X-Git-Url: https://git.tokkee.org/?a=blobdiff_plain;f=gosa-si%2Fgosa-si-server;h=667a8f8fc1510f4f28ca7fdfafcbdddd7c1cf243;hb=191429fc4e64f814840b5553977eed9118612ed3;hp=2ffe6f7d09343c5489ac5f60ecc1caffc768d24a;hpb=b6590a274d8277d91bb1d373eec164e6c8d4627d;p=gosa.git diff --git a/gosa-si/gosa-si-server b/gosa-si/gosa-si-server index 2ffe6f7d0..667a8f8fc 100755 --- a/gosa-si/gosa-si-server +++ b/gosa-si/gosa-si-server @@ -25,6 +25,7 @@ use warnings; use Getopt::Long; use Config::IniFiles; use POSIX; +use utf8; use Fcntl; use IO::Socket::INET; @@ -40,9 +41,12 @@ use Sys::Syslog qw( :DEFAULT setlogsock); use Cwd; use File::Spec; use File::Basename; +use File::Path; use GOSA::DBsqlite; use GOSA::GosaSupportDaemon; use POE qw(Component::Server::TCP); +use Net::LDAP; +use Net::LDAP::Util qw(:escape); my $modules_path = "/usr/lib/gosa-si/modules"; use lib "/usr/lib/gosa-si/modules"; @@ -50,12 +54,13 @@ use lib "/usr/lib/gosa-si/modules"; my (%cfg_defaults, $foreground, $verbose, $ping_timeout); my ($bus_activ, $bus, $msg_to_bus, $bus_cipher); my ($server, $server_mac_address); -my ($gosa_server, $job_queue_timeout, $job_queue_table_name, $job_queue_file_name,$job_queue_loop_delay); -my ($known_modules, $known_clients_file_name, $known_server_file_name); +my ($gosa_server, $job_queue_timeout, $job_queue_loop_delay); +my ($known_modules); my ($pid_file, $procid, $pid, $log_file); my ($arp_activ, $arp_fifo); my ($xml); - +my $sources_list; +my $max_clients; # variables declared in config file are always set to 'our' our (%cfg_defaults, $log_file, $pid_file, $server_ip, $server_port, $SIPackages_key, @@ -72,6 +77,8 @@ our $no_arp; our $verbose; our $forground; our $cfg_file; +our ($ldap_handle, $ldap_uri, $ldap_base, $ldap_admin_dn, $ldap_admin_password ); + # specifies the verbosity of the daemon_log $verbose = 0 ; @@ -87,16 +94,46 @@ $bus_activ = "true"; $no_arp = 0; +our $prg= basename($0); + # holds all gosa jobs our $job_db; -our $job_queue_table_name = 'jobs'; +our $job_queue_tn = 'jobs'; +my $job_queue_file_name; +my @job_queue_col_names = ("id INTEGER", "timestamp", "status", "result", "progress INTEGER", + "headertag", "targettag", "xmlmessage", "macaddress"); # holds all other gosa-sd as well as the gosa-sd-bus our $known_server_db; +our $known_server_tn = "known_server"; +my $known_server_file_name; +my @known_server_col_names = ('hostname', 'status', 'hostkey', 'timestamp'); # holds all registrated clients our $known_clients_db; -our $prg= basename($0); +our $known_clients_tn = "known_clients"; +my $known_clients_file_name; +my @known_clients_col_names = ('hostname', 'status', 'hostkey', 'timestamp', 'macaddress', 'events'); + +# holds all logged in user at each client +our $login_users_db; +our $login_users_tn = "login_users"; +my $login_users_file_name; +my @login_users_col_names = ('client', 'user', 'timestamp'); + +# holds all fai server, the debian release and tag +our $fai_server_db; +our $fai_server_tn = "fai_server"; +my $fai_server_file_name; +our @fai_server_col_names = ('timestamp', 'server', 'release', 'tag'); + +# holds all packages available from different repositories +our $packages_list_db; +our $packages_list_tn = "packages_list"; +my $packages_list_file_name; +our @packages_list_col_names = ('distribution', 'package', 'version', 'section', 'description', 'template', 'timestamp'); +my $outdir = "/tmp/packages_list_db"; +my $arch = "i386"; %cfg_defaults = ( "general" => { @@ -107,11 +144,19 @@ our $prg= basename($0); "activ" => [\$bus_activ, "true"], }, "server" => { -# "ip" => [\$server_ip, "0.0.0.0"], "port" => [\$server_port, "20081"], "known-clients" => [\$known_clients_file_name, '/var/lib/gosa-si/clients.db' ], "known-servers" => [\$known_server_file_name, '/var/lib/gosa-si/servers.db'], - "gosa-unit-tag" => [\$gosa_unit_tag, ""], + "login-users" => [\$login_users_file_name, '/var/lib/gosa-si/users.db'], + "fai-server" => [\$fai_server_file_name, '/var/lib/gosa-si/fai.db'], + "packages-list" => [\$packages_list_file_name, '/var/lib/gosa-si/packages.db'], + "source-list" => [\$sources_list, '/etc/apt/sources.list'], + "ldap-uri" => [\$ldap_uri, ""], + "ldap-base" => [\$ldap_base, ""], + "ldap-admin-dn" => [\$ldap_admin_dn, ""], + "ldap-admin-password" => [\$ldap_admin_password, ""], + "gosa-unit-tag" => [\$gosa_unit_tag, ""], + "max-clients" => [\$max_clients, 10], }, "GOsaPackages" => { "ip" => [\$gosa_ip, "0.0.0.0"], @@ -213,15 +258,6 @@ sub daemon_log { } close( LOG_HANDLE ); } -#log into syslog -# my ($msg, $level, $facility) = @_; -# if(not defined $msg) {return} -# if(not defined $level) {$level = "info"} -# if(not defined $facility) {$facility = "LOG_DAEMON"} -# openlog($0, "pid,cons,", $facility); -# syslog($level, $msg); -# closelog; -# return; } @@ -336,7 +372,7 @@ sub import_modules { if( $info ) { my ($input_address, $input_key, $input, $input_active, $input_type) = @{$info}; $known_modules->{$mod_name} = $info; - daemon_log("module $mod_name loaded", 1); + daemon_log("INFO: module $mod_name loaded", 5); } } } @@ -398,8 +434,7 @@ sub check_key_and_xml_validity { } }; if($@) { - &main::daemon_log("WARNING: do not understand the message", 5); - &main::daemon_log("$@", 8); + &main::daemon_log("WARNING: do not understand the message: $@", 5); $msg = undef; $msg_hash = undef; } @@ -484,13 +519,13 @@ sub input_from_known_server { next; } my $host_key = $hit->{hostkey}; - daemon_log("SIPackages: known_server host_name: $host_name", 7); - daemon_log("SIPackages: known_server host_key: $host_key", 7); + daemon_log("DEBUG: input_from_known_server: host_name: $host_name", 7); + daemon_log("DEBUG: input_from_known_server: host_key: $host_key", 7); # check if module can open msg envelope with module key my ($tmp_msg, $tmp_msg_hash) = &check_key_and_xml_validity($input, $host_key); if( (!$tmp_msg) || (!$tmp_msg_hash) ) { - daemon_log("SIPackages: deciphering raise error", 7); + daemon_log("DEBUG: input_from_known_server: deciphering raise error", 7); daemon_log("$@", 8); next; } @@ -503,7 +538,7 @@ sub input_from_known_server { } if( (!$msg) || (!$msg_hash) || (!$module) ) { - daemon_log("Incoming message is not from a known server", 3); + daemon_log("INFO: Incoming message is not from a known server", 5); } return ($msg, $msg_hash, $module); @@ -522,14 +557,14 @@ sub input_from_known_client { next; } my $host_key = $hit->{hostkey}; - &daemon_log("SIPackages: known_client host_name: $host_name", 7); - &daemon_log("SIPackages: known_client host_key: $host_key", 7); + &daemon_log("DEBUG: input_from_known_client: host_name: $host_name", 7); + &daemon_log("DEBUG: input_from_known_client: host_key: $host_key", 7); # check if module can open msg envelope with module key ($msg, $msg_hash) = &check_key_and_xml_validity($input, $host_key); if( (!$msg) || (!$msg_hash) ) { - &daemon_log("SIPackages: deciphering raise error", 7); + &daemon_log("DEGUG: input_from_known_client: deciphering raise error", 7); &daemon_log("$@", 8); next; } @@ -540,7 +575,7 @@ sub input_from_known_client { } if( (!$msg) || (!$msg_hash) || (!$module) ) { - &daemon_log("Incoming message is not from a known client", 3); + &daemon_log("INFO: Incoming message is not from a known client", 5); } return ($msg, $msg_hash, $module); @@ -566,7 +601,7 @@ sub input_from_unknown_host { daemon_log("ERROR: no key specified in config file for $mod", 1); next; } - daemon_log("$mod: $module_key", 5); + daemon_log("DEBUG: $mod: $module_key", 7); # check if module can open msg envelope with module key ($msg, $msg_hash) = &check_key_and_xml_validity($input, $module_key); @@ -580,7 +615,7 @@ sub input_from_unknown_host { } if( (!