/mandos/release

To get this branch, use:
bzr branch http://bzr.recompile.se/loggerhead/mandos/release

« back to all changes in this revision

Viewing changes to mandos-monitor

  • Committer: teddy at bsnet
  • Date: 2010-09-10 17:06:26 UTC
  • mto: (237.2.190 mandos)
  • mto: This revision was merged to the branch mainline in revision 270.
  • Revision ID: teddy@fukt.bsnet.se-20100910170626-exo8e7ptkb9ncg29
* Makefile (install-server): Install dbus-mandos.conf as
                             "/etc/dbus-1/system.d/mandos.conf".
  (purge-server): Remove "/etc/dbus-1/system.d/mandos.conf".

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
1
#!/usr/bin/python
2
2
# -*- mode: python; coding: utf-8 -*-
3
 
4
 
# Mandos Monitor - Control and monitor the Mandos server
5
 
6
 
# Copyright © 2009,2010 Teddy Hogeborn
7
 
# Copyright © 2009,2010 Björn Påhlsson
8
 
9
 
# This program is free software: you can redistribute it and/or modify
10
 
# it under the terms of the GNU General Public License as published by
11
 
# the Free Software Foundation, either version 3 of the License, or
12
 
# (at your option) any later version.
13
 
#
14
 
#     This program is distributed in the hope that it will be useful,
15
 
#     but WITHOUT ANY WARRANTY; without even the implied warranty of
16
 
#     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
17
 
#     GNU General Public License for more details.
18
 
19
 
# You should have received a copy of the GNU General Public License
20
 
# along with this program.  If not, see <http://www.gnu.org/licenses/>.
21
 
22
 
# Contact the authors at <mandos@fukt.bsnet.se>.
23
 
24
3
 
25
4
from __future__ import division, absolute_import, with_statement
26
5
 
44
23
 
45
24
locale.setlocale(locale.LC_ALL, u'')
46
25
 
47
 
import logging
48
 
logging.getLogger(u'dbus.proxies').setLevel(logging.CRITICAL)
49
 
 
50
26
# Some useful constants
51
 
domain = u'se.bsnet.fukt'
52
 
server_interface = domain + u'.Mandos'
53
 
client_interface = domain + u'.Mandos.Client'
54
 
version = u"1.2.3"
 
27
domain = 'se.bsnet.fukt'
 
28
server_interface = domain + '.Mandos'
 
29
client_interface = domain + '.Mandos.Client'
 
30
version = "1.0.14"
55
31
 
56
32
# Always run in monochrome mode
57
33
urwid.curses_display.curses.has_colors = lambda : False
94
70
        self.properties.update(
95
71
            self.proxy.GetAll(client_interface,
96
72
                              dbus_interface = dbus.PROPERTIES_IFACE))
97
 
 
98
 
        #XXX This break good super behaviour!
99
 
#        super(MandosClientPropertyCache, self).__init__(
100
 
#            *args, **kwargs)
 
73
        super(MandosClientPropertyCache, self).__init__(
 
74
            proxy_object=proxy_object, *args, **kwargs)
101
75
    
102
76
    def property_changed(self, property=None, value=None):
103
77
        """This is called whenever we get a PropertyChanged signal
123
97
        self.logger = logger
124
98
        
125
99
        self._update_timer_callback_tag = None
126
 
        self._update_timer_callback_lock = 0
127
100
        self.last_checker_failed = False
128
101
        
129
102
        # The widget shown normally
135
108
            *args, **kwargs)
136
109
        self.update()
137
110
        self.opened = False
138
 
