Public Access
- scripts/ota_keygen.sh: ECDSA P-256 key pair; the private key goes to ~/.config/roro9stack/ (0600), the public key to keys/ and src/platform/ota_public_key.h; .gitignore refuses *key.pem - scripts/make_ota.py: wraps firmware.bin into a signed .ota (openssl) - scripts/ota_push.py: sends it over TCP 3232, prints the device's answer - scripts/flash.sh --ota <host>: build, sign, push Checked: a generated .ota has the documented layout and its signature verifies with openssl against the committed public key. Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01EhqxQ49eCju4CzKYNjZzwT
27 lines
1.6 KiB
Bash
Executable File
27 lines
1.6 KiB
Bash
Executable File
#!/usr/bin/env bash
|
|
# Flash the firmware over USB, then open the serial monitor.
|
|
# Usage: scripts/flash.sh [port] USB (default: the first Espressif device found)
|
|
# scripts/flash.sh --ota [host] Wi-Fi: build, sign and push a Firmware Update
|
|
# (host: the device's IP from Settings > About, or $RORO_OTA_HOST)
|
|
set -euo pipefail
|
|
|
|
if [ "${1:-}" = "--ota" ]; then
|
|
ROOT="$(cd "$(dirname "$0")/.." && pwd)"
|
|
HOST="${2:-${RORO_OTA_HOST:-}}"
|
|
[ -n "$HOST" ] || { echo "Usage: scripts/flash.sh --ota <device IP> (or set RORO_OTA_HOST)" >&2; exit 1; }
|
|
source "$(dirname "$0")/_docker.sh"
|
|
DOCKER_EXTRA=()
|
|
run_in_container bash -c 'git config --global --add safe.directory /work && pio run -e cardputer-adv' | tail -3
|
|
VERSION="$(git -C "$ROOT" describe --tags --always --dirty)"
|
|
OUT="$ROOT/.pio/build/cardputer-adv/roro9stack-$VERSION.ota"
|
|
"$ROOT/scripts/make_ota.py" "$ROOT/.pio/build/cardputer-adv/firmware.bin" "$VERSION" "$OUT"
|
|
exec "$ROOT/scripts/ota_push.py" "$OUT" "$HOST"
|
|
fi
|
|
PORT="${1:-$(readlink -f /dev/serial/by-id/*Espressif* 2>/dev/null | head -1)}"
|
|
[ -n "$PORT" ] || { echo "No Cardputer found on USB (is it plugged in / attached to the VM?)" >&2; exit 1; }
|
|
source "$(dirname "$0")/_docker.sh"
|
|
docker rm -f roro9stack-serial >/dev/null 2>&1 || true # a serial log would hold the port
|
|
DOCKER_EXTRA=(--device "$PORT" --group-add "$(stat -c %g "$PORT")" -it)
|
|
|
|
run_in_container bash -c "git config --global --add safe.directory /work && pio run -e cardputer-adv -t upload --upload-port $PORT && pio device monitor -p $PORT -b 115200"
|