AdGuardHome 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376
  1. #!/bin/sh /etc/rc.common
  2. USE_PROCD=1
  3. START=95
  4. STOP=01
  5. CONFIGURATION=AdGuardHome
  6. EXTRA_COMMANDS="do_redirect"
  7. EXTRA_HELP=" do_redirect 0 or 1"
  8. set_forward_dnsmasq()
  9. {
  10. local PORT="$1"
  11. addr="127.0.0.1#$PORT"
  12. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  13. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  14. if [ $? -eq 0 ]; then
  15. return
  16. fi
  17. uci delete dhcp.@dnsmasq[0].server 2>/dev/null
  18. uci add_list dhcp.@dnsmasq[0].server=$addr
  19. for server in $OLD_SERVER; do
  20. if [ "$server" = "$addr" ]; then
  21. continue
  22. fi
  23. uci add_list dhcp.@dnsmasq[0].server=$server
  24. done
  25. uci delete dhcp.@dnsmasq[0].resolvfile 2>/dev/null
  26. uci set dhcp.@dnsmasq[0].noresolv=1
  27. uci commit dhcp
  28. /etc/init.d/dnsmasq restart
  29. }
  30. stop_forward_dnsmasq()
  31. {
  32. local OLD_PORT="$1"
  33. addr="127.0.0.1#$OLD_PORT"
  34. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  35. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  36. if [ $? -ne 0 ]; then
  37. return
  38. fi
  39. uci del_list dhcp.@dnsmasq[0].server=$addr 2>/dev/null
  40. addrlist="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  41. if [ -z "$addrlist" ] ; then
  42. uci set dhcp.@dnsmasq[0].resolvfile=/tmp/resolv.conf.auto 2>/dev/null
  43. uci delete dhcp.@dnsmasq[0].noresolv 2>/dev/null
  44. fi
  45. uci commit dhcp
  46. /etc/init.d/dnsmasq restart
  47. }
  48. set_iptable()
  49. {
  50. local ipv6_server=$1
  51. local tcp_server=$2
  52. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  53. for IP in $IPS
  54. do
  55. if [ "$tcp_server" == "1" ]; then
  56. iptables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  57. fi
  58. iptables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  59. done
  60. if [ "$ipv6_server" == 0 ]; then
  61. return
  62. fi
  63. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  64. for IP in $IPS
  65. do
  66. if [ "$tcp_server" == "1" ]; then
  67. ip6tables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  68. fi
  69. ip6tables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  70. done
  71. }
  72. clear_iptable()
  73. {
  74. local OLD_PORT="$1"
  75. local ipv6_server=$2
  76. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  77. for IP in $IPS
  78. do
  79. iptables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  80. iptables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  81. done
  82. if [ "$ipv6_server" == 0 ]; then
  83. return
  84. fi
  85. echo "warn ip6tables nat mod is needed"
  86. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  87. for IP in $IPS
  88. do
  89. ip6tables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  90. ip6tables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  91. done
  92. }
  93. service_triggers() {
  94. procd_add_reload_trigger firewall
  95. procd_add_reload_trigger "$CONFIGURATION"
  96. }
  97. get_tz()
  98. {
  99. SET_TZ=""
  100. if [ -e "/etc/localtime" ]; then
  101. return
  102. fi
  103. for tzfile in /etc/TZ /var/etc/TZ
  104. do
  105. if [ ! -e "$tzfile" ]; then
  106. continue
  107. fi
  108. tz="`cat $tzfile 2>/dev/null`"
  109. done
  110. if [ -z "$tz" ]; then
  111. return
  112. fi
  113. SET_TZ=$tz
  114. }
  115. exchange_port()
  116. {
  117. dnsmasq_port=$(uci get dhcp.@dnsmasq[0].port)
  118. if [ -z "$dnsmasq_port" ]; then
  119. dnsmasq_port="53"
  120. fi
  121. AdGuardHome_PORT=$(awk '/ port:/{printf($2)}' $configpath)
  122. config_editor "dns.port" "$dnsmasq_port" "$configpath"
  123. uci set dhcp.@dnsmasq[0].port="$AdGuardHome_PORT"
  124. uci commit dhcp
  125. /etc/init.d/dnsmasq reload
  126. }
  127. do_redirect()
