smeserver-openvpn-s2s/root/etc/e-smith/events/actions/openvpn-s2s-onelink

61 lines
1.8 KiB
Perl

#!/usr/bin/perl -w
#----------------------------------------------------------------------
# copyright (C) 2010 Firewall Services
# Daniel Berteaud <daniel@firewall-services.com>
#
# This program is free software; you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation; either version 2 of the License, or
# (at your option) any later version.
#
# This program is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU General Public License for more details.
#
# You should have received a copy of the GNU General Public License
# along with this program; if not, write to the Free Software
# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
#----------------------------------------------------------------------
use strict;
use esmith::templates;
use esmith::ConfigDB;
my $event = $ARGV [0];
my $vpn = $ARGV [1];
my $lock="/var/lock/subsys/openvpn-s2s";
my $piddir="/var/run/openvpn-s2s";
die "missing vpn name" unless defined $vpn;
my $db = esmith::ConfigDB->open_ro("openvpn-s2s");
my $conf = $db->get($vpn) or die "unknown site to site vpn";
my $key = $conf->key;
my $status = $conf->prop('status') || 'disabled';
if ($status eq 'enabled'){
processTemplate(
{
TEMPLATE_PATH => "/etc/openvpn/s2s/openvpn-s2s.conf",
MORE_DATA => {DB_KEY=>$key},
OUTPUT_FILENAME => "/etc/openvpn/s2s/$key.conf",
});
if ( -f $lock ) {
my $pidf = "$piddir/$key.pid";
if ( -f $pidf ) {
my $pid=`cat $pidf`;
kill 'USR1', $pid || exit 1 ;
exit 0;
}
}
else {
print "openvpn: service not started";
exit 1
}
}