main.go 2.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115
  1. // Copyright (C) 2015 The Syncthing Authors.
  2. //
  3. // This Source Code Form is subject to the terms of the Mozilla Public
  4. // License, v. 2.0. If a copy of the MPL was not distributed with this file,
  5. // You can obtain one at http://mozilla.org/MPL/2.0/.
  6. package main
  7. import (
  8. "flag"
  9. "io/ioutil"
  10. "log"
  11. "os"
  12. "github.com/syncthing/syncthing/lib/signature"
  13. "github.com/syncthing/syncthing/lib/upgrade"
  14. )
  15. func main() {
  16. log.SetFlags(0)
  17. log.SetOutput(os.Stdout)
  18. flag.Parse()
  19. if flag.NArg() < 1 {
  20. log.Println(`Usage:
  21. stsigtool <command>
  22. Where command is one of:
  23. gen
  24. - generate a new key pair
  25. sign <privkeyfile> <datafile>
  26. - sign a file
  27. verify <signaturefile> <datafile>
  28. - verify a signature, using the built in public key
  29. verify <signaturefile> <datafile> <pubkeyfile>
  30. - verify a signature, using the specified public key file
  31. `)
  32. }
  33. switch flag.Arg(0) {
  34. case "gen":
  35. gen()
  36. case "sign":
  37. sign(flag.Arg(1), flag.Arg(2))
  38. case "verify":
  39. if flag.NArg() == 4 {
  40. verifyWithFile(flag.Arg(1), flag.Arg(2), flag.Arg(3))
  41. } else {
  42. verifyWithKey(flag.Arg(1), flag.Arg(2), upgrade.SigningKey)
  43. }
  44. }
  45. }
  46. func gen() {
  47. priv, pub, err := signature.GenerateKeys()
  48. if err != nil {
  49. log.Fatal(err)
  50. }
  51. os.Stdout.Write(priv)
  52. os.Stdout.Write(pub)
  53. }
  54. func sign(keyname, dataname string) {
  55. privkey, err := ioutil.ReadFile(keyname)
  56. if err != nil {
  57. log.Fatal(err)
  58. }
  59. fd, err := os.Open(dataname)
  60. if err != nil {
  61. log.Fatal(err)
  62. }
  63. defer fd.Close()
  64. sig, err := signature.Sign(privkey, fd)
  65. if err != nil {
  66. log.Fatal(err)
  67. }
  68. os.Stdout.Write(sig)
  69. }
  70. func verifyWithFile(signame, dataname, keyname string) {
  71. pubkey, err := ioutil.ReadFile(keyname)
  72. if err != nil {
  73. log.Fatal(err)
  74. }
  75. verifyWithKey(signame, dataname, pubkey)
  76. }
  77. func verifyWithKey(signame, dataname string, pubkey []byte) {
  78. sig, err := ioutil.ReadFile(signame)
  79. if err != nil {
  80. log.Fatal(err)
  81. }
  82. fd, err := os.Open(dataname)
  83. if err != nil {
  84. log.Fatal(err)
  85. }
  86. defer fd.Close()
  87. err = signature.Verify(pubkey, sig, fd)
  88. if err != nil {
  89. log.Fatal(err)
  90. }
  91. log.Println("correct signature")
  92. }