2021-08-20 12:27:07 +02:00
|
|
|
#!/usr/bin/env bash
|
|
|
|
|
|
|
|
# command info
|
|
|
|
if [ $# -eq 0 ] || [ "$1" = "-h" ] || [ "$1" = "--help" ] || [ "$1" = "-help" ]; then
|
|
|
|
echo "RaspiBlitz SSH tools"
|
2021-12-19 15:43:25 +01:00
|
|
|
echo
|
|
|
|
echo "## SSHD SERVICE #######"
|
2021-08-20 12:44:16 +02:00
|
|
|
echo "blitz.ssh.sh renew --> renew the sshd host certs"
|
|
|
|
echo "blitz.ssh.sh clear --> make sure old sshd host certs are cleared"
|
2021-08-20 12:27:07 +02:00
|
|
|
echo "blitz.ssh.sh checkrepair --> check sshd & repair just in case"
|
2021-08-20 12:44:16 +02:00
|
|
|
echo "blitz.ssh.sh backup --> copy ssh keys to backup (if exist)"
|
2021-12-14 23:34:35 +01:00
|
|
|
echo "blitz.ssh.sh sessions --> count open sessions"
|
2021-12-19 15:43:25 +01:00
|
|
|
echo "blitz.ssh.sh restore [?backup-root]"
|
|
|
|
echo " --> restore ssh keys from backup (if exist)"
|
|
|
|
echo
|
|
|
|
echo "## SSH ROOT USER #######"
|
|
|
|
echo "blitz.ssh.sh root-get --> return root user pubkey"
|
|
|
|
echo "blitz.ssh.sh root-transfer [REMOTEUSER]@[REMOTESERVER]"
|
|
|
|
echo " --> transfer ssh-pub to a authorized key of remote server"
|
|
|
|
echo
|
2021-08-20 12:27:07 +02:00
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
|
|
|
# check if started with sudo
|
|
|
|
if [ "$EUID" -ne 0 ]; then
|
|
|
|
echo "error='missing sudo'"
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
|
|
|
###################
|
|
|
|
# RENEW
|
|
|
|
###################
|
|
|
|
if [ "$1" = "renew" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
v1.9.0rc3 Merge (#3742)
* cln: use default normal feerate to withdraw all
* Bugfix: bad subsititution (#3668)
Fix for error:
/home/admin/config.scripts/bonus.go.sh: line 31: ${goOSversion{}: bad substitution
* whiptail one line
* fix syntax
* lnproxy: fix api access through nginx (#3671)
* lnproxy: fix api access through nginx
* fix tor config and fit the menu
* add to the menu and provision
* merge #3682
* cln update to v23.02, backup-plugin update, add poetry (#3684)
* cln backup-plugin update, add poetry
* fix mkdir error, remove commented code, fmt #3677
* poetry and path fixes
* add terminal feedback, format #3676
* detect the full name of the plugin
* install pyln-client tqdm with pip
* git-verify: add --keyid-format LONG
to recognise if the signing key is not the main key
* cln update to v23.02
* cln-grpc: add protobuf-compiler dep
* rtl update to v0.13.6 and formatting
* C-lightningREST update to v0.10.1
* CLN FAQ update (#3666)
* improve the detection of existing cln aliases
* add the emergencyrecover instructions to CLN FAQ
* update help entries
* Update Tallycoin to version 1.8.0 (#3693)
* add tallycoin update info to CHANGES
* Fix typo in README.md (#3699)
excepted -> accepted
* #3694 add LCD info
* #3664 att timeout 30s to ln monitor calls (#3665)
* fix setting LND_REST_ENDPOINT (#3689)
* btcpay update v1.8.2, postgres database fix (#3697)
* btcpay update v1.8.0, postgres database fix
* btcpayserver update to v1.8.2
* update lnbits to 0.10.2 and use poetry instead of venv (#3703)
* fix apt update Key error for influx repo (#3711)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* fix missing timeout value for nc cmnd (#3712)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* #3706 Update CLN v23.02.2 (#3716)
* used patched/rolledback 23.02.2 release
* check rusty sig
* fix typo
* fix default lightning setting
* #3683 Update LIT to 0.8.6 (#3717)
* update LIT to 0.8.6
* activate lnd rpcmiddleware
* CHANGES.md
* #3667 change all up/download from sftp tp scp (#3718)
* #3722 add no hostkeys available detection (#3723)
* #1186 FinTS/HBCI interface (#3704)
* #1186 FinTS install script first draft
* only start app when blitz is ready
* improve menu
* improve dit lnbits config
* preserve edit
* improve edit
* improve edit
* fix insertion
* dont use fingerprint
* now use main repo
* add port
* show local ip
* fix typo
* show port SSL
* Update bonus.lndg.sh (#3725)
* Update bonus.lndg.sh
Changes version to v1.6.0.
