Subversion Repositories ALCASAR

Compare Revisions

No changes between revisions

Ignore whitespace Rev 638 → Rev 640

/readme-2.1.txt
File deleted
Property changes:
Deleted: svn:eol-style
-native
\ No newline at end of property
/VERSION
1,0 → 0,0
2.2a
2.2
/CHANGELOG
5,7 → 5,10
- IP parameters can be change in central conf. Apply then with the script "alcasar-conf.sh -apply"
- 'alcasar-nf.sh' and 'alcasar-bl.sh' scripts now use the global parameters file (alcasar.conf)
- allow LDAP/AD connections both on WAN and LAN servers
- close all accounting session when the system goes down ou up
- Add a LDAP connectivity test
- possibility to redirect users on a specific URL after login process
- A bug with "sudo" is bypassed
- close all accounting session when the system goes down or up
- if activate, sshd listen both on LAN and on WAN
- add a central conf file (/usr/local/etc/alcasar.conf)
- add the equipment name in the activity window when MAC authenticate
12,6 → 15,7
- improve the script which display and close users open sessions
- allow change of alcasar IP private address during install stage
- improve the script which managed the trusted sites and urls
- no more question, when upgrating
 
---- 2.1 ----
- mise en conformité du parefeu avec les préco ANSSI (politiques à DROP + sysctrl)
/scripts/alcasar-urpmi.sh
119,8 → 119,8
fi
# update with cached RPM
urpmi --auto $PACKAGES
# On supprime les paquetages inutiles
for rm_rpm in shorewall dhcp-server c-icap-server cyrus-sasl distcache-server avahi mandi radeontool coova-chilli python-coova-chilli
# On supprime les paquetages inutiles (pour chilli: nécessaire lors d'un mise à jour)
for rm_rpm in shorewall dhcp-server c-icap-server cyrus-sasl distcache-server avahi mandi radeontool libchilli0 lib64chilli0 python-coova-chilli
do
/usr/sbin/urpme --auto $rm_rpm --auto-orphans 2>/dev/null
echo -n "."
/readme-2.2.txt
0,0 → 1,37
$Id: readme-2.0.txt 581 2011-04-21 16:59:59Z richard $
 
Alcasar-2.2
*********** English **********
- Complete install : Need the CD double architecture of Linux Mandriva 2010.1 (mandriva-linux-free-2010-spring-dual.iso). Follow the install doc.
- To update automaticly the earlier versions of Alcasar (V1.7, V1.8, V1.9 et V2.0), just execute the install script ("sh alcasar.sh -i")
- In case of update a version less than 2.1, a new admin login will be created. The certificates (C.A. & server) are updated too. You will have to integrated them again in browsers.
 
The main updates are :
- possibility to redirect users on a specific URL after login process
- When activate, the SSHD server listen on both LAN and WAN side
- The extern directory can be contact both on LAN and WAN
- A bug with "sudo" is bypassed
- Creation of a central configuration file (/usr/local/etc/alcasar.conf)
- Add a LDAP connectivity test
- close accounting sessions on boot and when the users database is saved
- on install stage, the ip address of ALCASAR can be defined
- no more question, when upgrating
- fix some minor bugs
 
*********** Français ********
 
- Installation complète : elle s'effectue sur la base du CD double architecture (32b et 64b) de la distribution Linux-mandriva 2010.1 (mandriva-linux-free-2010-spring-dual.iso). Suivez la procédure d'installation.
- La mise à jour des anciennes versions d'Alcasar (>= V1.7) est automatique en lançant le script d'installation ("sh alcasar.sh -i")
- Dans le cas de la mise à jour d'une version inférieure à 2.1, un nouveau compte d'administration sera créé. Les certificats (A.C. et serveur) ont évolués. Il sera donc nécessaire de reconfigurer les navigateurs.
 
