067bce56e81e550f2a6dafe7859f3e120cf518c8
1 #!/usr/bin/perl
2 #===============================================================================
3 #
4 # FILE: gosa-sd
5 #
6 # USAGE: ./gosa-sd
7 #
8 # DESCRIPTION:
9 #
10 # OPTIONS: ---
11 # REQUIREMENTS: libconfig-inifiles-perl libcrypt-rijndael-perl libxml-simple-perl
12 # libdata-dumper-simple-perl libdbd-sqlite3-perl libnet-ldap-perl
13 # libpoe-perl
14 # BUGS: ---
15 # NOTES:
16 # AUTHOR: (Andreas Rettenberger), <rettenberger@gonicus.de>
17 # COMPANY:
18 # VERSION: 1.0
19 # CREATED: 12.09.2007 08:54:41 CEST
20 # REVISION: ---
21 #===============================================================================
24 use strict;
25 use warnings;
26 use Getopt::Long;
27 use Config::IniFiles;
28 use POSIX;
30 use Fcntl;
31 use IO::Socket::INET;
32 use IO::Handle;
33 use IO::Select;
34 use Symbol qw(qualify_to_ref);
35 use Crypt::Rijndael;
36 use MIME::Base64;
37 use Digest::MD5 qw(md5 md5_hex md5_base64);
38 use XML::Simple;
39 use Data::Dumper;
40 use Sys::Syslog qw( :DEFAULT setlogsock);
41 use Cwd;
42 use File::Spec;
43 use File::Basename;
44 use File::Find;
45 use File::Copy;
46 use File::Path;
47 use GOSA::DBsqlite;
48 use GOSA::GosaSupportDaemon;
49 use POE qw(Component::Server::TCP Wheel::Run Filter::Reference);
50 use Net::LDAP;
51 use Net::LDAP::Util qw(:escape);
53 my $modules_path = "/usr/lib/gosa-si/modules";
54 use lib "/usr/lib/gosa-si/modules";
56 # TODO es gibt eine globale funktion get_ldap_handle
57 # - ist in einer session dieses ldap handle schon vorhanden, wird es zurückgegeben
58 # - ist es nicht vorhanden, wird es erzeugt, im heap für spätere ldap anfragen gespeichert und zurückgegeben
59 # - sessions die kein ldap handle brauchen, sollen auch keins haben
60 # - wird eine session geschlossen, muss das ldap verbindung vorher beendet werden
61 our $global_kernel;
63 my (%cfg_defaults, $foreground, $verbose, $ping_timeout);
64 my ($bus_activ, $bus, $msg_to_bus, $bus_cipher);
65 my ($server);
66 my ($gosa_server, $job_queue_timeout, $job_queue_loop_delay);
67 my ($messaging_db_loop_delay);
68 my ($known_modules);
69 my ($pid_file, $procid, $pid, $log_file);
70 my ($arp_activ, $arp_fifo);
71 my ($xml);
72 my $sources_list;
73 my $max_clients;
74 my %repo_files=();
75 my $repo_path;
76 my %repo_dirs=();
77 # variables declared in config file are always set to 'our'
78 our (%cfg_defaults, $log_file, $pid_file,
79 $server_ip, $server_port, $SIPackages_key,
80 $arp_activ, $gosa_unit_tag,
81 $GosaPackages_key, $gosa_ip, $gosa_port, $gosa_timeout,
82 );
84 # additional variable which should be globaly accessable
85 our $server_address;
86 our $server_mac_address;
87 our $bus_address;
88 our $gosa_address;
89 our $no_bus;
90 our $no_arp;
91 our $verbose;
92 our $forground;
93 our $cfg_file;
94 #our ($ldap_handle, $ldap_uri, $ldap_base, $ldap_admin_dn, $ldap_admin_password, $ldap_server_dn);
95 our ($ldap_uri, $ldap_base, $ldap_admin_dn, $ldap_admin_password, $ldap_server_dn);
98 # specifies the verbosity of the daemon_log
99 $verbose = 0 ;
101 # if foreground is not null, script will be not forked to background
102 $foreground = 0 ;
104 # specifies the timeout seconds while checking the online status of a registrating client
105 $ping_timeout = 5;
107 $no_bus = 0;
108 $bus_activ = "true";
109 $no_arp = 0;
110 my $packages_list_under_construction = "/tmp/packages_list_creation_in_progress";
111 my @packages_list_statements;
112 my $watch_for_new_jobs_in_progress = 0;
114 our $prg= basename($0);
116 # holds all gosa jobs
117 our $job_db;
118 our $job_queue_tn = 'jobs';
119 my $job_queue_file_name;
120 my @job_queue_col_names = ("id INTEGER PRIMARY KEY",
121 "timestamp DEFAULT 'none'",
122 "status DEFAULT 'none'",
123 "result DEFAULT 'none'",
124 "progress DEFAULT 'none'",
125 "headertag DEFAULT 'none'",
126 "targettag DEFAULT 'none'",
127 "xmlmessage DEFAULT 'none'",
128 "macaddress DEFAULT 'none'",
129 "plainname DEFAULT 'none'",
130 );
132 # holds all other gosa-sd as well as the gosa-sd-bus
133 our $known_server_db;
134 our $known_server_tn = "known_server";
135 my $known_server_file_name;
136 my @known_server_col_names = ("hostname", "status", "hostkey", "timestamp");
138 # holds all registrated clients
139 our $known_clients_db;
140 our $known_clients_tn = "known_clients";
141 my $known_clients_file_name;
142 my @known_clients_col_names = ("hostname", "status", "hostkey", "timestamp", "macaddress", "events");
144 # holds all logged in user at each client
145 our $login_users_db;
146 our $login_users_tn = "login_users";
147 my $login_users_file_name;
148 my @login_users_col_names = ("client", "user", "timestamp");
150 # holds all fai server, the debian release and tag
151 our $fai_server_db;
152 our $fai_server_tn = "fai_server";
153 my $fai_server_file_name;
154 our @fai_server_col_names = ("timestamp", "server", "release", "sections", "tag");
156 our $fai_release_db;
157 our $fai_release_tn = "fai_release";
158 my $fai_release_file_name;
159 our @fai_release_col_names = ("timestamp", "release", "class", "type", "state");
161 # holds all packages available from different repositories
162 our $packages_list_db;
163 our $packages_list_tn = "packages_list";
164 my $packages_list_file_name;
165 our @packages_list_col_names = ("distribution", "package", "version", "section", "description", "template", "timestamp");
166 my $outdir = "/tmp/packages_list_db";
167 my $arch = "i386";
169 # holds all messages which should be delivered to a user
170 our $messaging_db;
171 our $messaging_tn = "messaging";
172 our @messaging_col_names = ("id INTEGER", "subject", "message_from", "message_to",
173 "flag", "direction", "delivery_time", "message", "timestamp" );
174 my $messaging_file_name;
176 # path to directory to store client install log files
177 our $client_fai_log_dir = "/var/log/fai";
179 # queue which stores taskes until one of the $max_children children are ready to process the task
180 my @tasks = qw();
181 my $max_children = 2;
184 %cfg_defaults = (
185 "general" => {
186 "log-file" => [\$log_file, "/var/run/".$prg.".log"],
187 "pid-file" => [\$pid_file, "/var/run/".$prg.".pid"],
188 },
189 "bus" => {
190 "activ" => [\$bus_activ, "true"],
191 },
192 "server" => {
193 "port" => [\$server_port, "20081"],
194 "known-clients" => [\$known_clients_file_name, '/var/lib/gosa-si/clients.db' ],
195 "known-servers" => [\$known_server_file_name, '/var/lib/gosa-si/servers.db'],
196 "login-users" => [\$login_users_file_name, '/var/lib/gosa-si/users.db'],
197 "fai-server" => [\$fai_server_file_name, '/var/lib/gosa-si/fai_server.db'],
198 "fai-release" => [\$fai_release_file_name, '/var/lib/gosa-si/fai_release.db'],
199 "packages-list" => [\$packages_list_file_name, '/var/lib/gosa-si/packages.db'],
200 "messaging" => [\$messaging_file_name, '/var/lib/gosa-si/messaging.db'],
201 "source-list" => [\$sources_list, '/etc/apt/sources.list'],
202 "repo-path" => [\$repo_path, '/srv/www/repository'],
203 "ldap-uri" => [\$ldap_uri, ""],
204 "ldap-base" => [\$ldap_base, ""],
205 "ldap-admin-dn" => [\$ldap_admin_dn, ""],
206 "ldap-admin-password" => [\$ldap_admin_password, ""],
207 "gosa-unit-tag" => [\$gosa_unit_tag, ""],
208 "max-clients" => [\$max_clients, 10],
209 },
210 "GOsaPackages" => {
211 "ip" => [\$gosa_ip, "0.0.0.0"],
212 "port" => [\$gosa_port, "20082"],
213 "job-queue" => [\$job_queue_file_name, '/var/lib/gosa-si/jobs.db'],
214 "job-queue-loop-delay" => [\$job_queue_loop_delay, 3],
215 "messaging-db-loop-delay" => [\$messaging_db_loop_delay, 3],
216 "key" => [\$GosaPackages_key, "none"],
217 },
218 "SIPackages" => {
219 "key" => [\$SIPackages_key, "none"],
220 },
221 );
224 #=== FUNCTION ================================================================
225 # NAME: usage
226 # PARAMETERS: nothing
227 # RETURNS: nothing
228 # DESCRIPTION: print out usage text to STDERR
229 #===============================================================================
230 sub usage {
231 print STDERR << "EOF" ;
232 usage: $prg [-hvf] [-c config]
234 -h : this (help) message
235 -c <file> : config file
236 -f : foreground, process will not be forked to background
237 -v : be verbose (multiple to increase verbosity)
238 -no-bus : starts $prg without connection to bus
239 -no-arp : starts $prg without connection to arp module
241 EOF
242 print "\n" ;
243 }
246 #=== FUNCTION ================================================================
247 # NAME: read_configfile
248 # PARAMETERS: cfg_file - string -
249 # RETURNS: nothing
250 # DESCRIPTION: read cfg_file and set variables
251 #===============================================================================
252 sub read_configfile {
253 my $cfg;
254 if( defined( $cfg_file) && ( (-s $cfg_file) > 0 )) {
255 if( -r $cfg_file ) {
256 $cfg = Config::IniFiles->new( -file => $cfg_file );
257 } else {
258 print STDERR "Couldn't read config file!\n";
259 }
260 } else {
261 $cfg = Config::IniFiles->new() ;
262 }
263 foreach my $section (keys %cfg_defaults) {
264 foreach my $param (keys %{$cfg_defaults{ $section }}) {
265 my $pinfo = $cfg_defaults{ $section }{ $param };
266 ${@$pinfo[ 0 ]} = $cfg->val( $section, $param, @$pinfo[ 1 ] );
267 }
268 }
269 }
272 #=== FUNCTION ================================================================
273 # NAME: logging
274 # PARAMETERS: level - string - default 'info'
275 # msg - string -
276 # facility - string - default 'LOG_DAEMON'
277 # RETURNS: nothing
278 # DESCRIPTION: function for logging
279 #===============================================================================
280 sub daemon_log {
281 # log into log_file
282 my( $msg, $level ) = @_;
283 if(not defined $msg) { return }
284 if(not defined $level) { $level = 1 }
285 if(defined $log_file){
286 open(LOG_HANDLE, ">>$log_file");
287 if(not defined open( LOG_HANDLE, ">>$log_file" )) {
288 print STDERR "cannot open $log_file: $!";
289 return }
290 chomp($msg);
291 $msg =~s/\n//g; # no newlines are allowed in log messages, this is important for later log parsing