Fixes update menu bug.
Cleans up code a bit (removes tabs and changes to spaces to match raspiblitz formats).
* Update bonus.lndg.sh
Cleaned up code, added requirements.txt install to updates (needed for this update, may be needed in future).
* #3725 update lndg version in CHANGES
* #3692 update lnd to v0.16.0-beta (#3732)
* update SD CARD base image info
* Clenaup CHANGES info
* RTL install fix (#3739)
* c-lightning-REST update to 0.10.2, fmt
* rtl: npm insatll with --legacy-peer-deps
* purge c-lightning-REST as well with RTL
* jam update to v0.1.5 (#3736)
* 3733 CLN GRPC > JRPC (#3741)
* change exit code
* change to cln_jrpc
* deactivate the cln_grpc settings
* set v1.9.0rc3 version
---------
Co-authored-by: openoms <oms@tuta.io>
Co-authored-by: Metallicc <72348+metallicc@users.noreply.github.com>
Co-authored-by: openoms <43343391+openoms@users.noreply.github.com>
Co-authored-by: DJ Booth <djbooth007@gmail.com>
Co-authored-by: Yuck Fou <115867254+YuckFouBTC@users.noreply.github.com>
Co-authored-by: dni ⚡ <office@dnilabs.com>
Co-authored-by: PatrickScheich <50054697+PatrickScheich@users.noreply.github.com>
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
Co-authored-by: allyourbankarebelongtous <100060902+allyourbankarebelongtous@users.noreply.github.com>
2023-04-08 23:10:01 +02:00
|
|
|
|
|
|
|
# stop sshd
|
|
|
|
systemctl stop sshd
|
|
|
|
|
|
|
|
# remove old keys
|
|
|
|
rm /etc/ssh/ssh_host_*
|
|
|
|
|
|
|
|
# generate new keys
|
|
|
|
ssh-keygen -A
|
|
|
|
dpkg-reconfigure openssh-server
|
|
|
|
|
|
|
|
# clear journalctl logs
|
|
|
|
journalctl --rotate
|
|
|
|
journalctl --vacuum-time=1s
|
|
|
|
|
|
|
|
# restart sshd
|
|
|
|
systemctl start sshd
|
2021-08-20 12:27:07 +02:00
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
|
|
|
###################
|
|
|
|
# CLEAR
|
|
|
|
###################
|
|
|
|
if [ "$1" = "clear" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
2021-08-20 12:27:07 +02:00
|
|
|
sudo rm /etc/ssh/ssh_host_*
|
|
|
|
echo "# OK: SSHD keyfiles & possible backups deleted"
|
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
2021-12-14 23:34:35 +01:00
|
|
|
###################
|
|
|
|
# SESSIONS
|
|
|
|
###################
|
|
|
|
if [ "$1" = "sessions" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
2021-12-14 23:34:35 +01:00
|
|
|
sessionsCount=$(ss | grep -c ":ssh")
|
|
|
|
echo "ssh_session_count=${sessionsCount}"
|
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
###################
|
|
|
|
# CHECK & REPAIR
|
|
|
|
###################
|
|
|
|
if [ "$1" = "checkrepair" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
2021-08-21 23:12:06 +02:00
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
# check if sshd host keys are missing / need generation
|
2021-08-21 17:26:44 +02:00
|
|
|
countKeyFiles=$(ls -la /etc/ssh/ssh_host_* 2>/dev/null | grep -c "/etc/ssh/ssh_host")
|
2021-08-20 12:27:07 +02:00
|
|
|
echo "# countKeyFiles(${countKeyFiles})"
|
|
|
|
if [ ${countKeyFiles} -lt 8 ]; then
|
|
|
|
echo "# DETECTED: MISSING SSHD KEYFILES --> Generating new ones"
|
v1.9.0rc3 Merge (#3742)
* cln: use default normal feerate to withdraw all
* Bugfix: bad subsititution (#3668)
Fix for error:
