Subversion Repositories ALCASAR

Rev

Rev 2324 | Rev 2326 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log

Rev Author Line No. Line
318 richard 1
<?php
2304 tom.houday 2
# $Id: network.php 2325 2017-07-10 12:13:57Z tom.houdayer $
3
 
2316 tom.houday 4
// written by steweb57, Rexy & Tom HOUDAYER
318 richard 5
 
861 richard 6
/********************
2316 tom.houday 7
*  READ CONF FILES  *
861 richard 8
*********************/
2316 tom.houday 9
define('CONF_FILE', '/usr/local/etc/alcasar.conf');
10
define('ETHERS_FILE', '/usr/local/etc/alcasar-ethers');
11
define('ETHERS_INFO_FILE', '/usr/local/etc/alcasar-ethers-info');
12
define('DNS_LOCAL_FILE', '/usr/local/etc/alcasar-dns-name');
2304 tom.houday 13
define('LETS_ENCRYPT_FILE', '/usr/local/etc/alcasar-letsencrypt');
2316 tom.houday 14
$conf_files = [CONF_FILE, ETHERS_FILE, ETHERS_INFO_FILE, DNS_LOCAL_FILE, LETS_ENCRYPT_FILE];
15
 
16
// Files reading test
17
foreach ($conf_files as $file) {
18
	if (!file_exists($file)) {
19
		exit("Requested file $file isn't present");
20
	}
21
	if (!is_readable($file)) {
22
		exit("Can't read the file $file");
23
	}
841 richard 24
}
2316 tom.houday 25
 
26
// Read ALCASAR CONF_FILE
27
$file_conf = fopen(CONF_FILE, 'r');
28
if (!$file_conf) {
29
	exit('Error opening the file '.CONF_FILE);
30
}
31
while (!feof($file_conf)) {
32
	$buffer = fgets($file_conf, 4096);
33
	if ((strpos($buffer, '=') !== false) && (substr($buffer, 0, 1) !== '#')) {
34
		$tmp = explode('=', $buffer);
35
		$conf[trim($tmp[0])] = trim($tmp[1]);
36
	}
37
}
38
fclose($file_conf);
39
 
40
// Choice of language
318 richard 41
$Language = 'en';
2316 tom.houday 42
if (isset($_SERVER['HTTP_ACCEPT_LANGUAGE'])) {
43
	$Langue	  = explode(',', $_SERVER['HTTP_ACCEPT_LANGUAGE']);
44
	$Language = strtolower(substr(chop($Langue[0]), 0, 2));
45
}
46
if ($Language === 'fr') {	// French
318 richard 47
	$l_network_title	= "Configuration réseau";
48
	$l_internet_legend	= "INTERNET";
1733 richard 49
	$l_ip_mask		= "Masque";
318 richard 50
	$l_ip_router		= "Passerelle";
736 franck 51
	$l_ip_public		= "Adresse IP publique";
2316 tom.houday 52
	$l_ip_dns1		= "DNS n°1";
53
	$l_ip_dns2		= "DNS n°2";
861 richard 54
	$l_dhcp_title		= "Service DHCP";
862 richard 55
	$l_dhcp_state		= "Mode actuel";
1484 richard 56
	$l_DHCP_on		= "actif";
57
	$l_DHCP_off		= "inactif";
2304 tom.houday 58
	$l_DHCP_off_explain	= "/!\\ Avant d'arrêter le serveur DHCP, vous devez renseigner les paramètres d'un serveur externe (cf. documentation).";
841 richard 59
	$l_static_dhcp_title	= "Réservation d'adresses IP statiques";
60
	$l_mac_address		= "Adresse MAC";
61
	$l_ip_address		= "Adresse IP";
1959 richard 62
	$l_host_name		= "Nom d'hôte";
63
	$l_del			= "Supprimer de la liste";
841 richard 64
	$l_add_to_list		= "Ajouter";
1733 richard 65
	$l_apply		= "Appliquer les changements";
1959 richard 66
	$l_local_dns		= "Résolution local de nom";
1733 richard 67
	$l_import_cert		= "Import de certificat";
68
	$l_private_key		= "Clé privée (.key) :";
69
	$l_certificate		= "Certificat (.crt) :";
1740 richard 70
	$l_server_chain		= "Chaîne de certification (si nécéssaire : .crt) :";
71
	$l_default_cert		= "Revenir au certificat d'origine";
72
	$l_import		= "Importer";
1743 clement.si 73
	$l_current_certificate  = "Certificat actuel";
74
	$l_validated		= "Validé par :";
2316 tom.houday 75
	$l_empty		= "Vide";
76
} else {			// English
318 richard 77
	$l_network_title	= "Network configuration";
78
	$l_internet_legend	= "INTERNET";
1733 richard 79
	$l_ip_mask		= "Mask";
841 richard 80
	$l_ip_router		= "Gateway";
318 richard 81
	$l_ip_public		= "Public IP address";
2316 tom.houday 82
	$l_ip_dns1		= "DNS n°1";
83
	$l_ip_dns2		= "DNS n°2";
861 richard 84
	$l_dhcp_title		= "DHCP service";
862 richard 85
	$l_dhcp_state		= "Current mode";
1484 richard 86
	$l_DHCP_on		= "enabled";
87
	$l_DHCP_off		= "disabled";
2304 tom.houday 88
	$l_DHCP_off_explain	= "/!\\ Before disabling the DHCP server, you must write the extern DHCP parameters in the config file (see Documentation)";
841 richard 89
	$l_static_dhcp_title	= "Static IP addresses reservation";
90
	$l_mac_address		= "MAC Address";
91
	$l_ip_address		= "IP Address";
1959 richard 92
	$l_host_name		= "Host name";
93
	$l_del			= "Delete from list";
841 richard 94
	$l_add_to_list		= "Add";
1733 richard 95
	$l_apply		= "Apply changes";
1959 richard 96
	$l_local_dns		= "Local name resolution";
1733 richard 97
	$l_import_cert		= "Certificate import";
98
	$l_private_key		= "Private key (.key) :";
99
	$l_certificate		= "Certificate (.crt) :";
1740 richard 100
	$l_server_chain		= "Server-chain (if necessary : .crt) :";
1733 richard 101
	$l_default_cert		= "Back to default certificate";
1740 richard 102
	$l_import		= "Import";
1743 clement.si 103
	$l_current_certificate  = "Current certificate";
104
	$l_validated		= "Validated by :";
2316 tom.houday 105
	$l_empty		= "Empty";
318 richard 106
}
2316 tom.houday 107
 
