userTOKEN 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880
  1. #!/bin/bash
  2. USRdatabase="${ADM_user}/ADMuser"
  3. [[ ! -d ${ADM_user}/B-ADMuser ]] && mkdir ${ADM_user}/B-ADMuser
  4. err_fun(){
  5. case $1 in
  6. 1)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Cliente Nulo")"; sleep 2s; tput cuu1; tput dl1;;
  7. 2)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Nombre de Cliente muy corto")"; sleep 2s; tput cuu1; tput dl1;;
  8. 3)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Nombre de Cliente muy largo")"; sleep 2s; tput cuu1; tput dl1;;
  9. 4)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Contraseña Nula")"; sleep 2s; tput cuu1; tput dl1;;
  10. 5)tput cuu1; tput dl1 && msg -verm "$(fun_trans "TOKEN corto, verifi catidad caracteres")"; sleep 2s; tput cuu1; tput dl1;;
  11. 6)tput cuu1; tput dl1 && msg -verm "$(fun_trans "TOKEN largo, verifi catidad caracteres")"; sleep 2s; tput cuu1; tput dl1;;
  12. 7)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Duracion Nula")"; sleep 2s; tput cuu1; tput dl1;;
  13. 8)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Duracion invalida utilize numeros")"; sleep 2s; tput cuu1; tput dl1;;
  14. 9)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Duracion maxima y de un año")"; sleep 2s; tput cuu1; tput dl1;;
  15. 11)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Limite Nulo")"; sleep 2s; tput cuu1; tput dl1;;
  16. 12)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Limite invalido utilize numeros")"; sleep 2s; tput cuu1; tput dl1;;
  17. 13)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Limite maximo de 999")"; sleep 2s; tput cuu1; tput dl1;;
  18. 14)tput cuu1; tput dl1 && msg -verm "$(fun_trans "Cliente o TOKEN ya existe")"; sleep 2s; tput cuu1; tput dl1;;
  19. esac
  20. }
  21. data_user(){
  22. cat_users=$(cat "/etc/passwd"|grep 'home'|grep 'false'|grep -v 'syslog')
  23. [[ -z "$(echo "${cat_users}"|awk -F ':' '{print $5}'|cut -d ',' -f1|grep -w 'token'|head -1)" ]] && print_center -verm2 "NO HAY CLIENTES TOKEN REGISTRADOS" && return 1
  24. dat_us=$(printf '%-20s%-12s%-8s%s' 'Cliente' 'Fecha' 'Dias' 'Statu')
  25. msg -azu " N° $dat_us"
  26. msg -bar
  27. i=1
  28. for u in `echo "${cat_users}"|awk -F ':' '{print $1}'`; do
  29. fix_hwid_token=$(echo "${cat_users}"|grep -w "$u"|awk -F ':' '{print $5}'|cut -d ',' -f1) && [[ "${fix_hwid_token}" != @(token) ]] && continue
  30. fecha=$(chage -l "$u"|sed -n '4p'|awk -F ': ' '{print $2}')
  31. mes_dia=$(echo $fecha|awk -F ',' '{print $1}'|sed 's/ //g')
  32. ano=$(echo $fecha|awk -F ', ' '{printf $2}'|cut -c 3-)
  33. us=$(printf '%-12s' "$u")
  34. pass=$(cat "/etc/passwd"|grep -w "$u"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  35. [[ "${#pass}" -gt '12' ]] && pass="Desconosida"
  36. pass="$(printf '%-19s' "$pass")"
  37. unset stat
  38. if [[ $(passwd --status $u|cut -d ' ' -f2) = "P" ]]; then
  39. stat="$(msg -verd "ULK")"
  40. else
  41. stat="$(msg -verm2 "LOK")"
  42. fi
  43. echo -ne " $(msg -verd "$i)")$(msg -verm2 "-") $(msg -azu "${pass}")"
  44. if [[ $(echo $fecha|awk '{print $2}') = "" ]]; then
  45. exp="$(printf '%8s%-2s' '[X]')"
  46. exp+="$(printf '%-6s' '[X]')"
  47. echo " $(msg -verm2 "$fecha")$(msg -verd "$exp")$(echo -e "$stat")"
  48. else
  49. if [[ $(date +%s) -gt $(date '+%s' -d "${fecha}") ]]; then
  50. exp="$(printf '%-5s' "Exp")"
  51. echo " $(msg -verm2 "$mes_dia/$ano") $(msg -verm2 "$exp")$(echo -e "$stat")"
  52. else
  53. EXPTIME="$(($(($(date '+%s' -d "${fecha}") - $(date +%s))) / 86400))"
  54. if [[ "${#EXPTIME}" = "1" ]]; then
  55. exp="$(printf '%6s%-7s' "$EXPTIME")"
  56. elif [[ "${#EXPTIME}" = "2" ]]; then