/home/admin/config.scripts/bonus.go.sh: line 31: ${goOSversion{}: bad substitution
* whiptail one line
* fix syntax
* lnproxy: fix api access through nginx (#3671)
* lnproxy: fix api access through nginx
* fix tor config and fit the menu
* add to the menu and provision
* merge #3682
* cln update to v23.02, backup-plugin update, add poetry (#3684)
* cln backup-plugin update, add poetry
* fix mkdir error, remove commented code, fmt #3677
* poetry and path fixes
* add terminal feedback, format #3676
* detect the full name of the plugin
* install pyln-client tqdm with pip
* git-verify: add --keyid-format LONG
to recognise if the signing key is not the main key
* cln update to v23.02
* cln-grpc: add protobuf-compiler dep
* rtl update to v0.13.6 and formatting
* C-lightningREST update to v0.10.1
* CLN FAQ update (#3666)
* improve the detection of existing cln aliases
* add the emergencyrecover instructions to CLN FAQ
* update help entries
* Update Tallycoin to version 1.8.0 (#3693)
* add tallycoin update info to CHANGES
* Fix typo in README.md (#3699)
excepted -> accepted
* #3694 add LCD info
* #3664 att timeout 30s to ln monitor calls (#3665)
* fix setting LND_REST_ENDPOINT (#3689)
* btcpay update v1.8.2, postgres database fix (#3697)
* btcpay update v1.8.0, postgres database fix
* btcpayserver update to v1.8.2
* update lnbits to 0.10.2 and use poetry instead of venv (#3703)
* fix apt update Key error for influx repo (#3711)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* fix missing timeout value for nc cmnd (#3712)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* #3706 Update CLN v23.02.2 (#3716)
* used patched/rolledback 23.02.2 release
* check rusty sig
* fix typo
* fix default lightning setting
* #3683 Update LIT to 0.8.6 (#3717)
* update LIT to 0.8.6
* activate lnd rpcmiddleware
* CHANGES.md
* #3667 change all up/download from sftp tp scp (#3718)
* #3722 add no hostkeys available detection (#3723)
* #1186 FinTS/HBCI interface (#3704)
* #1186 FinTS install script first draft
* only start app when blitz is ready
* improve menu
* improve dit lnbits config
* preserve edit
* improve edit
* improve edit
* fix insertion
* dont use fingerprint
* now use main repo
* add port
* show local ip
* fix typo
* show port SSL
* Update bonus.lndg.sh (#3725)
* Update bonus.lndg.sh
Changes version to v1.6.0.
Fixes update menu bug.
Cleans up code a bit (removes tabs and changes to spaces to match raspiblitz formats).
* Update bonus.lndg.sh
Cleaned up code, added requirements.txt install to updates (needed for this update, may be needed in future).
* #3725 update lndg version in CHANGES
* #3692 update lnd to v0.16.0-beta (#3732)
* update SD CARD base image info
* Clenaup CHANGES info
* RTL install fix (#3739)
* c-lightning-REST update to 0.10.2, fmt
* rtl: npm insatll with --legacy-peer-deps
* purge c-lightning-REST as well with RTL
* jam update to v0.1.5 (#3736)
* 3733 CLN GRPC > JRPC (#3741)
* change exit code
* change to cln_jrpc
* deactivate the cln_grpc settings
* set v1.9.0rc3 version
---------
Co-authored-by: openoms <oms@tuta.io>
Co-authored-by: Metallicc <72348+metallicc@users.noreply.github.com>
Co-authored-by: openoms <43343391+openoms@users.noreply.github.com>
