dhcp-log.pl 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358
  1. #!/usr/bin/perl
  2. #
  3. # Copyright (C) Roman Dmitiriev, rnd@rajven.ru
  4. #
  5. use utf8;
  6. use English;
  7. use base;
  8. use FindBin '$Bin';
  9. use lib "$Bin/";
  10. use Data::Dumper;
  11. use Rstat::config;
  12. use Rstat::main;
  13. use Rstat::mysql;
  14. use Rstat::net_utils;
  15. use strict;
  16. use warnings;
  17. use Getopt::Long;
  18. use Proc::Daemon;
  19. use POSIX;
  20. use Net::Netmask;
  21. use Text::Iconv;
  22. use File::Tail;
  23. my $pf = '/var/run/dhcp-log.pid';
  24. my $log_file='/var/log/dhcp.log';
  25. my $mute_time=300;
  26. my $daemon = Proc::Daemon->new(
  27. pid_file => $pf,
  28. work_dir => $HOME_DIR
  29. );
  30. # are you running? Returns 0 if not.
  31. my $pid = $daemon->Status($pf);
  32. my $daemonize = 1;
  33. GetOptions(
  34. 'daemon!' => \$daemonize,
  35. "help" => \&usage,
  36. "reload" => \&reload,
  37. "restart" => \&restart,
  38. "start" => \&run,
  39. "status" => \&status,
  40. "stop" => \&stop
  41. ) or &usage;
  42. exit(0);
  43. sub stop {
  44. if ($pid) {
  45. print "Stopping pid $pid...";
  46. if ($daemon->Kill_Daemon($pf)) {
  47. print "Successfully stopped.\n";
  48. } else {
  49. print "Could not find $pid. Was it running?\n";
  50. }
  51. } else {
  52. print "Not running, nothing to stop.\n";
  53. }
  54. }
  55. sub status {
  56. if ($pid) {
  57. print "Running with pid $pid.\n";
  58. } else {
  59. print "Not running.\n";
  60. }
  61. }
  62. sub run {
  63. if (!$pid) {
  64. print "Starting...";
  65. if ($daemonize) {
  66. # when Init happens, everything under it runs in the child process.
  67. # this is important when dealing with file handles, due to the fact
  68. # Proc::Daemon shuts down all open file handles when Init happens.
  69. # Keep this in mind when laying out your program, particularly if
  70. # you use filehandles.
  71. $daemon->Init;
  72. }
  73. setpriority(0,0,19);
  74. my $converter = Text::Iconv->new("cp866", "utf8");
  75. while (1) {
  76. eval {
  77. my %leases;
  78. # Create new database handle. If we can't connect, die()
  79. my $hdb = DBI->connect("dbi:mysql:database=$DBNAME;host=$DBHOST","$DBUSER","$DBPASS");
  80. if ( !defined $hdb ) { die "Cannot connect to mySQL server: $DBI::errstr\n"; }
  81. #parse log
  82. my $dhcp_log=File::Tail->new(name=>$log_file,maxinterval=>5,interval=>1,ignore_nonexistant=>1) || die "$log_file not found!";
  83. #truncate current log file
  84. truncate $log_file, 0;
  85. while (my $logline=$dhcp_log->read) {
  86. next if (!$logline);
  87. chomp($logline);
  88. log_verbose("GET CLIENT REQUEST: $logline");
  89. my ($type,$mac,$ip,$hostname,$timestamp,$tags,$sup_hostname,$old_hostname,$circuit_id,$remote_id,$client_id,$decoded_circuit_id,$decoded_remote_id) = split (/\;/, $logline);
  90. next if (!$type);
  91. next if ($type!~/(old|add|del)/i);
  92. if (exists $leases{$ip} and time()-$leases{$ip}{last_time} <= $mute_time) { next; }
  93. if (time()-$last_refresh_config>=60) { init_option($hdb); }
  94. my $client_hostname='UNDEFINED';
  95. if ($hostname and $hostname ne "undef") { $client_hostname=$hostname; } else {
  96. if ($sup_hostname) { $client_hostname=$sup_hostname; } else {
  97. if ($old_hostname) { $client_hostname=$old_hostname; }
