main.sh 24 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. HOMEDIR='/home'
  17. BACKUP='/backup'
  18. BACKUP_GZIP=5
  19. BACKUP_DISK_LIMIT=95
  20. BACKUP_LA_LIMIT=5
  21. RRD_STEP=300
  22. RRD_IFACE_EXCLUDE=lo
  23. BIN=$VESTA/bin
  24. USER_DATA=$VESTA/data/users/$user
  25. WEBTPL=$VESTA/data/templates/web
  26. DNSTPL=$VESTA/data/templates/dns
  27. RRD=$VESTA/web/rrd
  28. # Return codes
  29. OK=0
  30. E_ARGS=1
  31. E_INVALID=2
  32. E_NOTEXIST=3
  33. E_EXISTS=4
  34. E_SUSPENDED=5
  35. E_UNSUSPENDED=6
  36. E_INUSE=7
  37. E_LIMIT=8
  38. E_PASSWORD=9
  39. E_FORBIDEN=10
  40. E_DISABLED=11
  41. E_PARSING=12
  42. E_DISK=13
  43. E_LA=14
  44. E_CONNECT=15
  45. E_FTP=16
  46. E_DB=17
  47. E_RRD=18
  48. E_UPDATE=19
  49. E_RESTART=20
  50. # Log event function
  51. log_event() {
  52. echo "RC='$1' $2" >> $VESTA/log/system.log
  53. }
  54. # Log user history
  55. log_history() {
  56. cmd=$1
  57. undo=${2-no}
  58. log_user=${3-$user}
  59. log=$VESTA/data/users/$log_user/history.log
  60. touch $log
  61. if [ '99' -lt "$(wc -l $log |cut -f 1 -d ' ')" ]; then
  62. tail -n 49 $log > $log.moved
  63. mv -f $log.moved $log
  64. chmod 660 $log
  65. fi
  66. curr_str=$(grep "ID=" $log | cut -f 2 -d \' | sort -n | tail -n1)
  67. id="$((curr_str +1))"
  68. echo "ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'" >> $log
  69. }
  70. # Argument list checker
  71. check_args() {
  72. if [ "$1" -gt "$2" ]; then
  73. echo "Error: not enought arguments"
  74. echo "Usage: $SCRIPT $3"
  75. log_event "$E_ARGS" "$EVENT"
  76. exit $E_ARGS
  77. fi
  78. }
  79. # Subsystem checker
  80. is_system_enabled() {
  81. if [ -z "$1" ] || [ "$1" = no ]; then
  82. echo "Error: $2 is disabled in the vesta.conf"
  83. log_event "$E_DISABLED" "$EVENT"
  84. exit $E_DISABLED
  85. fi
  86. }
  87. # User package check
  88. is_package_full() {
  89. case "$1" in
  90. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  91. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  92. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  93. wc -l );;
  94. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  95. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  96. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  97. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  98. cut -f1 -d \ );;
  99. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  100. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  101. esac
  102. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  103. if [ "$used" -ge "$limit" ]; then
  104. echo "Error: Limit reached / Upgrade package"
  105. log_event "$E_LIMIT" "$EVENT"
  106. exit $E_LIMIT
  107. fi
  108. }
  109. # Random password generator
  110. gen_password() {
  111. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  112. lenght=10
  113. while [ ${n:=1} -le $lenght ]; do
  114. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  115. let n+=1
  116. done
  117. echo "$pass"
  118. }
  119. # Package existance check
  120. is_package_valid() {
  121. if [ -z "$1" ]; then
  122. pkg_dir="$VESTA/data/packages"
  123. fi
  124. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  125. echo "Error: package $package doesn't exist"
  126. log_event "$E_NOTEXIST $EVENT"
  127. exit $E_NOTEXIST
  128. fi
  129. }
  130. # Validate system type
  131. is_type_valid() {
  132. if [ -z "$(echo $1 | grep -w $2)" ]; then
  133. echo "Error: $2 is unknown type"
  134. log_event "$E_INVALID" "$EVENT"
  135. exit $E_INVALID
  136. fi
  137. }
  138. # Check if backup is available for user
  139. is_backup_available() {
  140. if [ "$user" != "$(echo $backup | cut -f 1 -d '.')" ]; then
  141. echo "Error: User $user don't have permission to use $backup"
  142. log_event "$E_FORBIDEN" "$EVENT"
  143. exit $E_FORBIDEN
  144. fi
  145. }
  146. # Check user backup settings