292 if($level <= $verbose){
293 my ($seconds, $minutes, $hours, $monthday, $month,
294 $year, $weekday, $yearday, $sommertime) = localtime(time);
295 $hours = $hours < 10 ? $hours = "0".$hours : $hours;
296 $minutes = $minutes < 10 ? $minutes = "0".$minutes : $minutes;
297 $seconds = $seconds < 10 ? $seconds = "0".$seconds : $seconds;
298 my @monthnames = ("Jan", "Feb", "Mar", "Apr", "May", "Jun", "Jul", "Aug", "Sep", "Oct", "Nov", "Dec");
299 $month = $monthnames[$month];
300 $monthday = $monthday < 10 ? $monthday = "0".$monthday : $monthday;
301 $year+=1900;
302 my $name = $prg;
304 my $log_msg = "$month $monthday $hours:$minutes:$seconds $name $msg\n";
305 print LOG_HANDLE $log_msg;
306 if( $foreground ) {
307 print STDERR $log_msg;
308 }
309 }
310 close( LOG_HANDLE );
311 }
312 }
315 #=== FUNCTION ================================================================
316 # NAME: check_cmdline_param
317 # PARAMETERS: nothing
318 # RETURNS: nothing
319 # DESCRIPTION: validates commandline parameter
320 #===============================================================================
321 sub check_cmdline_param () {
322 my $err_config;
323 my $err_counter = 0;
324 if(not defined($cfg_file)) {
325 $cfg_file = "/etc/gosa-si/server.conf";
326 if(! -r $cfg_file) {
327 $err_config = "please specify a config file";
328 $err_counter += 1;
329 }
330 }
331 if( $err_counter > 0 ) {
332 &usage( "", 1 );
333 if( defined( $err_config)) { print STDERR "$err_config\n"}
334 print STDERR "\n";
335 exit( -1 );
336 }
337 }
340 #=== FUNCTION ================================================================
341 # NAME: check_pid
342 # PARAMETERS: nothing
343 # RETURNS: nothing
344 # DESCRIPTION: handels pid processing
345 #===============================================================================
346 sub check_pid {
347 $pid = -1;
348 # Check, if we are already running
349 if( open(LOCK_FILE, "<$pid_file") ) {
350 $pid = <LOCK_FILE>;
351 if( defined $pid ) {
352 chomp( $pid );
353 if( -f "/proc/$pid/stat" ) {
354 my($stat) = `cat /proc/$pid/stat` =~ m/$pid \((.+)\).*/;
355 if( $stat ) {
356 daemon_log("ERROR: Already running",1);
357 close( LOCK_FILE );
358 exit -1;
359 }
360 }
361 }
362 close( LOCK_FILE );
363 unlink( $pid_file );
364 }
366 # create a syslog msg if it is not to possible to open PID file
367 if (not sysopen(LOCK_FILE, $pid_file, O_WRONLY|O_CREAT|O_EXCL, 0644)) {
368 my($msg) = "Couldn't obtain lockfile '$pid_file' ";
369 if (open(LOCK_FILE, '<', $pid_file)
370 && ($pid = <LOCK_FILE>))
371 {
372 chomp($pid);
373 $msg .= "(PID $pid)\n";
374 } else {
375 $msg .= "(unable to read PID)\n";
376 }
377 if( ! ($foreground) ) {
378 openlog( $0, "cons,pid", "daemon" );
379 syslog( "warning", $msg );
380 closelog();
381 }
382 else {
383 print( STDERR " $msg " );
384 }
385 exit( -1 );
386 }
387 }
389 #=== FUNCTION ================================================================
390 # NAME: import_modules
391 # PARAMETERS: module_path - string - abs. path to the directory the modules
392 # are stored
393 # RETURNS: nothing
394 # DESCRIPTION: each file in module_path which ends with '.pm' and activation
395 # state is on is imported by "require 'file';"
396 #===============================================================================
397 sub import_modules {
398 daemon_log(" ", 1);
400 if (not -e $modules_path) {
401 daemon_log("ERROR: cannot find directory or directory is not readable: $modules_path", 1);
402 }
404 opendir (DIR, $modules_path) or die "ERROR while loading modules from directory $modules_path : $!\n";
405 while (defined (my $file = readdir (DIR))) {
406 if (not $file =~ /(\S*?).pm$/) {
407 next;
408 }
409 my $mod_name = $1;
411 if( $file =~ /ArpHandler.pm/ ) {
412 if( $no_arp > 0 ) {
413 next;
414 }
415 }
417 eval { require $file; };
418 if ($@) {
419 daemon_log("ERROR: gosa-si-server could not load module $file", 1);
420 daemon_log("$@", 5);
421 } else {
422 my $info = eval($mod_name.'::get_module_info()');
423 # Only load module if get_module_info() returns a non-null object
424 if( $info ) {
425 my ($input_address, $input_key, $input, $input_active, $input_type) = @{$info};
426 $known_modules->{$mod_name} = $info;
427 daemon_log("INFO: module $mod_name loaded", 5);
428 }
429 }
430 }
431 close (DIR);
432 }
435 #=== FUNCTION ================================================================
436 # NAME: sig_int_handler
437 # PARAMETERS: signal - string - signal arose from system
438 # RETURNS: noting
439 # DESCRIPTION: handels tasks to be done befor signal becomes active
440 #===============================================================================
441 sub sig_int_handler {
442 my ($signal) = @_;
444 # if (defined($ldap_handle)) {
445 # $ldap_handle->disconnect;
446 # }
447 # TODO alle verbliebenden ldap verbindungen aus allen heaps beenden
450 daemon_log("shutting down gosa-si-server", 1);
451 system("kill `ps -C gosa-si-server -o pid=`");
452 }
453 $SIG{INT} = \&sig_int_handler;
456 sub check_key_and_xml_validity {
457 my ($crypted_msg, $module_key, $session_id) = @_;
458 my $msg;
459 my $msg_hash;
460 my $error_string;
461 eval{
462 $msg = &decrypt_msg($crypted_msg, $module_key);
464 if ($msg =~ /<xml>/i){
465 $msg =~ s/\s+/ /g; # just for better daemon_log
466 daemon_log("$session_id DEBUG: decrypted_msg: \n$msg", 8);
467 $msg_hash = $xml->XMLin($msg, ForceArray=>1);
469 ##############
470 # check header
471 if( not exists $msg_hash->{'header'} ) { die "no header specified"; }
472 my $header_l = $msg_hash->{'header'};
473 if( 1 > @{$header_l} ) { die 'empty header tag'; }
474 if( 1 < @{$header_l} ) { die 'more than one header specified'; }
475 my $header = @{$header_l}[0];
476 if( 0 == length $header) { die 'empty string in header tag'; }
478 ##############
479 # check source
480 if( not exists $msg_hash->{'source'} ) { die "no source specified"; }
481 my $source_l = $msg_hash->{'source'};
482 if( 1 > @{$source_l} ) { die 'empty source tag'; }
483 if( 1 < @{$source_l} ) { die 'more than one source specified'; }
484 my $source = @{$source_l}[0];
485 if( 0 == length $source) { die 'source error'; }
487 ##############
488 # check target
489 if( not exists $msg_hash->{'target'} ) { die "no target specified"; }
490 my $target_l = $msg_hash->{'target'};
491 if( 1 > @{$target_l} ) { die 'empty target tag'; }
492 }
493 };
494 if($@) {
495 daemon_log("$session_id DEBUG: do not understand the message: $@", 7);
496 $msg = undef;
497 $msg_hash = undef;
498 }
500 return ($msg, $msg_hash);
501 }
504 sub check_outgoing_xml_validity {
505 my ($msg) = @_;
507 my $msg_hash;
508 eval{
509 $msg_hash = $xml->XMLin($msg, ForceArray=>1);
511 ##############
512 # check header
513 my $header_l = $msg_hash->{'header'};
514 if( 1 != @{$header_l} ) {
515 die 'no or more than one headers specified';
516 }
517 my $header = @{$header_l}[0];
518 if( 0 == length $header) {
519 die 'header has length 0';
520 }
522 ##############
523 # check source
524 my $source_l = $msg_hash->{'source'};
525 if( 1 != @{$source_l} ) {
526 die 'no or more than 1 sources specified';
527 }
528 my $source = @{$source_l}[0];
529 if( 0 == length $source) {
530 die 'source has length 0';
531 }
532 unless( $source =~ /^\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}:\d+$/ ||
533 $source =~ /^GOSA$/i ) {
534 die "source '$source' is neither a complete ip-address with port nor 'GOSA'";
535 }
537 ##############
538 # check target
539 my $target_l = $msg_hash->{'target'};
540 if( 0 == @{$target_l} ) {
541 die "no targets specified";
542 }
543 foreach my $target (@$target_l) {
544 if( 0 == length $target) {
545 die "target has length 0";
546 }
547 unless( $target =~ /^\d{1,3}\.\d{1,3}\.\d{1,3}\.\d{1,3}:\d+$/ ||
548 $target =~ /^GOSA$/i ||
549 $target =~ /^\*$/ ||
550 $target =~ /KNOWN_SERVER/i ||
551 $target =~ /JOBDB/i ||
552 $target =~ /^([0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2})$/i ){
553 die "target '$target' is not a complete ip-address with port or a valid target name or a mac-address";
554 }
555 }
556 };
557 if($@) {
558 daemon_log("WARNING: outgoing msg is not gosa-si envelope conform", 5);
559 daemon_log("$@ ".(defined($msg) && length($msg)>0)?$msg:"Empty Message", 8);
560 $msg_hash = undef;
561 }
563 return ($msg_hash);
564 }
567 sub input_from_known_server {
568 my ($input, $remote_ip, $session_id) = @_ ;
569 my ($msg, $msg_hash, $module);
571 my $sql_statement= "SELECT * FROM known_server";
572 my $query_res = $known_server_db->select_dbentry( $sql_statement );
574 while( my ($hit_num, $hit) = each %{ $query_res } ) {
575 my $host_name = $hit->{hostname};
576 if( not $host_name =~ "^$remote_ip") {
577 next;
578 }
579 my $host_key = $hit->{hostkey};
580 daemon_log("$session_id DEBUG: input_from_known_server: host_name: $host_name", 7);
581 daemon_log("DEBUG: input_from_known_server: host_key: $host_key", 7);
583 # check if module can open msg envelope with module key
584 my ($tmp_msg, $tmp_msg_hash) = &check_key_and_xml_validity($input, $host_key, $session_id);
585 if( (!$tmp_msg) || (!$tmp_msg_hash) ) {
586 daemon_log("$session_id DEBUG: input_from_known_server: deciphering raise error", 7);
587 daemon_log("$@", 8);
588 next;
589 }
590 else {
591 $msg = $tmp_msg;
592 $msg_hash = $tmp_msg_hash;
593 $module = "SIPackages";
594 last;
595 }
596 }
598 if( (!$msg) || (!$msg_hash) || (!$module) ) {
599 daemon_log("$session_id DEBUG: Incoming message is not from a known server", 7);
600 }
602 return ($msg, $msg_hash, $module);
603 }
606 sub input_from_known_client {
607 my ($input, $remote_ip, $session_id) = @_ ;
608 my ($msg, $msg_hash, $module);
610 my $sql_statement= "SELECT * FROM known_clients";
611 my $query_res = $known_clients_db->select_dbentry( $sql_statement );
612 while( my ($hit_num, $hit) = each %{ $query_res } ) {
613 my $host_name = $hit->{hostname};
614 if( not $host_name =~ /^$remote_ip:\d*$/) {
615 next;
616 }
617 my $host_key = $hit->{hostkey};
