main.sh 25 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="$DATE $TIME $SCRIPT $A1 $A2 $A3 $A4 $A5 $A6 $A7 $A8 $A9"
  15. HOMEDIR='/home'
  16. BACKUP='/backup'
  17. BACKUP_GZIP=5
  18. BACKUP_DISK_LIMIT=95
  19. BACKUP_LA_LIMIT=5
  20. RRD_STEP=300
  21. RRD_IFACE_EXCLUDE=lo
  22. PW_MATRIX='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  23. PW_LENGHT='10'
  24. BIN=$VESTA/bin
  25. USER_DATA=$VESTA/data/users/$user
  26. WEBTPL=$VESTA/data/templates/web
  27. DNSTPL=$VESTA/data/templates/dns
  28. RRD=$VESTA/web/rrd
  29. if [ "$MAIL_SYSTEM" = 'exim4' ]; then
  30. MAIL_USER=Debian-exim
  31. else
  32. MAIL_USER=exim
  33. fi
  34. # Return codes
  35. OK=0
  36. E_ARGS=1
  37. E_INVALID=2
  38. E_NOTEXIST=3
  39. E_EXISTS=4
  40. E_SUSPENDED=5
  41. E_UNSUSPENDED=6
  42. E_INUSE=7
  43. E_LIMIT=8
  44. E_PASSWORD=9
  45. E_FORBIDEN=10
  46. E_DISABLED=11
  47. E_PARSING=12
  48. E_DISK=13
  49. E_LA=14
  50. E_CONNECT=15
  51. E_FTP=16
  52. E_DB=17
  53. E_RRD=18
  54. E_UPDATE=19
  55. E_RESTART=20
  56. # Log event function
  57. log_event() {
  58. if [ "$1" -eq 0 ]; then
  59. echo "$2" >> $VESTA/log/system.log
  60. else
  61. echo "$2 [Error $1]" >> $VESTA/log/error.log
  62. fi
  63. }
  64. # Log user history
  65. log_history() {
  66. cmd=$1
  67. undo=${2-no}
  68. log_user=${3-$user}
  69. log=$VESTA/data/users/$log_user/history.log
  70. touch $log
  71. if [ '99' -lt "$(wc -l $log |cut -f 1 -d ' ')" ]; then
  72. tail -n 49 $log > $log.moved
  73. mv -f $log.moved $log
  74. chmod 660 $log
  75. fi
  76. curr_str=$(grep "ID=" $log | cut -f 2 -d \' | sort -n | tail -n1)
  77. id="$((curr_str +1))"
  78. echo "ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'" >> $log
  79. }
  80. # Argument list checker
  81. check_args() {
  82. if [ "$1" -gt "$2" ]; then
  83. echo "Error: not enought arguments"
  84. echo "Usage: $SCRIPT $3"
  85. log_event "$E_ARGS" "$EVENT"
  86. exit $E_ARGS
  87. fi
  88. }
  89. # Subsystem checker
  90. is_system_enabled() {
  91. if [ -z "$1" ] || [ "$1" = no ]; then
  92. echo "Error: $2 is disabled in the vesta.conf"
  93. log_event "$E_DISABLED" "$EVENT"
  94. exit $E_DISABLED
  95. fi
  96. }
  97. # User package check
  98. is_package_full() {
  99. case "$1" in
  100. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  101. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  102. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  103. wc -l );;
  104. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  105. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  106. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  107. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  108. cut -f1 -d \ );;
  109. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  110. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  111. esac
  112. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  113. if [ "$used" -ge "$limit" ]; then
  114. echo "Error: Limit reached / Upgrade package"
  115. log_event "$E_LIMIT" "$EVENT"
  116. exit $E_LIMIT
  117. fi
  118. }
  119. # Random password generator
  120. gen_password() {
  121. pw_matrix=${1-$PW_MATRIX}
  122. pw_lenght=${2-$PW_LENGHT}
  123. while [ ${n:=1} -le $pw_lenght ]; do
  124. pass="$pass${pw_matrix:$(($RANDOM%${#pw_matrix})):1}"
  125. let n+=1
  126. done
  127. echo "$pass"
  128. }
  129. # Package existance check
  130. is_package_valid() {
  131. if [ -z "$1" ]; then
  132. pkg_dir="$VESTA/data/packages"
  133. fi
  134. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  135. echo "Error: package $package doesn't exist"
