Subversion Repositories ALCASAR

Rev

Rev 3249 | Go to most recent revision | Only display areas with differences | Ignore whitespace | Details | Blame | Last modification | View Log

Rev 3249 Rev 3252
1
#!/bin/bash
1
#!/bin/bash
2
# $Id: alcasar-activity_report.sh 3249 2025-02-10 10:21:58Z rexy $
2
# $Id: alcasar-activity_report.sh 3252 2025-02-21 18:40:30Z rexy $
3
#
3
#
4
# Create an activity report for ALCASAR every week (sunday at 5.35 pm --> see cron.d).
4
# Create an activity report for ALCASAR every week (sunday at 5.35 pm --> see cron.d).
5
# We read configuration files and logs to create cool charts.
5
# We read configuration files and logs to create cool charts.
6
# Written by Raphaël PION, Rexy & Tom HOUDAYER
6
# Written by Raphaël PION, Rexy & Tom HOUDAYER
7
 
7
 
8
CONF_FILE='/usr/local/etc/alcasar.conf'
8
CONF_FILE='/usr/local/etc/alcasar.conf'
9
# files
9
# files
10
DIR_TMP="/var/tmp"
10
DIR_TMP="/var/tmp"
11
TMP_AV="$DIR_TMP/av_count.txt"
11
TMP_AV="$DIR_TMP/av_count.txt"
12
TMP_BL="$DIR_TMP/bl_count.txt"
12
TMP_BL="$DIR_TMP/bl_count.txt"
13
TMP_BL_WEEK="$DIR_TMP/bl_count_week.txt"
13
TMP_BL_WEEK="$DIR_TMP/bl_count_week.txt"
14
TMP_BL_WEEK_CAT="$DIR_TMP/bl_count_week_cat.txt"
14
TMP_BL_WEEK_CAT="$DIR_TMP/bl_count_week_cat.txt"
15
 
15
 
16
# Model loaded to create charts
16
# Model loaded to create charts
17
DIR_BUILD="/var/www/html/acc/manager/activity_report/"
17
DIR_BUILD="/var/www/html/acc/manager/activity_report/"
18
MODEL_CHARTJS="$DIR_BUILD/models/Chart.report.js"
18
MODEL_CHARTJS="$DIR_BUILD/models/Chart.report.js"
19
MODEL_TABINFO="$DIR_BUILD/models/tabinfo.html"
19
MODEL_TABINFO="$DIR_BUILD/models/tabinfo.html"
20
 
20
 
21
# Where the report will be created.
21
# Where the report will be created.
22
HTML_REPORT="$DIR_BUILD/alcasar-report-$(date +%F).html"
22
HTML_REPORT="$DIR_BUILD/alcasar-report-$(date +%F).html"
23
 
23
 
24
# TIME VALUE
24
# TIME VALUE
25
C_TS=$(date +"%s") #current timestamp
25
C_TS=$(date +"%s") #current timestamp
26
MAX_DAY_AGO=7
26
MAX_DAY_AGO=7
27
SECS_AGO=$(date --date="$MAX_DAY_AGO days ago" +"%s") #timestamp ago
27
SECS_AGO=$(date --date="$MAX_DAY_AGO days ago" +"%s") #timestamp ago
28
STEP_TS=$((C_TS-$SECS_AGO)) #timestamp between current timestamp and SECS_AGO
28
STEP_TS=$((C_TS-$SECS_AGO)) #timestamp between current timestamp and SECS_AGO
29
 
29
 
30
# PRIVATE IP OF ALCASAR
30
# PRIVATE IP OF ALCASAR
31
PRIVATE_IP=$(grep ^PRIVATE_IP= $CONF_FILE | cut -d'=' -f2 | cut -d'/' -f1)
31
PRIVATE_IP=$(grep ^PRIVATE_IP= $CONF_FILE | cut -d'=' -f2 | cut -d'/' -f1)
32
 
32
 
33
# COLOR for charts
33
# COLOR for charts
34
COLOR="'#ff0000','#3333cc','#009933','#993300','#1720EE','#D30229','#8D726D','#41C4E4','#8574F4','#A0BC1A','#BFDC1F','#5ADDC3','#B05744','#CD9319','#8CA39B','#D4AA1C','#A76752','#B03088','#445E87','#70424D','#D118C3','#46ABEF','#E9F197','#AEC0D4','#755C79','#94BBD7','#E2E9DC','#8B68D0','#F7EC7C','#1F16B8','#F4DA0A','#2EC17A','#E06483','#48B342','#F510CD','#9B2662','#180E98','#988FC1','#209E4E','#034240','#FDB142','#36B445','#CDD5C9','#6FA0DE','#EE2206','#204E19','#15FC93','#161ECE','#83D33B','#11A44A','#B7BF6C','#87274C','#B52C4F','#AD2805','#427E6C','#91341A','#191315','#FCB290','#13D3CD','#90F0E6','#C870C9','#AD2C14','#201D2A','#E4DB79','#90A919','#FE17FE','#09B35C','#88D950','#3440FC','#A9D42F','#E2DFAC','#DA69EC','#67430A','#43E94E','#5F7349','#22CF16','#CF038F','#0F6427','#F7AD0F','#C5E382','#DB49B6','#F760BF','#0BE701','#EF88D8','#79E6D7','#8A2D3D','#435A30','#A3C8AC','#99B118','#A929FF','#08A36D','#0A1654','#6F8283','#E1CA3E','#3E8577','#580FB6','#DB0E16','#386CBE','#FA0C43','#B713C9'"
34
COLOR="'#ff0000','#3333cc','#009933','#993300','#1720EE','#D30229','#8D726D','#41C4E4','#8574F4','#A0BC1A','#BFDC1F','#5ADDC3','#B05744','#CD9319','#8CA39B','#D4AA1C','#A76752','#B03088','#445E87','#70424D','#D118C3','#46ABEF','#E9F197','#AEC0D4','#755C79','#94BBD7','#E2E9DC','#8B68D0','#F7EC7C','#1F16B8','#F4DA0A','#2EC17A','#E06483','#48B342','#F510CD','#9B2662','#180E98','#988FC1','#209E4E','#034240','#FDB142','#36B445','#CDD5C9','#6FA0DE','#EE2206','#204E19','#15FC93','#161ECE','#83D33B','#11A44A','#B7BF6C','#87274C','#B52C4F','#AD2805','#427E6C','#91341A','#191315','#FCB290','#13D3CD','#90F0E6','#C870C9','#AD2C14','#201D2A','#E4DB79','#90A919','#FE17FE','#09B35C','#88D950','#3440FC','#A9D42F','#E2DFAC','#DA69EC','#67430A','#43E94E','#5F7349','#22CF16','#CF038F','#0F6427','#F7AD0F','#C5E382','#DB49B6','#F760BF','#0BE701','#EF88D8','#79E6D7','#8A2D3D','#435A30','#A3C8AC','#99B118','#A929FF','#08A36D','#0A1654','#6F8283','#E1CA3E','#3E8577','#580FB6','#DB0E16','#386CBE','#FA0C43','#B713C9'"
35
 
35
 
36
# Values to create new htdigest user to consult statistique of ACC
36
# Values to create new htdigest user to consult statistique of ACC
37
DIR_KEY="/usr/local/etc/digest"
37
DIR_KEY="/usr/local/etc/digest"
38
tmp_account="tmp_activityreport"
38
tmp_account="tmp_activityreport"
39
realm="ALCASAR Control Center (ACC)"
39
realm="ALCASAR Control Center (ACC)"
40
password=$(openssl rand -base64 32) #random password (length : 32)
40
password=$(openssl rand -base64 32) #random password (length : 32)
41
SED="/usr/bin/sed -i "
41
SED="/usr/bin/sed -i "
42
TMP_STATS="$DIR_TMP/stats.html"
42
TMP_STATS="$DIR_TMP/stats.html"
43
TMP_STATS_2="$DIR_TMP/stats2.html"
43
TMP_STATS_2="$DIR_TMP/stats2.html"
44
 
44
 
45
# if empty logs, replace charts by text.
45
# if empty logs, replace charts by text.
46
ENABLE_BL=0
46
ENABLE_BL=0
47
ENABLE_BL_WEEK=0
47
ENABLE_BL_WEEK=0
48
ENABLE_AV=0
48
ENABLE_AV=0
49
 
-
 
50
if [ -e $TMP_AV ]
49
if [ -e $TMP_AV ]
51
then
50
then
52
	rm $TMP_AV
51
	rm $TMP_AV
53
fi
52
fi
54
 
-
 
55
if [ -e $TMP_BL ]
53
if [ -e $TMP_BL ]
56
then
54
then
57
	rm $TMP_BL
55
	rm $TMP_BL
58
fi
56
fi
59
 
-
 
60
if [ -e $TMP_BL_WEEK ]
57
if [ -e $TMP_BL_WEEK ]
61
then
58
then
62
	rm $TMP_BL_WEEK
59
	rm $TMP_BL_WEEK
63
fi
60
fi
64
 
-
 
65
if [ -e $TMP_BL_WEEK_CAT ]
61
if [ -e $TMP_BL_WEEK_CAT ]
66
then
62
then
67
	rm $TMP_BL_WEEK_CAT
63
	rm $TMP_BL_WEEK_CAT
68
fi
64
fi
69
 
-
 
70
if [ -e $HTML_REPORT ]
65
if [ -e $HTML_REPORT ]
71
then
66
then
72
	rm $HTML_REPORT
67
	rm $HTML_REPORT
73
fi
68
fi
74
 
