main.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387
  1. <?php
  2. session_start();
  3. define('VESTA_CMD', '/usr/bin/sudo /usr/local/vesta/bin/');
  4. define('JS_LATEST_UPDATE', '1476144160');
  5. $i = 0;
  6. require_once(dirname(__FILE__).'/i18n.php');
  7. // Saving user IPs to the session for preventing session hijacking
  8. $user_combined_ip = $_SERVER['REMOTE_ADDR'];
  9. if(isset($_SERVER['HTTP_CLIENT_IP'])){
  10. $user_combined_ip .= '|'. $_SERVER['HTTP_CLIENT_IP'];
  11. }
  12. if(isset($_SERVER['HTTP_X_FORWARDED_FOR'])){
  13. $user_combined_ip .= '|'. $_SERVER['HTTP_X_FORWARDED_FOR'];
  14. }
  15. if(isset($_SERVER['HTTP_FORWARDED_FOR'])){
  16. $user_combined_ip .= '|'. $_SERVER['HTTP_FORWARDED_FOR'];
  17. }
  18. if(isset($_SERVER['HTTP_X_FORWARDED'])){
  19. $user_combined_ip .= '|'. $_SERVER['HTTP_X_FORWARDED'];
  20. }
  21. if(isset($_SERVER['HTTP_FORWARDED'])){
  22. $user_combined_ip .= '|'. $_SERVER['HTTP_FORWARDED'];
  23. }
  24. if(!isset($_SESSION['user_combined_ip'])){
  25. $_SESSION['user_combined_ip'] = $user_combined_ip;
  26. }
  27. // Checking user to use session from the same IP he has been logged in
  28. if($_SESSION['user_combined_ip'] != $user_combined_ip){
  29. session_destroy();
  30. session_start();
  31. $_SESSION['request_uri'] = $_SERVER['REQUEST_URI'];
  32. header("Location: /login/");
  33. exit;
  34. }
  35. // Check system settings
  36. if ((!isset($_SESSION['VERSION'])) && (!defined('NO_AUTH_REQUIRED'))) {
  37. session_destroy();
  38. session_start();
  39. $_SESSION['request_uri'] = $_SERVER['REQUEST_URI'];
  40. header("Location: /login/");
  41. exit;
  42. }
  43. // Check user session
  44. if ((!isset($_SESSION['user'])) && (!defined('NO_AUTH_REQUIRED'))) {
  45. $_SESSION['request_uri'] = $_SERVER['REQUEST_URI'];
  46. header("Location: /login/");
  47. exit;
  48. }
  49. if (isset($_SESSION['user'])) {
  50. if(!isset($_SESSION['token'])){
  51. $token = uniqid(mt_rand(), true);
  52. $_SESSION['token'] = $token;
  53. }
  54. }
  55. if (isset($_SESSION['language'])) {
  56. switch ($_SESSION['language']) {
  57. case 'ro':
  58. setlocale(LC_ALL, 'ro_RO.utf8');
  59. break;
  60. case 'ru':
  61. setlocale(LC_ALL, 'ru_RU.utf8');
  62. break;
  63. case 'ua':
  64. setlocale(LC_ALL, 'uk_UA.utf8');
  65. break;
  66. case 'es':
  67. setlocale(LC_ALL, 'es_ES.utf8');
  68. break;
  69. case 'ja':
  70. setlocale(LC_ALL, 'ja_JP.utf8');
  71. break;
  72. default:
  73. setlocale(LC_ALL, 'en_US.utf8');
  74. }
  75. }
  76. if (isset($_SESSION['user'])) {
  77. $user = $_SESSION['user'];
  78. }
  79. if (isset($_SESSION['look']) && ( $_SESSION['look'] != 'admin' )) {
  80. $user = $_SESSION['look'];
  81. }
  82. function get_favourites(){
  83. exec (VESTA_CMD."v-list-user-favourites ".$_SESSION['user']." json", $output, $return_var);
  84. // $data = json_decode(implode('', $output).'}', true);
  85. $data = json_decode(implode('', $output), true);
  86. $data = array_reverse($data,true);
  87. $favourites = array();
  88. foreach($data['Favourites'] as $key => $favourite){
  89. $favourites[$key] = array();
  90. $items = explode(',', $favourite);
  91. foreach($items as $item){
  92. if($item)
  93. $favourites[$key][trim($item)] = 1;
  94. }
  95. }
  96. $_SESSION['favourites'] = $favourites;
  97. }
  98. function check_error($return_var) {
  99. if ( $return_var > 0 ) {
  100. header("Location: /error/");
  101. exit;
  102. }
  103. }
  104. function check_return_code($return_var,$output) {
  105. if ($return_var != 0) {
  106. $error = implode('<br>', $output);
  107. if (empty($error)) $error = __('Error code:',$return_var);
  108. $_SESSION['error_msg'] = $error;
  109. }
  110. }
  111. function render_page($user, $TAB, $page) {
  112. $__template_dir = dirname(__DIR__) . '/templates/';
  113. $__pages_js_dir = dirname(__DIR__) . '/js/pages/';
  114. // Header
  115. include($__template_dir . 'header.html');
  116. // Panel
  117. top_panel(empty($_SESSION['look']) ? $_SESSION['user'] : $_SESSION['look'], $TAB);
