main.sh 25 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="$DATE $TIME $SCRIPT $A1 $A2 $A3 $A4 $A5 $A6 $A7 $A8 $A9"
  15. HOMEDIR='/home'
  16. BACKUP='/backup'
  17. BACKUP_GZIP=5
  18. BACKUP_DISK_LIMIT=95
  19. BACKUP_LA_LIMIT=5
  20. RRD_STEP=300
  21. RRD_IFACE_EXCLUDE=lo
  22. BIN=$VESTA/bin
  23. USER_DATA=$VESTA/data/users/$user
  24. WEBTPL=$VESTA/data/templates/web
  25. DNSTPL=$VESTA/data/templates/dns
  26. RRD=$VESTA/web/rrd
  27. if [ "$MAIL_SYSTEM" = 'exim4' ]; then
  28. MAIL_USER=Debian-exim
  29. else
  30. MAIL_USER=exim
  31. fi
  32. # Return codes
  33. OK=0
  34. E_ARGS=1
  35. E_INVALID=2
  36. E_NOTEXIST=3
  37. E_EXISTS=4
  38. E_SUSPENDED=5
  39. E_UNSUSPENDED=6
  40. E_INUSE=7
  41. E_LIMIT=8
  42. E_PASSWORD=9
  43. E_FORBIDEN=10
  44. E_DISABLED=11
  45. E_PARSING=12
  46. E_DISK=13
  47. E_LA=14
  48. E_CONNECT=15
  49. E_FTP=16
  50. E_DB=17
  51. E_RRD=18
  52. E_UPDATE=19
  53. E_RESTART=20
  54. # Log event function
  55. log_event() {
  56. if [ "$1" -eq 0 ]; then
  57. echo "$2" >> $VESTA/log/system.log
  58. else
  59. echo "$2 [Error $1]" >> $VESTA/log/error.log
  60. fi
  61. }
  62. # Log user history
  63. log_history() {
  64. cmd=$1
  65. undo=${2-no}
  66. log_user=${3-$user}
  67. log=$VESTA/data/users/$log_user/history.log
  68. touch $log
  69. if [ '99' -lt "$(wc -l $log |cut -f 1 -d ' ')" ]; then
  70. tail -n 49 $log > $log.moved
  71. mv -f $log.moved $log
  72. chmod 660 $log
  73. fi
  74. curr_str=$(grep "ID=" $log | cut -f 2 -d \' | sort -n | tail -n1)
  75. id="$((curr_str +1))"
  76. echo "ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'" >> $log
  77. }
  78. # Argument list checker
  79. check_args() {
  80. if [ "$1" -gt "$2" ]; then
  81. echo "Error: not enought arguments"
  82. echo "Usage: $SCRIPT $3"
  83. log_event "$E_ARGS" "$EVENT"
  84. exit $E_ARGS
  85. fi
  86. }
  87. # Subsystem checker
  88. is_system_enabled() {
  89. if [ -z "$1" ] || [ "$1" = no ]; then
  90. echo "Error: $2 is disabled in the vesta.conf"
  91. log_event "$E_DISABLED" "$EVENT"
  92. exit $E_DISABLED
  93. fi
  94. }
  95. # User package check
  96. is_package_full() {
  97. case "$1" in
  98. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  99. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  100. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  101. wc -l );;
  102. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  103. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  104. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  105. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  106. cut -f1 -d \ );;
  107. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  108. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  109. esac
  110. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  111. if [ "$used" -ge "$limit" ]; then
  112. echo "Error: Limit reached / Upgrade package"
  113. log_event "$E_LIMIT" "$EVENT"
  114. exit $E_LIMIT
  115. fi
  116. }
  117. # Random password generator
  118. gen_password() {
  119. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  120. lenght=10
  121. while [ ${n:=1} -le $lenght ]; do
  122. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  123. let n+=1
  124. done
  125. echo "$pass"
  126. }
  127. # Package existance check
  128. is_package_valid() {
  129. if [ -z "$1" ]; then
  130. pkg_dir="$VESTA/data/packages"
  131. fi
  132. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  133. echo "Error: package $package doesn't exist"
  134. log_event "$E_NOTEXIST $EVENT"
  135. exit $E_NOTEXIST
  136. fi
  137. }
  138. # Validate system type
  139. is_type_valid() {
  140. if [ -z "$(echo $1 | grep -w $2)" ]; then
  141. echo "Error: $2 is unknown type"
  142. log_event "$E_INVALID" "$EVENT"
  143. exit $E_INVALID
  144. fi
  145. }
  146. # Check if backup is available for user
  147. is_backup_available() {
  148. if [ "$user" != "$(echo $backup | cut -f 1 -d '.')" ]; then
  149. echo "Error: User $user don't have permission to use $backup"
