index.php 9.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229
  1. <?php
  2. // Init
  3. error_reporting(NULL);
  4. ob_start();
  5. session_start();
  6. $TAB = 'WEB';
  7. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  8. // Header
  9. include($_SERVER['DOCUMENT_ROOT'].'/templates/header.html');
  10. // Panel
  11. top_panel($user,$TAB);
  12. // Are you admin?
  13. if ($_SESSION['user'] == 'admin') {
  14. // Cancel
  15. if (!empty($_POST['cancel'])) {
  16. header("Location: /list/web/");
  17. }
  18. // Action
  19. if (!empty($_POST['ok'])) {
  20. // Check input
  21. if (empty($_POST['v_domain'])) $errors[] = 'domain';
  22. if (empty($_POST['v_ip'])) $errors[] = 'ip';
  23. if (empty($_POST['v_template'])) $errors[] = 'template';
  24. if ((!empty($_POST['v_ssl'])) && (empty($_POST['v_ssl_crt']))) $errors[] = 'ssl certificate';
  25. if ((!empty($_POST['v_ssl'])) && (empty($_POST['v_ssl_key']))) $errors[] = 'ssl key';
  26. if ((!empty($_POST['v_aliases'])) || (!empty($_POST['v_elog'])) || (!empty($_POST['v_ssl'])) || (!empty($_POST['v_ssl_crt'])) || (!empty($_POST['v_ssl_key'])) || (!empty($_POST['v_ssl_ca'])) || ($_POST['v_stats'] != 'none')) $v_adv = 'yes';
  27. // Protect input
  28. $v_domain = preg_replace("/^www./i", "", $_POST['v_domain']);
  29. $v_domain = escapeshellarg($v_domain);
  30. $v_ip = escapeshellarg($_POST['v_ip']);
  31. $v_template = escapeshellarg($_POST['v_template']);
  32. if (empty($_POST['v_dns'])) $v_dns = 'off';
  33. if (empty($_POST['v_mail'])) $v_mail = 'off';
  34. $v_aliases = $_POST['v_aliases'];
  35. $v_elog = $_POST['v_elog'];
  36. $v_nginx = $_POST['v_nginx'];
  37. $v_ssl = $_POST['v_ssl'];
  38. $v_ssl_crt = $_POST['v_ssl_crt'];
  39. $v_ssl_key = $_POST['v_ssl_key'];
  40. $v_ssl_ca = $_POST['v_ssl_ca'];
  41. $v_stats = escapeshellarg($_POST['v_stats']);
  42. // Check for errors
  43. if (!empty($errors[0])) {
  44. foreach ($errors as $i => $error) {
  45. if ( $i == 0 ) {
  46. $error_msg = $error;
  47. } else {
  48. $error_msg = $error_msg.", ".$error;
  49. }
  50. }
  51. $_SESSION['error_msg'] = "Error: field ".$error_msg." can not be blank.";
  52. } else {
  53. // Add WEB
  54. exec (VESTA_CMD."v_add_web_domain ".$user." ".$v_domain." ".$v_ip." ".$v_template." 'no'", $output, $return_var);
  55. if ($return_var != 0) {
  56. $error = implode('<br>', $output);
  57. if (empty($error)) $error = 'Error: vesta did not return any output.';
  58. $_SESSION['error_msg'] = $error;
  59. }
  60. unset($output);
  61. // Add DNS
  62. if (($_POST['v_dns'] == 'on') && (empty($_SESSION['error_msg']))) {
  63. exec (VESTA_CMD."v_add_dns_domain ".$user." ".$v_domain." ".$v_ip, $output, $return_var);
  64. if ($return_var != 0) {
  65. $error = implode('<br>', $output);
  66. if (empty($error)) $error = 'Error: vesta did not return any output.';
  67. $_SESSION['error_msg'] = $error;
  68. }
  69. unset($output);
  70. }
  71. // Add Mail
  72. if (($_POST['v_mail'] == 'on') && (empty($_SESSION['error_msg']))) {
  73. exec (VESTA_CMD."v_add_mail_domain ".$user." ".$v_domain, $output, $return_var);
  74. if ($return_var != 0) {
  75. $error = implode('<br>', $output);
  76. if (empty($error)) $error = 'Error: vesta did not return any output.';
  77. $_SESSION['error_msg'] = $error;
  78. }
  79. unset($output);
  80. }
  81. // Add Aliases
  82. if ((!empty($_POST['v_aliases'])) && (empty($_SESSION['error_msg']))) {
  83. $valiases = preg_replace("/\n/", " ", $_POST['v_aliases']);
  84. $valiases = preg_replace("/,/", " ", $valiases);
  85. $valiases = preg_replace('/\s+/', ' ',$valiases);
  86. $valiases = trim($valiases);
  87. $aliases = explode(" ", $valiases);
  88. foreach ($aliases as $alias) {
  89. $alias = escapeshellarg($alias);
  90. if (empty($_SESSION['error_msg'])) {
  91. exec (VESTA_CMD."v_add_web_domain_alias ".$user." ".$v_domain." ".$alias." 'no'", $output, $return_var);
  92. if ($return_var != 0) {
  93. $error = implode('<br>', $output);
  94. if (empty($error)) $error = 'Error: vesta did not return any output.';
  95. $_SESSION['error_msg'] = $error;
  96. }
  97. }
  98. unset($output);
  99. }
  100. if (($_POST['v_dns'] == 'on') && (empty($_SESSION['error_msg']))) {
  101. exec (VESTA_CMD."v_add_dns_on_web_alias ".$user." ".$v_domain." 'no'", $output, $return_var);
