2010-11-05 08:19:15 +01:00
|
|
|
# $OpenBSD: keytype.sh,v 1.1 2010/09/02 16:12:55 markus Exp $
|
|
|
|
# Placed in the Public Domain.
|
|
|
|
|
|
|
|
tid="login with different key types"
|
|
|
|
|
2010-11-08 18:15:14 +01:00
|
|
|
TIME=`which time` 2>/dev/null
|
|
|
|
if test ! -x "$TIME"; then
|
|
|
|
TIME=""
|
|
|
|
fi
|
|
|
|
|
2010-11-05 08:19:15 +01:00
|
|
|
cp $OBJ/sshd_proxy $OBJ/sshd_proxy_bak
|
|
|
|
cp $OBJ/ssh_proxy $OBJ/ssh_proxy_bak
|
|
|
|
|
2010-11-05 08:23:38 +01:00
|
|
|
ktypes="dsa-1024 rsa-2048 rsa-3072"
|
|
|
|
if test "$TEST_SSH_ECC" = "yes"; then
|
|
|
|
ktypes="$ktypes ecdsa-256 ecdsa-384 ecdsa-521"
|
|
|
|
fi
|
2010-11-05 08:19:15 +01:00
|
|
|
|
|
|
|
for kt in $ktypes; do
|
|
|
|
rm -f $OBJ/key.$kt
|
2010-11-07 22:03:11 +01:00
|
|
|
bits=`echo ${kt} | awk -F- '{print $2}'`
|
|
|
|
type=`echo ${kt} | awk -F- '{print $1}'`
|
2010-11-05 08:19:15 +01:00
|
|
|
printf "keygen $type, $bits bits:\t"
|
|
|
|
${TIME} ${SSHKEYGEN} -b $bits -q -N '' -t $type -f $OBJ/key.$kt ||\
|
|
|
|
fail "ssh-keygen for type $type, $bits bits failed"
|
|
|
|
done
|
|
|
|
|
|
|
|
tries="1 2 3"
|
|
|
|
for ut in $ktypes; do
|
|
|
|
htypes=$ut
|
|
|
|
#htypes=$ktypes
|
|
|
|
for ht in $htypes; do
|
|
|
|
trace "ssh connect, userkey $ut, hostkey $ht"
|
|
|
|
(
|
|
|
|
grep -v HostKey $OBJ/sshd_proxy_bak
|
|
|
|
echo HostKey $OBJ/key.$ht
|
|
|
|
) > $OBJ/sshd_proxy
|
|
|
|
(
|
|
|
|
grep -v IdentityFile $OBJ/ssh_proxy_bak
|
|
|
|
echo IdentityFile $OBJ/key.$ut
|
|
|
|
) > $OBJ/ssh_proxy
|
|
|
|
(
|
2011-01-08 11:58:20 +01:00
|
|
|
echon 'localhost-with-alias,127.0.0.1,::1 '
|
2010-11-05 08:19:15 +01:00
|
|
|
cat $OBJ/key.$ht.pub
|
|
|
|
) > $OBJ/known_hosts
|
|
|
|
cat $OBJ/key.$ut.pub > $OBJ/authorized_keys_$USER
|
|
|
|
for i in $tries; do
|
|
|
|
printf "userkey $ut, hostkey ${ht}:\t"
|
|
|
|
${TIME} ${SSH} -F $OBJ/ssh_proxy 999.999.999.999 true
|
|
|
|
if [ $? -ne 0 ]; then
|
|
|
|
fail "ssh userkey $ut, hostkey $ht failed"
|
|
|
|
fi
|
|
|
|
done
|
|
|
|
done
|
|
|
|
done
|