Subversion Repositories ALCASAR

Rev

Rev 2299 | Rev 2450 | Go to most recent revision | Only display areas with differences | Ignore whitespace | Details | Blame | Last modification | View Log

Rev 2299 Rev 2411
1
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
-
 
2
<HTML><!-- written by Rexy -->
-
 
3
<head>
-
 
4
<META HTTP-EQUIV="Refresh" CONTENT="30">
-
 
5
<meta http-equiv="Content-Type" content="text/html; charset=$config[general_charset]">
-
 
6
<title>Activity</title>
-
 
7
<link rel="stylesheet" href="/css/style.css">
-
 
8
</head>
-
 
9
<body>
-
 
10
<table width="100%" border="0" cellspacing="0" cellpadding="0">
-
 
11
<?
1
<?php
12
/********************
2
/********************
13
* READ CONF FILES   *
3
* READ CONF FILES   *
14
*********************/
4
*********************/
15
define ("CONF_FILE", "/usr/local/etc/alcasar.conf");
5
define("CONF_FILE", "/usr/local/etc/alcasar.conf");
16
define ("ETHERS_INFO_FILE", "/usr/local/etc/alcasar-ethers-info");
6
define("ETHERS_INFO_FILE", "/usr/local/etc/alcasar-ethers-info");
17
$conf_files=array(CONF_FILE,ETHERS_INFO_FILE);
7
$conf_files=array(CONF_FILE,ETHERS_INFO_FILE);
18
foreach ($conf_files as $file){
8
foreach ($conf_files as $file) {
19
if (!file_exists($file)){
9
	if (!file_exists($file)) {
20
	exit("Requested file ".$file." isn't present");}
10
		exit("Requested file ".$file." isn't present");
-
 
11
	}
21
if (!is_readable($file)){
12
	if (!is_readable($file)) {
22
	exit("Can't read the file ".$file);}
13
		exit("Can't read the file ".$file);
-
 
14
	}
23
}
15
}
24
#retrieve IP_address of ALCASAR
-
 
-
 
16
 
25
$alcasar_conf_file = '/usr/local/etc/alcasar.conf';
17
$alcasar_conf_file = '/usr/local/etc/alcasar.conf';
26
$file_conf = fopen($alcasar_conf_file, 'r');
18
$file_conf = fopen($alcasar_conf_file, 'r');
27
if (!$file_conf) {
19
if (!$file_conf) {
28
	exit('Error opening the file '.$alcasar_conf_file);
20
	exit('Error opening the file '.$alcasar_conf_file);
29
}
21
}
30
while (!feof($file_conf)) {
22
while (!feof($file_conf)) {
31
	$buffer = fgets($file_conf, 4096);
23
	$buffer = fgets($file_conf, 4096);
32
	if ((strpos($buffer, '=') !== false) && (substr($buffer, 0, 1) !== '#')) {
24
	if ((strpos($buffer, '=') !== false) && (substr($buffer, 0, 1) !== '#')) {
33
		$tmp = explode('=', $buffer);
25
		$tmp = explode('=', $buffer);
34
		$conf[trim($tmp[0])] = trim($tmp[1]);
26
		$conf[trim($tmp[0])] = trim($tmp[1]);
35
	}
27
	}
36
}
28
}
37
fclose($file_conf);
29
fclose($file_conf);
38
 
30
 
39
$tmp = explode("/",$conf["PRIVATE_IP"]);
31
$tmp = explode("/",$conf["PRIVATE_IP"]);
40
$intif = $conf["INTIF"];
32
$intif = $conf["INTIF"];
41
$private_ip=$tmp[0];
33
$private_ip=$tmp[0];
42
require('/etc/freeradius-web/config.php');
34
require('/etc/freeradius-web/config.php');
43
# Choice of language
35
# Choice of language
44
$Language = 'en';
36
$Language = 'en';
45
if(isset($_SERVER['HTTP_ACCEPT_LANGUAGE'])){
37
if (isset($_SERVER['HTTP_ACCEPT_LANGUAGE'])) {
46
  $Langue = explode(",",$_SERVER['HTTP_ACCEPT_LANGUAGE']);
38
	$Langue = explode(',', $_SERVER['HTTP_ACCEPT_LANGUAGE']);
47
  $Language = strtolower(substr(chop($Langue[0]),0,2)); }
39
	$Language = strtolower(substr(chop($Langue[0]), 0, 2));
-
 
