index.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275
  1. <?php
  2. // Init
  3. error_reporting(NULL);
  4. ob_start();
  5. session_start();
  6. $TAB = 'USER';
  7. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  8. // Header
  9. include($_SERVER['DOCUMENT_ROOT'].'/templates/header.html');
  10. // Panel
  11. top_panel($user,$TAB);
  12. // Are you admin?
  13. if ($_SESSION['user'] == 'admin') {
  14. // Check user argument?
  15. if (empty($_GET['user'])) {
  16. header("Location: /list/user/");
  17. exit;
  18. }
  19. // Check user
  20. $v_username = escapeshellarg($_GET['user']);
  21. exec (VESTA_CMD."v-list-user ".$v_username." json", $output, $return_var);
  22. if ($return_var != 0) {
  23. $error = implode('<br>', $output);
  24. if (empty($error)) $error = 'Error: vesta did not return any output.';
  25. $_SESSION['error_msg'] = $error;
  26. } else {
  27. $data = json_decode(implode('', $output), true);
  28. unset($output);
  29. $v_username = $_GET['user'];
  30. $v_password = "••••••••";
  31. $v_email = $data[$v_username]['CONTACT'];
  32. $v_template = $data[$v_username]['TEMPLATE'];
  33. $v_package = $data[$v_username]['PACKAGE'];
  34. $v_fname = $data[$v_username]['FNAME'];
  35. $v_lname = $data[$v_username]['LNAME'];
  36. $v_shell = $data[$v_username]['SHELL'];
  37. $v_ns = $data[$v_username]['NS'];
  38. $nameservers = explode(", ", $v_ns);
  39. $v_ns1 = $nameservers[0];
  40. $v_ns2 = $nameservers[1];
  41. $v_ns3 = $nameservers[2];
  42. $v_ns4 = $nameservers[3];
  43. $v_suspended = $data[$v_username]['SUSPENDED'];
  44. if ( $v_suspended == 'yes' ) {
  45. $v_status = 'suspended';
  46. } else {
  47. $v_status = 'active';
  48. }
  49. $v_time = $data[$v_username]['TIME'];
  50. $v_date = $data[$v_username]['DATE'];
  51. exec (VESTA_CMD."v-list-user-packages json", $output, $return_var);
  52. $packages = json_decode(implode('', $output), true);
  53. unset($output);
  54. exec (VESTA_CMD."v-list-web-templates json", $output, $return_var);
  55. $templates = json_decode(implode('', $output), true);
  56. unset($output);
  57. exec (VESTA_CMD."v-list-sys-shells json", $output, $return_var);
  58. $shells = json_decode(implode('', $output), true);
  59. unset($output);
  60. }
  61. // Action
  62. if (!empty($_POST['save'])) {
  63. $v_username = escapeshellarg($_POST['v_username']);
  64. // Change password
  65. if (($v_password != $_POST['v_password']) && (empty($_SESSION['error_msg']))) {
  66. $v_password = escapeshellarg($_POST['v_password']);
  67. exec (VESTA_CMD."v-change-user-password ".$v_username." ".$v_password, $output, $return_var);
  68. if ($return_var != 0) {
  69. $error = implode('<br>', $output);
  70. if (empty($error)) $error = 'Error: vesta did not return any output.';
  71. $_SESSION['error_msg'] = $error;
  72. }
  73. $v_password = "••••••••";
  74. unset($output);
  75. }
  76. // Change package
  77. if (($v_package != $_POST['v_package']) && (empty($_SESSION['error_msg']))) {
  78. $v_package = escapeshellarg($_POST['v_package']);
  79. exec (VESTA_CMD."v-change-user-package ".$v_username." ".$v_package, $output, $return_var);
  80. if ($return_var != 0) {
  81. $error = implode('<br>', $output);
  82. if (empty($error)) $error = 'Error: vesta did not return any output.';
  83. $_SESSION['error_msg'] = $error;
  84. }
  85. unset($output);
  86. }
  87. // Change template
