main.sh 24 KB


  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. HOMEDIR='/home'
  17. BACKUP='/backup'
  18. BACKUP_GZIP=5
  19. BACKUP_DISK_LIMIT=95
  20. BACKUP_LA_LIMIT=5
  21. RRD_STEP=300
  22. RRD_IFACE_EXCLUDE=lo
  23. BIN=$VESTA/bin
  24. USER_DATA=$VESTA/data/users/$user
  25. WEBTPL=$VESTA/data/templates/web
  26. DNSTPL=$VESTA/data/templates/dns
  27. RRD=$VESTA/web/rrd
  28. # Return codes
  29. OK=0
  30. E_ARGS=1
  31. E_INVALID=2
  32. E_NOTEXIST=3
  33. E_EXISTS=4
  34. E_SUSPENDED=5
  35. E_UNSUSPENDED=6
  36. E_INUSE=7
  37. E_LIMIT=8
  38. E_PASSWORD=9
  39. E_FORBIDEN=10
  40. E_DISABLED=11
  41. E_PARSING=12
  42. E_DISK=13
  43. E_LA=14
  44. E_CONNECT=15
  45. E_FTP=16
  46. E_DB=17
  47. E_RRD=18
  48. E_UPDATE=19
  49. E_RESTART=20
  50. # Log event function
  51. log_event() {
  52. echo "RC='$1' $2" >> $VESTA/log/system.log
  53. }
  54. # Log user history
  55. log_history() {
  56. cmd=$1
  57. undo=${2-no}
  58. log_user=${3-$user}
  59. log=$VESTA/data/users/$log_user/history.log
  60. touch $log
  61. if [ '99' -lt "$(wc -l $log |cut -f 1 -d ' ')" ]; then
  62. tail -n 49 $log > $log.moved
  63. mv -f $log.moved $log
  64. chmod 660 $log
  65. fi
  66. curr_str=$(grep "ID=" $log | cut -f 2 -d \' | sort -n | tail -n1)
  67. id="$((curr_str +1))"
  68. echo "ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'" >> $log
  69. }
  70. # Argument list checker
  71. check_args() {
  72. if [ "$1" -gt "$2" ]; then
  73. echo "Error: not enought arguments"
  74. echo "Usage: $SCRIPT $3"
  75. log_event "$E_ARGS" "$EVENT"
  76. exit $E_ARGS
  77. fi
  78. }
  79. # Subsystem checker
  80. is_system_enabled() {
  81. if [ -z "$1" ] || [ "$1" = no ]; then
  82. echo "Error: $2 is disabled in the vesta.conf"
  83. log_event "$E_DISABLED" "$EVENT"
  84. exit $E_DISABLED
  85. fi
  86. }
  87. # User package check
  88. is_package_full() {
  89. case "$1" in
  90. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  91. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  92. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  93. wc -l );;
  94. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  95. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  96. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  97. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  98. cut -f1 -d \ );;
  99. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  100. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  101. esac
  102. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  103. if [ "$used" -ge "$limit" ]; then
  104. echo "Error: Limit reached / Upgrade package"
  105. log_event "$E_LIMIT" "$EVENT"
  106. exit $E_LIMIT
  107. fi
  108. }
  109. # Random password generator
  110. gen_password() {
  111. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  112. lenght=10
  113. while [ ${n:=1} -le $lenght ]; do
  114. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  115. let n+=1
  116. done
  117. echo "$pass"
  118. }
  119. # Package existance check
  120. is_package_valid() {
  121. if [ -z "$1" ]; then
  122. pkg_dir="$VESTA/data/packages"
  123. fi
  124. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  125. echo "Error: package $package doesn't exist"
  126. log_event "$E_NOTEXIST $EVENT"
  127. exit $E_NOTEXIST
  128. fi
  129. }
  130. # Validate system type
  131. is_type_valid() {
  132. if [ -z "$(echo $1 | grep -w $2)" ]; then
  133. echo "Error: $2 is unknown type"
  134. log_event "$E_INVALID" "$EVENT"
  135. exit $E_INVALID
  136. fi
  137. }
  138. # Check if backup is available for user
  139. is_backup_available() {
  140. if [ "$user" != "$(echo $backup | cut -f 1 -d '.')" ]; then
  141. echo "Error: User $user don't have permission to use $backup"
  142. log_event "$E_FORBIDEN" "$EVENT"
  143. exit $E_FORBIDEN
  144. fi
  145. }
  146. # Check user backup settings
  147. is_backup_enabled() {