  102. if ($return_var != 0) {
  103. $error = implode('<br>', $output);
  104. if (empty($error)) $error = 'Error: vesta did not return any output.';
  105. $_SESSION['error_msg'] = $error;
  106. }
  107. unset($output);
  108. }
  109. }
  110. // Add ErrorLog
  111. if ((!empty($_POST['v_elog'])) && (empty($_SESSION['error_msg']))) {
  112. exec (VESTA_CMD."v_add_web_domain_elog ".$user." ".$v_domain." 'no'", $output, $return_var);
  113. if ($return_var != 0) {
  114. $error = implode('<br>', $output);
  115. if (empty($error)) $error = 'Error: vesta did not return any output.';
  116. $_SESSION['error_msg'] = $error;
  117. }
  118. unset($output);
  119. }
  120. // Add Nginx
  121. if ((!empty($_POST['v_nginx'])) && (empty($_SESSION['error_msg']))) {
  122. $nginx_ext = "'jpg,jpeg,gif,png,ico,css,zip,tgz,gz,rar,bz2,doc,xls,exe,pdf,ppt,txt,tar,wav,bmp,rtf,js,mp3,avi,mpeg,html,htm'";
  123. exec (VESTA_CMD."v_add_web_domain_nginx ".$user." ".$v_domain." 'default' ".$nginx_ext." 'no'", $output, $return_var);
  124. if ($return_var != 0) {
  125. $error = implode('<br>', $output);
  126. if (empty($error)) $error = 'Error: vesta did not return any output.';
  127. $_SESSION['error_msg'] = $error;
  128. }
  129. unset($output);
  130. }
  131. // Add SSL
  132. if (!empty($_POST['v_ssl'])) {
  133. exec ('mktemp -d', $output, $return_var);
  134. $tmpdir = $output[0];
  135. // Certificate
  136. if (!empty($_POST['v_ssl_crt'])) {
  137. $fp = fopen($tmpdir."/".$_POST['v_domain'].".crt", 'w');
  138. fwrite($fp, str_replace("\r\n", "\n", $_POST['v_ssl_crt']));
  139. fclose($fp);
  140. }
  141. // Key
  142. if (!empty($_POST['v_ssl_key'])) {
  143. $fp = fopen($tmpdir."/".$_POST['v_domain'].".key", 'w');
  144. fwrite($fp, str_replace("\r\n", "\n", $_POST['v_ssl_key']));
  145. fclose($fp);
  146. }
  147. // CA
  148. if (!empty($_POST['v_ssl_ca'])) {
  149. $fp = fopen($tmpdir."/".$_POST['v_domain'].".ca", 'w');
  150. fwrite($fp, str_replace("\r\n", "\n", $_POST['v_ssl_ca']));
  151. fclose($fp);
  152. }
  153. exec (VESTA_CMD."v_add_web_domain_ssl ".$user." ".$v_domain." ".$tmpdir." 'same' 'no'", $output, $return_var);
  154. if ($return_var != 0) {
  155. $error = implode('<br>', $output);
  156. if (empty($error)) $error = 'Error: vesta did not return any output.';
  157. $_SESSION['error_msg'] = $error;
  158. }
  159. unset($output);
  160. }
  161. // Add WebStats
  162. if ((!empty($_POST['v_stats'])) && ($_POST['v_stats'] != 'none' ) && (empty($_SESSION['error_msg']))) {
  163. $v_stats = escapeshellarg($_POST['v_stats']);
  164. exec (VESTA_CMD."v_add_web_domain_stats ".$user." ".$v_domain." ".$v_stats, $output, $return_var);
  165. if ($return_var != 0) {
  166. $error = implode('<br>', $output);
  167. if (empty($error)) $error = 'Error: vesta did not return any output.';
  168. $_SESSION['error_msg'] = $error;
  169. }
  170. unset($output);
  171. }
  172. if (empty($_SESSION['error_msg'])) {
  173. exec (VESTA_CMD."v_restart_web", $output, $return_var);
  174. if ($return_var != 0) {
  175. $error = implode('<br>', $output);
  176. if (empty($error)) $error = 'Error: vesta did not return any output.';
  177. $_SESSION['error_msg'] = $error;
  178. }
  179. unset($output);
  180. $_SESSION['ok_msg'] = "OK: domain <b>".$_POST[v_domain]."</b> has been created successfully.";
  181. unset($v_domain);
  182. unset($v_aliases);
  183. unset($v_ssl);
  184. unset($v_ssl_crt);
  185. unset($v_ssl_key);
  186. unset($v_ssl_ca);
  187. }
  188. }
  189. }
  190. exec (VESTA_CMD."v_list_user_ips ".$user." json", $output, $return_var);
  191. $ips = json_decode(implode('', $output), true);
  192. unset($output);
  193. exec (VESTA_CMD."v_list_web_templates ".$user." json", $output, $return_var);
  194. $templates = json_decode(implode('', $output), true);
  195. unset($output);
  196. exec (VESTA_CMD."v_list_web_stats json", $output, $return_var);
  197. $stats = json_decode(implode('', $output), true);
  198. unset($output);
  199. include($_SERVER['DOCUMENT_ROOT'].'/templates/admin/menu_add_web.html');
  200. include($_SERVER['DOCUMENT_ROOT'].'/templates/admin/add_web.html');
  201. unset($_SESSION['error_msg']);
  202. unset($_SESSION['ok_msg']);
  203. }
  204. // Footer
  205. include($_SERVER['DOCUMENT_ROOT'].'/templates/footer.html');