database.pm 70 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377137813791380138113821383138413851386138713881389139013911392139313941395139613971398139914001401140214031404140514061407140814091410141114121413141414151416141714181419142014211422142314241425142614271428142914301431143214331434143514361437143814391440144114421443144414451446144714481449145014511452145314541455145614571458145914601461146214631464146514661467146814691470147114721473147414751476147714781479148014811482148314841485148614871488148914901491149214931494149514961497149814991500150115021503150415051506150715081509151015111512151315141515151615171518151915201521152215231524152515261527152815291530153115321533153415351536153715381539154015411542154315441545154615471548154915501551155215531554155515561557155815591560156115621563156415651566156715681569157015711572157315741575157615771578157915801581158215831584158515861587158815891590159115921593159415951596159715981599160016011602160316041605160616071608160916101611161216131614161516161617161816191620162116221623162416251626162716281629163016311632163316341635163616371638163916401641164216431644164516461647164816491650165116521653165416551656165716581659166016611662166316641665166616671668166916701671167216731674167516761677167816791680168116821683168416851686168716881689169016911692169316941695169616971698169917001701170217031704170517061707170817091710171117121713171417151716171717181719172017211722172317241725172617271728172917301731173217331734173517361737173817391740174117421743174417451746174717481749175017511752175317541755175617571758175917601761176217631764176517661767176817691770177117721773177417751776177717781779178017811782178317841785178617871788178917901791179217931794179517961797179817991800180118021803180418051806180718081809181018111812181318141815181618171818181918201821182218231824182518261827182818291830183118321833183418351836183718381839184018411842184318441845184618471848184918501851185218531854185518561857185818591860186118621863186418651866186718681869187018711872187318741875187618771878187918801881188218831884188518861887188818891890189118921893189418951896189718981899190019011902190319041905190619071908190919101911191219131914191519161917191819191920192119221923192419251926192719281929193019311932193319341935193619371938193919401941194219431944194519461947194819491950195119521953195419551956195719581959196019611962196319641965196619671968196919701971197219731974197519761977197819791980198119821983198419851986198719881989199019911992199319941995199619971998199920002001200220032004200520062007200820092010201120122013201420152016201720182019202020212022202320242025202620272028202920302031203220332034203520362037203820392040204120422043204420452046204720482049205020512052205320542055205620572058205920602061206220632064206520662067206820692070207120722073207420752076207720782079208020812082208320842085208620872088
  1. package eyelib::database;
  2. #
  3. # Copyright (C) Roman Dmitriev, rnd@rajven.ru
  4. #
  5. # commit example
  6. # Начинаем транзакцию вручную
  7. #$db->{AutoCommit} = 0;
  8. #eval {
  9. # for my $row (@rows) {
  10. # insert_record($db, 'user_auth', $row);
  11. # insert_record($db, 'user_auth_alias', $row2);
  12. # }
  13. # $db->commit();
  14. #};
  15. #if ($@) {
  16. # eval { $db->rollback(); };
  17. # die "Migration failed: $@";
  18. #}
  19. #$db->{AutoCommit} = 1;
  20. use warnings FATAL => 'all';
  21. use feature ':5.20';
  22. use utf8;
  23. use open ":encoding(utf8)";
  24. use strict;
  25. use English;
  26. use FindBin '$Bin';
  27. use lib "/opt/Eye/scripts";
  28. use base 'Exporter';
  29. use vars qw(@EXPORT @ISA);
  30. use eyelib::config;
  31. use eyelib::main;
  32. use Net::Patricia;
  33. use eyelib::net_utils;
  34. use Data::Dumper;
  35. use DateTime;
  36. use POSIX qw(mktime ctime strftime);
  37. use File::Temp qw(tempfile);
  38. use DBI;
  39. use DBD::Pg qw(:pg_types);
  40. use Text::CSV;
  41. our @ISA = qw(Exporter);
  42. our @EXPORT = qw(
  43. update_records
  44. get_office_subnet
  45. get_notify_subnet
  46. is_hotspot
  47. get_queue
  48. get_group
  49. get_subnet_description
  50. get_filter_instance_description
  51. get_vendor_name
  52. get_ou
  53. get_device_name
  54. get_device_model
  55. get_device_model_name
  56. get_building
  57. get_filter
  58. get_login
  59. StrToIp
  60. IpToStr
  61. prepare_audit_message
  62. batch_db_sql_cached
  63. batch_db_sql_csv
  64. reconnect_db
  65. write_db_log
  66. db_log_debug
  67. db_log_error
  68. db_log_info
  69. db_log_verbose
  70. db_log_warning
  71. normalize_value
  72. get_table_columns
  73. init_db
  74. do_sql
  75. _execute_param
  76. do_sql_param
  77. get_option_safe
  78. get_count_records
  79. get_id_record
  80. get_records_sql
  81. get_record_sql
  82. get_diff_rec
  83. update_record
  84. insert_record
  85. delete_record
  86. get_option
  87. init_option
  88. is_system_ou
  89. Set_Variable
  90. Get_Variable
  91. Del_Variable
  92. clean_variables
  93. build_db_schema
  94. $add_rules
  95. $L_WARNING
  96. $L_INFO
  97. $L_DEBUG
  98. $L_ERROR
  99. $L_VERBOSE
  100. %db_schema
  101. );
  102. BEGIN
  103. {
  104. #---------------------------------------------------------------------------------------------------------------
  105. our $add_rules;
  106. our $L_ERROR = 0;
  107. our $L_WARNING = 1;
  108. our $L_INFO = 2;
  109. our $L_VERBOSE = 3;
  110. our $L_DEBUG = 255;
  111. our %acl_fields = (
  112. 'ip' => '1',
  113. 'ip_int' => '1',
  114. 'enabled'=>'1',
  115. 'dhcp'=>'1',
  116. 'filter_group_id'=>'1',
  117. 'deleted'=>'1',
  118. 'dhcp_acl'=>'1',
  119. 'queue_id'=>'1',
  120. 'mac'=>'1',
  121. 'blocked'=>'1'
  122. );
  123. our %dhcp_fields = (
  124. 'ip' => '1',
  125. 'dhcp_acl'=>'1',
  126. 'dhcp_option_set'=>'1',
  127. 'dhcp'=>'1',
  128. 'deleted'=>'1',
  129. 'mac'=>'1',
  130. );
  131. our %dns_fields = (
  132. 'ip' => '1',
  133. 'dns_name'=>'1',
  134. 'dns_ptr_only'=>'1',
  135. 'alias'=>'1',
  136. );
  137. our %db_schema;
  138. #---------------------------------------------------------------------------------------------------------------
  139. sub get_office_subnet {
  140. my ($db, $ip) = @_;
  141. return undef unless $db && defined $ip;
  142. my @rows = get_records_sql(
  143. $db,
  144. "SELECT * FROM subnets WHERE office = 1 AND LENGTH(subnet) > 0"
  145. );
  146. return undef unless @rows;
  147. my $pat = Net::Patricia->new;
  148. for my $row (@rows) {
  149. next unless defined $row->{subnet};
  150. # Защита от некорректных подсетей в БД
  151. eval { $pat->add_string($row->{subnet}, $row); 1 } or next;
  152. }
  153. return $pat->match_string($ip);
  154. }
  155. #---------------------------------------------------------------------------------------------------------------
  156. sub get_notify_subnet {
  157. my $db = shift;
  158. my $ip = shift;
  159. my $notify_flag = get_office_subnet($db,$ip);
  160. if ($notify_flag) { return $notify_flag->{notify}; }
  161. return 0;
  162. }
  163. #---------------------------------------------------------------------------------------------------------------
  164. sub is_hotspot {
  165. my ($db, $ip) = @_;
  166. return 0 unless $db && defined $ip;
  167. my @subnets = get_records_sql(
  168. $db,
  169. "SELECT subnet FROM subnets WHERE hotspot = 1 AND LENGTH(subnet) > 0"
  170. );
  171. my $pat = Net::Patricia->new;
  172. for my $row (@subnets) {
  173. $pat->add_string($row->{subnet}) if defined $row->{subnet};
  174. }
  175. return $pat->match_string($ip) ? 1 : 0;
  176. }
  177. #---------------------------------------------------------------------------------------------------------------
  178. # Вспомогательная функция для проверки "пустого" значения
  179. sub _is_empty {
  180. my ($val) = @_;
  181. return !defined $val || $val eq '';
  182. }
  183. #---------------------------------------------------------------------------------------------------------------
  184. sub get_queue {
  185. my ($dbh, $queue_value) = @_;
  186. return '' if _is_empty($queue_value);
  187. my $queue = get_record_sql($dbh, "SELECT queue_name FROM queue_list WHERE id = ?", $queue_value);
  188. return $queue->{queue_name} // '';
  189. }
  190. #---------------------------------------------------------------------------------------------------------------
  191. sub get_group {
  192. my ($dbh, $group_id) = @_;
  193. return '' if _is_empty($group_id);
  194. my $group = get_record_sql($dbh, "SELECT group_name FROM group_list WHERE id = ?", $group_id);
  195. return $group->{group_name} // '';
  196. }
  197. #---------------------------------------------------------------------------------------------------------------
  198. sub get_subnet_description {
  199. my ($dbh, $subnet_id) = @_;
  200. return '' if _is_empty($subnet_id);
  201. my $subnet = get_record_sql($dbh, "SELECT * FROM subnets WHERE id = ?", $subnet_id);
  202. return '' unless $subnet;
  203. my $desc = $subnet->{description} // '';
  204. return "$subnet->{subnet} ($desc)";
  205. }
  206. #---------------------------------------------------------------------------------------------------------------
  207. sub get_filter_instance_description {
  208. my ($dbh, $instance_id) = @_;
  209. return '' if _is_empty($instance_id);
  210. my $instance = get_record_sql($dbh, "SELECT * FROM filter_instances WHERE id = ?", $instance_id);
  211. return '' unless $instance;
  212. my $desc = $instance->{description} // '';
  213. return "$instance->{name} ($desc)";
  214. }
  215. #---------------------------------------------------------------------------------------------------------------
  216. sub get_vendor_name {
  217. my ($dbh, $v_id) = @_;
  218. return '' if _is_empty($v_id);
  219. my $vendor = get_record_sql($dbh, "SELECT name FROM vendors WHERE id = ?", $v_id);
  220. return $vendor->{name} // '';
  221. }
  222. #---------------------------------------------------------------------------------------------------------------
  223. sub get_ou {
  224. my ($dbh, $ou_value) = @_;
  225. return undef if _is_empty($ou_value);
  226. my $ou_name = get_record_sql($dbh, "SELECT ou_name FROM ou WHERE id = ?", $ou_value);
  227. return $ou_name ? $ou_name->{ou_name} : undef;
  228. }
  229. #---------------------------------------------------------------------------------------------------------------
  230. sub get_device_name {
  231. my ($dbh, $device_id) = @_;
  232. return undef if _is_empty($device_id);
  233. my $dev = get_record_sql($dbh, "SELECT device_name FROM devices WHERE id = ?", $device_id);
  234. return $dev ? $dev->{device_name} : undef;
  235. }
  236. #---------------------------------------------------------------------------------------------------------------
  237. sub get_device_model {
  238. my ($dbh, $model_value) = @_;
  239. return undef if _is_empty($model_value);
  240. my $model_name = get_record_sql($dbh, "SELECT model_name FROM device_models WHERE id = ?", $model_value);
  241. return $model_name ? $model_name->{model_name} : undef;
  242. }
