117
118
print format_string % tuple(valuetostring(client[key], key)
118
119
for key in keywords)
120
def has_actions(options):
121
return any((options.enable,
123
options.bump_timeout,
124
options.start_checker,
125
options.stop_checker,
128
options.checker is not None,
129
options.timeout is not None,
130
options.interval is not None,
131
options.approved_by_default is not None,
132
options.approval_delay is not None,
133
options.approval_duration is not None,
134
options.host is not None,
135
options.secret is not None,
140
parser = OptionParser(version = "%%prog %s" % version)
141
parser.add_option("-a", "--all", action="store_true",
142
help="Select all clients")
143
parser.add_option("-v", "--verbose", action="store_true",
144
help="Print all fields")
145
parser.add_option("-e", "--enable", action="store_true",
146
help="Enable client")
147
parser.add_option("-d", "--disable", action="store_true",
148
help="disable client")
149
parser.add_option("-b", "--bump-timeout", action="store_true",
150
help="Bump timeout for client")
151
parser.add_option("--start-checker", action="store_true",
152
help="Start checker for client")
153
parser.add_option("--stop-checker", action="store_true",
154
help="Stop checker for client")
155
parser.add_option("-V", "--is-enabled", action="store_true",
156
help="Check if client is enabled")
157
parser.add_option("-r", "--remove", action="store_true",
158
help="Remove client")
159
parser.add_option("-c", "--checker", type="string",
160
help="Set checker command for client")
161
parser.add_option("-t", "--timeout", type="string",
162
help="Set timeout for client")
163
parser.add_option("-i", "--interval", type="string",
164
help="Set checker interval for client")
165
parser.add_option("--approve-by-default", action="store_true",
166
dest=u"approved_by_default",
167
help="Set client to be approved by default")
168
parser.add_option("--deny-by-default", action="store_false",
169
dest=u"approved_by_default",
170
help="Set client to be denied by default")
171
parser.add_option("--approval-delay", type="string",
172
help="Set delay before client approve/deny")
173
parser.add_option("--approval-duration", type="string",
174
help="Set duration of one client approval")
175
parser.add_option("-H", "--host", type="string",
176
help="Set host for client")
177
parser.add_option("-s", "--secret", type="string",
178
help="Set password blob (file) for client")
179
parser.add_option("-A", "--approve", action="store_true",
180
help="Approve any current client request")
181
parser.add_option("-D", "--deny", action="store_true",
182
help="Deny any current client request")
183
options, client_names = parser.parse_args()
185
if has_actions(options) and not client_names and not options.all:
186
parser.error('Options require clients names or --all.')
187
if options.verbose and has_actions(options):
188
parser.error('--verbose can only be used alone or with'
190
if options.all and not has_actions(options):
191
parser.error('--all requires an action.')
194
bus = dbus.SystemBus()
195
mandos_dbus_objc = bus.get_object(busname, server_path)
196
except dbus.exceptions.DBusException:
197
print >> sys.stderr, "Could not connect to Mandos server"
200
mandos_serv = dbus.Interface(mandos_dbus_objc,
201
dbus_interface = server_interface)
203
#block stderr since dbus library prints to stderr
204
null = os.open(os.path.devnull, os.O_RDWR)
205
stderrcopy = os.dup(sys.stderr.fileno())
206
os.dup2(null, sys.stderr.fileno())
210
mandos_clients = mandos_serv.GetAllClientsWithProperties()
213
os.dup2(stderrcopy, sys.stderr.fileno())
215
except dbus.exceptions.DBusException, e:
216
print >> sys.stderr, "Access denied: Accessing mandos server through dbus."
219
# Compile dict of (clients: properties) to process
222
if options.all or not client_names:
223
clients = dict((bus.get_object(busname, path), properties)
224
for path, properties in
225
mandos_clients.iteritems())
227
for name in client_names:
228
for path, client in mandos_clients.iteritems():
229
if client['Name'] == name:
230
client_objc = bus.get_object(busname, path)
231
clients[client_objc] = client
234
print >> sys.stderr, "Client not found on server: %r" % name
237
if not has_actions(options) and clients:
239
keywords = ('Name', 'Enabled', 'Timeout',
240
'LastCheckedOK', 'Created', 'Interval',
241
'Host', 'Fingerprint', 'CheckerRunning',
242
'LastEnabled', 'ApprovalPending',
244
'LastApprovalRequest', 'ApprovalDelay',
245
'ApprovalDuration', 'Checker')
247
keywords = defaultkeywords
249
print_clients(clients.values(), keywords)
251
# Process each client in the list by all selected options
252
for client in clients:
254
mandos_serv.RemoveClient(client.__dbus_object_path__)
256
client.Enable(dbus_interface=client_interface)
258
client.Disable(dbus_interface=client_interface)
259
if options.bump_timeout:
260
client.CheckedOK(dbus_interface=client_interface)
261
if options.start_checker:
262
client.StartChecker(dbus_interface=client_interface)
263
if options.stop_checker:
264
client.StopChecker(dbus_interface=client_interface)
265
if options.is_enabled:
266
sys.exit(0 if client.Get(client_interface,
268
dbus_interface=dbus.PROPERTIES_IFACE)
271
client.Set(client_interface, u"Checker", options.checker,
272
dbus_interface=dbus.PROPERTIES_IFACE)
274
client.Set(client_interface, u"Host", options.host,
275
dbus_interface=dbus.PROPERTIES_IFACE)
277
client.Set(client_interface, u"Interval",
278
timedelta_to_milliseconds
279
(string_to_delta(options.interval)),
280
dbus_interface=dbus.PROPERTIES_IFACE)
281
if options.approval_delay:
282
client.Set(client_interface, u"ApprovalDelay",
283
timedelta_to_milliseconds
284
(string_to_delta(options.
