X-Git-Url: http://git.squeep.com/?p=awsible;a=blobdiff_plain;f=generate-ansible-vpcaccess-vars.sh;h=e951308859f2f51f9cf8158f3fea1e62a9c00349;hp=0a5d14a62aedf2a732c02ba1da3a4906c0481086;hb=73427b9aa4eccc21c3a88a48a4f460a3fff5f5d6;hpb=1d6f18c7206a8a3e409ea50e89113015f4660200 diff --git a/generate-ansible-vpcaccess-vars.sh b/generate-ansible-vpcaccess-vars.sh index 0a5d14a..e951308 100755 --- a/generate-ansible-vpcaccess-vars.sh +++ b/generate-ansible-vpcaccess-vars.sh @@ -1,6 +1,7 @@ #!/bin/sh set -e +set -o pipefail if [ $# -ne 2 ] then @@ -14,6 +15,20 @@ cert="${1}_ca/pki/issued/${2}.${1}.crt" key="${1}_ca/pki/private/${2}.${1}.key" ta_secret="${1}_ca/pki/ta.key" +# reuse any extant quagga password +for v in "${1}"/group_vars/*vpcaccess* +do + if [ -n "${quagga_password}" ] + then + echo "found multiple potential quagga passwords; the chosen one may not be correct" 1>&2 + fi + quagga_password=$(awk '/QUAGGA_PASSWORD:/{print $2}' "${v}") +done +if [ -z "${quagga_password}" ] +then + quagga_password=$(pwgen -y 16) +fi + function onlycert(){ sed -n '/-----BEGIN /,/-----END /p' "$@" } @@ -23,7 +38,7 @@ function indent(){ cat<