main.sh 22 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789
  1. # Internal variables
  2. DATE=$(date +%F)
  3. TIME=$(date +%T)
  4. SCRIPT=$(basename $0)
  5. A1=$1
  6. A2=$2
  7. A3=$3
  8. A4=$4
  9. A5=$5
  10. A6=$6
  11. A7=$7
  12. A8=$8
  13. A9=$9
  14. EVENT="DATE='$DATE' TIME='$TIME' CMD='$SCRIPT' A1='$A1' A2='$A2' A3='$A3'"
  15. EVENT="$EVENT A4='$A4' A5='$A5' A6='$A6' A7='$A7' A8='$A8' A9='$A9'"
  16. HOMEDIR='/home'
  17. BACKUP='/backup'
  18. BACKUP_GZIP=5
  19. BACKUP_DISK_LIMIT=95
  20. BACKUP_LA_LIMIT=5
  21. RRD_STEP=300
  22. RRD_IFACE_EXCLUDE=lo
  23. BIN=$VESTA/bin
  24. USER_DATA=$VESTA/data/users/$user
  25. WEBTPL=$VESTA/data/templates/web
  26. DNSTPL=$VESTA/data/templates/dns
  27. RRD=$VESTA/web/rrd
  28. # Return codes
  29. OK=0
  30. E_ARGS=1
  31. E_INVALID=2
  32. E_NOTEXIST=3
  33. E_EXISTS=4
  34. E_SUSPENDED=5
  35. E_UNSUSPENDED=6
  36. E_INUSE=7
  37. E_LIMIT=8
  38. E_PASSWORD=9
  39. E_FORBIDEN=10
  40. E_DISABLED=11
  41. E_PARSING=12
  42. E_DISK=13
  43. E_LA=14
  44. E_FTP=15
  45. E_SSH=16
  46. E_DB=17
  47. E_RRD=18
  48. E_UPDATE=19
  49. E_RESTART=20
  50. # Log event function
  51. log_event() {
  52. echo "RC='$1' $2" >> $VESTA/log/system.log
  53. }
  54. # Log user history
  55. log_history() {
  56. cmd=$1
  57. undo=${2-no}
  58. log_user=${3-$user}
  59. log=$VESTA/data/users/$log_user/history.log
  60. touch $log
  61. if [ '99' -lt "$(wc -l $log |cut -f 1 -d ' ')" ]; then
  62. tail -n 49 $log > $log.moved
  63. mv -f $log.moved $log
  64. chmod 660 $log
  65. fi
  66. curr_str=$(grep "ID=" $log | cut -f 2 -d \' | sort -n | tail -n1)
  67. id="$((curr_str +1))"
  68. echo "ID='$id' DATE='$DATE' TIME='$TIME' CMD='$cmd' UNDO='$undo'" >> $log
  69. }
  70. # Argument list checker
  71. check_args() {
  72. if [ "$1" -gt "$2" ]; then
  73. echo "Error: not enought arguments"
  74. echo "Usage: $SCRIPT $3"
  75. log_event "$E_ARGS" "$EVENT"
  76. exit $E_ARGS
  77. fi
  78. }
  79. # Subsystem checker
  80. is_system_enabled() {
  81. if [ -z "$1" ] || [ "$1" = no ]; then
  82. echo "Error: subsystem disabled"
  83. log_event "$E_DISABLED" "$EVENT"
  84. exit $E_DISABLED
  85. fi
  86. }
  87. # User package check
  88. is_package_full() {
  89. case "$1" in
  90. WEB_DOMAINS) used=$(wc -l $USER_DATA/web.conf|cut -f1 -d \ );;
  91. WEB_ALIASES) used=$(grep "DOMAIN='$domain'" $USER_DATA/web.conf |\
  92. awk -F "ALIAS='" '{print $2}' | cut -f 1 -d \' | tr ',' '\n' |\
  93. wc -l );;
  94. DNS_DOMAINS) used=$(wc -l $USER_DATA/dns.conf |cut -f1 -d \ );;
  95. DNS_RECORDS) used=$(wc -l $USER_DATA/dns/$domain.conf |cut -f1 -d \ );;
  96. MAIL_DOMAINS) used=$(wc -l $USER_DATA/mail.conf |cut -f1 -d \ );;
  97. MAIL_ACCOUNTS) used=$(wc -l $USER_DATA/mail/$domain.conf |\
  98. cut -f1 -d \ );;
  99. DATABASES) used=$(wc -l $USER_DATA/db.conf |cut -f1 -d \ );;
  100. CRON_JOBS) used=$(wc -l $USER_DATA/cron.conf |cut -f1 -d \ );;
  101. esac
