main.sh 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. HOMEDIR='/home'
  17. BACKUP='/backup'
  18. BACKUP_GZIP=5
  19. BACKUP_DISK_LIMIT=95
  20. BACKUP_LA_LIMIT=5
  21. RRD_STEP=300
  22. RRD_IFACE_EXCLUDE=lo
  23. BIN=$VESTA/bin
  24. USER_DATA=$VESTA/data/users/$user
  25. WEBTPL=$VESTA/data/templates/web
  26. DNSTPL=$VESTA/data/templates/dns
  27. RRD=$VESTA/web/rrd
  28. # Return codes
  29. OK=0
  30. E_ARGS=1
  31. E_INVALID=2
  32. E_NOTEXIST=3
  33. E_EXISTS=4
  34. E_SUSPENDED=5
  35. E_UNSUSPENDED=6
  36. E_INUSE=7
  37. E_LIMIT=8
  38. E_PASSWORD=9
  39. E_FORBIDEN=10
  40. E_DISABLED=11
  41. E_PARSING=12
  42. E_DISK=13
  43. E_LA=14
  44. E_FTP=15
  45. E_SSH=16
  46. E_DB=17
  47. E_RRD=18
  48. E_UPDATE=19
  49. E_RESTART=20
  50. # Log event function
  51. log_event() {
  52. echo "RC='$1' $2" >> $VESTA/log/system.log
  53. }
  54. # Log user history
  55. log_history() {
  56. touch $USER_DATA/history.log
  57. if [ '99' -lt "$(wc -l $USER_DATA/history.log |cut -f 1 -d ' ')" ]; then
  58. tail -n 99 $USER_DATA/history.log > $USER_DATA/history.log.mv
  59. mv -f $USER_DATA/history.log.mv $USER_DATA/history.log
  60. chmod 660 $USER_DATA/history.log
  61. fi
  62. echo "$1 UNDO='$2'" >> $USER_DATA/history.log
  63. }
  64. # Argument list checker
  65. check_args() {
  66. if [ "$1" -gt "$2" ]; then
  67. echo "Error: not enought arguments"
  68. echo "Usage: $SCRIPT $3"
  69. log_event "$E_ARGS" "$EVENT"
  70. exit $E_ARGS
  71. fi
  72. }
  73. # Subsystem checker
  74. is_system_enabled() {
  75. if [ -z "$1" ] || [ "$1" = no ]; then
  76. echo "Error: subsystem disabled"
  77. log_event "$E_DISABLED" "$EVENT"
  78. exit $E_DISABLED
  79. fi
  80. }
  81. # User package check
  82. is_package_full() {
  83. case "$1" in
  84. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  85. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  86. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  87. wc -l );;
  88. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  89. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  90. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  91. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  92. cut -f1 -d \ );;
  93. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  94. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  95. esac
  96. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  97. if [ "$used" -ge "$limit" ]; then
  98. echo "Error: Upgrade package"
  99. log_event "$E_LIMIT" "$EVENT"
  100. exit $E_LIMIT
  101. fi
  102. }
  103. # Random password generator
  104. gen_password() {
  105. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  106. lenght=10
  107. while [ ${n:=1} -le $lenght ]; do
  108. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  109. let n+=1
  110. done
  111. echo "$pass"
  112. }
  113. # Package existance check
  114. is_package_valid() {
  115. if [ -z "$1" ]; then
  116. pkg_dir="$VESTA/data/packages"
  117. fi
  118. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  119. echo "Error: package $package not exist"
  120. log_event "$E_NOTEXIST $EVENT"
  121. exit $E_NOTEXIST
  122. fi
  123. }
  124. # Validate system type
  125. is_type_valid() {
  126. if [ -z "$(echo $1 | grep -w $2)" ]; then
  127. echo "Error: $2 is unknown type"
  128. log_event "$E_INVALID" "$EVENT"
  129. exit $E_INVALID
  130. fi
  131. }
  132. # Check user backup settings
  133. is_backup_enabled() {
  134. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  135. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  136. echo "Error: user backup disabled"
  137. log_event "$E_DISABLED" "$EVENT"
  138. exit $E_DISABLED
  139. fi
  140. }
  141. # Check if object is free and can be created
  142. is_object_free() {
  143. if [ $2 = 'USER' ]; then
  144. if [ -d "$USER_DATA" ]; then
  145. object="OK"
  146. fi
  147. else
  148. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  149. fi
  150. if [ ! -z "$object" ]; then
  151. echo "Error: $2 with value $3 exists"
  152. log_event "$E_EXISTS" "$EVENT"
  153. exit $E_EXISTS
  154. fi
  155. }
  156. # Check if object exists and can be used
  157. is_object_valid() {
  158. if [ $2 = 'USER' ]; then
  159. if [ -d "$VESTA/data/users/$user" ]; then
  160. object="OK"
  161. fi
  162. else
  163. if [ $2 = 'DBHOST' ]; then
  164. object=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  165. else
  166. object=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  167. fi
  168. fi
  169. if [ -z "$object" ]; then
  170. echo "Error: $3 not exist"
  171. log_event "$E_NOTEXIST" "$EVENT"
  172. exit $E_NOTEXIST
  173. fi
  174. }
  175. # Check if object is supended
  176. is_object_suspended() {
  177. if [ $2 = 'USER' ]; then
  178. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  179. else