  136. log_event "$E_NOTEXIST $EVENT"
  137. exit $E_NOTEXIST
  138. fi
  139. }
  140. # Validate system type
  141. is_type_valid() {
  142. if [ -z "$(echo $1 | grep -w $2)" ]; then
  143. echo "Error: $2 is unknown type"
  144. log_event "$E_INVALID" "$EVENT"
  145. exit $E_INVALID
  146. fi
  147. }
  148. # Check if backup is available for user
  149. is_backup_available() {
  150. b_owner=$(echo $user |\
  151. sed -e "s/\.[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9].tar//")
  152. if [ "$user" != "$b_owner" ]; then
  153. echo "Error: User $user don't have permission to use $backup"
  154. log_event "$E_FORBIDEN" "$EVENT"
  155. exit $E_FORBIDEN
  156. fi
  157. }
  158. # Check user backup settings
  159. is_backup_enabled() {
  160. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  161. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  162. echo "Error: user backup disabled"
  163. log_event "$E_DISABLED" "$EVENT"
  164. exit $E_DISABLED
  165. fi
  166. }
  167. # Check user backup settings
  168. is_backup_scheduled() {
  169. if [ -e "$VESTA/data/queue/backup.pipe" ]; then
  170. check_q=$(grep " $user " $VESTA/data/queue/backup.pipe | grep $1)
  171. if [ ! -z "$check_q" ]; then
  172. echo "Error: $1 is already scheduled"
  173. log_event "$E_EXISTS" "$EVENT"
  174. exit $E_EXISTS
  175. fi
  176. fi
  177. }
  178. # Check if object is new
  179. is_object_new() {
  180. if [ $2 = 'USER' ]; then
  181. if [ -d "$USER_DATA" ]; then
  182. object="OK"
  183. fi
  184. else
  185. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  186. fi
  187. if [ ! -z "$object" ]; then
  188. echo "Error: $2 with value $3 exists"
  189. log_event "$E_EXISTS" "$EVENT"
  190. exit $E_EXISTS
  191. fi
  192. }
  193. # Check if object exists and can be used
  194. is_object_valid() {
  195. if [ $2 = 'USER' ]; then
  196. if [ -d "$VESTA/data/users/$user" ]; then
  197. sobject="OK"
  198. fi
  199. else
  200. if [ $2 = 'DBHOST' ]; then
  201. sobject=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  202. else
  203. sobject=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  204. fi
  205. fi
  206. if [ -z "$sobject" ]; then
  207. echo "Error: $2 $3 doesn't exist"
  208. log_event "$E_NOTEXIST" "$EVENT"
  209. exit $E_NOTEXIST
  210. fi
  211. }
  212. # Check if object is supended
  213. is_object_suspended() {
  214. if [ $2 = 'USER' ]; then
  215. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  216. else
  217. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  218. fi
  219. if [ -z "$spnd" ]; then
  220. echo "Error: $(basename $1) $3 is not suspended"
  221. log_event "$E_SUSPENDED" "$EVENT"
  222. exit $E_SUSPENDED
  223. fi
  224. }
  225. # Check if object is unsupended
  226. is_object_unsuspended() {
  227. if [ $2 = 'USER' ]; then
  228. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  229. else
  230. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  231. fi
  232. if [ ! -z "$spnd" ]; then
  233. echo "Error: $(basename $1) $3 is already suspended"
  234. log_event "$E_UNSUSPENDED" "$EVENT"
  235. exit $E_UNSUSPENDED
  236. fi
  237. }
  238. # Check if object value is empty
  239. is_object_value_empty() {
  240. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  241. eval $str
  242. eval value=$4
  243. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  244. echo "Error: ${4//$}=$value (not empty)"
  245. log_event "$E_EXISTS" "$EVENT"
  246. exit $E_EXISTS
  247. fi
  248. }
  249. # Check if object value is empty
  250. is_object_value_exist() {
  251. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  252. eval $str