  147. is_backup_enabled() {
  148. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  149. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  150. echo "Error: user backup disabled"
  151. log_event "$E_DISABLED" "$EVENT"
  152. exit $E_DISABLED
  153. fi
  154. }
  155. # Check user backup settings
  156. is_backup_scheduled() {
  157. if [ -e "$VESTA/data/queue/backup.pipe" ]; then
  158. check_q=$(grep " $user " $VESTA/data/queue/backup.pipe | grep $1)
  159. if [ ! -z "$check_q" ]; then
  160. echo "Error: $1 is already scheduled"
  161. log_event "$E_EXISTS" "$EVENT"
  162. exit $E_EXISTS
  163. fi
  164. fi
  165. }
  166. # Check if object is new
  167. is_object_new() {
  168. if [ $2 = 'USER' ]; then
  169. if [ -d "$USER_DATA" ]; then
  170. object="OK"
  171. fi
  172. else
  173. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  174. fi
  175. if [ ! -z "$object" ]; then
  176. echo "Error: $2 with value $3 exists"
  177. log_event "$E_EXISTS" "$EVENT"
  178. exit $E_EXISTS
  179. fi
  180. }
  181. # Check if object exists and can be used
  182. is_object_valid() {
  183. if [ $2 = 'USER' ]; then
  184. if [ -d "$VESTA/data/users/$user" ]; then
  185. sobject="OK"
  186. fi
  187. else
  188. if [ $2 = 'DBHOST' ]; then
  189. sobject=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  190. else
  191. sobject=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  192. fi
  193. fi
  194. if [ -z "$sobject" ]; then
  195. echo "Error: $2 $3 doesn't exist"
  196. log_event "$E_NOTEXIST" "$EVENT"
  197. exit $E_NOTEXIST
  198. fi
  199. }
  200. # Check if object is supended
  201. is_object_suspended() {
  202. if [ $2 = 'USER' ]; then
  203. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  204. else
  205. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  206. fi
  207. if [ -z "$spnd" ]; then
  208. echo "Error: $1 $3 is not suspended"
  209. log_event "$E_SUSPENDED" "$EVENT"
  210. exit $E_SUSPENDED
  211. fi
  212. }
  213. # Check if object is unsupended
  214. is_object_unsuspended() {
  215. if [ $2 = 'USER' ]; then
  216. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  217. else
  218. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  219. fi
  220. if [ ! -z "$spnd" ]; then
  221. echo "Error: $1 $3 is already suspended"
  222. log_event "$E_UNSUSPENDED" "$EVENT"
  223. exit $E_UNSUSPENDED
  224. fi
  225. }
  226. # Check if object value is empty
  227. is_object_value_empty() {
  228. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  229. eval $str
  230. eval value=$4
  231. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  232. echo "Error: ${4//$}=$value (not empty)"
  233. log_event "$E_EXISTS" "$EVENT"
  234. exit $E_EXISTS
  235. fi
  236. }
  237. # Check if object value is empty
  238. is_object_value_exist() {
  239. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  240. eval $str
  241. eval value=$4
  242. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  243. echo "Error: ${4//$}=$value (doesn't exist)"
  244. log_event "$E_NOTEXIST" "$EVENT"
  245. exit $E_NOTEXIST
  246. fi
  247. }
  248. # Get object value
  249. get_object_value() {
  250. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  251. eval "$object"
  252. eval echo $4
  253. }
  254. # Update object value
  255. update_object_value() {
  256. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  257. lnr=$(echo $row | cut -f 1 -d ':')
  258. object=$(echo $row | sed -e "s/^$lnr://")
  259. eval "$object"
  260. eval old="$4"
  261. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  262. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  263. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  264. $USER_DATA/$1.conf
  265. }
  266. # Search objects
  267. search_objects() {
  268. OLD_IFS="$IFS"
  269. IFS=$'\n'
  270. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  271. eval $line
