Initial commit: add all skills
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
This commit is contained in:
208
linux-ssh-operator-skill/scripts/ssh_alias_setup.sh
Normal file
208
linux-ssh-operator-skill/scripts/ssh_alias_setup.sh
Normal file
@@ -0,0 +1,208 @@
|
||||
#!/usr/bin/env bash
|
||||
set -euo pipefail
|
||||
|
||||
usage() {
|
||||
cat <<'USAGE'
|
||||
Configure an SSH alias and optionally install the current public key for passwordless login.
|
||||
|
||||
Usage:
|
||||
ssh_alias_setup.sh [options] ALIAS HOST
|
||||
|
||||
Options:
|
||||
-u, --user USER SSH user (default: root)
|
||||
-p, --port PORT SSH port (default: 22)
|
||||
-i, --key PATH Identity file (default: ~/.ssh/id_ed25519)
|
||||
--install-key Run ssh-copy-id after writing the alias
|
||||
--no-accept-new Disable StrictHostKeyChecking=accept-new
|
||||
--dry-run Print planned actions without changing files
|
||||
-h, --help Show help
|
||||
|
||||
Environment:
|
||||
SSH_CONFIG_FILE Override SSH config path for testing
|
||||
REMOTE_KEY Default key path
|
||||
REMOTE_PORT Default SSH port
|
||||
|
||||
Examples:
|
||||
ssh_alias_setup.sh bigmengya 192.168.1.233 --install-key
|
||||
ssh_alias_setup.sh -u ubuntu -p 2222 devbox 10.0.0.8
|
||||
USAGE
|
||||
}
|
||||
|
||||
expand_path() {
|
||||
local value="$1"
|
||||
case "$value" in
|
||||
~) printf '%s\n' "$HOME" ;;
|
||||
~/*) printf '%s/%s\n' "$HOME" "${value#~/}" ;;
|
||||
*) printf '%s\n' "$value" ;;
|
||||
esac
|
||||
}
|
||||
|
||||
user="root"
|
||||
port="${REMOTE_PORT:-22}"
|
||||
key="${REMOTE_KEY:-$HOME/.ssh/id_ed25519}"
|
||||
accept_new=true
|
||||
install_key=false
|
||||
dry_run=false
|
||||
|
||||
while [[ $# -gt 0 ]]; do
|
||||
case "$1" in
|
||||
-u|--user)
|
||||
user="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-p|--port)
|
||||
port="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-i|--key)
|
||||
key="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
--install-key)
|
||||
install_key=true
|
||||
shift
|
||||
;;
|
||||
--no-accept-new)
|
||||
accept_new=false
|
||||
shift
|
||||
;;
|
||||
--dry-run)
|
||||
dry_run=true
|
||||
shift
|
||||
;;
|
||||
-h|--help)
|
||||
usage
|
||||
exit 0
|
||||
;;
|
||||
--)
|
||||
shift
|
||||
break
|
||||
;;
|
||||
-*)
|
||||
echo "Unknown option: $1" >&2
|
||||
usage >&2
|
||||
exit 2
|
||||
;;
|
||||
*)
|
||||
break
|
||||
;;
|
||||
esac
|
||||
done
|
||||
|
||||
if [[ $# -lt 2 ]]; then
|
||||
usage >&2
|
||||
exit 2
|
||||
fi
|
||||
|
||||
alias_name="$1"
|
||||
host="$2"
|
||||
key="$(expand_path "$key")"
|
||||
config_file="$(expand_path "${SSH_CONFIG_FILE:-$HOME/.ssh/config}")"
|
||||
ssh_dir="$(dirname "$config_file")"
|
||||
key_pub="${key}.pub"
|
||||
key_dir="$(dirname "$key")"
|
||||
|
||||
if $dry_run; then
|
||||
echo "Would ensure directory: $ssh_dir"
|
||||
echo "Would ensure key directory: $key_dir"
|
||||
else
|
||||
mkdir -p "$ssh_dir" "$key_dir"
|
||||
chmod 700 "$ssh_dir" "$key_dir"
|
||||
fi
|
||||
|
||||
if [[ ! -f "$key" ]]; then
|
||||
if $dry_run; then
|
||||
