root/postman @ dfc48308
55a68712 | Marc Dequenes | #!/usr/bin/ruby -Ku
|
|
d32ee48a | Marc Dequenes | #--
|
|
# CyborgHood, a distributed system management software.
|
|||
# Copyright (c) 2009 Marc Dequènes (Duck) <Duck@DuckCorp.org>
|
|||
#
|
|||
# This program is free software: you can redistribute it and/or modify
|
|||
# it under the terms of the GNU General Public License as published by
|
|||
# the Free Software Foundation, either version 3 of the License, or
|
|||
# (at your option) any later version.
|
|||
#
|
|||
# This program is distributed in the hope that it will be useful,
|
|||
# but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|||
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|||
# GNU General Public License for more details.
|
|||
#
|
|||
# You should have received a copy of the GNU General Public License
|
|||
# along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|||
#++
|
|||
55a68712 | Marc Dequenes | # http://www.ruby-doc.org/stdlib/libdoc/net/imap/rdoc/index.html
|
|
2f325370 | Marc Dequenes | Dir.chdir(File.dirname(File.expand_path(__FILE__)))
|
|
55a68712 | Marc Dequenes | $: << "./lib"
|
|
#require 'socket'
|
|||
157c68c9 | Marc Dequenes | require 'tempfile'
|
|
55a68712 | Marc Dequenes | require 'shellwords'
|
|
bc4894ce | Marc Dequenes | require 'cyborghood/imap'
|
|
c427bfc7 | Marc Dequenes | require 'cyborghood/mail'
|
|
bc4894ce | Marc Dequenes | require 'cyborghood/objects'
|
|
4153cce4 | Marc Dequenes | require 'cyborghood/services/dns'
|
|
fba691ae | Marc Dequenes | require 'fileutils'
|
|
3f7a1eee | Marc Dequenes | ||
55a68712 | Marc Dequenes | #Socket.gethostname
|
|
dfc48308 | Marc Dequenes | module CyborgHood
|
|
class CommandParser
|
|||
def self.run(order)
|
|||
result_list = []
|
|||
order.commands.each do |cmdstr|
|
|||
logger.info "Executing command: #{cmdstr}"
|
|||
begin
|
|||
result = execute_cmd(order.user, cmdstr, order.refs)
|
|||
if result.nil?
|
|||
result = OpenStruct.new
|
|||
result.cmd = cmdstr
|
|||
result.ok = false
|
|||
result.message = "Command not recognized."
|
|||
result.refs = nil
|
|||
end
|
|||
rescue CyberError => e
|
|||
result = OpenStruct.new
|
|||
result.cmd = cmdstr
|
|||
result.ok = false
|
|||
result.message = e.message.capitalize + "."
|
|||
result.refs = nil
|
|||
rescue
|
|||
logger.warn "Command crashed: " + $!
|
|||
result = OpenStruct.new
|
|||
result.cmd = cmdstr
|
|||
result.ok = false
|
|||
result.message = "Internal error. Administrator is warned."
|
|||
result.refs = nil
|
|||
end
|
|||
tag = result.ok ? "SUCCESS" :"FAILURE"
|
|||
logger.debug "Command result: [#{tag}] #{result.message}"
|
|||
result_list << result
|
|||
3f7a1eee | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | result_list
|
|
55a68712 | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | private
|
|
55a68712 | Marc Dequenes | ||
dfc48308 | Marc Dequenes | def self.execute_cmd(user, cmdstr, refs)
|
|
cmdline = Shellwords.shellwords(cmdstr)
|
|||
subsys = cmdline.shift
|
|||
55a68712 | Marc Dequenes | ||
dfc48308 | Marc Dequenes | result = OpenStruct.new
|
|
result.cmd = cmdstr
|
|||
result.ok = false
|
|||
ok = true
|
|||
case subsys.upcase
|
|||
when "DNS"
|
|||
return if cmdline.empty?
|
|||
case cmdline.shift.upcase
|
|||
when "INFO"
|
|||
return unless cmdline.empty?
|
|||
c427bfc7 | Marc Dequenes | list = CyborgHood::DnsDomain.find_by_manager(user)
|
|
4153cce4 | Marc Dequenes | txt_list = list.collect{|z| z.cn }.sort.join(", ")
|
|
dfc48308 | Marc Dequenes | result.ok = true
|
|
result.message = "You are manager of the following zones: #{txt_list}."
