main.sh 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. HOMEDIR='/home'
  17. BACKUP='/backup'
  18. BACKUP_GZIP=5
  19. BACKUP_DISK_LIMIT=95
  20. BACKUP_LA_LIMIT=5
  21. RRD_STEP=300
  22. RRD_IFACE_EXCLUDE=lo
  23. BIN=$VESTA/bin
  24. USER_DATA=$VESTA/data/users/$user
  25. WEBTPL=$VESTA/data/templates/web
  26. DNSTPL=$VESTA/data/templates/dns
  27. RRD=$VESTA/web/rrd
  28. # Return codes
  29. OK=0
  30. E_ARGS=1
  31. E_INVALID=2
  32. E_NOTEXIST=3
  33. E_EXISTS=4
  34. E_SUSPENDED=5
  35. E_UNSUSPENDED=6
  36. E_INUSE=7
  37. E_LIMIT=8
  38. E_PASSWORD=9
  39. E_FORBIDEN=10
  40. E_DISABLED=11
  41. E_PARSING=12
  42. E_DISK=13
  43. E_LA=14
  44. E_FTP=15
  45. E_SSH=16
  46. E_DB=17
  47. E_RRD=18
  48. E_UPDATE=19
  49. E_RESTART=20
  50. # Log event function
  51. log_event() {
  52. echo "RC='$1' $2" >> $VESTA/log/system.log
  53. }
  54. # Log user history
  55. log_history() {
  56. cmd=$1
  57. undo=${2-no}
  58. log_user="$3"
  59. if [ -z "$log_user" ]; then
  60. log_user="$user"
  61. fi
  62. touch $USER_DATA/history.log
  63. if [ '99' -lt "$(wc -l $USER_DATA/history.log |cut -f 1 -d ' ')" ]; then
  64. tail -n 99 $USER_DATA/history.log > $USER_DATA/history.log.mv
  65. mv -f $USER_DATA/history.log.mv $USER_DATA/history.log
  66. chmod 660 $USER_DATA/history.log
  67. fi
  68. curr_str=$(grep "ID=" $VESTA/data/users/$log_user/history.log |\
  69. cut -f 2 -d \' | sort -n | tail -n1)
  70. id="$((curr_str +1))"
  71. HISTORY="ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'"
  72. echo "$HISTORY" >> $VESTA/data/users/$log_user/history.log
  73. }
  74. # Argument list checker
  75. check_args() {
  76. if [ "$1" -gt "$2" ]; then
  77. echo "Error: not enought arguments"
  78. echo "Usage: $SCRIPT $3"
  79. log_event "$E_ARGS" "$EVENT"
  80. exit $E_ARGS
  81. fi
  82. }
  83. # Subsystem checker
  84. is_system_enabled() {
  85. if [ -z "$1" ] || [ "$1" = no ]; then
  86. echo "Error: subsystem disabled"
  87. log_event "$E_DISABLED" "$EVENT"
  88. exit $E_DISABLED
  89. fi
  90. }
  91. # User package check
  92. is_package_full() {
  93. case "$1" in
  94. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  95. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  96. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  97. wc -l );;
  98. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  99. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  100. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  101. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  102. cut -f1 -d \ );;
  103. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  104. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  105. esac
  106. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  107. if [ "$used" -ge "$limit" ]; then
  108. echo "Error: Upgrade package"
  109. log_event "$E_LIMIT" "$EVENT"
  110. exit $E_LIMIT
  111. fi
  112. }
  113. # Random password generator
  114. gen_password() {
  115. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  116. lenght=10
  117. while [ ${n:=1} -le $lenght ]; do
  118. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  119. let n+=1
  120. done
  121. echo "$pass"
  122. }
  123. # Package existance check
  124. is_package_valid() {
  125. if [ -z "$1" ]; then
  126. pkg_dir="$VESTA/data/packages"
  127. fi
  128. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  129. echo "Error: package $package not exist"
  130. log_event "$E_NOTEXIST $EVENT"
  131. exit $E_NOTEXIST
  132. fi
  133. }
  134. # Validate system type
  135. is_type_valid() {
  136. if [ -z "$(echo $1 | grep -w $2)" ]; then
  137. echo "Error: $2 is unknown type"
  138. log_event "$E_INVALID" "$EVENT"
  139. exit $E_INVALID
  140. fi
  141. }
  142. # Check user backup settings
  143. is_backup_enabled() {
  144. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  145. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  146. echo "Error: user backup disabled"
  147. log_event "$E_DISABLED" "$EVENT"
  148. exit $E_DISABLED
  149. fi
  150. }
  151. # Check if object is free and can be created
  152. is_object_free() {
  153. if [ $2 = 'USER' ]; then
  154. if [ -d "$USER_DATA" ]; then
  155. object="OK"
  156. fi
  157. else
  158. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  159. fi
  160. if [ ! -z "$object" ]; then
  161. echo "Error: $2 with value $3 exists"
  162. log_event "$E_EXISTS" "$EVENT"
  163. exit $E_EXISTS
  164. fi
  165. }
  166. # Check if object exists and can be used
  167. is_object_valid() {
  168. if [ $2 = 'USER' ]; then
  169. if [ -d "$VESTA/data/users/$user" ]; then
  170. object="OK"
  171. fi
  172. else
  173. if [ $2 = 'DBHOST' ]; then
  174. object=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  175. else
  176. object=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  177. fi
  178. fi
  179. if [ -z "$object" ]; then
  180. echo "Error: $3 not exist"
  181. log_event "$E_NOTEXIST" "$EVENT"
