d220fe3146884966eb9ed2e7e7bcc964db59776d
3 ### Generate a user key
5 ### (c) 2011 Mark Wooding
8 ###----- Licensing notice ---------------------------------------------------
10 ### This file is part of the distorted.org.uk key management suite.
12 ### distorted-keys is free software; you can redistribute it and/or modify
13 ### it under the terms of the GNU General Public License as published by
14 ### the Free Software Foundation; either version 2 of the License, or
15 ### (at your option) any later version.
17 ### distorted-keys is distributed in the hope that it will be useful,
18 ### but WITHOUT ANY WARRANTY; without even the implied warranty of
19 ### MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20 ### GNU General Public License for more details.
22 ### You should have received a copy of the GNU General Public License
23 ### along with distorted-keys; if not, write to the Free Software Foundation,
24 ### Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
27 case "${KEYSLIB+t}" in t
) ;; *) echo >&2 "$0: KEYSLIB unset"; exit 1 ;; esac
28 .
"$KEYSLIB"/keyfunc.sh
31 [-f] KEY PROFILE [OPTION=VALUE ...]
32 Generate a named KEY, according to the PROFILE.
34 The OPTIONS and VALUES are passed to the key-type handler selected by the
38 -f Force overwriting an existing key.
43 for recov
in $kprop_recovery; do
44 (stash
$recov $kowner/$klabel <"$nub")
48 ## Parse command-line arguments.
50 while getopts "f" opt
; do
56 shift $
(( $OPTIND - 1 ))
57 case $# in 0 |
1) usage_err
;; esac
58 key
=$1 profile
=$2; shift 2
60 ## Check the key name carefully. This is where we actually create files,
61 ## so it's reallly important to make sure that we don't make any stupid
67 *) echo >&2 "$quis: invalid owner \`$kowner' for key"; exit 1 ;;
72 echo >&2 "$quis: key \`$key' already exists"
78 ## Check the profile name. We shouldn't allow users to refer to each
85 powner
=${profile%%:*} label
=${profile#*:}
88 *) echo >&2 "$quis: invalid owner \`$powner' for profile"; exit 1 ;;
95 checkword
"profile label" "$label"
96 read_profile
$USERV_USER $profile
99 c_genkey
$profile $kdir $knub genhook_recov
"$@"
101 ###----- That's all, folks --------------------------------------------------