Subversion Repositories ALCASAR

Compare Revisions

Ignore whitespace Rev 3050 → Rev 3051

/CHANGELOG
14,6 → 14,7
- Improve "let's encrypt" & "Internet connexion" forms
- Add an overlay with spinner on all submit forms (Thanks to Alexandre VEZIN)
- SSH : admin can secure it on INTIF & EXTIF : change the default port & set en "admin_from" IP (Thanks to Alexandre VEZIN)
- Admin can allow/forbid access to the LAN located between ALCASAR and the broadband router (Thanks to Alexandre VEZIN)
BUGS
- Adapt "alcasar-network.sh" when ALCASAR is in DHCP mode
- Adapt "alcasar-watchdog.sh" when ALCASAR is in multiWAN mode
/scripts/alcasar-rpm.sh
21,7 → 21,7
# "sudo" : needed after a reinstallation (to be investigated)
# "clamav" + "clamav-db" : needed because of a lack of mutual dependance
# "postfix" + "cyrus-sasl" : email registration method
PACKAGES="vim-enhanced freeradius freeradius-mysql freeradius-ldap lighttpd lighttpd-mod_auth php-fpm php-gd php-ldap php-mysqli php-mbstring php-sockets php-curl php-pdo_sqlite php-cli unbound e2guardian postfix mariadb ntp bind-utils openssh-server rng-utils rsync clamav clamav-db clamd fail2ban gnupg2 ulogd pm-fallback-policy ipset usb_modeswitch vnstat dos2unix p7zip msec kernel-userspace-headers kernel-firmware-nonfree dnsmasq dhcp-server tcpdump fonts-dejavu-common fonts-ttf-dejavu lsscsi nvme-cli sudo socat postfix cyrus-sasl"
PACKAGES="vim-enhanced freeradius freeradius-mysql freeradius-ldap lighttpd lighttpd-mod_auth php-fpm php-gd php-ldap php-mysqli php-mbstring php-sockets php-curl php-pdo_sqlite php-cli unbound e2guardian postfix mariadb ntp bind-utils openssh-server rng-utils rsync clamav clamav-db clamd fail2ban gnupg2 ulogd ipset usb_modeswitch vnstat dos2unix p7zip msec kernel-userspace-headers kernel-firmware-nonfree dnsmasq dhcp-server tcpdump fonts-dejavu-common fonts-ttf-dejavu lsscsi nvme-cli sudo socat postfix cyrus-sasl"
 
rpm_repository_sync ()
{
/web/acc/admin/network.php
80,9 → 80,10
$l_ssh_title = "SSH";
$l_ssh_port = "Port";
$l_ssh_from = "IP autorisée";
$l_ssh_wan_activate = "Activer SSH sur WAN";
$l_ssh_lan_activate = "Activer SSH sur LAN";
$l_interlan_title = "Autoriser l'accès au réseau situé entre ALCASAR et le routeur d'accès à Internet";
$l_ssh_wan_activate = "Activer SSH côté WAN";
$l_ssh_lan_activate = "Activer SSH côté LAN";
$l_all_ip = "Pour autoriser toutes les @IP sources: 0.0.0.0";
$l_interlan_title = "Autoriser l'accès au réseau situé entre ALCASAR et le routeur d'accès à Internet";
$l_cert_expiration = "Date d'expiration :";
$l_cert_commonname = "Nom commun :";
$l_cert_organization = "Organisation :";
149,8 → 150,9
$l_ssh_title = "SSH";
$l_ssh_port = "Puerto";
$l_ssh_from = "IP autorizada";
$l_ssh_wan_activate = "Activar SSH on WAN";
$l_ssh_lan_activate = "Activar SSH on LAN";
$l_ssh_wan_activate = "Activar SSH en el lado WAN";
$l_ssh_lan_activate = "Activar SSH en el lado LAN";
$l_all_ip = "Para permitir todas las @IP de origen : 0.0.0.0";
$l_interlan_title = "Permitir el acceso a la red entre ALCASAR y el router de acceso a Internet";
$l_cert_expiration = "Fecha de vencimiento:";
$l_cert_commonname = "Common name:";
217,8 → 219,9
$l_ssh_title = "SSH";
$l_ssh_port = "Port";
$l_ssh_from = "Authorized IP";
$l_ssh_wan_activate = "Activate SSH on WAN";
$l_ssh_lan_activate = "Activate SSH on LAN";
$l_ssh_wan_activate = "Activate SSH on WAN side";
$l_ssh_lan_activate = "Activate SSH on LAN side";
$l_all_ip = "To allow all source IP addresses: 0.0.0.0";
$l_interlan_title = "Authorize access to the network located between ALCASAR and Internet broadband router";
$l_cert_expiration = "Expiration date:";
$l_cert_commonname = "Common name:";
1239,7 → 1242,7
<td><input style="width:120px" type="text" id="ssh_from" name="ssh_from" value="<?= explode('/',$conf['SSH_ADMIN_FROM'])[0] ?>" /></td>
</tr>
</table>
<p>Activer sur tout le LAN : 0.0.0.0</p>
<p><?= $l_all_ip ?></p>
</div>
<input type="submit" onClick="document.getElementById('ldoverlay').style.display='block';" value="<?= $l_apply ?>"><br>
</form>
1260,7 → 1263,7
<td><input style="width:120px" type="text" id="ssh_from" name="ssh_from" value="<?= explode('/',$conf['SSH_ADMIN_FROM'])[1] ?>" /></td>
</tr>
</table>
<p>Activer sur tout réseau : 0.0.0.0</p>
<p><?= $l_all_ip ?></p>
</div>
<input type="submit" onClick="document.getElementById('ldoverlay').style.display='block';" value="<?= $l_apply ?>"><br>
</form>