]> git.ipfire.org Git - ipfire-2.x.git/blob - config/cfgroot/header.pl
squidclamav: Never use IPv6.
[ipfire-2.x.git] / config / cfgroot / header.pl
1 # SmoothWall CGIs
2 #
3 # This code is distributed under the terms of the GPL
4 #
5 # (c) The SmoothWall Team
6 # Copyright (C) 2002 Alex Hudson - getcgihash() rewrite
7 # Copyright (C) 2002 Bob Grant <bob@cache.ucr.edu> - validmac()
8 # Copyright (c) 2002/04/13 Steve Bootes - add alias section, helper functions
9 # Copyright (c) 2002/08/23 Mark Wormgoor <mark@wormgoor.com> validfqdn()
10 # Copyright (c) 2003/09/11 Darren Critchley <darrenc@telus.net> srtarray()
11 #
12 package Header;
13
14 use CGI();
15 use Socket;
16 use Time::Local;
17
18 $|=1; # line buffering
19
20 $Header::revision = 'final';
21 $Header::swroot = '/var/ipfire';
22 $Header::graphdir='/srv/web/ipfire/html/graphs';
23 $Header::pagecolour = '#ffffff';
24 #$Header::tablecolour = '#a0a0a0';
25 $Header::tablecolour = '#FFFFFF';
26 $Header::bigboxcolour = '#F6F4F4';
27 $Header::boxcolour = '#EAE9EE';
28 $Header::bordercolour = '#000000';
29 $Header::table1colour = '#E0E0E0';
30 $Header::table2colour = '#F0F0F0';
31 $Header::colourred = '#993333';
32 $Header::colourorange = '#FF9933';
33 $Header::colouryellow = '#FFFF00';
34 $Header::colourgreen = '#339933';
35 $Header::colourblue = '#333399';
36 $Header::colourovpn = '#339999';
37 $Header::colourfw = '#000000';
38 $Header::colourvpn = '#990099';
39 $Header::colourerr = '#FF0000';
40 $Header::viewsize = 150;
41 $Header::errormessage = '';
42 my %menuhash = ();
43 my $menu = \%menuhash;
44 %settings = ();
45 %ethsettings = ();
46 @URI = ();
47
48 ### Make sure this is an SSL request
49 if ($ENV{'SERVER_ADDR'} && $ENV{'HTTPS'} ne 'on') {
50 print "Status: 302 Moved\r\n";
51 print "Location: https://$ENV{'SERVER_ADDR'}:444/$ENV{'PATH_INFO'}\r\n\r\n";
52 exit 0;
53 }
54
55 ### Initialize environment
56 &General::readhash("${swroot}/main/settings", \%settings);
57 &General::readhash("${swroot}/ethernet/settings", \%ethsettings);
58 $language = $settings{'LANGUAGE'};
59 $hostname = $settings{'HOSTNAME'};
60 $hostnameintitle = 0;
61
62 ### Initialize language
63 if ($language =~ /^(\w+)$/) {$language = $1;}
64
65 ### Read English Files
66 if ( -d "/var/ipfire/langs/en/" ) {
67 opendir(DIR, "/var/ipfire/langs/en/");
68 @names = readdir(DIR) or die "Cannot Read Directory: $!\n";
69 foreach $name(@names) {
70 next if ($name eq ".");
71 next if ($name eq "..");
72 next if (!($name =~ /\.pl$/));
73 require "${swroot}/langs/en/${name}";
74 };
75 };
76
77
78 ### Enable Language Files
79 if ( -d "/var/ipfire/langs/${language}/" ) {
80 opendir(DIR, "/var/ipfire/langs/${language}/");
81 @names = readdir(DIR) or die "Cannot Read Directory: $!\n";
82 foreach $name(@names) {
83 next if ($name eq ".");
84 next if ($name eq "..");
85 next if (!($name =~ /\.pl$/));
86 require "${swroot}/langs/${language}/${name}";
87 };
88 };
89
90 ### Read IPFire Buildversion
91 $FIREBUILD = "File not found: firebuild\n";
92 if (open(MYFile, "<${swroot}/firebuild")) {
93 $FIREBUILD = <MYFile>;
94 chomp($FIREBUILD);
95 $FIREBUILD = "(Build: $FIREBUILD)";
96 close(MYFile);
97 };
98
99 require "${swroot}/langs/en.pl";
100 require "${swroot}/langs/${language}.pl";
101 eval `/bin/cat /srv/web/ipfire/html/themes/$settings{'THEME'}/include/functions.pl`;