  272. eval echo \$$4
  273. done
  274. IFS="$OLD_IFS"
  275. }
  276. # Get user value
  277. get_user_value() {
  278. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  279. }
  280. # Update user value in user.conf
  281. update_user_value() {
  282. key="${2//$}"
  283. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  284. if [ ! -z "$lnr" ]; then
  285. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  286. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  287. fi
  288. }
  289. # Increase user counter
  290. increase_user_value() {
  291. key="${2//$}"
  292. factor="${3-1}"
  293. conf="$VESTA/data/users/$1/user.conf"
  294. old=$(grep "$key=" $conf | cut -f 2 -d \')
  295. if [ -z "$old" ]; then
  296. old=0
  297. fi
  298. new=$((old + factor))
  299. sed -i "s/$key='$old'/$key='$new'/g" $conf
  300. }
  301. # Decrease user counter
  302. decrease_user_value() {
  303. key="${2//$}"
  304. factor="${3-1}"
  305. conf="$VESTA/data/users/$1/user.conf"
  306. old=$(grep "$key=" $conf | cut -f 2 -d \')
  307. if [ -z "$old" ]; then
  308. old=0
  309. fi
  310. if [ "$old" -le 1 ]; then
  311. new=0
  312. else
  313. new=$((old - factor))
  314. fi
  315. sed -i "s/$key='$old'/$key='$new'/g" $conf
  316. }
  317. # Json listing function
  318. json_list() {
  319. echo '{'
  320. fileds_count=$(echo $fields| wc -w )
  321. #for line in $(cat $conf); do
  322. while read line; do
  323. eval $line
  324. if [ -n "$data_output" ]; then
  325. echo -e ' },'
  326. fi
  327. i=1
  328. for field in $fields; do
  329. eval value=$field
  330. if [ $i -eq 1 ]; then
  331. (( ++i))
  332. echo -e "\t\"$value\": {"
  333. else
  334. if [ $i -lt $fileds_count ]; then
  335. (( ++i))
  336. echo -e "\t\t\"${field//$/}\": \"$value\","
  337. else
  338. echo -e "\t\t\"${field//$/}\": \"$value\""
  339. data_output=yes
  340. fi
  341. fi
  342. done
  343. done < $conf
  344. if [ "$data_output" = 'yes' ]; then
  345. echo -e ' }'
  346. fi
  347. echo -e '}'
  348. }
  349. # Shell listing function
  350. shell_list() {
  351. if [ -z "$nohead" ] ; then
  352. echo "${fields//$/}"
  353. for a in $fields; do
  354. echo -e "------ \c"
  355. done
  356. echo
  357. fi
  358. while read line ; do
  359. eval $line
  360. for field in $fields; do
  361. eval value=$field
  362. if [ -z "$value" ]; then
  363. value='NULL'
  364. fi
  365. echo -n "$value "
  366. done
  367. echo
  368. done < $conf
  369. }
  370. # Recalculate U_DISK value
  371. recalc_user_disk_usage() {
  372. u_usage=0
  373. if [ -f "$USER_DATA/web.conf" ]; then
  374. usage=0
  375. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  376. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  377. for disk_usage in $dusage; do
  378. usage=$((usage + disk_usage))
  379. done
  380. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  381. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  382. u_usage=$((u_usage + usage))
  383. fi
  384. if [ -f "$USER_DATA/mail.conf" ]; then
  385. usage=0
  386. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  387. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  388. for disk_usage in $dusage; do
  389. usage=$((usage + disk_usage))
  390. done
  391. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  392. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  393. u_usage=$((u_usage + usage))
  394. fi
  395. if [ -f "$USER_DATA/db.conf" ]; then
  396. usage=0
  397. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  398. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  399. for disk_usage in $dusage; do
  400. usage=$((usage + disk_usage))
  401. done
  402. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  403. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  404. u_usage=$((u_usage + usage))
  405. fi
  406. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  407. u_usage=$((u_usage + usage))
