]> git.ipfire.org Git - people/pmueller/ipfire-2.x.git/blob - html/cgi-bin/index.cgi
Einige CGIs gefixt, SNORT wird beim Systemstart gestartet
[people/pmueller/ipfire-2.x.git] / html / cgi-bin / index.cgi
1 #!/usr/bin/perl
2 #
3 # SmoothWall CGIs
4 #
5 # This code is distributed under the terms of the GPL
6 #
7 # (c) The SmoothWall Team
8 #
9
10 use strict;
11
12 # enable only the following on debugging purpose
13 use warnings;
14 use CGI::Carp 'fatalsToBrowser';
15
16 require '/var/ipfire/general-functions.pl';
17 require "${General::swroot}/lang.pl";
18 require "${General::swroot}/header.pl";
19
20 my %cgiparams=();
21 my %pppsettings=();
22 my %modemsettings=();
23 my %netsettings=();
24 my %ddnssettings=();
25 my $warnmessage = '';
26 my $refresh = "<meta http-equiv='refresh' content='180;'>";
27 my $ipaddr='';
28
29 &Header::showhttpheaders();
30
31 $cgiparams{'ACTION'} = '';
32 &Header::getcgihash(\%cgiparams);
33 $pppsettings{'VALID'} = '';
34 $pppsettings{'PROFILENAME'} = 'None';
35 &General::readhash("${General::swroot}/ppp/settings", \%pppsettings);
36 &General::readhash("${General::swroot}/modem/settings", \%modemsettings);
37 &General::readhash("${General::swroot}/ethernet/settings", \%netsettings);
38 &General::readhash("${General::swroot}/ddns/settings", \%ddnssettings);
39
40 my %color = ();
41 my %mainsettings = ();
42 &General::readhash("${General::swroot}/main/settings", \%mainsettings);
43 &General::readhash("/srv/web/ipfire/html/themes/".$mainsettings{'THEME'}."/include/colors.txt", \%color);
44
45 my $connstate = &Header::connectionstatus();
46 if ($connstate =~ /$Lang::tr{'dod waiting'}/ || -e "${General::swroot}/main/refreshindex") {
47 $refresh = "<meta http-equiv='refresh' content='30;'>";
48 } elsif ($connstate =~ /$Lang::tr{'connecting'}/) {
49 $refresh = "<meta http-equiv='refresh' content='5;'>";
50 }
51
52 if ($cgiparams{'ACTION'} eq $Lang::tr{'dial profile'})
53 {
54 my $profile = $cgiparams{'PROFILE'};
55 my %tempcgiparams = ();
56 $tempcgiparams{'PROFILE'} = '';
57 &General::readhash("${General::swroot}/ppp/settings-$cgiparams{'PROFILE'}",
58 \%tempcgiparams);
59
60 # make a link from the selected profile to the "default" one.
61 unlink("${General::swroot}/ppp/settings");
62 link("${General::swroot}/ppp/settings-$cgiparams{'PROFILE'}",
63 "${General::swroot}/ppp/settings");
64 system ("/usr/bin/touch", "${General::swroot}/ppp/updatesettings");
65
66 # read in the new params "early" so we can write secrets.
67 %cgiparams = ();
68 &General::readhash("${General::swroot}/ppp/settings", \%cgiparams);
69 $cgiparams{'PROFILE'} = $profile;
70 $cgiparams{'BACKUPPROFILE'} = $profile;
71 &General::writehash("${General::swroot}/ppp/settings-$cgiparams{'PROFILE'}",
72 \%cgiparams);
73
74 # write secrets file.