  243. #---------------------------------------------------------------------------------------------------------------
  244. sub get_device_model_name {
  245. my ($dbh, $model_value) = @_;
  246. return '' if _is_empty($model_value);
  247. my $row = get_record_sql($dbh, "SELECT M.id, M.model_name, V.name FROM device_models M, vendors V WHERE M.vendor_id = V.id AND M.id = ?", $model_value);
  248. return '' unless $row;
  249. my $vendor = $row->{name} // '';
  250. my $model = $row->{model_name} // '';
  251. return "$vendor $model";
  252. }
  253. #---------------------------------------------------------------------------------------------------------------
  254. sub get_building {
  255. my ($dbh, $building_value) = @_;
  256. return undef if _is_empty($building_value);
  257. my $building_name = get_record_sql($dbh, "SELECT name FROM building WHERE id = ?", $building_value);
  258. return $building_name ? $building_name->{name} : undef;
  259. }
  260. #---------------------------------------------------------------------------------------------------------------
  261. sub get_filter {
  262. my ($dbh, $filter_value) = @_;
  263. return '' if _is_empty($filter_value);
  264. my $filter = get_record_sql($dbh, "SELECT name FROM filter_list WHERE id = ?", $filter_value);
  265. return $filter->{name} // '';
  266. }
  267. #---------------------------------------------------------------------------------------------------------------
  268. sub get_login {
  269. my ($dbh, $user_id) = @_;
  270. return '' if _is_empty($user_id);
  271. my $login = get_record_sql($dbh, "SELECT login FROM user_list WHERE id = ?", $user_id);
  272. return $login->{login} // '';
  273. }
  274. #---------------------------------------------------------------------------------------------------------------
  275. sub prepare_audit_message {
  276. my ($dbh, $table, $old_data, $new_data, $record_id, $operation) = @_;
  277. # === 1. Конфигурация отслеживаемых таблиц ===
  278. my %audit_config = (
  279. 'auth_rules' => {
  280. summary => ['rule'],
  281. fields => ['user_id', 'ou_id', 'rule_type', 'rule', 'description']
  282. },
  283. 'building' => {
  284. summary => ['name'],
  285. fields => ['name', 'description']
  286. },
  287. 'customers' => {
  288. summary => ['login'],
  289. fields => ['login', 'description', 'rights']
  290. },
  291. 'devices' => {
  292. summary => ['device_name'],
  293. fields => [
  294. 'device_type', 'device_model_id', 'vendor_id', 'device_name', 'building_id',
  295. 'ip', 'login', 'protocol', 'control_port', 'port_count', 'sn',
  296. 'description', 'snmp_version', 'snmp3_auth_proto', 'snmp3_priv_proto',
  297. 'snmp3_user_rw', 'snmp3_user_ro', 'community', 'rw_community',
  298. 'discovery', 'netflow_save', 'user_acl', 'dhcp', 'nagios',
  299. 'active', 'queue_enabled', 'connected_user_only', 'user_id'
  300. ]
  301. },
  302. 'device_filter_instances' => {
  303. summary => [],
  304. fields => ['instance_id', 'device_id']
  305. },
  306. 'device_l3_interfaces' => {
  307. summary => ['name'],
  308. fields => ['device_id', 'snmpin', 'interface_type', 'name']
  309. },
  310. 'device_models' => {
  311. summary => ['model_name'],
  312. fields => ['model_name', 'vendor_id', 'poe_in', 'poe_out', 'nagios_template']
  313. },
  314. 'device_ports' => {
  315. summary => ['port', 'ifname'],
  316. fields => [
  317. 'device_id', 'snmp_index', 'port', 'ifname', 'port_name', 'description',
  318. 'target_port_id', 'auth_id', 'last_mac_count', 'uplink', 'nagios',
  319. 'skip', 'vlan', 'tagged_vlan', 'untagged_vlan', 'forbidden_vlan'
  320. ]
  321. },
  322. 'filter_instances' => {
  323. summary => ['name'],
  324. fields => ['name', 'description']
  325. },
  326. 'filter_list' => {
  327. summary => ['name'],
  328. fields => ['name', 'description', 'proto', 'dst', 'dstport', 'srcport', 'filter_type']
  329. },
  330. 'gateway_subnets' => {
  331. summary => [],
  332. fields => ['device_id', 'subnet_id']
  333. },
  334. 'group_filters' => {
  335. summary => [],
  336. fields => ['group_id', 'filter_id', 'rule_order', 'action']
  337. },
  338. 'group_list' => {
  339. summary => ['group_name'],
  340. fields => ['instance_id', 'group_name', 'description']
  341. },
  342. 'ou' => {
  343. summary => ['ou_name'],
  344. fields => [
  345. 'ou_name', 'description', 'default_users', 'default_hotspot',
  346. 'nagios_dir', 'nagios_host_use', 'nagios_ping', 'nagios_default_service',
  347. 'enabled', 'filter_group_id', 'queue_id', 'dynamic', 'life_duration', 'parent_id'
  348. ]
  349. },
  350. 'queue_list' => {
  351. summary => ['queue_name'],
  352. fields => ['queue_name', 'download', 'upload']
  353. },
  354. 'subnets' => {
  355. summary => ['subnet'],
  356. fields => [
  357. 'subnet', 'vlan_tag', 'ip_int_start', 'ip_int_stop', 'dhcp_start', 'dhcp_stop',
  358. 'dhcp_lease_time', 'gateway', 'office', 'hotspot', 'vpn', 'free', 'dhcp',
  359. 'static', 'dhcp_update_hostname', 'discovery', 'notify', 'description'
  360. ]
  361. },
  362. 'user_auth' => {
  363. summary => ['ip', 'dns_name'],
  364. fields => [
  365. 'user_id', 'ou_id', 'ip', 'save_traf', 'enabled', 'dhcp', 'filter_group_id',
  366. 'dynamic', 'end_life', 'description', 'dns_name', 'dns_ptr_only', 'wikiname',
  367. 'dhcp_acl', 'queue_id', 'mac', 'dhcp_option_set', 'blocked', 'day_quota',
  368. 'month_quota', 'device_model_id', 'firmware', 'client_id', 'nagios',
  369. 'nagios_handler', 'link_check', 'deleted'
  370. ]
  371. },
  372. 'user_auth_alias' => {
  373. summary => ['alias'],
  374. fields => ['auth_id', 'alias', 'description']
  375. },
  376. 'user_list' => {
  377. summary => ['login'],
  378. fields => [
  379. 'login', 'description', 'enabled', 'blocked', 'deleted', 'ou_id',
  380. 'device_id', 'filter_group_id', 'queue_id', 'day_quota', 'month_quota', 'permanent'
  381. ]
  382. },
  383. 'vendors' => {
  384. summary => ['name'],
  385. fields => ['name']
  386. }
  387. );
  388. return undef unless exists $audit_config{$table};
  389. my $summary_fields = $audit_config{$table}{summary};
  390. my $monitored_fields = $audit_config{$table}{fields};
  391. # === 2. Нормализация данных и определение изменений ===
  392. my %changes;
  393. if ($operation eq 'insert') {
  394. for my $field (@$monitored_fields) {
  395. if (exists $new_data->{$field}) {
  396. $changes{$field} = { old => undef, new => $new_data->{$field} };
  397. }
  398. }
  399. }
  400. elsif ($operation eq 'delete') {
  401. for my $field (@$monitored_fields) {
  402. if (exists $old_data->{$field}) {
  403. $changes{$field} = { old => $old_data->{$field}, new => undef };
  404. }
  405. }
  406. }
  407. elsif ($operation eq 'update') {
  408. $old_data //= {};
  409. $new_data //= {};
  410. for my $field (@$monitored_fields) {
  411. next unless exists $new_data->{$field}; # частичное обновление
  412. my $old_val = exists $old_data->{$field} ? $old_data->{$field} : undef;
  413. my $new_val = $new_data->{$field};
  414. my $old_str = !defined($old_val) ? '' : "$old_val";
  415. my $new_str = !defined($new_val) ? '' : "$new_val";
  416. if ($old_str ne $new_str) {
  417. $changes{$field} = { old => $old_val, new => $new_val };
  418. }
  419. }
  420. }
  421. return undef unless %changes;
  422. # === 3. Краткое описание записи ===
  423. my @summary_parts;
  424. for my $field (@$summary_fields) {
  425. my $val = defined($new_data->{$field}) ? $new_data->{$field}
  426. : (defined($old_data->{$field}) ? $old_data->{$field} : undef);
  427. push @summary_parts, "$val" if defined $val && $val ne '';
  428. }
  429. my $summary_label = @summary_parts
  430. ? '"' . join(' | ', @summary_parts) . '"'
  431. : "ID=$record_id";
  432. # === 4. Расшифровка *_id полей ===
  433. my %resolved_changes;
  434. for my $field (keys %changes) {
  435. my $old_resolved = resolve_reference_value($dbh, $field, $changes{$field}{old});
  436. my $new_resolved = resolve_reference_value($dbh, $field, $changes{$field}{new});
  437. $resolved_changes{$field} = { old => $old_resolved, new => $new_resolved };
  438. }
  439. # === 5. Формирование сообщения ===
  440. my $op_label = 'Updated';
  441. if ($operation eq 'insert') {
  442. $op_label = 'Created';
  443. } elsif ($operation eq 'delete') {
  444. $op_label = 'Deleted';
  445. } else {
  446. $op_label = ucfirst($operation);
  447. }
  448. my $message = sprintf("[%s] %s (%s) in table `%s` by %s:\n\n",
  449. $op_label,
  450. ucfirst($table),
  451. $summary_label,
  452. $table,
  453. $MY_NAME
  454. );
  455. for my $field (sort keys %resolved_changes) {
  456. my $change = $resolved_changes{$field};
  457. if ($operation eq 'insert') {
  458. if (defined $change->{new}) {
  459. $message .= sprintf(" %s: %s\n", $field, $change->{new});
  460. }
  461. } elsif ($operation eq 'delete') {
  462. if (defined $change->{old}) {
  463. $message .= sprintf(" %s: %s\n", $field, $change->{old});
  464. }
  465. } else { # update
  466. my $old_display = !defined($change->{old}) ? '[NULL]' : $change->{old};
  467. my $new_display = !defined($change->{new}) ? '[NULL]' : $change->{new};
  468. $message .= sprintf(" %s: \"%s\" → \"%s\"\n", $field, $old_display, $new_display);
  469. }
  470. }
  471. chomp $message;
  472. return $message;
  473. }
  474. #---------------------------------------------------------------------------------------------------------------
  475. sub resolve_reference_value {
  476. my ($dbh, $field, $value) = @_;
  477. return undef if !defined $value || $value eq '';
  478. # Проверка на целое число (как в PHP)
  479. if ($value !~ /^[+-]?\d+$/) {
  480. return "$value";
  481. }
  482. my $as_int = int($value);
  483. if ("$as_int" ne "$value") {
  484. return "$value";
  485. }
  486. my $id = $as_int;
  487. if ($field eq 'device_id') {
  488. return get_device_name($dbh, $id) // "Device#$id";
  489. }
  490. elsif ($field eq 'building_id') {
  491. return get_building($dbh, $id) // "Building#$id";
  492. }
  493. elsif ($field eq 'user_id') {
  494. return get_login($dbh, $id) // "User#$id";
  495. }
  496. elsif ($field eq 'ou_id') {
  497. return get_ou($dbh, $id) // "OU#$id";
  498. }
  499. elsif ($field eq 'vendor_id') {
  500. return get_vendor_name($dbh, $id) // "Vendor#$id";
  501. }
  502. elsif ($field eq 'device_model_id') {
  503. return get_device_model_name($dbh, $id) // "Model#$id";
  504. }
  505. elsif ($field eq 'instance_id') {
  506. return get_filter_instance_description($dbh, $id) // "FilterInstance#$id";
  507. }
  508. elsif ($field eq 'subnet_id') {
  509. return get_subnet_description($dbh, $id) // "Subnet#$id";
  510. }
  511. elsif ($field eq 'group_id') {
  512. return get_group($dbh, $id) // "FilterGroup#$id";
  513. }
  514. elsif ($field eq 'filter_id') {
  515. return get_filter($dbh, $id) // "Filter#$id";
  516. }
  517. elsif ($field eq 'filter_group_id') {
  518. return get_group($dbh, $id) // "FilterGroup#$id";
  519. }
  520. elsif ($field eq 'queue_id') {
  521. return get_queue($dbh, $id) // "Queue#$id";
  522. }
  523. elsif ($field eq 'auth_id') {
  524. return 'None' if $id <= 0;
  525. my $sql = "
