]> git.ipfire.org Git - ipfire-2.x.git/blob - html/cgi-bin/optionsfw.cgi
BUG10844 add new options to firewalloptions for conntrack
[ipfire-2.x.git] / html / cgi-bin / optionsfw.cgi
1 #!/usr/bin/perl
2 #
3 # SmoothWall CGIs
4 #
5 # This code is distributed under the terms of the GPL
6 #
7 # (c) The SmoothWall Team
8 #
9 # Copyright (C) 01-02-2002 Graham Smith <grhm@grhm.co.uk>
10 #
11 # $Id: optionsfw.cgi,v 1.1.2.10 2005/10/03 00:34:10 gespinasse Exp $
12 #
13 #
14 # enable only the following on debugging purpose
15 #use warnings;
16 #use CGI::Carp 'fatalsToBrowser';
17
18 require '/var/ipfire/general-functions.pl';
19 require "${General::swroot}/lang.pl";
20 require "${General::swroot}/header.pl";
21
22
23 my %checked =(); # Checkbox manipulations
24 our %settings=();
25 my %fwdfwsettings=();
26 my %configfwdfw=();
27 my %configoutgoingfw=();
28
29 my $configfwdfw = "${General::swroot}/firewall/config";
30 my $configoutgoing = "${General::swroot}/firewall/outgoing";
31 my $errormessage = '';
32 my $warnmessage = '';
33 my $filename = "${General::swroot}/optionsfw/settings";
34
35 &General::readhash("${General::swroot}/firewall/settings", \%fwdfwsettings);
36 &Header::showhttpheaders();
37
38 #Get GUI values
39 &Header::getcgihash(\%settings);
40 if ($settings{'ACTION'} eq $Lang::tr{'save'}) {
41 if ($settings{'defpol'} ne '1'){
42 $errormessage .= $Lang::tr{'new optionsfw later'};
43 &General::writehash($filename, \%settings); # Save good settings
44 system("/usr/local/bin/firewallctrl");
45 }else{
46 if ($settings{'POLICY'} ne ''){
47 $fwdfwsettings{'POLICY'} = $settings{'POLICY'};
48 }
49 if ($settings{'POLICY1'} ne ''){
50 $fwdfwsettings{'POLICY1'} = $settings{'POLICY1'};
51 }
52 my $MODE = $fwdfwsettings{'POLICY'};
53 my $MODE1 = $fwdfwsettings{'POLICY1'};
54 %fwdfwsettings = ();
55 $fwdfwsettings{'POLICY'} = "$MODE";
56 $fwdfwsettings{'POLICY1'} = "$MODE1";
57 &General::writehash("${General::swroot}/firewall/settings", \%fwdfwsettings);
58 &General::readhash("${General::swroot}/firewall/settings", \%fwdfwsettings);
59 system("/usr/local/bin/firewallctrl");
60 }
61 &General::readhash($filename, \%settings); # Load good settings
62 }
63
64 &Header::openpage($Lang::tr{'options fw'}, 1, '');
65 &Header::openbigbox('100%', 'left', '', $errormessage);
66 &General::readhash($filename, \%settings);
67 if ($errormessage) {
68 &Header::openbox('100%', 'left', $Lang::tr{'warning messages'});
69 print "<font color='red'>$errormessage&nbsp;</font>";
70 &Header::closebox();
71 }
72
73 # Set new defaults
74 if (!$settings{'MASQUERADE_GREEN'}) {
75 $settings{'MASQUERADE_GREEN'} = 'on';
76 }
77 if (!$settings{'MASQUERADE_ORANGE'}) {
78 $settings{'MASQUERADE_ORANGE'} = 'on';
79 }
80 if (!$settings{'MASQUERADE_BLUE'}) {
81 $settings{'MASQUERADE_BLUE'} = 'on';
82 }
83
84 $checked{'DROPNEWNOTSYN'}{'off'} = '';