  182. exit $E_NOTEXIST
  183. fi
  184. }
  185. # Check if object is supended
  186. is_object_suspended() {
  187. if [ $2 = 'USER' ]; then
  188. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  189. else
  190. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  191. fi
  192. if [ -z "$spnd" ]; then
  193. echo "Error: $1 $3 is not suspended"
  194. log_event "$E_SUSPENDED" "$EVENT"
  195. exit $E_SUSPENDED
  196. fi
  197. }
  198. # Check if object is unsupended
  199. is_object_unsuspended() {
  200. if [ $2 = 'USER' ]; then
  201. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  202. else
  203. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  204. fi
  205. if [ ! -z "$spnd" ]; then
  206. echo "Error: $1 $3 is already suspended"
  207. log_event "$E_UNSUSPENDED" "$EVENT"
  208. exit $E_UNSUSPENDED
  209. fi
  210. }
  211. # Check if object value is empty
  212. is_object_value_empty() {
  213. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  214. eval $str
  215. eval value=$4
  216. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  217. echo "Error: ${4//$}=$value (not empty)"
  218. log_event "$E_EXISTS" "$EVENT"
  219. exit $E_EXISTS
  220. fi
  221. }
  222. # Check if object value is empty
  223. is_object_value_exist() {
  224. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  225. eval $str
  226. eval value=$4
  227. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  228. echo "Error: ${4//$}=$value (not exist)"
  229. log_event "$E_NOTEXIST" "$EVENT"
  230. exit $E_NOTEXIST
  231. fi
  232. }
  233. # Get object value
  234. get_object_value() {
  235. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  236. eval "$object"
  237. eval echo $4
  238. }
  239. # Update object value
  240. update_object_value() {
  241. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  242. lnr=$(echo $row | cut -f 1 -d ':')
  243. object=$(echo $row | sed -e "s/^$lnr://")
  244. eval "$object"
  245. eval old="$4"
  246. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  247. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  248. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  249. $USER_DATA/$1.conf
  250. }
  251. # Search objects
  252. search_objects() {
  253. OLD_IFS="$IFS"
  254. IFS=$'\n'
  255. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  256. eval $line
  257. eval echo \$$4
  258. done
  259. IFS="$OLD_IFS"
  260. }
  261. # Get user value
  262. get_user_value() {
  263. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  264. }
  265. # Update user value in user.conf
  266. update_user_value() {
  267. key="${2//$}"
  268. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  269. if [ ! -z "$lnr" ]; then
  270. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  271. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  272. fi
  273. }
  274. # Increase user counter
  275. increase_user_value() {
  276. key="${2//$}"
  277. factor="${3-1}"
  278. conf="$VESTA/data/users/$1/user.conf"
  279. old=$(grep "$key=" $conf | cut -f 2 -d \')
  280. if [ -z "$old" ]; then
  281. old=0
  282. fi
  283. new=$((old + factor))
  284. sed -i "s/$key='$old'/$key='$new'/g" $conf
  285. }
  286. # Decrease user counter
  287. decrease_user_value() {
  288. key="${2//$}"
  289. factor="${3-1}"
  290. conf="$VESTA/data/users/$1/user.conf"
  291. old=$(grep "$key=" $conf | cut -f 2 -d \')
  292. if [ -z "$old" ]; then
  293. old=0
  294. fi
  295. if [ "$old" -le 1 ]; then
  296. new=0
  297. else
  298. new=$((old - factor))
  299. fi
  300. sed -i "s/$key='$old'/$key='$new'/g" $conf
  301. }
  302. # Json listing function
  303. json_list() {
  304. echo '{'
  305. fileds_count=$(echo $fields| wc -w )
  306. #for line in $(cat $conf); do
  307. while read line; do
  308. eval $line
  309. if [ -n "$data_output" ]; then
  310. echo -e ' },'
  311. fi
  312. i=1
  313. for field in $fields; do
  314. eval value=$field
  315. if [ $i -eq 1 ]; then
  316. (( ++i))
  317. echo -e "\t\"$value\": {"
  318. else
  319. if [ $i -lt $fileds_count ]; then
  320. (( ++i))
  321. echo -e "\t\t\"${field//$/}\": \"$value\","
  322. else
  323. echo -e "\t\t\"${field//$/}\": \"$value\""
  324. data_output=yes
  325. fi
  326. fi
  327. done
  328. done < $conf
  329. if [ "$data_output" = 'yes' ]; then
  330. echo -e ' }'
  331. fi
  332. echo -e '}'
  333. }
  334. # Shell listing function
  335. shell_list() {
  336. if [ -z "$nohead" ] ; then
  337. echo "${fields//$/}"
  338. for a in $fields; do
  339. echo -e "------ \c"
  340. done
  341. echo
  342. fi
  343. while read line ; do
  344. eval $line
  345. for field in $fields; do
  346. eval value=$field
  347. if [ -z "$value" ]; then
  348. value='NULL'
  349. fi
  350. echo -n "$value "
  351. done
  352. echo
  353. done < $conf
  354. }
  355. # Recalculate U_DISK value
  356. recalc_user_disk_usage() {
  357. u_usage=0
  358. if [ -f "$USER_DATA/web.conf" ]; then
  359. usage=0
