module(..., package.seeall) require("fs") require("procps") require("getopts") require("format") require("daemoncontrol") require("validator") local configfile = "/etc/racoon/racoon.conf" local processname = "racoon" local pkgname = "ipsec-tools" local baseurl = "/etc/racoon/" local function get_version() local cmd_output_result, cmd_output_error local cmd = "/sbin/apk_version -vs " .. pkgname .." 2>/dev/null" local f = io.popen( cmd ) local cmdresult = f:read("*l") if (cmdresult) and (#cmdresult > 0) then cmd_output_result = string.match(cmdresult,"^%S*") or "Unknown" else cmd_output_error = "Program not installed" end f:close() return cmd_output_result,cmd_output_error end local function autostarts() local cmd_output_result local cmd = "/sbin/rc_status | egrep '^S' | egrep '" .. processname .."' 2>/dev/null" local f = io.popen( cmd ) local cmdresult = f:read("*a") if (cmdresult) and (#cmdresult > 0) then cmd_output_result = "Process will autostart at next boot (at sequence '" .. string.match(cmdresult,"^%a+(%d%d)") .. "')" else cmd_output_error = "Not programmed to autostart" end f:close() return cmd_output_result end local function racoonctl() local cmd_output_result, cmd_output_error local cmd = "/usr/sbin/racoonctl -lll show-sa isakmp 2>/dev/null" local f = io.popen( cmd ) local cmd_output_result = f:read("*a") f:close() return cmd_output_result,cmd_output_error end local function racoonctl_table() local value = racoonctl() local output = {} for k,v in pairs(format.string_to_table(value,"\n")) do if not (string.find(v,"^Source")) then output[k]={} local variable=format.string_to_table(v,"%s+") output[k]['Source']=cfe({ name="Source", label="Source", value=variable[1], }) output[k]['Destination']=cfe({ name="Destination", label="Destination", value=variable[2], }) output[k]['Cookies']=cfe({ name="Cookies", label="Cookies", value=variable[3], }) output[k]['St']=cfe({ name="St", label="Variable St", value=variable[4], }) output[k]['S']=cfe({ name="S", label="Variable S", value=variable[5], }) output[k]['V']=cfe({ name="V", label="Variable V", value=variable[6], }) output[k]['E']=cfe({ name="E", label="Variable E", value=variable[7], }) output[k]['Created']=cfe({ name="Created", label="Created", value=(variable[8] or "") .. " " .. (variable[9] or ""), }) output[k]['Phase2']=cfe({ name="Phase2", label="Phase2", value=variable[10], }) end end return output end local function ip_xfrm(mode) local cmd_output_result local cmd = "/bin/ip xfrm " .. mode .. " 2>/dev/null" local f = io.popen( cmd ) local cmd_output_result = f:read("*a") f:close() return cmd_output_result end function process_status_text(procname) local t = procps.pidof(procname) if #t > 0 then return "Enabled" else return "Disabled" end end -- ################################################################################ -- PUBLIC FUNCTIONS function getstatus() local status = {} status.version = cfe({ name = "version", label="Program version", value=get_version(), }) status.status = cfe({ name="status", label="Program status", value=process_status_text(processname), }) local autostart_sequense, autostart_errtxt = autostarts() status.autostart = cfe({ name="autostart", label="Autostart sequence", value=autostart_sequense, errtxt=autostart_errtxt, }) status.show_isakmp2 = cfe({ name="show_isakmp2", label="Tunnels", value=racoonctl_table(), }) status.show_isakmp = cfe({ name="show_isakmp", label="racoonctl -lll show-sa isakmp", value=racoonctl(), }) status.ip_xfrm_state = cfe({ name="show_esp", label="ip xfrm state", value=ip_xfrm("state"), }) status.ip_xfrm_policy = cfe({ name="ip_xfrm_policy", label="ip xfrm policy", value=ip_xfrm("policy"), }) return status end