-
 
75
echo "<!doctype html>" >> $HTML_REPORT
69
echo "<!doctype html>" >> $HTML_REPORT
76
echo "<html>" >> $HTML_REPORT
70
echo "<html>" >> $HTML_REPORT
77
echo "<head>" >> $HTML_REPORT
71
echo "<head>" >> $HTML_REPORT
78
echo "<meta charset=\"utf-8\">" >> $HTML_REPORT
72
echo "<meta charset=\"utf-8\">" >> $HTML_REPORT
79
echo "<title>ALCASAR report</title>" >> $HTML_REPORT
73
echo "<title>ALCASAR report</title>" >> $HTML_REPORT
80
echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"../../../css/bootstrap.min.css\">" >> $HTML_REPORT
74
echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"../../../css/bootstrap.min.css\">" >> $HTML_REPORT
81
echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"../../../css/report.css\">" >> $HTML_REPORT
75
echo "<link rel=\"stylesheet\" type=\"text/css\" href=\"../../../css/report.css\">" >> $HTML_REPORT
82
echo "<script src=\"../../../js/Chart.bundle.min.js\"></script>" >> $HTML_REPORT
76
echo "<script src=\"../../../js/Chart.bundle.min.js\"></script>" >> $HTML_REPORT
83
echo "<script src=\"../../../js/jquery.min.js\"></script>" >> $HTML_REPORT
77
echo "<script src=\"../../../js/jquery.min.js\"></script>" >> $HTML_REPORT
84
echo "</head>" >> $HTML_REPORT
78
echo "</head>" >> $HTML_REPORT
85
echo "<body>" >> $HTML_REPORT
79
echo "<body>" >> $HTML_REPORT
-
 
80
echo "<h1><center>Rapport d'activité ALCASAR</center></h1>" >> $HTML_REPORT
86
echo "<h1><center>Rapport d'activité de l'ALCASAR-$(grep ^ORGANISM= $CONF_FILE | cut -d'=' -f2-)</center></h1>" >> $HTML_REPORT
81
echo "<h2><center>$(grep ^ORGANISM= $CONF_FILE | cut -d'=' -f2-)</center></h2>" >> $HTML_REPORT
87
echo "<i><p style=\"text-align: right;\">Date de création $(date +%F)</p></i>" >> $HTML_REPORT
82
echo "<i><p style=\"text-align: right;\">Date de création $(date +%F)</p></i>" >> $HTML_REPORT
88
echo "<font size=\"1\">" >> $HTML_REPORT
83
echo "<font size=\"1\">" >> $HTML_REPORT
89
 
84
 
90
######################TABINFO######################
85
######################TABINFO######################
91
echo "Create information about system and ALCASAR"
86
echo "Create information about system and ALCASAR"
92
#contain every information about ALCASAR configuration, system and last update
87
#contain every information about ALCASAR configuration, system and last update
93
 
88
 
94
cat $MODEL_TABINFO | while read LINE_HTML
89
cat $MODEL_TABINFO | while read LINE_HTML
95
do
90
do
96
	if [ "$(echo $LINE_HTML | grep 'XXORGXX' | wc -l)" -eq 1 ]
91
	if [ "$(echo $LINE_HTML | grep 'XXORGXX' | wc -l)" -eq 1 ]
97
	then
92
	then
98
		VALUE=$(grep ^ORGANISM= $CONF_FILE | cut -d'=' -f2-)
93
		VALUE=$(grep ^ORGANISM= $CONF_FILE | cut -d'=' -f2-)
99
		echo ${LINE_HTML/XXORGXX/$VALUE} >> $HTML_REPORT
94
		echo ${LINE_HTML/XXORGXX/$VALUE} >> $HTML_REPORT
100
 
95
 
101
	elif [ "$(echo $LINE_HTML | grep 'XXINSTALLXX' | wc -l)" -eq 1 ]
96
	elif [ "$(echo $LINE_HTML | grep 'XXINSTALLXX' | wc -l)" -eq 1 ]
102
	then
97
	then
103
		VALUE=$(grep ^INSTALL_DATE= $CONF_FILE | cut -d'=' -f2)
98
		VALUE=$(grep ^INSTALL_DATE= $CONF_FILE | cut -d'=' -f2)
104
		echo ${LINE_HTML/XXINSTALLXX/$VALUE} >> $HTML_REPORT
99
		echo ${LINE_HTML/XXINSTALLXX/$VALUE} >> $HTML_REPORT
105
 
100
 
106
	elif [ "$(echo $LINE_HTML | grep 'XXAVERSIONXX' | wc -l)" -eq 1 ]
101
	elif [ "$(echo $LINE_HTML | grep 'XXAVERSIONXX' | wc -l)" -eq 1 ]
107
	then
102
	then
108
		VALUE=$(grep ^VERSION= $CONF_FILE | cut -d'=' -f2)
103
		VALUE=$(grep ^VERSION= $CONF_FILE | cut -d'=' -f2)
109
		echo ${LINE_HTML/XXAVERSIONXX/$VALUE} >> $HTML_REPORT
104
		echo ${LINE_HTML/XXAVERSIONXX/$VALUE} >> $HTML_REPORT
110
 
105
 
111
	elif [ "$(echo $LINE_HTML | grep 'XXIP_PUBLICXX' | wc -l)" -eq 1 ]
106
	elif [ "$(echo $LINE_HTML | grep 'XXIP_PUBLICXX' | wc -l)" -eq 1 ]
112
	then
107
	then
113
		VALUE=$(grep ^PUBLIC_IP= $CONF_FILE | cut -d'=' -f2)
108
		VALUE=$(grep ^PUBLIC_IP= $CONF_FILE | cut -d'=' -f2)
114
		echo ${LINE_HTML/XXIP_PUBLICXX/$VALUE} >> $HTML_REPORT
109
		echo ${LINE_HTML/XXIP_PUBLICXX/$VALUE} >> $HTML_REPORT
115
 
110
 
116
	elif [ "$(echo $LINE_HTML | grep 'XXIP_PRIVEXX' | wc -l)" -eq 1 ]
111
	elif [ "$(echo $LINE_HTML | grep 'XXIP_PRIVEXX' | wc -l)" -eq 1 ]
117
	then
112
	then
118
		VALUE=$(grep ^PRIVATE_IP= $CONF_FILE | cut -d'=' -f2)
113
		VALUE=$(grep ^PRIVATE_IP= $CONF_FILE | cut -d'=' -f2)
119
		echo ${LINE_HTML/XXIP_PRIVEXX/$VALUE} >> $HTML_REPORT
114
		echo ${LINE_HTML/XXIP_PRIVEXX/$VALUE} >> $HTML_REPORT
120
 
115
 
121
	elif [ "$(echo $LINE_HTML | grep 'XXGWXX' | wc -l)" -eq 1 ]
116
	elif [ "$(echo $LINE_HTML | grep 'XXGWXX' | wc -l)" -eq 1 ]
122
	then
117
	then
123
		VALUE=$(grep ^GW= $CONF_FILE | cut -d'=' -f2)
118
		VALUE=$(grep ^GW= $CONF_FILE | cut -d'=' -f2)
124
		echo ${LINE_HTML/XXGWXX/$VALUE} >> $HTML_REPORT
119
		echo ${LINE_HTML/XXGWXX/$VALUE} >> $HTML_REPORT
125
 
120
 
126
	elif [ "$(echo $LINE_HTML | grep 'XXDNS1XX' | wc -l)" -eq 1 ]
121
	elif [ "$(echo $LINE_HTML | grep 'XXDNS1XX' | wc -l)" -eq 1 ]
127
	then
122
	then
128
		VALUE=$(grep ^DNS1= $CONF_FILE | cut -d'=' -f2)
123
		VALUE=$(grep ^DNS1= $CONF_FILE | cut -d'=' -f2)
129
		echo ${LINE_HTML/XXDNS1XX/$VALUE} >> $HTML_REPORT
124
		echo ${LINE_HTML/XXDNS1XX/$VALUE} >> $HTML_REPORT
130
 
125
 
131
	elif [ "$(echo $LINE_HTML | grep 'XXDNS2XX' | wc -l)" -eq 1 ]
126
	elif [ "$(echo $LINE_HTML | grep 'XXDNS2XX' | wc -l)" -eq 1 ]
132
	then
127
	then
133
		VALUE=$(grep ^DNS2= $CONF_FILE | cut -d'=' -f2)
128
		VALUE=$(grep ^DNS2= $CONF_FILE | cut -d'=' -f2)
134
		echo ${LINE_HTML/XXDNS2XX/$VALUE} >> $HTML_REPORT
129
		echo ${LINE_HTML/XXDNS2XX/$VALUE} >> $HTML_REPORT
135
 
130
 
136
	elif [ "$(echo $LINE_HTML | grep 'XXHOSTXX' | wc -l)" -eq 1 ]
131
	elif [ "$(echo $LINE_HTML | grep 'XXHOSTXX' | wc -l)" -eq 1 ]
137
	then
132
	then
138
		VALUE=$(hostname)
133
		VALUE=$(hostname)
139
		echo ${LINE_HTML/XXHOSTXX/$VALUE} >> $HTML_REPORT
134
		echo ${LINE_HTML/XXHOSTXX/$VALUE} >> $HTML_REPORT
140
 
135
 
141
	elif [ "$(echo $LINE_HTML | grep 'XXOS_VERSIONXX' | wc -l)" -eq 1 ]
136
	elif [ "$(echo $LINE_HTML | grep 'XXOS_VERSIONXX' | wc -l)" -eq 1 ]
142
	then
137
	then
143
		VALUE=$(echo "$(uname -r) [ $(uname -m) ]")
138
		VALUE=$(echo "$(uname -r) [ $(uname -m) ]")
144
		echo ${LINE_HTML/XXOS_VERSIONXX/$VALUE} >> $HTML_REPORT
139
		echo ${LINE_HTML/XXOS_VERSIONXX/$VALUE} >> $HTML_REPORT
145
 