Co-authored-by: DJ Booth <djbooth007@gmail.com>
Co-authored-by: Yuck Fou <115867254+YuckFouBTC@users.noreply.github.com>
Co-authored-by: dni ⚡ <office@dnilabs.com>
Co-authored-by: PatrickScheich <50054697+PatrickScheich@users.noreply.github.com>
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
Co-authored-by: allyourbankarebelongtous <100060902+allyourbankarebelongtous@users.noreply.github.com>
2023-04-08 23:10:01 +02:00
|
|
|
/home/admin/config.scripts/blitz.ssh.sh renew
|
|
|
|
fi
|
2021-08-20 23:23:37 +02:00
|
|
|
|
v1.9.0rc3 Merge (#3742)
* cln: use default normal feerate to withdraw all
* Bugfix: bad subsititution (#3668)
Fix for error:
/home/admin/config.scripts/bonus.go.sh: line 31: ${goOSversion{}: bad substitution
* whiptail one line
* fix syntax
* lnproxy: fix api access through nginx (#3671)
* lnproxy: fix api access through nginx
* fix tor config and fit the menu
* add to the menu and provision
* merge #3682
* cln update to v23.02, backup-plugin update, add poetry (#3684)
* cln backup-plugin update, add poetry
* fix mkdir error, remove commented code, fmt #3677
* poetry and path fixes
* add terminal feedback, format #3676
* detect the full name of the plugin
* install pyln-client tqdm with pip
* git-verify: add --keyid-format LONG
to recognise if the signing key is not the main key
* cln update to v23.02
* cln-grpc: add protobuf-compiler dep
* rtl update to v0.13.6 and formatting
* C-lightningREST update to v0.10.1
* CLN FAQ update (#3666)
* improve the detection of existing cln aliases
* add the emergencyrecover instructions to CLN FAQ
* update help entries
* Update Tallycoin to version 1.8.0 (#3693)
* add tallycoin update info to CHANGES
* Fix typo in README.md (#3699)
excepted -> accepted
* #3694 add LCD info
* #3664 att timeout 30s to ln monitor calls (#3665)
* fix setting LND_REST_ENDPOINT (#3689)
* btcpay update v1.8.2, postgres database fix (#3697)
* btcpay update v1.8.0, postgres database fix
* btcpayserver update to v1.8.2
* update lnbits to 0.10.2 and use poetry instead of venv (#3703)
* fix apt update Key error for influx repo (#3711)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* fix missing timeout value for nc cmnd (#3712)
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
* #3706 Update CLN v23.02.2 (#3716)
* used patched/rolledback 23.02.2 release
* check rusty sig
* fix typo
* fix default lightning setting
* #3683 Update LIT to 0.8.6 (#3717)
* update LIT to 0.8.6
* activate lnd rpcmiddleware
* CHANGES.md
* #3667 change all up/download from sftp tp scp (#3718)
* #3722 add no hostkeys available detection (#3723)
* #1186 FinTS/HBCI interface (#3704)
* #1186 FinTS install script first draft
* only start app when blitz is ready
* improve menu
* improve dit lnbits config
* preserve edit
* improve edit
* improve edit
* fix insertion
* dont use fingerprint
* now use main repo
* add port
* show local ip
* fix typo
* show port SSL
* Update bonus.lndg.sh (#3725)
* Update bonus.lndg.sh
Changes version to v1.6.0.
Fixes update menu bug.
Cleans up code a bit (removes tabs and changes to spaces to match raspiblitz formats).
* Update bonus.lndg.sh
Cleaned up code, added requirements.txt install to updates (needed for this update, may be needed in future).