printf 'Would generate key: ssh-keygen -t ed25519 -C %q -f %q -N %q\n' "codex" "$key" ""
|
||||
else
|
||||
ssh-keygen -t ed25519 -C "codex" -f "$key" -N ""
|
||||
fi
|
||||
fi
|
||||
|
||||
if [[ ! -f "$key_pub" ]]; then
|
||||
echo "Public key not found: $key_pub" >&2
|
||||
exit 1
|
||||
fi
|
||||
|
||||
if $dry_run; then
|
||||
cat <<DRYRUN
|
||||
Would write/update SSH alias:
|
||||
Host $alias_name
|
||||
HostName $host
|
||||
User $user
|
||||
Port $port
|
||||
ServerAliveInterval 30
|
||||
ServerAliveCountMax 3
|
||||
ConnectTimeout 10
|
||||
StrictHostKeyChecking $( $accept_new && printf 'accept-new' || printf 'ask' )
|
||||
IdentityFile $key
|
||||
IdentitiesOnly yes
|
||||
DRYRUN
|
||||
else
|
||||
python3 - "$config_file" "$alias_name" "$host" "$user" "$port" "$key" "$accept_new" <<'PY'
|
||||
from pathlib import Path
|
||||
import sys
|
||||
|
||||
config_path = Path(sys.argv[1])
|
||||
alias_name = sys.argv[2]
|
||||
host = sys.argv[3]
|
||||
user = sys.argv[4]
|
||||
port = sys.argv[5]
|
||||
key = sys.argv[6]
|
||||
accept_new = sys.argv[7].lower() == 'true'
|
||||
|
||||
existing = config_path.read_text(encoding='utf-8') if config_path.exists() else ''
|
||||
lines = existing.splitlines()
|
||||
out: list[str] = []
|
||||
skip = False
|
||||
for line in lines:
|
||||
stripped = line.strip()
|
||||
if stripped.lower().startswith('host '):
|
||||
host_names = stripped[5:].split()
|
||||
if alias_name in host_names:
|
||||
skip = True
|
||||
continue
|
||||
skip = False
|
||||
out.append(line)
|
||||
continue
|
||||
if skip:
|
||||
continue
|
||||
out.append(line)
|
||||
|
||||
block = [
|
||||
f'Host {alias_name}',
|
||||
f' HostName {host}',
|
||||
f' User {user}',
|
||||
f' Port {port}',
|
||||
' ServerAliveInterval 30',
|
||||
' ServerAliveCountMax 3',
|
||||
' ConnectTimeout 10',
|
||||
f' StrictHostKeyChecking {"accept-new" if accept_new else "ask"}',
|
||||
f' IdentityFile {key}',
|
||||
' IdentitiesOnly yes',
|
||||
]
|
||||
text = '\n'.join(out).strip()
|
||||
if text:
|
||||
text += '\n\n'
|
||||
text += '\n'.join(block) + '\n'
|
||||
config_path.write_text(text, encoding='utf-8')
|
||||
PY
|
||||
chmod 600 "$config_file"
|
||||
fi
|
||||
|
||||
printf 'Alias ready: ssh %s\n' "$alias_name"
|
||||
printf 'Config file: %s\n' "$config_file"
|
||||
|
||||
if $install_key; then
|
||||
if ! command -v ssh-copy-id >/dev/null 2>&1; then
|
||||
echo 'ssh-copy-id is required but not installed.' >&2
|
||||
exit 1
|
||||
fi
|
||||
if ! [ -t 0 ]; then
|
||||
echo 'Warning: no TTY detected; password prompt may fail. Prefer running with a terminal/TTY.' >&2
|
||||
fi
|
||||
if $dry_run; then
|
||||
printf 'Would run: ssh-copy-id -i %q %q\n' "$key_pub" "$alias_name"
|
||||
else
|
||||
ssh-copy-id -i "$key_pub" "$alias_name"
|
||||
fi
|
||||
fi
|
||||
131
linux-ssh-operator-skill/scripts/ssh_copy.sh
Normal file
131
linux-ssh-operator-skill/scripts/ssh_copy.sh
Normal file
@@ -0,0 +1,131 @@
|
||||
#!/usr/bin/env bash
|
||||
set -euo pipefail
|
||||
|
||||
usage() {
|
||||
cat <<'USAGE'
|
||||
Copy files via scp with consistent options.