  253. eval value=$4
  254. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  255. echo "Error: ${4//$}=$value (doesn't exist)"
  256. log_event "$E_NOTEXIST" "$EVENT"
  257. exit $E_NOTEXIST
  258. fi
  259. }
  260. # Get object value
  261. get_object_value() {
  262. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  263. eval "$object"
  264. eval echo $4
  265. }
  266. # Update object value
  267. update_object_value() {
  268. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  269. lnr=$(echo $row | cut -f 1 -d ':')
  270. object=$(echo $row | sed "s/^$lnr://")
  271. eval "$object"
  272. eval old="$4"
  273. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  274. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  275. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  276. $USER_DATA/$1.conf
  277. }
  278. # Add object key
  279. add_object_key() {
  280. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  281. lnr=$(echo $row | cut -f 1 -d ':')
  282. object=$(echo $row | sed "s/^$lnr://")
  283. if [ -z "$(echo $object |grep $4=)" ]; then
  284. eval old="$4"
  285. sed -i "$lnr s/$5='/$4='' $5='/" $USER_DATA/$1.conf
  286. fi
  287. }
  288. # Search objects
  289. search_objects() {
  290. OLD_IFS="$IFS"
  291. IFS=$'\n'
  292. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  293. eval $line
  294. eval echo \$$4
  295. done
  296. IFS="$OLD_IFS"
  297. }
  298. # Get user value
  299. get_user_value() {
  300. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  301. }
  302. # Update user value in user.conf
  303. update_user_value() {
  304. key="${2//$}"
  305. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  306. if [ ! -z "$lnr" ]; then
  307. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  308. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  309. fi
  310. }
  311. # Increase user counter
  312. increase_user_value() {
  313. key="${2//$}"
  314. factor="${3-1}"
  315. conf="$VESTA/data/users/$1/user.conf"
  316. old=$(grep "$key=" $conf | cut -f 2 -d \')
  317. if [ -z "$old" ]; then
  318. old=0
  319. fi
  320. new=$((old + factor))
  321. sed -i "s/$key='$old'/$key='$new'/g" $conf
  322. }
  323. # Decrease user counter
  324. decrease_user_value() {
  325. key="${2//$}"
  326. factor="${3-1}"
  327. conf="$VESTA/data/users/$1/user.conf"
  328. old=$(grep "$key=" $conf | cut -f 2 -d \')
  329. if [ -z "$old" ]; then
  330. old=0
  331. fi
  332. if [ "$old" -le 1 ]; then
  333. new=0
  334. else
  335. new=$((old - factor))
  336. fi
  337. sed -i "s/$key='$old'/$key='$new'/g" $conf
  338. }
  339. # Json listing function
  340. json_list() {
  341. echo '{'
  342. fileds_count=$(echo $fields| wc -w )
  343. #for line in $(cat $conf); do
  344. while read line; do
  345. eval $line
  346. if [ -n "$data_output" ]; then
  347. echo -e ' },'
  348. fi
  349. i=1
  350. for field in $fields; do
  351. eval value=$field
  352. if [ $i -eq 1 ]; then
  353. (( ++i))
  354. echo -e "\t\"$value\": {"
  355. else
  356. if [ $i -lt $fileds_count ]; then
  357. (( ++i))
  358. echo -e "\t\t\"${field//$/}\": \"$value\","
  359. else
  360. echo -e "\t\t\"${field//$/}\": \"$value\""
  361. data_output=yes
  362. fi
  363. fi
  364. done
  365. done < $conf
  366. if [ "$data_output" = 'yes' ]; then
  367. echo -e ' }'
  368. fi
  369. echo -e '}'
  370. }
  371. # Shell listing function
  372. shell_list() {
  373. if [ -z "$nohead" ] ; then
  374. echo "${fields//$/}"
  375. for a in $fields; do
  376. echo -e "------ \c"
  377. done
  378. echo
  379. fi
  380. while read line ; do
