Scriptlet to collect borg keys

master
Jeff Moe 7 years ago
parent 7cb890890b
commit b819d3f1e6

@ -5,7 +5,7 @@
export BORG_REPO="BACKUPS/borg/`hostname`"
export BORG_SERVER="user@host"
export BORG_PASSPHRASE="`cat /root/.borgpw`"
#export BORG_PASSPHRASE="`cat /root/.borgpw`"
export BORG_BINARY="borg1"
#export BORG_DISPLAY_PASSPHRASE=0
#export BORG_LOGGING_CONF=

@ -7,7 +7,7 @@ set -x
export MASTERDIRS="/etc /home /opt /root /srv /usr/local /var"
export BORG_REPO="BACKUPS/borg/`hostname`"
export BORG_SERVER="user@host"
export BORG_PASSPHRASE="`cat /root/.borgpw`"
#export BORG_PASSPHRASE="`cat /root/.borgpw`"
export BORG_BINARY="borg1"
#export BORG_DISPLAY_PASSPHRASE=0
#export BORG_LOGGING_CONF=

@ -5,7 +5,7 @@
export BORG_REPO="BACKUPS/borg/`hostname`"
export BORG_SERVER="user@host"
export BORG_PASSPHRASE="`cat /root/.borgpw`"
#export BORG_PASSPHRASE="`cat /root/.borgpw`"
export BORG_BINARY="borg1"
#export BORG_DISPLAY_PASSPHRASE=0
#export BORG_LOGGING_CONF=

@ -12,7 +12,7 @@ set -x
export BORG_REPO="BACKUPS/borg/`hostname`"
export BORG_SERVER="user@host"
export BORG_PASSPHRASE="`cat /root/.borgpw`"
#export BORG_PASSPHRASE="`cat /root/.borgpw`"
export BORG_BINARY="borg1"
#export BORG_DISPLAY_PASSPHRASE=0
#export BORG_LOGGING_CONF=
@ -30,7 +30,7 @@ export BORG_CACHE_DIR="/root/.cache/borg"
mkdir -p $BORG_KEYS_DIR
mkdir -p $BORG_CACHE_DIR
ssh $BORG_SERVER "mkdir -p $BORG_REPO"
$BORG_RSH $BORG_SERVER "mkdir -p $BORG_REPO"
borg init \
--verbose \

@ -5,7 +5,7 @@
export BORG_REPO="BACKUPS/borg/`hostname`"
export BORG_SERVER="user@host"
export BORG_PASSPHRASE="`cat /root/.borgpw`"
#export BORG_PASSPHRASE="`cat /root/.borgpw`"
export BORG_BINARY="borg1"
#export BORG_DISPLAY_PASSPHRASE=0
#export BORG_LOGGING_CONF=

@ -0,0 +1,25 @@
#!/bin/bash
# Copyright (C) 2018, Fork Sand, Inc.
# GPLv3
#
# This scriptlet collects the keys needed to restore a backup,
# should the host keys get lost.
# Store on an external secure vault.
set -x
BORG_KEYS_DIR="/root/borg-`hostname`-keys"
mv $BORG_KEYS_DIR $BORG_KEYS_DIR.bak
mkdir -p $BORG_KEYS_DIR
cp -a /root/.config/borg $BORG_KEYS_DIR/dot-config-borg
cp -a /root/.ssh/id_ed25519-borg-`hostname` $BORG_KEYS_DIR/dot-ssh-id_ed25519-borg-`hostname`
cp -a /root/.ssh/id_ed25519-borg-`hostname`.pub $BORG_KEYS_DIR/dot-ssh-id_ed25519-borg-`hostname`.pub
cd /root
tar jcf borg-`hostname`-keys.tar.bz2 borg-`hostname`-keys
# manually remove this
mv $BORG_KEYS_DIR $BORG_KEYS_DIR-done
echo "Keys backup: $BORG_KEYS_DIR.tar.bz2"
Loading…
Cancel
Save