85 $checked{'DROPNEWNOTSYN'}{'on'} = '';
86 $checked{'DROPNEWNOTSYN'}{$settings{'DROPNEWNOTSYN'}} = "checked='checked'";
87 $checked{'DROPINPUT'}{'off'} = '';
88 $checked{'DROPINPUT'}{'on'} = '';
89 $checked{'DROPINPUT'}{$settings{'DROPINPUT'}} = "checked='checked'";
90 $checked{'DROPFORWARD'}{'off'} = '';
91 $checked{'DROPFORWARD'}{'on'} = '';
92 $checked{'DROPFORWARD'}{$settings{'DROPFORWARD'}} = "checked='checked'";
93 $checked{'DROPOUTGOING'}{'off'} = '';
94 $checked{'DROPOUTGOING'}{'on'} = '';
95 $checked{'DROPOUTGOING'}{$settings{'DROPOUTGOING'}} = "checked='checked'";
96 $checked{'DROPPORTSCAN'}{'off'} = '';
97 $checked{'DROPPORTSCAN'}{'on'} = '';
98 $checked{'DROPPORTSCAN'}{$settings{'DROPPORTSCAN'}} = "checked='checked'";
99 $checked{'DROPWIRELESSINPUT'}{'off'} = '';
100 $checked{'DROPWIRELESSINPUT'}{'on'} = '';
101 $checked{'DROPWIRELESSINPUT'}{$settings{'DROPWIRELESSINPUT'}} = "checked='checked'";
102 $checked{'DROPWIRELESSFORWARD'}{'off'} = '';
103 $checked{'DROPWIRELESSFORWARD'}{'on'} = '';
104 $checked{'DROPWIRELESSFORWARD'}{$settings{'DROPWIRELESSFORWARD'}} = "checked='checked'";
105 $checked{'DROPPROXY'}{'off'} = '';
106 $checked{'DROPPROXY'}{'on'} = '';
107 $checked{'DROPPROXY'}{$settings{'DROPPROXY'}} = "checked='checked'";
108 $checked{'DROPSAMBA'}{'off'} = '';
109 $checked{'DROPSAMBA'}{'on'} = '';
110 $checked{'DROPSAMBA'}{$settings{'DROPSAMBA'}} = "checked='checked'";
111 $checked{'SHOWCOLORS'}{'off'} = '';
112 $checked{'SHOWCOLORS'}{'on'} = '';
113 $checked{'SHOWCOLORS'}{$settings{'SHOWCOLORS'}} = "checked='checked'";
114 $checked{'SHOWREMARK'}{'off'} = '';
115 $checked{'SHOWREMARK'}{'on'} = '';
116 $checked{'SHOWREMARK'}{$settings{'SHOWREMARK'}} = "checked='checked'";
117 $checked{'SHOWTABLES'}{'off'} = '';
118 $checked{'SHOWTABLES'}{'on'} = '';
119 $checked{'SHOWTABLES'}{$settings{'SHOWTABLES'}} = "checked='checked'";
120 $checked{'SHOWDROPDOWN'}{'off'} = '';
121 $checked{'SHOWDROPDOWN'}{'on'} = '';
122 $checked{'SHOWDROPDOWN'}{$settings{'SHOWDROPDOWN'}} = "checked='checked'";
123 $checked{'CONNTRACK_FTP'}{'off'} = '';
124 $checked{'CONNTRACK_FTP'}{'on'} = '';
125 $checked{'CONNTRACK_FTP'}{$settings{'CONNTRACK_FTP'}} = "checked='checked'";
126 $checked{'CONNTRACK_H323'}{'off'} = '';
127 $checked{'CONNTRACK_H323'}{'on'} = '';
128 $checked{'CONNTRACK_H323'}{$settings{'CONNTRACK_H323'}} = "checked='checked'";
129 $checked{'CONNTRACK_IRC'}{'off'} = '';
130 $checked{'CONNTRACK_IRC'}{'on'} = '';
131 $checked{'CONNTRACK_IRC'}{$settings{'CONNTRACK_IRC'}} = "checked='checked'";
132 $checked{'CONNTRACK_SIP'}{'off'} = '';
133 $checked{'CONNTRACK_SIP'}{'on'} = '';
134 $checked{'CONNTRACK_SIP'}{$settings{'CONNTRACK_SIP'}} = "checked='checked'";
135 $checked{'CONNTRACK_TFTP'}{'off'} = '';
136 $checked{'CONNTRACK_TFTP'}{'on'} = '';
137 $checked{'CONNTRACK_TFTP'}{$settings{'CONNTRACK_TFTP'}} = "checked='checked'";