286
dbus_interface=dbus.PROPERTIES_IFACE)
287
if options.approval_duration:
288
client.Set(client_interface, u"ApprovalDuration",
289
timedelta_to_milliseconds
290
(string_to_delta(options.
292
dbus_interface=dbus.PROPERTIES_IFACE)
294
client.Set(client_interface, u"Timeout",
295
timedelta_to_milliseconds
296
(string_to_delta(options.timeout)),
297
dbus_interface=dbus.PROPERTIES_IFACE)
299
client.Set(client_interface, u"Secret",
300
dbus.ByteArray(open(options.secret,
302
dbus_interface=dbus.PROPERTIES_IFACE)
303
if options.approved_by_default is not None:
304
client.Set(client_interface, u"ApprovedByDefault",
306
.approved_by_default),
307
dbus_interface=dbus.PROPERTIES_IFACE)
309
client.Approve(dbus.Boolean(True),
310
dbus_interface=client_interface)
312
client.Approve(dbus.Boolean(False),
313
dbus_interface=client_interface)
315
if __name__ == '__main__':
121
parser = OptionParser(version = "%%prog %s" % version)
122
parser.add_option("-a", "--all", action="store_true",
123
help="Print all fields")
124
parser.add_option("-e", "--enable", action="store_true",
125
help="Enable client")
126
parser.add_option("-d", "--disable", action="store_true",
127
help="disable client")
128
parser.add_option("-b", "--bump-timeout", action="store_true",
129
help="Bump timeout for client")
130
parser.add_option("--start-checker", action="store_true",
131
help="Start checker for client")
132
parser.add_option("--stop-checker", action="store_true",
133
help="Stop checker for client")
134
parser.add_option("-V", "--is-enabled", action="store_true",
135
help="Check if client is enabled")
136
parser.add_option("-r", "--remove", action="store_true",
137
help="Remove client")
138
parser.add_option("-c", "--checker", type="string",
139
help="Set checker command for client")
140
parser.add_option("-t", "--timeout", type="string",
141
help="Set timeout for client")
142
parser.add_option("-i", "--interval", type="string",
143
help="Set checker interval for client")
144
parser.add_option("-H", "--host", type="string",
145
help="Set host for client")
146
parser.add_option("-s", "--secret", type="string",
147
help="Set password blob (file) for client")
148
parser.add_option("-A", "--approve", action="store_true",
149
help="Approve any current client request")
150
parser.add_option("-D", "--deny", action="store_true",
151
help="Deny any current client request")
152
options, client_names = parser.parse_args()
154
# Compile list of clients to process
156
for name in client_names:
157
for path, client in mandos_clients.iteritems():
158
if client['name'] == name:
159
client_objc = bus.get_object(busname, path)
160
clients.append(client_objc)
163
print >> sys.stderr, "Client not found on server: %r" % name
166
if not clients and mandos_clients.values():
167
keywords = defaultkeywords
169
keywords = ('name', 'enabled', 'timeout', 'last_checked_ok',
170
'created', 'interval', 'host', 'fingerprint',
171
'checker_running', 'last_enabled', 'checker')
172
print_clients(mandos_clients.values())
174
# Process each client in the list by all selected options
175
for client in clients:
177
mandos_serv.RemoveClient(client.__dbus_object_path__)
179
client.Enable(dbus_interface=client_interface)
181
client.Disable(dbus_interface=client_interface)
182
if options.bump_timeout:
183
client.CheckedOK(dbus_interface=client_interface)
184
if options.start_checker:
185
client.StartChecker(dbus_interface=client_interface)
186
if options.stop_checker:
187
client.StopChecker(dbus_interface=client_interface)
188
if options.is_enabled:
189
sys.exit(0 if client.Get(client_interface,
191
dbus_interface=dbus.PROPERTIES_IFACE)
194
client.Set(client_interface, u"checker", options.checker,
195
dbus_interface=dbus.PROPERTIES_IFACE)
197
client.Set(client_interface, u"host", options.host,
198
dbus_interface=dbus.PROPERTIES_IFACE)
200
client.Set(client_interface, u"interval",
201
timedelta_to_milliseconds
202
(string_to_delta(options.interval)),
203
dbus_interface=dbus.PROPERTIES_IFACE)
205
client.Set(client_interface, u"timeout",
206
timedelta_to_milliseconds(string_to_delta
208
dbus_interface=dbus.PROPERTIES_IFACE)
210
client.Set(client_interface, u"secret",
211
dbus.ByteArray(open(options.secret, u'rb').read()),
212
dbus_interface=dbus.PROPERTIES_IFACE)
214
client.Approve(dbus.Boolean(True), dbus_interface=client_interface)
216
client.Approve(dbus.Boolean(False), dbus_interface=client_interface)