  526. SELECT
  527. COALESCE(ul.login, CONCAT('User#', ua.user_id)) AS login,
  528. ua.ip,
  529. ua.dns_name
  530. FROM user_auth ua
  531. LEFT JOIN user_list ul ON ul.id = ua.user_id
  532. WHERE ua.id = ?
  533. ";
  534. my $row = get_record_sql($dbh, $sql, $id);
  535. return "Auth#$id" unless $row;
  536. my @parts;
  537. push @parts, "login: $row->{login}" if $row->{login} && $row->{login} ne '';
  538. push @parts, "IP: $row->{ip}" if $row->{ip} && $row->{ip} ne '';
  539. push @parts, "DNS: $row->{dns_name}" if $row->{dns_name} && $row->{dns_name} ne '';
  540. return @parts ? join(', ', @parts) : "Auth#$id";
  541. }
  542. elsif ($field eq 'target_port_id') {
  543. return 'None' if $id == 0;
  544. my $sql = "
  545. SELECT CONCAT(d.device_name, '[', dp.port, ']')
  546. FROM device_ports dp
  547. JOIN devices d ON d.id = dp.device_id
  548. WHERE dp.id = ?
  549. ";
  550. my $name = $dbh->selectrow_array($sql, undef, $id);
  551. return $name // "Port#$id";
  552. }
  553. else {
  554. return "$value";
  555. }
  556. }
  557. #---------------------------------------------------------------------------------------------------------------
  558. sub build_db_schema {
  559. my ($dbh) = @_;
  560. # Определяем тип СУБД
  561. my $db_type = lc($dbh->{Driver}->{Name});
  562. die "Unsupported database driver: $db_type"
  563. unless $db_type eq 'mysql' || $db_type eq 'pg';
  564. # Получаем имя базы данных
  565. my $db_name;
  566. if ($db_type eq 'mysql') {
  567. ($db_name) = $dbh->selectrow_array("SELECT DATABASE()");
  568. } elsif ($db_type eq 'pg') {
  569. ($db_name) = $dbh->selectrow_array("SELECT current_database()");
  570. }
  571. my $db_info;
  572. $db_info->{db_type}=$db_type;
  573. $db_info->{db_name}=$db_name;
  574. return $db_info if (exists $db_schema{$db_type}{$db_name});
  575. # Получаем список таблиц
  576. my @tables;
  577. if ($db_type eq 'mysql') {
  578. my $sth = $dbh->prepare("SHOW TABLES");
  579. $sth->execute();
  580. @tables = map { $_->[0] } @{$sth->fetchall_arrayref()};
  581. } elsif ($db_type eq 'pg') {
  582. my $sql = q{
  583. SELECT tablename
  584. FROM pg_tables
  585. WHERE schemaname = 'public'
  586. };
  587. my $sth = $dbh->prepare($sql);
  588. $sth->execute();
  589. @tables = map { $_->[0] } @{$sth->fetchall_arrayref()};
  590. }
  591. # Собираем схему
  592. for my $table (@tables) {
  593. my $sth = $dbh->column_info(undef, undef, $table, '%');
  594. while (my $col = $sth->fetchrow_hashref) {
  595. my $col_name = lc($col->{COLUMN_NAME});
  596. $db_schema{$db_type}{$db_name}{$table}{$col_name} = {
  597. type => $col->{TYPE_NAME} // '',
  598. nullable => $col->{NULLABLE} // 1,
  599. default => $col->{COLUMN_DEF} // undef,
  600. };
  601. }
  602. }
  603. return $db_info;
  604. }
  605. #---------------------------------------------------------------------------------------------------------------
  606. sub normalize_value {
  607. my ($value, $col_info) = @_;
  608. # Если значение пустое — обрабатываем по правилам колонки
  609. if (!defined $value || $value eq '' || $value =~ /^(?:NULL|\\N)$/i) {
  610. return $col_info->{nullable} ? undef : _default_for_type($col_info);
  611. }
  612. my $type = lc($col_info->{type});
  613. # --- Числовые типы: приводим к числу, если выглядит как число ---
  614. if ($type =~ /^(?:tinyint|smallint|mediumint|int|integer|bigint|serial|bigserial)$/i) {
  615. # Просто конвертируем строку в число (Perl сам обрежет мусор)
  616. # Например: "123abc" → 123, "abc" → 0
  617. return 0 + $value;
  618. }
  619. # --- Булевы: приводим к 0/1 ---
  620. if ($type =~ /^(?:bool|boolean|bit)$/i) {
  621. return $value ? 1 : 0;
  622. }
  623. # --- Временные типы: оставляем как есть, но фильтруем "нулевые" даты MySQL ---
  624. if ($type =~ /^(?:timestamp|datetime|date|time)$/i) {
  625. # Это частая проблема при миграции — '0000-00-00' ломает PostgreSQL
  626. return undef if $value =~ /^0000-00-00/;
  627. return $value;
  628. }
  629. # --- Все остальные типы (строки, inet, json и т.д.) — передаём как есть ---
  630. return $value;
  631. }
  632. # Вспомогательная: безопасное значение по умолчанию
  633. sub _default_for_type {
  634. my ($col) = @_;
  635. # Используем DEFAULT, только если он простой литерал (не выражение)
  636. if (defined $col->{default}) {
  637. my $def = $col->{default};
  638. # Пропускаем выражения: nextval(), CURRENT_TIMESTAMP, NOW(), uuid() и т.п.
  639. if ($def !~ /(nextval|current_timestamp|now|uuid|auto_increment|::)/i) {
  640. # Убираем одинарные кавычки, если строка: 'value' → value
  641. if ($def =~ /^'(.*)'$/) {
  642. return $1;
  643. }
  644. # Если похоже на число — вернём как число
  645. if ($def =~ /^[+-]?\d+$/) {
  646. return 0 + $def;
  647. }
  648. return $def;
  649. }
  650. }
  651. # Фолбэк по типу
  652. my $type = lc($col->{type});
  653. if ($type =~ /^(?:tinyint|smallint|int|integer|bigint)/i) { return 0; }
  654. if ($type =~ /^(?:char|varchar|text)/i) { return ''; }
  655. if ($type =~ /^(?:timestamp|datetime)/i) { return GetNowTime(); }
  656. return undef;
  657. }
  658. #---------------------------------------------------------------------------------------------------------------
  659. sub get_table_columns {
  660. my ($db, $table) = @_;
  661. my %columns;
  662. my $sth = $db->column_info(undef, undef, $table, '%');
  663. while (my $row = $sth->fetchrow_hashref) {
  664. my $name = lc($row->{COLUMN_NAME}); # ← приводим к нижнему регистру сразу!
  665. $columns{$name} = {
  666. type => $row->{TYPE_NAME} // '',
  667. nullable => $row->{NULLABLE} // 1,
  668. default => $row->{COLUMN_DEF} // undef,
  669. };
  670. }
  671. return %columns; # возвращает список: key1, val1, key2, val2...