  102. limit=$(grep "^$1=" $USER_DATA/user.conf | cut -f 2 -d \' )
  103. if [ "$used" -ge "$limit" ]; then
  104. echo "Error: Limit reached / Upgrade package"
  105. log_event "$E_LIMIT" "$EVENT"
  106. exit $E_LIMIT
  107. fi
  108. }
  109. # Random password generator
  110. gen_password() {
  111. matrix='0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz'
  112. lenght=10
  113. while [ ${n:=1} -le $lenght ]; do
  114. pass="$pass${matrix:$(($RANDOM%${#matrix})):1}"
  115. let n+=1
  116. done
  117. echo "$pass"
  118. }
  119. # Package existance check
  120. is_package_valid() {
  121. if [ -z "$1" ]; then
  122. pkg_dir="$VESTA/data/packages"
  123. fi
  124. if [ ! -e "$pkg_dir/$package.pkg" ]; then
  125. echo "Error: package $package not exist"
  126. log_event "$E_NOTEXIST $EVENT"
  127. exit $E_NOTEXIST
  128. fi
  129. }
  130. # Validate system type
  131. is_type_valid() {
  132. if [ -z "$(echo $1 | grep -w $2)" ]; then
  133. echo "Error: $2 is unknown type"
  134. log_event "$E_INVALID" "$EVENT"
  135. exit $E_INVALID
  136. fi
  137. }
  138. # Check user backup settings
  139. is_backup_enabled() {
  140. BACKUPS=$(grep "^BACKUPS=" $USER_DATA/user.conf | cut -f2 -d \')
  141. if [ -z "$BACKUPS" ] || [[ "$BACKUPS" -le '0' ]]; then
  142. echo "Error: user backup disabled"
  143. log_event "$E_DISABLED" "$EVENT"
  144. exit $E_DISABLED
  145. fi
  146. }
  147. # Check user backup settings
  148. is_backup_scheduled() {
  149. if [ -e "$VESTA/data/queue/backup.pipe" ]; then
  150. check_backup=$(grep " $user " $VESTA/data/queue/backup.pipe)
  151. if [ ! -z "$check_backup" ]; then
  152. echo "Error: backup is already scheduled"
  153. log_event "$E_EXISTS" "$EVENT"
  154. exit $E_EXISTS
  155. fi
  156. fi
  157. }
  158. # Check if object is free and can be created
  159. is_object_free() {
  160. if [ $2 = 'USER' ]; then
  161. if [ -d "$USER_DATA" ]; then
  162. object="OK"
  163. fi
  164. else
  165. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  166. fi
  167. if [ ! -z "$object" ]; then
  168. echo "Error: $2 with value $3 exists"
  169. log_event "$E_EXISTS" "$EVENT"
  170. exit $E_EXISTS
  171. fi
  172. }
  173. # Check if object exists and can be used
  174. is_object_valid() {
  175. if [ $2 = 'USER' ]; then
  176. if [ -d "$VESTA/data/users/$user" ]; then
  177. sobject="OK"
  178. fi
  179. else
  180. if [ $2 = 'DBHOST' ]; then
  181. sobject=$(grep "HOST='$host'" $VESTA/conf/$type.conf)
  182. else
  183. sobject=$(grep "$2='$3'" $VESTA/data/users/$user/$1.conf)
  184. fi
  185. fi
  186. if [ -z "$sobject" ]; then
  187. echo "Error: $3 not exist"
  188. log_event "$E_NOTEXIST" "$EVENT"
  189. exit $E_NOTEXIST
  190. fi
  191. }
  192. # Check if object is supended
  193. is_object_suspended() {
  194. if [ $2 = 'USER' ]; then
  195. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  196. else
  197. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  198. fi