  57. exp="$(printf '%7s%-6s' "$EXPTIME")"
  58. else
  59. exp="$(printf '%7s%-5s' "$EXPTIME")"
  60. fi
  61. echo " $(msg -verm2 "$mes_dia/$ano")$(msg -verd "$exp")$(echo -e "$stat")"
  62. fi
  63. fi
  64. echo -e " $(msg -ama "TOKEN:") $(msg -azu "${us}")"
  65. msg -bar3
  66. let i++
  67. done
  68. tput cuu1 && tput dl1
  69. }
  70. #======CREAR NUEVO USUARIO===========
  71. #useradd -M -s /bin/false -e 2021-10-16 -K PASS_MAX_DAYS=1 ruso99
  72. add_user(){
  73. Fecha=`date +%d-%m-%y-%R`
  74. [[ $(cat /etc/passwd |grep $1: |grep -vi [a-z]$1 |grep -v [0-9]$1 > /dev/null) ]] && return 1
  75. valid=$(date '+%C%y-%m-%d' -d " +$3 days")
  76. clear
  77. msg -bar
  78. system=$(cat -n /etc/issue |grep 1 |cut -d ' ' -f6,7,8 |sed 's/1//' |sed 's/ //')
  79. distro=$(echo "$system"|awk '{print $1}')
  80. vercion=$(echo $system|awk '{print $2}'|cut -d '.' -f1)
  81. tpass=$(cat ${ADM_user}/passwd_token)
  82. if [[ ${distro} = @(Ubuntu|Debian) ]]; then
  83. if [[ ${vercion} = "16" ]]; then
  84. pass=$(openssl passwd -1 $tpass)
  85. else
  86. pass=$(openssl passwd -6 $tpass)
  87. fi
  88. fi
  89. if useradd -M -s /bin/false -e ${valid} -K PASS_MAX_DAYS=$3 -p ${pass} -c token,$1 $2 ; then
  90. if [[ $4 = @(s|S) ]]; then
  91. rm -rf /etc/openvpn/easy-rsa/pki/reqs/$1.req
  92. rm -rf /etc/openvpn/easy-rsa/pki/issued/$1.crt
  93. rm -rf /etc/openvpn/easy-rsa/pki/private/$1.key
  94. cd /etc/openvpn/easy-rsa/
  95. ./easyrsa build-client-full $1 nopass > /dev/null 2>&1
  96. cd
  97. cp /etc/openvpn/client-common.txt ~/$1.ovpn
  98. echo "<ca>" >> ~/$1.ovpn
  99. cat /etc/openvpn/easy-rsa/pki/ca.crt >> ~/$1.ovpn
  100. echo "</ca>" >> ~/$1.ovpn
  101. echo "<cert>" >> ~/$1.ovpn
  102. cat /etc/openvpn/easy-rsa/pki/issued/$1.crt >> ~/$1.ovpn
  103. echo "</cert>" >> ~/$1.ovpn
  104. echo "<key>" >> ~/$1.ovpn
  105. cat /etc/openvpn/easy-rsa/pki/private/$1.key >> ~/$1.ovpn
  106. echo "</key>" >> ~/$1.ovpn
  107. echo "<tls-auth>" >> ~/$1.ovpn
  108. cat /etc/openvpn/ta.key >> ~/$1.ovpn
  109. echo "</tls-auth>" >> ~/$1.ovpn
  110. cd $HOME
  111. zip ./$1.zip ./$1.ovpn > /dev/null 2>&1
  112. rm ./$1.ovpn > /dev/null 2>&1
  113. zip_ovpn="$HOME/$1.zip"
  114. fi
  115. print_center -verd "$(fun_trans "Usuario Creado con Exito")"
  116. else
  117. print_center -verm2 "$(fun_trans "Error, Usuario no creado")"
  118. msg -bar
  119. sleep 3
  120. return
  121. fi
  122. msg -bar
  123. }
  124. mostrar_usuarios(){
  125. for u in `cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token'|awk -F ':' '{print $1}'`; do
  126. echo "$u"
  127. done
  128. }
  129. new_user(){
  130. fpass="${ADM_user}/passwd_token" && [[ ! -e "${fpass}" ]] && touch ${fpass}
  131. apass=$(cat ${ADM_user}/passwd_token)
  132. if [[ -z "$apass" ]]; then
  133. clear
  134. msg -bar
  135. print_center -ama "NO HAY CONTRASEÑA TOKEN CONFIGURADA\nCONFIGURE UNA CONTRASEÑA PARA CONTINUAR"
  136. enter
  137. tpass
  138. fi
  139. clear
  140. usuarios_ativos=('' $(mostrar_usuarios))
  141. msg -bar
  142. print_center -ama "$(fun_trans "CREAR USUARIOS")"
  143. msg -bar
  144. data_user
  145. back
  146. while true; do
  147. msg -ne "$(fun_trans "Nombre De cliente"): "
  148. read cliente
  149. cliente="$(echo $cliente|sed 'y/áÁàÀãÃâÂéÉêÊíÍóÓõÕôÔúÚñÑçǪº/aAaAaAaAeEeEiIoOoOoOuUnNcCao/')"
  150. cliente="$(echo $cliente|sed -e 's/[^a-z0-9 -]//ig')"
  151. if [[ -z $cliente ]]; then
  152. err_fun 1 && continue
  153. elif [[ "${cliente}" = "0" ]]; then
  154. return
  155. elif [[ "${#cliente}" -lt "4" ]]; then
  156. err_fun 2 && continue
  157. elif [[ "${#cliente}" -gt "20" ]]; then
  158. err_fun 3 && continue