Les évolutions majeures sont les suivantes :
- possibilité de rediriger les usagers vers une URL spécifique après authentification
- quand il est activé, le serveur SSH écoute côté LAN et WAN
- l'annuaire externe peut être connecté côté LAN ou WAN
- contournement du bug "sudo"
- création du fichier de configuration central (/usr/local/etc/alcasar.conf)
- ajout d'un test de connectivité au serveur LDAP
- fermeture des sessions de comptabilité au démarrage du système et lors de la sauvegarde de la base des usagers
- l'adresse IP d'ALCASAR peut être choisi lors de l'installation
- Plus aucune question n'est posée lors d'une mise à jour
- plusieurs bugs mineurs corrigés
Property changes:
Added: svn:eol-style
+native
\ No newline at end of property
/web/acc/alcasar-2.1-installation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Deleted: svn:mime-type
-application/octet-stream
\ No newline at end of property
/web/acc/alcasar-2.1-presentation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Deleted: svn:mime-type
-application/octet-stream
\ No newline at end of property
/web/acc/alcasar-2.1-exploitation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Deleted: svn:mime-type
-application/octet-stream
\ No newline at end of property
/web/acc/alcasar-2.2-presentation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Added: svn:mime-type
+application/octet-stream
\ No newline at end of property
/web/acc/admin/bl_categories_help.php
18,7 → 18,9
$l_nb_urls="Nombre d'URL filtrés :";
$l_explain_adult="Sites relatifs à l'érotisme et à la pornographie";
$l_explain_agressif="Sites extrémistes, racistes, antisémites ou incitant à la haine";
$l_explain_arjel="Sites de pari en ligne certifies par l'ARJEL (Autorité de Régulation des Jeux En Ligne)";
$l_explain_astrology="Sites relatifs à l'astrologie";
$l_explain_bank="Sites de banques en ligne";
$l_explain_audio_video="Sites de téléchargement de fichiers audio et vidéo";
$l_explain_blog="Sites d'hébergement de blogs";
$l_explain_celebrity="Sites « people », stars, etc.";
25,36 → 27,39
$l_explain_chat="Sites de dialogue en ligne";
$l_explain_child="Sites pour enfants";
$l_explain_cleaning="Sites relatifs à la mise à jour logicielle ou antivirale";
$l_explain_dangerous_material="Sites relatifs à la création de produits dangereux (explosif, poison, etc.)";
$l_explain_dating="Sites de rencontres en ligne";
$l_explain_drogue="Sites relatifs aux produits stupéfiants";
$l_explain_filehosting="Entrepôts de fichiers (vidéo, images, son, logiciels, etc.)";
$l_explain_financial="Sites d'informations financières, bourses, etc.";
$l_explain_forums="Sites d'hébergement de forums de discussion";
$l_explain_gambling="Sites de jeux d'argent en ligne (casino, grattage virtuel, etc.)";
$l_explain_games="Sites de jeux en ligne";
$l_explain_hacking="Sites relatifs au piratage informatique";
$l_explain_jobsearch="Sites de recherche d'emplois";
$l_explain_liste_bu="Liste de sites éducatifs pour bibliothèque";
$l_explain_malware="Site relatifs au logiciels malveillants (virus, vers, trojans, etc.)";
$l_explain_manga="Site de Mangas";
$l_explain_marketingware="Sites marchands douteux (X, organes, enfants, etc.)";
$l_explain_mixed_adult="Sites pour adultes (image-choc, gore, guerre, etc.)";
$l_explain_mobile_phone="Sites relatifs aux mobiles GSM (sonneries, logos, etc.)";
$l_explain_ossi="Liste noire secondaire";
$l_explain_phishing="Sites relatifs à l'hammeçonnage (pièges bancaires, redirection, etc.)";
$l_explain_press="Sites de presse";
$l_explain_publicite="Sites ou bannières publicitaires";
$l_explain_radio="Sites de radios en ligne ou de podcast";
$l_explain_reaffected="Sites connus ayant changé de propriétaire (et donc de contenu)";
