24 Commits

Author SHA1 Message Date
liuxueli
7ce1b2976d TSG-12986: 当cname或者应答记录为空时不再发送相应的日志字段 2022-12-12 15:41:29 +08:00
刘学利
3b4db47008 Update changelog.sh 2022-04-01 04:01:42 +00:00
“pengxuanzheng”
5a2181eb1e 🐞 fix(TSG-9466): 命中monitor时,先notify命中monitor结果,然后再发送日志 2022-04-01 03:52:55 +00:00
yangwenlin
e6075ce810 TSG-9689: 适配Rocky Linux8.5系统 2022-02-24 17:43:50 +08:00
liuxueli
e92fd7c9df 设置FQDN对应的分类ID到流标签 2021-08-13 19:35:33 +08:00
liuxueli
16b62ee411 DNS的deny动作交由tsg_master统一处理 2021-08-09 09:43:45 +08:00
liuxueli
fdeb3ee864 修复: TSG-7045, TSG-7032; record_name空间较小,存在写越界导致重启 2021-07-14 09:39:32 +08:00
liuxueli
06b600e3f5 命中DENY策略后:并联环境仅对请求包发欺骗包及日志,串联环境丢弃真实应答包并发送伪造应答欺骗包及日志 2021-07-12 17:29:42 +08:00
liuxueli
604fd5d179 TSG-6992: 变更DNS应答记录策略表名称,由FW_PROFILE_DNS_RECORDS变更为TSG_PROFILE_DNS_RECORDS 2021-07-09 11:36:42 +08:00
liuxueli
57c2feb69d 支持从profile中选择应答记录内容,TSG-6653 2021-06-11 09:39:29 +08:00
liuxueli
2a25c20cea 控制日志输出,在FATAL模式下不调用printaddr 2021-04-19 20:21:26 +08:00
刘学利
ab097e3bff 命中策略后返回GIVEME,处理链接上后续的DNS请求
用户自定义没有符合的欺骗IP时,串联环境丢弃真实应答包
2021-04-17 13:38:01 +00:00
杨威
badd5547da Update fw_dns_plug.cpp 2020-12-25 15:08:19 +08:00
杨威
95bdca7514 Merge branch 'patch-1' into 'master'
Update .gitlab-ci.yml testing源仅debug版开启asan

See merge request tango/fw_dns_plug!7
2020-10-30 23:22:39 +08:00
杨威
9e4ed53bb1 Update .gitlab-ci.yml testing源仅debug版开启asan 2020-10-30 22:56:20 +08:00
杨威
4942106aab Merge branch 'patch-1' into 'master'
Update travis.sh, ASAN using devtoolset-7

See merge request tango/fw_dns_plug!6
2020-10-14 18:32:51 +08:00
杨威
28cfd57e98 Update travis.sh, ASAN using devtoolset-7 2020-10-14 15:54:09 +08:00
刘学利
dab58fabe1 Merge branch 'develop-export-version' into 'master'
Develop export version

See merge request tango/fw_dns_plug!5
2020-10-10 17:22:52 +08:00
刘学利
3d2324bb43 Develop export version 2020-10-10 17:22:52 +08:00
刘学利
453c5330c0 Merge branch 'fix-log-level' into 'master'
Fix log level

See merge request tango/fw_dns_plug!4
2020-09-18 12:12:57 +08:00
刘学利
aafcea896f Fix log level 2020-09-18 12:12:57 +08:00
刘学利
2e50b5347f Merge branch 'develop' into 'master'
支持上传yum源(https://repo.geedge.net/pulp/content/7/x86_64/stable/tsg/)

See merge request tango/fw_dns_plug!3
2020-05-01 16:23:24 +08:00
刘学利
ea8e0f6fbe Merge branch 'develop' into 'master'
修复内存泄漏

See merge request tango/fw_dns_plug!2
2020-04-08 17:15:32 +08:00
刘学利
1c9d36df0a Merge branch 'develop' into 'master'
Develop

See merge request tango/fw_dns_plug!1
2020-01-07 17:49:18 +08:00
14 changed files with 362 additions and 658 deletions

17
.gitignore vendored Normal file
View File

@@ -0,0 +1,17 @@
SI/
*.log
*.o
*.so
*.si4project/
*.a
*.d
build/
.vscode
.idea
core.*
cmake-build-*
GPATH
GTAGS
GRTAGS
src/tags
version.txt