  150. log_event "$E_FORBIDEN" "$EVENT"
  151. exit $E_FORBIDEN
  152. fi
  153. }
  154. # Check user backup settings
  155. is_backup_enabled() {
  156. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  157. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  158. echo "Error: user backup disabled"
  159. log_event "$E_DISABLED" "$EVENT"
  160. exit $E_DISABLED
  161. fi
  162. }
  163. # Check user backup settings
  164. is_backup_scheduled() {
  165. if [ -e "$VESTA/data/queue/backup.pipe" ]; then
  166. check_q=$(grep " $user " $VESTA/data/queue/backup.pipe | grep $1)
  167. if [ ! -z "$check_q" ]; then
  168. echo "Error: $1 is already scheduled"
  169. log_event "$E_EXISTS" "$EVENT"
  170. exit $E_EXISTS
  171. fi
  172. fi
  173. }
  174. # Check if object is new
  175. is_object_new() {
  176. if [ $2 = 'USER' ]; then
  177. if [ -d "$USER_DATA" ]; then
  178. object="OK"
  179. fi
  180. else
  181. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  182. fi
  183. if [ ! -z "$object" ]; then
  184. echo "Error: $2 with value $3 exists"
  185. log_event "$E_EXISTS" "$EVENT"
  186. exit $E_EXISTS
  187. fi
  188. }
  189. # Check if object exists and can be used
  190. is_object_valid() {
  191. if [ $2 = 'USER' ]; then
  192. if [ -d "$VESTA/data/users/$user" ]; then
  193. sobject="OK"
  194. fi
  195. else
  196. if [ $2 = 'DBHOST' ]; then
  197. sobject=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  198. else
  199. sobject=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  200. fi
  201. fi
  202. if [ -z "$sobject" ]; then
  203. echo "Error: $2 $3 doesn't exist"
  204. log_event "$E_NOTEXIST" "$EVENT"
  205. exit $E_NOTEXIST
  206. fi
  207. }
  208. # Check if object is supended
  209. is_object_suspended() {
  210. if [ $2 = 'USER' ]; then
  211. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  212. else
  213. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  214. fi
  215. if [ -z "$spnd" ]; then
  216. echo "Error: $(basename $1) $3 is not suspended"
  217. log_event "$E_SUSPENDED" "$EVENT"
  218. exit $E_SUSPENDED
  219. fi
  220. }
  221. # Check if object is unsupended
  222. is_object_unsuspended() {
  223. if [ $2 = 'USER' ]; then
  224. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  225. else
  226. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  227. fi
  228. if [ ! -z "$spnd" ]; then
  229. echo "Error: $(basename $1) $3 is already suspended"
  230. log_event "$E_UNSUSPENDED" "$EVENT"
  231. exit $E_UNSUSPENDED
  232. fi
  233. }
  234. # Check if object value is empty
  235. is_object_value_empty() {
  236. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  237. eval $str
  238. eval value=$4
  239. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  240. echo "Error: ${4//$}=$value (not empty)"
  241. log_event "$E_EXISTS" "$EVENT"
  242. exit $E_EXISTS
  243. fi
  244. }
  245. # Check if object value is empty
  246. is_object_value_exist() {
  247. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  248. eval $str
  249. eval value=$4
  250. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  251. echo "Error: ${4//$}=$value (doesn't exist)"
  252. log_event "$E_NOTEXIST" "$EVENT"
  253. exit $E_NOTEXIST
  254. fi
  255. }
  256. # Get object value
  257. get_object_value() {
  258. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  259. eval "$object"
  260. eval echo $4
  261. }
  262. # Update object value
  263. update_object_value() {
  264. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  265. lnr=$(echo $row | cut -f 1 -d ':')
  266. object=$(echo $row | sed "s/^$lnr://")
  267. eval "$object"
  268. eval old="$4"
  269. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  270. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  271. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  272. $USER_DATA/$1.conf
  273. }
  274. # Add object key
  275. add_object_key() {
  276. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  277. lnr=$(echo $row | cut -f 1 -d ':')
  278. object=$(echo $row | sed "s/^$lnr://")