  199. if [ -z "$spnd" ]; then
  200. echo "Error: $1 $3 is not suspended"
  201. log_event "$E_SUSPENDED" "$EVENT"
  202. exit $E_SUSPENDED
  203. fi
  204. }
  205. # Check if object is unsupended
  206. is_object_unsuspended() {
  207. if [ $2 = 'USER' ]; then
  208. spnd=$(cat $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  209. else
  210. spnd=$(grep "$2='$3'" $USER_DATA/$1.conf|grep "SUSPENDED='yes'")
  211. fi
  212. if [ ! -z "$spnd" ]; then
  213. echo "Error: $1 $3 is already suspended"
  214. log_event "$E_UNSUSPENDED" "$EVENT"
  215. exit $E_UNSUSPENDED
  216. fi
  217. }
  218. # Check if object value is empty
  219. is_object_value_empty() {
  220. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  221. eval $str
  222. eval value=$4
  223. if [ ! -z "$value" ] && [ "$value" != 'no' ]; then
  224. echo "Error: ${4//$}=$value (not empty)"
  225. log_event "$E_EXISTS" "$EVENT"
  226. exit $E_EXISTS
  227. fi
  228. }
  229. # Check if object value is empty
  230. is_object_value_exist() {
  231. str=$(grep "$2='$3'" $USER_DATA/$1.conf)
  232. eval $str
  233. eval value=$4
  234. if [ -z "$value" ] || [ "$value" = 'no' ]; then
  235. echo "Error: ${4//$}=$value (not exist)"
  236. log_event "$E_NOTEXIST" "$EVENT"
  237. exit $E_NOTEXIST
  238. fi
  239. }
  240. # Get object value
  241. get_object_value() {
  242. object=$(grep "$2='$3'" $USER_DATA/$1.conf)
  243. eval "$object"
  244. eval echo $4
  245. }
  246. # Update object value
  247. update_object_value() {
  248. row=$(grep -n "$2='$3'" $USER_DATA/$1.conf)
  249. lnr=$(echo $row | cut -f 1 -d ':')
  250. object=$(echo $row | sed -e "s/^$lnr://")
  251. eval "$object"
  252. eval old="$4"
  253. old=$(echo "$old" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  254. new=$(echo "$5" | sed -e 's/\\/\\\\/g' -e 's/&/\\&/g' -e 's/\//\\\//g')
  255. sed -i "$lnr s/${4//$/}='${old//\*/\\*}'/${4//$/}='${new//\*/\\*}'/g" \
  256. $USER_DATA/$1.conf
  257. }
  258. # Search objects
  259. search_objects() {
  260. OLD_IFS="$IFS"
  261. IFS=$'\n'
  262. for line in $(grep $2=\'$3\' $USER_DATA/$1.conf); do
  263. eval $line
  264. eval echo \$$4
  265. done
  266. IFS="$OLD_IFS"
  267. }
  268. # Get user value
  269. get_user_value() {
  270. grep "^${1//$/}=" $USER_DATA/user.conf| cut -f 2 -d \'
  271. }
  272. # Update user value in user.conf
  273. update_user_value() {
  274. key="${2//$}"
  275. lnr=$(grep -n "^$key='" $VESTA/data/users/$1/user.conf |cut -f 1 -d ':')
  276. if [ ! -z "$lnr" ]; then
  277. sed -i "$lnr d" $VESTA/data/users/$1/user.conf
  278. sed -i "$lnr i\\$key='${3}'" $VESTA/data/users/$1/user.conf
  279. fi
  280. }
  281. # Increase user counter
  282. increase_user_value() {
  283. key="${2//$}"
  284. factor="${3-1}"
  285. conf="$VESTA/data/users/$1/user.conf"
  286. old=$(grep "$key=" $conf | cut -f 2 -d \')
  287. if [ -z "$old" ]; then
  288. old=0
  289. fi
  290. new=$((old + factor))