View File

@@ -1,29 +1,49 @@
image: "git.mesalab.cn:7443/mesa_platform/build-env:master"
variables:
GIT_STRATEGY: "clone"
BUILD_IMAGE_CENTOS7: "git.mesalab.cn:7443/mesa_platform/build-env:master"
BUILD_IMAGE_CENTOS8: "git.mesalab.cn:7443/mesa_platform/build-env:rockylinux"
BUILD_PADDING_PREFIX: /tmp/padding_for_CPACK_RPM_BUILD_SOURCE_DIRS_PREFIX_PREFIX_PREFIX_PREFIX_PREFIX_PREFIX/
INSTALL_PREFIX: "/home/mesasoft/sapp_run/"
INSTALL_DEPENDENCY_LIBRARY: libMESA_handle_logger-devel libcjson-devel libMESA_field_stat2-devel sapp-devel framework_env libMESA_prof_load-devel http-devel dns-devel ftp-devel mail-devel ssl-devel librdkafka-devel libmaatframe-devel tsg_master-devel libdocumentanalyze-devel
INSTALL_DEPENDENCY_LIBRARY: libMESA_handle_logger-devel libcjson-devel libMESA_field_stat2-devel sapp-devel framework_env libMESA_prof_load-devel http-devel dns-devel ftp-devel mail-devel ssl-devel librdkafka-devel libmaatframe-devel tsg_master-devel libdocumentanalyze-devel libasan
stages:
- build
.build_by_travis:
.build_before_script:
before_script:
- mkdir -p $BUILD_PADDING_PREFIX/$CI_PROJECT_NAMESPACE/
- ln -s $CI_PROJECT_DIR $BUILD_PADDING_PREFIX/$CI_PROJECT_PATH
- cd $BUILD_PADDING_PREFIX/$CI_PROJECT_PATH
- chmod +x ./ci/travis.sh
script:
- yum makecache
- yum install -y elfutils-libelf-devel
.build_by_travis_for_centos7:
stage: build
image: $BUILD_IMAGE_CENTOS7
extends: .build_before_script
script:
- yum install -y libmnl-devel
- yum install -y libnfnetlink-devel
- ./ci/travis.sh
- cd build
tags:
- share
branch_build_debug:
.build_by_travis_for_centos8:
stage: build
extends: .build_by_travis
image: $BUILD_IMAGE_CENTOS8
extends: .build_before_script
script:
- dnf --enablerepo=powertools install -y libmnl-devel
- dnf --enablerepo=powertools install -y libnfnetlink-devel
- ./ci/travis.sh
tags:
- share
branch_build_debug_for_centos7:
stage: build
extends: .build_by_travis_for_centos7
variables:
BUILD_TYPE: Debug
except:
@@ -31,22 +51,27 @@ branch_build_debug:
- /^master.*$/i
- tags
branch_build_release:
branch_build_release_for_centos7:
stage: build
variables:
BUILD_TYPE: RelWithDebInfo
extends: .build_by_travis
extends: .build_by_travis_for_centos7
except:
- /^develop.*$/i
- /^master.*$/i
- tags
develop_build_debug:
develop_build_debug_for_centos7:
stage: build
extends: .build_by_travis
extends: .build_by_travis_for_centos7
variables:
BUILD_TYPE: Debug
PACKAGE: 1
UPLOAD_RPM: 1
ASAN_OPTION: ADDRESS
TESTING_VERSION_BUILD: 1
PULP3_REPO_NAME: tsg-testing-x86_64.el7
PULP3_DIST_NAME: tsg-testing-x86_64.el7
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-debug"
paths:
@@ -55,12 +80,16 @@ develop_build_debug:
- /^develop.*$/i
- /^master.*$/i
develop_build_release:
develop_build_release_for_centos7:
stage: build
extends: .build_by_travis
extends: .build_by_travis_for_centos7
variables:
BUILD_TYPE: RelWithDebInfo
PACKAGE: 1
UPLOAD_RPM: 1
TESTING_VERSION_BUILD: 1
PULP3_REPO_NAME: tsg-testing-x86_64.el7
PULP3_DIST_NAME: tsg-testing-x86_64.el7
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:
@@ -70,15 +99,15 @@ develop_build_release:
- /^master.*$/i
release_build_release:
release_build_debug_for_centos7:
stage: build
variables:
BUILD_TYPE: RelWithDebInfo
BUILD_TYPE: Debug
PACKAGE: 1
UPLOAD: 1
UPLOAD_RPM: 1
PULP3_REPO_NAME: tsg-stable-x86_64.el7
PULP3_DIST_NAME: tsg-stable-x86_64.el7
extends: .build_by_travis
extends: .build_by_travis_for_centos7
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:
@@ -86,16 +115,110 @@ release_build_release:
only:
- tags
release_build_release_devel:
release_build_release_for_centos7:
stage: build
variables:
BUILD_TYPE: RelWithDebInfo
ENABLE_DEVEL_SWITCH: "ON"
PACKAGE: 1
UPLOAD: 1
UPLOAD_RPM: 1
UPLOAD_SYMBOL_FILES: 1
SYMBOL_TARGET: fw_dns_plug
PULP3_REPO_NAME: tsg-stable-x86_64.el7
PULP3_DIST_NAME: tsg-stable-x86_64.el7
extends: .build_by_travis
extends: .build_by_travis_for_centos7
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:
- build/*.rpm
only:
- tags
branch_build_debug_for_centos8:
stage: build
extends: .build_by_travis_for_centos8
variables:
BUILD_TYPE: Debug
except:
- /^develop.*$/i
- /^master.*$/i
- tags
branch_build_release_for_centos8:
stage: build
variables:
BUILD_TYPE: RelWithDebInfo
extends: .build_by_travis_for_centos8
except:
- /^develop.*$/i
- /^master.*$/i
- tags
develop_build_debug_for_centos8:
stage: build
extends: .build_by_travis_for_centos8
variables:
BUILD_TYPE: Debug
PACKAGE: 1
UPLOAD_RPM: 1
ASAN_OPTION: ADDRESS
TESTING_VERSION_BUILD: 1
PULP3_REPO_NAME: tsg-testing-x86_64.el8
PULP3_DIST_NAME: tsg-testing-x86_64.el8
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-debug"
paths:
- build/*.rpm
only:
- /^develop.*$/i
- /^master.*$/i
develop_build_release_for_centos8:
stage: build
extends: .build_by_travis_for_centos8
variables:
BUILD_TYPE: RelWithDebInfo
PACKAGE: 1
UPLOAD_RPM: 1
TESTING_VERSION_BUILD: 1
PULP3_REPO_NAME: tsg-testing-x86_64.el8
PULP3_DIST_NAME: tsg-testing-x86_64.el8
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:
- build/*.rpm
only:
- /^develop.*$/i
- /^master.*$/i
release_build_debug_for_centos8:
stage: build
variables:
BUILD_TYPE: Debug
PACKAGE: 1
UPLOAD_RPM: 1
PULP3_REPO_NAME: tsg-stable-x86_64.el8
PULP3_DIST_NAME: tsg-stable-x86_64.el8
extends: .build_by_travis_for_centos8
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:
- build/*.rpm
only:
- tags
release_build_release_for_centos8:
stage: build
variables:
BUILD_TYPE: RelWithDebInfo
ENABLE_DEVEL_SWITCH: "ON"
PACKAGE: 1
UPLOAD_RPM: 1
UPLOAD_SYMBOL_FILES: 1
SYMBOL_TARGET: fw_dns_plug
PULP3_REPO_NAME: tsg-stable-x86_64.el8
PULP3_DIST_NAME: tsg-stable-x86_64.el8
extends: .build_by_travis_for_centos8
artifacts:
name: "fw_dns_plug-$CI_COMMIT_REF_NAME-release"
paths:

View File

@@ -34,41 +34,4 @@ set(CMAKE_INSTALL_PREFIX /home/mesasoft/sapp_run)
add_subdirectory (src)
set(CONFLIST /plug/conflist.inf)
set(MASTER_INF "./plug/business/fw_dns_plug/fw_dns_plug.inf")
set(MAIN_CONF /tsgconf/main.conf)
file(WRITE ${PROJECT_SOURCE_DIR}/install.sh "#!/bin/sh\r\n")
file(WRITE ${PROJECT_SOURCE_DIR}/uninstall.sh "#!/bin/sh\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "DST=\${RPM_INSTALL_PREFIX}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "DST=\${RPM_INSTALL_PREFIX}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "mkdir -p \${DST}/plug/business/\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "mkdir -p \${DST}/plug/business/\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "touch \${DST}${CONFLIST}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "touch \${DST}${CONFLIST}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "mkdir -p \${DST}/tsgconf/\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "mkdir -p \${DST}/tsgconf/\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "touch \${DST}${MAIN_CONF}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "touch \${DST}${MAIN_CONF}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "if [[ -z `grep -rn 'fw_dns_plug.inf' \${DST}${CONFLIST}` ]];then\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "\tsed -i '/\\[business\\]/a\\${MASTER_INF}' \${DST}${CONFLIST}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "fi\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "sed -i '/fw_dns_plug.inf/d' \${DST}${CONFLIST}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "if [[ -z `grep -rn '\\[DNS_PLUG\\]' \${DST}${MAIN_CONF}` ]];then\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "\tsed -i '1i\\\\[DNS_PLUG\\]' \${DST}${MAIN_CONF}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "\tsed -i '/\\[DNS_PLUG\\]/a\\LOG_LEVEL=30' \${DST}${MAIN_CONF}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "\tsed -i '/\\[DNS_PLUG\\]/a\\LOG_PATH=./tsglog/fw_dns_plug/fw_dns_plug' \${DST}${MAIN_CONF}\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/install.sh "fi\r\n")
file(APPEND ${PROJECT_SOURCE_DIR}/uninstall.sh "sed -i '/\\[DNS_PLUG\\]/,+2d' \${DST}${MAIN_CONF}\r\n")
SET(CPACK_RPM_PRE_INSTALL_SCRIPT_FILE "${PROJECT_SOURCE_DIR}/install.sh")
SET(CPACK_RPM_PRE_UNINSTALL_SCRIPT_FILE "${PROJECT_SOURCE_DIR}/uninstall.sh")
include(Package)

View File

@@ -37,13 +37,19 @@ if [ -n "${INSTALL_DEPENDENCY_LIBRARY}" ]; then
yum install -y $INSTALL_DEPENDENCY_LIBRARY
source /etc/profile.d/framework.sh
fi
if [ $ASAN_OPTION ] && [ -f "/opt/rh/devtoolset-7/enable" ] ;then
source /opt/rh/devtoolset-7/enable
fi
mkdir build || true
cd build
cmake3 -DCMAKE_CXX_FLAGS=$CXX_FLAGS \
-DCMAKE_BUILD_TYPE=$BUILD_TYPE \
-DCMAKE_INSTALL_PREFIX=$INSTALL_PREFIX \
-DENABLE_DEVEL=$ENABLE_DEVEL_SWITCH \
-DASAN_OPTION=$ASAN_OPTION \
-DVERSION_DAILY_BUILD=$TESTING_VERSION_BUILD \
..
make
@@ -52,13 +58,15 @@ if [ -n "${PACKAGE}" ]; then
make package
fi
if [ -n "${UPLOAD}" ]; then
if [ -n "${UPLOAD_RPM}" ]; then
cp ~/rpm_upload_tools.py ./
python3 rpm_upload_tools.py ${PULP3_REPO_NAME} ${PULP3_DIST_NAME} *.rpm
fi
#if [ -n "${UPLOAD_SYMBOL_FILES}" ]; then
# rpm -i tfe*debuginfo*.rpm
# cp /usr/lib/debug/opt/tsg/tfe/bin/tfe.debug /tmp/tfe.debuginfo.${CI_COMMIT_SHORT_SHA}
# sentry-cli upload-dif -t elf /tmp/tfe.debuginfo.${CI_COMMIT_SHORT_SHA}
#fi
if [ -n "${UPLOAD_SYMBOL_FILES}" ]; then
rpm -i $SYMBOL_TARGET*debuginfo*.rpm
_symbol_file=`find /usr/lib/debug/ -name "$SYMBOL_TARGET*.so*.debug"`
cp $_symbol_file ${_symbol_file}info.${CI_COMMIT_SHORT_SHA}
sentry-cli upload-dif -t elf ${_symbol_file}info.${CI_COMMIT_SHORT_SHA}
fi

View File

@@ -12,36 +12,38 @@ set(CPACK_PACKAGE_VERSION_MINOR "${VERSION_MINOR}")
set(CPACK_PACKAGE_VERSION_PATCH "${VERSION_PATCH}.${VERSION_BUILD}")
set(CPACK_PACKAGING_INSTALL_PREFIX ${CMAKE_INSTALL_PREFIX})
set(CPACK_PACKAGE_VERSION "${VERSION_MAJOR}.${VERSION_MINOR}.${VERSION_PATCH}.${VERSION_BUILD}")
execute_process(COMMAND bash -c "echo -ne \"`uname -r | awk -F'.' '{print $5\".\"$6\".\"$7}'`\"" OUTPUT_VARIABLE SYSTEM_VERSION)
#execute_process(COMMAND sh changelog.sh WORKING_DIRECTORY ${PROJECT_SOURCE_DIR}/cmake)
#SET(CPACK_RPM_CHANGELOG_FILE ${PROJECT_SOURCE_DIR}/cmake/changelog.txt)
execute_process(COMMAND sh changelog.sh ${CMAKE_BINARY_DIR} WORKING_DIRECTORY ${PROJECT_SOURCE_DIR}/cmake)
SET(CPACK_RPM_CHANGELOG_FILE ${CMAKE_BINARY_DIR}/changelog.txt)
# RPM Build
set(CPACK_GENERATOR "RPM")
set(CPACK_RPM_AUTO_GENERATED_FILE_NAME ON)
set(CPACK_RPM_FILE_NAME "RPM-DEFAULT")
set(CPACK_RPM_PACKAGE_VENDOR "MESA")
set(CPACK_RPM_PACKAGE_AUTOREQPROV "yes")
set(CPACK_RPM_PACKAGE_RELEASE_LIBRARY "on")
set(CPACK_RPM_PACKAGE_RELEASE_DIST "on")
set(CPACK_RPM_DEBUGINFO_PACKAGE "on")
set(CPACK_RPM_PACKAGE_DEBUG 1)
set(CPACK_RPM_PACKAGE_AUTOREQPROV "no")
set(CPACK_RPM_PACKAGE_AUTOREQ "no")
set(CPACK_RPM_COMPONENT_INSTALL ON)
set(CPACK_COMPONENTS_IGNORE_GROUPS 1)
set(CPACK_COMPONENTS_GROUPING ONE_PER_GROUP)
set(CPACK_COMPONENT_HEADER_DISPLAY_NAME "develop")
set(CPACK_COMPONENT_LIBRARY_REQUIRED TRUE)
set(CPACK_RPM_LIBRARY_PACKAGE_NAME ${MY_RPM_NAME_PREFIX})
set(CPACK_RPM_LIBRARY_FILE_NAME "${CPACK_RPM_LIBRARY_PACKAGE_NAME}-${CPACK_PACKAGE_VERSION}-${SYSTEM_VERSION}.rpm")
set(CPACK_RPM_LIBRARY_DEBUGINFO_FILE_NAME "${CPACK_RPM_LIBRARY_PACKAGE_NAME}-debuginfo-${CPACK_PACKAGE_VERSION}-${SYSTEM_VERSION}.rpm")
set(CPACK_COMPONENT_LIBRARY_GROUP "library")
set(CPACK_COMPONENT_PROFILE_GROUP "library")
set(CPACK_COMPONENT_LIBRARIES_REQUIRED TRUE)
set(CPACK_RPM_LIBRARIES_PACKAGE_NAME ${MY_RPM_NAME_PREFIX})
set(CPACK_COMPONENT_PROFILE_GROUP "LIBRARIES")
set(CPACK_COMPONENT_LIBRARIES_GROUP "LIBRARIES")
set(CPACK_RPM_HEADER_PACKAGE_CONFLICTS ${CPACK_RPM_HEADER_PACKAGE_NAME})
set(CPACK_COMPONENTS_ALL LIBRARY PROFILE)
set(CPACK_COMPONENTS_ALL LIBRARIES PROFILE)
SET(CPACK_RPM_LIBRARIES_PRE_INSTALL_SCRIPT_FILE "${PROJECT_SOURCE_DIR}/cmake/PreInstall.sh")
SET(CPACK_RPM_LIBRARIES_PRE_UNINSTALL_SCRIPT_FILE "${PROJECT_SOURCE_DIR}/cmake/PreUninstall.sh")
set(CPACK_BUILD_SOURCE_DIRS "${CMAKE_SOURCE_DIR}")

