Subversion Repositories ALCASAR

Compare Revisions

Ignore whitespace Rev 2487 → Rev 2488

/web/acc/about.htm
1,6 → 1,7
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><!-- by REXY -->
<HEAD>
<META charset="utf-8">
<TITLE>bonus</TITLE>
</HEAD>
<BODY background="/images/linux_ksc2.jpg" TEXT="#FFFFFF" BGCOLOR="#000000">
78,7 → 79,7
<TD align="center"><A HREF="javascript:ouvrir('http://www.coova.org/CoovaChilli')"><img border="0" src="/images/footer_coova.png"></A></TD>
<TD align="center"><A HREF="javascript:ouvrir('http://www.freeradius.org')"><img border="0" src="/images/footer_freeradius.png"></A></TD>
<TD align="center"><A HREF="javascript:ouvrir('http://www.mariadb.org')"><img border="0" src="/images/footer_mariadb.png"></A></TD>
<TD align="center"><A HREF="javascript:ouvrir('http://www.apache.org')"><img border="0" src="/images/footer_apache.png"></A></TD>
<TD align="center"><A HREF="javascript:ouvrir('https://lighttpd.net')"><img border="0" src="/images/footer_lighttpd.png"></A></TD>
<TD align="center"><A HREF="javascript:ouvrir('http://www.php.net')"><img border="0" src="/images/footer_php.png"></A></TD>
</TR>
<TR>
/web/acc/admin/services.php
22,7 → 22,7
$l_chilli = "Passerelle d'interception";
$l_dansguardian = "Filtre d'URL et de contenu WEB";
$l_mysqld = "Serveur de la base des usagers";
$l_httpd = "Serveur WEB (Alcasar Control Center)";
$l_lighttpd = "Serveur WEB (Alcasar Control Center)";
$l_sshd = "Accès sécurisée distant";
$l_freshclam = "Mise à jour de l'antivirus toutes les 2 heures";
$l_ntpd = "Service de mise à l'heure réseau";
56,7 → 56,7
$l_chilli = "Interception gateway";
$l_dansguardian = "URL and WEB content filter";
$l_mysqld = "User database server";
$l_httpd = "WEB server (ALCASAR Control Center)";
$l_lighttpd = "WEB server (ALCASAR Control Center)";
$l_sshd = "Secure remote access";
$l_freshclam = "Antivirus update process (every 2 hours)";
$l_ntpd = "Network time server";
130,7 → 130,7
// Actions on services
//-------------------------------
//sécurité sur les actions à réaliser
$autorizeService = array("radiusd","chilli","dansguardian","mysqld","httpd","sshd","freshclam","ntpd","havp","tinyproxy","dnsmasq","dnsmasq-blacklist","dnsmasq-whitelist","dnsmasq-blackhole");
$autorizeService = array("radiusd","chilli","dansguardian","mysqld","lighttpd","sshd","freshclam","ntpd","havp","tinyproxy","dnsmasq","dnsmasq-blacklist","dnsmasq-whitelist","dnsmasq-blackhole");
$autorizeAction = array("start","stop","restart");
 
if (isset($_GET['service'])&&(in_array($_GET['service'], $autorizeService))) {
163,7 → 163,7
$MainServiceStatus['radiusd'] = checkServiceStatus("radiusd");
$MainServiceStatus['chilli'] = checkServiceStatus("chilli");
$MainServiceStatus['mysqld'] = checkServiceStatus("mysqld");
$MainServiceStatus['httpd'] = checkServiceStatus("httpd");
$MainServiceStatus['lighttpd'] = checkServiceStatus("lighttpd");
$MainServiceStatus['dnsmasq'] = checkServiceStatus("dnsmasq");
$MainServiceStatus['ulogd_ssh'] = checkServiceStatus("ulogd-ssh");
$MainServiceStatus['ulogd_ext_access'] = checkServiceStatus("ulogd-ext-access");
/web/acc/haut.php
3,7 → 3,7
 