  291. sed -i "s/$key='$old'/$key='$new'/g" $conf
  292. }
  293. # Decrease user counter
  294. decrease_user_value() {
  295. key="${2//$}"
  296. factor="${3-1}"
  297. conf="$VESTA/data/users/$1/user.conf"
  298. old=$(grep "$key=" $conf | cut -f 2 -d \')
  299. if [ -z "$old" ]; then
  300. old=0
  301. fi
  302. if [ "$old" -le 1 ]; then
  303. new=0
  304. else
  305. new=$((old - factor))
  306. fi
  307. sed -i "s/$key='$old'/$key='$new'/g" $conf
  308. }
  309. # Json listing function
  310. json_list() {
  311. echo '{'
  312. fileds_count=$(echo $fields| wc -w )
  313. #for line in $(cat $conf); do
  314. while read line; do
  315. eval $line
  316. if [ -n "$data_output" ]; then
  317. echo -e ' },'
  318. fi
  319. i=1
  320. for field in $fields; do
  321. eval value=$field
  322. if [ $i -eq 1 ]; then
  323. (( ++i))
  324. echo -e "\t\"$value\": {"
  325. else
  326. if [ $i -lt $fileds_count ]; then
  327. (( ++i))
  328. echo -e "\t\t\"${field//$/}\": \"$value\","
  329. else
  330. echo -e "\t\t\"${field//$/}\": \"$value\""
  331. data_output=yes
  332. fi
  333. fi
  334. done
  335. done < $conf
  336. if [ "$data_output" = 'yes' ]; then
  337. echo -e ' }'
  338. fi
  339. echo -e '}'
  340. }
  341. # Shell listing function
  342. shell_list() {
  343. if [ -z "$nohead" ] ; then
  344. echo "${fields//$/}"
  345. for a in $fields; do
  346. echo -e "------ \c"
  347. done
  348. echo
  349. fi
  350. while read line ; do
  351. eval $line
  352. for field in $fields; do
  353. eval value=$field
  354. if [ -z "$value" ]; then
  355. value='NULL'
  356. fi
  357. echo -n "$value "
  358. done
  359. echo
  360. done < $conf
  361. }
  362. # Recalculate U_DISK value
  363. recalc_user_disk_usage() {
  364. u_usage=0
  365. if [ -f "$USER_DATA/web.conf" ]; then
  366. usage=0
  367. dusage=$(grep 'U_DISK=' $USER_DATA/web.conf |\
  368. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  369. for disk_usage in $dusage; do
  370. usage=$((usage + disk_usage))
  371. done
  372. d=$(grep "U_DISK_WEB='" $USER_DATA/user.conf | cut -f 2 -d \')
  373. sed -i "s/U_DISK_WEB='$d'/U_DISK_WEB='$usage'/g" $USER_DATA/user.conf
  374. u_usage=$((u_usage + usage))
  375. fi
  376. if [ -f "$USER_DATA/mail.conf" ]; then
  377. usage=0
  378. dusage=$(grep 'U_DISK=' $USER_DATA/mail.conf |\
  379. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  380. for disk_usage in $dusage; do
  381. usage=$((usage + disk_usage))
  382. done
  383. d=$(grep "U_DISK_MAIL='" $USER_DATA/user.conf | cut -f 2 -d \')
  384. sed -i "s/U_DISK_MAIL='$d'/U_DISK_MAIL='$usage'/g" $USER_DATA/user.conf
  385. u_usage=$((u_usage + usage))
  386. fi
  387. if [ -f "$USER_DATA/db.conf" ]; then
  388. usage=0
  389. dusage=$(grep 'U_DISK=' $USER_DATA/db.conf |\
  390. awk -F "U_DISK='" '{print $2}' | cut -f 1 -d \')
  391. for disk_usage in $dusage; do
  392. usage=$((usage + disk_usage))
  393. done
  394. d=$(grep "U_DISK_DB='" $USER_DATA/user.conf | cut -f 2 -d \')