40
}
48
if($Language == 'fr'){
41
if ($Language === 'fr') {
49
  $l_activity = "Activité sur le réseau de consultation";
42
	$l_activity = "Activité sur le réseau de consultation";
50
  $l_ip_adr = "Adresse IP";
43
	$l_ip_adr = "Adresse IP";
51
  $l_mac_adr = "Adresse MAC";
44
	$l_mac_adr = "Adresse MAC";
52
  $l_user = "Usager";
45
	$l_user = "Usager";
53
  $l_mac_allowed = "@MAC autorisée";
46
	$l_mac_allowed = "@MAC autorisée";
54
  $l_mac_temporarily_allowed = "@MAC autorisée temporairement";
47
	$l_mac_temporarily_allowed = "@MAC autorisée temporairement";
55
  $l_action = "Action";
48
	$l_action = "Action";
56
  $l_dissociate = "Dissocier @IP";
49
	$l_dissociate = "Dissocier @IP";
57
  $l_disconnect = "Déconnecter";
50
	$l_disconnect = "Déconnecter";
58
  $l_refresh = "Cette page est rafraichie toutes les 30 secondes";
51
	$l_refresh = "Cette page est rafraichie toutes les 30 secondes";
59
  $l_edit_user = "Editer l'utilisateur"; 
52
	$l_edit_user = "Editer l'utilisateur"; 
60
  $l_connect = "Autoriser temporairement";
53
	$l_connect = "Autoriser temporairement";
61
}
-
 
62
else {
54
} else {
63
  $l_activity = "Activity on the consultation LAN";
55
	$l_activity = "Activity on the consultation LAN";
64
  $l_ip_adr = "IP Adress";
56
	$l_ip_adr = "IP Adress";
65
  $l_mac_adr = "MAC Adress";
57
	$l_mac_adr = "MAC Adress";
66
  $l_user = "User";
58
	$l_user = "User";
67
  $l_mac_allowed = "@MAC allowed";
59
	$l_mac_allowed = "@MAC allowed";
68
  $l_mac_temporarily_allowed = "@MAC temporarily allowed";
60
	$l_mac_temporarily_allowed = "@MAC temporarily allowed";
69
  $l_action = "Action";
61
	$l_action = "Action";
70
  $l_dissociate = "Dissociate @IP";
62
	$l_dissociate = "Dissociate @IP";
71
  $l_disconnect = "Disconnect";
63
	$l_disconnect = "Disconnect";
72
  $l_refresh = "This frame is refreshed every 30'";
64
	$l_refresh = "This frame is refreshed every 30'";
73
  $l_edit_user = "Edit user"; 
65
	$l_edit_user = "Edit user"; 
74
  $l_connect = "Temporarily authorize";
66
	$l_connect = "Temporarily authorize";
75
}
67
}
76
echo "<tr><th>$l_activity</th></tr>
-
 
77
<tr bgcolor=\"#FFCC66\"><td><img src=\"/images/pix.gif\" width=\"1\" height=\"2\"></td></tr>
-
 
78
</table>";
68
 
79
if (isset($_POST['action'])){
69
if (isset($_POST['action'])){
80
	switch ($_POST['action']){
70
	switch ($_POST['action']){
81
		case "$l_disconnect" :
71
		case "$l_disconnect" :
82
			exec("sudo /usr/sbin/chilli_query logout ".escapeshellarg($_POST['mac_addr']));
72
			exec("sudo /usr/sbin/chilli_query logout ".escapeshellarg($_POST['mac_addr']));
83
			unset($_POST['mac_addr']);
73
			unset($_POST['mac_addr']);
84
		break;
74
		break;
85
		case "$l_dissociate" :
75
		case "$l_dissociate" :
86
			exec("sudo /usr/sbin/chilli_query dhcp-release ".escapeshellarg($_POST['mac_addr']));
76
			exec("sudo /usr/sbin/chilli_query dhcp-release ".escapeshellarg($_POST['mac_addr']));
87
			unset($_POST['mac_addr']);
77
			unset($_POST['mac_addr']);
88
		break;
78
		break;
89
		case "$l_connect" :
79
		case "$l_connect" :
90
			exec("sudo /usr/sbin/chilli_query authorize mac ".escapeshellarg($_POST['mac_addr']));
80
			exec("sudo /usr/sbin/chilli_query authorize mac ".escapeshellarg($_POST['mac_addr']));
91
			unset($_POST['mac_addr']);
81
			unset($_POST['mac_addr']);
92
		break;
82
		break;
93
	}
83
	}
94
}
84
}
95
?>
85
?>
-
 
