2021-09-08 18:39:25 +02:00
|
|
|
"""
|
2021-09-09 03:56:31 +02:00
|
|
|
< WGDashboard > - by Donald Zou [https://github.com/donaldzou]
|
2021-09-08 18:39:25 +02:00
|
|
|
Under Apache-2.0 License
|
|
|
|
"""
|
2022-01-02 20:44:27 +01:00
|
|
|
# TODO: Testing migrate to sqlite
|
|
|
|
import sqlite3
|
|
|
|
from flask import g
|
2021-12-26 00:26:39 +01:00
|
|
|
import configparser
|
|
|
|
import hashlib
|
|
|
|
import ipaddress
|
|
|
|
import json
|
2021-05-04 07:32:34 +02:00
|
|
|
# Python Built-in Library
|
2020-10-18 07:10:13 +02:00
|
|
|
import os
|
2021-12-26 00:26:39 +01:00
|
|
|
import secrets
|
2020-10-18 07:10:13 +02:00
|
|
|
import subprocess
|
2021-07-02 19:23:04 +02:00
|
|
|
import time
|
2021-12-28 20:53:51 +01:00
|
|
|
import re
|
2021-12-26 00:26:39 +01:00
|
|
|
import urllib.parse
|
|
|
|
import urllib.request
|
2021-12-28 20:53:51 +01:00
|
|
|
from datetime import datetime, timedelta
|
2021-04-03 02:48:00 +02:00
|
|
|
from operator import itemgetter
|
2021-05-04 07:32:34 +02:00
|
|
|
# PIP installed library
|
|
|
|
import ifcfg
|
2021-12-26 00:26:39 +01:00
|
|
|
from flask import Flask, request, render_template, redirect, url_for, session, jsonify
|
2021-08-05 06:45:15 +02:00
|
|
|
from flask_qrcode import QRcode
|
2021-12-26 00:26:39 +01:00
|
|
|
from icmplib import ping, traceroute
|
|
|
|
|
|
|
|
# Import other python files
|
2022-01-02 20:44:27 +01:00
|
|
|
from util import regex_match, check_DNS, check_Allowed_IPs, check_remote_endpoint, \
|
2021-12-28 20:53:51 +01:00
|
|
|
check_IP_with_range, clean_IP_with_range
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-05-14 00:00:40 +02:00
|
|
|
# Dashboard Version
|
2021-12-28 20:53:51 +01:00
|
|
|
DASHBOARD_VERSION = 'v3.0'
|
2021-05-14 00:00:40 +02:00
|
|
|
# Dashboard Config Name
|
2021-10-23 23:56:34 +02:00
|
|
|
configuration_path = os.getenv('CONFIGURATION_PATH', '.')
|
|
|
|
db_path = os.path.join(configuration_path, 'db')
|
2021-10-24 11:45:08 +02:00
|
|
|
if not os.path.isdir(db_path):
|
|
|
|
os.mkdir(db_path)
|
2021-12-28 23:51:41 +01:00
|
|
|
DASHBOARD_CONF = os.path.join(configuration_path, 'wg-dashboard.ini')
|
2021-05-14 00:00:40 +02:00
|
|
|
# Upgrade Required
|
2021-12-28 20:53:51 +01:00
|
|
|
UPDATE = None
|
2021-05-14 00:00:40 +02:00
|
|
|
# Flask App Configuration
|
2021-09-09 03:56:31 +02:00
|
|
|
app = Flask("WGDashboard")
|
2021-12-25 20:44:14 +01:00
|
|
|
app.config['SEND_FILE_MAX_AGE_DEFAULT'] = 5206928
|
2021-05-04 07:32:34 +02:00
|
|
|
app.secret_key = secrets.token_urlsafe(16)
|
2020-10-18 07:10:13 +02:00
|
|
|
app.config['TEMPLATES_AUTO_RELOAD'] = True
|
2021-08-14 23:13:16 +02:00
|
|
|
# Enable QR Code Generator
|
2021-08-05 06:45:15 +02:00
|
|
|
QRcode(app)
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
|
|
|
|
def connect_db():
|
|
|
|
return sqlite3.connect(os.path.join(configuration_path, 'db', 'wgdashboard.db'))
|
2021-09-08 18:39:25 +02:00
|
|
|
|
2021-05-05 03:26:40 +02:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Read / Write Dashboard Config File
|
|
|
|
def get_dashboard_conf():
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Dashboard Configuration Related
|
|
|
|
"""
|
2021-09-08 18:39:25 +02:00
|
|
|
config = configparser.ConfigParser(strict=False)
|
2021-12-28 20:53:51 +01:00
|
|
|
config.read(DASHBOARD_CONF)
|
2021-09-08 18:39:25 +02:00
|
|
|
return config
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
def set_dashboard_conf(config):
|
2021-12-28 20:53:51 +01:00
|
|
|
with open(DASHBOARD_CONF, "w", encoding='utf-8') as conf_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
config.write(conf_object)
|
2021-09-08 18:39:25 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get all keys from a configuration
|
2020-10-23 07:31:10 +02:00
|
|
|
def get_conf_peer_key(config_name):
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Configuration Related
|
|
|
|
"""
|
2021-04-03 20:06:21 +02:00
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
peer_key = subprocess.run(f"wg show {config_name} peers",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
2021-05-14 00:00:40 +02:00
|
|
|
peer_key = peer_key.decode("UTF-8").split()
|
|
|
|
return peer_key
|
2021-12-26 00:26:39 +01:00
|
|
|
except subprocess.CalledProcessError:
|
2021-08-14 23:13:16 +02:00
|
|
|
return config_name + " is not running."
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get numbers of connected peer of a configuration
|
2020-12-26 06:17:42 +01:00
|
|
|
def get_conf_running_peer_number(config_name):
|
|
|
|
running = 0
|
2021-04-03 20:06:21 +02:00
|
|
|
# Get latest handshakes
|
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
data_usage = subprocess.run(f"wg show {config_name} latest-handshakes",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-04-03 20:06:21 +02:00
|
|
|
return "stopped"
|
2020-12-26 06:17:42 +01:00
|
|
|
data_usage = data_usage.decode("UTF-8").split()
|
|
|
|
count = 0
|
|
|
|
now = datetime.now()
|
2021-12-28 20:53:51 +01:00
|
|
|
time_delta = timedelta(minutes=2)
|
|
|
|
for _ in range(int(len(data_usage) / 2)):
|
2021-04-03 20:06:21 +02:00
|
|
|
minus = now - datetime.fromtimestamp(int(data_usage[count + 1]))
|
2021-12-28 20:53:51 +01:00
|
|
|
if minus < time_delta:
|
2020-12-26 06:17:42 +01:00
|
|
|
running += 1
|
|
|
|
count += 2
|
|
|
|
return running
|
2020-10-18 07:10:13 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Read [Interface] section from configuration file
|
2021-08-15 05:30:05 +02:00
|
|
|
def read_conf_file_interface(config_name):
|
|
|
|
conf_location = wg_conf_path + "/" + config_name + ".conf"
|
2021-12-28 20:53:51 +01:00
|
|
|
with open(conf_location, 'r', encoding='utf-8') as file_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
file = file_object.read().split("\n")
|
|
|
|
data = {}
|
2021-12-28 20:53:51 +01:00
|
|
|
for i in file:
|
|
|
|
if not regex_match("#(.*)", i):
|
|
|
|
if len(i) > 0:
|
|
|
|
if i != "[Interface]":
|
|
|
|
tmp = re.split(r'\s*=\s*', i, 1)
|
2021-12-26 11:04:39 +01:00
|
|
|
if len(tmp) == 2:
|
|
|
|
data[tmp[0]] = tmp[1]
|
2021-08-15 05:30:05 +02:00
|
|
|
return data
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Read the whole configuration file
|
2021-04-09 06:07:37 +02:00
|
|
|
def read_conf_file(config_name):
|
2021-04-03 20:06:21 +02:00
|
|
|
# Read Configuration File Start
|
2021-05-14 00:00:40 +02:00
|
|
|
conf_location = wg_conf_path + "/" + config_name + ".conf"
|
2021-12-29 20:57:44 +01:00
|
|
|
f = open(conf_location, 'r')
|
|
|
|
file = f.read().split("\n")
|
2021-04-03 20:06:21 +02:00
|
|
|
conf_peer_data = {
|
|
|
|
"Interface": {},
|
|
|
|
"Peers": []
|
|
|
|
}
|
|
|
|
peers_start = 0
|
2021-12-29 20:57:44 +01:00
|
|
|
for i in range(len(file)):
|
|
|
|
if not regex_match("#(.*)", file[i]):
|
|
|
|
if file[i] == "[Peer]":
|
2021-05-14 00:00:40 +02:00
|
|
|
peers_start = i
|
|
|
|
break
|
2021-12-29 20:57:44 +01:00
|
|
|
else:
|
|
|
|
if len(file[i]) > 0:
|
|
|
|
if file[i] != "[Interface]":
|
|
|
|
tmp = re.split(r'\s*=\s*', file[i], 1)
|
|
|
|
if len(tmp) == 2:
|
|
|
|
conf_peer_data['Interface'][tmp[0]] = tmp[1]
|
2021-04-03 20:06:21 +02:00
|
|
|
conf_peers = file[peers_start:]
|
|
|
|
peer = -1
|
|
|
|
for i in conf_peers:
|
2021-09-08 18:39:25 +02:00
|
|
|
if not regex_match("#(.*)", i):
|
2021-05-14 00:00:40 +02:00
|
|
|
if i == "[Peer]":
|
|
|
|
peer += 1
|
|
|
|
conf_peer_data["Peers"].append({})
|
2021-07-02 19:23:04 +02:00
|
|
|
elif peer > -1:
|
2021-05-14 00:00:40 +02:00
|
|
|
if len(i) > 0:
|
2021-12-29 20:57:44 +01:00
|
|
|
tmp = re.split('\s*=\s*', i, 1)
|
2021-05-14 00:00:40 +02:00
|
|
|
if len(tmp) == 2:
|
|
|
|
conf_peer_data["Peers"][peer][tmp[0]] = tmp[1]
|
2021-07-02 19:23:04 +02:00
|
|
|
|
2021-12-29 20:57:44 +01:00
|
|
|
f.close()
|
2021-04-03 20:06:21 +02:00
|
|
|
# Read Configuration File End
|
2021-04-09 06:07:37 +02:00
|
|
|
return conf_peer_data
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
# Get the latest handshake from all peers of a configuration
|
|
|
|
def get_latest_handshake(config_name):
|
2021-07-02 19:23:04 +02:00
|
|
|
# Get latest handshakes
|
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
data_usage = subprocess.run(f"wg show {config_name} latest-handshakes",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-07-02 19:23:04 +02:00
|
|
|
return "stopped"
|
|
|
|
data_usage = data_usage.decode("UTF-8").split()
|
|
|
|
count = 0
|
|
|
|
now = datetime.now()
|
2021-12-28 20:53:51 +01:00
|
|
|
time_delta = timedelta(minutes=2)
|
|
|
|
for _ in range(int(len(data_usage) / 2)):
|
2021-07-02 19:23:04 +02:00
|
|
|
minus = now - datetime.fromtimestamp(int(data_usage[count + 1]))
|
2021-12-28 20:53:51 +01:00
|
|
|
if minus < time_delta:
|
2021-07-02 19:23:04 +02:00
|
|
|
status = "running"
|
|
|
|
else:
|
|
|
|
status = "stopped"
|
|
|
|
if int(data_usage[count + 1]) > 0:
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("UPDATE %s SET latest_handshake = '%s', status = '%s' WHERE id='%s'"
|
|
|
|
% (config_name, str(minus).split(".", maxsplit=1)[0], status, data_usage[count]))
|
2021-07-02 19:23:04 +02:00
|
|
|
else:
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("UPDATE %s SET latest_handshake = '(None)', status = '%s' WHERE id='%s'"
|
|
|
|
% (config_name, status, data_usage[count]))
|
2021-07-02 19:23:04 +02:00
|
|
|
count += 2
|
2021-12-28 20:53:51 +01:00