  395. sed -i "s/U_DISK_DB='$d'/U_DISK_DB='$usage'/g" $USER_DATA/user.conf
  396. u_usage=$((u_usage + usage))
  397. fi
  398. usage=$(grep 'U_DIR_DISK=' $USER_DATA/user.conf | cut -f 2 -d "'")
  399. u_usage=$((u_usage + usage))
  400. old=$(grep "U_DISK='" $USER_DATA/user.conf | cut -f 2 -d \')
  401. sed -i "s/U_DISK='$old'/U_DISK='$u_usage'/g" $USER_DATA/user.conf
  402. }
  403. # Recalculate U_BANDWIDTH value
  404. recalc_user_bandwidth_usage() {
  405. usage=0
  406. bandwidth_usage=$(grep 'U_BANDWIDTH=' $USER_DATA/web.conf |\
  407. awk -F "U_BANDWIDTH='" '{print $2}'|cut -f 1 -d \')
  408. for bandwidth in $bandwidth_usage; do
  409. usage=$((usage + bandwidth))
  410. done
  411. old=$(grep "U_BANDWIDTH='" $USER_DATA/user.conf | cut -f 2 -d \')
  412. sed -i "s/U_BANDWIDTH='$old'/U_BANDWIDTH='$usage'/g" $USER_DATA/user.conf
  413. }
  414. # Get next cron job id
  415. get_next_cronjob() {
  416. if [ -z "$job" ]; then
  417. curr_str=$(grep "JOB=" $USER_DATA/cron.conf|cut -f 2 -d \'|\
  418. sort -n|tail -n1)
  419. job="$((curr_str +1))"
  420. fi
  421. }
  422. # Sort cron jobs by id
  423. sort_cron_jobs() {
  424. cat $USER_DATA/cron.conf |sort -n -k 2 -t \' > $USER_DATA/cron.tmp
  425. mv -f $USER_DATA/cron.tmp $USER_DATA/cron.conf
  426. }
  427. # Sync cronjobs with system cron
  428. sync_cron_jobs() {
  429. source $USER_DATA/user.conf
  430. rm -f /var/spool/cron/$user
  431. if [ "$CRON_REPORTS" = 'yes' ]; then
  432. echo "MAILTO=$CONTACT" > /var/spool/cron/$user
  433. fi
  434. while read line; do
  435. eval $line
  436. if [ "$SUSPENDED" = 'no' ]; then
  437. echo "$MIN $HOUR $DAY $MONTH $WDAY $CMD" |\
  438. sed -e "s/%quote%/'/g" -e "s/%dots%/:/g" \
  439. >> /var/spool/cron/$user
  440. fi
  441. done < $USER_DATA/cron.conf
  442. }
  443. ### Format Validators ###
  444. # Shell
  445. validate_format_shell() {
  446. if [ -z "$(grep -w $1 /etc/shells)" ]; then
  447. echo "Error: shell $1 is not valid"
  448. log_event "$E_INVALID" "$EVENT"
  449. exit $E_INVALID
  450. fi
  451. }
  452. # Password
  453. validate_format_password() {
  454. if [ "${#1}" -lt '6' ]; then
  455. echo "Error: password is too short"
  456. log_event "$E_INVALID" "$EVENT"
  457. exit $E_INVALID
  458. fi
  459. }
  460. # Integer
  461. validate_format_int() {
  462. if ! [[ "$1" =~ ^[0-9]+$ ]] ; then
  463. echo "Error: int $1 is not valid"
  464. log_event "$E_INVALID" "$EVENT"
  465. exit $E_INVALID
  466. fi
  467. }
  468. # Boolean
  469. validate_format_boolean() {
  470. if [ "$1" != 'yes' ] && [ "$1" != 'no' ]; then
  471. echo "Error: $2 $1 is not valid"
  472. log_event "$E_INVALID" "$EVENT"
  473. exit $E_INVALID
  474. fi
  475. }
  476. # Network interface
  477. validate_format_interface() {
  478. netdevices=$(cat /proc/net/dev | grep : | cut -f 1 -d : | tr -d ' ')
  479. if [ -z $(echo "$netdevices"| grep -x $1) ]; then
  480. echo "Error: intreface $1 is not valid"