108
$reg_ip      = '/^(([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])\.){3}([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])$/';
109
$reg_ip_cidr = '/^(([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])\.){3}([0-9]|[1-9][0-9]|1[0-9]{2}|2[0-4][0-9]|25[0-5])(\/([0-9]|[1-2][0-9]|3[0-2]))$/';
110
 
111
$choix = (isset($_POST['choix'])) ? $_POST['choix'] : '';
112
 
113
switch ($choix) {
114
	case 'DHCP_On':
115
		exec('sudo /usr/local/bin/alcasar-dhcp.sh -on');
116
		break;
117
	case 'DHCP_Off':
118
		exec('sudo /usr/local/bin/alcasar-dhcp.sh -off');
119
		break;
120
 
121
	case 'new_mac':
122
		if ((!empty(trim($_POST['add_mac']))) && (!empty(trim($_POST['add_ip'])))) {
123
			$tab = file(ETHERS_FILE);
124
			if ($tab) { // the file isn't empty
125
				$insert = true;
126
				$new_mac_addr = trim($_POST['add_mac'], "\x00..\x20");
127
				$new_ip_addr  = trim($_POST['add_ip'],  "\x00..\x20");
128
				foreach ($tab as $line) { // verify that MAC or IP address doesn't exist
129
					$field = explode(' ', $line);
130
					$mac_addr = trim($field[0]);
131
					$ip_addr  = trim($field[1]);
132
					if (strcasecmp($new_mac_addr, $mac_addr) === 0) {
133
						$insert = false;
134
						break;
841 richard 135
					}
2316 tom.houday 136
					if (strcasecmp($new_ip_addr, $ip_addr) === 0) {
137
						$insert = false;
138
						break;
841 richard 139
					}
140
				}
2316 tom.houday 141
				if ($insert) {
142
					$line = $new_mac_addr . ' ' . $new_ip_addr . "\n";
143
					$pointeur = fopen(ETHERS_FILE, 'a');
144
					fwrite($pointeur, $line);
145
					fclose($pointeur);
146
					$pointeur = fopen(ETHERS_INFO_FILE, 'a');
147
					$line = "$new_mac_addr $new_ip_addr #" . trim($_POST['info'],"\x00..\x20") . "\n";
148
					fwrite($pointeur, $line);
149
					fclose($pointeur);
150
					exec('sudo /usr/bin/systemctl reload chilli');
1959 richard 151
				}
841 richard 152
			}
1959 richard 153
		}
2316 tom.houday 154
		break;
155
	case 'del_mac':
156
		foreach ($_POST as $key => $value) {
157
			if ($value == 'on') {
158
				$ether_file = ETHERS_FILE;
159
				$ether_file_info = ETHERS_INFO_FILE;
160
				exec("/bin/sed -i ".escapeshellarg("/^$key/d")." $ether_file"); 
161
				exec("/bin/sed -i ".escapeshellarg("/^$key/d")." $ether_file_info"); 
162
				exec('sudo /usr/bin/systemctl reload chilli');
841 richard 163
			}
164
		}
2316 tom.houday 165
		break;
166
 
167
	case 'new_host':
168
		if ((!empty(trim($_POST['add_host']))) and (!empty(trim($_POST['add_ip'])))) {
169
			$tab = file(DNS_LOCAL_FILE);
170
			if ($tab) { // the file isn't empty
171
				$insert = true;
172
				foreach ($tab as $line) { // verify that host or IP address doesn't exist
173
					if (preg_match('/^address/', $line)) {
174
						$field = explode('/', $line);
175
						$host_name = trim($field[1]);
176
						$ip_addr   = trim($field[2]);
177
						if (strcasecmp(trim($_POST['add_host']), trim($host_name)) === 0) {
178
							$insert = false;
179
							break;
1959 richard 180
						}
2316 tom.houday 181
						if (strcasecmp(trim($_POST['add_ip']), trim($ip_addr)) === 0) {
182
							$insert = false;
183
							break;
1959 richard 184
						}
841 richard 185
					}
186
				}
2316 tom.houday 187
				if ($insert) {
188
					$line1 = 'address=/'.trim($_POST['add_host']).'/'.trim($_POST['add_ip'])."\n";
189
					$explode_ip = explode('.', trim($_POST['add_ip']));
190
					$reverse_ip = implode('.', array_reverse($explode_ip));
191
					$line2 = 'ptr-record='.$reverse_ip.'.in-addr.arpa,'.trim($_POST['add_host'])."\n";
192
					$pointeur=fopen(DNS_LOCAL_FILE, 'a');
193
					fwrite($pointeur, $line1);
194
					fwrite($pointeur, $line2);
195
					fclose($pointeur);
196
					exec('sudo /usr/bin/systemctl restart dnsmasq');
197
					exec('sudo /usr/bin/systemctl restart dnsmasq-blacklist');
198
					exec('sudo /usr/bin/systemctl restart dnsmasq-whitelist');
199
					}
1959 richard 200
				}
841 richard 201
			}
2316 tom.houday 202
		break;
203
	case 'del_host':
204
		foreach ($_POST as $key => $value) {
205
			if ($value == 'on') {
206
				$dns_local_file = DNS_LOCAL_FILE;
207
				exec("/bin/sed -i ".escapeshellarg("/^$key/d")." $dns_local_file"); 
208
				exec('sudo /usr/bin/systemctl restart dnsmasq');
209
				exec('sudo /usr/bin/systemctl restart dnsmasq-blacklist');
210
				exec('sudo /usr/bin/systemctl restart dnsmasq-whitelist');
211
			}
841 richard 212
		}
2316 tom.houday 213
		break;
214
 