  159. elif [[ "$(echo ${usuarios_ativos[@]}|grep -w "$cliente")" ]]; then
  160. err_fun 14 && continue
  161. fi
  162. break
  163. done
  164. while true; do
  165. msg -ne "$(fun_trans "TOKEN")"
  166. read -p ": " token
  167. token="$(echo $token|sed 'y/áÁàÀãÃâÂéÉêÊíÍóÓõÕôÔúÚñÑçǪº/aAaAaAaAeEeEiIoOoOoOuUnNcCao/')"
  168. if [[ -z $token ]]; then
  169. err_fun 4 && continue
  170. elif [[ "${#token}" -lt "10" ]]; then
  171. err_fun 5 && continue
  172. elif [[ "${#token}" -gt "20" ]]; then
  173. err_fun 6 && continue
  174. fi
  175. break
  176. done
  177. while true; do
  178. msg -ne "$(fun_trans "Tiempo de coneccion")"
  179. read -p ": " diasuser
  180. if [[ -z "$diasuser" ]]; then
  181. err_fun 7 && continue
  182. elif [[ "$diasuser" != +([0-9]) ]]; then
  183. err_fun 8 && continue
  184. elif [[ "$diasuser" -gt "360" ]]; then
  185. err_fun 9 && continue
  186. fi
  187. break
  188. done
  189. [[ $(dpkg --get-selections|grep -w "openvpn"|head -1) ]] && [[ -e /etc/openvpn/openvpn-status.log ]] && {
  190. while [[ ${newfile} != @(s|S|y|Y|n|N) ]]; do
  191. msg -ne "$(fun_trans "Crear Archivo") OpenVPN? [S/N]: "
  192. read -e -i S newfile
  193. done
  194. }
  195. add_user "${cliente}" "${token}" "${diasuser}" "${newfile}"
  196. msg -ne " $(fun_trans "IP del Servidor"): " && msg -ama " $(fun_ip)"
  197. msg -ne " $(fun_trans "Cliente"): " && msg -ama " $cliente"
  198. msg -ne " $(fun_trans "Dias de Duracion"): " && msg -ama " $diasuser"
  199. msg -ne " $(fun_trans "Fecha de Expiracion"): " && msg -ama "$(date "+%F" -d " + $diasuser days")"
  200. [[ ! -z "$zip_ovpn" ]] && msg -ne " $(fun_trans "Archivo OVPN"): " && msg -ama " $zip_ovpn"
  201. msg -ne " $(fun_trans "TOKEN"): " && msg -ama "$token"
  202. msg -bar
  203. print_center -ama "►► Presione enter para continuar ◄◄"
  204. read
  205. return 1
  206. }
  207. #===================================
  208. #======CREAR USUARIO TEMPORAL======
  209. mktmpuser(){
  210. while [[ -z $name ]]; do
  211. msg -ne " Nombre del usuario: "
  212. read name
  213. if [[ -z $name ]]; then
  214. tput cuu1 && tput dl1
  215. msg -ama " Escriva un nombre de usuario"
  216. sleep 2
  217. tput cuu1 && tput dl1
  218. unset name
  219. continue
  220. fi
  221. done
  222. if cat /etc/passwd |grep $name: |grep -vi [a-z]$name |grep -v [0-9]$name > /dev/null ; then
  223. tput cuu1 && tput dl1
  224. msg -verm2 " El usuario $name ya existe"
  225. sleep 2
  226. tput cuu1 && tput dl1
  227. return
  228. fi
  229. while [[ -z $pass ]]; do
  230. msg -ne " Contraseña: "
  231. read pass
  232. if [[ -z $pass ]]; then
  233. tput cuu1 && tput dl1
  234. msg -ama " Escriva una Contraseña"
  235. sleep 2
  236. tput cuu1 && tput dl1
  237. unset pass
  238. continue
  239. fi
  240. done
  241. while [[ -z $tmp ]]; do
  242. msg -ne " Duracion en minutos: "
  243. read tmp
  244. if [[ -z $tmp ]]; then
  245. tput cuu1 && tput dl1
  246. msg -ama " Escriva un tiempo de duracion"
  247. sleep 2
  248. tput cuu1 && tput dl1
  249. unset tmp
  250. continue
  251. fi
  252. done
  253. if [[ -z $1 ]]; then
  254. msg -ne " Aplicar a conf Default [S/N]: "
  255. read def
  256. if [[ ! "$def" != @(s|S|y|Y) ]]; then
  257. echo -e "usuario=$name
  258. Contraseña=$pass
  259. Tiempo=$tmp" > ${Default}
  260. fi
  261. fi
  262. useradd -M -s /bin/false -p $(openssl passwd -6 $pass) $name
  263. #(echo $pass; echo $pass)|passwd $name 2>/dev/null
  264. touch /tmp/$name
  265. timer=$(( $tmp * 60 ))
  266. timer2="'$timer's"
  267. echo "#!/bin/bash
  268. sleep $timer2
  269. kill"' $(ps -u '"$name |awk '{print"' $tmp'"}') 1> /dev/null 2> /dev/null
  270. userdel --force $name
  271. rm -rf /tmp/$name
