Project

General

Profile

Download (9.96 KB) Statistics
| Branch: | Tag: | Revision:
1
<?php
2
/* $Id$ */
3
/*
4
	system_firmware_auto.php
5
	Copyright (C) 2008 Scott Ullrich <sullrich@gmail.com>
6
	Copyright (C) 2005 Scott Ullrich
7

    
8
        Based originally on system_firmware.php
9
        (C)2003-2004 Manuel Kasper
10
	All rights reserved.
11

    
12
	Redistribution and use in source and binary forms, with or without
13
	modification, are permitted provided that the following conditions are met:
14

    
15
	1. Redistributions of source code must retain the above copyright notice,
16
	   this list of conditions and the following disclaimer.
17

    
18
	2. Redistributions in binary form must reproduce the above copyright
19
	   notice, this list of conditions and the following disclaimer in the
20
	   documentation and/or other materials provided with the distribution.
21

    
22
	THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
23
	INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY
24
	AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
25
	AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY,
26
	OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
27
	SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
28
	INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
29
	CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
30
	ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
31
	POSSIBILITY OF SUCH DAMAGE.
32
*/
33
/*
34
	pfSense_BUILDER_BINARIES:	/usr/bin/tar	/usr/bin/nohup	/bin/cat	/sbin/sha256
35
	pfSense_MODULE:	firmware
36
*/
37

    
38
##|+PRIV
39
##|*IDENT=page-system-firmware-checkforupdate
40
##|*NAME=System: Firmware: Check For Update page
41
##|*DESCR=Allow access to the 'System: Firmware: Check For Update' page.
42
##|*MATCH=system_firmware_auto.php*
43
##|-PRIV
44

    
45
$nocsrf = true;
46

    
47
require("guiconfig.inc");
48
require_once("pfsense-utils.inc");
49

    
50
$curcfg = $config['system']['firmware'];
51

    
52
if(isset($curcfg['alturl']['enable']))
53
	$updater_url = "{$config['system']['firmware']['alturl']['firmwareurl']}";
54
else
55
	$updater_url = $g['update_url'];
56

    
57
if($_POST['backupbeforeupgrade']) 
58
	touch("/tmp/perform_full_backup.txt");
59
	
60
$pgtitle = array(gettext("Diagnostics"),gettext("Firmware"),gettext("Auto Update"));
61
include("head.inc");
62

    
63
?>
64

    
65
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
66
<link href="gui.css" rel="stylesheet" type="text/css">
67
</head>
68

    
69
<body link="#0000CC" vlink="#0000CC" alink="#0000CC">
70

    
71
<?php include("fbegin.inc"); ?>
72

    
73
<form action="system_firmware_auto.php" method="post">
74
<table width="100%" border="0" cellpadding="6" cellspacing="0">
75
	<tr>
76
		<td>
77
<?php
78
	$tab_array = array();
79
	$tab_array[] = array(gettext("Manual Update"), false, "system_firmware.php");
80
	$tab_array[] = array(gettext("Auto Update"), true, "system_firmware_check.php");
81
	$tab_array[] = array(gettext("Updater Settings"), false, "system_firmware_settings.php");
82
	if($g['hidedownloadbackup'] == false)
83
		$tab_array[] = array(gettext("Restore Full Backup"), false, "system_firmware_restorefullbackup.php");
84
	display_top_tabs($tab_array);
85
?>
86
		</td>
87
	</tr>
88
	<tr>
89
	  <td class="tabcont">
90
	      <table width="100%" border="0" cellpadding="6" cellspacing="0">
91
			  <tr>
92
			    <td class="tabcont">
93
					<table width="100%" border="0" cellpadding="6" cellspacing="0">
94
						<tr>
95
							<td>
96
								<center>
97
								<table height='15' width='420' border='0' colspacing='0' cellpadding='0' cellspacing='0'>
98

