Subversion Repositories ALCASAR

Rev

Rev 2099 | Rev 2400 | Go to most recent revision | Details | Compare with Previous | Last modification | View Log

Rev Author Line No. Line
1954 richard 1
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
2
<HTML><!-- written by Rexy -->
3
<HEAD>
4
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
5
<TITLE>ALCASAR DNS WL filtering</TITLE>
6
<link rel="stylesheet" href="/css/style.css" type="text/css">
7
</HEAD>
8
<body>
9
<?
10
function form_filter ($form_content)
11
{
12
// réencodage iso + format unix + rc fin de ligne (ouf...)
13
	$list = str_replace("\r\n", "\n", utf8_decode($form_content));
14
	if (strlen($list) != 0){
15
		if ($list[strlen($list)-1] != "\n") { $list[strlen($list)]="\n";} ;} ;
16
	return $list;
17
}
18
function form_filter_ip($form_content, $color)
19
{
20
	//# reconstruction des ip
21
	$list = explode("\n", form_filter($form_content));
22
	$new_list = "";
23
	foreach($list as &$value)
24
	{
25
		if(preg_match('/([0-9]{1,3}.){3}[0-9]{1,3}/', $value))
26
		{
27
			$new_list = $new_list.$value."\n";
28
		}
29
	}
30
	if($color == "white")
31
	{
32
		return preg_replace("/(.*)\n/", "add wl_ip_allowed $1\n", $new_list);
33
	}
34
	else
35
	{
36
		return preg_replace("/(.*)\n/", "add bl_ip_blocked $1\n", $new_list);
37
	}
38
}
39
function echo_file ($filename)
40
	{
41
	if (file_exists($filename))
42
		{
43
		if (filesize($filename) != 0)
44
			{
45
			$pointeur=fopen($filename,"r");
46
			$tampon = fread($pointeur, filesize($filename));
47
			fclose($pointeur);
48
			echo $tampon;
49
			}
50
		}
51
	else
52
		{
53
		echo "$filename doesn't exist";
54
		}
55
	}
56
function echo_ip_file ($filename)
57
{
2299 tom.houday 58
	$filename = escapeshellarg($filename);
1954 richard 59
	exec("cat $filename | cut -d ' ' -f3", $resultat);
60
	for($i=0; $i<exec("wc -l $filename"); $i++)
61
	{
62
		echo $resultat[$i]."\n";
63
	}
64
}
65
 
