1 |
800351cc
|
Scott Ullrich
|
/* cvs_sync
|
2 |
|
|
* Written by Scott Ullrich
|
3 |
9bb3e055
|
Scott Ullrich
|
* (C)2005-2007 Scott Ullrich
|
4 |
9fa76728
|
Scott Ullrich
|
* Part of the pfSense project pfSsh.php subsystem
|
5 |
800351cc
|
Scott Ullrich
|
*/
|
6 |
|
|
|
7 |
3f179a55
|
Scott Ullrich
|
/*
|
8 |
|
|
* Functions
|
9 |
|
|
*/
|
10 |
|
|
function post_cvssync_commands() {
|
11 |
|
|
echo "===> Removing FAST-CGI temporary files...\n";
|
12 |
|
|
exec("find /tmp -name \"php-fastcgi.socket*\" -exec rm -rf {} \;");
|
13 |
|
|
exec("find /tmp -name \"*.tmp\" -exec rm -rf {} \;");
|
14 |
bfd1cd6b
|
Scott Ullrich
|
|
15 |
3f179a55
|
Scott Ullrich
|
exec("rm -rf /tmp/xcache/* 2>/dev/null");
|
16 |
26a1126c
|
Scott Ullrich
|
|
17 |
3f179a55
|
Scott Ullrich
|
check_php_status();
|
18 |
c4110081
|
Scott Ullrich
|
|
19 |
3f179a55
|
Scott Ullrich
|
echo "===> Upgrading configuration (if needed)...\n";
|
20 |
|
|
convert_config();
|
21 |
|
|
|
22 |
|
|
echo "===> Syncing system passwords...\n";
|
23 |
|
|
local_sync_accounts();
|
24 |
|
|
|
25 |
|
|
echo "===> Restarting check_reload_status...\n";
|
26 |
|
|
exec("killall check_reload_status");
|
27 |
|
|
mwexec_bg("nohup /usr/bin/nice -n20 /usr/local/sbin/check_reload_status");
|
28 |
|
|
|
29 |
|
|
echo "===> Configuring filter...";
|
30 |
|
|
exec("/etc/rc.filter_configure_sync");
|
31 |
|
|
exec("pfctl -f /tmp/rules.debug");
|
32 |
|
|
echo "\n";
|
33 |
|
|
|
34 |
|
|
echo "===> Signaling PHP and Lighty restart...";
|
35 |
|
|
$fd = fopen("/tmp/restart_lighty", "w");
|
36 |
|
|
fwrite($fd, "#!/bin/sh\n");
|
37 |
|
|
fwrite($fd, "sleep 5\n");
|
38 |
|
|
fwrite($fd, "killall php\n");
|
39 |
|
|
fwrite($fd, "touch /tmp/restart_webgui\n");
|
40 |
|
|
fclose($fd);
|
41 |
|
|
mwexec_bg("sh /tmp/restart_lighty");
|
42 |
|
|
echo "done.\n";
|
43 |
|
|
}
|
44 |
|
|
|
45 |
|
|
function check_php_status() {
|
46 |
|
|
echo "===> Ensuring that PHP is working before going further...";
|
47 |
|
|
$test_php = `php -v`;
|
48 |
|
|
if(!strstr($test_php, "PHP")) {
|
49 |
|
|
echo "OH NOES.\n+++> Ruh roh, you're PHP is now toast.\n";
|
50 |
|
|
if(file_exists("/root/cvssync_backup.tgz")) {
|
51 |
|
|
echo "+++> Found previous CVSSync backup. Restoring...";
|
52 |
|
|
mwexec("cd / && tar xzpfU /root/cvssync_backup.tgz -C /");
|
53 |
|
|
echo "done.\n";
|
54 |
|
|
echo "\nWe'll exit now, try not to do whatever you did, again.\n";
|
55 |
|
|
exit;
|
56 |
|
|
} else {
|
57 |
|
|
