update script
This commit is contained in:
@ -7,6 +7,18 @@
|
|||||||
# zzz 2010-02
|
# zzz 2010-02
|
||||||
# zzz 2014-08 added support for su3 files
|
# zzz 2014-08 added support for su3 files
|
||||||
#
|
#
|
||||||
|
|
||||||
|
if [ -z "$I2P" -a -d "$PWD/../i2p/pkg-temp" ]; then
|
||||||
|
export I2P=$PWD/../i2p/pkg-temp
|
||||||
|
fi
|
||||||
|
|
||||||
|
if [ ! -d "$I2P" ]; then
|
||||||
|
echo "Can't locate your I2P installation. Please add a environment variable named I2P with the path to the folder as value"
|
||||||
|
echo "On OSX this solved with running: export I2P=/Applications/i2p if default install directory is used."
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
|
|
||||||
|
CPATH=$I2P/lib/i2p.jar:/usr/share/java/gnu-getopt.jar
|
||||||
PUBKEYDIR=$HOME/.i2p-plugin-keys
|
PUBKEYDIR=$HOME/.i2p-plugin-keys
|
||||||
PUBKEYFILE=$PUBKEYDIR/plugin-public-signing.key
|
PUBKEYFILE=$PUBKEYDIR/plugin-public-signing.key
|
||||||
PRIVKEYFILE=$PUBKEYDIR/plugin-private-signing.key
|
PRIVKEYFILE=$PUBKEYDIR/plugin-private-signing.key
|
||||||
@ -21,53 +33,53 @@ PLUGINDIR=${1:-plugin}
|
|||||||
PC=plugin.config
|
PC=plugin.config
|
||||||
PCT=${PC}.tmp
|
PCT=${PC}.tmp
|
||||||
|
|
||||||
if [ ! -d $PLUGINDIR ]
|
if [ ! -d "$PLUGINDIR" ]
|
||||||
then
|
then
|
||||||
echo "You must have a $PLUGINDIR directory"
|
echo "You must have a $PLUGINDIR directory"
|
||||||
exit 1
|
exit 1
|
||||||
fi
|
fi
|
||||||
|
|
||||||
if [ ! -f $PLUGINDIR/$PC ]
|
if [ ! -f "$PLUGINDIR/$PC" ]
|
||||||
then
|
then
|
||||||
echo "You must have a $PLUGINDIR/$PC file"
|
echo "You must have a $PLUGINDIR/$PC file"
|
||||||
exit 1
|
exit 1
|
||||||
fi
|
fi
|
||||||
|
|
||||||
SIGNER=`grep '^signer=' $PLUGINDIR/$PC`
|
SIGNER=`grep '^signer=' "$PLUGINDIR/$PC"`
|
||||||
if [ "$?" -ne "0" ]
|
if [ "$?" -ne "0" ]
|
||||||
then
|
then
|
||||||
echo "You must have a plugin name in $PC"
|
echo "You must have a signer name in $PC"
|
||||||
echo 'For example name=foo'
|
echo 'For example name=foo'
|
||||||
exit 1
|
exit 1
|
||||||
fi
|
fi
|
||||||
SIGNER=`echo $SIGNER | cut -f 2 -d '='`
|
SIGNER=`echo $SIGNER | cut -f 2 -d '='`
|
||||||
|
|
||||||
if [ ! -f $PRIVKEYFILE ]
|
if [ ! -f "$PRIVKEYFILE" ]
|
||||||
then
|
then
|
||||||
echo "Creating new XPI2P DSA keys"
|
echo "Creating new XPI2P DSA keys"
|
||||||
mkdir -p $PUBKEYDIR || exit 1
|
mkdir -p "$PUBKEYDIR" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.TrustedUpdate keygen $PUBKEYFILE $PRIVKEYFILE || exit 1
|
java -cp "$CPATH" net.i2p.crypto.TrustedUpdate keygen "$PUBKEYFILE" "$PRIVKEYFILE" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.data.Base64 encode $PUBKEYFILE $B64KEYFILE || exit 1
|
java -cp "$CPATH" net.i2p.data.Base64 encode "$PUBKEYFILE" "$B64KEYFILE" || exit 1
|
||||||
rm -rf logs/
|
rm -rf logs/
|
||||||
chmod 444 $PUBKEYFILE $B64KEYFILE
|
chmod 444 "$PUBKEYFILE" "$B64KEYFILE"
|
||||||
chmod 400 $PRIVKEYFILE
|
chmod 400 "$PRIVKEYFILE"
|
||||||
echo "Created new XPI2P keys: $PUBKEYFILE $PRIVKEYFILE"
|
echo "Created new XPI2P keys: $PUBKEYFILE $PRIVKEYFILE"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
if [ ! -f $PRIVKEYSTORE ]
|
if [ ! -f "$PRIVKEYSTORE" ]
|
||||||
then
|
then
|
||||||
echo "Creating new SU3 $KEYTYPE keys for $SIGNER"
|
echo "Creating new SU3 $KEYTYPE keys for $SIGNER"
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.SU3File keygen -t $KEYTYPE $PUBKEYSTORE $PRIVKEYSTORE $SIGNER || exit 1
|
java -cp "$CPATH" net.i2p.crypto.SU3File keygen -t $KEYTYPE "$PUBKEYSTORE" "$PRIVKEYSTORE" $SIGNER || exit 1
|
||||||
echo '*** Save your password in a safe place!!! ***'
|
echo '*** Save your password in a safe place!!! ***'
|
||||||
rm -rf logs/
|
rm -rf logs/
|
||||||
# copy to the router dir so verify will work
|
# copy to the router dir so verify will work
|
