Project

General

Profile

Download (11.5 KB) Statistics
| Branch: | Tag: | Revision:
1
<?php
2
/*
3
 * diag_dns.php
4
 *
5
 * part of pfSense (https://www.pfsense.org)
6
 * Copyright (c) 2004-2016 Rubicon Communications, LLC (Netgate)
7
 * All rights reserved.
8
 *
9
 * Redistribution and use in source and binary forms, with or without
10
 * modification, are permitted provided that the following conditions are met:
11
 *
12
 * 1. Redistributions of source code must retain the above copyright notice,
13
 *    this list of conditions and the following disclaimer.
14
 *
15
 * 2. Redistributions in binary form must reproduce the above copyright
16
 *    notice, this list of conditions and the following disclaimer in
17
 *    the documentation and/or other materials provided with the
18
 *    distribution.
19
 *
20
 * 3. All advertising materials mentioning features or use of this software
21
 *    must display the following acknowledgment:
22
 *    "This product includes software developed by the pfSense Project
23
 *    for use in the pfSense® software distribution. (http://www.pfsense.org/).
24
 *
25
 * 4. The names "pfSense" and "pfSense Project" must not be used to
26
 *    endorse or promote products derived from this software without
27
 *    prior written permission. For written permission, please contact
28
 *    coreteam@pfsense.org.
29
 *
30
 * 5. Products derived from this software may not be called "pfSense"
31
 *    nor may "pfSense" appear in their names without prior written
32
 *    permission of the Electric Sheep Fencing, LLC.
33
 *
34
 * 6. Redistributions of any form whatsoever must retain the following
35
 *    acknowledgment:
36
 *
37
 * "This product includes software developed by the pfSense Project
38
 * for use in the pfSense software distribution (http://www.pfsense.org/).
39
 *
40
 * THIS SOFTWARE IS PROVIDED BY THE pfSense PROJECT ``AS IS'' AND ANY
41
 * EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
42
 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
43
 * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE pfSense PROJECT OR
44
 * ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
45
 * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
46
 * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
47
 * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48
 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
49
 * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
50
 * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
51
 * OF THE POSSIBILITY OF SUCH DAMAGE.
52
 */
53

    
54
##|+PRIV
55
##|*IDENT=page-diagnostics-dns
56
##|*NAME=Diagnostics: DNS Lookup
57
##|*DESCR=Allow access to the 'Diagnostics: DNS Lookup' page.
58
##|*MATCH=diag_dns.php*
59
##|-PRIV
60

    
61
$pgtitle = array(gettext("Diagnostics"), gettext("DNS Lookup"));
62
require_once("guiconfig.inc");
63

    
64
$host = trim($_REQUEST['host'], " \t\n\r\0\x0B[];\"'");
65

    
66
/* If this section of config.xml has not been populated yet we need to set it up
67
*/
68
if (!is_array($config['aliases']['alias'])) {
69
	$config['aliases']['alias'] = array();
70
}
71
$a_aliases = &$config['aliases']['alias'];
72

    
73
$aliasname = substr(str_replace(array(".", "-"), "_", $host), 0, 31);
74
$alias_exists = false;
75
$counter = 0;
76
foreach ($a_aliases as $a) {
77
	if ($a['name'] == $aliasname) {
78
		$alias_exists = true;
79
		$id = $counter;
80
	}
81
	$counter++;
82
}
83

    
84
function resolve_host_addresses($host) {
85
	$recordtypes = array(DNS_A, DNS_AAAA, DNS_CNAME);
86
	$dnsresult = array();
87
	$resolved = array();
88
	$errreporting = error_reporting();
89
	error_reporting($errreporting & ~E_WARNING);// dns_get_record throws a warning if nothing is resolved..
90
	foreach ($recordtypes as $recordtype) {
91
		$tmp = dns_get_record($host, $recordtype);
92
		if (is_array($tmp)) {
93
			$dnsresult = array_merge($dnsresult, $tmp);
94
		}
95
	}
96
	error_reporting($errreporting);// restore original php warning/error settings.
97

    
98
	foreach ($dnsresult as $item) {
99
		$newitem = array();
100
		$newitem['type'] = $item['type'];
101
		switch ($item['type']) {
102
			case 'CNAME':
103
				$newitem['data'] = $item['target'];
104
				$resolved[] = $newitem;
105
				break;
106
			case 'A':
107
				$newitem['data'] = $item['ip'];
108
				$resolved[] = $newitem;
109
				break;
110
			case 'AAAA':
111
				$newitem['data'] = $item['ipv6'];
112
				$resolved[] = $newitem;
113
				break;
114
		}
115
	}
116
	return $resolved;
117
}
118

