index.php 2.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899
  1. <?php
  2. error_reporting(E_ALL);
  3. $ip = trim($_GET['ip']);
  4. $token = trim($_GET['token']);
  5. $action = trim($_GET['action']);
  6. $db = new mysqli('localhost', 'ban', 'Blubb123-', 'ban');
  7. if ($db->connect_errno){
  8. die($db->connect_error);
  9. }
  10. $db->set_charset('utf8');
  11. function checkToken($token,$db) {
  12. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  13. $dbAction->bind_param('s',$token);
  14. $dbAction->execute();
  15. $dbAction->store_result();
  16. $dbAction->bind_result($desc);
  17. $dbAction->fetch();
  18. if ($dbAction->num_rows() == 1){
  19. echo "Client $desc";
  20. return true;
  21. }
  22. return false;
  23. }
  24. function checkAdmin($token,$db) {
  25. $dbAction = $db->prepare("SELECT description FROM clients WHERE token = ?");
  26. $dbAction->bind_param('s',$token);
  27. $dbAction->execute();
  28. $dbAction->store_result();
  29. $dbAction->bind_result($desc);
  30. $dbAction->fetch();
  31. if ($dbAction->num_rows() == 1){
  32. if($desc == 'admin') {
  33. return true;
  34. }
  35. }
  36. return false;
  37. }
  38. function set($ip,$db) {
  39. $dbAction = $db->prepare("INSERT IGNORE INTO list VALUES (?)");
  40. $dbAction->bind_param('i',ip2long($ip));
  41. return $dbAction->execute();
  42. }
  43. function islisted($ip,$db) {
  44. $dbAction = $db->prepare("SELECT ip FROM list WHERE ip = ?");
  45. $dbAction->bind_param('i',ip2long($ip));
  46. $dbAction->execute();
  47. if($dbAction->num_rows() == 0) {
  48. return false;
  49. }
  50. return true;
  51. }
  52. function delist($ip,$db) {
  53. if(!islisted($ip,$db)) {
  54. echo $ip . " not listed";
  55. return false;
  56. }
  57. $dbAction = $db->prepare("INSERT INTO delist (ip) VALUES (?) ON DUPLICATE KEY UPDATE count = count + 1");
  58. $dbAction->bind_param('i',ip2long($ip));
  59. $dbAction->execute();
  60. $dbAction = $db->prepare("SELECT count FROM delist WHERE ip = ?");
  61. $dbAction->bind_param('i',ip2long($ip));
  62. $dbAction->execute();
  63. $dbAction->store_result();
  64. $dbAction->bind_result($count);
  65. $dbAction->fetch();
  66. if ($count > 3){
  67. echo "Fatal: ". $ip . " delisted to often!" . PHP_EOL;
  68. return false;
  69. }
  70. $dbAction = $db->prepare("DELETE FROM list WHERE ip = ?");
  71. $dbAction->bind_param('i',ip2long($ip));
  72. $dbAction->execute();
  73. return true;
  74. }
  75. switch($action) {
  76. case 'delist':
  77. if(delist($ip,$db)){
  78. echo "$ip delisted" . PHP_EOL;
  79. } else {
  80. echo "$ip not delisted" . PHP_EOL;
  81. };
  82. break;
  83. case 'blacklist':
  84. break;
  85. default:
  86. if (checkToken($token,$db)){
  87. if(set($ip,$db)){
  88. echo " inserted $ip" . PHP_EOL;
  89. } else {
  90. echo " fehler" . PHP_EOL;
  91. };
  92. } else {
  93. echo "Client token $token not registered" . PHP_EOL;
  94. };
  95. }