ssh-agent.plugin.zsh 2.96 KB
Newer Older
1
typeset _agent_forwarding _ssh_env_cache
gwjo's avatar
gwjo committed
2

3
function _start_agent() {
4
5
6
7
8
9
10
11
  local lifetime
  zstyle -s :omz:plugins:ssh-agent lifetime lifetime

  # start ssh-agent and setup environment
  echo Starting ssh-agent...
  ssh-agent -s ${lifetime:+-t} ${lifetime} | sed 's/^echo/#echo/' >! $_ssh_env_cache
  chmod 600 $_ssh_env_cache
  . $_ssh_env_cache > /dev/null
12
}
13

14
function _add_identities() {
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
  local id line sig lines
  local -a identities loaded_sigs loaded_ids not_loaded
  zstyle -a :omz:plugins:ssh-agent identities identities

  # check for .ssh folder presence
  if [[ ! -d $HOME/.ssh ]]; then
    return
  fi

  # add default keys if no identities were set up via zstyle
  # this is to mimic the call to ssh-add with no identities
  if [[ ${#identities} -eq 0 ]]; then
    # key list found on `ssh-add` man page's DESCRIPTION section
    for id in id_rsa id_dsa id_ecdsa id_ed25519 identity; do
      # check if file exists
      [[ -f "$HOME/.ssh/$id" ]] && identities+=($id)
    done
  fi

  # get list of loaded identities' signatures and filenames
  if lines=$(ssh-add -l); then
    for line in ${(f)lines}; do
      loaded_sigs+=${${(z)line}[2]}
      loaded_ids+=${${(z)line}[3]}
    done
  fi

  # add identities if not already loaded
  for id in $identities; do
    # check for filename match, otherwise try for signature match
    if [[ ${loaded_ids[(I)$HOME/.ssh/$id]} -le 0 ]]; then
      sig="$(ssh-keygen -lf "$HOME/.ssh/$id" | awk '{print $2}')"
      [[ ${loaded_sigs[(I)$sig]} -le 0 ]] && not_loaded+=("$HOME/.ssh/$id")
    fi
  done

  # abort if no identities need to be loaded
  if [[ ${#not_loaded} -eq 0 ]]; then
    return
  fi

  # pass extra arguments to ssh-add
  local args
  zstyle -a :omz:plugins:ssh-agent ssh-add-args args

  # use user specified helper to ask for password (ksshaskpass, etc)
  local helper
  zstyle -s :omz:plugins:ssh-agent helper helper

  if [[ -n "$helper" ]]; then
    if [[ -z "${commands[$helper]}" ]]; then
      echo "ssh-agent: the helper '$helper' has not been found."
    else
      SSH_ASKPASS="$helper" ssh-add "${args[@]}" ${^not_loaded} < /dev/null
      return $?
    fi
  fi

  ssh-add "${args[@]}" ${^not_loaded}
gwjo's avatar
gwjo committed
74
75
}

76
# Get the filename to store/lookup the environment from
77
_ssh_env_cache="$HOME/.ssh/environment-$SHORT_HOST"
78

79
80
81
82
# test if agent-forwarding is enabled
zstyle -b :omz:plugins:ssh-agent agent-forwarding _agent_forwarding

if [[ $_agent_forwarding == "yes" && -n "$SSH_AUTH_SOCK" ]]; then
83
84
  # Add a nifty symlink for screen/tmux if agent forwarding
  [[ -L $SSH_AUTH_SOCK ]] || ln -sf "$SSH_AUTH_SOCK" /tmp/ssh-agent-$USERNAME-screen
85
elif [[ -f "$_ssh_env_cache" ]]; then
86
87
88
89
90
91
92
93
94
95
  # Source SSH settings, if applicable
  . $_ssh_env_cache > /dev/null
  if [[ $USERNAME == "root" ]]; then
    FILTER="ax"
  else
    FILTER="x"
  fi
  ps $FILTER | grep ssh-agent | grep -q $SSH_AGENT_PID || {
    _start_agent
  }
96
else
97
  _start_agent
gwjo's avatar
gwjo committed
98
99
fi

100
_add_identities
101

gwjo's avatar
gwjo committed
102
# tidy up after ourselves
103
unset _agent_forwarding _ssh_env_cache
104
unfunction _start_agent _add_identities