DnsHelper.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322
  1. <?php
  2. namespace ThurData\Servers\KerioEmail\Core\Helper;
  3. use ThurData\Servers\KerioEmail\Core\Models\Whmcs\Server;
  4. use ThurData\Servers\KerioEmail\App\Libs\Product\ProductManager;
  5. use ThurData\Servers\KerioEmail\Api\KerioWhmcs;
  6. use \WHMCS\Database\Capsule;
  7. require_once '/usr/share/php/Net/DNS2.php';
  8. use \Net\DNS2\Net_DNS2_Resolver as Net_DNS2_Resolver;
  9. /**
  10. * Wrapper for WHMCS params passed to controler functions
  11. *
  12. * @autor ThurData <info@thurdata.ch>
  13. */
  14. class DnsHelper
  15. {
  16. use \ThurData\Servers\KerioEmail\Core\UI\Traits\WhmcsParams;
  17. public function __construct()
  18. {
  19. $this->params = $this->getWhmcsParamsByKeys(['domain', 'userid', 'serverhostname', 'serverusername', 'serverpassword', 'domainid', 'serverid', 'pid']);
  20. $this->server = Server::select('id', 'nameserver1ip', 'nameserver2ip')->findOrFail($this->params['serverid']);
  21. // $this->nameserver = array(trim($this->server->nameserver1ip), trim($this->server->nameserver2ip));
  22. $this->nameserver = array('127.0.0.1', '127.0.0.2'); //test
  23. $this->clientDomains = localAPI('GetClientsDomains', array('clientid' => $this->params['userid']));
  24. $productManager = new ProductManager();
  25. $productManager->loadById($this->params['pid']);
  26. $this->spfConfig = $productManager->get('spf_string');
  27. $this->dmarcConfig = $productManager->get('dmarc_string');
  28. $api = new KerioWhmcs('whmcsKerioEmail', 'Thurdata', '1.0');
  29. try {
  30. $api->login($this->params['serverhostname'], $this->params['serverusername'], $this->params['serverpassword']);
  31. } catch (KerioApiException $error) {
  32. logModuleCall(
  33. 'kerioEmail',
  34. __FUNCTION__,
  35. $this->params,
  36. 'Error: cannot login to ' . $this->params['kerioServer'],
  37. $error->getMessage()
  38. );
  39. }
  40. $dkimSet = $api->getDkimDnsRecord($this->params['domain']);
  41. $dkimArray = explode(PHP_EOL,$dkimSet['detail']);
  42. $dkimValue = explode(":",$dkimArray[1]);
  43. $this->domainKey = ltrim($dkimValue[1]);
  44. $dkimName = explode(":",$dkimArray[0]);
  45. $this->dkimName = ltrim($dkimName[1]);
  46. }
  47. public function KerioEmailCheckDNS()
  48. {
  49. $vars['maildomain'] = $this->params['domain'];
  50. $vars['dmarcconfig'] = $this->dmarcConfig;
  51. $vars['spfconfig'] = $this->spfConfig;
  52. $vars['domainkey'] = $this->domainKey;
  53. $vars['dkimname'] = $this->dkimName;
  54. if($this->clientDomains['totalresults'] == 0){
  55. $vars['selfdomain'] = FALSE;
  56. $vars['dmarcconfig'] = $this->dmarcConfig;
  57. $vars['spfconfig'] = $this->spfConfig;
  58. $vars['correctable'] = FALSE;
  59. return $vars;
  60. } else {
  61. $vars['selfdomain'] = TRUE;
  62. }
  63. $resolver = new \Net_DNS2_Resolver(array('nameservers' => $this->nameserver));
  64. try {
  65. $result = $resolver->query($this->params['domain'], 'MX');
  66. } catch(\Net_DNS2_Exception $e) {
  67. echo "::query() failed: ", $e->getMessage(), "\n";
  68. }
  69. $domainMX = $result->answer;
  70. try {
  71. $result = $resolver->query($this->params['domain'], 'TXT');
  72. } catch(\Net_DNS2_Exception $e) {
  73. echo "::query() failed: ", $e->getMessage(), "\n";
  74. }
  75. $domainTXT = $result->answer;
  76. $domainSPF = array();
