main.sh 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. BACKUP_GZIP=5
  17. BACKUP_DISK_LIMIT=95
  18. BACKUP_LA_LIMIT=5
  19. RRD_STEP=300
  20. RRD_IFACE_EXCLUDE=lo
  21. BIN=$VESTA/bin
  22. USER_DATA=$VESTA/data/users/$user
  23. WEBTPL=$VESTA/data/templates/web
  24. DNSTPL=$VESTA/data/templates/dns
  25. RRD=$VESTA/web/rrd
  26. # Return codes
  27. OK=0
  28. E_ARGS=1
  29. E_INVALID=2
  30. E_NOTEXIST=3
  31. E_EXISTS=4
  32. E_SUSPENDED=5
  33. E_UNSUSPENDED=6
  34. E_INUSE=7
  35. E_LIMIT=8
  36. E_PASSWORD=9
  37. E_FORBIDEN=10
  38. E_DISABLED=11
  39. E_PARSING=12
  40. E_DISK=13
  41. E_LA=14
  42. E_FTP=15
  43. E_SSH=16
  44. E_DB=17
  45. E_RRD=18
  46. E_UPDATE=19
  47. E_RESTART=20
  48. # Log event function
  49. log_event() {
  50. echo "RC='$1' $2" >> $VESTA/log/system.log
  51. }
  52. # Log user history
  53. log_history() {
  54. touch $USER_DATA/history.log
  55. if [ '99' -lt "$(wc -l $USER_DATA/history.log |cut -f 1 -d ' ')" ]; then
  56. tail -n 99 $USER_DATA/history.log > $USER_DATA/history.log.mv
  57. mv -f $USER_DATA/history.log.mv $USER_DATA/history.log
  58. chmod 660 $USER_DATA/history.log
  59. fi
  60. echo "$1 UNDO='$2'" >> $USER_DATA/history.log
  61. }
  62. # Argument list checker
  63. check_args() {
  64. if [ "$1" -gt "$2" ]; then
  65. echo "Error: not enought arguments"
  66. echo "Usage: $SCRIPT $3"
  67. log_event "$E_ARGS" "$EVENT"
  68. exit $E_ARGS
  69. fi
  70. }
  71. # Subsystem checker
  72. is_system_enabled() {
  73. if [ -z "$1" ] || [ "$1" = no ]; then
  74. echo "Error: subsystem disabled"
  75. log_event "$E_DISABLED" "$EVENT"
  76. exit $E_DISABLED
  77. fi
  78. }
  79. # User package check
  80. is_package_full() {
  81. case "$1" in
  82. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  83. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  84. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  85. wc -l );;
  86. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  87. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  88. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  89. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  90. cut -f1 -d \ );;
  91. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  92. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  93. esac
  94. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  95. if [ "$used" -ge "$limit" ]; then
  96. echo "Error: Upgrade package"
  97. log_event "$E_LIMIT" "$EVENT"
  98. exit $E_LIMIT
  99. fi
  100. }
  101. # Random password generator
  102. gen_password() {
  103. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  104. lenght=10
  105. while [ ${n:=1} -le $lenght ]; do
  106. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  107. let n+=1
  108. done
  109. echo "$pass"
  110. }
  111. # Package existance check
  112. is_package_valid() {
  113. if [ ! -e "$VESTA/data/packages/$package.pkg" ]; then
  114. echo "Error: $package is not exist"
  115. log_event "$E_NOTEXIST $EVENT"
  116. exit $E_NOTEXIST
  117. fi
  118. }
  119. # Validate system type
  120. is_type_valid() {
  121. if [ -z "$(echo $1 | grep -w $2)" ]; then
  122. echo "Error: $2 is unknown type"
  123. log_event "$E_INVALID" "$EVENT"
  124. exit $E_INVALID
  125. fi
  126. }
  127. # Check user backup settings
  128. is_backup_enabled() {
  129. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  130. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  131. echo "Error: user backup disabled"
  132. log_event "$E_DISABLED" "$EVENT"
  133. exit $E_DISABLED
  134. fi
  135. }
  136. # Check if object is free and can be created
  137. is_object_free() {
  138. if [ $2 = 'USER' ]; then
  139. if [ -d "$USER_DATA" ]; then
  140. object="OK"
  141. fi
  142. else
  143. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  144. fi
  145. if [ ! -z "$object" ]; then
  146. echo "Error: $2 with value $3 exists"
  147. log_event "$E_EXISTS" "$EVENT"
  148. exit $E_EXISTS
  149. fi
  150. }
  151. # Check if object exists and can be used
  152. is_object_valid() {
  153. if [ $2 = 'USER' ]; then
  154. if [ -d "$VESTA/data/users/$user" ]; then
  155. object="OK"
  156. fi
  157. else
  158. if [ $2 = 'DBHOST' ]; then
  159. object=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  160. else
  161. object=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  162. fi
  163. fi
  164. if [ -z "$object" ]; then
  165. echo "Error: $3 not exist"
  166. log_event "$E_NOTEXIST" "$EVENT"
  167. exit $E_NOTEXIST
  168. fi
  169. }
  170. # Check if object is supended
  171. is_object_suspended() {
  172. if [ $2 = 'USER' ]; then
  173. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  174. else
  175. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  176. fi
  177. if [ -z "$spnd" ]; then
  178. echo "Error: $3 is not suspended"
  179. log_event "$E_SUSPENDED" "$EVENT"
  180. exit $E_SUSPENDED
  181. fi
