将现有的ssh_authorized_keys导入puppet ressource

cri*_*ton 1 ssh puppet

有没有办法从/root/.ssh/authorized_keys自动导入所有现有的ssh密钥到puppet?例:

如果我在/root/.ssh/ssh_authorized_keys中有以下内容:

ssh-rsa AAAAakljsehrkjysdfjkhasdkfhskjghg== userA@hostA
ssh-rsa AAAAajklrkljeykljrsyehkrjryekjdkj== userB@hostB
Run Code Online (Sandbox Code Playgroud)

我想运行类似的东西:

puppet resource ssh_authorized_key
Run Code Online (Sandbox Code Playgroud)

并获得以下输出:

ssh_authorized_key {'userA':
    ensure => present,
    key    => 'AAAAakljsehrkjysdfjkhasdkfhskjghg==',
    type   => 'ssh-rsa',
    name   => 'userA@hostA',
    user   => 'root',
}
ssh_authorized_key {'userB':
    ensure => present,
    key    => 'AAAAajklrkljeykljrsyehkrjryekjdkj==',
    type   => 'ssh-rsa',
    name   => 'userB@hostB',
    user   => 'root',
}
Run Code Online (Sandbox Code Playgroud)

这有点可能吗?

Chr*_*aro 6

它可能有点矫枉过正,但您可以运行蓝图并获取所需的部分或简单的bash脚本:

while read line; do 
    keytype=$(echo $line | awk '{print $1}'); 
    keystr=$(echo $line | awk '{print $2}'); 
    username=$(echo $line | awk '{print $3}');

    echo "ssh_authorized_key {'$(echo $username | awk -F'@' '{print $1}')':"; 
    echo "  ensure => present,"; 
    echo "  key => '$keystr',"; 
    echo "  type => '$keytype',"; 
    echo "  name => '$username',"; 
    echo "  user => '$(whoami)',"; 
    echo "}"; 
done < .ssh/authorized_keys
Run Code Online (Sandbox Code Playgroud)

来源:http://shtuff.it/article/7/Generate_Puppet_ssh_authorized_keys_resource_from_existing_keys