8 Commits

Author SHA1 Message Date
b0d33d1017 * Sun Jun 08 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-13.sme
- add esmith::AccountsDB::UTF8 support [SME: 13029]
  also esmith::DomainsDB::UTF8, esmith::HostsDB::UTF8,
  esmith::NetworksDB::UTF8
- improve esmith::ConfigDB::UTF8 support [SME: 13028]
2025-06-09 00:03:49 -04:00
5047976085 * Wed May 28 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-12.sme
- prevent service handling in bootstrap and post-upgrade [SME: 13002]
2025-05-28 00:40:02 -04:00
2710d9f93d * Thu Feb 20 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-11.sme
- remove pptpd reference [SME: 11417]
- move template-begin-ini [SME: 12211]
- passwordstrength{length} default to 12 [SME: 12383]
- more password granularity (none,normal,intermediate,strong) [SME: 12384]
2025-02-21 00:47:17 -05:00
493977906b * Thu Feb 20 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-10.sme
- remove pptpd reference [SME: 11417]
- move template-begin-ini [SME: 12211]
- passwordstrength{length} default to 12 [SME: 12383]
- more password granularity (none,normal,intermediate,strong) [SME: 12384]
2025-02-21 00:04:00 -05:00
95eba03095 Merge branch 'master' of https://src.koozali.org/smeserver/smeserver-lib 2024-12-12 18:47:27 +00:00
f12ac8900e * Thu Dec 12 2024 Brian Read <brianr@koozali.org> 11.0.0-9.sme
- add in getmyip [SME: 12810 ]
2024-12-12 18:46:52 +00:00
d3486008d1 Add in getmyip - used by Letsencrypt SManager panel 2024-12-12 17:36:25 +01:00
97d1058b70 Add *.bak to .gitignore 2024-11-12 19:20:04 +00:00
13 changed files with 197 additions and 8 deletions

1
.gitignore vendored
View File

@@ -2,3 +2,4 @@
*.log
*spec-20*
*.tar.xz
*.bak

View File

@@ -1 +0,0 @@
sme10

View File

@@ -24,6 +24,7 @@ use Errno;
use DirHandle;
my $event = shift || die "must give event name parameter";
exit(0) if ( grep( /^$event$/, qw(post-upgrade bootstrap-console-save) ));
chdir "/etc/e-smith/events/$event" or die "Couldn't chdir to event directory /etc/e-smith/events/$event: $!";
my $dh = DirHandle->new("services2adjust");

View File

@@ -0,0 +1,11 @@
;------------------------------------------------------------
; !!DO NOT MODIFY THIS FILE!!
;
; Manual changes will be lost when this file is regenerated.
;
; Please read the developer's guide, which is available
; at http://www.contribs.org/development/
;
; Copyright (C) 1999-2006 Mitel Networks Corporation
;------------------------------------------------------------

View File

@@ -87,7 +87,6 @@ ntpd=service|InitscriptOrder|55|status|disabled
php=service|status|enabled
popd=service|access|private|status|enabled
pppoe=service|DemandIdleTime|no|InitscriptOrder|57|SynchronousPPP|no|status|disabled
pptpd=service|sessions|10|status|disabled
qmail=service|InitscriptOrder|80|status|enabled
random=service|InitscriptOrder|20|status|enabled
rsyslog=service|InitscriptOrder|05|status|enabled
@@ -99,5 +98,6 @@ squid=service|InitscriptOrder|90|status|enabled
sshd=service|InitscriptOrder|85|PasswordAuthentication|yes|PermitRootLogin|yes|access|private|status|enabled
sync=service|Host|service.e-smith.com|LastId|0|SuccessId|0|SyncFrequency|1|SyncMinute|57|status|disabled
telnet=service|access|private|status|disabled
vpn=configuration|sessions|10|status|disabled
wibble=42
xinetd=service|InitscriptOrder|50|status|enabled

54
root/sbin/e-smith/getmyip Normal file
View File

@@ -0,0 +1,54 @@
#!/bin/bash
# List of services to query for the public IP
services=(
"ifconfig.me"
"ipinfo.io/ip"
"icanhazip.com"
"api.ipify.org"
"ident.me"
"ip.tyk.nu"
"checkip.amazonaws.com"
"ipecho.net/plain"
"myip.dnsomatic.com"
"ip.seeip.org"
"ipapi.co/ip"
"wtfismyip.com/text"
"openident.net/ip"
"ifconfig.co/ip"
)
# Function to shuffle the array of services
shuffle_services() {
local i
for ((i=${#services[@]} - 1; i > 0; i--)); do
local j=$((RANDOM % (i + 1)))
local temp="${services[i]}"
services[i]="${services[j]}"
services[j]="$temp"
done
}
# Function to fetch the public IP address
get_public_ip() {
shuffle_services
for service in "${services[@]}"; do
public_ip=$(curl -s --max-time 5 "$service")
# Check if the curl request was successful and there's a valid IP address
if [[ $? -eq 0 && $public_ip =~ ^[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+$ ]]; then
logger -t public_ip_script "Service used: $service, IP found: $public_ip"
echo "$public_ip"
return
fi
done
# If none of the services returned a valid IP, output an error message
echo "Failed to retrieve public IP using all services." >&2
logger -t public_ip_script "Error: Failed to retrieve public IP using all services."
exit 1
}
# Execute the function
get_public_ip

