]> git.ipfire.org Git - people/teissler/ipfire-2.x.git/blame - config/cfgroot/header.pl
Firewall: Bugfix: wrong counter when using selfdefinded services in a rule that could...
[people/teissler/ipfire-2.x.git] / config / cfgroot / header.pl
CommitLineData
3ea75603
MT
1# SmoothWall CGIs
2#
3# This code is distributed under the terms of the GPL
4#
5# (c) The SmoothWall Team
6# Copyright (C) 2002 Alex Hudson - getcgihash() rewrite
7# Copyright (C) 2002 Bob Grant <bob@cache.ucr.edu> - validmac()
8# Copyright (c) 2002/04/13 Steve Bootes - add alias section, helper functions
9# Copyright (c) 2002/08/23 Mark Wormgoor <mark@wormgoor.com> validfqdn()
10# Copyright (c) 2003/09/11 Darren Critchley <darrenc@telus.net> srtarray()
11#
3ea75603
MT
12package Header;
13
14use CGI();
8b33e596 15use HTML::Entities();
3ea75603
MT
16use Socket;
17use Time::Local;
18
19$|=1; # line buffering
20
3ea75603
MT
21$Header::revision = 'final';
22$Header::swroot = '/var/ipfire';
0d909a4a 23$Header::graphdir='/srv/web/ipfire/html/graphs';
3ea75603
MT
24$Header::pagecolour = '#ffffff';
25#$Header::tablecolour = '#a0a0a0';
26$Header::tablecolour = '#FFFFFF';
27$Header::bigboxcolour = '#F6F4F4';
28$Header::boxcolour = '#EAE9EE';
29$Header::bordercolour = '#000000';
30$Header::table1colour = '#E0E0E0';
31$Header::table2colour = '#F0F0F0';
32$Header::colourred = '#993333';
33$Header::colourorange = '#FF9933';
34$Header::colouryellow = '#FFFF00';
35$Header::colourgreen = '#339933';
36$Header::colourblue = '#333399';
6d4147d2 37$Header::colourovpn = '#339999';
3ea75603
MT
38$Header::colourfw = '#000000';
39$Header::colourvpn = '#990099';
40$Header::colourerr = '#FF0000';
41$Header::viewsize = 150;
42$Header::errormessage = '';
43my %menuhash = ();
44my $menu = \%menuhash;
45%settings = ();
46%ethsettings = ();
47@URI = ();
3ea75603
MT
48
49### Make sure this is an SSL request
50if ($ENV{'SERVER_ADDR'} && $ENV{'HTTPS'} ne 'on') {
51 print "Status: 302 Moved\r\n";
f8e080ef 52 print "Location: https://$ENV{'SERVER_ADDR'}:444/$ENV{'PATH_INFO'}\r\n\r\n";
3ea75603
MT
53 exit 0;
54}
55
56### Initialize environment
6be4dd24
CS
57&General::readhash("${swroot}/main/settings", \%settings);
58&General::readhash("${swroot}/ethernet/settings", \%ethsettings);
3ea75603
MT
59$language = $settings{'LANGUAGE'};
60$hostname = $settings{'HOSTNAME'};
61$hostnameintitle = 0;
62
63### Initialize language
64if ($language =~ /^(\w+)$/) {$language = $1;}
65
66### Read English Files
67if ( -d "/var/ipfire/langs/en/" ) {
68 opendir(DIR, "/var/ipfire/langs/en/");
69 @names = readdir(DIR) or die "Cannot Read Directory: $!\n";
70 foreach $name(@names) {
71 next if ($name eq ".");
72 next if ($name eq "..");
73 next if (!($name =~ /\.pl$/));
74 require "${swroot}/langs/en/${name}";
75 };
76};
77
78
79### Enable Language Files
80if ( -d "/var/ipfire/langs/${language}/" ) {
81 opendir(DIR, "/var/ipfire/langs/${language}/");
82 @names = readdir(DIR) or die "Cannot Read Directory: $!\n";
83 foreach $name(@names) {
84 next if ($name eq ".");
85 next if ($name eq "..");
86 next if (!($name =~ /\.pl$/));
87 require "${swroot}/langs/${language}/${name}";
88 };
89};
90
7476f476 91### Read IPFire Buildversion
a7fb5630 92$FIREBUILD = "File not found: firebuild\n";
7476f476
HS
93if (open(MYFile, "<${swroot}/firebuild")) {
94 $FIREBUILD = <MYFile>;
a7fb5630 95 chomp($FIREBUILD);
7476f476 96 $FIREBUILD = "(Build: $FIREBUILD)";
a7fb5630 97 close(MYFile);
7476f476 98};
3ea75603
MT
99
100require "${swroot}/langs/en.pl";
101require "${swroot}/langs/${language}.pl";
