-
Notifications
You must be signed in to change notification settings - Fork 162
/
parse_secrets.go
107 lines (91 loc) · 2.1 KB
/
parse_secrets.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
package dockercreds
import (
"encoding/json"
"os"
"path/filepath"
"strings"
"github.com/google/go-containerregistry/pkg/authn"
"github.com/pivotal/kpack/pkg/secret"
"github.com/pkg/errors"
)
func ParseDockerConfigSecret(dir string) (DockerCreds, error) {
dockerCfg, err := parseDockerCfg(filepath.Join(dir, ".dockercfg"))
if err != nil {
return nil, err
}
dockerJson, err := parseDockerConfigJson(filepath.Join(dir, ".dockerconfigjson"))
if err != nil {
return nil, err
}
return dockerCfg.Append(dockerJson)
}
func ParseBasicAuthSecrets(volumeName string, secrets []string) (DockerCreds, error) {
var dockerCreds = DockerCreds{}
for _, s := range secrets {
splitSecret := strings.Split(s, "=")
if len(splitSecret) != 2 {
return nil, errors.Errorf("could not parse docker secret argument %s", s)
}
secretName := splitSecret[0]
domain := splitSecret[1]
auth, err := secret.ReadBasicAuthSecret(volumeName, secretName)
if err != nil {
return nil, err
}
dockerCreds[domain] = authn.AuthConfig{
Username: auth.Username,
Password: auth.Password,
}
}
return dockerCreds, nil
}
func parseDockerCfg(path string) (DockerCreds, error) {
var creds DockerCreds
cfgExists, err := fileExists(path)
if err != nil {
return nil, err
}
if !cfgExists {
return creds, nil
}
cfgFile, err := os.ReadFile(path)
if err != nil {
return nil, err
}
err = json.Unmarshal(cfgFile, &creds)
if err != nil {
return nil, err
}
return creds, nil
}
func parseDockerConfigJson(path string) (DockerCreds, error) {
config := dockerConfigJson{
Auths: map[string]authn.AuthConfig{},
}
configjsonExists, err := fileExists(path)
if err != nil {
return nil, err
}
if !configjsonExists {
return config.Auths, nil
}
configJsonFile, err := os.ReadFile(path)
if err != nil {
return nil, err
}
err = json.Unmarshal(configJsonFile, &config)
if err != nil {
return nil, err
}
return config.Auths, nil
}
func fileExists(file string) (bool, error) {
_, err := os.Stat(file)
if err != nil {
if os.IsNotExist(err) {
return false, nil
}
return false, nil
}
return true, nil
}