Project

General

Profile

Download (26.2 KB) Statistics
| Branch: | Tag: | Revision:
1
<?php
2
/* $Id$ */
3
/*
4
	firewall_aliases_edit.php
5
	Copyright (C) 2004 Scott Ullrich
6
	Copyright (C) 2009 Ermal Lu?i
7
	Copyright (C) 2010 Jim Pingle
8
	All rights reserved.
9

    
10
	originially part of m0n0wall (http://m0n0.ch/wall)
11
	Copyright (C) 2003-2004 Manuel Kasper <mk@neon1.net>.
12
	All rights reserved.
13

    
14
	Redistribution and use in source and binary forms, with or without
15
	modification, are permitted provided that the following conditions are met:
16

    
17
	1. Redistributions of source code must retain the above copyright notice,
18
	   this list of conditions and the following disclaimer.
19

    
20
	2. Redistributions in binary form must reproduce the above copyright
21
	   notice, this list of conditions and the following disclaimer in the
22
	   documentation and/or other materials provided with the distribution.
23

    
24
	THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
25
	INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY
26
	AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE
27
	AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY,
28
	OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
29
	SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
30
	INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
31
	CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
32
	ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
33
	POSSIBILITY OF SUCH DAMAGE.
34
*/
35
/*
36
	pfSense_BUILDER_BINARIES:	/bin/rm	/bin/mkdir	/usr/bin/fetch
37
	pfSense_MODULE:	aliases
38
*/
39

    
40
##|+PRIV
41
##|*IDENT=page-firewall-alias-edit
42
##|*NAME=Firewall: Alias: Edit page
43
##|*DESCR=Allow access to the 'Firewall: Alias: Edit' page.
44
##|*MATCH=firewall_aliases_edit.php*
45
##|-PRIV
46

    
47

    
48
// Keywords not allowed in names
49
$reserved_keywords = array("pass", "out", "queue", "max", "min", "pptp", "pppoe", "L2TP", "OpenVPN", "IPsec");
50

    
51
require("guiconfig.inc");
52
require_once("functions.inc");
53
require_once("filter.inc");
54
require_once("shaper.inc");
55

    
56
$pgtitle = array(gettext("Firewall"),gettext("Aliases"),gettext("Edit"));
57

    
58
$reserved_ifs = get_configured_interface_list(false, true);
59
$reserved_keywords = array_merge($reserved_keywords, $reserved_ifs);
60

    
61
if (!is_array($config['aliases']['alias']))
62
	$config['aliases']['alias'] = array();
63
$a_aliases = &$config['aliases']['alias'];
64
	
65
if($_POST)
66
	$origname = $_POST['origname'];
67

    
68
// Debugging
69
if($debug)
70
	exec("rm -f {$g['tmp_path']}/alias_rename_log.txt");
71

    
72
function alias_same_type($name, $type) {
73
	global $config;
74
	
75
	foreach ($config['aliases']['alias'] as $alias) {
76
		if ($name == $alias['name']) {
77
			if (in_array($type, array("host", "network")) &&
78
				in_array($alias['type'], array("host", "network")))
79
				return true;
80
			if ($type  == $alias['type'])
81
				return true;
82
			else
83
				return false;
84
		}
85
	}
86
	return true;
87
}
88

    
89
$id = $_GET['id'];
90
if (isset($_POST['id']))
91
	$id = $_POST['id'];
92

    
93
if (isset($id) && $a_aliases[$id]) {
94
	$original_alias_name = $a_aliases[$id]['name'];
95
	$pconfig['name'] = $a_aliases[$id]['name'];
96
	$pconfig['detail'] = $a_aliases[$id]['detail'];
97
	$pconfig['address'] = $a_aliases[$id]['address'];
98
	$pconfig['type'] = $a_aliases[$id]['type'];
99
	$pconfig['descr'] = html_entity_decode($a_aliases[$id]['descr']);
100

    
101
	/* interface list */
102
	$iflist = get_configured_interface_with_descr(false, true);
103
	foreach ($iflist as $if => $ifdesc)
104
		if($ifdesc == $pconfig['descr']) 
105
			$input_errors[] = sprintf(gettext("Sorry, an interface is already named %s."), $pconfig['descr']);
106