  272. exit" > /tmp/$name
  273. chmod 777 /tmp/$name
  274. touch /tmp/cmd
  275. chmod 777 /tmp/cmd
  276. echo "nohup /tmp/$name & >/dev/null" > /tmp/cmd
  277. /tmp/cmd 2>/dev/null 1>/dev/null
  278. rm -rf /tmp/cmd
  279. title "USUARIO TEMPORAL CREADO"
  280. echo -e " $(msg -verm2 "IP: ") $(msg -ama "$(fun_ip)")"
  281. echo -e " $(msg -verm2 "Usuario: ") $(msg -ama "$name")"
  282. echo -e " $(msg -verm2 "Contraseña:") $(msg -ama "$pass")"
  283. echo -e " $(msg -verm2 "Duracion: ") $(msg -ama "$tmp minutos")"
  284. msg -bar
  285. read foo
  286. return
  287. }
  288. userTMP(){
  289. tmp_f="${ADM_user}/userTMP" && [[ ! -d ${tmp_f} ]] && mkdir ${tmp_f}
  290. Default="${tmp_f}/Default"
  291. if [[ ! -e ${Default} ]]; then
  292. echo -e "usuario=ADMRufu
  293. Contraseña=ADMRufu
  294. Tiempo=15" > ${Default}
  295. fi
  296. name="$(cat ${Default}|grep "usuario"|cut -d "=" -f2)"
  297. pass="$(cat ${Default}|grep "Contraseña"|cut -d "=" -f2)"
  298. tmp="$(cat ${Default}|grep "Tiempo"|cut -d "=" -f2)"
  299. title "CONF DE USUARIO TEMPORAL"
  300. print_center -teal "Usuario Default"
  301. msg -bar3
  302. echo -e " $(msg -verm2 "IP: ") $(msg -ama "$(fun_ip)")"
  303. echo -e " $(msg -verm2 "Usuario: ") $(msg -ama "$name")"
  304. echo -e " $(msg -verm2 "Contraseña:") $(msg -ama "$pass")"
  305. echo -e " $(msg -verm2 "Duracion: ") $(msg -ama "$tmp minutos")"
  306. msg -bar
  307. menu_func "APLICAR CONF DEFAULT" "CONF PERSONALIZADA"
  308. back
  309. opcion=$(selection_fun 2)
  310. case $opcion in
  311. 1)mktmpuser "def";;
  312. 2)unset name
  313. unset pass
  314. unset tmp
  315. mktmpuser;;
  316. 0)return;;
  317. esac
  318. }
  319. #===========================================
  320. #=====REMOVER USUARIO=======================
  321. rm_user(){
  322. #nome
  323. if userdel --force "$1" ; then
  324. sed -i "/$1/d" ${ADM_user}/passwd
  325. print_center -verd "[$(fun_trans "Removido")]"
  326. else
  327. print_center -verm "[$(fun_trans "No Removido")]"
  328. fi
  329. }
  330. remove_user(){
  331. clear
  332. usuarios_ativos=('' $(mostrar_usuarios))
  333. msg -bar
  334. print_center -ama "$(fun_trans "REMOVER USUARIOS")"
  335. msg -bar
  336. data_user
  337. back
  338. print_center -ama "$(fun_trans "Escriba o Seleccione un Usuario")"
  339. msg -bar
  340. unset selection
  341. while [[ -z ${selection} ]]; do
  342. msg -nazu "$(fun_trans "Seleccione Una Opcion"): " && read selection
  343. tput cuu1 && tput dl1
  344. done
  345. [[ ${selection} = "0" ]] && return
  346. client_chek=$(cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token')
  347. if [[ ! $(echo "${selection}" | egrep '[^0-9]') ]]; then
  348. usuario_del="${usuarios_ativos[$selection]}"
  349. else
  350. usuario_del=$(echo "$client_chek"|grep -w "$selection"|awk -F ':' '{print $1}')
  351. fi
  352. [[ -z $usuario_del ]] && {
  353. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  354. msg -bar
  355. return 1
  356. }
  357. [[ ! $(echo ${usuarios_ativos[@]}|grep -w "$usuario_del") ]] && {
  358. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  359. msg -bar
  360. return 1
  361. }
  362. client=$(echo "$client_chek"|grep -w "$usuario_del"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  363. print_center -ama "$(fun_trans "Cliente Seleccionado"): $client"
  364. pkill -u $usuario_del
  365. droplim=`droppids|grep -w "$usuario_del"|awk '{print $2}'`
  366. kill -9 $droplim &>/dev/null
  367. rm_user "$usuario_del"
  368. msg -bar
  369. sleep 3
  370. }
  371. #========RENOVAR USUARIOS==========
  372. renew_user_fun(){
  373. #nome dias
  374. datexp=$(date "+%F" -d " + $2 days") && valid=$(date '+%C%y-%m-%d' -d " + $2 days")
