-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathbastion_connect.sh
65 lines (56 loc) · 1.95 KB
/
bastion_connect.sh
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
#!/bin/bash
PubIP=$1
PrvIP=$2
cmd=$3
User=ubuntu
KeyRot=ssh_keys_rotation.sh
#CheckCase1
if [[ -z $KEY_PATH ]];then
echo "KEY_PATH env var is expected"
exit 5
fi
#CheckCase2
if [[ -z $PubIP ]];then
echo "Please provide bastion IP address"
exit 5
fi
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t "bash -s" <<EOF
#!/bin/bash
grep 'export KEY' .bashrc 1> /dev/null
if [[ "\$?" != "0" ]];then
sed -i '1s/^/export KEY_PATH="$(basename $KEY_PATH)"\\n/' .bashrc
fi
EOF
#Check if 'Key_Rotaion' Exists
c=$(ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t 'ls ssh_keys_rotation.sh 2> /dev/null | wc -l')
c=$(echo $c | tr -d '\r')
if [[ $c != 1 ]];then
scp -q -o StrictHostKeyChecking=no -i ${KEY_PATH} $KeyRot ubuntu@${PubIP}:~
echo "COPIED KEY ROTATION SCRIPT TO $PubIP"
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t "chmod +x $KeyRot"
echo -e "ADDED PERMISTIONS\n####################"
fi
#Check if 'KEY_PATH' Exists
cpath=$(ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t 'ls "$KEY_PATH" 2> /dev/null | wc -l')
cpath=$(echo $cpath | tr -d '\r')
if [[ $cpath != 1 ]];then
scp -q -o StrictHostKeyChecking=no -i ${KEY_PATH} $KEY_PATH ubuntu@${PubIP}:~
echo "COPIED KEY TO $PubIP"
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t "chmod 600 \$KEY_PATH"
echo -e "ADDED PERMISTIONS\n####################"
fi
case $# in
1)
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP}
;;
2)
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t "ssh -q -o StrictHostKeyChecking=no -i \${KEY_PATH} ${User}@${PrvIP} -t"
;;
3)
ssh -q -o StrictHostKeyChecking=no -i ${KEY_PATH} ${User}@${PubIP} -t "ssh -q -o StrictHostKeyChecking=no -i \${KEY_PATH} ${User}@${PrvIP} -t $cmd"
;;
*)
echo "More than three parameters passed."
exit
;;
esac