2 # This should be sourced by bash (though we welcome changes to make it POSIX sh compliant)
4 # Monkeysphere host import-key subcommand
6 # The monkeysphere scripts are written by:
7 # Jameson Rollins <jrollins@finestructure.net>
8 # Jamie McClelland <jm@mayfirst.org>
9 # Daniel Kahn Gillmor <dkg@fifthhorseman.net>
11 # They are Copyright 2008-2009 and are all released under the GPL,
22 # use the default hostname if not specified
23 if [ -z "$hostName" ] ; then
24 hostName=$(hostname -f) || failure "Could not determine hostname."
25 # test that the domain is not obviously illegitimate
28 'local'|'localdomain')
29 failure "Host domain '$domain' is not legitimate. Aborting key import."
32 # test that there are at least two parts
33 if (( $(echo "$hostName" | tr . ' ' | wc -w) < 2 )) ; then
34 failure "Host name '$hostName' is not legitimate. Aborting key import."
38 userID="ssh://${hostName}"
41 mkdir -p "${MHDATADIR}"
42 mkdir -p "${GNUPGHOME_HOST}"
43 chmod 700 "${GNUPGHOME_HOST}"
45 log verbose "importing ssh key..."
46 # translate ssh key to a private key
47 PEM2OPENPGP_USAGE_FLAGS=authenticate pem2openpgp "$userID" \
50 # load the new host fpr into the fpr variable. this is so we can
51 # create the gpg pub key file. we have to do this from the secret key
52 # ring since we obviously don't have the gpg pub key file yet, since
53 # that's what we're trying to produce (see below).
54 load_fingerprint_secret
56 # export to gpg public key to file
59 log info "host key imported:"
61 # show info about new key