140
 
146
	elif [ "$(echo $LINE_HTML | grep 'XXREBOOTXX' | wc -l)" -eq 1 ]
141
	elif [ "$(echo $LINE_HTML | grep 'XXREBOOTXX' | wc -l)" -eq 1 ]
147
	then
142
	then
148
		VALUE=$(who -b | cut -d' ' -f12-)
143
		VALUE=$(who -b | cut -d' ' -f12-)
149
		echo ${LINE_HTML/XXREBOOTXX/$VALUE} >> $HTML_REPORT
144
		echo ${LINE_HTML/XXREBOOTXX/$VALUE} >> $HTML_REPORT
150
 
145
 
151
	elif [ "$(echo $LINE_HTML | grep 'XXMAJCLAMAVXX' | wc -l)" -eq 1 ]
146
	elif [ "$(echo $LINE_HTML | grep 'XXMAJCLAMAVXX' | wc -l)" -eq 1 ]
152
	then
147
	then
153
		VALUE=$(date -d "$(rpm -qa --queryformat "%{installtime} %{name}\n" | grep -E "clamav-db" | cut -d' ' -f1 )" "+%Y-%m-%d %H:%M:%S")
148
		VALUE=$(date -d "$(rpm -qa --queryformat "%{installtime} %{name}\n" | grep -E "clamav-db" | cut -d' ' -f1 )" "+%Y-%m-%d %H:%M:%S")
154
		echo ${LINE_HTML/XXMAJCLAMAVXX/$VALUE} >> $HTML_REPORT
149
		echo ${LINE_HTML/XXMAJCLAMAVXX/$VALUE} >> $HTML_REPORT
155
echo
150
echo
156
	elif [ "$(echo $LINE_HTML | grep 'XXMAJBLXX' | wc -l)" -eq 1 ]
151
	elif [ "$(echo $LINE_HTML | grep 'XXMAJBLXX' | wc -l)" -eq 1 ]
157
	then
152
	then
158
		VALUE=$(cat /etc/e2guardian/lists/blacklists/README | grep 'Last version' | cut -d' ' -f4-6)
153
		VALUE=$(cat /etc/e2guardian/lists/blacklists/README | grep 'Last version' | cut -d' ' -f4-6)
159
		echo ${LINE_HTML/XXMAJBLXX/$VALUE} >> $HTML_REPORT
154
		echo ${LINE_HTML/XXMAJBLXX/$VALUE} >> $HTML_REPORT
160
 
155
 
161
	elif [ "$(echo $LINE_HTML | grep 'XXRPMXX' | wc -l)" -eq 1 ]
156
	elif [ "$(echo $LINE_HTML | grep 'XXRPMXX' | wc -l)" -eq 1 ]
162
	then
157
	then
163
		#show every ALCASAR RPM updated since X day ago
158
		#show every ALCASAR RPM updated since X day ago
164
		#get timestamp of X day ago. Then we get every packets chich have been updated since this date.
159
		#get timestamp of X day ago. Then we get every packets which have been updated since this date.
165
		if [ "$(rpm -qa --queryformat '%{installtime} %{name} %{version}\n' | awk -v seuil="$SECS_AGO" '$1 > seuil' | sort -n | grep -E "$PACKAGE" | wc -l)" -gt 1 ]
160
		if [ "$(rpm -qa --queryformat '%{installtime} %{name} %{version}\n' | awk -v seuil="$SECS_AGO" '$1 > seuil' | sort -n | grep -E "$PACKAGE" | wc -l)" -gt 1 ]
166
		then
161
		then
167
			PACKAGE='php|apache|iptables|unbound|radius|nfdump|e2guardian|clamav|ulogd|chilli|fail2ban|openssh|ipt-netflow|wget|mariadb|gnupg|openssl'
162
			PACKAGE='php|apache|iptables|unbound|radius|nfdump|e2guardian|clamav|ulogd|chilli|fail2ban|openssh|ipt-netflow|wget|mariadb|gnupg|openssl'
168
			rpm -qa --queryformat '%{installtime} %{name} %{version}\n' | awk -v seuil="$SECS_AGO" '$1 > seuil' | sort -n | grep -E "$PACKAGE" | while read RPM_ALCASAR
163
			rpm -qa --queryformat '%{installtime} %{name} %{version}\n' | awk -v seuil="$SECS_AGO" '$1 > seuil' | sort -n | grep -E "$PACKAGE" | while read RPM_ALCASAR
169
			do
164
			do
170
				RPM_TIMESTAMP=$(echo $RPM_ALCASAR | cut -d' ' -f1)
165
				RPM_TIMESTAMP=$(echo $RPM_ALCASAR | cut -d' ' -f1)
171
				RPM_DATE=$(date -d "@$(echo $RPM_TIMESTAMP)" "+%Y-%m-%d %H:%M:%S")
166
				RPM_DATE=$(date -d "@$(echo $RPM_TIMESTAMP)" "+%Y-%m-%d %H:%M:%S")
172
				RPM_NAME=$(echo $RPM_ALCASAR | cut -d' ' -f2)
167
				RPM_NAME=$(echo $RPM_ALCASAR | cut -d' ' -f2)
173
				RPM_VERSION=$(echo $RPM_ALCASAR | cut -d' ' -f3)
168
				RPM_VERSION=$(echo $RPM_ALCASAR | cut -d' ' -f3)
174
 
169
 
175
				echo "<tr>" >> $HTML_REPORT
170
				echo "<tr>" >> $HTML_REPORT
176
				echo "<td>$RPM_NAME</td>" >> $HTML_REPORT
171
				echo "<td>$RPM_NAME</td>" >> $HTML_REPORT
177
				echo "<td>$RPM_DATE</td>" >> $HTML_REPORT
172
				echo "<td>$RPM_DATE</td>" >> $HTML_REPORT
178
				echo "<td>$RPM_VERSION</td>" >> $HTML_REPORT
173
				echo "<td>$RPM_VERSION</td>" >> $HTML_REPORT
179
				echo "</tr>" >> $HTML_REPORT
174
				echo "</tr>" >> $HTML_REPORT
180
			done
175
			done
181
		else
176
		else
182
			echo "<tr><td colspan=\"3\">Pas de RPM mis à jour cette semaine</td></tr>" >> $HTML_REPORT
177
			echo "<tr><td colspan=\"3\">Pas de RPM mis à jour cette semaine</td></tr>" >> $HTML_REPORT
183
		fi
178
		fi
184
	else
179
	else
185
		echo $LINE_HTML >> $HTML_REPORT
180
		echo $LINE_HTML >> $HTML_REPORT
186
	fi
181
	fi
187
done
182
done
188
 
183
 
189
######################BL WEBSITE SINCE INSTALLATION######################
184
######################BL WEBSITE SINCE INSTALLATION######################
190
echo "Create BL website since the installation of ALCASAR"
185
echo "Create BL website since the installation of ALCASAR"
191
#find data
186
#find data
192
 
187
 
193
#decompress every logs
188
#decompress every logs
194
if [ "$(ls -1 /var/log/unbound/unbound-blacklist.log.*.gz 2>/dev/null | wc -l)" -ge 1 ]
189
if [ "$(ls -1 /var/log/unbound/unbound-blacklist.log.*.gz 2>/dev/null | wc -l)" -ge 1 ]
195
then
190
then
196
	gunzip -d unbound-blacklist.log.*.gz
191
	gunzip -d unbound-blacklist.log.*.gz
197
fi
192
fi
198
 
193
 
199
#convert logs date in timestamp and find categories of blacklisted website
194
#convert logs date in timestamp and find categories of blacklisted website
200
tmp_log=$(mktemp)
195
tmp_log=$(mktemp)
201
for FILE in /var/log/unbound/unbound-blacklist.log*
196
for FILE in /var/log/unbound/unbound-blacklist.log*
202
do
197
do
203
	grep -E "info: [^ ]+ typetransparent $PRIVATE_IP" /var/log/unbound/unbound-blacklist.log > $tmp_log
198
	grep -E "info: [^ ]+ typetransparent $PRIVATE_IP" /var/log/unbound/unbound-blacklist.log > $tmp_log
204
	while read LOG_BL
199
	while read LOG_BL
205
	do
200
	do
206
		# find the current blacklisted category
201
		# find the current blacklisted category
207
		website_bl=$(echo $LOG_BL | cut -d' ' -f4)
202
		website_bl=$(echo $LOG_BL | cut -d' ' -f4)
208
		website_bl=${website_bl%?} # remove the last character
203
		website_bl=${website_bl%?} # remove the last character
209
 
204
 
210
		#we convert www.test.co.uk => test.co.uk to find the category of this website
205
		#we convert www.test.co.uk => test.co.uk to find the category of this website
211
		if [ "$(grep -o '\.' <<< "$website_bl" | wc -l)" -ge "2" ]
206
		if [ "$(grep -o '\.' <<< "$website_bl" | wc -l)" -ge "2" ]
212
		then
207
		then
213
			website_bl=$(echo $website_bl | cut -d'.' -f2-)
208
			website_bl=$(echo $website_bl | cut -d'.' -f2-)
214
		fi
209
		fi
215
 
-
 
216
		#get BL category
210
		#get BL category
217
		categorie_bl=$(grep -Rl "$website_bl" /usr/local/share/unbound-bl-enabled/ | cut -d'/' -f6 | head -1)
211
		categorie_bl=$(grep -Rl "$website_bl" /usr/local/share/unbound-bl-enabled/ | cut -d'/' -f6 | head -1)
218
 