  672. }
  673. #---------------------------------------------------------------------------------------------------------------
  674. sub StrToIp {
  675. return unpack('N',pack('C4',split(/\./,$_[0])));
  676. }
  677. #---------------------------------------------------------------------------------------------------------------
  678. sub IpToStr {
  679. my $nIP = shift;
  680. my $res = (($nIP>>24) & 255) .".". (($nIP>>16) & 255) .".". (($nIP>>8) & 255) .".". ($nIP & 255);
  681. return $res;
  682. }
  683. #---------------------------------------------------------------------------------------------------------------
  684. sub batch_db_sql_cached {
  685. my ( $sql, $data) = @_;
  686. my $db=init_db();
  687. # Запоминаем исходное состояние AutoCommit
  688. my $original_autocommit = $db->{AutoCommit};
  689. eval {
  690. # Выключаем AutoCommit для транзакции
  691. $db->{AutoCommit} = 0;
  692. my $sth = $db->prepare_cached($sql) or die "Unable to prepare SQL: " . $db->errstr;
  693. for my $params (@$data) {
  694. next unless @$params;
  695. $sth->execute(@$params) or die "Unable to execute with params [" . join(',', @$params) . "]: " . $sth->errstr;
  696. }
  697. $db->commit();
  698. 1;
  699. } or do {
  700. my $err = $@ || 'Unknown error';
  701. eval { $db->rollback() };
  702. warn "batch_sql_cached failed: $err";
  703. # Восстанавливаем AutoCommit даже при ошибке
  704. $db->{AutoCommit} = $original_autocommit;
  705. return 0;
  706. };
  707. # Восстанавливаем исходный режим AutoCommit
  708. $db->{AutoCommit} = $original_autocommit;
  709. $db->disconnect();
  710. return 1;
  711. }
  712. #---------------------------------------------------------------------------------------------------------------
  713. sub batch_db_sql_csv {
  714. my ($table, $data) = @_;
  715. return 0 unless @$data;
  716. # Первая строка — заголовки (имена столбцов)
  717. my $header_row = shift @$data;
  718. unless ($header_row && ref($header_row) eq 'ARRAY' && @$header_row) {
  719. log_error("First row must be column names (array reference)");
  720. return 0;
  721. }
  722. my @columns = @$header_row;
  723. # Теперь @$data содержит только строки данных
  724. my $data_rows = $data;
  725. # Если нет данных — только заголовок
  726. unless (@$data_rows) {
  727. log_debug("No data rows to insert, only header");
  728. return 1;
  729. }
  730. my $db = init_db();
  731. my $original_autocommit = $db->{AutoCommit};
  732. $db->{AutoCommit} = 0;
  733. if (get_db_type($db) eq 'mysql') {
  734. # --- MySQL: попытка LOAD DATA, fallback на INSERT ---
  735. log_debug("Using LOAD DATA LOCAL INFILE for MySQL");
  736. my $fh = File::Temp->new(UNLINK => 1);
  737. my $fname = $fh->filename;
  738. binmode($fh, ':utf8');
  739. my $csv = Text::CSV->new({
  740. binary => 1,
  741. quote_char => '"',
  742. escape_char => '"',
  743. sep_char => ',',
  744. eol => "\r\n",
  745. always_quote => 1,
  746. }) or do {
  747. my $err = "Cannot create Text::CSV: " . Text::CSV->error_diag();
  748. log_error($err);
  749. $db->{AutoCommit} = $original_autocommit;
  750. $db->disconnect();
  751. return 0;
  752. };
  753. # Пишем заголовок
  754. $csv->print($fh, \@columns);
  755. # Пишем данные
  756. for my $row (@$data_rows) {
  757. next unless $row && ref($row) eq 'ARRAY' && @$row == @columns;
  758. my @vals = map { defined($_) ? $_ : 'NULL' } @$row;
  759. $csv->print($fh, \@vals);
  760. }
  761. close $fh;
  762. my $col_list = join(', ', map { $db->quote_identifier($_) } @columns);
  763. my $query = qq{LOAD DATA LOCAL INFILE '$fname' INTO TABLE $table FIELDS TERMINATED BY ',' OPTIONALLY ENCLOSED BY '"' LINES TERMINATED BY '\r\n' IGNORE 1 LINES ($col_list)};
  764. my $load_ok = eval { $db->do($query); 1 };
  765. if (!$load_ok) {
  766. my $err = "MySQL LOAD DATA failed: $@";
  767. log_error($err);
  768. log_debug("Falling back to bulk INSERT for MySQL");
  769. goto FALLBACK_INSERT_MYSQL;
  770. }
  771. $db->commit();
  772. $db->{AutoCommit} = $original_autocommit;
  773. $db->disconnect();
  774. return 1;
  775. # ========================
  776. # Fallback для MySQL
  777. # ========================
  778. FALLBACK_INSERT_MYSQL:
  779. {
  780. my $quoted_cols = join(', ', map { $db->quote_identifier($_) } @columns);
  781. my $placeholders = join(',', ('?') x @columns);
  782. my $sql = "INSERT INTO $table ($quoted_cols) VALUES ($placeholders)";
  783. my $sth = $db->prepare($sql);
  784. my $success = eval {
  785. for my $row (@$data_rows) {
  786. next unless $row && ref($row) eq 'ARRAY' && @$row == @columns;
  787. my @vals = map { defined($_) ? $_ : undef } @$row;
  788. $sth->execute(@vals);
  789. }
  790. 1;
  791. };
  792. if ($success) {
  793. $db->commit();
  794. } else {
  795. eval { $db->rollback(); };
  796. my $err = "MySQL bulk INSERT failed: $@";
  797. log_error($err);
  798. $db->{AutoCommit} = $original_autocommit;
  799. $db->disconnect();
  800. return 0;
  801. }
  802. $db->{AutoCommit} = $original_autocommit;
  803. }
  804. } elsif (get_db_type($db) eq 'pg') {
  805. if (!$db->can('pg_putcopydata') || !$db->can('pg_putcopyend')) {
  806. log_debug("pg_putcopydata/pg_putcopyend not available — falling back to bulk INSERT");
  807. goto FALLBACK_INSERT_PG;
  808. }
  809. my $col_list = join(', ', map { $db->quote_identifier($_) } @columns);
  810. my $copy_sql = "COPY $table ($col_list) FROM STDIN WITH (FORMAT CSV, HEADER true)";
  811. my $use_header_as_data;
  812. my $start_ok = eval { $db->do($copy_sql); 1 };
  813. if (!$start_ok) {
  814. log_debug("COPY with HEADER failed: $@ — trying without HEADER");
  815. $copy_sql = "COPY $table ($col_list) FROM STDIN WITH (FORMAT CSV)";
  816. $start_ok = eval { $db->do($copy_sql); 1 };
  817. if (!$start_ok) {
  818. log_debug("COPY failed entirely: $@ — falling back to bulk INSERT");
  819. goto FALLBACK_INSERT_PG;
  820. }
  821. $use_header_as_data = 1;
  822. } else {
  823. $use_header_as_data = 0;
  824. }
  825. log_debug("Using CSV COPY for PostgreSQL");
  826. my $csv = Text::CSV->new({
  827. binary => 1,
  828. quote_char => '"',
  829. escape_char => '"',
  830. sep_char => ',',
  831. eol => "\n",
  832. always_quote => 1,
  833. }) or do {
  834. my $err = "Cannot create Text::CSV: " . Text::CSV->error_diag();
  835. log_error($err);
  836. eval { $db->pg_putcopyend(); };
  837. $db->{AutoCommit} = $original_autocommit;
  838. $db->disconnect();
  839. return 0;
  840. };
  841. my $success = eval {
  842. if ($use_header_as_data) {
  843. $csv->combine(@columns);
  844. $db->pg_putcopydata($csv->string);
  845. }
  846. for my $row (@$data_rows) {
  847. next unless $row && ref($row) eq 'ARRAY' && @$row == @columns;
  848. my @vals = map { defined($_) ? $_ : undef } @$row;
  849. $csv->combine(@vals);
  850. $db->pg_putcopydata($csv->string);
  851. }
  852. $db->pg_putcopyend();
  853. 1;
  854. };
  855. if ($success) {
  856. $db->commit();
  857. } else {
  858. eval { $db->rollback(); };
  859. my $err = "CSV COPY failed: $@";
  860. log_error($err);
  861. eval { $db->pg_putcopyend(); };
  862. goto FALLBACK_INSERT_PG;
  863. }
  864. # ========================
  865. # Fallback для PostgreSQL
  866. # ========================
  867. FALLBACK_INSERT_PG:
  868. {
  869. my $quoted_cols = join(', ', map { $db->quote_identifier($_) } @columns);
  870. my $placeholders = join(',', ('?') x @columns);
  871. my $sql = "INSERT INTO $table ($quoted_cols) VALUES ($placeholders)";
  872. my $sth = $db->prepare($sql);
  873. my $success = eval {
  874. for my $row (@$data_rows) {
  875. next unless $row && ref($row) eq 'ARRAY' && @$row == @columns;
  876. my @vals = map { defined($_) ? $_ : undef } @$row;
  877. $sth->execute(@vals);
  878. }
  879. 1;
  880. };
  881. if ($success) {
  882. $db->commit();
  883. } else {
  884. eval { $db->rollback(); };
  885. my $err = "PostgreSQL bulk INSERT failed: $@";
  886. log_error($err);
  887. $db->{AutoCommit} = $original_autocommit;
  888. $db->disconnect();
  889. return 0;
  890. }
  891. }
  892. } else {
  893. my $err = "Unsupported DBTYPE: ". get_db_type($db);
  894. log_error($err);
  895. $db->{AutoCommit} = $original_autocommit;
  896. $db->disconnect();
  897. return 0;
  898. }
  899. $db->{AutoCommit} = $original_autocommit;
  900. $db->disconnect();
  901. return 1;
  902. }
  903. #---------------------------------------------------------------------------------------------------------------
  904. sub reconnect_db {
  905. my $db_ref = shift;
  906. # Если соединение активно — ничего не делаем
  907. if ($$db_ref && $$db_ref->ping) {
  908. return 1;
  909. }
  910. # Сохраняем AutoCommit из текущего соединения (если есть)
  911. my $original_autocommit = 1;
  912. if ($$db_ref) {
  913. $original_autocommit = $$db_ref->{AutoCommit};
  914. eval { $$db_ref->disconnect; };
  915. $$db_ref = undef;
  916. }
  917. # Пытаемся переподключиться
  918. eval {
  919. $$db_ref = init_db($original_autocommit);
  920. unless ($$db_ref && $$db_ref->ping) {
  921. log_die "Failed to establish database connection";
  922. }
  923. 1;
  924. } or do {
  925. my $error = $@ || 'Unknown error';
  926. $$db_ref = undef;
  927. log_die "Database reconnection failed: $error";