|
|||
when "GET"
|
|||
return if cmdline.empty?
|
|||
case cmdline.shift.upcase
|
|||
when "ZONE"
|
|||
return if cmdline.empty?
|
|||
zone = cmdline.shift.downcase
|
|||
dom = CyborgHood::DnsDomain.new(zone)
|
|||
unless dom.hosted?
|
|||
result.message = "This zone is not hosted here."
|
|||
return result
|
|||
end
|
|||
unless dom.managed_by? user
|
|||
4153cce4 | Marc Dequenes | result.message = "You are not allowed to manage this zone."
|
|
dfc48308 | Marc Dequenes | return result
|
|
591ec1a2 | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | ||
srv_dns = CyborgHood::Services::DNS.new(zone)
|
|||
result.ok = true
|
|||
result.message = "Requested zone content attached."
|
|||
zone_ref = {:content => srv_dns.read_zone, :filename => "dnszone_#{zone}.txt"}.to_ostruct
|
|||
result.refs = [zone_ref]
|
|||
591ec1a2 | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | when "SET"
|
|
return if cmdline.empty?
|
|||
case cmdline.shift.upcase
|
|||
when "ZONE"
|
|||
return if cmdline.empty?
|
|||
zone = cmdline.shift.downcase
|
|||
dom = CyborgHood::DnsDomain.new(zone)
|
|||
unless dom.hosted?
|
|||
result.message = "This zone is not hosted here."
|
|||
return result
|
|||
end
|
|||
unless dom.managed_by? user
|
|||
result.message = "You are not allowed to manage this zone."
|
|||
return result
|
|||
end
|
|||
srv_dns = CyborgHood::Services::DNS.new(zone)
|
|||
return if cmdline.empty?
|
|||
content_ref = cmdline.shift.downcase
|
|||
return unless content_ref =~ /^@(\d+)$/
|
|||
part_ref = $1.to_i
|
|||
unless (1..refs.size).include? part_ref
|
|||
result.message = "Attachment number not found."
|
|||
return result
|
|||
end
|
|||
part = refs[part_ref]
|
|||
unless part.content_type == "text/plain"
|
|||
result.message = "Attachment has wrong content-type."
|
|||
return result
|
|||
end
|
|||
f = Tempfile.new(zone)
|
|||
f.write(part.body)
|
|||
f.close
|
|||
logger.debug "Created temporary zone file '#{f.path}'"
|
|||
srv_dns = CyborgHood::Services::DNS.new(zone)
|
|||
current_serial = srv_dns.serial
|
|||
logger.debug "Current serial: #{current_serial}"
|
|||
dns_result = srv_dns.check_zone_file(f.path)
|
|||
unless dns_result.ok
|
|||
result.message = "Invalid zone data."
|
|||
f.close!
|
|||
return result
|
|||
end
|
|||
logger.debug "New serial: #{dns_result.serial}"
|
|||
# allow new serial or missing serial (to allow creating a new zone or replacing a broken zone)
|
|||
unless current_serial.nil? or dns_result.serial > current_serial
|
|||
result.message = "Zone serial is not superior to current serial."
|
|||
f.close!
|
|||
return result
|
|||
end
|
|||
begin
|
|||
srv_dns.write_zone_from_file(f.path)
|
|||
logger.debug "zone changed"
|
|||
if srv_dns.reload_zone
|
|||
logger.debug "zone reloaded"
|
|||
result.ok = true
|
|||
result.message = "Zone updated."
|
|||
157c68c9 | Marc Dequenes | else
|
|
dfc48308 | Marc Dequenes | logger.warn "zone reload failed, replacing old content"
|
|
srv_dns.replace_zone_with_backup
|
|||
result.message = "Internal error. Administrator is warned."
|
|||
157c68c9 | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | rescue
|
|
logger.warn "Writing zone file failed"
|
|||
raise
|
|||
ensure
|
|||
f.close!
|
|||
157c68c9 | Marc Dequenes | end
|
|
end
|
|||
end
|
|||
55a68712 | Marc Dequenes | end
|
|
dfc48308 | Marc Dequenes | if result.message.nil?