|
||||
|
||||
Usage:
|
||||
ssh_copy.sh [options] push HOST LOCAL_PATH REMOTE_PATH
|
||||
ssh_copy.sh [options] pull HOST REMOTE_PATH LOCAL_PATH
|
||||
|
||||
Options:
|
||||
-u, --user USER Override SSH user (or set REMOTE_USER)
|
||||
-p, --port PORT SSH port (default: REMOTE_PORT or 22)
|
||||
-i, --key PATH Identity file (default: REMOTE_KEY)
|
||||
-r, --recursive Copy directories recursively
|
||||
--accept-new Set StrictHostKeyChecking=accept-new
|
||||
--dry-run Print the scp command that would run
|
||||
-h, --help Show help
|
||||
|
||||
Environment defaults:
|
||||
REMOTE_USER, REMOTE_PORT, REMOTE_KEY
|
||||
|
||||
Examples:
|
||||
ssh_copy.sh push my-server ./app.tar.gz /tmp/app.tar.gz
|
||||
ssh_copy.sh --user ubuntu pull 10.0.0.1 /var/log/syslog ./syslog
|
||||
USAGE
|
||||
}
|
||||
|
||||
port="${REMOTE_PORT:-22}"
|
||||
user="${REMOTE_USER:-}"
|
||||
key="${REMOTE_KEY:-}"
|
||||
|
||||
recursive=false
|
||||
accept_new=false
|
||||
dry_run=false
|
||||
|
||||
while [[ $# -gt 0 ]]; do
|
||||
case "$1" in
|
||||
-u|--user)
|
||||
user="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-p|--port)
|
||||
port="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-i|--key)
|
||||
key="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-r|--recursive)
|
||||
recursive=true
|
||||
shift
|
||||
;;
|
||||
--accept-new)
|
||||
accept_new=true
|
||||
shift
|
||||
;;
|
||||
--dry-run)
|
||||
dry_run=true
|
||||
shift
|
||||
;;
|
||||
-h|--help)
|
||||
usage
|
||||
exit 0
|
||||
;;
|
||||
-*)
|
||||
echo "Unknown option: $1" >&2
|
||||
usage >&2
|
||||
exit 2
|
||||
;;
|
||||
*)
|
||||
break
|
||||
;;
|
||||
esac
|
||||
done
|
||||
|
||||
if [[ $# -lt 4 ]]; then
|
||||
usage >&2
|
||||
exit 2
|
||||
fi
|
||||
|
||||
direction="$1"
|
||||
shift
|
||||
|
||||
host="$1"
|
||||
shift
|
||||
|
||||
dest_host="$host"
|
||||
if [[ -n "$user" ]]; then
|
||||
host_no_user="${host#*@}"
|
||||
dest_host="${user}@${host_no_user}"
|
||||
fi
|
||||
|
||||
scp_opts=(-P "$port" -p)
|
||||
if [[ -n "$key" ]]; then
|
||||
scp_opts+=(-i "$key" -o "IdentitiesOnly=yes")
|
||||
fi
|
||||
if $recursive; then
|
||||
scp_opts+=(-r)
|
||||
fi
|
||||
if $accept_new; then
|
||||
scp_opts+=(-o "StrictHostKeyChecking=accept-new")
|
||||
fi
|
||||
|
||||
case "$direction" in
|
||||
push)
|
||||
local_path="$1"
|
||||
remote_path="$2"
|
||||
full_cmd=(scp "${scp_opts[@]}" "$local_path" "${dest_host}:${remote_path}")
|
||||
;;
|
||||
pull)
|
||||
remote_path="$1"
|
||||
local_path="$2"
|
||||
full_cmd=(scp "${scp_opts[@]}" "${dest_host}:${remote_path}" "$local_path")
|
||||
;;
|
||||
*)
|
||||
echo "Unknown direction: $direction (expected: push|pull)" >&2
|
||||
usage >&2
|
||||
exit 2
|
||||
;;
|
||||
esac
|
||||
|
||||
if $dry_run; then
|
||||
printf '%q ' "${full_cmd[@]}"
|
||||
printf '\n'
|
||||
exit 0
|
||||
fi
|
||||
|
||||
"${full_cmd[@]}"
|
||||
156
linux-ssh-operator-skill/scripts/ssh_run.sh
Normal file
156
linux-ssh-operator-skill/scripts/ssh_run.sh
Normal file
@@ -0,0 +1,156 @@
|
||||
#!/usr/bin/env bash
|
||||
set -euo pipefail
|
||||
|
||||
usage() {
|
||||
cat <<'USAGE'
|
||||
Run a remote command over SSH with consistent, script-friendly options.
|
||||
|
||||
Usage:
|
||||
ssh_run.sh [options] HOST -- COMMAND [ARG...]
