents/Enpass/Vaults/primary" -sort show "Scarif: Labs" 2>&1)
2021-04-11 17:21:20 +01:00
LABSUN=$(echo "$LABS" | grep -Po "(?<=login: )\w+")
LABSPW=$(echo "$LABS" | grep -Po "(?<=pass : ).+(?=\")")
2021-04-16 12:26:33 +01:00
SSHPATH="$HOME/.ssh/id_ed25519" # The path to the SSH key file
TITLE="$USER@$(cat /etc/hostname)" # The title for the SSH key
2021-04-11 17:21:20 +01:00
2021-04-16 12:26:33 +01:00
# Generate the SSH key if it does not exist
if [ ! -f $SSHPATH ] && ssh-keygen -t ed25519 -f "$SSHPATH" -N "" -q
2021-04-11 17:21:20 +01:00
2021-04-16 12:26:33 +01:00
# A method to generate the parameters for creating an SSH key on gitea
2021-04-11 17:21:20 +01:00
generate_post_data() {
cat <<EOF
{
"key": "$(cat "$SSHPATH.pub")",
"read_only": false,
2021-04-16 12:26:33 +01:00
"title": "$TITLE"
2021-04-11 17:21:20 +01:00
}
EOF
}
2021-04-16 12:26:33 +01:00
CREDENTIALS="$LABSUN:$LABSPW" # The credentials to pass to the API
KEYS_URL="https://$CREDENTIALS@labs.scarif.space/api/v1/users/keys"
2021-04-16 00:29:01 +01:00
2021-04-16 12:26:33 +01:00
# Get all the existing keys
KEYS=$(curl -X GET -s --url "$KEYS_URL")
2021-04-16 00:29:01 +01:00
2021-04-16 12:26:33 +01:00
KEY_EXISTS=$(echo $KEYS | jq --arg KEY "$(cat "$SSHPATH.pub")" 'contains({ key: $KEY })')
2021-04-11 17:21:20 +01:00
2021-04-16 12:26:33 +01:00
[[ $KEY_EXISTS == true ]] && return
# Extract the ids of the keys with the same title as this machine
IDS=$(echo $KEYS | jq --arg TITLE "$TITLE" 'map(select(.title == $TITLE))[].id')
# Loop through the keys and remove them from gitea to be replaced by the new one
if [ ! -z "$IDS" ]; do
for ID in IDS; do
curl -X DELETE \
-s \
-H "Accept: application/json" \
-H "Content-Type:application/json" \
--url "$KEYS_URL/$ID"
done
fi
# Save the new key in gitea
curl -X POST \
2021-04-11 17:21:20 +01:00
-s \
-H "Accept: application/json" \
-H "Content-Type:application/json" \
--data "$(generate_post_data)" \
2021-04-16 12:26:33 +01:00
--url "$KEYS_URL"