]> jfr.im git - solanum.git/blob - modules/m_dline.c
Merge pull request #279 from edk0/operhide
[solanum.git] / modules / m_dline.c
1 /*
2 * ircd-ratbox: A slightly useful ircd.
3 * m_dline.c: Bans/unbans a user.
4 *
5 * Copyright (C) 1990 Jarkko Oikarinen and University of Oulu, Co Center
6 * Copyright (C) 1996-2002 Hybrid Development Team
7 * Copyright (C) 2002-2005 ircd-ratbox development team
8 *
9 * This program is free software; you can redistribute it and/or modify
10 * it under the terms of the GNU General Public License as published by
11 * the Free Software Foundation; either version 2 of the License, or
12 * (at your option) any later version.
13 *
14 * This program is distributed in the hope that it will be useful,
15 * but WITHOUT ANY WARRANTY; without even the implied warranty of
16 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
17 * GNU General Public License for more details.
18 *
19 * You should have received a copy of the GNU General Public License
20 * along with this program; if not, write to the Free Software
21 * Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307
22 * USA
23 */
24
25 #include "stdinc.h"
26 #include "channel.h"
27 #include "class.h"
28 #include "client.h"
29 #include "match.h"
30 #include "ircd.h"
31 #include "hostmask.h"
32 #include "numeric.h"
33 #include "s_conf.h"
34 #include "s_newconf.h"
35 #include "logger.h"
36 #include "send.h"
37 #include "hash.h"
38 #include "s_serv.h"
39 #include "msg.h"
40 #include "parse.h"
41 #include "modules.h"
42 #include "bandbi.h"
43 #include "operhash.h"
44
45 static const char dline_desc[] = "Provides the DLINE facility to ban users via IP address";
46
47 static void mo_dline(struct MsgBuf *, struct Client *, struct Client *, int, const char **);
48 static void me_dline(struct MsgBuf *, struct Client *, struct Client *, int, const char **);
49 static void mo_undline(struct MsgBuf *, struct Client *, struct Client *, int, const char **);
50 static void me_undline(struct MsgBuf *, struct Client *, struct Client *, int, const char **);
51
52 struct Message dline_msgtab = {
53 "DLINE", 0, 0, 0, 0,
54 {mg_unreg, mg_not_oper, mg_ignore, mg_ignore, {me_dline, 4}, {mo_dline, 2}}
55 };
56
57 struct Message undline_msgtab = {
58 "UNDLINE", 0, 0, 0, 0,
59 {mg_unreg, mg_not_oper, mg_ignore, mg_ignore, {me_undline, 2}, {mo_undline, 2}}
60 };
61
62 mapi_clist_av1 dline_clist[] = { &dline_msgtab, &undline_msgtab, NULL };
63
64 DECLARE_MODULE_AV2(dline, NULL, NULL, dline_clist, NULL, NULL, NULL, NULL, dline_desc);
65
66 static bool remove_temp_dline(struct ConfItem *);
67 static void apply_dline(struct Client *, const char *, int, char *);
68 static void apply_undline(struct Client *, const char *);
69
70 /* mo_dline()
71 *
72 * parv[1] - dline to add
73 * parv[2] - reason
74 */
75 static void
76 mo_dline(struct MsgBuf *msgbuf_p, struct Client *client_p, struct Client *source_p, int parc, const char *parv[])
77 {
78 char def[] = "No Reason";
79 const char *dlhost;
80 char *reason = def;
81 char cidr_form_host[HOSTLEN + 1];
82 int tdline_time = 0;
83 const char *target_server = NULL;
84 int loc = 1;
85
86 if(!IsOperK(source_p))
87 {
88 sendto_one(source_p, form_str(ERR_NOPRIVS), me.name, source_p->name, "kline");
89 return;
90 }
91
92 if((tdline_time = valid_temp_time(parv[loc])) >= 0)
93 loc++;
94
95 dlhost = parv[loc];
96 rb_strlcpy(cidr_form_host, dlhost, sizeof(cidr_form_host));
97 loc++;
98
99 /* would break the protocol */
100 if (*dlhost == ':')
101 {
102 sendto_one_notice(source_p, ":Invalid D-Line");
103 return;
104 }
105
106 if(parc >= loc + 2 && !irccmp(parv[loc], "ON"))
107 {
108 if(!IsOperRemoteBan(source_p))
109 {
110 sendto_one(source_p, form_str(ERR_NOPRIVS),
111 me.name, source_p->name, "remoteban");
112 return;
113 }
114
115 target_server = parv[loc + 1];
116 loc += 2;
117 }
118
119 if(parc >= loc + 1 && !EmptyString(parv[loc]))
120 reason = LOCAL_COPY(parv[loc]);
121