  279. if [ -z "$(echo $object |grep $4=)" ]; then
  280. eval old="$4"
  281. sed -i "$lnr s/$5='/$4='' $5='/" $USER_DATA/$1.conf
  282. fi
  283. }
  284. # Search objects
  285. search_objects() {
  286. OLD_IFS="$IFS"
  287. IFS=$'\n'
  288. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  289. eval $line
  290. eval echo \$$4
  291. done
  292. IFS="$OLD_IFS"
  293. }
  294. # Get user value
  295. get_user_value() {
  296. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  297. }
  298. # Update user value in user.conf
  299. update_user_value() {
  300. key="${2//$}"
  301. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  302. if [ ! -z "$lnr" ]; then
  303. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  304. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  305. fi
  306. }
  307. # Increase user counter
  308. increase_user_value() {
  309. key="${2//$}"
  310. factor="${3-1}"
  311. conf="$VESTA/data/users/$1/user.conf"
  312. old=$(grep "$key=" $conf | cut -f 2 -d \')
  313. if [ -z "$old" ]; then
  314. old=0
  315. fi
  316. new=$((old + factor))
  317. sed -i "s/$key='$old'/$key='$new'/g" $conf
  318. }
  319. # Decrease user counter
  320. decrease_user_value() {
  321. key="${2//$}"
  322. factor="${3-1}"
  323. conf="$VESTA/data/users/$1/user.conf"
  324. old=$(grep "$key=" $conf | cut -f 2 -d \')
  325. if [ -z "$old" ]; then
  326. old=0
  327. fi
  328. if [ "$old" -le 1 ]; then
  329. new=0
  330. else
  331. new=$((old - factor))
  332. fi
  333. sed -i "s/$key='$old'/$key='$new'/g" $conf
  334. }
  335. # Json listing function
  336. json_list() {
  337. echo '{'
  338. fileds_count=$(echo $fields| wc -w )
  339. #for line in $(cat $conf); do
  340. while read line; do
  341. eval $line
  342. if [ -n "$data_output" ]; then
  343. echo -e ' },'
  344. fi
  345. i=1
  346. for field in $fields; do
  347. eval value=$field
  348. if [ $i -eq 1 ]; then
  349. (( ++i))
  350. echo -e "\t\"$value\": {"
  351. else
  352. if [ $i -lt $fileds_count ]; then
  353. (( ++i))
  354. echo -e "\t\t\"${field//$/}\": \"$value\","
  355. else
  356. echo -e "\t\t\"${field//$/}\": \"$value\""
  357. data_output=yes
  358. fi
  359. fi
  360. done
  361. done < $conf
  362. if [ "$data_output" = 'yes' ]; then
  363. echo -e ' }'
  364. fi
  365. echo -e '}'
  366. }
  367. # Shell listing function
  368. shell_list() {
  369. if [ -z "$nohead" ] ; then
  370. echo "${fields//$/}"
  371. for a in $fields; do
  372. echo -e "------ \c"
  373. done
  374. echo
  375. fi
  376. while read line ; do
  377. eval $line
  378. for field in $fields; do
  379. eval value=$field
  380. if [ -z "$value" ]; then
  381. value='NULL'
  382. fi
  383. echo -n "$value "
  384. done
  385. echo
  386. done < $conf
  387. }
  388. # Recalculate U_DISK value
  389. recalc_user_disk_usage() {
  390. u_usage=0
  391. if [ -f "$USER_DATA/web.conf" ]; then
  392. usage=0
  393. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  394. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  395. for disk_usage in $dusage; do
  396. usage=$((usage + disk_usage))
  397. done
  398. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  399. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  400. u_usage=$((u_usage + usage))
  401. fi
  402. if [ -f "$USER_DATA/mail.conf" ]; then
  403. usage=0
  404. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  405. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  406. for disk_usage in $dusage; do
  407. usage=$((usage + disk_usage))
  408. done
  409. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  410. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  411. u_usage=$((u_usage + usage))
  412. fi
  413. if [ -f "$USER_DATA/db.conf" ]; then
  414. usage=0
  415. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  416. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  417. for disk_usage in $dusage; do
  418. usage=$((usage + disk_usage))
  419. done
  420. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  421. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  422. u_usage=$((u_usage + usage))