  408. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  409. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  410. }
  411. # Recalculate U_BANDWIDTH value
  412. recalc_user_bandwidth_usage() {
  413. usage=0
  414. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  415. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  416. for bandwidth in $bandwidth_usage; do
  417. usage=$((usage + bandwidth))
  418. done
  419. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  420. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  421. }
  422. # Get next cron job id
  423. get_next_cronjob() {
  424. if [ -z "$job" ]; then
  425. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  426. sort -n|tail -n1)
  427. job="$((curr_str +1))"
  428. fi
  429. }
  430. # Sort cron jobs by id
  431. sort_cron_jobs() {
  432. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  433. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  434. }
  435. # Sync cronjobs with system cron
  436. sync_cron_jobs() {
  437. source $USER_DATA/user.conf
  438. if [ -e "/var/spool/cron/crontabs" ]; then
  439. sys_cron="/var/spool/cron/crontabs/$user"
  440. else
  441. sys_cron="/var/spool/cron/$user"
  442. fi
  443. rm -f $sys_cron
  444. if [ "$CRON_REPORTS" = 'yes' ]; then
  445. echo "MAILTO=$CONTACT" > $sys_cron
  446. fi
  447. while read line; do
  448. eval $line
  449. if [ "$SUSPENDED" = 'no' ]; then
  450. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  451. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  452. >> $sys_cron
  453. fi
  454. done < $USER_DATA/cron.conf
  455. # Set proper permissions
  456. chown $user:$user $sys_cron
  457. chmod 600 $sys_cron
  458. }
  459. ### Format Validators ###
  460. # Shell
  461. validate_format_shell() {
  462. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  463. echo "Error: shell $1 is not valid"
  464. log_event "$E_INVALID" "$EVENT"
  465. exit $E_INVALID
  466. fi
  467. }
  468. # Password
  469. validate_format_password() {
  470. if [ "${#1}" -lt '6' ]; then
  471. echo "Error: password is too short"
  472. log_event "$E_INVALID" "$EVENT"
  473. exit $E_INVALID
  474. fi
  475. }
  476. # Integer
  477. validate_format_int() {
  478. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  479. echo "Error: $2 $1 is not valid"
  480. log_event "$E_INVALID" "$EVENT"
  481. exit $E_INVALID
  482. fi
  483. }
  484. # Boolean
  485. validate_format_boolean() {
  486. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  487. echo "Error: $2 $1 is not valid"
  488. log_event "$E_INVALID" "$EVENT"
  489. exit $E_INVALID
  490. fi
  491. }
  492. # Network interface
  493. validate_format_interface() {
  494. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  495. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  496. echo "Error: intreface $1 is not valid"
  497. log_event "$E_INVALID" "$EVENT"
  498. exit $E_INVALID
  499. fi
  500. }
  501. # IP address
  502. validate_format_ip() {
  503. valid_octets=0
  504. for octet in ${1//./ }; do
  505. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  506. ((++valid_octets))
  507. fi
  508. done
  509. if [ "$valid_octets" -lt 4 ]; then
  510. echo "Error: ip $1 is not valid"
  511. log_event "$E_INVALID" "$EVENT"
  512. exit $E_INVALID
  513. fi
  514. }
  515. # IP address status
  516. validate_format_ip_status() {
  517. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  518. echo "Error: ip_status $1 is not valid"
  519. log_event "$E_INVALID" "$EVENT"
  520. exit $E_INVALID
  521. fi
  522. }
  523. # Email address
  524. validate_format_email() {
  525. local_part=$(echo $1 | cut -s -f1 -d\@)
  526. remote_host=$(echo $1 | cut -s -f2 -d\@)
  527. mx_failed=1
  528. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  529. /usr/bin/host -t mx "$remote_host" &> /dev/null
  530. mx_failed="$?"