  182. }
  183. # Check if object is unsupended
  184. is_object_unsuspended() {
  185. if [ $2 = 'USER' ]; then
  186. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  187. else
  188. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  189. fi
  190. if [ ! -z "$spnd" ]; then
  191. echo "Error: $3 is suspended"
  192. log_event "$E_UNSUSPENDED" "$EVENT"
  193. exit $E_UNSUSPENDED
  194. fi
  195. }
  196. # Check if object value is empty
  197. is_object_value_empty() {
  198. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  199. eval $str
  200. eval value=$4
  201. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  202. echo "Error: ${4//$}=$value (not empty)"
  203. log_event "$E_EXISTS" "$EVENT"
  204. exit $E_EXISTS
  205. fi
  206. }
  207. # Check if object value is empty
  208. is_object_value_exist() {
  209. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  210. eval $str
  211. eval value=$4
  212. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  213. echo "Error: ${4//$}=$value (not exist)"
  214. log_event "$E_NOTEXIST" "$EVENT"
  215. exit $E_NOTEXIST
  216. fi
  217. }
  218. # Get object value
  219. get_object_value() {
  220. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  221. eval "$object"
  222. eval echo $4
  223. }
  224. # Update object value
  225. update_object_value() {
  226. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  227. lnr=$(echo $row | cut -f 1 -d ':')
  228. object=$(echo $row | sed -e "s/^$lnr://")
  229. eval "$object"
  230. eval old="$4"
  231. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  232. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  233. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  234. $USER_DATA/$1.conf
  235. }
  236. # Search objects
  237. search_objects() {
  238. OLD_IFS="$IFS"
  239. IFS=$'\n'
  240. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  241. eval $line
  242. eval echo \$$4
  243. done
  244. IFS="$OLD_IFS"
  245. }
  246. # Get user value
  247. get_user_value() {
  248. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  249. }
  250. # Update user value in user.conf
  251. update_user_value() {
  252. key="${2//$}"
  253. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  254. if [ ! -z "$lnr" ]; then
  255. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  256. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  257. fi
  258. }
  259. # Increase user counter
  260. increase_user_value() {
  261. key="${2//$}"
  262. factor="${3-1}"
  263. conf="$VESTA/data/users/$1/user.conf"
  264. old=$(grep "$key=" $conf | cut -f 2 -d \')
  265. if [ -z "$old" ]; then
  266. old=0
  267. fi
  268. new=$((old + factor))
  269. sed -i "s/$key='$old'/$key='$new'/g" $conf
  270. }
  271. # Decrease user counter
  272. decrease_user_value() {
  273. key="${2//$}"
  274. factor="${3-1}"
  275. conf="$VESTA/data/users/$1/user.conf"
  276. old=$(grep "$key=" $conf | cut -f 2 -d \')
  277. if [ -z "$old" ]; then
  278. old=0
  279. fi
  280. if [ "$old" -le 1 ]; then
  281. new=0
  282. else
  283. new=$((old - factor))
  284. fi
  285. sed -i "s/$key='$old'/$key='$new'/g" $conf
  286. }
  287. # Json listing function
  288. json_list() {
  289. echo '{'
  290. fileds_count=$(echo $fields| wc -w )
  291. #for line in $(cat $conf); do
  292. while read line; do
  293. eval $line
  294. if [ -n "$data_output" ]; then
  295. echo -e ' },'
  296. fi
  297. i=1
  298. for field in $fields; do
  299. eval value=$field
  300. if [ $i -eq 1 ]; then
  301. (( ++i))
  302. echo -e "\t\"$value\": {"
  303. else
  304. if [ $i -lt $fileds_count ]; then
  305. (( ++i))
  306. echo -e "\t\t\"${field//$/}\": \"$value\","
  307. else
  308. echo -e "\t\t\"${field//$/}\": \"$value\""
  309. data_output=yes
  310. fi
  311. fi
  312. done
  313. done < $conf
  314. if [ "$data_output" = 'yes' ]; then
  315. echo -e ' }'
  316. fi
  317. echo -e '}'
  318. }
  319. # Shell listing function
  320. shell_list() {
  321. if [ -z "$nohead" ] ; then
  322. echo "${fields//$/}"
  323. for a in $fields; do
  324. echo -e "------ \c"
  325. done
  326. echo
  327. fi
  328. while read line ; do
  329. eval $line
  330. for field in $fields; do
  331. eval value=$field
  332. if [ -z "$value" ]; then
  333. value='NULL'
  334. fi
  335. echo -n "$value "
  336. done
  337. echo
  338. done < $conf
  339. }
  340. # Recalculate U_DISK value
  341. recalc_user_disk_usage() {
  342. u_usage=0
  343. if [ -f "$USER_DATA/web.conf" ]; then
  344. usage=0
  345. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  346. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  347. for disk_usage in $dusage; do
  348. usage=$((usage + disk_usage))
  349. done
  350. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  351. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  352. u_usage=$((u_usage + usage))
  353. fi
  354. if [ -f "$USER_DATA/mail.conf" ]; then
