]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blame - html/cgi-bin/wlanap.cgi
Don't provide ssh keys in the update to 2.3.
[people/pmueller/ipfire-2.x.git] / html / cgi-bin / wlanap.cgi
CommitLineData
27731caa
CS
1#!/usr/bin/perl
2###############################################################################
3# #
4# IPFire.org - A linux based firewall #
c8a726f1 5# Copyright (C) 2008 Michael Tremer & Christian Schmidt #
27731caa
CS
6# #
7# This program is free software: you can redistribute it and/or modify #
8# it under the terms of the GNU General Public License as published by #
9# the Free Software Foundation, either version 3 of the License, or #
10# (at your option) any later version. #
11# #
12# This program is distributed in the hope that it will be useful, #
13# but WITHOUT ANY WARRANTY; without even the implied warranty of #
14# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the #
15# GNU General Public License for more details. #
16# #
17# You should have received a copy of the GNU General Public License #
18# along with this program. If not, see <http://www.gnu.org/licenses/>. #
19# #
20###############################################################################
21#
22# WLAN AP cgi based on wlanap.cgi written by Markus Hoffmann & Olaf Westrik
23#
24
25use strict;
26
27# enable only the following on debugging purpose
92f2665d
CS
28use warnings;
29use CGI::Carp 'fatalsToBrowser';
27731caa
CS
30
31require '/var/ipfire/general-functions.pl';
32require '/var/ipfire/lang.pl';
33require '/var/ipfire/header.pl';
34
35my $debug = 0;
8c2f203c 36my $status = '';
27731caa 37my $errormessage = '';
54359730
CS
38my $status_started = "<td align='center' width='75%' bgcolor='${Header::colourgreen}'><font color='white'><b>$Lang::tr{'running'}</b></font></td></tr>";
39my $status_stopped = "<td align='center' width='75%' bgcolor='${Header::colourred}'><font color='white'><b>$Lang::tr{'stopped'}</b></font></td></tr>";
27731caa
CS
40
41# get rid of used only once warnings
42my @onlyonce = ( $Header::colourgreen, $Header::colourred );
43undef @onlyonce;
44
45my %selected=();
46my %checked=();
47my %color = ();
48my %mainsettings = ();
54359730
CS
49my %netsettings=();
50my %wlanapsettings=();
27731caa
CS
51my $channel = '';
52my $txpower = '';
53
54&General::readhash("${General::swroot}/main/settings", \%mainsettings);
55&General::readhash("/srv/web/ipfire/html/themes/".$mainsettings{'THEME'}."/include/colors.txt", \%color);
54359730 56&General::readhash("/var/ipfire/ethernet/settings", \%netsettings);
27731caa 57
27731caa 58$wlanapsettings{'APMODE'} = 'on';
92f2665d
CS
59$wlanapsettings{'MACMODE'} = '0';
60$wlanapsettings{'INTERFACE'} = '';
27731caa
CS
61$wlanapsettings{'SSID'} = 'IPFire';
62$wlanapsettings{'HIDESSID'} = 'off';
91197a3f 63$wlanapsettings{'ENC'} = 'wpa2'; # none / wpa1 /wpa2
27731caa 64$wlanapsettings{'TXPOWER'} = 'auto';
30313f28 65$wlanapsettings{'CHANNEL'} = '05';
27731caa 66$wlanapsettings{'PWD'} = 'IPFire-2.x';
27731caa
CS