|
|
|
return None
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get transfer from all peers of a configuration
|
2022-01-02 20:44:27 +01:00
|
|
|
def get_transfer(config_name):
|
2021-04-03 20:06:21 +02:00
|
|
|
# Get transfer
|
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
data_usage = subprocess.run(f"wg show {config_name} transfer",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-04-03 20:06:21 +02:00
|
|
|
return "stopped"
|
2021-12-29 22:15:00 +01:00
|
|
|
data_usage = data_usage.decode("UTF-8").split("\n")
|
|
|
|
final = []
|
|
|
|
for i in data_usage:
|
|
|
|
final.append(i.split("\t"))
|
|
|
|
data_usage = final
|
|
|
|
for i in range(len(data_usage)):
|
2022-01-02 20:44:27 +01:00
|
|
|
cur_i = g.cur.execute(
|
|
|
|
"SELECT total_receive, total_sent, cumu_receive, cumu_sent, status FROM %s WHERE id='%s'"
|
|
|
|
% (config_name, data_usage[i][0])).fetchall()
|
2021-12-29 20:57:44 +01:00
|
|
|
if len(cur_i) > 0:
|
2022-01-02 20:44:27 +01:00
|
|
|
total_sent = cur_i[0][1]
|
|
|
|
total_receive = cur_i[0][0]
|
|
|
|
# traffic = cur_i[0]['traffic']
|
2021-12-29 22:15:00 +01:00
|
|
|
cur_total_sent = round(int(data_usage[i][2]) / (1024 ** 3), 4)
|
|
|
|
cur_total_receive = round(int(data_usage[i][1]) / (1024 ** 3), 4)
|
2022-01-02 20:44:27 +01:00
|
|
|
if cur_i[0][4] == "running":
|
2021-12-29 20:57:44 +01:00
|
|
|
if total_sent <= cur_total_sent and total_receive <= cur_total_receive:
|
|
|
|
total_sent = cur_total_sent
|
|
|
|
total_receive = cur_total_receive
|
|
|
|
else:
|
|
|
|
now = datetime.now()
|
|
|
|
ctime = now.strftime("%d/%m/%Y %H:%M:%S")
|
2022-01-02 20:44:27 +01:00
|
|
|
cumu_receive = cur_i[0][2] + total_receive
|
|
|
|
cumu_sent = cur_i[0][3] + total_sent
|
|
|
|
g.cur.execute("UPDATE %s SET cumu_receive = %f, cumu_sent = %f, cumu_data = %f WHERE id = '%s'" %
|
|
|
|
(config_name, round(cumu_receive, 4), round(cumu_sent, 4),
|
|
|
|
round(cumu_sent + cumu_receive, 4), data_usage[i][0]))
|
2021-12-29 20:57:44 +01:00
|
|
|
total_sent = 0
|
|
|
|
total_receive = 0
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("UPDATE %s SET total_receive = %f, total_sent = %f, total_data = %f WHERE id = '%s'" %
|
|
|
|
(config_name, round(total_receive, 4), round(total_sent, 4),
|
|
|
|
round(total_receive + total_sent, 4), data_usage[i][0]))
|
2021-12-28 20:53:51 +01:00
|
|
|
return None
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get endpoint from all peers of a configuration
|
2022-01-02 20:44:27 +01:00
|
|
|
def get_endpoint(config_name):
|
2021-04-03 20:06:21 +02:00
|
|
|
# Get endpoint
|
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
data_usage = subprocess.run(f"wg show {config_name} endpoints",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-04-03 20:06:21 +02:00
|
|
|
return "stopped"
|
2020-10-18 07:10:13 +02:00
|
|
|
data_usage = data_usage.decode("UTF-8").split()
|
|
|
|
count = 0
|
2021-12-28 20:53:51 +01:00
|
|
|
for _ in range(int(len(data_usage) / 2)):
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("UPDATE " + config_name + " SET endpoint = '%s' WHERE id = '%s'"
|
|
|
|
% (data_usage[count + 1], data_usage[count]))
|
2020-10-18 07:10:13 +02:00
|
|
|
count += 2
|
2021-12-28 20:53:51 +01:00
|
|
|
return None
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get allowed ips from all peers of a configuration
|
2022-01-02 20:44:27 +01:00
|
|
|
def get_allowed_ip(conf_peer_data, config_name):
|
2021-04-03 20:06:21 +02:00
|
|
|
# Get allowed ip
|
|
|
|
for i in conf_peer_data["Peers"]:
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("UPDATE " + config_name + " SET allowed_ip = '%s' WHERE id = '%s'"
|
|
|
|
% (i.get('AllowedIPs', '(None)'), i["PublicKey"]))
|
2021-07-02 19:23:04 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Look for new peers from WireGuard
|
2021-08-14 23:13:16 +02:00
|
|
|
def get_all_peers_data(config_name):
|
2021-07-02 19:23:04 +02:00
|
|
|
conf_peer_data = read_conf_file(config_name)
|
2021-09-08 18:39:25 +02:00
|
|
|
config = get_dashboard_conf()
|
2021-07-02 19:23:04 +02:00
|
|
|
for i in conf_peer_data['Peers']:
|
2022-01-02 20:44:27 +01:00
|
|
|
result = g.cur.execute("SELECT * FROM %s WHERE id='%s'" % (config_name, i["PublicKey"])).fetchall()
|
|
|
|
if len(result) == 0:
|
2021-12-29 18:17:44 +01:00
|
|
|
new_data = {
|
2021-07-02 19:23:04 +02:00
|
|
|
"id": i['PublicKey'],
|
2021-08-05 06:45:15 +02:00
|
|
|
"private_key": "",
|
2021-09-08 18:39:25 +02:00
|
|
|
"DNS": config.get("Peers", "peer_global_DNS"),
|
2021-12-26 00:26:39 +01:00
|
|
|
"endpoint_allowed_ip": config.get("Peers", "peer_endpoint_allowed_ip"),
|
2021-07-02 19:23:04 +02:00
|
|
|
"name": "",
|
|
|
|
"total_receive": 0,
|
|
|
|
"total_sent": 0,
|
|
|
|
"total_data": 0,
|
2021-09-08 18:39:25 +02:00
|
|
|
"endpoint": "N/A",
|
|
|
|
"status": "stopped",
|
|
|
|
"latest_handshake": "N/A",
|
|
|
|
"allowed_ip": "N/A",
|
2022-01-02 20:44:27 +01:00
|
|
|
"cumu_receive": 0,
|
|
|
|
"cumu_sent": 0,
|
|
|
|
"cumu_data": 0,
|
2021-09-08 18:39:25 +02:00
|
|
|
"traffic": [],
|
|
|
|
"mtu": config.get("Peers", "peer_mtu"),
|
2021-12-26 00:26:39 +01:00
|
|
|
"keepalive": config.get("Peers", "peer_keep_alive"),
|
2021-12-29 18:17:44 +01:00
|
|
|
"remote_endpoint": config.get("Peers", "remote_endpoint"),
|
|
|
|
"preshared_key": ""
|
|
|
|
}
|
|
|
|
if "PresharedKey" in i.keys():
|
|
|
|
new_data["preshared_key"] = i["PresharedKey"]
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute(
|
|
|
|
"INSERT INTO " + config_name + " VALUES (:id, :private_key, :DNS, :endpoint_allowed_ip, :name, :total_receive, :total_sent, :total_data, :endpoint, :status, :latest_handshake, :allowed_ip, :cumu_receive, :cumu_sent, :cumu_data, :mtu, :keepalive, :remote_endpoint, :preshared_key)",
|
|
|
|
new_data)
|
2021-08-05 06:45:15 +02:00
|
|
|
else:
|
2022-01-02 20:44:27 +01:00
|
|
|
pass
|
|
|
|
|
2021-08-25 03:04:01 +02:00
|
|
|
# Remove peers no longer exist in WireGuard configuration file
|
2022-01-02 20:44:27 +01:00
|
|
|
db_key = list(map(lambda a: a[0], g.cur.execute("SELECT id FROM %s" % config_name)))
|
2021-08-25 03:04:01 +02:00
|
|
|
wg_key = list(map(lambda a: a['PublicKey'], conf_peer_data['Peers']))
|
|
|
|
for i in db_key:
|
|
|
|
if i not in wg_key:
|
2022-01-02 20:44:27 +01:00
|
|
|
g.cur.execute("DELETE FROM %s WHERE id = '%s'" % (config_name, i))
|
2021-07-02 19:23:04 +02:00
|
|
|
tic = time.perf_counter()
|
2022-01-02 20:44:27 +01:00
|
|
|
get_latest_handshake(config_name)
|
|
|
|
get_transfer(config_name)
|
|
|
|
get_endpoint(config_name)
|
|
|
|
get_allowed_ip(conf_peer_data, config_name)
|
2021-07-02 19:23:04 +02:00
|
|
|
toc = time.perf_counter()
|
|
|
|
print(f"Finish fetching data in {toc - tic:0.4f} seconds")
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Search for peers
|
2021-08-14 23:13:16 +02:00
|
|
|
def get_peers(config_name, search, sort_t):
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Frontend Related Functions
|
|
|
|
"""
|
2022-01-02 20:44:27 +01:00
|
|
|
tic = time.perf_counter()
|
|
|
|
col = g.cur.execute("PRAGMA table_info(" + config_name + ")").fetchall()
|
|
|
|
col = [a[1] for a in col]
|
|
|
|
# col = ['id', 'private_key', 'DNS', 'endpoint_allowed_ip', 'name', 'total_receive',
|
|
|
|
# 'total_sent', 'total_data', 'endpoint', 'status', 'latest_handshake', 'allowed_ip',
|
|
|
|
# 'cumu_receive', 'cumu_sent', 'cumu_data', 'mtu', 'keepalive', 'remote_endpoint', 'preshared_key']
|
2021-08-14 23:13:16 +02:00
|
|
|
get_all_peers_data(config_name)
|
|
|
|
if len(search) == 0:
|
2022-01-02 20:44:27 +01:00
|
|
|
data = g.cur.execute("SELECT * FROM " + config_name).fetchall()
|
|
|
|
result = [{col[i]: data[k][i] for i in range(len(col))} for k in range(len(data))]
|
2021-08-14 23:13:16 +02:00
|
|
|
else:
|
2022-01-04 22:32:23 +01:00
|
|
|
sql = "SELECT * FROM " + config_name + " WHERE name LIKE '%" + search + "%'"
|
2022-01-02 20:44:27 +01:00
|
|
|
data = g.cur.execute(sql).fetchall()
|
|
|
|
result = [{col[i]: data[k][i] for i in range(len(col))} for k in range(len(data))]
|
2021-12-24 03:26:24 +01:00
|
|
|
if sort_t == "allowed_ip":
|
2021-12-26 00:26:39 +01:00
|
|
|
result = sorted(result, key=lambda d: ipaddress.ip_network(d[sort_t].split(",")[0]))
|
2021-12-24 03:26:24 +01:00
|
|
|
else:
|
|
|
|
result = sorted(result, key=lambda d: d[sort_t])
|
2022-01-02 20:44:27 +01:00
|
|
|
toc = time.perf_counter()
|
|
|
|
print(f"Finish fetching peers in {toc - tic:0.4f} seconds")
|
2021-04-03 02:48:00 +02:00
|
|
|
return result
|
2020-10-18 07:10:13 +02:00
|
|
|
|
2021-08-14 23:13:16 +02:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get configuration public key
|
2020-10-18 07:10:13 +02:00
|
|
|
def get_conf_pub_key(config_name):
|
2021-12-29 20:57:44 +01:00
|
|
|
try:
|
|
|
|
conf = configparser.ConfigParser(strict=False)
|
|
|
|
conf.read(wg_conf_path + "/" + config_name + ".conf")
|
|
|
|
pri = conf.get("Interface", "PrivateKey")
|
|
|
|
pub = subprocess.run(f"echo '{pri}' | wg pubkey", check=True, shell=True, capture_output=True).stdout
|
|
|
|
conf.clear()
|
|
|
|
return pub.decode().strip("\n")
|
|
|
|
except configparser.NoSectionError as e:
|
|
|
|
return ""
|
2020-10-18 07:10:13 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get configuration listen port
|
2020-10-18 07:10:13 +02:00
|
|
|
def get_conf_listen_port(config_name):