    
107
	if($a_aliases[$id]['type'] == "urltable") {
108
		$pconfig['address'] = $a_aliases[$id]['url'];
109
		$pconfig['updatefreq'] = $a_aliases[$id]['updatefreq'];
110
	}
111
	if($a_aliases[$id]['aliasurl'] <> "") {
112
		$pconfig['type'] = "url";
113
		if(is_array($a_aliases[$id]['aliasurl'])) {
114
			$isfirst = 0;
115
			$pconfig['address'] = "";
116
			foreach($a_aliases[$id]['aliasurl'] as $aa) {
117
				if($isfirst == 1)
118
					$pconfig['address'] .= " ";
119
				$isfirst = 1;
120
				$pconfig['address'] .= $aa;
121
			}
122
		} else {
123
			$pconfig['address'] = $a_aliases[$id]['aliasurl'];
124
		}
125
	}
126
}
127

    
128
if ($_POST) {
129
	unset($input_errors);
130

    
131
	/* input validation */
132

    
133
	$reqdfields = explode(" ", "name");
134
	$reqdfieldsn = array(gettext("Name"));
135

    
136
	do_input_validation($_POST, $reqdfields, $reqdfieldsn, &$input_errors);
137

    
138
	$x = is_validaliasname($_POST['name']);
139
	if (!isset($x)) {
140
		$input_errors[] = gettext("Reserved word used for alias name.");
141
	} else if ($_POST['type'] == "port" && (getservbyname($_POST['name'], "tcp") || getservbyname($_POST['name'], "udp"))) {
142
		$input_errors[] = gettext("Reserved word used for alias name.");
143
	} else {
144
		if (is_validaliasname($_POST['name']) == false)
145
			$input_errors[] = gettext("The alias name may only consist of the characters") . " a-z, A-Z, 0-9, _.";
146
	}
147
	/* check for name conflicts */
148
	if (empty($a_aliases[$id])) {
149
		foreach ($a_aliases as $alias) {
150
			if ($alias['name'] == $_POST['name']) {
151
				$input_errors[] = gettext("An alias with this name already exists.");
152
				break;
153
			}
154
		}
155
	}
156

    
157
	/* Check for reserved keyword names */
158
	foreach($reserved_keywords as $rk) 
159
		if($rk == $_POST['name'])
160
			$input_errors[] = sprintf(gettext("Cannot use a reserved keyword as alias name %s"), $rk);
161

    
162
	/* check for name interface description conflicts */
163
	foreach($config['interfaces'] as $interface) {
164
		if($interface['descr'] == $_POST['name']) {
165
			$input_errors[] = gettext("An interface description with this name already exists.");
166
			break;
167
		}
168
	}
169
	
170
	$alias = array();
171
	$address = array();
172
	$final_address_details = array();
173
	$alias['name'] = $_POST['name'];
174

    
175
	if ($_POST['type'] == "urltable") {
176
		$address = "";
177
		$isfirst = 0;
178

    
179
		/* item is a url type */
180
		if ($_POST['address0']) {
181
			/* fetch down and add in */
182
			$isfirst = 0;
183
			$address = "";
184
			$alias['url'] = $_POST['address0'];
185
			$alias['updatefreq'] = $_POST['address_subnet0'] ? $_POST['address_subnet0'] : 7;
186
			if (!is_URL($alias['url']) || empty($alias['url'])) {
187
				$input_errors[] = gettext("You must provide a valid URL.");
188
				$dont_update = true;
189
			} elseif (! process_alias_urltable($alias['name'], $alias['url'], 0, true)) {
190
				$input_errors[] = gettext("Unable to fetch usable data.");
191
				$dont_update = true;
192
			}
193
		}
194
	} elseif($_POST['type'] == "url") {
195
		$isfirst = 0;
196
		$address_count = 2;
197