102
103 sub orange_used () {
104 if ($ethsettings{'CONFIG_TYPE'} =~ /^[24]$/) {
105 return 1;
106 }
107 return 0;
108 }
109
110 sub blue_used () {
111 if ($ethsettings{'CONFIG_TYPE'} =~ /^[34]$/) {
112 return 1;
113 }
114 return 0;
115 }
116
117 sub is_modem {
118 if ($ethsettings{'CONFIG_TYPE'} =~ /^[0]$/) {
119 return 1;
120 }
121 return 0;
122 }
123
124 ### Initialize menu
125 sub genmenu {
126
127 my %subsystemhash = ();
128 my $subsystem = \%subsystemhash;
129
130 my %substatushash = ();
131 my $substatus = \%substatushash;
132
133 my %subnetworkhash = ();
134 my $subnetwork = \%subnetworkhash;
135
136 my %subserviceshash = ();
137 my $subservices = \%subserviceshash;
138
139 my %subfirewallhash = ();
140 my $subfirewall = \%subfirewallhash;
141
142 my %subipfirehash = ();
143 my $subipfire = \%subipfirehash;
144
145 my %sublogshash = ();
146 my $sublogs = \%sublogshash;
147
148 eval `/bin/cat /var/ipfire/menu.d/*.menu`;
149 eval `/bin/cat /var/ipfire/menu.d/*.main`;
150
151 if (! blue_used() && ! orange_used()) {
152 $menu->{'05.firewall'}{'subMenu'}->{'40.dmz'}{'enabled'} = 0;
153 }
154 if (! blue_used()) {
155 $menu->{'05.firewall'}{'subMenu'}->{'30.wireless'}{'enabled'} = 0;
156 }
157 if ( $ethsettings{'CONFIG_TYPE'} =~ /^(1|2|3|4)$/ && $ethsettings{'RED_TYPE'} eq 'STATIC' ) {
158 $menu->{'03.network'}{'subMenu'}->{'70.aliases'}{'enabled'} = 1;
159 }
160 }
161
162 sub showhttpheaders
163 {
164 print "Cache-control: private\n";
165 print "Connection: close\n";
166 print "Content-type: text/html; charset=UTF-8\n\n";
167 }
168
169 sub is_menu_visible($) {
170 my $link = shift;
171 $link =~ s#\?.*$##;
172 return (-e $ENV{'DOCUMENT_ROOT'}."/../$link");
173 }
174
175
176 sub getlink($) {
177 my $root = shift;
178 if (! $root->{'enabled'}) {
179 return '';
180 }
181 if ($root->{'uri'} !~ /^$/) {
182 my $vars = '';
183 if ($root->{'vars'} !~ /^$/) {
184 $vars = '?'. $root->{'vars'};
185 }
186 if (! is_menu_visible($root->{'uri'})) {
187 return '';
188 }
189 return $root->{'uri'}.$vars;
190 }
191 my $submenus = $root->{'subMenu'};
192 if (! $submenus) {
193 return '';
194 }
195 foreach my $item (sort keys %$submenus) {
196 my $link = getlink($submenus->{$item});
197 if ($link ne '') {
198 return $link;
199 }
200 }
201 return '';
202 }
203
204
205 sub compare_url($) {
206 my $conf = shift;
207
208 my $uri = $conf->{'uri'};
209 my $vars = $conf->{'vars'};
210 my $novars = $conf->{'novars'};
211
212 if ($uri eq '') {
213 return 0;
214 }
215 if ($uri ne $URI[0]) {
216 return 0;
217 }
218 if ($novars) {
219 if ($URI[1] !~ /^$/) {
220 return 0;
221 }
222 }
223 if (! $vars) {
224 return 1;
225 }
226 return ($URI[1] eq $vars);
227 }
228
229
230 sub gettitle($) {
231 my $root = shift;
232
233 if (! $root) {
234 return '';
235 }
236 foreach my $item (sort keys %$root) {
237 my $val = $root->{$item};
238 if (compare_url($val)) {
239 $val->{'selected'} = 1;
240 if ($val->{'title'} !~ /^$/) {
241 return $val->{'title'};
242 }
243 return 'EMPTY TITLE';
244 }
245
246 my $title = gettitle($val->{'subMenu'});
247 if ($title ne '') {
248 $val->{'selected'} = 1;
249 return $title;
250 }
251 }
252 return '';
253 }
254
255 sub getcgihash {
256 my ($hash, $params) = @_;
257 my $cgi = CGI->new ();
258 $hash->{'__CGI__'} = $cgi;