75 open(FILE, ">/${General::swroot}/ppp/secrets") or die "Unable to write secrets file.";
76 flock(FILE, 2);
77 my $username = $cgiparams{'USERNAME'};
78 my $password = $cgiparams{'PASSWORD'};
79 print FILE "'$username' * '$password'\n";
80 chmod 0600, "${General::swroot}/ppp/secrets";
81 close FILE;
82
83 &General::log("$Lang::tr{'profile made current'} $tempcgiparams{'PROFILENAME'}");
84 $cgiparams{'ACTION'} = "$Lang::tr{'dial'}";
85 }
86
87 if ($cgiparams{'ACTION'} eq $Lang::tr{'dial'}) {
88 system('/usr/local/bin/redctrl start > /dev/null') == 0
89 or &General::log("Dial failed: $?"); sleep 1;}
90 elsif ($cgiparams{'ACTION'} eq $Lang::tr{'hangup'}) {
91 system('/usr/local/bin/redctrl stop > /dev/null') == 0
92 or &General::log("Hangup failed: $?"); sleep 1;}
93
94 my $c;
95 my $maxprofiles = 5;
96 my @profilenames = ();
97
98 for ($c = 1; $c <= $maxprofiles; $c++)
99 {
100 my %temppppsettings = ();
101 $temppppsettings{'PROFILENAME'} = '';
102 &General::readhash("${General::swroot}/ppp/settings-$c", \%temppppsettings);
103 $profilenames[$c] = $temppppsettings{'PROFILENAME'};
104 }
105 my %selected;
106 for ($c = 1; $c <= $maxprofiles; $c++) {
107 $selected{'PROFILE'}{$c} = '';
108 }
109 $selected{'PROFILE'}{$pppsettings{'PROFILE'}} = "selected='selected'";
110 my $dialButtonDisabled = "disabled='disabled'";
111
112
113 &Header::openpage($Lang::tr{'main page'}, 1, $refresh);
114 &Header::openbigbox('', 'center');
115 &Header::openbox('100%', 'center', &Header::cleanhtml(`/bin/uname -n`,"y"));
116
117 if ( ( $pppsettings{'VALID'} eq 'yes' && $modemsettings{'VALID'} eq 'yes' ) || ( $netsettings{'CONFIG_TYPE'} =~ /^(1|2|3|4)$/ && $netsettings{'RED_TYPE'} =~ /^(DHCP|STATIC)$/ )) {
118 if (open(IPADDR,"${General::swroot}/ddns/ipcache")) {
119 $ipaddr = <IPADDR>;
120 close IPADDR;
121 chomp ($ipaddr);
122 }
123 if (open(IPADDR,"${General::swroot}/red/local-ipaddress")) {
124 $ipaddr = <IPADDR>;
125 close IPADDR;
126 chomp ($ipaddr);
127 }
128 } elsif ($modemsettings{'VALID'} eq 'no') {
129 print "$Lang::tr{'modem settings have errors'}\n </b></font>\n";
130 } else {
131 print "$Lang::tr{'profile has errors'}\n </b></font>\n";
132 }
133
134 if ( $netsettings{'RED_TYPE'} =~ /^(DHCP|STATIC)$/ ) {
135 $ipaddr = $netsettings{'RED_ADDRESS'};
136 }
137
138 my $death = 0;
139 my $rebirth = 0;
140
141 if ($cgiparams{'ACTION'} eq $Lang::tr{'shutdown'}) {
142 $death = 1;
143 &General::log($Lang::tr{'shutting down ipfire'});
144 system '/usr/local/bin/ipfirereboot down';
145 } elsif ($cgiparams{'ACTION'} eq $Lang::tr{'reboot'}) {
146 $rebirth = 1;
147 &General::log($Lang::tr{'rebooting ipfire'});
148 system '/usr/local/bin/ipfirereboot boot';
149 }
150
151 if ($death == 0 && $rebirth == 0) {
152
153 print <<END
154 <form method='post' action='$ENV{'SCRIPT_NAME'}'>
155 <table width='100%'>
156 <tr>
