#!/usr/bin/perl ############################################################################### # # # IPFire.org - A linux based firewall # # Copyright (C) 2008 Michael Tremer & Christian Schmidt # # # # This program is free software: you can redistribute it and/or modify # # it under the terms of the GNU General Public License as published by # # the Free Software Foundation, either version 3 of the License, or # # (at your option) any later version. # # # # This program is distributed in the hope that it will be useful, # # but WITHOUT ANY WARRANTY; without even the implied warranty of # # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the # # GNU General Public License for more details. # # # # You should have received a copy of the GNU General Public License # # along with this program. If not, see . # # # ############################################################################### # # WLAN AP cgi based on wlanap.cgi written by Markus Hoffmann & Olaf Westrik # use strict; # enable only the following on debugging purpose use warnings; use CGI::Carp 'fatalsToBrowser'; require '/var/ipfire/general-functions.pl'; require '/var/ipfire/lang.pl'; require '/var/ipfire/header.pl'; my $debug = 0; my $status = ''; my $errormessage = ''; my $status_started = "$Lang::tr{'running'}"; my $status_stopped = "$Lang::tr{'stopped'}"; # get rid of used only once warnings my @onlyonce = ( $Header::colourgreen, $Header::colourred ); undef @onlyonce; my %selected=(); my %checked=(); my %color = (); my %mainsettings = (); my %netsettings=(); my %wlanapsettings=(); my $channel = ''; my $txpower = ''; &General::readhash("${General::swroot}/main/settings", \%mainsettings); &General::readhash("/srv/web/ipfire/html/themes/".$mainsettings{'THEME'}."/include/colors.txt", \%color); &General::readhash("/var/ipfire/ethernet/settings", \%netsettings); $wlanapsettings{'APMODE'} = 'on'; $wlanapsettings{'MACMODE'} = '0'; $wlanapsettings{'INTERFACE'} = ''; $wlanapsettings{'SSID'} = 'IPFire'; $wlanapsettings{'HIDESSID'} = 'off'; $wlanapsettings{'ENC'} = 'wpa2'; # none / wpa1 /wpa2 $wlanapsettings{'TXPOWER'} = 'auto'; $wlanapsettings{'CHANNEL'} = '05'; $wlanapsettings{'PWD'} = 'IPFire-2.x'; $wlanapsettings{'SYSLOGLEVEL'} = '0'; $wlanapsettings{'DEBUG'} = '4'; $wlanapsettings{'DRIVER'} = 'MADWIFI'; &General::readhash("/var/ipfire/wlanap/settings", \%wlanapsettings); my %cgiparams=(); $cgiparams{'ACTION'} = ''; $cgiparams{'APMODE'} = 'on'; $cgiparams{'MACMODE'} = '0'; $cgiparams{'SSID'} = 'IPFire'; $cgiparams{'HIDESSID'} = 'off'; $cgiparams{'ENC'} = 'wpa2'; # none / wep / wpa / wep+wpa $cgiparams{'TXPOWER'} = 'auto'; $cgiparams{'CHANNEL'} = '05'; $cgiparams{'PWD'} = 'IPFire-2.x'; $cgiparams{'SYSLOGLEVEL'} = '0'; $cgiparams{'DEBUG'} = '4'; &Header::getcgihash(\%cgiparams); &Header::showhttpheaders(); if ( $cgiparams{'ACTION'} eq "$Lang::tr{'save'}" ){ $wlanapsettings{'SSID'} = $cgiparams{'SSID'}; $wlanapsettings{'MACMODE'} = $cgiparams{'MACMODE'}; $wlanapsettings{'ACCEPT_MACS'}= $cgiparams{'ACCEPT_MACS'}; $wlanapsettings{'DENY_MACS'} = $cgiparams{'DENY_MACS'}; $wlanapsettings{'HIDESSID'} = $cgiparams{'HIDESSID'}; $wlanapsettings{'ENC'} = $cgiparams{'ENC'}; $wlanapsettings{'CHANNEL'} = $cgiparams{'CHANNEL'}; $wlanapsettings{'TXPOWER'} = $cgiparams{'TXPOWER'}; $wlanapsettings{'PWD'} = $cgiparams{'PWD'}; $wlanapsettings{'SYSLOGLEVEL'}= $cgiparams{'SYSLOGLEVEL'}; $wlanapsettings{'DEBUG'} = $cgiparams{'DEBUG'}; # verify WPA Passphrase, must be 8 .. 63 characters if ( (length($wlanapsettings{'PWD'}) < 8) || (length($wlanapsettings{'PWD'}) > 63) ){ $errormessage .= "Invalid length in WPA Passphrase. Must be between 8 and 63 characters.
