X-Git-Url: https://iankelling.org/git/?p=distro-setup;a=blobdiff_plain;f=rootsshsync;h=668f8a3d7ed931ea2a65130c050b9c7e9326ca66;hp=9d9140af8ac75e39d4c1f599ddb2e8ca2c139fa6;hb=79b274fcd8bfa556133ab13270e84b40aebe8468;hpb=c12fecb2eb85890400d451732a2acecce5b69bc4 diff --git a/rootsshsync b/rootsshsync index 9d9140a..668f8a3 100755 --- a/rootsshsync +++ b/rootsshsync @@ -16,17 +16,41 @@ set -eE -o pipefail trap 'echo "$0:$LINENO:error: \"$BASH_COMMAND\" returned $?" >&2' ERR -[[ $EUID == 0 ]] || exec sudo "$BASH_SOURCE" "$@" - -if test -e /q/root/.ssh; then - dest=/q/root/.ssh - /a/exe/lnf $dest /root -else - dest=/root/.ssh - mkdir -p /root/.ssh - chmod 700 /root/.ssh +[[ $EUID == 0 ]] || exec sudo -E "${BASH_SOURCE[0]}" "$@" + +dest=/root/.ssh + +# leftover +if [[ -L $dest ]]; then + rm $dest +fi +mkdir -p $dest +chmod 700 $dest + +user=$(id -un) +if [[ $SUDO_USER ]]; then + user=$SUDO_USER +fi + +user_ssh_dir=$(eval echo ~$user)/.ssh +if [[ ! -s $user_ssh_dir/authorized_keys ]]; then + echo missing $user_ssh_dir/authorized_keys. bad sign. bailing >&2 + exit 1 fi + +# remove broken links, or else rsync has error about them. +find $user_ssh_dir -xtype l -exec rm '{}' \; # -t times, so it won't rewrite the file every time, # -L resolve links -rsync -rtL $(eval echo ~${SUDO_USER:-$USER})/.ssh/ $dest +rsync -rtL --delete $user_ssh_dir/ $dest chown -R root:root /root/.ssh + + +d=/etc/initramfs-tools +if [[ -e $d ]] && ! diff -q /root/.ssh/authorized_keys $d/root/.ssh/authorized_keys &>/dev/null; then + mkdir -p $d/root/.ssh /etc/dropbear-initramfs + chmod 700 $d/root $d/root/.ssh + cp -p /root/.ssh/authorized_keys $d/root/.ssh/authorized_keys + cp -p /root/.ssh/authorized_keys /etc/dropbear-initramfs + update-initramfs -u -k all +fi