  360. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  361. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  362. for disk_usage in $dusage; do
  363. usage=$((usage + disk_usage))
  364. done
  365. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  366. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  367. u_usage=$((u_usage + usage))
  368. fi
  369. if [ -f "$USER_DATA/mail.conf" ]; then
  370. usage=0
  371. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  372. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  373. for disk_usage in $dusage; do
  374. usage=$((usage + disk_usage))
  375. done
  376. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  377. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  378. u_usage=$((u_usage + usage))
  379. fi
  380. if [ -f "$USER_DATA/db.conf" ]; then
  381. usage=0
  382. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  383. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  384. for disk_usage in $dusage; do
  385. usage=$((usage + disk_usage))
  386. done
  387. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  388. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  389. u_usage=$((u_usage + usage))
  390. fi
  391. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  392. u_usage=$((u_usage + usage))
  393. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  394. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  395. }
  396. # Recalculate U_BANDWIDTH value
  397. recalc_user_bandwidth_usage() {
  398. usage=0
  399. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  400. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  401. for bandwidth in $bandwidth_usage; do
  402. usage=$((usage + bandwidth))
  403. done
  404. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  405. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  406. }
  407. # Get next cron job id
  408. get_next_cronjob() {
  409. if [ -z "$job" ]; then
  410. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  411. sort -n|tail -n1)
  412. job="$((curr_str +1))"
  413. fi
  414. }
  415. # Sort cron jobs by id
  416. sort_cron_jobs() {
  417. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  418. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  419. }
  420. # Sync cronjobs with system cron
  421. sync_cron_jobs() {
  422. source $USER_DATA/user.conf
  423. rm -f /var/spool/cron/$user
  424. if [ "$CRON_REPORTS" = 'yes' ]; then
  425. echo "MAILTO=$CONTACT" > /var/spool/cron/$user
  426. fi
  427. while read line; do
  428. eval $line
  429. if [ "$SUSPENDED" = 'no' ]; then
  430. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  431. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  432. >> /var/spool/cron/$user
  433. fi
  434. done < $USER_DATA/cron.conf
  435. }
  436. ### Format Validators ###
  437. # Shell
  438. validate_format_shell() {
  439. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  440. echo "Error: shell $1 is not valid"
  441. log_event "$E_INVALID" "$EVENT"
  442. exit $E_INVALID
  443. fi
  444. }
  445. # Password
  446. validate_format_password() {
  447. if [ "${#1}" -lt '6' ]; then
  448. echo "Error: password is too short"
  449. log_event "$E_INVALID" "$EVENT"
  450. exit $E_INVALID
  451. fi
  452. }
  453. # Integer
  454. validate_format_int() {
  455. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  456. echo "Error: int $1 is not valid"
  457. log_event "$E_INVALID" "$EVENT"
  458. exit $E_INVALID
  459. fi
  460. }
  461. # Boolean
  462. validate_format_boolean() {
  463. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  464. echo "Error: $2 $1 is not valid"
  465. log_event "$E_INVALID" "$EVENT"
  466. exit $E_INVALID
  467. fi
  468. }
  469. # Network interface
  470. validate_format_interface() {
  471. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  472. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  473. echo "Error: intreface $1 is not valid"
  474. log_event "$E_INVALID" "$EVENT"
  475. exit $E_INVALID
  476. fi
  477. }
  478. # IP address
  479. validate_format_ip() {
  480. valid_octets=0
  481. for octet in ${1//./ }; do
  482. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  483. ((++valid_octets))
  484. fi
  485. done
  486. if [ "$valid_octets" -lt 4 ]; then
  487. echo "Error: ip $1 is not valid"
  488. log_event "$E_INVALID" "$EVENT"
  489. exit $E_INVALID
  490. fi
  491. }
  492. # IP address status
  493. validate_format_ip_status() {
  494. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  495. echo "Error: ip_status $1 is not valid"
  496. log_event "$E_INVALID" "$EVENT"
  497. exit $E_INVALID
  498. fi
  499. }
  500. # Email address
  501. validate_format_email() {
  502. local_part=$(echo $1 | cut -s -f1 -d\@)
  503. remote_host=$(echo $1 | cut -s -f2 -d\@)
  504. mx_failed=1
  505. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  506. /usr/bin/host -t mx "$remote_host" &> /dev/null
  507. mx_failed="$?"