618 &daemon_log("$session_id DEBUG: input_from_known_client: host_name: $host_name", 7);
619 &daemon_log("$session_id DEBUG: input_from_known_client: host_key: $host_key", 7);
621 # check if module can open msg envelope with module key
622 ($msg, $msg_hash) = &check_key_and_xml_validity($input, $host_key, $session_id);
624 if( (!$msg) || (!$msg_hash) ) {
625 &daemon_log("$session_id DEGUG: input_from_known_client: deciphering raise error", 7);
626 &daemon_log("$@", 8);
627 next;
628 }
629 else {
630 $module = "SIPackages";
631 last;
632 }
633 }
635 if( (!$msg) || (!$msg_hash) || (!$module) ) {
636 &daemon_log("$session_id DEBUG: Incoming message is not from a known client", 7);
637 }
639 return ($msg, $msg_hash, $module);
640 }
643 sub input_from_unknown_host {
644 no strict "refs";
645 my ($input, $session_id) = @_ ;
646 my ($msg, $msg_hash, $module);
647 my $error_string;
649 my %act_modules = %$known_modules;
651 while( my ($mod, $info) = each(%act_modules)) {
653 # check a key exists for this module
654 my $module_key = ${$mod."_key"};
655 if( not defined $module_key ) {
656 if( $mod eq 'ArpHandler' ) {
657 next;
658 }
659 daemon_log("$session_id ERROR: no key specified in config file for $mod", 1);
660 next;
661 }
662 daemon_log("$session_id DEBUG: $mod: $module_key", 7);
664 # check if module can open msg envelope with module key
665 ($msg, $msg_hash) = &check_key_and_xml_validity($input, $module_key, $session_id);
666 if( (not defined $msg) || (not defined $msg_hash) ) {
667 next;
668 }
669 else {
670 $module = $mod;
671 last;
672 }
673 }
675 if( (!$msg) || (!$msg_hash) || (!$module)) {
676 daemon_log("$session_id DEBUG: Incoming message is not from an unknown host", 7);
677 }
679 return ($msg, $msg_hash, $module);
680 }
683 sub create_ciphering {
684 my ($passwd) = @_;
685 if((!defined($passwd)) || length($passwd)==0) {
686 $passwd = "";
687 }
688 $passwd = substr(md5_hex("$passwd") x 32, 0, 32);
689 my $iv = substr(md5_hex('GONICUS GmbH'),0, 16);
690 my $my_cipher = Crypt::Rijndael->new($passwd , Crypt::Rijndael::MODE_CBC());
691 $my_cipher->set_iv($iv);
692 return $my_cipher;
693 }
696 sub encrypt_msg {
697 my ($msg, $key) = @_;
698 my $my_cipher = &create_ciphering($key);
699 my $len;
700 {
701 use bytes;
702 $len= 16-length($msg)%16;
703 }
704 $msg = "\0"x($len).$msg;
705 $msg = $my_cipher->encrypt($msg);
706 chomp($msg = &encode_base64($msg));
707 # there are no newlines allowed inside msg
708 $msg=~ s/\n//g;
709 return $msg;
710 }
713 sub decrypt_msg {
715 my ($msg, $key) = @_ ;
716 $msg = &decode_base64($msg);
717 my $my_cipher = &create_ciphering($key);
718 $msg = $my_cipher->decrypt($msg);
719 $msg =~ s/\0*//g;
720 return $msg;
721 }
724 sub get_encrypt_key {
725 my ($target) = @_ ;
726 my $encrypt_key;
727 my $error = 0;
729 # target can be in known_server
730 if( not defined $encrypt_key ) {
731 my $sql_statement= "SELECT * FROM known_server WHERE hostname='$target'";
732 my $query_res = $known_server_db->select_dbentry( $sql_statement );
733 while( my ($hit_num, $hit) = each %{ $query_res } ) {
734 my $host_name = $hit->{hostname};
735 if( $host_name ne $target ) {
736 next;
737 }
738 $encrypt_key = $hit->{hostkey};
739 last;
740 }
741 }
743 # target can be in known_client
744 if( not defined $encrypt_key ) {
745 my $sql_statement= "SELECT * FROM known_clients WHERE hostname='$target'";
746 my $query_res = $known_clients_db->select_dbentry( $sql_statement );
747 while( my ($hit_num, $hit) = each %{ $query_res } ) {
748 my $host_name = $hit->{hostname};
749 if( $host_name ne $target ) {
750 next;
751 }
752 $encrypt_key = $hit->{hostkey};
753 last;
754 }
755 }
757 return $encrypt_key;
758 }
761 #=== FUNCTION ================================================================
762 # NAME: open_socket
763 # PARAMETERS: PeerAddr string something like 192.168.1.1 or 192.168.1.1:10000
764 # [PeerPort] string necessary if port not appended by PeerAddr
765 # RETURNS: socket IO::Socket::INET
766 # DESCRIPTION: open a socket to PeerAddr
767 #===============================================================================
768 sub open_socket {
769 my ($PeerAddr, $PeerPort) = @_ ;
770 if(defined($PeerPort)){
771 $PeerAddr = $PeerAddr.":".$PeerPort;
772 }
773 my $socket;
774 $socket = new IO::Socket::INET(PeerAddr => $PeerAddr,
775 Porto => "tcp",
776 Type => SOCK_STREAM,
777 Timeout => 5,
778 );
779 if(not defined $socket) {
780 return;
781 }
782 # &daemon_log("DEBUG: open_socket: $PeerAddr", 7);
783 return $socket;
784 }
787 #=== FUNCTION ================================================================
788 # NAME: get_ip
789 # PARAMETERS: interface name (i.e. eth0)
790 # RETURNS: (ip address)
791 # DESCRIPTION: Uses ioctl to get ip address directly from system.
792 #===============================================================================
793 sub get_ip {
794 my $ifreq= shift;
795 my $result= "";
796 my $SIOCGIFADDR= 0x8915; # man 2 ioctl_list
797 my $proto= getprotobyname('ip');
799 socket SOCKET, PF_INET, SOCK_DGRAM, $proto
800 or die "socket: $!";
802 if(ioctl SOCKET, $SIOCGIFADDR, $ifreq) {
803 my ($if, $sin) = unpack 'a16 a16', $ifreq;
804 my ($port, $addr) = sockaddr_in $sin;
805 my $ip = inet_ntoa $addr;
807 if ($ip && length($ip) > 0) {
808 $result = $ip;
809 }
810 }
812 return $result;
813 }
816 sub get_local_ip_for_remote_ip {
817 my $remote_ip= shift;
818 my $result="0.0.0.0";
820 if($remote_ip =~ /^(\d\d?\d?\.){3}\d\d?\d?$/) {
821 if($remote_ip eq "127.0.0.1") {
822 $result = "127.0.0.1";
823 } else {
824 my $PROC_NET_ROUTE= ('/proc/net/route');
826 open(PROC_NET_ROUTE, "<$PROC_NET_ROUTE")
827 or die "Could not open $PROC_NET_ROUTE";
829 my @ifs = <PROC_NET_ROUTE>;
831 close(PROC_NET_ROUTE);
833 # Eat header line
834 shift @ifs;
835 chomp @ifs;
836 foreach my $line(@ifs) {
837 my ($Iface,$Destination,$Gateway,$Flags,$RefCnt,$Use,$Metric,$Mask,$MTU,$Window,$IRTT)=split(/\s/, $line);
838 my $destination;
839 my $mask;
840 my ($d,$c,$b,$a)=unpack('a2 a2 a2 a2', $Destination);
841 $destination= sprintf("%d.%d.%d.%d", hex($a), hex($b), hex($c), hex($d));
842 ($d,$c,$b,$a)=unpack('a2 a2 a2 a2', $Mask);
843 $mask= sprintf("%d.%d.%d.%d", hex($a), hex($b), hex($c), hex($d));
844 if(new NetAddr::IP($remote_ip)->within(new NetAddr::IP($destination, $mask))) {
845 # destination matches route, save mac and exit
846 $result= &get_ip($Iface);
847 last;
848 }
849 }
850 }
851 } else {
852 daemon_log("get_local_ip_for_remote_ip was called with a non-ip parameter: $remote_ip", 1);
853 }
854 return $result;
855 }
858 sub send_msg_to_target {
859 my ($msg, $address, $encrypt_key, $msg_header, $session_id) = @_ ;
860 my $error = 0;
861 my $header;
862 my $new_status;
863 my $act_status;
864 my ($sql_statement, $res);
866 if( $msg_header ) {
867 $header = "'$msg_header'-";
868 } else {
869 $header = "";
870 }
872 # Patch the source ip
873 if($msg =~ /<source>0\.0\.0\.0:\d*?<\/source>/) {
874 my $remote_ip = &get_local_ip_for_remote_ip(sprintf("%s", $address =~ /^([0-9\.]*?):.*$/));
875 $msg =~ s/<source>(0\.0\.0\.0):(\d*?)<\/source>/<source>$remote_ip:$2<\/source>/s;
876 }
878 # encrypt xml msg
879 my $crypted_msg = &encrypt_msg($msg, $encrypt_key);
881 # opensocket
882 my $socket = &open_socket($address);
883 if( !$socket ) {
884 daemon_log("$session_id ERROR: cannot send ".$header."msg to $address , host not reachable", 1);
885 $error++;
886 }
888 if( $error == 0 ) {
889 # send xml msg
890 print $socket $crypted_msg."\n";
892 daemon_log("$session_id INFO: send ".$header."msg to $address", 5);
893 #daemon_log("DEBUG: message:\n$msg", 9);
895 }
897 # close socket in any case
898 if( $socket ) {
899 close $socket;
900 }
902 if( $error > 0 ) { $new_status = "down"; }
903 else { $new_status = $msg_header; }
906 # known_clients
907 $sql_statement = "SELECT * FROM known_clients WHERE hostname='$address'";
908 $res = $known_clients_db->select_dbentry($sql_statement);
909 if( keys(%$res) > 0) {
910 $act_status = $res->{1}->{'status'};
911 if( $act_status eq "down" ) {
912 $sql_statement = "DELETE FROM known_clients WHERE hostname='$address'";
913 $res = $known_clients_db->del_dbentry($sql_statement);
914 daemon_log("$session_id WARNING: failed 2x to send msg to host '$address', delete host from known_clients", 3);
915 } else {
916 $sql_statement = "UPDATE known_clients SET status='$new_status' WHERE hostname='$address'";
917 $res = $known_clients_db->update_dbentry($sql_statement);
918 if($new_status eq "down"){
919 daemon_log("$session_id WARNING: set '$address' from status '$act_status' to '$new_status'", 3);
920 } else {
921 daemon_log("$session_id INFO: set '$address' from status '$act_status' to '$new_status'", 5);
922 }
923 }
924 }
926 # known_server
927 $sql_statement = "SELECT * FROM known_server WHERE hostname='$address'";
928 $res = $known_server_db->select_dbentry($sql_statement);
929 if( keys(%$res) > 0 ) {
930 $act_status = $res->{1}->{'status'};
931 if( $act_status eq "down" ) {
932 $sql_statement = "DELETE FROM known_server WHERE hostname='$address'";
933 $res = $known_server_db->del_dbentry($sql_statement);
934 daemon_log("$session_id WARNING: failed 2x to a send msg to host '$address', delete host from known_server", 3);
935 }
936 else {
937 $sql_statement = "UPDATE known_server SET status='$new_status' WHERE hostname='$address'";
938 $res = $known_server_db->update_dbentry($sql_statement);
939 if($new_status eq "down"){
940 daemon_log("$session_id WARNING: set '$address' from status '$act_status' to '$new_status'", 3);
941 }
942 else {
943 daemon_log("$session_id INFO: set '$address' from status '$act_status' to '$new_status'", 5);
944 }
945 }
946 }
947 return $error;
948 }
951 sub update_jobdb_status_for_send_msgs {
952 my ($answer, $error) = @_;
953 if( $answer =~ /<jobdb_id>(\d+)<\/jobdb_id>/ ) {
954 my $jobdb_id = $1;
956 # sending msg faild
957 if( $error ) {
958 if (not $answer =~ /<header>trigger_action_reinstall<\/header>/) {
959 my $sql_statement = "UPDATE $job_queue_tn ".