echo "+++> Sorry, we could not locate a cvssync backup to restore from. Good luck rescuing your system! :( \n";
|
58 |
|
|
exit;
|
59 |
|
|
}
|
60 |
|
|
} else {
|
61 |
|
|
echo "it's good!\n";
|
62 |
|
|
}
|
63 |
bfc956c0
|
Scott Ullrich
|
}
|
64 |
|
|
|
65 |
784cca4d
|
Scott Ullrich
|
function create_supfile($branch) {
|
66 |
|
|
|
67 |
|
|
if($branch == "HEAD")
|
68 |
|
|
$BRANCHTAG = ".";
|
69 |
|
|
else
|
70 |
|
|
$BRANCHTAG = $branch;
|
71 |
|
|
|
72 |
|
|
$supfile = "
|
73 |
|
|
*default host=cvs.pfsense.com
|
74 |
bfc956c0
|
Scott Ullrich
|
*default base=/root/pfsense/$branch
|
75 |
784cca4d
|
Scott Ullrich
|
*default release=cvs tag=$BRANCHTAG
|
76 |
|
|
*default delete use-rel-suffix
|
77 |
|
|
pfSense
|
78 |
|
|
*default compress
|
79 |
|
|
";
|
80 |
|
|
|
81 |
|
|
file_put_contents("/var/etc/pfSense-supfile", $supfile);
|
82 |
|
|
}
|
83 |
800351cc
|
Scott Ullrich
|
|
84 |
3f179a55
|
Scott Ullrich
|
/*
|
85 |
|
|
*
|
86 |
|
|
*
|
87 |
|
|
* cvssync script starts here
|
88 |
|
|
*
|
89 |
|
|
*
|
90 |
|
|
*/
|
91 |
|
|
|
92 |
|
|
echo "===> cvssync is starting at " . exec(date) . "\n";
|
93 |
|
|
|
94 |
|
|
conf_mount_rw();
|
95 |
|
|
|
96 |
|
|
echo "===> Backing up original rules.debug...";
|
97 |
|
|
exec("cp /tmp/rules.debug /tmp/rules.beforecvssync");
|
98 |
|
|
echo "done.\n";
|
99 |
|
|
|
100 |
|
|
if(is_dir("/home/pfsense")) {
|
101 |
|
|
echo "\nRelocating downloaded cvssync data, please wait...";
|
102 |
|
|
exec("rm -rf /home/pfsense");
|
103 |
|
|
echo " done.\n";
|
104 |
|
|
}
|
105 |
|
|
|
106 |
784cca4d
|
Scott Ullrich
|
unlink_if_exists("/tmp/config.cache");
|
107 |
800351cc
|
Scott Ullrich
|
|
108 |
|
|
if(!file_exists("/usr/local/bin/cvsup")) {
|
109 |
|
|
echo "Cannot find cvsup, pkg_add in progress...";
|
110 |
158978d2
|
Scott Ullrich
|
system("/usr/sbin/pkg_add -r http://files.pfsense.org/packages/7/All/cvsup-without-gui-16.1h_4.tbz");
|
111 |
800351cc
|
Scott Ullrich
|
}
|
112 |
|
|
|
113 |
|
|
if(!file_exists("/usr/bin/cvs")) {
|
114 |
|
|
echo "Cannot find cvs, fetching static cvs...";
|
115 |
155fc60e
|
Scott Ullrich
|
system("fetch -o /usr/bin/cvs http://files.pfsense.org/extras/7/cvs");
|
116 |
800351cc
|
Scott Ullrich
|
system("chmod a+rx /usr/bin/cvs");
|
117 |
|
|
}
|
118 |
|
|
|
119 |
2b065943
|
Scott Ullrich
|
if(!file_exists("/usr/bin/cvs") or !file_exists("/usr/local/bin/cvsup")) {
|
120 |
|
|
echo "Could not fetch cvs or cvsup. exiting.";
|
121 |
|
|
exit;
|
122 |
|
|
}
|
123 |
|
|
|
124 |
96ebb0a6