  98. }
  99. }
  100. my $auth_network = $office_networks->match_string($ip);
  101. if (!$auth_network) {
  102. log_error("Unknown network in dhcp request! IP: $ip");
  103. next;
  104. }
  105. if (!$timestamp) { $timestamp=time(); }
  106. my $ip_aton=StrToIp($ip);
  107. $mac=mac_splitted(isc_mac_simplify($mac));
  108. my $dhcp_event_time = GetNowTime($timestamp);
  109. my $dhcp_record;
  110. $dhcp_record->{'mac'}=$mac;
  111. $dhcp_record->{'ip'}=$ip;
  112. $dhcp_record->{'ip_aton'}=$ip_aton;
  113. $dhcp_record->{'hostname'}=$client_hostname;
  114. $dhcp_record->{'tags'}=$tags;
  115. $dhcp_record->{'network'}=$auth_network;
  116. $dhcp_record->{'type'}=$type;
  117. $dhcp_record->{'hostname_utf8'}=$converter->convert($client_hostname);
  118. $dhcp_record->{'timestamp'} = $timestamp;
  119. $dhcp_record->{'last_time'} = time();
  120. $dhcp_record->{'circuit-id'} = $circuit_id;
  121. $dhcp_record->{'client-id'} = $client_id;
  122. $dhcp_record->{'remote-id'} = $remote_id;
  123. $dhcp_record->{'hotspot'}=is_hotspot($dbh,$dhcp_record->{ip});
  124. #save record for mute
  125. $leases{$ip}=$dhcp_record;
  126. my $switch;
  127. my $t_remote_id;
  128. my $t_circuit_id = $circuit_id;
  129. #detect switch by decoded remote-id
  130. if ($decoded_remote_id) {
  131. $t_remote_id = $decoded_remote_id;
  132. #fill '0' to remote-id for full mac lenght
  133. if (length($t_remote_id)<12) {
  134. for (my $i = length($decoded_remote_id); $i < 12; $i++) { $t_remote_id = $t_remote_id."0"; }
  135. }
  136. $t_remote_id=mac_splitted(isc_mac_simplify($t_remote_id));
  137. my $devSQL = "SELECT D.device_name, D.ip, A.mac FROM `devices` AS D,`User_auth` AS A WHERE D.user_id=A.User_id AND D.ip=A.ip AND A.deleted=0 AND A.mac='".$t_remote_id."'";
  138. log_debug($devSQL);
  139. $switch = get_record_sql($hdb,$devSQL);
  140. if ($switch) {
  141. $remote_id = $t_remote_id;
  142. $circuit_id = $decoded_circuit_id;
  143. $dhcp_record->{'circuit-id'} = $circuit_id;
  144. $dhcp_record->{'remote-id'} = $remote_id;
  145. }
  146. }
  147. #detect switch by original remote-id
  148. if (!$switch and $remote_id) {
  149. $t_remote_id = $remote_id;
  150. #fill '0' to remote-id for full mac lenght
  151. if (length($t_remote_id)<12) {
  152. for (my $i = length($decoded_remote_id); $i < 12; $i++) { $t_remote_id = $t_remote_id."0"; }
  153. }
  154. $t_remote_id=mac_splitted(isc_mac_simplify($t_remote_id));
  155. my $devSQL = "SELECT D.device_name, D.ip, A.mac FROM `devices` AS D,`User_auth` AS A WHERE D.user_id=A.User_id AND D.ip=A.ip AND A.deleted=0 AND A.mac='".$t_remote_id."'";
  156. log_debug($devSQL);
  157. $switch = get_record_sql($hdb,$devSQL);
  158. if ($switch) {
  159. $remote_id = $t_remote_id;
  160. $dhcp_record->{'circuit-id'} = $circuit_id;
  161. $dhcp_record->{'remote-id'} = $remote_id;
  162. }
  163. }
  164. #maybe remote-id is string name device?
  165. if (!$switch and $remote_id) {
  166. my @id_words = split(/ /,$remote_id);
  167. if ($id_words[0]) {
  168. my $devSQL = "SELECT D.device_name, D.ip, A.mac FROM `devices` AS D,`User_auth` AS A WHERE D.user_id=A.User_id AND D.ip=A.ip AND A.deleted=0 AND D.device_name like '".$id_words[0]."%'";
  169. log_debug($devSQL);
  170. $switch = get_record_sql($hdb,$devSQL);
  171. }
  172. }
  173. #maybe mikrotik?!