66
# Choice of language
67
$Language = 'en';
68
if(isset($_SERVER['HTTP_ACCEPT_LANGUAGE'])){
69
	$Langue = explode(",",$_SERVER['HTTP_ACCEPT_LANGUAGE']);
70
	$Language = strtolower(substr(chop($Langue[0]),0,2)); 
71
	}
72
if($Language == 'fr'){
73
	$l_wl="Liste blanche générale";
74
	$l_load="Chargement...";
75
	$l_list_version="Version de la liste : ";
1975 richard 76
	$l_wl_categories="Sélectionnez les catégories à autoriser";
1954 richard 77
	$l_specific_filtering="Filtrage special";
1975 richard 78
	$l_add_to_wl="Noms de domaine ou adresses IP à ajouter à la liste blanche";
1954 richard 79
	$l_one_dns_ip="Entrez un nom de domaine ou une adresse IP ou une adresse de réseau par ligne<br>exemple (domaine) : .domaine.org - exemple (ip) : 61.54.52.56 - exemple (réseau) : 172.16.0.0/16";
80
	$l_record="Enregistrer les modifications";
81
	$l_wait="Une fois validées, 10 secondes sont nécessaires pour traiter vos modifications";
82
	$l_ip_filtering="Filtrer les URLs contenant une adresse IP au lieu d'un nom de domaine (ex: http://25.56.58.59/index.htm)";
83
	$l_safe_searching="Activer le contrôle scolaire/parental des moteurs de recherche google.";
84
	$l_safe_youtube="Pour un contrôle parental sur Youtube, suivez les étapes ici : "; 
85
	$l_youtube_id="(<a href='https://support.google.com/youtube/answer/174084?hl=fr' target='cat_help' onclick=window.open('https://support.google.com/youtube/answer/174084?hl=fr','cat_help','width=800,height=600,toolbar=no,scrollbars=yes,resizable=yes') title='Youtube for school'>lien pour créer un identifiant Youtube (Id)</a>)";
86
	$l_error_open_file="Erreur d'ouverture du fichier";
87
	$l_additional_file_title="Fichiers de 'listes blanches' additionnels";
88
	$l_file_list="Liste des fichiers";
89
	$l_add_file="Ajouter un fichier";
90
	$l_add_file_explain="Chaque ligne du fichier doit être une adresse IP ou un nom de domaine"; 
91
	$l_file_name="Nom du fichier";
92
	$l_file_action="Action";
93
	$l_error_upload="Erreur d'envoi du fichier";
94
	$l_remove="Supprimer";
95
	$l_submit="Envoyer";
96
	$l_nb_ip="Nombre d'IP";
97
	$l_nb_domain_names="Nombre de noms de domaine";
98
	$l_nbDomainNames="Noms de domaine :";
99
	$l_nbUrl="Url :";
100
	$l_nbIp="Ip :";
101
	$l_disable="Désactiver";
102
	$l_enable="Activer";
103
	$l_file_state="Etat";
104
}
105
else {
106
	$l_wl="General WhiteList";
107
	$l_load="Loading...";
108
	$l_list_version="List version : ";
1975 richard 109
	$l_wl_categories="Select the allowed categories";
1954 richard 110
	$l_specific_filtering="Specific filtering";
111
	$l_allowed_dns="Allowed domain names";
1975 richard 112
	$l_add_to_wl="Domain names or IP addresses to add to the whitelist";
1954 richard 113
	$l_one_dns_ip="Enter one domain name or one IP address or one network address per row <br>example (domain): .domain.org - example (ip): 61.54.56.52 - example (network) : 172.16.0.0/16";
114
	$l_record="Save changes";
115
	$l_wait="Once validated, 10 seconds are necessary to compute your modifications";
116
	$l_ip_filtering="Filtering URLs that contain an IP address instead of a domain name (ie: http://25.56.58.59/index.htm)";
117
	$l_safe_searching="Enabling school/parental control for the search engines google"; 
118
	$l_safe_youtube="For a safe Youtube search, follow these steps : "; 
119
	$l_youtube_id="(<a href='https://support.google.com/youtube/answer/174084?hl=en' target='cat_help' onclick=window.open('https://support.google.com/youtube/answer/174084?hl=en','cat_help','width=800,height=600,toolbar=no,scrollbars=yes,resizable=yes') title='Youtube for school'>link to create a Youtube Id</a>)";
120
	$l_error_open_file="Error opening file";
121
	$l_additional_file_title="Additional WhiteList files";
122
	$l_file_list="Files list";
123
	$l_add_file="Add a file";
124
	$l_add_file_explain="Each line of the file must be an IP address or a domain name"; 
125
	$l_file_name="Filename";
126
	$l_file_action="Action";
127
	$l_error_upload="Error during the upload process";
128
	$l_remove="Delete";
129
	$l_submit="Submit";
130
	$l_nb_ip="Number of IP";
131
	$l_nb_domain_names="Number of domain names";
132
	$l_nbDomainNames="Domain names :";
133
	$l_nbUrl="Url :";
134
	$l_nbIp="Ip :";
135
	$l_disable="Disable";
136
	$l_enable="Enable";
137
	$l_file_state="State";
138
}
139
$dir_etc="/usr/local/etc/";
140
$dir_dg="/etc/dansguardian/lists/";
141
$dir_blacklist=$dir_dg."blacklists/";
142
$dir_wl_ip="/usr/local/share/iptables-wl/";
143
$dir_wl_ip_enabled= "/usr/local/share/iptables-wl-enabled/";
144
$dir_wl_domain_names= "/usr/local/share/dnsmasq-wl/";
145
$dir_wl_domain_names_enabled= "/usr/local/share/dnsmasq-wl-enabled/";
146
$wl_categories=$dir_etc."alcasar-wl-categories";
147
$wl_categories_enabled=$dir_etc."alcasar-wl-categories-enabled";
148
$conf_file=$dir_etc."alcasar.conf";
149
$urlregex_file=$dir_dg."urlregexplist";
150
$bannedsite_file=$dir_dg."bannedsitelist";
151
$dir_tmp="/tmp/blacklists";
152
 