157 <td width='33%' align='center'><input type='submit' name='ACTION' value='$Lang::tr{'reboot'}' /></td>
158 <td width='33%' align='center'><input type='submit' name='ACTION' value='$Lang::tr{'refresh'}' /></td>
159 <td width='33%' align='center'><input type='submit' name='ACTION' value='$Lang::tr{'shutdown'}' /></td>
160 </tr>
161 </table>
162 END
163 ;
164 print <<END;
165
166 <!-- Table of networks -->
167 <table border='0' width=80%>
168 <tr> <th bgcolor='$color{'color20'}'>$Lang::tr{'network'}
169 <th bgcolor='$color{'color20'}'>IP
170 <th bgcolor='$color{'color20'}'>$Lang::tr{'status'}
171 <tr> <td bgcolor='$Header::colourred' width='25%'><a href="/cgi-bin/pppsetup.cgi"><font size='2' color='white'><b>$Lang::tr{'internet'}:</b></font></a><br>
172 <td width='30%'>$ipaddr
173 <td width='45%'>$connstate
174 END
175 print `/usr/local/bin/dialctrl.pl show`;
176 print <<END;
177 <tr><td colspan='2'>
178 <form method='post' action='$ENV{'SCRIPT_NAME'}'>$Lang::tr{'profile'}:
179 <select name='PROFILE'>
180 END
181 for ($c = 1; $c <= $maxprofiles; $c++)
182 {
183 if ($profilenames[$c] ne '') {
184 $dialButtonDisabled = "";
185 print "\t<option value='$c' $selected{'PROFILE'}{$c}>$c. $profilenames[$c]</option>\n";
186 }
187 }
188 $dialButtonDisabled = "disabled='disabled'" if (-e '/var/run/ppp-ipfire.pid' || -e "${General::swroot}/red/active");
189 if ( ( $pppsettings{'VALID'} eq 'yes' ) || ( $netsettings{'CONFIG_TYPE'} =~ /^(1|2|3|4)$/ && $netsettings{'RED_TYPE'} =~ /^(DHCP|STATIC)$/ ) ) {
190 print <<END;
191 </select>
192 <input type='submit' name='ACTION' value='$Lang::tr{'dial profile'}' $dialButtonDisabled />
193 </form>
194 <td align='center'>
195 <table width='100%' border='0'>
196 <tr>
197 <td width='50%' align='right'> <form method='post' action='$ENV{'SCRIPT_NAME'}'>
198 <input type='submit' name='ACTION' value='$Lang::tr{'dial'}'>
199 </form>
200 <td width='50%' align='left'> <form method='post' action='$ENV{'SCRIPT_NAME'}'>
201 <input type='submit' name='ACTION' value='$Lang::tr{'hangup'}'>
202 </form>
203 </table>
204 END
205 } else {
206 print "$Lang::tr{'profile has errors'}\n </b></font>\n";
207 }
208
209 my $HOSTNAME = (gethostbyaddr(pack("C4", split(/\./, $ipaddr)), 2))[0];
210 if ( "$HOSTNAME" ne "" ) {
211 print <<END;
212 <tr><td><b>Hostname:</b><td>$HOSTNAME<td>&nbsp;
213 END
214 }
215
216 if ( -e "/var/ipfire/red/remote-ipaddress" ) {
217 my $GATEWAY = `cat /var/ipfire/red/remote-ipaddress`;
218 chomp($GATEWAY);
219 print <<END;
220 <tr><td><b>Gateway:</b><td>$GATEWAY<td>&nbsp;
221 END
222 }
223
224 my $DNS1 = `cat /var/ipfire/red/dns1`;
225 my $DNS2 = `cat /var/ipfire/red/dns2`;
226 chomp($DNS1);
227 chomp($DNS1);
228
229 if ( $DNS1 ) { print <<END;
230 <tr><td><b>DNS-Server:</b><td>$DNS1
231 END
232 }
233 if ( $DNS2 ) { print <<END;
234 <td>$DNS2
235 END
236 } else { print <<END;
237 <td>&nbsp;
238 END
239 }
240
241 if ( $netsettings{'GREEN_DEV'} ) { print <<END;