  77. $domainDKIM = array();
  78. $domainDMARC = array();
  79. foreach($domainTXT as $txtRecord) {
  80. foreach($txtRecord->text as $txtData) {
  81. if(strstr($txtData,'v=spf')) {
  82. array_push($domainSPF,$txtData);
  83. }
  84. if(strstr($txtData,'v=DKIM')) {
  85. array_push($domainDKIM,$txtData);
  86. }
  87. if(strstr($txtData,'v=DMARC')) {
  88. array_push($domainDMARC,$txtData);
  89. }
  90. }
  91. }
  92. # self hosted DNS
  93. $vars['selfDNS'] = FALSE;
  94. for($i=$this->clientDomains['startnumber'];$i<=$this->clientDomains['numreturned'];$i++) {
  95. if($this->params['domain'] == $this->clientDomains['domains']['domain'][$i]['domainname']) {
  96. $vars['selfDNS'] = TRUE;
  97. $vars['domainId'] = $this->clientDomains['domains']['domain'][$i]['id'];
  98. }
  99. }
  100. # SPF, multi verboten
  101. if (count($domainSPF) > 1) {
  102. $vars['multiSPF'] = TRUE;
  103. $vars['spf'] = 'wrong';
  104. } else {
  105. $vars['multiSPF'] = FALSE;
  106. if (empty($domainSPF)) {
  107. $vars['spf'] = 'unset';
  108. } else {
  109. if($domainSPF[0] === $spfConfig) {
  110. $vars['spf'] = 'set';
  111. } else {
  112. $vars['spf'] = 'wrong';
  113. }
  114. }
  115. }
  116. # DKIM
  117. if (count($domainDKIM) > 1) {
  118. $vars['multiDKIM'] = TRUE;
  119. } else {
  120. $vars['multiDKIM'] = FALSE;
  121. }
  122. if (empty($domainDKIM)) {
  123. $vars['dkim'] = 'unset';
  124. } else {
  125. $vars['dkim'] = 'set';
  126. }
  127. $vars['domainDKIM'] = $domainDKIM;
  128. # DMARC
  129. if (count($domainDMARC) > 1) {
  130. $vars['multiDMARC'] = TRUE;
  131. } else {
  132. $vars['multiDMARC'] = FALSE;
  133. }
  134. $vars['dmarc'] = 'wrong';
  135. if (empty($domainDMARC)) {
  136. $vars['dmarc'] = 'unset';
  137. } else {
  138. foreach($domainDMARC as $dmarc) {
  139. if($dmarc === $dmarcConfig) {
  140. $vars['dmarc'] = 'set';
  141. }
  142. }
  143. }
  144. $vars['domainDMARC'] = $domainDMARC;
  145. # MX
  146. if(count($domainMX) > 1) {
  147. $vars['multiMX'] = TRUE;
  148. } else {
  149. $vars['multiMX'] = FALSE;
  150. }
  151. if(empty($domainMX)){
  152. $vars['mx'] = 'unset';
  153. $vars['mxtarget'] = $this->params['serverhostname'];
  154. } else {
  155. $vars['domainMX'] = $domainMX;
  156. $domainMXrecord = array_shift($domainMX);
  157. $vars['mxtarget'] = $domainMXrecord->exchange;
  158. if($domainMXrecord->exchange == $this->params['serverhostname']) {
  159. $vars['mx'] = 'set';
  160. } else {
  161. $var['mx'] = 'wrong';
  162. }
  163. }
  164. // summary
  165. if($vars['mx'] == 'set' && $vars['dmarc'] == 'set' && $vars['dkim'] == 'set' && $vars['spf'] == 'set') {
  166. $vars['dnscheck'] = TRUE;
  167. } else {
  168. $vars['dnscheck'] = FALSE;
  169. $vars['correctable'] = TRUE;
  170. }
  171. logModuleCall(
  172. 'kerioEmail',
  173. __FUNCTION__,
  174. $this->params,
  175. 'DEbug',
  176. $vars
  177. );
  178. return $vars;
  179. }
  180. function KerioEmailsetDNS()
  181. {
  182. $zoneIDcollection = Capsule::table('dns_manager2_zone')
  183. ->select('id')
  184. ->where('name', '=', $this->params['domain'])
  185. ->get();
  186. $zoneIDobj = $zoneIDcollection[0];
  187. $zoneID = $zoneIDobj->{'id'};
  188. if(!isset($zoneID)) {
  189. return 'Error: zone ID not found for domain ' . $this->params['domain'];
  190. }
  191. $dnsZone = localAPI('dnsmanager', array( 'dnsaction' => 'getZone', 'zone_id' => $zoneID, 'zone_name' => $this->params['domain']));
