Project

General

Profile

Download (6.85 KB) Statistics
| Branch: | Tag: | Revision:
1
<?php
2
/*
3
	diag_traceroute.php
4
*/
5
/* ====================================================================
6
 *  Copyright (c)  2004-2015  Electric Sheep Fencing, LLC. All rights reserved.
7
 *  Copyright (c)  2005 Paul Taylor (paultaylor@winndixie.com) and Manuel Kasper <mk@neon1.net>
8
 *
9
 *  Some or all of this file is based on the m0n0wall project which is
10
 *  Copyright (c)  2004 Manuel Kasper (BSD 2 clause)
11
 *
12
 *  Redistribution and use in source and binary forms, with or without modification,
13
 *  are permitted provided that the following conditions are met:
14
 *
15
 *  1. Redistributions of source code must retain the above copyright notice,
16
 *      this list of conditions and the following disclaimer.
17
 *
18
 *  2. Redistributions in binary form must reproduce the above copyright
19
 *      notice, this list of conditions and the following disclaimer in
20
 *      the documentation and/or other materials provided with the
21
 *      distribution.
22
 *
23
 *  3. All advertising materials mentioning features or use of this software
24
 *      must display the following acknowledgment:
25
 *      "This product includes software developed by the pfSense Project
26
 *       for use in the pfSense software distribution. (http://www.pfsense.org/).
27
 *
28
 *  4. The names "pfSense" and "pfSense Project" must not be used to
29
 *       endorse or promote products derived from this software without
30
 *       prior written permission. For written permission, please contact
31
 *       coreteam@pfsense.org.
32
 *
33
 *  5. Products derived from this software may not be called "pfSense"
34
 *      nor may "pfSense" appear in their names without prior written
35
 *      permission of the Electric Sheep Fencing, LLC.
36
 *
37
 *  6. Redistributions of any form whatsoever must retain the following
38
 *      acknowledgment:
39
 *
40
 *  "This product includes software developed by the pfSense Project
41
 *  for use in the pfSense software distribution (http://www.pfsense.org/).
42
 *
43
 *  THIS SOFTWARE IS PROVIDED BY THE pfSense PROJECT ``AS IS'' AND ANY
44
 *  EXPRESSED OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
45
 *  IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
46
 *  PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE pfSense PROJECT OR
47
 *  ITS CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
48
 *  SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
49
 *  NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
50
 *  LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
51
 *  HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
52
 *  STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
53
 *  ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED
54
 *  OF THE POSSIBILITY OF SUCH DAMAGE.
55
 *
56
 *  ====================================================================
57
 *
58
 */
59

    
60
##|+PRIV
61
##|*IDENT=page-diagnostics-traceroute
62
##|*NAME=Diagnostics: Traceroute
63
##|*DESCR=Allow access to the 'Diagnostics: Traceroute' page.
64
##|*MATCH=diag_traceroute.php*
65
##|-PRIV
66

    
67
require("guiconfig.inc");
68

    
69
$allowautocomplete = true;
70
$pgtitle = array(gettext("Diagnostics"), gettext("Traceroute"));
71
include("head.inc");
72

    
73
define('MAX_TTL', 64);
74
define('DEFAULT_TTL', 18);
75

    
76
// Set defaults in case they are not supplied.
77
$do_traceroute = false;
78
$host = '';
79
$ttl = DEFAULT_TTL;
80
$ipproto = 'ipv4';
81
$sourceip = 'any';
82

    
83
function create_sourceaddresslist() {
84
	$list = array('any' => gettext('Any'));
85

    
86
	$sourceips = get_possible_traffic_source_addresses(true);
87

    
88
	foreach ($sourceips as $sipvalue => $sipname) {
89
		$list[$sipvalue] = $sipname;
90
	}
91

    
92
	return($list);
93
}
94

    
95
if ($_POST || $_REQUEST['host']) {
96
	unset($input_errors);
97

    
98
	/* input validation */
99
	$reqdfields = explode(" ", "host ttl");
100
	$reqdfieldsn = array(gettext("Host"), gettext("ttl"));
101
	do_input_validation($_REQUEST, $reqdfields, $reqdfieldsn, $input_errors);
102