  481. log_event "$E_INVALID" "$EVENT"
  482. exit $E_INVALID
  483. fi
  484. }
  485. # IP address
  486. validate_format_ip() {
  487. valid_octets=0
  488. for octet in ${1//./ }; do
  489. if [[ $octet =~ ^[0-9]{1,3}$ ]] && [[ $octet -le 255 ]]; then
  490. ((++valid_octets))
  491. fi
  492. done
  493. if [ "$valid_octets" -lt 4 ]; then
  494. echo "Error: ip $1 is not valid"
  495. log_event "$E_INVALID" "$EVENT"
  496. exit $E_INVALID
  497. fi
  498. }
  499. # IP address status
  500. validate_format_ip_status() {
  501. if [ -z "$(echo shared,dedicated | grep -w $1 )" ]; then
  502. echo "Error: ip_status $1 is not valid"
  503. log_event "$E_INVALID" "$EVENT"
  504. exit $E_INVALID
  505. fi
  506. }
  507. # Email address
  508. validate_format_email() {
  509. local_part=$(echo $1 | cut -s -f1 -d\@)
  510. remote_host=$(echo $1 | cut -s -f2 -d\@)
  511. mx_failed=1
  512. if [ ! -z "$remote_host" ] && [ ! -z "$local_part" ]; then
  513. /usr/bin/host -t mx "$remote_host" &> /dev/null
  514. mx_failed="$?"
  515. fi
  516. if [ "$mx_failed" -eq 1 ]; then
  517. echo "Error: email $1 is not valid"
  518. log_event "$E_INVALID" "$EVENT"
  519. exit $E_INVALID
  520. fi
  521. }
  522. # Name
  523. validate_format_name() {
  524. if ! [[ "$1" =~ ^[[:alnum:]][-|\.|_[:alnum:]]{0,28}[[:alnum:]]$ ]]; then
  525. echo "Error: $2 $1 is not valid"
  526. log_event "$E_INVALID" "$EVENT"
  527. exit $E_INVALID
  528. fi
  529. }
  530. # Username
  531. validate_format_username() {
  532. if ! [[ "$1" =~ ^[a-zA-Z0-9][-|\.|_|a-zA-Z0-9]{0,28}[a-zA-Z0-9]$ ]]; then
  533. echo "Error: $2 $1 is not valid"
  534. log_event "$E_INVALID" "$EVENT"
  535. exit $E_INVALID
  536. fi
  537. }
  538. # Domain
  539. validate_format_domain() {
  540. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  541. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  542. echo "Error: domain $1 is not valid"
  543. log_event "$E_INVALID" "$EVENT"
  544. exit $E_INVALID
  545. fi
  546. }
  547. # Domain alias
  548. validate_format_domain_alias() {
  549. exclude="[!|@|#|$|^|&|(|)|+|=|{|}|:|,|<|>|?|_|/|\|\"|'|;|%|\`| ]"
  550. if [[ "$1" =~ $exclude ]] || [[ "$1" =~ "^[0-9]+$" ]]; then
  551. echo "Error: domain alias $1 is not valid"
  552. log_event "$E_INVALID" "$EVENT"
  553. exit $E_INVALID
  554. fi
  555. }
  556. # Database
  557. validate_format_database() {
  558. exclude="[!|@|#|$|^|&|*|(|)|+|=|{|}|:|,|.|<|>|?|/|\|\"|'|;|%|\`| ]"
  559. if [[ "$1" =~ $exclude ]] || [ 17 -le ${#1} ]; then
  560. echo "Error: $2 $1 is not valid"
  561. log_event "$E_INVALID" "$EVENT"
  562. exit $E_INVALID
  563. fi
  564. }
  565. # DNS type
  566. validate_format_dns_type() {
  567. known_dnstype='A,AAAA,NS,CNAME,MX,TXT,SRV,DNSKEY,KEY,IPSECKEY,PTR,SPF'
  568. if [ -z "$(echo $known_dnstype | grep -w $1)" ]; then
  569. echo "Error: dnstype $1 is not valid"
  570. log_event "$E_INVALID" "$EVENT"
  571. exit $E_INVALID
