AdGuardHome 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402
  1. #!/bin/sh /etc/rc.common
  2. USE_PROCD=1
  3. START=95
  4. STOP=01
  5. CONFIGURATION=AdGuardHome
  6. EXTRA_COMMANDS="do_redirect"
  7. EXTRA_HELP=" do_redirect 0 or 1"
  8. set_forward_dnsmasq()
  9. {
  10. local PORT="$1"
  11. addr="127.0.0.1#$PORT"
  12. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  13. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  14. if [ $? -eq 0 ]; then
  15. return
  16. fi
  17. uci delete dhcp.@dnsmasq[0].server 2>/dev/null
  18. uci add_list dhcp.@dnsmasq[0].server=$addr
  19. for server in $OLD_SERVER; do
  20. if [ "$server" = "$addr" ]; then
  21. continue
  22. fi
  23. uci add_list dhcp.@dnsmasq[0].server=$server
  24. done
  25. uci delete dhcp.@dnsmasq[0].resolvfile 2>/dev/null
  26. uci set dhcp.@dnsmasq[0].noresolv=1
  27. uci commit dhcp
  28. /etc/init.d/dnsmasq restart
  29. }
  30. stop_forward_dnsmasq()
  31. {
  32. local OLD_PORT="$1"
  33. addr="127.0.0.1#$OLD_PORT"
  34. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  35. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  36. if [ $? -ne 0 ]; then
  37. return
  38. fi
  39. uci del_list dhcp.@dnsmasq[0].server=$addr 2>/dev/null
  40. addrlist="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  41. if [ -z "$addrlist" ] ; then
  42. uci set dhcp.@dnsmasq[0].resolvfile=/tmp/resolv.conf.auto 2>/dev/null
  43. uci delete dhcp.@dnsmasq[0].noresolv 2>/dev/null
  44. fi
  45. uci commit dhcp
  46. /etc/init.d/dnsmasq restart
  47. }
  48. set_iptable()
  49. {
  50. local ipv6_server=$1
  51. local tcp_server=$2
  52. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  53. for IP in $IPS
  54. do
  55. if [ "$tcp_server" == "1" ]; then
  56. iptables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  57. fi
  58. iptables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  59. done
  60. if [ "$ipv6_server" == 0 ]; then
  61. return
  62. fi
  63. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  64. for IP in $IPS
  65. do
  66. if [ "$tcp_server" == "1" ]; then
  67. ip6tables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  68. fi
  69. ip6tables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  70. done
  71. }
  72. clear_iptable()
  73. {
  74. local OLD_PORT="$1"
  75. local ipv6_server=$2
  76. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  77. for IP in $IPS
  78. do
  79. iptables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  80. iptables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  81. done
  82. if [ "$ipv6_server" == 0 ]; then
  83. return
  84. fi
  85. echo "warn ip6tables nat mod is needed"
  86. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  87. for IP in $IPS
  88. do
  89. ip6tables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  90. ip6tables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  91. done
  92. }
  93. service_triggers() {
  94. procd_add_reload_trigger firewall
  95. procd_add_reload_trigger "$CONFIGURATION"
  96. }
  97. get_tz()
  98. {
  99. SET_TZ=""
  100. if [ -e "/etc/localtime" ]; then
  101. return
  102. fi
  103. for tzfile in /etc/TZ /var/etc/TZ
  104. do
  105. if [ ! -e "$tzfile" ]; then
  106. continue
  107. fi
  108. tz="`cat $tzfile 2>/dev/null`"
  109. done
  110. if [ -z "$tz" ]; then
  111. return
  112. fi
  113. SET_TZ=$tz
  114. }
  115. rm_port53()
  116. {
  117. AdGuardHome_PORT=$(awk '/ port:/{printf($2)}' $configpath)
  118. dnsmasq_port=$(uci get dhcp.@dnsmasq[0].port)
  119. if [ -z "$dnsmasq_port" ]; then
  120. dnsmasq_port="53"
  121. fi
  122. if [ "$dnsmasq_port" == "$AdGuardHome_PORT" ]; then