  148. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  149. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  150. echo "Error: user backup disabled"
  151. log_event "$E_DISABLED" "$EVENT"
  152. exit $E_DISABLED
  153. fi
  154. }
  155. # Check user backup settings
  156. is_backup_scheduled() {
  157. if [ -e "$VESTA/data/queue/backup.pipe" ]; then
  158. check_q=$(grep " $user " $VESTA/data/queue/backup.pipe | grep $1)
  159. if [ ! -z "$check_q" ]; then
  160. echo "Error: $1 is already scheduled"
  161. log_event "$E_EXISTS" "$EVENT"
  162. exit $E_EXISTS
  163. fi
  164. fi
  165. }
  166. # Check if object is new
  167. is_object_new() {
  168. if [ $2 = 'USER' ]; then
  169. if [ -d "$USER_DATA" ]; then
  170. object="OK"
  171. fi
  172. else
  173. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  174. fi
  175. if [ ! -z "$object" ]; then
  176. echo "Error: $2 with value $3 exists"
  177. log_event "$E_EXISTS" "$EVENT"
  178. exit $E_EXISTS
  179. fi
  180. }
  181. # Check if object exists and can be used
  182. is_object_valid() {
  183. if [ $2 = 'USER' ]; then
  184. if [ -d "$VESTA/data/users/$user" ]; then
  185. sobject="OK"
  186. fi
  187. else
  188. if [ $2 = 'DBHOST' ]; then
  189. sobject=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  190. else
  191. sobject=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  192. fi
  193. fi
  194. if [ -z "$sobject" ]; then
  195. echo "Error: $2 $3 doesn't exist"
  196. log_event "$E_NOTEXIST" "$EVENT"
  197. exit $E_NOTEXIST
  198. fi
  199. }
  200. # Check if object is supended
  201. is_object_suspended() {
  202. if [ $2 = 'USER' ]; then
  203. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  204. else
  205. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  206. fi
  207. if [ -z "$spnd" ]; then
  208. echo "Error: $(basename $1) $3 is not suspended"
  209. log_event "$E_SUSPENDED" "$EVENT"
  210. exit $E_SUSPENDED
  211. fi
  212. }
  213. # Check if object is unsupended
  214. is_object_unsuspended() {
  215. if [ $2 = 'USER' ]; then
  216. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  217. else
  218. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  219. fi
  220. if [ ! -z "$spnd" ]; then
  221. echo "Error: $(basename $1) $3 is already suspended"
  222. log_event "$E_UNSUSPENDED" "$EVENT"
  223. exit $E_UNSUSPENDED
  224. fi
  225. }
  226. # Check if object value is empty
  227. is_object_value_empty() {
  228. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  229. eval $str
  230. eval value=$4
  231. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  232. echo "Error: ${4//$}=$value (not empty)"
  233. log_event "$E_EXISTS" "$EVENT"
  234. exit $E_EXISTS
  235. fi
  236. }
  237. # Check if object value is empty
  238. is_object_value_exist() {
  239. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  240. eval $str
  241. eval value=$4
  242. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  243. echo "Error: ${4//$}=$value (doesn't exist)"
  244. log_event "$E_NOTEXIST" "$EVENT"
  245. exit $E_NOTEXIST
  246. fi
  247. }
  248. # Get object value
  249. get_object_value() {
  250. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  251. eval "$object"
  252. eval echo $4
  253. }
  254. # Update object value
  255. update_object_value() {
  256. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  257. lnr=$(echo $row | cut -f 1 -d ':')
  258. object=$(echo $row | sed "s/^$lnr://")
  259. eval "$object"
  260. eval old="$4"
  261. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  262. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  263. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  264. $USER_DATA/$1.conf
  265. }
  266. # Add object key
  267. add_object_key() {
  268. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  269. lnr=$(echo $row | cut -f 1 -d ':')
  270. object=$(echo $row | sed "s/^$lnr://")
  271. if [ -z "$(echo $object |grep $4=)" ]; then
  272. eval old="$4"
  273. sed -i "$lnr s/$5='/$4='' $5='/" $USER_DATA/$1.conf