67$wlanapsettings{'SYSLOGLEVEL'} = '0';
68$wlanapsettings{'DEBUG'} = '4';
8c2f203c 69$wlanapsettings{'DRIVER'} = 'MADWIFI';
27731caa 70
27731caa
CS
71&General::readhash("/var/ipfire/wlanap/settings", \%wlanapsettings);
72
27731caa
CS
73my %cgiparams=();
74$cgiparams{'ACTION'} = '';
27731caa 75$cgiparams{'APMODE'} = 'on';
92f2665d 76$cgiparams{'MACMODE'} = '0';
27731caa
CS
77$cgiparams{'SSID'} = 'IPFire';
78$cgiparams{'HIDESSID'} = 'off';
91197a3f 79$cgiparams{'ENC'} = 'wpa2'; # none / wep / wpa / wep+wpa
27731caa 80$cgiparams{'TXPOWER'} = 'auto';
30313f28 81$cgiparams{'CHANNEL'} = '05';
27731caa 82$cgiparams{'PWD'} = 'IPFire-2.x';
27731caa
CS
83$cgiparams{'SYSLOGLEVEL'} = '0';
84$cgiparams{'DEBUG'} = '4';
85&Header::getcgihash(\%cgiparams);
86
87
88&Header::showhttpheaders();
89
90if ( $cgiparams{'ACTION'} eq "$Lang::tr{'save'}" ){
27731caa 91 $wlanapsettings{'SSID'} = $cgiparams{'SSID'};
92f2665d
CS
92 $wlanapsettings{'MACMODE'} = $cgiparams{'MACMODE'};
93 $wlanapsettings{'ACCEPT_MACS'}= $cgiparams{'ACCEPT_MACS'};
94 $wlanapsettings{'DENY_MACS'} = $cgiparams{'DENY_MACS'};
27731caa
CS
95 $wlanapsettings{'HIDESSID'} = $cgiparams{'HIDESSID'};
96 $wlanapsettings{'ENC'} = $cgiparams{'ENC'};
92f2665d 97 $wlanapsettings{'CHANNEL'} = $cgiparams{'CHANNEL'};
27731caa
CS
98 $wlanapsettings{'TXPOWER'} = $cgiparams{'TXPOWER'};
99
27731caa 100 $wlanapsettings{'PWD'} = $cgiparams{'PWD'};
27731caa
CS
101 $wlanapsettings{'SYSLOGLEVEL'}= $cgiparams{'SYSLOGLEVEL'};
102 $wlanapsettings{'DEBUG'} = $cgiparams{'DEBUG'};
103
27731caa
CS
104 # verify WPA Passphrase, must be 8 .. 63 characters
105 if ( (length($wlanapsettings{'PWD'}) < 8) || (length($wlanapsettings{'PWD'}) > 63) ){
106 $errormessage .= "Invalid length in WPA Passphrase. Must be between 8 and 63 characters.<br />";
107 }
108
109 if ( $errormessage eq '' ){
92f2665d 110 &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings);
27731caa
CS
111 &WriteConfig_hostapd();
112
91197a3f 113 system("/usr/local/bin/wlanapctrl restart >/dev/null 2>&1");
27731caa 114 }
92f2665d
CS
115}elsif ( $cgiparams{'ACTION'} eq "$Lang::tr{'interface'}" ){
116 $wlanapsettings{'INTERFACE'} = $cgiparams{'INTERFACE'};
117 &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings);
27731caa
CS
118}elsif ( $cgiparams{'ACTION'} eq 'Start' ){
119 system("/usr/local/bin/wlanapctrl start >/dev/null 2>&1");
120}elsif ( $cgiparams{'ACTION'} eq 'Stop' ){
121 system("/usr/local/bin/wlanapctrl stop >/dev/null 2>&1");
27731caa
CS
122}
123
124&Header::openpage('WLAN', 1, '', '');
125&Header::openbigbox('100%', 'left', '', $errormessage);
126print "<form method='post' action='$ENV{'SCRIPT_NAME'}'>";
127
128if ( $errormessage ){
54359730 129 &Header::openbox('100%', 'center', $Lang::tr{'error messages'});
27731caa
CS
130 print "<class name='base'>$errormessage\n";
131 print "&nbsp;</class>\n";
132 &Header::closebox();
133}
134
135
136# Found this usefull piece of code in BlockOutTraffic AddOn 8-)
137# fwrules.cgi
138###############
139# DEBUG DEBUG
140if ( $debug ){