  508. fi
  509. if [ "$mx_failed" -eq 1 ]; then
  510. echo "Error: email $1 is not valid"
  511. log_event "$E_INVALID" "$EVENT"
  512. exit $E_INVALID
  513. fi
  514. }
  515. # Username
  516. validate_format_username() {
  517. if ! [[ "$1" =~ ^[0-Z]+(\.[0-Z]+)?$ ]] || [[ "${#1}" -gt 28 ]]; then
  518. echo "Error: $2 $1 is not valid"
  519. log_event "$E_INVALID" "$EVENT"
  520. exit $E_INVALID
  521. fi
  522. }
  523. # Domain
  524. validate_format_domain() {
  525. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  526. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  527. echo "Error: domain $1 is not valid"
  528. log_event "$E_INVALID" "$EVENT"
  529. exit $E_INVALID
  530. fi
  531. }
  532. # Domain alias
  533. validate_format_domain_alias() {
  534. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  535. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  536. echo "Error: domain alias $1 is not valid"
  537. log_event "$E_INVALID" "$EVENT"
  538. exit $E_INVALID
  539. fi
  540. }
  541. # Database
  542. validate_format_database() {
  543. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  544. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  545. echo "Error: database $1 is not valid"
  546. log_event "$E_INVALID" "$EVENT"
  547. exit $E_INVALID
  548. fi
  549. }
  550. # DNS type
  551. validate_format_dns_type() {
  552. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  553. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  554. echo "Error: dnstype $1 is not valid"
  555. log_event "$E_INVALID" "$EVENT"
  556. exit $E_INVALID
  557. fi
  558. }
  559. # DKIM key size
  560. validate_format_key_size() {
  561. known_size='128,256,512,768,1024,2048'
  562. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  563. echo "Error: key_size $1 is not valid"
  564. log_event "$E_INVALID" "$EVENT"
  565. exit $E_INVALID
  566. fi
  567. }
  568. # Minute / Hour / Day / Month / Day of Week
  569. validate_format_mhdmw() {
  570. limit=60
  571. check_format=''
  572. if [ "$2" = 'day' ]; then
  573. limit=31
  574. fi
  575. if [ "$2" = 'month' ]; then
  576. limit=12
  577. fi
  578. if [ "$2" = 'wday' ]; then
  579. limit=7
  580. fi
  581. if [ "$1" = '*' ]; then
  582. check_format='ok'
  583. fi
  584. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  585. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  586. check_format='ok'
  587. fi
  588. fi
  589. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  590. check_format='ok'
  591. fi
  592. if [ "$check_format" != 'ok' ]; then
  593. echo "Error: $2 $1 is not valid"
  594. log_event "$E_INVALID" "$EVENT"
  595. exit $E_INVALID
  596. fi
  597. }
  598. # Nginx static extention or DNS record
  599. validate_format_common() {
  600. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  601. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  602. echo "Error: $2 $1 is not valid"
  603. log_event "$E_INVALID" "$EVENT"
  604. exit $E_INVALID
  605. fi
  606. }
  607. # DNS record value
  608. validate_format_dvalue() {
  609. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  610. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  611. echo "Error: dvalue $1 is not valid"
  612. log_event "$E_INVALID" "$EVENT"
  613. exit $E_INVALID
  614. fi
  615. if [ "$rtype" = 'A' ]; then
  616. validate_format_ip "$1"
  617. fi
  618. if [ "$rtype" = 'NS' ]; then
  619. validate_format_domain "$1"
  620. fi
  621. if [ "$rtype" = 'MX' ]; then
  622. validate_format_domain "$1"
  623. validate_format_int "$priority"
  624. fi
  625. }
  626. # Date
  627. validate_format_date() {