  928. return 0;
  929. };
  930. return 1;
  931. }
  932. #---------------------------------------------------------------------------------------------------------------
  933. sub write_db_log {
  934. my $db=shift;
  935. my $msg=shift;
  936. my $level = shift || $L_VERBOSE;
  937. my $auth_id = shift || 0;
  938. return if (!$db);
  939. return if (!$msg);
  940. $msg=~s/[\'\"]//g;
  941. my $db_log = 0;
  942. # Переподключение
  943. unless (reconnect_db(\$db)) {
  944. log_error("No database connection available");
  945. $db_log = 0;
  946. }
  947. if ($level eq $L_ERROR and $log_level >= $L_ERROR) { log_error($msg); $db_log = 1; }
  948. if ($level eq $L_WARNING and $log_level >= $L_WARNING) { log_warning($msg); $db_log = 1; }
  949. if ($level eq $L_INFO and $log_level >= $L_INFO) { log_info($msg); $db_log = 1; }
  950. if ($level eq $L_VERBOSE and $log_level >= $L_VERBOSE) { log_verbose($msg); $db_log = 1; }
  951. if ($level eq $L_DEBUG and $log_level >= $L_DEBUG) { log_debug($msg); return; }
  952. if ($db_log) {
  953. #my $new_id = do_sql($dbh, 'INSERT INTO user_list (login) VALUES (?)', 'Ivan');
  954. do_sql($db,'INSERT INTO worklog(customer,message,level,auth_id,ip) VALUES( ?, ?, ?, ?, ?)',$MY_NAME,$msg,$level,$auth_id,$config_ref{self_ip});
  955. }
  956. }
  957. #---------------------------------------------------------------------------------------------------------------
  958. sub db_log_debug {
  959. my $db = shift;
  960. my $msg = shift;
  961. my $id = shift;
  962. if ($debug) { log_debug($msg); }
  963. }
  964. #---------------------------------------------------------------------------------------------------------------
  965. sub db_log_error {
  966. my $db = shift;
  967. my $msg = shift;
  968. if ($log_level >= $L_ERROR) {
  969. sendEmail("ERROR! ".get_first_line($msg),$msg,1);
  970. write_db_log($db,$msg,$L_ERROR);
  971. }
  972. }
  973. #---------------------------------------------------------------------------------------------------------------
  974. sub db_log_info {
  975. my $db = shift;
  976. my $msg = shift;
  977. my $id = shift;
  978. if ($log_level >= $L_INFO) { write_db_log($db,$msg,$L_INFO,$id); }
  979. }
  980. #---------------------------------------------------------------------------------------------------------------
  981. sub db_log_verbose {
  982. my $db = shift;
  983. my $msg = shift;
  984. my $id = shift;
  985. if ($log_level >= $L_VERBOSE) { write_db_log($db,$msg,$L_VERBOSE,$id); }
  986. }
  987. #---------------------------------------------------------------------------------------------------------------
  988. sub db_log_warning {
  989. my $db = shift;
  990. my $msg = shift;
  991. my $id = shift;
  992. if ($log_level >= $L_WARNING) { write_db_log($db,$msg,$L_WARNING,$id); }
  993. }
  994. #---------------------------------------------------------------------------------------------------------------
  995. sub init_db {
  996. my $autocommit = shift;
  997. if (!defined $autocommit) { $autocommit = 1; }
  998. my $db;
  999. if ($config_ref{DBTYPE} eq 'mysql') {
  1000. $db = DBI->connect(
  1001. "dbi:mysql:database=$DBNAME;host=$DBHOST;port=3306;mysql_local_infile=1", $DBUSER, $DBPASS,
  1002. { RaiseError => 0, AutoCommit => $autocommit, mysql_enable_utf8 => 1 }
  1003. );
  1004. if (!defined $db) {
  1005. log_die "Cannot connect to MySQL server: $DBI::errstr\n";
  1006. }
  1007. $db->do('SET NAMES utf8mb4');
  1008. } else {
  1009. $db = DBI->connect(
  1010. "dbi:Pg:dbname=$DBNAME;host=$DBHOST;port=5432", $DBUSER, $DBPASS,
  1011. { RaiseError => 0, AutoCommit => $autocommit, pg_enable_utf8 => 1, pg_server_prepare => 0 }
  1012. );
  1013. if (!defined $db) {
  1014. log_die "Cannot connect to PostgreSQL server: $DBI::errstr\n";
  1015. }
  1016. }
  1017. return $db;
  1018. }
  1019. #---------------------------------------------------------------------------------------------------------------
  1020. # Обновленная функция get_option с параметризованными запросами
  1021. sub get_option {
  1022. my $db = shift;
  1023. my $option_id = shift;
  1024. return if (!$option_id);
  1025. return if (!$db);
  1026. my $sql = q{
  1027. SELECT
  1028. COALESCE(c.value, co.default_value) AS value,
  1029. co.option_type
  1030. FROM config_options co
  1031. LEFT JOIN config c ON c.option_id = co.id
  1032. WHERE co.id = ?
  1033. };
  1034. my $record = get_record_sql($db, $sql, $option_id);
  1035. unless ($record) {
  1036. log_error("Option ID $option_id not found in config_options table");
  1037. return;
  1038. }
  1039. return $record->{value};
  1040. }
  1041. #---------------------------------------------------------------------------------------------------------------
  1042. sub get_records_sql {
  1043. my ($db, $sql, @params) = @_;
  1044. my @result;
  1045. return @result if (!$db);
  1046. return @result if (!$sql);
  1047. unless (reconnect_db(\$db)) {
  1048. log_error("No database connection available");
  1049. return @result;
  1050. }
  1051. my $result_ref = _execute_param($db, $sql, \@params, { mode => 'array' });
  1052. if (ref($result_ref) eq 'ARRAY') {
  1053. @result = @$result_ref;
  1054. }
  1055. return @result;
  1056. }
  1057. #---------------------------------------------------------------------------------------------------------------
  1058. sub get_record_sql {
  1059. my ($db, $sql, @params) = @_;
  1060. my @result;
  1061. return @result if (!$db);
  1062. return @result if (!$sql);
  1063. # Добавляем LIMIT только если его еще нет в запросе
  1064. if ($sql !~ /\bLIMIT\s+\d+/i && $sql !~ /\bFETCH\s+FIRST\s+\d+/i) {
  1065. $sql .= ' LIMIT 1';
  1066. }
  1067. # Переподключение
  1068. unless (reconnect_db(\$db)) {
  1069. log_error("No database connection available");
  1070. return;
  1071. }
  1072. return _execute_param($db, $sql, \@params, { mode => 'single' });
  1073. }
  1074. #---------------------------------------------------------------------------------------------------------------
  1075. sub get_count_records {
  1076. my ($db, $table, $filter, @params) = @_;
  1077. my $result = 0;
  1078. return $result if (!$db);
  1079. return $result if (!$table);
  1080. my $sSQL='SELECT COUNT(*) as rec_cnt FROM '.$table;
  1081. if ($filter) { $sSQL=$sSQL." WHERE ".$filter; }
  1082. my $record = get_record_sql($db,$sSQL, @params);
  1083. if ($record->{rec_cnt}) { $result = $record->{rec_cnt}; }
  1084. return $result;
  1085. }
  1086. #---------------------------------------------------------------------------------------------------------------
  1087. sub get_id_record {
  1088. my ($db, $table, $filter, @params) = @_;
  1089. my $result = 0;
  1090. return $result if (!$db);
  1091. return $result if (!$table);
  1092. my $record = get_record_sql($db,"SELECT id FROM $table WHERE $filter", @params);
  1093. if ($record->{id}) { $result = $record->{id}; }
  1094. return $result;
  1095. }
  1096. #---------------------------------------------------------------------------------------------------------------
  1097. sub get_diff_rec {
  1098. my ($db, $table, $record, $filter_sql, @filter_params) = @_;
  1099. return unless $db && $table && $filter_sql;
  1100. unless (reconnect_db(\$db)) {
  1101. log_error("No database connection available");
  1102. return;
  1103. }
  1104. my $old_record = get_record_sql($db,"SELECT * FROM $table WHERE $filter_sql",@filter_params);
  1105. return unless $old_record;
  1106. my $result;
  1107. foreach my $field (keys %$record) {
  1108. if (!$record->{$field}) { $record->{$field}=''; }
  1109. if (!$old_record->{$field}) { $old_record->{$field}=''; }
  1110. if ($record->{$field}!~/^$old_record->{$field}$/) { $result->{$field} = "$record->{$field} [ old: " . $old_record->{$field} . "]"; }
  1111. }
  1112. return hash_to_text($result);
  1113. }
  1114. #---------------------------------------------------------------------------------------------------------------
  1115. sub get_db_type {
  1116. my $db = shift;
  1117. return lc($db->{Driver}->{Name});
  1118. #'mysql', 'pg'
  1119. }
  1120. #---------------------------------------------------------------------------------------------------------------
  1121. # Внутренняя функция для выполнения параметризованных запросов
  1122. sub _execute_param {
  1123. my ($db, $sql, $params, $options) = @_;
  1124. return unless $db && $sql;
  1125. my $mode = $options->{mode} || 'execute';
  1126. # --- Автоматическая поддержка RETURNING для PostgreSQL ---
  1127. my $was_modified = 0;
  1128. my $original_sql = $sql;
  1129. if ($mode eq 'id' && $sql =~ /^\s*INSERT\b/i) {
  1130. if (get_db_type($db) eq 'pg') {
  1131. unless ($sql =~ /\bRETURNING\b/i) {
  1132. $sql .= ' RETURNING id';
  1133. $was_modified = 1;
  1134. $mode = 'scalar';
  1135. }
  1136. }
  1137. }
  1138. # Логируем не-SELECT
  1139. unless ($original_sql =~ /^\s*SELECT/i) {
  1140. log_debug($original_sql . ($params ? ' | params: [' . join(', ', map { defined $_ ? $_ : 'undef' } @$params) . ']' : ''));
  1141. }
  1142. # === не переподключаемся внутри транзакции ===
  1143. my $autocommit_enabled = $db->{AutoCommit};
  1144. unless ($autocommit_enabled) {
  1145. # В транзакции: нельзя переподключаться!