  572. fi
  573. }
  574. # DKIM key size
  575. validate_format_key_size() {
  576. known_size='128,256,512,768,1024,2048'
  577. if [ -z "$(echo $known_size | grep -w $1)" ]; then
  578. echo "Error: key_size $1 is not valid"
  579. log_event "$E_INVALID" "$EVENT"
  580. exit $E_INVALID
  581. fi
  582. }
  583. # Minute / Hour / Day / Month / Day of Week
  584. validate_format_mhdmw() {
  585. limit=60
  586. check_format=''
  587. if [ "$2" = 'day' ]; then
  588. limit=31
  589. fi
  590. if [ "$2" = 'month' ]; then
  591. limit=12
  592. fi
  593. if [ "$2" = 'wday' ]; then
  594. limit=7
  595. fi
  596. if [ "$1" = '*' ]; then
  597. check_format='ok'
  598. fi
  599. if [[ "$1" =~ ^[\*]+[/]+[0-9] ]]; then
  600. if [ "$(echo $1 |cut -f 2 -d /)" -lt $limit ]; then
  601. check_format='ok'
  602. fi
  603. fi
  604. if [[ "$1" =~ ^[0-9]+$ ]] && [ "$1" -lt $limit ]; then
  605. check_format='ok'
  606. fi
  607. if [ "$check_format" != 'ok' ]; then
  608. echo "Error: $2 $1 is not valid"
  609. log_event "$E_INVALID" "$EVENT"
  610. exit $E_INVALID
  611. fi
  612. }
  613. # Nginx static extention or DNS record
  614. validate_format_common() {
  615. exclude="[!|#|$|^|&|(|)|+|=|{|}|:|<|>|?|/|\|\"|'|;|%|\`| ]"
  616. if [[ "$1" =~ $exclude ]] || [ 200 -le ${#1} ]; then
  617. echo "Error: $2 $1 is not valid"
  618. log_event "$E_INVALID" "$EVENT"
  619. exit $E_INVALID
  620. fi
  621. }
  622. # DNS record value
  623. validate_format_dvalue() {
  624. record_types="$(echo A,AAAA,NS,CNAME | grep -w "$rtype")"
  625. if [[ "$1" =~ [\ ] ]] && [ ! -z "$record_types" ]; then
  626. echo "Error: dvalue $1 is not valid"
  627. log_event "$E_INVALID" "$EVENT"
  628. exit $E_INVALID
  629. fi
  630. if [ "$rtype" = 'A' ]; then
  631. validate_format_ip "$1"
  632. fi
  633. if [ "$rtype" = 'NS' ]; then
  634. validate_format_domain "$1"
  635. fi
  636. if [ "$rtype" = 'MX' ]; then
  637. validate_format_domain "$1"
  638. validate_format_int "$priority"
  639. fi
  640. }
  641. # Date
  642. validate_format_date() {
  643. if ! [[ "$1" =~ ^[0-9][0-9][0-9][0-9]-[0-9][0-9]-[0-9][0-9]$ ]]; then
  644. echo "Error: date $1 is not valid"
  645. log_event "$E_INVALID" "$EVENT"
  646. exit $E_INVALID
  647. fi
  648. }
  649. # Autoreply
  650. validate_format_autoreply() {
  651. exclude="[$|\`]"
  652. if [[ "$1" =~ $exclude ]] || [ 10240 -le ${#1} ]; then
  653. echo "Error: autoreply is not valid"
  654. log_event "$E_INVALID" "$EVENT"
  655. exit $E_INVALID
  656. fi
  657. }
  658. # Format validation controller
  659. validate_format(){
  660. for arg_name in $*; do
  661. eval arg=\$$arg_name
  662. if [ -z "$arg" ]; then
  663. echo "Error: argument $arg_name is not valid (empty)"
  664. log_event "$E_INVALID" "$EVENT"
  665. exit $E_INVALID
  666. fi
  667. case $arg_name in
  668. account) validate_format_username "$arg" "$arg_name" ;;
  669. antispam) validate_format_boolean "$arg" 'antispam' ;;
