index.php 922 B

1234567891011121314151617181920212223242526272829303132333435363738394041424344
  1. <?php
  2. // Init
  3. error_reporting(NULL);
  4. ob_start();
  5. session_start();
  6. header('Content-Type: application/json');
  7. // Main include
  8. include($_SERVER['DOCUMENT_ROOT']."/inc/main.php");
  9. // Check token
  10. if ((!isset($_POST['token'])) || ($_SESSION['token'] != $_POST['token'])) {
  11. exit();
  12. }
  13. // Check user
  14. if ($_SESSION['user'] != 'admin') {
  15. exit;
  16. }
  17. $ipchain = $_POST['ipchain'];
  18. $action = $_POST['action'];
  19. switch ($action) {
  20. case 'delete': $cmd='v-delete-firewall-ban';
  21. break;
  22. default: exit;
  23. }
  24. foreach ($ipchain as $value) {
  25. list($ip,$chain) = explode(":",$value);
  26. $v_ip = escapeshellarg($ip);
  27. $v_chain = escapeshellarg($chain);
  28. exec (VESTA_CMD.$cmd." ".$v_ip." ".$v_chain, $output, $return_var);
  29. }
  30. $result = array(
  31. 'error' => $_SESSION['error_msg'],
  32. 'ok_msg' => $_SESSION['ok_msg']
  33. );
  34. echo json_encode($result);
  35. unset($_SESSION['error_msg']);
  36. unset($_SESSION['ok_msg']);