  118. // Extarct global variables
  119. // I think those variables should be passed via arguments
  120. //*
  121. extract($GLOBALS, EXTR_SKIP);
  122. /*/
  123. $variables = array_filter($GLOBALS, function($key){return preg_match('/^(v_|[a-z])[a-z\d]+$/', $key);}, ARRAY_FILTER_USE_KEY);
  124. extract($variables, EXTR_OVERWRITE);
  125. //*/
  126. // Body
  127. if (($_SESSION['user'] !== 'admin') && (@include($__template_dir . "user/$page.html"))) {
  128. // User page loaded
  129. } else {
  130. // Not admin or user page doesn't exist
  131. // Load admin page
  132. @include($__template_dir . "admin/$page.html");
  133. }
  134. // Including common js files
  135. @include_once(dirname(__DIR__) . '/templates/scripts.html');
  136. // Including page specific js file
  137. if(file_exists($__pages_js_dir.$page.'.js'))
  138. echo '<script type="text/javascript" src="/js/pages/'.$page.'.js?'.JS_LATEST_UPDATE.'"></script>';
  139. // Footer
  140. include($__template_dir . 'footer.html');
  141. }
  142. function top_panel($user, $TAB) {
  143. global $panel;
  144. $command = VESTA_CMD."v-list-user '".$user."' 'json'";
  145. exec ($command, $output, $return_var);
  146. if ( $return_var > 0 ) {
  147. header("Location: /error/");
  148. exit;
  149. }
  150. $panel = json_decode(implode('', $output), true);
  151. unset($output);
  152. // getting notifications
  153. $command = VESTA_CMD."v-list-user-notifications '".$user."' 'json'";
  154. exec ($command, $output, $return_var);
  155. $notifications = json_decode(implode('', $output), true);
  156. foreach($notifications as $message){
  157. if($message['ACK'] == 'no'){
  158. $panel[$user]['NOTIFICATIONS'] = 'yes';
  159. break;
  160. }
  161. }
  162. unset($output);
  163. if ( $user == 'admin' ) {
  164. include(dirname(__FILE__).'/../templates/admin/panel.html');
  165. } else {
  166. include(dirname(__FILE__).'/../templates/user/panel.html');
  167. }
  168. }
  169. function translate_date($date){
  170. $date = strtotime($date);
  171. return strftime("%d &nbsp;", $date).__(strftime("%b", $date)).strftime(" &nbsp;%Y", $date);
  172. }
  173. function humanize_time($usage) {
  174. if ( $usage > 60 ) {
  175. $usage = $usage / 60;
  176. if ( $usage > 24 ) {
  177. $usage = $usage / 24;
  178. $usage = number_format($usage);
  179. if ( $usage == 1 ) {
  180. $usage = $usage." ".__('day');
  181. } else {
  182. $usage = $usage." ".__('days');
  183. }
  184. } else {
  185. $usage = number_format($usage);
  186. if ( $usage == 1 ) {
  187. $usage = $usage." ".__('hour');
  188. } else {
  189. $usage = $usage." ".__('hours');
  190. }
  191. }
  192. } else {
  193. if ( $usage == 1 ) {
  194. $usage = $usage." ".__('minute');
  195. } else {
  196. $usage = $usage." ".__('minutes');
  197. }
  198. }
  199. return $usage;
  200. }
  201. function humanize_usage_size($usage) {
  202. if ( $usage > 1024 ) {
  203. $usage = $usage / 1024;
  204. if ( $usage > 1024 ) {
  205. $usage = $usage / 1024 ;
  206. if ( $usage > 1024 ) {
  207. $usage = $usage / 1024 ;
  208. $usage = number_format($usage, 2);
  209. } else {
  210. $usage = number_format($usage, 2);
  211. }
  212. } else {
  213. $usage = number_format($usage, 2);
  214. }
  215. }
  216. return $usage;
  217. }
  218. function humanize_usage_measure($usage) {
  219. $measure = 'kb';
  220. if ( $usage > 1024 ) {
  221. $usage = $usage / 1024;
  222. if ( $usage > 1024 ) {
  223. $usage = $usage / 1024 ;
  224. if ( $usage > 1024 ) {
  225. $measure = 'pb';
  226. } else {
  227. $measure = 'tb';
  228. }
  229. } else {
  230. $measure = 'gb';
  231. }
  232. } else {
  233. $measure = 'mb';
  234. }
  235. return __($measure);
  236. }
  237. function get_percentage($used,$total) {
  238. if (!isset($total)) $total = 0;
  239. if (!isset($used)) $used = 0;
  240. if ( $total == 0 ) {
  241. $percent = 0;
  242. } else {
  243. $percent = $used / $total;
  244. $percent = $percent * 100;
  245. $percent = number_format($percent, 0, '', '');