215
	case 'default_cert':	// Restore default certificate
216
		exec('sudo alcasar-importcert.sh -d');
217
		break;
218
 
219
	case 'import_cert':	// Import certificate
220
		if (isset($_FILES['key']) && isset($_FILES['crt']) && ($_FILES['key']['error'] == 0) && ($_FILES['crt']['error'] == 0)) {
221
			if ($_FILES['key']['size'] <= $maxsize && $_FILES['crt']['size'] <= $maxsize) {
222
				if (pathinfo($_FILES['key']['name'])['extension'] == 'key' && pathinfo($_FILES['crt']['name'])['extension'] == 'crt') {
223
					$dest = '/tmp/';
224
					$scpath = "";
225
					if (isset($_FILES['sc']) && (pathinfo($_FILES['sc']['name'])['extension'] == 'crt')) {
226
						$scpath = $dest.'server-chain.crt';
227
						move_uploaded_file($_FILES['sc']['tmp_name'], $scpath);
228
					}
229
					$keypath = $dest."alcasar.key";
230
					$crtpath = $dest."alcasar.crt";
231
					move_uploaded_file($_FILES['key']['tmp_name'], $keypath);
232
					move_uploaded_file($_FILES['crt']['tmp_name'], $crtpath);
233
					exec("sudo alcasar-importcert.sh -i $crtpath -k $keypath -c $scpath");
234
					if (file_exists($crtpath)) unlink($crtpath); 
235
					if (file_exists($keypath)) unlink($keypath); 
236
					if (file_exists($scpath))  unlink($scpath); 
237
				}
1959 richard 238
			}
239
		}
2316 tom.houday 240
		break;
2324 tom.houday 241
 
242
	case 'https_login':	// Set HTTPS login status
243
		if ($_POST['https_login'] === 'on') {
244
			exec('sudo /usr/local/bin/alcasar-https.sh --on');
245
		} else {
246
			exec('sudo /usr/local/bin/alcasar-https.sh --off');
247
		}
248
		header('Location: '.$_SERVER['PHP_SELF']);
249
		exit();
318 richard 250
}
251
 
2316 tom.houday 252
// Network changes
253
if ($choix === 'network_change') {
254
	$network_modification = false;
1733 richard 255
 
2316 tom.houday 256
	if (isset($_POST['dns1']) && (trim($_POST['dns1']) !== $conf['DNS1']) && preg_match($reg_ip, $_POST['dns1'])) {
257
		file_put_contents(CONF_FILE, str_replace('DNS1='.$conf['DNS1'], 'DNS1='.trim($_POST['dns1']), file_get_contents(CONF_FILE)));
258
		$network_modification = true;
318 richard 259
	}
2316 tom.houday 260
	if (isset($_POST['dns2']) && (trim($_POST['dns2']) !== $conf['DNS2']) && preg_match($reg_ip, $_POST['dns2'])) {
261
		file_put_contents(CONF_FILE, str_replace('DNS2='.$conf['DNS2'], 'DNS2='.trim($_POST['dns2']), file_get_contents(CONF_FILE)));
262
		$network_modification = true;
318 richard 263
	}
2316 tom.houday 264
	if (isset($_POST['ip_public']) && (trim($_POST['ip_public']) !== $conf['PUBLIC_IP']) && preg_match($reg_ip_cidr, $_POST['ip_public'])) {
265
		file_put_contents(CONF_FILE, str_replace('PUBLIC_IP='.$conf['PUBLIC_IP'], 'PUBLIC_IP='.trim($_POST['ip_public']), file_get_contents(CONF_FILE)));
266
		$network_modification = true;
267
	}
268
	if (isset($_POST['ip_gw']) && (trim($_POST['ip_gw']) !== $conf['GW']) && preg_match($reg_ip, $_POST['ip_gw'])) {
269
		file_put_contents(CONF_FILE, str_replace('GW='.$conf['GW'], 'GW='.trim($_POST['ip_gw']), file_get_contents(CONF_FILE)));
270
		$network_modification = true;
271
	}
272
	if (isset($_POST['ip_private']) && (trim($_POST['ip_private']) !== $conf['PRIVATE_IP']) && preg_match($reg_ip_cidr, $_POST['ip_private'])) {
273
		file_put_contents(CONF_FILE, str_replace('PRIVATE_IP='.$conf['PRIVATE_IP'], 'PRIVATE_IP='.trim($_POST['ip_private']), file_get_contents(CONF_FILE)));
274
		$network_modification = true;
275
	}
276
 
277
	if ($network_modification) {
278
		exec('sudo /usr/local/bin/alcasar-conf.sh -apply');
279
	}
280
 