"; } if ( $errormessage eq '' ){ &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings); &WriteConfig_hostapd(); system("/usr/local/bin/wlanapctrl restart >/dev/null 2>&1"); } }elsif ( $cgiparams{'ACTION'} eq "$Lang::tr{'interface'}" ){ $wlanapsettings{'INTERFACE'} = $cgiparams{'INTERFACE'}; &General::writehash("/var/ipfire/wlanap/settings", \%wlanapsettings); }elsif ( $cgiparams{'ACTION'} eq 'Start' ){ system("/usr/local/bin/wlanapctrl start >/dev/null 2>&1"); }elsif ( $cgiparams{'ACTION'} eq 'Stop' ){ system("/usr/local/bin/wlanapctrl stop >/dev/null 2>&1"); } &Header::openpage('WLAN', 1, '', ''); &Header::openbigbox('100%', 'left', '', $errormessage); print "
"; if ( $errormessage ){ &Header::openbox('100%', 'center', $Lang::tr{'error messages'}); print "$errormessage\n"; print " \n"; &Header::closebox(); } # Found this usefull piece of code in BlockOutTraffic AddOn 8-) # fwrules.cgi ############### # DEBUG DEBUG if ( $debug ){ &Header::openbox('100%', 'center', 'DEBUG'); my $debugCount = 0; foreach my $line (sort keys %cgiparams) { print "$line = '$cgiparams{$line}'
\n"; $debugCount++; } print " Count: $debugCount\n"; &Header::closebox(); } # DEBUG DEBUG ############### # # Driver and status detection # my $wlan_card_status = 'dummy'; my $wlan_ap_status = ''; my $message = ""; $selected{'INTERFACE'}{'green0'} = ''; $selected{'INTERFACE'}{'blue0'} = ''; $selected{'ENC'}{$wlanapsettings{'INTERFACE'}} = "selected='selected'"; if ( ($wlanapsettings{'INTERFACE'} eq '') ){ $message = "No WLan Interface selected."; &Header::openbox('100%', 'center', "WLAN AP"); print < END ; &Header::closebox(); &Header::closebigbox(); &Header::closepage(); exit; }else{ my $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} 2>/dev/null`; if ( $cmd_out eq '' ){ $message = "Interface is not a WLAN card."; $wlan_card_status = ''; }else{ $cmd_out = `/sbin/ifconfig | /bin/grep $wlanapsettings{'INTERFACE'}`; if ( $cmd_out eq '' ){ $wlan_card_status = 'down'; }else{ $wlan_card_status = 'up'; $cmd_out = `/usr/sbin/iwconfig $wlanapsettings{'INTERFACE'} | /bin/grep "Mode:Master"`; if ( $cmd_out ne '' ){ $wlan_ap_status = 'up'; } } } } my $checked_hidessid = ''; $checked_hidessid = "checked='checked'" if ( $wlanapsettings{'HIDESSID'} eq 'on' ); $selected{'ENC'}{$wlanapsettings{'ENC'}} = "selected='selected'"; $selected{'CHANNEL'}{$wlanapsettings{'CHANNEL'}} = "selected='selected'"; $selected{'TXPOWER'}{$wlanapsettings{'TXPOWER'}} = "selected='selected'"; $selected{'MACMODE'}{$wlanapsettings{'MACMODE'}} = "selected='selected'"; my @channellist_cmd = `iwlist $wlanapsettings{'INTERFACE'} channel`; # get available channels my @temp; foreach (@channellist_cmd){ $_ =~ /(.*)Channel (\d+)(.*):/; $channel = $2;chomp $channel; if ( $channel =~ /\d+/ ){push(@temp,$channel);} } my @channellist = @temp; my @txpower_cmd = `iwlist $wlanapsettings{'INTERFACE'} txpower`; # get available channels my @temp; foreach (@txpower_cmd){ $_ =~ /(\s)(\d+)(\s)dBm(\s)(.*)(\W)(\d+)(.*)/; $txpower = $7;chomp $txpower; if ( $txpower =~ /\d+/ ){push(@temp,$txpower."mW");} } my @txpower = @temp; push(@txpower,"auto"); $selected{'SYSLOGLEVEL'}{$wlanapsettings{'SYSLOGLEVEL'}} = "selected='selected'"; $selected{'DEBUG'}{$wlanapsettings{'DEBUG'}} = "selected='selected'"; # # Status box # &Header::openbox('100%', 'center', "WLAN AP"); print < WLAN Services END ; if ( $wlan_card_status ne '' ){ print "WLAN card ($wlanapsettings{'DRIVER'})"; print $wlan_card_status eq 'up' ? $status_started : $status_stopped; print "Access Point"; print $wlan_ap_status eq 'up' ? $status_started : $status_stopped; if ( $wlan_card_status eq 'up' ){ print ""; print ""; }else{ print ""; } }else{ print "$message"; } print ""; if ( $wlan_card_status eq '' ){ &Header::closebox(); &Header::closebigbox(); &Header::closepage(); exit 0; } print <
WLAN Settings
SSID: 
Disable SSID broadcast: 
Encryption: 
Channel: 
Tx Power: 
Passphrase: 
Loglevel (hostapd):  Debuglevel (hostapd): 
END ; if ( $wlanapsettings{'INTERFACE'} =~ /green0/ ){ print <
Mac Filter: 
Mac Accept List (one per line) Mac Deny List (one per line)
END ; } print <
END ; if ( $wlanapsettings{'DRIVER'} eq 'MADWIFI' ){ $status = `wlanconfig $wlanapsettings{'INTERFACE'} list`; } print <
WLAN Status
@channellist_cmd
@txpower_cmd
$status
END ; &Header::closebox(); print ""; &Header::closebigbox(); &Header::closepage(); sub WriteConfig_hostapd{ $wlanapsettings{'DRIVER_HOSTAPD'} = lc($wlanapsettings{'DRIVER'}); open (CONFIGFILE, ">/var/ipfire/wlanap/hostapd.conf"); print CONFIGFILE </var/ipfire/wlanap/hostapd.accept"); print MACFILE </var/ipfire/wlanap/hostapd.deny"); print MACFILE <