ssh-agent.plugin.zsh 3.33 KB
Newer Older
1
2
3
# Get the filename to store/lookup the environment from
ssh_env_cache="$HOME/.ssh/environment-$SHORT_HOST"

4
function _start_agent() {
5
6
7
8
9
10
11
12
13
14
  # Check if ssh-agent is already running
  if [[ -f "$ssh_env_cache" ]]; then
    . "$ssh_env_cache" > /dev/null

    {
      [[ "$USERNAME" = root ]] && command ps ax || command ps x
    } | command grep ssh-agent | command grep -q $SSH_AGENT_PID && return 0
  fi

  # Set a maximum lifetime for identities added to ssh-agent
15
16
17
18
19
  local lifetime
  zstyle -s :omz:plugins:ssh-agent lifetime lifetime

  # start ssh-agent and setup environment
  echo Starting ssh-agent...
20
21
22
  ssh-agent -s ${lifetime:+-t} ${lifetime} | sed '/^echo/d' >! "$ssh_env_cache"
  chmod 600 "$ssh_env_cache"
  . "$ssh_env_cache" > /dev/null
23
}
24

25
function _add_identities() {
26
  local id file line sig lines
27
28
29
30
  local -a identities loaded_sigs loaded_ids not_loaded
  zstyle -a :omz:plugins:ssh-agent identities identities

  # check for .ssh folder presence
31
  if [[ ! -d "$HOME/.ssh" ]]; then
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
    return
  fi

  # add default keys if no identities were set up via zstyle
  # this is to mimic the call to ssh-add with no identities
  if [[ ${#identities} -eq 0 ]]; then
    # key list found on `ssh-add` man page's DESCRIPTION section
    for id in id_rsa id_dsa id_ecdsa id_ed25519 identity; do
      # check if file exists
      [[ -f "$HOME/.ssh/$id" ]] && identities+=($id)
    done
  fi

  # get list of loaded identities' signatures and filenames
  if lines=$(ssh-add -l); then
    for line in ${(f)lines}; do
      loaded_sigs+=${${(z)line}[2]}
      loaded_ids+=${${(z)line}[3]}
    done
  fi

  # add identities if not already loaded
  for id in $identities; do
55
56
    # if id is an absolute path, make file equal to id
    [[ "$id" = /* ]] && file="$id" || file="$HOME/.ssh/$id"
57
    # check for filename match, otherwise try for signature match
58
59
60
    if [[ ${loaded_ids[(I)$file]} -le 0 ]]; then
      sig="$(ssh-keygen -lf "$file" | awk '{print $2}')"
      [[ ${loaded_sigs[(I)$sig]} -le 0 ]] && not_loaded+=("$file")
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
    fi
  done

  # abort if no identities need to be loaded
  if [[ ${#not_loaded} -eq 0 ]]; then
    return
  fi

  # pass extra arguments to ssh-add
  local args
  zstyle -a :omz:plugins:ssh-agent ssh-add-args args

  # use user specified helper to ask for password (ksshaskpass, etc)
  local helper
  zstyle -s :omz:plugins:ssh-agent helper helper

  if [[ -n "$helper" ]]; then
    if [[ -z "${commands[$helper]}" ]]; then
      echo "ssh-agent: the helper '$helper' has not been found."
    else
      SSH_ASKPASS="$helper" ssh-add "${args[@]}" ${^not_loaded} < /dev/null
      return $?
    fi
  fi

  ssh-add "${args[@]}" ${^not_loaded}
gwjo's avatar
gwjo committed
87
88
}

89
# test if agent-forwarding is enabled
90
91
92
93
94
zstyle -b :omz:plugins:ssh-agent agent-forwarding agent_forwarding

# Add a nifty symlink for screen/tmux if agent forwarding
if [[ $agent_forwarding = "yes" && -n "$SSH_AUTH_SOCK" && ! -L "$SSH_AUTH_SOCK" ]]; then
  ln -sf "$SSH_AUTH_SOCK" /tmp/ssh-agent-$USERNAME-screen
95
else
96
  _start_agent
gwjo's avatar
gwjo committed
97
98
fi

99
100
101
102
103
104
105
106
107
() {
  emulate -L zsh

  command mkdir "$ZSH_CACHE_DIR/ssh-agent.lock" 2>/dev/null || return

  trap "
    ret=\$?

    command rm -rf '$ZSH_CACHE_DIR/ssh-agent.lock'
108
    unset agent_forwarding ssh_env_cache
109
110
111
112
113
114
    unfunction _start_agent _add_identities 2>/dev/null

    return \$ret
  " EXIT INT QUIT

  _add_identities
115

116
}
117

118
unset agent_forwarding ssh_env_cache
119
unfunction _start_agent _add_identities