Subversion Repositories ALCASAR

Rev

Rev 696 | Rev 838 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log

Rev Author Line No. Line
318 richard 1
<?php
2
/* written by steweb57 */
3
 
4
# Choice of language
5
$Language = 'en';
6
if(isset($_SERVER['HTTP_ACCEPT_LANGUAGE'])){
7
	$Langue		= explode(",",$_SERVER['HTTP_ACCEPT_LANGUAGE']);
8
	$Language	= strtolower(substr(chop($Langue[0]),0,2)); }
9
if($Language == 'fr'){
10
	$l_network_title	= "Configuration réseau";
361 franck 11
	$l_main_services	= "Services réseau principaux";
356 richard 12
	$l_opt_services		= "Services réseau optionnels";
318 richard 13
	$l_eth0_legend		= "Eth0 (Interface connectée à Internet)";
14
	$l_eth1_legend		= "Eth1 (Réseau de consultation)";
15
	$l_internet_legend	= "INTERNET";
16
	$l_ip_adr		= "Adresse IP";
17
	$l_ip_mask		= "Masque";
18
	$l_ip_router		= "Passerelle";
736 franck 19
	$l_ip_public		= "Adresse IP publique";
318 richard 20
	$l_ip_dns1		= "DNS1";
21
	$l_ip_dns2		= "DNS2";
353 richard 22
	$l_service_title 	= "Nom du service";
318 richard 23
	$l_service_start 	= "D&eacute;marrer";
24
	$l_service_stop 	= "Arr&ecirc;ter";
25
	$l_service_restart 	= "Red&eacute;marrer";
26
	$l_service_status 	= "Status";
27
	$l_service_action 	= "Actions";
28
	$l_enable		= "actif";
29
	$l_disable		= "inactif";
353 richard 30
	$l_radiusd		= "Serveur d'authentification et d'autorisation";
31
	$l_chilli		= "Passerelle d'interception";
32
	$l_dansguardian		= "Filtre d'URL et de contenu WEB";
33
	$l_mysqld		= "Serveur de la base de données usager";
356 richard 34
	$l_squid		= "Serveur de cache WEB";
353 richard 35
	$l_dnsmasq		= "Serveur DNS et filtre de domaine";
36
	$l_httpd		= "Serveur WEB (Centre de Gestion d'ALCASAR)";
37
	$l_havp			= "Filtre antivirus WEB";
38
	$l_sshd			= "Accès sécurisée à distance";
356 richard 39
	$l_freshclam		= "Mise à jour de l'antivirus toutes les 2 heures";
40
	$l_ntpd			= "Service de mise à l'heure réseau";
318 richard 41
} else {
42
	$l_network_title	= "Network configuration";
356 richard 43
	$l_main_services	= "Main network services";
44
	$l_opt_services		= "Optional network services";
318 richard 45
	$l_eth0_legend		= "Eth0 (Internet connected interface)";
46
	$l_eth1_legend		= "Eth1 (Private network)";
47
	$l_internet_legend	= "INTERNET";
48
	$l_ip_adr		= "IP Address";
49
	$l_ip_mask		= "Mask";
50
	$l_ip_router		= "Router";
51
	$l_ip_public		= "Public IP address";
52
	$l_ip_dns1		= "DNS1 :";
53
	$l_ip_dns2		= "DNS2";
353 richard 54
	$l_service_title 	= "Service name";
318 richard 55
	$l_service_start 	= "Start";
56
	$l_service_stop 	= "Stop";
57
	$l_service_restart 	= "Restart";
58
	$l_service_status 	= "Status";
59
	$l_service_action 	= "Actions";
60
	$l_enable		= "enable";
61
	$l_disable		= "disable";
353 richard 62
	$l_radiusd		= "Authentication and authorisation serveur";
63
	$l_chilli		= "Interception gateway";
64
	$l_dansguardian		= "URL and WEB content filter";
65
	$l_mysqld		= "User database server";
66
	$l_squid		= "Proxy Cache WEB";
67
	$l_dnsmasq		= "DNS and domain name filter";
68
	$l_httpd		= "WEB server (ALCASAR Control Center)";
69
	$l_havp			= "WEB antivirus filter";
70
	$l_sshd			= "Secure remote access";
356 richard 71
	$l_freshclam		= "WEB antivirus update (every 2 hours)";
72
	$l_ntpd			= "Network time";
318 richard 73
}
74
 