259 return if ($ENV{'REQUEST_METHOD'} ne 'POST');
260 if (!$params->{'wantfile'}) {
261 $CGI::DISABLE_UPLOADS = 1;
262 $CGI::POST_MAX = 512 * 1024;
263 } else {
264 $CGI::POST_MAX = 10 * 1024 * 1024;
265 }
266
267 $cgi->referer() =~ m/^https?\:\/\/([^\/]+)/;
268 my $referer = $1;
269 $cgi->url() =~ m/^https?\:\/\/([^\/]+)/;
270 my $servername = $1;
271 return if ($referer ne $servername);
272
273 ### Modified for getting multi-vars, split by |
274 %temp = $cgi->Vars();
275 foreach my $key (keys %temp) {
276 $hash->{$key} = $temp{$key};
277 $hash->{$key} =~ s/\0/|/g;
278 $hash->{$key} =~ s/^\s*(.*?)\s*$/$1/;
279 }
280
281 if (($params->{'wantfile'})&&($params->{'filevar'})) {
282 $hash->{$params->{'filevar'}} = $cgi->upload
283 ($params->{'filevar'});
284 }
285 return;
286 }
287
288
289 # Test if IP is within a subnet
290 # Call: IpInSubnet (Addr, Subnet, Subnet Mask)
291 # Subnet can be an IP of the subnet: 10.0.0.0 or 10.0.0.1
292 # Everything in dottted notation
293 # Return: TRUE/FALSE
294 sub IpInSubnet
295 {
296 $ip = unpack('N', inet_aton(shift));
297 $start = unpack('N', inet_aton(shift));
298 $mask = unpack('N', inet_aton(shift));
299 $start &= $mask; # base of subnet...
300 $end = $start + ~$mask;
301 return (($ip >= $start) && ($ip <= $end));
302 }
303
304 sub cleanhtml
305 {
306 my $outstring =$_[0];
307 $outstring =~ tr/,/ / if not defined $_[1] or $_[1] ne 'y';
308 $outstring =~ s/&/&amp;/g;
309 $outstring =~ s/\'/&#039;/g;
310 $outstring =~ s/\"/&quot;/g; #" This is just a workaround for the syntax highlighter
311 $outstring =~ s/</&lt;/g;
312 $outstring =~ s/>/&gt;/g;
313 return $outstring;
314 }
315
316 sub connectionstatus
317 {
318 my %pppsettings = ();
319 my %netsettings = ();
320 my $iface='';
321
322 $pppsettings{'PROFILENAME'} = 'None';
323 &General::readhash("${General::swroot}/ppp/settings", \%pppsettings);
324 &General::readhash("${General::swroot}/ethernet/settings", \%netsettings);
325
326 my $profileused='';
327 unless ( $netsettings{'RED_TYPE'} =~ /^(DHCP|STATIC)$/ ) {
328 $profileused="- $pppsettings{'PROFILENAME'}";
329 }
330
331 my ($timestr, $connstate);
332
333 my $connstate = "<span>$Lang::tr{'idle'} $profileused</span>";
334
335 if (-e "${General::swroot}/red/active") {
336 $timestr = &General::age("${General::swroot}/red/active");
337 $connstate = "<span>$Lang::tr{'connected'} - (<span>$timestr</span>) $profileused</span>";
338 } else {
339 if ((open(KEEPCONNECTED, "</var/ipfire/red/keepconnected") == false) && ($pppsettings{'RECONNECTION'} eq "persistent")) {
340 $connstate = "<span>$Lang::tr{'connection closed'} $profileused</span>";
341 } elsif (($pppsettings{'RECONNECTION'} eq "dialondemand") && ( -e "${General::swroot}/red/dial-on-demand")) {
342 $connstate = "<span>$Lang::tr{'dod waiting'} $profileused</span>";
343 } else {
344 $connstate = "<span>$Lang::tr{'connecting'} $profileused</span>" if (system("ps -ef | grep -q '[p]ppd'"));
345 }
346 }
347
348 return $connstate;
349 }
350
351 sub CheckSortOrder {
352 #Sorting of allocated leases
353 if ($ENV{'QUERY_STRING'} =~ /^IPADDR|^ETHER|^HOSTNAME|^ENDTIME/ ) {
354 my $newsort=$ENV{'QUERY_STRING'};
355 &General::readhash("${swroot}/dhcp/settings", \%dhcpsettings);
356 $act=$dhcpsettings{'SORT_LEASELIST'};
357 #Reverse actual ?