        
139
 
        last_checked_ok = isoformat_to_datetime(self.properties
140
 
                                                [u"LastCheckedOK"])
141
 
        if last_checked_ok is None:
142
 
            self.last_checker_failed = True
143
 
        else:
144
 
            self.last_checker_failed = ((datetime.datetime.utcnow()
145
 
                                         - last_checked_ok)
146
 
                                        > datetime.timedelta
147
 
                                        (milliseconds=
148
 
                                         self.properties
149
 
                                         [u"Interval"]))
150
 
        
151
 
        if self.last_checker_failed:
152
 
            self.using_timer(True)
153
 
        
154
 
        if self.need_approval:
155
 
            self.using_timer(True)
156
 
        
157
111
        self.proxy.connect_to_signal(u"CheckerCompleted",
158
112
                                     self.checker_completed,
159
113
                                     client_interface,
166
120
                                     self.got_secret,
167
121
                                     client_interface,
168
122
                                     byte_arrays=True)
169
 
        self.proxy.connect_to_signal(u"NeedApproval",
170
 
                                     self.need_approval,
171
 
                                     client_interface,
172
 
                                     byte_arrays=True)
173
123
        self.proxy.connect_to_signal(u"Rejected",
174
124
                                     self.rejected,
175
125
                                     client_interface,
176
126
                                     byte_arrays=True)
177
 
    
178
 
    def property_changed(self, property=None, value=None):
179
 
        super(self, MandosClientWidget).property_changed(property,
180
 
                                                         value)
181
 
        if property == u"ApprovalPending":
182
 
            using_timer(bool(value))
183
 
        
184
 
    def using_timer(self, flag):
185
 
        """Call this method with True or False when timer should be
186
 
        activated or deactivated.
187
 
        """
188
 
        old = self._update_timer_callback_lock
189
 
        if flag:
190
 
            self._update_timer_callback_lock += 1
 
127
        last_checked_ok = isoformat_to_datetime(self.properties
 
128
                                                ["last_checked_ok"])
 
129
        if last_checked_ok is None:
 
130
            self.last_checker_failed = True
191
131
        else:
192
 
            self._update_timer_callback_lock -= 1
193
 
        if old == 0 and self._update_timer_callback_lock:
 
132
            self.last_checker_failed = ((datetime.datetime.utcnow()
 
133
                                         - last_checked_ok)
 
134
                                        > datetime.timedelta
 
135
                                        (milliseconds=
 
136
                                         self.properties["interval"]))
 
137
        if self.last_checker_failed:
194
138
            self._update_timer_callback_tag = (gobject.timeout_add
195
139
                                               (1000,
196
140
                                                self.update_timer))
197
 
        elif old and self._update_timer_callback_lock == 0:
198
 
            gobject.source_remove(self._update_timer_callback_tag)
199
 
            self._update_timer_callback_tag = None
200
141
    
201
142
    def checker_completed(self, exitstatus, condition, command):
202
143
        if exitstatus == 0:
203
144
            if self.last_checker_failed:
204
145
                self.last_checker_failed = False
205
 
                self.using_timer(False)
206
 
            #self.logger(u'Checker for client %s (command "%s")'
207
 
            #            u' was successful'
208
 
            #            % (self.properties[u"Name"], command))
 
146
                gobject.source_remove(self._update_timer_callback_tag)
 
147
                self._update_timer_callback_tag = None
 
148
            self.logger(u'Checker for client %s (command "%s")'
 
149
                        u' was successful'
 
150
                        % (self.properties[u"name"], command))
209
151
            self.update()
210
152
            return
211
153
        # Checker failed
212
154
        if not self.last_checker_failed:
213
155
            self.last_checker_failed = True
214
 
            self.using_timer(True)
 
156
            self._update_timer_callback_tag = (gobject.timeout_add
 
157
                                               (1000,
 
158
                                                self.update_timer))
215
159
        if os.WIFEXITED(condition):
216
160
            self.logger(u'Checker for client %s (command "%s")'
217
161
                        u' failed with exit code %s'
218
 
                        % (self.properties[u"Name"], command,
 
162
                        % (self.properties[u"name"], command,
219
163
                           os.WEXITSTATUS(condition)))
220
164
        elif os.WIFSIGNALED(condition):
221
165
            self.logger(u'Checker for client %s (command "%s")'
222
166
                        u' was killed by signal %s'
223
 
                        % (self.properties[u"Name"], command,
 
167
                        % (self.properties[u"name"], command,
224
168
                           os.WTERMSIG(condition)))
225
169
        elif os.WCOREDUMP(condition):
226
170
            self.logger(u'Checker for client %s (command "%s")'
227
171
                        u' dumped core'
228
 