  423. fi
  424. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  425. u_usage=$((u_usage + usage))
  426. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  427. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  428. }
  429. # Recalculate U_BANDWIDTH value
  430. recalc_user_bandwidth_usage() {
  431. usage=0
  432. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  433. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  434. for bandwidth in $bandwidth_usage; do
  435. usage=$((usage + bandwidth))
  436. done
  437. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  438. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  439. }
  440. # Get next cron job id
  441. get_next_cronjob() {
  442. if [ -z "$job" ]; then
  443. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  444. sort -n|tail -n1)
  445. job="$((curr_str +1))"
  446. fi
  447. }
  448. # Sort cron jobs by id
  449. sort_cron_jobs() {
  450. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  451. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  452. }
  453. # Sync cronjobs with system cron
  454. sync_cron_jobs() {
  455. source $USER_DATA/user.conf
  456. if [ -e "/var/spool/cron/crontabs" ]; then
  457. sys_cron="/var/spool/cron/crontabs/$user"
  458. else
  459. sys_cron="/var/spool/cron/$user"
  460. fi
  461. rm -f $sys_cron
  462. if [ "$CRON_REPORTS" = 'yes' ]; then
  463. echo "MAILTO=$CONTACT" > $sys_cron
  464. fi
  465. while read line; do
  466. eval $line
  467. if [ "$SUSPENDED" = 'no' ]; then
  468. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  469. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  470. >> $sys_cron
  471. fi
  472. done < $USER_DATA/cron.conf
  473. # Set proper permissions
  474. chown $user:$user $sys_cron
  475. chmod 600 $sys_cron
  476. }
  477. ### Format Validators ###
  478. # Shell
  479. validate_format_shell() {
  480. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  481. echo "Error: shell $1 is not valid"
  482. log_event "$E_INVALID" "$EVENT"
  483. exit $E_INVALID
  484. fi
  485. }
  486. # Password
  487. validate_format_password() {
  488. if [ "${#1}" -lt '6' ]; then
  489. echo "Error: password is too short"
  490. log_event "$E_INVALID" "$EVENT"
  491. exit $E_INVALID
  492. fi
  493. }
  494. # Integer
  495. validate_format_int() {
  496. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  497. echo "Error: $2 $1 is not valid"
  498. log_event "$E_INVALID" "$EVENT"
  499. exit $E_INVALID
  500. fi
  501. }
  502. # Boolean
  503. validate_format_boolean() {
  504. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  505. echo "Error: $2 $1 is not valid"
  506. log_event "$E_INVALID" "$EVENT"
  507. exit $E_INVALID
  508. fi
  509. }
  510. # Network interface
  511. validate_format_interface() {
  512. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  513. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  514. echo "Error: intreface $1 is not valid"
  515. log_event "$E_INVALID" "$EVENT"
  516. exit $E_INVALID
  517. fi
  518. }
  519. # IP address
  520. validate_format_ip() {
  521. valid_octets=0
  522. for octet in ${1//./ }; do
  523. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  524. ((++valid_octets))
  525. fi
  526. done
  527. if [ "$valid_octets" -lt 4 ]; then
  528. echo "Error: ip $1 is not valid"
  529. log_event "$E_INVALID" "$EVENT"
  530. exit $E_INVALID
  531. fi
  532. }
  533. # IP address status
  534. validate_format_ip_status() {
  535. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  536. echo "Error: ip_status $1 is not valid"
  537. log_event "$E_INVALID" "$EVENT"
  538. exit $E_INVALID
  539. fi
  540. }
  541. # Email address
  542. validate_format_email() {
  543. local_part=$(echo $1 | cut -s -f1 -d\@)
  544. remote_host=$(echo $1 | cut -s -f2 -d\@)
  545. mx_failed=1
  546. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  547. /usr/bin/host -t mx "$remote_host" &> /dev/null
  548. mx_failed="$?"