$l_explain_redirector="Sites de redirection, d'anonymisation ou de contournement";
$l_explain_remote_control="Sites permettant la prise de controle a distance";
$l_explain_sect="Sites sectaires";
$l_explain_social_networks="Sites de réseaux sociaux";
$l_explain_sexual_education="Sites relatifs à l'éducation sexuelle";
$l_explain_shopping="Sites de vente et d'achat en ligne";
$l_explain_webmail="Site WEB permettant de consultation son courrier électronique";
$l_explain_dangerous_material="Sites relatifs à la création de produits dangereux (explosif, poison, etc.)";
$l_explain_dating="Sites de rencontres en ligne";
$l_explain_drogue="Sites relatifs aux produits stupéfiants";
$l_explain_gambling="Sites de jeux d'argent en ligne (casino, grattage virtuel, etc.)";
$l_explain_hacking="Sites relatifs au piratage informatique";
$l_explain_malware="Site relatifs au logiciels malveillants (virus, vers, trojans, etc.)";
$l_explain_marketingware="Sites marchands douteux (X, organes, enfants, etc.)";
$l_explain_mixed_adult="Sites pour adultes (image-choc, gore, guerre, etc.)";
$l_explain_ossi="Liste noire secondaire";
$l_explain_phishing="Sites relatifs à l'hammeçonnage (pièges bancaires, redirection, etc.)";
$l_explain_redirector="Sites de redirection, d'anonymisation ou de contournement";
$l_explain_sect="Sites sectaires";
$l_explain_sport="Sites de sport";
$l_explain_strict_redirector="URL intentionnellement mal formées";
$l_explain_strong_redirector="URL mal formées dans une requête « google »";
$l_explain_tricheur="Sites relatifs aux tricheries (examens, concours, etc.)";
$l_explain_webmail="Site WEB permettant de consultation son courrier électronique";
$l_explain_warez="Sites relatifs aux logiciels piratés (crackés), aux générateurs de clés, etc.";
}
else {
66,43 → 71,48
$l_nb_urls="Number of filtered URL :";
$l_explain_adult="Sites related to eroticism and pornography";
$l_explain_agressif="Sites extremist, racist, anti-Semitic or hate";
$l_explain_arjel="Online gambling sites allowed by the french authority 'ARJEL' (Autorité de Régulation des Jeux En Ligne)";
$l_explain_astrology="Sites related to astrology";
$l_explain_audio_video="Sites for downloading audio and video";
$l_explain_bank="Online bank sites";
$l_explain_blog="Sites hosting blogs";
$l_explain_celebrity="Sites « people », stars, etc.";
$l_explain_chat="Online chat sites";
$l_explain_child="Sites for children";
$l_explain_cleaning="Sites related to software update or antiviral";
$l_explain_dangerous_material="Sites related to the creation of dangerous goods (explosives, poison, etc.)";
$l_explain_dating="Online dating sites";
$l_explain_drogue="Sites related to narcotic";
$l_explain_filehosting="Warehouses of files (video, images, sound, software, etc.)";
$l_explain_financial="Sites of financial information";
$l_explain_forums="Sites hosting discussion forums";
$l_explain_gambling="Online gambling sites (casino, virtual scratching, etc.)";
$l_explain_games="Online games sites";
$l_explain_hacking="Sites related to hacking";
$l_explain_jobsearch="Job search sites";
$l_explain_liste_bu="List of educational sites for library";
$l_explain_malware="Malware sites (viruses, worms, trojans, etc.).";
$l_explain_manga="Manga site";
$l_explain_marketingware="doubtful commercial sites";
$l_explain_mixed_adult="Adult sites (shock, gore, war, etc.).";
$l_explain_mobile_phone="Sites related to GSM mobile (ringtones, logos, etc.)";
$l_explain_ossi="Secondary blaclist";
$l_explain_phishing="Phishing sites (traps banking, redirect, etc..)";
$l_explain_press="News sites";
$l_explain_publicite="Advertising sites";
$l_explain_radio="Online radio podcast sites";
$l_explain_reaffected="Sites that have changed ownership (and therefore content)";