$msg) || (!$msg_hash) || (!$module)) { - daemon_log("Incoming message is not from an unknown host", 5); + daemon_log("INFO: Incoming message is not from an unknown host", 5); } return ($msg, $msg_hash, $module); @@ -603,10 +638,12 @@ sub create_ciphering { sub encrypt_msg { my ($msg, $key) = @_; my $my_cipher = &create_ciphering($key); + my $len; { - use bytes; - $msg = "\0"x(16-length($msg)%16).$msg; + use bytes; + $len= 16-length($msg)%16; } + $msg = "\0"x($len).$msg; $msg = $my_cipher->encrypt($msg); chomp($msg = &encode_base64($msg)); # there are no newlines allowed inside msg @@ -684,7 +721,7 @@ sub open_socket { if(not defined $socket) { return; } - &daemon_log("open_socket: $PeerAddr", 7); +# &daemon_log("DEBUG: open_socket: $PeerAddr", 7); return $socket; } @@ -785,7 +822,7 @@ sub send_msg_to_target { # opensocket my $socket = &open_socket($address); if( !$socket ) { - daemon_log("cannot send ".$header."msg to $address , host not reachable", 1); + daemon_log("ERROR: cannot send ".$header."msg to $address , host not reachable", 1); $error++; } @@ -793,7 +830,7 @@ sub send_msg_to_target { # send xml msg print $socket $crypted_msg."\n"; - daemon_log("send ".$header."msg to $address", 1); + daemon_log("INFO: send ".$header."msg to $address", 5); daemon_log("message:\n$msg", 8); } @@ -850,7 +887,6 @@ sub send_msg_to_target { } } } - return $error; } @@ -858,6 +894,8 @@ sub send_msg_to_target { sub _start { my ($kernel) = $_[KERNEL]; &trigger_db_loop($kernel); + #$kernel->yield('create_fai_server_db', $fai_server_tn ); + #$kernel->yield('create_packages_list_db', $sources_list ); } @@ -871,8 +909,8 @@ sub client_input { my ($answer_header, @answer_target_l, $answer_source); my $client_answer; - daemon_log("Incoming msg from '".$heap->{'remote_ip'}."'", 7); - daemon_log("message:\n$input", 8); + daemon_log("INFO: Incoming msg from '".$heap->{'remote_ip'}."'", 5); + daemon_log("DEBUG: Incoming message:\n$input", 8); #################### # check incoming msg @@ -894,12 +932,12 @@ sub client_input { ###################### # process incoming msg if( $error == 0) { - daemon_log("Processing module ".$module, 5); + daemon_log("DEBUG: Processing module ".$module, 7); $answer_l = &{ $module."::process_incoming_msg" }($msg, $msg_hash, $session_id); if ( 0 > @{$answer_l} ) { my $answer_str = join("\n", @{$answer_l}); - daemon_log("$module: Got answer from module: \n".$answer_str,8); + daemon_log("DEGUB: $module: Got answer from module: \n".$answer_str,8); } } if( !$answer_l ) { $error++ }; @@ -1059,7 +1097,7 @@ sub watch_for_new_jobs { # check gosa job queue for jobs with executable timestamp my $timestamp = &get_time(); - my $sql_statement = "SELECT * FROM ".$job_queue_table_name. + my $sql_statement = "SELECT * FROM ".$job_queue_tn. " WHERE status='waiting' AND timestamp<'$timestamp'"; my $res = $job_db->select_dbentry( $sql_statement ); @@ -1076,7 +1114,7 @@ sub watch_for_new_jobs { if (not defined $target) { &daemon_log("ERROR: no host found for mac address: $macaddress", 1); &daemon_log("$hit->{xmlmessage}", 8); - my $sql_statement = "UPDATE $job_queue_table_name ". + my $sql_statement = "UPDATE $job_queue_tn ". "SET status='error', result='no host found for mac address' ". "WHERE id='$jobdb_id'"; my $res = $job_db->update_dbentry($sql_statement); @@ -1090,34 +1128,216 @@ sub watch_for_new_jobs { $job_msg =~ s/<\/xml>$/$jobdb_id<\/jobdb_id><\/xml>/; my $func_error = &send_msg_to_target($job_msg, $server_address, $GosaPackages_key, $header); + } -# if ( $func_error ) { -#print STDERR "========================================\n"; -#print STDERR "func_error: $func_error\n"; -# -# my $sql_statement = "UPDATE $job_queue_table_name ". -# "SET status='error', targettag='$target' ". -# "WHERE id='$jobdb_id'"; -#print STDERR "sql: $sql_statement\n"; -# my $res = $job_db->update_dbentry($sql_statement); -#print STDERR "res: ".Dumper($res); + $kernel->delay_set('watch_for_new_jobs',3); +} + + +sub refresh_ldap_handle { + my $mesg; + + # Get an ldap handle, if we don't have one + if( ! defined $ldap_handle ){ + $ldap_handle = Net::LDAP->new( $ldap_uri ); + } + # Still not defined? + if( ! defined $ldap_handle ) { + daemon_log( "ch $$: Net::LDAP constructor failed: $!\n" ); + return 0; + } + + # Bind to ldap server - eventually authenticate + if( defined $ldap_admin_dn ) { + if( defined $ldap_admin_password ) { + $mesg = $ldap_handle->bind( $ldap_admin_dn, password => $ldap_admin_password ); + } else { + $mesg = $ldap_handle->bind( $ldap_admin_dn ); + } + } else { + $mesg = $ldap_handle->bind(); + } + + if( 0 != $mesg->code ) { + undef( $ldap_handle ) if( 81 == $mesg->code ); + daemon_log( "ch $$: LDAP bind: error (". $mesg->code . ') - ' . $mesg->error . "\n", 1); + return 0; + } + + return 1; +} + + +sub create_fai_server_db { + my ($table_name) = $_[ARG0]; + +##################################################################### # -# } else { -#print STDERR "========================================\n"; -#print STDERR "func_error: $func_error\n"; +# TODO für dich Cajus :-) # -# my $sql_statement = "UPDATE $job_queue_table_name ". -# "SET status='done', targettag='$target' ". -# "WHERE id='$jobdb_id'"; -#print STDERR "sql: $sql_statement\n"; -# my $res = $job_db->update_dbentry($sql_statement); -#print STDERR "res: ".Dumper($res); -# } +# ################################################################### + + $fai_server_db->add_dbentry( { + table => $table_name, + primkey => [], + server => "dummyserver", # neuer fai-server + release => "kleinkind", # neuer release + tag => "imwachstum", # neues tag + } ); + return; +} + + +sub create_packages_list_db { + my ($sources_file) = $_[ARG0] ; + my $line; + + open(CONFIG, "<$sources_file") or do { + daemon_log( "ERROR: Failed to open '$sources_file', creating packages.db stopped", 1); + return; + }; + + # Read lines + while ($line = ){ + # Unify + chop($line); + $line =~ s/^\s+//; + $line =~ s/^\s+/ /; + + # Strip comments + $line =~ s/#.*$//g; + + # Skip empty lines + if ($line =~ /^\s*$/){ + next; + } + + # Interpret deb line + if ($line =~ /^deb [^\s]+\s[^\s]+\s[^\s]+/){ + my( $baseurl, $dist, $sections ) = ($line =~ /^deb\s([^\s]+)\s+([^\s]+)\s+(.*)$/); + my $section; + foreach $section (split(' ', $sections)){ + &parse_package_info( $baseurl, $dist, $section ); + } + } } - $kernel->delay_set('watch_for_new_jobs',3); + close (CONFIG); + + + return; } +sub parse_package_info { + my ($baseurl, $dist, $section)= @_; + my ($package); + + my ($path) = ($baseurl =~ m%://[^/]*(.*)$%); + + foreach $package ("Packages.gz"){ + print "getting $baseurl , $dist , $section... \n"; + get_package( "$baseurl/dists/$dist/$section/binary-$arch/$package", "$outdir/$dist/$section" ); + print "done\n"; + print "parsing packages... \n"; + parse_package( "$outdir/$dist/$section", $dist, $path ); + print "done\n"; + last; + } +} +sub get_package { + my ($url, $dest)= @_; + + my $tpath = dirname($dest); + -d "$tpath" || mkpath "$tpath"; + + # This is ugly, but I've no time to take a look at "how it works in perl" + if( system("wget '$url' -O '$dest' 2>/dev/null") ) { + system("gzip -cd '$dest' > '$dest.in'"); + system("rm -f '$dest'"); + } + + return 