-
 
219
		CURRENT_TS=$(echo $LOG_BL | cut -d '[' -f2 | cut -d ']' -f1)
212
		CURRENT_TS=$(echo $LOG_BL | cut -d '[' -f2 | cut -d ']' -f1)
220
		echo "$CURRENT_TS:$categorie_bl:" >> $TMP_BL
213
		echo "$CURRENT_TS:$categorie_bl:" >> $TMP_BL
221
	done < $tmp_log
214
	done < $tmp_log
222
done
215
done
223
rm $tmp_log
216
rm $tmp_log
224
 
217
 
225
#if data exists, create this section in html document
218
#if data exists, create this section in html document
226
if [ -e $TMP_BL ]
219
if [ -e $TMP_BL ]
227
then
220
then
228
	ENABLE_BL=1
221
	ENABLE_BL=1
229
	#count every BL website consulted since installation (maximum 1 year)
222
	#count every BL website consulted since installation (maximum 1 year)
230
	DATE_END=$(cat $TMP_BL | cut -d':' -f1 | sort -n | head -1 )
223
	DATE_END=$(cat $TMP_BL | cut -d':' -f1 | sort -n | head -1 )
231
 
-
 
232
 
-
 
233
	for TS in $(seq $C_TS -$STEP_TS $DATE_END)
224
	for TS in $(seq $C_TS -$STEP_TS $DATE_END)
234
	do
225
	do
235
		DATE_1=$TS
226
		DATE_1=$TS
236
		DATE_2=$((TS-$STEP_TS))
227
		DATE_2=$((TS-$STEP_TS))
237
		COUNT_BL_INSTALLATION=0
228
		COUNT_BL_INSTALLATION=0
238
 
-
 
239
		for LINE in $(cat $TMP_BL)
229
		for LINE in $(cat $TMP_BL)
240
		do
230
		do
241
			TS_FILE=$(echo $LINE | cut -d':' -f1)
231
			TS_FILE=$(echo $LINE | cut -d':' -f1)
242
 
232
 
243
			if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
233
			if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
244
			then
234
			then
245
				COUNT_BL_INSTALLATION=$((COUNT_BL_INSTALLATION+1))
235
				COUNT_BL_INSTALLATION=$((COUNT_BL_INSTALLATION+1))
246
			fi
236
			fi
247
		done
237
		done
248
 
-
 
249
		VALUE_BL_INSTALLATION_LABEL="'$(date -d @$DATE_2 "+%Y-%m-%d" )', $VALUE_BL_INSTALLATION_LABEL"
238
		VALUE_BL_INSTALLATION_LABEL="'$(date -d @$DATE_2 "+%Y-%m-%d" )', $VALUE_BL_INSTALLATION_LABEL"
250
		VALUE_BL_INSTALLATION_DATA="$COUNT_BL_INSTALLATION, $VALUE_BL_INSTALLATION_DATA"
239
		VALUE_BL_INSTALLATION_DATA="$COUNT_BL_INSTALLATION, $VALUE_BL_INSTALLATION_DATA"
251
	done
240
	done
252
 
241
 
253
	#create Antivirus section in html document
242
	#create Antivirus section in html document
254
	NAME_BL_INSTALLATION='chart_bl_installation'
243
	NAME_BL_INSTALLATION='chart_bl_installation'
255
	CONF_BL_INSTALLATION='config_bl_installation'
244
	CONF_BL_INSTALLATION='config_bl_installation'
256
	echo "<center>" >> $HTML_REPORT
245
	echo "<center>" >> $HTML_REPORT
257
	echo "<canvas id='$NAME_BL_INSTALLATION' width='450' height='450'></canvas>" >> $HTML_REPORT
246
	echo "<canvas id='$NAME_BL_INSTALLATION' width='450' height='450'></canvas>" >> $HTML_REPORT
258
	echo "</center>" >> $HTML_REPORT
247
	echo "</center>" >> $HTML_REPORT
259
 
248
 
260
	#create chart bar in html file with javascript (chartjs.com)
249
	#create chart bar in html file with javascript (chartjs.com)
261
	echo "<script>" >> $HTML_REPORT
250
	echo "<script>" >> $HTML_REPORT
262
	cat $MODEL_CHARTJS | while read LINE_JS
251
	cat $MODEL_CHARTJS | while read LINE_JS
263
	do
252
	do
264
		#name of variable
253
		#name of variable
265
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
254
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
266
		then
255
		then
267
			echo ${LINE_JS/XXCONFXX/$CONF_BL_INSTALLATION} >> $HTML_REPORT
256
			echo ${LINE_JS/XXCONFXX/$CONF_BL_INSTALLATION} >> $HTML_REPORT
268
		#chart type
257
		#chart type
269
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
258
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
270
		then
259
		then
271
			echo ${LINE_JS/XXTYPEXX/bar} >> $HTML_REPORT
260
			echo ${LINE_JS/XXTYPEXX/bar} >> $HTML_REPORT
272
		#chart title
261
		#chart title
273
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
262
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
274
		then
263
		then
275
			echo ${LINE_JS/XXTITLEXX/"Sites bloqués au total"} >> $HTML_REPORT
264
			echo ${LINE_JS/XXTITLEXX/"Sites bloqués au total"} >> $HTML_REPORT
276
		#chart data
265
		#chart data
277
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
266
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
278
		then
267
		then
279
			echo ${LINE_JS/XXDATAXX/$VALUE_BL_INSTALLATION_DATA} >> $HTML_REPORT
268
			echo ${LINE_JS/XXDATAXX/$VALUE_BL_INSTALLATION_DATA} >> $HTML_REPORT
280
		#color
269
		#color
281
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
270
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
282
		then
271
		then
283
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
272
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
284
		#labels
273
		#labels
285
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
274
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
286
		then
275
		then
287
			echo ${LINE_JS/XXLABELSXX/$VALUE_BL_INSTALLATION_LABEL} >> $HTML_REPORT
276
			echo ${LINE_JS/XXLABELSXX/$VALUE_BL_INSTALLATION_LABEL} >> $HTML_REPORT
288
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
277
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
289
		then
278
		then
290
			echo ${LINE_JS/XXLEGENDXX/false} >> $HTML_REPORT
279
			echo ${LINE_JS/XXLEGENDXX/false} >> $HTML_REPORT
291
		#display value of Y axis, only useful for chart bar
280
		#display value of Y axis, only useful for chart bar
292
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
281
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
293
		then
282
		then
294
			echo "" >> $HTML_REPORT
283
			echo "" >> $HTML_REPORT
295
		#display value of Y axis, only useful for chart bar
284
		#display value of Y axis, only useful for chart bar
296
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
285
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
297
		then
286
		then
298
			echo "" >> $HTML_REPORT
287
			echo "" >> $HTML_REPORT
299
		elif [ "$(echo $LINE_JS | grep 'XXYLABELXX' | wc -l)" -eq 1 ]
288
		elif [ "$(echo $LINE_JS | grep 'XXYLABELXX' | wc -l)" -eq 1 ]
300
		then
289
		then
301
			echo "\"Nombre de site bloqué par la blacklist\"" >> $HTML_REPORT
290
			echo "\"Nombre de site bloqué par la blacklist\"" >> $HTML_REPORT
302
		else
291
		else
303
			echo $LINE_JS >> $HTML_REPORT
292
			echo $LINE_JS >> $HTML_REPORT
304
		fi
293
		fi
305
	done
294
	done
306
	echo "</script>" >> $HTML_REPORT
295
	echo "</script>" >> $HTML_REPORT
307
else
296
else
308
	echo "<h2>Aucune activité de la Blacklist depuis l'installation.</h2>" >> $HTML_REPORT
297
	echo "<h3>Aucune activité de la Blacklist depuis l'installation.</h3>" >> $HTML_REPORT
309
fi
298
fi
310
 
299
 
311
 
300
 
312
 
301
 
313
######################Unbound BLACKLIST######################
302
######################Unbound BLACKLIST######################
314
echo "Create BL website since $MAX_DAY_AGO days"
303
echo "Create BL website since $MAX_DAY_AGO days"
315
 
304
 
316
#if data exists, create BL section in html document
305
#if data exists, create BL section in html document
317
if [ -e $TMP_BL ]
306
if [ -e $TMP_BL ]
318
then
307
then
319
	ENABLE_BL_WEEK=1
308
	ENABLE_BL_WEEK=1
320
	#find data
309
	#find data
321
	#count every BL website consulted since DAYS_AGO
310
	#count every BL website consulted since DAYS_AGO
322
	DATE_1=$C_TS
311
	DATE_1=$C_TS
323
	DATE_2=$((DATE_1-$STEP_TS))
312
	DATE_2=$((DATE_1-$STEP_TS))
324
 
-
 
325
	touch $TMP_BL_WEEK
313
	touch $TMP_BL_WEEK
326
 
-
 
327
	for LINE in $(cat $TMP_BL)
314
	for LINE in $(cat $TMP_BL)
328
	do
315
	do
329
		TS_FILE=$(echo $LINE | cut -d':' -f1)
316
		TS_FILE=$(echo $LINE | cut -d':' -f1)
330
		#select only elements between DATE_1 and DATE_2
317
		#select only elements between DATE_1 and DATE_2
331
		if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
318
		if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
332
		then
319
		then
333
			echo $LINE >> $TMP_BL_WEEK
320
			echo $LINE >> $TMP_BL_WEEK
334
		fi
321
		fi
335
	done
322
	done
336
 