  381. eval $line
  382. for field in $fields; do
  383. eval value=$field
  384. if [ -z "$value" ]; then
  385. value='NULL'
  386. fi
  387. echo -n "$value "
  388. done
  389. echo
  390. done < $conf
  391. }
  392. # Recalculate U_DISK value
  393. recalc_user_disk_usage() {
  394. u_usage=0
  395. if [ -f "$USER_DATA/web.conf" ]; then
  396. usage=0
  397. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  398. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  399. for disk_usage in $dusage; do
  400. usage=$((usage + disk_usage))
  401. done
  402. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  403. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  404. u_usage=$((u_usage + usage))
  405. fi
  406. if [ -f "$USER_DATA/mail.conf" ]; then
  407. usage=0
  408. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  409. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  410. for disk_usage in $dusage; do
  411. usage=$((usage + disk_usage))
  412. done
  413. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  414. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  415. u_usage=$((u_usage + usage))
  416. fi
  417. if [ -f "$USER_DATA/db.conf" ]; then
  418. usage=0
  419. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  420. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  421. for disk_usage in $dusage; do
  422. usage=$((usage + disk_usage))
  423. done
  424. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  425. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  426. u_usage=$((u_usage + usage))
  427. fi
  428. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  429. u_usage=$((u_usage + usage))
  430. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  431. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  432. }
  433. # Recalculate U_BANDWIDTH value
  434. recalc_user_bandwidth_usage() {
  435. usage=0
  436. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  437. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  438. for bandwidth in $bandwidth_usage; do
  439. usage=$((usage + bandwidth))
  440. done
  441. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  442. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  443. }
  444. # Get next cron job id
  445. get_next_cronjob() {
  446. if [ -z "$job" ]; then
  447. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  448. sort -n|tail -n1)
  449. job="$((curr_str +1))"
  450. fi
  451. }
  452. # Sort cron jobs by id
  453. sort_cron_jobs() {
  454. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  455. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  456. }
  457. # Sync cronjobs with system cron
  458. sync_cron_jobs() {
  459. source $USER_DATA/user.conf
  460. if [ -e "/var/spool/cron/crontabs" ]; then
  461. sys_cron="/var/spool/cron/crontabs/$user"
  462. else
  463. sys_cron="/var/spool/cron/$user"
  464. fi
  465. rm -f $sys_cron
  466. if [ "$CRON_REPORTS" = 'yes' ]; then
  467. echo "MAILTO=$CONTACT" > $sys_cron
  468. fi
  469. while read line; do
  470. eval $line
  471. if [ "$SUSPENDED" = 'no' ]; then
  472. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  473. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  474. >> $sys_cron
  475. fi
  476. done < $USER_DATA/cron.conf
  477. # Set proper permissions
  478. chown $user:$user $sys_cron
  479. chmod 600 $sys_cron
  480. }
  481. ### Format Validators ###
  482. # Shell
  483. validate_format_shell() {
  484. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  485. echo "Error: shell $1 is not valid"
  486. log_event "$E_INVALID" "$EVENT"
  487. exit $E_INVALID