|
2021-05-04 07:32:34 +02:00
|
|
|
conf = configparser.ConfigParser(strict=False)
|
2021-05-05 03:26:40 +02:00
|
|
|
conf.read(wg_conf_path + "/" + config_name + ".conf")
|
2021-09-08 18:39:25 +02:00
|
|
|
port = ""
|
|
|
|
try:
|
|
|
|
port = conf.get("Interface", "ListenPort")
|
2021-12-26 00:26:39 +01:00
|
|
|
except (configparser.NoSectionError, configparser.NoOptionError):
|
2021-09-08 18:39:25 +02:00
|
|
|
if get_conf_status(config_name) == "running":
|
2021-12-26 00:26:39 +01:00
|
|
|
port = subprocess.run(f"wg show {config_name} listen-port",
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
2021-09-08 18:39:25 +02:00
|
|
|
port = port.decode("UTF-8")
|
2021-05-04 07:32:34 +02:00
|
|
|
conf.clear()
|
|
|
|
return port
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get configuration total data
|
2020-10-18 07:10:13 +02:00
|
|
|
def get_conf_total_data(config_name):
|
2022-01-02 20:44:27 +01:00
|
|
|
data = g.cur.execute("SELECT total_sent, total_receive, cumu_sent, cumu_receive FROM " + config_name)
|
2020-10-18 07:10:13 +02:00
|
|
|
upload_total = 0
|
|
|
|
download_total = 0
|
2022-01-02 20:44:27 +01:00
|
|
|
for i in data.fetchall():
|
|
|
|
upload_total += i[0]
|
|
|
|
download_total += i[1]
|
|
|
|
upload_total += i[2]
|
|
|
|
download_total += i[3]
|
2021-04-09 06:07:37 +02:00
|
|
|
total = round(upload_total + download_total, 4)
|
2021-05-14 00:00:40 +02:00
|
|
|
upload_total = round(upload_total, 4)
|
|
|
|
download_total = round(download_total, 4)
|
2020-10-18 07:10:13 +02:00
|
|
|
return [total, upload_total, download_total]
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get configuration status
|
2020-10-18 07:10:13 +02:00
|
|
|
def get_conf_status(config_name):
|
2021-04-09 06:07:37 +02:00
|
|
|
ifconfig = dict(ifcfg.interfaces().items())
|
2021-12-28 20:53:51 +01:00
|
|
|
|
|
|
|
return "running" if config_name in ifconfig.keys() else "stopped"
|
2020-10-18 07:10:13 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get all configuration as a list
|
2020-10-18 07:10:13 +02:00
|
|
|
def get_conf_list():
|
|
|
|
conf = []
|
2021-05-05 03:26:40 +02:00
|
|
|
for i in os.listdir(wg_conf_path):
|
2021-09-08 18:39:25 +02:00
|
|
|
if regex_match("^(.{1,}).(conf)$", i):
|
2021-08-05 06:45:15 +02:00
|
|
|
i = i.replace('.conf', '')
|
2022-01-04 22:32:23 +01:00
|
|
|
create_table = f"""
|
|
|
|
CREATE TABLE IF NOT EXISTS {i} (
|
|
|
|
id VARCHAR NOT NULL, private_key VARCHAR NULL, DNS VARCHAR NULL,
|
|
|
|
endpoint_allowed_ip VARCHAR NULL, name VARCHAR NULL, total_receive FLOAT NULL,
|
|
|
|
total_sent FLOAT NULL, total_data FLOAT NULL, endpoint VARCHAR NULL,
|
|
|
|
status VARCHAR NULL, latest_handshake VARCHAR NULL, allowed_ip VARCHAR NULL,
|
|
|
|
cumu_receive FLOAT NULL, cumu_sent FLOAT NULL, cumu_data FLOAT NULL, mtu INT NULL,
|
|
|
|
keepalive INT NULL, remote_endpoint VARCHAR NULL, preshared_key VARCHAR NULL,
|
|
|
|
PRIMARY KEY (id)
|
|
|
|
)
|
|
|
|
"""
|
|
|
|
g.cur.execute(create_table)
|
2021-08-05 06:45:15 +02:00
|
|
|
temp = {"conf": i, "status": get_conf_status(i), "public_key": get_conf_pub_key(i)}
|
|
|
|
if temp['status'] == "running":
|
|
|
|
temp['checked'] = 'checked'
|
|
|
|
else:
|
|
|
|
temp['checked'] = ""
|
|
|
|
conf.append(temp)
|
2021-07-02 19:23:04 +02:00
|
|
|
if len(conf) > 0:
|
|
|
|
conf = sorted(conf, key=itemgetter('conf'))
|
2020-10-18 07:10:13 +02:00
|
|
|
return conf
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Generate private key
|
|
|
|
def gen_private_key():
|
2021-08-06 05:15:50 +02:00
|
|
|
gen = subprocess.check_output('wg genkey > private_key.txt && wg pubkey < private_key.txt > public_key.txt',
|
|
|
|
shell=True)
|
2021-12-28 20:53:51 +01:00
|
|
|
with open('private_key.txt', encoding='utf-8') as file_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
private_key = file_object.readline().strip()
|
2021-12-28 20:53:51 +01:00
|
|
|
with open('public_key.txt', encoding='utf-8') as file_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
public_key = file_object.readline().strip()
|
2022-01-04 22:32:23 +01:00
|
|
|
data = {"private_key": private_key, "public_key": public_key}
|
2021-08-06 05:15:50 +02:00
|
|
|
return data
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Generate public key
|
|
|
|
def gen_public_key(private_key):
|
2021-12-28 20:53:51 +01:00
|
|
|
with open('private_key.txt', 'w', encoding='utf-8') as file_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
file_object.write(private_key)
|
2021-08-06 05:15:50 +02:00
|
|
|
try:
|
2021-12-29 22:15:00 +01:00
|
|
|
check = subprocess.check_output("wg pubkey < private_key.txt > public_key.txt", shell=True)
|
2021-12-28 20:53:51 +01:00
|
|
|
with open('public_key.txt', encoding='utf-8') as file_object:
|
2021-12-26 11:04:39 +01:00
|
|
|
public_key = file_object.readline().strip()
|
2021-08-06 05:15:50 +02:00
|
|
|
os.remove('private_key.txt')
|
|
|
|
os.remove('public_key.txt')
|
2021-08-14 23:13:16 +02:00
|
|
|
return {"status": 'success', "msg": "", "data": public_key}
|
2021-12-26 00:26:39 +01:00
|
|
|
except subprocess.CalledProcessError:
|
2021-08-06 05:15:50 +02:00
|
|
|
os.remove('private_key.txt')
|
2021-08-14 23:13:16 +02:00
|
|
|
return {"status": 'failed', "msg": "Key is not the correct length or format", "data": ""}
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Check if private key and public key match
|
2021-12-28 20:53:51 +01:00
|
|
|
def f_check_key_match(private_key, public_key, config_name):
|
2021-09-08 18:39:25 +02:00
|
|
|
result = gen_public_key(private_key)
|
2021-08-06 05:15:50 +02:00
|
|
|
if result['status'] == 'failed':
|
|
|
|
return result
|
|
|
|
else:
|
2022-01-02 20:44:27 +01:00
|
|
|
sql = "SELECT * FROM " + config_name + " WHERE id = ?"
|
|
|
|
match = g.cur.execute(sql, (result['data'],)).fetchall()
|
2021-08-06 05:15:50 +02:00
|
|
|
if len(match) != 1 or result['data'] != public_key:
|
|
|
|
return {'status': 'failed', 'msg': 'Please check your private key, it does not match with the public key.'}
|
|
|
|
else:
|
|
|
|
return {'status': 'success'}
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Check if there is repeated allowed IP
|
2021-12-28 20:53:51 +01:00
|
|
|
def check_repeat_allowed_ip(public_key, ip, config_name):
|
2022-01-02 20:44:27 +01:00
|
|
|
peer = g.cur.execute("SELECT COUNT(*) FROM " + config_name + " WHERE id = ?", (public_key,)).fetchone()
|
|
|
|
if peer[0] != 1:
|
2021-08-06 05:15:50 +02:00
|
|
|
return {'status': 'failed', 'msg': 'Peer does not exist'}
|
|
|
|
else:
|
2022-01-02 20:44:27 +01:00
|
|
|
existed_ip = g.cur.execute("SELECT COUNT(*) FROM " +
|
2022-01-06 21:17:43 +01:00
|
|
|
config_name + " WHERE id != ? AND allowed_ip LIKE '" + ip + "/%'", (public_key,))\
|
|
|
|
.fetchone()
|
2022-01-02 20:44:27 +01:00
|
|
|
if existed_ip[0] != 0:
|
2021-08-14 23:13:16 +02:00
|
|
|
return {'status': 'failed', 'msg': "Allowed IP already taken by another peer."}
|
2021-08-06 05:15:50 +02:00
|
|
|
else:
|
2021-08-14 23:13:16 +02:00
|
|
|
return {'status': 'success'}
|
|
|
|
|
2021-08-15 05:30:05 +02:00
|
|
|
|
2022-01-06 21:17:43 +01:00
|
|
|
def f_available_ips(config_name):
|
|
|
|
config_interface = read_conf_file_interface(config_name)
|
|
|
|
if "Address" in config_interface:
|
|
|
|
existed = []
|
|
|
|
conf_address = config_interface['Address']
|
|
|
|
address = conf_address.split(',')
|
|
|
|
for i in address:
|
|
|
|
add, sub = i.split("/")
|
|
|
|
existed.append(ipaddress.ip_address(add))
|
|
|
|
peers = g.cur.execute("SELECT allowed_ip FROM " + config_name).fetchall()
|
|
|
|
for i in peers:
|
|
|
|
add = i[0].split(",")
|
|
|
|
for k in add:
|
|
|
|
a, s = k.split("/")
|
|
|
|
existed.append(ipaddress.ip_address(a))
|
|
|
|
available = list(ipaddress.ip_network(address[0], False).hosts())
|
|
|
|
for i in existed:
|
|
|
|
try:
|
|
|
|
available.remove(i)
|
|
|
|
except ValueError as e:
|
|
|
|
pass
|
|
|
|
available = [str(i) for i in available]
|
|
|
|
return available
|
|
|
|
else:
|
|
|
|
return []
|
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
"""
|
|
|
|
Flask Functions
|
|
|
|
"""
|
2021-08-14 23:13:16 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
@app.teardown_request
|
|
|
|
def close_DB(exception):
|
|
|
|
if hasattr(g, 'db'):
|
|
|
|
g.db.commit()
|
|
|
|
g.db.close()
|
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Before request
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.before_request
|
|
|
|
def auth_req():
|
2022-01-02 20:44:27 +01:00
|
|
|
if getattr(g, 'db', None) is None:
|
|
|
|
g.db = connect_db()
|
|
|
|
g.cur = g.db.cursor()
|
2021-12-29 21:29:29 +01:00
|
|
|
conf = get_dashboard_conf()
|
2021-05-04 07:32:34 +02:00
|
|
|
req = conf.get("Server", "auth_req")
|
2021-12-28 20:53:51 +01:00
|
|
|
session['update'] = UPDATE
|
|
|
|
session['dashboard_version'] = DASHBOARD_VERSION
|
2021-05-04 07:32:34 +02:00
|
|
|
if req == "true":
|
|
|
|
if '/static/' not in request.path and \
|
|
|
|
request.endpoint != "signin" and \
|
|
|
|
request.endpoint != "signout" and \
|
|
|
|
request.endpoint != "auth" and \
|
|
|
|
"username" not in session:
|
2021-08-14 23:13:16 +02:00
|
|
|
print("User not loggedin - Attemped access: " + str(request.endpoint))
|
2021-08-06 05:15:50 +02:00
|
|
|
if request.endpoint != "index":
|
|
|
|
session['message'] = "You need to sign in first!"