  246. if ( $percent > 100 ) {
  247. $percent = 100;
  248. }
  249. if ( $percent < 0 ) {
  250. $percent = 0;
  251. }
  252. }
  253. return $percent;
  254. }
  255. function send_email($to,$subject,$mailtext,$from) {
  256. $charset = "utf-8";
  257. $to = '<'.$to.'>';
  258. $boundary = '--' . md5( uniqid("myboundary") );
  259. $priorities = array( '1 (Highest)', '2 (High)', '3 (Normal)', '4 (Low)', '5 (Lowest)' );
  260. $priority = $priorities[2];
  261. $ctencoding = "8bit";
  262. $sep = chr(13) . chr(10);
  263. $disposition = "inline";
  264. $subject = "=?$charset?B?".base64_encode($subject)."?=";
  265. $header = "From: $from \nX-Priority: $priority\nCC:\n";
  266. $header .= "Mime-Version: 1.0\nContent-Type: text/plain; charset=$charset \n";
  267. $header .= "Content-Transfer-Encoding: $ctencoding\nX-Mailer: Php/libMailv1.3\n";
  268. $message = $mailtext;
  269. mail($to, $subject, $message, $header);
  270. }
  271. function list_timezones() {
  272. $tz = new DateTimeZone('HAST');
  273. $timezone_offsets['HAST'] = $tz->getOffset(new DateTime);
  274. $tz = new DateTimeZone('HADT');
  275. $timezone_offsets['HADT'] = $tz->getOffset(new DateTime);
  276. $tz = new DateTimeZone('AKST');
  277. $timezone_offsets['AKST'] = $tz->getOffset(new DateTime);
  278. $tz = new DateTimeZone('AKDT');
  279. $timezone_offsets['AKDT'] = $tz->getOffset(new DateTime);
  280. $tz = new DateTimeZone('PST');
  281. $timezone_offsets['PST'] = $tz->getOffset(new DateTime);
  282. $tz = new DateTimeZone('PDT');
  283. $timezone_offsets['PDT'] = $tz->getOffset(new DateTime);
  284. $tz = new DateTimeZone('MST');
  285. $timezone_offsets['MST'] = $tz->getOffset(new DateTime);
  286. $tz = new DateTimeZone('MDT');
  287. $timezone_offsets['MDT'] = $tz->getOffset(new DateTime);
  288. $tz = new DateTimeZone('CST');
  289. $timezone_offsets['CST'] = $tz->getOffset(new DateTime);
  290. $tz = new DateTimeZone('CDT');
  291. $timezone_offsets['CDT'] = $tz->getOffset(new DateTime);
  292. $tz = new DateTimeZone('EST');
  293. $timezone_offsets['EST'] = $tz->getOffset(new DateTime);
  294. $tz = new DateTimeZone('EDT');
  295. $timezone_offsets['EDT'] = $tz->getOffset(new DateTime);
  296. $tz = new DateTimeZone('AST');
  297. $timezone_offsets['AST'] = $tz->getOffset(new DateTime);
  298. $tz = new DateTimeZone('ADT');
  299. $timezone_offsets['ADT'] = $tz->getOffset(new DateTime);
  300. foreach(DateTimeZone::listIdentifiers() as $timezone){
  301. $tz = new DateTimeZone($timezone);
  302. $timezone_offsets[$timezone] = $tz->getOffset(new DateTime);
  303. }
  304. foreach($timezone_offsets as $timezone => $offset){
  305. $offset_prefix = $offset < 0 ? '-' : '+';
  306. $offset_formatted = gmdate( 'H:i', abs($offset) );
  307. $pretty_offset = "UTC${offset_prefix}${offset_formatted}";
  308. $t = new DateTimeZone($timezone);
  309. $c = new DateTime(null, $t);
  310. $current_time = $c->format('H:i:s');
  311. $timezone_list[$timezone] = "$timezone [ $current_time ] ${pretty_offset}";
  312. }
  313. return $timezone_list;
  314. }
  315. /**
  316. * A function that tells is it MySQL installed on the system, or it is MariaDB.
  317. *
  318. * Explaination:
  319. * $_SESSION['DB_SYSTEM'] has 'mysql' value even if MariaDB is installed, so you can't figure out is it really MySQL or it's MariaDB.
  320. * So, this function will make it clear.
  321. *
  322. * If MySQL is installed, function will return 'mysql' as a string.
  323. * If MariaDB is installed, function will return 'mariadb' as a string.
  324. *
  325. * Hint: if you want to check if PostgreSQL is installed - check value of $_SESSION['DB_SYSTEM']
  326. *
  327. * @return string
  328. */
  329. function is_it_mysql_or_mariadb() {
  330. exec (VESTA_CMD."v-list-sys-services json", $output, $return_var);
  331. $data = json_decode(implode('', $output), true);
  332. unset($output);
  333. $mysqltype='mysql';
  334. if (isset($data['mariadb'])) $mysqltype='mariadb';
  335. return $mysqltype;
  336. }