  549. fi
  550. if [ "$mx_failed" -eq 1 ]; then
  551. echo "Error: email $1 is not valid"
  552. log_event "$E_INVALID" "$EVENT"
  553. exit $E_INVALID
  554. fi
  555. }
  556. # Name
  557. validate_format_name() {
  558. if ! [[ "$1" =~ ^[[:alnum:]][-|\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  559. echo "Error: $2 $1 is not valid"
  560. log_event "$E_INVALID" "$EVENT"
  561. exit $E_INVALID
  562. fi
  563. }
  564. # Name with space
  565. validate_format_name_s() {
  566. if ! [[ "$1" =~ ^[[:alnum:]][-|\ |\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  567. echo "Error: $2 $1 is not valid"
  568. log_event "$E_INVALID" "$EVENT"
  569. exit $E_INVALID
  570. fi
  571. }
  572. # Username
  573. validate_format_username() {
  574. if [ "${#1}" -eq 1 ]; then
  575. if ! [[ "$1" =~ [a-z] ]]; then
  576. echo "Error: $2 $1 is not valid"
  577. exit 1
  578. fi
  579. else
  580. if ! [[ "$1" =~ ^[a-zA-Z0-9][-|\.|_|a-zA-Z0-9]{0,28}[a-zA-Z0-9]$ ]]
  581. then
  582. echo "Error: $2 $1 is not valid"
  583. exit 1
  584. fi
  585. fi
  586. }
  587. # Domain
  588. validate_format_domain() {
  589. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  590. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  591. echo "Error: $2 $1 is not valid"
  592. log_event "$E_INVALID" "$EVENT"
  593. exit $E_INVALID
  594. fi
  595. }
  596. # Domain alias
  597. validate_format_domain_alias() {
  598. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  599. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  600. echo "Error: domain alias $1 is not valid"
  601. log_event "$E_INVALID" "$EVENT"
  602. exit $E_INVALID
  603. fi
  604. }
  605. # Database
  606. validate_format_database() {
  607. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  608. if [[ "$1" =~ $exclude ]] || [ 65 -le ${#1} ]; then
  609. echo "Error: $2 $1 is not valid"
  610. log_event "$E_INVALID" "$EVENT"
  611. exit $E_INVALID
  612. fi
  613. }
  614. # Database user
  615. validate_format_dbuser() {
  616. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|/|\|\"|'|;|%|\`| ]"
  617. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  618. echo "Error: $2 $1 is not valid"
  619. log_event "$E_INVALID" "$EVENT"
  620. exit $E_INVALID
  621. fi
  622. }
  623. # DNS type
  624. validate_format_dns_type() {
  625. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  626. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  627. echo "Error: dnstype $1 is not valid"
  628. log_event "$E_INVALID" "$EVENT"
  629. exit $E_INVALID
  630. fi
  631. }
  632. # DKIM key size
  633. validate_format_key_size() {
  634. known_size='128,256,512,768,1024,2048'
  635. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  636. echo "Error: key_size $1 is not valid"
  637. log_event "$E_INVALID" "$EVENT"
  638. exit $E_INVALID
  639. fi
  640. }
  641. # Minute / Hour / Day / Month / Day of Week
  642. validate_format_mhdmw() {
  643. limit=60
  644. check_format=''
  645. if [ "$2" = 'day' ]; then
  646. limit=31
  647. fi
  648. if [ "$2" = 'month' ]; then
  649. limit=12
  650. fi
  651. if [ "$2" = 'wday' ]; then
  652. limit=7
  653. fi
  654. if [ "$1" = '*' ]; then
  655. check_format='ok'
  656. fi
  657. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  658. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  659. check_format='ok'
  660. fi
  661. fi
  662. if [[ "$1" =~ ^[0-9][-|,|0-9]{0,28}[0-9]$ ]]; then
  663. check_format='ok'
  664. crn_values=${1//,/ }
  665. crn_values=${crn_values//-/ }
  666. for crn_vl in $crn_values; do
  667. if [ "$crn_vl" -gt $limit ]; then
  668. check_format='invalid'
  669. fi
  670. done
  671. fi
  672. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  673. check_format='ok'
  674. fi
  675. if [ "$check_format" != 'ok' ]; then
  676. echo "Error: $2 $1 is not valid"
  677. log_event "$E_INVALID" "$EVENT"
  678. exit $E_INVALID
  679. fi
  680. }
  681. # proxy extention or DNS record
  682. validate_format_common() {
  683. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  684. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  685. echo "Error: $2 $1 is not valid"
  686. log_event "$E_INVALID" "$EVENT"
  687. exit $E_INVALID
  688. fi
  689. }
  690. # DNS record value
  691. validate_format_dvalue() {
  692. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  693. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  694. echo "Error: dvalue $1 is not valid"