281
	// Read CONF_FILE updated
282
	$file_conf = fopen(CONF_FILE, 'r');
283
	if (!$file_conf) {
284
		exit('Error opening the file '.CONF_FILE);
285
	}
286
	while (!feof($file_conf)) {
287
		$buffer = fgets($file_conf, 4096);
288
		if ((strpos($buffer, '=') !== false) && (substr($buffer, 0, 1) !== '#')) {
289
			$tmp = explode('=', $buffer);
290
			$conf[trim($tmp[0])] = trim($tmp[1]);
291
		}
292
	}
293
	fclose($file_conf);
318 richard 294
}
2316 tom.houday 295
 
296
// Let's Encrypt actions
297
if ($choix === 'le_issueCert') {
298
	// TODO: check ndd & mail format
299
 
300
	$email      = $_POST['email'];
301
	$domainName = $_POST['domainname'];
302
 
303
	exec('sudo /usr/local/bin/alcasar-letsencrypt.sh --issue --email '.escapeshellarg($email).' --domain '.escapeshellarg($domainName), $output, $exitCode);
1822 raphael.pi 304
 
2316 tom.houday 305
	$cmdResponse = implode("<br>\n", $output);
1822 raphael.pi 306
}
2316 tom.houday 307
if ($choix === 'le_renewCert') {
308
	if ((isset($_POST['recheck'])) && ((!empty($_POST['recheck'])) || (!empty($_POST['recheck_force'])))) {
309
		$forceOpt = (!empty($_POST['recheck_force'])) ? ' --force' : '';
318 richard 310
 
2316 tom.houday 311
		exec('sudo /usr/local/bin/alcasar-letsencrypt.sh --renew' . $forceOpt, $output, $exitCode);
1822 raphael.pi 312
 
2316 tom.houday 313
		$cmdResponse = implode("<br>\n", $output);
314
	} else if ((isset($_POST['cancel'])) && (!empty($_POST['cancel']))) {
315
		file_put_contents(LETS_ENCRYPT_FILE, preg_replace('/challenge=.*/','challenge=', file_get_contents(LETS_ENCRYPT_FILE)));
316
		file_put_contents(LETS_ENCRYPT_FILE, preg_replace('/domainRequest=.*/','domainRequest=', file_get_contents(LETS_ENCRYPT_FILE)));
317
	}
1822 raphael.pi 318
}
319
 
320
 
2316 tom.houday 321
// Read Let's Encrypt configuration file
322
$file_conf_LE = fopen(LETS_ENCRYPT_FILE, 'r');
323
if (!$file_conf_LE) {
324
	exit('Error opening the file '.LETS_ENCRYPT_FILE);
2299 tom.houday 325
}
2316 tom.houday 326
while (!feof($file_conf_LE)) {
327
	$buffer = fgets($file_conf_LE, 4096);
2299 tom.houday 328
	if ((strpos($buffer, '=') !== false) && (substr($buffer, 0, 1) !== '#')) {
329
		$tmp = explode('=', $buffer);
2316 tom.houday 330
		$LE_conf[trim($tmp[0])] = trim($tmp[1]);
1822 raphael.pi 331
	}
332
}
2316 tom.houday 333
fclose($file_conf_LE);
334
 
335
 
336
// Fonction de test de connectivité internet
337
function internetTest() {
338
	$host = 'www.google.fr'; # Google Test
339
	$port = '80';
340
 
341
	if (! $sock = @fsockopen($host, $port, $num, $error, 5)) {
342
		return false;
343
	} else {
344
		fclose($sock);
345
		return true;
346
	}
347
}
348
 
349
$internet_connected = InternetTest();
350
if ($internet_connected) {
351
	$internet_publicIP = file_get_contents('http://ipecho.net/plain');
352
} else {
353
	$internet_publicIP = '-.-.-.-';
354
}
355
 
356
 
357
// Network interfaces
358
$interfacesIgnored = ['lo', 'tun[0-9]*', $conf['EXTIF'], $conf['INTIF']];
359
exec("ip -o link show | awk -F': ' '{print $2}' | sed '/^" . implode('\\|', $interfacesIgnored) . "$/d'", $interfacesAvailable);
360
 
361
// TODO: Pending the next version
362
$externalNetworks = [
363
	(object) [
364
		'interface' => $conf['EXTIF'],
365
		'ip'        => $conf['PUBLIC_IP'],
366
		'gateway'   => $conf['GW']
367
	]
368
];
369
$internalNetworks = [
370
	(object) [
371
		'interface' => $conf['INTIF'],
372
		'ip'        => $conf['PRIVATE_IP']
373
	]
374
];
375
 
