-
Notifications
You must be signed in to change notification settings - Fork 384
/
servicekey.go
87 lines (69 loc) · 2.1 KB
/
servicekey.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
package main
import (
"context"
"crypto/ed25519"
crand "crypto/rand"
"encoding/base64"
"flag"
"fmt"
"github.com/libp2p/go-libp2p-core/crypto"
"github.com/peterbourgon/ff/v3/ffcli"
"berty.tech/berty/v2/go/internal/cryptoutil"
"berty.tech/berty/v2/go/pkg/errcode"
)
func serviceKeyCommand() *ffcli.Command {
sk := ""
fsBuilder := func() (*flag.FlagSet, error) {
fs := flag.NewFlagSet("berty service-key [flags] [command]", flag.ExitOnError)
fs.StringVar(&sk, "auth.sk", "", "base64 encoded ed25519 private key to convert to a public key")
return fs, nil
}
c := &ffcli.Command{
Name: "service-key",
ShortUsage: "berty service-key [flags] [command]",
ShortHelp: "helper to generate a key for managed services",
FlagSetBuilder: fsBuilder,
Options: ffSubcommandOptions(),
UsageFunc: usageFunc,
Exec: func(ctx context.Context, args []string) error {
if len(args) == 0 {
return flag.ErrHelp
}
mode := args[0]
switch mode {
case "convert":
skSlice, err := base64.RawStdEncoding.DecodeString(sk)
if err != nil {
return errcode.ErrDeserialization.Wrap(err)
}
if l := len(skSlice); l != cryptoutil.KeySize {
return errcode.ErrInvalidInput.Wrap(fmt.Errorf("key length should be %d bytes, received %d bytes", cryptoutil.KeySize, l))
}
stdPrivKey := ed25519.NewKeyFromSeed(skSlice)
_, pubKey, err := crypto.KeyPairFromStdKey(&stdPrivKey)
if err != nil {
return errcode.ErrInternal.Wrap(err)
}
pubKeyRaw, err := pubKey.Raw()
if err != nil {
return errcode.ErrDeserialization.Wrap(err)
}
fmt.Printf("%s\n", base64.RawStdEncoding.EncodeToString(pubKeyRaw))
case "generate":
privKey, _, err := crypto.GenerateEd25519Key(crand.Reader)
if err != nil {
return errcode.ErrCryptoKeyGeneration.Wrap(err)
}
seed, err := cryptoutil.SeedFromEd25519PrivateKey(privKey)
if err != nil {
return errcode.ErrSerialization.Wrap(err)
}
fmt.Printf("%s\n", base64.RawStdEncoding.EncodeToString(seed))
default:
return flag.ErrHelp
}
return nil
},
}
return c
}