960 "SET status='error', result='can not deliver msg, please consult log file' ".
961 "WHERE id=$jobdb_id";
962 my $res = $job_db->update_dbentry($sql_statement);
963 }
965 # sending msg was successful
966 } else {
967 my $sql_statement = "UPDATE $job_queue_tn ".
968 "SET status='done' ".
969 "WHERE id=$jobdb_id AND status='processed'";
970 my $res = $job_db->update_dbentry($sql_statement);
971 }
972 }
973 }
975 sub _start {
976 my ($kernel) = $_[KERNEL];
977 &trigger_db_loop($kernel);
978 $global_kernel = $kernel;
979 $kernel->yield('create_fai_server_db', $fai_server_tn );
980 $kernel->yield('create_fai_release_db', $fai_release_tn );
981 $kernel->sig(USR1 => "sig_handler");
982 $kernel->sig(USR2 => "create_packages_list_db");
983 }
985 sub sig_handler {
986 my ($kernel, $signal) = @_[KERNEL, ARG0] ;
987 daemon_log("0 INFO got signal '$signal'", 1);
988 $kernel->sig_handled();
989 return;
990 }
992 sub next_task {
993 my ($session, $heap) = @_[SESSION, HEAP];
995 while ( keys( %{ $heap->{task} } ) < $max_children ) {
996 my $next_task = shift @tasks;
997 last unless defined $next_task;
999 my $task = POE::Wheel::Run->new(
1000 Program => sub { process_task($session, $heap, $next_task) },
1001 StdioFilter => POE::Filter::Reference->new(),
1002 StdoutEvent => "task_result",
1003 StderrEvent => "task_debug",
1004 CloseEvent => "task_done",
1005 );
1007 $heap->{task}->{ $task->ID } = $task;
1008 }
1009 }
1011 sub handle_task_result {
1012 my ($kernel, $heap, $result) = @_[KERNEL, HEAP, ARG0];
1013 my $client_answer = $result->{'answer'};
1014 if( $client_answer =~ s/session_id=(\d+)$// ) {
1015 my $session_id = $1;
1016 if( defined $session_id ) {
1017 my $session_reference = $kernel->ID_id_to_session($session_id);
1018 if( defined $session_reference ) {
1019 $heap = $session_reference->get_heap();
1020 }
1021 }
1023 if(exists $heap->{'client'}) {
1024 $heap->{'client'}->put($client_answer);
1025 }
1026 }
1027 $kernel->sig(CHLD => "child_reap");
1028 }
1030 sub handle_task_debug {
1031 my $result = $_[ARG0];
1032 print STDERR "$result\n";
1033 }
1035 sub handle_task_done {
1036 my ( $kernel, $heap, $task_id ) = @_[ KERNEL, HEAP, ARG0 ];
1037 delete $heap->{task}->{$task_id};
1038 $kernel->yield("next_task");
1039 }
1041 sub process_task {
1042 no strict "refs";
1043 my ($session, $heap, $input) = @_;
1044 my $session_id = $session->ID;
1045 my ($msg, $msg_hash, $module);
1046 my $error = 0;
1047 my $answer_l;
1048 my ($answer_header, @answer_target_l, $answer_source);
1049 my $client_answer = "";
1051 daemon_log("", 5);
1052 daemon_log("$session_id INFO: Incoming msg with session ID $session_id from '".$heap->{'remote_ip'}."'", 5);
1053 #daemon_log("$session_id DEBUG: Incoming msg:\n$input", 9);
1055 ####################
1056 # check incoming msg
1057 # msg is from a new client or gosa
1058 ($msg, $msg_hash, $module) = &input_from_unknown_host($input, $session_id);
1059 # msg is from a gosa-si-server or gosa-si-bus
1060 if(( !$msg ) || ( !$msg_hash ) || ( !$module )){
1061 ($msg, $msg_hash, $module) = &input_from_known_server($input, $heap->{'remote_ip'}, $session_id);
1062 }
1063 # msg is from a gosa-si-client
1064 if(( !$msg ) || ( !$msg_hash ) || ( !$module )){
1065 ($msg, $msg_hash, $module) = &input_from_known_client($input, $heap->{'remote_ip'}, $session_id);
1066 }
1067 # an error occurred
1068 if(( !$msg ) || ( !$msg_hash ) || ( !$module )){
1069 # if an incoming msg could not be decrypted (maybe a wrong key), send client a ping. If the client
1070 # could not understand a msg from its server the client cause a re-registering process
1071 daemon_log("$session_id INFO cannot understand incoming msg, send 'ping'-msg to all host with ip '".$heap->{remote_ip}."' to cause a re-registering of the client if necessary", 5);
1072 my $sql_statement = "SELECT * FROM $main::known_clients_tn WHERE (hostname LIKE '".$heap->{'remote_ip'}."%')";
1073 my $query_res = $known_clients_db->select_dbentry( $sql_statement );
1074 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1075 my $host_name = $hit->{'hostname'};
1076 my $host_key = $hit->{'hostkey'};
1077 my $ping_msg = "<xml> <header>gosa_ping</header> <source>$server_address</source> <target>$host_name</target></xml>";
1078 my $error = &send_msg_to_target($ping_msg, $host_name, $host_key, "gosa_ping", $session_id);
1079 &update_jobdb_status_for_send_msgs($ping_msg, $error);
1080 }
1081 $error++;
1082 }
1084 ######################
1085 # process incoming msg
1086 if( $error == 0) {
1087 daemon_log("$session_id INFO: Incoming msg with header '".@{$msg_hash->{'header'}}[0].
1088 "' from '".$heap->{'remote_ip'}."'", 5);
1089 daemon_log("$session_id DEBUG: Processing module ".$module, 7);
1090 $answer_l = &{ $module."::process_incoming_msg" }($msg, $msg_hash, $session_id);
1092 if ( 0 < @{$answer_l} ) {
1093 my $answer_str = join("\n", @{$answer_l});
1094 daemon_log("$session_id DEBUG: $module: Got answer from module: \n".$answer_str,8);
1095 } else {
1096 daemon_log("$session_id DEBUG: $module: Got no answer from module!" ,8);
1097 }
1099 }
1100 if( !$answer_l ) { $error++ };
1102 ########
1103 # answer
1104 if( $error == 0 ) {
1106 foreach my $answer ( @{$answer_l} ) {
1107 # for each answer in answer list
1109 # check outgoing msg to xml validity
1110 my $answer_hash = &check_outgoing_xml_validity($answer);
1111 if( not defined $answer_hash ) {
1112 next;
1113 }
1115 $answer_header = @{$answer_hash->{'header'}}[0];
1116 @answer_target_l = @{$answer_hash->{'target'}};
1117 $answer_source = @{$answer_hash->{'source'}}[0];
1119 # deliver msg to all targets
1120 foreach my $answer_target ( @answer_target_l ) {
1122 # targets of msg are all gosa-si-clients in known_clients_db
1123 if( $answer_target eq "*" ) {
1124 # answer is for all clients
1125 my $sql_statement= "SELECT * FROM known_clients";
1126 my $query_res = $known_clients_db->select_dbentry( $sql_statement );
1127 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1128 my $host_name = $hit->{hostname};
1129 my $host_key = $hit->{hostkey};
1130 my $error = &send_msg_to_target($answer, $host_name, $host_key, $answer_header, $session_id);
1131 &update_jobdb_status_for_send_msgs($answer, $error);
1132 }
1133 }
1135 # targets of msg are all gosa-si-server in known_server_db
1136 elsif( $answer_target eq "KNOWN_SERVER" ) {
1137 # answer is for all server in known_server
1138 my $sql_statement= "SELECT * FROM known_server";
1139 my $query_res = $known_server_db->select_dbentry( $sql_statement );
1140 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1141 my $host_name = $hit->{hostname};
1142 my $host_key = $hit->{hostkey};
1143 $answer =~ s/KNOWN_SERVER/$host_name/g;
1144 my $error = &send_msg_to_target($answer, $host_name, $host_key, $answer_header, $session_id);
1145 &update_jobdb_status_for_send_msgs($answer, $error);
1146 }
1147 }
1149 # target of msg is GOsa
1150 elsif( $answer_target eq "GOSA" ) {
1151 my $session_id = ($1) if $answer =~ /<session_id>(\d+?)<\/session_id>/;
1152 my $add_on = "";
1153 if( defined $session_id ) {
1154 $add_on = ".session_id=$session_id";
1155 }
1156 # answer is for GOSA and has to returned to connected client
1157 my $gosa_answer = &encrypt_msg($answer, $GosaPackages_key);
1158 $client_answer = $gosa_answer.$add_on;
1159 }
1161 # target of msg is job queue at this host
1162 elsif( $answer_target eq "JOBDB") {
1163 $answer =~ /<header>(\S+)<\/header>/;
1164 my $header;
1165 if( defined $1 ) { $header = $1; }
1166 my $error = &send_msg_to_target($answer, $server_address, $GosaPackages_key, $header, $session_id);
1167 &update_jobdb_status_for_send_msgs($answer, $error);
1168 }
1170 # target of msg is a mac address
1171 elsif( $answer_target =~ /^([0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2}:[0-9a-f]{2})$/i ) {
1172 daemon_log("$session_id INFO: target is mac address '$answer_target', looking for host in known_clients", 5);
1173 my $sql_statement = "SELECT * FROM known_clients WHERE macaddress LIKE '$answer_target'";
1174 my $query_res = $known_clients_db->select_dbentry( $sql_statement );
1175 my $found_ip_flag = 0;
1176 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1177 my $host_name = $hit->{hostname};
1178 my $host_key = $hit->{hostkey};
1179 $answer =~ s/$answer_target/$host_name/g;
1180 daemon_log("$session_id INFO: found host '$host_name', associated to '$answer_target'", 5);
1181 my $error = &send_msg_to_target($answer, $host_name, $host_key, $answer_header, $session_id);
1182 &update_jobdb_status_for_send_msgs($answer, $error);
1183 $found_ip_flag++ ;
1184 }
1185 if( $found_ip_flag == 0) {
1186 daemon_log("$session_id WARNING: no host found in known_clients with mac address '$answer_target'", 3);
1187 if( $bus_activ eq "true" ) {
1188 daemon_log("$session_id INFO: try to forward msg '$answer_header' to bus '$bus_address'", 5);
1189 my $sql_statement = "SELECT * FROM known_server WHERE hostname='$bus_address'";
1190 my $query_res = $known_server_db->select_dbentry( $sql_statement );
1191 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1192 my $bus_address = $hit->{hostname};
1193 my $bus_key = $hit->{hostkey};
1194 my $error = &send_msg_to_target($answer, $bus_address, $bus_key, $answer_header, $session_id);
1195 &update_jobdb_status_for_send_msgs($answer, $error);
1196 last;
1197 }
1198 }
1200 }
1202 # answer is for one specific host
1203 } else {
1204 # get encrypt_key
1205 my $encrypt_key = &get_encrypt_key($answer_target);
1206 if( not defined $encrypt_key ) {
1207 # unknown target, forward msg to bus
1208 daemon_log("$session_id WARNING: unknown target '$answer_target'", 3);
1209 if( $bus_activ eq "true" ) {
1210 daemon_log("$session_id INFO: try to forward msg '$answer_header' to bus '$bus_address'", 5);
1211 my $sql_statement = "SELECT * FROM known_server WHERE hostname='$bus_address'";
1212 my $query_res = $known_server_db->select_dbentry( $sql_statement );
1213 my $res_length = keys( %{$query_res} );
1214 if( $res_length == 0 ){
1215 daemon_log("$session_id WARNING: send '$answer_header' to '$bus_address' failed, ".