                        % (self.properties[u"Name"], command))
 
172
                        % (self.properties[u"name"], command))
229
173
        else:
230
 
            self.logger(u'Checker for client %s completed'
231
 
                        u' mysteriously')
 
174
            self.logger(u'Checker for client %s completed mysteriously')
232
175
        self.update()
233
176
    
234
177
    def checker_started(self, command):
235
 
        #self.logger(u'Client %s started checker "%s"'
236
 
        #            % (self.properties[u"Name"], unicode(command)))
237
 
        pass
 
178
        self.logger(u'Client %s started checker "%s"'
 
179
                    % (self.properties[u"name"], unicode(command)))
238
180
    
239
181
    def got_secret(self):
240
 
        self.last_checker_failed = False
241
182
        self.logger(u'Client %s received its secret'
242
 
                    % self.properties[u"Name"])
243
 
    
244
 
    def need_approval(self, timeout, default):
245
 
        if not default:
246
 
            message = u'Client %s needs approval within %s seconds'
247
 
        else:
248
 
            message = u'Client %s will get its secret in %s seconds'
249
 
        self.logger(message
250
 
                    % (self.properties[u"Name"], timeout/1000))
251
 
        self.using_timer(True)
252
 
    
253
 
    def rejected(self, reason):
254
 
        self.logger(u'Client %s was rejected; reason: %s'
255
 
                    % (self.properties[u"Name"], reason))
 
183
                    % self.properties[u"name"])
 
184
    
 
185
    def rejected(self):
 
186
        self.logger(u'Client %s was rejected'
 
187
                    % self.properties[u"name"])
256
188
    
257
189
    def selectable(self):
258
190
        """Make this a "selectable" widget.
259
191
        This overrides the method from urwid.FlowWidget."""
260
192
        return True
261
193
    
262
 
    def rows(self, maxcolrow, focus=False):
 
194
    def rows(self, (maxcol,), focus=False):
263
195
        """How many rows this widget will occupy might depend on
264
196
        whether we have focus or not.
265
197
        This overrides the method from urwid.FlowWidget"""
266
 
        return self.current_widget(focus).rows(maxcolrow, focus=focus)
 
198
        return self.current_widget(focus).rows((maxcol,), focus=focus)
267
199
    
268
200
    def current_widget(self, focus=False):
269
201
        if focus or self.opened:
280
212
                          u"bold-underline-blink":
281
213
                              u"bold-underline-blink-standout",
282
214
                          }
283
 
 
 
215
        
284
216
        # Rebuild focus and non-focus widgets using current properties
285
 
 
286
 
        # Base part of a client. Name!
287
 
        base = (u'%(name)s: '
288
 
                      % {u"name": self.properties[u"Name"]})
289
 
        if not self.properties[u"Enabled"]:
290
 
            message = u"DISABLED"
291
 
        elif self.properties[u"ApprovalPending"]:
292
 
            timeout = datetime.timedelta(milliseconds
293
 
                                         = self.properties
294
 
                                         [u"ApprovalDelay"])
295
 
            last_approval_request = isoformat_to_datetime(
296
 
                self.properties[u"LastApprovalRequest"])
297
 
            if last_approval_request is not None:
298
 
                timer = timeout - (datetime.datetime.utcnow()
299
 
                                   - last_approval_request)
300
 
            else:
301
 
                timer = datetime.timedelta()
302
 
            if self.properties[u"ApprovedByDefault"]:
303
 
                message = u"Approval in %s. (d)eny?"
304
 
            else:
305
 
                message = u"Denial in %s. (a)pprove?"
306
 
            message = message % unicode(timer).rsplit(".", 1)[0]
307
 
        elif self.last_checker_failed:
308
 
            timeout = datetime.timedelta(milliseconds
309
 
                                         = self.properties
310
 
                                         [u"Timeout"])
311
 
            last_ok = isoformat_to_datetime(
312
 
                max((self.properties[u"LastCheckedOK"]
313
 
                     or self.properties[u"Created"]),
314
 
                    self.properties[u"LastEnabled"]))
315
 
            timer = timeout - (datetime.datetime.utcnow() - last_ok)
316
 
            message = (u'A checker has failed! Time until client'
317
 
                       u' gets disabled: %s'
318
 
                           % unicode(timer).rsplit(".", 1)[0])
319
 
        else:
320
 
            message = u"enabled"
321
 
        self._text = u"%s%s" % (base, message)
322
 
            
 