  180. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  181. fi
  182. if [ -z "$spnd" ]; then
  183. echo "Error: $1 $3 is not suspended"
  184. log_event "$E_SUSPENDED" "$EVENT"
  185. exit $E_SUSPENDED
  186. fi
  187. }
  188. # Check if object is unsupended
  189. is_object_unsuspended() {
  190. if [ $2 = 'USER' ]; then
  191. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  192. else
  193. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  194. fi
  195. if [ ! -z "$spnd" ]; then
  196. echo "Error: $1 $3 is already suspended"
  197. log_event "$E_UNSUSPENDED" "$EVENT"
  198. exit $E_UNSUSPENDED
  199. fi
  200. }
  201. # Check if object value is empty
  202. is_object_value_empty() {
  203. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  204. eval $str
  205. eval value=$4
  206. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  207. echo "Error: ${4//$}=$value (not empty)"
  208. log_event "$E_EXISTS" "$EVENT"
  209. exit $E_EXISTS
  210. fi
  211. }
  212. # Check if object value is empty
  213. is_object_value_exist() {
  214. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  215. eval $str
  216. eval value=$4
  217. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  218. echo "Error: ${4//$}=$value (not exist)"
  219. log_event "$E_NOTEXIST" "$EVENT"
  220. exit $E_NOTEXIST
  221. fi
  222. }
  223. # Get object value
  224. get_object_value() {
  225. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  226. eval "$object"
  227. eval echo $4
  228. }
  229. # Update object value
  230. update_object_value() {
  231. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  232. lnr=$(echo $row | cut -f 1 -d ':')
  233. object=$(echo $row | sed -e "s/^$lnr://")
  234. eval "$object"
  235. eval old="$4"
  236. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  237. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  238. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  239. $USER_DATA/$1.conf
  240. }
  241. # Search objects
  242. search_objects() {
  243. OLD_IFS="$IFS"
  244. IFS=$'\n'
  245. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  246. eval $line
  247. eval echo \$$4
  248. done
  249. IFS="$OLD_IFS"
  250. }
  251. # Get user value
  252. get_user_value() {
  253. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  254. }
  255. # Update user value in user.conf
  256. update_user_value() {
  257. key="${2//$}"
  258. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  259. if [ ! -z "$lnr" ]; then
  260. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  261. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  262. fi
  263. }
  264. # Increase user counter
  265. increase_user_value() {
  266. key="${2//$}"
  267. factor="${3-1}"
  268. conf="$VESTA/data/users/$1/user.conf"
  269. old=$(grep "$key=" $conf | cut -f 2 -d \')
  270. if [ -z "$old" ]; then
  271. old=0
  272. fi
  273. new=$((old + factor))
  274. sed -i "s/$key='$old'/$key='$new'/g" $conf
  275. }
  276. # Decrease user counter
  277. decrease_user_value() {
  278. key="${2//$}"
  279. factor="${3-1}"
  280. conf="$VESTA/data/users/$1/user.conf"
  281. old=$(grep "$key=" $conf | cut -f 2 -d \')
  282. if [ -z "$old" ]; then
  283. old=0
  284. fi
  285. if [ "$old" -le 1 ]; then
  286. new=0
  287. else
  288. new=$((old - factor))
  289. fi
  290. sed -i "s/$key='$old'/$key='$new'/g" $conf
  291. }
  292. # Json listing function
  293. json_list() {
  294. echo '{'
  295. fileds_count=$(echo $fields| wc -w )
  296. #for line in $(cat $conf); do
  297. while read line; do
  298. eval $line
  299. if [ -n "$data_output" ]; then
  300. echo -e ' },'
  301. fi
  302. i=1
  303. for field in $fields; do
  304. eval value=$field
  305. if [ $i -eq 1 ]; then
  306. (( ++i))
  307. echo -e "\t\"$value\": {"
  308. else
  309. if [ $i -lt $fileds_count ]; then
  310. (( ++i))
  311. echo -e "\t\t\"${field//$/}\": \"$value\","
  312. else
  313. echo -e "\t\t\"${field//$/}\": \"$value\""
  314. data_output=yes
  315. fi
  316. fi
  317. done
  318. done < $conf
  319. if [ "$data_output" = 'yes' ]; then
  320. echo -e ' }'
  321. fi
  322. echo -e '}'
  323. }
  324. # Shell listing function
  325. shell_list() {
  326. if [ -z "$nohead" ] ; then
  327. echo "${fields//$/}"
  328. for a in $fields; do
  329. echo -e "------ \c"
  330. done
  331. echo
  332. fi
  333. while read line ; do
  334. eval $line
  335. for field in $fields; do
  336. eval value=$field
  337. if [ -z "$value" ]; then
  338. value='NULL'
  339. fi
  340. echo -n "$value "
  341. done
  342. echo
  343. done < $conf
  344. }
  345. # Recalculate U_DISK value
  346. recalc_user_disk_usage() {
  347. u_usage=0
  348. if [ -f "$USER_DATA/web.conf" ]; then
  349. usage=0
  350. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  351. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  352. for disk_usage in $dusage; do