f8e080ef 102eval `/bin/cat /srv/web/ipfire/html/themes/$settings{'THEME'}/include/functions.pl`;
3ea75603
MT
103
104sub orange_used () {
6be4dd24 105 if ($ethsettings{'CONFIG_TYPE'} =~ /^[24]$/) {
3ea75603
MT
106 return 1;
107 }
108 return 0;
109}
110
111sub blue_used () {
6be4dd24 112 if ($ethsettings{'CONFIG_TYPE'} =~ /^[34]$/) {
3ea75603
MT
113 return 1;
114 }
115 return 0;
116}
117
118sub is_modem {
6be4dd24 119 if ($ethsettings{'CONFIG_TYPE'} =~ /^[0]$/) {
3ea75603
MT
120 return 1;
121 }
122 return 0;
123}
124
125### Initialize menu
126sub genmenu {
24249567 127
3ea75603
MT
128 my %subsystemhash = ();
129 my $subsystem = \%subsystemhash;
130
3ea75603
MT
131 my %substatushash = ();
132 my $substatus = \%substatushash;
3ea75603
MT
133
134 my %subnetworkhash = ();
135 my $subnetwork = \%subnetworkhash;
136
3ea75603
MT
137 my %subserviceshash = ();
138 my $subservices = \%subserviceshash;
139
3ea75603
MT
140 my %subfirewallhash = ();
141 my $subfirewall = \%subfirewallhash;
142
3ea75603
MT
143 my %subipfirehash = ();
144 my $subipfire = \%subipfirehash;
3ea75603 145
24249567
MT
146 my %sublogshash = ();
147 my $sublogs = \%sublogshash;
3ea75603 148
24249567
MT
149 eval `/bin/cat /var/ipfire/menu.d/*.menu`;
150 eval `/bin/cat /var/ipfire/menu.d/*.main`;
3ea75603 151
c980f4d2 152 if (! blue_used()) {
a615cab3 153 $menu->{'05.firewall'}{'subMenu'}->{'60.wireless'}{'enabled'} = 0;
c980f4d2 154 }
6be4dd24 155 if ( $ethsettings{'CONFIG_TYPE'} =~ /^(1|2|3|4)$/ && $ethsettings{'RED_TYPE'} eq 'STATIC' ) {
a68fedca 156 $menu->{'03.network'}{'subMenu'}->{'70.aliases'}{'enabled'} = 1;
3ea75603 157 }
61027579
MT
158
159 if (&General::RedIsWireless()) {
160 $menu->{'01.system'}{'subMenu'}->{'21.wlan'}{'enabled'} = 1;
161 }
3ea75603
MT
162}
163
164sub showhttpheaders
165{
c43ae64f 166 print "Cache-control: private\n";
96a44fe5 167 print "Connection: close\n";
1d795ec5 168 print "Content-type: text/html; charset=UTF-8\n\n";
3ea75603
MT
169}
170
171sub is_menu_visible($) {
172 my $link = shift;
173 $link =~ s#\?.*$##;
174 return (-e $ENV{'DOCUMENT_ROOT'}."/../$link");
175}
176
177
178sub getlink($) {
179 my $root = shift;
180 if (! $root->{'enabled'}) {
181 return '';
182 }
183 if ($root->{'uri'} !~ /^$/) {
184 my $vars = '';
185 if ($root->{'vars'} !~ /^$/) {
186 $vars = '?'. $root->{'vars'};
187 }
188 if (! is_menu_visible($root->{'uri'})) {
189 return '';
190 }
191 return $root->{'uri'}.$vars;
192 }
193 my $submenus = $root->{'subMenu'};
194 if (! $submenus) {
195 return '';
196 }
197 foreach my $item (sort keys %$submenus) {
198 my $link = getlink($submenus->{$item});
199 if ($link ne '') {
200 return $link;
201 }
202 }
203 return '';
204}
205
206
207sub compare_url($) {
208 my $conf = shift;
209
210 my $uri = $conf->{'uri'};
211 my $vars = $conf->{'vars'};
212 my $novars = $conf->{'novars'};
213
214 if ($uri eq '') {
215 return 0;
216 }
217 if ($uri ne $URI[0]) {
218 return 0;
219 }
220 if ($novars) {
221 if ($URI[1] !~ /^$/) {
222 return 0;
223 }
224 }
225 if (! $vars) {
226 return 1;
227 }
228 return ($URI[1] eq $vars);
229}
230
231
232sub gettitle($) {
233 my $root = shift;
234
235 if (! $root) {
236 return '';
237 }
238 foreach my $item (sort keys %$root) {
239 my $val = $root->{$item};
240 if (compare_url($val)) {
241 $val->{'selected'} = 1;
242 if ($val->{'title'} !~ /^$/) {
243 return $val->{'title'};
244 }
245 return 'EMPTY TITLE';
246 }
247
248 my $title = gettitle($val->{'subMenu'});
249 if ($title ne '') {
250 $val->{'selected'} = 1;
251 return $title;
252 }
253 }
254 return '';
255}
256
3ea75603