    
198
		/* item is a url type */
199
		for($x=0; isset($_POST['address'. $x]); $x++) {
200
			if($_POST['address' . $x]) {
201
				/* fetch down and add in */
202
				$isfirst = 0;
203
				$temp_filename = tempnam("{$g['tmp_path']}/", "alias_import");
204
				unlink($temp_filename);
205
				$fda = fopen("{$g['tmp_path']}/tmpfetch","w");
206
				fwrite($fda, "/usr/bin/fetch -q -o \"{$temp_filename}/aliases\" \"" . $_POST['address' . $x] . "\"");
207
				fclose($fda);
208
				mwexec("/bin/mkdir -p {$temp_filename}");
209
				mwexec("/usr/bin/fetch -q -o \"{$temp_filename}/aliases\" \"" . $_POST['address' . $x] . "\"");
210
				/* if the item is tar gzipped then extract */
211
				if(stristr($_POST['address' . $x], ".tgz"))
212
					process_alias_tgz($temp_filename);
213
				if(file_exists("{$temp_filename}/aliases")) {
214
					$file_contents = file_get_contents("{$temp_filename}/aliases");
215
					$file_contents = str_replace("#", "\n#", $file_contents);
216
					$file_contents_split = split("\n", $file_contents);
217
					foreach($file_contents_split as $fc) {
218
						// Stop at 3000 items, aliases larger than that tend to break both pf and the WebGUI.
219
						if ($address_count >= 3000)
220
							break;
221
						$tmp = trim($fc);
222
						if(stristr($fc, "#")) {
223
							$tmp_split = split("#", $tmp);
224
							$tmp = trim($tmp_split[0]);
225
						}
226
						$tmp = trim($tmp);
227
						if(!empty($tmp) && (is_ipaddr($tmp) || is_subnet($tmp))) {
228
							$address[] = $tmp;
229
							$isfirst = 1;
230
							$address_count++;
231
						}
232
					}
233
					if($isfirst == 0) {
234
						/* nothing was found */
235
						$input_errors[] = gettext("You must provide a valid URL. Could not fetch usable data.");
236
						$dont_update = true;
237
						break;
238
					}
239
					$alias['aliasurl'][] = $_POST['address' . $x];
240
					mwexec("/bin/rm -rf {$temp_filename}");
241
				} else {
242
					$input_errors[] = gettext("You must provide a valid URL.");
243
					$dont_update = true;
244
					break;
245
				}
246
			}
247
		}
248
	} else {
249
		/* item is a normal alias type */
250
		$wrongaliases = "";
251
		for($x=0; $x<4999; $x++) {
252
			if($_POST["address{$x}"] <> "") {
253
				if (is_alias($_POST["address{$x}"])) {
254
					if (!alias_same_type($_POST["address{$x}"], $_POST['type']))
255
						$wrongaliases .= " " . $_POST["address{$x}"];
256
				} else if ($_POST['type'] == "port") {
257
					if (!is_port($_POST["address{$x}"]))
258
						$input_errors[] = $_POST["address{$x}"] . " " . gettext("is not a valid port or alias.");
259
				} else if ($_POST['type'] == "host" || $_POST['type'] == "network") {
260
					if (!is_ipaddr($_POST["address{$x}"])
261
					 && !is_hostname($_POST["address{$x}"])
262
					 && !is_iprange($_POST["address{$x}"]))
263
						$input_errors[] = sprintf(gettext('%1$s is not a valid %2$s alias.'), $_POST["address{$x}"], $_POST['type']);
264
				}
265
				if (is_iprange($_POST["address{$x}"])) {
266
					list($startip, $endip) = explode('-', $_POST["address{$x}"]);
267
					$rangesubnets = ip_range_to_subnet_array($startip, $endip);
268
					$address = array_merge($address, $rangesubnets);
269
				} else {
270
					$tmpaddress = $_POST["address{$x}"];
271
					if(is_ipaddr($_POST["address{$x}"]) && $_POST["address_subnet{$x}"] <> "")
272
						$tmpaddress .= "/" . $_POST["address_subnet{$x}"];
273
					$address[] = $tmpaddress;
274
				}
275
				if ($_POST["detail{$x}"] <> "")
276
					$final_address_details[] = $_POST["detail{$x}"];
277
				else
278
					$final_address_details[] = sprintf(gettext("Entry added %s"), date('r'));
279
			}
280
		}
281
		if ($wrongaliases <> "")
282
			$input_errors[] = sprintf(gettext('The alias(es): %s cannot be nested because they are not of the same type.'), $wrongaliases);
283
	}
284