0; +} +sub parse_package { + my ($path, $dist, $srv_path )= @_; + my ($package, $version, $section, $description); + my @sql_list; + + open(PACKAGES, "<$path.in") or return; + + # Read lines + while (my $line = ){ + # Unify + chop($line); + + # Use empty lines as a trigger + if ($line =~ /^\s*$/){ + my $sql = "INSERT INTO packages_list VALUES ('$dist', '$package', '$version', '$section', 'xxx', 'none', '0')"; + push(@sql_list, $sql); + $package = "none"; + $version = "none"; + $section = "none"; + $description = "none"; + next; + } + + # Trigger for package name + if ($line =~ /^Package:\s/){ + ($package)= ($line =~ /^Package: (.*)$/); + next; + } + # Trigger for version + if ($line =~ /^Version:\s/){ + ($version)= ($line =~ /^Version: (.*)$/); + next; + } + + # Trigger for description + if ($line =~ /^Description:\s/){ + ($description)= ($line =~ /^Description: (.*)$/); + next; + } + + # Trigger for section + if ($line =~ /^Section:\s/){ + ($section)= ($line =~ /^Section: (.*)$/); + next; + } + + } + + close( PACKAGES ); + unlink( "$path.in" ); + + $packages_list_db->exec_statementlist(\@sql_list); +} + +# +#sub store_fileinfo { +# my( $package, $file, $dist, $path, $vers ) = @_; +# +# my %fileinfo = ( +# 'package' => $package, +# 'dist' => $dist, +# 'version' => $vers +# ); +# +# $repo_files{ "${srvdir}${path}/$file" } = \%fileinfo; +#} + +sub next_task { + my ($heap) = $_[HEAP]; + + if( keys(%{$heap->{task}}) < $max_clients ) { + + } + + #$heap->{task}->{$task->ID} = $task; +} + +sub task_result { + +} #==== MAIN = main ============================================================== # parse commandline options @@ -1176,19 +1396,29 @@ if ($no_bus > 0) { #unlink('/tmp/gosa_si_lock*'); # connect to gosa-si job queue -my @job_col_names = ("id INTEGER", "timestamp", "status", "result", "progress", "headertag", "targettag", "xmlmessage", "macaddress"); $job_db = GOSA::DBsqlite->new($job_queue_file_name); -$job_db->create_table('jobs', \@job_col_names); +$job_db->create_table($job_queue_tn, \@job_queue_col_names); # connect to known_clients_db -my @clients_col_names = ('hostname', 'status', 'hostkey', 'timestamp', 'macaddress', 'events'); $known_clients_db = GOSA::DBsqlite->new($known_clients_file_name); -$known_clients_db->create_table('known_clients', \@clients_col_names); +$known_clients_db->create_table($known_clients_tn, \@known_clients_col_names); # connect to known_server_db -my @server_col_names = ('hostname', 'status', 'hostkey', 'timestamp'); $known_server_db = GOSA::DBsqlite->new($known_server_file_name); -$known_server_db->create_table('known_server', \@server_col_names); +$known_server_db->create_table($known_server_tn, \@known_server_col_names); + +# connect to login_usr_db +$login_users_db = GOSA::DBsqlite->new($login_users_file_name); +$login_users_db->create_table($login_users_tn, \@login_users_col_names); + +# connect to fai_server_db +$fai_server_db = GOSA::DBsqlite->new($fai_server_file_name); +$fai_server_db->create_table($fai_server_tn, \@fai_server_col_names); + +# connect to packages_list_db +unlink($packages_list_file_name); +$packages_list_db = GOSA::DBsqlite->new($packages_list_file_name); +$packages_list_db->create_table($packages_list_tn, \@packages_list_col_names); # create xml object used for en/decrypting $xml = new XML::Simple(); @@ -1204,7 +1434,11 @@ daemon_log("start socket for incoming xml messages at port '$server_port' ", 1); POE::Session->create( inline_states => { _start => \&_start, + next_task => \&next_task, + task_result => \&task_result, watch_for_new_jobs => \&watch_for_new_jobs, + create_packages_list_db => \&create_packages_list_db, + create_fai_server_db => \&create_fai_server_db, } );