summaryrefslogtreecommitdiff
path: root/scripts/encrypt-secret.sh
blob: 7c762d19e00853b26769754e889a67f68f4a8f71 (about) (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
#!/usr/bin/env bash
set -ex

# Simple script that uses OpenSSL to encrypt a provided file with a provided key, and writes the result
# to the provided path. Yes it's very needy.

INPUT_FILE=$1
OUTPUT_FILE=$2
ENCRYPT_KEY=$3

if [[ -n "$ENCRYPT_KEY" && -n "$INPUT_FILE" && -n "$OUTPUT_FILE" ]]; then
    openssl enc -aes-256-cbc -md sha256 -pbkdf2 -e -in "${INPUT_FILE}" -out "${OUTPUT_FILE}" -k "${ENCRYPT_KEY}"
else
    echo "Usage: ./encrypt-secret.sh <input file> <output file> <encryption key>"
fi