    
285
	if (!$input_errors) {
286
		$alias['address'] = is_array($address) ? implode(" ", $address) : $address;
287
		$alias['descr'] = $_POST['descr'];
288
		$alias['type'] = $_POST['type'];
289
		$alias['detail'] = implode("||", $final_address_details);
290

    
291
		/*   Check to see if alias name needs to be
292
		 *   renamed on referenced rules and such
293
		 */
294
		if ($_POST['name'] <> $_POST['origname']) {
295
			// Firewall rules
296
			update_alias_names_upon_change(array('filter', 'rule'), array('source', 'address'), $_POST['name'], $origname);
297
			update_alias_names_upon_change(array('filter', 'rule'), array('destination', 'address'), $_POST['name'], $origname);
298
			update_alias_names_upon_change(array('filter', 'rule'), array('source', 'port'), $_POST['name'], $origname);
299
			update_alias_names_upon_change(array('filter', 'rule'), array('destination', 'port'), $_POST['name'], $origname);
300
			// NAT Rules
301
			update_alias_names_upon_change(array('nat', 'rule'), array('source', 'address'), $_POST['name'], $origname);
302
			update_alias_names_upon_change(array('nat', 'rule'), array('source', 'port'), $_POST['name'], $origname);
303
			update_alias_names_upon_change(array('nat', 'rule'), array('destination', 'address'), $_POST['name'], $origname);
304
			update_alias_names_upon_change(array('nat', 'rule'), array('destination', 'port'), $_POST['name'], $origname);
305
			update_alias_names_upon_change(array('nat', 'rule'), array('target'), $_POST['name'], $origname);
306
			update_alias_names_upon_change(array('nat', 'rule'), array('local-port'), $_POST['name'], $origname);
307
			// Alias in an alias
308
			update_alias_names_upon_change(array('aliases', 'alias'), array('address'), $_POST['name'], $origname);
309
		}
310

    
311
		if (isset($id) && $a_aliases[$id]) {
312
			if ($a_aliases[$id]['name'] <> $alias['name']) {
313
				foreach ($a_aliases as $aliasid => $aliasd) {
314
					if ($aliasd['address'] <> "") {
315
						$tmpdirty = false;
316
						$tmpaddr = explode(" ", $aliasd['address']);
317
						foreach ($tmpaddr as $tmpidx => $tmpalias) {
318
							if ($tmpalias == $a_aliases[$id]['name']) {
319
								$tmpaddr[$tmpidx] = $alias['name'];
320
								$tmpdirty = true;
321
							}
322
						}
323
						if ($tmpdirty == true)
324
							$a_aliases[$aliasid]['address'] = implode(" ", $tmpaddr);
325
					}
326
				}
327
			}
328
			$a_aliases[$id] = $alias;
329
		} else
330
			$a_aliases[] = $alias;
331

    
332
		mark_subsystem_dirty('aliases');
333

    
334
		// Sort list
335
		$a_aliases = msort($a_aliases, "name");
336

    
337
		write_config();
338

    
339
		header("Location: firewall_aliases.php");
340
		exit;		
341
	}
342
	//we received input errors, copy data to prevent retype
343
	else
344
	{
345
		$pconfig['name'] = $_POST['name'];
346
		$pconfig['descr'] = $_POST['descr'];
347
		$pconfig['address'] = implode(" ", $address);
348
		$pconfig['type'] = $_POST['type'];
349
		$pconfig['detail'] = implode("||", $final_address_details);
350
	}
351
}
352

    
353
include("head.inc");
354

    
355
$jscriptstr = <<<EOD
356

    
357
<script type="text/javascript">
358

    
359
var objAlias = new Array(4999);
360
function typesel_change() {
361
	switch (document.iform.type.selectedIndex) {
362
		case 0:	/* host */
363
			var cmd;
364

    
365
			newrows = totalrows;
366
			for(i=0; i<newrows; i++) {
367
				comd = 'document.iform.address_subnet' + i + '.disabled = 1;';
368
				eval(comd);
369
				comd = 'document.iform.address_subnet' + i + '.value = "";';
370
				eval(comd);
371
			}
372
			break;
373
		case 1:	/* network */
374
			var cmd;
375

    
376
			newrows = totalrows;
377
			for(i=0; i<newrows; i++) {
378
				comd = 'document.iform.address_subnet' + i + '.disabled = 0;';
379
				eval(comd);
380
			}
381
			break;
382
		case 2:	/* port */
383
			var cmd;
384