14
cmake/PreInstall.sh Normal file
View File

@@ -0,0 +1,14 @@
#!/bin/sh
DST=${RPM_INSTALL_PREFIX}
mkdir -p ${DST}/plug/business/
touch ${DST}/plug/conflist.inf
mkdir -p ${DST}/tsgconf/
touch ${DST}/tsgconf/main.conf
if [[ -z `grep -rn 'fw_dns_plug.inf' ${DST}/plug/conflist.inf` ]];then
sed -i '/\[business\]/a\./plug/business/fw_dns_plug/fw_dns_plug.inf' ${DST}/plug/conflist.inf
fi
if [[ -z `grep -rn '\[DNS_PLUG\]' ${DST}/tsgconf/main.conf` ]];then
sed -i '1i\\[DNS_PLUG\]' ${DST}/tsgconf/main.conf
sed -i '/\[DNS_PLUG\]/a\LOG_LEVEL=30' ${DST}/tsgconf/main.conf
sed -i '/\[DNS_PLUG\]/a\LOG_PATH=./tsglog/fw_dns_plug/fw_dns_plug' ${DST}/tsgconf/main.conf
fi

12
cmake/PreUninstall.sh Normal file
View File

@@ -0,0 +1,12 @@
#!/bin/sh
if [ $1 == 0 ]; then
DST=${RPM_INSTALL_PREFIX}
mkdir -p ${DST}/plug/business/
touch ${DST}/plug/conflist.inf
mkdir -p ${DST}/tsgconf/
touch ${DST}/tsgconf/main.conf
sed -i '/fw_dns_plug.inf/d' ${DST}/plug/conflist.inf
sed -i '/\[DNS_PLUG\]/,+2d' ${DST}/tsgconf/main.conf
fi

View File

@@ -19,6 +19,11 @@ include(${__VERSION_CONFIG})
string(REGEX REPLACE "^v([0-9]+)\\..*" "\\1" VERSION_MAJOR "${VCS_TAG}")
string(REGEX REPLACE "^v[0-9]+\\.([0-9]+).*" "\\1" VERSION_MINOR "${VCS_TAG}")
string(REGEX REPLACE "^v[0-9]+\\.[0-9]+\\.([0-9]+).*" "\\1" VERSION_PATCH "${VCS_TAG}")
string(REGEX REPLACE "[T\\:\\+\\-]" "" VERSION_DATE "${VCS_DATE}")
if(VERSION_DAILY_BUILD)
set(VERSION_PATCH ${VERSION_PATCH}.${VERSION_DATE})
endif()
if(NOT VERSION_MAJOR)
set(VERSION_MAJOR 1)
@@ -38,16 +43,12 @@ set(VERSION_BUILD "${VCS_SHORT_HASH}")
# print information
message(STATUS "Version: ${VERSION}-${VERSION_BUILD}")
if(NOT DEFINE_GIT_VERSION)
option(DEFINE_GIT_VERSION "Set DEFINE_GIT_VERSION to OFF" OFF)
option(DEFINE_GIT_VERSION "Set DEFINE_GIT_VERSION to TRUE or FALSE" TRUE)
if(DEFINE_GIT_VERSION)
set(GIT_VERSION
"${VERSION}-${CMAKE_BUILD_TYPE}-${VERSION_BUILD}-${VCS_BRANCH}-${VCS_TAG}-${VCS_DATE}")
string(REGEX REPLACE "[-:+/\\.]" "_" GIT_VERSION ${GIT_VERSION})
if(DEFINE_GIT_VERSION)
add_definitions(-DGIT_VERSION=${GIT_VERSION})
option(DEFINE_GIT_VERSION "Set DEFINE_GIT_VERSION to OFF" ON)
endif()
endif()

View File

@@ -1,4 +1,4 @@
#!/bin/sh
work_path=$1
branch=`git status | grep branch | awk '{print $NF}'`
git log --branches=$branch --no-merges --date=local --show-signature --pretty="* %ad %an %ae %nhash: %H%ncommit:%n%B" | awk -F"-" '{print "- "$0}' | sed 's/- \*/\*/g' | sed 's/- $//g' | sed 's/-/ -/g' | sed 's/[0-9]\{2\}:[0-9]\{2\}:[0-9]\{2\}//g' > changelog.txt
git log --branches=$branch --no-merges --date=local --show-signature --pretty="* %cd %an %ae %nhash: %H%ncommit:%n%B" | awk -F"-" '{print "- "$0}' | sed 's/- \*/\*/g' | sed 's/- $//g' | sed 's/-/ -/g' | sed 's/[0-9]\{2\}:[0-9]\{2\}:[0-9]\{2\}//g' > $work_path/changelog.txt