  192. logModuleCall(
  193. 'kerioEmail',
  194. __FUNCTION__,
  195. $this->params,
  196. 'DEbug',
  197. $dnsZone
  198. );
  199. if($dnsZone['result'] != 'success') {
  200. return 'Error: cloud not fetch zone for ID ' . $zoneID;
  201. }
  202. $zoneRecords = array();
  203. $mxRecord = array(
  204. 'line' => $this->params['domain'].'.|MX|0',
  205. 'name' => '@',
  206. 'type' => 'MX',
  207. 'class' => 'IN',
  208. 'data' => array(
  209. 'preference' => '10',
  210. 'exchange' => $this->params['serverhostname'],
  211. ),
  212. );
  213. array_push($zoneRecords, $mxRecord);
  214. $spfRecord = array(
  215. 'line' => $this->params['domain'].'.|TXT|0',
  216. 'name' => '@',
  217. 'type' => 'TXT',
  218. 'class' => 'IN',
  219. 'data' => $this->spfConfig
  220. );
  221. array_push($zoneRecords, $spfRecord);
  222. $dmarcRecord = array(
  223. 'line' => $this->params['domain'].'.|TXT|0',
  224. 'name' => '@',
  225. 'type' => 'TXT',
  226. 'class' => 'IN',
  227. 'data' => $this->dmarcConfig
  228. );
  229. array_push($zoneRecords, $dmarcRecord);
  230. foreach($dnsZone['data']->records as $record) {
  231. if($record->type == 'MX') continue;
  232. if(!$record->type === 'TXT') {
  233. // skip dmarc
  234. if(preg_match('/^v=DMARC1(.*)$/i', trim($record->rdata->txtdata,'"'))) continue;
  235. // skip spf
  236. if(preg_match('/^v=spf(.*)$/i', trim($record->rdata->txtdata,'"'))) continue;
  237. // skip own dkim
  238. if(($this->dkimName == $record->name) && ($this->domainKey == trim($record->rdata->txtdata,'"'))) continue;
  239. };
  240. array_push($zoneRecords, $record);
  241. }
  242. logModuleCall(
  243. 'kerioEmail',
  244. __FUNCTION__,
  245. $this->params,
  246. 'DEbug',
  247. $zoneRecords
  248. );
  249. /* $result = localAPI('dnsmanager' ,
  250. array(
  251. 'dnsaction' => 'updateZone',
  252. 'zone_id' => $zoneID,
  253. 'records' => $zoneRecords,
  254. )
  255. );
  256. if($result['result'] != 'success') {
  257. return 'Error: cloud not update zone for ID ' . $zoneID;
  258. } */
  259. return 'success';
  260. }
  261. function KerioEmailunsetMX()
  262. {
  263. $zoneIDcollection = Capsule::table('dns_manager2_zone')
  264. ->select('id')
  265. ->where('name', '=', $this->params['domain'])
  266. ->get();
  267. $zoneIDobj = $zoneIDcollection[0];
  268. $zoneID = $zoneIDobj->{'id'};
  269. if(!isset($zoneID)) {
  270. return 'Error: zone ID not found for domain ' . $this->params['domain'];
  271. }
  272. $dnsZone = localAPI('dnsmanager', array( 'dnsaction' => 'getZone', 'zone_id' => $zoneID));
  273. if($dnsZone['result'] != 'success') {
  274. return 'Error: cloud not fetch zone for ID ' . $zoneID;
  275. }
  276. $zoneRecords = array();
  277. foreach($dnsZone['data']->records as $record) {
  278. if($record->type == 'MX') continue;
  279. array_push($zoneRecords, $record);
  280. }
  281. logModuleCall(
  282. 'kerioEmail',
  283. __FUNCTION__,
  284. $this->params,
  285. 'DEbug',
  286. $zoneRecords
  287. );
  288. /* $result = localAPI('dnsmanager' ,
  289. array(
  290. 'dnsaction' => 'updateZone',
  291. 'zone_id' => $zoneID,
  292. 'records' => $zoneRecords,
  293. )
  294. );
  295. if($result['result'] != 'success') {
  296. return 'Error: cloud not update zone for ID ' . $zoneID;
  297. } */
  298. return 'success';
  299. }
  300. }