| 123456789101112131415161718192021222324252627282930313233 |
- <?php
- ob_start();
- // Main include
- include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
- // Check token
- verify_csrf($_POST);
- // Check user
- if ($_SESSION['userContext'] != 'admin') {
- header("Location: /list/user");
- exit;
- }
- $ipchain = $_POST['ipchain'];
- $action = $_POST['action'];
- switch ($action) {
- case 'delete': $cmd='v-delete-firewall-ban';
- break;
- default: header("Location: /list/firewall/banlist/"); exit;
- }
- foreach ($ipchain as $value) {
- list($ip, $chain) = explode(":", $value);
- $v_ip = escapeshellarg($ip);
- $v_chain = escapeshellarg($chain);
- exec(HESTIA_CMD.$cmd." ".$v_ip." ".$v_chain, $output, $return_var);
- }
- header("Location: /list/firewall/banlist");
|