View File

@@ -2,18 +2,17 @@ cmake_minimum_required(VERSION 2.8)
add_definitions(-fPIC)
set(SRC fw_dns_plug.cpp fw_dns_rule.cpp)
set(SRC fw_dns_plug.cpp)
include_directories(${CMAKE_SOURCE_DIR}/src)
include_directories(/opt/MESA/include/)
include_directories(/opt/MESA/include/tsg/)
set(FW_DNS_PLUG_DEPEND_DYN_LIB MESA_handle_logger MESA_prof_load maatframe pthread MESA_field_stat2)
set(FW_DNS_PLUG_DEPEND_DYN_LIB maatframe pthread MESA_field_stat2)
add_library(fw_dns_plug SHARED ${SRC})
target_link_libraries(fw_dns_plug ${FW_DNS_PLUG_DEPEND_DYN_LIB})
set_target_properties(fw_dns_plug PROPERTIES PREFIX "")
install(TARGETS fw_dns_plug LIBRARY DESTINATION ${CMAKE_INSTALL_PREFIX}/plug/business/fw_dns_plug COMPONENT LIBRARY)
install(TARGETS fw_dns_plug LIBRARY DESTINATION ${CMAKE_INSTALL_PREFIX}/plug/business/fw_dns_plug COMPONENT LIBRARIES)
install(FILES ../bin/fw_dns_plug.inf DESTINATION ${CMAKE_INSTALL_PREFIX}/plug/business/fw_dns_plug COMPONENT PROFILE)

