Subversion Repositories ALCASAR

Rev

Hide changed files | Details | Compare with Previous | Blame

Filtering Options

Rev Age Author Path Log message Diff Changes
3173 273 d 1 h rexy /repos/alcasar/trunk/ - Security : fixing 2 vulnerabilities (RCE)
- standardizes writing (foreeach ())
- config.php (remove deprecated tests)
 
/conf/freeradius-web/config.php
/web/acc/admin/bl_categories_help.php
/web/acc/admin/bl_filter.php
/web/acc/admin/services.php
/web/acc/admin/wl_filter.php
/web/acc/backup/log_generation.php
/web/acc/manager/htdocs/accounting.php
/web/acc/manager/htdocs/activity.php
/web/acc/manager/htdocs/find.php
/web/acc/manager/htdocs/group_new.php
/web/acc/manager/htdocs/security.php
/web/acc/manager/htdocs/user_by_sms.php
/web/acc/manager/htdocs/user_edit.php
/web/acc/manager/htdocs/user_finger.php
/web/acc/manager/html/stats.html.php
/web/email_registration_back.php
/web/still_connected.php
2853 1586 d 22 h rexy /repos/alcasar/trunk/web/acc/ ACC Spanish translation (to be continued)  
/web/acc/admin/bl_categories_help.php
/web/acc/admin/bl_filter.php
/web/acc/admin/ldap.php
/web/acc/admin/logo.php
/web/acc/admin/network.php
/web/acc/admin/protocols_filter.php
/web/acc/admin/services.php
/web/acc/admin/wl_filter.php
/web/acc/backup/log_generation.php
/web/acc/backup/sauvegarde.php
/web/acc/manager/auth_exceptions.php
/web/acc/manager/htdocs/accounting.php
/web/acc/manager/htdocs/activity.php
/web/acc/manager/htdocs/autoregistration.php
/web/acc/manager/htdocs/import_user.php
/web/acc/welcome.php
2818 1656 d 22 h rexy /repos/alcasar/trunk/ improve ACC style with only one stylesheet  
/web/acc/manager/htdocs/help/auth_type_help.html
/web/acc/manager/htdocs/help/badusers_help.html
/web/acc/manager/htdocs/help/callback_id_help.html
/web/acc/manager/htdocs/help/callback_number_help.html
/web/acc/manager/htdocs/help/class_help.html
/web/acc/manager/htdocs/help/dialup_access_help.html
/web/acc/manager/htdocs/help/filter_id_help.html
/web/acc/manager/htdocs/help/framed_compression_help.html
/web/acc/manager/htdocs/help/framed_ip_address_help.html
/web/acc/manager/htdocs/help/framed_ip_netmask_help.html
/web/acc/manager/htdocs/help/framed_mtu_help.html
/web/acc/manager/htdocs/help/framed_protocol_help.html
/web/acc/manager/htdocs/help/help.php
/web/acc/manager/htdocs/help/idle_timeout_help.html
/web/acc/manager/htdocs/help/lock_message_help.html
/web/acc/manager/htdocs/help/login_time_help2.html
/web/acc/manager/htdocs/help/port_limit_help.html
/web/acc/manager/htdocs/help/reply_message_help.html
/web/acc/manager/htdocs/help/service_type_help.html
/web/alcasar-certificat.pdf
/alcasar.sh
/web/acc/admin_log.php
/web/acc/backup/log_generation.php
/web/acc/backup/sauvegarde.php
/web/acc/haut.php
/web/acc/manager/htdocs/accounting.php
/web/acc/manager/htdocs/help/coovachilli_bandwidth_max_down_help.html
/web/acc/manager/htdocs/help/coovachilli_bandwidth_max_up_help.html
/web/acc/manager/htdocs/help/coovachilli_max_input_octets_help.html
/web/acc/manager/htdocs/help/coovachilli_max_output_octets_help.html
/web/acc/manager/htdocs/help/coovachilli_max_total_octets_help.html
/web/acc/manager/htdocs/help/expiration_help.html
/web/acc/manager/htdocs/help/expire_after_help.html
/web/acc/manager/htdocs/help/filtering_help.html
/web/acc/manager/htdocs/help/login_time_help.html
/web/acc/manager/htdocs/help/max_all_session_help.html
/web/acc/manager/htdocs/help/protocols_help.html
/web/acc/manager/htdocs/help/session_timeout_help.html
/web/acc/manager/htdocs/help/simultaneous_use_help.html
/web/acc/manager/htdocs/help/statusOpenRequired_help.html
/web/acc/manager/htdocs/help/wispr_redirection_url_help.html
/web/acc/manager/htdocs/security.php
/web/acc/manager/nfsen.php
/web/index.php
2527 2412 d 11 h fabien.rako /repos/alcasar/trunk/web/acc/ Change ACC look & feel  
/web/acc/manager/nfsen.php
/web/acc/backup/log_generation.php
/web/acc/manager/htdocs/security.php
/web/acc/manager/html/stats.html.php
/web/acc/manager/stats/index.php
/web/acc/menu.php
2317 2702 d 8 h tom.houdayer /repos/alcasar/trunk/ - Update jQuery to 1.12.4
- Update Bootstap to 3.3.7
- Update Chart.js to 2.6.0
 