|
|
|
|
else:
|
|
|
|
session['message'] = ""
|
2021-12-29 21:29:29 +01:00
|
|
|
conf.clear()
|
2021-05-04 07:32:34 +02:00
|
|
|
return redirect(url_for("signin"))
|
|
|
|
else:
|
2021-05-14 00:00:40 +02:00
|
|
|
if request.endpoint in ['signin', 'signout', 'auth', 'settings', 'update_acct', 'update_pwd',
|
|
|
|
'update_app_ip_port', 'update_wg_conf_path']:
|
2021-12-29 21:29:29 +01:00
|
|
|
conf.clear()
|
2021-05-04 07:32:34 +02:00
|
|
|
return redirect(url_for("index"))
|
2021-12-29 21:29:29 +01:00
|
|
|
conf.clear()
|
2021-12-28 20:53:51 +01:00
|
|
|
return None
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
"""
|
|
|
|
Sign In / Sign Out
|
|
|
|
"""
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
|
|
|
|
# Sign In
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/signin', methods=['GET'])
|
|
|
|
def signin():
|
|
|
|
message = ""
|
|
|
|
if "message" in session:
|
|
|
|
message = session['message']
|
|
|
|
session.pop("message")
|
|
|
|
return render_template('signin.html', message=message)
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
# Sign Out
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/signout', methods=['GET'])
|
|
|
|
def signout():
|
|
|
|
if "username" in session:
|
|
|
|
session.pop("username")
|
|
|
|
message = "Sign out successfully!"
|
|
|
|
return render_template('signin.html', message=message)
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Authentication
|
|
|
|
@app.route('/auth', methods=['POST'])
|
|
|
|
def auth():
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-09-08 18:39:25 +02:00
|
|
|
password = hashlib.sha256(request.form['password'].encode())
|
2021-12-26 00:26:39 +01:00
|
|
|
if password.hexdigest() == config["Account"]["password"] \
|
|
|
|
and request.form['username'] == config["Account"]["username"]:
|
2021-09-08 18:39:25 +02:00
|
|
|
session['username'] = request.form['username']
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("index"))
|
2021-12-28 20:53:51 +01:00
|
|
|
|
|
|
|
session['message'] = "Username or Password is incorrect."
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("signin"))
|
2021-09-08 18:39:25 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
@app.route('/', methods=['GET'])
|
|
|
|
def index():
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Index Page Related
|
|
|
|
"""
|
2021-09-08 18:39:25 +02:00
|
|
|
return render_template('index.html', conf=get_conf_list())
|
2021-05-04 07:32:34 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Setting Page
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/settings', methods=['GET'])
|
|
|
|
def settings():
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Setting Page Related
|
|
|
|
"""
|
2021-05-04 07:32:34 +02:00
|
|
|
message = ""
|
|
|
|
status = ""
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-05-04 07:32:34 +02:00
|
|
|
if "message" in session and "message_status" in session:
|
|
|
|
message = session['message']
|
|
|
|
status = session['message_status']
|
|
|
|
session.pop("message")
|
|
|
|
session.pop("message_status")
|
|
|
|
required_auth = config.get("Server", "auth_req")
|
2021-05-14 00:00:40 +02:00
|
|
|
return render_template('settings.html', conf=get_conf_list(), message=message, status=status,
|
|
|
|
app_ip=config.get("Server", "app_ip"), app_port=config.get("Server", "app_port"),
|
2021-08-14 23:13:16 +02:00
|
|
|
required_auth=required_auth, wg_conf_path=config.get("Server", "wg_conf_path"),
|
2021-08-15 05:30:05 +02:00
|
|
|
peer_global_DNS=config.get("Peers", "peer_global_DNS"),
|
2021-09-08 18:39:25 +02:00
|
|
|
peer_endpoint_allowed_ip=config.get("Peers", "peer_endpoint_allowed_ip"),
|
|
|
|
peer_mtu=config.get("Peers", "peer_mtu"),
|
2021-12-26 00:26:39 +01:00
|
|
|
peer_keepalive=config.get("Peers", "peer_keep_alive"),
|
|
|
|
peer_remote_endpoint=config.get("Peers", "remote_endpoint"))
|
|
|
|
|
2021-05-14 00:00:40 +02:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update account username
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/update_acct', methods=['POST'])
|
|
|
|
def update_acct():
|
2021-08-14 23:13:16 +02:00
|
|
|
if len(request.form['username']) == 0:
|
|
|
|
session['message'] = "Username cannot be empty."
|
|
|
|
session['message_status'] = "danger"
|
|
|
|
return redirect(url_for("settings"))
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-05-04 07:32:34 +02:00
|
|
|
config.set("Account", "username", request.form['username'])
|
|
|
|
try:
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-05-04 07:32:34 +02:00
|
|
|
session['message'] = "Username update successfully!"
|
|
|
|
session['message_status'] = "success"
|
|
|
|
session['username'] = request.form['username']
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
except Exception:
|
|
|
|
session['message'] = "Username update failed."
|
|
|
|
session['message_status'] = "danger"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update peer default settting
|
2021-08-14 23:13:16 +02:00
|
|
|
@app.route('/update_peer_default_config', methods=['POST'])
|
|
|
|
def update_peer_default_config():
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-09-08 18:39:25 +02:00
|
|
|
if len(request.form['peer_endpoint_allowed_ip']) == 0 or \
|
|
|
|
len(request.form['peer_global_DNS']) == 0 or \
|
|
|
|
len(request.form['peer_remote_endpoint']) == 0:
|
|
|
|
session['message'] = "Please fill in all required boxes."
|
2021-08-14 23:13:16 +02:00
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return redirect(url_for("settings"))
|
|
|
|
# Check DNS Format
|
2021-12-26 00:26:39 +01:00
|
|
|
dns_addresses = request.form['peer_global_DNS']
|
|
|
|
if not check_DNS(dns_addresses):
|
2021-09-08 18:39:25 +02:00
|
|
|
session['message'] = "Peer DNS Format Incorrect."
|
2021-08-14 23:13:16 +02:00
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return redirect(url_for("settings"))
|
2021-12-26 00:26:39 +01:00
|
|
|
dns_addresses = dns_addresses.replace(" ", "").split(',')
|
|
|
|
dns_addresses = ",".join(dns_addresses)
|
2021-08-14 23:13:16 +02:00
|
|
|
# Check Endpoint Allowed IPs
|
|
|
|
ip = request.form['peer_endpoint_allowed_ip']
|
2021-09-08 18:39:25 +02:00
|
|
|
if not check_Allowed_IPs(ip):
|
2021-12-26 00:26:39 +01:00
|
|
|
session['message'] = "Peer Endpoint Allowed IPs Format Incorrect. " \
|
|
|
|
"Example: 192.168.1.1/32 or 192.168.1.1/32,192.168.1.2/32"
|
2021-09-08 18:39:25 +02:00
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-09-08 18:39:25 +02:00
|
|
|
return redirect(url_for("settings"))
|
|
|
|
# Check MTU Format
|
2021-12-26 11:04:39 +01:00
|
|
|
if not len(request.form['peer_mtu']) > 0 or not request.form['peer_mtu'].isdigit():
|
|
|
|
session['message'] = "MTU format is incorrect."
|
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-12-26 11:04:39 +01:00
|
|
|
return redirect(url_for("settings"))
|
2021-09-08 18:39:25 +02:00
|
|
|
# Check keepalive Format
|
2021-12-26 11:04:39 +01:00
|
|
|
if not len(request.form['peer_keep_alive']) > 0 or not request.form['peer_keep_alive'].isdigit():
|
|
|
|
session['message'] = "Persistent keepalive format is incorrect."
|
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-12-26 11:04:39 +01:00
|
|
|
return redirect(url_for("settings"))
|
2021-09-08 18:39:25 +02:00
|
|
|
# Check peer remote endpoint
|
|
|
|
if not check_remote_endpoint(request.form['peer_remote_endpoint']):
|
2021-12-26 00:26:39 +01:00
|
|
|
session['message'] = "Peer Remote Endpoint format is incorrect. It can only be a valid " \
|
|
|
|
"IP address or valid domain (without http:// or https://). "
|
2021-08-14 23:13:16 +02:00
|
|
|
session['message_status'] = "danger"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return redirect(url_for("settings"))
|
2021-09-08 18:39:25 +02:00
|
|
|
config.set("Peers", "remote_endpoint", request.form['peer_remote_endpoint'])
|
|
|
|
config.set("Peers", "peer_keep_alive", request.form['peer_keep_alive'])
|
|
|
|
config.set("Peers", "peer_mtu", request.form['peer_mtu'])
|
|
|
|
config.set("Peers", "peer_endpoint_allowed_ip", ','.join(clean_IP_with_range(ip)))
|
2021-12-26 00:26:39 +01:00
|
|
|
config.set("Peers", "peer_global_DNS", dns_addresses)
|
2021-08-14 23:13:16 +02:00
|
|
|
try:
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
session['message'] = "Peer Default Settings update successfully!"
|
|
|
|
session['message_status'] = "success"
|
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return redirect(url_for("settings"))
|
|
|
|
except Exception:
|
2021-09-08 18:39:25 +02:00
|
|
|
session['message'] = "Peer Default Settings update failed."
|
2021-08-14 23:13:16 +02:00
|
|
|
session['message_status'] = "danger"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update dashboard password
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/update_pwd', methods=['POST'])
|
|
|
|
def update_pwd():
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-05-04 07:32:34 +02:00
|
|
|
if hashlib.sha256(request.form['currentpass'].encode()).hexdigest() == config.get("Account", "password"):
|
2021-05-14 00:00:40 +02:00
|
|
|
if hashlib.sha256(request.form['newpass'].encode()).hexdigest() == hashlib.sha256(
|
|
|
|
request.form['repnewpass'].encode()).hexdigest():
|
2021-05-04 07:32:34 +02:00
|
|
|
config.set("Account", "password", hashlib.sha256(request.form['repnewpass'].encode()).hexdigest())
|
|
|
|
try:
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
session['message'] = "Password update successfully!"