242 <tr><td bgcolor='$Header::colourgreen' width='25%'><a href="/cgi-bin/dhcp.cgi"><font size='2' color='white'><b>$Lang::tr{'lan'}:</b></font></a>
243 <td width='30%'>$netsettings{'GREEN_ADDRESS'}
244 <td width='45%'>
245 END
246 if ( `cat /var/ipfire/proxy/advanced/settings | grep ^ENABLE=on` ) {
247 print "Proxy an";
248 if ( `cat /var/ipfire/proxy/advanced/settings | grep ^TRANSPARENT=on` ) { print " (transparent)"; }
249 } else { print "Proxy aus"; }
250 }
251 if ( $netsettings{'BLUE_DEV'} ) { print <<END;
252 <tr><td bgcolor='$Header::colourblue' width='25%'><a href="/cgi-bin/wireless.cgi"><font size='2' color='white'><b>$Lang::tr{'wireless'}:</b></font></a><br>
253 <td width='30%'>$netsettings{'BLUE_ADDRESS'}
254 <td width='45%'>
255 END
256 if ( `cat /var/ipfire/proxy/advanced/settings | grep ^ENABLE_BLUE=on` ) {
257 print "Proxy an";
258 if ( `cat /var/ipfire/proxy/advanced/settings | grep ^TRANSPARENT_BLUE=on` ) { print " (transparent)"; }
259 } else { print "Proxy aus"; }
260 }
261 if ( $netsettings{'ORANGE_DEV'} ) { print <<END;
262 <tr><td bgcolor='$Header::colourorange' width='25%'><a href="/cgi-bin/dmzholes.cgi"><font size='2' color='white'><b>$Lang::tr{'dmz'}:</b></font></a><br>
263 <td width='30%'>$netsettings{'ORANGE_ADDRESS'}
264 <td width='45%'><font color=$Header::colourgreen>Online</font>
265 END
266 }
267 if ( `cat /var/ipfire/vpn/settings | grep ^ENABLED=on` ||
268 `cat /var/ipfire/vpn/settings | grep ^ENABLED_BLUE=on` ) {
269 my $ipsecip = `cat /var/ipfire/vpn/settings | grep ^VPN_IP= | cut -c 8-`;
270 my @status = `/usr/sbin/ipsec auto --status`;
271 my %confighash = ();
272 &General::readhasharray("${General::swroot}/vpn/config", \%confighash);
273 print <<END;
274 <tr><td bgcolor='$Header::colourvpn' width='25%'><a href="/cgi-bin/vpnmain.cgi"><font size='2' color='white'><b>$Lang::tr{'vpn'}:</b></font></a><br>
275 <td width='30%'>$ipsecip
276 <td width='45%'><font color=$Header::colourgreen>Online</font>
277 END
278 my $id = 0;
279 my $gif;
280 foreach my $key (keys %confighash) {
281 if ($confighash{$key}[0] eq 'on') { $gif = 'on.gif'; } else { $gif = 'off.gif'; }
282
283 if ($id % 2) {
284 print "<tr bgcolor='${Header::table1colour}'>\n";
285 } else {
286 print "<tr bgcolor='${Header::table2colour}'>\n";
287 }
288 print "<td bgcolor='#ffffff'>&nbsp;</td><td align='center' nowrap='nowrap'>$confighash{$key}[1] / " . $Lang::tr{"$confighash{$key}[3]"} . " (" . $Lang::tr{"$confighash{$key}[4]"} . ")</td>";
289 my $active = "<table cellpadding='2' cellspacing='0' bgcolor='${Header::colourred}' width='100%'><tr><td align='center'><b><font color='#FFFFFF'>$Lang::tr{'capsclosed'}</font></b></td></tr></table>";
290 if ($confighash{$key}[0] eq 'off') {
291 $active = "<table cellpadding='2' cellspacing='0' bgcolor='${Header::colourblue}' width='100%'><tr><td align='center'><b><font color='#FFFFFF'>$Lang::tr{'capsclosed'}</font></b></td></tr></table>";