1740 richard 376
?>
377
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/html4/loose.dtd">
2316 tom.houday 378
<html>
318 richard 379
<head>
2316 tom.houday 380
	<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
381
	<title><?= $l_network_title ?></title>
382
	<link rel="stylesheet" href="/css/style.css" type="text/css">
383
	<link rel="stylesheet" href="/css/acc.css" type="text/css">
384
	<script src="/js/jquery.min.js"></script>
385
	<script src="/js/jquery.connections.js"></script>
386
	<script type="text/javascript">
387
	function MAC_Control(formulaire){
388
		// MAC control (upper case and '-' separator)
389
		var regex_mac = /^([0-9a-fA-F]{2}(-|:)){5}[0-9a-fA-F]{2}$/;
390
		if (regex_mac.test(document.forms[formulaire].add_mac.value)){
391
			document.forms[formulaire].add_mac.value = document.forms[formulaire].add_mac.value.toUpperCase().replace(/:/g, '-');
392
			return true;
393
		} else {
394
			alert('Invalid MAC address');
395
			return false;
396
		}
1578 richard 397
	}
2316 tom.houday 398
	</script>
399
	<style>
400
	.network-configurator {
401
		width: 100%;
402
	}
403
	.network-configurator > * {
404
		display: inline-block;
405
		vertical-align: top;
406
		text-align: center;
407
	}
408
	.network-configurator > .internet, .network-configurator > .alcasar {
409
		width: 20%;
410
	}
411
	.network-configurator > .externals, .network-configurator > .internals {
412
		width: 30%;
413
	}
414
	.network-configurator .actions {
415
		position: absolute;
416
		background-color: #ddd;
417
		padding: 0 2px;
418
	}
419
	.network-configurator .actions a {
420
		text-decoration: none;
421
	}
422
	.network-configurator .actions a:hover {
423
		font-weight: bold;
424
	}
425
	.network-configurator > .alcasar .actions-externals {
426
		bottom: 0;
427
		left: 0;
428
		border-radius: 0 5px;
429
	}
430
	.network-configurator > .alcasar .actions-internals {
431
		bottom: 0;
432
		right: 0;
433
		border-radius: 5px 0;
434
	}
435
	.network-configurator .actions-network {
436
		top: 0;
437
		right: 0;
438
		border-radius: 0 5px;
439
	}
440
	.network-configurator .network-box {
441
		display: inline-block;
442
		min-height: 100px;
443
		margin: 5px;
444
		padding: 3px;
445
		text-align: left;
446
		background-color: #f7f3ef;
447
		position: relative;
448
		border-radius: 5px;
449
		border: 2px solid grey;
450
	}
451
	.network-configurator .network-connector {
452
		display: inline-block;
453
		position: absolute;
454
		top: 50%;
455
		margin-top: -5px;
456
		margin-left: -5px;
457
		width: 10px;
458
		height: 10px;
459
		border-radius: 5px;
460
		background-color: black;
461
	}
462
	.network-configurator .network-connector[data-connector-direction="left"] {
463
		border-radius: 5px 0px 0px 5px;
464
	}
465
	.network-configurator .network-connector[data-connector-direction="right"] {
466
		border-radius: 0px 5px 5px 0px;
467
	}
468
	.network-configurator div[data-network-type] {
469
		position: relative;
470
	}
471
	</style>
472
	<script>
473
	$(document).ready(function () {
474
		const interfacesAvailable = <?= ((!empty($interfacesAvailable)) ? "['".implode("', '", $interfacesAvailable)."']" : '[]') ?>;
475
 
476
		const wireStyles = {
477
			available: { border: '5px double green' }
2325 tom.houday 478
		};
2316 tom.houday 479
 
480
		// Add external network
481
		$('.network-configurator .add-external-network').click(function (event) {
482
			event.preventDefault();
483
			let options = '';
484
			if (interfacesAvailable.length === 0) {
485
				options = '<option value=""></option>';
486
			} else {
487
				for (let i = 0; i < interfacesAvailable.length; i++) {
488
					options += '<option value="' + interfacesAvailable[i] + '">' + interfacesAvailable[i] + '</option>';
489
				}
490
			}
491
			$('.network-configurator .externals').append(' \
492
				<div data-network-type="external"> \
493
					<div class="network-connector" data-connector-network="internet" data-connector-direction="left"></div> \
494
					<div class="network-box"> \
495
						<div class="actions actions-network"><a href="#" class="remove-network" title="Supprimer ce réseau">-</a></div> \
496
						<label for="ext_interface_X"><?= 'Interface' ?></label> <select name="interface" id="ext_interface_X">' + options + '</select><br> \
497
						<label for="ext_ip_X"><?= $l_ip_address ?></label> <input style="width:150px" type="text" name="ip_public" id="ext_ip_X" value="" /><br> \
498
						<label for="ext_gateway_X"><?= $l_ip_router ?></label> <input style="width:120px" type="text" name="ip_gw" id="ext_gateway_X" value="" /> \
499
					</div> \
500
					<div class="network-connector" data-connector-network="external" data-connector-direction="right"></div> \
501
				</div>');
502
			addWire($('div[data-network-type="external"]:last'));
503
		});
504
 
505
		// Add internal network
506
		$('.network-configurator .add-internal-network').click(function (event) {
507
			event.preventDefault();
508
			$('.network-configurator .internals').append(' \
509
					<div data-network-type="internal"> \
510
						<div class="network-connector" data-connector-network="internal" data-connector-direction="left"></div> \
511
						<div class="network-box"> \
512
							<div class="actions actions-network"><a href="#" class="remove-network" title="Supprimer ce réseau">-</a></div> \
513
							<label for="int_interface_X"><?= 'Interface' ?></label> <select name="interface" id="int_interface_X" disabled><option value=""></option></select><br> \
514
							<label for="int_ip_X"><?= $l_ip_address ?></label> <input style="width:150px" type="text" name="ip_private" id="int_ip_X" value="" /><br> \
515
						</div> \
516
					</div>');
517
			addWire($('div[data-network-type="internal"]:last'));
518
		});
519
 
520
		// Remove network
521
		$('.network-configurator').on('click', '.remove-network', function (event) {
522
			event.preventDefault();
523
			$(this).parent().parent().parent().fadeOut(200, function() {
524
				const networkType = $(this).data('networkType');
525
				$(this).remove();
526
 
527
				// Update wires
528
				if (networkType === 'external') {
529
					$('div[data-network-type="internet"]>div.network-connector[data-connector-network="internet"]').connections('update');
530
					$('div[data-network-type="alcasar"]>div.network-connector[data-connector-network="external"]').connections('update');
531
				} else if (networkType === 'internal') {
532
					$('div[data-network-type="alcasar"]>div.network-connector[data-connector-network="internal"]').connections('update');
533
				}
534
			});
535
		});
536
 