  1146. unless ($db->ping) {
  1147. log_error("Database connection lost during transaction");
  1148. return wantarray ? () : undef;
  1149. }
  1150. } else {
  1151. # Вне транзакции: можно переподключиться
  1152. unless (reconnect_db(\$db)) {
  1153. log_error("No database connection available");
  1154. return wantarray ? () : undef;
  1155. }
  1156. }
  1157. my $sth = $db->prepare($sql) or do {
  1158. log_error("Unable to prepare SQL [$original_sql]: " . $db->errstr);
  1159. return wantarray ? () : undef;
  1160. };
  1161. my $rv = $params ? $sth->execute(@$params) : $sth->execute();
  1162. unless ($rv) {
  1163. log_error("Unable to execute SQL [$original_sql]" . ($params ? " with params: [" . join(', ', map { defined $_ ? $_ : 'undef' } @$params) . "]" : "") . ": " . $sth->errstr);
  1164. $sth->finish();
  1165. return wantarray ? () : undef;
  1166. }
  1167. # --- Обработка результатов ---
  1168. if ($was_modified && $mode eq 'scalar') {
  1169. my $row = $sth->fetchrow_arrayref();
  1170. $sth->finish();
  1171. my $id = $row ? $row->[0] : 0;
  1172. return $id;
  1173. }
  1174. elsif ($mode eq 'single') {
  1175. my $row = $sth->fetchrow_hashref();
  1176. $sth->finish();
  1177. return $row;
  1178. }
  1179. elsif ($mode eq 'array') {
  1180. my @rows;
  1181. while (my $row = $sth->fetchrow_hashref()) {
  1182. push @rows, $row;
  1183. }
  1184. $sth->finish();
  1185. return \@rows;
  1186. }
  1187. elsif ($mode eq 'arrayref') {
  1188. my $rows = $sth->fetchall_arrayref({});
  1189. $sth->finish();
  1190. return $rows;
  1191. }
  1192. elsif ($mode eq 'scalar') {
  1193. my $row = $sth->fetchrow_arrayref();
  1194. $sth->finish();
  1195. return $row ? $row->[0] : undef;
  1196. }
  1197. elsif ($mode eq 'id') {
  1198. if ($original_sql =~ /^\s*INSERT/i) {
  1199. my $id;
  1200. if (get_db_type($db) eq 'mysql') {
  1201. $id = $sth->{mysql_insertid};
  1202. } else {
  1203. ($id) = $db->selectrow_array("SELECT lastval()");
  1204. }
  1205. $sth->finish();
  1206. return $id || 0;
  1207. }
  1208. $sth->finish();
  1209. return 1;
  1210. }
  1211. else {
  1212. $sth->finish();
  1213. return 1;
  1214. }
  1215. }
  1216. #---------------------------------------------------------------------------------------------------------------
  1217. sub do_sql {
  1218. my ($db, $sql, @bind_values) = @_;
  1219. return unless $db && $sql; # Возвращаем undef при ошибке входных данных
  1220. my $mode;
  1221. if ($sql =~ /^\s*insert\b/i) {
  1222. $mode = 'id';
  1223. } elsif ($sql =~ /^\s*select\b/i) {
  1224. $mode = 'arrayref';
  1225. } else {
  1226. $mode = 'execute';
  1227. }
  1228. my $result = _execute_param($db, $sql, \@bind_values, { mode => $mode });
  1229. # Если _execute_param вернул undef/ложь — это ошибка
  1230. unless (defined $result) {
  1231. return; # Возвращаем undef (лучше, чем 0)
  1232. }
  1233. if ($mode eq 'id') {
  1234. return $result; # число (возможно 0 — допустимо для ID)
  1235. } elsif ($mode eq 'arrayref') {
  1236. # _execute_param всегда возвращает ARRAYREF при успехе
  1237. return $result;
  1238. } else {
  1239. # Для UPDATE/DELETE: возвращаем количество затронутых строк или 1
  1240. return $result ? $result : 1;
  1241. }
  1242. }
  1243. #---------------------------------------------------------------------------------------------------------------
  1244. sub insert_record {
  1245. my ($db, $table, $record) = @_;
  1246. return unless $db && $table && ref($record) eq 'HASH' && %$record;
  1247. # Переподключаемся ТОЛЬКО если не в транзакции
  1248. if ($db->{AutoCommit}) {
  1249. unless (reconnect_db(\$db)) {
  1250. log_error("No database connection available");
  1251. return;
  1252. }
  1253. } else {
  1254. unless ($db->ping) {
  1255. log_error("Database connection lost during transaction");
  1256. return;
  1257. }
  1258. }
  1259. my $db_info= build_db_schema($db);
  1260. my $dns_changed = 0;
  1261. my $rec_id = 0;
  1262. if ($table eq "user_auth") {
  1263. foreach my $field (keys %$record) {
  1264. if (exists $acl_fields{$field}) { $record->{changed}="1"; }
  1265. if (exists $dhcp_fields{$field}) { $record->{dhcp_changed}="1"; }
  1266. if (exists $dns_fields{$field}) { $dns_changed=1; }
  1267. }
  1268. }
  1269. my @insert_params;
  1270. my $fields = '';
  1271. my $values = '';
  1272. foreach my $field (keys %$record) {
  1273. my $val = normalize_value($record->{$field}, $db_schema{$db_info->{db_type}}{$db_info->{db_name}}{$table}{$field});
  1274. # Экранируем имя поля в зависимости от СУБД
  1275. my $quoted_field = get_db_type($db) eq 'mysql'
  1276. ? '`' . $field . '`'
  1277. : '"' . $field . '"';
  1278. $fields .= "$quoted_field, ";
  1279. $values .= "?, ";
  1280. push @insert_params, $val;
  1281. }
  1282. $fields =~ s/,\s*$//;
  1283. $values =~ s/,\s*$//;
  1284. my $sSQL = "INSERT INTO $table($fields) VALUES($values)";
  1285. my $result = do_sql($db,$sSQL,@insert_params);
  1286. if ($result) {
  1287. $rec_id = $result;
  1288. my $changed_msg = prepare_audit_message($db, $table, undef, $record, $rec_id, 'insert');
  1289. if ($table !~ /session/i) {
  1290. if (defined $changed_msg && $changed_msg ne '') {
  1291. if ($table !~ /user/i) {
  1292. db_log_info($db, $changed_msg);
  1293. } else {
  1294. if ($table eq 'user_auth' && defined $record->{ip} && $record->{ip} ne '') {
  1295. if (is_hotspot($db, $record->{ip})) {
  1296. db_log_info($db, $changed_msg, $rec_id);
  1297. } else {
  1298. db_log_warning($db, $changed_msg, $rec_id);
  1299. my $send_alert_create = isNotifyCreate(get_notify_subnet($db, $record->{ip}));
  1300. sendEmail("WARN! " . get_first_line($changed_msg), $changed_msg, 1) if $send_alert_create;
  1301. }
  1302. } else {
  1303. db_log_warning($db, $changed_msg);
  1304. }
  1305. }
  1306. }
  1307. if ($table eq 'user_auth_alias' and $dns_changed) {
  1308. if ($record->{'alias'} and $record->{'alias'}!~/\.$/) {
  1309. my $add_dns;
  1310. $add_dns->{'name_type'}='CNAME';
  1311. $add_dns->{'name'}=$record->{'alias'};
  1312. $add_dns->{'value'}=get_dns_name($db,$record->{'auth_id'});
  1313. $add_dns->{'operation_type'}='add';
  1314. $add_dns->{'auth_id'}=$record->{'auth_id'};
  1315. insert_record($db,'dns_queue',$add_dns);
  1316. }
  1317. }
  1318. if ($table eq 'user_auth' and $dns_changed) {
  1319. if ($record->{'dns_name'} and $record->{'ip'} and !$record->{'dns_ptr_only'} and $record->{'dns_name'}!~/\.$/) {
  1320. my $add_dns;
  1321. $add_dns->{'name_type'}='A';
  1322. $add_dns->{'name'}=$record->{'dns_name'};
  1323. $add_dns->{'value'}=$record->{'ip'};
  1324. $add_dns->{'operation_type'}='add';
  1325. $add_dns->{'auth_id'}=$result;
  1326. insert_record($db,'dns_queue',$add_dns);
  1327. }
  1328. if ($record->{'dns_name'} and $record->{'ip'} and $record->{'dns_ptr_only'} and $record->{'dns_name'}!~/\.$/) {
  1329. my $add_dns;
  1330. $add_dns->{'name_type'}='PTR';
  1331. $add_dns->{'name'}=$record->{'dns_name'};
  1332. $add_dns->{'value'}=$record->{'ip'};
  1333. $add_dns->{'operation_type'}='add';
  1334. $add_dns->{'auth_id'}=$result;
  1335. insert_record($db,'dns_queue',$add_dns);
  1336. }
  1337. }
  1338. }
  1339. }
  1340. return $result;
  1341. }
  1342. #---------------------------------------------------------------------------------------------------------------
  1343. sub update_records {
  1344. my ($db, $table, $filter, $newvalue, @filter_params) = @_;
  1345. # Получаем ID всех записей, подходящих под фильтр
  1346. my $uSQL = "SELECT id FROM $table WHERE $filter";
  1347. my @ids = get_records_sql($db, $uSQL, @filter_params);
  1348. # Если ничего не найдено — считаем успехом
  1349. return 1 unless @ids;
  1350. # Обновляем каждую запись по отдельности
  1351. for my $record (@ids) {
  1352. next unless ref $record eq 'HASH' && defined $record->{id};
  1353. update_record($db, $table, $newvalue, "id = ?", $record->{id});
  1354. }
  1355. return 1;
  1356. }
  1357. #---------------------------------------------------------------------------------------------------------------
  1358. sub update_record {
  1359. my ($db, $table, $record, $filter_sql, @filter_params) = @_;
  1360. return unless $db && $table && $filter_sql;
  1361. # Переподключаемся ТОЛЬКО если не в транзакции
  1362. if ($db->{AutoCommit}) {
  1363. unless (reconnect_db(\$db)) {
  1364. log_error("No database connection available");
  1365. return;
  1366. }
  1367. } else {
  1368. unless ($db->ping) {
  1369. log_error("Database connection lost during transaction");
  1370. return;
  1371. }
  1372. }
  1373. my $db_info = build_db_schema($db);
  1374. my $select_sql = "SELECT * FROM $table WHERE $filter_sql";
  1375. my $old_record = get_record_sql($db, $select_sql, @filter_params);
  1376. return unless $old_record;
  1377. my @update_params;
  1378. my $set_clause = '';
  1379. my $dns_changed = 0;
  1380. my $rec_id = $old_record->{id} || 0;
  1381. if ($table eq "user_auth") {
  1382. $rec_id = $old_record->{'id'} if ($old_record->{'id'});
  1383. my $cur_ou_id = $old_record->{'ou_id'} if ($old_record->{'ou_id'});
  1384. if (exists $record->{ou_id}) { $cur_ou_id = $record->{'ou_id'}; }
  1385. #disable update field 'created_by'
  1386. #if ($old_record->{'created_by'} and exists ($record->{'created_by'})) { delete $record->{'created_by'}; }
  1387. foreach my $field (keys %$record) {
  1388. if (exists $acl_fields{$field}) { $record->{changed}="1"; }
  1389. if (exists $dhcp_fields{$field} and !is_system_ou($db,$cur_ou_id)) { $record->{dhcp_changed}="1"; }