122 if(target_server != NULL)
123 {
124 sendto_match_servs(source_p, target_server,
125 CAP_ENCAP, NOCAPS,
126 "ENCAP %s DLINE %d %s :%s",
127 target_server, tdline_time, dlhost, reason);
128
129 if(!match(target_server, me.name))
130 return;
131 }
132
133 apply_dline(source_p, dlhost, tdline_time, reason);
134
135 check_dlines();
136 }
137
138 /* mo_undline()
139 *
140 * parv[1] = dline to remove
141 */
142 static void
143 mo_undline(struct MsgBuf *msgbuf_p, struct Client *client_p, struct Client *source_p, int parc, const char *parv[])
144 {
145 const char *cidr;
146 const char *target_server = NULL;
147
148 if(!IsOperK(source_p))
149 {
150 sendto_one(source_p, form_str(ERR_NOPRIVS), me.name, source_p->name, "unkline");
151 return;
152 }
153
154 cidr = parv[1];
155
156 if(parc >= 4 && !irccmp(parv[2], "ON"))
157 {
158 if(!IsOperRemoteBan(source_p))
159 {
160 sendto_one(source_p, form_str(ERR_NOPRIVS),
161 me.name, source_p->name, "remoteban");
162 return;
163 }
164
165 target_server = parv[3];
166 sendto_match_servs(source_p, target_server,
167 CAP_ENCAP, NOCAPS, "ENCAP %s UNDLINE %s", target_server, cidr);
168
169 if(!match(target_server, me.name))
170 return;
171 }
172
173 apply_undline(source_p, cidr);
174 }
175
176 static void
177 me_dline(struct MsgBuf *msgbuf_p, struct Client *client_p, struct Client *source_p, int parc, const char **parv)
178 {
179 int tdline_time = atoi(parv[1]);
180 /* Since this is coming over a server link, assume that the originating
181 * server did the relevant permission/sanity checks...
182 */
183
184 if(!IsPerson(source_p))
185 return;
186
187 if(!find_shared_conf(source_p->username, source_p->host,
188 source_p->servptr->name,
189 tdline_time > 0 ? SHARED_TDLINE : SHARED_PDLINE))
190 return;
191
192 apply_dline(source_p, parv[2], tdline_time, LOCAL_COPY(parv[3]));
193
194 check_dlines();
195 }
196
197 static void
198 me_undline(struct MsgBuf *msgbuf_p, struct Client *client_p, struct Client *source_p, int parc, const char **parv)
199 {
200 if(!IsPerson(source_p))
201 return;
202
203 if(!find_shared_conf(source_p->username, source_p->host,
204 source_p->servptr->name, SHARED_UNDLINE))
205 return;
206
207 apply_undline(source_p, parv[1]);
208 }
209
210 static void
211 apply_dline(struct Client *source_p, const char *dlhost, int tdline_time, char *reason)
212 {
213 struct ConfItem *aconf;
214 char *oper_reason;
215 struct rb_sockaddr_storage daddr;
216 int t = AF_INET, ty, b;
217 const char *creason;
218
219 ty = parse_netmask(dlhost, &daddr, &b);
220 if(ty == HM_HOST)
221 {
222 sendto_one(source_p, ":%s NOTICE %s :Invalid D-Line", me.name, source_p->name);
223 return;
224 }
225 if(ty == HM_IPV6)
226 t = AF_INET6;
227 else
228 t = AF_INET;
229
230 /* This means dlines wider than /16 cannot be set remotely */
231 if(IsOperAdmin(source_p))
232 {
233 if(b < 8)
234 {
235 sendto_one_notice(source_p,
236 ":For safety, bitmasks less than 8 require conf access.");
237 return;
238 }
239 }
240 else
241 {
242 if(b < 16)
243 {
244 sendto_one_notice(source_p,
245 ":Dline bitmasks less than 16 are for admins only.");
246 return;
247 }
248 }
249
250 if(ConfigFileEntry.non_redundant_klines)
251 {
252 if((aconf = find_dline((struct sockaddr *) &daddr, t)) != NULL)
253 {
254 int bx;
255 parse_netmask(aconf->host, NULL, &bx);
256 if(b >= bx)
257 {
258 creason = aconf->passwd ? aconf->passwd : "<No Reason>";
259 if(IsConfExemptKline(aconf))
260 sendto_one(source_p,
261 ":%s NOTICE %s :[%s] is (E)d-lined by [%s] - %s",
262 me.name, source_p->name, dlhost, aconf->host,
263 creason);
264 else
265 sendto_one(source_p,
266 ":%s NOTICE %s :[%s] already D-lined by [%s] - %s",
267 me.name, source_p->name, dlhost, aconf->host,
268 creason);
269 return;
270 }
271 }
272 }
273
274 rb_set_time();
275
276 aconf = make_conf();
277 aconf->status = CONF_DLINE;
278 aconf->created = rb_current_time();
279 aconf->host = rb_strdup(dlhost);
280 aconf->passwd = rb_strdup(reason);