|
Scott Ullrich
|
global $argv;
|
125 |
71845120
|
Scott Ullrich
|
global $command_split;
|
126 |
800351cc
|
Scott Ullrich
|
|
127 |
9fa76728
|
Scott Ullrich
|
/* NOTE: Set branches here */
|
128 |
8d136ee2
|
Scott Ullrich
|
$branches = array(
|
129 |
9b252d68
|
Scott Ullrich
|
"RELENG_1" => "1.3 development branch",
|
130 |
8d9a67b2
|
Scott Ullrich
|
"RELENG_1_2" => "1.2 release branch"
|
131 |
ff33e21f
|
Scott Ullrich
|
);
|
132 |
|
|
|
133 |
76e74f41
|
Scott Ullrich
|
if(file_exists("/root/cvssync_backup.tgz")) {
|
134 |
d56e44ba
|
Scott Ullrich
|
$backup_date = `ls -lah /root/cvssync_backup.tgz | awk '{ print $6,$7,$8 }'`;
|
135 |
bfd1cd6b
|
Scott Ullrich
|
$tmp = array("RESTORE" => "Restores prior CVSSync backup from {$backup_date}");
|
136 |
76e74f41
|
Scott Ullrich
|
$branches = array_merge($branches, $tmp);
|
137 |
|
|
}
|
138 |
537bc12e
|
Scott Ullrich
|
|
139 |
|
|
if($command_split[2]) {
|
140 |
|
|
$branch = $command_split[2];
|
141 |
96ebb0a6
|
Scott Ullrich
|
} else {
|
142 |
71845120
|
Scott Ullrich
|
if(!$argv[3]) {
|
143 |
ab757ebc
|
Scott Ullrich
|
echo "\nPlease select which branch you would like to sync against:\n\n";
|
144 |
71845120
|
Scott Ullrich
|
foreach($branches as $branchname => $branchdesc) {
|
145 |
0c68311c
|
Scott Ullrich
|
echo "{$branchname} \t {$branchdesc}\n";
|
146 |
71845120
|
Scott Ullrich
|
}
|
147 |
0c68311c
|
Scott Ullrich
|
$branch = readline("> ");
|
148 |
71845120
|
Scott Ullrich
|
echo "\n";
|
149 |
|
|
} else {
|
150 |
|
|
$branch = $argv[3];
|
151 |
|
|
}
|
152 |
96ebb0a6
|
Scott Ullrich
|
}
|
153 |
784cca4d
|
Scott Ullrich
|
create_supfile($branch);
|
154 |
|
|
|
155 |
bfd1cd6b
|
Scott Ullrich
|
// Specify if we should backup system
|
156 |
84b5f39b
|
Scott Ullrich
|
if($argv[4] == "NOBACKUP")
|
157 |
0c15a747
|
Scott Ullrich
|
$nobackup = true;
|
158 |
7a7371d1
|
Scott Ullrich
|
else
|
159 |
|
|
$nobackup = false;
|
160 |
84b5f39b
|
Scott Ullrich
|
|
161 |
bfd1cd6b
|
Scott Ullrich
|
if($g['platform'] == "embedded" || $g['platform'] == "livecd" || $g['platform'] == "wrap")
|
162 |
|
|
$nobackup = true; // do not backup embedded, livecd
|
163 |
|
|
|
164 |
bfc956c0
|
Scott Ullrich
|
$CODIR = "/root/pfsense/$branch";
|
165 |
784cca4d
|
Scott Ullrich
|
|
166 |
bfc956c0
|
Scott Ullrich
|
exec("mkdir -p /root/pfsense/$BRANCHTAG");
|
167 |
784cca4d
|
Scott Ullrich
|
|
168 |
9fa76728
|
Scott Ullrich
|
$found = false;
|
169 |
bfd1cd6b
|
Scott Ullrich
|
foreach($branches as $branchname => $branchdesc)
