summaryrefslogtreecommitdiff
path: root/modules/auth-config.el
blob: 87b10e8b66a70902e50e436b4c9b1a4afef0bd10 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
;; auth-config.el --- Configuration for Authentication Utilities -*- lexical-binding: t; -*-
;; author Craig Jennings <c@cjennings.net>

;;; Commentary:
;;
;; Configuration for Emacs authentication and GPG integration:

;; • auth-source
;;   – Forces use of your default authinfo file
;;   – Disable external GPG agent in favor of Emacs’s own prompt
;;   – Enable auth-source debug messages

;; • Easy PG Assistant (epa)
;;   – Force using the ‘gpg2’ executable for encryption/decryption operations

;;; Code:

(require 'user-constants) ;; defines authinfo-file location

;; -------------------------------- Auth Sources -------------------------------
;; auth sources settings

(use-package auth-source
  :ensure nil                           ;; built in
  :demand t                             ;; load this package immediately
  :config
  (setenv "GPG_AGENT_INFO" nil)         ;; disassociate with external gpg agent
  (setq auth-sources `(,authinfo-file)) ;; use authinfo.gpg (see user-constants.el)
  (setq auth-source-debug t))           ;; echo debug info to Messages

;; ----------------------------- Easy PG Assistant -----------------------------
;; Key management, cryptographic operations on regions and files, dired
;; integration, and automatic encryption/decryption of *.gpg files.

(use-package epa
  :ensure nil                        ;; built-in
  :defer .5
  :config
  (setq epg-gpg-program "gpg2"))     ;; force use gpg2 (not gpg v.1)
  (setq epg-pinentry-mode 'loopback) ;; emacs request passwords in minibuffer


(provide 'auth-config)
;;; auth-config.el ends here.

;; --------------------------------- ERT Tests ---------------------------------
;; Run these tests with M-x ert RET t RET

(require 'ert)
(require 'cl-lib)

(ert-deftest auth-config/authinfo-file-exists ()
  "Verify that `authinfo-file` actually exists on disk."
  (should (and (stringp authinfo-file)
               (file-exists-p authinfo-file))))

(ert-deftest auth-config/gpg2-is-on-path ()
  "Verify that the `gpg2` executable is on the user’s PATH."
  (should (executable-find "gpg2")))