]> git.ipfire.org Git - people/teissler/ipfire-2.x.git/blobdiff - html/cgi-bin/forwardfw.cgi
Forward Firewall: set standard config for Firewall
[people/teissler/ipfire-2.x.git] / html / cgi-bin / forwardfw.cgi
index f22c4d6f7c84a215361e22ed69282028760e6693..37ba41d0b2b4d390f146c28bba3ca2bbbacf3952 100755 (executable)
@@ -624,6 +624,9 @@ sub checksource
                }elsif($fwdfwsettings{'USE_SRC_PORT'} eq 'ON' && $fwdfwsettings{'PROT'} eq 'ESP'){
                        $fwdfwsettings{'SRC_PORT'}='';
                        $fwdfwsettings{'ICMP_TYPES'}='';
+               }elsif($fwdfwsettings{'USE_SRC_PORT'} eq 'ON' && $fwdfwsettings{'PROT'} eq 'AH'){
+                       $fwdfwsettings{'SRC_PORT'}='';
+                       $fwdfwsettings{'ICMP_TYPES'}='';        
                }elsif($fwdfwsettings{'USE_SRC_PORT'} eq 'ON' && $fwdfwsettings{'PROT'} ne 'ICMP'){
                        $fwdfwsettings{'ICMP_TYPES'}='';
                }else{
@@ -720,13 +723,16 @@ sub checktarget
                                        $errormessage .= &General::validportrange($fwdfwsettings{'TGT_PORT'}, 'destination');
                                }
                        }elsif ($fwdfwsettings{'TGT_PROT'} eq 'GRE'){
-                                       $fwdfwsettings{'TGT_PORT'} = '';
+                                       $fwdfwsettings{$fwdfwsettings{'grp3'}} = '';
                                        $fwdfwsettings{'ICMP_TGT'} = '';
                        }elsif($fwdfwsettings{'TGT_PORT'} eq 'ESP'){
-                                       $fwdfwsettings{'TGT_PORT'}='';
+                                       $fwdfwsettings{$fwdfwsettings{'grp3'}} = '';
+                                       $fwdfwsettings{'ICMP_TGT'}='';
+                       }elsif($fwdfwsettings{'TGT_PORT'} eq 'AH'){
+                                       $fwdfwsettings{$fwdfwsettings{'grp3'}} = '';
                                        $fwdfwsettings{'ICMP_TGT'}='';
                        }elsif ($fwdfwsettings{'TGT_PROT'} eq 'ICMP'){
-                               $fwdfwsettings{'TGT_PORT'} = '';
+                               $fwdfwsettings{$fwdfwsettings{'grp3'}} = '';
                                &General::readhasharray("${General::swroot}/fwhosts/icmp-types", \%icmptypes);
                                foreach my $key (keys %icmptypes){
                                        
@@ -1088,7 +1094,7 @@ END
                <tr><td width='1%'><input type='checkbox' name='USE_SRC_PORT' value='ON' $checked{'USE_SRC_PORT'}{'ON'}></td><td width='51%' colspan='3'>$Lang::tr{'fwdfw use srcport'}</td>
                <td width='15%' nowrap='nowrap'>$Lang::tr{'fwdfw man port'}</td><td><select name='PROT'>
 END
-               foreach ("TCP","UDP","GRE","ESP","ICMP")
+               foreach ("TCP","UDP","GRE","ESP","AH","ICMP")
                {
                        if ($_ eq $fwdfwsettings{'PROT'})
                        {
@@ -1242,7 +1248,7 @@ END
                </select></td></tr>
                <tr><td colspan='2'></td><td><input type='radio' name='grp3' value='TGT_PORT' $checked{'grp3'}{'TGT_PORT'}></td><td>$Lang::tr{'fwdfw man port'}</td><td><select name='TGT_PROT'>
 END
-               foreach ("TCP","UDP","GRE","ESP","ICMP")
+               foreach ("TCP","UDP","GRE","ESP","AH","ICMP")
                {
                        if ($_ eq $fwdfwsettings{'TGT_PROT'})
                        {
@@ -1408,97 +1414,95 @@ sub saverule
                        $$hash{$key}[27] = $fwdfwsettings{'TIME_TO'};
                        &General::writehasharray("$config", $hash);
                }else{
-                       #ruleposition check
-                       if($fwdfwsettings{'oldrulenumber'} gt $fwdfwsettings{'rulepos'}){
-                               my %tmp=();
-                               my $val=$fwdfwsettings{'oldrulenumber'}-$fwdfwsettings{'rulepos'};
-                               for (my $z=0;$z<$val;$z++){
-                                       foreach my $key (sort {$a <=> $b} keys %$hash){
-                                               if ($key eq $fwdfwsettings{'oldrulenumber'}) {
-                                                       my $last = $key -1;
-                                                       if (exists $$hash{$last}){
-                                                               #save rule last
-                                                               foreach my $y (0 .. $#{$$hash{$last}}) {
-                                                                       $tmp{0}[$y] = $$hash{$last}[$y];
-                                                               }
-                                                               #copy active rule to last
-                                                               foreach my $i (0 .. $#{$$hash{$last}}) {
-                                                                       $$hash{$last}[$i] = $$hash{$key}[$i];
-                                                               }
-                                                               #copy saved rule to actual position
-                                                               foreach my $x (0 .. $#{$tmp{0}}) {
-                                                                       $$hash{$key}[$x] = $tmp{0}[$x];
-                                                               }
+                       foreach my $key (sort {$a <=> $b} keys %$hash){
+                               if($key eq $fwdfwsettings{'key'}){
+                                       $$hash{$key}[0]  = $fwdfwsettings{'RULE_ACTION'};
+                                       $$hash{$key}[1]  = $fwdfwsettings{'chain'};
