2
2
# -*- mode: python; coding: utf-8 -*-
4
# Mandos Monitor - Control and monitor the Mandos server
6
# Copyright © 2009,2010 Teddy Hogeborn
7
# Copyright © 2009,2010 Björn Påhlsson
9
# This program is free software: you can redistribute it and/or modify
10
# it under the terms of the GNU General Public License as published by
11
# the Free Software Foundation, either version 3 of the License, or
12
# (at your option) any later version.
14
# This program is distributed in the hope that it will be useful,
15
# but WITHOUT ANY WARRANTY; without even the implied warranty of
16
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17
# GNU General Public License for more details.
19
# You should have received a copy of the GNU General Public License
20
# along with this program. If not, see <http://www.gnu.org/licenses/>.
22
# Contact the authors at <mandos@fukt.bsnet.se>.
4
25
from __future__ import division, absolute_import, with_statement
37
61
urwid.curses_display.curses.A_UNDERLINE |= (
38
62
urwid.curses_display.curses.A_BLINK)
64
def isoformat_to_datetime(iso):
65
"Parse an ISO 8601 date string to a datetime.datetime()"
68
d, t = iso.split(u"T", 1)
69
year, month, day = d.split(u"-", 2)
70
hour, minute, second = t.split(u":", 2)
71
second, fraction = divmod(float(second), 1)
72
return datetime.datetime(int(year),
77
int(second), # Whole seconds
78
int(fraction*1000000)) # Microseconds
40
80
class MandosClientPropertyCache(object):
41
81
"""This wraps a Mandos Client D-Bus proxy object, caches the
42
82
properties and calls a hook function when any of them are
102
167
client_interface,
103
168
byte_arrays=True)
169
self.proxy.connect_to_signal(u"NeedApproval",
104
173
self.proxy.connect_to_signal(u"Rejected",
106
175
client_interface,
107
176
byte_arrays=True)
178
def property_changed(self, property=None, value=None):
179
super(self, MandosClientWidget).property_changed(property,
181
if property == u"ApprovalPending":
182
using_timer(bool(value))
184
def using_timer(self, flag):
185
"""Call this method with True or False when timer should be
186
activated or deactivated.
188
old = self._update_timer_callback_lock
190
self._update_timer_callback_lock += 1
192
self._update_timer_callback_lock -= 1
193
if old == 0 and self._update_timer_callback_lock:
194
self._update_timer_callback_tag = (gobject.timeout_add
197
elif old and self._update_timer_callback_lock == 0:
198
gobject.source_remove(self._update_timer_callback_tag)
199
self._update_timer_callback_tag = None
109
201
def checker_completed(self, exitstatus, condition, command):
110
202
if exitstatus == 0:
111
self.logger(u'Checker for client %s (command "%s")'
113
% (self.properties[u"name"], command))
203
if self.last_checker_failed:
204
self.last_checker_failed = False
205
self.using_timer(False)
206
#self.logger(u'Checker for client %s (command "%s")'
208
# % (self.properties[u"Name"], command))
212
if not self.last_checker_failed:
213
self.last_checker_failed = True
214
self.using_timer(True)
115
215
if os.WIFEXITED(condition):
116
216
self.logger(u'Checker for client %s (command "%s")'
117
217
u' failed with exit code %s'
118
% (self.properties[u"name"], command,
218
% (self.properties[u"Name"], command,
119
219
os.WEXITSTATUS(condition)))
121
if os.WIFSIGNALED(condition):
220
elif os.WIFSIGNALED(condition):
122
221
self.logger(u'Checker for client %s (command "%s")'
123
222
u' was killed by signal %s'
124
% (self.properties[u"name"], command,
223
% (self.properties[u"Name"], command,
125
224
os.WTERMSIG(condition)))
127
if os.WCOREDUMP(condition):
225
elif os.WCOREDUMP(condition):
128
226
self.logger(u'Checker for client %s (command "%s")'
130
% (self.properties[u"name"], command))
131
self.logger(u'Checker for client %s completed mysteriously')
228
% (self.properties[u"Name"], command))
230
self.logger(u'Checker for client %s completed'
133
234
def checker_started(self, command):
134
self.logger(u'Client %s started checker "%s"'
135
% (self.properties[u"name"], unicode(command)))
235
#self.logger(u'Client %s started checker "%s"'
236
# % (self.properties[u"Name"], unicode(command)))
137
239
def got_secret(self):
240
self.last_checker_failed = False
138
241
self.logger(u'Client %s received its secret'
139
% self.properties[u"name"])
142
self.logger(u'Client %s was rejected'
143
% self.properties[u"name"])
242
% self.properties[u"Name"])
244
def need_approval(self, timeout, default):
246
message = u'Client %s needs approval within %s seconds'
248
message = u'Client %s will get its secret in %s seconds'
250
% (self.properties[u"Name"], timeout/1000))
251
self.using_timer(True)
253
def rejected(self, reason):
254
self.logger(u'Client %s was rejected; reason: %s'
255
% (self.properties[u"Name"], reason))
145
257
def selectable(self):
146
258
"""Make this a "selectable" widget.