|
|
|
|
session['message_status'] = "success"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
2021-05-04 07:32:34 +02:00
|
|
|
except Exception:
|
|
|
|
session['message'] = "Password update failed"
|
|
|
|
session['message_status'] = "danger"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
else:
|
|
|
|
session['message'] = "Your New Password does not match."
|
|
|
|
session['message_status'] = "danger"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
else:
|
|
|
|
session['message'] = "Your Password does not match."
|
|
|
|
session['message_status'] = "danger"
|
|
|
|
config.clear()
|
|
|
|
return redirect(url_for("settings"))
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update dashboard IP and port
|
2021-05-04 07:32:34 +02:00
|
|
|
@app.route('/update_app_ip_port', methods=['POST'])
|
|
|
|
def update_app_ip_port():
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-05-04 07:32:34 +02:00
|
|
|
config.set("Server", "app_ip", request.form['app_ip'])
|
|
|
|
config.set("Server", "app_port", request.form['app_port'])
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-05-04 07:32:34 +02:00
|
|
|
os.system('bash wgd.sh restart')
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update WireGuard configuration file path
|
2021-05-05 03:26:40 +02:00
|
|
|
@app.route('/update_wg_conf_path', methods=['POST'])
|
|
|
|
def update_wg_conf_path():
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-05-05 03:26:40 +02:00
|
|
|
config.set("Server", "wg_conf_path", request.form['wg_conf_path'])
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-05-05 03:26:40 +02:00
|
|
|
session['message'] = "WireGuard Configuration Path Update Successfully!"
|
|
|
|
session['message_status'] = "success"
|
|
|
|
os.system('bash wgd.sh restart')
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update configuration sorting
|
2021-08-14 23:13:16 +02:00
|
|
|
@app.route('/update_dashboard_sort', methods=['POST'])
|
|
|
|
def update_dashbaord_sort():
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Configuration Page Related
|
|
|
|
"""
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-08-14 23:13:16 +02:00
|
|
|
data = request.get_json()
|
|
|
|
sort_tag = ['name', 'status', 'allowed_ip']
|
|
|
|
if data['sort'] in sort_tag:
|
|
|
|
config.set("Server", "dashboard_sort", data['sort'])
|
|
|
|
else:
|
|
|
|
config.set("Server", "dashboard_sort", 'status')
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return "true"
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Update configuration refresh interval
|
2021-05-14 00:00:40 +02:00
|
|
|
@app.route('/update_dashboard_refresh_interval', methods=['POST'])
|
|
|
|
def update_dashboard_refresh_interval():
|
2021-12-29 18:17:44 +01:00
|
|
|
preset_interval = ["5000", "10000", "30000", "60000"]
|
|
|
|
if request.form["interval"] in preset_interval:
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-12-29 18:17:44 +01:00
|
|
|
config.set("Server", "dashboard_refresh_interval", str(request.form['interval']))
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-12-29 18:17:44 +01:00
|
|
|
return "true"
|
|
|
|
else:
|
|
|
|
return "false"
|
2021-05-14 00:00:40 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Configuration Page
|
2020-10-18 07:10:13 +02:00
|
|
|
@app.route('/configuration/<config_name>', methods=['GET'])
|
2021-12-28 20:53:51 +01:00
|
|
|
def configuration(config_name):
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-04-03 02:48:00 +02:00
|
|
|
conf_data = {
|
|
|
|
"name": config_name,
|
|
|
|
"status": get_conf_status(config_name),
|
|
|
|
"checked": ""
|
|
|
|
}
|
|
|
|
if conf_data['status'] == "stopped":
|
2021-05-04 07:32:34 +02:00
|
|
|
conf_data['checked'] = "nope"
|
2021-04-03 02:48:00 +02:00
|
|
|
else:
|
|
|
|
conf_data['checked'] = "checked"
|
2021-07-02 19:23:04 +02:00
|
|
|
config_list = get_conf_list()
|
|
|
|
if config_name not in [conf['conf'] for conf in config_list]:
|
|
|
|
return render_template('index.html', conf=get_conf_list())
|
2021-12-29 21:29:29 +01:00
|
|
|
|
|
|
|
refresh_interval = int(config.get("Server", "dashboard_refresh_interval"))
|
|
|
|
dns_address = config.get("Peers", "peer_global_DNS")
|
|
|
|
allowed_ip = config.get("Peers", "peer_endpoint_allowed_ip")
|
|
|
|
peer_mtu = config.get("Peers", "peer_MTU")
|
|
|
|
peer_keep_alive = config.get("Peers", "peer_keep_alive")
|
|
|
|
config.clear()
|
2021-08-14 23:13:16 +02:00
|
|
|
return render_template('configuration.html', conf=get_conf_list(), conf_data=conf_data,
|
2021-12-29 21:29:29 +01:00
|
|
|
dashboard_refresh_interval=refresh_interval,
|
|
|
|
DNS=dns_address,
|
|
|
|
endpoint_allowed_ip=allowed_ip,
|
2021-09-08 18:39:25 +02:00
|
|
|
title=config_name,
|
2021-12-29 21:29:29 +01:00
|
|
|
mtu=peer_mtu,
|
|
|
|
keep_alive=peer_keep_alive)
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get configuration details
|
2021-04-03 02:48:00 +02:00
|
|
|
@app.route('/get_config/<config_name>', methods=['GET'])
|
|
|
|
def get_conf(config_name):
|
2021-08-15 05:30:05 +02:00
|
|
|
config_interface = read_conf_file_interface(config_name)
|
2021-08-14 23:13:16 +02:00
|
|
|
search = request.args.get('search')
|
2021-12-28 03:01:02 +01:00
|
|
|
if len(search) == 0:
|
2021-12-26 00:26:39 +01:00
|
|
|
search = ""
|
2021-08-14 23:13:16 +02:00
|
|
|
search = urllib.parse.unquote(search)
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-08-14 23:13:16 +02:00
|
|
|
sort = config.get("Server", "dashboard_sort")
|
2021-09-03 23:32:51 +02:00
|
|
|
peer_display_mode = config.get("Peers", "peer_display_mode")
|
2022-01-02 20:44:27 +01:00
|
|
|
wg_ip = config.get("Peers", "remote_endpoint")
|
2021-12-28 20:53:51 +01:00
|
|
|
if "Address" not in config_interface:
|
2021-09-08 18:39:25 +02:00
|
|
|
conf_address = "N/A"
|
|
|
|
else:
|
|
|
|
conf_address = config_interface['Address']
|
2020-10-18 07:10:13 +02:00
|
|
|
conf_data = {
|
2021-08-14 23:13:16 +02:00
|
|
|
"peer_data": get_peers(config_name, search, sort),
|
2020-10-18 07:10:13 +02:00
|
|
|
"name": config_name,
|
|
|
|
"status": get_conf_status(config_name),
|
|
|
|
"total_data_usage": get_conf_total_data(config_name),
|
|
|
|
"public_key": get_conf_pub_key(config_name),
|
|
|
|
"listen_port": get_conf_listen_port(config_name),
|
2020-12-26 06:17:42 +01:00
|
|
|
"running_peer": get_conf_running_peer_number(config_name),
|
2021-12-28 03:01:02 +01:00
|
|
|
"conf_address": conf_address,
|
2021-12-30 21:21:25 +01:00
|
|
|
"wg_ip": wg_ip,
|
2021-12-28 03:01:02 +01:00
|
|
|
"sort_tag": sort,
|
|
|
|
"dashboard_refresh_interval": int(config.get("Server", "dashboard_refresh_interval")),
|
|
|
|
"peer_display_mode": peer_display_mode
|
2020-10-18 07:10:13 +02:00
|
|
|
}
|
2020-10-18 18:23:38 +02:00
|
|
|
if conf_data['status'] == "stopped":
|
2021-05-04 07:32:34 +02:00
|
|
|
conf_data['checked'] = "nope"
|
2020-10-18 18:23:38 +02:00
|
|
|
else:
|
|
|
|
conf_data['checked'] = "checked"
|
2021-12-29 21:29:29 +01:00
|
|
|
config.clear()
|
2021-12-28 03:01:02 +01:00
|
|
|
return jsonify(conf_data)
|
2020-10-18 18:23:38 +02:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Turn on / off a configuration
|
2020-10-18 18:23:38 +02:00
|
|
|
@app.route('/switch/<config_name>', methods=['GET'])
|
|
|
|
def switch(config_name):
|
2021-05-04 07:32:34 +02:00
|
|
|
if "username" not in session:
|
2022-01-02 20:44:27 +01:00
|
|
|
print("User not logged in")
|
2021-05-04 07:32:34 +02:00
|
|
|
return redirect(url_for("signin"))
|
2020-10-18 18:23:38 +02:00
|
|
|
status = get_conf_status(config_name)
|
|
|
|
if status == "running":
|
2021-04-03 20:06:21 +02:00
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
subprocess.run("wg-quick down " + config_name,
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-04-03 20:06:21 +02:00
|
|
|
return redirect('/')
|
2020-10-18 18:23:38 +02:00
|
|
|
elif status == "stopped":
|
2021-04-03 20:06:21 +02:00
|
|
|
try:
|
2021-12-26 00:26:39 +01:00
|
|
|
subprocess.run("wg-quick up " + config_name,
|
|
|
|
check=True, shell=True, capture_output=True).stdout
|
|
|
|
except subprocess.CalledProcessError:
|
2021-04-03 20:06:21 +02:00
|
|
|
return redirect('/')
|
2021-05-05 03:26:40 +02:00
|
|
|
return redirect(request.referrer)
|
2020-10-18 18:23:38 +02:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
|
2022-01-06 21:17:43 +01:00
|
|
|
@app.route('/add_peer_bulk/<config_name>', methods=['POST'])
|
|
|
|
def add_peer_bulk(config_name):
|
|
|
|
data = request.get_json()
|
|
|
|
keys = data['keys']
|
|
|
|
endpoint_allowed_ip = data['endpoint_allowed_ip']
|
|
|
|
dns_addresses = data['DNS']
|
|
|
|
enable_preshared_key = data["enable_preshared_key"]
|
|
|
|
amount = data['amount']
|
|
|
|
if not amount.isdigit() or int(amount) < 1:
|
|
|
|
return "Amount must be integer larger than 0"
|
|
|
|
amount = int(amount)
|
|
|
|
if not check_DNS(dns_addresses):
|
|
|
|
return "DNS formate is incorrect. Example: 1.1.1.1"
|
|
|
|
if not check_Allowed_IPs(endpoint_allowed_ip):
|
|
|
|
return "Endpoint Allowed IPs format is incorrect."
|
|
|
|
if len(data['MTU']) == 0 or not data['MTU'].isdigit():
|
|
|
|
return "MTU format is not correct."
|
|
|
|
if len(data['keep_alive']) == 0 or not data['keep_alive'].isdigit():
|
|
|
|
return "Persistent Keepalive format is not correct."