  695. log_event "$E_INVALID" "$EVENT"
  696. exit $E_INVALID
  697. fi
  698. if [ "$rtype" = 'A' ]; then
  699. validate_format_ip "$1"
  700. fi
  701. if [ "$rtype" = 'NS' ]; then
  702. validate_format_domain "$1" 'ns_record'
  703. fi
  704. if [ "$rtype" = 'MX' ]; then
  705. validate_format_domain "$1" 'mx_record'
  706. validate_format_int "$priority" 'priority_record'
  707. fi
  708. }
  709. # Date
  710. validate_format_date() {
  711. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  712. echo "Error: date $1 is not valid"
  713. log_event "$E_INVALID" "$EVENT"
  714. exit $E_INVALID
  715. fi
  716. }
  717. # Autoreply
  718. validate_format_autoreply() {
  719. exclude="[$|\`]"
  720. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  721. echo "Error: autoreply is not valid"
  722. log_event "$E_INVALID" "$EVENT"
  723. exit $E_INVALID
  724. fi
  725. }
  726. # Format validation controller
  727. validate_format(){
  728. for arg_name in $*; do
  729. eval arg=\$$arg_name
  730. if [ -z "$arg" ]; then
  731. echo "Error: argument $arg_name is not valid (empty)"
  732. log_event "$E_INVALID" "$EVENT"
  733. exit $E_INVALID
  734. fi
  735. case $arg_name in
  736. account) validate_format_username "$arg" "$arg_name" ;;
  737. antispam) validate_format_boolean "$arg" 'antispam' ;;
  738. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  739. autoreply) validate_format_autoreply "$arg" ;;
  740. backup) validate_format_domain "$arg" 'backup' ;;
  741. charset) validate_format_name "$arg" "$arg_name" ;;
  742. charsets) validate_format_common "$arg" 'charsets' ;;
  743. database) validate_format_database "$arg" 'database';;
  744. day) validate_format_mhdmw "$arg" $arg_name ;;
  745. dbpass) validate_format_password "$arg" ;;
  746. dbuser) validate_format_dbuser "$arg" 'db_user';;
  747. dkim) validate_format_boolean "$arg" 'dkim' ;;
  748. dkim_size) validate_format_key_size "$arg" ;;
  749. domain) validate_format_domain "$arg" 'domain';;
  750. dom_alias) validate_format_domain_alias "$arg" 'alias';;
  751. dvalue) validate_format_dvalue "$arg";;
  752. email) validate_format_email "$arg" ;;
  753. exp) validate_format_date "$arg" ;;
  754. extentions) validate_format_common "$arg" 'extentions' ;;
  755. fname) validate_format_name_s "$arg" "$arg_name" ;;
  756. forward) validate_format_email "$arg" ;;
  757. ftp_password) validate_format_password "$arg" ;;
  758. ftp_user) validate_format_username "$arg" "$arg_name" ;;
  759. host) validate_format_domain "$arg" "$arg_name" 'host';;
  760. hour) validate_format_mhdmw "$arg" $arg_name ;;
  761. id) validate_format_int "$arg" 'id' ;;
  762. interface) validate_format_interface "$arg" ;;
  763. ip) validate_format_ip "$arg" ;;
  764. ip_name) validate_format_domain "$arg" 'domain';;
  765. ip_status) validate_format_ip_status "$arg" ;;
  766. job) validate_format_int "$arg" 'job' ;;
  767. key) validate_format_username "$arg" "$arg_name" ;;
  768. lname) validate_format_name_s "$arg" "$arg_name" ;;
  769. malias) validate_format_username "$arg" "$arg_name" ;;
  770. mask) validate_format_ip "$arg" ;;
  771. max_db) validate_format_int "$arg" 'max db';;
  772. min) validate_format_mhdmw "$arg" $arg_name ;;
  773. month) validate_format_mhdmw "$arg" $arg_name ;;
  774. nat_ip) validate_format_ip "$arg" ;;
  775. newid) validate_format_int "$arg" 'id' ;;
  776. ns1) validate_format_domain "$arg" 'name_server';;
  777. ns2) validate_format_domain "$arg" 'name_server';;
  778. ns3) validate_format_domain "$arg" 'name_server';;
  779. ns4) validate_format_domain "$arg" 'name_server';;
  780. package) validate_format_name "$arg" "$arg_name" ;;
  781. password) validate_format_password "$arg" ;;
  782. port) validate_format_int "$arg" 'port' ;;
  783. quota) validate_format_int "$arg" 'quota' ;;
  784. restart) validate_format_boolean "$arg" 'restart' ;;
  785. record) validate_format_common "$arg" 'record';;
  786. rtype) validate_format_dns_type "$arg" ;;
  787. shell) validate_format_shell "$arg" ;;
  788. soa) validate_format_domain "$arg" 'soa_record';;
  789. stats_pass) validate_format_password "$arg" ;;
  790. stats_user) validate_format_username "$arg" "$arg_name" ;;
  791. template) validate_format_name "$arg" "$arg_name" ;;
  792. ttl) validate_format_int "$arg" 'ttl';;
  793. user) validate_format_username "$arg" "$arg_name" ;;
  794. wday) validate_format_mhdmw "$arg" $arg_name ;;
  795. esac
  796. done
  797. }