217
        self._text = (u'%(name)s: %(enabled)s%(timer)s'
 
218
                      % { u"name": self.properties[u"name"],
 
219
                          u"enabled":
 
220
                              (u"enabled"
 
221
                               if self.properties[u"enabled"]
 
222
                               else u"DISABLED"),
 
223
                          u"timer": (unicode(datetime.timedelta
 
224
                                             (milliseconds =
 
225
                                              self.properties
 
226
                                              [u"timeout"])
 
227
                                             - (datetime.datetime
 
228
                                                .utcnow()
 
229
                                                - isoformat_to_datetime
 
230
                                                (max((self.properties
 
231
                                                 ["last_checked_ok"]
 
232
                                                 or
 
233
                                                 self.properties
 
234
                                                 ["created"]),
 
235
                                                    self.properties[u"last_enabled"]))))
 
236
                                     if (self.last_checker_failed
 
237
                                         and self.properties
 
238
                                         [u"enabled"])
 
239
                                     else u"")})
323
240
        if not urwid.supports_unicode():
324
 
            self._text = self._text.encode(u"ascii", u"replace")
 
241
            self._text = self._text.encode("ascii", "replace")
325
242
        textlist = [(u"normal", self._text)]
326
243
        self._text_widget.set_text(textlist)
327
244
        self._focus_text_widget.set_text([(with_standout[text[0]],
331
248
                                          for text in textlist])
332
249
        self._widget = self._text_widget
333
250
        self._focus_widget = urwid.AttrWrap(self._focus_text_widget,
334
 
                                            u"standout")
 
251
                                            "standout")
335
252
        # Run update hook, if any
336
253
        if self.update_hook is not None:
337
254
            self.update_hook()
348
265
        if self.delete_hook is not None:
349
266
            self.delete_hook(self)
350
267
    
351
 
    def render(self, maxcolrow, focus=False):
 
268
    def render(self, (maxcol,), focus=False):
352
269
        """Render differently if we have focus.
353
270
        This overrides the method from urwid.FlowWidget"""
354
 
        return self.current_widget(focus).render(maxcolrow,
 
271
        return self.current_widget(focus).render((maxcol,),
355
272
                                                 focus=focus)
356
273
    
357
 
    def keypress(self, maxcolrow, key):
 
274
    def keypress(self, (maxcol,), key):
358
275
        """Handle keys.
359
276
        This overrides the method from urwid.FlowWidget"""
360
 
        if key == u"+":
361
 
            self.proxy.Enable(dbus_interface = client_interface)
362
 
        elif key == u"-":
363
 
            self.proxy.Disable(dbus_interface = client_interface)
364
 
        elif key == u"a":
365
 
            self.proxy.Approve(dbus.Boolean(True, variant_level=1),
366
 
                               dbus_interface = client_interface)
367
 
        elif key == u"d":
368
 
            self.proxy.Approve(dbus.Boolean(False, variant_level=1),
369
 
                                  dbus_interface = client_interface)
370
 
        elif key == u"R" or key == u"_" or key == u"ctrl k":
 
277
        if key == u"e" or key == u"+":
 
278
            self.proxy.Enable()
 
279
        elif key == u"d" or key == u"-":
 
280
            self.proxy.Disable()
 
281
        elif key == u"r" or key == u"_" or key == u"ctrl k":
371
282
            self.server_proxy_object.RemoveClient(self.proxy
372
283
                                                  .object_path)
373
284
        elif key == u"s":
374
 
            self.proxy.StartChecker(dbus_interface = client_interface)
 
