#!/bin/bash # # Check puppet fingerprints, hydractl perspective. # # This program is free software: you can redistribute it and/or modify # it under the terms of the GNU Affero General Public License as # published by the Free Software Foundation, either version 3 of the # License, or (at your option) any later version. # # This program is distributed in the hope that it will be useful, # but WITHOUT ANY WARRANTY; without even the implied warranty of # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # GNU Affero General Public License for more details. # # You should have received a copy of the GNU Affero General Public # License along with this program. If not, see # . # Load source $APP_BASE/lib/hydra/functions || exit 1 hydra_config_load # Command line arguments BASENAME="`basename $0`" HOST="$1" # Get the fingerprints if [ ! -z "$HOST" ]; then if [ -f "/etc/ssh/ssh_known_hosts" ]; then ssh-keygen -l -f /etc/ssh/ssh_known_hosts -F $HOST fi ssh-keygen -l -f ~/.ssh/known_hosts -F $HOST elif [ -d "/etc/ssh" ]; then # Classic if [ -d "/etc/ssh" ]; then for i in /etc/ssh/*.pub; do if [ -e "/etc/ssh/$i" ]; then ssh-keygen -l -f $i fi done fi # Simpler, but might trow errors if there's no keys #if [ -d "/etc/ssh" ]; then # ls /etc/ssh/ssh_host_*.pub | xargs -n 1 ssh-keygen -l -f #fi fi