138 $selected{'FWPOLICY'}{$settings{'FWPOLICY'}}= 'selected';
139 $selected{'FWPOLICY1'}{$settings{'FWPOLICY1'}}= 'selected';
140 $selected{'FWPOLICY2'}{$settings{'FWPOLICY2'}}= 'selected';
141 $selected{'MASQUERADE_GREEN'}{'off'} = '';
142 $selected{'MASQUERADE_GREEN'}{'on'} = '';
143 $selected{'MASQUERADE_GREEN'}{$settings{'MASQUERADE_GREEN'}} = 'selected="selected"';
144 $selected{'MASQUERADE_ORANGE'}{'off'} = '';
145 $selected{'MASQUERADE_ORANGE'}{'on'} = '';
146 $selected{'MASQUERADE_ORANGE'}{$settings{'MASQUERADE_ORANGE'}} = 'selected="selected"';
147 $selected{'MASQUERADE_BLUE'}{'off'} = '';
148 $selected{'MASQUERADE_BLUE'}{'on'} = '';
149 $selected{'MASQUERADE_BLUE'}{$settings{'MASQUERADE_BLUE'}} = 'selected="selected"';
150
151 &Header::openbox('100%', 'center',);
152 print "<form method='post' action='$ENV{'SCRIPT_NAME'}'>";
153
154 print <<END;
155 <form method='post' action='$ENV{'SCRIPT_NAME'}'>
156 <table width='95%' cellspacing='0'>
157 <tr bgcolor='$color{'color20'}'>
158 <td colspan='2' align='left'><b>$Lang::tr{'masquerading'}</b></td>
159 </tr>
160 <tr>
161 <td align='left' width='60%'>$Lang::tr{'masquerade green'}</td>
162 <td>
163 <select name='MASQUERADE_GREEN'>
164 <option value='on' $selected{'MASQUERADE_GREEN'}{'on'}>$Lang::tr{'masquerading enabled'}</option>
165 <option value='off' $selected{'MASQUERADE_GREEN'}{'off'}>$Lang::tr{'masquerading disabled'}</option>
166 </select>
167 </td>
168 </tr>
169 END
170
171 if (&Header::orange_used()) {
172 print <<END;
173 <tr>
174 <td align='left' width='60%'>$Lang::tr{'masquerade orange'}</td>
175 <td>
176 <select name='MASQUERADE_ORANGE'>
177 <option value='on' $selected{'MASQUERADE_ORANGE'}{'on'}>$Lang::tr{'masquerading enabled'}</option>
178 <option value='off' $selected{'MASQUERADE_ORANGE'}{'off'}>$Lang::tr{'masquerading disabled'}</option>
179 </select>
180 </td>
181 </tr>
182 END
183 }
184
185 if (&Header::blue_used()) {
186 print <<END;
187 <tr>
188 <td align='left' width='60%'>$Lang::tr{'masquerade blue'}</td>
189 <td>
190 <select name='MASQUERADE_BLUE'>
191 <option value='on' $selected{'MASQUERADE_BLUE'}{'on'}>$Lang::tr{'masquerading enabled'}</option>
192 <option value='off' $selected{'MASQUERADE_BLUE'}{'off'}>$Lang::tr{'masquerading disabled'}</option>
193 </select>
194 </td>
195 </tr>
196 END
197 }
198
199 print <<END
200 </table>
201
202 <br>
203
204 <table width='95%' cellspacing='0'>
205 <tr bgcolor='$color{'color20'}'><td colspan='2' align='left'><b>$Lang::tr{'fw logging'}</b></td></tr>
206 <tr><td align='left' width='60%'>$Lang::tr{'drop newnotsyn'}</td><td align='left'>on <input type='radio' name='DROPNEWNOTSYN' value='on' $checked{'DROPNEWNOTSYN'}{'on'} />/
207 <input type='radio' name='DROPNEWNOTSYN' value='off' $checked{'DROPNEWNOTSYN'}{'off'} /> off</td></tr>
208 <tr><td align='left' width='60%'>$Lang::tr{'drop input'}</td><td align='left'>on <input type='radio' name='DROPINPUT' value='on' $checked{'DROPINPUT'}{'on'} />/
