From b0aae24684d1a74ecfababe4886ac369333dbe26 Mon Sep 17 00:00:00 2001 From: Lukas Kaufmann Date: Sat, 17 Feb 2024 19:35:42 +0100 Subject: [PATCH] Add Hetzner DNS scripts Allow the use of Hetzner DNS via scripts --- dns_scripts/dns_add_hetzner | 48 +++++++++++++++++++++++++++++++++++++ dns_scripts/dns_del_hetzner | 47 ++++++++++++++++++++++++++++++++++++ 2 files changed, 95 insertions(+) create mode 100644 dns_scripts/dns_add_hetzner create mode 100644 dns_scripts/dns_del_hetzner diff --git a/dns_scripts/dns_add_hetzner b/dns_scripts/dns_add_hetzner new file mode 100644 index 0000000..84015ad --- /dev/null +++ b/dns_scripts/dns_add_hetzner @@ -0,0 +1,48 @@ +#!/usr/bin/env bash + +fulldomain="${1}" +token="${2}" +api_url="https://dns.hetzner.com/api/v1" +api_key=${HETZNER_KEY:-''} +zone_id=${HETZNER_ZONE_ID:-''} +zone_name=${HETZNER_ZONE_NAME:-''} + +# Verify that required parameters are set +if [[ -z "$fulldomain" ]]; then + echo "DNS script requires full domain name as first parameter" + exit 1 +fi +if [[ -z "$token" ]]; then + echo "DNS script requires challenge token as second parameter" + exit 1 +fi +if [[ -z "$HETZNER_KEY" ]]; then + echo "HETZNER_KEY variable not set" + exit 1 +fi +if [ -z "$HETZNER_ZONE_ID" ] && [ -z "$HETZNER_ZONE_NAME" ] ; then + echo "HETZNER_ZONE_ID and HETZNER_ZONE_NAME variables not set" + exit 1 +fi + +# Get Zone ID if not set +if [ -z "$HETZNER_ZONE_ID" ] ; then + zone_id=$(curl --silent -X GET "$api_url/zones?name=$HETZNER_ZONE_NAME" -H 'Auth-API-Token: '"$api_key"'' | jq -r '.zones[0].id') +fi + +# domain_root=$(echo "$fulldomain" | awk -F\. '{print $(NF-1) FS $NF FS}') +# domain=${fulldomain%.$domain_root} +txtname="_acme-challenge.$fulldomain." + +echo $zone_id +# Create TXT record +response=$(curl --silent -X POST "$api_url/records" \ + -H 'Content-Type: application/json' \ + -H "Auth-API-Token: $api_key" \ + -d '{"value": "'$token'","ttl": 60,"type": "TXT","name": "_acme-challenge.'$fulldomain'.","zone_id": "'$zone_id'"}') +echo "$response" +# errors=$(echo "$response" | egrep -o "\"ERRORARRAY\":\[.*\]") +# if [[ $errors != "\"ERRORARRAY\":[]" ]]; then +# echo "Something went wrong: $errors" +# exit 1 +# fi diff --git a/dns_scripts/dns_del_hetzner b/dns_scripts/dns_del_hetzner new file mode 100644 index 0000000..9257612 --- /dev/null +++ b/dns_scripts/dns_del_hetzner @@ -0,0 +1,47 @@ +#!/usr/bin/env bash + +fulldomain="${1}" +token="${2}" +api_url="https://dns.hetzner.com/api/v1" +api_key=${HETZNER_KEY:-''} +zone_id=${HETZNER_ZONE_ID:-''} +zone_name=${HETZNER_ZONE_NAME:-''} + +# Verify that required parameters are set +if [[ -z "$fulldomain" ]]; then + echo "DNS script requires full domain name as first parameter" + exit 1 +fi +if [[ -z "$token" ]]; then + echo "DNS script requires challenge token as second parameter" + exit 1 +fi +if [[ -z "$HETZNER_KEY" ]]; then + echo "HETZNER_KEY variable not set" + exit 1 +fi +if [ -z "$HETZNER_ZONE_ID" ] && [ -z "$HETZNER_ZONE_NAME" ] ; then + echo "HETZNER_ZONE_ID and HETZNER_ZONE_NAME variables not set" + exit 1 +fi + +# Get Zone ID if not set +if [ -z "$HETZNER_ZONE_ID" ] ; then + zone_id=$(curl --silent -X GET "$api_url/zones?name=$HETZNER_ZONE_NAME" -H 'Auth-API-Token: '"$api_key"'' | jq -r '.zones[0].id') +fi + +# domain_root=$(echo "$fulldomain" | awk -F\. '{print $(NF-1) FS $NF FS}') +# domain=${fulldomain%.$domain_root} +txtname="_acme-challenge.$fulldomain." + + +record_id=$(curl --silent -X GET "$api_url/records?zone_id=$zone_id" -H "Auth-API-Token: $api_key" | jq -r '.records[] | select(.name=="'$txtname'") | .id') + +# Create TXT record +response=$(curl --silent -X DELETE "$api_url/records/$record_id" -H "Auth-API-Token: $api_key") + +# errors=$(echo "$response" | egrep -o "\"ERRORARRAY\":\[.*\]") +if [[ $response != "\"ERRORARRAY\":[]" ]]; then + echo "Something went wrong: $errors" + exit 1 +fi