1216 "no bus found in known_server", 3);
1217 }
1218 else {
1219 while( my ($hit_num, $hit) = each %{ $query_res } ) {
1220 my $bus_key = $hit->{hostkey};
1221 my $error = &send_msg_to_target($answer, $bus_address, $bus_key, $answer_header,$session_id );
1222 &update_jobdb_status_for_send_msgs($answer, $error);
1223 }
1224 }
1225 }
1226 next;
1227 }
1228 my $error = &send_msg_to_target($answer, $answer_target, $encrypt_key, $answer_header,$session_id);
1229 &update_jobdb_status_for_send_msgs($answer, $error);
1230 }
1231 }
1232 }
1233 }
1235 my $filter = POE::Filter::Reference->new();
1236 my %result = (
1237 status => "seems ok to me",
1238 answer => $client_answer,
1239 );
1241 my $output = $filter->put( [ \%result ] );
1242 print @$output;
1245 }
1248 sub trigger_db_loop {
1249 my ($kernel) = @_ ;
1250 $kernel->delay_set('watch_for_new_jobs', $job_queue_loop_delay);
1251 $kernel->delay_set('watch_for_done_jobs', $job_queue_loop_delay);
1252 $kernel->delay_set('watch_for_new_messages', $messaging_db_loop_delay);
1253 $kernel->delay_set('watch_for_done_messages', $messaging_db_loop_delay);
1254 }
1257 sub watch_for_done_jobs {
1258 my ($kernel,$heap) = @_[KERNEL, HEAP];
1260 my $sql_statement = "SELECT * FROM ".$job_queue_tn.
1261 " WHERE status='done'";
1262 my $res = $job_db->select_dbentry( $sql_statement );
1264 while( my ($id, $hit) = each %{$res} ) {
1265 my $jobdb_id = $hit->{id};
1266 my $sql_statement = "DELETE FROM $job_queue_tn WHERE id=$jobdb_id";
1267 my $res = $job_db->del_dbentry($sql_statement);
1268 }
1270 $kernel->delay_set('watch_for_done_jobs',$job_queue_loop_delay);
1271 }
1274 sub watch_for_new_jobs {
1275 if($watch_for_new_jobs_in_progress == 0) {
1276 $watch_for_new_jobs_in_progress = 1;
1277 my ($kernel,$heap) = @_[KERNEL, HEAP];
1279 # check gosa job queue for jobs with executable timestamp
1280 my $timestamp = &get_time();
1281 my $sql_statement = "SELECT * FROM $job_queue_tn WHERE status='waiting' AND (CAST (timestamp AS INTEGER)) < $timestamp ORDER BY timestamp";
1282 my $res = $job_db->exec_statement( $sql_statement );
1284 # Merge all new jobs that would do the same actions
1285 my @drops;
1286 my $hits;
1287 foreach my $hit (reverse @{$res} ) {
1288 my $macaddress= lc @{$hit}[8];
1289 my $headertag= @{$hit}[5];
1290 if(
1291 defined($hits->{$macaddress}) &&
1292 defined($hits->{$macaddress}->{$headertag}) &&
1293 defined($hits->{$macaddress}->{$headertag}[0])
1294 ) {
1295 push @drops, "DELETE FROM $job_queue_tn WHERE id = $hits->{$macaddress}->{$headertag}[0]";
1296 }
1297 $hits->{$macaddress}->{$headertag}= $hit;
1298 }
1300 # Delete new jobs with a matching job in state 'processing'
1301 foreach my $macaddress (keys %{$hits}) {
1302 foreach my $jobdb_headertag (keys %{$hits->{$macaddress}}) {
1303 my $jobdb_id = @{$hits->{$macaddress}->{$jobdb_headertag}}[0];
1304 if(defined($jobdb_id)) {
1305 my $sql_statement = "SELECT * FROM $job_queue_tn WHERE macaddress LIKE '$macaddress' AND headertag='$jobdb_headertag' AND status='processing'";
1306 my $res = $job_db->exec_statement( $sql_statement );
1307 foreach my $hit (@{$res}) {
1308 push @drops, "DELETE FROM $job_queue_tn WHERE id=$jobdb_id";
1309 }
1310 } else {
1311 daemon_log("J ERROR: Job without id exists for macaddress $macaddress!", 1);
1312 }
1313 }
1314 }
1316 # Commit deletion
1317 $job_db->exec_statementlist(\@drops);
1319 # Look for new jobs that could be executed
1320 foreach my $macaddress (keys %{$hits}) {
1322 # Look if there is an executing job
1323 my $sql_statement = "SELECT * FROM $job_queue_tn WHERE macaddress LIKE '$macaddress' AND status='processing'";
1324 my $res = $job_db->exec_statement( $sql_statement );
1326 # Skip new jobs for host if there is a processing job
1327 if(defined($res) and defined @{$res}[0]) {
1328 next;
1329 }
1331 foreach my $jobdb_headertag (keys %{$hits->{$macaddress}}) {
1332 my $jobdb_id = @{$hits->{$macaddress}->{$jobdb_headertag}}[0];
1333 if(defined($jobdb_id)) {
1334 my $job_msg = @{$hits->{$macaddress}->{$jobdb_headertag}}[7];
1336 daemon_log("J DEBUG: its time to execute $job_msg", 7);
1337 my $sql_statement = "SELECT * FROM known_clients WHERE macaddress LIKE '$macaddress'";
1338 my $res_hash = $known_clients_db->select_dbentry( $sql_statement );
1340 # expect macaddress is unique!!!!!!
1341 my $target = $res_hash->{1}->{hostname};
1343 # change header
1344 $job_msg =~ s/<header>job_/<header>gosa_/;
1346 # add sqlite_id
1347 $job_msg =~ s/<\/xml>$/<jobdb_id>$jobdb_id<\/jobdb_id><\/xml>/;
1349 $job_msg =~ /<header>(\S+)<\/header>/;
1350 my $header = $1 ;
1351 my $func_error = &send_msg_to_target($job_msg, $server_address, $GosaPackages_key, $header, "J");
1353 # update status in job queue to 'processing'
1354 $sql_statement = "UPDATE $job_queue_tn SET status='processing' WHERE id=$jobdb_id";
1355 my $res = $job_db->update_dbentry($sql_statement);
1356 # TODO: abfangen ob alles in ordnung ist oder nicht, wenn nicht error schmeißen
1358 # We don't want parallel processing
1359 last;
1360 }
1361 }
1362 }
1364 $watch_for_new_jobs_in_progress = 0;
1365 $kernel->delay_set('watch_for_new_jobs', $job_queue_loop_delay);
1366 }
1367 }
1370 sub watch_for_new_messages {
1371 my ($kernel,$heap) = @_[KERNEL, HEAP];
1372 my @coll_user_msg; # collection list of outgoing messages
1374 # check messaging_db for new incoming messages with executable timestamp
1375 my $timestamp = &get_time();
1376 my $sql_statement = "SELECT * FROM $messaging_tn WHERE ( (CAST(timestamp AS INTEGER))<$timestamp AND flag='n' AND direction='in' )";
1377 my $res = $messaging_db->exec_statement( $sql_statement );
1378 foreach my $hit (@{$res}) {
1380 # create outgoing messages
1381 my $message_to = @{$hit}[3];
1383 # translate message_to to plain login name
1384 # TODO implement reciever translation
1385 my @reciever_l = ($message_to);
1386 my $message_id = @{$hit}[0];
1388 #add each outgoing msg to messaging_db
1389 my $reciever;
1390 foreach $reciever (@reciever_l) {
1391 my $sql_statement = "INSERT INTO $messaging_tn (id, subject, message_from, message_to, flag, direction, delivery_time, message, timestamp) ".
1392 "VALUES ('".
1393 $message_id."', '". # id
1394 @{$hit}[1]."', '". # subject
1395 @{$hit}[2]."', '". # message_from
1396 $reciever."', '". # message_to
1397 "none"."', '". # flag
1398 "out"."', '". # direction
1399 @{$hit}[6]."', '". # delivery_time
1400 @{$hit}[7]."', '". # message
1401 $timestamp."'". # timestamp
1402 ")";
1403 &daemon_log("M DEBUG: $sql_statement", 1);
1404 my $res = $messaging_db->exec_statement($sql_statement);
1405 &daemon_log("M INFO: message '".@{$hit}[0]."' is prepared for delivery to reciever '$reciever'", 5);
1406 }
1408 # send outgoing messages
1409 my $sql_statement = "SELECT * FROM $messaging_tn WHERE ( flag='p' AND direction='out' )";
1410 my $res = $messaging_db->exec_statement( $sql_statement );
1411 foreach my $hit (@{$res}) {
1412 # add subject, from, to and message to list coll_user_msg
1413 my @user_msg = [@{$hit}[1], @{$hit}[2], $reciever, @{$hit}[7]];
1414 push( @coll_user_msg, \@user_msg);
1415 }
1417 # send outgoing list to myself (gosa-si-server) to deliver each message to user
1418 # reason for this workaround: if to much messages have to be delivered, it can come to
1419 # denial of service problems of the server. so, the incoming message list can be processed
1420 # by a forked child and gosa-si-server is always ready to work.
1421 my $collection_out_msg = &create_xml_hash("collection_user_messages", $server_address, $server_address);
1422 # add to hash 'msg1' => [subject, from, to, message]
1423 # hash to string
1424 # send msg to myself
1425 # TODO
1427 # set incoming message to flag d=deliverd
1428 $sql_statement = "UPDATE $messaging_tn SET flag='p' WHERE id='$message_id'";
1429 &daemon_log("M DEBUG: $sql_statement", 7);
1430 $res = $messaging_db->update_dbentry($sql_statement);
1431 &daemon_log("M INFO: message '$message_id' is set to flag 'p' (processed)", 5);
1433 }
1435 $kernel->delay_set('watch_for_new_messages', $messaging_db_loop_delay);
1438 return;
1439 }
1442 sub watch_for_done_messages {
1443 my ($kernel,$heap) = @_[KERNEL, HEAP];
1445 $kernel->delay_set('watch_for_done_messages', $messaging_db_loop_delay);
1446 return;
1447 }
1450 sub get_ldap_handle {
1451 my ($session_id) = @_;
1452 my $heap;
1453 my $ldap_handle;
1455 if (not defined $session_id ) { $session_id = 0 };
1456 if ($session_id =~ /[^0-9]*/) { $session_id = 0 };
1458 if ($session_id == 0) {
1459 daemon_log("$session_id DEBUG: get_ldap_handle invoked without a session_id, create a new ldap_handle", 7);
1460 $ldap_handle = Net::LDAP->new( $ldap_uri );
1461 $ldap_handle->bind($ldap_admin_dn, password => $ldap_admin_password);
1463 } else {
1464 my $session_reference = $global_kernel->ID_id_to_session($session_id);
1465 if( defined $session_reference ) {
1466 $heap = $session_reference->get_heap();
1467 }
1469 if (not defined $heap) {
1470 daemon_log("$session_id DEBUG: cannot get heap for session_id '$session_id'", 7);
1471 return;
1472 }
1474 # TODO: This "if" is nonsense, because it doesn't prove that the
1475 # used handle is still valid - or if we've to reconnect...