    
385
			newrows = totalrows;
386
			for(i=0; i<newrows; i++) {
387
				comd = 'document.iform.address_subnet' + i + '.disabled = 1;';
388
				eval(comd);
389
				comd = 'document.iform.address_subnet' + i + '.value = "32";';
390
				eval(comd);
391
			}
392
			break;
393
		case 3:	/* OpenVPN Users */
394
			var cmd;
395

    
396
			newrows = totalrows;
397
			for(i=0; i<newrows; i++) {
398
				comd = 'document.iform.address_subnet' + i + '.disabled = 1;';
399
				eval(comd);
400
				comd = 'document.iform.address_subnet' + i + '.value = "";';
401
				eval(comd);
402
			}
403
			break;
404

    
405
		case 4:	/* url */
406
			var cmd;
407
			newrows = totalrows;
408
			for(i=0; i<newrows; i++) {
409
				comd = 'document.iform.address_subnet' + i + '.disabled = 1;';
410
				eval(comd);
411
			}
412
			break;
413

    
414
		case 5:	/* urltable */
415
			var cmd;
416
			newrows = totalrows;
417
			for(i=0; i<newrows; i++) {
418
				comd = 'document.iform.address_subnet' + i + '.disabled = 0;';
419
				eval(comd);
420
			}
421
			break;
422
	}
423
}
424

    
425
function add_alias_control() {
426
	var name = "address" + (totalrows - 1);
427
	obj = document.getElementById(name);
428
	obj.setAttribute('class', 'formfldalias');
429
	obj.setAttribute('autocomplete', 'off');
430
	objAlias[totalrows - 1] = new AutoSuggestControl(obj, new StateSuggestions(addressarray));
431
}
432
EOD;
433

    
434
$network_str = gettext("Network");
435
$networks_str = gettext("Network(s)");
436
$cidr_str = gettext("CIDR");
437
$description_str = gettext("Description");
438
$hosts_str = gettext("Host(s)");
439
$ip_str = gettext("IP");
440
$ports_str = gettext("Port(s)");
441
$port_str = gettext("Port");
442
$url_str = gettext("URL");
443
$urltable_str = gettext("URL Table");
444
$update_freq_str = gettext("Update Freq.");
445

    
446
$networks_help = gettext("Networks are specified in CIDR format.  Select the CIDR mask that pertains to each entry. /32 specifies a single host, /24 specifies 255.255.255.0, etc. Hostnames (FQDNs) may also be specified, using a /32 mask. You may also enter an IP range such as 192.168.1.1-192.168.1.254 and a list of CIDR networks will be derived to fill the range.");
447
$hosts_help = gettext("Enter as many hosts as you would like.  Hosts must be specified by their IP address.");
448
$ports_help = gettext("Enter as many ports as you wish.  Port ranges can be expressed by seperating with a colon.");
449
$url_help = sprintf(gettext("Enter as many URLs as you wish. After saving %s will download the URL and import the items into the alias. Use only with small sets of IP addresses (less than 3000)."), $g['product_name']);
450
$urltable_help = sprintf(gettext("Enter a single URL containing a large number of IPs and/or Subnets. After saving %s will download the URL and create a table file containing these addresses. This will work with large numbers of addresses (30,000+) or small numbers."), $g['product_name']);
451

    
452
$openvpn_str = gettext("Username");
453
$openvpn_user_str = gettext("OpenVPN Users");
454
$openvpn_help = gettext("Enter as many usernames as you wish.");
455
$openvpn_freq = "";
456