+                                       $$hash{$key}[2]  = $fwdfwsettings{'ACTIVE'};
+                                       $$hash{$key}[3]  = $fwdfwsettings{'grp1'};
+                                       $$hash{$key}[4]  = $fwdfwsettings{$fwdfwsettings{'grp1'}};
+                                       $$hash{$key}[5]  = $fwdfwsettings{'grp2'};
+                                       $$hash{$key}[6]  = $fwdfwsettings{$fwdfwsettings{'grp2'}};
+                                       $$hash{$key}[7]  = $fwdfwsettings{'USE_SRC_PORT'};
+                                       $$hash{$key}[8]  = $fwdfwsettings{'PROT'};
+                                       $$hash{$key}[9]  = $fwdfwsettings{'ICMP_TYPES'};
+                                       $$hash{$key}[10] = $fwdfwsettings{'SRC_PORT'};
+                                       $$hash{$key}[11] = $fwdfwsettings{'USESRV'};
+                                       $$hash{$key}[12] = $fwdfwsettings{'TGT_PROT'};
+                                       $$hash{$key}[13] = $fwdfwsettings{'ICMP_TGT'};
+                                       $$hash{$key}[14] = $fwdfwsettings{'grp3'};
+                                       $$hash{$key}[15] = $fwdfwsettings{$fwdfwsettings{'grp3'}};
+                                       $$hash{$key}[16] = $fwdfwsettings{'ruleremark'};
+                                       $$hash{$key}[17] = $fwdfwsettings{'LOG'};
+                                       $$hash{$key}[18] = $fwdfwsettings{'TIME'};
+                                       $$hash{$key}[19] = $fwdfwsettings{'TIME_MON'};
+                                       $$hash{$key}[20] = $fwdfwsettings{'TIME_TUE'};
+                                       $$hash{$key}[21] = $fwdfwsettings{'TIME_WED'};
+                                       $$hash{$key}[22] = $fwdfwsettings{'TIME_THU'};
+                                       $$hash{$key}[23] = $fwdfwsettings{'TIME_FRI'};
+                                       $$hash{$key}[24] = $fwdfwsettings{'TIME_SAT'};
+                                       $$hash{$key}[25] = $fwdfwsettings{'TIME_SUN'};
+                                       $$hash{$key}[26] = $fwdfwsettings{'TIME_FROM'};
+                                       $$hash{$key}[27] = $fwdfwsettings{'TIME_TO'};
+                                       last;
+                               }
+                       }
+               }
+               &General::writehasharray("$config", $hash);
+               if($fwdfwsettings{'oldrulenumber'} gt $fwdfwsettings{'rulepos'}){
+                       my %tmp=();
+                       my $val=$fwdfwsettings{'oldrulenumber'}-$fwdfwsettings{'rulepos'};
+                       for (my $z=0;$z<$val;$z++){
+                               foreach my $key (sort {$a <=> $b} keys %$hash){
+                                       if ($key eq $fwdfwsettings{'oldrulenumber'}) {
+                                               my $last = $key -1;
+                                               if (exists $$hash{$last}){
+                                                       #save rule last
+                                                       foreach my $y (0 .. $#{$$hash{$last}}) {
+                                                               $tmp{0}[$y] = $$hash{$last}[$y];
+                                                       }
+                                                       #copy active rule to last
+                                                       foreach my $i (0 .. $#{$$hash{$last}}) {
+                                                               $$hash{$last}[$i] = $$hash{$key}[$i];
+                                                       }
+                                                       #copy saved rule to actual position
+                                                       foreach my $x (0 .. $#{$tmp{0}}) {
+                                                               $$hash{$key}[$x] = $tmp{0}[$x];
                                                        }
                                                }
                                        }
-                                       $fwdfwsettings{'oldrulenumber'}--;
                                }
-                               &General::writehasharray("$config", $hash);
-                               &rules;
-                       }elsif($fwdfwsettings{'rulepos'} gt $fwdfwsettings{'oldrulenumber'}){
-                               my %tmp=();
-                               my $val=$fwdfwsettings{'rulepos'}-$fwdfwsettings{'oldrulenumber'};
-                                       for (my $z=0;$z<$val;$z++){
-                                               foreach my $key (sort {$a <=> $b} keys %$hash){
-                                               if ($key eq $fwdfwsettings{'oldrulenumber'}) {
-                                                       my $next = $key + 1;
-                                                       if (exists $$hash{$next}){
-                                                               #save rule next
-                                                               foreach my $y (0 .. $#{$$hash{$next}}) {
-                                                                       $tmp{0}[$y] = $$hash{$next}[$y];
-                                                               }
-                                                               #copy active rule to next
-                                                               foreach my $i (0 .. $#{$$hash{$next}}) {
-                                                                       $$hash{$next}[$i] = $$hash{$key}[$i];
-                                                               }