  488. fi
  489. }
  490. # Password
  491. validate_format_password() {
  492. if [ "${#1}" -lt '6' ]; then
  493. echo "Error: password is too short"
  494. log_event "$E_INVALID" "$EVENT"
  495. exit $E_INVALID
  496. fi
  497. }
  498. # Integer
  499. validate_format_int() {
  500. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  501. echo "Error: $2 $1 is not valid"
  502. log_event "$E_INVALID" "$EVENT"
  503. exit $E_INVALID
  504. fi
  505. }
  506. # Boolean
  507. validate_format_boolean() {
  508. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  509. echo "Error: $2 $1 is not valid"
  510. log_event "$E_INVALID" "$EVENT"
  511. exit $E_INVALID
  512. fi
  513. }
  514. # Network interface
  515. validate_format_interface() {
  516. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  517. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  518. echo "Error: intreface $1 is not valid"
  519. log_event "$E_INVALID" "$EVENT"
  520. exit $E_INVALID
  521. fi
  522. }
  523. # IP address
  524. validate_format_ip() {
  525. valid_octets=0
  526. for octet in ${1//./ }; do
  527. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  528. ((++valid_octets))
  529. fi
  530. done
  531. if [ "$valid_octets" -lt 4 ]; then
  532. echo "Error: ip $1 is not valid"
  533. log_event "$E_INVALID" "$EVENT"
  534. exit $E_INVALID
  535. fi
  536. }
  537. # IP address status
  538. validate_format_ip_status() {
  539. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  540. echo "Error: ip_status $1 is not valid"
  541. log_event "$E_INVALID" "$EVENT"
  542. exit $E_INVALID
  543. fi
  544. }
  545. # Email address
  546. validate_format_email() {
  547. local_part=$(echo $1 | cut -s -f1 -d\@)
  548. remote_host=$(echo $1 | cut -s -f2 -d\@)
  549. mx_failed=1
  550. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  551. /usr/bin/host -t mx "$remote_host" &> /dev/null
  552. mx_failed="$?"
  553. fi
  554. if [ "$mx_failed" -eq 1 ]; then
  555. echo "Error: email $1 is not valid"
  556. log_event "$E_INVALID" "$EVENT"
  557. exit $E_INVALID
  558. fi
  559. }
  560. # Name
  561. validate_format_name() {
  562. if ! [[ "$1" =~ ^[[:alnum:]][-|\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  563. echo "Error: $2 $1 is not valid"
  564. log_event "$E_INVALID" "$EVENT"
  565. exit $E_INVALID
  566. fi
  567. }
  568. # Name with space
  569. validate_format_name_s() {
  570. if ! [[ "$1" =~ ^[[:alnum:]][-|\ |\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  571. echo "Error: $2 $1 is not valid"
  572. log_event "$E_INVALID" "$EVENT"
  573. exit $E_INVALID
  574. fi
  575. }
  576. # Username
  577. validate_format_username() {
  578. if [ "${#1}" -eq 1 ]; then
  579. if ! [[ "$1" =~ [a-z] ]]; then
  580. echo "Error: $2 $1 is not valid"
  581. exit 1
  582. fi
  583. else
  584. if ! [[ "$1" =~ ^[a-zA-Z0-9][-|\.|_|a-zA-Z0-9]{0,28}[a-zA-Z0-9]$ ]]
  585. then
  586. echo "Error: $2 $1 is not valid"
  587. exit 1
  588. fi
  589. fi
  590. }
  591. # Domain
  592. validate_format_domain() {
  593. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  594. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  595. echo "Error: $2 $1 is not valid"
  596. log_event "$E_INVALID" "$EVENT"
  597. exit $E_INVALID
  598. fi
  599. }
  600. # Domain alias
  601. validate_format_domain_alias() {
  602. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  603. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  604. echo "Error: domain alias $1 is not valid"
  605. log_event "$E_INVALID" "$EVENT"
  606. exit $E_INVALID
  607. fi
  608. }