  274. fi
  275. }
  276. # Search objects
  277. search_objects() {
  278. OLD_IFS="$IFS"
  279. IFS=$'\n'
  280. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  281. eval $line
  282. eval echo \$$4
  283. done
  284. IFS="$OLD_IFS"
  285. }
  286. # Get user value
  287. get_user_value() {
  288. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  289. }
  290. # Update user value in user.conf
  291. update_user_value() {
  292. key="${2//$}"
  293. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  294. if [ ! -z "$lnr" ]; then
  295. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  296. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  297. fi
  298. }
  299. # Increase user counter
  300. increase_user_value() {
  301. key="${2//$}"
  302. factor="${3-1}"
  303. conf="$VESTA/data/users/$1/user.conf"
  304. old=$(grep "$key=" $conf | cut -f 2 -d \')
  305. if [ -z "$old" ]; then
  306. old=0
  307. fi
  308. new=$((old + factor))
  309. sed -i "s/$key='$old'/$key='$new'/g" $conf
  310. }
  311. # Decrease user counter
  312. decrease_user_value() {
  313. key="${2//$}"
  314. factor="${3-1}"
  315. conf="$VESTA/data/users/$1/user.conf"
  316. old=$(grep "$key=" $conf | cut -f 2 -d \')
  317. if [ -z "$old" ]; then
  318. old=0
  319. fi
  320. if [ "$old" -le 1 ]; then
  321. new=0
  322. else
  323. new=$((old - factor))
  324. fi
  325. sed -i "s/$key='$old'/$key='$new'/g" $conf
  326. }
  327. # Json listing function
  328. json_list() {
  329. echo '{'
  330. fileds_count=$(echo $fields| wc -w )
  331. #for line in $(cat $conf); do
  332. while read line; do
  333. eval $line
  334. if [ -n "$data_output" ]; then
  335. echo -e ' },'
  336. fi
  337. i=1
  338. for field in $fields; do
  339. eval value=$field
  340. if [ $i -eq 1 ]; then
  341. (( ++i))
  342. echo -e "\t\"$value\": {"
  343. else
  344. if [ $i -lt $fileds_count ]; then
  345. (( ++i))
  346. echo -e "\t\t\"${field//$/}\": \"$value\","
  347. else
  348. echo -e "\t\t\"${field//$/}\": \"$value\""
  349. data_output=yes
  350. fi
  351. fi
  352. done
  353. done < $conf
  354. if [ "$data_output" = 'yes' ]; then
  355. echo -e ' }'
  356. fi
  357. echo -e '}'
  358. }
  359. # Shell listing function
  360. shell_list() {
  361. if [ -z "$nohead" ] ; then
  362. echo "${fields//$/}"
  363. for a in $fields; do
  364. echo -e "------ \c"
  365. done
  366. echo
  367. fi
  368. while read line ; do
  369. eval $line
  370. for field in $fields; do
  371. eval value=$field
  372. if [ -z "$value" ]; then
  373. value='NULL'
  374. fi
  375. echo -n "$value "
  376. done
  377. echo
  378. done < $conf
  379. }
  380. # Recalculate U_DISK value
  381. recalc_user_disk_usage() {
  382. u_usage=0
  383. if [ -f "$USER_DATA/web.conf" ]; then
  384. usage=0
  385. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  386. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  387. for disk_usage in $dusage; do
  388. usage=$((usage + disk_usage))
  389. done
  390. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  391. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  392. u_usage=$((u_usage + usage))
  393. fi
  394. if [ -f "$USER_DATA/mail.conf" ]; then
  395. usage=0
  396. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  397. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  398. for disk_usage in $dusage; do
  399. usage=$((usage + disk_usage))
  400. done
  401. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  402. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  403. u_usage=$((u_usage + usage))
  404. fi
  405. if [ -f "$USER_DATA/db.conf" ]; then
  406. usage=0
  407. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  408. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  409. for disk_usage in $dusage; do
  410. usage=$((usage + disk_usage))
  411. done
  412. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  413. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  414. u_usage=$((u_usage + usage))