View File

@@ -0,0 +1,22 @@
#----------------------------------------------------------------------
# Copyright 2013-2025 Koozali Foundation inc.
# This program is free software; you can redistribute it and/or
# modify it under the same terms as Perl itself.
#----------------------------------------------------------------------
package esmith::AccountsDB::UTF8;
use strict;
use warnings;
use esmith::AccountsDB;
use esmith::config::utf8;
our @ISA = qw(esmith::AccountsDB);
sub tie_class
{
return 'esmith::config::utf8';
}
1;

View File

@@ -1,5 +1,6 @@
#----------------------------------------------------------------------
# Copyright 1999-2008 Mitel Networks Corporation
# Copyright 2013-2025 Koozali Foundationi inc.
# This program is free software; you can redistribute it and/or
# modify it under the same terms as Perl itself.
#----------------------------------------------------------------------
@@ -9,9 +10,9 @@ package esmith::ConfigDB::UTF8;
use strict;
use warnings;
use esmith::DB::db;
use esmith::ConfigDB;
use esmith::config::utf8;
our @ISA = qw( esmith::DB::db );
our @ISA = qw( esmith::ConfigDB );
sub tie_class
{

View File

@@ -0,0 +1,22 @@
#----------------------------------------------------------------------
# Copyright 2013-2025 Koozali Foundation inc.
# This program is free software; you can redistribute it and/or
# modify it under the same terms as Perl itself.
#----------------------------------------------------------------------
package esmith::DomainsDB::UTF8;
use strict;
use warnings;
use esmith::DomainsDB;
use esmith::config::utf8;
our @ISA = qw(esmith::DomainsDB);
sub tie_class
{
return 'esmith::config::utf8';
}
1;

View File

@@ -0,0 +1,22 @@
#----------------------------------------------------------------------
# Copyright 2013-2025 Koozali Foundation inc.
# This program is free software; you can redistribute it and/or
# modify it under the same terms as Perl itself.
#----------------------------------------------------------------------
package esmith::HostsDB::UTF8;
use strict;
use warnings;
use esmith::HostsDB;
use esmith::config::utf8;
our @ISA = qw(esmith::HostsDB);
sub tie_class
{
return 'esmith::config::utf8';
}
1;

View File

@@ -0,0 +1,22 @@
#----------------------------------------------------------------------
# Copyright 2013-2025 Koozali Foundation inc.
# This program is free software; you can redistribute it and/or
# modify it under the same terms as Perl itself.
#----------------------------------------------------------------------
package esmith::NetworksDB::UTF8;
use strict;
use warnings;
use esmith::NetworksDB;
use esmith::config::utf8;
our @ISA = qw(esmith::NetworksDB);
sub tie_class
{
return 'esmith::config::utf8';
}
1;

View File

@@ -556,6 +556,12 @@ for example /etc/passwd, /etc/samba/smbpasswd, etc.
=head2 validatePassword($password, $strength)
Validate Unix password.
length is the minimal password length, default is 12.
strength could be none,normal,intermediate or strong.
- none: only check for length
- normal: upper and lower case letters
- intermediate: upper and lower case letters not positive to cracklib
- strong : numbers, letter and special characters not positive to cracklib
=cut
@@ -566,14 +572,24 @@ sub validatePassword($$)
$strength ||= 'normal';
my $length = 12;
my $db = esmith::ConfigDB->open() || undef;
my $sysconfig = $db->get("passwordstrength")|| undef if $db ;
$length = $sysconfig->prop("length") || "12" if $sysconfig;
my $reason = 'ok';
$reason = 'it is too short' unless (length($password) > 6);
$reason = 'it is too short' unless (length($password) >= $length);
return $reason if ($reason ne 'ok' || $strength eq 'none');
$reason = 'it does not contain numbers' if (not $password =~ /\d/);
$reason = 'it does not contain uppercase characters' if (not $password =~ /[A-Z]/);
$reason = 'it does not contain lowercase characters' if (not $password =~ /[a-z]/);
return $reason if ($reason ne 'ok' || $strength eq 'normal');
# we are left here with intermediate and strong
if ($strength eq 'strong') {
$reason = 'it does not contain numbers' if (not $password =~ /\d/);
$reason = 'it does not contain special characters' if (not $password =~ /\W|_/);
}
return $reason if ($reason ne 'ok' && $strength eq 'strong');
if ( -f '/usr/lib64/cracklib_dict.pwd' ) {

View File

@@ -6,7 +6,7 @@ Summary: smeserver server and gateway - library module
%define name smeserver-lib
Name: %{name}
%define version 11.0.0
%define release 8
%define release 13
Version: %{version}
Release: %{release}%{?dist}
License: Artistic
@@ -33,6 +33,24 @@ Provides: e-smith-lib
smeserver server and gateway software - library module.
%changelog
* Sun Jun 08 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-13.sme
- add esmith::AccountsDB::UTF8 support [SME: 13029]
also esmith::DomainsDB::UTF8, esmith::HostsDB::UTF8,
esmith::NetworksDB::UTF8
- improve esmith::ConfigDB::UTF8 support [SME: 13028]
* Wed May 28 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-12.sme
- prevent service handling in bootstrap and post-upgrade [SME: 13002]
* Thu Feb 20 2025 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-11.sme
- remove pptpd reference [SME: 11417]
- move template-begin-ini [SME: 12211]
- passwordstrength{length} default to 12 [SME: 12383]
- more password granularity (none,normal,intermediate,strong) [SME: 12384]
* Thu Dec 12 2024 Brian Read <brianr@koozali.org> 11.0.0-9.sme
- add in getmyip [SME: 12810 ]
* Tue Nov 12 2024 Jean-Philippe Pialasse <jpp@koozali.org> 11.0.0-8.sme
- fix Use of uninitialized value [SME: 12760]