|
170 |
9fa76728
|
Scott Ullrich
|
if($branchname == $branch)
|
171 |
|
|
$found = true;
|
172 |
|
|
if(!$found) {
|
173 |
bfd1cd6b
|
Scott Ullrich
|
echo "\nInvalid branch {$branch}.\n";
|
174 |
800351cc
|
Scott Ullrich
|
exit;
|
175 |
|
|
}
|
176 |
|
|
|
177 |
b9c529eb
|
Scott Ullrich
|
if($branch == "RESTORE" && $g['platform'] == "pfSense") {
|
178 |
ff33e21f
|
Scott Ullrich
|
if(!file_exists("/root/cvssync_backup.tgz")) {
|
179 |
|
|
echo "Sorry, we could not find a previous CVSSync backup file.\n";
|
180 |
|
|
exit();
|
181 |
|
|
}
|
182 |
|
|
echo "===> Restoring previous CVSSync backup... Please wait...\n";
|
183 |
9226ab39
|
Scott Ullrich
|
exec("tar Uxpf /root/cvssync_backup.tgz -C /");
|
184 |
ff33e21f
|
Scott Ullrich
|
post_cvssync_commands();
|
185 |
|
|
exit();
|
186 |
|
|
}
|
187 |
|
|
|
188 |
7a7371d1
|
Scott Ullrich
|
if($nobackup == false) {
|
189 |
84b5f39b
|
Scott Ullrich
|
echo "===> Backing up current pfSense information...\n";
|
190 |
bfd1cd6b
|
Scott Ullrich
|
echo "===> Specify NOBACKUP at the end of pfSsh.php command to turn this feature off.\n";
|
191 |
84b5f39b
|
Scott Ullrich
|
echo "===> Please wait... ";
|
192 |
6680b6d1
|
Scott Ullrich
|
$exclude = " --exclude /var/dhcpd/dev/";
|
193 |
|
|
$exclude .= " --exclude /root";
|
194 |
|
|
$exclude .= " --exclude /dev";
|
195 |
|
|
$exclude .= " --exclude /var/db/racoon/racoon.sock";
|
196 |
|
|
$exclude .= " --exclude /tmp";
|
197 |
|
|
$exclude .= " --exclude /var/run";
|
198 |
|
|
$exclude .= " --exclude /var/empty";
|
199 |
|
|
exec("tar czPf /root/cvssync_backup.tgz {$exclude} /");
|
200 |
84b5f39b
|
Scott Ullrich
|
$size = filesize("/root/cvssync_backup.tgz");
|
201 |
|
|
echo "{$size} bytes.\n\n";
|
202 |
|
|
}
|
203 |
ff33e21f
|
Scott Ullrich
|
|
204 |
9c55f824
|
Scott Ullrich
|
echo "===> Checking out $branch\n";
|
205 |
bfc956c0
|
Scott Ullrich
|
exec("mkdir -p /root/pfsense/$branch");
|
206 |
784cca4d
|
Scott Ullrich
|
system("cvsup /var/etc/pfSense-supfile");
|
207 |
|
|
exec("rm -rf /usr/local/www/includes/*");
|
208 |
|
|
exec("rm -rf /usr/local/www/javascript/*");
|
209 |
|
|
exec("find /usr/local/www -name \"*.js\" -exec rm {} \;");
|
210 |
|
|
|
211 |
|
|
exec("mkdir -p /tmp/lighttpd/cache/compress/");
|
212 |
|
|
|
213 |
800351cc
|
Scott Ullrich
|
exec("cd ${CODIR}/ && find . -name CVS -exec rm -rf {} \; 2>/dev/null");
|
214 |
|
|
exec("cd ${CODIR}/ && find . -name pfSense.tgz -exec rm {} \; 2>/dev/null");
|
215 |
|
|
