Skip to content

Update SSH keys delete script

Mark Lapierre requested to merge ml-update-delete-ssh-keys-script into master

What does this MR do?

While updating the script to account for !30575 (merged) I stumbled across a few more changes that could be made.

  • Defaults to deleting keys with new title prefix 'E2E test key:'
  • Allows specifying the part of the title to match
  • Allows a dry run that lists keys without deleting them
  • Allows deletion only if keys were created before a given date
  • Handles pagination
  • Deletes keys for the user who owns the access token supplied. This lets us use the script in prod or other environments where we don't have an admin account

Should wait until !30575 (merged) is merged before running the script with defaults because it expects new keys to have the title set in that MR. Might as well wait until the new keys start showing up before running the script again to delete all the old ones.

Does this MR meet the acceptance criteria?

Conformity

Availability and Testing

Security

If this MR contains changes to processing or storing of credentials or tokens, authorization and authentication methods and other items described in the security review guidelines:

  • [-] Label as security and @ mention @gitlab-com/gl-security/appsec
  • [-] The MR includes necessary changes to maintain consistency between UI, API, email, or other methods
  • [-] Security reports checked/validated by a reviewer from the AppSec team
Edited by Mark Lapierre

Merge request reports