281 aconf->info.oper = operhash_add(get_oper_name(source_p));
282
283 if(strlen(reason) > BANREASONLEN)
284 reason[BANREASONLEN] = '\0';
285
286 /* Look for an oper reason */
287 if((oper_reason = strchr(reason, '|')) != NULL)
288 {
289 *oper_reason = '\0';
290 oper_reason++;
291
292 if(!EmptyString(oper_reason))
293 aconf->spasswd = rb_strdup(oper_reason);
294 }
295
296 if(tdline_time > 0)
297 {
298 aconf->hold = rb_current_time() + tdline_time;
299 add_temp_dline(aconf);
300
301 if(EmptyString(oper_reason))
302 {
303 sendto_realops_snomask(SNO_GENERAL, L_ALL,
304 "%s added temporary %d min. D-Line for [%s] [%s]",
305 get_oper_name(source_p), tdline_time / 60,
306 aconf->host, reason);
307 ilog(L_KLINE, "D %s %d %s %s",
308 get_oper_name(source_p), tdline_time / 60, aconf->host, reason);
309 }
310 else
311 {
312 sendto_realops_snomask(SNO_GENERAL, L_ALL,
313 "%s added temporary %d min. D-Line for [%s] [%s|%s]",
314 get_oper_name(source_p), tdline_time / 60,
315 aconf->host, reason, oper_reason);
316 ilog(L_KLINE, "D %s %d %s %s|%s",
317 get_oper_name(source_p), tdline_time / 60,
318 aconf->host, reason, oper_reason);
319 }
320
321 sendto_one(source_p, ":%s NOTICE %s :Added temporary %d min. D-Line for [%s]",
322 me.name, source_p->name, tdline_time / 60, aconf->host);
323 }
324 else
325 {
326 add_conf_by_address(aconf->host, CONF_DLINE, NULL, NULL, aconf);
327
328 bandb_add(BANDB_DLINE, source_p, aconf->host, NULL,
329 reason, EmptyString(aconf->spasswd) ? NULL : aconf->spasswd, 0);
330
331 if(EmptyString(oper_reason))
332 {
333 sendto_realops_snomask(SNO_GENERAL, L_ALL,
334 "%s added D-Line for [%s] [%s]",
335 get_oper_name(source_p), aconf->host, reason);
336 ilog(L_KLINE, "D %s 0 %s %s",
337 get_oper_name(source_p), aconf->host, reason);
338 }
339 else
340 {
341 sendto_realops_snomask(SNO_GENERAL, L_ALL,
342 "%s added D-Line for [%s] [%s|%s]",
343 get_oper_name(source_p), aconf->host, reason, oper_reason);
344 ilog(L_KLINE, "D %s 0 %s %s|%s",
345 get_oper_name(source_p),
346 aconf->host, reason, oper_reason);
347 }
348 }
349 }
350
351 static void
352 apply_undline(struct Client *source_p, const char *cidr)
353 {
354 char buf[BUFSIZE];
355 struct ConfItem *aconf;
356
357 if(parse_netmask(cidr, NULL, NULL) == HM_HOST)
358 {
359 sendto_one_notice(source_p, ":Invalid D-Line");
360 return;
361 }
362
363 aconf = find_exact_conf_by_address(cidr, CONF_DLINE, NULL);
364 if(aconf == NULL)
365 {
366 sendto_one_notice(source_p, ":No D-Line for %s", cidr);
367 return;
368 }
369
370 rb_strlcpy(buf, aconf->host, sizeof buf);
371 if(remove_temp_dline(aconf))
372 {
373 sendto_one(source_p,
374 ":%s NOTICE %s :Un-dlined [%s] from temporary D-lines",
375 me.name, source_p->name, buf);
376 sendto_realops_snomask(SNO_GENERAL, L_ALL,
377 "%s has removed the temporary D-Line for: [%s]",
378 get_oper_name(source_p), buf);
379 ilog(L_KLINE, "UD %s %s", get_oper_name(source_p), buf);
380 return;
381 }
382
383 bandb_del(BANDB_DLINE, aconf->host, NULL);
384
385 sendto_one(source_p, ":%s NOTICE %s :D-Line for [%s] is removed", me.name, source_p->name,
386 aconf->host);
387 sendto_realops_snomask(SNO_GENERAL, L_ALL, "%s has removed the D-Line for: [%s]",
388 get_oper_name(source_p), aconf->host);
389 ilog(L_KLINE, "UD %s %s", get_oper_name(source_p), aconf->host);
390 delete_one_address_conf(aconf->host, aconf);
391 }
392
393 /* remove_temp_dline()
394 *
395 * inputs - confitem to undline
396 * outputs - true if removed, false otherwise.
397 * side effects - tries to undline anything that matches
398 */
399 static bool
400 remove_temp_dline(struct ConfItem *aconf)
401 {
402 rb_dlink_node *ptr;
403 int i;
404
405 for(i = 0; i < LAST_TEMP_TYPE; i++)
406 {
407 RB_DLINK_FOREACH(ptr, temp_dlines[i].head)
408 {
409 if(aconf == ptr->data)
410 {
411 rb_dlinkDestroy(ptr, &temp_dlines[i]);
412 delete_one_address_conf(aconf->host, aconf);
413 return true;
414 }
415 }
416 }
417
418 return false;
419 }