  375. if chage -E $valid $1 ; then
  376. print_center -ama "$(fun_trans "Cliente Renovado Con Exito")"
  377. else
  378. print_center -verm "$(fun_trans "Error, Cliente no Renovado")"
  379. fi
  380. }
  381. renew_user(){
  382. clear
  383. usuarios_ativos=('' $(mostrar_usuarios))
  384. msg -bar
  385. print_center -ama "$(fun_trans "RENOVAR CLIENTE")"
  386. msg -bar
  387. data_user
  388. back
  389. print_center -ama "$(fun_trans "Escriba o seleccione un cliente")"
  390. msg -bar
  391. unset selection
  392. while [[ -z ${selection} ]]; do
  393. msg -nazu "$(fun_trans " Seleccione una Opcion"): " && read selection
  394. tput cuu1 && tput dl1
  395. done
  396. [[ ${selection} = "0" ]] && return
  397. client_chek=$(cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token')
  398. if [[ ! $(echo "${selection}" | egrep '[^0-9]') ]]; then
  399. useredit="${usuarios_ativos[$selection]}"
  400. else
  401. useredit=$(echo "$client_chek"|grep -w "$selection"|awk -F ':' '{print $1}')
  402. fi
  403. [[ -z $useredit ]] && {
  404. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  405. msg -bar
  406. sleep 3
  407. return 1
  408. }
  409. [[ ! $(echo ${usuarios_ativos[@]}|grep -w "$useredit") ]] && {
  410. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  411. msg -bar
  412. sleep 3
  413. return 1
  414. }
  415. client=$(echo "$client_chek"|grep -w "$useredit"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  416. while true; do
  417. msg -ne "$(fun_trans "Nuevo Tiempo de Duracion de"): $client"
  418. read -p ": " diasuser
  419. if [[ -z "$diasuser" ]]; then
  420. echo -e '\n\n\n'
  421. err_fun 7 && continue
  422. elif [[ "$diasuser" != +([0-9]) ]]; then
  423. echo -e '\n\n\n'
  424. err_fun 8 && continue
  425. elif [[ "$diasuser" -gt "360" ]]; then
  426. echo -e '\n\n\n'
  427. err_fun 9 && continue
  428. fi
  429. break
  430. done
  431. msg -bar
  432. renew_user_fun "${useredit}" "${diasuser}"
  433. msg -bar
  434. sleep 3
  435. }
  436. eliminar_all(){
  437. title "ELIMINAR TODOS LOS CLIENTES"
  438. msg -ne " [S/N]: "
  439. read opcion
  440. [[ "${opcion}" != @(S|s) ]] && return 1
  441. enter
  442. service dropbear stop &>/dev/null
  443. service sshd stop &>/dev/null
  444. service ssh stop &>/dev/null
  445. service stunnel4 stop &>/dev/null
  446. service squid stop &>/dev/null
  447. cat_users=$(cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w "token")
  448. for user in `echo "$cat_users"|awk -F ':' '{print $1}'`; do
  449. userpid=$(ps -u $user |awk {'print $1'})
  450. kill "$userpid" 2>/dev/null
  451. client=$(echo "$cat_users"|grep -w "$user"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  452. userdel --force $user
  453. user2=$(printf '%-15s' "$client")
  454. echo -e " $(msg -azu "CLIENTE:") $(msg -ama "$user2")$(msg -verm2 "Eliminado")"
  455. done
  456. service sshd restart &>/dev/null
  457. service ssh restart &>/dev/null
  458. service dropbear start &>/dev/null
  459. service stunnel4 start &>/dev/null
  460. service squid restart &>/dev/null
  461. msg -bar
  462. print_center -ama "CONEXIONES ELIMINANDOS"
  463. enter
  464. return 1
  465. }
  466. sshmonitor(){
  467. clear
  468. cat_users=$(cat "/etc/passwd"|grep 'home'|grep 'false'|grep -v 'syslog')
  469. cab=$(printf '%-15s%-13s%-15s%-9s' 'USUARIO' 'STATUS' 'CONEXIONES' 'TIEMPO')
  470. msg -bar
  471. echo -e "\E[41;1;37m $cab\E[0m"
  472. msg -bar
  473. for i in `echo "$cat_users"|awk -F ':' '{print $1}'`; do
  474. user="$i"
  475. s2ssh="$(echo "$cat_users"|grep -w "$i"|awk -F ':' '{print $5}'|cut -d ',' -f1)"
  476. if [[ "$(echo "$cat_users"| grep -w $i| wc -l)" = "1" ]]; then