  355. usage=0
  356. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  357. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  358. for disk_usage in $dusage; do
  359. usage=$((usage + disk_usage))
  360. done
  361. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  362. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  363. u_usage=$((u_usage + usage))
  364. fi
  365. if [ -f "$USER_DATA/db.conf" ]; then
  366. usage=0
  367. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  368. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  369. for disk_usage in $dusage; do
  370. usage=$((usage + disk_usage))
  371. done
  372. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  373. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  374. u_usage=$((u_usage + usage))
  375. fi
  376. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  377. u_usage=$((u_usage + usage))
  378. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  379. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  380. }
  381. # Recalculate U_BANDWIDTH value
  382. recalc_user_bandwidth_usage() {
  383. usage=0
  384. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  385. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  386. for bandwidth in $bandwidth_usage; do
  387. usage=$((usage + bandwidth))
  388. done
  389. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  390. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  391. }
  392. # Get next cron job id
  393. get_next_cronjob() {
  394. if [ -z "$job" ]; then
  395. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  396. sort -n|tail -n1)
  397. job="$((curr_str +1))"
  398. fi
  399. }
  400. # Sort cron jobs by id
  401. sort_cron_jobs() {
  402. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  403. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  404. }
  405. # Sync cronjobs with system cron
  406. sync_cron_jobs() {
  407. source $USER_DATA/user.conf
  408. rm -f /var/spool/cron/$user
  409. if [ "$CRON_REPORTS" = 'yes' ]; then
  410. echo "MAILTO=$CONTACT" > /var/spool/cron/$user
  411. fi
  412. while read line; do
  413. eval $line
  414. if [ "$SUSPENDED" = 'no' ]; then
  415. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  416. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  417. >> /var/spool/cron/$user
  418. fi
  419. done < $USER_DATA/cron.conf
  420. }
  421. ### Format Validators ###
  422. # URL
  423. validate_format_url() {
  424. check_http=$(echo "$1" | grep "^http://" )
  425. needed_chars=$(echo "$1" | cut -f 2 -d \.)
  426. if [ -z "$check_http" ] || [ -z "$needed_chars" ]; then
  427. echo "Error: url $1 is not valid"
  428. log_event "$E_INVALID" "$EVENT"
  429. exit $E_INVALID
  430. fi
  431. }
  432. # Shell
  433. validate_format_shell() {
  434. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  435. echo "Error: shell $1 is not valid"
  436. log_event "$E_INVALID" "$EVENT"
  437. exit $E_INVALID
  438. fi
  439. }
  440. # Password
  441. validate_format_password() {
  442. if [ "${#1}" -lt '6' ]; then
  443. echo "Error: password is too short"
  444. log_event "$E_INVALID" "$EVENT"
  445. exit $E_INVALID
  446. fi
  447. }
  448. # Integer
  449. validate_format_int() {
  450. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  451. echo "Error: int $1 is not valid"
  452. log_event "$E_INVALID" "$EVENT"
  453. exit $E_INVALID
  454. fi
  455. }
  456. # Boolean
  457. validate_format_boolean() {
  458. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  459. echo "Error: $2 $1 is not valid"
  460. log_event "$E_INVALID" "$EVENT"
  461. exit $E_INVALID
  462. fi
  463. }
  464. # Network interface
  465. validate_format_interface() {
  466. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  467. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  468. echo "Error: intreface $1 is not valid"
  469. log_event "$E_INVALID" "$EVENT"
  470. exit $E_INVALID
  471. fi
  472. }
  473. # IP address
  474. validate_format_ip() {
  475. valid_octets=0
  476. for octet in ${1//./ }; do
  477. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  478. ((++valid_octets))
  479. fi
  480. done
  481. if [ "$valid_octets" -lt 4 ]; then
  482. echo "Error: ip $1 is not valid"
  483. log_event "$E_INVALID" "$EVENT"
  484. exit $E_INVALID
  485. fi
  486. }
  487. # IP address status
  488. validate_format_ip_status() {
  489. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  490. echo "Error: ip_status $1 is not valid"
  491. log_event "$E_INVALID" "$EVENT"
  492. exit $E_INVALID
  493. fi
  494. }
  495. # Email address
  496. validate_format_email() {
  497. local_part=$(echo $1 | cut -s -f1 -d\@)
  498. remote_host=$(echo $1 | cut -s -f2 -d\@)
  499. mx_failed=1
  500. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  501. /usr/bin/host -t mx "$remote_host" &> /dev/null
  502. mx_failed="$?"