86
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
-
 
87
<HTML><!-- written by Rexy -->
-
 
88
<head>
-
 
89
<META HTTP-EQUIV="Refresh" CONTENT="30">
-
 
90
<meta http-equiv="Content-Type" content="text/html; charset=<?= $config['general_charset'] ?>">
-
 
91
<title>Activity</title>
-
 
92
<link rel="stylesheet" type="text/css" href="/css/style.css">
-
 
93
</head>
-
 
94
<body>
-
 
95
<table width="100%" border="0" cellspacing="0" cellpadding="0">
-
 
96
<tr><th><?= $l_activity ?></th></tr>
-
 
97
<tr bgcolor="#FFCC66"><td><img src="/images/pix.gif" width="1" height="2"></td></tr>
-
 
98
</table>
96
<table width="100%" border=1 cellspacing=0 cellpadding=1>
99
<table width="100%" border=1 cellspacing=0 cellpadding=1>
97
	<tr><td valign="middle" align="center"><? echo "$l_refresh";?><br>
100
	<tr><td valign="middle" align="center"><?= $l_refresh ?><br>
98
	<table border=1 width="80%" bordercolordark="#ffffe0" bordercolorlight="#000000" cellpadding=2 cellspacing=0 bgcolor="#ffffe0" valign=top>
101
	<table border=1 width="80%" cellpadding=2 cellspacing=0>
99
		<tr bgcolor="#d0ddb0">
102
		<tr>
100
<? echo "		<th>#</th>
103
			<th>#</th>
101
		<th>$l_ip_adr</th>
104
			<th><?= $l_ip_adr ?></th>
102
		<th>$l_mac_adr</th>
105
			<th><?= $l_mac_adr ?></th>
103
		<th>$l_user</th>
106
			<th><?= $l_user ?></th>
104
		<th>$l_action</th>
107
			<th><?= $l_action ?></th>
105
		</tr>";
108
		</tr>
-
 