    
457
$jscriptstr .= <<<EOD
458

    
459
function update_box_type() {
460
	var indexNum = document.forms[0].type.selectedIndex;
461
	var selected = document.forms[0].type.options[indexNum].text;
462
	if(selected == '{$networks_str}') {
463
		document.getElementById ("addressnetworkport").firstChild.data = "{$networks_str}";
464
		document.getElementById ("onecolumn").firstChild.data = "{$network_str}";
465
		document.getElementById ("twocolumn").firstChild.data = "{$cidr_str}";
466
		document.getElementById ("threecolumn").firstChild.data = "{$description_str}";
467
		document.getElementById ("itemhelp").firstChild.data = "{$networks_help}";
468
		document.getElementById ("addrowbutton").style.display = 'block';
469
	} else if(selected == '{$hosts_str}') {
470
		document.getElementById ("addressnetworkport").firstChild.data = "{$hosts_str}";
471
		document.getElementById ("onecolumn").firstChild.data = "{$ip_str}";
472
		document.getElementById ("twocolumn").firstChild.data = "";
473
		document.getElementById ("threecolumn").firstChild.data = "{$description_str}";
474
		document.getElementById ("itemhelp").firstChild.data = "{$hosts_help}";
475
		document.getElementById ("addrowbutton").style.display = 'block';
476
	} else if(selected == '{$ports_str}') {
477
		document.getElementById ("addressnetworkport").firstChild.data = "{$ports_str}";
478
		document.getElementById ("onecolumn").firstChild.data = "{$port_str}";
479
		document.getElementById ("twocolumn").firstChild.data = "";
480
		document.getElementById ("threecolumn").firstChild.data = "{$description_str}";
481
		document.getElementById ("itemhelp").firstChild.data = "{$ports_help}";
482
		document.getElementById ("addrowbutton").style.display = 'block';
483
	} else if(selected == '{$url_str}') {
484
		document.getElementById ("addressnetworkport").firstChild.data = "{$url_str}";
485
		document.getElementById ("onecolumn").firstChild.data = "{$url_str}";
486
		document.getElementById ("twocolumn").firstChild.data = "";
487
		document.getElementById ("threecolumn").firstChild.data = "{$description_str}";
488
		document.getElementById ("itemhelp").firstChild.data = "{$url_help}";
489
		document.getElementById ("addrowbutton").style.display = 'block';
490
	} else if(selected == '{$openvpn_user_str}') {
491
		document.getElementById ("addressnetworkport").firstChild.data = "{$openvpn_user_str}";
492
		document.getElementById ("onecolumn").firstChild.data = "{$openvpn_str}";
493
		document.getElementById ("twocolumn").firstChild.data = "{$openvpn_freq}";
494
		document.getElementById ("threecolumn").firstChild.data = "{$description_str}";
495
		document.getElementById ("itemhelp").firstChild.data = "{$openvpn_help}";
496
		document.getElementById ("addrowbutton").style.display = 'block';
497
	} else if(selected == '{$urltable_str}') {
498
		if ((typeof(totalrows) == "undefined") || (totalrows < 1)) {
499
			addRowTo('maintable', 'formfldalias');
500
			typesel_change();
501
			add_alias_control(this);
502
		}
503
		document.getElementById ("addressnetworkport").firstChild.data = "{$url_str}";
504
		document.getElementById ("onecolumn").firstChild.data = "{$url_str}";
505
		document.getElementById ("twocolumn").firstChild.data = "{$update_freq_str}";
506
		document.getElementById ("threecolumn").firstChild.data = "";
507
		document.getElementById ("threecolumn").style.display = 'none';
508
		document.getElementById ("itemhelp").firstChild.data = "{$urltable_help}";
509
		document.getElementById ("addrowbutton").style.display = 'none';
510
	}
511
}
512
</script>
513

    
514
EOD;
515

    
516
?>
517

    
518
<body link="#0000CC" vlink="#0000CC" alink="#0000CC" onload="<?= $jsevents["body"]["onload"] ?>">
519
<?php
520
	include("fbegin.inc");
521
	echo $jscriptstr;
522
?>
523

    
524
<script type="text/javascript" src="/javascript/row_helper.js">
525
</script>
526
<script type="text/javascript" src="/javascript/autosuggest.js">
527
</script>
528
<script type="text/javascript" src="/javascript/suggestions.js">
529
</script>
530

    
531
<input type='hidden' name='address_type' value='textbox' />
532
<input type='hidden' name='address_subnet_type' value='select' />
533

    
534
<script type="text/javascript">
535
	rowname[0] = "address";
536
	rowtype[0] = "textbox";
537
	rowsize[0] = "30";
538

    
539
	rowname[1] = "address_subnet";
540
	rowtype[1] = "select";
541
	rowsize[1] = "1";
542