$l_explain_redirector="redirects, anonymization or bypass sites";
$l_explain_remote_control="Sites for making remote control";
$l_explain_sect="Sectarian sites";
$l_explain_social_networks="Social networks sites";
$l_explain_sexual_education="Sites related to sex education";
$l_explain_shopping="Shopping sites and online shopping";
$l_explain_webmail="Web sites for e-mail consultation";
$l_explain_dangerous_material="Sites related to the creation of dangerous goods (explosives, poison, etc.)";
$l_explain_dating="Online dating sites";
$l_explain_drogue="Sites related to narcotic";
$l_explain_gambling="Online gambling sites (casino, virtual scratching, etc.)";
$l_explain_hacking="Sites related to hacking";
$l_explain_malware="Malware sites (viruses, worms, trojans, etc.).";
$l_explain_marketingware="doubtful commercial sites";
$l_explain_mixed_adult="Adult sites (shock, gore, war, etc.).";
$l_explain_ossi="Secondary blaclist";
$l_explain_phishing="Phishing sites (traps banking, redirect, etc..)";
$l_explain_redirector="redirects, anonymization or bypass sites";
$l_explain_sect="Sectarian sites";
$l_explain_sport="Sport sites";
$l_explain_strict_redirector="Intentionally malformed URL";
$l_explain_strong_redirector="Malformed URL in a 'google' query";
$l_explain_tricheur="Sites related to cheating (tests, examinations, etc.)";
$l_explain_webmail="Web sites for e-mail consultation";
$l_explain_warez="Sites related to cracked softwares";
}
if (isset($_GET['cat'])){$categorie=$_GET['cat'];}
/web/acc/alcasar-2.2-exploitation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Added: svn:mime-type
+application/octet-stream
\ No newline at end of property
/web/acc/menu.php
116,11 → 116,11
<tr bgcolor="#666666"><td>
<TABLE width="100%" border=0 cellspacing=0 cellpadding=2>
<tr><td valign="middle" align="left"><img src="/images/right.gif" height=10
width=10 border=no nosave><a href="alcasar-2.1-presentation.pdf" target="_blank">Présentation</a></td></tr>
width=10 border=no nosave><a href="alcasar-2.2-presentation.pdf" target="_blank">Présentation</a></td></tr>
<tr><td valign="middle" align="left"><img src="/images/right.gif" height=10
width=10 border=no nosave><a href="alcasar-2.1-installation.pdf" target="_blank">Installation</a></td></tr>
width=10 border=no nosave><a href="alcasar-2.2-installation.pdf" target="_blank">Installation</a></td></tr>
<tr><td valign="middle" align="left"><img src="/images/right.gif" height=10
width=10 border=no nosave><a href="alcasar-2.1-exploitation.pdf" target="_blank">Exploitation</a></td></tr>
width=10 border=no nosave><a href="alcasar-2.2-exploitation.pdf" target="_blank">Exploitation</a></td></tr>
</TABLE>
</td></tr>
</TABLE>
/web/acc/manager/htdocs/help/wispr_redirection_url_help.html
15,7 → 15,7
<tr><td valign="middle" align="center">
Cet attribut d&eacute;finit l'URL de redirection apr&egrave;s authentification.
(non renseign&eacute; = URL demand&eacute; par l'usager)<br>
Attention, vous devez obligatoirement définir le protocole utilisé (ex: http://www.google.fr et NON www.google.fr).
Attention, vous devez obligatoirement définir le protocole utilisé (ex: http://www.google.fr et NON www.google.fr).
<hr>
This attribute defines the redirection URL after authentication.
(empty = user defined URL).<br>
/web/acc/alcasar-2.2-installation.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
Property changes:
Added: svn:mime-type
+application/octet-stream
\ No newline at end of property
/web/alcasar-certificat.pdf
Cannot display: file marked as a binary type.
svn:mime-type = application/octet-stream
/web/status.php
3,7 → 3,7
# status.php for Alcasar captive portal
# by steweb57
#
$organisme = "steweb57";
$organisme = "";
 
# Choice of language
//reste quelques traductions à faire