  123. if [ "$dnsmasq_port" == "53" ]; then
  124. dnsmasq_port="1745"
  125. fi
  126. fi
  127. config_editor "dns.port" "$dnsmasq_port" "$configpath"
  128. uci set dhcp.@dnsmasq[0].port="53"
  129. uci commit dhcp
  130. /etc/init.d/dnsmasq reload
  131. }
  132. use_port53()
  133. {
  134. AdGuardHome_PORT=$(awk '/ port:/{printf($2)}' $configpath)
  135. dnsmasq_port=$(uci get dhcp.@dnsmasq[0].port)
  136. if [ -z "$dnsmasq_port" ]; then
  137. dnsmasq_port="53"
  138. fi
  139. if [ "$dnsmasq_port" == "$AdGuardHome_PORT" ]; then
  140. if [ "$dnsmasq_port" == "53" ]; then
  141. AdGuardHome_PORT="1745"
  142. fi
  143. fi
  144. config_editor "dns.port" "53" "$configpath"
  145. uci set dhcp.@dnsmasq[0].port="$AdGuardHome_PORT"
  146. uci commit dhcp
  147. /etc/init.d/dnsmasq reload
  148. }
  149. do_redirect()
  150. {
  151. config_load "${CONFIGURATION}"
  152. local section="$CONFIGURATION"
  153. args=""
  154. ipv6_server=1
  155. tcp_server=0
  156. enabled=$1
  157. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  158. AdGuardHome_PORT=$(awk '/ port:/{printf($2)}' $configpath)
  159. if [ -z "$AdGuardHome_PORT" ]; then
  160. AdGuardHome_PORT="0"
  161. fi
  162. config_get "redirect" "$section" "redirect" "none"
  163. config_get "old_redirect" "$section" "old_redirect" "none"
  164. config_get "old_port" "$section" "old_port" "0"
  165. config_get "old_enabled" "$section" "old_enabled" "0"
  166. if [ "$old_redirect" == "exchange" -a "$AdGuardHome_PORT" == "53" ]; then
  167. AdGuardHome_PORT=$(uci get dhcp.@dnsmasq[0].port)
  168. fi
  169. if [ "$old_redirect" != "$redirect" ] || [ "$old_port" != "$AdGuardHome_PORT" ] || [ "$old_enabled" = "1" -a "$enabled" = "0" ]; then
  170. if [ "$old_redirect" != "none" ]; then
  171. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  172. clear_iptable "$old_port" "$ipv6_server"
  173. elif [ "$old_redirect" == "dnsmasq-upstream" ]; then
  174. stop_forward_dnsmasq "$old_port"
  175. elif [ "$old_redirect" == "exchange" ]; then
  176. rm_port53
  177. fi
  178. fi
  179. elif [ "$old_enabled" = "1" -a "$enabled" = "1" ]; then
  180. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  181. clear_iptable "$old_port" "$ipv6_server"
  182. fi
  183. fi
  184. uci delete AdGuardHome.@AdGuardHome[0].old_redirect 2>/dev/null
  185. uci delete AdGuardHome.@AdGuardHome[0].old_port 2>/dev/null
  186. uci delete AdGuardHome.@AdGuardHome[0].old_enabled 2>/dev/null
  187. uci add_list AdGuardHome.@AdGuardHome[0].old_redirect="$redirect" 2>/dev/null
  188. uci add_list AdGuardHome.@AdGuardHome[0].old_port="$AdGuardHome_PORT" 2>/dev/null
  189. uci add_list AdGuardHome.@AdGuardHome[0].old_enabled="$enabled" 2>/dev/null
  190. uci commit AdGuardHome
  191. [ "$enabled" -gt 0 ] || return 1
  192. if [ "$AdGuardHome_PORT" == "0" ]; then
  193. return 1
  194. fi
  195. if [ "$redirect" = "redirect" ]; then
  196. set_iptable $ipv6_server $tcp_server
  197. elif [ "$redirect" = "dnsmasq-upstream" ]; then
  198. set_forward_dnsmasq "$AdGuardHome_PORT"
  199. elif [ "$redirect" == "exchange" -a "$(uci get dhcp.@dnsmasq[0].port)" == "53" ]; then
  200. use_port53
  201. fi
  202. }
  203. get_filesystem()
  204. {
  205. # print out path filesystem
  206. echo $1 | awk '
  207. BEGIN{
  208. while (("mount"| getline ret) > 0)
  209. {
  210. split(ret,d);
  211. fs[d[3]]=d[5];
  212. m=index(d[1],":")
  213. if (m==0)
  214. {
  215. pt[d[3]]=d[1]
  216. }else{
  217. pt[d[3]]=substr(d[1],m+1)
  218. }}}{
  219. split($0,d,"/");
  220. if ("/" in fs)
  221. {
  222. result1=fs["/"];
  223. }
  224. if ("/" in pt)
  225. {
  226. result2=pt["/"];
  227. }
  228. for (i=2;i<=length(d);i++)
  229. {
