summaryrefslogtreecommitdiff
path: root/utils/update-rd-tokens
blob: 4004e5d53772c6aaac5bf93272437e5cfa33f5bd (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
#!/usr/bin/perl -w
#
#  rhrdlibs
#
#  Copyright (C) 2015 Christian Pointner <equinox@helsinki.at>
#
#  This file is part of rhrdlibs.
#
#  rhrdlibs is free software: you can redistribute it and/or modify
#  it under the terms of the GNU Affero General Public License as published by
#  the Free Software Foundation, either version 3 of the License, or
#  any later version.
#
#  rhrdlibs is distributed in the hope that it will be useful,
#  but WITHOUT ANY WARRANTY; without even the implied warranty of
#  MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
#  GNU Affero General Public License for more details.
#
#  You should have received a copy of the GNU Affero General Public License
#  along with rhrdlibs. If not, see <http://www.gnu.org/licenses/>.
#

use strict;
use RHRD::rddb;
use String::MkPasswd qw(mkpasswd);

# this is ridiculous but makes it a little harder to change user passwords...
if ($> != 0 ) {
  print STDERR "this must be run as root!\n";
  exit 1;
}

my $num_args = $#ARGV + 1;
if ($num_args <= 0) {
  print STDERR "WARNING: this will update all user tokens (except for admin)\n";
}

my %EXCLUDED_USERS = map { $_ => 1 } @ARGV;
$EXCLUDED_USERS{'admin'} = 1;
my $ret = 0;

my ($ctx, undef, $errorstring) = RHRD::rddb::init();
if(defined $ctx) {
  my @users = RHRD::rddb::list_users($ctx);
  if(!defined $users[0] && defined $users[2]) {
    print STDERR "$users[2]\n";
    $ret = 1;
  } else {
    foreach my $user (@users) {
      next if(exists($EXCLUDED_USERS{$user}));
      my $token = mkpasswd(-length => 16, -minnum => 3, -minupper => 3, -minspecial => 0);
      RHRD::rddb::set_token($ctx, $user, $token);
      print "$user -> $token\n";
    }
  }

  RHRD::rddb::destroy($ctx);
} else {
  print STDERR "$errorstring\n";
  $ret = 1;
}

exit $ret;