/web/js/Chart.bundle.min.js
/web/css/bootstrap-theme.css
/web/css/bootstrap-theme.css.map
/web/css/bootstrap.css
/web/css/bootstrap.css.map
/web/js/Chart.bundle.js
/web/js/bootstrap.js
/web/js/jquery-1.12.3.min.js
/web/js/jquery.js
/web/js/npm.js
/scripts/alcasar-activity_report.sh
/web/acc/backup/log_generation.php
/web/acc/manager/htdocs/autoregistration.php
/web/autoregistrationinfo.php
/web/css/bootstrap-theme.min.css
/web/css/bootstrap-theme.min.css.map
/web/css/bootstrap.min.css
/web/css/bootstrap.min.css.map
/web/js/bootstrap.min.js
/web/js/jquery.min.js
2299 2710 d 11 h tom.houdayer /repos/alcasar/trunk/ Escape exec() parameters in ACC to prevent RCE attacks  
/CHANGELOG
/web/acc/admin/bl_categories_help.php
/web/acc/admin/bl_filter.php
/web/acc/admin/network.php
/web/acc/admin/network2.php
/web/acc/admin/services.php
/web/acc/admin/update_ldap.php
/web/acc/admin/wl_filter.php
/web/acc/backup/log_generation.php
/web/acc/manager/htdocs/activity.php
/web/acc/manager/htdocs/autoregistration.php
/web/acc/manager/htdocs/clear_opensessions.php
/web/acc/manager/htdocs/user_edit.php
/web/acc/manager/lib/sql/create_user.php
2182 2767 d 21 h tom.houdayer /repos/alcasar/trunk/web/ Some improvements:
- intercept.php - reformat (HTML5 + separate PHP/View) + use HOSTNAME from config file instead of always "alcasar"
- acc/admin_log.php - sort (reverse order) + reformat (HTML5 + separate PHP/View)
- acc/backup/log_generation.php - sort (reverse order)
- acc/haut.php - merge two file accesses ('r'+'w' -> 'r+') for counter + reformat (HTML5 + separate PHP/View)
- acc/menu.php & acc/phpsysinfo/includes/xml/portail.php - read VERSION from ALCASAR conf file with PHP functions instead of use exec('grep ...')
- log_info.txt & admin_log.txt - remove separator at end of lines
 
/web/acc/admin_log.php
/web/acc/backup/log_generation.php
/web/acc/haut.php
/web/acc/menu.php
/web/acc/phpsysinfo/includes/xml/portail.php
/web/intercept.php
2170 2774 d 21 h richard /repos/alcasar/trunk/ mise à jour geoip pour "surfmap"  
/conf/nfsen/install-surfmap.sh
/CHANGELOG
/conf/nfsen/GeoLiteCity.dat.gz
/conf/nfsen/GeoLiteCityv6.dat.gz
/web/acc/backup/log_generation.php
2142 2801 d 20 h richard /repos/alcasar/trunk/ Mise à jour doc (il reste 2 ou 3 trucs)  
/web/acc/alcasar-3.1-exploitation-fr.pdf
/web/acc/alcasar-3.1-installation-en.pdf
/web/acc/alcasar-3.1-installation-fr.pdf
/web/acc/alcasar-3.1-presentation-en.pdf
/web/acc/alcasar-3.1-presentation-fr.pdf
/web/acc/alcasar-3.1-technique.pdf
/web/acc/alcasar-3.0-exploitation-fr.pdf
/web/acc/alcasar-3.0-installation-en.pdf
/web/acc/alcasar-3.0-installation-fr.pdf
/web/acc/alcasar-3.0-presentation-en.pdf
/web/acc/alcasar-3.0-presentation-fr.pdf
/web/acc/alcasar-3.0-technique.pdf
/VERSION
/web/acc/backup/log_generation.php
/web/acc/backup/sauvegarde.php
2011 3041 d 5 h raphael.pion /repos/alcasar/trunk/web/acc/backup/ push d'avant : Fontionnalité Génération du rapport d'imputabilité

-generation des logs en corrélant deux informations :
- table radacct de la BDD radius
- les fichiers de log de la sonde netflow (nfdump -O tstart -R /var/log/nfsen/profiles-data/live/alcasar_netflow/)
-generation du PDF contenant les informations d'imputabilité avec wkhtmltopdf (HTML+CSS(bootstrap)+JS => rapport PDF)
-Le PDF est archivé avec un mot de passe (rpm : p7zip).
-interface ACC. 3 champs a remplir : la date (depuis le début, un intervale ou depuis une certaine date), le nom du demandeur, la raison et le mot de passe pour protéger le rapport
-prévenir les utilisateurs lors de leur prochaine connexion (à l'aide du 4 eme bit de Filter-Id dans la table 'radacct')
 
/web/acc/backup/log_generation.php
2010 3041 d 5 h raphael.pion /repos/alcasar/trunk/  
/rpms/i586/wkhtmltopdf-0.12.3-1.noarch.rpm
/rpms/wkhtmltopdf-0.12.3-1.spec
/rpms/x86_64/wkhtmltopdf-0.12.3-1.noarch.rpm
/scripts/alcasar-generate_log.sh
/web/acc/backup/log_generation.php
/conf/sudoers
/scripts/alcasar-conup.sh
/scripts/alcasar-iptables.sh
/scripts/alcasar-rpm-download.sh
/scripts/alcasar-urpmi.sh
/web/acc/backup.php
/web/acc/manager/lib/sql/change_attrs.php
/web/acc/menu.php
/web/index.php
/web/intercept.php