153
 
154
# default values
155
if (is_file ($conf_file))
156
	{
157
	$tab=file($conf_file);
158
	if ($tab)
159
		{
160
		foreach ($tab as $line)
161
			{
162
			$field=explode("=", $line);
163
			if ($field[0] == "PRIVATE_IP")
164
				{
165
				$PRIVATE_IP_MASK=trim($field[1]);
166
				$tmp = explode("/",$PRIVATE_IP_MASK);
167
				$PRIVATE_IP=$tmp[0];
168
				}
169
			}
170
		}
171
	}	
172
else { echo "$l_error_open_file $conf_file";}
173
if (isset($_POST['choix'])){ $choix=$_POST['choix']; } else { $choix=""; }
174
switch ($choix)
175
{
176
case 'Download_list' :
177
	exec ("sudo /usr/local/bin/alcasar-bl.sh --download");
178
	break;
179
case 'Active_list' :
180
	exec ("sudo /usr/local/bin/alcasar-bl.sh --adapt");
181
	exec ("sudo /usr/local/bin/alcasar-bl.sh --reload");
182
	break;
183
case 'Reject_list' :
184
	unlink ("$dir_tmp/blacklists.tar.gz"); unlink ("$dir_tmp/md5sum");
185
	break;
186
case 'MAJ_cat_wl' :
187
	if (file_exists($wl_categories_enabled))
188
	{
1958 richard 189
		exec("/bin/sed -i \"/^ossi-/!d\" $wl_categories_enabled"); // keep ossi custom categories
190
		$pointeur=fopen($wl_categories_enabled, "a+");
1954 richard 191
		foreach ($_POST as $key => $value)
192
		{
193
			if (strstr($key,'chk-'))
194
			{	
195
				$line=str_replace('chk-','',$key)."\n";
196
				fwrite($pointeur,$line);
197
			}
198
		}
199
 
