main.go 2.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. // Copyright (C) 2015 The Syncthing Authors.
  2. //
  3. // This Source Code Form is subject to the terms of the Mozilla Public
  4. // License, v. 2.0. If a copy of the MPL was not distributed with this file,
  5. // You can obtain one at https://mozilla.org/MPL/2.0/.
  6. package main
  7. import (
  8. "flag"
  9. "io"
  10. "io/ioutil"
  11. "log"
  12. "os"
  13. "github.com/syncthing/syncthing/lib/signature"
  14. "github.com/syncthing/syncthing/lib/upgrade"
  15. )
  16. func main() {
  17. log.SetFlags(0)
  18. log.SetOutput(os.Stdout)
  19. flag.Parse()
  20. if flag.NArg() < 1 {
  21. log.Println(`Usage:
  22. stsigtool <command>
  23. Where command is one of:
  24. gen
  25. - generate a new key pair
  26. sign <privkeyfile> [datafile]
  27. - sign a file
  28. verify <signaturefile> <datafile>
  29. - verify a signature, using the built in public key
  30. verify <signaturefile> <datafile> <pubkeyfile>
  31. - verify a signature, using the specified public key file
  32. `)
  33. }
  34. switch flag.Arg(0) {
  35. case "gen":
  36. gen()
  37. case "sign":
  38. sign(flag.Arg(1), flag.Arg(2))
  39. case "verify":
  40. if flag.NArg() == 4 {
  41. verifyWithFile(flag.Arg(1), flag.Arg(2), flag.Arg(3))
  42. } else {
  43. verifyWithKey(flag.Arg(1), flag.Arg(2), upgrade.SigningKey)
  44. }
  45. }
  46. }
  47. func gen() {
  48. priv, pub, err := signature.GenerateKeys()
  49. if err != nil {
  50. log.Fatal(err)
  51. }
  52. os.Stdout.Write(priv)
  53. os.Stdout.Write(pub)
  54. }
  55. func sign(keyname, dataname string) {
  56. privkey, err := ioutil.ReadFile(keyname)
  57. if err != nil {
  58. log.Fatal(err)
  59. }
  60. var input io.Reader
  61. if dataname == "-" || dataname == "" {
  62. input = os.Stdin
  63. } else {
  64. fd, err := os.Open(dataname)
  65. if err != nil {
  66. log.Fatal(err)
  67. }
  68. defer fd.Close()
  69. input = fd
  70. }
  71. sig, err := signature.Sign(privkey, input)
  72. if err != nil {
  73. log.Fatal(err)
  74. }
  75. os.Stdout.Write(sig)
  76. }
  77. func verifyWithFile(signame, dataname, keyname string) {
  78. pubkey, err := ioutil.ReadFile(keyname)
  79. if err != nil {
  80. log.Fatal(err)
  81. }
  82. verifyWithKey(signame, dataname, pubkey)
  83. }
  84. func verifyWithKey(signame, dataname string, pubkey []byte) {
  85. sig, err := ioutil.ReadFile(signame)
  86. if err != nil {
  87. log.Fatal(err)
  88. }
  89. fd, err := os.Open(dataname)
  90. if err != nil {
  91. log.Fatal(err)
  92. }
  93. defer fd.Close()
  94. err = signature.Verify(pubkey, sig, fd)
  95. if err != nil {
  96. log.Fatal(err)
  97. }
  98. log.Println("correct signature")
  99. }