|
|
|
|
ips = f_available_ips(config_name)
|
|
|
|
wg_command = ["wg", "set", config_name]
|
|
|
|
sql_command = []
|
|
|
|
for i in range(amount):
|
|
|
|
keys[i]['name'] = f"{config_name}_{datetime.now().strftime('%m%d%Y%H%M%S')}_Peer_#_{(i + 1)}"
|
|
|
|
wg_command.append("peer")
|
|
|
|
wg_command.append(keys[i]['publicKey'])
|
|
|
|
keys[i]['allowed_ips'] = ips.pop(0)
|
|
|
|
if enable_preshared_key:
|
|
|
|
keys[i]['psk_file'] = f"{keys[i]['name']}.txt"
|
|
|
|
f = open(keys[i]['psk_file'], "w+")
|
|
|
|
f.write(keys[i]['presharedKey'])
|
|
|
|
f.close()
|
|
|
|
wg_command.append("preshared-key")
|
|
|
|
wg_command.append(keys[i]['psk_file'])
|
|
|
|
else:
|
|
|
|
keys[i]['psk_file'] = ""
|
|
|
|
wg_command.append("allowed-ips")
|
|
|
|
wg_command.append(keys[i]['allowed_ips'])
|
|
|
|
update = ["UPDATE ", config_name, " SET name = '", keys[i]['name'],
|
|
|
|
"', private_key = '", keys[i]['privateKey'], "', DNS = '", dns_addresses,
|
|
|
|
"', endpoint_allowed_ip = '", endpoint_allowed_ip, "' WHERE id = '", keys[i]['publicKey'], "'"]
|
|
|
|
sql_command.append(update)
|
|
|
|
try:
|
|
|
|
status = subprocess.check_output(" ".join(wg_command), shell=True, stderr=subprocess.STDOUT)
|
|
|
|
status = subprocess.check_output("wg-quick save " + config_name, shell=True, stderr=subprocess.STDOUT)
|
|
|
|
get_all_peers_data(config_name)
|
|
|
|
if enable_preshared_key:
|
|
|
|
for i in keys:
|
|
|
|
os.remove(i['psk_file'])
|
|
|
|
for i in range(len(sql_command)):
|
|
|
|
sql_command[i] = "".join(sql_command[i])
|
|
|
|
g.cur.executescript("; ".join(sql_command))
|
|
|
|
return "true"
|
|
|
|
except subprocess.CalledProcessError as exc:
|
|
|
|
return exc.output.strip()
|
|
|
|
|
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Add peer
|
2020-10-23 07:31:10 +02:00
|
|
|
@app.route('/add_peer/<config_name>', methods=['POST'])
|
|
|
|
def add_peer(config_name):
|
|
|
|
data = request.get_json()
|
|
|
|
public_key = data['public_key']
|
|
|
|
allowed_ips = data['allowed_ips']
|
2021-08-14 23:13:16 +02:00
|
|
|
endpoint_allowed_ip = data['endpoint_allowed_ip']
|
2021-12-29 20:56:19 +01:00
|
|
|
dns_addresses = data['DNS']
|
2021-12-29 18:17:44 +01:00
|
|
|
enable_preshared_key = data["enable_preshared_key"]
|
2022-01-06 21:17:43 +01:00
|
|
|
preshared_key = data['preshared_key']
|
2020-10-23 07:31:10 +02:00
|
|
|
keys = get_conf_peer_key(config_name)
|
2021-12-26 00:26:39 +01:00
|
|
|
if len(public_key) == 0 or len(dns_addresses) == 0 or len(allowed_ips) == 0 or len(endpoint_allowed_ip) == 0:
|
2021-08-15 05:30:05 +02:00
|
|
|
return "Please fill in all required box."
|
2021-12-28 20:53:51 +01:00
|
|
|
if not isinstance(keys, list):
|
2021-08-14 23:13:16 +02:00
|
|
|
return config_name + " is not running."
|
2020-10-23 07:31:10 +02:00
|
|
|
if public_key in keys:
|
2021-08-05 06:45:15 +02:00
|
|
|
return "Public key already exist."
|
2022-01-04 22:32:23 +01:00
|
|
|
check_dup_ip = g.cur.execute(
|
2022-01-06 21:17:43 +01:00
|
|
|
"SELECT COUNT(*) FROM " + config_name + " WHERE allowed_ip LIKE '" + allowed_ips + "/%'", ) \
|
2022-01-04 22:32:23 +01:00
|
|
|
.fetchone()
|
2022-01-02 20:44:27 +01:00
|
|
|
if check_dup_ip[0] != 0:
|
2021-08-06 05:15:50 +02:00
|
|
|
return "Allowed IP already taken by another peer."
|
2021-12-26 00:26:39 +01:00
|
|
|
if not check_DNS(dns_addresses):
|
2021-08-14 23:13:16 +02:00
|
|
|
return "DNS formate is incorrect. Example: 1.1.1.1"
|
2021-09-08 18:39:25 +02:00
|
|
|
if not check_Allowed_IPs(endpoint_allowed_ip):
|
2021-08-14 23:13:16 +02:00
|
|
|
return "Endpoint Allowed IPs format is incorrect."
|
2021-12-26 11:04:39 +01:00
|
|
|
if len(data['MTU']) == 0 or not data['MTU'].isdigit():
|
2022-01-02 20:44:27 +01:00
|
|
|
return "MTU format is not correct."
|
2021-12-26 11:04:39 +01:00
|
|
|
if len(data['keep_alive']) == 0 or not data['keep_alive'].isdigit():
|
2022-01-02 20:44:27 +01:00
|
|
|
return "Persistent Keepalive format is not correct."
|
2021-09-08 18:39:25 +02:00
|
|
|
try:
|
2022-01-02 20:44:27 +01:00
|
|
|
if enable_preshared_key:
|
2022-01-06 21:17:43 +01:00
|
|
|
now = str(datetime.now().strftime("%m%d%Y%H%M%S"))
|
|
|
|
f_name = now + "_tmp_psk.txt"
|
|
|
|
print(f_name)
|
|
|
|
f = open(f_name, "w+")
|
|
|
|
f.write(preshared_key)
|
|
|
|
f.close()
|
2022-01-02 20:44:27 +01:00
|
|
|
status = subprocess.check_output(
|
2022-01-06 21:17:43 +01:00
|
|
|
f"wg set {config_name} peer {public_key} allowed-ips {allowed_ips} preshared-key {f_name}",
|
2022-01-02 20:44:27 +01:00
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
2022-01-06 21:17:43 +01:00
|
|
|
os.remove(f_name)
|
2022-01-02 20:44:27 +01:00
|
|
|
elif not enable_preshared_key:
|
2021-12-29 19:57:11 +01:00
|
|
|
status = subprocess.check_output(f"wg set {config_name} peer {public_key} allowed-ips {allowed_ips}",
|
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
2021-09-08 18:39:25 +02:00
|
|
|
status = subprocess.check_output("wg-quick save " + config_name, shell=True, stderr=subprocess.STDOUT)
|
|
|
|
get_all_peers_data(config_name)
|
2022-01-02 20:44:27 +01:00
|
|
|
sql = "UPDATE " + config_name + " SET name = ?, private_key = ?, DNS = ?, endpoint_allowed_ip = ? WHERE id = ?"
|
|
|
|
g.cur.execute(sql, (data['name'], data['private_key'], data['DNS'], endpoint_allowed_ip, public_key))
|
2021-09-08 18:39:25 +02:00
|
|
|
return "true"
|
|
|
|
except subprocess.CalledProcessError as exc:
|
|
|
|
return exc.output.strip()
|
2021-04-03 20:06:21 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Remove peer
|
2020-12-27 05:42:41 +01:00
|
|
|
@app.route('/remove_peer/<config_name>', methods=['POST'])
|
|
|
|
def remove_peer(config_name):
|
2021-05-05 03:26:40 +02:00
|
|
|
if get_conf_status(config_name) == "stopped":
|
2021-05-14 00:00:40 +02:00
|
|
|
return "Your need to turn on " + config_name + " first."
|
2020-12-27 05:42:41 +01:00
|
|
|
data = request.get_json()
|
|
|
|
delete_key = data['peer_id']
|
|
|
|
keys = get_conf_peer_key(config_name)
|
2021-12-28 20:53:51 +01:00
|
|
|
if not isinstance(keys, list):
|
2021-08-14 23:13:16 +02:00
|
|
|
return config_name + " is not running."
|
2020-12-27 05:42:41 +01:00
|
|
|
if delete_key not in keys:
|
|
|
|
return "This key does not exist"
|
|
|
|
else:
|
|
|
|
try:
|
2022-01-02 20:44:27 +01:00
|
|
|
remove_wg = subprocess.check_output(f"wg set {config_name} peer {delete_key} remove",
|
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
2021-12-29 19:57:11 +01:00
|
|
|
save_wg = subprocess.check_output(f"wg-quick save {config_name}",
|
2022-01-02 20:44:27 +01:00
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
|
|
|
sql = "DELETE FROM " + config_name + " WHERE id = ?"
|
|
|
|
g.cur.execute(sql, (delete_key,))
|
2022-01-06 21:17:43 +01:00
|
|
|
g.db.commit()
|
2020-12-27 05:42:41 +01:00
|
|
|
return "true"
|
|
|
|
except subprocess.CalledProcessError as exc:
|
|
|
|
return exc.output.strip()
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Save peer settings
|
2021-08-06 05:15:50 +02:00
|
|
|
@app.route('/save_peer_setting/<config_name>', methods=['POST'])
|
|
|
|
def save_peer_setting(config_name):
|
2021-04-03 02:48:00 +02:00
|
|
|
data = request.get_json()
|
|
|
|
id = data['id']
|
|
|
|
name = data['name']
|
2021-08-06 05:15:50 +02:00
|
|
|
private_key = data['private_key']
|
2021-12-26 00:26:39 +01:00
|
|
|
dns_addresses = data['DNS']
|
2021-08-06 05:15:50 +02:00
|
|
|
allowed_ip = data['allowed_ip']
|
2021-08-14 23:13:16 +02:00
|
|
|
endpoint_allowed_ip = data['endpoint_allowed_ip']
|
2021-12-29 18:17:44 +01:00
|
|
|
preshared_key = data['preshared_key']
|
2022-01-02 20:44:27 +01:00
|
|
|
check_peer_exist = g.cur.execute("SELECT COUNT(*) FROM " + config_name + " WHERE id = ?", (id,)).fetchone()
|
|
|
|
if check_peer_exist[0] == 1:
|
2021-12-28 20:53:51 +01:00
|
|
|
check_ip = check_repeat_allowed_ip(id, allowed_ip, config_name)
|
2021-09-08 18:39:25 +02:00
|
|
|
if not check_IP_with_range(endpoint_allowed_ip):
|
2021-08-16 21:26:15 +02:00
|
|
|
return jsonify({"status": "failed", "msg": "Endpoint Allowed IPs format is incorrect."})
|
2021-12-26 00:26:39 +01:00
|
|
|
if not check_DNS(dns_addresses):
|
2021-08-25 03:04:01 +02:00
|
|
|
return jsonify({"status": "failed", "msg": "DNS format is incorrect."})
|
2021-12-26 11:04:39 +01:00
|
|
|
if len(data['MTU']) == 0 or not data['MTU'].isdigit():
|
|
|
|
return jsonify({"status": "failed", "msg": "MTU format is not correct."})
|
|
|
|
if len(data['keep_alive']) == 0 or not data['keep_alive'].isdigit():
|
|
|
|
return jsonify({"status": "failed", "msg": "Persistent Keepalive format is not correct."})
|
2021-08-06 05:15:50 +02:00
|
|
|
if private_key != "":
|
2021-12-28 20:53:51 +01:00
|
|
|
check_key = f_check_key_match(private_key, id, config_name)
|
2021-08-06 05:15:50 +02:00
|
|
|
if check_key['status'] == "failed":
|
|
|
|
return jsonify(check_key)
|
|
|
|
if check_ip['status'] == "failed":
|
|
|
|
return jsonify(check_ip)
|
|
|
|
try:
|
2021-12-29 18:17:44 +01:00
|
|
|
tmp_psk = open("tmp_edit_psk.txt", "w+")
|
|
|
|
tmp_psk.write(preshared_key)
|
|
|
|
tmp_psk.close()
|
2021-12-29 22:15:00 +01:00
|
|
|
change_psk = subprocess.check_output(f"wg set {config_name} peer {id} preshared-key tmp_edit_psk.txt",
|
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
2021-12-29 18:17:44 +01:00
|
|
|
if change_psk.decode("UTF-8") != "":
|
|
|
|
return jsonify({"status": "failed", "msg": change_psk.decode("UTF-8")})
|
2021-12-24 03:26:24 +01:00
|
|
|
if allowed_ip == "":
|
|
|
|
allowed_ip = '""'
|
|
|
|
allowed_ip = allowed_ip.replace(" ", "")
|
2021-12-29 22:15:00 +01:00
|
|
|
change_ip = subprocess.check_output(f"wg set {config_name} peer {id} allowed-ips {allowed_ip}",
|
|
|
|
shell=True, stderr=subprocess.STDOUT)
|
|
|
|
subprocess.check_output(f'wg-quick save {config_name}', shell=True, stderr=subprocess.STDOUT)
|
2021-08-06 05:15:50 +02:00
|
|
|
if change_ip.decode("UTF-8") != "":
|
2021-08-14 23:13:16 +02:00
|
|
|
return jsonify({"status": "failed", "msg": change_ip.decode("UTF-8")})
|
2022-01-02 20:44:27 +01:00
|
|
|
sql = "UPDATE " + config_name + " SET name = ?, private_key = ?, DNS = ?, endpoint_allowed_ip = ?, mtu = ?, keepalive = ?, preshared_key = ? WHERE id = ?"