|
|
# here fall lost souls
|
|||
nil
|
|||
else
|
|||
result
|
|||
end
|
|||
55a68712 | Marc Dequenes | end
|
|
end
|
|||
4153cce4 | Marc Dequenes | ||
55a68712 | Marc Dequenes | # not yet ready to be a real Cyborg
|
|
class Postman #< Cyborg
|
|||
def initialize
|
|||
# load config
|
|||
Config.load(self.human_name.downcase)
|
|||
@config = Config.instance
|
|||
0af9cada | Marc Dequenes | ldap_config = @config.ldap
|
|
ldap_config.logger = logger
|
|||
ActiveLdap::Base.establish_connection(ldap_config.marshal_dump)
|
|||
55a68712 | Marc Dequenes | # setup logs
|
|
unless @config.log.nil?
|
|||
logger.output_level(@config.log.console_level) unless @config.log.console_level.nil?
|
|||
logger.log_to_file(@config.log.file) unless @config.log.file.nil?
|
|||
end
|
|||
960373b7 | Marc Dequenes | @current_thread = Thread.current
|
|
125a6103 | Marc Dequenes | @stop_asap = false
|
|
960373b7 | Marc Dequenes | @waiting = false
|
|
125a6103 | Marc Dequenes | ||
55a68712 | Marc Dequenes | logger.info "Bot '#{self.human_name}' loaded"
|
|
end
|
|||
def run
|
|||
945de171 | Marc Dequenes | imap = IMAP.new(@config.imap)
|
|
960373b7 | Marc Dequenes | until @stop_asap
|
|
t = Time.now.to_i
|
|||
logger.debug "Starting mail check"
|
|||
check_mails(imap)
|
|||
logger.debug "Mail check finished"
|
|||
t2 = Time.now.to_i
|
|||
sleep_time = @config.imap.min_check_interval - (t2 - t)
|
|||
if sleep_time > 0
|
|||
logger.debug "Having a break before new check..."
|
|||
@waiting = true
|
|||
begin
|
|||
sleep(sleep_time)
|
|||
rescue
|
|||
end
|
|||
@waiting = false
|
|||
end
|
|||
end
|
|||
logger.info "Bot was asked to stop..." if @stop_asap
|
|||
logger.info "Bot terminating"
|
|||
end
|
|||
def check_mails(imap)
|
|||
945de171 | Marc Dequenes | imap.check_mail do |msg|
|
|
125a6103 | Marc Dequenes | if @stop_asap
|
|
logger.info "Bot was asked to stop..."
|
|||
break
|
|||
end
|
|||
d5a19360 | Marc Dequenes | mail = Mail.new(msg.content)
|
|
275e20ec | Marc Dequenes | logger.info "Received mail with ID '#{mail.message_id}': #{mail.from_addrs} -> #{mail.to_addrs} (#{mail.subject})"
|
|
c427bfc7 | Marc Dequenes | ||
960c259e | Marc Dequenes | # ignore mails not signed or encrypted
|
|
unless mail.is_pgp_signed? or mail.is_pgp_encrypted?
|
|||
logger.info "Mail not signed/encrypted or not RFC3156 compliant, ignoring..."
|
|||
d5a19360 | Marc Dequenes | msg.delete
|
|
55a68712 | Marc Dequenes | next
|
|
591ec1a2 | Marc Dequenes | end
|
|
55a68712 | Marc Dequenes | ||
960c259e | Marc Dequenes | logger.debug "RFC3156 content detected"
|
|
c427bfc7 | Marc Dequenes | begin
|
|
order = mail.parse
|
|||
rescue CyberError => e
|
|||
945de171 | Marc Dequenes | case e.severity
|
|
when :dangerous
|
|||
logger.fatal " (#{e.message})"
|
|||
exit 2
|
|||
when :unrecoverable
|
|||
logger.error "Internal processing error, skipping mail (#{e.message})"
|
|||
next
|
|||
when :ignorable
|
|||
end
|
|||
55a68712 | Marc Dequenes | end
|
|
c427bfc7 | Marc Dequenes | if order.nil?
|
|
logger.info "Mail is invalid, ignoring..."
