Unset SSH environment variables after key file creation for enhanced security
This commit is contained in:
@@ -107,6 +107,10 @@ local function createSSHKeyFilesFromEnv()
|
|||||||
pub_fh:close()
|
pub_fh:close()
|
||||||
os.execute(("chmod 644 %q"):format(SSH_IDENTITY_FILE .. ".pub"))
|
os.execute(("chmod 644 %q"):format(SSH_IDENTITY_FILE .. ".pub"))
|
||||||
log("Wrote SSH public key to " .. SSH_IDENTITY_FILE .. ".pub")
|
log("Wrote SSH public key to " .. SSH_IDENTITY_FILE .. ".pub")
|
||||||
|
|
||||||
|
-- Unset the env vars for security
|
||||||
|
os.setenv("SSH_PRIVATE_KEY", "")
|
||||||
|
os.setenv("SSH_PUBLIC_KEY", "")
|
||||||
end
|
end
|
||||||
|
|
||||||
local function main()
|
local function main()
|
||||||
|
|||||||
Reference in New Issue
Block a user