209 <input type='radio' name='DROPINPUT' value='off' $checked{'DROPINPUT'}{'off'} /> off</td></tr>
210 <tr><td align='left' width='60%'>$Lang::tr{'drop forward'}</td><td align='left'>on <input type='radio' name='DROPFORWARD' value='on' $checked{'DROPFORWARD'}{'on'} />/
211 <input type='radio' name='DROPFORWARD' value='off' $checked{'DROPFORWARD'}{'off'} /> off</td></tr>
212 <tr><td align='left' width='60%'>$Lang::tr{'drop outgoing'}</td><td align='left'>on <input type='radio' name='DROPOUTGOING' value='on' $checked{'DROPOUTGOING'}{'on'} />/
213 <input type='radio' name='DROPOUTGOING' value='off' $checked{'DROPOUTGOING'}{'off'} /> off</td></tr>
214 <tr><td align='left' width='60%'>$Lang::tr{'drop portscan'}</td><td align='left'>on <input type='radio' name='DROPPORTSCAN' value='on' $checked{'DROPPORTSCAN'}{'on'} />/
215 <input type='radio' name='DROPPORTSCAN' value='off' $checked{'DROPPORTSCAN'}{'off'} /> off</td></tr>
216 <tr><td align='left' width='60%'>$Lang::tr{'drop wirelessinput'}</td><td align='left'>on <input type='radio' name='DROPWIRELESSINPUT' value='on' $checked{'DROPWIRELESSINPUT'}{'on'} />/
217 <input type='radio' name='DROPWIRELESSINPUT' value='off' $checked{'DROPWIRELESSINPUT'}{'off'} /> off</td></tr>
218 <tr><td align='left' width='60%'>$Lang::tr{'drop wirelessforward'}</td><td align='left'>on <input type='radio' name='DROPWIRELESSFORWARD' value='on' $checked{'DROPWIRELESSFORWARD'}{'on'} />/
219 <input type='radio' name='DROPWIRELESSFORWARD' value='off' $checked{'DROPWIRELESSFORWARD'}{'off'} /> off</td></tr>
220 </table>
221 <br/>
222
223 <table width='95%' cellspacing='0'>
224 <tr bgcolor='$color{'color20'}'><td colspan='2' align='left'><b>$Lang::tr{'fw blue'}</b></td></tr>
225 <tr><td align='left' width='60%'>$Lang::tr{'drop proxy'}</td><td align='left'>on <input type='radio' name='DROPPROXY' value='on' $checked{'DROPPROXY'}{'on'} />/
226 <input type='radio' name='DROPPROXY' value='off' $checked{'DROPPROXY'}{'off'} /> off</td></tr>
227 <tr><td align='left' width='60%'>$Lang::tr{'drop samba'}</td><td align='left'>on <input type='radio' name='DROPSAMBA' value='on' $checked{'DROPSAMBA'}{'on'} />/
228 <input type='radio' name='DROPSAMBA' value='off' $checked{'DROPSAMBA'}{'off'} /> off</td></tr>
229 </table>
230 <br>
231 <table width='95%' cellspacing='0'>
232 <tr bgcolor='$color{'color20'}'><td colspan='2' align='left'><b>$Lang::tr{'fw settings'}</b></td></tr>
233 <tr><td align='left' width='60%'>$Lang::tr{'fw settings color'}</td><td align='left'>on <input type='radio' name='SHOWCOLORS' value='on' $checked{'SHOWCOLORS'}{'on'} />/
234 <input type='radio' name='SHOWCOLORS' value='off' $checked{'SHOWCOLORS'}{'off'} /> off</td></tr>
235 <tr><td align='left' width='60%'>$Lang::tr{'fw settings remark'}</td><td align='left'>on <input type='radio' name='SHOWREMARK' value='on' $checked{'SHOWREMARK'}{'on'} />/