1476 #if (not exists $heap->{ldap_handle}) {
1477 $ldap_handle = Net::LDAP->new( $ldap_uri );
1478 $ldap_handle->bind($ldap_admin_dn, password => $ldap_admin_password);
1479 $heap->{ldap_handle} = $ldap_handle;
1480 #}
1481 }
1482 return $ldap_handle;
1483 }
1486 sub change_fai_state {
1487 my ($st, $targets, $session_id) = @_;
1488 $session_id = 0 if not defined $session_id;
1489 # Set FAI state to localboot
1490 my %mapActions= (
1491 reboot => '',
1492 update => 'softupdate',
1493 localboot => 'localboot',
1494 reinstall => 'install',
1495 rescan => '',
1496 wake => '',
1497 memcheck => 'memcheck',
1498 sysinfo => 'sysinfo',
1499 install => 'install',
1500 );
1502 # Return if this is unknown
1503 if (!exists $mapActions{ $st }){
1504 daemon_log("$session_id ERROR: unknown action '$st', can not translate ot FAIstate", 1);
1505 return;
1506 }
1508 my $state= $mapActions{ $st };
1510 my $ldap_handle = &get_ldap_handle($session_id);
1511 if( defined($ldap_handle) ) {
1513 # Build search filter for hosts
1514 my $search= "(&(objectClass=GOhard)";
1515 foreach (@{$targets}){
1516 $search.= "(macAddress=$_)";
1517 }
1518 $search.= ")";
1520 # If there's any host inside of the search string, procress them
1521 if (!($search =~ /macAddress/)){
1522 daemon_log("$session_id ERROR: no macAddress found in filter statement for LDAP search: '$search'", 1);
1523 return;
1524 }
1526 # Perform search for Unit Tag
1527 my $mesg = $ldap_handle->search(
1528 base => $ldap_base,
1529 scope => 'sub',
1530 attrs => ['dn', 'FAIstate', 'objectClass'],
1531 filter => "$search"
1532 );
1534 if ($mesg->count) {
1535 my @entries = $mesg->entries;
1536 foreach my $entry (@entries) {
1537 # Only modify entry if it is not set to '$state'
1538 if ($entry->get_value("FAIstate") ne "$state"){
1539 daemon_log("$session_id INFO: Setting FAIstate to '$state' for ".$entry->dn, 5);
1540 my $result;
1541 my %tmp = map { $_ => 1 } $entry->get_value("objectClass");
1542 if (exists $tmp{'FAIobject'}){
1543 if ($state eq ''){
1544 $result= $ldap_handle->modify($entry->dn, changes => [
1545 delete => [ FAIstate => [] ] ]);
1546 } else {
1547 $result= $ldap_handle->modify($entry->dn, changes => [
1548 replace => [ FAIstate => $state ] ]);
1549 }
1550 } elsif ($state ne ''){
1551 $result= $ldap_handle->modify($entry->dn, changes => [
1552 add => [ objectClass => 'FAIobject' ],
1553 add => [ FAIstate => $state ] ]);
1554 }
1556 # Errors?
1557 if ($result->code){
1558 daemon_log("$session_id Error: Setting FAIstate to '$state' for ".$entry->dn. "failed: ".$result->error, 1);
1559 }
1560 } else {
1561 daemon_log("$session_id DEBUG FAIstate at host '".$entry->dn."' already at state '$st'", 7);
1562 }
1563 }
1564 }
1565 # if no ldap handle defined
1566 } else {
1567 daemon_log("$session_id ERROR: no LDAP handle defined for update FAIstate", 1);
1568 }
1570 }
1573 sub change_goto_state {
1574 my ($st, $targets, $session_id) = @_;
1575 $session_id = 0 if not defined $session_id;
1577 # Switch on or off?
1578 my $state= $st eq 'active' ? 'active': 'locked';
1580 my $ldap_handle = &get_ldap_handle($session_id);
1581 if( defined($ldap_handle) ) {
1583 # Build search filter for hosts
1584 my $search= "(&(objectClass=GOhard)";
1585 foreach (@{$targets}){
1586 $search.= "(macAddress=$_)";
1587 }
1588 $search.= ")";
1590 # If there's any host inside of the search string, procress them
1591 if (!($search =~ /macAddress/)){
1592 return;
1593 }
1595 # Perform search for Unit Tag
1596 my $mesg = $ldap_handle->search(
1597 base => $ldap_base,
1598 scope => 'sub',
1599 attrs => ['dn', 'gotoMode'],
1600 filter => "$search"
1601 );
1603 if ($mesg->count) {
1604 my @entries = $mesg->entries;
1605 foreach my $entry (@entries) {
1607 # Only modify entry if it is not set to '$state'
1608 if ($entry->get_value("gotoMode") ne $state){
1610 daemon_log("$session_id INFO: Setting gotoMode to '$state' for ".$entry->dn, 5);
1611 my $result;
1612 $result= $ldap_handle->modify($entry->dn, changes => [
1613 replace => [ gotoMode => $state ] ]);
1615 # Errors?
1616 if ($result->code){
1617 &daemon_log("$session_id Error: Setting gotoMode to '$state' for ".$entry->dn. "failed: ".$result->error, 1);
1618 }
1620 }
1621 }
1622 }
1624 }
1625 }
1628 sub run_create_fai_server_db {
1629 my ($kernel, $session, $heap, $table_name) = @_[KERNEL, SESSION, HEAP, ARG0];
1630 my $session_id = $session->ID;
1631 my $task = POE::Wheel::Run->new(
1632 Program => sub { &create_fai_server_db($table_name,$kernel, undef, $session_id) },
1633 StdoutEvent => "session_run_result",
1634 StderrEvent => "session_run_debug",
1635 CloseEvent => "session_run_done",
1636 );
1638 $heap->{task}->{ $task->ID } = $task;
1639 return;
1640 }
1643 sub create_fai_server_db {
1644 my ($table_name, $kernel, $dont_create_packages_list, $session_id) = @_;
1645 my $result;
1647 if (not defined $session_id) { $session_id = 0; }
1648 my $ldap_handle = &get_ldap_handle();
1649 if(defined($ldap_handle)) {
1650 daemon_log("$session_id INFO: create_fai_server_db: start", 5);
1651 my $mesg= $ldap_handle->search(
1652 base => $ldap_base,
1653 scope => 'sub',
1654 attrs => ['FAIrepository', 'gosaUnitTag'],
1655 filter => "(&(FAIrepository=*)(objectClass=FAIrepositoryServer))",
1656 );
1657 if($mesg->{'resultCode'} == 0 &&
1658 $mesg->count != 0) {
1659 foreach my $entry (@{$mesg->{entries}}) {
1660 if($entry->exists('FAIrepository')) {
1661 # Add an entry for each Repository configured for server
1662 foreach my $repo(@{$entry->get_value('FAIrepository', asref => 1)}) {
1663 my($tmp_url,$tmp_server,$tmp_release,$tmp_sections) = split(/\|/, $repo);
1664 my $tmp_tag= $entry->get_value('gosaUnitTag') || "";
1665 $result= $fai_server_db->add_dbentry( {
1666 table => $table_name,
1667 primkey => ['server', 'release', 'tag'],
1668 server => $tmp_url,
1669 release => $tmp_release,
1670 sections => $tmp_sections,
1671 tag => (length($tmp_tag)>0)?$tmp_tag:"",
1672 } );
1673 }
1674 }
1675 }
1676 }
1677 daemon_log("$session_id INFO: create_fai_server_db: finished", 5);
1679 # TODO: Find a way to post the 'create_packages_list_db' event
1680 if(not defined($dont_create_packages_list)) {
1681 &create_packages_list_db(undef, undef, $session_id);
1682 }
1683 }
1685 $ldap_handle->disconnect;
1686 return $result;
1687 }
1690 sub run_create_fai_release_db {
1691 my ($session, $heap, $table_name) = @_[SESSION, HEAP, ARG0];
1692 my $session_id = $session->ID;
1693 my $task = POE::Wheel::Run->new(
1694 Program => sub { &create_fai_release_db($table_name, $session_id) },
1695 StdoutEvent => "session_run_result",
1696 StderrEvent => "session_run_debug",
1697 CloseEvent => "session_run_done",
1698 );
1700 $heap->{task}->{ $task->ID } = $task;
1701 return;
1702 }
1705 sub create_fai_release_db {
1706 my ($table_name, $session_id) = @_;
1707 my $result;
1709 # used for logging
1710 if (not defined $session_id) { $session_id = 0; }
1712 my $ldap_handle = &get_ldap_handle();
1713 if(defined($ldap_handle)) {
1714 daemon_log("$session_id INFO: create_fai_release_db: start",5);
1715 my $mesg= $ldap_handle->search(
1716 base => $ldap_base,
1717 scope => 'sub',
1718 attrs => [],
1719 filter => "(&(objectClass=organizationalUnit)(ou=fai))",
1720 );
1721 if($mesg->{'resultCode'} == 0 &&
1722 $mesg->count != 0) {
1723 # Walk through all possible FAI container ou's
1724 my @sql_list;
1725 my $timestamp= &get_time();
1726 foreach my $ou (@{$mesg->{entries}}) {
1727 my $tmp_classes= resolve_fai_classes($ou->dn, $ldap_handle, $session_id);
1728 if(defined($tmp_classes) && ref($tmp_classes) eq 'HASH') {
1729 my @tmp_array=get_fai_release_entries($tmp_classes);
1730 if(@tmp_array) {
1731 foreach my $entry (@tmp_array) {
1732 if(defined($entry) && ref($entry) eq 'HASH') {
1733 my $sql=
1734 "INSERT INTO $table_name "
1735 ."(timestamp, release, class, type, state) VALUES ("
1736 .$timestamp.","
1737 ."'".$entry->{'release'}."',"
1738 ."'".$entry->{'class'}."',"
1739 ."'".$entry->{'type'}."',"
1740 ."'".$entry->{'state'}."')";
1741 push @sql_list, $sql;
1742 }
1743 }
1744 }
1745 }
1746 }
1748 daemon_log("$session_id DEBUG: Inserting ".scalar @sql_list." entries to DB",8);
1749 if(@sql_list) {
1750 unshift @sql_list, "VACUUM";
1751 unshift @sql_list, "DELETE FROM $table_name";
1752 $fai_release_db->exec_statementlist(\@sql_list);
1753 }
1754 daemon_log("$session_id DEBUG: Done with inserting",7);
1755 }
1756 daemon_log("$session_id INFO: create_fai_release_db: finished",5);
1757 }
1758 $ldap_handle->disconnect;
1759 return $result;
1760 }
1762 sub get_fai_types {
1763 my $tmp_classes = shift || return undef;
1764 my @result;
1766 foreach my $type(keys %{$tmp_classes}) {
1767 if(defined($tmp_classes->{$type}[0]) && (!($tmp_classes->{$type}[0] =~ /^.*?removed.*?$/))) {
1768 my $entry = {
1769 type => $type,
1770 state => $tmp_classes->{$type}[0],
1771 };
1772 push @result, $entry;
1773 }
1774 }
1776 return @result;
1777 }
1779 sub get_fai_state {
1780 my $result = "";
1781 my $tmp_classes = shift || return $result;
1783 foreach my $type(keys %{$tmp_classes}) {
1784 if(defined($tmp_classes->{$type}[0])) {
1785 $result = $tmp_classes->{$type}[0];
1787 # State is equal for all types in class
1788 last;
1789 }
1790 }
1792 return $result;
1793 }
1795 sub resolve_fai_classes {
1796 my ($fai_base, $ldap_handle, $session_id) = @_;
1797 if (not defined $session_id) { $session_id = 0; }
1798 my $result;
1799 my @possible_fai_classes= ("FAIscript", "FAIhook", "FAIpartitionTable", "FAItemplate", "FAIvariable", "FAIprofile", "FAIpackageList");
1800 my $fai_filter= "(|(&(objectClass=FAIclass)(|(objectClass=".join(")(objectClass=", @possible_fai_classes).")))(objectClass=FAIbranch))";
1801 my $fai_classes;