285
            self.proxy.StartChecker()
375
286
        elif key == u"S":
376
 
            self.proxy.StopChecker(dbus_interface = client_interface)
 
287
            self.proxy.StopChecker()
377
288
        elif key == u"C":
378
 
            self.proxy.CheckedOK(dbus_interface = client_interface)
 
289
            self.proxy.CheckedOK()
379
290
        # xxx
380
291
#         elif key == u"p" or key == "=":
381
292
#             self.proxy.pause()
403
314
    "down" key presses, thus not allowing any containing widgets to
404
315
    use them as an excuse to shift focus away from this widget.
405
316
    """
406
 
    def keypress(self, maxcolrow, key):
407
 
        ret = super(ConstrainedListBox, self).keypress(maxcolrow, key)
 
317
    def keypress(self, (maxcol, maxrow), key):
 
318
        ret = super(ConstrainedListBox, self).keypress((maxcol, maxrow), key)
408
319
        if ret in (u"up", u"down"):
409
320
            return
410
321
        return ret
527
438
        Call this when the widget layout needs to change"""
528
439
        self.uilist = []
529
440
        #self.uilist.append(urwid.ListBox(self.clients))
530
 
        self.uilist.append(urwid.Frame(ConstrainedListBox(self.
531
 
                                                          clients),
 
441
        self.uilist.append(urwid.Frame(ConstrainedListBox(self.clients),
532
442
                                       #header=urwid.Divider(),
533
443
                                       header=None,
534
 
                                       footer=
535
 
                                       urwid.Divider(div_char=
536
 
                                                     self.divider)))
 
444
                                       footer=urwid.Divider(div_char=self.divider)))
537
445
        if self.log_visible:
538
446
            self.uilist.append(self.logbox)
539
447
            pass
557
465
        """Toggle visibility of the log buffer."""
558
466
        self.log_visible = not self.log_visible
559
467
        self.rebuild()
560
 
        #self.log_message(u"Log visibility changed to: "
561
 
        #                 + unicode(self.log_visible))
 
468
        self.log_message(u"Log visibility changed to: "
 
469
                         + unicode(self.log_visible))
562
470
    
563
471
    def change_log_display(self):
564
472
        """Change type of log display.
569
477
            self.log_wrap = u"clip"
570
478
        for textwidget in self.log:
571
479
            textwidget.set_wrap_mode(self.log_wrap)
572
 
        #self.log_message(u"Wrap mode: " + self.log_wrap)
 
480
        self.log_message(u"Wrap mode: " + self.log_wrap)
573
481
    
574
482
    def find_and_remove_client(self, path, name):
575
483
        """Find an client from its object path and remove it.
602
510
        if path is None:
603
511
            path = client.proxy.object_path
604
512
        self.clients_dict[path] = client
605
 
        self.clients.sort(None, lambda c: c.properties[u"Name"])
 
513
        self.clients.sort(None, lambda c: c.properties[u"name"])
606
514
        self.refresh()
607
515
    
608
516
    def remove_client(self, client, path=None):
683
591
                self.log_message_raw((u"bold",
684
592
                                      u"  "
685
593
                                      .join((u"Clients:",
686
 
                                             u"+: Enable",
687
 
                                             u"-: Disable",
688
 
                                             u"R: Remove",
 
594
                                             u"e: Enable",
 
595
                                             u"d: Disable",
 
596
                                             u"r: Remove",
689
597
                                             u"s: Start new checker",
690
598
                                             u"S: Stop checker",
691
 
                                             u"C: Checker OK",
692
 
                                             u"a: Approve",
693
 
                                             u"d: Deny"))))
 
599
                                             u"C: Checker OK"))))
694
600
                self.refresh()
695
601
            elif key == u"tab":
696
602
                if self.topwidget.get_focus() is self.logbox:
724
630
ui = UserInterface()
725
631
try:
726
632
    ui.run()
727
 
except KeyboardInterrupt:
728
 
    ui.screen.stop()
729
633
except Exception, e:
730
634
    ui.log_message(unicode(e))
731
635
    ui.screen.stop()