View File

@@ -9,255 +9,48 @@
#include <MESA/MESA_handle_logger.h>
#include "tsg_rule.h"
#include "tsg_label.h"
#include "tsg_send_log.h"
#include "fw_dns_plug.h"
#include "tsg_statistic.h"
#ifdef __cplusplus
extern "C"
{
#endif
#define GIT_VERSION_CATTER(v) __attribute__((__used__)) const char * GIT_VERSION_##v = NULL
#define GIT_VERSION_EXPEND(v) GIT_VERSION_CATTER(v)
/* VERSION TAG */
#ifdef GIT_VERSION
GIT_VERSION_EXPEND(GIT_VERSION);
#else
static __attribute__((__used__)) const char * GIT_VERSION_UNKNOWN = NULL;
#endif
#undef GIT_VERSION_CATTER
#undef GIT_VERSION_EXPEND
#ifdef __cplusplus
}
#endif
#define MAX_TABLE_NAME_LEN 256
struct fw_dns_plug
{
int level;
int table_qname_id;
char table_qname[MAX_TABLE_NAME_LEN];
char log_path[MAX_TABLE_NAME_LEN*2];
void *logger;
};
char FW_DNS_PLUG_VERSION_20210607=0;
struct fw_dns_plug g_fw_dns_plug_info;
char *g_fw_dns_conffile=(char *)"tsgconf/main.conf";
char FW_DNS_PLUG_VERSION_20191220=0;
struct _fw_dns_plug g_fw_dns_plug_info;
static int get_answer_ttl(cJSON *object)
{
int min=0;
int max=0;
cJSON *item=NULL;
item=cJSON_GetObjectItem(object, "min");
min=item->valueint;
item=cJSON_GetObjectItem(object, "max");
max=item->valueint;
return (rand()%(max-min+1)+min);
}
static cJSON * get_answer_records(cJSON *object, int qtype)
{
int i=0;
cJSON *item=NULL;
int resolution_size=0;
int answer_type=DNS_TYPE_UNKNOWN;
cJSON *resolution_array=cJSON_GetObjectItem(object, "resolution");
resolution_size=cJSON_GetArraySize(resolution_array);
for(i=0; i<resolution_size; i++)
{
item=cJSON_GetArrayItem(resolution_array, i);
cJSON *tmp=cJSON_GetObjectItem(item, "qtype");
answer_type=fw_dns_type2index(tmp->valuestring);
if(answer_type==qtype)
{
return cJSON_GetObjectItem(item, "answer");
}
}
return NULL;
}
static char fw_dns_action(struct streaminfo *a_stream, dns_info_t *dns_info, Maat_rule_t *p_result, const void *a_packet)
{
int record_id=0;
int i=0,used_num=0;
int answer_size=0,ret=0;
int payload_len=0,ttl=0;
dns_hdr_t *dns_hdr = NULL;
cJSON *item=NULL;
cJSON *a_item=NULL;
cJSON *object=NULL;
cJSON *answer_array=NULL;
char *tmp_buff=NULL;
unsigned char senddir=0;
char state=PROT_STATE_GIVEME;
int answer_type=DNS_TYPE_UNKNOWN;
int method_type=TSG_METHOD_TYPE_UNKNOWN;
cheat_pkt_opt_t cheat_opt[MAX_ANSWER_RECORDS_NUM];
unsigned char cheat_pkt_payload[MAX_CHEAT_PKT_PAYLOAD_LEN];
if(p_result->serv_def_len<128)
{
object=cJSON_Parse(p_result->service_defined);
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_DEBUG,
"DO_ACTION",
"Hit policy_id: %d service: %d action: %d user_reagion: %s domain: %s qtype: %d addr: %s",
p_result->config_id,
p_result->service_id,
p_result->action,
p_result->service_defined,
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
printaddr(&a_stream->addr, a_stream->threadnum)
);
}
else
{
tmp_buff=(char *)calloc(1, p_result->serv_def_len+1);
Maat_read_rule(g_tsg_maat_feather, p_result, MAAT_RULE_SERV_DEFINE, tmp_buff, p_result->serv_def_len);
object=cJSON_Parse(tmp_buff);
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_DEBUG,
"DO_ACTION",
"Hit policy_id: %d service: %d action: %d user_reagion: %s domain: %s qtype: %d addr: %s",
p_result->config_id,
p_result->service_id,
p_result->action,
tmp_buff,
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
printaddr(&a_stream->addr, a_stream->threadnum)
);
}
if(object==NULL)
{
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_FATAL,
"DO_ACTION",
"Hit policy_id: %d service: %d action: %d user_reagion: %s domain: %s qtype: %d addr: %s",
p_result->config_id,
p_result->service_id,
p_result->action,
(tmp_buff==NULL) ? p_result->service_defined : tmp_buff,
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
printaddr(&a_stream->addr, a_stream->threadnum)
);
if(tmp_buff!=NULL)
{
free(tmp_buff);
tmp_buff=NULL;
}
return PROT_STATE_GIVEME;
}
item=cJSON_GetObjectItem(object, "method");
if(item!=NULL)
{
method_type=tsg_get_method_id(item->valuestring);
}
switch(method_type)
{
case TSG_METHOD_TYPE_DROP:
state=PROT_STATE_DROPME|PROT_STATE_DROPPKT;
break;
case TSG_METHOD_TYPE_REDIRECTION:
answer_array=get_answer_records(object, dns_info->query_question.qtype);
if(answer_array!=NULL)
{
memset(cheat_opt, 0, sizeof(cheat_opt));
answer_size=cJSON_GetArraySize(answer_array);
for(i=0; i<answer_size; i++)
{
item=cJSON_GetArrayItem(answer_array, i);
a_item=cJSON_GetObjectItem(item, "atype");
answer_type=fw_dns_type2index(a_item->valuestring);
a_item=cJSON_GetObjectItem(item, "ttl");
ttl=get_answer_ttl(a_item);
a_item=cJSON_GetObjectItem(item, "value");
if(a_item!=NULL)
{
cheat_opt[used_num].res_type=answer_type;
cheat_opt[used_num].cfg_type=answer_type;
cheat_opt[used_num].ttl=ttl;
switch(answer_type)
{
case DNS_TYPE_A:
cheat_opt[used_num].res_len=sizeof(unsigned int);
inet_pton(AF_INET, a_item->valuestring, (void *)cheat_opt[used_num].res_info);
break;
case DNS_TYPE_AAAA:
cheat_opt[used_num].res_len=IPV6_ADDR_LEN;
inet_pton(AF_INET6, a_item->valuestring, (void *)cheat_opt[used_num].res_info);
break;
default:
cheat_opt[used_num].res_len=(strlen(a_item->valuestring) > sizeof(cheat_opt[used_num].res_info)-1) ? sizeof(cheat_opt[used_num].res_info)-1 : strlen(a_item->valuestring);
memcpy(cheat_opt[used_num].res_info, a_item->valuestring, cheat_opt[used_num].res_len);
break;
}
used_num++;
}
else
{
a_item=cJSON_GetObjectItem(object, "record_id");
record_id=a_item->valueint;
a_item=cJSON_GetObjectItem(object, "selected_num");
used_num+=get_cheat_opt(record_id, a_item->valueint, ttl, answer_type, cheat_opt+used_num, MAX_ANSWER_RECORDS_NUM-used_num);
}
}
memset(cheat_pkt_payload, 0, MAX_CHEAT_PKT_PAYLOAD_LEN);
dns_hdr = (dns_hdr_t *)cheat_pkt_payload;
dns_hdr->id = dns_info->hdr_info.id;
dns_hdr->qdcount = 1;
dns_hdr->ancount = used_num;
payload_len=build_cheat_pkt(cheat_pkt_payload, MAX_CHEAT_PKT_PAYLOAD_LEN, &dns_info->query_question, cheat_opt, used_num);
if(payload_len==-1)
{
return -1;
}
senddir = MESA_dir_reverse(a_stream->routedir);
ret=MESA_inject_pkt(a_stream, (const char *)cheat_pkt_payload, payload_len, (const char *)a_packet, senddir);
if(ret<0)
{
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_FATAL,
"SEND_CHEAT_PKT",
"Return of MESA_inject_pkt_feedback function is %d, qname: %s qtype: %d cfg_id: %d service: %d addr: %s",
ret,
dns_info->query_question.qname,
dns_info->query_question.qtype,
p_result->config_id,