  1390. if (exists $dns_fields{$field}) { $dns_changed=1; }
  1391. }
  1392. }
  1393. for my $field (keys %$record) {
  1394. next if (!$field);
  1395. next if (!exists $record->{$field});
  1396. next if (!defined $record->{$field});
  1397. my $old_val = defined $old_record->{$field} ? $old_record->{$field} : '';
  1398. my $new_val = normalize_value( $record->{$field}, $db_schema{$db_info->{db_type}}{$db_info->{db_name}}{$table}{$field});
  1399. $new_val = defined $new_val ? $new_val : '';
  1400. if ($new_val ne $old_val) {
  1401. $set_clause .= " $field = ?, ";
  1402. push @update_params, $new_val;
  1403. }
  1404. }
  1405. return unless $set_clause;
  1406. # Добавляем служебные поля
  1407. if ($table eq 'user_auth') {
  1408. if ($record->{changed} || $record->{dhcp_changed} || $dns_changed ) {
  1409. $set_clause .= "changed_time = ?, ";
  1410. push @update_params, GetNowTime();
  1411. }
  1412. }
  1413. $set_clause =~ s/,\s*$//;
  1414. if ($table eq 'user_auth') {
  1415. if ($dns_changed) {
  1416. my $del_dns;
  1417. if ($old_record->{'dns_name'} and $old_record->{'ip'} and !$old_record->{'dns_ptr_only'} and $old_record->{'dns_name'}!~/\.$/) {
  1418. $del_dns->{'name_type'}='A';
  1419. $del_dns->{'name'}=$old_record->{'dns_name'};
  1420. $del_dns->{'value'}=$old_record->{'ip'};
  1421. $del_dns->{'operation_type'}='del';
  1422. if ($rec_id) { $del_dns->{'auth_id'}=$rec_id; }
  1423. insert_record($db,'dns_queue',$del_dns);
  1424. }
  1425. if ($old_record->{'dns_name'} and $old_record->{'ip'} and $old_record->{'dns_ptr_only'} and $old_record->{'dns_name'}!~/\.$/) {
  1426. $del_dns->{'name_type'}='PTR';
  1427. $del_dns->{'name'}=$old_record->{'dns_name'};
  1428. $del_dns->{'value'}=$old_record->{'ip'};
  1429. $del_dns->{'operation_type'}='del';
  1430. if ($rec_id) { $del_dns->{'auth_id'}=$rec_id; }
  1431. insert_record($db,'dns_queue',$del_dns);
  1432. }
  1433. my $new_dns;
  1434. my $dns_rec_ip = $old_record->{ip};
  1435. my $dns_rec_name = $old_record->{dns_name};
  1436. if ($record->{'dns_name'}) { $dns_rec_name = $record->{'dns_name'}; }
  1437. if ($record->{'ip'}) { $dns_rec_ip = $record->{'ip'}; }
  1438. if ($dns_rec_name and $dns_rec_ip and !$record->{'dns_ptr_only'} and $record->{'dns_name'}!~/\.$/) {
  1439. $new_dns->{'name_type'}='A';
  1440. $new_dns->{'name'}=$dns_rec_name;
  1441. $new_dns->{'value'}=$dns_rec_ip;
  1442. $new_dns->{'operation_type'}='add';
  1443. if ($rec_id) { $new_dns->{'auth_id'}=$rec_id; }
  1444. insert_record($db,'dns_queue',$new_dns);
  1445. }
  1446. if ($dns_rec_name and $dns_rec_ip and $record->{'dns_ptr_only'} and $record->{'dns_name'}!~/\.$/) {
  1447. $new_dns->{'name_type'}='PTR';
  1448. $new_dns->{'name'}=$dns_rec_name;
  1449. $new_dns->{'value'}=$dns_rec_ip;
  1450. $new_dns->{'operation_type'}='add';
  1451. if ($rec_id) { $new_dns->{'auth_id'}=$rec_id; }
  1452. insert_record($db,'dns_queue',$new_dns);
  1453. }
  1454. }
  1455. }
  1456. if ($table eq 'user_auth_alias') {
  1457. if ($dns_changed) {
  1458. my $del_dns;
  1459. if ($old_record->{'alias'} and $old_record->{'alias'}!~/\.$/) {
  1460. $del_dns->{'name_type'}='CNAME';
  1461. $del_dns->{'name'}=$old_record->{'alias'};
  1462. $del_dns->{'operation_type'}='del';
  1463. $del_dns->{'value'}=get_dns_name($db,$old_record->{auth_id});
  1464. $del_dns->{'auth_id'}=$old_record->{auth_id};
  1465. insert_record($db,'dns_queue',$del_dns);
  1466. }
  1467. my $new_dns;
  1468. my $dns_rec_name = $old_record->{alias};
  1469. if ($record->{'alias'}) { $dns_rec_name = $record->{'alias'}; }
  1470. if ($dns_rec_name and $record->{'alias'}!~/\.$/) {
  1471. $new_dns->{'name_type'}='CNAME';
  1472. $new_dns->{'name'}=$dns_rec_name;
  1473. $new_dns->{'operation_type'}='add';
  1474. $new_dns->{'value'}=get_dns_name($db,$old_record->{auth_id});
  1475. $new_dns->{'auth_id'}=$rec_id;
  1476. insert_record($db,'dns_queue',$new_dns);
  1477. }
  1478. }
  1479. }
  1480. my @all_params = (@update_params, @filter_params);
  1481. my $update_sql = "UPDATE $table SET $set_clause WHERE $filter_sql";
  1482. my $result = do_sql($db, $update_sql, @all_params);
  1483. if ($result) {
  1484. my $changed_msg = prepare_audit_message($db, $table, $old_record, $record , $rec_id, 'update');
  1485. if ($table !~ /session/i) {
  1486. if (defined $changed_msg && $changed_msg ne '') {
  1487. if ($table !~ /user/i) {
  1488. db_log_info($db, $changed_msg);
  1489. } else {
  1490. if (is_hotspot($db, $old_record->{ip})) {
  1491. db_log_info($db, $changed_msg, $rec_id);
  1492. } else {
  1493. db_log_warning($db, $changed_msg, $rec_id);
  1494. if ($table eq 'user_auth' && defined $old_record->{ip} && $old_record->{ip} ne '') {
  1495. my $send_alert_update = isNotifyUpdate(get_notify_subnet($db, $old_record->{ip}));
  1496. sendEmail("WARN! " . get_first_line($changed_msg), $changed_msg, 1) if $send_alert_update;
  1497. }
  1498. }
  1499. }
  1500. }
  1501. }
  1502. }
  1503. return $result;
  1504. }
  1505. #---------------------------------------------------------------------------------------------------------------
  1506. sub delete_record {
  1507. my ($db, $table, $filter_sql, @filter_params) = @_;
  1508. return unless $db && $table && $filter_sql;
  1509. # Переподключаемся ТОЛЬКО если не в транзакции
  1510. if ($db->{AutoCommit}) {
  1511. unless (reconnect_db(\$db)) {
  1512. log_error("No database connection available");
  1513. return;
  1514. }
  1515. } else {
  1516. unless ($db->ping) {
  1517. log_error("Database connection lost during transaction");
  1518. return;
  1519. }
  1520. }
  1521. my $select_sql = "SELECT * FROM $table WHERE $filter_sql";
  1522. my $old_record = get_record_sql($db, $select_sql, @filter_params);
  1523. return unless $old_record;
  1524. my $rec_id = $old_record->{'id'};
  1525. #never delete user ip record!
  1526. if ($table eq 'user_auth') {
  1527. my $sSQL = "UPDATE user_auth SET changed = 1, deleted = 1, changed_time = ? WHERE $filter_sql";
  1528. my $ret = do_sql($db, $sSQL, GetNowTime(), @filter_params);
  1529. if ($old_record->{'dns_name'} and $old_record->{'ip'} and !$old_record->{'dns_ptr_only'} and $old_record->{'dns_name'}!~/\.$/) {
  1530. my $del_dns;
  1531. $del_dns->{'name_type'}='A';
  1532. $del_dns->{'name'}=$old_record->{'dns_name'};
  1533. $del_dns->{'value'}=$old_record->{'ip'};
  1534. $del_dns->{'operation_type'}='del';
  1535. $del_dns->{'auth_id'}=$old_record->{'id'};
  1536. insert_record($db,'dns_queue',$del_dns);
  1537. }
  1538. if ($old_record->{'dns_name'} and $old_record->{'ip'} and $old_record->{'dns_ptr_only'} and $old_record->{'dns_name'}!~/\.$/) {
  1539. my $del_dns;
  1540. $del_dns->{'name_type'}='PTR';
  1541. $del_dns->{'name'}=$old_record->{'dns_name'};
  1542. $del_dns->{'value'}=$old_record->{'ip'};
  1543. $del_dns->{'operation_type'}='del';
  1544. $del_dns->{'auth_id'}=$old_record->{'id'};
  1545. insert_record($db,'dns_queue',$del_dns);
  1546. }
  1547. my $changed_msg = prepare_audit_message($db, $table, $old_record, undef , $rec_id, 'delete');
  1548. if ($ret) {
  1549. if (defined $changed_msg && $changed_msg ne '') {
  1550. if (defined $old_record->{ip} && $old_record->{ip} ne '') {
  1551. if (is_hotspot($db, $old_record->{ip})) {
  1552. db_log_info($db, $changed_msg, $rec_id);
  1553. } else {
  1554. db_log_warning($db, $changed_msg, $rec_id);
  1555. my $send_alert_delete = isNotifyDelete(get_notify_subnet($db, $old_record->{ip}));
  1556. sendEmail("WARN! " . get_first_line($changed_msg), $changed_msg, 1) if $send_alert_delete;
  1557. }
  1558. }
  1559. }
  1560. }
  1561. return $ret;
  1562. }
  1563. if ($table eq 'user_list' and $old_record->{'permanent'}) { return; }
  1564. if ($table eq 'user_auth_alias') {
  1565. if ($old_record->{'alias'} and $old_record->{'auth_id'} and $old_record->{'alias'}!~/\.$/) {
  1566. my $del_dns;
  1567. $del_dns->{'name_type'}='CNAME';
  1568. $del_dns->{'name'}=$old_record->{'alias'};
  1569. $del_dns->{'value'}=get_dns_name($db,$old_record->{'auth_id'});
  1570. $del_dns->{'operation_type'}='del';
  1571. $del_dns->{'auth_id'}=$old_record->{'auth_id'};
  1572. insert_record($db,'dns_queue',$del_dns);
  1573. }
  1574. }
  1575. my $sSQL = "DELETE FROM ".$table." WHERE ".$filter_sql;
  1576. my $result = do_sql($db,$sSQL,@filter_params);
  1577. my $changed_msg = prepare_audit_message($db, $table, $old_record, undef , $rec_id, 'delete');
  1578. if ($result && $table !~ /session/i) {
  1579. if (defined $changed_msg && $changed_msg ne '') {
  1580. if ($table !~ /user/i) {
  1581. db_log_info($db, $changed_msg);
  1582. } else {
  1583. db_log_warning($db, $changed_msg);
  1584. }
  1585. }
  1586. }
  1587. return $result;
  1588. }
  1589. #---------------------------------------------------------------------------------------------------------------
  1590. sub is_system_ou {
  1591. my ($db, $ou_id) = @_;
  1592. return 0 if !defined $ou_id || $ou_id !~ /^\d+$/ || $ou_id <= 0;
  1593. my $sql = "SELECT 1 FROM ou WHERE id = ? AND (default_users = 1 OR default_hotspot = 1)";
  1594. my $record = get_record_sql($db, $sql, $ou_id);
  1595. return $record ? 1 : 0;
  1596. }
  1597. #---------------------------------------------------------------------------------------------------------------
  1598. sub init_option {
  1599. my $db=shift;
  1600. $last_refresh_config = time();
  1601. $config_ref{version}='';
  1602. my $version_record = get_record_sql($db,"SELECT version FROM version WHERE version is NOT NULL");