  353. usage=$((usage + disk_usage))
  354. done
  355. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  356. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  357. u_usage=$((u_usage + usage))
  358. fi
  359. if [ -f "$USER_DATA/mail.conf" ]; then
  360. usage=0
  361. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  362. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  363. for disk_usage in $dusage; do
  364. usage=$((usage + disk_usage))
  365. done
  366. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  367. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  368. u_usage=$((u_usage + usage))
  369. fi
  370. if [ -f "$USER_DATA/db.conf" ]; then
  371. usage=0
  372. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  373. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  374. for disk_usage in $dusage; do
  375. usage=$((usage + disk_usage))
  376. done
  377. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  378. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  379. u_usage=$((u_usage + usage))
  380. fi
  381. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  382. u_usage=$((u_usage + usage))
  383. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  384. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  385. }
  386. # Recalculate U_BANDWIDTH value
  387. recalc_user_bandwidth_usage() {
  388. usage=0
  389. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  390. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  391. for bandwidth in $bandwidth_usage; do
  392. usage=$((usage + bandwidth))
  393. done
  394. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  395. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  396. }
  397. # Get next cron job id
  398. get_next_cronjob() {
  399. if [ -z "$job" ]; then
  400. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  401. sort -n|tail -n1)
  402. job="$((curr_str +1))"
  403. fi
  404. }
  405. # Sort cron jobs by id
  406. sort_cron_jobs() {
  407. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  408. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  409. }
  410. # Sync cronjobs with system cron
  411. sync_cron_jobs() {
  412. source $USER_DATA/user.conf
  413. rm -f /var/spool/cron/$user
  414. if [ "$CRON_REPORTS" = 'yes' ]; then
  415. echo "MAILTO=$CONTACT" > /var/spool/cron/$user
  416. fi
  417. while read line; do
  418. eval $line
  419. if [ "$SUSPENDED" = 'no' ]; then
  420. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  421. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  422. >> /var/spool/cron/$user
  423. fi
  424. done < $USER_DATA/cron.conf
  425. }
  426. ### Format Validators ###
  427. # Shell
  428. validate_format_shell() {
  429. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  430. echo "Error: shell $1 is not valid"
  431. log_event "$E_INVALID" "$EVENT"
  432. exit $E_INVALID
  433. fi
  434. }
  435. # Password
  436. validate_format_password() {
  437. if [ "${#1}" -lt '6' ]; then
  438. echo "Error: password is too short"
  439. log_event "$E_INVALID" "$EVENT"
  440. exit $E_INVALID
  441. fi
  442. }
  443. # Integer
  444. validate_format_int() {
  445. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  446. echo "Error: int $1 is not valid"
  447. log_event "$E_INVALID" "$EVENT"
  448. exit $E_INVALID
  449. fi
  450. }
  451. # Boolean
  452. validate_format_boolean() {
  453. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  454. echo "Error: $2 $1 is not valid"
  455. log_event "$E_INVALID" "$EVENT"
  456. exit $E_INVALID
  457. fi
  458. }
  459. # Network interface
  460. validate_format_interface() {
  461. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  462. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  463. echo "Error: intreface $1 is not valid"
  464. log_event "$E_INVALID" "$EVENT"
  465. exit $E_INVALID
  466. fi
  467. }
  468. # IP address
  469. validate_format_ip() {
  470. valid_octets=0
  471. for octet in ${1//./ }; do
  472. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  473. ((++valid_octets))
  474. fi
  475. done
  476. if [ "$valid_octets" -lt 4 ]; then
  477. echo "Error: ip $1 is not valid"
  478. log_event "$E_INVALID" "$EVENT"
  479. exit $E_INVALID
  480. fi
  481. }
  482. # IP address status
  483. validate_format_ip_status() {
  484. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  485. echo "Error: ip_status $1 is not valid"
  486. log_event "$E_INVALID" "$EVENT"
  487. exit $E_INVALID
  488. fi
  489. }
  490. # Email address
  491. validate_format_email() {
  492. local_part=$(echo $1 | cut -s -f1 -d\@)
  493. remote_host=$(echo $1 | cut -s -f2 -d\@)
  494. mx_failed=1
  495. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  496. /usr/bin/host -t mx "$remote_host" &> /dev/null
  497. mx_failed="$?"