    
99
								<tr>
100
									<td background="./themes/the_wall/images/misc/bar_left.gif" height='15' width='5'>
101
									</td>
102
									<td>
103
									<table id="progholder" name="progholder" height='15' width='410' border='0' colspacing='0' cellpadding='0' cellspacing='0'>
104
										<td background="./themes/the_wall/images/misc/bar_gray.gif" valign="top" align="left">
105
											<img src='./themes/the_wall/images/misc/bar_blue.gif' width='0' height='15' name='progressbar' id='progressbar'>
106
										</td>
107
									</table>
108
								</td>
109
								<td background="./themes/the_wall/images/misc/bar_right.gif" height='15' width='5'>
110
								</td>
111
							</tr>
112
						</table>
113
						<br>
114
						<!-- status box -->
115
						<textarea cols="90" rows="1" name="status" id="status" wrap="hard"><?=gettext("Beginning firmware upgrade"); ?>.</textarea>
116
						<!-- command output box -->
117
						<textarea cols="90" rows="25" name="output" id="output" wrap="hard"></textarea>
118
					</center>
119
					</td>
120
				</tr>
121
	      </table>
122
		</table>
123
	  </td>
124
	</tr>
125
</table>
126
</form>
127
<?php include("fend.inc"); ?>
128
</body>
129
</html>
130

    
131
<?php
132

    
133
update_status(gettext("Downloading current version information") . "...");
134
$nanosize = "";
135
if ($g['platform'] == "nanobsd") {
136
	if (file_exists("/etc/nano_use_vga.txt"))
137
		$nanosize = "-nanobsd-vga-";
138
	else
139
		$nanosize = "-nanobsd-";
140

    
141
	$nanosize .= strtolower(trim(file_get_contents("/etc/nanosize.txt")));
142
}
143

    
144
@unlink("/tmp/{$g['product_name']}_version");
145
download_file_with_progress_bar("{$updater_url}/version{$nanosize}", "/tmp/{$g['product_name']}_version");
146
$latest_version = str_replace("\n", "", @file_get_contents("/tmp/{$g['product_name']}_version"));
147
if(!$latest_version) {
148
	update_output_window(gettext("Unable to check for updates."));
149
	require("fend.inc");
150
	exit;
151
} else {
152
	$current_installed_buildtime = trim(file_get_contents("/etc/version.buildtime"));
153
	$current_installed_version = trim(file_get_contents("/etc/version"));
154
	$latest_version = trim(@file_get_contents("/tmp/{$g['product_name']}_version"));
155
	$latest_version_pfsense = strtotime($latest_version);
156
	if(!$latest_version) {
157
		update_output_window(gettext("Unable to check for updates."));
158
		require("fend.inc");
159
		exit;
160
	} else {
161
		if (pfs_version_compare($current_installed_buildtime, $current_installed_version, $latest_version) == -1) {
162
			update_status(gettext("Downloading updates") . "...");
163
			conf_mount_rw();
164
			if ($g['platform'] == "nanobsd") {
165
				$update_filename = "latest{$nanosize}.img.gz";
166
			} else {
167
				$update_filename = "latest.tgz";
168
			}
169
			$status = download_file_with_progress_bar("{$updater_url}/{$update_filename}", "{$g['upload_path']}/latest.tgz", "read_body_firmware");	
170
			$status = download_file_with_progress_bar("{$updater_url}/{$update_filename}.sha256", "{$g['upload_path']}/latest.tgz.sha256");
171
			conf_mount_ro();
172
			update_output_window("{$g['product_name']} " . gettext("download complete."));
173
		} else {
174
			update_output_window(gettext("You are on the latest version."));
175
			require("fend.inc");
176
			exit;
177
		}
178
	}
179
}
180

    
181
/* launch external upgrade helper */
182
$external_upgrade_helper_text = "/etc/rc.firmware ";
183

    
184
if($g['platform'] == "nanobsd")
185
	$external_upgrade_helper_text .= "pfSenseNanoBSDupgrade ";
186
else
187
	$external_upgrade_helper_text .= "pfSenseupgrade ";
188

    
189
$external_upgrade_helper_text .= "{$g['upload_path']}/latest.tgz";
190

    
191
$downloaded_latest_tgz_sha256 = str_replace("\n", "", `/sbin/sha256 -q {$g['upload_path']}/latest.tgz`);
192
$upgrade_latest_tgz_sha256 = str_replace("\n", "", `/bin/cat {$g['upload_path']}/latest.tgz.sha256 | awk '{ print $4 }'`);
193