    
103
	if (($_REQUEST['ttl'] < 1) || ($_REQUEST['ttl'] > MAX_TTL)) {
104
		$input_errors[] = sprintf(gettext("Maximum number of hops must be between 1 and %s"), MAX_TTL);
105
	}
106
	$host = trim($_REQUEST['host']);
107
	$ipproto = $_REQUEST['ipproto'];
108
	if (($ipproto == "ipv4") && is_ipaddrv6($host)) {
109
		$input_errors[] = gettext("When using IPv4, the target host must be an IPv4 address or hostname.");
110
	}
111
	if (($ipproto == "ipv6") && is_ipaddrv4($host)) {
112
		$input_errors[] = gettext("When using IPv6, the target host must be an IPv6 address or hostname.");
113
	}
114

    
115
	$sourceip = $_REQUEST['sourceip'];
116
	$ttl = $_REQUEST['ttl'];
117
	$resolve = $_REQUEST['resolve'];
118
	$useicmp = $_REQUEST['useicmp'];
119

    
120
	if ($_POST && !$input_errors) {
121
		$do_traceroute = true;
122
	}
123

    
124
} else {
125
	$resolve = false;
126
	$useicmp = false;
127
}
128

    
129
if ($input_errors) {
130
	print_input_errors($input_errors);
131
}
132

    
133
/* Do the traceroute and show any error */
134
if ($do_traceroute) {
135
	$useicmpparam = isset($useicmp) ? "-I" : "";
136
	$n = isset($resolve) ? "" : "-n";
137

    
138
	$command = "/usr/sbin/traceroute";
139
	if ($ipproto == "ipv6") {
140
		$command .= "6";
141
		$ifaddr = is_ipaddr($sourceip) ? $sourceip : get_interface_ipv6($sourceip);
142
	} else {
143
		$ifaddr = is_ipaddr($sourceip) ? $sourceip : get_interface_ip($sourceip);
144
	}
145

    
146
	if ($ifaddr && (is_ipaddr($host) || is_hostname($host))) {
147
		$srcip = "-s " . escapeshellarg($ifaddr);
148
	}
149

    
150
	$cmd = "{$command} {$n} {$srcip} -w 2 {$useicmpparam} -m " . escapeshellarg($ttl) . " " . escapeshellarg($host);
151
	$result = shell_exec($cmd);
152

    
153
	if (!$result) {
154
		print_info_box(sprintf(gettext('Error: %s could not be traced/resolved'), $host));
155
	}
156
}
157

    
158
$form = new Form('Traceroute');
159

    
160
$section = new Form_Section('Traceroute');
161

    
162
$section->addInput(new Form_Input(
163
	'host',
164
	'Hostname',
165
	'text',
166
	$host,
167
	['placeholder' => 'Hostname to trace.']
168
));
169

    
170
$section->addInput(new Form_Select(
171
	'ipproto',
172
	'IP Protocol',
173
	$ipproto,
174
	array('ipv4' => 'IPv4', 'ipv6' => 'IPv6')
175
))->setHelp('Select the protocol to use');
176

    
177
$section->addInput(new Form_Select(
178
	'sourceip',
179
	'Source Address',
180
	$sourceip,
181
	create_sourceaddresslist()
182
))->setHelp('Select source address for the trace');
183

    
184
$section->addInput(new Form_Select(
185
	'ttl',
186
	'Maximum nuber of hops',
187
	$ttl,
188
	array_combine(range(1, MAX_TTL), range(1, MAX_TTL))
189
))->setHelp('Select the maximum number of network hops to trace');
190

    
191
$section->addInput(new Form_Checkbox(
192
	'resolve',
193
	'Reverse Address Lookup',
194
	'',
195
	$resolve
196
))->setHelp('When checked, traceroute will attempt to perform a PTR lookup to locate hostnames for hops along the path. This will slow down the process as it has to wait for DNS replies.');
197

    
198
$section->addInput(new Form_Checkbox(
199
	'useicmp',
200
	gettext("Use ICMP"),
201
	'',
202
	$useicmp
203
))->setHelp('By default, traceroute uses UDP but that may be blocked by some routers. Check this box to use ICMP instead, which may succeed. ');
204

    
205
$form->add($section);
206
print $form;
207

    
208
/* Show the traceroute results */
209
if ($do_traceroute && $result) {
210
?>
211
	<div class="panel panel-default">
212
		<div class="panel-heading"><h2 class="panel-title"><?=gettext('Results')?></h2></div>
213
		<div class="panel-body">
214
<?php
215
	print('<pre>' . $result . '</pre>');
216
?>
217
		</div>
218
	</div>
219
<?php
220
}
221

    
222
include("foot.inc");
223
?>
(31-31/229)