|
|||
d5a19360 | Marc Dequenes | msg.delete
|
|
c427bfc7 | Marc Dequenes | next
|
|
7193ea94 | Marc Dequenes | elsif not order.ok
|
|
960c259e | Marc Dequenes | logger.info "Sending reply for rejected message (#{order.msg})"
|
|
7193ea94 | Marc Dequenes | mail_reply = mail.create_reply
|
|
09b32d70 | Marc Dequenes | mail_reply.set_content_type("text", "plain", {'charset' => "utf-8"})
|
|
mail_reply.set_disposition("inline")
|
|||
7193ea94 | Marc Dequenes | mail_reply.quoted_printable_body = "A message (ID: #{mail.message_id}) apparently from you was rejected for the following reason:\n #{order.msg}"
|
|
09b32d70 | Marc Dequenes | mail_reply.sign
|
|
abf4f28f | Marc Dequenes | mail_reply.crypt(order.user.keyFingerPrint) unless order.user.nil?
|
|
7193ea94 | Marc Dequenes | mail_reply.deliver
|
|
d5a19360 | Marc Dequenes | msg.delete
|
|
7193ea94 | Marc Dequenes | next
|
|
c427bfc7 | Marc Dequenes | end
|
|
960373b7 | Marc Dequenes | logger.debug "Message accepted, processing orders..."
|
|
4153cce4 | Marc Dequenes | result_list = CommandParser.run(order)
|
|
275e20ec | Marc Dequenes | ||
09b32d70 | Marc Dequenes | # create transcript
|
|
logger.debug "Preparing reply"
|
|||
4153cce4 | Marc Dequenes | reply_txt = "Hello #{order.user.cn},\n\nFollows the transcript of your commands:\n"
|
|
reply_attachments = []
|
|||
result_list.each do |result|
|
|||
reply_txt << "> #{result.cmd}\n"
|
|||
reply_txt << "#{result.message}\n"
|
|||
reply_attachments += result.refs unless result.refs.nil?
|
|||
end
|
|||
09b32d70 | Marc Dequenes | ||
# create mail
|
|||
logger.debug "Preparing mail"
|
|||
mail_reply = mail.create_reply
|
|||
4153cce4 | Marc Dequenes | if reply_attachments.empty?
|
|
09b32d70 | Marc Dequenes | transcript_part = mail_reply
|
|
4153cce4 | Marc Dequenes | else
|
|
56793619 | Marc Dequenes | mail_reply.set_content_type("multipart", "mixed", {'boundary' => TMail.new_boundary})
|
|
4153cce4 | Marc Dequenes | parts = []
|
|
30406d66 | Marc Dequenes | p = CyborgHood::Mail.new
|
|
09b32d70 | Marc Dequenes | transcript_part = p
|
|
4153cce4 | Marc Dequenes | mail_reply.parts << p
|
|
reply_attachments.each do |attachment|
|
|||
30406d66 | Marc Dequenes | p = CyborgHood::Mail.new
|
|
4153cce4 | Marc Dequenes | p.set_content_type("text", "plain", {'charset' => "utf-8"})
|
|
43dd8a57 | Marc Dequenes | p.set_disposition("attachment", {'filename' => attachment.filename})
|
|
p.quoted_printable_body = attachment.content
|
|||
4153cce4 | Marc Dequenes | mail_reply.parts << p
|
|
end
|
|||
56793619 | Marc Dequenes | end
|
|
09b32d70 | Marc Dequenes | # insert transcript
|
|
transcript_part.set_content_type("text", "plain", {'charset' => 'utf-8', 'format' => 'flowed'})
|
|||
transcript_part.set_disposition("inline")
|
|||
transcript_part.quoted_printable_body = reply_txt
|
|||
# send reply
|
|||
logger.debug "Sending mail"
|
|||
mail_reply.sign_and_crypt(order.user.keyFingerPrint)
|
|||
275e20ec | Marc Dequenes | mail_reply.deliver
|
|
d5a19360 | Marc Dequenes | ||
09b32d70 | Marc Dequenes | logger.info "Message processed completely, deleting"
|
|
d5a19360 | Marc Dequenes | msg.delete
|
|
55a68712 | Marc Dequenes | end
|
|
end
|
|||
def ask_to_stop
|
|||
125a6103 | Marc Dequenes | @stop_asap = true
|
|
960373b7 | Marc Dequenes | Thread.critical = true
|
|
@current_thread.raise if @waiting
|
|||
Thread.critical = false
|
|||
55a68712 | Marc Dequenes | end
|
|
end
|
|||
end
|
|||
bot = CyborgHood::Postman.new
|
|||
trap('INT') do
|
|||
bot.ask_to_stop
|
|||
end
|
|||
trap('TERM') do
|
|||
bot.ask_to_stop
|
|||
end
|
|||
bot.run
|