  670. antivirus) validate_format_boolean "$arg" 'antivirus' ;;
  671. autoreply) validate_format_autoreply "$arg" ;;
  672. backup) validate_format_date "$arg" ;;
  673. charset) validate_format_name "$arg" "$arg_name" ;;
  674. charsets) validate_format_common "$arg" 'charsets' ;;
  675. database) validate_format_database "$arg" 'database';;
  676. day) validate_format_mhdmw "$arg" $arg_name ;;
  677. dbpass) validate_format_password "$arg" ;;
  678. dbuser) validate_format_database "$arg" 'db_user';;
  679. dkim) validate_format_boolean "$arg" 'dkim' ;;
  680. dkim_size) validate_format_key_size "$arg" ;;
  681. domain) validate_format_domain "$arg" ;;
  682. dom_alias) validate_format_domain_alias "$arg" ;;
  683. dvalue) validate_format_dvalue "$arg";;
  684. email) validate_format_email "$arg" ;;
  685. exp) validate_format_date "$arg" ;;
  686. extentions) validate_format_common "$arg" 'extentions' ;;
  687. fname) validate_format_name "$arg" "$arg_name" ;;
  688. forward) validate_format_email "$arg" ;;
  689. ftp_password) validate_format_password "$arg" ;;
  690. ftp_user) validate_format_username "$arg" "$arg_name" ;;
  691. host) validate_format_domain "$arg" "$arg_name" ;;
  692. hour) validate_format_mhdmw "$arg" $arg_name ;;
  693. id) validate_format_int "$arg" ;;
  694. interface) validate_format_interface "$arg" ;;
  695. ip) validate_format_ip "$arg" ;;
  696. ip_name) validate_format_domain "$arg" ;;
  697. ip_status) validate_format_ip_status "$arg" ;;
  698. job) validate_format_int "$arg" ;;
  699. key) validate_format_username "$arg" "$arg_name" ;;
  700. lname) validate_format_name "$arg" "$arg_name" ;;
  701. malias) validate_format_username "$arg" "$arg_name" ;;
  702. mask) validate_format_ip "$arg" ;;
  703. max_db) validate_format_int "$arg" ;;
  704. min) validate_format_mhdmw "$arg" $arg_name ;;
  705. month) validate_format_mhdmw "$arg" $arg_name ;;
  706. nat_ip) validate_format_ip "$arg" ;;
  707. ns1) validate_format_domain "$arg" ;;
  708. ns2) validate_format_domain "$arg" ;;
  709. ns3) validate_format_domain "$arg" ;;
  710. ns4) validate_format_domain "$arg" ;;
  711. package) validate_format_name "$arg" "$arg_name" ;;
  712. password) validate_format_password "$arg" ;;
  713. port) validate_format_int "$arg" ;;
  714. quota) validate_format_int "$arg" ;;
  715. restart) validate_format_boolean "$arg" 'restart' ;;
  716. record) validate_format_common "$arg" 'record';;
  717. rtype) validate_format_dns_type "$arg" ;;
  718. shell) validate_format_shell "$arg" ;;
  719. soa) validate_format_domain "$arg" ;;
  720. stats_pass) validate_format_password "$arg" ;;
  721. stats_user) validate_format_username "$arg" "$arg_name" ;;
  722. template) validate_format_name "$arg" "$arg_name" ;;
  723. ttl) validate_format_int "$arg" ;;
  724. user) validate_format_username "$arg" "$arg_name" ;;
  725. wday) validate_format_mhdmw "$arg" $arg_name ;;
  726. esac
  727. done
  728. }