MT
257sub getcgihash {
258 my ($hash, $params) = @_;
259 my $cgi = CGI->new ();
260 $hash->{'__CGI__'} = $cgi;
261 return if ($ENV{'REQUEST_METHOD'} ne 'POST');
262 if (!$params->{'wantfile'}) {
263 $CGI::DISABLE_UPLOADS = 1;
264 $CGI::POST_MAX = 512 * 1024;
265 } else {
266 $CGI::POST_MAX = 10 * 1024 * 1024;
267 }
268
269 $cgi->referer() =~ m/^https?\:\/\/([^\/]+)/;
270 my $referer = $1;
271 $cgi->url() =~ m/^https?\:\/\/([^\/]+)/;
272 my $servername = $1;
273 return if ($referer ne $servername);
274
275 ### Modified for getting multi-vars, split by |
276 %temp = $cgi->Vars();
277 foreach my $key (keys %temp) {
278 $hash->{$key} = $temp{$key};
279 $hash->{$key} =~ s/\0/|/g;
280 $hash->{$key} =~ s/^\s*(.*?)\s*$/$1/;
281 }
282
283 if (($params->{'wantfile'})&&($params->{'filevar'})) {
284 $hash->{$params->{'filevar'}} = $cgi->upload
285 ($params->{'filevar'});
286 }
287 return;
288}
289
3ea75603
MT
290
291# Test if IP is within a subnet
292# Call: IpInSubnet (Addr, Subnet, Subnet Mask)
293# Subnet can be an IP of the subnet: 10.0.0.0 or 10.0.0.1
294# Everything in dottted notation
295# Return: TRUE/FALSE
296sub IpInSubnet
297{
298 $ip = unpack('N', inet_aton(shift));
299 $start = unpack('N', inet_aton(shift));
300 $mask = unpack('N', inet_aton(shift));
301 $start &= $mask; # base of subnet...
302 $end = $start + ~$mask;
303 return (($ip >= $start) && ($ip <= $end));
304}
305
8b33e596
MT
306sub escape($) {
307 my $s = shift;
308 return HTML::Entities::encode_entities($s);
309}
310
311sub cleanhtml {
3ea75603
MT
312 my $outstring =$_[0];
313 $outstring =~ tr/,/ / if not defined $_[1] or $_[1] ne 'y';
8b33e596
MT
314
315 return escape($outstring);
3ea75603 316}
986e08d9 317
3ea75603
MT
318sub connectionstatus
319{
986e08d9
MT
320 my %pppsettings = ();
321 my %netsettings = ();
322 my $iface='';
323
324 $pppsettings{'PROFILENAME'} = 'None';
325 &General::readhash("${General::swroot}/ppp/settings", \%pppsettings);
326 &General::readhash("${General::swroot}/ethernet/settings", \%netsettings);
327
328 my $profileused='';
2fc53b15 329 unless ( $netsettings{'RED_TYPE'} =~ /^(DHCP|STATIC)$/ ) {
986e08d9
MT
330 $profileused="- $pppsettings{'PROFILENAME'}";
331 }
332
986e08d9 333 my ($timestr, $connstate);
986e08d9 334
7f9f8516 335 my $connstate = "<span>$Lang::tr{'idle'} $profileused</span>";
986e08d9 336
2fc53b15
MT
337 if (-e "${General::swroot}/red/active") {
338 $timestr = &General::age("${General::swroot}/red/active");
7f9f8516 339 $connstate = "<span>$Lang::tr{'connected'} - (<span>$timestr</span>) $profileused</span>";
2fc53b15 340 } else {
7f9f8516
CS
341 if ((open(KEEPCONNECTED, "</var/ipfire/red/keepconnected") == false) && ($pppsettings{'RECONNECTION'} eq "persistent")) {
342 $connstate = "<span>$Lang::tr{'connection closed'} $profileused</span>";
343 } elsif (($pppsettings{'RECONNECTION'} eq "dialondemand") && ( -e "${General::swroot}/red/dial-on-demand")) {
344 $connstate = "<span>$Lang::tr{'dod waiting'} $profileused</span>";
986e08d9 345 } else {
7f9f8516 346 $connstate = "<span>$Lang::tr{'connecting'} $profileused</span>" if (system("ps -ef | grep -q '[p]ppd'"));
986e08d9 347 }
986e08d9 348 }
2fc53b15 349
3ea75603
MT
350 return $connstate;
351}
352
3ea75603
MT
353sub CheckSortOrder {
354#Sorting of allocated leases
355 if ($ENV{'QUERY_STRING'} =~ /^IPADDR|^ETHER|^HOSTNAME|^ENDTIME/ ) {
6be4dd24 356 my $newsort=$ENV{'QUERY_STRING'};
cab84d3a 357 &General::readhash("${swroot}/dhcp/settings", \%dhcpsettings);
3ea75603
MT
358 $act=$dhcpsettings{'SORT_LEASELIST'};
359 #Reverse actual ?