  128. {
  129. config_load "${CONFIGURATION}"
  130. local section="$CONFIGURATION"
  131. args=""
  132. ipv6_server=1
  133. tcp_server=0
  134. enabled=$1
  135. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  136. AdGuardHome_PORT=$(awk '/ port:/{printf($2)}' $configpath)
  137. if [ -z "$AdGuardHome_PORT" ]; then
  138. AdGuardHome_PORT="0"
  139. fi
  140. config_get "redirect" "$section" "redirect" "none"
  141. config_get "old_redirect" "$section" "old_redirect" "none"
  142. config_get "old_port" "$section" "old_port" "0"
  143. config_get "old_enabled" "$section" "old_enabled" "0"
  144. if [ "$old_redirect" == "exchange" -a "$AdGuardHome_PORT" == "53" ]; then
  145. $AdGuardHome_PORT=$(uci get dhcp.@dnsmasq[0].port)
  146. fi
  147. if [ "$old_redirect" != "$redirect" ] || [ "$old_port" != "$AdGuardHome_PORT" ] || [ "$old_enabled" = "1" -a "$enabled" = "0" ]; then
  148. if [ "$old_redirect" != "none" ]; then
  149. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  150. clear_iptable "$old_port" "$ipv6_server"
  151. elif [ "$old_redirect" == "dnsmasq-upstream" ]; then
  152. stop_forward_dnsmasq "$old_port"
  153. elif [ "$old_redirect" == "exchange" ]; then
  154. exchange_port
  155. fi
  156. fi
  157. elif [ "$old_enabled" = "1" -a "$enabled" = "1" ]; then
  158. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  159. clear_iptable "$old_port" "$ipv6_server"
  160. fi
  161. fi
  162. uci delete AdGuardHome.@AdGuardHome[0].old_redirect 2>/dev/null
  163. uci delete AdGuardHome.@AdGuardHome[0].old_port 2>/dev/null
  164. uci delete AdGuardHome.@AdGuardHome[0].old_enabled 2>/dev/null
  165. uci add_list AdGuardHome.@AdGuardHome[0].old_redirect="$redirect" 2>/dev/null
  166. uci add_list AdGuardHome.@AdGuardHome[0].old_port="$AdGuardHome_PORT" 2>/dev/null
  167. uci add_list AdGuardHome.@AdGuardHome[0].old_enabled="$enabled" 2>/dev/null
  168. uci commit AdGuardHome
  169. [ "$enabled" -gt 0 ] || return 1
  170. if [ "$AdGuardHome_PORT" == "0" ]; then
  171. return 1
  172. fi
  173. if [ "$redirect" = "redirect" ]; then
  174. set_iptable $ipv6_server $tcp_server
  175. elif [ "$redirect" = "dnsmasq-upstream" ]; then
  176. set_forward_dnsmasq "$AdGuardHome_PORT"
  177. elif [ "$redirect" == "exchange" -a "$(uci get dhcp.@dnsmasq[0].port)" == "53" ]; then
  178. exchange_port
  179. fi
  180. }
  181. get_filesystem()
  182. {
  183. # print out path filesystem
  184. echo $1 | awk '
  185. BEGIN{
  186. while (("mount"| getline ret) > 0)
  187. {
  188. split(ret,d);
  189. fs[d[3]]=d[5];
  190. m=index(d[1],":")
  191. if (m==0)
  192. {
  193. pt[d[3]]=d[1]
  194. }else{
  195. pt[d[3]]=substr(d[1],m+1)
  196. }}}{
  197. split($0,d,"/");
  198. if ("/" in fs)
  199. {
  200. result1=fs["/"];
  201. }
  202. if ("/" in pt)
  203. {
  204. result2=pt["/"];
  205. }
  206. for (i=2;i<=length(d);i++)
  207. {
  208. p[i]=p[i-1]"/"d[i];
  209. if (p[i] in fs)
  210. {
  211. result1=fs[p[i]];
  212. result2=pt[p[i]];
  213. }
  214. }
  215. if (result2 in fs){
  216. result=fs[result2]}
  217. else{
  218. result=result1}
  219. print(result);}'
  220. }
  221. config_editor()
  222. {
  223. awk -v yaml="$1" -v value="$2" -v file="$3" '
  224. BEGIN{split(yaml,part,"\.");s="";i=1;l=length(part);}
  225. {
  226. if (match($0,s""part[i]))
  227. {
  228. if (i==l)
  229. {
  230. split($0,t,":");
  231. system("sed -i '\''"FNR"c \\"t[1]": "value"'\'' "file);
  232. exit;
  233. }
  234. s=s"[- ]{2}";
  235. i++;
  236. }
  237. }' $3
  238. }
  239. start_service() {
  240. # Reading config
  241. config_load "${CONFIGURATION}"
  242. config_get hashpass $CONFIGURATION hashpass ""
  243. if [ ! -z "$hashpass" ]; then
  244. config_editor "users.password" "$hashpass" "$configpath"
  245. uci set $CONFIGURATION.$CONFIGURATION.hashpass=""