||||||
CDIR=$I2P/certificates/plugin
|
CDIR=$I2P/certificates/plugin
|
||||||
mkdir -p $CDIR || exit 1
|
mkdir -p "$CDIR" || exit 1
|
||||||
CFILE=$CDIR/`echo $SIGNER | sed s/@/_at_/`.crt
|
CFILE=$CDIR/`echo $SIGNER | sed s/@/_at_/`.crt
|
||||||
cp $PUBKEYSTORE $CFILE
|
cp "$PUBKEYSTORE" "$CFILE"
|
||||||
chmod 444 $PUBKEYSTORE
|
chmod 444 "$PUBKEYSTORE"
|
||||||
chmod 400 $PRIVKEYSTORE
|
chmod 400 "$PRIVKEYSTORE"
|
||||||
chmod 644 $CFILE
|
chmod 644 "$CFILE"
|
||||||
echo "Created new SU3 keys: $PUBKEYSTORE $PRIVKEYSTORE"
|
echo "Created new SU3 keys: $PUBKEYSTORE $PRIVKEYSTORE"
|
||||||
echo "Copied public key to $CFILE for testing"
|
echo "Copied public key to $CFILE for testing"
|
||||||
fi
|
fi
|
||||||
@ -75,7 +87,7 @@ fi
|
|||||||
rm -f plugin.zip
|
rm -f plugin.zip
|
||||||
|
|
||||||
OPWD=$PWD
|
OPWD=$PWD
|
||||||
cd $PLUGINDIR
|
cd "$PLUGINDIR"
|
||||||
|
|
||||||
grep -q '^name=' $PC
|
grep -q '^name=' $PC
|
||||||
if [ "$?" -ne "0" ]
|
if [ "$?" -ne "0" ]
|
||||||
@ -101,12 +113,12 @@ mv $PCT $PC || exit 1
|
|||||||
|
|
||||||
# add our Base64 key
|
# add our Base64 key
|
||||||
grep -v '^key=' $PC > $PCT
|
grep -v '^key=' $PC > $PCT
|
||||||
B64KEY=`cat $B64KEYFILE`
|
B64KEY=`cat "$B64KEYFILE"`
|
||||||
echo "key=$B64KEY" >> $PCT || exit 1
|
echo "key=$B64KEY" >> $PCT || exit 1
|
||||||
mv $PCT $PC || exit 1
|
mv $PCT $PC || exit 1
|
||||||
|
|
||||||
# zip it
|
# zip it
|
||||||
zip -r $OPWD/plugin.zip * || exit 1
|
zip -r "$OPWD/plugin.zip" * || exit 1
|
||||||
|
|
||||||
# get the version and use it for the sud header
|
# get the version and use it for the sud header
|
||||||
VERSION=`grep '^version=' $PC | cut -f 2 -d '='`
|
VERSION=`grep '^version=' $PC | cut -f 2 -d '='`
|
||||||
@ -114,24 +126,24 @@ VERSION=`grep '^version=' $PC | cut -f 2 -d '='`
|
|||||||
NAME=`grep '^name=' $PC | cut -f 2 -d '='`
|
NAME=`grep '^name=' $PC | cut -f 2 -d '='`
|
||||||
XPI2P=${NAME}.xpi2p
|
XPI2P=${NAME}.xpi2p
|
||||||
SU3=${NAME}.su3
|
SU3=${NAME}.su3
|
||||||
cd $OPWD
|
cd "$OPWD"
|
||||||
|
|
||||||
# sign it
|
# sign it
|
||||||
echo 'Signing. ...'
|
echo 'Signing. ...'
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.TrustedUpdate sign plugin.zip $XPI2P $PRIVKEYFILE $VERSION || exit 1
|
java -cp "$CPATH" net.i2p.crypto.TrustedUpdate sign plugin.zip "$XPI2P" "$PRIVKEYFILE" "$VERSION" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.SU3File sign -c PLUGIN -t $KEYTYPE plugin.zip $SU3 $PRIVKEYSTORE $VERSION $SIGNER || exit 1
|
java -cp "$CPATH" net.i2p.crypto.SU3File sign -c PLUGIN -t $KEYTYPE plugin.zip "$SU3" "$PRIVKEYSTORE" "$VERSION" "$SIGNER" || exit 1
|
||||||
rm -f plugin.zip
|
rm -f plugin.zip
|
||||||
|
|
||||||
# verify
|
# verify
|
||||||
echo 'Verifying. ...'
|
echo 'Verifying. ...'
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.TrustedUpdate showversion $XPI2P || exit 1
|
java -cp "$CPATH" net.i2p.crypto.TrustedUpdate showversion "$XPI2P" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar -Drouter.trustedUpdateKeys=$B64KEY net.i2p.crypto.TrustedUpdate verifysig $XPI2P || exit 1
|
java -cp "$CPATH" -Drouter.trustedUpdateKeys=$B64KEY net.i2p.crypto.TrustedUpdate verifysig "$XPI2P" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.SU3File showversion $SU3 || exit 1
|
java -cp "$CPATH" net.i2p.crypto.SU3File showversion "$SU3" || exit 1
|
||||||
java -cp $I2P/lib/i2p.jar net.i2p.crypto.SU3File verifysig -k $PUBKEYSTORE $SU3 || exit 1
|
java -cp "$CPATH" net.i2p.crypto.SU3File verifysig -k "$PUBKEYSTORE" "$SU3" || exit 1
|
||||||
rm -rf logs/
|
rm -rf logs/
|
||||||
|
|
||||||
echo 'Plugin files created: '
|
echo 'Plugin files created: '
|
||||||
wc -c $XPI2P
|
wc -c "$XPI2P"
|
||||||
wc -c $SU3
|
wc -c "$SU3"
|
||||||
|
|
||||||
exit 0
|
exit 0
|
||||||
|
Reference in New Issue
Block a user