addadmin_helper.php 6.0 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146
  1. <?php
  2. /*
  3. *
  4. * OGP - Open Game Panel
  5. * Copyright (C) 2008 - 2018 The OGP Development Team
  6. *
  7. * http://www.opengamepanel.org/
  8. *
  9. * This program is free software; you can redistribute it and/or
  10. * modify it under the terms of the GNU General Public License
  11. * as published by the Free Software Foundation; either version 2
  12. * of the License, or any later version.
  13. *
  14. * This program is distributed in the hope that it will be useful,
  15. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  16. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  17. * GNU General Public License for more details.
  18. *
  19. * You should have received a copy of the GNU General Public License
  20. * along with this program; if not, write to the Free Software
  21. * Foundation, Inc., 59 Temple Place - Suite 330, Boston, MA 02111-1307, USA.
  22. *
  23. */
  24. require 'includes/lib_remote.php';
  25. function exec_ogp_module()
  26. {
  27. global $db;
  28. include 'modules/util/functions.php';
  29. include 'modules/util/util_config.php';
  30. $servers = getUserServers($db->getIpPortsForUser($_SESSION['user_id']), $subuserAdminManagement, $supportedGames);
  31. // If it's a post request and the user is signed in - process it.
  32. // Otherwise, remove some sensitive info (such as encryption_key) from $servers - only keeping what the user needs to see and json_encode it for JS to process.
  33. if($_SERVER['REQUEST_METHOD'] === 'POST'){
  34. $serverInfo = array();
  35. $flags = '';
  36. $sourcemodFlags = range('a', 't');
  37. $immunityRange = range(1, 99);
  38. // Don't use isset here because they're always going to be set if the form is submitted - we only want to process the data if the following isn't empty.
  39. if(!empty($_POST['gameserver_id']) && !empty($_POST['remote_server_id']) && !empty($_POST['gameserver_name'])
  40. && !empty($_POST['gameserver_ip']) && !empty($_POST['gameserver_port']) && !empty($_POST['addSteamid']) && !empty($_POST['sourcemod_perms'])){
  41. foreach($servers as $server){
  42. // Try to check if hidden form values have been manually edited. If not, process.
  43. if($server['remote_server_id'] == $_POST['remote_server_id'] && $server['home_id'] == $_POST['gameserver_id']
  44. && $server['game_name'] == $_POST['gameserver_name'] && $server['ip'] == $_POST['gameserver_ip'] && $server['port'] == $_POST['gameserver_port']){
  45. $serverInfo = $server;
  46. }
  47. }
  48. if(!empty($serverInfo)){
  49. $remote = new OGPRemoteLibrary($serverInfo['agent_ip'], $serverInfo['agent_port'], $serverInfo['encryption_key'], $serverInfo['timeout']);
  50. if($remote->status_chk() === 1){
  51. if(preg_match('/^STEAM_[01]:[01]:\d+$/', $_POST['addSteamid'])){
  52. $immunity = (!empty($_POST['immunity']) && in_array($_POST['immunity'], $immunityRange)) ? $_POST['immunity'] : '';
  53. if($_POST['sourcemod_perms'] == 'root'){
  54. $flags = 'z';
  55. }elseif($_POST['sourcemod_perms'] == 'custom'){
  56. if(!empty($_POST['flags']) && is_array($_POST['flags'])){
  57. $x = array_intersect(array_values($_POST['flags']), $sourcemodFlags);
  58. $flags = implode('', ($x));
  59. }
  60. }
  61. if(!empty($flags)){
  62. $adminFile = $serverInfo['home_path'].'/'.$serverInfo['mod_key'].'/'.$adminFiles['sourcemod'];
  63. // Build up what the new line will be.
  64. $newLine = "\"{$_POST['addSteamid']}\"\t\"".(!empty($immunity) ? $immunity.':' : '').$flags."\"";
  65. // Only process if the $adminFile exists;
  66. if($remote->rfile_exists($adminFile) === 1){
  67. $remote->remote_readfile($adminFile, $file_content);
  68. // Decide if it's replacing an existing line or is a new line.
  69. if(preg_match('/'.$_POST['addSteamid'].'/i', $file_content)){
  70. $file_content = preg_replace('/.*'.$_POST['addSteamid'].'.*/i', $newLine, $file_content);
  71. }else{
  72. $file_content .= $newLine."\r\n";
  73. }
  74. if($remote->remote_writefile($adminFile, $file_content) === 1){
  75. if(!empty($serverInfo['control_password'])){
  76. $reloadAdmins = $remote->remote_send_rcon_command($serverInfo['home_id'], $serverInfo['ip'], $serverInfo['port'], 'rcon2', $serverInfo['control_password'], '', 'sm_reloadadmins', $return);
  77. if($reloadAdmins === -1){
  78. echo get_lang('rcon_reload_admins_failed');
  79. }elseif($reloadAdmins === 1){
  80. if(preg_match('/Admin cache has been refreshed/i', $return)){
  81. echo get_lang_f('reload_admins_success', $_POST['addSteamid']);
  82. }else{
  83. echo get_lang('reload_admins_failed');
  84. }
  85. }
  86. }else{
  87. // No rcon password stored - can't reload admins
  88. echo get_lang_f('add_success_no_rcon', $_POST['addSteamid']);
  89. }
  90. }else{
  91. // There was a problem writing to the admin file.
  92. echo get_lang_f('writefile_error', $adminFile);
  93. }
  94. }else{
  95. // The remote admin file doesn't exist.
  96. echo get_lang_f('remotefile_nonexistent', $adminFiles['sourcemod']);
  97. }
  98. }else{
  99. // There wasn't any flags specified.
  100. echo get_lang('empty_flag_list');
  101. }
  102. }else{
  103. // invalid steam_id format given.
  104. echo get_lang('invalid_steam_format');
  105. }
  106. }else{
  107. // Agent is offline. We can't add any admins here.
  108. echo get_lang('selected_server_offline');
  109. }
  110. }else{
  111. // the hidden input values don't exist in our servers array. however, they should exist.
  112. // if we're here: 1) the hidden variables have either been manually changed, or 2) the user was removed from accessing the selected server while still on the page.
  113. echo get_lang('malformed_form');
  114. }
  115. }else{
  116. // An empty form was submitted.
  117. echo get_lang('empty_form_data');
  118. }
  119. }else{
  120. $return = array();
  121. for($x = 0; $x < count($servers); ++$x){
  122. $return[] = array(
  123. 'remote_server_id' => $servers[$x]['remote_server_id'],
  124. 'ip' => $servers[$x]['ip'],
  125. 'port' => $servers[$x]['port'],
  126. 'home_id' => $servers[$x]['home_id'],
  127. 'home_name' => $servers[$x]['home_name'],
  128. 'game_name' => $servers[$x]['game_name'],
  129. );
  130. }
  131. echo json_encode($return);
  132. }
  133. }
  134. ?>