54359730 141 &Header::openbox('100%', 'center', 'DEBUG');
27731caa
CS
142 my $debugCount = 0;
143 foreach my $line (sort keys %cgiparams) {
144 print "$line = '$cgiparams{$line}'<br />\n";
145 $debugCount++;
146 }
147 print "&nbsp;Count: $debugCount\n";
148 &Header::closebox();
149}
150# DEBUG DEBUG
151###############
152
153#
154# Driver and status detection
155#
156my $wlan_card_status = 'dummy';
157my $wlan_ap_status = '';
92f2665d
CS
158my $message = "";
159
160$selected{'INTERFACE'}{'green0'} = '';
161$selected{'INTERFACE'}{'blue0'} = '';
162$selected{'ENC'}{$wlanapsettings{'INTERFACE'}} = "selected='selected'";
27731caa 163
92f2665d
CS
164if ( ($wlanapsettings{'INTERFACE'} eq '') ){
165 $message = "No WLan Interface selected.";
166 &Header::openbox('100%', 'center', "WLAN AP");
167print <<END
168$message<br />
169<form method='post' action='$ENV{'SCRIPT_NAME'}'>
170<select name='INTERFACE'>
171 <option value='green0' $selected{'INTERFACE'}{'green0'}>green0</option>
172END
173;
174 if ( $netsettings{'BLUE_DEV'} ne ''){
175 print "<option value='blue0' $selected{'INTERFACE'}{'blue0'}>blue0</option>";
176 }
177print <<END
178</select>
179<br />
180 <input type='hidden' name='ACTION' value='$Lang::tr{'interface'}' />
181 <input type='image' alt='$Lang::tr{'save'}' title='$Lang::tr{'save'}' src='/images/media-floppy.png' /></form>
182END
183;
184 &Header::closebox();
185 &Header::closebigbox();
186 &Header::closepage();
187 exit;
27731caa 188}else{
92f2665d 189 my $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} 2>/dev/null`;
27731caa
CS
190
191 if ( $cmd_out eq '' ){
92f2665d
CS
192 $message = "Interface is not a WLAN card.";
193 $wlan_card_status = '';
27731caa 194 }else{
92f2665d 195 $cmd_out = `/sbin/ifconfig | /bin/grep $wlanapsettings{'INTERFACE'}`;
27731caa
CS
196 if ( $cmd_out eq '' ){
197 $wlan_card_status = 'down';
198 }else{
199 $wlan_card_status = 'up';
92f2665d 200 $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} | /bin/grep "Mode:Master"`;
27731caa
CS
201 if ( $cmd_out ne '' ){
202 $wlan_ap_status = 'up';
27731caa
CS
203 }
204 }
205 }
206}
207
27731caa 208my $checked_hidessid = '';
27731caa
CS
209$checked_hidessid = "checked='checked'" if ( $wlanapsettings{'HIDESSID'} eq 'on' );
210
27731caa 211$selected{'ENC'}{$wlanapsettings{'ENC'}} = "selected='selected'";
30313f28 212$selected{'CHANNEL'}{$wlanapsettings{'CHANNEL'}} = "selected='selected'";
54359730 213$selected{'TXPOWER'}{$wlanapsettings{'TXPOWER'}} = "selected='selected'";
92f2665d 214$selected{'MACMODE'}{$wlanapsettings{'MACMODE'}} = "selected='selected'";
27731caa 215
92f2665d 216my @channellist_cmd = `iwlist $wlanapsettings{'INTERFACE'} channel`;
27731caa 217# get available channels
27731caa 218
54359730 219my @temp;
8c2f203c 220foreach (@channellist_cmd){
54359730 221$_ =~ /(.*)Channel (\d+)(.*):/;
8c2f203c 222$channel = $2;chomp $channel;
54359730 223if ( $channel =~ /\d+/ ){push(@temp,$channel);}
27731caa 224}
8c2f203c 225my @channellist = @temp;
54359730 226