  498. fi
  499. if [ "$mx_failed" -eq 1 ]; then
  500. echo "Error: email $1 is not valid"
  501. log_event "$E_INVALID" "$EVENT"
  502. exit $E_INVALID
  503. fi
  504. }
  505. # Username
  506. validate_format_username() {
  507. if ! [[ "$1" =~ ^[0-Z]+(\.[0-Z]+)?$ ]] || [[ "${#1}" -gt 28 ]]; then
  508. echo "Error: $2 $1 is not valid"
  509. log_event "$E_INVALID" "$EVENT"
  510. exit $E_INVALID
  511. fi
  512. }
  513. # Domain
  514. validate_format_domain() {
  515. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  516. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  517. echo "Error: domain $1 is not valid"
  518. log_event "$E_INVALID" "$EVENT"
  519. exit $E_INVALID
  520. fi
  521. }
  522. # Domain alias
  523. validate_format_domain_alias() {
  524. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  525. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  526. echo "Error: domain alias $1 is not valid"
  527. log_event "$E_INVALID" "$EVENT"
  528. exit $E_INVALID
  529. fi
  530. }
  531. # Database
  532. validate_format_database() {
  533. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  534. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  535. echo "Error: database $1 is not valid"
  536. log_event "$E_INVALID" "$EVENT"
  537. exit $E_INVALID
  538. fi
  539. }
  540. # DNS type
  541. validate_format_dns_type() {
  542. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  543. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  544. echo "Error: dnstype $1 is not valid"
  545. log_event "$E_INVALID" "$EVENT"
  546. exit $E_INVALID
  547. fi
  548. }
  549. # DKIM key size
  550. validate_format_key_size() {
  551. known_size='128,256,512,768,1024,2048'
  552. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  553. echo "Error: key_size $1 is not valid"
  554. log_event "$E_INVALID" "$EVENT"
  555. exit $E_INVALID
  556. fi
  557. }
  558. # Minute / Hour / Day / Month / Day of Week
  559. validate_format_mhdmw() {
  560. limit=60
  561. check_format=''
  562. if [ "$2" = 'day' ]; then
  563. limit=31
  564. fi
  565. if [ "$2" = 'month' ]; then
  566. limit=12
  567. fi
  568. if [ "$2" = 'wday' ]; then
  569. limit=7
  570. fi
  571. if [ "$1" = '*' ]; then
  572. check_format='ok'
  573. fi
  574. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  575. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  576. check_format='ok'
  577. fi
  578. fi
  579. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  580. check_format='ok'
  581. fi
  582. if [ "$check_format" != 'ok' ]; then
  583. echo "Error: $2 $1 is not valid"
  584. log_event "$E_INVALID" "$EVENT"
  585. exit $E_INVALID
  586. fi
  587. }
  588. # Nginx static extention or DNS record
  589. validate_format_common() {
  590. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  591. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  592. echo "Error: $2 $1 is not valid"
  593. log_event "$E_INVALID" "$EVENT"
  594. exit $E_INVALID
  595. fi
  596. }
  597. # DNS record value
  598. validate_format_dvalue() {
  599. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  600. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  601. echo "Error: dvalue $1 is not valid"
  602. log_event "$E_INVALID" "$EVENT"
  603. exit $E_INVALID
  604. fi
  605. if [ "$rtype" = 'A' ]; then
  606. validate_format_ip "$1"
  607. fi
  608. if [ "$rtype" = 'NS' ]; then
  609. validate_format_domain "$1"
  610. fi
  611. if [ "$rtype" = 'MX' ]; then
  612. validate_format_domain "$1"
  613. validate_format_int "$priority"
  614. fi
  615. }
  616. # Date
  617. validate_format_date() {
