115
117
print format_string % tuple(valuetostring(client[key], key)
116
118
for key in keywords)
118
parser = OptionParser(version = "%%prog %s" % version)
119
parser.add_option("-a", "--all", action="store_true",
120
help="Print all fields")
121
parser.add_option("-e", "--enable", action="store_true",
122
help="Enable client")
123
parser.add_option("-d", "--disable", action="store_true",
124
help="disable client")
125
parser.add_option("-b", "--bump-timeout", action="store_true",
126
help="Bump timeout for client")
127
parser.add_option("--start-checker", action="store_true",
128
help="Start checker for client")
129
parser.add_option("--stop-checker", action="store_true",
130
help="Stop checker for client")
131
parser.add_option("-V", "--is-valid", action="store_true",
132
help="Check if client is still valid")
133
parser.add_option("-r", "--remove", action="store_true",
134
help="Remove client")
135
parser.add_option("-c", "--checker", type="string",
136
help="Set checker command for client")
137
parser.add_option("-t", "--timeout", type="string",
138
help="Set timeout for client")
139
parser.add_option("-i", "--interval", type="string",
140
help="Set checker interval for client")
141
parser.add_option("-H", "--host", type="string",
142
help="Set host for client")
143
parser.add_option("-s", "--secret", type="string",
144
help="Set password blob (file) for client")
145
options, client_names = parser.parse_args()
147
# Compile list of clients to process
149
for name in client_names:
150
for path, client in mandos_clients.iteritems():
151
if client['name'] == name:
152
client_objc = bus.get_object(busname, path)
153
clients.append(client_objc)
156
print >> sys.stderr, "Client not found on server: %r" % name
159
if not clients and mandos_clients.values():
160
keywords = defaultkeywords
162
keywords = ('name', 'enabled', 'timeout', 'last_checked_ok',
163
'created', 'interval', 'host', 'fingerprint',
164
'checker_running', 'last_enabled', 'checker')
165
print_clients(mandos_clients.values())
167
# Process each client in the list by all selected options
168
for client in clients:
170
mandos_serv.RemoveClient(client.__dbus_object_path__)
172
client.Enable(dbus_interface=client_interface)
174
client.Disable(dbus_interface=client_interface)
175
if options.bump_timeout:
176
client.CheckedOK(dbus_interface=client_interface)
177
if options.start_checker:
178
client.StartChecker(dbus_interface=client_interface)
179
if options.stop_checker:
180
client.StopChecker(dbus_interface=client_interface)
182
sys.exit(0 if client.Get(client_interface,
184
dbus_interface=dbus.PROPERTIES_IFACE)
187
client.Set(client_interface, u"checker", options.checker,
188
dbus_interface=dbus.PROPERTIES_IFACE)
190
client.Set(client_interface, u"host", options.host,
191
dbus_interface=dbus.PROPERTIES_IFACE)
193
client.Set(client_interface, u"interval",
194
timedelta_to_milliseconds
195
(string_to_delta(options.interval)),
196
dbus_interface=dbus.PROPERTIES_IFACE)
198
client.Set(client_interface, u"timeout",
199
timedelta_to_milliseconds(string_to_delta
201
dbus_interface=dbus.PROPERTIES_IFACE)
203
client.Set(client_interface, u"secret",
204
dbus.ByteArray(open(options.secret, u'rb').read()),
205
dbus_interface=dbus.PROPERTIES_IFACE)
120
def has_actions(options):
121
return any((options.enable,
123
options.bump_timeout,
124
options.start_checker,
125
options.stop_checker,
128
options.checker is not None,
129
options.timeout is not None,
130
options.interval is not None,
131
options.approved_by_default is not None,
132
options.approval_delay is not None,
133
options.approval_duration is not None,
134
options.host is not None,
135
options.secret is not None,
140
parser = OptionParser(version = "%%prog %s" % version)
141
parser.add_option("-a", "--all", action="store_true",
142
help="Select all clients")
143
parser.add_option("-v", "--verbose", action="store_true",
144
help="Print all fields")
145
parser.add_option("-e", "--enable", action="store_true",
146
help="Enable client")
147
parser.add_option("-d", "--disable", action="store_true",
148
help="disable client")
149
parser.add_option("-b", "--bump-timeout", action="store_true",
150
help="Bump timeout for client")
151
parser.add_option("--start-checker", action="store_true",
152
help="Start checker for client")
153
parser.add_option("--stop-checker", action="store_true",
154
help="Stop checker for client")
155
parser.add_option("-V", "--is-enabled", action="store_true",
156
help="Check if client is enabled")
157
parser.add_option("-r", "--remove", action="store_true",
158
help="Remove client")
159
parser.add_option("-c", "--checker", type="string",
160
help="Set checker command for client")
161
parser.add_option("-t", "--timeout", type="string",
162
help="Set timeout for client")
163
parser.add_option("-i", "--interval", type="string",
164
help="Set checker interval for client")
165
parser.add_option("--approve-by-default", action="store_true",
166
dest=u"approved_by_default",
167
help="Set client to be approved by default")
168
parser.add_option("--deny-by-default", action="store_false",
169
dest=u"approved_by_default",
170
help="Set client to be denied by default")
171
parser.add_option("--approval-delay", type="string",
172
help="Set delay before client approve/deny")
173
parser.add_option("--approval-duration", type="string",
174
help="Set duration of one client approval")
175
parser.add_option("-H", "--host", type="string",
176
help="Set host for client")
177
parser.add_option("-s", "--secret", type="string",
178
help="Set password blob (file) for client")
179
parser.add_option("-A", "--approve", action="store_true",
180
help="Approve any current client request")
181
parser.add_option("-D", "--deny", action="store_true",
182
help="Deny any current client request")
183
options, client_names = parser.parse_args()
185
if has_actions(options) and not client_names and not options.all:
186
parser.error('Options require clients names or --all.')