    
119
if (isAllowedPage('firewall_aliases_edit.php') && isset($_POST['create_alias']) && (is_hostname($host) || is_ipaddr($host))) {
120
	$resolved = gethostbyname($host);
121
	$type = "hostname";
122
	if ($resolved) {
123
		$resolved = resolve_host_addresses($host);
124
		$isfirst = true;
125
		$addresses = "";
126
		foreach ($resolved as $re) {
127
			if ($re['data'] != "") {
128
				if (!$isfirst) {
129
					$addresses .= " ";
130
				}
131
				$re = rtrim($re['data']);
132
				if (is_ipaddr($re)) {
133
					$sn = is_ipaddrv6($re) ? '/128' : '/32';
134
				} else {
135
					// The name was a CNAME and resolved to another name, rather than an address.
136
					// In this case the alias entry will have a FQDN, so do not put a CIDR after it.
137
					$sn = "";
138
				}
139
				$addresses .= $re . $sn;
140
				$isfirst = false;
141
			}
142
		}
143
		if ($addresses == "") {
144
			$couldnotcreatealias = true;
145
		} else {
146
			$newalias = array();
147
			$newalias['name'] = $aliasname;
148
			$newalias['type'] = "network";
149
			$newalias['address'] = $addresses;
150
			$newalias['descr'] = gettext("Created from Diagnostics-> DNS Lookup");
151
			if ($alias_exists) {
152
				$a_aliases[$id] = $newalias;
153
			} else {
154
				$a_aliases[] = $newalias;
155
			}
156
			write_config(gettext("Created an alias from Diagnostics - DNS Lookup page."));
157
			$createdalias = true;
158
		}
159
	} else {
160
		$couldnotcreatealias = true;
161
	}
162
}
163

    
164
if ($_POST) {
165
	unset($input_errors);
166

    
167
	$reqdfields = explode(" ", "host");
168
	$reqdfieldsn = explode(",", "Host");
169

    
170
	do_input_validation($_POST, $reqdfields, $reqdfieldsn, $input_errors);
171

    
172
	if (!is_hostname($host) && !is_ipaddr($host)) {
173
		$input_errors[] = gettext("Host must be a valid hostname or IP address.");
174
	} else {
175
		// Test resolution speed of each DNS server.
176
		$dns_speeds = array();
177
		$dns_servers = array();
178
		exec("/usr/bin/grep nameserver /etc/resolv.conf | /usr/bin/cut -f2 -d' '", $dns_servers);
179
		foreach ($dns_servers as $dns_server) {
180
			$query_time = exec("/usr/bin/drill {$host_esc} " . escapeshellarg("@" . trim($dns_server)) . " | /usr/bin/grep Query | /usr/bin/cut -d':' -f2");
181
			if ($query_time == "") {
182
				$query_time = gettext("No response");
183
			}
184
			$new_qt = array();
185
			$new_qt['dns_server'] = $dns_server;
186
			$new_qt['query_time'] = $query_time;
187
			$dns_speeds[] = $new_qt;
188
			unset($new_qt);
189
		}
190
	}
191

    
192
	$type = "unknown";
193
	$resolved = array();
194
	$ipaddr = "";
195
	if (!$input_errors) {
196
		if (is_ipaddr($host)) {
197
			$type = "ip";
198
			$resolvedptr = gethostbyaddr($host);
199
			$ipaddr = $host;
200
			if ($host != $resolvedptr) {
201
				$tmpresolved = array();
202
				$tmpresolved['type'] = "PTR";
203
				$tmpresolved['data'] = $resolvedptr;
204
				$resolved[] = $tmpresolved;
205
			}
206
		} elseif (is_hostname($host)) {
207
			$type = "hostname";
208
			$ipaddr = gethostbyname($host);
209
			$resolved = resolve_host_addresses($host);
210
		}
211
	}
212
}
213

    
214
if ($_POST['host'] && $_POST['dialog_output']) {
215
	$host = (isset($resolvedptr) ? $resolvedptr : $host);
216
	display_host_results ($ipaddr, $host, $dns_speeds);
217
	exit;
218
}
219

    
220
function display_host_results ($address, $hostname, $dns_speeds) {
221
	$map_lengths = function($element) { return strlen($element[0]); };
222

    
223
	echo gettext("IP Address") . ": " . htmlspecialchars($address) . " \n";
224
	echo gettext("Host Name") . ": " . htmlspecialchars($hostname) .  " \n";
225
	echo "\n";
226
	$text_table = array();
227
	$text_table[] = array(gettext("Server"), gettext("Query Time"));
228
	if (is_array($dns_speeds)) {
229
		foreach ($dns_speeds as $qt) {
230
			$text_table[] = array(trim($qt['dns_server']), trim($qt['query_time']));
231
		}
232
	}
233
	$col0_padlength = max(array_map($map_lengths, $text_table)) + 4;
234
	foreach ($text_table as $text_row) {
235
		echo str_pad($text_row[0], $col0_padlength) . $text_row[1] . "\n";
236
	}
237
}
238

    
239
include("head.inc");
240

    
241
/* Display any error messages resulting from user input */
242
if ($input_errors) {
243
	print_input_errors($input_errors);
244
} else if (!$resolved && $type) {
245
	print_info_box(sprintf(gettext('Host "%s" could not be resolved.'), $host), 'warning', false);
246
}
247