200
		fclose($pointeur);
201
	}
202
	else {echo "$l_error_open_file $wl_categories_enabled";}
203
	$fichier=fopen($dir_blacklist."ossi-wl/domains","w+");
204
	fputs($fichier, form_filter($_POST['OSSI_wl']));
205
	fclose($fichier);
206
	unset($_POST['OSSI_wl']);
207
	exec ("sudo /usr/local/bin/alcasar-bl.sh --reload");
208
	break;
209
case 'Specific_filtering' :
210
	$pureip="-pureip_off"; $safesearch="-safesearch_off"; ;
211
	foreach ($_POST as $key => $value)
212
	{
213
		if (strstr($key,'chk-ip')) $pureip="-pureip_on";
214
		if (strstr($key,'chk-safesearch')) $safesearch="-safesearch_on";
215
	}
216
	exec ("sudo /usr/local/bin/alcasar-url_filter_bl.sh $safesearch $pureip");
217
	break;
218
case 'MAJ_ossi_file' :
219
	foreach($_POST as $fichier => $value)
220
	{
221
		if($fichier != "choix")
222
		{
223
			$action=$_POST[$fichier];
224
			if($action == $l_remove) //delete
225
			{
2299 tom.houday 226
				exec("/bin/sed -i ".escapeshellarg("/^$fichier$/d")." $wl_categories_enabled"); 
227
				exec("rm -rf .".escapeshellarg("$dir_blacklist$fichier"));
228
				exec("sudo /usr/local/bin/alcasar-bl.sh --reload");
1954 richard 229
			}
230
			if($action == $l_disable) //disable
231
			{
2299 tom.houday 232
				exec("/bin/sed -i ".escapeshellarg("/^$fichier$/d")." $wl_categories_enabled"); 
1954 richard 233
				exec("sudo /usr/local/bin/alcasar-bl.sh --reload");
234
			}
235
			if($action == $l_enable) //enable
236
			{
2299 tom.houday 237
				file_put_contents($wl_categories_enabled, $fichier."/n", FILE_APPEND);
238
				exec("sudo /usr/local/bin/alcasar-bl.sh --reload");
1954 richard 239
			}
240
		}
241
	}
242
	break;
243
case 'MAJ_ossi_file_upload' :
244
	$file_name = str_replace (".", "_",basename($_FILES['fichier_ip']['name']));
245
	if(!empty($file_name))
246
	{	
247
		$dest_dir = $dir_blacklist."ossi-wl-".$file_name;
2299 tom.houday 248
		exec("mkdir ".escapeshellarg($dest_dir));
2005 raphael.pi 249
		$file=$_FILES['fichier_ip']['tmp_name'];
250
                exec("/usr/bin/dos2unix $file $file");
1954 richard 251
		if(move_uploaded_file($_FILES['fichier_ip']['tmp_name'], $dest_dir."/domains"))
252
		{
1955 richard 253
			touch ($dest_dir."/urls"); // create the URL file even if it isn't used
1954 richard 254
			file_put_contents ($wl_categories, $dest_dir."\n", FILE_APPEND);
255
			file_put_contents ($wl_categories_enabled, "ossi-wl-".$file_name."\n", FILE_APPEND); //Enabled by default
256
			exec ("sudo /usr/local/bin/alcasar-bl.sh --reload");
257
		}
258
		else
259
		{
2299 tom.houday 260
			exec("rm -rf ".escapeshellarg($dest_dir));
1954 richard 261
			echo $l_error_upload;
262
		}
263
	}
264
	break;
265
}
266
?>
267
<table width="100%" border="0" cellspacing="0" cellpadding="0">
268
	<tr><th><?php echo $l_wl; ?></th></tr>
269
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
270
</table>
271
<table width="100%" border=1 cellspacing=0 cellpadding=1>
272
<tr><td valign="middle" align="left" colspan=10>
273
<FORM action='wl_filter.php' method=POST>
274
<input type='hidden' name='choix' value='MAJ_cat_wl'>
275
<?php
276
echo "<center>";
277
// total number of IP, DNS & URLs
2299 tom.houday 278
$nbDomainNames = exec("wc -l /usr/local/share/dnsmasq-wl/* | tail -n 1 | awk '{print $1}'");
1954 richard 279
$nbUrl = "0";
2299 tom.houday 280
$nbIp = exec("wc -l /usr/local/share/iptables-wl/* | tail -n 1 | awk '{print $1}'");
1954 richard 281
echo "<b>$l_nbDomainNames</b> $nbDomainNames, <b>$l_nbUrl</b> $nbUrl, <b>$l_nbIp</b> $nbIp<br/>";
282
echo "$l_wl_categories</center></td></tr>";	
283
//read & display all WL categories (checked or not)
284
$cols=1; 
285
if (file_exists($wl_categories))
286
	{
287
	$wl_files = file($wl_categories);
288
	$wl_files = preg_grep("/ossi-/", $wl_files, 1); // don't display ossi custom categories
289
	foreach($wl_files as $fichier => $value)
290
		{
291
		if ($cols == 1) { echo "<tr>";}
292
		$categorie=trim(basename($value));
293
		echo "<td><a href='bl_categories_help.php?liste=wl&cat=$categorie' target='cat_help' onclick=window.open('bl_categories_help.php','cat_help','width=600,height=450,toolbar=no,scrollbars=yes,resizable=yes') title='categories help page'>$categorie</a><br>";
294
		echo "<input type='checkbox' name='chk-$categorie'";
295
		// if the line is commented, the category is disable
296
		if (preg_match('/^#/',$value, $r)) { echo ">";}
297
		else { echo "checked>"; }
298
		echo "</td>";
299
		$cols++;
300
		if ($cols > 10) {
301
			echo "</tr>";
302
			$cols=1; }
303
		}
304
	}
305
else	{
306
	echo "$l_error_open_file $wl_categories";
307
}
308
echo "<tr><td valign='middle' align='left' colspan=10>";
309
echo "<center><b>$l_add_to_wl</b></center></td></tr>";
310
echo "<tr><td width=100% colspan=10 align=center>";
311
echo "$l_one_dns_ip<BR>";
312
echo "<textarea name='OSSI_wl' rows=3 cols=40>";
313
echo_file ($dir_blacklist."ossi-wl/domains");
314
echo "</textarea></td>";
315
echo "</tr><tr><td colspan=10>";
2054 raphael.pi 316
echo "<input type='submit' onClick=\"this.disabled=true; this.value='$l_load';submit();\" value='$l_record'>";
1954 richard 317
echo "</form> ($l_wait)";
318
echo "</td></tr></table><br/>";
319
?>
320
<table width="100%" border="0" cellspacing="0" cellpadding="0">
321
	<tr><th><?php echo $l_additional_file_title; ?></th></tr>
322
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
323
</table>
324
<table width="100%" border=1 cellspacing=0 cellpadding=1>
325
<form action='wl_filter.php' method='POST'>
326
<input type='hidden' name='choix' value='MAJ_ossi_file'>
327
<?php
328
echo "<tr><td width=50% colspan=5 align=center>";
329
echo "<H3>$l_file_list</H3>";
330
echo "<table cellspacing=2 cellpadding=3 border=1><tr><th>$l_file_name<th>$l_nb_ip<th>$l_nb_domain_names<th colspan=2>$l_file_action</tr>";
331
 