1803 daemon_log("$session_id DEBUG: Searching for FAI entries in base $fai_base",7);
1804 my $mesg= $ldap_handle->search(
1805 base => $fai_base,
1806 scope => 'sub',
1807 attrs => ['cn','objectClass','FAIstate'],
1808 filter => $fai_filter,
1809 );
1810 daemon_log("$session_id DEBUG: Found ".$mesg->count()." FAI entries",7);
1812 if($mesg->{'resultCode'} == 0 &&
1813 $mesg->count != 0) {
1814 foreach my $entry (@{$mesg->{entries}}) {
1815 if($entry->exists('cn')) {
1816 my $tmp_dn= $entry->dn();
1818 # Skip classname and ou dn parts for class
1819 my $tmp_release = ($1) if $tmp_dn =~ /^[^,]+,[^,]+,(.*?),$fai_base$/;
1821 # Skip classes without releases
1822 if((!defined($tmp_release)) || length($tmp_release)==0) {
1823 next;
1824 }
1826 my $tmp_cn= $entry->get_value('cn');
1827 my $tmp_state= $entry->get_value('FAIstate');
1829 my $tmp_type;
1830 # Get FAI type
1831 for my $oclass(@{$entry->get_value('objectClass', asref => 1)}) {
1832 if(grep $_ eq $oclass, @possible_fai_classes) {
1833 $tmp_type= $oclass;
1834 last;
1835 }
1836 }
1838 if($tmp_release =~ /^.*?,.*?$/ && (!($tmp_release =~ /^.*?\\,.*?$/))) {
1839 # A Subrelease
1840 my @sub_releases = split(/,/, $tmp_release);
1842 # Walk through subreleases and build hash tree
1843 my $hash;
1844 while(my $tmp_sub_release = pop @sub_releases) {
1845 $hash .= "\{'$tmp_sub_release'\}->";
1846 }
1847 eval('push @{$fai_classes->'.$hash.'{$tmp_cn}->{$tmp_type}}, (defined($tmp_state) && length($tmp_state)>0)?$tmp_state:"";');
1848 } else {
1849 # A branch, no subrelease
1850 push @{$fai_classes->{$tmp_release}->{$tmp_cn}->{$tmp_type}}, (defined($tmp_state) && length($tmp_state)>0)?$tmp_state:"";
1851 }
1852 } elsif (!$entry->exists('cn')) {
1853 my $tmp_dn= $entry->dn();
1854 my $tmp_release = ($1) if $tmp_dn =~ /^(.*?),$fai_base$/;
1856 # Skip classes without releases
1857 if((!defined($tmp_release)) || length($tmp_release)==0) {
1858 next;
1859 }
1861 if($tmp_release =~ /^.*?,.*?$/ && (!($tmp_release =~ /^.*?\\,.*?$/))) {
1862 # A Subrelease
1863 my @sub_releases= split(/,/, $tmp_release);
1865 # Walk through subreleases and build hash tree
1866 my $hash;
1867 while(my $tmp_sub_release = pop @sub_releases) {
1868 $hash .= "\{'$tmp_sub_release'\}->";
1869 }
1870 # Remove the last two characters
1871 chop($hash);
1872 chop($hash);
1874 eval('$fai_classes->'.$hash.'= {}');
1875 } else {
1876 # A branch, no subrelease
1877 if(!exists($fai_classes->{$tmp_release})) {
1878 $fai_classes->{$tmp_release} = {};
1879 }
1880 }
1881 }
1882 }
1884 # The hash is complete, now we can honor the copy-on-write based missing entries
1885 foreach my $release (keys %$fai_classes) {
1886 $result->{$release}= deep_copy(apply_fai_inheritance($fai_classes->{$release}));
1887 }
1888 }
1889 return $result;
1890 }
1892 sub apply_fai_inheritance {
1893 my $fai_classes = shift || return {};
1894 my $tmp_classes;
1896 # Get the classes from the branch
1897 foreach my $class (keys %{$fai_classes}) {
1898 # Skip subreleases
1899 if($class =~ /^ou=.*$/) {
1900 next;
1901 } else {
1902 $tmp_classes->{$class}= deep_copy($fai_classes->{$class});
1903 }
1904 }
1906 # Apply to each subrelease
1907 foreach my $subrelease (keys %{$fai_classes}) {
1908 if($subrelease =~ /ou=/) {
1909 foreach my $tmp_class (keys %{$tmp_classes}) {
1910 if(!exists($fai_classes->{$subrelease}->{$tmp_class})) {
1911 $fai_classes->{$subrelease}->{$tmp_class} =
1912 deep_copy($tmp_classes->{$tmp_class});
1913 } else {
1914 foreach my $type (keys %{$tmp_classes->{$tmp_class}}) {
1915 if(!exists($fai_classes->{$subrelease}->{$tmp_class}->{$type})) {
1916 $fai_classes->{$subrelease}->{$tmp_class}->{$type}=
1917 deep_copy($tmp_classes->{$tmp_class}->{$type});
1918 }
1919 }
1920 }
1921 }
1922 }
1923 }
1925 # Find subreleases in deeper levels
1926 foreach my $subrelease (keys %{$fai_classes}) {
1927 if($subrelease =~ /ou=/) {
1928 foreach my $subsubrelease (keys %{$fai_classes->{$subrelease}}) {
1929 if($subsubrelease =~ /ou=/) {
1930 apply_fai_inheritance($fai_classes->{$subrelease});
1931 }
1932 }
1933 }
1934 }
1936 return $fai_classes;
1937 }
1939 sub get_fai_release_entries {
1940 my $tmp_classes = shift || return;
1941 my $parent = shift || "";
1942 my @result = shift || ();
1944 foreach my $entry (keys %{$tmp_classes}) {
1945 if(defined($entry)) {
1946 if($entry =~ /^ou=.*$/) {
1947 my $release_name = $entry;
1948 $release_name =~ s/ou=//g;
1949 if(length($parent)>0) {
1950 $release_name = $parent."/".$release_name;
1951 }
1952 my @bufentries = get_fai_release_entries($tmp_classes->{$entry}, $release_name, @result);
1953 foreach my $bufentry(@bufentries) {
1954 push @result, $bufentry;
1955 }
1956 } else {
1957 my @types = get_fai_types($tmp_classes->{$entry});
1958 foreach my $type (@types) {
1959 push @result,
1960 {
1961 'class' => $entry,
1962 'type' => $type->{'type'},
1963 'release' => $parent,
1964 'state' => $type->{'state'},
1965 };
1966 }
1967 }
1968 }
1969 }
1971 return @result;
1972 }
1974 sub deep_copy {
1975 my $this = shift;
1976 if (not ref $this) {
1977 $this;
1978 } elsif (ref $this eq "ARRAY") {
1979 [map deep_copy($_), @$this];
1980 } elsif (ref $this eq "HASH") {
1981 +{map { $_ => deep_copy($this->{$_}) } keys %$this};
1982 } else { die "what type is $_?" }
1983 }
1986 sub session_run_result {
1987 my ($kernel, $heap, $client_answer) = @_[KERNEL, HEAP, ARG0];
1988 $kernel->sig(CHLD => "child_reap");
1989 }
1991 sub session_run_debug {
1992 my $result = $_[ARG0];
1993 print STDERR "$result\n";
1994 }
1996 sub session_run_done {
1997 my ( $kernel, $heap, $task_id ) = @_[ KERNEL, HEAP, ARG0 ];
1998 delete $heap->{task}->{$task_id};
1999 }
2002 sub create_sources_list {
2003 my $session_id = shift;
2004 my $ldap_handle = &main::get_ldap_handle;
2005 my $result="/tmp/gosa_si_tmp_sources_list";
2007 # Remove old file
2008 if(stat($result)) {
2009 unlink($result);
2010 &main::daemon_log("$session_id DEBUG: remove an old version of '$result'", 7);
2011 }
2013 my $fh;
2014 open($fh, ">$result");
2015 if (not defined $fh) {
2016 &main::daemon_log("$session_id DEBUG: cannot open '$result' for writing", 7);
2017 return undef;
2018 }
2019 if(defined($main::ldap_server_dn) and length($main::ldap_server_dn) > 0) {
2020 my $mesg=$ldap_handle->search(
2021 base => $main::ldap_server_dn,
2022 scope => 'base',
2023 attrs => 'FAIrepository',
2024 filter => 'objectClass=FAIrepositoryServer'
2025 );
2026 if($mesg->count) {
2027 foreach my $entry(@{$mesg->{'entries'}}) {
2028 foreach my $value(@{$entry->get_value('FAIrepository', asref => 1)}) {
2029 my ($server, $tag, $release, $sections)= split /\|/, $value;
2030 my $line = "deb $server $release";
2031 $sections =~ s/,/ /g;
2032 $line.= " $sections";
2033 print $fh $line."\n";
2034 }
2035 }
2036 }
2037 } else {
2038 if (defined $main::ldap_server_dn){
2039 &main::daemon_log("$session_id ERROR: something wrong with ldap_server_dn '$main::ldap_server_dn', abort create_sources_list", 1);
2040 } else {
2041 &main::daemon_log("$session_id ERROR: no ldap_server_dn found, abort create_sources_list", 1);
2042 }
2043 }
2044 close($fh);
2046 return $result;
2047 }
2050 sub run_create_packages_list_db {
2051 my ($session, $heap) = @_[SESSION, HEAP];
2052 my $session_id = $session->ID;
2054 my $task = POE::Wheel::Run->new(
2055 Program => sub {&create_packages_list_db(undef, undef, $session_id)},
2056 StdoutEvent => "session_run_result",
2057 StderrEvent => "session_run_debug",
2058 CloseEvent => "session_run_done",
2059 );
2060 $heap->{task}->{ $task->ID } = $task;
2061 }
2064 sub create_packages_list_db {
2065 my ($ldap_handle, $sources_file, $session_id) = @_;
2067 # it should not be possible to trigger a recreation of packages_list_db
2068 # while packages_list_db is under construction, so set flag packages_list_under_construction
2069 # which is tested befor recreation can be started
2070 if (-r $packages_list_under_construction) {
2071 daemon_log("$session_id WARNING: packages_list_db is right now under construction, please wait until this process is finished", 3);
2072 return;
2073 } else {
2074 daemon_log("$session_id INFO: create_packages_list_db: start", 5);
2075 # set packages_list_under_construction to true
2076 system("touch $packages_list_under_construction");
2077 @packages_list_statements=();
2078 }
2080 if (not defined $session_id) { $session_id = 0; }
2081 if (not defined $ldap_handle) {
2082 $ldap_handle= &get_ldap_handle();
2084 if (not defined $ldap_handle) {
2085 daemon_log("$session_id ERROR: no ldap_handle available to create_packages_list_db", 1);
2086 unlink($packages_list_under_construction);
2087 return;
2088 }
2089 }
2090 if (not defined $sources_file) {
2091 &main::daemon_log("$session_id INFO: no sources_file given for creating packages list so trigger creation of it", 5);
2092 $sources_file = &create_sources_list($session_id);
2093 }
2095 if (not defined $sources_file) {
2096 &main::daemon_log("$session_id ERROR: no sources_file given under '$sources_file', skip create_packages_list_db", 1);
2097 unlink($packages_list_under_construction);
2098 return;
2099 }
2101 my $line;
2103 open(CONFIG, "<$sources_file") or do {
2104 daemon_log( "$session_id ERROR: create_packages_list_db: Failed to open '$sources_file'", 1);
2105 unlink($packages_list_under_construction);
2106 return;
2107 };
2109 # Read lines
2110 while ($line = <CONFIG>){
2111 # Unify
2112 chop($line);
2113 $line =~ s/^\s+//;
2114 $line =~ s/^\s+/ /;
2116 # Strip comments
2117 $line =~ s/#.*$//g;
2119 # Skip empty lines
2120 if ($line =~ /^\s*$/){
2121 next;
2122 }
2124 # Interpret deb line
2125 if ($line =~ /^deb [^\s]+\s[^\s]+\s[^\s]+/){
2126 my( $baseurl, $dist, $sections ) = ($line =~ /^deb\s([^\s]+)\s+([^\s]+)\s+(.*)$/);