  531. fi
  532. if [ "$mx_failed" -eq 1 ]; then
  533. echo "Error: email $1 is not valid"
  534. log_event "$E_INVALID" "$EVENT"
  535. exit $E_INVALID
  536. fi
  537. }
  538. # Name
  539. validate_format_name() {
  540. if ! [[ "$1" =~ ^[[:alnum:]][-|\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  541. echo "Error: $2 $1 is not valid"
  542. log_event "$E_INVALID" "$EVENT"
  543. exit $E_INVALID
  544. fi
  545. }
  546. # Username
  547. validate_format_username() {
  548. if ! [[ "$1" =~ ^[a-zA-Z0-9][-|\.|_|a-zA-Z0-9]{0,28}[a-zA-Z0-9]$ ]]; then
  549. echo "Error: $2 $1 is not valid"
  550. log_event "$E_INVALID" "$EVENT"
  551. exit $E_INVALID
  552. fi
  553. }
  554. # Domain
  555. validate_format_domain() {
  556. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  557. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  558. echo "Error: $2 $1 is not valid"
  559. log_event "$E_INVALID" "$EVENT"
  560. exit $E_INVALID
  561. fi
  562. }
  563. # Domain alias
  564. validate_format_domain_alias() {
  565. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  566. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  567. echo "Error: domain alias $1 is not valid"
  568. log_event "$E_INVALID" "$EVENT"
  569. exit $E_INVALID
  570. fi
  571. }
  572. # Database
  573. validate_format_database() {
  574. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  575. if [[ "$1" =~ $exclude ]] || [ 65 -le ${#1} ]; then
  576. echo "Error: $2 $1 is not valid"
  577. log_event "$E_INVALID" "$EVENT"
  578. exit $E_INVALID
  579. fi
  580. }
  581. # Database user
  582. validate_format_dbuser() {
  583. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  584. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  585. echo "Error: $2 $1 is not valid"
  586. log_event "$E_INVALID" "$EVENT"
  587. exit $E_INVALID
  588. fi
  589. }
  590. # DNS type
  591. validate_format_dns_type() {
  592. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  593. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  594. echo "Error: dnstype $1 is not valid"
  595. log_event "$E_INVALID" "$EVENT"
  596. exit $E_INVALID
  597. fi
  598. }
  599. # DKIM key size
  600. validate_format_key_size() {
  601. known_size='128,256,512,768,1024,2048'
  602. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  603. echo "Error: key_size $1 is not valid"
  604. log_event "$E_INVALID" "$EVENT"
  605. exit $E_INVALID
  606. fi
  607. }
  608. # Minute / Hour / Day / Month / Day of Week
  609. validate_format_mhdmw() {
  610. limit=60
  611. check_format=''
  612. if [ "$2" = 'day' ]; then
  613. limit=31
  614. fi
  615. if [ "$2" = 'month' ]; then
  616. limit=12
  617. fi
  618. if [ "$2" = 'wday' ]; then
  619. limit=7
  620. fi
  621. if [ "$1" = '*' ]; then
  622. check_format='ok'
  623. fi
  624. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  625. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  626. check_format='ok'
  627. fi
  628. fi
  629. if [[ "$1" =~ ^[0-9][-|,|0-9]{0,28}[0-9]$ ]]; then
  630. check_format='ok'
  631. crn_values=${1//,/ }
  632. crn_values=${crn_values//-/ }
  633. for crn_vl in $crn_values; do
  634. if [ "$crn_vl" -gt $limit ]; then
  635. check_format='invalid'
  636. fi
  637. done
  638. fi
  639. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  640. check_format='ok'
  641. fi
  642. if [ "$check_format" != 'ok' ]; then
  643. echo "Error: $2 $1 is not valid"
  644. log_event "$E_INVALID" "$EVENT"
  645. exit $E_INVALID
  646. fi
  647. }
  648. # proxy extention or DNS record
  649. validate_format_common() {
  650. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  651. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  652. echo "Error: $2 $1 is not valid"
  653. log_event "$E_INVALID" "$EVENT"
  654. exit $E_INVALID
  655. fi
  656. }
  657. # DNS record value
  658. validate_format_dvalue() {
  659. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  660. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  661. echo "Error: dvalue $1 is not valid"
  662. log_event "$E_INVALID" "$EVENT"
  663. exit $E_INVALID
  664. fi
  665. if [ "$rtype" = 'A' ]; then
  666. validate_format_ip "$1"
  667. fi
  668. if [ "$rtype" = 'NS' ]; then