  246. fi
  247. local enabled
  248. config_get_bool enabled $CONFIGURATION enabled 0
  249. if [ "$enabled" == "1" ]; then
  250. local ADDITIONAL_ARGS=""
  251. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  252. config_get binpath $CONFIGURATION binpath "/usr/bin/AdGuardHome/AdGuardHome"
  253. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  254. mkdir -p ${binpath%/*}
  255. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -c $configpath"
  256. config_get httpport $CONFIGURATION httpport 3000
  257. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -p $httpport"
  258. config_get workdir $CONFIGURATION workdir "/usr/bin/AdGuardHome"
  259. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -w $workdir"
  260. mkdir -p $workdir/data
  261. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  262. # hack to save config file when upgrade system
  263. config_get keepdb $CONFIGURATION keepdb 0
  264. if [ "$keepdb" -eq 1 ]; then
  265. echo -e "$workdir/data/sessions.db\n$workdir/data/stats.db\n$workdir/data/querylog.json">>/lib/upgrade/keep.d/luci-app-adguardhome
  266. fi
  267. config_get logfile $CONFIGURATION logfile ""
  268. if [ ! -z "$logfile" ]; then
  269. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -l $logfile"
  270. fi
  271. if [ ! -f "$binpath" ]; then
  272. do_redirect 0
  273. touch /var/run/update_core
  274. sh /usr/share/AdGuardHome/update_core.sh >/tmp/AdGuardHome_update.log
  275. rm /var/run/update_core
  276. exit 0
  277. fi
  278. config_get_bool verbose $CONFIGURATION verbose 0
  279. if [ "$verbose" -eq 1 ]; then
  280. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -v"
  281. fi
  282. # for overlay data-stk-oo not suppport
  283. local cwdfs=$(get_filesystem $workdir)
  284. echo "workdir is a $cwdfs filesystem"
  285. if [ "$cwdfs" == "jffs2" ]; then
  286. echo "fs error ln db to tmp $workdir $cwdfs"
  287. logger "AdGuardHome" "warning db redirect to tmp"
  288. touch $workdir/data/stats.db
  289. if [ ! -L $workdir/data/stats.db ]; then
  290. mv -f $workdir/data/stats.db /tmp/stats.db
  291. ln -s /tmp/stats.db $workdir/data/stats.db
  292. fi
  293. touch $workdir/data/sessions.db
  294. if [ ! -L $workdir/data/sessions.db ]; then
  295. mv -f $workdir/data/sessions.db /tmp/sessions.db
  296. ln -s /tmp/sessions.db $workdir/data/sessions.db
  297. fi
  298. fi
  299. procd_open_instance
  300. get_tz
  301. if [ ! -z "$SET_TZ" ]; then
  302. procd_set_param env TZ="$SET_TZ"
  303. fi
  304. procd_set_param respawn ${respawn_threshold:-3600} ${respawn_timeout:-5} ${respawn_retry:-5}
  305. procd_set_param limits core="unlimited"
  306. procd_set_param stderr 1
  307. # pass config to script on start
  308. procd_set_param command $binpath $ADDITIONAL_ARGS
  309. procd_set_param file "$configpath"
  310. procd_set_param file "/etc/config/AdGuardHome"
  311. procd_close_instance
  312. if [ -f "$configpath" ]; then
  313. do_redirect 1
  314. else
  315. do_redirect 0
  316. config_get "redirect" "AdGuardHome" "redirect" "none"
  317. if [ "$redirect" != "none" ]; then
  318. procd_open_instance "waitconfig"
  319. procd_set_param command "/usr/share/AdGuardHome/watchconfig.sh"
  320. procd_close_instance
  321. fi
  322. fi
  323. echo "AdGuardHome turn on"
  324. fi
  325. }
  326. reload_service()
  327. {
  328. config_load "${CONFIGURATION}"
  329. echo "AdGuardHome reloading"
  330. config_get_bool enabled $CONFIGURATION enabled 0
  331. procd_send_signal $CONFIGURATION
  332. if [ "$enabled" == "0" ]; then
  333. do_redirect 0
  334. fi
  335. start
  336. echo "enabled=$enabled"
  337. }
  338. stop_service()
  339. {
  340. config_load "${CONFIGURATION}"
  341. do_redirect 0
  342. procd_send_signal $CONFIGURATION
  343. echo "AdGuardHome turn off"
  344. echo "enabled=$enabled"
  345. }