236 <input type='radio' name='SHOWREMARK' value='off' $checked{'SHOWREMARK'}{'off'} /> off</td></tr>
237 <tr><td align='left' width='60%'>$Lang::tr{'fw settings ruletable'}</td><td align='left'>on <input type='radio' name='SHOWTABLES' value='on' $checked{'SHOWTABLES'}{'on'} />/
238 <input type='radio' name='SHOWTABLES' value='off' $checked{'SHOWTABLES'}{'off'} /> off</td></tr>
239 <tr><td align='left' width='60%'>$Lang::tr{'fw settings dropdown'}</td><td align='left'>on <input type='radio' name='SHOWDROPDOWN' value='on' $checked{'SHOWDROPDOWN'}{'on'} />/
240 <input type='radio' name='SHOWDROPDOWN' value='off' $checked{'SHOWDROPDOWN'}{'off'} /> off</td></tr>
241 </table>
242 <br />
243 <table width='95%' cellspacing='0'>
244 <tr bgcolor='$color{'color20'}'><td colspan='2' align='left'><b>Application Layer Gateways</b></td></tr>
245 <tr><td align='left' width='60%'>ftp</td><td align='left'>on <input type='radio' name='CONNTRACK_FTP' value='on' $checked{'CONNTRACK_FTP'}{'on'} />/
246 <input type='radio' name='CONNTRACK_FTP' value='off' $checked{'CONNTRACK_FTP'}{'off'} /> off</td></tr>
247 <tr><td align='left' width='60%'>h323</td><td align='left'>on <input type='radio' name='CONNTRACK_H323' value='on' $checked{'CONNTRACK_H323'}{'on'} />/
248 <input type='radio' name='CONNTRACK_H323' value='off' $checked{'CONNTRACK_H323'}{'off'} /> off</td></tr>
249 <tr><td align='left' width='60%'>irc</td><td align='left'>on <input type='radio' name='CONNTRACK_IRC' value='on' $checked{'CONNTRACK_IRC'}{'on'} />/
250 <input type='radio' name='CONNTRACK_IRC' value='off' $checked{'CONNTRACK_IRC'}{'off'} /> off</td></tr>
251 <tr><td align='left' width='60%'>sip</td><td align='left'>on <input type='radio' name='CONNTRACK_SIP' value='on' $checked{'CONNTRACK_SIP'}{'on'} />/
252 <input type='radio' name='CONNTRACK_SIP' value='off' $checked{'CONNTRACK_SIP'}{'off'} /> off</td></tr>
253 <tr><td align='left' width='60%'>tftp</td><td align='left'>on <input type='radio' name='CONNTRACK_TFTP' value='on' $checked{'CONNTRACK_TFTP'}{'on'} />/
254 <input type='radio' name='CONNTRACK_TFTP' value='off' $checked{'CONNTRACK_TFTP'}{'off'} /> off</td></tr>
255
256 </table>
257 <br />
258 <table width='95%' cellspacing='0'>
259 <tr bgcolor='$color{'color20'}'><td colspan='2' align='left'><b>$Lang::tr{'fw default drop'}</b></td></tr>
260 <tr><td align='left' width='60%'>$Lang::tr{'drop action'}</td><td><select name='FWPOLICY'>
261 <option value='DROP' $selected{'FWPOLICY'}{'DROP'}>DROP</option>
262 <option value='REJECT' $selected{'FWPOLICY'}{'REJECT'}>REJECT</option></select>
263 </td></tr>
264 <tr><td align='left' width='60%'>$Lang::tr{'drop action1'}</td><td><select name='FWPOLICY1'>
265 <option value='DROP' $selected{'FWPOLICY1'}{'DROP'}>DROP</option>
