| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108 |
- <?php
- // Init
- error_reporting(NULL);
- ob_start();
- $TAB = 'DB';
- // Main include
- include($_SERVER['DOCUMENT_ROOT'].'/inc/main.php');
- // Check database id
- if (empty($_GET['database'])) {
- header("Location: /list/db/");
- exit;
- }
- // Edit as someone else?
- if (($_SESSION['user'] == 'admin') && (!empty($_GET['user']))) {
- $user=escapeshellarg($_GET['user']);
- }
- // List datbase
- $v_database = $_GET['database'];
- exec (HESTIA_CMD."v-list-database ".$user." ".escapeshellarg($v_database)." 'json'", $output, $return_var);
- check_return_code($return_var,$output);
- $data = json_decode(implode('', $output), true);
- unset($output);
- // Parse database
- $v_username = $user;
- $v_dbuser = $data[$v_database]['DBUSER'];
- $v_password = "";
- $v_host = $data[$v_database]['HOST'];
- $v_type = $data[$v_database]['TYPE'];
- $v_charset = $data[$v_database]['CHARSET'];
- $v_date = $data[$v_database]['DATE'];
- $v_time = $data[$v_database]['TIME'];
- $v_suspended = $data[$v_database]['SUSPENDED'];
- if ( $v_suspended == 'yes' ) {
- $v_status = 'suspended';
- } else {
- $v_status = 'active';
- }
- // Check POST request
- if (!empty($_POST['save'])) {
- $v_username = $user;
- // Check token
- if ((!isset($_POST['token'])) || ($_SESSION['token'] != $_POST['token'])) {
- header('location: /login/');
- exit();
- }
-
- if (empty($_SESSION['error_msg'])) {
- if($_POST['v_type'] == 'mysql'){
- if (strlen($user.'_'.$_POST['v_dbuser']) > 32){
- $_SESSION['error_msg'] = __('Maximum length of database is %s characters', 32);
- }else if (!preg_match('/^[0-9a-zA-Z_]{1,32}$/',$user.'_'.$_POST['v_dbuser'])){
- $_SESSION['error_msg'] = __('Username may only contain lowercase/uppercase letters, numbers or a _');
- }
- }else{
- if (strlen($user.'_'.$_POST['v_dbuser']) > 63){
- $_SESSION['error_msg'] = __('Maximum length of database is %s characters', 63);
- }else if (!preg_match('/^[0-9a-z_]{1,63}$/',$user.'_'.$_POST['v_dbuser'])){
- $_SESSION['error_msg'] = __('Username may only contain lowercase letters, numbers or a _');
- }
- }
- }
-
- // Change database user
- if (($v_dbuser != $_POST['v_dbuser']) && (empty($_SESSION['error_msg']))) {
- $v_dbuser = preg_replace("/^".$user."_/", "", $_POST['v_dbuser']);
- $v_dbuser = escapeshellarg($v_dbuser);
- exec (HESTIA_CMD."v-change-database-user ".$v_username." ".escapeshellarg($v_database)." ".$v_dbuser, $output, $return_var);
- check_return_code($return_var,$output);
- unset($output);
- $v_dbuser = $user."_".preg_replace("/^".$user."_/", "", $_POST['v_dbuser']);
- }
- // Change database password
- if ((!empty($_POST['v_password'])) && (empty($_SESSION['error_msg']))) {
- if (!validate_password($_POST['v_password'])) {
- $_SESSION['error_msg'] = __('Password does not match the minimum requirements');
- }else{
- $v_password = tempnam("/tmp","vst");
- $fp = fopen($v_password, "w");
- fwrite($fp, $_POST['v_password']."\n");
- fclose($fp);
- exec (HESTIA_CMD."v-change-database-password ".$v_username." ".escapeshellarg($v_database)." ".$v_password, $output, $return_var);
- check_return_code($return_var,$output);
- unset($output);
- unlink($v_password);
- $v_password = escapeshellarg($_POST['v_password']);
- }
- }
- // Set success message
- if (empty($_SESSION['error_msg'])) {
- $_SESSION['ok_msg'] = __('Changes has been saved.');
- }
- }
- // Render page
- render_page($user, $TAB, 'edit_db');
- // Flush session messages
- unset($_SESSION['error_msg']);
- unset($_SESSION['ok_msg']);
|