]> git.madduck.net Git - code/molly-guard.git/blobdiff - shutdown

madduck's git repository

Every one of the projects in this repository is available at the canonical URL git://git.madduck.net/madduck/pub/<projectpath> — see each project's metadata for the exact URL.

All patches and comments are welcome. Please squash your changes to logical commits before using git-format-patch and git-send-email to patches@git.madduck.net. If you'd read over the Git project's submission guidelines and adhered to them, I'd be especially grateful.

SSH access, as well as push access can be individually arranged.

If you use my repositories frequently, consider adding the following snippet to ~/.gitconfig and using the third clone URL listed for each project:

[url "git://git.madduck.net/madduck/"]
  insteadOf = madduck:

preparing 0.3-1 release
[code/molly-guard.git] / shutdown
index 65fd374b2dfd87e8050394085ae2f07941bb9606..46aa45f7e0a2cf3d3795a6f43d05c22e1166bee6 100755 (executable)
--- a/shutdown
+++ b/shutdown
@@ -15,10 +15,11 @@ CMD="${0##*/}"
 EXEC="/sbin/$CMD"
 
 case "$CMD" in
 EXEC="/sbin/$CMD"
 
 case "$CMD" in
-  halt|reboot|shutdown)
+  halt|reboot|shutdown|poweroff)
     if [ ! -f $EXEC ]; then
       echo "E: $ME: not a regular file: $EXEC" >&2
       exit 4
     if [ ! -f $EXEC ]; then
       echo "E: $ME: not a regular file: $EXEC" >&2
       exit 4
+    fi
     if [ ! -x $EXEC ]; then
       echo "E: $ME: not an executable: $EXEC" >&2
       exit 3
     if [ ! -x $EXEC ]; then
       echo "E: $ME: not an executable: $EXEC" >&2
       exit 3
@@ -29,29 +30,99 @@ case "$CMD" in
     exit 1
     ;;
 esac
     exit 1
     ;;
 esac
-ARGS="$@"
+
+usage()
+{
+  cat <<-_eousage
+       Usage: $ME [options]
+              (shielding $EXEC)
+
+       Instead of invoking $EXEC directly, $ME will prompt the user for the
+       machine's hostname to guard against accidental shutdowns/reboots, if the
+       current shell is a child of an SSH connection (or --pretend-ssh) has been
+       given on the command line, if the shell is connected to an interactive
+       terminal, and the actual command to execute is does not involve --help or is
+       \`shutdown -c'.
+
+       Only if the user enters the machine's hostname correctly will $ME take
+       action. Specifying --molly-guard-do-nothing as argument to the command will
+       make $ME echo the command it would execute rather than actually executing
+       it.
+
+       The actual command's help output follows:
+
+       _eousage
+}
+
+ARGS=
+DO_NOTHING=0
+PRETEND_SSH=0
+for arg in "$@"; do
+  case "$arg" in
+    (*-molly-guard-do-nothing) DO_NOTHING=1;;
+    (*-help)
+      usage 2>&1
+      eval $EXEC --help 2>&1
+      exit 0
+      ;;
+    (*-pretend-ssh) PRETEND_SSH=1;;
+    *) ARGS="${ARGS:+$ARGS }$arg";;
+  esac
+done
 
 do_real_cmd()
 {
 
 do_real_cmd()
 {
-  exec $EXEC "$ARGS"
+  if [ $DO_NOTHING -eq 1 ]; then
+    echo "$ME: would run: $EXEC $ARGS"
+    exit 0
+  else
+    eval exec $EXEC "$ARGS"
+  fi
 }
 
 }
 
-# require $SSH_CONNECTION to be set, indicates an SSH session
-[ -n "${SSH_CONNECTION:-}" ] || do_real_cmd
+if [ $DO_NOTHING -eq 1 ]; then
+  echo "I: demo mode; $ME will not do anything due to --molly-guard-do-nothing."
+fi
+
 # require an interactive terminal connected to stdin
 test -t 0                    || do_real_cmd
 # require an interactive terminal connected to stdin
 test -t 0                    || do_real_cmd
-# pass through help commands
+
+# only run if we are being called over SSH, that is if the current terminal
+# was created by sshd.
+PTS=$(readlink /proc/$$/fd/0)
+if ! pgrep -f "^sshd.+${PTS#/dev/}[[:space:]]*$" >/dev/null; then
+  if [ $PRETEND_SSH -eq 1 ]; then
+    echo "I: this is not an SSH session, but --pretend-ssh was given..."
+  else
+    do_real_cmd
+  fi
+else
+  echo "W: $ME: SSH session detected!"
+fi
+
+# pass through certain commands
 case "$CMD $ARGS" in
 case "$CMD $ARGS" in
-  'shutdown*-c'|'*-h') do_real_cmd;;
-  *) :;;
+  (*shutdown\ *-c*) 
+    echo "I: executing $CMD $ARGS regardless of SSH session."
+    do_real_cmd
+    ;;
 esac
 
 esac
 
-echo -n "$ME: SSH session detected, type in hostname of the machine to $CMD: "
-read HOSTNAME_USER
-
 HOSTNAME="$(hostname)"
 
 HOSTNAME="$(hostname)"
 
-if [ "$HOSTNAME_USER" != "$HOSTNAME" ]; then
+sigh()
+{
   echo "Good thing I asked; I won't $CMD $HOSTNAME ..."
   exit 2
   echo "Good thing I asked; I won't $CMD $HOSTNAME ..."
   exit 2
-fi
+}
+
+trap 'echo;sigh' 1 2 3 9 10 12 15
+
+echo -n "Please type in hostname of the machine to $CMD: "
+read HOSTNAME_USER || :
+
+[ "$HOSTNAME_USER" = "$HOSTNAME" ] || sigh
+
+trap - 1 2 3 9 10 12 15
+
+do_real_cmd