266 <option value='REJECT' $selected{'FWPOLICY1'}{'REJECT'}>REJECT</option></select>
267 </td></tr>
268 <tr><td align='left' width='60%'>$Lang::tr{'drop action2'}</td><td><select name='FWPOLICY2'>
269 <option value='DROP' $selected{'FWPOLICY2'}{'DROP'}>DROP</option>
270 <option value='REJECT' $selected{'FWPOLICY2'}{'REJECT'}>REJECT</option></select>
271 </td></tr>
272 </table>
273
274 <br />
275 <table width='100%' cellspacing='0'>
276 <tr><td align='right'><form method='post' action='$ENV{'SCRIPT_NAME'}'>
277 <input type='submit' name='ACTION' value=$Lang::tr{'save'} />
278 </form></td></tr>
279 </table>
280 </form>
281 END
282 ;
283 &Header::closebox();
284
285 &Header::openbox('100%', 'center', $Lang::tr{'fwdfw pol title'});
286 if ($fwdfwsettings{'POLICY'} eq 'MODE1'){ $selected{'POLICY'}{'MODE1'} = 'selected'; } else { $selected{'POLICY'}{'MODE1'} = ''; }
287 if ($fwdfwsettings{'POLICY'} eq 'MODE2'){ $selected{'POLICY'}{'MODE2'} = 'selected'; } else { $selected{'POLICY'}{'MODE2'} = ''; }
288 if ($fwdfwsettings{'POLICY1'} eq 'MODE1'){ $selected{'POLICY1'}{'MODE1'} = 'selected'; } else { $selected{'POLICY1'}{'MODE1'} = ''; }
289 if ($fwdfwsettings{'POLICY1'} eq 'MODE2'){ $selected{'POLICY1'}{'MODE2'} = 'selected'; } else { $selected{'POLICY1'}{'MODE2'} = ''; }
290 print <<END;
291 <form method='post' action='$ENV{'SCRIPT_NAME'}'>
292 <table width='100%' border='0'>
293 <tr><td colspan='3' style='font-weight:bold;color:red;' align='left'>FORWARD </td></tr>
294 <tr><td colspan='3' align='left'>$Lang::tr{'fwdfw pol text'}</td></tr>
295 <tr><td colspan='3'><hr /></td></tr>
296 <tr><td width='15%' align='left'> <select name='POLICY' style="width: 100px">
297 <option value='MODE1' $selected{'POLICY'}{'MODE1'}>$Lang::tr{'fwdfw pol block'}</option>
298 <option value='MODE2' $selected{'POLICY'}{'MODE2'}>$Lang::tr{'fwdfw pol allow'}</option></select>
299 <input type='submit' name='ACTION' value=$Lang::tr{'save'} /><input type='hidden' name='defpol' value='1'></td>
300 END
301 print "</tr></table></form>";
302 print"<br><br>";
303 print <<END;
304 <form method='post' action='$ENV{'SCRIPT_NAME'}'>
305 <table width='100%' border='0'>
306 <tr><td colspan='3' style='font-weight:bold;color:red;' align='left'>OUTGOING </td></tr>
307 <tr><td colspan='3' align='left'>$Lang::tr{'fwdfw pol text1'}</td></tr>
308 <tr><td colspan='3'><hr /></td></tr>
309 <tr><td width='15%' align='left'> <select name='POLICY1' style="width: 100px">
310 <option value='MODE1' $selected{'POLICY1'}{'MODE1'}>$Lang::tr{'fwdfw pol block'}</option>
311 <option value='MODE2' $selected{'POLICY1'}{'MODE2'}>$Lang::tr{'fwdfw pol allow'}</option></select>
312 <input type='submit' name='ACTION' value='$Lang::tr{'save'}' /><input type='hidden' name='defpol' value='1'></td>
313 END
314 print "</tr></table></form>";
315 &Header::closebox();
316
317 &Header::closebigbox();
318 &Header::closepage();