  415. fi
  416. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  417. u_usage=$((u_usage + usage))
  418. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  419. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  420. }
  421. # Recalculate U_BANDWIDTH value
  422. recalc_user_bandwidth_usage() {
  423. usage=0
  424. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  425. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  426. for bandwidth in $bandwidth_usage; do
  427. usage=$((usage + bandwidth))
  428. done
  429. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  430. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  431. }
  432. # Get next cron job id
  433. get_next_cronjob() {
  434. if [ -z "$job" ]; then
  435. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  436. sort -n|tail -n1)
  437. job="$((curr_str +1))"
  438. fi
  439. }
  440. # Sort cron jobs by id
  441. sort_cron_jobs() {
  442. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  443. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  444. }
  445. # Sync cronjobs with system cron
  446. sync_cron_jobs() {
  447. source $USER_DATA/user.conf
  448. if [ -e "/var/spool/cron/crontabs" ]; then
  449. sys_cron="/var/spool/cron/crontabs/$user"
  450. else
  451. sys_cron="/var/spool/cron/$user"
  452. fi
  453. rm -f $sys_cron
  454. if [ "$CRON_REPORTS" = 'yes' ]; then
  455. echo "MAILTO=$CONTACT" > $sys_cron
  456. fi
  457. while read line; do
  458. eval $line
  459. if [ "$SUSPENDED" = 'no' ]; then
  460. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  461. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  462. >> $sys_cron
  463. fi
  464. done < $USER_DATA/cron.conf
  465. # Set proper permissions
  466. chown $user:$user $sys_cron
  467. chmod 600 $sys_cron
  468. }
  469. ### Format Validators ###
  470. # Shell
  471. validate_format_shell() {
  472. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  473. echo "Error: shell $1 is not valid"
  474. log_event "$E_INVALID" "$EVENT"
  475. exit $E_INVALID
  476. fi
  477. }
  478. # Password
  479. validate_format_password() {
  480. if [ "${#1}" -lt '6' ]; then
  481. echo "Error: password is too short"
  482. log_event "$E_INVALID" "$EVENT"
  483. exit $E_INVALID
  484. fi
  485. }
  486. # Integer
  487. validate_format_int() {
  488. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  489. echo "Error: $2 $1 is not valid"
  490. log_event "$E_INVALID" "$EVENT"
  491. exit $E_INVALID
  492. fi
  493. }
  494. # Boolean
  495. validate_format_boolean() {
  496. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  497. echo "Error: $2 $1 is not valid"
  498. log_event "$E_INVALID" "$EVENT"
  499. exit $E_INVALID
  500. fi
  501. }
  502. # Network interface
  503. validate_format_interface() {
  504. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  505. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  506. echo "Error: intreface $1 is not valid"
  507. log_event "$E_INVALID" "$EVENT"
  508. exit $E_INVALID
  509. fi
  510. }
  511. # IP address
  512. validate_format_ip() {
  513. valid_octets=0
  514. for octet in ${1//./ }; do
  515. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  516. ((++valid_octets))
  517. fi
  518. done
  519. if [ "$valid_octets" -lt 4 ]; then
  520. echo "Error: ip $1 is not valid"
  521. log_event "$E_INVALID" "$EVENT"
  522. exit $E_INVALID
  523. fi
  524. }
  525. # IP address status
  526. validate_format_ip_status() {
  527. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  528. echo "Error: ip_status $1 is not valid"
  529. log_event "$E_INVALID" "$EVENT"
  530. exit $E_INVALID
  531. fi
  532. }
  533. # Email address
  534. validate_format_email() {
  535. local_part=$(echo $1 | cut -s -f1 -d\@)
  536. remote_host=$(echo $1 | cut -s -f2 -d\@)
  537. mx_failed=1
  538. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  539. /usr/bin/host -t mx "$remote_host" &> /dev/null
  540. mx_failed="$?"
