index.php 3.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133
  1. <?php
  2. use function Hestiacp\quoteshellarg\quoteshellarg;
  3. ob_start();
  4. $TAB = "BACKUP";
  5. include $_SERVER["DOCUMENT_ROOT"] . "/inc/main.php";
  6. // Edit as someone else?
  7. if ($_SESSION["userContext"] === "admin" && !empty($_GET["user"])) {
  8. $user = quoteshellarg($_GET["user"]);
  9. }
  10. // List backup exclustions
  11. exec(HESTIA_CMD . "v-list-user-backup-exclusions " . $user . " 'json'", $output, $return_var);
  12. check_return_code($return_var, $output);
  13. $data = json_decode(implode("", $output), true);
  14. unset($output);
  15. $v_web = $v_mail = $v_db = $v_userdir = "";
  16. // Parse web
  17. $v_username = $user;
  18. foreach ($data["WEB"] as $key => $value) {
  19. if (!empty($value)) {
  20. $v_web .= $key . ":" . str_replace(",", ":", $value) . "\n";
  21. } else {
  22. $v_web .= $key . "\n";
  23. }
  24. }
  25. // Parse mail
  26. foreach ($data["MAIL"] as $key => $value) {
  27. if (!empty($value)) {
  28. $v_mail .= $key . ":" . $value . "\n";
  29. } else {
  30. $v_mail .= $key . "\n";
  31. }
  32. }
  33. // Parse databases
  34. foreach ($data["DB"] as $key => $value) {
  35. if (!empty($value)) {
  36. $v_db .= $key . ":" . $value . "\n";
  37. } else {
  38. $v_db .= $key . "\n";
  39. }
  40. }
  41. // Parse user directories
  42. foreach ($data["USER"] as $key => $value) {
  43. if (!empty($value)) {
  44. $v_userdir .= $key . ":" . $value . "\n";
  45. } else {
  46. $v_userdir .= $key . "\n";
  47. }
  48. }
  49. // Check POST request
  50. if (!empty($_POST["save"])) {
  51. // Check token
  52. verify_csrf($_POST);
  53. $v_web = $_POST["v_web"] ?? "";
  54. $v_web_tmp = str_replace("\r\n", ",", $_POST["v_web"]);
  55. $v_web_tmp = rtrim($v_web_tmp, ",");
  56. $v_web_tmp = "WEB=" . quoteshellarg($v_web_tmp);
  57. $v_dns = $_POST["v_dns"] ?? "";
  58. $v_dns_tmp = str_replace("\r\n", ",", $_POST["v_dns"]);
  59. $v_dns_tmp = rtrim($v_dns_tmp, ",");
  60. $v_dns_tmp = "DNS=" . quoteshellarg($v_dns_tmp);
  61. $v_mail = $_POST["v_mail"] ?? "";
  62. $v_mail_tmp = str_replace("\r\n", ",", $_POST["v_mail"]);
  63. $v_mail_tmp = rtrim($v_mail_tmp, ",");
  64. $v_mail_tmp = "MAIL=" . quoteshellarg($v_mail_tmp);
  65. $v_db = $_POST["v_db"] ?? "";
  66. $v_db_tmp = str_replace("\r\n", ",", $_POST["v_db"]);
  67. $v_db_tmp = rtrim($v_db_tmp, ",");
  68. $v_db_tmp = "DB=" . quoteshellarg($v_db_tmp);
  69. $v_cron = $_POST["v_cron"] ?? "";
  70. $v_cron_tmp = str_replace("\r\n", ",", $_POST["v_cron"]);
  71. $v_cron_tmp = rtrim($v_cron_tmp, ",");
  72. $v_cron_tmp = "CRON=" . quoteshellarg($v_cron_tmp);
  73. $v_userdir = $_POST["v_userdir"] ?? "";
  74. $v_userdir_tmp = str_replace("\r\n", ",", $_POST["v_userdir"]);
  75. $v_userdir_tmp = rtrim($v_userdir_tmp, ",");
  76. $v_userdir_tmp = "USER=" . quoteshellarg($v_userdir_tmp);
  77. // Create temporary exeption list on a filesystem
  78. exec("mktemp", $mktemp_output, $return_var);
  79. $tmp = $mktemp_output[0];
  80. $fp = fopen($tmp, "w");
  81. fwrite(
  82. $fp,
  83. $v_web_tmp .
  84. "\n" .
  85. $v_dns_tmp .
  86. "\n" .
  87. $v_mail_tmp .
  88. "\n" .
  89. $v_db_tmp .
  90. "\n" .
  91. $v_userdir_tmp .
  92. "\n",
  93. );
  94. fclose($fp);
  95. unset($mktemp_output);
  96. // Save changes
  97. exec(
  98. HESTIA_CMD . "v-update-user-backup-exclusions " . $user . " " . $tmp,
  99. $output,
  100. $return_var,
  101. );
  102. check_return_code($return_var, $output);
  103. unset($output);
  104. // Set success message
  105. if (empty($_SESSION["error_msg"])) {
  106. $_SESSION["ok_msg"] = _("Changes have been saved.");
  107. }
  108. }
  109. // Render page
  110. render_page($user, $TAB, "edit_backup_exclusions");
  111. // Flush session messages
  112. unset($_SESSION["error_msg"]);
  113. unset($_SESSION["ok_msg"]);