Project

General

Profile

Download (6.07 KB) Statistics
| Branch: | Tag: | Revision:
1
#!/usr/local/bin/php -f
2
<?php
3
/*
4
        rc.newwanip
5
        Copyright (C) 2006 Scott Ullrich (sullrich@gmail.com)
6
        part of pfSense (http://www.pfsense.com)
7

    
8
		Originally part of m0n0wall (http://m0n0.ch)
9
        Copyright (C) 2003-2005 Manuel Kasper <mk@neon1.net>.
10
        All rights reserved.
11

    
12
        Redistribution and use in source and binary forms, with or without
13
        modification, are permitted provided that the following conditions are met:
14

    
15
        1. Redistributions of source code must retain the above copyright notice,
16
           this list of conditions and the following disclaimer.
17

    
18
        2. Redistributions in binary form must reproduce the above copyright
19
           notice, this list of conditions and the following disclaimer in the
20
           documentation and/or other materials provided with the distribution.
21

    
22
        THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
23
        INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY
24
        AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
25
        AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY,
26
        OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
27
        SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
28
        INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
29
        CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
30
        ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
31
        POSSIBILITY OF SUCH DAMAGE.
32
*/
33

    
34
/* parse the configuration and include all functions used below */
35
require_once("globals.inc");
36
require_once("config.inc");
37
require_once("functions.inc");
38
require_once("filter.inc");
39
require_once("shaper.inc");
40
require_once("ipsec.inc");
41
require_once("vpn.inc");
42
require_once("openvpn.inc");
43
require_once("rrd.inc");
44

    
45
// Do not process while booting
46
if($g['booting']) 
47
	exit;
48

    
49
function restart_packages() {
50
	global $oldip, $curwanipi, $g;
51

    
52
	/* restart packages */
53
	system_ntp_configure(false);
54
	mwexec_bg("/usr/local/sbin/ntpdate_sync_once.sh", true);
55
	log_error("{$g['product_name']} package system has detected an ip change $oldip ->  $curwanip ... Restarting packages.");		
56
	send_event("service reload packages");
57
}
58

    
59
/* Interface IP address has changed */
60
$argument = str_replace("\n", "", $argv[1]);
61

    
62
log_error("rc.newwanip: Informational is starting {$argument}.");
63

    
64
if(empty($argument)) {
65
    $curwanip = get_interface_ip();
66
    $interface = "wan";
67
    $interface_real = get_real_interface();
68
} else {
69
        $interface = convert_real_interface_to_friendly_interface_name($argument);
70
        $interface_real = $argument;
71
        $curwanip = find_interface_ip($interface_real, true);
72
        if($curwanip == "")
73
                $curwanip = get_interface_ip($interface);
74
}
75

    
76
log_error("rc.newwanip: on (IP address: {$curwanip}) (interface: {$interface}) (real interface: {$interface_real}).");
77

    
78
if($curwanip == "0.0.0.0" || !is_ipaddr($curwanip)) {
79
        log_error("rc.newwanip: Failed to update {$interface} IP, restarting...");
80
	send_event("interface reconfigure {$interface}");
81
        exit;
82
}
83

    
84
if (empty($interface)) {
85
	filter_configure();
86
	restart_packages();
87
	exit;
88
}
89

    
90
$oldip = "0.0.0.0";
91
if (file_exists("{$g['vardb_path']}/{$interface}_cacheip"))
92
	$oldip = file_get_contents("{$g['vardb_path']}/{$interface}_cacheip");
93

    
94
/* regenerate resolv.conf if DNS overrides are allowed */
95
system_resolvconf_generate(true);
96

    
97
/* write current WAN IP to file */
98
file_put_contents("{$g['vardb_path']}/{$interface}_ip", $curwanip);
99

    
100
unset($gre);
101
$gre = link_interface_to_gre($interface);
102
if (!empty($gre))
103
	array_walk($gre, 'interface_gre_configure');
104
unset($gif);
105
$gif = link_interface_to_gif($interface);
106
if (!empty($gif))
107
	array_walk($gif, 'interface_gif_configure');
108

    
109
$grouptmp = link_interface_to_group($interface);
110
if (!empty($grouptmp))
111
	array_walk($grouptmp, 'interface_group_add_member');
112

    
113
unset($bridgetmp);
114
$bridgetmp = link_interface_to_bridge($interface);
115
if (!empty($bridgetmp))
116
	interface_bridge_add_member($bridgetmp, $interface_real);
117

    
118
/* check tunneled IPv6 interface tracking */
119
switch($config['interfaces'][$interface]['ipaddrv6']) {
120
	case "6to4":
121
		interface_6to4_configure($interface);
122
		break;
123
	case "6rd":
124
		interface_6rd_configure($interface);
125
		break;
126
}
127

    
128
/* Check Gif tunnels */
129
if(is_array($config['gifs']['gif'])){
130
	foreach($config['gifs']['gif'] as $gif) {
131
		if($gif['if'] == $interface) {
132
			foreach($config['interfaces'] as $ifname => $ifparent) {
133
				// echo "interface $ifparent, ifname $ifname, gif {$gif['gifif']}\n";
134
				if(($ifparent['if'] == $gif['gifif']) && (isset($ifparent['enable']))) {
135
					// echo "Running routing configure for $ifname\n";
136
					$gif['gifif'] = interface_gif_configure($gif);
137
					$confif = convert_real_interface_to_friendly_interface_name($gif['gifif']);
138
					if ($confif <> "")
139
						interface_configure($confif);
140
					system_routing_configure($ifname);
141
				}
142
			}
143
		}
144
	}
145
}
146

    
147
/* reconfigure static routes (kernel may have deleted them) */
148
system_routing_configure($interface);
149

    
150
/* reconfigure our gateway monitor */
151
setup_gateways_monitor();
152

    
153
/* signal filter reload */
154
filter_configure();
155

    
156
if (is_ipaddr($oldip) && $curwanip == $oldip) {
157
	// Still need to sync VPNs on PPPoE and such, as even with the same IP the VPN software is unhappy with the IP disappearing.
158
	if (in_array($config['interfaces'][$interface]['ipaddr'], array('pppoe', 'pptp', 'ppp'))) {
159
		/* reconfigure IPsec tunnels */
160
		vpn_ipsec_force_reload();
161

    
162
		/* start OpenVPN server & clients */
163
		openvpn_resync_all($interface);
164
	}
165
	exit;
166
}
167

    
168
file_put_contents("{$g['vardb_path']}/{$interface}_cacheip", $curwanip);
169

    
170
/* perform RFC 2136 DNS update */
171
services_dnsupdate_process($interface);
172

    
173
/* signal dyndns update */
174
services_dyndns_configure($interface);
175

    
176
/* reconfigure IPsec tunnels */
177
vpn_ipsec_force_reload();
178

    
179
/* start OpenVPN server & clients */
180
if (substr($interface_real, 0, 4) != "ovpn")
181
	openvpn_resync_all($interface);
182

    
183
/* reload graphing functions */
184
enable_rrd_graphing();
185

    
186
/* reload igmpproxy */
187
services_igmpproxy_configure();
188

    
189
restart_packages();
190

    
191
?>
(77-77/107)