2005-07-06 23:10:19 +00:00
|
|
|
# This file is part of Fail2Ban.
|
|
|
|
#
|
|
|
|
# Fail2Ban is free software; you can redistribute it and/or modify
|
|
|
|
# it under the terms of the GNU General Public License as published by
|
|
|
|
# the Free Software Foundation; either version 2 of the License, or
|
|
|
|
# (at your option) any later version.
|
|
|
|
#
|
|
|
|
# Fail2Ban is distributed in the hope that it will be useful,
|
|
|
|
# but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
# GNU General Public License for more details.
|
|
|
|
#
|
|
|
|
# You should have received a copy of the GNU General Public License
|
|
|
|
# along with Fail2Ban; if not, write to the Free Software
|
|
|
|
# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
|
|
|
|
|
|
|
|
# Author: Cyril Jaquier
|
|
|
|
#
|
2005-11-21 01:43:13 +00:00
|
|
|
# $Revision: 1.8 $
|
2005-07-06 23:10:19 +00:00
|
|
|
|
|
|
|
__author__ = "Cyril Jaquier"
|
2005-11-21 01:43:13 +00:00
|
|
|
__version__ = "$Revision: 1.8 $"
|
|
|
|
__date__ = "$Date: 2005/11/20 17:07:47 $"
|
2005-07-06 23:10:19 +00:00
|
|
|
__copyright__ = "Copyright (c) 2004 Cyril Jaquier"
|
|
|
|
__license__ = "GPL"
|
|
|
|
|
2005-07-13 10:01:01 +00:00
|
|
|
import os, re, socket, struct
|
2005-07-06 23:10:19 +00:00
|
|
|
|
|
|
|
def dnsToIp(dns):
|
|
|
|
""" Convert a DNS into an IP address using the Python socket module.
|
|
|
|
Thanks to Kevin Drapel.
|
|
|
|
"""
|
|
|
|
try:
|
|
|
|
return socket.gethostbyname_ex(dns)[2]
|
|
|
|
except socket.gaierror:
|
|
|
|
return list()
|
|
|
|
|
|
|
|
def textToDns(text):
|
|
|
|
""" Search for possible DNS in an arbitrary text.
|
|
|
|
Thanks to Tom Pike.
|
|
|
|
"""
|
|
|
|
match = re.findall("(?:(?:\w|-)+\.){2,}\w+", text)
|
|
|
|
if match:
|
|
|
|
return match
|
|
|
|
else:
|
|
|
|
return []
|
|
|
|
|
|
|
|
def searchIP(text):
|
|
|
|
""" Search if an IP address if directly available and return
|
|
|
|
it.
|
|
|
|
"""
|
|
|
|
match = re.findall("(?:\d{1,3}\.){3}\d{1,3}", text)
|
|
|
|
if match:
|
|
|
|
return match
|
|
|
|
else:
|
|
|
|
return []
|
|
|
|
|
2005-07-23 19:15:22 +00:00
|
|
|
def isValidIP(str):
|
|
|
|
""" Return true if str is a valid IP
|
|
|
|
"""
|
2005-09-09 21:15:41 +00:00
|
|
|
s = str.split('/', 1)
|
2005-07-23 19:15:22 +00:00
|
|
|
try:
|
2005-09-09 21:15:41 +00:00
|
|
|
socket.inet_aton(s[0])
|
2005-07-23 19:15:22 +00:00
|
|
|
return True
|
|
|
|
except socket.error:
|
|
|
|
return False
|
|
|
|
|
2005-07-06 23:10:19 +00:00
|
|
|
def textToIp(text):
|
|
|
|
""" Return the IP of DNS found in a given text.
|
|
|
|
"""
|
|
|
|
ipList = list()
|
|
|
|
# Search for plain IP
|
|
|
|
plainIP = searchIP(text)
|
|
|
|
for element in plainIP:
|
2005-07-23 19:15:22 +00:00
|
|
|
if isValidIP(element):
|
|
|
|
ipList.append(element)
|
2005-07-06 23:10:19 +00:00
|
|
|
if not ipList:
|
|
|
|
# Try to get IP from possible DNS
|
|
|
|
dnsList = textToDns(text)
|
|
|
|
for element in dnsList:
|
|
|
|
dns = dnsToIp(element)
|
|
|
|
for e in dns:
|
|
|
|
ipList.append(e)
|
|
|
|
return ipList
|
2005-07-13 10:01:01 +00:00
|
|
|
|
|
|
|
def cidr(i, n):
|
|
|
|
""" Convert an IP address string with a CIDR mask into a 32-bit
|
|
|
|
integer.
|
|
|
|
"""
|
|
|
|
# 32-bit IPv4 address mask
|
|
|
|
MASK = 0xFFFFFFFFL
|
|
|
|
return ~(MASK >> n) & MASK & addr2bin(i)
|
|
|
|
|
|
|
|
def addr2bin(str):
|
|
|
|
""" Convert a string IPv4 address into an unsigned integer.
|
|
|
|
"""
|
|
|
|
return struct.unpack("!L", socket.inet_aton(str))[0]
|
|
|
|
|
|
|
|
def bin2addr(addr):
|
|
|
|
""" Convert a numeric IPv4 address into string n.n.n.n form.
|
|
|
|
"""
|
|
|
|
return socket.inet_ntoa(struct.pack("!L", addr))
|