323
 
337
	#then we count every occurence for each category in TMP_BL_WEEK
324
	#then we count every occurence for each category in TMP_BL_WEEK
338
	for CAT in $(ls /usr/local/share/unbound-bl/ -1 | cut -d'.' -f1)
325
	for CAT in $(ls /usr/local/share/unbound-bl/ -1 | cut -d'.' -f1)
339
	do
326
	do
340
		echo "$CAT:$(grep -o ":$CAT:" <<< "$(cat $TMP_BL_WEEK)" | wc -l):" >> $TMP_BL_WEEK_CAT
327
		echo "$CAT:$(grep -o ":$CAT:" <<< "$(cat $TMP_BL_WEEK)" | wc -l):" >> $TMP_BL_WEEK_CAT
341
	done
328
	done
342
 
329
 
343
	#we sort by number of occurence and we take the top 10 BL categories
330
	#we sort by number of occurence and we take the top 10 BL categories
344
	for LINE in $(sort -t':' -k2 -rn $TMP_BL_WEEK_CAT | head -n 10)
331
	for LINE in $(sort -t':' -k2 -rn $TMP_BL_WEEK_CAT | head -n 10)
345
	do
332
	do
346
 
-
 
347
		DATA=$(echo $LINE | cut -d':' -f2)
333
		DATA=$(echo $LINE | cut -d':' -f2)
348
		LABEL=$(echo $LINE | cut -d':' -f1)
334
		LABEL=$(echo $LINE | cut -d':' -f1)
349
		if [ $DATA -ne 0 ]
335
		if [ $DATA -ne 0 ]
350
		then
336
		then
351
			VALUE_BL_DATA="$VALUE_BL_DATA $DATA, "
337
			VALUE_BL_DATA="$VALUE_BL_DATA $DATA, "
352
			VALUE_BL_LABEL="$VALUE_BL_LABEL '$LABEL ($DATA)',"
338
			VALUE_BL_LABEL="$VALUE_BL_LABEL '$LABEL ($DATA)',"
353
		fi
339
		fi
354
	done
340
	done
355
 
341
 
356
	#get other categories (sum them all)
342
	#get other categories (sum them all)
357
	if [ "$(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc)" -gt 0 ]
343
	if [ "$(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc)" -gt 0 ]
358
	then
344
	then
359
		VALUE_BL_DATA="$VALUE_BL_DATA $(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc)"
345
		VALUE_BL_DATA="$VALUE_BL_DATA $(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc)"
360
		VALUE_BL_LABEL="$VALUE_BL_LABEL 'autre ($(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc))'"
346
		VALUE_BL_LABEL="$VALUE_BL_LABEL 'autre ($(cat $TMP_BL_WEEK_CAT | cut -d':' -f2 | sort -k1 -rn | tail -n+$(($(echo $VALUE_BL_DATA | wc -w)+1)) | paste -sd+ | bc))'"
361
	fi
347
	fi
362
 
348
 
363
	#create chart pie in html file with javascript (chartjs.com)
349
	#create chart pie in html file with javascript (chartjs.com)
364
	NAME_BL='chart_bl'
350
	NAME_BL='chart_bl'
365
	CONF_BL='config_bl'
351
	CONF_BL='config_bl'
366
	echo "<center>" >> $HTML_REPORT
352
	echo "<center>" >> $HTML_REPORT
367
	echo "<canvas id='$NAME_BL' width='450' height='450' ></canvas>" >> $HTML_REPORT
353
	echo "<canvas id='$NAME_BL' width='450' height='450' ></canvas>" >> $HTML_REPORT
368
	echo "</center>" >> $HTML_REPORT
354
	echo "</center>" >> $HTML_REPORT
369
	echo "<script>" >> $HTML_REPORT
355
	echo "<script>" >> $HTML_REPORT
370
 
-
 
371
	cat $MODEL_CHARTJS | while read LINE_JS
356
	cat $MODEL_CHARTJS | while read LINE_JS
372
	do
357
	do
373
		#variable name
358
		#variable name
374
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
359
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
375
		then
360
		then
376
			echo ${LINE_JS/XXCONFXX/$CONF_BL} >> $HTML_REPORT
361
			echo ${LINE_JS/XXCONFXX/$CONF_BL} >> $HTML_REPORT
377
		#chart type
362
		#chart type
378
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
363
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
379
		then
364
		then
380
			echo ${LINE_JS/XXTYPEXX/pie} >> $HTML_REPORT
365
			echo ${LINE_JS/XXTYPEXX/pie} >> $HTML_REPORT
381
		#graph title
366
		#graph title
382
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
367
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
383
		then
368
		then
384
			echo ${LINE_JS/XXTITLEXX/"Sites bloqués cette semaine"} >> $HTML_REPORT
369
			echo ${LINE_JS/XXTITLEXX/"Sites bloqués cette semaine"} >> $HTML_REPORT
385
		#chart data
370
		#chart data
386
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
371
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
387
		then
372
		then
388
			echo ${LINE_JS/XXDATAXX/$VALUE_BL_DATA} >> $HTML_REPORT
373
			echo ${LINE_JS/XXDATAXX/$VALUE_BL_DATA} >> $HTML_REPORT
389
		#color
374
		#color
390
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
375
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
391
		then
376
		then
392
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
377
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
393
		#labels
378
		#labels
394
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
379
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
395
		then
380
		then
396
			echo ${LINE_JS/XXLABELSXX/$VALUE_BL_LABEL} >> $HTML_REPORT
381
			echo ${LINE_JS/XXLABELSXX/$VALUE_BL_LABEL} >> $HTML_REPORT
397
		#display legend, only useful for chart pie
382
		#display legend, only useful for chart pie
398
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
383
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
399
		then
384
		then
400
			echo ${LINE_JS/XXLEGENDXX/true} >> $HTML_REPORT
385
			echo ${LINE_JS/XXLEGENDXX/true} >> $HTML_REPORT
401
		#display value of Y axis, only useful for chart bar
386
		#display value of Y axis, only useful for chart bar
402
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
387
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
403
		then
388
		then
404
			echo "/*" >> $HTML_REPORT
389
			echo "/*" >> $HTML_REPORT
405
		#display value of Y axis, only useful for chart bar
390
		#display value of Y axis, only useful for chart bar
406
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
391
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
407
		then
392
		then
408
			echo "*/" >> $HTML_REPORT
393
			echo "*/" >> $HTML_REPORT
409
		else
394
		else
410
			echo $LINE_JS >> $HTML_REPORT
395
			echo $LINE_JS >> $HTML_REPORT
411
		fi
396
		fi
412
	done
397
	done
413
	echo "</script>" >> $HTML_REPORT
398
	echo "</script>" >> $HTML_REPORT
414
else
399
else
415
	echo "<h2>Aucune activité de la Blacklist cette semaine.</h2>" >> $HTML_REPORT
400
	echo "<h3>Aucune activité de la Blacklist cette semaine.</h3>" >> $HTML_REPORT
416
fi
401
fi
417
 
402
 
418
######################VIRUS THREAT######################
403
######################VIRUS THREAT######################
419
echo "Create AV logs since the installation of ALCASAR"
404
echo "Create AV logs since the installation of ALCASAR"
420
 
405
 
421
#decompress every logs, if they exist
406
#decompress every logs, if they exist
422
if [ "$(ls -1 /var/log/clamav/clamd.log.*.gz 2>/dev/null | wc -l)" -ge 1 ]
407
if [ "$(ls -1 /var/log/clamav/clamd.log.*.gz 2>/dev/null | wc -l)" -ge 1 ]
423
then
408
then
424
	gunzip -d clamd.log.*.gz
409
	gunzip -d clamd.log.*.gz
425
fi
410
fi
426
 
-
 
427
for FILE in /var/log/clamav/clamd.log*
411
for FILE in /var/log/clamav/clamd.log*
428
do
412
do
429
	while read LINE_AV
413
	while read LINE_AV
430
	do
414
	do
431
		if [ "`echo $LINE_AV|grep -c FOUND`" == 1 ]
415
		if [ "`echo $LINE_AV|grep -c FOUND`" == 1 ]
432
		then
416
		then
433
			Y=$(echo $LINE_AV | cut -d' ' -f5)
417
			Y=$(echo $LINE_AV | cut -d' ' -f5)
434
			M=$(echo $LINE_AV | cut -d' ' -f2)
418
			M=$(echo $LINE_AV | cut -d' ' -f2)
435
			D=$(echo $LINE_AV | cut -d' ' -f3)
419
			D=$(echo $LINE_AV | cut -d' ' -f3)
436
			H=$(echo $LINE_AV | cut -d' ' -f4)
420
			H=$(echo $LINE_AV | cut -d' ' -f4)
437
			CURRENT_TS=$(date -d "$M $D $Y $H" +"%s")
421
			CURRENT_TS=$(date -d "$M $D $Y $H" +"%s")
438
			echo $CURRENT_TS >> $TMP_AV
422
			echo $CURRENT_TS >> $TMP_AV
439
		fi
423
		fi
440
	done < $FILE
424
	done < $FILE
441
done
425
done
442
 
-
 
443
if [ -e $TMP_AV ]
426
if [ -e $TMP_AV ]
444
then
427
then
445
	ENABLE_AV=1
428
	ENABLE_AV=1
446
	DATE_END=$(cat $TMP_AV | sort -n | head -1)
429
	DATE_END=$(cat $TMP_AV | sort -n | head -1)
447
	for TS in $(seq $C_TS -$STEP_TS $DATE_END)
430
	for TS in $(seq $C_TS -$STEP_TS $DATE_END)
448
	do
431
	do
449
		DATE_1=$TS
432
		DATE_1=$TS
450
		DATE_2=$((TS-$STEP_TS))
433
		DATE_2=$((TS-$STEP_TS))
451
		COUNT_AV=0
434
		COUNT_AV=0
452
 