|
||||
ssh_run.sh [options] HOST # interactive shell
|
||||
|
||||
Options:
|
||||
-u, --user USER Override SSH user (or set REMOTE_USER)
|
||||
-p, --port PORT SSH port (default: REMOTE_PORT or 22)
|
||||
-i, --key PATH Identity file (default: REMOTE_KEY)
|
||||
-t, --tty Force pseudo-tty allocation (useful for sudo prompts)
|
||||
--accept-new Set StrictHostKeyChecking=accept-new
|
||||
--sudo Prefix command with sudo --
|
||||
--sudo-non-interactive Prefix command with sudo -n -- (fails if password needed)
|
||||
--connect-timeout SEC Connect timeout (default: REMOTE_CONNECT_TIMEOUT or 10)
|
||||
--dry-run Print the ssh command that would run
|
||||
-h, --help Show help
|
||||
|
||||
Environment defaults:
|
||||
REMOTE_USER, REMOTE_PORT, REMOTE_KEY, REMOTE_CONNECT_TIMEOUT
|
||||
|
||||
Examples:
|
||||
ssh_run.sh --user ubuntu 10.0.0.1 -- uname -a
|
||||
ssh_run.sh --tty --sudo my-server -- systemctl restart nginx
|
||||
USAGE
|
||||
}
|
||||
|
||||
port="${REMOTE_PORT:-22}"
|
||||
user="${REMOTE_USER:-}"
|
||||
key="${REMOTE_KEY:-}"
|
||||
connect_timeout="${REMOTE_CONNECT_TIMEOUT:-10}"
|
||||
|
||||
tty=false
|
||||
accept_new=false
|
||||
sudo_mode=""
|
||||
dry_run=false
|
||||
|
||||
while [[ $# -gt 0 ]]; do
|
||||
case "$1" in
|
||||
-u|--user)
|
||||
user="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-p|--port)
|
||||
port="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-i|--key)
|
||||
key="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
-t|--tty)
|
||||
tty=true
|
||||
shift
|
||||
;;
|
||||
--accept-new)
|
||||
accept_new=true
|
||||
shift
|
||||
;;
|
||||
--sudo)
|
||||
sudo_mode="sudo"
|
||||
shift
|
||||
;;
|
||||
--sudo-non-interactive)
|
||||
sudo_mode="sudo-n"
|
||||
shift
|
||||
;;
|
||||
--connect-timeout)
|
||||
connect_timeout="${2:-}"
|
||||
shift 2
|
||||
;;
|
||||
--dry-run)
|
||||
dry_run=true
|
||||
shift
|
||||
;;
|
||||
-h|--help)
|
||||
usage
|
||||
exit 0
|
||||
;;
|
||||
--)
|
||||
shift
|
||||
break
|
||||
;;
|
||||
-*)
|
||||
echo "Unknown option: $1" >&2
|
||||
usage >&2
|
||||
exit 2
|
||||
;;
|
||||
*)
|
||||
break
|
||||
;;
|
||||
esac
|
||||
done
|
||||
|
||||
if [[ $# -lt 1 ]]; then
|
||||
usage >&2
|
||||
exit 2
|
||||
fi
|
||||
|
||||
host="$1"
|
||||
shift
|
||||
|
||||
dest="$host"
|
||||
if [[ -n "$user" ]]; then
|
||||
host_no_user="${host#*@}"
|
||||
dest="${user}@${host_no_user}"
|
||||
fi
|
||||
|
||||
ssh_opts=(
|
||||
-p "$port"
|
||||
-o "ConnectTimeout=${connect_timeout}"
|
||||
-o "ServerAliveInterval=30"
|
||||
-o "ServerAliveCountMax=3"
|
||||
)
|
||||
|
||||
if [[ -n "$key" ]]; then
|
||||
ssh_opts+=(-i "$key" -o "IdentitiesOnly=yes")
|
||||
fi
|
||||
|
||||
if $accept_new; then
|
||||
ssh_opts+=(-o "StrictHostKeyChecking=accept-new")
|
||||
fi
|
||||
|
||||
if $tty; then
|
||||
ssh_opts+=(-tt)
|
||||
fi
|
||||
|
||||
cmd=("$@")
|
||||
if [[ ${#cmd[@]} -gt 0 && "${cmd[0]}" == "--" ]]; then
|
||||
cmd=("${cmd[@]:1}")
|
||||
fi
|
||||
if [[ -n "$sudo_mode" && ${#cmd[@]} -gt 0 ]]; then
|
||||
if [[ "$sudo_mode" == "sudo-n" ]]; then
|
||||
cmd=("sudo" "-n" "--" "${cmd[@]}")
|
||||
else
|
||||
cmd=("sudo" "--" "${cmd[@]}")
|
||||
fi
|
||||
fi
|
||||
|
||||
full_cmd=(ssh "${ssh_opts[@]}" "$dest")
|
||||
if [[ ${#cmd[@]} -gt 0 ]]; then
|
||||
full_cmd+=("${cmd[@]}")
|
||||
fi
|
||||
|
||||
if $dry_run; then
|
||||
printf '%q ' "${full_cmd[@]}"
|
||||
printf '\n'
|
||||
exit 0
|
||||
fi
|
||||
|
||||
"${full_cmd[@]}"
|
||||
Reference in New Issue
Block a user