  669. validate_format_domain "$1" 'ns_record'
  670. fi
  671. if [ "$rtype" = 'MX' ]; then
  672. validate_format_domain "$1" 'mx_record'
  673. validate_format_int "$priority" 'priority_record'
  674. fi
  675. }
  676. # Date
  677. validate_format_date() {
  678. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  679. echo "Error: date $1 is not valid"
  680. log_event "$E_INVALID" "$EVENT"
  681. exit $E_INVALID
  682. fi
  683. }
  684. # Autoreply
  685. validate_format_autoreply() {
  686. exclude="[$|\`]"
  687. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  688. echo "Error: autoreply is not valid"
  689. log_event "$E_INVALID" "$EVENT"
  690. exit $E_INVALID
  691. fi
  692. }
  693. # Format validation controller
  694. validate_format(){
  695. for arg_name in $*; do
  696. eval arg=\$$arg_name
  697. if [ -z "$arg" ]; then
  698. echo "Error: argument $arg_name is not valid (empty)"
  699. log_event "$E_INVALID" "$EVENT"
  700. exit $E_INVALID
  701. fi
  702. case $arg_name in
  703. account) validate_format_username "$arg" "$arg_name" ;;
  704. antispam) validate_format_boolean "$arg" 'antispam' ;;
  705. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  706. autoreply) validate_format_autoreply "$arg" ;;
  707. backup) validate_format_domain "$arg" 'backup' ;;
  708. charset) validate_format_name "$arg" "$arg_name" ;;
  709. charsets) validate_format_common "$arg" 'charsets' ;;
  710. database) validate_format_database "$arg" 'database';;
  711. day) validate_format_mhdmw "$arg" $arg_name ;;
  712. dbpass) validate_format_password "$arg" ;;
  713. dbuser) validate_format_dbuser "$arg" 'db_user';;
  714. dkim) validate_format_boolean "$arg" 'dkim' ;;
  715. dkim_size) validate_format_key_size "$arg" ;;
  716. domain) validate_format_domain "$arg" 'domain';;
  717. dom_alias) validate_format_domain_alias "$arg" 'alias';;
  718. dvalue) validate_format_dvalue "$arg";;
  719. email) validate_format_email "$arg" ;;
  720. exp) validate_format_date "$arg" ;;
  721. extentions) validate_format_common "$arg" 'extentions' ;;
  722. fname) validate_format_name "$arg" "$arg_name" ;;
  723. forward) validate_format_email "$arg" ;;
  724. ftp_password) validate_format_password "$arg" ;;
  725. ftp_user) validate_format_username "$arg" "$arg_name" ;;
  726. host) validate_format_domain "$arg" "$arg_name" 'host';;
  727. hour) validate_format_mhdmw "$arg" $arg_name ;;
  728. id) validate_format_int "$arg" 'id' ;;
  729. interface) validate_format_interface "$arg" ;;
  730. ip) validate_format_ip "$arg" ;;
  731. ip_name) validate_format_domain "$arg" 'domain';;
  732. ip_status) validate_format_ip_status "$arg" ;;
  733. job) validate_format_int "$arg" 'job' ;;
  734. key) validate_format_username "$arg" "$arg_name" ;;
  735. lname) validate_format_name "$arg" "$arg_name" ;;
  736. malias) validate_format_username "$arg" "$arg_name" ;;
  737. mask) validate_format_ip "$arg" ;;
  738. max_db) validate_format_int "$arg" 'max db';;
  739. min) validate_format_mhdmw "$arg" $arg_name ;;
  740. month) validate_format_mhdmw "$arg" $arg_name ;;
  741. nat_ip) validate_format_ip "$arg" ;;
  742. newid) validate_format_int "$arg" 'id' ;;
  743. ns1) validate_format_domain "$arg" 'name_server';;
  744. ns2) validate_format_domain "$arg" 'name_server';;
  745. ns3) validate_format_domain "$arg" 'name_server';;
  746. ns4) validate_format_domain "$arg" 'name_server';;
  747. package) validate_format_name "$arg" "$arg_name" ;;
  748. password) validate_format_password "$arg" ;;
  749. port) validate_format_int "$arg" 'port' ;;
  750. quota) validate_format_int "$arg" 'quota' ;;
  751. restart) validate_format_boolean "$arg" 'restart' ;;
  752. record) validate_format_common "$arg" 'record';;
  753. rtype) validate_format_dns_type "$arg" ;;
  754. shell) validate_format_shell "$arg" ;;
  755. soa) validate_format_domain "$arg" 'soa_record';;
  756. stats_pass) validate_format_password "$arg" ;;
  757. stats_user) validate_format_username "$arg" "$arg_name" ;;
  758. template) validate_format_name "$arg" "$arg_name" ;;
  759. ttl) validate_format_int "$arg" 'ttl';;
  760. user) validate_format_username "$arg" "$arg_name" ;;
  761. wday) validate_format_mhdmw "$arg" $arg_name ;;
  762. esac
  763. done
  764. }