435
 
453
		for TS_FILE in $(cat $TMP_AV)
436
		for TS_FILE in $(cat $TMP_AV)
454
		do
437
		do
455
			if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
438
			if [ "$TS_FILE" -le "$DATE_1" ] && [ "$TS_FILE" -ge "$DATE_2" ]
456
			then
439
			then
457
				COUNT_AV=$((COUNT_AV+1))
440
				COUNT_AV=$((COUNT_AV+1))
458
			fi
441
			fi
459
		done
442
		done
460
 
443
 
461
		VALUE_AV_LABEL="'$(date -d @$DATE_2 "+%Y-%m-%d" )', $VALUE_AV_LABEL"
444
		VALUE_AV_LABEL="'$(date -d @$DATE_2 "+%Y-%m-%d" )', $VALUE_AV_LABEL"
462
		VALUE_AV_DATA="$COUNT_AV, $VALUE_AV_DATA"
445
		VALUE_AV_DATA="$COUNT_AV, $VALUE_AV_DATA"
463
	done
446
	done
464
 
447
 
465
	#create Antivirus section in html document
448
	#create Antivirus section in html document
466
	NAME_AV='chart_av'
449
	NAME_AV='chart_av'
467
	CONF_AV='config_av'
450
	CONF_AV='config_av'
468
	echo "<center>" >> $HTML_REPORT
451
	echo "<center>" >> $HTML_REPORT
469
	echo "<canvas id='$NAME_AV' width='450' height='450' ></canvas>" >> $HTML_REPORT
452
	echo "<canvas id='$NAME_AV' width='450' height='450' ></canvas>" >> $HTML_REPORT
470
	echo "</center>" >> $HTML_REPORT
453
	echo "</center>" >> $HTML_REPORT
471
 
454
 
472
 
-
 
473
	#create chart bar in html file with javascript (chartjs.com)
455
	#create chart bar in html file with javascript (chartjs.com)
474
	echo "<script>" >> $HTML_REPORT
456
	echo "<script>" >> $HTML_REPORT
475
	cat $MODEL_CHARTJS | while read LINE_JS
457
	cat $MODEL_CHARTJS | while read LINE_JS
476
	do
458
	do
477
		#name of variable
459
		#name of variable
478
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
460
		if [ "$(echo $LINE_JS | grep 'XXCONFXX' | wc -l)" -eq 1 ]
479
		then
461
		then
480
			echo ${LINE_JS/XXCONFXX/$CONF_AV} >> $HTML_REPORT
462
			echo ${LINE_JS/XXCONFXX/$CONF_AV} >> $HTML_REPORT
481
		#chart type
463
		#chart type
482
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
464
		elif [ "$(echo $LINE_JS | grep 'XXTYPEXX' | wc -l)" -eq 1 ]
483
		then
465
		then
484
			echo ${LINE_JS/XXTYPEXX/bar} >> $HTML_REPORT
466
			echo ${LINE_JS/XXTYPEXX/bar} >> $HTML_REPORT
485
		#graph title
467
		#graph title
486
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
468
		elif [ "$(echo $LINE_JS | grep 'XXTITLEXX' | wc -l)" -eq 1 ]
487
		then
469
		then
488
			echo ${LINE_JS/XXTITLEXX/"Menaces bloqués par l\'antivirus"} >> $HTML_REPORT
470
			echo ${LINE_JS/XXTITLEXX/"Menaces bloqués par l\'antivirus"} >> $HTML_REPORT
489
		#chart data
471
		#chart data
490
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
472
		elif [ "$(echo $LINE_JS | grep 'XXDATAXX' | wc -l)" -eq 1 ]
491
		then
473
		then
492
			echo ${LINE_JS/XXDATAXX/$VALUE_AV_DATA} >> $HTML_REPORT
474
			echo ${LINE_JS/XXDATAXX/$VALUE_AV_DATA} >> $HTML_REPORT
493
		#color
475
		#color
494
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
476
		elif [ "$(echo $LINE_JS | grep 'XXCOLORXX' | wc -l)" -eq 1 ]
495
		then
477
		then
496
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
478
			echo ${LINE_JS/XXCOLORXX/$COLOR} >> $HTML_REPORT
497
		#labels
479
		#labels
498
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
480
		elif [ "$(echo $LINE_JS | grep 'XXLABELSXX' | wc -l)" -eq 1 ]
499
		then
481
		then
500
			echo ${LINE_JS/XXLABELSXX/$VALUE_AV_LABEL} >> $HTML_REPORT
482
			echo ${LINE_JS/XXLABELSXX/$VALUE_AV_LABEL} >> $HTML_REPORT
501
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
483
		elif [ "$(echo $LINE_JS | grep 'XXLEGENDXX' | wc -l)" -eq 1 ]
502
		then
484
		then
503
			echo ${LINE_JS/XXLEGENDXX/false} >> $HTML_REPORT
485
			echo ${LINE_JS/XXLEGENDXX/false} >> $HTML_REPORT
504
		#display value of Y axis, only useful for chart bar
486
		#display value of Y axis, only useful for chart bar
505
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
487
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-BEGINXX' | wc -l)" -eq 1 ]
506
		then
488
		then
507
			echo "" >> $HTML_REPORT
489
			echo "" >> $HTML_REPORT
508
		#display value of Y axis, only useful for chart bar
490
		#display value of Y axis, only useful for chart bar
509
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
491
		elif [ "$(echo $LINE_JS | grep 'XXCOMMENT-ENDXX' | wc -l)" -eq 1 ]
510
		then
492
		then
511
			echo "" >> $HTML_REPORT
493
			echo "" >> $HTML_REPORT
512
		elif [ "$(echo $LINE_JS | grep 'XXYLABELXX' | wc -l)" -eq 1 ]
494
		elif [ "$(echo $LINE_JS | grep 'XXYLABELXX' | wc -l)" -eq 1 ]
513
		then
495
		then
514
			echo "\"Nombre de menaces virales bloqués par l'antivirus\"" >> $HTML_REPORT
496
			echo "\"Nombre de menaces virales bloqués par l'antivirus\"" >> $HTML_REPORT
515
		else
497
		else
516
			echo $LINE_JS >> $HTML_REPORT
498
			echo $LINE_JS >> $HTML_REPORT
517
		fi
499
		fi
518
	done
500
	done
519
	echo "</script>" >> $HTML_REPORT
501
	echo "</script>" >> $HTML_REPORT
520
else
502
else
521
	echo "<h2>Aucune menace virale.</h2>" >> $HTML_REPORT
503
	echo "<h3>Aucune menace virale.</h3>" >> $HTML_REPORT
522
fi
504
fi
523
 
505
 
524
 
506
 
525
######################ALCASAR : DAILY USE######################
507
######################ALCASAR : DAILY USE######################
526
echo "Get daily use connection of the week"
508
echo "Get daily use connection of the week"
527
#create html document
-
 
-
 
509
 
528
echo "<h2>Statistiques volumétrie connexions</h2>" >> $HTML_REPORT
510
echo "<h3>Statistiques volumétrie connexions</h3>" >> $HTML_REPORT
529
 
511
 
530
#create new htdigest user to consult statistique of ACC
512
#create new htdigest user to consult statistique of ACC
531
#if user does not exist, we create him
513
#if user does not exist, we create him
532
if [ "$(grep "$tmp_account:" $DIR_KEY/key_only_manager | wc -l)" -lt 1 ]
514
if [ "$(grep "$tmp_account:" $DIR_KEY/key_only_manager | wc -l)" -lt 1 ]
533
then
515
then
534
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_only_manager
516
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_only_manager
535
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_manager
517
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_manager
536
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_all
518
	(echo -n "$tmp_account:$realm:" && echo -n "$tmp_account:$realm:$password" | md5sum | awk '{print $1}' ) >> $DIR_KEY/key_all
537
	chown -R root:apache $DIR_KEY
519
	chown -R root:apache $DIR_KEY
538
	chmod 640 $DIR_KEY/key_*
520
	chmod 640 $DIR_KEY/key_*
539
fi
521
fi
540
 
522
 
541
#get stats.php from ACC
523
#get stats.php from ACC
542
wget -q -nv --user $tmp_account --password $password https://alcasar/acc/manager/htdocs/stats.php -O $TMP_STATS --no-check-certificate
524
wget -q -nv --user $tmp_account --password $password https://alcasar/acc/manager/htdocs/stats.php -O $TMP_STATS --no-check-certificate
543
 
525
 
544
#clean this file to include it in html report.
526
#clean this file to include it in html report.
545
DELIM_1="<td colspan=10 height=20><img src=\"images\/pixel.gif\"><\/td>"
527
DELIM_1="<td colspan=10 height=20><img src=\"images\/pixel.gif\"><\/td>"
546
DELIM_2="<\/td><\/tr> <\/table> <\/td><\/tr> <\/table> <\/td><\/tr> <\/table> <p>"
528
DELIM_2="<\/td><\/tr> <\/table> <\/td><\/tr> <\/table> <\/td><\/tr> <\/table> <p>"
547
cat $TMP_STATS | sed -n "/$DELIM_1/,/$DELIM_2/p" | tail -n+3 | head -n-2 >> $TMP_STATS_2
529
cat $TMP_STATS | sed -n "/$DELIM_1/,/$DELIM_2/p" | tail -n+3 | head -n-2 >> $TMP_STATS_2
548
cat $TMP_STATS_2 | sed -e 's:images/pixel.gif:../../manager/htdocs/images/pixel.gif:g' >> $HTML_REPORT
530
cat $TMP_STATS_2 | sed -e 's:images/pixel.gif:../../manager/htdocs/images/pixel.gif:g' >> $HTML_REPORT
549
 