  477. sqd="$(ps -u $user | grep sshd | wc -l)"
  478. else
  479. sqd=00
  480. fi
  481. [[ "$sqd" = "" ]] && sqd=0
  482. if [[ -e /etc/openvpn/openvpn-status.log ]]; then
  483. ovp="$(cat /etc/openvpn/openvpn-status.log | grep -E ,"$i", | wc -l)"
  484. else
  485. ovp=0
  486. fi
  487. if netstat -nltp|grep 'dropbear'> /dev/null;then
  488. drop="$(droppids | grep "$i" | wc -l)"
  489. else
  490. drop=0
  491. fi
  492. cnx=$(($sqd + $drop))
  493. conex=$(($cnx + $ovp))
  494. if [[ $cnx -gt 0 ]]; then
  495. tst="$(ps -o etime $(ps -u $i |grep sshd |awk 'NR==1 {print $1}')|awk 'NR==2 {print $1}')"
  496. tst1=$(echo "$tst" | wc -c)
  497. if [[ "$tst1" == "9" ]]; then
  498. timerr="$(ps -o etime $(ps -u $i |grep sshd |awk 'NR==1 {print $1}')|awk 'NR==2 {print $1}')"
  499. else
  500. timerr="$(echo "00:$tst")"
  501. fi
  502. elif [[ $ovp -gt 0 ]]; then
  503. tmp2=$(printf '%(%H:%M:%S)T\n')
  504. tmp1="$(grep -w "$i" /etc/openvpn/openvpn-status.log |awk '{print $4}'| head -1)"
  505. [[ "$tmp1" = "" ]] && tmp1="00:00:00" && tmp2="00:00:00"
  506. var1=`echo $tmp1 | cut -c 1-2`
  507. var2=`echo $tmp1 | cut -c 4-5`
  508. var3=`echo $tmp1 | cut -c 7-8`
  509. var4=`echo $tmp2 | cut -c 1-2`
  510. var5=`echo $tmp2 | cut -c 4-5`
  511. var6=`echo $tmp2 | cut -c 7-8`
  512. calc1=`echo $var1*3600 + $var2*60 + $var3 | bc`
  513. calc2=`echo $var4*3600 + $var5*60 + $var6 | bc`
  514. seg=$(($calc2 - $calc1))
  515. min=$(($seg/60))
  516. seg=$(($seg-$min*60))
  517. hor=$(($min/60))
  518. min=$(($min-$hor*60))
  519. timerusr=`printf "%02d:%02d:%02d \n" $hor $min $seg;`
  520. timerr=$(echo "$timerusr" | sed -e 's/[^0-9:]//ig' )
  521. else
  522. timerr="00:00:00"
  523. fi
  524. if [[ "$s2ssh" != @(hwid|token) ]]; then
  525. user=$(printf '%-15s' "$i")
  526. con=$(printf '%-11s' "$conex/$s2ssh")
  527. else
  528. fix="$(echo "$cat_users"|grep -w "$i"|awk -F ':' '{print $5}'|cut -d ',' -f2)"
  529. user=$(printf '%-15s' "$fix")
  530. con=$(printf '%-11s' "$(echo $s2ssh|awk '{print toupper($0)}')")
  531. fi
  532. if [[ $conex -eq 0 ]]; then
  533. status=$(printf '%-16s' 'Offline')
  534. echo -e " $(msg -ama "$user")$(msg -verm2 "$status")$(msg -verd "$con")$(msg -ama "$timerr")"
  535. else
  536. status=$(printf '%-16s' 'Online')
  537. echo -e " $(msg -ama "$user")$(msg -verd "$status")$(msg -verd "$con")$(msg -ama "$timerr")"
  538. fi
  539. msg -bar3
  540. done
  541. tput cuu1 && tput dl1
  542. msg -bar
  543. print_center -ama "►► Presione enter para continuar ◄◄"
  544. read
  545. }
  546. detail_user(){
  547. clear
  548. usuarios_ativos=('' $(mostrar_usuarios))
  549. if [[ -z ${usuarios_ativos[@]} ]]; then
  550. msg -bar
  551. print_center -verm2 "$(fun_trans "Ningun Cliente registrado")"
  552. msg -bar
  553. sleep 3
  554. return
  555. else
  556. msg -bar
  557. print_center -ama "$(fun_trans "DETALLES DEL LOS CLIENTES")"
  558. msg -bar
  559. fi
  560. data_user
  561. enter
  562. }
  563. block_user(){
  564. clear
  565. usuarios_ativos=('' $(mostrar_usuarios))
  566. msg -bar
  567. print_center -ama "$(fun_trans "BLOQUEAR/DESBLOQUEAR CLIENTE")"
  568. msg -bar
  569. data_user
  570. back
  571. print_center -ama "$(fun_trans "Escriba o Seleccione Un Cliente")"
  572. msg -bar
  573. unset selection
  574. while [[ ${selection} = "" ]]; do
  575. echo -ne "\033[1;37m Seleccione: " && read selection
  576. tput cuu1 && tput dl1
  577. done
  578. [[ ${selection} = "0" ]] && return
  579. client_chek=$(cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token')
  580. if [[ ! $(echo "${selection}" | egrep '[^0-9]') ]]; then
  581. usuario_del="${usuarios_ativos[$selection]}"