75
/********************************************************************
76
*	CONSTANTES AVEC CHEMINS DES FICHIERS DE CONFIGURATION			*
77
*********************************************************************/
78
 
355 richard 79
define ("ALCASAR_CHILLI", "/etc/chilli.conf");
612 richard 80
define ("CONF_FILE", "/usr/local/etc/alcasar.conf");
318 richard 81
/********************************************************************
82
*				TEST DES FICHIERS DE CONFIGURATION					*
83
*********************************************************************/
84
 
85
//Test de présence et des droits en lecture des fichiers de configuration.
86
if (!file_exists(ALCASAR_CHILLI)){
87
	exit("Fichier de configuration ".ALCASAR_CHILLI." non présent");
88
}
654 richard 89
if (!file_exists(CONF_FILE)){
90
	exit("Fichier de configuration ".CONF_FILE." non présent");
318 richard 91
}
654 richard 92
if (!is_readable(ALCASAR_CHILLI)){
93
	exit("Vous n'avez pas les droits de lecture sur le fichier ".ALCASAR_CHILLI);
318 richard 94
}
654 richard 95
if (!is_readable(CONF_FILE)){
96
	exit("Vous n'avez pas les droits de lecture sur le fichier ".CONF_FILE);
318 richard 97
}
98
 
99
//fonction pour faire une action (start,stop,restart) sur un service
100
function serviceExec($service, $action){
101
	if (($action == "start")||($action == "stop")||($action == "restart")){
102
		exec("sudo /sbin/service $service $action",$retval, $retstatus);
434 richard 103
		if ($service == "sshd"){
595 richard 104
			if ($action == "start"){
105
				exec("sudo /sbin/chkconfig --add $service");
612 richard 106
				file_put_contents(CONF_FILE, str_replace('SSH=off', 'SSH=on', file_get_contents(CONF_FILE)));
604 richard 107
				exec ("sudo /usr/local/bin/alcasar-iptables.sh");
595 richard 108
				}
109
			if ($action == "stop"){
110
			       	exec("sudo /sbin/chkconfig --del $service");
612 richard 111
				file_put_contents(CONF_FILE, str_replace('SSH=on', 'SSH=off', file_get_contents(CONF_FILE)));
604 richard 112
				exec ("sudo /usr/local/bin/alcasar-iptables.sh");
595 richard 113
				}
434 richard 114
			}
318 richard 115
		return $retstatus;
116
	} else {
117
		return false;
118
	}
119
}
120
//fonction définissant le status d'un service
121
//(en fonction de la présence d'un mot clé dans la valeur de status)
122
function checkServiceStatus($service, $strMatch){
123
	$response = false;
124
	exec("sudo /sbin/service $service status",$retval);
125
	foreach( $retval as $val ) {
126
		if (strpos($val,$strMatch)){
127
			$response = true;
128
			break;
129
		}
130
	}
131
	return $response;
132
}
133
 
134
//-------------------------------
135
// Les actions sur un service
136
//-------------------------------
137
//sécurité sur les actions à réaliser
356 richard 138
$autorizeService = array("radiusd","chilli","dansguardian","mysqld","squid","dnsmasq","httpd","havp","sshd","freshclam","ntpd");
318 richard 139
$autorizeAction = array("start","stop","restart");
140
 
141
if (isset($_GET['service'])&&(in_array($_GET['service'], $autorizeService))) {
142
    if (isset($_GET['action'])&&(in_array($_GET['action'], $autorizeAction))) {
143
    	$execStatus = serviceExec($_GET['service'], $_GET['action']);
144
		// execStatus non exploité
145
	}
146
}
147
//-------------------------------
148
//recherche du status des services
149
//-------------------------------
356 richard 150
$MainServiceStatus = array();
151
$MainServiceStatus['radiusd'] = checkServiceStatus("radiusd","pid");
152
$MainServiceStatus['chilli'] = checkServiceStatus("chilli","pid");
153
$MainServiceStatus['dansguardian'] = checkServiceStatus("dansguardian","pid");
154
$MainServiceStatus['mysqld'] = checkServiceStatus("mysqld","OK");
155
$MainServiceStatus['squid'] = checkServiceStatus("squid","pid");
156
$MainServiceStatus['dnsmasq'] = checkServiceStatus("dnsmasq","pid");
157
$MainServiceStatus['httpd'] = checkServiceStatus("httpd","pid");
158
$MainServiceStatus['havp'] = checkServiceStatus("havp","pid");
318 richard 159
 