531
 
550
#we delete our user if he still exists
532
#we delete our user if he still exists
551
if [ "$(grep "$tmp_account:" $DIR_KEY/key_only_manager | wc -l)" -ge 1 ]
533
if [ "$(grep "$tmp_account:" $DIR_KEY/key_only_manager | wc -l)" -ge 1 ]
552
then
534
then
553
	$SED "/^$tmp_account:/d" $DIR_KEY/key_only_manager
535
	$SED "/^$tmp_account:/d" $DIR_KEY/key_only_manager
554
	$SED "/^$tmp_account:/d" $DIR_KEY/key_manager
536
	$SED "/^$tmp_account:/d" $DIR_KEY/key_manager
555
	$SED "/^$tmp_account:/d" $DIR_KEY/key_all
537
	$SED "/^$tmp_account:/d" $DIR_KEY/key_all
556
fi
538
fi
557
 
539
 
558
 
540
 
559
###################### ALCASAR : LOG ACCESS ######################
541
###################### ALCASAR : LOG ACCESS ######################
560
echo "Get ACC log access of the week"
542
echo "Get ACC log access of the week"
561
 
543
 
562
ROWS=""
544
ROWS=""
563
while read -r access ; do
545
while read -r access ; do
564
	access_datas=(${access//|/ })
546
	access_datas=(${access//|/ })
565
 
-
 
566
	accces_date_intl=$(echo "${access_datas[0]} ${access_datas[1]}" | sed -E 's@^([0-9]{2})+/+([0-9]{2})+/+([0-9]{4})+@\3-\2-\1@') # Convert date format DD/MM/YYYY to YYYY-MM-DD
547
	accces_date_intl=$(echo "${access_datas[0]} ${access_datas[1]}" | sed -E 's@^([0-9]{2})+/+([0-9]{2})+/+([0-9]{4})+@\3-\2-\1@') # Convert date format DD/MM/YYYY to YYYY-MM-DD
567
	access_date=$(date -d "$accces_date_intl" +%s)
548
	access_date=$(date -d "$accces_date_intl" +%s)
568
	access_user=${access_datas[2]}
549
	access_user=${access_datas[2]}
569
	access_ip=${access_datas[3]}
550
	access_ip=${access_datas[3]}
570
	access_agent=$(echo "$access" | cut -d'|' -f4)
551
	access_agent=$(echo "$access" | cut -d'|' -f4)
571
	if [ $access_date -lt $SECS_AGO ]; then
552
	if [ $access_date -lt $SECS_AGO ]; then
572
		break
553
		break
573
	fi
554
	fi
574
 
-
 
575
	access_date_formatted=$(date -d @$access_date +"%x %X")
555
	access_date_formatted=$(date -d @$access_date +"%x %X")
576
 
-
 
577
	ROWS="$ROWS<tr><td>$access_date_formatted</td><td>$access_user</td><td>$access_ip</td><td>$access_agent</td></tr>"
556
	ROWS="$ROWS<tr><td>$access_date_formatted</td><td>$access_user</td><td>$access_ip</td><td>$access_agent</td></tr>"
578
done < <(cat /var/Save/security/acc_access.log | sort -r)
557
done < <(cat /var/Save/security/acc_access.log | sort -r)
579
# TODO: Read archives if necessary
558
# TODO: Read archives if necessary
580
 
-
 
581
if [ -z "$ROWS" ]; then
559
if [ -z "$ROWS" ]; then
582
	ROWS="<tr><td colspan=\"4\" style=\"text-align: center;\">Aucune connexion</td></tr>"
560
	ROWS="<tr><td colspan=\"4\" style=\"text-align: center;\">Aucune connexion</td></tr>"
583
fi
561
fi
584
 
562
 
585
# Create HTML document
563
# Create HTML document
586
echo "<h2>Connexion à l'ALCASAR Control Center (ACC)</h2>" >> $HTML_REPORT
564
echo "<h3>Connexion à l'ALCASAR Control Center (ACC)</h3>" >> $HTML_REPORT
587
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
565
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
588
echo "<thead><tr><th>Date</th><th>Utilisateur</th><th>Adresse IP</th><th>Agent</th></tr></thead><tbody>" >> $HTML_REPORT
566
echo "<thead><tr><th>Date</th><th>Utilisateur</th><th>Adresse IP</th><th>Agent</th></tr></thead><tbody>" >> $HTML_REPORT
589
echo "$ROWS" >> $HTML_REPORT
567
echo "$ROWS" >> $HTML_REPORT
590
echo "</tbody></table>" >> $HTML_REPORT
568
echo "</tbody></table>" >> $HTML_REPORT
591
 
569
 
592
 
570
 
593
###################### ALCASAR : GLOBAL TRAFFIC ######################
571
###################### ALCASAR : GLOBAL TRAFFIC ######################
594
echo "Get Global traffic of the last 30 days"
572
echo "Get Global traffic of the last 30 days"
595
 
573
 
596
ROWS=""
574
ROWS=""
597
EXTIF=$(grep ^EXTIF= $CONF_FILE | cut -d'=' -f2)
575
EXTIF=$(grep ^EXTIF= $CONF_FILE | cut -d'=' -f2)
598
 
576
 
599
while read -r entry; do
577
while read -r entry; do
600
    year=$(echo "$entry" | sed -n 's/.*"year": \([0-9]*\).*/\1/p')
578
    year=$(echo "$entry" | sed -n 's/.*"year": \([0-9]*\).*/\1/p')
601
    month=$(echo "$entry" | sed -n 's/.*"month": \([0-9]*\).*/\1/p')
579
    month=$(echo "$entry" | sed -n 's/.*"month": \([0-9]*\).*/\1/p')
602
    day=$(echo "$entry" | sed -n 's/.*"day": \([0-9]*\).*/\1/p')
580
    day=$(echo "$entry" | sed -n 's/.*"day": \([0-9]*\).*/\1/p')
603
    rx=$(echo "$entry" | sed -n 's/.*"rx": \([0-9]*\).*/\1/p')
581
    rx=$(echo "$entry" | sed -n 's/.*"rx": \([0-9]*\).*/\1/p')
604
    tx=$(echo "$entry" | sed -n 's/.*"tx": \([0-9]*\).*/\1/p')
582
    tx=$(echo "$entry" | sed -n 's/.*"tx": \([0-9]*\).*/\1/p')
605
 
-
 
606
    if [ -n "$year" ]; then
583
    if [ -n "$year" ]; then
607
        date_year=$year
584
        date_year=$year
608
    fi
585
    fi
609
 
-
 
610
    if [ -n "$month" ]; then
586
    if [ -n "$month" ]; then
611
        if [ $month -le 9 ]; then
587
        if [ $month -le 9 ]; then
612
            date_month="0$month"
588
            date_month="0$month"
613
        else
589
        else
614
            date_month=$month
590
            date_month=$month
615
        fi
591
        fi
616
    fi
592
    fi
617
 
-
 
618
    if [ -n "$day" ]; then
593
    if [ -n "$day" ]; then
619
        if [ $day -le 9 ]; then
594
        if [ $day -le 9 ]; then
620
            date_day="0$day"
595
            date_day="0$day"
621
        else
596
        else
622
            date_day=$day
597
            date_day=$day
623
        fi
598
        fi
624
    fi
599
    fi
625
 
-
 
626
    if [ -n "$rx" ]; then
600
    if [ -n "$rx" ]; then
627
        day_rx=$rx
601
        day_rx=$rx
628
    fi
602
    fi
629
 
-
 
630
    if [ -n "$tx" ]; then
603
    if [ -n "$tx" ]; then
631
        day_tx=$tx
604
        day_tx=$tx
632
    fi
605
    fi
633
 
-
 
634
    if [ -n "$date_year" ] && [ -n "$date_month" ] && [ -n "$date_day" ] && [ -n "$day_rx" ] && [ -n "$day_tx" ]; then
606
    if [ -n "$date_year" ] && [ -n "$date_month" ] && [ -n "$date_day" ] && [ -n "$day_rx" ] && [ -n "$day_tx" ]; then
635
        day_date="$date_day$date_month$date_year"
607
        day_date="$date_day$date_month$date_year"
636
        day_total=$((day_rx * day_tx))
608
        day_total=$((day_rx * day_tx))
637
        ROWS="$ROWS<tr><td>$day_date</td><td>$day_rx</td><td>$day_tx</td><td>$day_total</td></tr>"
609
        ROWS="$ROWS<tr><td>$day_date</td><td>$day_rx</td><td>$day_tx</td><td>$day_total</td></tr>"
638
        date_month=""
610
        date_month=""
639
        date_day=""
611
        date_day=""
640
        date_year=""
612
        date_year=""
641
    fi
613
    fi
642
done < <(vnstat -i $EXIT_IF --json d -b $(date --date="7 days ago" "+%Y-%m-%d") | python -m json.tool | sed -n 's/.*"day": \([0-9]*\).*/\1/p')
614
done < <(vnstat -i $EXIT_IF --json d -b $(date --date="7 days ago" "+%Y-%m-%d") | python -m json.tool | sed -n 's/.*"day": \([0-9]*\).*/\1/p')
643
 
-
 
644
if [ -z "$ROWS" ]; then
615
if [ -z "$ROWS" ]; then
645
	ROWS="<tr><td colspan=\"4\" style=\"text-align: center;\">Aucun jour capturé</td></tr>"
616
	ROWS="<tr><td colspan=\"4\" style=\"text-align: center;\">Aucun jour capturé</td></tr>"
646
fi
617
fi
647
 
