index.php 1.0 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546
  1. <?php
  2. // Init
  3. error_reporting(NULL);
  4. ob_start();
  5. session_start();
  6. // Main include
  7. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  8. // Check token
  9. if ((!isset($_POST['token'])) || ($_SESSION['token'] != $_POST['token'])) {
  10. header('location: /login/');
  11. exit();
  12. }
  13. // Check user
  14. if ($_SESSION['user'] != 'admin') {
  15. header("Location: /list/user");
  16. exit;
  17. }
  18. $ipchain = $_POST['ipchain'];
  19. /*if (!empty($_POST['ipchain'])) {
  20. $ipchain = $_POST['ipchain'];
  21. list($ip,$chain) = split(":",$ipchain);
  22. $v_ip = escapeshellarg($ip);
  23. $v_chain = escapeshellarg($chain);
  24. }*/
  25. $action = $_POST['action'];
  26. switch ($action) {
  27. case 'delete': $cmd='v-delete-firewall-ban';
  28. break;
  29. default: header("Location: /list/firewall/banlist/"); exit;
  30. }
  31. foreach ($ipchain as $value) {
  32. list($ip,$chain) = split(":",$value);
  33. $v_ip = escapeshellarg($ip);
  34. $v_chain = escapeshellarg($chain);
  35. exec (VESTA_CMD.$cmd." ".$v_ip." ".$v_chain, $output, $return_var);
  36. }
  37. header("Location: /list/firewall/banlist");