keyctl/README.md
2023-03-21 01:18:48 +01:00

54 lines
780 B
Markdown

# KeyCtl - deliver secret keys with manual confirmation
## Server
```
./keyctl server
```
## Client
### Admin Access
Admin access is only allowed via the Unix Domain Socket connection.
```
export KEYCTL_ENDPOINT=unix:///var/keyctl/keyctl.sock
```
```
./keyctl ls
```
### Get Secret
The API to retrieve a secret can be called from any source IP.
```
export KEYCTL_ENDPOINT=http://127.0.0.1:7070
```
```
./keyctl get -id aabbccddeeff...
```
Get secret of type `shamir` with share via environment variable:
```
export KEYCTL_SHARE=aabbccddeeff...
./keyctl get -id aabbccddeeff...
```
Get secret of type `shamir` with share via commandline flag:
```
./keyctl get -id aabbccddeeff... -share aabbccddeeff...
```
## Usage
```
./keyctl --help
./keyctl server --help
```