358 if ($act =~ $newsort) {
359 if ($act !~ 'Rev') {$Rev='Rev'};
360 $newsort.=$Rev
361 };
362
363 $dhcpsettings{'SORT_LEASELIST'}=$newsort;
364 &General::writehash("${swroot}/dhcp/settings", \%dhcpsettings);
365 $dhcpsettings{'ACTION'} = 'SORT'; # avoid the next test "First lauch"
366 }
367
368 }
369
370 sub PrintActualLeases
371 {
372 &openbox('100%', 'left', $tr{'current dynamic leases'});
373 print <<END
374 <table width='100%'>
375 <tr>
376 <td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?IPADDR'><b>$tr{'ip address'}</b></a></td>
377 <td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?ETHER'><b>$tr{'mac address'}</b></a></td>
378 <td width='20%' align='center'><a href='$ENV{'SCRIPT_NAME'}?HOSTNAME'><b>$tr{'hostname'}</b></a></td>
379 <td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?ENDTIME'><b>$tr{'lease expires'} (local time d/m/y)</b></a></td>
380 <td width='5%' align='center'><b>Add to fix leases<b></td>
381 </tr>
382 END
383 ;
384
385 open(LEASES,"/var/state/dhcp/dhcpd.leases") or die "Can't open dhcpd.leases";
386 while ($line = <LEASES>) {
387 next if( $line =~ /^\s*#/ );
388 chomp($line);
389 @temp = split (' ', $line);
390
391 if ($line =~ /^\s*lease/) {
392 $ip = $temp[1];
393 #All field are not necessarily read. Clear everything
394 $endtime = 0;
395 $ether = "";
396 $hostname = "";
397 }
398
399 if ($line =~ /^\s*ends/) {
400 $line =~ /(\d+)\/(\d+)\/(\d+) (\d+):(\d+):(\d+)/;
401 $endtime = timegm($6, $5, $4, $3, $2 - 1, $1 - 1900);
402 }
403
404 if ($line =~ /^\s*hardware ethernet/) {
405 $ether = $temp[2];
406 $ether =~ s/;//g;
407 }
408
409 if ($line =~ /^\s*client-hostname/) {
410 $hostname = "$temp[1] $temp[2] $temp[3]";
411 $hostname =~ s/;//g;
412 $hostname =~ s/\"//g;
413 }
414
415 if ($line eq "}") {
416 @record = ('IPADDR',$ip,'ENDTIME',$endtime,'ETHER',$ether,'HOSTNAME',$hostname);
417 $record = {}; # create a reference to empty hash
418 %{$record} = @record; # populate that hash with @record
419 $entries{$record->{'IPADDR'}} = $record; # add this to a hash of hashes
420 }
421 }
422 close(LEASES);
423
424 my $id = 0;
425 foreach my $key (sort leasesort keys %entries) {
426 print "<form method='post' action='/cgi-bin/dhcp.cgi'>\n";
427 my $hostname = &cleanhtml($entries{$key}->{HOSTNAME},"y");
428
429 if ($id % 2) {
430 print "<tr bgcolor='$table1colour'>";
431 }
432 else {
433 print "<tr bgcolor='$table2colour'>";
434 }
435
436 print <<END
437 <td align='center'><input type='hidden' name='FIX_ADDR' value='$entries{$key}->{IPADDR}' />$entries{$key}->{IPADDR}</td>
438 <td align='center'><input type='hidden' name='FIX_MAC' value='$entries{$key}->{ETHER}' />$entries{$key}->{ETHER}</td>
439 <td align='center'><input type='hidden' name='FIX_REMARK' value='$hostname' />&nbsp;$hostname</td>
440 <td align='center'><input type='hidden' name='FIX_ENABLED' value='on' />
441 END
442 ;
443
