summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorJeremy Stanley <fungi@yuggoth.org>2019-03-14 13:28:35 +0000
committerJeremy Stanley <fungi@yuggoth.org>2019-03-14 15:47:17 +0000
commit19355963673727d6529d8c41cfd459cbf688f36c (patch)
treed248ea2ffd2ea06172fbf01bbf314c1d428f53e4
parent0d3b5278d186eb91881665c74dc70712c0e908e2 (diff)
Support ~/.gnupg subdirs in remove-gpgkey role
Newer versions of GNU Privacy Guard place some files in a private-keys-v1.d subdirectory of ~/.gnupg so calling shred on them needs extra care (shred has no recursive option). Instead of relying on globbing, use find to filter to a list of files under that tree so that shredding them will still work. Change-Id: I69ed78b1b6d642d71b5e426c9ed254b3e5097ae3
Notes
Notes (review): Code-Review+2: James E. Blair <corvus@inaugust.com> Code-Review+2: Monty Taylor <mordred@inaugust.com> Workflow+1: Monty Taylor <mordred@inaugust.com> Verified+2: Zuul Submitted-by: Zuul Submitted-at: Thu, 14 Mar 2019 16:10:22 +0000 Reviewed-on: https://review.openstack.org/643328 Project: openstack-infra/zuul-jobs Branch: refs/heads/master
-rw-r--r--roles/remove-gpgkey/tasks/main.yaml2
1 files changed, 1 insertions, 1 deletions
diff --git a/roles/remove-gpgkey/tasks/main.yaml b/roles/remove-gpgkey/tasks/main.yaml
index e36f111..7f0c6af 100644
--- a/roles/remove-gpgkey/tasks/main.yaml
+++ b/roles/remove-gpgkey/tasks/main.yaml
@@ -1,2 +1,2 @@
1- name: Remove GPG key 1- name: Remove GPG key
2 command: "sh -c 'shred -u ~/.gnupg/*'" 2 shell: 'find ~/.gnupg/ -type f -exec shred -u {} \\;'