|
|
|
|
g.cur.execute(sql, (name, private_key, dns_addresses, endpoint_allowed_ip, data["MTU"],
|
|
|
|
data["keep_alive"], preshared_key, id))
|
2021-08-06 05:15:50 +02:00
|
|
|
return jsonify({"status": "success", "msg": ""})
|
|
|
|
except subprocess.CalledProcessError as exc:
|
2021-08-14 23:13:16 +02:00
|
|
|
return jsonify({"status": "failed", "msg": str(exc.output.decode("UTF-8").strip())})
|
2021-08-06 05:15:50 +02:00
|
|
|
else:
|
2021-08-14 23:13:16 +02:00
|
|
|
return jsonify({"status": "failed", "msg": "This peer does not exist."})
|
2021-04-03 02:48:00 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get peer settings
|
2021-08-06 05:15:50 +02:00
|
|
|
@app.route('/get_peer_data/<config_name>', methods=['POST'])
|
2021-04-03 02:48:00 +02:00
|
|
|
def get_peer_name(config_name):
|
|
|
|
data = request.get_json()
|
2022-01-02 20:44:27 +01:00
|
|
|
peer_id = data['id']
|
|
|
|
result = g.cur.execute(
|
|
|
|
"SELECT name, allowed_ip, DNS, private_key, endpoint_allowed_ip, mtu, keepalive, preshared_key FROM "
|
|
|
|
+ config_name + " WHERE id = ?", (peer_id,)).fetchall()
|
|
|
|
data = {"name": result[0][0], "allowed_ip": result[0][1], "DNS": result[0][2],
|
|
|
|
"private_key": result[0][3], "endpoint_allowed_ip": result[0][4],
|
|
|
|
"mtu": result[0][5], "keep_alive": result[0][6], "preshared_key": result[0][7]}
|
2021-08-06 05:15:50 +02:00
|
|
|
return jsonify(data)
|
2021-04-03 02:48:00 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2022-01-04 22:32:23 +01:00
|
|
|
# Return available IPs
|
|
|
|
@app.route('/available_ips/<config_name>', methods=['GET'])
|
|
|
|
def available_ips(config_name):
|
2022-01-06 21:17:43 +01:00
|
|
|
return jsonify(f_available_ips(config_name))
|
2022-01-04 22:32:23 +01:00
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Generate a private key
|
2021-08-05 06:45:15 +02:00
|
|
|
@app.route('/generate_peer', methods=['GET'])
|
|
|
|
def generate_peer():
|
2021-09-08 18:39:25 +02:00
|
|
|
return jsonify(gen_private_key())
|
2021-08-14 23:13:16 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Generate a public key from a private key
|
2021-08-05 06:45:15 +02:00
|
|
|
@app.route('/generate_public_key', methods=['POST'])
|
|
|
|
def generate_public_key():
|
|
|
|
data = request.get_json()
|
|
|
|
private_key = data['private_key']
|
2021-09-08 18:39:25 +02:00
|
|
|
return jsonify(gen_public_key(private_key))
|
2021-08-14 23:13:16 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Check if both key match
|
2021-08-06 05:15:50 +02:00
|
|
|
@app.route('/check_key_match/<config_name>', methods=['POST'])
|
|
|
|
def check_key_match(config_name):
|
|
|
|
data = request.get_json()
|
|
|
|
private_key = data['private_key']
|
|
|
|
public_key = data['public_key']
|
2021-12-28 20:53:51 +01:00
|
|
|
return jsonify(f_check_key_match(private_key, public_key, config_name))
|
2021-08-14 23:13:16 +02:00
|
|
|
|
2021-12-24 03:26:24 +01:00
|
|
|
|
|
|
|
@app.route("/qrcode/<config_name>", methods=['GET'])
|
|
|
|
def generate_qrcode(config_name):
|
2022-01-02 20:44:27 +01:00
|
|
|
peer_id = request.args.get('id')
|
2022-01-04 22:32:23 +01:00
|
|
|
get_peer = g.cur.execute(
|
|
|
|
"SELECT private_key, allowed_ip, DNS, mtu, endpoint_allowed_ip, keepalive, preshared_key FROM "
|
|
|
|
+ config_name + " WHERE id = ?", (peer_id,)).fetchall()
|
2021-12-24 03:26:24 +01:00
|
|
|
config = get_dashboard_conf()
|
|
|
|
if len(get_peer) == 1:
|
|
|
|
peer = get_peer[0]
|
2022-01-02 20:44:27 +01:00
|
|
|
if peer[0] != "":
|
2021-12-24 03:26:24 +01:00
|
|
|
public_key = get_conf_pub_key(config_name)
|
|
|
|
listen_port = get_conf_listen_port(config_name)
|
|
|
|
endpoint = config.get("Peers", "remote_endpoint") + ":" + listen_port
|
2022-01-02 20:44:27 +01:00
|
|
|
private_key = peer[0]
|
|
|
|
allowed_ip = peer[1]
|
|
|
|
dns_addresses = peer[2]
|
|
|
|
mtu_value = peer[3]
|
|
|
|
endpoint_allowed_ip = peer[4]
|
|
|
|
keepalive = peer[5]
|
|
|
|
preshared_key = peer[6]
|
|
|
|
|
|
|
|
result = "[Interface]\nPrivateKey = " + private_key + "\nAddress = " + allowed_ip + "\nMTU = " \
|
|
|
|
+ str(mtu_value) + "\nDNS = " + dns_addresses + "\n\n[Peer]\nPublicKey = " + public_key \
|
|
|
|
+ "\nAllowedIPs = " + endpoint_allowed_ip + "\nPersistentKeepalive = " \
|
|
|
|
+ str(keepalive) + "\nEndpoint = " + endpoint
|
2021-12-29 18:17:44 +01:00
|
|
|
if preshared_key != "":
|
2022-01-02 20:44:27 +01:00
|
|
|
result += "\nPresharedKey = " + preshared_key
|
2021-12-29 18:17:44 +01:00
|
|
|
return render_template("qrcode.html", i=result)
|
2021-12-24 03:26:24 +01:00
|
|
|
else:
|
|
|
|
return redirect("/configuration/" + config_name)
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Download configuration file
|
2021-12-29 18:17:44 +01:00
|
|
|
@app.route('/download/<config_name>', methods=['GET'])
|
2021-08-06 05:15:50 +02:00
|
|
|
def download(config_name):
|
2021-08-14 23:13:16 +02:00
|
|
|
print(request.headers.get('User-Agent'))
|
2022-01-02 20:44:27 +01:00
|
|
|
peer_id = request.args.get('id')
|
|
|
|
get_peer = g.cur.execute(
|
|
|
|
"SELECT private_key, allowed_ip, DNS, mtu, endpoint_allowed_ip, keepalive, preshared_key, name FROM "
|
2022-01-04 22:32:23 +01:00
|
|
|
+ config_name + " WHERE id = ?", (peer_id,)).fetchall()
|
2021-09-08 18:39:25 +02:00
|
|
|
config = get_dashboard_conf()
|
2021-08-06 05:15:50 +02:00
|
|
|
if len(get_peer) == 1:
|
|
|
|
peer = get_peer[0]
|
2022-01-02 20:44:27 +01:00
|
|
|
if peer[0] != "":
|
2021-08-06 05:15:50 +02:00
|
|
|
public_key = get_conf_pub_key(config_name)
|
|
|
|
listen_port = get_conf_listen_port(config_name)
|
2021-12-26 00:26:39 +01:00
|
|
|
endpoint = config.get("Peers", "remote_endpoint") + ":" + listen_port
|
2022-01-02 20:44:27 +01:00
|
|
|
private_key = peer[0]
|
|
|
|
allowed_ip = peer[1]
|
|
|
|
dns_addresses = peer[2]
|
|
|
|
mtu_value = peer[3]
|
|
|
|
endpoint_allowed_ip = peer[4]
|
|
|
|
keepalive = peer[5]
|
|
|
|
preshared_key = peer[6]
|
|
|
|
filename = peer[7]
|
2021-08-14 23:13:16 +02:00
|
|
|
if len(filename) == 0:
|
2022-01-02 20:44:27 +01:00
|
|
|
filename = "Untitled_Peer"
|
2021-08-14 23:13:16 +02:00
|
|
|
else:
|
2022-01-02 20:44:27 +01:00
|
|
|
filename = peer[7]
|
2021-08-14 23:13:16 +02:00
|
|
|
# Clean filename
|
|
|
|
illegal_filename = [".", ",", "/", "?", "<", ">", "\\", ":", "*", '|' '\"', "com1", "com2", "com3",
|
|
|
|
"com4", "com5", "com6", "com7", "com8", "com9", "lpt1", "lpt2", "lpt3", "lpt4",
|
|
|
|
"lpt5", "lpt6", "lpt7", "lpt8", "lpt9", "con", "nul", "prn"]
|
|
|
|
for i in illegal_filename:
|
|
|
|
filename = filename.replace(i, "")
|
|
|
|
if len(filename) == 0:
|
|
|
|
filename = "Untitled_Peer"
|
|
|
|
filename = "".join(filename.split(' '))
|
|
|
|
filename = filename + "_" + config_name
|
2021-12-29 18:17:44 +01:00
|
|
|
psk = ""
|
|
|
|
if preshared_key != "":
|
2022-01-02 20:44:27 +01:00
|
|
|
psk = "\nPresharedKey = " + preshared_key
|
|
|
|
|
|
|
|
def generate():
|
|
|
|
yield "[Interface]\nPrivateKey = " + private_key + "\nAddress = " + allowed_ip + "\nDNS = " + \
|
2022-01-04 22:32:23 +01:00
|
|
|
dns_addresses + "\nMTU = " + str(mtu_value) + "\n\n[Peer]\nPublicKey = " + \
|
|
|
|
public_key + "\nAllowedIPs = " + endpoint_allowed_ip + "\nEndpoint = " + \
|
|
|
|
endpoint + "\nPersistentKeepalive = " + str(keepalive) + psk
|
|
|
|
|
2022-01-02 20:44:27 +01:00
|
|
|
return app.response_class(generate(), mimetype='text/conf',
|
|
|
|
headers={"Content-Disposition": "attachment;filename=" + filename + ".conf"})
|
2021-12-28 20:53:51 +01:00
|
|
|
return redirect("/configuration/" + config_name)
|
2021-08-06 05:15:50 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-12-29 18:17:44 +01:00
|
|
|
# Switch peer display mode
|
2021-09-03 23:32:51 +02:00
|
|
|
@app.route('/switch_display_mode/<mode>', methods=['GET'])