444 ($sec, $min, $hour, $mday, $mon, $year, $wday, $yday, $dst) = localtime ($entries{$key}->{ENDTIME});
445 $enddate = sprintf ("%02d/%02d/%d %02d:%02d:%02d",$mday,$mon+1,$year+1900,$hour,$min,$sec);
446
447 if ($entries{$key}->{ENDTIME} < time() ){
448 print "<strike>$enddate</strike>";
449 } else {
450 print "$enddate";
451 }
452 print <<END
453 <td><input type='hidden' name='ACTION' value='$Lang::tr{'add'}2' /><input type='submit' name='SUBMIT' value='$Lang::tr{'add'}' />
454 </td></td></tr></form>
455 END
456 ;
457 $id++;
458 }
459
460 print "</table>";
461 &closebox();
462 }
463
464
465 # This sub is used during display of actives leases
466 sub leasesort {
467 if (rindex ($dhcpsettings{'SORT_LEASELIST'},'Rev') != -1)
468 {
469 $qs=substr ($dhcpsettings{'SORT_LEASELIST'},0,length($dhcpsettings{'SORT_LEASELIST'})-3);
470 if ($qs eq 'IPADDR') {
471 @a = split(/\./,$entries{$a}->{$qs});
472 @b = split(/\./,$entries{$b}->{$qs});
473 ($b[0]<=>$a[0]) ||
474 ($b[1]<=>$a[1]) ||
475 ($b[2]<=>$a[2]) ||
476 ($b[3]<=>$a[3]);
477 }else {
478 $entries{$b}->{$qs} cmp $entries{$a}->{$qs};
479 }
480 }
481 else #not reverse
482 {
483 $qs=$dhcpsettings{'SORT_LEASELIST'};
484 if ($qs eq 'IPADDR') {
485 @a = split(/\./,$entries{$a}->{$qs});
486 @b = split(/\./,$entries{$b}->{$qs});
487 ($a[0]<=>$b[0]) ||
488 ($a[1]<=>$b[1]) ||
489 ($a[2]<=>$b[2]) ||
490 ($a[3]<=>$b[3]);
491 }else {
492 $entries{$a}->{$qs} cmp $entries{$b}->{$qs};
493 }
494 }
495 }
496
497 sub colorize {
498 my $string = $_[0];
499 my @array = split(/\//,$string);
500 my $string2 = $array[0];
501
502 if ( $string eq "*" or $string eq "" ){
503 return $string;
504 } elsif ( $string =~ "ipsec" ){
505 return "<font color='".${Header::colourvpn}."'>".$string."</font>";
506 } elsif ( $string =~ "tun" ){
507 return "<font color='".${Header::colourovpn}."'>".$string."</font>";
508 } elsif ( $string =~ "lo" or $string =~ "127.0.0.0" ){
509 return "<font color='".${Header::colourfw}."'>".$string."</font>";
510 } elsif ( $string =~ $ethsettings{'GREEN_DEV'} or &IpInSubnet($string2,$ethsettings{'GREEN_NETADDRESS'},$ethsettings{'GREEN_NETMASK'}) ){
511 return "<font color='".${Header::colourgreen}."'>".$string."</font>";
512 } elsif ( $string =~ "ppp0" or $string =~ $ethsettings{'RED_DEV'} or $string =~ "0.0.0.0" or $string =~ $ethsettings{'RED_ADDRESS'} ){
513 return "<font color='".${Header::colourred}."'>".$string."</font>";
514 } elsif ( $ethsettings{'CONFIG_TYPE'}>1 and ( $string =~ $ethsettings{'BLUE_DEV'} or &IpInSubnet($string2,$ethsettings{'BLUE_NETADDRESS'},$ethsettings{'BLUE_NETMASK'}) )){
515 return "<font color='".${Header::colourblue}."'>".$string."</font>";
516 } elsif ( $ethsettings{'CONFIG_TYPE'}>2 and ( $string =~ $ethsettings{'ORANGE_DEV'} or &IpInSubnet($string2,$ethsettings{'ORANGE_NETADDRESS'},$ethsettings{'ORANGE_NETMASK'}) )){
517 return "<font color='".${Header::colourorange}."'>".$string."</font>";
518 } else {
519 return $string;
520 }
521 }