exec("rm -rf ${CODIR}/conf*");
|
216 |
|
|
exec("rm ${CODIR}/pfSense/usr/local/www/trigger_initial_wizard 2>/dev/null");
|
217 |
|
|
exec("rm ${CODIR}/pfSense/etc/crontab 2>/dev/null");
|
218 |
|
|
exec("rm ${CODIR}/pfSense/etc/master.passwd 2>/dev/null");
|
219 |
|
|
exec("rm ${CODIR}/pfSense/etc/passwd 2>/dev/null");
|
220 |
|
|
exec("rm ${CODIR}/pfSense/etc/fstab 2>/dev/null");
|
221 |
|
|
exec("rm ${CODIR}/pfSense/etc/ttys 2>/dev/null");
|
222 |
|
|
exec("rm ${CODIR}/pfSense/etc/group 2>/dev/null");
|
223 |
|
|
exec("rm ${CODIR}/pfSense/etc/fstab 2>/dev/null");
|
224 |
4f05fc73
|
Scott Ullrich
|
exec("rm ${CODIR}/pfSense/etc/platform 2>/dev/null");
|
225 |
800351cc
|
Scott Ullrich
|
exec("rm ${CODIR}/pfSense/boot/device.hints 2>/dev/null");
|
226 |
|
|
exec("rm ${CODIR}/pfSense/boot/loader.conf 2>/dev/null");
|
227 |
|
|
exec("rm ${CODIR}/pfSense/boot/loader.rc 2>/dev/null");
|
228 |
|
|
exec("rm -rf ${CODIR}/pfSense/conf/ 2>/dev/null");
|
229 |
|
|
exec("rm -rf ${CODIR}/pfSense/cf/ 2>/dev/null");
|
230 |
|
|
exec("rm -rf ${CODIR}/pfSense/root/.shrc");
|
231 |
|
|
exec("rm -rf ${CODIR}/pfSense/root/.tcshrc");
|
232 |
44d2484c
|
Scott Ullrich
|
exec("rm -f ${CODIR}/pfSense/etc/syslog.conf 2>/dev/null");
|
233 |
800351cc
|
Scott Ullrich
|
|
234 |
e1cb970e
|
Scott Ullrich
|
echo "===> Installing new files...";
|
235 |
b9c529eb
|
Scott Ullrich
|
if($g['platform'] == "pfSense")
|
236 |
|
|
$command = "cd $CODIR/pfSense ; tar -cpf - . | (cd / ; tar -Uxpf -)";
|
237 |
|
|
else
|
238 |
254454a2
|
Scott Ullrich
|
$command = "cd $CODIR/pfSense ; tar -cpf - . | (cd / ; tar -xpf -) 2>/dev/null";
|
239 |
b9c529eb
|
Scott Ullrich
|
exec($command);
|
240 |
e1cb970e
|
Scott Ullrich
|
echo "done.\n";
|
241 |
800351cc
|
Scott Ullrich
|
|
242 |
ff33e21f
|
Scott Ullrich
|
post_cvssync_commands();
|
243 |
800351cc
|
Scott Ullrich
|
|
244 |
e1cb970e
|
Scott Ullrich
|
echo "===> Checkout and file installation complete.\n";
|
245 |
|
|
echo "===> Signaling 5 second PHP and lighttpd reload\n";
|
246 |
800351cc
|
Scott Ullrich
|
|
247 |
16bc968e
|
Scott Ullrich
|
conf_mount_ro();
|
248 |
4d7ca5b6
|
Scott Ullrich
|
|
249 |
c4110081
|
Scott Ullrich
|
echo "===> Showing rules.debug differences\n";
|
250 |
dbec18e1
|
Scott Ullrich
|
system("diff -u /tmp/rules.beforecvssync /tmp/rules.debug");
|
251 |
c4110081
|
Scott Ullrich
|
|
252 |
e1cb970e
|
Scott Ullrich
|
echo "===> Waiting for PHP/lighttpd restart...";
|
253 |
3f179a55
|
Scott Ullrich
|
sleep(10);
|