  174. if (!$switch and $circuit_id) {
  175. my @id_words = split(/ /,$circuit_id);
  176. if ($id_words[0]) {
  177. my $devSQL = "SELECT D.device_name, D.ip, A.mac FROM `devices` AS D,`User_auth` AS A WHERE D.user_id=A.User_id AND D.ip=A.ip AND A.deleted=0 AND D.device_name like '".$id_words[0]."%'";
  178. log_debug($devSQL);
  179. $switch = get_record_sql($hdb,$devSQL);
  180. #fucking mikrotik - swap variables
  181. if ($switch) {
  182. $circuit_id = $remote_id;
  183. $remote_id = $t_circuit_id;
  184. $dhcp_record->{'circuit-id'} = $circuit_id;
  185. $dhcp_record->{'remote-id'} = $remote_id;
  186. }
  187. }
  188. }
  189. if ($switch) {
  190. db_log_verbose($hdb,"Dhcp request type: ".$type." ip=".$ip." and mac=".$mac." from ".$switch->{'device_name'});
  191. #detect port
  192. }
  193. log_debug(uc($type).">>");
  194. log_debug("MAC: ".$dhcp_record->{'mac'});
  195. log_debug("IP: ".$dhcp_record->{'ip'});
  196. log_debug("TAGS: ".$dhcp_record->{'tags'});
  197. log_debug("CIRCUIT-ID:".$dhcp_record->{'circuit-id'});
  198. log_debug("REMOTE-ID: ".$dhcp_record->{'remote-id'});
  199. log_debug("HOSTNAME: ".$dhcp_record->{'hostname'});
  200. log_debug("TYPE: ".$dhcp_record->{'type'});
  201. log_debug("TIME: ".$dhcp_event_time);
  202. log_debug("UTF8 NAME: ".$dhcp_record->{'hostname_utf8'});
  203. log_debug("SWITCH: ".$switch->{'device_name'}) if ($switch);
  204. log_debug("END GET");
  205. my $auth_record = get_record_sql($hdb,'SELECT * FROM User_auth WHERE ip="'.$dhcp_record->{ip}.'" and mac="'.$mac.'" and deleted=0 ORDER BY last_found DESC');
  206. if (!$auth_record and $type eq 'old' ) { $type='add'; }
  207. if ($type eq 'add') {
  208. my $res_id = resurrection_auth($hdb,$dhcp_record);
  209. if (!$res_id) {
  210. db_log_error($hdb,"Error creating an ip address record for ip=".$dhcp_record->{ip}." and mac=".$mac."!");
  211. next;
  212. }
  213. $auth_record = get_record_sql($hdb,'SELECT * FROM User_auth WHERE id='.$res_id);
  214. db_log_info($hdb,"Check for new auth. Found id: $res_id",$res_id);
  215. } else {
  216. $auth_record = get_record_sql($hdb,'SELECT * FROM User_auth WHERE ip="'.$dhcp_record->{ip}.'" and mac="'.$mac.'" and deleted=0 ORDER BY last_found DESC');
  217. }
  218. #create new record for refresh dhcp packet
  219. if (!$auth_record) {
  220. #don't create record by del request!