537
		const addWire = function (network) {
538
			const networkType = network.data('networkType');
539
			if (networkType === 'external') {
540
				$().connections({ from: 'div[data-network-type="internet"]>div.network-connector[data-connector-network="internet"]', to: 'div[data-network-type="external"]>div.network-connector[data-connector-network="internet"]:last', css: wireStyles.available, within: 'div[data-network-type="external"]:last' });
541
				$().connections({ from: 'div[data-network-type="alcasar"]>div.network-connector[data-connector-network="external"]', to: 'div[data-network-type="external"]>div.network-connector[data-connector-network="external"]:last', css: wireStyles.available, within: 'div[data-network-type="external"]:last' });
542
			} else if (networkType === 'internal') {
543
				$().connections({ from: 'div[data-network-type="alcasar"]>div.network-connector[data-connector-network="internal"]', to: 'div[data-network-type="internal"]>div.network-connector[data-connector-network="internal"]:last', css: wireStyles.available, within: 'div[data-network-type="internal"]:last' });
544
			}
2325 tom.houday 545
		};
2316 tom.houday 546
 
2325 tom.houday 547
		window.addEventListener('resize', function () {
548
			$('div.network-connector[data-connector-network]').connections('update');
549
		});
550
 
2316 tom.houday 551
		// Add wires to existing networks
552
		$('div[data-network-type="external"]').add('div[data-network-type="internal"]').each(function (index, element) {
553
			addWire($(this));
2325 tom.houday 554
		});
2316 tom.houday 555
	});
556
	</script>
318 richard 557
</head>
558
<body>
2316 tom.houday 559
	<div class="panel">
560
		<div class="panel-header"><?= $l_network_title ?></div>
561
		<div class="panel-body">
562
			<form action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>" method="post">
563
				<div class="network-configurator">
564
					<div class="internet">
565
						<div data-network-type="internet">
566
							<div class="network-box">
567
								<?= $l_internet_legend ?> <img src="/images/state_<?= (($internet_connected) ? 'ok' : 'error') ?>.gif"><br>
568
								<?= $l_ip_public ?> : <?= $internet_publicIP ?><br>
569
								<label for="dns1"><?= $l_ip_dns1 ?></label> : <input style="width:120px" type="text" id="dns1" name="dns1" value="<?= $conf['DNS1'] ?>" /><br>
570
								<label for="dns2"><?= $l_ip_dns2 ?></label> : <input style="width:120px" type="text" id="dns2" name="dns2" value="<?= $conf['DNS2'] ?>" />
571
							</div>
572
							<div class="network-connector" data-connector-network="internet" data-connector-direction="right"></div>
573
						</div>
574
					</div><div class="externals">
575
						<?php foreach ($externalNetworks as $index => $network): ?>
576
							<div data-network-type="external">
577
								<div class="network-connector" data-connector-network="internet" data-connector-direction="left"></div>
578
								<div class="network-box">
579
									<!-- <div class="actions actions-network"><a href="#" class="remove-network" title="Supprimer ce réseau">-</a></div> -->
580
									<label for="ext_interface_<?= $index ?>"><?= 'Interface' ?></label> <select name="ext_interface[<?= $index ?>]" id="ext_interface_<?= $index ?>" disabled><option value="<?= $network->interface ?>"><?= $network->interface ?></option></select><br>
581
									<label for="ext_ip_<?= $index ?>"><?= $l_ip_address ?></label> <input style="width:150px" type="text" name="ip_public" id="ext_ip_<?= $index ?>" value="<?= $network->ip ?>" /><br>
582
									<label for="ext_gateway_<?= $index ?>"><?= $l_ip_router ?></label> <input style="width:120px" type="text" name="ip_gw" id="ext_gateway_<?= $index ?>" value="<?= $network->gateway ?>" />
583
								</div>
584
								<div class="network-connector" data-connector-network="external" data-connector-direction="right"></div>
585
							</div>
586
						<? endforeach; ?>
587
					</div><div class="alcasar">
588
						<div data-network-type="alcasar">
589
							<div class="network-connector" data-connector-network="external" data-connector-direction="left"></div>
590
							<div class="network-box">
591
								<!-- <div class="actions actions-externals">
592
									<div><a href="#" class="add-external-network" title="Ajouter un réseau externe">+</a></div>
593
								</div> -->
594
								<div class="alcasar-logo"><img src="/images/logo-alcasar.png" style="width: 100px;height: 100px;"></div>
595
								<!-- <div class="actions actions-internals">
596
									<div><a href="#" class="add-internal-network" title="Ajouter un réseau interne">+</a></div>
597
									<div><a href="#" class="add-internal-wifi-network">++</a></div>
598
								</div> -->
599
							</div>
600
							<div class="network-connector" data-connector-network="internal" data-connector-direction="right"></div>
601
						</div>
602
					</div><div class="internals">
603
						<?php foreach ($internalNetworks as $network): ?>
604
							<div data-network-type="internal">
605
								<div class="network-connector" data-connector-network="internal" data-connector-direction="left"></div>
606
								<div class="network-box">
607
									<!-- <div class="actions actions-network"><a href="#" class="remove-network" title="Supprimer ce réseau">-</a></div> -->
608
									<label for="int_interface_<?= $index ?>"><?= 'Interface' ?></label> <select name="int_interface[<?= $index ?>]" id="int_interface_<?= $index ?>" disabled><option value="<?= $network->interface ?>"><?= $network->interface ?></option></select><br>
609
									<label for="int_ip_<?= $index ?>"><?= $l_ip_address ?></label> <input style="width:150px" type="text" name="ip_private" id="int_ip_<?= $index ?>" value="<?= $network->ip ?>" /><br>
610
								</div>
611
							</div>
612
						<? endforeach; ?>
613
					</div>
614
				</div>
615
				<hr>
616
				<div style="text-align: center; margin: 5px">
617
					<input type="hidden" name="choix" value="network_change">
618
					<input type="submit" value="<?= $l_apply ?>">
619
				</div>
620
			</form>
621
		</div>
622
	</div>
623
	<br>
624
 
