-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathsecure-backup-remote.sh
executable file
·138 lines (119 loc) · 3.33 KB
/
secure-backup-remote.sh
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
#!/bin/bash
function usage {
cat<<EOF
usage: secure-backup-remote.sh [-tdN] /absolute-dir [email protected]
[email protected]:foo.DATE.tar.gpg
Optional arguments:
-d Sets a delay of N days based on the previous successful exeuction and
INCREMENTALLY backs up the files.
-t Test mode. Searches for files, excluding files from $HOME/.arc-excludes
The string DATE will be replaced with today's date
To decrypt: gpg --decrypt foo.DATE.tar.gpg | tar -xv
EOF
exit 1
}
DELAY=0
DELAYCMD=""
while getopts ":htd:?" options; do
case $options in
d ) DELAY=$OPTARG
DELAYCMD="( -ctime -${DELAY} -o -mtime -${DELAY} )"
shift $(($OPTIND - 1)) ;; # 2 args
h ) usage;;
\? ) usage;;
t ) TEST=t
shift $(($OPTIND - 1));; # 1 arg
* ) usage;;
esac
done
if [ -z "$3" ]; then
usage
fi
if [ ! -f $HOME/.arc-excludes ]; then
cat<<EOF
Error, \$HOME/.arc-excludes file missing!
The syntax of the file is one regex per line as such:
/.svn/
/.ssh/
/CVS/
/.Trash/
EOF
exit 1
fi
ABSOLUTEDIR=$1
RELATIVEDIR=`basename ${ABSOLUTEDIR}`
GPGKEY=$2
TARGETUSRHOST=`echo $3 | cut -d ":" -f 1`
TARGETHOST=`echo $TARGETUSRHOST | cut -d "@" -f 2`
TARGETFILE=`echo $3 | cut -d ":" -f 2`
# date replacement
NOW=`date +"%Y-%m-%d"`
TARGETFILE=${TARGETFILE/DATE/${NOW}}
# modification date, in epoch
NOWEXE=`date +"%s"`
PREVEXE=`stat -c %Y $HOME/.arc-includes|cut -f 1 -d " "`
DAYSAGO=`echo "(${NOWEXE}-${PREVEXE})/86400"|bc`
#echo "0 $0"
#echo "1 $1"
#echo "2 $2"
#echo "3 $3"
#echo "ABSOLUTEDIR $ABSOLUTEDIR"
#echo "RELATIVEDIR $RELATIVEDIR"
#echo "GPGKEY $GPGKEY"
#echo "TARGETHOST $TARGETHOST"
#echo "TARGETUSRHOST $TARGETUSRHOST"
#echo "TARGETFILE $TARGETFILE"
#echo "NOWEXE $NOWEXE"
#echo "PREVEXE $PREVEXE"
#echo "DAYSAGO $DAYSAGO"
#echo "DELAY $DELAY"
#echo "DELAYCMD $DELAYCMD"
#exit
if [ "${DELAY}" -gt "0" ]; then
if [ "${DAYSAGO}" -gt "${DELAY}" ]; then
echo "Last run ${DAYSAGO} days ago. Delay of ${DELAY} days exceed."
else
echo "Last run ${DAYSAGO} days ago. Delay of ${DELAY} days NOT exceed."
echo "exiting"
exit 0
fi
fi
# go to directory above
pushd ${ABSOLUTEDIR}/.. > /dev/null
if [ "0" -ne "$?" ]; then
echo "absolute directory ${ABSOLUTEDIR} not found";
exit 1
fi
# target host
echo "pinging ${TARGETHOST}"
ping -c 1 ${TARGETHOST} > /dev/null 2>&1
if [ "0" -ne "$?" ]; then
echo "target host ${TARGETHOST} not found";
exit 1
fi
echo "finding files..."
find ./$RELATIVEDIR -mount -xdev -type f ${DELAYCMD} -print | grep -v --file ~/.arc-excludes > ~/.arc-includes
# test mode?
if [ -n "${TEST}" ]; then
total=0
while read line; do
count=`du --apparent-size --block-size=1K "${line}" | cut -f 1`
total=$(($total+$count))
done < ~/.arc-includes
#less ~/.arc-includes
emacs ~/.arc-includes
totalmb=$($total/1024)
echo "unencrypted size: ${totalmb}M"
echo -n "continue with backup?"
read yn
if [ "$yn" == "n" ]; then
popd > /dev/null
exit 1
fi
fi
echo "found `wc -l ~/.arc-includes` files"
# secure, remote, backup
tar --files-from ~/.arc-includes -pc | gpg --encrypt --recipient ${GPGKEY} | ssh -c blowfish ${TARGETUSRHOST} dd of=${TARGETFILE}
echo "done".
echo "to decrypt: gpg --decrypt `basename ${TARGETFILE}` | tar -xv"
popd > /dev/null