  541. fi
  542. if [ "$mx_failed" -eq 1 ]; then
  543. echo "Error: email $1 is not valid"
  544. log_event "$E_INVALID" "$EVENT"
  545. exit $E_INVALID
  546. fi
  547. }
  548. # Name
  549. validate_format_name() {
  550. if ! [[ "$1" =~ ^[[:alnum:]][-|\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  551. echo "Error: $2 $1 is not valid"
  552. log_event "$E_INVALID" "$EVENT"
  553. exit $E_INVALID
  554. fi
  555. }
  556. # Name with space
  557. validate_format_name_s() {
  558. if ! [[ "$1" =~ ^[[:alnum:]][-|\ |\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  559. echo "Error: $2 $1 is not valid"
  560. log_event "$E_INVALID" "$EVENT"
  561. exit $E_INVALID
  562. fi
  563. }
  564. # Username
  565. validate_format_username() {
  566. if [ "${#1}" -eq 1 ]; then
  567. if ! [[ "$1" =~ [a-z] ]]; then
  568. echo "Error: $2 $1 is not valid"
  569. exit 1
  570. fi
  571. else
  572. if ! [[ "$1" =~ ^[a-zA-Z0-9][-|\.|_|a-zA-Z0-9]{0,28}[a-zA-Z0-9]$ ]]
  573. then
  574. echo "Error: $2 $1 is not valid"
  575. exit 1
  576. fi
  577. fi
  578. }
  579. # Domain
  580. validate_format_domain() {
  581. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  582. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  583. echo "Error: $2 $1 is not valid"
  584. log_event "$E_INVALID" "$EVENT"
  585. exit $E_INVALID
  586. fi
  587. }
  588. # Domain alias
  589. validate_format_domain_alias() {
  590. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  591. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  592. echo "Error: domain alias $1 is not valid"
  593. log_event "$E_INVALID" "$EVENT"
  594. exit $E_INVALID
  595. fi
  596. }
  597. # Database
  598. validate_format_database() {
  599. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  600. if [[ "$1" =~ $exclude ]] || [ 65 -le ${#1} ]; then
  601. echo "Error: $2 $1 is not valid"
  602. log_event "$E_INVALID" "$EVENT"
  603. exit $E_INVALID
  604. fi
  605. }
  606. # Database user
  607. validate_format_dbuser() {
  608. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  609. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  610. echo "Error: $2 $1 is not valid"
  611. log_event "$E_INVALID" "$EVENT"
  612. exit $E_INVALID
  613. fi
  614. }
  615. # DNS type
  616. validate_format_dns_type() {
  617. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  618. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  619. echo "Error: dnstype $1 is not valid"
  620. log_event "$E_INVALID" "$EVENT"
  621. exit $E_INVALID
  622. fi
  623. }
  624. # DKIM key size
  625. validate_format_key_size() {
  626. known_size='128,256,512,768,1024,2048'
  627. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  628. echo "Error: key_size $1 is not valid"
  629. log_event "$E_INVALID" "$EVENT"
  630. exit $E_INVALID
  631. fi
  632. }
  633. # Minute / Hour / Day / Month / Day of Week
  634. validate_format_mhdmw() {
  635. limit=60
  636. check_format=''
  637. if [ "$2" = 'day' ]; then
  638. limit=31
  639. fi
  640. if [ "$2" = 'month' ]; then
  641. limit=12
  642. fi
  643. if [ "$2" = 'wday' ]; then
  644. limit=7
  645. fi
  646. if [ "$1" = '*' ]; then
  647. check_format='ok'
  648. fi
  649. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  650. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  651. check_format='ok'
  652. fi
  653. fi
  654. if [[ "$1" =~ ^[0-9][-|,|0-9]{0,28}[0-9]$ ]]; then
  655. check_format='ok'
  656. crn_values=${1//,/ }
  657. crn_values=${crn_values//-/ }
  658. for crn_vl in $crn_values; do
  659. if [ "$crn_vl" -gt $limit ]; then
  660. check_format='invalid'
  661. fi
  662. done
  663. fi
  664. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  665. check_format='ok'
  666. fi
  667. if [ "$check_format" != 'ok' ]; then
  668. echo "Error: $2 $1 is not valid"
  669. log_event "$E_INVALID" "$EVENT"
  670. exit $E_INVALID
  671. fi
  672. }
  673. # proxy extention or DNS record
  674. validate_format_common() {
  675. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  676. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  677. echo "Error: $2 $1 is not valid"
  678. log_event "$E_INVALID" "$EVENT"
  679. exit $E_INVALID
  680. fi
  681. }
  682. # DNS record value
  683. validate_format_dvalue() {
  684. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  685. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  686. echo "Error: dvalue $1 is not valid"