360 if ($act =~ $newsort) {
361 if ($act !~ 'Rev') {$Rev='Rev'};
362 $newsort.=$Rev
363 };
364
365 $dhcpsettings{'SORT_LEASELIST'}=$newsort;
cab84d3a 366 &General::writehash("${swroot}/dhcp/settings", \%dhcpsettings);
3ea75603
MT
367 $dhcpsettings{'ACTION'} = 'SORT'; # avoid the next test "First lauch"
368 }
369
370}
371
372sub PrintActualLeases
373{
374 &openbox('100%', 'left', $tr{'current dynamic leases'});
375 print <<END
376<table width='100%'>
377<tr>
378<td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?IPADDR'><b>$tr{'ip address'}</b></a></td>
379<td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?ETHER'><b>$tr{'mac address'}</b></a></td>
380<td width='20%' align='center'><a href='$ENV{'SCRIPT_NAME'}?HOSTNAME'><b>$tr{'hostname'}</b></a></td>
32fdd7d9
MT
381<td width='25%' align='center'><a href='$ENV{'SCRIPT_NAME'}?ENDTIME'><b>$tr{'lease expires'} (local time d/m/y)</b></a></td>
382<td width='5%' align='center'><b>Add to fix leases<b></td>
3ea75603
MT
383</tr>
384END
385 ;
386
986e08d9 387 open(LEASES,"/var/state/dhcp/dhcpd.leases") or die "Can't open dhcpd.leases";
3ea75603
MT
388 while ($line = <LEASES>) {
389 next if( $line =~ /^\s*#/ );
390 chomp($line);
391 @temp = split (' ', $line);
392
393 if ($line =~ /^\s*lease/) {
394 $ip = $temp[1];
395 #All field are not necessarily read. Clear everything
396 $endtime = 0;
397 $ether = "";
398 $hostname = "";
399 }
400
401 if ($line =~ /^\s*ends/) {
402 $line =~ /(\d+)\/(\d+)\/(\d+) (\d+):(\d+):(\d+)/;
403 $endtime = timegm($6, $5, $4, $3, $2 - 1, $1 - 1900);
404 }
405
406 if ($line =~ /^\s*hardware ethernet/) {
407 $ether = $temp[2];
408 $ether =~ s/;//g;
409 }
410
411 if ($line =~ /^\s*client-hostname/) {
412 $hostname = "$temp[1] $temp[2] $temp[3]";
413 $hostname =~ s/;//g;
414 $hostname =~ s/\"//g;
415 }
416
417 if ($line eq "}") {
418 @record = ('IPADDR',$ip,'ENDTIME',$endtime,'ETHER',$ether,'HOSTNAME',$hostname);
419 $record = {}; # create a reference to empty hash
420 %{$record} = @record; # populate that hash with @record
421 $entries{$record->{'IPADDR'}} = $record; # add this to a hash of hashes
422 }
423 }
424 close(LEASES);
425
426 my $id = 0;
427 foreach my $key (sort leasesort keys %entries) {
32fdd7d9 428 print "<form method='post' action='/cgi-bin/dhcp.cgi'>\n";
3ea75603
MT
429 my $hostname = &cleanhtml($entries{$key}->{HOSTNAME},"y");
430
431 if ($id % 2) {
432 print "<tr bgcolor='$table1colour'>";
433 }
434 else {
435 print "<tr bgcolor='$table2colour'>";
436 }
437
438 print <<END
32fdd7d9
MT
439<td align='center'><input type='hidden' name='FIX_ADDR' value='$entries{$key}->{IPADDR}' />$entries{$key}->{IPADDR}</td>
440<td align='center'><input type='hidden' name='FIX_MAC' value='$entries{$key}->{ETHER}' />$entries{$key}->{ETHER}</td>
441<td align='center'><input type='hidden' name='FIX_REMARK' value='$hostname' />&nbsp;$hostname</td>
442<td align='center'><input type='hidden' name='FIX_ENABLED' value='on' />
3ea75603
MT
443END
444 ;
445