92f2665d 227my @txpower_cmd = `iwlist $wlanapsettings{'INTERFACE'} txpower`;
54359730 228# get available channels
27731caa 229
54359730 230my @temp;
8c2f203c 231foreach (@txpower_cmd){
54359730 232$_ =~ /(\s)(\d+)(\s)dBm(\s)(.*)(\W)(\d+)(.*)/;
8c2f203c
CS
233$txpower = $7;chomp $txpower;
234if ( $txpower =~ /\d+/ ){push(@temp,$txpower."mW");}
54359730 235}
8c2f203c 236my @txpower = @temp;
54359730 237push(@txpower,"auto");
27731caa 238
27731caa 239$selected{'SYSLOGLEVEL'}{$wlanapsettings{'SYSLOGLEVEL'}} = "selected='selected'";
27731caa
CS
240$selected{'DEBUG'}{$wlanapsettings{'DEBUG'}} = "selected='selected'";
241
242#
243# Status box
244#
54359730 245&Header::openbox('100%', 'center', "WLAN AP");
27731caa 246print <<END
54359730
CS
247<table width='95%' cellspacing='0'>
248<tr><td bgcolor='$color{'color20'}' colspan='2' align='left'><b>WLAN Services</b></td></tr>
27731caa
CS
249END
250;
251if ( $wlan_card_status ne '' ){
54359730 252 print "<tr><td class='base'>WLAN card ($wlanapsettings{'DRIVER'})</td>";
27731caa 253 print $wlan_card_status eq 'up' ? $status_started : $status_stopped;
54359730 254 print "<tr><td class='base'>Access Point</td>";
27731caa 255 print $wlan_ap_status eq 'up' ? $status_started : $status_stopped;
27731caa 256 if ( $wlan_card_status eq 'up' ){
92f2665d
CS
257 print "<tr><td colspan='2' align='center'><input type='submit' name='ACTION' value='Stop' />";
258 print "<input type='submit' name='ACTION' value='Restart' /></td></tr>";
27731caa 259 }else{
54359730 260 print "<tr><td colspan='2' align='center'><input type='submit' name='ACTION' value='Start' /></td></tr>";
27731caa 261 }
27731caa 262}else{
92f2665d 263 print "<tr><td colspan='2' class='base'><b>$message</b></td></tr>";
27731caa 264}
54359730 265print "</table>";
27731caa
CS
266
267if ( $wlan_card_status eq '' ){
92f2665d 268 &Header::closebox();
27731caa
CS
269 &Header::closebigbox();
270 &Header::closepage();
271 exit 0;
272}
27731caa 273print <<END
54359730
CS
274<br />
275<table width='95%' cellspacing='0'>
276<tr><td bgcolor='$color{'color20'}' colspan='4' align='left'><b>WLAN Settings</b>
27731caa 277<tr><td width='25%' class='base'>SSID:&nbsp;</td><td class='base' colspan='3'><input type='text' name='SSID' size='40' value='$wlanapsettings{'SSID'}' /></td></tr>
8c2f203c 278<tr><td width='25%' class='base'>Disable SSID broadcast:&nbsp;</td><td class='base' colspan='3'><input type='checkbox' name='HIDESSID' $checked_hidessid /></td></tr>
27731caa
CS
279<tr><td width='25%' class='base'>Encryption:&nbsp;</td><td class='base' colspan='3'>
280 <select name='ENC'>
281 <option value='none' $selected{'ENC'}{'none'}>none</option>
8c2f203c
CS
282 <option value='wpa1' $selected{'ENC'}{'wpa1'}>wpa1</option>
283 <option value='wpa2' $selected{'ENC'}{'wpa2'}>wpa2</option>
27731caa
CS
284 </select>
285</td></tr>
27731caa 286<tr><td width='25%' class='base'>Channel:&nbsp;</td><td class='base' colspan='3'>
30313f28 287 <select name='CHANNEL'>
27731caa
CS
288END
289;
290foreach $channel (@channellist){