  609. # Database
  610. validate_format_database() {
  611. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  612. if [[ "$1" =~ $exclude ]] || [ 65 -le ${#1} ]; then
  613. echo "Error: $2 $1 is not valid"
  614. log_event "$E_INVALID" "$EVENT"
  615. exit $E_INVALID
  616. fi
  617. }
  618. # Database user
  619. validate_format_dbuser() {
  620. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  621. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  622. echo "Error: $2 $1 is not valid"
  623. log_event "$E_INVALID" "$EVENT"
  624. exit $E_INVALID
  625. fi
  626. }
  627. # DNS type
  628. validate_format_dns_type() {
  629. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  630. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  631. echo "Error: dnstype $1 is not valid"
  632. log_event "$E_INVALID" "$EVENT"
  633. exit $E_INVALID
  634. fi
  635. }
  636. # DKIM key size
  637. validate_format_key_size() {
  638. known_size='128,256,512,768,1024,2048'
  639. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  640. echo "Error: key_size $1 is not valid"
  641. log_event "$E_INVALID" "$EVENT"
  642. exit $E_INVALID
  643. fi
  644. }
  645. # Minute / Hour / Day / Month / Day of Week
  646. validate_format_mhdmw() {
  647. limit=60
  648. check_format=''
  649. if [ "$2" = 'day' ]; then
  650. limit=31
  651. fi
  652. if [ "$2" = 'month' ]; then
  653. limit=12
  654. fi
  655. if [ "$2" = 'wday' ]; then
  656. limit=7
  657. fi
  658. if [ "$1" = '*' ]; then
  659. check_format='ok'
  660. fi
  661. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  662. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  663. check_format='ok'
  664. fi
  665. fi
  666. if [[ "$1" =~ ^[0-9][-|,|0-9]{0,28}[0-9]$ ]]; then
  667. check_format='ok'
  668. crn_values=${1//,/ }
  669. crn_values=${crn_values//-/ }
  670. for crn_vl in $crn_values; do
  671. if [ "$crn_vl" -gt $limit ]; then
  672. check_format='invalid'
  673. fi
  674. done
  675. fi
  676. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  677. check_format='ok'
  678. fi
  679. if [ "$check_format" != 'ok' ]; then
  680. echo "Error: $2 $1 is not valid"
  681. log_event "$E_INVALID" "$EVENT"
  682. exit $E_INVALID
  683. fi
  684. }
  685. # proxy extention or DNS record
  686. validate_format_common() {
  687. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  688. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  689. echo "Error: $2 $1 is not valid"
  690. log_event "$E_INVALID" "$EVENT"
  691. exit $E_INVALID
  692. fi
  693. }
  694. # DNS record value
  695. validate_format_dvalue() {
  696. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  697. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  698. echo "Error: dvalue $1 is not valid"
  699. log_event "$E_INVALID" "$EVENT"
  700. exit $E_INVALID
  701. fi
  702. if [ "$rtype" = 'A' ]; then
  703. validate_format_ip "$1"
  704. fi
  705. if [ "$rtype" = 'NS' ]; then
  706. validate_format_domain "$1" 'ns_record'
  707. fi
  708. if [ "$rtype" = 'MX' ]; then
  709. validate_format_domain "$1" 'mx_record'
  710. validate_format_int "$priority" 'priority_record'
  711. fi
  712. }
  713. # Date
  714. validate_format_date() {
  715. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  716. echo "Error: date $1 is not valid"
  717. log_event "$E_INVALID" "$EVENT"
  718. exit $E_INVALID
  719. fi
  720. }
  721. # Autoreply
  722. validate_format_autoreply() {
  723. exclude="[$|\`]"
  724. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  725. echo "Error: autoreply is not valid"
  726. log_event "$E_INVALID" "$EVENT"