  687. log_event "$E_INVALID" "$EVENT"
  688. exit $E_INVALID
  689. fi
  690. if [ "$rtype" = 'A' ]; then
  691. validate_format_ip "$1"
  692. fi
  693. if [ "$rtype" = 'NS' ]; then
  694. validate_format_domain "$1" 'ns_record'
  695. fi
  696. if [ "$rtype" = 'MX' ]; then
  697. validate_format_domain "$1" 'mx_record'
  698. validate_format_int "$priority" 'priority_record'
  699. fi
  700. }
  701. # Date
  702. validate_format_date() {
  703. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  704. echo "Error: date $1 is not valid"
  705. log_event "$E_INVALID" "$EVENT"
  706. exit $E_INVALID
  707. fi
  708. }
  709. # Autoreply
  710. validate_format_autoreply() {
  711. exclude="[$|\`]"
  712. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  713. echo "Error: autoreply is not valid"
  714. log_event "$E_INVALID" "$EVENT"
  715. exit $E_INVALID
  716. fi
  717. }
  718. # Format validation controller
  719. validate_format(){
  720. for arg_name in $*; do
  721. eval arg=\$$arg_name
  722. if [ -z "$arg" ]; then
  723. echo "Error: argument $arg_name is not valid (empty)"
  724. log_event "$E_INVALID" "$EVENT"
  725. exit $E_INVALID
  726. fi
  727. case $arg_name in
  728. account) validate_format_username "$arg" "$arg_name" ;;
  729. antispam) validate_format_boolean "$arg" 'antispam' ;;
  730. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  731. autoreply) validate_format_autoreply "$arg" ;;
  732. backup) validate_format_domain "$arg" 'backup' ;;
  733. charset) validate_format_name "$arg" "$arg_name" ;;
  734. charsets) validate_format_common "$arg" 'charsets' ;;
  735. database) validate_format_database "$arg" 'database';;
  736. day) validate_format_mhdmw "$arg" $arg_name ;;
  737. dbpass) validate_format_password "$arg" ;;
  738. dbuser) validate_format_dbuser "$arg" 'db_user';;
  739. dkim) validate_format_boolean "$arg" 'dkim' ;;
  740. dkim_size) validate_format_key_size "$arg" ;;
  741. domain) validate_format_domain "$arg" 'domain';;
  742. dom_alias) validate_format_domain_alias "$arg" 'alias';;
  743. dvalue) validate_format_dvalue "$arg";;
  744. email) validate_format_email "$arg" ;;
  745. exp) validate_format_date "$arg" ;;
  746. extentions) validate_format_common "$arg" 'extentions' ;;
  747. fname) validate_format_name_s "$arg" "$arg_name" ;;
  748. forward) validate_format_email "$arg" ;;
  749. ftp_password) validate_format_password "$arg" ;;
  750. ftp_user) validate_format_username "$arg" "$arg_name" ;;
  751. host) validate_format_domain "$arg" "$arg_name" 'host';;
  752. hour) validate_format_mhdmw "$arg" $arg_name ;;
  753. id) validate_format_int "$arg" 'id' ;;
  754. interface) validate_format_interface "$arg" ;;
  755. ip) validate_format_ip "$arg" ;;
  756. ip_name) validate_format_domain "$arg" 'domain';;
  757. ip_status) validate_format_ip_status "$arg" ;;
  758. job) validate_format_int "$arg" 'job' ;;
  759. key) validate_format_username "$arg" "$arg_name" ;;
  760. lname) validate_format_name_s "$arg" "$arg_name" ;;
  761. malias) validate_format_username "$arg" "$arg_name" ;;
  762. mask) validate_format_ip "$arg" ;;
  763. max_db) validate_format_int "$arg" 'max db';;
  764. min) validate_format_mhdmw "$arg" $arg_name ;;
  765. month) validate_format_mhdmw "$arg" $arg_name ;;
  766. nat_ip) validate_format_ip "$arg" ;;
  767. newid) validate_format_int "$arg" 'id' ;;
  768. ns1) validate_format_domain "$arg" 'name_server';;
  769. ns2) validate_format_domain "$arg" 'name_server';;
  770. ns3) validate_format_domain "$arg" 'name_server';;
  771. ns4) validate_format_domain "$arg" 'name_server';;
  772. package) validate_format_name "$arg" "$arg_name" ;;
  773. password) validate_format_password "$arg" ;;
  774. port) validate_format_int "$arg" 'port' ;;
  775. quota) validate_format_int "$arg" 'quota' ;;
  776. restart) validate_format_boolean "$arg" 'restart' ;;
  777. record) validate_format_common "$arg" 'record';;
  778. rtype) validate_format_dns_type "$arg" ;;
  779. shell) validate_format_shell "$arg" ;;
  780. soa) validate_format_domain "$arg" 'soa_record';;
  781. stats_pass) validate_format_password "$arg" ;;
  782. stats_user) validate_format_username "$arg" "$arg_name" ;;
  783. template) validate_format_name "$arg" "$arg_name" ;;
  784. ttl) validate_format_int "$arg" 'ttl';;
  785. user) validate_format_username "$arg" "$arg_name" ;;
  786. wday) validate_format_mhdmw "$arg" $arg_name ;;
  787. esac
  788. done
  789. }