30313f28 291 print "<option $selected{'CHANNEL'}{$channel}>$channel</option>";
27731caa 292}
54359730 293
27731caa
CS
294print <<END
295</select></td></tr>
296<tr><td width='25%' class='base'>Tx Power:&nbsp;</td><td class='base' colspan='3'><select name='TXPOWER'>
297END
298;
54359730 299foreach $txpower (@txpower){
27731caa
CS
300 print "<option $selected{'TXPOWER'}{$txpower}>$txpower</option>&nbsp;dBm";
301}
302print <<END
303 </select></td></tr>
27731caa 304<tr><td width='25%' class='base'>Passphrase:&nbsp;</td><td class='base' colspan='3'><input type='text' name='PWD' size='63' value='$wlanapsettings{'PWD'}' /></td></tr>
27731caa
CS
305<tr><td width='25%' class='base'>Loglevel (hostapd):&nbsp;</td><td class='base' width='25%'>
306 <select name='SYSLOGLEVEL'>
307 <option value='0' $selected{'SYSLOGLEVEL'}{'0'}>0 (verbose)</option>
308 <option value='1' $selected{'SYSLOGLEVEL'}{'1'}>1 (debugging)</option>
309 <option value='2' $selected{'SYSLOGLEVEL'}{'2'}>2 (informations)</option>
310 <option value='3' $selected{'SYSLOGLEVEL'}{'3'}>3 (notifications)</option>
311 <option value='4' $selected{'SYSLOGLEVEL'}{'4'}>4 (warnings)</option>
312 </select>
313</td>
314<td width='25%' class='base'>Debuglevel (hostapd):&nbsp;</td><td class='base' width='25%'>
315 <select name='DEBUG'>
54359730
CS
316 <option value='0' $selected{'DEBUG'}{'0'}>0 (verbose)</option>
317 <option value='1' $selected{'DEBUG'}{'1'}>1 (debugging)</option>
318 <option value='2' $selected{'DEBUG'}{'2'}>2 (informations)</option>
319 <option value='3' $selected{'DEBUG'}{'3'}>3 (notifications)</option>
320 <option value='4' $selected{'DEBUG'}{'4'}>4 (warnings)</option>
27731caa
CS
321 </select>
322</td></tr>
323</table>
92f2665d
CS
324END
325;
326if ( $wlanapsettings{'INTERFACE'} =~ /green0/ ){
327 print <<END
328<br />
329<table width='95%' cellspacing='0'>
330<td width='25%' class='base'>Mac Filter:&nbsp;</td><td class='base' width='25%'>
331 <select name='MACMODE'>
332 <option value='0' $selected{'MACMODE'}{'0'}>0 (off)</option>
333 <option value='1' $selected{'MACMODE'}{'1'}>1 (Deny list)</option>
334 <option value='2' $selected{'MACMODE'}{'2'}>2 (Accept list)</option>
335 </select>
336</td><td colspan='2'></td></tr>
337<tr>
338 <td colspan='2' class='base'>Mac Accept List (one per line)</td>
339 <td colspan='2' class='base'>Mac Deny List (one per line)</td>
340</tr>
341<tr>
342 <td colspan='2'><textarea name='ACCEPT_MACS' cols='32' rows='3' wrap='off'>
343END
344;
345 print `cat /var/ipfire/wlanap/hostapd.accept`;
346print <<END
347</textarea></td>
348 <td colspan='2'><textarea name='DENY_MACS' cols='32' rows='3' wrap='off'>
349END
350;
351 print `cat /var/ipfire/wlanap/hostapd.deny`;
352 print <<END
353</textarea></td>
354</tr>
355</table>
356END
357;
358}
359print <<END
54359730
CS
360<br />
361<table width='10%' cellspacing='0'>
362<tr><td align='center'><form method='post' action='$ENV{'SCRIPT_NAME'}'>
92f2665d
CS
363 <input type='hidden' name='ACTION' value=$Lang::tr{'save'} />