2304 tom.houday 625
<table width="100%" cellspacing="0" cellpadding="0" border="0">
2316 tom.houday 626
	<tr><th><?= $l_dhcp_title?></th></tr>
318 richard 627
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
628
</table>
2304 tom.houday 629
<table width="100%" cellspacing="0" cellpadding="5" border="1">
2316 tom.houday 630
	<tr><td colspan="2" valign="middle" align="left">
631
	<center><h3><?= $l_dhcp_state ?> : <?= ${'l_DHCP_'.$conf['DHCP']} ?></h3></center>
632
	<form action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>" method="POST">
2324 tom.houday 633
		<select name="choix">
2316 tom.houday 634
			<option value="DHCP_Off"<?= ((!strcmp($conf['DHCP'], 'off')) ? ' selected' : '') ?>><?= $l_DHCP_off ?></option>
635
			<option value="DHCP_On"<?= ((!strcmp($conf['DHCP'], 'on')) ? ' selected' : '') ?>><?= $l_DHCP_on ?></option>
636
		</select>
637
		<input type="submit" value="<?= $l_apply ?>">
638
		<br><?= $l_DHCP_off_explain ?>
639
	</form>
640
	</td></tr>
641
 
1822 raphael.pi 642
	<?php
2316 tom.houday 643
	if ($conf['DHCP'] === 'on') {
644
		require('network2.php');
645
	}
1822 raphael.pi 646
	?>
318 richard 647
</table>
2316 tom.houday 648
<br>
2013 raphael.pi 649
 
2304 tom.houday 650
<table width="100%" cellspacing="0" cellpadding="0" border="0">
2316 tom.houday 651
	<tr><th><?= $l_local_dns?></th></tr>
1959 richard 652
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
653
</table>
2304 tom.houday 654
<table width="100%" cellspacing="0" cellpadding="5" border="1">
2316 tom.houday 655
<tr>
656
	<td width="50%" align="center">
657
		<form action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>" method="POST">
658
		<table cellspacing="2" cellpadding="3" border="1">
659
		<tr><th><?= $l_host_name ?></th><th><?= $l_ip_address ?></th><th><?= $l_del ?></th></tr>
660
		<?php
661
		// Read the "dns_local" file
662
		$line_exist = false;
663
		$tab = file(DNS_LOCAL_FILE);
664
		if ($tab) { // not empty
665
			foreach ($tab as $line) {
666
				if (preg_match ('/^address/', $line)) {
667
					$line_exist = true;
668
					$field = explode('/', $line);
669
					$host_name = $field[1];
670
					$ip_addr   = $field[2];
671
					echo "<tr><td>$host_name</td>";
672
					echo "<td>$ip_addr</td>";
673
					echo "<td><input type=\"checkbox\" name=\"$host_name\"></td>";
674
					echo "</tr>";
675
				}
1959 richard 676
			}
677
		}
2316 tom.houday 678
		if (!$line_exist) {
679
			echo '<tr><td colspan="3" style="text-align: center;font-style: italic;">'.$l_empty.'</td></tr>';
680
		}
681
		?>
682
		</table>
683
		<?php if ($line_exist): ?>
684
			<input type="hidden" name="choix" value="del_host">
685
			<input type="submit" value="<?= $l_apply ?>">
686
		<?php endif; ?>
687
		</form>
688
	</td>
689
	<td width="50%" valign="middle" align="center">
690
		<form name="new_host" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>" method="POST">
691
		<table cellspacing="2" cellpadding="3" border="1">
692
		<tr>
693
			<th><?= $l_host_name ?></th><th><?= $l_ip_address ?></th><td></td>
694
		</tr>
695
		<tr>
696
			<td>Ex. : my_nas</td><td>Ex. : 192.168.182.10</td><td></td>
697
		</tr>
698
		<tr>
699
			<td><input type="text" name="add_host" size="17"></td>
700
			<td><input type="text" name="add_ip" size="10"><input type="hidden" name="choix" value="new_host"></td>
701
			<td><input type=submit class=button value="<?= $l_add_to_list ?>"></td>
702
		</tr>
703
		</table>
704
		</form>
705
	</td>
706
</tr>
1959 richard 707
</table>
2316 tom.houday 708
<br>
709
 