|
|
|
|
def switch_display_mode(mode):
|
2021-12-26 00:26:39 +01:00
|
|
|
if mode in ['list', 'grid']:
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-09-03 23:32:51 +02:00
|
|
|
config.set("Peers", "peer_display_mode", mode)
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-09-03 23:32:51 +02:00
|
|
|
return "true"
|
2021-12-28 20:53:51 +01:00
|
|
|
return "false"
|
2021-09-03 23:32:51 +02:00
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
"""
|
|
|
|
Dashboard Tools Related
|
|
|
|
"""
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Get all IP for ping
|
|
|
|
@app.route('/get_ping_ip', methods=['POST'])
|
|
|
|
def get_ping_ip():
|
2021-12-29 20:56:19 +01:00
|
|
|
config = request.form['config']
|
2022-01-02 20:44:27 +01:00
|
|
|
peers = g.cur.execute("SELECT id, name, allowed_ip, endpoint FROM " + config).fetchall()
|
2021-09-08 18:39:25 +02:00
|
|
|
html = ""
|
2022-01-02 20:44:27 +01:00
|
|
|
for i in peers:
|
|
|
|
html += '<optgroup label="' + i[1] + ' - ' + i[0] + '">'
|
|
|
|
allowed_ip = str(i[2]).split(",")
|
2021-09-08 18:39:25 +02:00
|
|
|
for k in allowed_ip:
|
|
|
|
k = k.split("/")
|
|
|
|
if len(k) == 2:
|
|
|
|
html += "<option value=" + k[0] + ">" + k[0] + "</option>"
|
2022-01-02 20:44:27 +01:00
|
|
|
endpoint = str(i[3]).split(":")
|
2021-09-08 18:39:25 +02:00
|
|
|
if len(endpoint) == 2:
|
|
|
|
html += "<option value=" + endpoint[0] + ">" + endpoint[0] + "</option>"
|
|
|
|
html += "</optgroup>"
|
|
|
|
return html
|
2021-08-06 05:15:50 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Ping IP
|
|
|
|
@app.route('/ping_ip', methods=['POST'])
|
|
|
|
def ping_ip():
|
|
|
|
try:
|
|
|
|
result = ping('' + request.form['ip'] + '', count=int(request.form['count']), privileged=True, source=None)
|
|
|
|
returnjson = {
|
|
|
|
"address": result.address,
|
|
|
|
"is_alive": result.is_alive,
|
|
|
|
"min_rtt": result.min_rtt,
|
|
|
|
"avg_rtt": result.avg_rtt,
|
|
|
|
"max_rtt": result.max_rtt,
|
|
|
|
"package_sent": result.packets_sent,
|
|
|
|
"package_received": result.packets_received,
|
|
|
|
"package_loss": result.packet_loss
|
|
|
|
}
|
|
|
|
if returnjson['package_loss'] == 1.0:
|
|
|
|
returnjson['package_loss'] = returnjson['package_sent']
|
|
|
|
return jsonify(returnjson)
|
|
|
|
except Exception:
|
|
|
|
return "Error"
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
# Traceroute IP
|
|
|
|
@app.route('/traceroute_ip', methods=['POST'])
|
|
|
|
def traceroute_ip():
|
|
|
|
try:
|
|
|
|
result = traceroute('' + request.form['ip'] + '', first_hop=1, max_hops=30, count=1, fast=True)
|
|
|
|
returnjson = []
|
|
|
|
last_distance = 0
|
|
|
|
for hop in result:
|
|
|
|
if last_distance + 1 != hop.distance:
|
|
|
|
returnjson.append({"hop": "*", "ip": "*", "avg_rtt": "", "min_rtt": "", "max_rtt": ""})
|
|
|
|
returnjson.append({"hop": hop.distance, "ip": hop.address, "avg_rtt": hop.avg_rtt, "min_rtt": hop.min_rtt,
|
|
|
|
"max_rtt": hop.max_rtt})
|
|
|
|
last_distance = hop.distance
|
|
|
|
return jsonify(returnjson)
|
|
|
|
except Exception:
|
|
|
|
return "Error"
|
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-09-08 18:39:25 +02:00
|
|
|
"""
|
|
|
|
Dashboard Initialization
|
|
|
|
"""
|
2021-12-26 00:26:39 +01:00
|
|
|
|
|
|
|
|
2021-05-04 08:10:06 +02:00
|
|
|
def init_dashboard():
|
|
|
|
# Set Default INI File
|
2021-12-28 23:51:41 +01:00
|
|
|
if not os.path.isfile(DASHBOARD_CONF):
|
|
|
|
conf_file = open(DASHBOARD_CONF, "w+")
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-09-08 18:39:25 +02:00
|
|
|
# Defualt dashboard account setting
|
2021-05-04 08:10:06 +02:00
|
|
|
if "Account" not in config:
|
|
|
|
config['Account'] = {}
|
|
|
|
if "username" not in config['Account']:
|
|
|
|
config['Account']['username'] = 'admin'
|
|
|
|
if "password" not in config['Account']:
|
|
|
|
config['Account']['password'] = '8c6976e5b5410415bde908bd4dee15dfb167a9c873fc4bb8a81f6f2ab448a918'
|
2021-09-08 18:39:25 +02:00
|
|
|
# Defualt dashboard server setting
|
2021-05-04 08:10:06 +02:00
|
|
|
if "Server" not in config:
|
|
|
|
config['Server'] = {}
|
2021-05-05 03:26:40 +02:00
|
|
|
if 'wg_conf_path' not in config['Server']:
|
|
|
|
config['Server']['wg_conf_path'] = '/etc/wireguard'
|
2021-12-22 17:36:29 +01:00
|
|
|
# TODO: IPv6 for the app IP might need to configure with Gunicorn...
|
2021-05-04 08:10:06 +02:00
|
|
|
if 'app_ip' not in config['Server']:
|
2021-12-22 17:36:29 +01:00
|
|
|
config['Server']['app_ip'] = '0.0.0.0'
|
2021-05-04 08:10:06 +02:00
|
|
|
if 'app_port' not in config['Server']:
|
|
|
|
config['Server']['app_port'] = '10086'
|
|
|
|
if 'auth_req' not in config['Server']:
|
|
|
|
config['Server']['auth_req'] = 'true'
|
2021-12-28 20:53:51 +01:00
|
|
|
if 'version' not in config['Server'] or config['Server']['version'] != DASHBOARD_VERSION:
|
|
|
|
config['Server']['version'] = DASHBOARD_VERSION
|
2021-05-14 00:00:40 +02:00
|
|
|
if 'dashboard_refresh_interval' not in config['Server']:
|
2021-09-03 23:32:51 +02:00
|
|
|
config['Server']['dashboard_refresh_interval'] = '60000'
|
2021-08-14 23:13:16 +02:00
|
|
|
if 'dashboard_sort' not in config['Server']:
|
|
|
|
config['Server']['dashboard_sort'] = 'status'
|
2021-12-30 05:26:15 +01:00
|
|
|
# Default dashboard peers setting
|
2021-08-14 23:13:16 +02:00
|
|
|
if "Peers" not in config:
|
|
|
|
config['Peers'] = {}
|
|
|
|
if 'peer_global_DNS' not in config['Peers']:
|
|
|
|
config['Peers']['peer_global_DNS'] = '1.1.1.1'
|
|
|
|
if 'peer_endpoint_allowed_ip' not in config['Peers']:
|
|
|
|
config['Peers']['peer_endpoint_allowed_ip'] = '0.0.0.0/0'
|
2021-09-03 23:32:51 +02:00
|
|
|
if 'peer_display_mode' not in config['Peers']:
|
|
|
|
config['Peers']['peer_display_mode'] = 'grid'
|
2021-09-08 18:39:25 +02:00
|
|
|
if 'remote_endpoint' not in config['Peers']:
|
|
|
|
config['Peers']['remote_endpoint'] = ifcfg.default_interface()['inet']
|
|
|
|
if 'peer_MTU' not in config['Peers']:
|
|
|
|
config['Peers']['peer_MTU'] = "1420"
|
|
|
|
if 'peer_keep_alive' not in config['Peers']:
|
|
|
|
config['Peers']['peer_keep_alive'] = "21"
|
2021-12-29 21:29:29 +01:00
|
|
|
set_dashboard_conf(config)
|
|
|
|
config.clear()
|
2021-05-05 03:26:40 +02:00
|
|
|
|
2021-12-26 00:26:39 +01:00
|
|
|
|
2021-05-05 03:26:40 +02:00
|
|
|
def check_update():
|
2021-12-26 00:26:39 +01:00
|
|
|
"""
|
|
|
|
Dashboard check update
|
|
|
|
"""
|
2021-12-29 21:29:29 +01:00
|
|
|
config = get_dashboard_conf()
|
2021-09-09 18:43:49 +02:00
|
|
|
data = urllib.request.urlopen("https://api.github.com/repos/donaldzou/WGDashboard/releases").read()
|
2021-05-05 03:26:40 +02:00
|
|
|
output = json.loads(data)
|
2021-05-14 00:21:10 +02:00
|
|
|
release = []
|
|
|
|
for i in output:
|
2021-12-26 00:26:39 +01:00
|
|
|
if not i["prerelease"]:
|
|
|
|
release.append(i)
|
2021-12-28 20:53:51 +01:00
|
|
|
if config.get("Server", "version") == release[0]["tag_name"]:
|
|
|
|
result = "false"
|
2021-05-05 03:26:40 +02:00
|
|
|
else:
|
2021-12-28 20:53:51 +01:00
|
|
|
result = "true"
|
|
|
|
|
|
|
|
return result
|
2021-05-05 03:26:40 +02:00
|
|
|
|
2021-05-04 08:10:06 +02:00
|
|
|
|
2021-04-03 20:06:21 +02:00
|
|
|
if __name__ == "__main__":
|
2021-05-04 08:10:06 +02:00
|
|
|
init_dashboard()
|
2021-12-28 20:53:51 +01:00
|
|
|
UPDATE = check_update()
|
2021-12-29 21:29:29 +01:00
|
|
|
configuration_settings = get_dashboard_conf()
|
2021-12-28 20:53:51 +01:00
|
|
|
app_ip = configuration_settings.get("Server", "app_ip")
|
2021-12-30 05:26:15 +01:00
|
|
|
app_port = int(configuration_settings.get("Server", "app_port"))
|
2021-12-28 20:53:51 +01:00
|
|
|
wg_conf_path = configuration_settings.get("Server", "wg_conf_path")
|
|
|
|
configuration_settings.clear()
|
2021-12-30 05:26:15 +01:00
|
|
|
app.run(host=app_ip, debug=False, port=app_port)
|