index.php 2.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104
  1. <?php
  2. error_reporting(E_ALL);
  3. $ip = trim($_GET['ip']);
  4. $token = trim($_GET['token']);
  5. $action = trim($_GET['action']);
  6. $db = new mysqli('localhost', 'ban', 'Blubb123-', 'ban');
  7. if ($db->connect_errno){
  8. die($db->connect_error);
  9. }
  10. $db->set_charset('utf8');
  11. function checkToken($token,$db) {
  12. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  13. $dbAction->bind_param('s',$token);
  14. $dbAction->execute();
  15. $dbAction->store_result();
  16. $dbAction->bind_result($desc);
  17. $dbAction->fetch();
  18. if ($dbAction->num_rows() == 1){
  19. echo "Client $desc";
  20. return true;
  21. }
  22. return false;
  23. }
  24. function checkAdmin($token,$db) {
  25. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  26. $dbAction->bind_param('s',$token);
  27. $dbAction->execute();
  28. $dbAction->store_result();
  29. $dbAction->bind_result($desc);
  30. $dbAction->fetch();
  31. if ($dbAction->num_rows() == 1){
  32. if($desc == 'admin') {
  33. return true;
  34. }
  35. }
  36. return false;
  37. }
  38. function set($ip,$db) {
  39. $dbAction = $db->prepare("INSERT IGNORE INTO list VALUES (?)");
  40. $dbAction->bind_param('i',$ip);
  41. return $dbAction->execute();
  42. }
  43. function islisted($ip,$db) {
  44. $dbAction = $db->prepare("SELECT ip FROM list WHERE ip = ?");
  45. $dbAction->bind_param('i',$ip);
  46. $dbAction->execute();
  47. if($dbAction->num_rows() == 0) {
  48. return false;
  49. }
  50. return true;
  51. }
  52. function delist($ip,$db) {
  53. if(!islisted($ip,$db)) {
  54. echo long2ip($ip) . " not listed";
  55. return false;
  56. }
  57. $dbAction = $db->prepare("INSERT INTO delist (ip) VALUES (?) ON DUPLICATE KEY UPDATE count = count + 1");
  58. $dbAction->bind_param('i',$ip);
  59. $dbAction->execute();
  60. $dbAction = $db->prepare("SELECT count FROM delist WHERE ip = ?");
  61. $dbAction->bind_param('i',$ip);
  62. $dbAction->execute();
  63. $dbAction->store_result();
  64. $dbAction->bind_result($count);
  65. $dbAction->fetch();
  66. if ($count > 3){
  67. echo "Fatal: ". long2ip($ip) . " delisted to often!";
  68. return false;
  69. }
  70. $dbAction = $db->prepare("DELETE FROM list WHERE ip = ?");
  71. $dbAction->bind_param('i',$ip);
  72. $dbAction->execute();
  73. echo long2ip($ip) . " wurde delistet";
  74. return true;
  75. }
  76. switch($action) {
  77. case 'delist':
  78. if (islisted(ip2long($ip),$db)){
  79. if(delist(ip2long($ip),$db)){
  80. echo "$ip delisted" . PHP_EOL;
  81. } else {
  82. echo "$ip not delisted" . PHP_EOL;
  83. };
  84. } else {
  85. echo "Admin token $token not registered" . PHP_EOL;
  86. };
  87. break;
  88. case 'blacklist':
  89. break;
  90. default:
  91. if (checkToken($token,$db)){
  92. if(set(ip2long($ip),$db)){
  93. echo " inserted $ip" . PHP_EOL;
  94. } else {
  95. echo " fehler" . PHP_EOL;
  96. };
  97. } else {
  98. echo "Client token $token not registered" . PHP_EOL;
  99. };
  100. }