  628. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  629. echo "Error: date $1 is not valid"
  630. log_event "$E_INVALID" "$EVENT"
  631. exit $E_INVALID
  632. fi
  633. }
  634. # Autoreply
  635. validate_format_autoreply() {
  636. exclude="[$|\`]"
  637. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  638. echo "Error: autoreply is not valid"
  639. log_event "$E_INVALID" "$EVENT"
  640. exit $E_INVALID
  641. fi
  642. }
  643. # Format validation controller
  644. validate_format(){
  645. for arg_name in $*; do
  646. eval arg=\$$arg_name
  647. if [ -z "$arg" ]; then
  648. echo "Error: argument $arg_name is not valid (empty)"
  649. log_event "$E_INVALID" "$EVENT"
  650. exit $E_INVALID
  651. fi
  652. case $arg_name in
  653. account) validate_format_username "$arg" "$arg_name" ;;
  654. antispam) validate_format_boolean "$arg" 'antispam' ;;
  655. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  656. autoreply) validate_format_autoreply "$arg" ;;
  657. backup) validate_format_date "$arg" ;;
  658. charset) validate_format_username "$arg" "$arg_name" ;;
  659. charsets) validate_format_common "$arg" 'charsets' ;;
  660. database) validate_format_database "$arg" ;;
  661. day) validate_format_mhdmw "$arg" $arg_name ;;
  662. dbpass) validate_format_password "$arg" ;;
  663. dbuser) validate_format_database "$arg" ;;
  664. dkim) validate_format_boolean "$arg" 'dkim' ;;
  665. dkim_size) validate_format_key_size "$arg" ;;
  666. domain) validate_format_domain "$arg" ;;
  667. dom_alias) validate_format_domain_alias "$arg" ;;
  668. dvalue) validate_format_dvalue "$arg";;
  669. email) validate_format_email "$arg" ;;
  670. exp) validate_format_date "$arg" ;;
  671. extentions) validate_format_common "$arg" 'extentions' ;;
  672. fname) validate_format_username "$arg" "$arg_name" ;;
  673. forward) validate_format_email "$arg" ;;
  674. host) validate_format_domain "$arg" "$arg_name" ;;
  675. hour) validate_format_mhdmw "$arg" $arg_name ;;
  676. id) validate_format_int "$arg" ;;
  677. interface) validate_format_interface "$arg" ;;
  678. ip) validate_format_ip "$arg" ;;
  679. ip_name) validate_format_domain "$arg" ;;
  680. ip_status) validate_format_ip_status "$arg" ;;
  681. job) validate_format_int "$arg" ;;
  682. key) validate_format_username "$arg" "$arg_name" ;;
  683. lname) validate_format_username "$arg" "$arg_name" ;;
  684. malias) validate_format_username "$arg" "$arg_name" ;;
  685. mask) validate_format_ip "$arg" ;;
  686. max_db) validate_format_int "$arg" ;;
  687. min) validate_format_mhdmw "$arg" $arg_name ;;
  688. month) validate_format_mhdmw "$arg" $arg_name ;;
  689. ns1) validate_format_domain "$arg" ;;
  690. ns2) validate_format_domain "$arg" ;;
  691. ns3) validate_format_domain "$arg" ;;
  692. ns4) validate_format_domain "$arg" ;;
  693. package) validate_format_username "$arg" "$arg_name" ;;
  694. password) validate_format_password "$arg" ;;
  695. port) validate_format_int "$arg" ;;
  696. quota) validate_format_int "$arg" ;;
  697. restart) validate_format_boolean "$arg" 'restart' ;;
  698. record) validate_format_common "$arg" 'record';;
  699. rtype) validate_format_dns_type "$arg" ;;
  700. shell) validate_format_shell "$arg" ;;
  701. soa) validate_format_domain "$arg" ;;
  702. stats_pass) validate_format_password "$arg" ;;
  703. stats_user) validate_format_username "$arg" "$arg_name" ;;
  704. template) validate_format_username "$arg" "$arg_name" ;;
  705. ttl) validate_format_int "$arg" ;;
  706. user) validate_format_username "$arg" "$arg_name" ;;
  707. wday) validate_format_mhdmw "$arg" $arg_name ;;
  708. esac
  709. done
  710. }