356 richard 160
$OptServiceStatus = array();
161
$OptServiceStatus['sshd'] = checkServiceStatus("sshd","pid");
162
$OptServiceStatus['freshclam'] = checkServiceStatus("freshclam","pid");
163
$OptServiceStatus['ntpd'] = checkServiceStatus("ntpd","pid");
164
 
318 richard 165
// Fonction de test de connectivité internet
166
function internetTest(){
696 franck 167
	$host = "www.google.fr"; # Google Test
318 richard 168
	$port = "80";
169
	//var $num;	//non utilisé
170
	//var $error;	//non utilisé
171
 
172
	if (! $sock = @fsockopen($host, $port, $num, $error, 5)) {
173
		return false;
174
	} else {
175
		fclose($sock);
176
		return true;
177
	}
178
}
179
/********************************************************************
180
*			Lecture du fichier ALCASAR_CHILLI						*
181
*********************************************************************/
182
$ouvre=fopen(ALCASAR_CHILLI,"r");
183
if ($ouvre){
184
	while (!feof ($ouvre))
185
	{
186
		$tampon = fgets($ouvre, 4096);
187
		if (strpos($tampon,"=")!==false){
188
			$tmp = explode("=",$tampon);
189
			$chilli[$tmp[0]] = $tmp[1];
190
		}
191
	}
192
}else{
193
	exit("Erreur d'ouverture du fichier ".ALCASAR_CHILLI);
194
}
195
fclose($ouvre);
196
 
197
/********************************************************************
654 richard 198
*			Lecture du fichier CONF_FILE							*
318 richard 199
*********************************************************************/
654 richard 200
$ouvre=fopen(CONF_FILE,"r");
318 richard 201
if ($ouvre){
202
	while (!feof ($ouvre))
203
	{
204
		$tampon = fgets($ouvre, 4096);
205
		if (strpos($tampon,"=")!==false){
206
			$tmp = explode("=",$tampon);
654 richard 207
			$conf[$tmp[0]] = $tmp[1];
318 richard 208
		}
209
	}
210
}else{
211
	exit("Erreur d'ouverture du fichier ".ALCASAR_ETH1);
212
}
213
fclose($ouvre);
214
 
215
/************************
216
*	TO DO		*
217
*************************/
218
//modification de la conf réseau, cmd : ifconfig eth0 .....
219
//synchro de la modification réseau dans les différentes couches d'alcasar
220
//gestion du dhcp (affichage,modification, ajout @static)
221
 