* #3725 update lndg version in CHANGES
* #3692 update lnd to v0.16.0-beta (#3732)
* update SD CARD base image info
* Clenaup CHANGES info
* RTL install fix (#3739)
* c-lightning-REST update to 0.10.2, fmt
* rtl: npm insatll with --legacy-peer-deps
* purge c-lightning-REST as well with RTL
* jam update to v0.1.5 (#3736)
* 3733 CLN GRPC > JRPC (#3741)
* change exit code
* change to cln_jrpc
* deactivate the cln_grpc settings
* set v1.9.0rc3 version
---------
Co-authored-by: openoms <oms@tuta.io>
Co-authored-by: Metallicc <72348+metallicc@users.noreply.github.com>
Co-authored-by: openoms <43343391+openoms@users.noreply.github.com>
Co-authored-by: DJ Booth <djbooth007@gmail.com>
Co-authored-by: Yuck Fou <115867254+YuckFouBTC@users.noreply.github.com>
Co-authored-by: dni ⚡ <office@dnilabs.com>
Co-authored-by: PatrickScheich <50054697+PatrickScheich@users.noreply.github.com>
Co-authored-by: Patrick Scheich <patrick.scheich@syscovery.de>
Co-authored-by: allyourbankarebelongtous <100060902+allyourbankarebelongtous@users.noreply.github.com>
2023-04-08 23:10:01 +02:00
|
|
|
# check logs for "no hostkeys available"
|
|
|
|
noHostKeys=$(journalctl -u sshd | grep -c "no hostkeys available")
|
|
|
|
if [ ${noHostKeys} -gt 0 ]; then
|
|
|
|
echo "# DETECTED: SSHD LOGS 'no hostkeys available' --> Generating new ones"
|
|
|
|
/home/admin/config.scripts/blitz.ssh.sh renew
|
2021-08-20 12:27:07 +02:00
|
|
|
fi
|
|
|
|
|
|
|
|
# check if SSHD service is NOT running & active
|
|
|
|
sshdRunning=$(sudo systemctl status sshd | grep -c "active (running)")
|
|
|
|
if [ ${sshdRunning} -eq 0 ]; then
|
|
|
|
echo "# DETECTED: SSHD NOT RUNNING --> Try reconfigure & kickstart again"
|
|
|
|
sudo dpkg-reconfigure openssh-server
|
|
|
|
sudo systemctl restart sshd
|
|
|
|
sleep 3
|
|
|
|
fi
|
|
|
|
|
|
|
|
# check that SSHD service is running & active
|
|
|
|
sshdRunning=$(sudo systemctl status sshd | grep -c "active (running)")
|
|
|
|
if [ ${sshdRunning} -eq 1 ]; then
|
|
|
|
echo "# OK: SSHD RUNNING"
|
|
|
|
fi
|
|
|
|
|
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
2021-12-18 19:18:57 +01:00
|
|
|
DEFAULT_BASEDIR="/mnt/hdd/app-data"
|
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
###################
|
|
|
|
# BACKUP
|
|
|
|
###################
|
|
|
|
if [ "$1" = "backup" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
2021-08-20 12:27:07 +02:00
|
|
|
|
|
|
|
# backup sshd host keys
|
2021-12-19 15:43:25 +01:00
|
|
|
echo "# backup sshd keys to $DEFAULT_BASEDIR/sshd"
|
2021-12-18 19:18:57 +01:00
|
|
|
mkdir -p $DEFAULT_BASEDIR/sshd
|
|
|
|
sudo rm -rf $DEFAULT_BASEDIR/sshd/*
|
|
|
|
sudo cp -a /etc/ssh $DEFAULT_BASEDIR/sshd
|
2021-08-20 12:27:07 +02:00
|
|
|
|
|
|
|
# backup root use ssh keys
|
2021-12-19 15:43:25 +01:00
|
|
|
if [ $(sudo ls /root/.ssh/id_rsa.pub 2>/dev/null | grep -c 'id_rsa.pub') -gt 0 ]; then
|
|
|
|
echo "# backup root ssh keys to $DEFAULT_BASEDIR/ssh-root"
|
|
|
|
mkdir -p $DEFAULT_BASEDIR/ssh-root
|
|
|
|
sudo rm -rf $DEFAULT_BASEDIR/ssh-root/*
|
|
|
|
sudo cp -a /root/.ssh $DEFAULT_BASEDIR/ssh-root
|
2021-08-20 12:27:07 +02:00
|
|
|
else
|
2021-12-19 15:43:25 +01:00
|
|
|
echo "# no /root/.ssh/id_rsa.pub - dont backup"
|
2021-08-20 12:27:07 +02:00
|
|
|
fi
|
2021-12-19 15:43:25 +01:00
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