p_result->service_id,
printaddr(&a_stream->addr, a_stream->threadnum)
);
}
state=PROT_STATE_DROPME|PROT_STATE_DROPPKT;
}
else
{
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_FATAL,
"DO_ACTION",
"Hit policy_id: %d service: %d action: %d user_reagion: %s domain: %s qtype: %d addr: %s",
p_result->config_id,
p_result->service_id,
p_result->action,
(tmp_buff==NULL) ? p_result->service_defined : tmp_buff,
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
printaddr(&a_stream->addr, a_stream->threadnum)
);
state=PROT_STATE_GIVEME;
}
break;
default:
break;
}
cJSON_Delete(object);
object=NULL;
return state;
}
static int fw_dns_send_log(struct streaminfo *a_stream, dns_info_t *dns_info, struct Maat_rule_t *result, int result_num, int thread_seq)
{
int i=0;
int i=0,cname_flag=0;
dns_rr_t *rr=NULL;
tsg_log_t log_msg;
int dns_sec=1;
@@ -297,28 +90,41 @@ static int fw_dns_send_log(struct streaminfo *a_stream, dns_info_t *dns_info, st
{
item=cJSON_CreateString((const char *)rr->rdata.cname);
cJSON_AddItemToArray(cname_array, item);
cname_flag=1;
}
}
}
if(cname_flag==1)
{
cname=cJSON_PrintUnformatted(cname_array);
if(strlen(cname)>0)
if(cname!=NULL)
{
TLD_append(handle, (char *)"dns_cname", (void *)cname, TLD_TYPE_STRING);
free(cname);
cJSON_free(cname);
cname=NULL;
}
}
cJSON_Delete(cname_array);
cname_array=NULL;
if(dns_info->rr_count>0)
{
cJSON * object=cJSON_CreateObject();
get_rr_str2json(object, dns_info, &dns_sec);
rr_buf=cJSON_PrintUnformatted(object);
if(rr_buf!=NULL)
{
TLD_append(handle, (char *)"dns_rr", (void *)rr_buf, TLD_TYPE_STRING);
free(rr_buf);
cJSON_free(rr_buf);
rr_buf=NULL;
}
cJSON_Delete(object);
object=NULL;
}
TLD_append(handle, (char *)"dns_sub", (void *)(long)dns_sec, TLD_TYPE_LONG);
TLD_append(handle, (char *)"common_schema_type", (void *)"DNS", TLD_TYPE_STRING);
log_msg.a_stream=a_stream;
@@ -334,18 +140,25 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
{
int ret=0,hit_num=0;
scan_status_t mid=NULL;
int category_id_num=0;
char state=PROT_STATE_GIVEME;
unsigned int category_id[MAX_CATEGORY_ID_NUM]={0};
struct Maat_rule_t result[MAX_RESULT_NUM], *p_result=NULL;
dns_info_t *dns_info=(dns_info_t *)session_info->app_info;
if(dns_info==NULL || strlen((char *)dns_info->query_question.qname)==0)
if(dns_info==NULL || a_stream==NULL)
{
return state;
}
if(strlen((char *)dns_info->query_question.qname)==0)
{
MESA_handle_runtime_log(g_fw_dns_plug_info.logger,
RLOG_LV_FATAL,
RLOG_LV_DEBUG,
"DNS_PLUG",
"Qname is %s, addr: %s",
(dns_info==NULL) ? "NULL" : ((strlen((char *)dns_info->query_question.qname)==0) ? "NULL" : (char *)dns_info->query_question.qname),
printaddr(&a_stream->addr, thread_seq)
PRINTADDR(a_stream, g_fw_dns_plug_info.level)
);
return state;
}
@@ -362,7 +175,7 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
result[hit_num].action,
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
printaddr(&a_stream->addr, thread_seq)
PRINTADDR(a_stream, g_fw_dns_plug_info.level)
);
hit_num+=ret;
}
@@ -375,7 +188,7 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
ret,
printaddr(&a_stream->addr, thread_seq)
PRINTADDR(a_stream, g_fw_dns_plug_info.level)
);
}
@@ -389,7 +202,8 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
NULL,
MAX_RESULT_NUM-hit_num,
&mid,
thread_seq);
thread_seq
);
if(ret>0)
{
@@ -402,7 +216,7 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
result[hit_num].config_id,
result[hit_num].service_id,
result[hit_num].action,
printaddr(&a_stream->addr, thread_seq)
PRINTADDR(a_stream, g_fw_dns_plug_info.level)
);
hit_num+=ret;
}
@@ -415,22 +229,28 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
(char *)dns_info->query_question.qname,
dns_info->query_question.qtype,
ret,
printaddr(&a_stream->addr, thread_seq)
PRINTADDR(a_stream, g_fw_dns_plug_info.level)
);
}
category_id_num=tsg_get_fqdn_category_id(g_tsg_maat_feather, (char *)dns_info->query_question.qname, category_id, MAX_CATEGORY_ID_NUM, g_fw_dns_plug_info.logger, thread_seq);
tsg_set_fqdn_category_id(a_stream, category_id, category_id_num, thread_seq);
hit_num+=tsg_scan_fqdn_category_id(g_tsg_maat_feather, a_stream, result+hit_num,MAX_RESULT_NUM-hit_num, &mid, g_fw_dns_plug_info.table_qname_id, category_id, category_id_num, thread_seq);
if(hit_num>0)
{
p_result=tsg_fetch_deny_rule(result, hit_num);
if(p_result!=NULL)
{
state=fw_dns_action(a_stream, dns_info, p_result, a_packet);
state=tsg_deal_deny_action(a_stream, p_result, PROTO_DNS, ACTION_RETURN_TYPE_PROT, (const void *)dns_info);
if(state!=PROT_STATE_GIVEME)
{
fw_dns_send_log(a_stream, dns_info, p_result, 1, thread_seq);
}
}
else
{
tsg_notify_hited_monitor_result(a_stream, result, hit_num, thread_seq);
fw_dns_send_log(a_stream, dns_info, result, hit_num, thread_seq);
}
}
@@ -446,20 +266,18 @@ extern "C" char FW_DNS_PLUG_ENTRY(stSessionInfo* session_info, void **pme, int
extern "C" int FW_DNS_PLUG_INIT(void)
{
int level=30,ret=0;
char log_path[256]={0};
memset(&g_fw_dns_plug_info, 0, sizeof(g_fw_dns_plug_info));
MESA_load_profile_int_def(g_fw_dns_conffile, "DNS_PLUG", "LOG_LEVEL", &level, 30);
MESA_load_profile_string_def(g_fw_dns_conffile, "DNS_PLUG", "LOG_PATH", log_path, sizeof(log_path), "tsglog/fw_dns_plug/fw_dns_plug");
MESA_load_profile_int_def(g_fw_dns_conffile, "DNS_PLUG", "LOG_LEVEL", &g_fw_dns_plug_info.level, RLOG_LV_FATAL);
MESA_load_profile_string_def(g_fw_dns_conffile, "DNS_PLUG", "LOG_PATH", g_fw_dns_plug_info.log_path, sizeof(g_fw_dns_plug_info.log_path), "tsglog/fw_dns_plug/fw_dns_plug");
MESA_load_profile_string_def(g_fw_dns_conffile, "DNS_PLUG", "TABLE_QNAME", g_fw_dns_plug_info.table_qname, MAX_TABLE_NAME_LEN, "TSG_FIELD_DNS_QNAME");
g_fw_dns_plug_info.logger=MESA_create_runtime_log_handle(log_path, level);
g_fw_dns_plug_info.logger=MESA_create_runtime_log_handle(g_fw_dns_plug_info.log_path, g_fw_dns_plug_info.level);
if(g_fw_dns_plug_info.logger==NULL)
{
printf("MESA_create_runtime_log_handle failed, log_path: %s level: %d", (log_path==NULL) ? NULL : log_path, level);
printf("MESA_create_runtime_log_handle failed, log_path: %s level: %d", (g_fw_dns_plug_info.log_path==NULL) ? NULL : g_fw_dns_plug_info.log_path, g_fw_dns_plug_info.level);
return -1;
}
@@ -470,12 +288,6 @@ extern "C" int FW_DNS_PLUG_INIT(void)
return -1;
}
ret=fw_dns_rule_init(g_fw_dns_conffile, g_fw_dns_plug_info.logger);
if(ret<0)
{
return -1;
}
return 0;
}