222
?><!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
223
<html><!-- written by steweb57 / rexy -->
224
<head>
225
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
226
<title><?php echo $l_network_title; ?></title>
335 richard 227
<link rel="stylesheet" href="/css/style.css" type="text/css">
318 richard 228
</head>
229
<body>
230
<table width="100%" border="0" cellspacing="0" cellpadding="0">
353 richard 231
	<tr><th><?php echo $l_network_title; ?></th></tr>
318 richard 232
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
233
</table>
234
<TABLE width="100%" border=1 cellspacing=0 cellpadding=1>
235
	<tr><td valign="middle" align="left">
236
	<fieldset>
237
	<legend><?php echo $l_internet_legend;
238
 	if (InternetTest()){
239
		echo " <img src='/images/state_ok.gif'> $l_enable";
240
		$IP_PUB = exec ("wget http://checkip.dyndns.org/ -O - -o /dev/null | cut -d: -f 2 | cut -d\< -f 1");}
241
	else 	{
242
		echo " <img src='/images/state_error.gif'> $l_disable";
243
		$IP_PUB = "-.-.-.-";}
244
	?></legend>
245
	<table>
246
		<tr><td><?php echo $l_ip_public." : </td><td>".$IP_PUB;?></td></tr>
654 richard 247
		<tr><td><?php echo $l_ip_dns1." : </td><td>".$conf["DNS1"];?></td></tr>
248
		<tr><td><?php echo $l_ip_dns2." : </td><td>".$conf["DNS2"];?></td></tr>
318 richard 249
	</table>
250
	</fieldset>
251
	</td><td>
252
	<fieldset>
253
	<legend><?php echo $l_eth0_legend; ?></legend>
254
	<table>
654 richard 255
		<tr><td><?php echo $l_ip_adr." : </td><td>".$conf["PUBLIC_IP"];?></td></tr>
256
		<tr><td><?php echo $l_ip_router." : </td><td>".$conf["GW"];?></td></tr>
318 richard 257
	</table>
258
	</fieldset>
259
	</td><td>
260
	<fieldset>
261
	<legend><?php echo $l_eth1_legend; ?></legend>
262
	<table>
654 richard 263
		<tr><td><?php echo $l_ip_adr." : </td><td>".$conf["PRIVATE_IP"];?></td></tr>
318 richard 264
	</table>
265
	</fieldset>
266
	</td></tr>
267
</table>
353 richard 268
<table width="100%" border="0" cellspacing="0" cellpadding="0">
356 richard 269
	<tr><th><?php echo $l_main_services; ?></th></tr>
353 richard 270
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
318 richard 271
</table>
272
<TABLE width="100%" border=1 cellspacing=0 cellpadding=0>
353 richard 273
	<tr align="center"><td><?php echo $l_service_status;?></td><td colspan="2"><?php echo $l_service_title;?></td><td colspan="3"><?php echo $l_service_action;?></td></tr>
318 richard 274
	<TR align="center">
356 richard 275
<?php foreach( $MainServiceStatus as $serviceName => $statusOK ) { ?>
318 richard 276
<tr>
277
	<?php if ($statusOK) { ?>
278
    <td align="center"><img src="/images/state_ok.gif" width="15" height="15" alt="<?php echo $l_service_status_img_ok; ?>"></td>
353 richard 279
	<td align="center"><?php $comment="l_$serviceName"; echo "<b>$serviceName</b></td><td>${$comment}" ;?> </td>
318 richard 280
    <td width="80" align="center">---</td>
281
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=stop&service=$serviceName\"> $l_service_stop";?></a></td>
282
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=restart&service=$serviceName\"> $l_service_restart";?></a></td>
283
	<?php } else { ?>
284
    <td align="center"><img src="/images/state_error.gif" width="15" height="15" alt="<?php echo $l_service_status_img_ko ?>"></td>
353 richard 285
    <td align="center"><?php $comment="l_$serviceName"; echo "<b>$serviceName</b></td><td>${$comment}" ;?> </td>
318 richard 286
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=start&service=$serviceName\"> $l_service_start";?></a></td>
287
    <td width="80" align="center">---</td>
288
    <td width="80" align="center">---</td>
289
    <?php } ?>
290
</tr>
291
<?php } ?>
353 richard 292
</td></tr>
318 richard 293
</table>
356 richard 294
<table width="100%" border="0" cellspacing="0" cellpadding="0">
295
	<tr><th><?php echo $l_opt_services; ?></th></tr>
296
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
297
</table>
298
<TABLE width="100%" border=1 cellspacing=0 cellpadding=0>
299
	<tr align="center"><td><?php echo $l_service_status;?></td><td colspan="2"><?php echo $l_service_title;?></td><td colspan="3"><?php echo $l_service_action;?></td></tr>
300
	<TR align="center">
301
<?php foreach( $OptServiceStatus as $serviceName => $statusOK ) { ?>
302
<tr>
303
	<?php if ($statusOK) { ?>
304
    <td align="center"><img src="/images/state_ok.gif" width="15" height="15" alt="<?php echo $l_service_status_img_ok; ?>"></td>
305
	<td align="center"><?php $comment="l_$serviceName"; echo "<b>$serviceName</b></td><td>${$comment}" ;?> </td>
306
    <td width="80" align="center">---</td>
307
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=stop&service=$serviceName\"> $l_service_stop";?></a></td>
308
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=restart&service=$serviceName\"> $l_service_restart";?></a></td>
309
	<?php } else { ?>
310
    <td align="center"><img src="/images/state_error.gif" width="15" height="15" alt="<?php echo $l_service_status_img_ko ?>"></td>
311
    <td align="center"><?php $comment="l_$serviceName"; echo "<b>$serviceName</b></td><td>${$comment}" ;?> </td>
312
    <td width="80" align="center"><a href="<?php echo $_SERVER['PHP_SELF']."?action=start&service=$serviceName\"> $l_service_start";?></a></td>
313
    <td width="80" align="center">---</td>
314
    <td width="80" align="center">---</td>
315
    <?php } ?>
316
</tr>
317
<?php } ?>
318
</td></tr>
319
</table>
318 richard 320
</body>
321
</html>