summaryrefslogtreecommitdiff
path: root/setup.d/11mount-ssh
blob: d9b3642d2001d77b8411ea94d50d90b7dc451af5 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
#!/bin/bash
# Copyright © 2010  Sascha Silbe <sascha-pgp@silbe.org>
#
# schroot is free software: you can redistribute it and/or modify it
# under the terms of the GNU General Public License version 3
# as published by the Free Software Foundation.
#
# schroot is distributed in the hope that it will be useful, but
# WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the GNU
# General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this program.  If not, see
# <http://www.gnu.org/licenses/>.
#
#####################################################################
# 10mount-ssh: "Forward" ssh-agent to chroot.
# Performs a bind-mount of the ssh-agent socket directory. Clean-up
# happens at session end in setup.d/10mount.
#####################################################################

set -e

. "$SETUP_DATA_DIR/common-data"
. "$SETUP_DATA_DIR/common-functions"
. "$SETUP_DATA_DIR/common-config"

ACTION="$1"

SYMLINK_PATH="${CHROOT_PATH}/tmp/ssh-auth-sock.${SESSION_ID}"

if [ "$ACTION" = "setup-stop" -o "$ACTION" = "setup-recover" ] \
    && [ -h "${SYMLINK_PATH}" ]; then
    SOCK_PATH="${CHROOT_PATH}/$(readlink "${SYMLINK_PATH}")"
    info "Unmounting ${SOCK_PATH}"
    umount -f "${SOCK_PATH}"
    rm -f "${SYMLINK_PATH}"
fi

if [ "$ACTION" = "setup-start" -o "$ACTION" = "setup-recover" ] ; then
    # Extract SSH_AUTH_SOCK from environment of schroot process ($PID)
    SSH_AUTH_SOCK="$(tr '\0' '\n' < /proc/"$PID"/environ | grep ^SSH_AUTH_SOCK | head -n 1 |sed -e 's/^SSH_AUTH_SOCK=//')"

    if [ -z "${SSH_AUTH_SOCK:-}" ] \
	|| [ -e "${CHROOT_PATH}/${SSH_AUTH_SOCK}" ] ; then
        exit 0
    fi

    info "Mounting ${CHROOT_PATH}/${SSH_AUTH_SOCK}"
    SOCK_DIR="$(dirname "${SSH_AUTH_SOCK}")"
    mkdir -p "${CHROOT_PATH}/${SOCK_DIR}"
    touch "${CHROOT_PATH}/${SSH_AUTH_SOCK}"
    mount -o bind "${SSH_AUTH_SOCK}" "${CHROOT_PATH}/${SSH_AUTH_SOCK}"
    mkdir -p "$(dirname "${SYMLINK_PATH}")"
    rm -f "${SYMLINK_PATH}"
    ln -s "${SSH_AUTH_SOCK}" "${SYMLINK_PATH}"
fi