  1603. if ($version_record) { $config_ref{version}=$version_record->{version}; }
  1604. $config_ref{self_ip} = '127.0.0.1';
  1605. if ($DBHOST ne '127.0.0.1') {
  1606. my $ip_route = qx(ip r get $DBHOST 2>&1 | head -1);
  1607. if ($? == 0) {
  1608. if ($ip_route =~ /src\s+(\d+\.\d+\.\d+\.\d+)/) { $config_ref{self_ip} = $1; }
  1609. }
  1610. }
  1611. $config_ref{dbh}=$db;
  1612. $config_ref{save_detail}=get_option($db,23);
  1613. $config_ref{add_unknown_user}=get_option($db,22);
  1614. $config_ref{dhcp_server}=get_option($db,5);
  1615. $config_ref{snmp_default_version}=get_option($db,9);
  1616. $config_ref{snmp_default_community}=get_option($db,11);
  1617. $config_ref{KB}=get_option($db,1);
  1618. if ($config_ref{KB} ==0) { $config_ref{KB}=1000; }
  1619. if ($config_ref{KB} ==1) { $config_ref{KB}=1024; }
  1620. $config_ref{admin_email}=get_option($db,21);
  1621. $config_ref{sender_email}=get_option($db,52);
  1622. $config_ref{send_email}=get_option($db,51);
  1623. $config_ref{history}=get_option($db,26);
  1624. $config_ref{history_dhcp}=get_option($db,27);
  1625. $config_ref{router_login}=get_option($db,28);
  1626. $config_ref{router_password}=get_option($db,29);
  1627. $config_ref{router_port}=get_option($db,30);
  1628. $config_ref{org_name}=get_option($db,32);
  1629. $config_ref{domain_name}=get_option($db,33);
  1630. $config_ref{connections_history}=get_option($db,35);
  1631. $config_ref{debug}=get_option($db,34);
  1632. $config_ref{log_level} = get_option($db,53);
  1633. if ($config_ref{debug}) { $config_ref{log_level} = 255; }
  1634. $config_ref{urgent_sync}=get_option($db,50);
  1635. $config_ref{ignore_hotspot_dhcp_log} = get_option($db,44);
  1636. $config_ref{ignore_update_dhcp_event} = get_option($db,45);
  1637. $config_ref{update_hostname_from_dhcp} = get_option($db,46);
  1638. $config_ref{history_log_day}=get_option($db,47);
  1639. $config_ref{history_syslog_day} = get_option($db,48);
  1640. $config_ref{history_trafstat_day} = get_option($db,49);
  1641. $config_ref{enable_quotes} = get_option($db,54);
  1642. $config_ref{netflow_step} = get_option($db,55);
  1643. $config_ref{traffic_ipstat_history} = get_option($db,56);
  1644. $config_ref{nagios_url} = get_option($db,57);
  1645. $config_ref{cacti_url} = get_option($db,58);
  1646. $config_ref{torrus_url} = get_option($db,59);
  1647. $config_ref{wiki_url} = get_option($db,60);
  1648. $config_ref{stat_url} = get_option($db,62);
  1649. $config_ref{wiki_path} = get_option($db,61);
  1650. $config_ref{auto_mac_rule} = get_option($db,64);
  1651. #network configuration mode
  1652. $config_ref{config_mode}=get_option($db,68);
  1653. #auto clean old user record
  1654. $config_ref{clean_empty_user}=get_option($db,69);
  1655. #dns_server_type
  1656. $config_ref{dns_server}=get_option($db,3);
  1657. $config_ref{dns_server_type}=get_option($db,70);
  1658. $config_ref{enable_dns_updates}=get_option($db,71);
  1659. #$save_detail = 1; id=23
  1660. $save_detail=get_option($db,23);
  1661. #$add_unknown_user = 1; id=22
  1662. $add_unknown_user=get_option($db,22);
  1663. #$dns_server='192.168.2.12'; id=3
  1664. $dns_server=get_option($db,3);
  1665. #$dhcp_server='192.168.2.12'; id=5
  1666. $dhcp_server=get_option($db,5);
  1667. #$snmp_default_version='2'; id=9
  1668. $snmp_default_version=get_option($db,9);
  1669. #$snmp_default_community='public'; id=11
  1670. $snmp_default_community=get_option($db,11);
  1671. #$KB=1024; id=1
  1672. $KB=$config_ref{KB};
  1673. #$admin_email; id=21
  1674. $admin_email=get_option($db,21);
  1675. #sender email
  1676. $sender_email=get_option($db,52);
  1677. #send email
  1678. $send_email=get_option($db,51);
  1679. #$history=15; id=26
  1680. $history=get_option($db,26);
  1681. #$history_dhcp=7; id=27
  1682. $history_dhcp=get_option($db,27);
  1683. #$router_login="admin"; id=28
  1684. $router_login=get_option($db,28);
  1685. #$router_password="admin"; id=29
  1686. $router_password=get_option($db,29);
  1687. #$router_port=23; id=30
  1688. $router_port=get_option($db,30);
  1689. #32
  1690. $org_name=get_option($db,32);
  1691. #33
  1692. $domain_name=get_option($db,33);
  1693. #35
  1694. $connections_history=get_option($db,35);
  1695. #debug
  1696. $debug=get_option($db,34);
  1697. #log level
  1698. $log_level = get_option($db,53);
  1699. if ($debug) { $log_level = 255; }
  1700. #urgent sync access
  1701. $urgent_sync=get_option($db,50);
  1702. $ignore_hotspot_dhcp_log = get_option($db,44);
  1703. $ignore_update_dhcp_event = get_option($db,45);
  1704. $update_hostname_from_dhcp = get_option($db,46);
  1705. $history_log_day=get_option($db,47);
  1706. $history_syslog_day = get_option($db,48);
  1707. $history_trafstat_day = get_option($db,49);
  1708. my $ou = get_record_sql($db,"SELECT id FROM ou WHERE default_users = 1");
  1709. if (!$ou) { $default_user_ou_id = 0; } else { $default_user_ou_id = $ou->{'id'}; }
  1710. $ou = get_record_sql($db,"SELECT id FROM ou WHERE default_hotspot = 1 ");
  1711. if (!$ou) { $default_hotspot_ou_id = $default_user_ou_id; } else { $default_hotspot_ou_id = $ou->{'id'}; }
  1712. @subnets=get_records_sql($db,'SELECT * FROM subnets ORDER BY ip_int_start');
  1713. if (defined $office_networks) { undef $office_networks; }
  1714. if (defined $free_networks) { undef $free_networks; }
  1715. if (defined $vpn_networks) { undef $vpn_networks; }
  1716. if (defined $hotspot_networks) { undef $hotspot_networks; }
  1717. if (defined $all_networks) { undef $all_networks; }
  1718. $office_networks = new Net::Patricia;
  1719. $free_networks = new Net::Patricia;
  1720. $vpn_networks = new Net::Patricia;
  1721. $hotspot_networks = new Net::Patricia;
  1722. $all_networks = new Net::Patricia;
  1723. @office_network_list=();
  1724. @free_network_list=();
  1725. @free_network_list=();
  1726. @vpn_network_list=();
  1727. @hotspot_network_list=();
  1728. @all_network_list=();
  1729. foreach my $net (@subnets) {
  1730. next if (!$net->{subnet});
  1731. $subnets_ref{$net->{subnet}}=$net;
  1732. if ($net->{office}) {
  1733. push(@office_network_list,$net->{subnet});
  1734. $office_networks->add_string($net->{subnet},$net);
  1735. }
  1736. if ($net->{free}) {
  1737. push(@free_network_list,$net->{subnet});
  1738. $free_networks->add_string($net->{subnet},$net);
  1739. }
  1740. if ($net->{vpn}) {
  1741. push(@vpn_network_list,$net->{subnet});
  1742. $vpn_networks->add_string($net->{subnet},$net);
  1743. }
  1744. if ($net->{hotspot}) {
  1745. push(@hotspot_network_list,$net->{subnet});
  1746. push(@all_network_list,$net->{subnet});
  1747. $hotspot_networks->add_string($net->{subnet},$net);
  1748. }
  1749. push(@all_network_list,$net->{subnet});
  1750. $all_networks->add_string($net->{subnet},$net);
  1751. }
  1752. }
  1753. #---------------------------------------------------------------------------------------------------------------
  1754. sub Set_Variable {
  1755. my ($db, $name, $value, $timeshift) = @_;
  1756. $name //= $MY_NAME;
  1757. $value //= $$;
  1758. $timeshift //= 60;
  1759. Del_Variable($db, $name);
  1760. my $clean_time = time() + $timeshift;
  1761. my ($sec, $min, $hour, $day, $month, $year) = localtime($clean_time);
  1762. $month++;
  1763. $year += 1900;
  1764. my $clear_time_str = sprintf "%04d-%02d-%02d %02d:%02d:%02d", $year, $month, $day, $hour, $min, $sec;
  1765. my $sql = "INSERT INTO variables (name, value, clear_time) VALUES (?, ?, ?)";
  1766. do_sql($db, $sql, $name, $value, $clear_time_str);
  1767. }
  1768. #---------------------------------------------------------------------------------------------------------------
  1769. sub Get_Variable {
  1770. my $db = shift;
  1771. my $name = shift || $MY_NAME;
  1772. my $variable = get_record_sql($db, 'SELECT value FROM variables WHERE name = ?', $name);
  1773. if ($variable and $variable->{'value'}) { return $variable->{'value'}; }
  1774. return;
  1775. }
  1776. #---------------------------------------------------------------------------------------------------------------
  1777. sub Del_Variable {
  1778. my ($db, $name) = @_;
  1779. $name //= $MY_NAME;
  1780. do_sql($db, "DELETE FROM variables WHERE name = ?", $name);
  1781. }
  1782. #---------------------------------------------------------------------------------------------------------------
  1783. sub clean_variables {
  1784. my ($db) = @_;
  1785. # 1. Clean temporary variables
  1786. my $now = time();
  1787. my ($sec, $min, $hour, $day, $month, $year) = localtime($now);
  1788. $month++;
  1789. $year += 1900;
  1790. my $now_str = sprintf "%04d-%02d-%02d %02d:%02d:%02d", $year, $month, $day, $hour, $min, $sec;
  1791. do_sql($db, "DELETE FROM variables WHERE clear_time <= ?", $now_str);
  1792. # 2. Clean old AD computer cache
  1793. my $yesterday = DateTime->now(time_zone => 'local')->subtract(days => 1);
  1794. my $clean_str = $yesterday->strftime("%Y-%m-%d 00:00:00");
  1795. do_sql($db, "DELETE FROM ad_comp_cache WHERE last_found <= ?", $clean_str);
  1796. }
  1797. #---------------------------------------------------------------------------------------------------------------
  1798. #skip init for upgrade
  1799. if ($MY_NAME!~/upgrade.pl/) {
  1800. $dbh=init_db();
  1801. init_option($dbh);
  1802. clean_variables($dbh);
  1803. Set_Variable($dbh);
  1804. # warn "DBI driver name: ", $dbh->{Driver}->{Name}, "\n" if ($debug);
  1805. # warn "Full dbh class: ", ref($dbh), "\n" if ($debug);
  1806. }
  1807. 1;
  1808. }