109
		<?php
106
		$output = array(); $detail = array(); $nb_ligne = 0;
110
		$output = array(); $detail = array(); $nb_ligne = 0;
107
		exec("sudo /sbin/ip link show ".escapeshellarg($intif), $output); // retrieve ALCASAR MAC address
111
		exec("sudo /sbin/ip link show ".escapeshellarg($intif), $output); // retrieve ALCASAR MAC address
108
		$detail = explode (" " , $output[1]);
112
		$detail = explode (" " , $output[1]);
109
		$intif_mac_addr=strtoupper(str_replace(":","-",$detail[5]));
113
		$intif_mac_addr=strtoupper(str_replace(":","-",$detail[5]));
110
		unset ($output);unset ($detail);
114
		unset ($output);unset ($detail);
111
		exec ('sudo /usr/sbin/chilli_query list|sort -k5 -r', $output); 
115
		exec ('sudo /usr/sbin/chilli_query list|sort -k5 -r', $output); 
112
		while (list(,$ligne) = each($output)){
116
		while (list(,$ligne) = each($output)){
113
			$detail = explode (" ", $ligne);
117
			$detail = explode (" ", $ligne);
114
			$nb_ligne ++;
118
			$nb_ligne ++;
115
			echo "<tr valign=\"middle\">";
119
			echo "<tr valign=\"middle\">";
116
			echo "<td>".$nb_ligne."</td>";
120
			echo "<td>".$nb_ligne."</td>";
117
			echo "<td>".$detail[1]."</td>";
121
			echo "<td>".$detail[1]."</td>";
118
			if(file_exists('/usr/share/arp-scan/ieee-oui.txt')) // for each device on LAN, retrieve the MAC manufacturer
122
			if(file_exists('/usr/share/arp-scan/ieee-oui.txt')) // for each device on LAN, retrieve the MAC manufacturer
119
			{
123
			{
120
				$oui_id = substr(str_replace("-","",$detail[0]),0,6);
124
				$oui_id = substr(str_replace("-","",$detail[0]),0,6);
121
				exec ("grep $oui_id /usr/share/arp-scan/ieee-oui.txt | cut -f2", $mac_manufacturer);
125
				exec ("grep $oui_id /usr/share/arp-scan/ieee-oui.txt | cut -f2", $mac_manufacturer);
122
				if(empty($mac_manufacturer[0]))
126
				if(empty($mac_manufacturer[0]))
123
				{
127
				{
124
					$mac_manufacturer[0] = "Unknown";
128
					$mac_manufacturer[0] = "Unknown";
125
				}
129
				}
126
				echo "<td>$detail[0] <font size=\"1\">($mac_manufacturer[0])</font>";
130
				echo "<td>$detail[0] <font size=\"1\">($mac_manufacturer[0])</font>";
127
				unset($mac_manufacturer);
131
				unset($mac_manufacturer);
128
			}
132
			}
129
			else
133
			else
130
			{
134
			{
131
				echo "<td>$detail[0]";
135
				echo "<td>$detail[0]";
132
			}
136
			}
133
			exec ("grep $detail[0] /usr/local/etc/alcasar-ethers-info |cut -d' ' -f3", $mac_in_ether_file);
137
			exec ("grep $detail[0] /usr/local/etc/alcasar-ethers-info |cut -d' ' -f3", $mac_in_ether_file);
134
			if (!empty($mac_in_ether_file[0]))
138
			if (!empty($mac_in_ether_file[0]))
135
			{
139
			{
136
				echo " - <b>" . ltrim($mac_in_ether_file[0],'#') . "</b>";
140
				echo " - <b>" . ltrim($mac_in_ether_file[0],'#') . "</b>";
137
			}
141
			}
138
			echo "</td><td>";
142
			echo "</td><td>";
139
			if ($detail[4] == "1"){ // authenticated equipment
143
			if ($detail[4] == "1"){ // authenticated equipment
140
				$login = $detail[5];
144
				$login = $detail[5];
141
				unset ($found_users); unset ($cn);
145
				unset ($found_users); unset ($cn);
142
				$search = $login; $search_IN = 'username'; // is user in database ?
146
				$search = $login; $search_IN = 'username'; // is user in database ?
143
				if (is_file("../lib/sql/find.php"))
147
				if (is_file("../lib/sql/find.php"))
144
					include("../lib/sql/find.php");
148
					include("../lib/sql/find.php");
145
				if (isset ($found_users)) // user is in database
149
				if (isset ($found_users)) // user is in database
146
				{
150
				{
147
					if (is_file("../lib/sql/user_info.php")) //retrieve user info (especialy $cn)
151
					if (is_file("../lib/sql/user_info.php")) //retrieve user info (especialy $cn)
148
						include("../lib/sql/user_info.php");
152
						include("../lib/sql/user_info.php");
149
				}
153
				}
150
				if (! isset ($cn)){ $cn='-';}
154
				if (! isset ($cn)){ $cn='-';}
151
				# The user is an allowed MAC address
155
				# The user is an allowed MAC address
152
					if ($detail[5] == $detail[0]){
156
					if ($detail[5] == $detail[0]){
153
						if (isset ($found_users)) { #MAC is in database
157
						if (isset ($found_users)) { #MAC is in database
154
							echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user\">$l_mac_allowed";if ($cn != '-'){ echo " ($cn)";};echo "</a>";
158
							echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user\">$l_mac_allowed";if ($cn != '-'){ echo " ($cn)";};echo "</a>";
155
							echo "</td><td>";
159
							echo "</td><td>";
156
						}
160
						}
157
						else { #MAC is temporarily allowed
161
						else { #MAC is temporarily allowed
158
							echo "<b>$l_mac_temporarily_allowed</b>";
162
							echo "<b>$l_mac_temporarily_allowed</b>";
159
							echo "</td><td>";
163
							echo "</td><td>";
160
							echo "<FORM action='".$_SERVER['PHP_SELF']."' method=POST>";
164
							echo "<FORM action=\"".$_SERVER['PHP_SELF']."\" method=\"POST\">";
161
							echo "<INPUT type='hidden' name='mac_addr' value='$detail[0]'>";
165
							echo "<INPUT type=\"hidden\" name=\"mac_addr\" value=\"$detail[0]\">";
162
							echo "<INPUT type=submit name='action' value='$l_disconnect'>";
166
							echo "<INPUT type=\"submit\" name=\"action\" value=\"$l_disconnect\">";
163
							echo "</FORM></TD>";
167
							echo "</FORM></TD>";
164
						}
168
						}
165
						# Disable temporarily @MAC access
169
						# Disable temporarily @MAC access
166
					}
170
					}
167
				# The user is a humanoide ;-)
171
				# The user is a humanoide ;-)
168
					else {
172
					else {
169
						if ($cn != '-') { echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user $detail[5]\">$detail[5] ($cn)</a>";}
173
						if ($cn != '-') { echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user $detail[5]\">$detail[5] ($cn)</a>";}
170
						else { echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user $detail[5]\">$detail[5]</a>";}
174
						else { echo "<a href=\"/acc/manager/htdocs/user_admin.php?login=$detail[5]\" title=\"$l_edit_user $detail[5]\">$detail[5]</a>";}
171
						echo "<TD>";
175
						echo "<TD>";
172
						echo "<FORM action='".$_SERVER['PHP_SELF']."' method=POST>";
176
						echo "<FORM action=\"".$_SERVER['PHP_SELF']."\" method=\"POST\">";
173
						echo "<INPUT type='hidden' name='mac_addr' value='$detail[0]'>";
177
						echo "<INPUT type=\"hidden\" name=\"mac_addr\" value=\"$detail[0]\">";
174
						echo "<INPUT type=submit name='action' value='$l_disconnect'>";
178
						echo "<INPUT type=\"submit\" name=\"action\" value=\"$l_disconnect\">";
175
						echo "</FORM></TD>";
179
						echo "</FORM></TD>";
176
						}
180
						}
177
					}
181
					}
178
			# equipment without authenticated user
182
			# equipment without authenticated user
179
			else if (($detail[0] == $intif_mac_addr) || ($detail[1] == $private_ip)){
183
			else if (($detail[0] == $intif_mac_addr) || ($detail[1] == $private_ip)){
180
				echo "ALCASAR system";
184
				echo "ALCASAR system";
181
				echo "<TD>";
185
				echo "<TD>";
182
				echo "&nbsp;";
186
				echo "&nbsp;";
183
				echo "</TD>";
187
				echo "</TD>";
184
				}	
188
				}	
185
			else {  
189
			else {  
186
				echo "&nbsp;";
190
				echo "&nbsp;";
187
				echo "<TD>";		
191
				echo "<TD>";		
188
				echo "<FORM action='".$_SERVER['PHP_SELF']."' method=POST>";
192
				echo "<FORM action=\"".$_SERVER['PHP_SELF']."\" method=\"POST\">";
189
				# Dissociate user (... or other) who is not connected yet
193
				# Dissociate user (... or other) who is not connected yet
190
				echo "<INPUT type='hidden' name='mac_addr' value='$detail[0]'>";
194
				echo "<INPUT type=\"hidden\" name=\"mac_addr\" value=\"$detail[0]\">";
191
				exec ("grep $detail[0] /usr/local/etc/alcasar-ethers-info", $mac_in_ether_file);
195
				exec ("grep $detail[0] /usr/local/etc/alcasar-ethers-info", $mac_in_ether_file);
192
				if (empty($mac_in_ether_file[1]))
196
				if (empty($mac_in_ether_file[1]))
193
				{
197
				{
194
					echo "<INPUT type='submit' name='action' value='$l_dissociate'>"; // Dissociate only MAC not in ether file (dhcp)
198
					echo "<INPUT type=\"submit\" name=\"action\" value=\"$l_dissociate\">"; // Dissociate only MAC not in ether file (dhcp)
195
				}
199
				}
196
				echo "<INPUT type=submit name='action' value='$l_connect'>"; // Enable temporarily @MAC access
200
				echo "<INPUT type=\"submit\" name=\"action\" value=\"$l_connect\">"; // Enable temporarily @MAC access
197
				echo "</FORM></TD>";
201
				echo "</FORM></TD>";
198
			}
202
			}
199
			unset ($mac_in_ether_file);
203
			unset ($mac_in_ether_file);
200
			echo "</tr>";
204
			echo "</tr>";
201
		}
205
		}
202
		?>
206
		?>
203
	</table>
207
	</table>
204
	</td></tr>
208
	</td></tr>
205
</table>
209
</table>
206
</html>
210
</html>
207
 
211
 
208
 
212