446 ($sec, $min, $hour, $mday, $mon, $year, $wday, $yday, $dst) = localtime ($entries{$key}->{ENDTIME});
447 $enddate = sprintf ("%02d/%02d/%d %02d:%02d:%02d",$mday,$mon+1,$year+1900,$hour,$min,$sec);
448
449 if ($entries{$key}->{ENDTIME} < time() ){
450 print "<strike>$enddate</strike>";
451 } else {
452 print "$enddate";
453 }
32fdd7d9
MT
454 print <<END
455<td><input type='hidden' name='ACTION' value='$Lang::tr{'add'}2' /><input type='submit' name='SUBMIT' value='$Lang::tr{'add'}' />
456</td></td></tr></form>
457END
458 ;
3ea75603
MT
459 $id++;
460 }
461
462 print "</table>";
463 &closebox();
464}
465
466
467# This sub is used during display of actives leases
468sub leasesort {
469 if (rindex ($dhcpsettings{'SORT_LEASELIST'},'Rev') != -1)
470 {
471 $qs=substr ($dhcpsettings{'SORT_LEASELIST'},0,length($dhcpsettings{'SORT_LEASELIST'})-3);
472 if ($qs eq 'IPADDR') {
473 @a = split(/\./,$entries{$a}->{$qs});
474 @b = split(/\./,$entries{$b}->{$qs});
475 ($b[0]<=>$a[0]) ||
476 ($b[1]<=>$a[1]) ||
477 ($b[2]<=>$a[2]) ||
478 ($b[3]<=>$a[3]);
479 }else {
480 $entries{$b}->{$qs} cmp $entries{$a}->{$qs};
481 }
482 }
483 else #not reverse
484 {
485 $qs=$dhcpsettings{'SORT_LEASELIST'};
486 if ($qs eq 'IPADDR') {
487 @a = split(/\./,$entries{$a}->{$qs});
488 @b = split(/\./,$entries{$b}->{$qs});
489 ($a[0]<=>$b[0]) ||
490 ($a[1]<=>$b[1]) ||
491 ($a[2]<=>$b[2]) ||
492 ($a[3]<=>$b[3]);
493 }else {
494 $entries{$a}->{$qs} cmp $entries{$b}->{$qs};
495 }
496 }
497}
1ddefbbd
CS
498
499sub colorize {
500 my $string = $_[0];
501 my @array = split(/\//,$string);
502 my $string2 = $array[0];
503
504 if ( $string eq "*" or $string eq "" ){
505 return $string;
506 } elsif ( $string =~ "ipsec" ){
507 return "<font color='".${Header::colourvpn}."'>".$string."</font>";
508 } elsif ( $string =~ "tun" ){
509 return "<font color='".${Header::colourovpn}."'>".$string."</font>";
510 } elsif ( $string =~ "lo" or $string =~ "127.0.0.0" ){
511 return "<font color='".${Header::colourfw}."'>".$string."</font>";
512 } elsif ( $string =~ $ethsettings{'GREEN_DEV'} or &IpInSubnet($string2,$ethsettings{'GREEN_NETADDRESS'},$ethsettings{'GREEN_NETMASK'}) ){
513 return "<font color='".${Header::colourgreen}."'>".$string."</font>";
514 } elsif ( $string =~ "ppp0" or $string =~ $ethsettings{'RED_DEV'} or $string =~ "0.0.0.0" or $string =~ $ethsettings{'RED_ADDRESS'} ){
515 return "<font color='".${Header::colourred}."'>".$string."</font>";
516 } elsif ( $ethsettings{'CONFIG_TYPE'}>1 and ( $string =~ $ethsettings{'BLUE_DEV'} or &IpInSubnet($string2,$ethsettings{'BLUE_NETADDRESS'},$ethsettings{'BLUE_NETMASK'}) )){
517 return "<font color='".${Header::colourblue}."'>".$string."</font>";
518 } elsif ( $ethsettings{'CONFIG_TYPE'}>2 and ( $string =~ $ethsettings{'ORANGE_DEV'} or &IpInSubnet($string2,$ethsettings{'ORANGE_NETADDRESS'},$ethsettings{'ORANGE_NETMASK'}) )){
519 return "<font color='".${Header::colourorange}."'>".$string."</font>";
520 } else {
521 return $string;
522 }
523}