// Inform admin log about his last connection
$admin_log = '/var/Save/security/acc_access.log';
$user_htdigest = $_SERVER['PHP_AUTH_USER'];
$user_htdigest = $_SERVER['REMOTE_USER'];
$date_system = date('d/m/Y H:i:s');
$user_ip = $_SERVER['REMOTE_ADDR'];
$user_agent = $_SERVER['HTTP_USER_AGENT'];
/web/acc/manager/htdocs/badusers.php
79,7 → 79,7
$row = da_sql_fetch_array($search,$config);
if ($row[id] == $row_id){
$admin = "$row[admin]";
if (($admin != '-' && $_SERVER["PHP_AUTH_USER"] == $admin) || $admin == '-'){
if (($admin != '-' && $_SERVER["REMOTE_USER"] == $admin) || $admin == '-'){
$sql_servers = array();
if ($config[sql_extra_servers] != '')
$sql_servers = explode(' ',$config[sql_extra_servers]);
137,7 → 137,7
</tr>
 
<?php
$auth_user = $_SERVER["PHP_AUTH_USER"];
$auth_user = $_SERVER["REMOTE_USER"];
if ($config[general_restrict_badusers_access] == 'yes'){
$auth_user = da_sql_escape_string($link,$auth_user);
$extra_query = "AND admin == '$auth_user'";
/web/acc/manager/lib/add_badusers.php
10,8 → 10,8
$lockmsg_name = $attrmap['Dialup-Lock-Msg'] . '0';
$msg = $$lockmsg_name;
$admin = '-';
if ($_SERVER["PHP_AUTH_USER"] != '')
$admin = $_SERVER["PHP_AUTH_USER"];
if ($_SERVER["REMOTE_USER"] != '')
$admin = $_SERVER["REMOTE_USER"];
if ($msg == '')
echo "<b>Lock Message should not be empty</b><br>\n";
else{
/web/acc/manager/lib/sql/drivers/mysql/functions.php
18,7 → 18,7
{
if ($config['sql_use_http_credentials'] == 'yes'){
global $HTTP_SERVER_VARS;
$SQL_user = $HTTP_SERVER_VARS["PHP_AUTH_USER"];
$SQL_user = $HTTP_SERVER_VARS["REMOTE_USER"];
$SQL_passwd = $HTTP_SERVER_VARS["PHP_AUTH_PW"];
}
else{
37,7 → 37,7
{
if (isset($config['sql_use_http_credentials']) && $config['sql_use_http_credentials'] == 'yes'){
global $HTTP_SERVER_VARS;
$SQL_user = $HTTP_SERVER_VARS["PHP_AUTH_USER"];
$SQL_user = $HTTP_SERVER_VARS["REMOTE_USER"];
$SQL_passwd = $HTTP_SERVER_VARS["PHP_AUTH_PW"];
}
else{
56,7 → 56,7
{
if (isset($config['sql_use_http_credentials']) && $config['sql_use_http_credentials'] == 'yes'){
global $HTTP_SERVER_VARS;
$SQL_user = $HTTP_SERVER_VARS["PHP_AUTH_USER"];
$SQL_user = $HTTP_SERVER_VARS["REMOTE_USER"];
$SQL_passwd = $HTTP_SERVER_VARS["PHP_AUTH_PW"];
}
else{
/web/acc/manager/lib/sql/nas_list.php
15,7 → 15,7
}
$link = da_sql_pconnect($config);
if ($link){
$auth_user = $_SERVER["PHP_AUTH_USER"];
$auth_user = $_SERVER["REMOTE_USER"];
$extra = '';
if (isset($mappings[$auth_user]['nasdb'])){
$NAS_ARR = array();
/web/acc/manager/lib/xlat.php
4,7 → 4,7
$string = $filter;
if ($filter != ''){
$string = preg_replace('/%u/',$login,$string);
$string = preg_replace('/%U/',$_SERVER["PHP_AUTH_USER"],$string);
$string = preg_replace('/%U/',$_SERVER["REMOTE_USER"],$string);
$string = preg_replace('/%ma/',$mappings[$http_user]['accounting'],$string);
$string = preg_replace('/%mu/',$mappings[$http_user]['userdb'],$string);
$string = preg_replace('/%mn/',$mappings[$http_user]['nasdb'],$string);
/web/acc/menu.php
37,7 → 37,7
fclose($file_conf);
 
// Retrieve the user's profil
$user_htdigest = $_SERVER['PHP_AUTH_USER'];
$user_htdigest = $_SERVER['REMOTE_USER'];
exec('sudo alcasar-profil.sh --list | cut -d":" -f2', $output);
$admin_members = explode(' ', ltrim($output[0], " \t"));
$backup_members = explode(' ', ltrim($output[1], " \t"));