  503. fi
  504. if [ "$mx_failed" -eq 1 ]; then
  505. echo "Error: email $1 is not valid"
  506. log_event "$E_INVALID" "$EVENT"
  507. exit $E_INVALID
  508. fi
  509. }
  510. # Username
  511. validate_format_username() {
  512. if ! [[ "$1" =~ ^[0-Z]+(\.[0-Z]+)?$ ]] || [[ "${#1}" -gt 28 ]]; then
  513. echo "Error: $2 $1 is not valid"
  514. log_event "$E_INVALID" "$EVENT"
  515. exit $E_INVALID
  516. fi
  517. }
  518. # Domain
  519. validate_format_domain() {
  520. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  521. dpart1=$(echo $1 | cut -f 1 -d .)
  522. if [[ "$1" =~ $exclude ]] || [ -z "$dpart1" ]; then
  523. echo "Error: domain $1 is not valid"
  524. log_event "$E_INVALID" "$EVENT"
  525. exit $E_INVALID
  526. fi
  527. }
  528. # Database
  529. validate_format_database() {
  530. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  531. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  532. echo "Error: database $1 is not valid"
  533. log_event "$E_INVALID" "$EVENT"
  534. exit $E_INVALID
  535. fi
  536. }
  537. # DNS type
  538. validate_format_dns_type() {
  539. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  540. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  541. echo "Error: dnstype $1 is not valid"
  542. log_event "$E_INVALID" "$EVENT"
  543. exit $E_INVALID
  544. fi
  545. }
  546. # DKIM key size
  547. validate_format_key_size() {
  548. known_size='128,256,512,768,1024,2048'
  549. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  550. echo "Error: key_size $1 is not valid"
  551. log_event "$E_INVALID" "$EVENT"
  552. exit $E_INVALID
  553. fi
  554. }
  555. # Minute / Hour / Day / Month / Day of Week
  556. validate_format_mhdmw() {
  557. limit=60
  558. check_format=''
  559. if [ "$2" = 'day' ]; then
  560. limit=31
  561. fi
  562. if [ "$2" = 'month' ]; then
  563. limit=12
  564. fi
  565. if [ "$2" = 'wday' ]; then
  566. limit=7
  567. fi
  568. if [ "$1" = '*' ]; then
  569. check_format='ok'
  570. fi
  571. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  572. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  573. check_format='ok'
  574. fi
  575. fi
  576. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  577. check_format='ok'
  578. fi
  579. if [ "$check_format" != 'ok' ]; then
  580. echo "Error: $2 $1 is not valid"
  581. log_event "$E_INVALID" "$EVENT"
  582. exit $E_INVALID
  583. fi
  584. }
  585. # Nginx static extention or DNS record
  586. validate_format_common() {
  587. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  588. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  589. echo "Error: $2 $1 is not valid"
  590. log_event "$E_INVALID" "$EVENT"
  591. exit $E_INVALID
  592. fi
  593. }
  594. # DNS record value
  595. validate_format_dvalue() {
  596. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  597. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  598. echo "Error: dvalue $1 is not valid"
  599. log_event "$E_INVALID" "$EVENT"
  600. exit $E_INVALID
  601. fi
  602. if [ "$rtype" = 'A' ]; then
  603. validate_format_ip "$1"
  604. fi
  605. if [ "$rtype" = 'NS' ]; then
  606. validate_format_domain "$1"
  607. fi
  608. if [ "$rtype" = 'MX' ]; then
  609. validate_format_domain "$1"
  610. validate_format_int "$priority"
  611. fi
  612. }
  613. # Date
  614. validate_format_date() {
  615. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  616. echo "Error: date $1 is not valid"
  617. log_event "$E_INVALID" "$EVENT"
  618. exit $E_INVALID
  619. fi
  620. }
  621. # Autoreply
  622. validate_format_autoreply() {