-                                                               #copy saved rule to actual position
-                                                               foreach my $x (0 .. $#{$tmp{0}}) {
-                                                                       $$hash{$key}[$x] = $tmp{0}[$x];
-                                                               }
+                               $fwdfwsettings{'oldrulenumber'}--;
+                       }
+                       &General::writehasharray("$config", $hash);
+                       &rules;
+               }elsif($fwdfwsettings{'rulepos'} gt $fwdfwsettings{'oldrulenumber'}){
+                       my %tmp=();
+                       my $val=$fwdfwsettings{'rulepos'}-$fwdfwsettings{'oldrulenumber'};
+                               for (my $z=0;$z<$val;$z++){
+                                       foreach my $key (sort {$a <=> $b} keys %$hash){
+                                       if ($key eq $fwdfwsettings{'oldrulenumber'}) {
+                                               my $next = $key + 1;
+                                               if (exists $$hash{$next}){
+                                                       #save rule next
+                                                       foreach my $y (0 .. $#{$$hash{$next}}) {
+                                                               $tmp{0}[$y] = $$hash{$next}[$y];
+                                                       }
+                                                       #copy active rule to next
+                                                       foreach my $i (0 .. $#{$$hash{$next}}) {
+                                                               $$hash{$next}[$i] = $$hash{$key}[$i];
+                                                       }
+                                                       #copy saved rule to actual position
+                                                       foreach my $x (0 .. $#{$tmp{0}}) {
+                                                               $$hash{$key}[$x] = $tmp{0}[$x];
                                                        }
                                                }
                                        }
-                                       $fwdfwsettings{'oldrulenumber'}++;
-                               }
-                               &General::writehasharray("$config", $hash);
-                               &rules;
-                       }else{
-                               foreach my $key (sort {$a <=> $b} keys %$hash){
-                                       if($key eq $fwdfwsettings{'key'}){
-                                               $$hash{$key}[0]  = $fwdfwsettings{'RULE_ACTION'};
-                                               $$hash{$key}[1]  = $fwdfwsettings{'chain'};
-                                               $$hash{$key}[2]  = $fwdfwsettings{'ACTIVE'};
-                                               $$hash{$key}[3]  = $fwdfwsettings{'grp1'};
-                                               $$hash{$key}[4]  = $fwdfwsettings{$fwdfwsettings{'grp1'}};
-                                               $$hash{$key}[5]  = $fwdfwsettings{'grp2'};
-                                               $$hash{$key}[6]  = $fwdfwsettings{$fwdfwsettings{'grp2'}};
-                                               $$hash{$key}[7]  = $fwdfwsettings{'USE_SRC_PORT'};
-                                               $$hash{$key}[8]  = $fwdfwsettings{'PROT'};
-                                               $$hash{$key}[9]  = $fwdfwsettings{'ICMP_TYPES'};
-                                               $$hash{$key}[10] = $fwdfwsettings{'SRC_PORT'};
-                                               $$hash{$key}[11] = $fwdfwsettings{'USESRV'};
-                                               $$hash{$key}[12] = $fwdfwsettings{'TGT_PROT'};
-                                               $$hash{$key}[13] = $fwdfwsettings{'ICMP_TGT'};
-                                               $$hash{$key}[14] = $fwdfwsettings{'grp3'};
-                                               $$hash{$key}[15] = $fwdfwsettings{$fwdfwsettings{'grp3'}};
-                                               $$hash{$key}[16] = $fwdfwsettings{'ruleremark'};
-                                               $$hash{$key}[17] = $fwdfwsettings{'LOG'};
-                                               $$hash{$key}[18] = $fwdfwsettings{'TIME'};
-                                               $$hash{$key}[19] = $fwdfwsettings{'TIME_MON'};
-                                               $$hash{$key}[20] = $fwdfwsettings{'TIME_TUE'};
-                                               $$hash{$key}[21] = $fwdfwsettings{'TIME_WED'};
-                                               $$hash{$key}[22] = $fwdfwsettings{'TIME_THU'};
-                                               $$hash{$key}[23] = $fwdfwsettings{'TIME_FRI'};
-                                               $$hash{$key}[24] = $fwdfwsettings{'TIME_SAT'};
-                                               $$hash{$key}[25] = $fwdfwsettings{'TIME_SUN'};
-                                               $$hash{$key}[26] = $fwdfwsettings{'TIME_FROM'};
-                                               $$hash{$key}[27] = $fwdfwsettings{'TIME_TO'};
-                                               last;
-                                       }
                                }
+                               $fwdfwsettings{'oldrulenumber'}++;
                        }
                        &General::writehasharray("$config", $hash);
+                       &rules;
                }
        }
 }