618
 
648
# Create html document
619
# Create html document
649
echo "<h2>Trafic global</h2>" >> $HTML_REPORT
620
echo "<h3>Trafic global</h3>" >> $HTML_REPORT
650
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
621
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
651
echo "<thead><tr><th>Date</th><th>Entrant</th><th>Sortant</th><th>Total</th></tr></thead><tbody>" >> $HTML_REPORT
622
echo "<thead><tr><th>Date</th><th>Entrant</th><th>Sortant</th><th>Total</th></tr></thead><tbody>" >> $HTML_REPORT
652
echo "$ROWS" >> $HTML_REPORT
623
echo "$ROWS" >> $HTML_REPORT
653
echo "</tbody></table>" >> $HTML_REPORT
624
echo "</tbody></table>" >> $HTML_REPORT
654
 
625
 
655
 
626
 
656
###################### ALCASAR : FAIL2BAN ######################
627
###################### ALCASAR : FAIL2BAN ######################
657
echo "Get fail2ban log of the week"
628
echo "Get fail2ban log of the week"
658
 
629
 
659
ROWS=""
630
ROWS=""
660
dateDaysAgo_formatted=$(date --date="$MAX_DAY_AGO days ago" +'%Y-%m-%d %H:%M:%S,%N' | rev | cut -c 7- | rev)
631
dateDaysAgo_formatted=$(date --date="$MAX_DAY_AGO days ago" +'%Y-%m-%d %H:%M:%S,%N' | rev | cut -c 7- | rev)
661
while read -r log ; do
632
while read -r log ; do
662
	log_datas=($log)
633
	log_datas=($log)
663
	log_date="${log_datas[0]} ${log_datas[1]}"
634
	log_date="${log_datas[0]} ${log_datas[1]}"
664
	log_type=${log_datas[4]:1:-1}
635
	log_type=${log_datas[4]:1:-1}
665
	log_ip=${log_datas[6]}
636
	log_ip=${log_datas[6]}
666
	log_date_formatted=$(date -d "$log_date" +"%x %X")
637
	log_date_formatted=$(date -d "$log_date" +"%x %X")
667
 
638
 
668
	ROWS="$ROWS<tr><td>$log_date_formatted</td><td>$log_ip</td><td>$log_type</td></tr>"
639
	ROWS="$ROWS<tr><td>$log_date_formatted</td><td>$log_ip</td><td>$log_type</td></tr>"
669
done < <(grep " Ban " /var/log/fail2ban.log | sort -r | awk -v dateDaysAgo="$dateDaysAgo_formatted" '($1 " " $2) >= dateDaysAgo')
640
done < <(grep " Ban " /var/log/fail2ban.log | sort -r | awk -v dateDaysAgo="$dateDaysAgo_formatted" '($1 " " $2) >= dateDaysAgo')
670
 
641
 
671
if [ -z "$ROWS" ]; then
642
if [ -z "$ROWS" ]; then
672
	ROWS="<tr><td colspan=\"3\" style=\"text-align: center;\">Aucune adresse IP bloquée</td></tr>"
643
	ROWS="<tr><td colspan=\"3\" style=\"text-align: center;\">Aucune adresse IP bloquée</td></tr>"
673
fi
644
fi
674
 
645
 
675
# Create html document
646
#Create html document
676
echo "<h2>Adresse(s) IP bloquée(s) (Fail2Ban)</h2>" >> $HTML_REPORT
647
echo "<h3>Adresse(s) IP bloquée(s) (Fail2Ban)</h3>" >> $HTML_REPORT
677
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
648
echo "<table class=\"table table-striped\">" >> $HTML_REPORT
678
echo "<thead><tr><th>Date</th><th>Adresse IP</th><th>Règle</th></tr></thead><tbody>" >> $HTML_REPORT
649
echo "<thead><tr><th>Date</th><th>Adresse IP</th><th>Règle</th></tr></thead><tbody>" >> $HTML_REPORT
679
echo $ROWS >> $HTML_REPORT
650
echo $ROWS >> $HTML_REPORT
680
echo "</tbody></table>" >> $HTML_REPORT
651
echo "</tbody></table>" >> $HTML_REPORT
681
 
652
 
682
 
653
 
683
######################FIN HTML######################
654
######################HTML END######################
684
 
655
 
685
#Execute our javascript function to print charts
656
#Execute our javascript function to print charts
686
echo "<script>window.onload = function() {" >> $HTML_REPORT
657
echo "<script>window.onload = function() {" >> $HTML_REPORT
687
#BL SINCE INSTALLATION
658
#BL since installation
688
if [ $ENABLE_BL -eq "1" ]
659
if [ $ENABLE_BL -eq "1" ]
689
then
660
then
690
	echo "var ctx_$NAME_BL_INSTALLATION = document.getElementById('$NAME_BL_INSTALLATION').getContext('2d');" >> $HTML_REPORT
661
	echo "var ctx_$NAME_BL_INSTALLATION = document.getElementById('$NAME_BL_INSTALLATION').getContext('2d');" >> $HTML_REPORT
691
	echo "var $NAME_BL_INSTALLATION = new Chart(ctx_$NAME_BL_INSTALLATION, $CONF_BL_INSTALLATION);" >> $HTML_REPORT
662
	echo "var $NAME_BL_INSTALLATION = new Chart(ctx_$NAME_BL_INSTALLATION, $CONF_BL_INSTALLATION);" >> $HTML_REPORT
692
fi
663
fi
693
#BL WEEK
664
#BL week
694
if [ $ENABLE_BL_WEEK -eq "1" ]
665
if [ $ENABLE_BL_WEEK -eq "1" ]
695
then
666
then
696
	echo "var ctx_$NAME_BL = document.getElementById('$NAME_BL').getContext('2d');" >> $HTML_REPORT
667
	echo "var ctx_$NAME_BL = document.getElementById('$NAME_BL').getContext('2d');" >> $HTML_REPORT
697
	echo "var $NAME_BL = new Chart(ctx_$NAME_BL, $CONF_BL);" >> $HTML_REPORT
668
	echo "var $NAME_BL = new Chart(ctx_$NAME_BL, $CONF_BL);" >> $HTML_REPORT
698
fi
669
fi
699
#VIRUS THREAT
670
#malware Threat
700
if [ $ENABLE_AV -eq "1" ]
671
if [ $ENABLE_AV -eq "1" ]
701
then
672
then
702
	echo "var ctx_$NAME_AV = document.getElementById('$NAME_AV').getContext('2d');" >> $HTML_REPORT
673
	echo "var ctx_$NAME_AV = document.getElementById('$NAME_AV').getContext('2d');" >> $HTML_REPORT
703
	echo "var $NAME_AV = new Chart(ctx_$NAME_AV, $CONF_AV);" >> $HTML_REPORT
674
	echo "var $NAME_AV = new Chart(ctx_$NAME_AV, $CONF_AV);" >> $HTML_REPORT
704
fi
675
fi
705
echo "};</script>" >> $HTML_REPORT
676
echo "};</script>" >> $HTML_REPORT
706
echo "</body>" >> $HTML_REPORT
677
echo "</body>" >> $HTML_REPORT
707
echo "</html>" >> $HTML_REPORT
678
echo "</html>" >> $HTML_REPORT
708
 
679
 
709
#convert html document to PDF
680
#convert html document to PDF
710
/usr/bin/wkhtmltopdf $HTML_REPORT "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
681
/usr/bin/wkhtmltopdf $HTML_REPORT "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
711
chown apache:apache "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
682
chown apache:apache "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
712
chmod 644 "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
683
chmod 644 "$(echo $HTML_REPORT | cut -d'.' -f1).pdf"
713
mv "$(echo $HTML_REPORT | cut -d'.' -f1).pdf" /var/Save/activity_report/
684
mv "$(echo $HTML_REPORT | cut -d'.' -f1).pdf" /var/Save/activity_report/
714
 
685
 
715
#compress every logs, if they exist
686
#compress every logs, if they exist
716
if [ "$(ls -1 /var/log/clamav/clamd.log.* 2>/dev/null | wc -l)" -ge 1 ]
687
if [ "$(ls -1 /var/log/clamav/clamd.log.* 2>/dev/null | wc -l)" -ge 1 ]
717
then
688
then
718
	gzip /var/log/clamav/clamd.log.*
689
	gzip /var/log/clamav/clamd.log.*
719
fi
690
fi
720
 
691
 
721
#compress every logs
692
#compress every logs
722
if [ "$(ls -1 /var/log/unbound/unbound-blacklist.log.* 2>/dev/null | wc -l)" -ge 1 ]
693
if [ "$(ls -1 /var/log/unbound/unbound-blacklist.log.* 2>/dev/null | wc -l)" -ge 1 ]
723
then
694
then
724
	gzip /var/log/unbound/unbound-blacklist.log.*
695
	gzip /var/log/unbound/unbound-blacklist.log.*
725
fi
696
fi
726
 
697
 
727
#remove our files
698
#remove our files
728
rm -f $TMP_BL
699
rm -f $TMP_BL
729
rm -f $TMP_BL_WEEK
700
rm -f $TMP_BL_WEEK
730
rm -f $TMP_BL_WEEK_CAT
701
rm -f $TMP_BL_WEEK_CAT
731
rm -f $TMP_STATS
702
rm -f $TMP_STATS
732
rm -f $TMP_STATS_2
703
rm -f $TMP_STATS_2
733
rm -f $HTML_REPORT
704
rm -f $HTML_REPORT
734
 
705