    
543
	rowname[2] = "detail";
544
	rowtype[2] = "textbox";
545
	rowsize[2] = "50";
546
</script>
547

    
548
<?php if ($input_errors) print_input_errors($input_errors); ?>
549
<div id="inputerrors"></div>
550

    
551
<form action="firewall_aliases_edit.php" method="post" name="iform" id="iform">
552
<table width="100%" border="0" cellpadding="6" cellspacing="0">
553
  <tr>
554
	<td colspan="2" valign="top" class="listtopic"><?=gettext("Alias Edit"); ?></td>
555
  </tr>
556
  <tr>
557
    <td valign="top" class="vncellreq"><?=gettext("Name"); ?></td>
558
    <td class="vtable">
559
      <input name="origname" type="hidden" id="origname" class="formfld unknown" size="40" value="<?=htmlspecialchars($pconfig['name']);?>" />
560
      <input name="name" type="text" id="name" class="formfld unknown" size="40" value="<?=htmlspecialchars($pconfig['name']);?>" />
561
      <?php if (isset($id) && $a_aliases[$id]): ?>
562
      <input name="id" type="hidden" value="<?=htmlspecialchars($id);?>" />
563
      <?php endif; ?>
564
      <br />
565
      <span class="vexpl">
566
        <?=gettext("The name of the alias may only consist of the characters \"a-z, A-Z and 0-9\"."); ?>
567
      </span>
568
    </td>
569
  </tr>
570
  <tr>
571
    <td width="22%" valign="top" class="vncell"><?=gettext("Description"); ?></td>
572
    <td width="78%" class="vtable">
573
      <input name="descr" type="text" class="formfld unknown" id="descr" size="40" value="<?=htmlspecialchars($pconfig['descr']);?>" />
574
      <br />
575
      <span class="vexpl">
576
        <?=gettext("You may enter a description here for your reference (not parsed)."); ?>
577
      </span>
578
    </td>
579
  </tr>
580
  <tr>
581
    <td valign="top" class="vncellreq"><?=gettext("Type"); ?></td>
582
    <td class="vtable">
583
      <select name="type" class="formselect" id="type" onchange="update_box_type(); typesel_change();">
584
        <option value="host" <?php if ($pconfig['type'] == "host") echo "selected"; ?>><?=gettext("Host(s)"); ?></option>
585
        <option value="network" <?php if ($pconfig['type'] == "network") echo "selected"; ?>><?=gettext("Network(s)"); ?></option>
586
        <option value="port" <?php if ($pconfig['type'] == "port") echo "selected"; ?>><?=gettext("Port(s)"); ?></option>
587
<!--        <option value="openvpn" <?php if ($pconfig['type'] == "openvpn") echo "selected"; ?>><?=gettext("OpenVPN Users"); ?></option> -->
588
		<option value="url" <?php if ($pconfig['type'] == "url") echo "selected"; ?>><?=gettext("URL");?></option>
589
        <option value="urltable" <?php if ($pconfig['type'] == "urltable") echo "selected"; ?>><?=gettext("URL Table"); ?></option>
590
      </select>
591
    </td>
592
  </tr>
593
  <tr>
594
    <td width="22%" valign="top" class="vncellreq"><div id="addressnetworkport"><?=gettext("Host(s)"); ?></div></td>
595
    <td width="78%" class="vtable">
596
      <table id="maintable">
597
        <tbody>
598
          <tr>
599
            <td colspan="4">
600
      		    <div style="padding:5px; margin-top: 16px; margin-bottom: 16px; border:1px dashed #000066; background-color: #ffffff; color: #000000; font-size: 8pt;" id="itemhelp"><?=gettext("Item information"); ?></div>
601
            </td>
602
          </tr>
603
          <tr>
604
            <td><div id="onecolumn"><?=gettext("Network"); ?></div></td>
605
            <td><div id="twocolumn">CIDR</div></td>
606
           <td><div id="threecolumn"><?=gettext("Description"); ?></div></td>
607
          </tr>
608

    
609
	<?php
610
	$counter = 0;
611
	$address = $pconfig['address'];
612
	if ($address <> "") {
613
		$item = explode(" ", $address);
614
		$item3 = explode("||", $pconfig['detail']);
615
		foreach($item as $ww) {
616
			$address = $item[$counter];
617
			$address_subnet = "";
618
			$item2 = explode("/", $address);
619
			foreach($item2 as $current) {
620
				if($item2[1] <> "") {
621
					$address = $item2[0];
622
					$address_subnet = $item2[1];
623
				}
624
				