  623. exclude="[$|\`]"
  624. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  625. echo "Error: autoreply is not valid"
  626. log_event "$E_INVALID" "$EVENT"
  627. exit $E_INVALID
  628. fi
  629. }
  630. # Format validation controller
  631. validate_format(){
  632. for arg_name in $*; do
  633. eval arg=\$$arg_name
  634. if [ -z "$arg" ]; then
  635. echo "Error: argument $arg_name is not valid (empty)"
  636. log_event "$E_INVALID" "$EVENT"
  637. exit $E_INVALID
  638. fi
  639. case $arg_name in
  640. account) validate_format_username "$arg" "$arg_name" ;;
  641. antispam) validate_format_boolean "$arg" 'antispam' ;;
  642. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  643. autoreply) validate_format_autoreply "$arg" ;;
  644. backup) validate_format_date "$arg" ;;
  645. charset) validate_format_username "$arg" "$arg_name" ;;
  646. charsets) validate_format_common "$arg" 'charsets' ;;
  647. database) validate_format_database "$arg" ;;
  648. day) validate_format_mhdmw "$arg" $arg_name ;;
  649. dbpass) validate_format_password "$arg" ;;
  650. dbuser) validate_format_database "$arg" ;;
  651. dkim) validate_format_boolean "$arg" 'dkim' ;;
  652. dkim_size) validate_format_key_size "$arg" ;;
  653. domain) validate_format_domain "$arg" ;;
  654. dom_alias) validate_format_domain "$arg" ;;
  655. dvalue) validate_format_dvalue "$arg";;
  656. email) validate_format_email "$arg" ;;
  657. exp) validate_format_date "$arg" ;;
  658. extentions) validate_format_common "$arg" 'extentions' ;;
  659. fname) validate_format_username "$arg" "$arg_name" ;;
  660. forward) validate_format_email "$arg" ;;
  661. host) validate_format_domain "$arg" "$arg_name" ;;
  662. hour) validate_format_mhdmw "$arg" $arg_name ;;
  663. id) validate_format_int "$arg" ;;
  664. interface) validate_format_interface "$arg" ;;
  665. ip) validate_format_ip "$arg" ;;
  666. ip_name) validate_format_domain "$arg" ;;
  667. ip_status) validate_format_ip_status "$arg" ;;
  668. job) validate_format_int "$arg" ;;
  669. key) validate_format_username "$arg" "$arg_name" ;;
  670. lname) validate_format_username "$arg" "$arg_name" ;;
  671. malias) validate_format_username "$arg" "$arg_name" ;;
  672. mask) validate_format_ip "$arg" ;;
  673. max_db) validate_format_int "$arg" ;;
  674. min) validate_format_mhdmw "$arg" $arg_name ;;
  675. month) validate_format_mhdmw "$arg" $arg_name ;;
  676. ns1) validate_format_domain "$arg" ;;
  677. ns2) validate_format_domain "$arg" ;;
  678. ns3) validate_format_domain "$arg" ;;
  679. ns4) validate_format_domain "$arg" ;;
  680. ns5) validate_format_domain "$arg" ;;
  681. ns6) validate_format_domain "$arg" ;;
  682. ns7) validate_format_domain "$arg" ;;
  683. ns8) validate_format_domain "$arg" ;;
  684. package) validate_format_username "$arg" "$arg_name" ;;
  685. password) validate_format_password "$arg" ;;
  686. port) validate_format_int "$arg" ;;
  687. quota) validate_format_int "$arg" ;;
  688. restart) validate_format_boolean "$arg" 'restart' ;;
  689. record) validate_format_common "$arg" 'record';;
  690. rtype) validate_format_dns_type "$arg" ;;
  691. shell) validate_format_shell "$arg" ;;
  692. soa) validate_format_domain "$arg" ;;
  693. stats_pass) validate_format_password "$arg" ;;
  694. stats_user) validate_format_username "$arg" "$arg_name" ;;
  695. template) validate_format_username "$arg" "$arg_name" ;;
  696. ttl) validate_format_int "$arg" ;;
  697. url) validate_format_url "$arg" ;;
  698. user) validate_format_username "$arg" ;;
  699. wday) validate_format_mhdmw "$arg" $arg_name ;;
  700. esac
  701. done
  702. }