332
//list OSSI custom categories
333
$fichierswl = array_diff(scandir($dir_blacklist), array('..','.','ossi-bl','ossi-wl'));
334
$fichierswl = preg_grep("/^ossi-wl-/",$fichierswl);
335
foreach($fichierswl as $fichier => $value)
336
{
337
	echo "<tr><td><center><a href='bl_categories_help.php?liste=wl&cat=$value&filtre=domain' target='cat_help' onclick=window.open('bl_categories_help','cat_help','width=600,height=450,toolbar=no,scrollbars=yes,resizable=yes') title='categories help page'>".substr($value,8)."</a></center></td><td><center>".exec("wc -l $dir_wl_ip$value | cut -d\" \" -f1")."</center></td><td><center>".exec("wc -l $dir_wl_domain_names$value.conf | cut -d\" \" -f1")."</center></td><td><center><input type='submit' name='$value'";
338
	if (file_exists ($dir_wl_domain_names_enabled.$value)) echo " value='$l_disable'>"; else echo " value='$l_enable'>";
339
	echo "</center></td><td><center><input type='submit' name='$value' value='$l_remove'></center></td></tr>";
340
}
341
echo "</table><br/></td></form><form action='wl_filter.php' method='POST' enctype='multipart/form-data'>";
342
echo "<input type='hidden' name='choix' value='MAJ_ossi_file_upload'><td width=50% colspan=5 align=center>";
343
echo "<H3>$l_add_file</H3>";
344
echo "$l_add_file_explain";
345
echo "<input type='file' name='fichier_ip'>";
2054 raphael.pi 346
echo "<input type='submit' onClick=\"this.disabled=true; this.value='$l_load';submit();\" value='$l_submit'>";
1954 richard 347
echo "</td></tr>";
348
echo "</form>";
349
echo "</table><br/>";
350
?>
351
<table width="100%" border="0" cellspacing="0" cellpadding="0">
352
	<tr><th><?php echo $l_specific_filtering; ?></th></tr>
353
	<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
354
</table>
355
<TABLE width="100%" border=1 cellspacing=0 cellpadding=1>
356
<FORM action='wl_filter.php' method='POST'>
357
<input type='hidden' name='choix' value='Specific_filtering'>
358
<tr><td>
359
<input type='checkbox' name='chk-ip'
360
<?php
361
// verify "pureip" filtering state
362
if (file_exists($bannedsite_file))
363
	{
364
	$pointeur=fopen($bannedsite_file,"r");
365
	while (!feof ($pointeur))
366
		{
367
		$ligne=fgets($pointeur, 4096);
368
		if ($ligne)
369
			{
370
			if (preg_match('/^\*ip$/',$ligne, $r)) 
371
				{
372
				echo " checked";
373
				break;
374
				}
375
			}
376
		}
377
	fclose($pointeur);
378
	}
379
else	{
380
	echo "$l_error_open_file $bannedsite_file";
381
	}
382
echo "> $l_ip_filtering";
383
?>
384
</td></tr>
385
<tr><td>
386
<input type='checkbox' name='chk-safesearch'
387
<?php
388
// verify "safesearch" filtering state
389
if (file_exists($urlregex_file))
390
	{
391
	$pointeur=fopen($urlregex_file,"r");
392
	while (!feof ($pointeur))
393
		{
394
		$ligne=fgets($pointeur, 4096);
395
		if ($ligne)
396
			{
397
			if (preg_match('/^\"\(\^http\:\/\/\[0\-9a\-z\]\+\\\.google/',$ligne, $r))
398
				{
399
				echo " checked";
400
				break;
401
				}
402
			}
403
		}
404
	fclose($pointeur);
405
	}
406
else	{
407
	echo "$l_error_open_file $urlregex_file";
408
	}
409
echo "> $l_safe_searching";
410
echo "<br>$l_safe_youtube";
411
echo " $l_youtube_id<tr><td>";
2054 raphael.pi 412
echo "<input type='submit' onClick=\"this.disabled=true; this.value='$l_load';submit();\" value='$l_record'></td></tr>";
1954 richard 413
?>
414
</FORM> 
415
</TABLE>
416
</BODY>
417
</HTML>
418
 
419