  727. exit $E_INVALID
  728. fi
  729. }
  730. # Format validation controller
  731. validate_format(){
  732. for arg_name in $*; do
  733. eval arg=\$$arg_name
  734. if [ -z "$arg" ]; then
  735. echo "Error: argument $arg_name is not valid (empty)"
  736. log_event "$E_INVALID" "$EVENT"
  737. exit $E_INVALID
  738. fi
  739. case $arg_name in
  740. account) validate_format_username "$arg" "$arg_name" ;;
  741. antispam) validate_format_boolean "$arg" 'antispam' ;;
  742. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  743. autoreply) validate_format_autoreply "$arg" ;;
  744. backup) validate_format_domain "$arg" 'backup' ;;
  745. charset) validate_format_name "$arg" "$arg_name" ;;
  746. charsets) validate_format_common "$arg" 'charsets' ;;
  747. database) validate_format_database "$arg" 'database';;
  748. day) validate_format_mhdmw "$arg" $arg_name ;;
  749. dbpass) validate_format_password "$arg" ;;
  750. dbuser) validate_format_dbuser "$arg" 'db_user';;
  751. dkim) validate_format_boolean "$arg" 'dkim' ;;
  752. dkim_size) validate_format_key_size "$arg" ;;
  753. domain) validate_format_domain "$arg" 'domain';;
  754. dom_alias) validate_format_domain_alias "$arg" 'alias';;
  755. dvalue) validate_format_dvalue "$arg";;
  756. email) validate_format_email "$arg" ;;
  757. exp) validate_format_date "$arg" ;;
  758. extentions) validate_format_common "$arg" 'extentions' ;;
  759. fname) validate_format_name_s "$arg" "$arg_name" ;;
  760. forward) validate_format_email "$arg" ;;
  761. ftp_password) validate_format_password "$arg" ;;
  762. ftp_user) validate_format_username "$arg" "$arg_name" ;;
  763. host) validate_format_domain "$arg" "$arg_name" 'host';;
  764. hour) validate_format_mhdmw "$arg" $arg_name ;;
  765. id) validate_format_int "$arg" 'id' ;;
  766. interface) validate_format_interface "$arg" ;;
  767. ip) validate_format_ip "$arg" ;;
  768. ip_name) validate_format_domain "$arg" 'domain';;
  769. ip_status) validate_format_ip_status "$arg" ;;
  770. job) validate_format_int "$arg" 'job' ;;
  771. key) validate_format_username "$arg" "$arg_name" ;;
  772. lname) validate_format_name_s "$arg" "$arg_name" ;;
  773. malias) validate_format_username "$arg" "$arg_name" ;;
  774. mask) validate_format_ip "$arg" ;;
  775. max_db) validate_format_int "$arg" 'max db';;
  776. min) validate_format_mhdmw "$arg" $arg_name ;;
  777. month) validate_format_mhdmw "$arg" $arg_name ;;
  778. nat_ip) validate_format_ip "$arg" ;;
  779. newid) validate_format_int "$arg" 'id' ;;
  780. ns1) validate_format_domain "$arg" 'name_server';;
  781. ns2) validate_format_domain "$arg" 'name_server';;
  782. ns3) validate_format_domain "$arg" 'name_server';;
  783. ns4) validate_format_domain "$arg" 'name_server';;
  784. package) validate_format_name "$arg" "$arg_name" ;;
  785. password) validate_format_password "$arg" ;;
  786. port) validate_format_int "$arg" 'port' ;;
  787. quota) validate_format_int "$arg" 'quota' ;;
  788. restart) validate_format_boolean "$arg" 'restart' ;;
  789. record) validate_format_common "$arg" 'record';;
  790. rtype) validate_format_dns_type "$arg" ;;
  791. shell) validate_format_shell "$arg" ;;
  792. soa) validate_format_domain "$arg" 'soa_record';;
  793. stats_pass) validate_format_password "$arg" ;;
  794. stats_user) validate_format_username "$arg" "$arg_name" ;;
  795. template) validate_format_name "$arg" "$arg_name" ;;
  796. ttl) validate_format_int "$arg" 'ttl';;
  797. user) validate_format_username "$arg" "$arg_name" ;;
  798. wday) validate_format_mhdmw "$arg" $arg_name ;;
  799. esac
  800. done
  801. }