index.php 2.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101
  1. <?php
  2. error_reporting(E_ALL);
  3. $ip = trim($_GET['ip']);
  4. $token = trim($_GET['token']);
  5. $action = trim($_GET['action']);
  6. $db = new mysqli('localhost', 'ban', 'Blubb123-', 'ban');
  7. if ($db->connect_errno){
  8. die($db->connect_error);
  9. }
  10. $db->set_charset('utf8');
  11. function checkToken($token,$db) {
  12. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  13. $dbAction->bind_param('s',$token);
  14. $dbAction->execute();
  15. $dbAction->store_result();
  16. $dbAction->bind_result($desc);
  17. $dbAction->fetch();
  18. if ($dbAction->num_rows() == 1){
  19. echo "Client $desc";
  20. return true;
  21. }
  22. return false;
  23. }
  24. function checkAdmin($token,$db) {
  25. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  26. $dbAction->bind_param('s',$token);
  27. $dbAction->execute();
  28. $dbAction->store_result();
  29. $dbAction->bind_result($desc);
  30. $dbAction->fetch();
  31. if ($dbAction->num_rows() == 1){
  32. if($desc == 'admin') {
  33. return true;
  34. }
  35. }
  36. return false;
  37. }
  38. function set($ip,$db) {
  39. $dbAction = $db->prepare("INSERT IGNORE INTO list VALUES (?)");
  40. $dbAction->bind_param('i',ip2long($ip));
  41. return $dbAction->execute();
  42. }
  43. function islisted($ip,$db) {
  44. $dbAction = $db->prepare("SELECT * FROM list WHERE ip = ?");
  45. $dbAction->bind_param('i',ip2long($ip));
  46. $dbAction->execute();
  47. $dbAction->fetch();
  48. if($dbAction->num_rows() == 0) {
  49. echo $dbAction->num_rows() . " , " . $ip . " , " . ip2long($ip) . " debug 1\n";
  50. return false;
  51. }
  52. return true;
  53. }
  54. function delist($ip,$db) {
  55. if(!islisted($ip,$db)) {
  56. echo "debug 2\n";
  57. return false;
  58. }
  59. $dbAction = $db->prepare("INSERT INTO delist (ip) VALUES (?) ON DUPLICATE KEY UPDATE count = count + 1");
  60. $dbAction->bind_param('i',ip2long($ip));
  61. $dbAction->execute();
  62. $dbAction = $db->prepare("SELECT count FROM delist WHERE ip = ?");
  63. $dbAction->bind_param('i',ip2long($ip));
  64. $dbAction->execute();
  65. $dbAction->store_result();
  66. $dbAction->bind_result($count);
  67. $dbAction->fetch();
  68. if ($count > 3){
  69. echo "Fatal: ". $ip . " delisted to often!" . PHP_EOL;
  70. return false;
  71. }
  72. $dbAction = $db->prepare("DELETE FROM list WHERE ip = ?");
  73. $dbAction->bind_param('i',ip2long($ip));
  74. $dbAction->execute();
  75. return true;
  76. }
  77. switch($action) {
  78. case 'delist':
  79. if(delist($ip,$db)){
  80. echo "$ip delisted" . PHP_EOL;
  81. } else {
  82. echo "$ip not delisted blubb" . PHP_EOL;
  83. };
  84. break;
  85. case 'blacklist':
  86. break;
  87. default:
  88. if (checkToken($token,$db)){
  89. if(set($ip,$db)){
  90. echo " inserted $ip" . PHP_EOL;
  91. } else {
  92. echo " fehler" . PHP_EOL;
  93. };
  94. } else {
  95. echo "Client token $token not registered" . PHP_EOL;
  96. };
  97. }