2127 my $section;
2128 foreach $section (split(' ', $sections)){
2129 &parse_package_info( $baseurl, $dist, $section, $session_id );
2130 }
2131 }
2132 }
2134 close (CONFIG);
2136 find(\&cleanup_and_extract, keys( %repo_dirs ));
2137 unshift @packages_list_statements, "VACUUM";
2138 unshift @packages_list_statements, "DELETE FROM $packages_list_tn";
2139 $packages_list_db->exec_statementlist(\@packages_list_statements);
2140 unlink($packages_list_under_construction);
2141 daemon_log("$session_id INFO: create_packages_list_db: finished", 5);
2142 return;
2143 }
2146 sub parse_package_info {
2147 my ($baseurl, $dist, $section, $session_id)= @_;
2148 my ($package);
2149 if (not defined $session_id) { $session_id = 0; }
2150 my ($path) = ($baseurl =~ m%://[^/]*(.*)$%);
2151 $repo_dirs{ "${repo_path}/pool" } = 1;
2153 foreach $package ("Packages.gz"){
2154 daemon_log("$session_id DEBUG: create_packages_list: fetch $baseurl, $dist, $section", 7);
2155 get_package( "$baseurl/dists/$dist/$section/binary-$arch/$package", "$outdir/$dist/$section", $session_id );
2156 parse_package( "$outdir/$dist/$section", $dist, $path, $session_id );
2157 }
2159 }
2162 sub get_package {
2163 my ($url, $dest, $session_id)= @_;
2164 if (not defined $session_id) { $session_id = 0; }
2166 my $tpath = dirname($dest);
2167 -d "$tpath" || mkpath "$tpath";
2169 # This is ugly, but I've no time to take a look at "how it works in perl"
2170 if(0 == system("wget '$url' -O '$dest' 2>/dev/null") ) {
2171 system("gunzip -cd '$dest' > '$dest.in'");
2172 daemon_log("$session_id DEBUG: run command: gunzip -cd '$dest' > '$dest.in'", 5);
2173 unlink($dest);
2174 daemon_log("$session_id DEBUG: delete file '$dest'", 5);
2175 } else {
2176 daemon_log("$session_id ERROR: create_packages_list_db: get_packages: fetching '$url' failed!", 1);
2177 }
2178 return 0;
2179 }
2182 sub parse_package {
2183 my ($path, $dist, $srv_path, $session_id)= @_;
2184 if (not defined $session_id) { $session_id = 0;}
2185 my ($package, $version, $section, $description);
2186 my $PACKAGES;
2187 my $timestamp = &get_time();
2189 if(not stat("$path.in")) {
2190 daemon_log("$session_id ERROR: create_packages_list: parse_package: file '$path.in' is not readable",1);
2191 return;
2192 }
2194 open($PACKAGES, "<$path.in");
2195 if(not defined($PACKAGES)) {
2196 daemon_log("$session_id ERROR: create_packages_list_db: parse_package: cannot open '$path.in'",1);
2197 return;
2198 }
2200 # Read lines
2201 while (<$PACKAGES>){
2202 my $line = $_;
2203 # Unify
2204 chop($line);
2206 # Use empty lines as a trigger
2207 if ($line =~ /^\s*$/){
2208 my $sql2 = "INSERT INTO packages_list VALUES ('$dist', '$package', '$version', '$section', '', 'none', '$timestamp')";
2209 my $sql = "INSERT INTO packages_list VALUES ('$dist', '$package', '$version', '$section', '', 'none', '$timestamp')";
2210 push(@packages_list_statements, $sql);
2211 push(@packages_list_statements, $sql2);
2212 $package = "none";
2213 $version = "none";
2214 $section = "none";
2215 $description = "none";
2216 next;
2217 }
2219 # Trigger for package name
2220 if ($line =~ /^Package:\s/){
2221 ($package)= ($line =~ /^Package: (.*)$/);
2222 next;
2223 }
2225 # Trigger for version
2226 if ($line =~ /^Version:\s/){
2227 ($version)= ($line =~ /^Version: (.*)$/);
2228 next;
2229 }
2231 # Trigger for description
2232 if ($line =~ /^Description:\s/){
2233 ($description)= ($line =~ /^Description: (.*)$/);
2234 next;
2235 }
2237 # Trigger for section
2238 if ($line =~ /^Section:\s/){
2239 ($section)= ($line =~ /^Section: (.*)$/);
2240 next;
2241 }
2243 # Trigger for filename
2244 if ($line =~ /^Filename:\s/){
2245 my ($filename) = ($line =~ /^Filename: (.*)$/);
2246 store_fileinfo( $package, $filename, $dist, $srv_path, $version, $repo_path );
2247 next;
2248 }
2249 }
2251 close( $PACKAGES );
2252 unlink( "$path.in" );
2253 &main::daemon_log("$session_id DEBUG: unlink '$path.in'", 1);
2254 }
2257 sub store_fileinfo {
2258 my( $package, $file, $dist, $path, $vers, $srvdir) = @_;
2260 my %fileinfo = (
2261 'package' => $package,
2262 'dist' => $dist,
2263 'version' => $vers,
2264 );
2266 $repo_files{ "${srvdir}/$file" } = \%fileinfo;
2267 }
2270 sub cleanup_and_extract {
2271 my $fileinfo = $repo_files{ $File::Find::name };
2273 if( defined $fileinfo ) {
2275 my $dir = "$outdir/$fileinfo->{ 'dist' }/debconf.d";
2276 my $sql;
2277 my $package = $fileinfo->{ 'package' };
2278 my $newver = $fileinfo->{ 'version' };
2280 mkpath($dir);
2281 system( "dpkg -e '$File::Find::name' '$dir/DEBIAN'" );
2283 if( -f "$dir/DEBIAN/templates" ) {
2285 daemon_log("DEBUG: Found debconf templates in '$package' - $newver", 5);
2287 my $tmpl= "";
2288 {
2289 local $/=undef;
2290 open FILE, "$dir/DEBIAN/templates";
2291 $tmpl = &encode_base64(<FILE>);
2292 close FILE;
2293 }
2294 rmtree("$dir/DEBIAN/templates");
2296 $sql= "update $main::packages_list_tn set template = '$tmpl' where package = '$package' and version = '$newver';";
2298 } else {
2299 $sql= "update $main::packages_list_tn set template = '' where package = '$package' and version = '$newver';";
2300 }
2302 push @packages_list_statements, $sql;
2303 }
2305 return;
2306 }
2309 #==== MAIN = main ==============================================================
2310 # parse commandline options
2311 Getopt::Long::Configure( "bundling" );
2312 GetOptions("h|help" => \&usage,
2313 "c|config=s" => \$cfg_file,
2314 "f|foreground" => \$foreground,
2315 "v|verbose+" => \$verbose,
2316 "no-bus+" => \$no_bus,
2317 "no-arp+" => \$no_arp,
2318 );
2320 # read and set config parameters
2321 &check_cmdline_param ;
2322 &read_configfile;
2323 &check_pid;
2325 $SIG{CHLD} = 'IGNORE';
2327 # forward error messages to logfile
2328 if( ! $foreground ) {
2329 open( STDIN, '+>/dev/null' );
2330 open( STDOUT, '+>&STDIN' );
2331 open( STDERR, '+>&STDIN' );
2332 }
2334 # Just fork, if we are not in foreground mode
2335 if( ! $foreground ) {
2336 chdir '/' or die "Can't chdir to /: $!";
2337 $pid = fork;
2338 setsid or die "Can't start a new session: $!";
2339 umask 0;
2340 } else {
2341 $pid = $$;
2342 }
2344 # Do something useful - put our PID into the pid_file
2345 if( 0 != $pid ) {
2346 open( LOCK_FILE, ">$pid_file" );
2347 print LOCK_FILE "$pid\n";
2348 close( LOCK_FILE );
2349 if( !$foreground ) {
2350 exit( 0 )
2351 };
2352 }
2354 daemon_log(" ", 1);
2355 daemon_log("$0 started!", 1);
2357 if ($no_bus > 0) {
2358 $bus_activ = "false"
2359 }
2361 # connect to gosa-si job queue
2362 $job_db = GOSA::DBsqlite->new($job_queue_file_name);
2363 $job_db->create_table($job_queue_tn, \@job_queue_col_names);
2365 # connect to known_clients_db
2366 $known_clients_db = GOSA::DBsqlite->new($known_clients_file_name);
2367 $known_clients_db->create_table($known_clients_tn, \@known_clients_col_names);
2369 # connect to known_server_db
2370 $known_server_db = GOSA::DBsqlite->new($known_server_file_name);
2371 $known_server_db->create_table($known_server_tn, \@known_server_col_names);
2373 # connect to login_usr_db
2374 $login_users_db = GOSA::DBsqlite->new($login_users_file_name);
2375 $login_users_db->create_table($login_users_tn, \@login_users_col_names);
2377 # connect to fai_server_db and fai_release_db
2378 unlink($fai_server_file_name);
2379 $fai_server_db = GOSA::DBsqlite->new($fai_server_file_name);
2380 $fai_server_db->create_table($fai_server_tn, \@fai_server_col_names);
2382 unlink($fai_release_file_name);
2383 $fai_release_db = GOSA::DBsqlite->new($fai_release_file_name);
2384 $fai_release_db->create_table($fai_release_tn, \@fai_release_col_names);
2386 # connect to packages_list_db
2387 unlink($packages_list_file_name);
2388 unlink($packages_list_under_construction);
2389 $packages_list_db = GOSA::DBsqlite->new($packages_list_file_name);
2390 $packages_list_db->create_table($packages_list_tn, \@packages_list_col_names);
2392 # connect to messaging_db
2393 $messaging_db = GOSA::DBsqlite->new($messaging_file_name);
2394 $messaging_db->create_table($messaging_tn, \@messaging_col_names);
2397 # create xml object used for en/decrypting
2398 $xml = new XML::Simple();
2400 # create socket for incoming xml messages
2402 POE::Component::Server::TCP->new(
2403 Port => $server_port,
2404 ClientInput => sub {
2405 my ($kernel, $input) = @_[KERNEL, ARG0];
2406 push(@tasks, $input);
2407 $kernel->yield("next_task");
2408 },
2409 InlineStates => {
2410 next_task => \&next_task,
2411 task_result => \&handle_task_result,
2412 task_done => \&handle_task_done,
2413 task_debug => \&handle_task_debug,
2414 child_reap => sub { "Do nothing special. I'm just a comment, but i'm necessary!" },
2415 }
2416 );
2418 daemon_log("start socket for incoming xml messages at port '$server_port' ", 1);
2420 # create session for repeatedly checking the job queue for jobs
2421 POE::Session->create(
2422 inline_states => {
2423 _start => \&_start,
2424 sig_handler => \&sig_handler,
2425 watch_for_new_messages => \&watch_for_new_messages,
2426 watch_for_done_messages => \&watch_for_done_messages,
2427 watch_for_new_jobs => \&watch_for_new_jobs,
2428 watch_for_done_jobs => \&watch_for_done_jobs,
2429 create_packages_list_db => \&run_create_packages_list_db,
2430 create_fai_server_db => \&run_create_fai_server_db,
2431 create_fai_release_db => \&run_create_fai_release_db,
2432 session_run_result => \&session_run_result,
2433 session_run_debug => \&session_run_debug,
2434 session_run_done => \&session_run_done,
2435 child_reap => sub { "Do nothing special. I'm just a comment, but i'm necessary!" },
2436 }
2437 );
2440 # import all modules
2441 &import_modules;
2443 # check wether all modules are gosa-si valid passwd check
2445 POE::Kernel->run();
2446 exit;