  88. if (($v_template != $_POST['v_template']) && (empty($_SESSION['error_msg']))) {
  89. $v_template = escapeshellarg($_POST['v_template']);
  90. exec (VESTA_CMD."v-change-user-template ".$v_username." ".$v_template, $output, $return_var);
  91. if ($return_var != 0) {
  92. $error = implode('<br>', $output);
  93. if (empty($error)) $error = 'Error: vesta did not return any output.';
  94. $_SESSION['error_msg'] = $error;
  95. }
  96. unset($output);
  97. }
  98. // Change shell
  99. if (($v_shell != $_POST['v_shell']) && (empty($_SESSION['error_msg']))) {
  100. $v_shell = escapeshellarg($_POST['v_shell']);
  101. exec (VESTA_CMD."v-change-user-shell ".$v_username." ".$v_shell, $output, $return_var);
  102. if ($return_var != 0) {
  103. $error = implode('<br>', $output);
  104. if (empty($error)) $error = 'Error: vesta did not return any output.';
  105. $_SESSION['error_msg'] = $error;
  106. }
  107. unset($output);
  108. }
  109. // Change contact email
  110. if (($v_email != $_POST['v_email']) && (empty($_SESSION['error_msg']))) {
  111. // Validate email
  112. if (!filter_var($_POST['v_email'], FILTER_VALIDATE_EMAIL)) {
  113. $_SESSION['error_msg'] = 'Please enter valid email address.';
  114. } else {
  115. $v_email = escapeshellarg($_POST['v_email']);
  116. exec (VESTA_CMD."v-change-user-contact ".$v_username." ".$v_email, $output, $return_var);
  117. if ($return_var != 0) {
  118. $error = implode('<br>', $output);
  119. if (empty($error)) $error = 'Error: vesta did not return any output.';
  120. $_SESSION['error_msg'] = $error;
  121. }
  122. }
  123. unset($output);
  124. }
  125. // Change Name
  126. if (($v_fname != $_POST['v_fname']) || ($v_lname != $_POST['v_lname']) && (empty($_SESSION['error_msg']))) {
  127. $v_fname = escapeshellarg($_POST['v_fname']);
  128. $v_lname = escapeshellarg($_POST['v_lname']);
  129. exec (VESTA_CMD."v-change-user-name ".$v_username." ".$v_fname." ".$v_lname, $output, $return_var);
  130. if ($return_var != 0) {
  131. $error = implode('<br>', $output);
  132. if (empty($error)) $error = 'Error: vesta did not return any output.';
  133. $_SESSION['error_msg'] = $error;
  134. }
  135. unset($output);
  136. }
  137. // Change NameServers
  138. if (($v_ns1 != $_POST['v_ns1']) || ($v_ns2 != $_POST['v_ns2']) || ($v_ns3 != $_POST['v_ns3']) || ($v_ns4 != $_POST['v_ns4']) && (empty($_SESSION['error_msg']))) {
  139. $v_ns1 = escapeshellarg($_POST['v_ns1']);
  140. $v_ns2 = escapeshellarg($_POST['v_ns2']);
  141. $v_ns3 = escapeshellarg($_POST['v_ns3']);
  142. $v_ns4 = escapeshellarg($_POST['v_ns4']);
  143. $ns_cmd = VESTA_CMD."v-change-user-ns ".$v_username." ".$v_ns1." ".$v_ns2;
  144. if (!empty($_POST['v_ns3'])) $ns_cmd = $ns_cmd." ".$v_ns3;
  145. if (!empty($_POST['v_ns4'])) $ns_cmd = $ns_cmd." ".$v_ns4;
  146. exec ($ns_cmd, $output, $return_var);
  147. if ($return_var != 0) {
  148. $error = implode('<br>', $output);
  149. if (empty($error)) $error = 'Error: vesta did not return any output.';
  150. $_SESSION['error_msg'] = $error;
  151. }
  152. unset($output);
  153. }
  154. if (empty($_SESSION['error_msg'])) {
  155. $_SESSION['ok_msg'] = "OK: changes has been saved.";
  156. }
  157. }
  158. include($_SERVER['DOCUMENT_ROOT'].'/templates/admin/edit_user.html');
  159. unset($_SESSION['error_msg']);
  160. unset($_SESSION['ok_msg']);
  161. } else {
  162. // Check user argument?
