2024-12-22 05:08:23 +00:00
|
|
|
#!/bin/bash -e
|
2024-12-22 07:05:23 +00:00
|
|
|
set -o pipefail
|
2024-12-22 05:08:23 +00:00
|
|
|
|
|
|
|
function get_token() {
|
2024-12-22 06:33:27 +00:00
|
|
|
kubectl exec statefulset/app -- gitea admin user generate-access-token \
|
2024-12-22 06:15:20 +00:00
|
|
|
--username "$name" \
|
|
|
|
--token-name "${name^^}" \
|
2024-12-22 05:08:23 +00:00
|
|
|
--scopes "$scopes" \
|
|
|
|
| awk '{print $NF}'
|
|
|
|
}
|
|
|
|
|
2024-12-22 06:15:20 +00:00
|
|
|
name="$1"
|
2024-12-22 05:08:23 +00:00
|
|
|
scopes="$2"
|
2024-12-22 06:15:20 +00:00
|
|
|
email="$name@$BASE_URL"
|
|
|
|
secret="gitea-$name"
|
2024-12-22 06:47:14 +00:00
|
|
|
passwd="$(kgseckey "$secret" password)"
|
2024-12-22 05:08:23 +00:00
|
|
|
|
2024-12-22 06:47:14 +00:00
|
|
|
if [ -z "$passwd" ]; then
|
|
|
|
passwd="$(openssl rand -hex 32)"
|
|
|
|
kubectl exec statefulset/app -- \
|
|
|
|
gitea admin user create --admin --must-change-password=false \
|
|
|
|
--email "$email" \
|
|
|
|
--username "$name" \
|
|
|
|
--password "$passwd"
|
2024-12-22 05:08:23 +00:00
|
|
|
fi
|
|
|
|
|
2024-12-22 06:47:14 +00:00
|
|
|
opts=()
|
|
|
|
[ -n "$scopes" ] && opts+=(
|
|
|
|
--from-literal=token="$(kgseckey "$secret" token || get_token)"
|
|
|
|
--from-literal=tokenscopes="$scopes"
|
|
|
|
)
|
|
|
|
|
|
|
|
kcreatesec "$secret" \
|
|
|
|
--from-literal=email="$email" \
|
|
|
|
--from-literal=username="$name" \
|
|
|
|
--from-literal=password="$passwd" \
|
|
|
|
"${opts[@]}"
|