  221. #because when the host address is changed, the new address will be overwritten by the old one being released
  222. if ($type=~/old/i) {
  223. db_log_warning($hdb,"Record for dhcp request type: ".$type." ip=".$dhcp_record->{ip}." and mac=".$mac." does not exists!");
  224. my $res_id = resurrection_auth($hdb,$dhcp_record);
  225. if (!$res_id) {
  226. db_log_error($hdb,"Error creating an ip address record for ip=".$dhcp_record->{ip}." and mac=".$mac."!");
  227. next;
  228. }
  229. $auth_record = get_record_sql($hdb,'SELECT * FROM User_auth WHERE id='.$res_id);
  230. db_log_info($hdb,"Check for new auth. Found id: $res_id",$res_id);
  231. } else { next; }
  232. }
  233. my $auth_id = $auth_record->{id};
  234. my $auth_ou_id = $auth_record->{ou_id};
  235. update_dns_record($hdb,$dhcp_record,$auth_record);
  236. if ($type=~/add/i and $dhcp_record->{hostname_utf8} and $dhcp_record->{hostname_utf8} !~/UNDEFINED/i) {
  237. my $auth_rec;
  238. $auth_rec->{dhcp_hostname} = $dhcp_record->{hostname_utf8};
  239. $auth_rec->{dhcp_time}=$dhcp_event_time;
  240. db_log_verbose($hdb,"Add lease by dhcp event for dynamic clients id: $auth_id ip: $dhcp_record->{ip}",$auth_id);
  241. update_record($hdb,'User_auth',$auth_rec,"id=$auth_id");
  242. }
  243. if ($dhcp_record->{hotspot} and $ignore_hotspot_dhcp_log) { next; }
  244. if ($ignore_update_dhcp_event and $type=~/old/i) { next; }
  245. if ($type=~/old/i) {
  246. my $auth_rec;
  247. $auth_rec->{dhcp_action}=$type;
  248. $auth_rec->{dhcp_time}=$dhcp_event_time;
  249. db_log_verbose($hdb,"Update lease by dhcp event for dynamic clients id: $auth_id ip: $dhcp_record->{ip}",$auth_id);
  250. update_record($hdb,'User_auth',$auth_rec,"id=$auth_id");
  251. }
  252. if ($type=~/del/i and $auth_id) {
  253. if ($auth_record->{dhcp_time} =~ /([0-9]{4})-([0-9]{2})-([0-9]{2}) ([0-9]{2}):([0-9]{2}):([0-9]{2})/) {
  254. my $d_time = mktime($6,$5,$4,$3,$2-1,$1-1900);
  255. if (time()-$d_time>60 and ($auth_ou_id == $default_user_ou_id or $auth_ou_id==$default_hotspot_ou_id)) {
  256. db_log_info($hdb,"Remove user ip record by dhcp release event for dynamic clients id: $auth_id ip: $dhcp_record->{ip}",$auth_id);
  257. my $auth_rec;
  258. $auth_rec->{deleted}="1";
  259. $auth_rec->{dhcp_action}=$type;
  260. $auth_rec->{dhcp_time}=$dhcp_event_time;
  261. update_record($hdb,'User_auth',$auth_rec,"id=$auth_id");
  262. my $u_count=get_count_records($hdb,'User_auth','deleted=0 and user_id='.$auth_record->{'user_id'});
  263. if (!$u_count) {
  264. delete_record($hdb,"User_list","id=".$auth_record->{'user_id'});
  265. db_log_info($hdb,"Remove dynamic user id: $auth_record->{'user_id'} by dhcp request",$auth_id);
  266. }
  267. }
  268. }
  269. }
  270. my $dhcp_log;
  271. if (!$auth_id) { $auth_id=0; }
  272. $dhcp_log->{'auth_id'} = $auth_id;
  273. $dhcp_log->{'ip'} = $dhcp_record->{'ip'};
  274. $dhcp_log->{'ip_int'} = $dhcp_record->{'ip_aton'};
  275. $dhcp_log->{'mac'} = $dhcp_record->{'mac'};
  276. $dhcp_log->{'action'} = $type;
  277. $dhcp_log->{'dhcp_hostname'} = $dhcp_record->{'hostname_utf8'};
  278. $dhcp_log->{'timestamp'} = $dhcp_event_time;
  279. $dhcp_log->{'circuit-id'} = $circuit_id;
  280. $dhcp_log->{'client-id'} = $client_id;
  281. $dhcp_log->{'remote-id'} = $remote_id;
  282. insert_record($hdb,'dhcp_log',$dhcp_log);
  283. }
  284. };
  285. if ($@) { log_error("Exception found: $@"); sleep(60); }
  286. }
  287. } else {
  288. print "Already Running with pid $pid\n";
  289. }
  290. }
  291. sub usage {
  292. print "usage: dhcp-log.pl (start|stop|status|restart)\n";
  293. exit(0);
  294. }
  295. sub reload {
  296. print "reload process not implemented.\n";
  297. }
  298. sub restart {
  299. stop;
  300. run;
  301. }