|
|
|
###################
|
|
|
|
# RESTORE
|
|
|
|
###################
|
|
|
|
if [ "$1" = "restore" ]; then
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# *** $0 $1"
|
2021-12-19 15:43:25 +01:00
|
|
|
|
|
|
|
# source directory can be changed by second parameter
|
2021-12-18 19:18:57 +01:00
|
|
|
ALT_BASEDIR=$2
|
|
|
|
if [ "${ALT_BASEDIR}" != "" ]; then
|
|
|
|
DEFAULT_BASEDIR="${ALT_BASEDIR}"
|
2021-12-14 23:34:35 +01:00
|
|
|
fi
|
|
|
|
|
2021-12-19 15:43:25 +01:00
|
|
|
# restore sshd keys
|
2022-01-28 14:32:07 +01:00
|
|
|
if [ $(sudo ls ${DEFAULT_BASEDIR}/ssh_host_rsa_key 2>/dev/null | grep -c "ssh_host_rsa_key") -gt 0 ]; then
|
2021-12-19 15:43:25 +01:00
|
|
|
echo "# restore sshd host keys from: $DEFAULT_BASEDIR/sshd"
|
2021-12-18 19:18:57 +01:00
|
|
|
sudo rm -rf /etc/ssh/*
|
2022-01-28 14:32:07 +01:00
|
|
|
sudo cp -ra $DEFAULT_BASEDIR/* /etc/ssh/
|
2021-08-20 12:27:07 +02:00
|
|
|
sudo chown -R root:root /etc/ssh
|
|
|
|
sudo dpkg-reconfigure openssh-server
|
|
|
|
sudo systemctl restart sshd
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# OK - sshd keys restore done"
|
|
|
|
else
|
|
|
|
echo "error='sshd keys backup not found'"
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
2021-12-19 15:43:25 +01:00
|
|
|
# restore root ssh keys
|
|
|
|
if [ $(sudo ls ${DEFAULT_BASEDIR}/ssh-root/id_rsa.pub 2>/dev/null | grep -c 'id_rsa.pub') -gt 0 ]; then
|
|
|
|
echo "# restore root use keys from: $DEFAULT_BASEDIR/ssh-root"
|
2021-12-18 19:18:57 +01:00
|
|
|
sudo rm -rf /root/.ssh
|
|
|
|
sudo mkdir /root/.ssh
|
2022-01-27 23:30:10 +01:00
|
|
|
sudo cp -ra $DEFAULT_BASEDIR/ssh-root/* /root/.ssh
|
2021-12-18 19:18:57 +01:00
|
|
|
sudo chown -R root:root /root/.ssh
|
|
|
|
echo "# OK - ssh-root keys restore done"
|
2021-08-20 12:27:07 +02:00
|
|
|
else
|
2021-12-18 19:18:57 +01:00
|
|
|
echo "# INFO - ssh-root keys backup not available"
|
2021-08-20 12:27:07 +02:00
|
|
|
fi
|
2021-12-18 19:18:57 +01:00
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
2021-12-19 15:43:25 +01:00
|
|
|
###################
|
|
|
|
# ROOT GET
|
|
|
|
###################
|
|
|
|
if [ "$1" = "root-get" ]; then
|
|
|
|
echo "# *** $0 $1"
|
|
|
|
|
|
|
|
# make sure the ssh keys for that user are initialized
|
|
|
|
sshKeysExist=$(sudo ls /root/.ssh/id_rsa.pub | grep -c 'id_rsa.pub')
|
|
|
|
if [ ${sshKeysExist} -eq 0 ]; then
|
|
|
|
echo "# generation SSH keys for user root"
|
|
|
|
sudo mkdir /root/.ssh 2>/dev/null
|
|
|
|
sudo sh -c 'yes y | sudo ssh-keygen -b 2048 -t rsa -f /root/.ssh/id_rsa -q -N ""'
|
|
|
|
fi
|
|
|
|
|
|
|
|
# get ssh pub key and print
|
|
|
|
sshPubKey=$(sudo cat /root/.ssh/id_rsa.pub)
|
|
|
|
echo "user='root'"
|
|
|
|
echo "sshPubKey='${sshPubKey}'"
|
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
|
|
|
###################
|
|
|
|
# ROOT TRANSFER
|
|
|
|
###################
|
|
|
|
if [ "$1" = "root-transfer" ]; then
|
|
|
|
echo "# *** $0 $1"
|
|
|
|
|
|
|
|
# check second parameter
|
|
|
|
if [ "$2" == "" ]; then
|
|
|
|
echo "# please enter as second parameter: [REMOTEUSER]@[REMOTESERVER]"
|
|
|
|
echo "error='missing parameter'"
|
|
|
|
exit 1
|
|
|
|
fi
|
|
|
|
|
|
|
|
sudo ssh-copy-id $2
|
|
|
|
exit 0
|
|
|
|
fi
|
|
|
|
|
2021-08-20 12:27:07 +02:00
|
|
|
echo "error='unknown parameter'"
|
|
|
|
exit 1
|