364 <input type='image' alt='$Lang::tr{'save'}' title='$Lang::tr{'save'}' src='/images/media-floppy.png' /></form></td>
27731caa
CS
365</tr>
366</table>
367END
368;
27731caa 369
8c2f203c 370if ( $wlanapsettings{'DRIVER'} eq 'MADWIFI' ){
92f2665d 371 $status = `wlanconfig $wlanapsettings{'INTERFACE'} list`;
8c2f203c 372}
54359730
CS
373print <<END
374<br />
375<table width='95%' cellspacing='0'>
8c2f203c
CS
376<tr><td bgcolor='$color{'color20'}' colspan='2' align='left'><b>WLAN Status</b></td></tr>
377<tr><td><pre>@channellist_cmd</pre></td><td><pre>@txpower_cmd</pre></td></tr>
891b6138 378<tr><td colspan='2'><pre>$status</pre></td></tr>
54359730
CS
379</table>
380END
381;
382&Header::closebox();
27731caa
CS
383print "</form>";
384&Header::closebigbox();
385&Header::closepage();
386
27731caa
CS
387sub WriteConfig_hostapd{
388 $wlanapsettings{'DRIVER_HOSTAPD'} = lc($wlanapsettings{'DRIVER'});
389
390 open (CONFIGFILE, ">/var/ipfire/wlanap/hostapd.conf");
391 print CONFIGFILE <<END
54359730 392######################### basic hostapd configuration ##########################
891b6138 393#
92f2665d 394interface=$wlanapsettings{'INTERFACE'}
27731caa
CS
395driver=$wlanapsettings{'DRIVER_HOSTAPD'}
396logger_syslog=-1
397logger_syslog_level=$wlanapsettings{'SYSLOGLEVEL'}
398logger_stdout=-1
54359730 399logger_stdout_level=$wlanapsettings{'DEBUG'}
27731caa 400dump_file=/tmp/hostapd.dump
27731caa
CS
401auth_algs=3
402ctrl_interface=/var/run/hostapd
403ctrl_interface_group=0
27731caa
CS
404END
405;
54359730
CS
406 if ( $wlanapsettings{'HIDESSID'} eq 'on' ){
407 print CONFIGFILE <<END
408ssid=$wlanapsettings{'SSID'}
409ignore_broadcast_ssid=2
410END
411;
412
413 }else{
414 print CONFIGFILE <<END
415ssid=$wlanapsettings{'SSID'}
416ignore_broadcast_ssid=0
417END
418;
419
420 }
92f2665d 421
8c2f203c
CS
422 if ( $wlanapsettings{'ENC'} eq 'wpa1'){
423 print CONFIGFILE <<END
424######################### wpa hostapd configuration ############################
891b6138 425#
8c2f203c
CS
426wpa=1
427wpa_passphrase=$wlanapsettings{'PWD'}
891b6138 428wpa_key_mgmt=WPA-PSK
8c2f203c
CS
429wpa_pairwise=CCMP TKIP
430END
431;
432 }elsif ( $wlanapsettings{'ENC'} eq 'wpa2'){
54359730
CS
433 print CONFIGFILE <<END
434######################### wpa hostapd configuration ############################
891b6138 435#
8c2f203c 436wpa=2
54359730 437wpa_passphrase=$wlanapsettings{'PWD'}
891b6138 438wpa_key_mgmt=WPA-PSK
54359730
CS
439wpa_pairwise=CCMP TKIP
440END
441;
442 }
92f2665d
CS
443 print CONFIGFILE <<END
444########################### mac acl configuration ##############################
445macaddr_acl=$wlanapsettings{'MACMODE'}
446accept_mac_file=/etc/hostapd.accept
447deny_mac_file=/etc/hostapd.deny
448END
449;
27731caa 450 close CONFIGFILE;
92f2665d
CS
451
452 open (MACFILE, ">/var/ipfire/wlanap/hostapd.accept");
453 print MACFILE <<END
454$wlanapsettings{'ACCEPT_MACS'}
455END
456;
457 close MACFILE;
458
459 open (MACFILE, ">/var/ipfire/wlanap/hostapd.deny");
460 print MACFILE <<END
461$wlanapsettings{'DENY_MACS'}
462END
463;
464 close MACFILE;
27731caa 465}