625
			}
626
			$item4 = $item3[$counter];
627
			$tracker = $counter;
628
	?>
629
          <tr>
630
            <td>
631
              <input autocomplete="off" name="address<?php echo $tracker; ?>" type="text" class="formfldalias" id="address<?php echo $tracker; ?>" size="30" value="<?=htmlspecialchars($address);?>" />
632
            </td>
633
            <td>
634
			        <select name="address_subnet<?php echo $tracker; ?>" class="formselect" id="address_subnet<?php echo $tracker; ?>">
635
				<option></option>
636
			          <?php for ($i = 32; $i >= 1; $i--): ?>
637
			          <option value="<?=$i;?>" <?php if (($i == $address_subnet) || ($i == $pconfig['updatefreq'])) echo "selected"; ?>><?=$i;?></option>
638
			          <?php endfor; ?>
639
			        </select>
640
			      </td>
641
            <td>
642
              <input name="detail<?php echo $tracker; ?>" type="text" class="formfld unknown" id="detail<?php echo $tracker; ?>" size="50" value="<?=$item4;?>" />
643
            </td>
644
            <td>
645
    		<a onclick="removeRow(this); return false;" href="#"><img border="0" src="/themes/<?echo $g['theme'];?>/images/icons/icon_x.gif" alt="" title="<?=gettext("remove this entry"); ?>" /></a>
646
	      </td>
647
          </tr>
648
<?php
649
        	$counter++;
650

    
651
       		} // end foreach
652
	} // end if
653
?>
654
        </tbody>
655
        <tfoot>
656

    
657
        </tfoot>
658
		  </table>
659
			<div id="addrowbutton"><a onclick="javascript:addRowTo('maintable', 'formfldalias'); typesel_change(); add_alias_control(this); return false;" href="#">
660
        <img border="0" src="/themes/<?= $g['theme']; ?>/images/icons/icon_plus.gif" alt="" title="<?=gettext("add another entry"); ?>" /></a></div>
661
		</td>
662
  </tr>
663
  <tr>
664
    <td width="22%" valign="top">&nbsp;</td>
665
    <td width="78%">
666
      <input id="submit" name="submit" type="submit" class="formbtn" value="<?=gettext("Save"); ?>" />
667
      <a href="firewall_aliases.php"><input id="cancelbutton" name="cancelbutton" type="button" class="formbtn" value="<?=gettext("Cancel"); ?>" /></a>
668
    </td>
669
  </tr>
670
</table>
671
</form>
672

    
673
<script type="text/javascript">
674
	field_counter_js = 3;
675
	rows = 1;
676
	totalrows = <?php echo $counter; ?>;
677
	loaded = <?php echo $counter; ?>;
678
	typesel_change();
679
	update_box_type();
680

    
681
<?php
682
        $isfirst = 0;
683
        $aliases = "";
684
        $addrisfirst = 0;
685
        $aliasesaddr = "";
686
        if(isset($config['aliases']['alias']) && is_array($config['aliases']['alias']))
687
                foreach($config['aliases']['alias'] as $alias_name) {
688
			if ($pconfig['name'] <> "" && $pconfig['name'] == $alias_name['name'])
689
				continue;
690
			if($addrisfirst == 1) $aliasesaddr .= ",";
691
			$aliasesaddr .= "'" . $alias_name['name'] . "'";
692
			$addrisfirst = 1;
693
                }
694
?>
695

    
696
        var addressarray=new Array(<?php echo $aliasesaddr; ?>);
697

    
698
function createAutoSuggest() {
699
<?php  
700
	for ($jv = 0; $jv < $counter; $jv++)
701
		echo "objAlias[{$jv}] = new AutoSuggestControl(document.getElementById(\"address{$jv}\"), new StateSuggestions(addressarray));\n";
702
?>
703
}
704

    
705
setTimeout("createAutoSuggest();", 500);
706

    
707
</script>
708

    
709
<?php include("fend.inc"); ?>
710
</body>
711
</html>
(51-51/224)