From 00206cef68a5c794a06306f1ff76d3a568535043 Mon Sep 17 00:00:00 2001 From: yohan <783b8c87@scimetis.net> Date: Wed, 27 Nov 2019 16:42:01 +0100 Subject: [PATCH] Now retrieves secrets from cloud. --- start_or_update.sh | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/start_or_update.sh b/start_or_update.sh index c36c7c3..5f72cd3 100755 --- a/start_or_update.sh +++ b/start_or_update.sh @@ -21,6 +21,11 @@ sudo bash -c "grep -q l2tp_ppp $MODULE_FILE \ || { echo '# Loading l2tp_ppp at boot is needed to use xl2tpd with kernel drivers in docker containers' >> $MODULE_FILE; \ echo 'l2tp_ppp' >> $MODULE_FILE; }" +test -z $1 || HOST="_$1" +test -z $2 || INSTANCE="_$2" +test -f ~/secrets.tar.gz.enc || curl -o ~/secrets.tar.gz.enc "https://cloud.scimetis.net/s/${KEY}/download?path=%2F&files=secrets.tar.gz.enc" +openssl enc -aes-256-cbc -d -in ~/secrets.tar.gz.enc | tar -zxv --strip 2 secrets/docker-VPN-client-FR-stack${HOST}${INSTANCE}/keys_privateinternetaccess secrets/docker-VPN-client-FR-stack${HOST}${INSTANCE}/users + sudo chown root:13 users sudo chown root:root entrypoint.sh sudo chmod +x entrypoint.sh