292 } else {
293 foreach my $line (@status) {
294 if ($line =~ /\"$confighash{$key}[1]\".*IPsec SA established/) {
295 $active = "<table cellpadding='2' cellspacing='0' bgcolor='${Header::colourgreen}' width='100%'><tr><td align='center'><b><font color='#FFFFFF'>$Lang::tr{'capsopen'}</font></b></td></tr></table>";
296 }
297 }
298 }
299 print "<td align='center'>$active</td>";
300 }
301 }
302 if ( `cat /var/ipfire/ovpn/settings | grep ^ENABLED=on` ||
303 `cat /var/ipfire/ovpn/settings | grep ^ENABLED_BLUE=on` ||
304 `cat /var/ipfire/ovpn/settings | grep ^ENABLED_ORANGE=on`) {
305 my $ovpnip = `cat /var/ipfire/ovpn/settings | grep ^DOVPN_SUBNET= | cut -c 14- | sed -e 's\/\\/255.255.255.0\/\/'`;
306 print <<END;
307 <tr><td bgcolor='$Header::colourovpn' width='25%'><a href="/cgi-bin/ovpnmain.cgi"><font size='2' color='white'><b>OpenVPN:</b></font></a><br>
308 <td width='30%'>$ovpnip
309 <td width='45%'><font color=$Header::colourgreen>Online</font>
310 END
311 }
312
313 # Memory usage warning
314 my @free = `/usr/bin/free`;
315 $free[1] =~ m/(\d+)/;
316 my $mem = $1;
317 $free[2] =~ m/(\d+)/;
318 my $used = $1;
319 my $pct = int 100 * ($mem - $used) / $mem;
320 if ($used / $mem > 90) {
321 $warnmessage .= "<li> $Lang::tr{'high memory usage'}: $pct% !</li>\n";
322 }
323
324 # Diskspace usage warning
325 my @temp=();
326 my $temp2=();
327 my @df = `/bin/df -B M -x rootfs`;
328 foreach my $line (@df) {
329 next if $line =~ m/^Filesystem/;
330 if ($line =~ m/root/ ) {
331 $line =~ m/^.* (\d+)M.*$/;
332 @temp = split(/ +/,$line);
333 if ($1<5) {
334 # available:plain value in MB, and not %used as 10% is too much to waste on small disk
335 # and root size should not vary during time
336 $warnmessage .= "$Lang::tr{'filesystem full'}: $temp[0] <b>$Lang::tr{'free'}=$1M</b> !\n";
337 }
338
339 } else {
340 # $line =~ m/^.* (\d+)m.*$/;
341 $line =~ m/^.* (\d+)\%.*$/;
342 if ($1>90) {
343 @temp = split(/ /,$line);
344 $temp2=int(100-$1);
345 $warnmessage .= "$Lang::tr{'filesystem full'}: $temp[0] <b>$Lang::tr{'free'}=$temp2%</b> !\n";
346 }
347 }
348 }
349
350 if ($warnmessage) {
351 print "<tr><td align='center' bgcolor=$Header::colourred colspan='3'><font color='white'>$warnmessage</font></table>";
352 }
353 print <<END;
354 </table>
355
356 END
357 } else {
358 my $message='';
359 if ($death) {
360 $message = $Lang::tr{'ipfire has now shutdown'};
361 } else {
362 $message = $Lang::tr{'ipfire has now rebooted'};
363 }
364 print <<END
365 <div align='center'>
366 <table width='100%' bgcolor='#ffffff'>
367 <tr><td align='center'>
368 <br /><br /><img src='/images/IPFire.png' /><br /><br /><br />
369 </td></tr>
370 </table>
371 <br />
372 <font size='6'>$message</font>
373 </div>
374 END
375 ;
376 }
377 &Header::closebox();
378 &Header::closebigbox();
379 &Header::closepage();