  618. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  619. echo "Error: date $1 is not valid"
  620. log_event "$E_INVALID" "$EVENT"
  621. exit $E_INVALID
  622. fi
  623. }
  624. # Autoreply
  625. validate_format_autoreply() {
  626. exclude="[$|\`]"
  627. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  628. echo "Error: autoreply is not valid"
  629. log_event "$E_INVALID" "$EVENT"
  630. exit $E_INVALID
  631. fi
  632. }
  633. # Format validation controller
  634. validate_format(){
  635. for arg_name in $*; do
  636. eval arg=\$$arg_name
  637. if [ -z "$arg" ]; then
  638. echo "Error: argument $arg_name is not valid (empty)"
  639. log_event "$E_INVALID" "$EVENT"
  640. exit $E_INVALID
  641. fi
  642. case $arg_name in
  643. account) validate_format_username "$arg" "$arg_name" ;;
  644. antispam) validate_format_boolean "$arg" 'antispam' ;;
  645. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  646. autoreply) validate_format_autoreply "$arg" ;;
  647. backup) validate_format_date "$arg" ;;
  648. charset) validate_format_username "$arg" "$arg_name" ;;
  649. charsets) validate_format_common "$arg" 'charsets' ;;
  650. database) validate_format_database "$arg" ;;
  651. day) validate_format_mhdmw "$arg" $arg_name ;;
  652. dbpass) validate_format_password "$arg" ;;
  653. dbuser) validate_format_database "$arg" ;;
  654. dkim) validate_format_boolean "$arg" 'dkim' ;;
  655. dkim_size) validate_format_key_size "$arg" ;;
  656. domain) validate_format_domain "$arg" ;;
  657. dom_alias) validate_format_domain_alias "$arg" ;;
  658. dvalue) validate_format_dvalue "$arg";;
  659. email) validate_format_email "$arg" ;;
  660. exp) validate_format_date "$arg" ;;
  661. extentions) validate_format_common "$arg" 'extentions' ;;
  662. fname) validate_format_username "$arg" "$arg_name" ;;
  663. forward) validate_format_email "$arg" ;;
  664. host) validate_format_domain "$arg" "$arg_name" ;;
  665. hour) validate_format_mhdmw "$arg" $arg_name ;;
  666. id) validate_format_int "$arg" ;;
  667. interface) validate_format_interface "$arg" ;;
  668. ip) validate_format_ip "$arg" ;;
  669. ip_name) validate_format_domain "$arg" ;;
  670. ip_status) validate_format_ip_status "$arg" ;;
  671. job) validate_format_int "$arg" ;;
  672. key) validate_format_username "$arg" "$arg_name" ;;
  673. lname) validate_format_username "$arg" "$arg_name" ;;
  674. malias) validate_format_username "$arg" "$arg_name" ;;
  675. mask) validate_format_ip "$arg" ;;
  676. max_db) validate_format_int "$arg" ;;
  677. min) validate_format_mhdmw "$arg" $arg_name ;;
  678. month) validate_format_mhdmw "$arg" $arg_name ;;
  679. ns1) validate_format_domain "$arg" ;;
  680. ns2) validate_format_domain "$arg" ;;
  681. ns3) validate_format_domain "$arg" ;;
  682. ns4) validate_format_domain "$arg" ;;
  683. package) validate_format_username "$arg" "$arg_name" ;;
  684. password) validate_format_password "$arg" ;;
  685. port) validate_format_int "$arg" ;;
  686. quota) validate_format_int "$arg" ;;
  687. restart) validate_format_boolean "$arg" 'restart' ;;
  688. record) validate_format_common "$arg" 'record';;
  689. rtype) validate_format_dns_type "$arg" ;;
  690. shell) validate_format_shell "$arg" ;;
  691. soa) validate_format_domain "$arg" ;;
  692. stats_pass) validate_format_password "$arg" ;;
  693. stats_user) validate_format_username "$arg" "$arg_name" ;;
  694. template) validate_format_username "$arg" "$arg_name" ;;
  695. ttl) validate_format_int "$arg" ;;
  696. user) validate_format_username "$arg" "$arg_name" ;;
  697. wday) validate_format_mhdmw "$arg" $arg_name ;;
  698. esac
  699. done
  700. }