2304 tom.houday 710
<table width="100%" cellspacing="0" cellpadding="0" border="0">
2316 tom.houday 711
	<tr><th><?= $l_import_cert ?></th></tr>
1710 richard 712
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
713
</table>
2304 tom.houday 714
<table width="100%" cellspacing="0" cellpadding="5" border="1">
715
	<tr>
2324 tom.houday 716
		<td width="50%" valign="top">
717
			<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>">
718
				<input type="hidden" name="choix" value="https_login">
719
				<span>Autoriser les utilisateurs à se connecter de manière non sécurisée :</span><br>
720
				<select name="https_login">
721
					<option value="on"<?=  (($conf['HTTPS_LOGIN'] === 'on')  ? ' selected' : '') ?>>Non</option>
722
					<option value="off"<?= (($conf['HTTPS_LOGIN'] === 'off') ? ' selected' : '') ?>>Oui</option>
723
				</select>
724
				<input type="submit" value="<?= $l_apply ?>"><br>
725
				<span>/!\ Les identifiants de connexion seront envoyés en clair.</span>
2297 tom.houday 726
			</form>
2324 tom.houday 727
			<br>
728
			<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>">
729
				<input type="hidden" name="choix" value="default_cert">
730
				<input type="submit" value="<?= $l_default_cert ?>" <?= (!file_exists('/etc/pki/tls/certs/alcasar.crt.old') || !file_exists('/etc/pki/tls/private/alcasar.key.old')) ? ' disabled' : '' ?>>
731
			</form>
732
		</td>
733
		<td width="50%" valign="top">
2297 tom.houday 734
			<?php
735
			$certificateInfos = openssl_x509_parse(file_get_contents('/etc/pki/tls/certs/alcasar.crt'));
736
 
737
			$cert_expiration_date = date('d-m-Y H:i:s', $certificateInfos['validTo_time_t']);
738
			$domain               = $certificateInfos['subject']['CN'];
739
			$organization         = (isset($certificateInfos['subject']['O'])) ? $certificateInfos['subject']['O'] : '';
740
			$CAdomain             = $certificateInfos['issuer']['CN'];
741
			$CAorganization       = (isset($certificateInfos['issuer']['O'])) ? $certificateInfos['issuer']['O'] : '';
742
			?>
743
			<h3><?= $l_current_certificate ?></h3>
744
			Expiration Date : <?= $cert_expiration_date ?><br>
745
			Common name : <?= $domain ?><br>
746
			Organization : <?= $organization ?><br/>
747
			<h4><?=  $l_validated ?></h4>
748
			Common name : <?= $CAdomain ?><br>
749
			Organization : <?= $CAorganization ?><br>
2324 tom.houday 750
		</td>
751
	</tr>
752
	<tr>
753
		<td width="50%" valign="top">
754
			<h3>Importer un certificat</h3>
755
			<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>" enctype="multipart/form-data">
756
				<?= $l_private_key;?> <input type="file" name="key"><br>
757
				<?= $l_certificate;?> <input type="file" name="crt"><br>
758
				<?= $l_server_chain;?> <input type="file" name="sc"><br>
759
				<input type="hidden" name="choix" value="import_cert">
760
				<input type="submit" value="<?= $l_import ?>">
2297 tom.houday 761
			</form>
762
		</td>
2304 tom.houday 763
		<td width="50%" valign="top">
764
			<?php
765
			// Get step
766
			if (empty($LE_conf['domainRequest'])) {
767
				$step = 1;
768
			} else if (!empty($LE_conf['challenge'])) {
769
				$step = 2;
770
			} else if (($domain === $LE_conf['domainRequest']) && (empty($LE_conf['challenge']))) {
771
				$step = 3;
772
			} else {
773
				$step = 1;
774
			}
775
			?>
776
			<h3>Intégration Let's Encrypt</h3>
2324 tom.houday 777
			<?php if ($step === 1): ?>
2316 tom.houday 778
				<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>">
779
					<input type="hidden" name="choix" value="le_issueCert">
2304 tom.houday 780
					Status : Inactif<br>
781
					Email : <input type="text" name="email" placeholder="adresse@email.com"<?= ((!empty($LE_conf['email'])) ? ' value="'.$LE_conf['email'].'"' : '') ?>><br>
782
					Nom de domaine : <input type="text" name="domainname" placeholder="alcasar.domain.tld" required><br>
783
					<input type="submit" name="issue" value="Envoyer"><br>
784
				</form>
785
			<?php elseif ($step === 2): ?>
2316 tom.houday 786
				<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>">
787
					<input type="hidden" name="choix" value="le_renewCert">
2304 tom.houday 788
					Status : En attente de validation<br>
789
					Nom de domaine : <?= $LE_conf['domainRequest'] ?><br>
790
					Demandé le : <?= date('d-m-Y H:i:s', $LE_conf['dateIssueRequest']) ?><br>
791
					Entrée DNS TXT : "<?= '_acme-challenge.'.$LE_conf['domainRequest'] ?>"<br>
792
					Challenge : "<?= $LE_conf['challenge'] ?>"<br>
793
					<input type="submit" name="recheck" value="Revérifier"> <input type="submit" name="cancel" value="Annuler"><br>
794
				</form>
795
			<?php elseif ($step === 3): ?>
2316 tom.houday 796
				<form method="post" action="<?= htmlspecialchars($_SERVER['PHP_SELF']) ?>">
797
					<input type="hidden" name="choix" value="le_renewCert">
2304 tom.houday 798
					Status : Actif<br>
799
					Nom de domaine : <?= $LE_conf['domainRequest'] ?><br>
800
					API :  <?= $LE_conf['dnsapi'] ?><br>
801
					Prochain renouvellement : <?= date('d-m-Y', $LE_conf['dateNextRenewal']) ?><br>
802
					<?php if ($LE_conf['dateNextRenewal'] <= date('U')): ?>
803
						<input type="submit" name="recheck" value="Renouveller"><br>
804
					<?php else: ?>
805
						<input type="submit" name="recheck_force" value="Renouveller (forcer)"><br>
806
					<?php endif; ?>
807
				</form>
808
			<?php endif; ?>
809
			<?php if (isset($cmdResponse)): ?>
810
				<p><?= $cmdResponse ?></p>
811
			<?php endif; ?>
812
		</td>
1710 richard 813
	</tr>
814
</table>
318 richard 815
</body>
816
</html>