    
248
if ($createdalias) {
249
	if ($alias_exists) {
250
		print_info_box(gettext("Alias was updated successfully."), 'success');
251
	} else {
252
		print_info_box(gettext("Alias was created successfully."), 'success');
253
	}
254

    
255
	$alias_exists = true;
256
}
257

    
258
if ($couldnotcreatealias) {
259
	if ($alias_exists) {
260
		print_info_box(sprintf(gettext("Could not update alias for %s"), $host), 'warning', false);
261
	} else {
262
		print_info_box(sprintf(gettext("Could not create alias for %s"), $host), 'warning', false);
263
	}
264
}
265

    
266
$form = new Form(false);
267
$section = new Form_Section('DNS Lookup');
268

    
269
$section->addInput(new Form_Input(
270
	'host',
271
	'*Hostname',
272
	'text',
273
	$host,
274
	['placeholder' => 'Hostname to look up.']
275
));
276

    
277
$form->add($section);
278

    
279
$form->addGlobal(new Form_Button(
280
        'Submit',
281
        'Lookup',
282
        null,
283
        'fa-search'
284
))->addClass('btn-primary');
285

    
286
if (!empty($resolved) && isAllowedPage('firewall_aliases_edit.php')) {
287
	if ($alias_exists) {
288
		$button_text = gettext("Update alias");
289
	} else {
290
		$button_text = gettext("Add alias");
291
	}
292
	$form->addGlobal(new Form_Button(
293
		'create_alias',
294
		$button_text,
295
		null,
296
		'fa-plus'
297
	))->removeClass('btn-primary')->addClass('btn-success');
298
}
299

    
300
print $form;
301

    
302
if (!$input_errors && $type) {
303
	if ($resolved):
304
?>
305
<div class="panel panel-default">
306
	<div class="panel-heading"><h2 class="panel-title"><?=gettext('Results')?></h2></div>
307
	<div class="panel-body">
308

    
309
		<table class="table">
310
		<thead>
311
			<tr>
312
				<th><?=gettext('Result')?></th>
313
				<th><?=gettext('Record type')?></th>
314
			</tr>
315
		</thead>
316
		<tbody>
317
<?php foreach ((array)$resolved as $hostitem):?>
318
		<tr>
319
			<td><?=htmlspecialchars($hostitem['data'])?></td><td><?=htmlspecialchars($hostitem['type'])?></td>
320
		</tr>
321
<?php endforeach; ?>
322
		</tbody>
323
		</table>
324
	</div>
325
</div>
326
<?php endif; ?>
327

    
328
<!-- Second table displays the server resolution times -->
329
<div class="panel panel-default">
330
	<div class="panel-heading"><h2 class="panel-title"><?=gettext('Timings')?></h2></div>
331
	<div class="panel-body">
332
		<table class="table">
333
		<thead>
334
			<tr>
335
				<th><?=gettext('Name server')?></th>
336
				<th><?=gettext('Query time')?></th>
337
			</tr>
338
		</thead>
339

    
340
		<tbody>
341
<?php foreach ((array)$dns_speeds as $qt):?>
342
		<tr>
343
			<td><?=htmlspecialchars($qt['dns_server'])?></td><td><?=htmlspecialchars($qt['query_time'])?></td>
344
		</tr>
345
<?php endforeach; ?>
346
		</tbody>
347
		</table>
348
	</div>
349
</div>
350

    
351
<!-- Third table displays "More information" -->
352
<div class="panel panel-default">
353
	<div class="panel-heading"><h2 class="panel-title"><?=gettext('More Information')?></h2></div>
354
	<div class="panel-body">
355
		<ul class="list-group">
356
			<li class="list-group-item"><a href="/diag_ping.php?host=<?=htmlspecialchars($host)?>&amp;count=3"><?=gettext("Ping")?></a></li>
357
			<li class="list-group-item"><a href="/diag_traceroute.php?host=<?=htmlspecialchars($host)?>&amp;ttl=18"><?=gettext("Traceroute")?></a></li>
358
		</ul>
359
		<h5><?=gettext("NOTE: The following links are to external services, so their reliability cannot be guaranteed.");?></h5>
360
		<ul class="list-group">
361
			<li class="list-group-item"><a target="_blank" href="http://private.dnsstuff.com/tools/whois.ch?ip=<?=$ipaddr;?>"><?=gettext("IP WHOIS @ DNS Stuff");?></a></li>
362
			<li class="list-group-item"><a target="_blank" href="http://private.dnsstuff.com/tools/ipall.ch?ip=<?=$ipaddr;?>"><?=gettext("IP Info @ DNS Stuff");?></a></li>
363
		</ul>
364
	</div>
365
</div>
366
<?php
367
}
368
?>
369
<script type="text/javascript">
370
//<![CDATA[
371
events.push(function() {
372
	var original_host = "<?=$host;?>";
373

    
374
	$('input[name="host"]').on('input', function() {
375
		if ($('#host').val() == original_host) {
376
			disableInput('create_alias', false);
377
		} else {
378
			disableInput('create_alias', true);
379
		}
380
	});
381
});
382
//]]>
383
</script>
384
<?php
385
include("foot.inc");
(13-13/233)