168
280
u"bold-underline-blink":
169
281
u"bold-underline-blink-standout",
172
284
# Rebuild focus and non-focus widgets using current properties
173
self._text = (u'%(name)s: %(enabled)s'
174
% { u"name": self.properties[u"name"],
177
if self.properties[u"enabled"]
286
# Base part of a client. Name!
287
base = (u'%(name)s: '
288
% {u"name": self.properties[u"Name"]})
289
if not self.properties[u"Enabled"]:
290
message = u"DISABLED"
291
elif self.properties[u"ApprovalPending"]:
292
timeout = datetime.timedelta(milliseconds
295
last_approval_request = isoformat_to_datetime(
296
self.properties[u"LastApprovalRequest"])
297
if last_approval_request is not None:
298
timer = timeout - (datetime.datetime.utcnow()
299
- last_approval_request)
301
timer = datetime.timedelta()
302
if self.properties[u"ApprovedByDefault"]:
303
message = u"Approval in %s. (d)eny?"
305
message = u"Denial in %s. (a)pprove?"
306
message = message % unicode(timer).rsplit(".", 1)[0]
307
elif self.last_checker_failed:
308
timeout = datetime.timedelta(milliseconds
311
last_ok = isoformat_to_datetime(
312
max((self.properties[u"LastCheckedOK"]
313
or self.properties[u"Created"]),
314
self.properties[u"LastEnabled"]))
315
timer = timeout - (datetime.datetime.utcnow() - last_ok)
316
message = (u'A checker has failed! Time until client'
317
u' gets disabled: %s'
318
% unicode(timer).rsplit(".", 1)[0])
321
self._text = "%s%s" % (base, message)
179
323
if not urwid.supports_unicode():
180
324
self._text = self._text.encode("ascii", "replace")
181
325
textlist = [(u"normal", self._text)]
205
357
def keypress(self, (maxcol,), key):
207
359
This overrides the method from urwid.FlowWidget"""
208
if key == u"e" or key == u"+":
210
elif key == u"d" or key == u"-":
361
self.proxy.Enable(dbus_interface = client_interface)
363
self.proxy.Disable(dbus_interface = client_interface)
365
self.proxy.Approve(dbus.Boolean(True, variant_level=1),
366
dbus_interface = client_interface)
368
self.proxy.Approve(dbus.Boolean(False, variant_level=1),
369
dbus_interface = client_interface)
212
370
elif key == u"r" or key == u"_" or key == u"ctrl k":
213
371
self.server_proxy_object.RemoveClient(self.proxy
215
373
elif key == u"s":
216
self.proxy.StartChecker()
374
self.proxy.StartChecker(dbus_interface = client_interface)
217
375
elif key == u"S":
218
self.proxy.StopChecker()
376
self.proxy.StopChecker(dbus_interface = client_interface)
219
377
elif key == u"C":
220
self.proxy.CheckedOK()
378
self.proxy.CheckedOK(dbus_interface = client_interface)
222
380
# elif key == u"p" or key == "=":
223
381
# self.proxy.pause()