  582. else
  583. usuario_del=$(echo "$client_chek"|grep -w "$selection"|awk -F ':' '{print $1}')
  584. fi
  585. [[ -z $usuario_del ]] && {
  586. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  587. msg -bar
  588. return 1
  589. }
  590. [[ ! $(echo ${usuarios_ativos[@]}|grep -w "$usuario_del") ]] && {
  591. msg -verm "$(fun_trans "Error, Cliente Invalido")"
  592. msg -bar
  593. return 1
  594. }
  595. client=$(echo "$client_chek"|grep -w "$usuario_del"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  596. msg -nama " $(fun_trans "Cliente"): $client >>>> "
  597. if [[ $(passwd --status $usuario_del|cut -d ' ' -f2) = "P" ]]; then
  598. pkill -u $usuario_del &>/dev/null
  599. droplim=`droppids|grep -w "$usuario_del"|awk '{print $2}'`
  600. kill -9 $droplim &>/dev/null
  601. usermod -L $usuario_del &>/dev/null
  602. sleep 2
  603. msg -verm2 "$(fun_trans "Bloqueado")"
  604. else
  605. usermod -U $usuario_del
  606. sleep 2
  607. msg -verd "$(fun_trans "Desbloqueado")"
  608. fi
  609. enter
  610. }
  611. rm_vencidos(){
  612. title "REMOVER CLIENTES VENCIDOS"
  613. print_center -ama " Removera todo los clientes token expirado"
  614. msg -bar
  615. msg -ne " Continua [S/N]: "
  616. read opcion
  617. tput cuu1 && tput dl1
  618. [[ "$opcion" != @(s|S|y|Y) ]] && return
  619. expired="$(fun_trans "Expirado")"
  620. removido="$(fun_trans "Removido")"
  621. DataVPS=$(date +%s)
  622. while read user; do
  623. DataUser=$(chage -l "$user"|sed -n '4p'|awk -F ': ' '{print $2}')
  624. [[ "$DataUser" = @(never|nunca) ]] && continue
  625. #[[ "$DataUser" = "ene 01, 1970" ]] && DataUser="Jan 01, 1970"
  626. DataSEC=$(date +%s --date="$DataUser")
  627. if [[ "$DataSEC" -lt "$DataVPS" ]]; then
  628. pkill -u $user
  629. droplim=`droppids|grep -w "$user"|awk '{print $2}'`
  630. kill -9 $droplim &>/dev/null
  631. client=$(cat /etc/passwd|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token'|grep -w "$user"|awk -F ':' '{print $5}'|cut -d ',' -f2)
  632. userdel $user
  633. print_center -ama "$client $expired ($removido)"
  634. sleep 1
  635. fi
  636. done <<< "$(mostrar_usuarios)"
  637. enter
  638. }
  639. limiter(){
  640. ltr(){
  641. clear
  642. msg -bar
  643. l_cron=$(cat /var/spool/cron/crontabs/root|grep -w 'limitador.sh'|grep -w 'token')
  644. if [[ -z "$l_cron" ]]; then
  645. echo '@daily /etc/ADMRufu/install/limitador.sh --token' >> /var/spool/cron/crontabs/root
  646. print_center -verd "limitador de expirados programado\nse ejecutara todos los dias a las 00hs\nsegun la hora programada en el servidor"
  647. enter
  648. return
  649. else
  650. sed -i '/limitador.sh --token/d' /var/spool/cron/crontabs/root
  651. print_center -verm2 "limitador de expirados detenido"
  652. enter
  653. return
  654. fi
  655. }
  656. log(){
  657. clear
  658. msg -bar
  659. print_center -ama "REGISTRO DEL LIMITADOR"
  660. msg -bar
  661. [[ ! -e ${ADM_user}/limit.log ]] && touch ${ADM_user}/limit.log
  662. if [[ -z $(cat ${ADM_user}/limit.log) ]]; then
  663. print_center -ama "no ahy registro de limitador"
  664. msg -bar
  665. sleep 2
  666. return
  667. fi
  668. msg -teal "$(cat ${ADM_user}/limit.log)"
  669. msg -bar
  670. print_center -ama "►► Presione enter para continuar o ◄◄"
  671. print_center -ama "►► 0 para limpiar registro ◄◄"
  672. read opcion
  673. [[ $opcion = "0" ]] && echo "" > ${ADM_user}/limit.log
  674. }
  675. clear
  676. msg -bar
  677. print_center -ama "LIMITADOR DE CUENTAS"
  678. msg -bar
  679. menu_func "LIMTADOR DE EXPIRADOS" "LIMITADOR DE DATOS $(msg -verm2 "(no diponible)")" "LOG DEL LIMITADOR"
  680. back
  681. msg -ne " opcion: "