    
194
$sigchk = 0;
195

    
196
if(!isset($curcfg['alturl']['enable']))
197
	$sigchk = verify_digital_signature("{$g['upload_path']}/latest.tgz");
198

    
199
$exitstatus = 0;
200
if ($sigchk == 1) {
201
	$sig_warning = gettext("The digital signature on this image is invalid.");
202
	$exitstatus = 1;
203
} else if ($sigchk == 2) {
204
	$sig_warning = gettext("This image is not digitally signed.");
205
	if (!isset($config['system']['firmware']['allowinvalidsig']))
206
		$exitstatus = 1;
207
} else if (($sigchk >= 3)) {
208
	$sig_warning = gettext("There has been an error verifying the signature on this image.");
209
	$exitstatus = 1;
210
}
211

    
212
if ($exitstatus) {
213
        update_status($sig_warning);
214
        update_output_window(gettext("Update cannot continue.  You can disable this check on the Updater Settings tab."));
215
		require("fend.inc");
216
        exit;
217
} else if ($sigchk == 2) {
218
        update_status("Upgrade in progress...");
219
        update_output_window("\n" . gettext("Upgrade Image does not contain a signature but the system has been configured to allow unsigned images. One moment please...") . "\n");
220
}
221

    
222
if (!verify_gzip_file("{$g['upload_path']}/latest.tgz")) {
223
	update_status(gettext("The image file is corrupt."));
224
	update_output_window(gettext("Update cannot continue"));
225
	if (file_exists("{$g['upload_path']}/latest.tgz")) {
226
		conf_mount_rw();
227
		unlink("{$g['upload_path']}/latest.tgz");
228
		conf_mount_ro();
229
	}
230
	require("fend.inc");
231
	exit;
232
}
233

    
234
if($downloaded_latest_tgz_sha256 <> $upgrade_latest_tgz_sha256) {
235
	update_status(gettext("Downloading complete but sha256 does not match."));
236
	update_output_window(gettext("Auto upgrade aborted.") . "  \n\n" . gettext("Downloaded SHA256") . ": " . $downloaded_latest_tgz_sha256 . "\n\n" . gettext("Needed SHA256") . ": " . $upgrade_latest_tgz_sha256);
237
} else {
238
	update_output_window($g['product_name'] . " " . gettext("is now upgrading.") . "\\n\\n" . gettext("The firewall will reboot once the operation is completed."));
239
	echo "\n<script language=\"JavaScript\">document.progressbar.style.visibility='hidden';\n</script>";
240
	mwexec_bg("/usr/bin/nohup {$external_upgrade_helper_text}");
241
}
242

    
243
/*
244
	Helper functions
245
*/
246

    
247
function read_body_firmware($ch, $string) {
248
	global $fout, $file_size, $downloaded, $counter, $version, $latest_version, $current_installed_version;
249
	$length = strlen($string);
250
	$downloaded += intval($length);
251
	$downloadProgress = round(100 * (1 - $downloaded / $file_size), 0);
252
	$downloadProgress = 100 - $downloadProgress;
253
	$a = $file_size;
254
	$b = $downloaded;
255
	$c = $downloadProgress;
256
	$text  = "  " . gettext("Auto Update Download Status") . "\\n";
257
	$text .= "----------------------------------------------------\\n";
258
	$text .= "  " . gettext("Current Version") . " : {$current_installed_version}\\n";
259
	$text .= "  " . gettext("Latest Version") . "  : {$latest_version}\\n";
260
	$text .= "  " . gettext("File size") . "       : {$a}\\n";
261
	$text .= "  " . gettext("Downloaded") . "      : {$b}\\n";
262
	$text .= "  " . gettext("Percent") . "         : {$c}%\\n";
263
	$text .= "----------------------------------------------------\\n";
264
	$counter++;
265
	if($counter > 150) {
266
		update_output_window($text);
267
		update_progress_bar($downloadProgress);
268
		$counter = 0;
269
	}
270
	fwrite($fout, $string);
271
	return $length;
272
}
273

    
274
?>
(209-209/249)