  163. if (empty($_GET['user'])) {
  164. header("Location: /list/user/");
  165. exit;
  166. }
  167. // Check user
  168. $v_username = escapeshellarg($_GET['user']);
  169. exec (VESTA_CMD."v-list-user ".$v_username." json", $output, $return_var);
  170. if ($return_var != 0) {
  171. $error = implode('<br>', $output);
  172. if (empty($error)) $error = 'Error: vesta did not return any output.';
  173. $_SESSION['error_msg'] = $error;
  174. } else {
  175. $data = json_decode(implode('', $output), true);
  176. unset($output);
  177. $v_username = $_GET['user'];
  178. $v_password = "••••••••";
  179. $v_email = $data[$v_username]['CONTACT'];
  180. $v_fname = $data[$v_username]['FNAME'];
  181. $v_lname = $data[$v_username]['LNAME'];
  182. $v_ns = $data[$v_username]['NS'];
  183. $nameservers = explode(", ", $v_ns);
  184. $v_ns1 = $nameservers[0];
  185. $v_ns2 = $nameservers[1];
  186. $v_ns3 = $nameservers[2];
  187. $v_ns4 = $nameservers[3];
  188. $v_suspended = $data[$v_username]['SUSPENDED'];
  189. if ( $v_suspended == 'yes' ) {
  190. $v_status = 'suspended';
  191. } else {
  192. $v_status = 'active';
  193. }
  194. $v_time = $data[$v_username]['TIME'];
  195. $v_date = $data[$v_username]['DATE'];
  196. }
  197. // Action
  198. if (!empty($_POST['save'])) {
  199. $v_username = escapeshellarg($_POST['v_username']);
  200. // Change password
  201. if (($v_password != $_POST['v_password']) && (empty($_SESSION['error_msg']))) {
  202. $v_password = escapeshellarg($_POST['v_password']);
  203. exec (VESTA_CMD."v-change-user-password ".$v_username." ".$v_password, $output, $return_var);
  204. if ($return_var != 0) {
  205. $error = implode('<br>', $output);
  206. if (empty($error)) $error = 'Error: vesta did not return any output.';
  207. $_SESSION['error_msg'] = $error;
  208. }
  209. $v_password = "••••••••";
  210. unset($output);
  211. }
  212. // Change contact email
  213. if (($v_email != $_POST['v_email']) && (empty($_SESSION['error_msg']))) {
  214. $v_email = escapeshellarg($_POST['v_email']);
  215. exec (VESTA_CMD."v-change-user-contact ".$v_username." ".$v_email, $output, $return_var);
  216. if ($return_var != 0) {
  217. $error = implode('<br>', $output);
  218. if (empty($error)) $error = 'Error: vesta did not return any output.';
  219. $_SESSION['error_msg'] = $error;
  220. }
  221. unset($output);
  222. }
  223. // Change NameServers
  224. if (($v_ns1 != $_POST['v_ns1']) || ($v_ns2 != $_POST['v_ns2']) || ($v_ns3 != $_POST['v_ns3']) || ($v_ns4 != $_POST['v_ns4']) && (empty($_SESSION['error_msg']))) {
  225. $v_ns1 = escapeshellarg($_POST['v_ns1']);
  226. $v_ns2 = escapeshellarg($_POST['v_ns2']);
  227. $v_ns3 = escapeshellarg($_POST['v_ns3']);
  228. $v_ns4 = escapeshellarg($_POST['v_ns4']);
  229. $ns_cmd = VESTA_CMD."v-change-user-ns ".$v_username." ".$v_ns1." ".$v_ns2;
  230. if (!empty($_POST['v_ns3'])) $ns_cmd = $ns_cmd." ".$v_ns3;
  231. if (!empty($_POST['v_ns4'])) $ns_cmd = $ns_cmd." ".$v_ns4;
  232. exec ($ns_cmd, $output, $return_var);
  233. if ($return_var != 0) {
  234. $error = implode('<br>', $output);
  235. if (empty($error)) $error = 'Error: vesta did not return any output.';
  236. $_SESSION['error_msg'] = $error;
  237. }
  238. unset($output);
  239. }
  240. if (empty($_SESSION['error_msg'])) {
  241. $_SESSION['ok_msg'] = "OK: changes has been saved.";
  242. }
  243. }
  244. include($_SERVER['DOCUMENT_ROOT'].'/templates/user/edit_user.html');
  245. unset($_SESSION['error_msg']);
  246. unset($_SESSION['ok_msg']);
  247. }
  248. // Footer
  249. include($_SERVER['DOCUMENT_ROOT'].'/templates/footer.html');