View File

@@ -1,15 +0,0 @@
#ifndef __FW_DNS_PLUG_H__
#define __FW_DNS_PLUG_H__
#include "fw_dns_rule.h"
#define MAX_ANSWER_RECORDS_NUM 32
struct _fw_dns_plug
{
int table_qname_id;
char table_qname[MAX_TABLE_NAME_LEN];
void *logger;
};
#endif

View File

@@ -1,196 +0,0 @@
#include <stdio.h>
#include <arpa/inet.h>
#include <MESA/stream.h>
#include <MESA/dns.h>
#include <MESA/cJSON.h>
#include <MESA_prof_load.h>
#include <MESA/Maat_rule.h>
#include <MESA/MESA_handle_logger.h>
#include "tsg_rule.h"
#include "fw_dns_rule.h"
fw_dns_rule_t g_fw_dns_rule_info;
char FW_DNS_RULE_VERSION_20191201=0;
struct _dns_str2idx str2index[]={{DNS_TYPE_CNAME, 5, (char *)"CNAME"},
{DNS_TYPE_MX, 2, (char *)"MX"},
{DNS_TYPE_A, 1, (char *)"A"},
{DNS_TYPE_NS, 2, (char *)"NS"},
{DNS_TYPE_AAAA, 4, (char *)"AAAA"},
{DNS_TYPE_TXT, 3, (char *)"TXT"},
{DNS_TYPE_PTR, 3, (char *)"PTR"}
};
int fw_dns_type2index(char *type)
{
int i=0;
for(i=0; i<(int)(sizeof(str2index)/sizeof(struct _dns_str2idx)); i++)
{
if(str2index[i].len==(int)strlen(type) && (strncasecmp(str2index[i].type, type, str2index[i].len))==0)
{
return str2index[i].index;
}
}
return -1;
}
int get_cheat_opt(int record_id, int select_num, int ttl, int atype, cheat_pkt_opt_t* cheat_opt, int cheat_opt_num)
{
int i=0,idx=0;
int used_num=0,real_num=0;
cb_rule_t *cb_rule=NULL;
real_num=(select_num>cheat_opt_num) ? cheat_opt_num : select_num;
cb_rule=(cb_rule_t *)Maat_plugin_get_EX_data(g_tsg_maat_feather, g_fw_dns_rule_info.table_records_id, (char *)&record_id);
if(cb_rule!=NULL && real_num>0)
{
idx = (cb_rule->record_num>=real_num) ? (random()%(cb_rule->record_num-real_num+1)) : 0;
for(i=0; i<real_num && i+idx<cb_rule->record_num; i++)
{
cheat_opt[used_num].ttl=ttl;
cheat_opt[used_num].res_type=atype;
cheat_opt[used_num].cfg_type=atype;
switch(atype)
{
case DNS_TYPE_A:
cheat_opt[used_num].res_len=sizeof(unsigned int);
break;
case DNS_TYPE_AAAA:
cheat_opt[used_num].res_len=IPV6_ADDR_LEN;
break;
default:
cheat_opt[used_num].res_len=MIN(strlen((char *)(cb_rule->record_values[i+idx])), sizeof(cheat_opt[used_num].res_info)-1);
break;
}
memcpy(cheat_opt[used_num].res_info, (char *)(cb_rule->record_values[i+idx]), cheat_opt[used_num].res_len);
used_num++;
}
}
return used_num;
}
void fw_dns_EX_data_create(int table_id, const char* key, const char* table_line, MAAT_PLUGIN_EX_DATA* ad, long argl, void *argp)
{
int i=0;
cJSON *pSub=NULL;
cb_rule_t *cb_rule=(cb_rule_t *)calloc(1, sizeof(cb_rule_t));
char *tmp_records=(char *)calloc(1, strlen(table_line)+1);
sscanf(table_line, "%d %s %s %s %d", &cb_rule->record_id, cb_rule->record_name, cb_rule->record_type, tmp_records, &cb_rule->is_valid);
int index=fw_dns_type2index(cb_rule->record_type);
cJSON *tmp_array=cJSON_Parse(tmp_records);
if(tmp_array != NULL)
{
cb_rule->record_num=cJSON_GetArraySize(tmp_array);
*cb_rule->record_values=(void *)malloc(cb_rule->record_num*sizeof(void *));
for(i=0; i<cb_rule->record_num; i++)
{
pSub = cJSON_GetArrayItem(tmp_array, i);
if(NULL==pSub )
{
continue;
}
switch(index)
{
case DNS_TYPE_A:
cb_rule->record_values[i]=calloc(1, sizeof(unsigned int));
inet_pton(AF_INET, pSub->valuestring, cb_rule->record_values[i]);
break;
case DNS_TYPE_AAAA:
cb_rule->record_values[i]=calloc(1, IPV6_ADDR_LEN);
inet_pton(AF_INET6, pSub->valuestring, cb_rule->record_values[i]);
break;
case DNS_TYPE_MX:
break;
case DNS_TYPE_NS:
case DNS_TYPE_TXT:
case DNS_TYPE_PTR:
case DNS_TYPE_CNAME:
cb_rule->record_values[i]=calloc(1, strlen(pSub->valuestring)+1);
memcpy(cb_rule->record_values[i], pSub->valuestring, strlen(pSub->valuestring));
break;
default:
continue;
}
}
}
free(tmp_records);
}
void fw_dns_EX_data_free(int table_id, MAAT_PLUGIN_EX_DATA* ad, long argl, void *argp)
{
int i=0;
cb_rule_t *cb_rule=(cb_rule_t *)*ad;
if(cb_rule!=NULL)
{
for(i=0; i<cb_rule->record_num; i++)
{
free(cb_rule->record_values[i]);
cb_rule->record_values[i]=NULL;
}
free(*cb_rule->record_values);
*cb_rule->record_values=NULL;
free(cb_rule);
cb_rule=NULL;
}
}
void fw_dns_EX_data_dup(int table_id, MAAT_PLUGIN_EX_DATA *to, MAAT_PLUGIN_EX_DATA *from, long argl, void *argp)
{
}
int fw_dns_EX_data_key2index(const char* key)
{
return 0;
}
int fw_dns_rule_init(const char *conffile, void *logger)
{
int ret=0;
long arg=0;
memset(&g_fw_dns_rule_info, 0, sizeof(g_fw_dns_rule_info));
MESA_load_profile_string_def(conffile, "DNS_PLUG", "TABLE_RECORDS", g_fw_dns_rule_info.table_records_name, MAX_TABLE_NAME_LEN, (char *)"FW_PROFILE_DNS_RECORDS");
g_fw_dns_rule_info.table_records_id=Maat_table_register(g_tsg_maat_feather, g_fw_dns_rule_info.table_records_name);
if(g_fw_dns_rule_info.table_records_id<0)
{
MESA_handle_runtime_log(logger, RLOG_LV_FATAL, "REGISTER_TABLE", "Maat_table_register failed, table_name: %s", g_fw_dns_rule_info.table_records_name);
return -1;
}
ret=Maat_plugin_EX_register(g_tsg_maat_feather,
g_fw_dns_rule_info.table_records_id,
fw_dns_EX_data_create,
fw_dns_EX_data_free,
fw_dns_EX_data_dup,
fw_dns_EX_data_key2index,
arg,
NULL);
if(ret<0)
{
MESA_handle_runtime_log(logger, RLOG_LV_FATAL, "REGISTER_TABLE", "Maat_plugin_EX_register failed, table_name: %s", g_fw_dns_rule_info.table_records_name);
return -1;
}
return 0;
}

View File

@@ -1,36 +0,0 @@
#ifndef __FW_DNS_RULE_H__
#define __FW_DNS_RULE_H__
#define MIN(a, b) ((a>b) ? b: a)
#define MAX_TABLE_NAME_LEN 32
struct _dns_str2idx
{
int index;
int len;
char *type;
};
typedef struct _cb_rule
{
int record_id;
int record_num;
int is_valid;
char record_type[128];
char record_name[MAX_TABLE_NAME_LEN];
void **record_values;
}cb_rule_t;
typedef struct _fw_dns_rule
{
int table_records_id;
char table_records_name[MAX_TABLE_NAME_LEN];
}fw_dns_rule_t;
int fw_dns_type2index(char *type);
int fw_dns_rule_init(const char *conffile, void *logger);
int get_cheat_opt(int record_id, int select_num, int ttl, int atype, cheat_pkt_opt_t* cheat_opt, int cheat_opt_num);
#endif