summaryrefslogtreecommitdiff
path: root/share/keyringer/encrypt
blob: ac305a422aa015d24c91058e8c611bccaabe9a11 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
#!/bin/bash
#
# Encrypt files to multiple recipients.
#

# Load functions
LIB="`dirname $0`/../../lib/keyringer/functions"
source "$LIB" || exit 1

# Aditional parameters
if [ ! -z "$3" ]; then
  UNENCRYPTED_FILE="$2"
  shift 2
  keyringer_get_new_file "$*"

  if [ ! -f "$UNENCRYPTED_FILE" ]; then
    echo "Error: cannot encrypted $UNENCRYPTED_FILE: file not found."
    exit 1
  fi
else
  UNENCRYPTED_FILE="-"
  shift
  keyringer_get_new_file $*
fi

# Set recipients file
keyringer_set_recipients "$FILE"

# Encrypt
mkdir -p "$KEYDIR/`dirname $FILE`"

if [ "$BASENAME" == "encrypt" ]; then
  # Only display directions if we're running encrypt, not encrypt-batch
  if [ "$UNENCRYPTED_FILE" == "-" ]; then
    echo "Type your message and finish your input with EOF (Ctrl-D)."
  fi
fi

$GPG --use-agent --armor -e -s $(keyringer_recipients "$RECIPIENTS_FILE") --yes --output "$KEYDIR/$FILE" $UNENCRYPTED_FILE

err="$?"

if [ "$err" != "0" ]; then
  exit "$err"
fi

if [ "$UNENCRYPTED_FILE" != "-" ]; then
  echo "Now make to wipe the non-encrypted $UNENCRYPTED_FILE."
fi

# Stage
if [ -d "$BASEDIR/.git" ]; then
  keyringer_exec git "$BASEDIR" add "keys/$FILE"
fi

exit "$?"