  682. read opcion
  683. case $opcion in
  684. 1)ltr;;
  685. 2);;
  686. 3)log;;
  687. 0)return;;
  688. esac
  689. }
  690. USER_MODE(){
  691. title "SELECCIONE EL MODO QUE USARA POR DEFECTO"
  692. menu_func "SSH" "HWID"
  693. back
  694. opcion=$(selection_fun 2)
  695. case $opcion in
  696. 1) echo "userSSH" > ${ADM_user}/userMODE
  697. clear
  698. msg -bar
  699. print_center -verd "MODO SSH ACTIVA"
  700. enter;;
  701. 2) echo "userHWID" > ${ADM_user}/userMODE
  702. clear
  703. msg -bar
  704. print_center -verd "MODO HWID ACTIVA"
  705. enter;;
  706. 0)return 1;;
  707. esac
  708. }
  709. tpass(){
  710. fpass="${ADM_user}/passwd_token" && [[ ! -e "${fpass}" ]] && touch ${fpass}
  711. apass=$(cat ${ADM_user}/passwd_token)
  712. title -ama "CONFIGURACION DE CONTRASEÑA TOKEN"
  713. if [[ ! -z "$apass" ]]; then
  714. print_center -azu "CONTRASEÑA ACTUAL: $apass"
  715. msg -bar
  716. fi
  717. while true; do
  718. echo -e " $(msg -verm3 "╭╼╼╼[")$(msg -azu "INGRESE SU CONTRASEÑA, ENTER PARA CANSELAR")$(msg -verm3 "]")"
  719. echo -ne " $(msg -verm3 "╰╼")\033[37;1m> " && read npass
  720. npass="$(echo $npass|sed 'y/áÁàÀãÃâÂéÉêÊíÍóÓõÕôÔúÚñÑçǪº/aAaAaAaAeEeEiIoOoOoOuUnNcCao/')"
  721. if [[ -z $npass ]]; then
  722. break
  723. elif [[ "${#npass}" -lt "6" ]]; then
  724. err_fun 5 && tput cuu1 && tput dl1 && continue
  725. elif [[ "${#npass}" -gt "32" ]]; then
  726. err_fun 6 && tput cuu1 && tput dl1 && continue
  727. fi
  728. break
  729. done
  730. [[ -z "$npass" ]] && return 1
  731. tput cuu1 && tput dl1 && tput cuu1 && tput dl1
  732. printf "$npass" > ${ADM_user}/passwd_token
  733. clear
  734. msg -bar
  735. echo -e " $(msg -verd "╭╼╼╼╼╼╼╼╼╼[")$(msg -azu "SE GUARDO LA NUEVA CONTRASEÑA")$(msg -verd "]")"
  736. echo -ne " $(msg -verd "╰╼")\033[37;1m> " && msg -azu "$npass"
  737. cat_users=$(cat "/etc/passwd"|grep 'home'|grep 'false'|grep -v 'syslog'|grep -w 'token'|awk -F ':' '{print $1}')
  738. [[ ! -z "$cat_users" ]] && msg -bar && msg -nama " APLICAR A TODOS LOS CLIENTES [S/N]: " && read allpass
  739. if [[ "$allpass" = @(S|s) ]]; then
  740. msg -bar
  741. print_center -ama "APLICADO CONTRASEÑA A TODO LOS CLIENTES"
  742. for u in `echo "$cat_users"`; do
  743. (echo $npass; echo $npass)|passwd $u 2>/dev/null
  744. done
  745. tput cuu1 && tput dl1
  746. print_center -verd "CONTRASEÑA APLICADA A TODO LOS CLIENTES"
  747. fi
  748. enter
  749. return 1
  750. }
  751. while :
  752. do
  753. [[ $(cat /var/spool/cron/crontabs/root|grep -w 'limitador.sh'|grep -w 'token') ]] && lim=$(msg -verd "[ON]") || lim=$(msg -verm2 "[OFF]")
  754. title -ama "ADMINISTRACION DE USUARIOS TOKEN"
  755. menu_func "NUEVO CLIENTE TOKEN ✏️ " \
  756. "$(msg -verm2 "REMOVER CLIENTE") 🗑 " \
  757. "$(msg -verd "EDITAR/RENOVAR CLIENTE") ♻️" \
  758. "-bar3 BLOQ/DESBLOQ CLIENTE 🔒" \
  759. "-bar3 CONFIGURAR CONTRASEA TOKEN" \
  760. "$(msg -verd "DETALLES DE TODOS CLIENTES") 🔎" \
  761. "MONITOR DE CLIENTES CONECTADOS" \
  762. "-bar3 🔒 $(msg -ama "LIMITADOR-DE-CUENTAS-EXPIRADAS") 🔒 $lim" \
  763. "ELIMINAR CLIENTES VENCIDOS" \
  764. "-bar3 ⚠️ $(msg -verm2 "ELIMINAR TODOS LOS CLIENTES") ⚠️" \
  765. "BACKUP CLIENTES" \
  766. "-bar DESACTIVAR PASS ALFANUMERICO $(msg -blu "(VULTR)")" \
  767. "CAMBIAR A MODO SSH/HWID"
  768. back
  769. selection=$(selection_fun 13)
  770. case ${selection} in
  771. 0)break;;
  772. 1)new_user;;
  773. 2)remove_user;;
  774. 3)renew_user;;
  775. 4)block_user;;
  776. 5)tpass;;
  777. 6)detail_user;;
  778. 7)sshmonitor;;
  779. 8)limiter;;
  780. 9)rm_vencidos;;
  781. 10)eliminar_all;;
  782. 11)backup;;
  783. 12)ULK_ALF;;
  784. 13)USER_MODE && break;;
  785. esac
  786. done