[2] | 1 | #!/usr/bin/perl
|
---|
[40] | 2 | # Integrity/data-correctness checker
|
---|
| 3 | ##
|
---|
| 4 | # $Id: check-iplist.pl 40 2012-03-04 20:02:13Z kdeugau $
|
---|
| 5 | # Copyright 2009-2011 Kris Deugau <kdeugau@deepnet.cx>
|
---|
| 6 | #
|
---|
| 7 | # This program is free software: you can redistribute it and/or modify
|
---|
| 8 | # it under the terms of the GNU General Public License as published by
|
---|
| 9 | # the Free Software Foundation, either version 3 of the License, or
|
---|
| 10 | # (at your option) any later version.
|
---|
| 11 | #
|
---|
| 12 | # This program is distributed in the hope that it will be useful,
|
---|
| 13 | # but WITHOUT ANY WARRANTY; without even the implied warranty of
|
---|
| 14 | # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
---|
| 15 | # GNU General Public License for more details.
|
---|
| 16 | #
|
---|
| 17 | # You should have received a copy of the GNU General Public License
|
---|
| 18 | # along with this program. If not, see <http://www.gnu.org/licenses/>.
|
---|
| 19 | ##
|
---|
[2] | 20 |
|
---|
| 21 | use strict;
|
---|
| 22 | use warnings;
|
---|
| 23 | use DBI;
|
---|
| 24 |
|
---|
| 25 | use DNSBL;
|
---|
| 26 |
|
---|
| 27 | my $dnsbl = new DNSBL;
|
---|
| 28 |
|
---|
[25] | 29 | # default DB info - all other settings should be loaded from the DB.
|
---|
| 30 | my $dbhost = "localhost";
|
---|
| 31 | my $dbname = "dnsbl";
|
---|
| 32 | my $dbuser = "dnsbl";
|
---|
| 33 | my $dbpass = "spambgone";
|
---|
[2] | 34 |
|
---|
[25] | 35 | die "Need config argument\n" if !$ARGV[0];
|
---|
| 36 | my $cfgname = shift @ARGV;
|
---|
| 37 |
|
---|
| 38 | # Load a config ref containing DB host, name, user, and pass info based on
|
---|
| 39 | # from the server name + full script web path. This allows us to host
|
---|
| 40 | # multiple instances without having to duplicate the code.
|
---|
| 41 | # This file is a Perl fragment to be processed inline.
|
---|
| 42 | if (-e "/etc/dnsbl/$cfgname.conf") {
|
---|
| 43 | my $cfg = `cat /etc/dnsbl/$cfgname.conf`;
|
---|
| 44 | ($cfg) = ($cfg =~ /^(.+)$/s); # avoid warnings, failures, and general nastiness with taint mode
|
---|
| 45 | eval $cfg;
|
---|
| 46 | }
|
---|
| 47 |
|
---|
| 48 | my $dbh = $dnsbl->connect($dbhost, $dbname, $dbuser, $dbpass);
|
---|
| 49 |
|
---|
[2] | 50 | print "checking IP containment...\n";
|
---|
| 51 | my $sth = $dbh->prepare("select ip from iplist order by ip");
|
---|
| 52 | $sth->execute;
|
---|
| 53 | my $cksth = $dbh->prepare("select block from blocks where block >> ?");
|
---|
| 54 | while (my @data = $sth->fetchrow_array) {
|
---|
| 55 | $cksth->execute($data[0]);
|
---|
| 56 | print "$data[0] has no container\n" if $cksth->rows == 0;
|
---|
| 57 | }
|
---|
| 58 |
|
---|
| 59 | print "checking level 2 blocks...\n";
|
---|
| 60 | $sth = $dbh->prepare("select block from blocks where level=2");
|
---|
| 61 | $sth->execute;
|
---|
| 62 | $cksth = $dbh->prepare("select block from blocks where block >> ? and level=1");
|
---|
| 63 | while (my @data = $sth->fetchrow_array) {
|
---|
| 64 | $cksth->execute($data[0]);
|
---|
| 65 | print "$data[0] has no container\n" if $cksth->rows == 0;
|
---|
| 66 | }
|
---|
| 67 |
|
---|
| 68 | print "checking level 1 blocks...\n";
|
---|
| 69 | $sth = $dbh->prepare("select block from blocks where level=1");
|
---|
| 70 | $sth->execute;
|
---|
| 71 | $cksth = $dbh->prepare("select block from blocks where block >> ? and level=0");
|
---|
| 72 | while (my @data = $sth->fetchrow_array) {
|
---|
| 73 | $cksth->execute($data[0]);
|
---|
| 74 | print "$data[0] has no container\n" if $cksth->rows == 0;
|
---|
| 75 | }
|
---|
| 76 |
|
---|
| 77 | print "checking for empty blocks\n";
|
---|
| 78 | $sth = $dbh->prepare("select block from blocks");
|
---|
| 79 | $sth->execute;
|
---|
| 80 | $cksth = $dbh->prepare("select ip from iplist where ip << ?");
|
---|
| 81 | while (my @data = $sth->fetchrow_array) {
|
---|
| 82 | $cksth->execute($data[0]);
|
---|
| 83 | print "$data[0] has no IPs\n" if $cksth->rows == 0;
|
---|
| 84 | }
|
---|
| 85 |
|
---|