187
if options.verbose and has_actions(options):
188
parser.error('--verbose can only be used alone or with'
190
if options.all and not has_actions(options):
191
parser.error('--all requires an action.')
194
bus = dbus.SystemBus()
195
mandos_dbus_objc = bus.get_object(busname, server_path)
196
except dbus.exceptions.DBusException:
197
print >> sys.stderr, "Could not connect to Mandos server"
200
mandos_serv = dbus.Interface(mandos_dbus_objc,
201
dbus_interface = server_interface)
203
#block stderr since dbus library prints to stderr
204
null = os.open(os.path.devnull, os.O_RDWR)
205
stderrcopy = os.dup(sys.stderr.fileno())
206
os.dup2(null, sys.stderr.fileno())
210
mandos_clients = mandos_serv.GetAllClientsWithProperties()
213
os.dup2(stderrcopy, sys.stderr.fileno())
215
except dbus.exceptions.DBusException, e:
216
print >> sys.stderr, "Access denied: Accessing mandos server through dbus."
219
# Compile dict of (clients: properties) to process
222
if options.all or not client_names:
223
clients = dict((bus.get_object(busname, path), properties)
224
for path, properties in
225
mandos_clients.iteritems())
227
for name in client_names:
228
for path, client in mandos_clients.iteritems():
229
if client['Name'] == name:
230
client_objc = bus.get_object(busname, path)
231
clients[client_objc] = client
234
print >> sys.stderr, "Client not found on server: %r" % name
237
if not has_actions(options) and clients:
239
keywords = ('Name', 'Enabled', 'Timeout',
240
'LastCheckedOK', 'Created', 'Interval',
241
'Host', 'Fingerprint', 'CheckerRunning',
242
'LastEnabled', 'ApprovalPending',
244
'LastApprovalRequest', 'ApprovalDelay',
245
'ApprovalDuration', 'Checker')
247
keywords = defaultkeywords
249
print_clients(clients.values(), keywords)
251
# Process each client in the list by all selected options
252
for client in clients:
254
mandos_serv.RemoveClient(client.__dbus_object_path__)
256
client.Enable(dbus_interface=client_interface)
258
client.Disable(dbus_interface=client_interface)
259
if options.bump_timeout:
260
client.CheckedOK(dbus_interface=client_interface)
261
if options.start_checker:
262
client.StartChecker(dbus_interface=client_interface)
263
if options.stop_checker:
264
client.StopChecker(dbus_interface=client_interface)
265
if options.is_enabled:
266
sys.exit(0 if client.Get(client_interface,
268
dbus_interface=dbus.PROPERTIES_IFACE)
271
client.Set(client_interface, u"Checker", options.checker,
272
dbus_interface=dbus.PROPERTIES_IFACE)
274
client.Set(client_interface, u"Host", options.host,
275
dbus_interface=dbus.PROPERTIES_IFACE)
277
client.Set(client_interface, u"Interval",
278
timedelta_to_milliseconds
279
(string_to_delta(options.interval)),
280
dbus_interface=dbus.PROPERTIES_IFACE)
281
if options.approval_delay:
282
client.Set(client_interface, u"ApprovalDelay",
283
timedelta_to_milliseconds
284
(string_to_delta(options.
286
dbus_interface=dbus.PROPERTIES_IFACE)
287
if options.approval_duration:
288
client.Set(client_interface, u"ApprovalDuration",
289
timedelta_to_milliseconds
290
(string_to_delta(options.
292
dbus_interface=dbus.PROPERTIES_IFACE)
294
client.Set(client_interface, u"Timeout",
295
timedelta_to_milliseconds
296
(string_to_delta(options.timeout)),
297
dbus_interface=dbus.PROPERTIES_IFACE)
299
client.Set(client_interface, u"Secret",
300
dbus.ByteArray(open(options.secret,
302
dbus_interface=dbus.PROPERTIES_IFACE)
303
if options.approved_by_default is not None:
304
client.Set(client_interface, u"ApprovedByDefault",
306
.approved_by_default),
307
dbus_interface=dbus.PROPERTIES_IFACE)
309
client.Approve(dbus.Boolean(True),
310
dbus_interface=client_interface)
312
client.Approve(dbus.Boolean(False),
313
dbus_interface=client_interface)
315
if __name__ == '__main__':