  230. p[i]=p[i-1]"/"d[i];
  231. if (p[i] in fs)
  232. {
  233. result1=fs[p[i]];
  234. result2=pt[p[i]];
  235. }
  236. }
  237. if (result2 in fs){
  238. result=fs[result2]}
  239. else{
  240. result=result1}
  241. print(result);}'
  242. }
  243. config_editor()
  244. {
  245. awk -v yaml="$1" -v value="$2" -v file="$3" '
  246. BEGIN{split(yaml,part,"\.");s="";i=1;l=length(part);}
  247. {
  248. if (match($0,s""part[i]))
  249. {
  250. if (i==l)
  251. {
  252. split($0,t,":");
  253. system("sed -i '\''"FNR"c \\"t[1]": "value"'\'' "file);
  254. exit;
  255. }
  256. s=s"[- ]{2}";
  257. i++;
  258. }
  259. }' $3
  260. }
  261. start_service() {
  262. # Reading config
  263. config_load "${CONFIGURATION}"
  264. config_get hashpass $CONFIGURATION hashpass ""
  265. if [ ! -z "$hashpass" ]; then
  266. config_editor "users.password" "$hashpass" "$configpath"
  267. uci set $CONFIGURATION.$CONFIGURATION.hashpass=""
  268. fi
  269. local enabled
  270. config_get_bool enabled $CONFIGURATION enabled 0
  271. if [ "$enabled" == "1" ]; then
  272. local ADDITIONAL_ARGS=""
  273. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  274. config_get binpath $CONFIGURATION binpath "/usr/bin/AdGuardHome/AdGuardHome"
  275. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  276. mkdir -p ${binpath%/*}
  277. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -c $configpath"
  278. config_get httpport $CONFIGURATION httpport 3000
  279. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -p $httpport"
  280. config_get workdir $CONFIGURATION workdir "/usr/bin/AdGuardHome"
  281. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -w $workdir"
  282. mkdir -p $workdir/data
  283. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  284. # hack to save config file when upgrade system
  285. config_get keepdb $CONFIGURATION keepdb 0
  286. if [ "$keepdb" -eq 1 ]; then
  287. echo -e "$workdir/data/sessions.db\n$workdir/data/stats.db\n$workdir/data/querylog.json">>/lib/upgrade/keep.d/luci-app-adguardhome
  288. fi
  289. config_get logfile $CONFIGURATION logfile ""
  290. if [ ! -z "$logfile" ]; then
  291. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -l $logfile"
  292. fi
  293. if [ ! -f "$binpath" ]; then
  294. do_redirect 0
  295. touch /var/run/update_core
  296. sh /usr/share/AdGuardHome/update_core.sh >/tmp/AdGuardHome_update.log
  297. rm /var/run/update_core
  298. exit 0
  299. fi
  300. config_get_bool verbose $CONFIGURATION verbose 0
  301. if [ "$verbose" -eq 1 ]; then
  302. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -v"
  303. fi
  304. # for overlay data-stk-oo not suppport
  305. local cwdfs=$(get_filesystem $workdir)
  306. echo "workdir is a $cwdfs filesystem"
  307. if [ "$cwdfs" == "jffs2" ]; then
  308. echo "fs error ln db to tmp $workdir $cwdfs"
  309. logger "AdGuardHome" "warning db redirect to tmp"
  310. touch $workdir/data/stats.db
  311. if [ ! -L $workdir/data/stats.db ]; then
  312. mv -f $workdir/data/stats.db /tmp/stats.db
  313. ln -s /tmp/stats.db $workdir/data/stats.db
  314. fi
  315. touch $workdir/data/sessions.db
  316. if [ ! -L $workdir/data/sessions.db ]; then
  317. mv -f $workdir/data/sessions.db /tmp/sessions.db
  318. ln -s /tmp/sessions.db $workdir/data/sessions.db
  319. fi
  320. fi
  321. procd_open_instance
  322. get_tz
  323. if [ ! -z "$SET_TZ" ]; then
  324. procd_set_param env TZ="$SET_TZ"
  325. fi
  326. procd_set_param respawn ${respawn_threshold:-3600} ${respawn_timeout:-5} ${respawn_retry:-5}
  327. procd_set_param limits core="unlimited"
  328. procd_set_param stderr 1
  329. # pass config to script on start
  330. procd_set_param command $binpath $ADDITIONAL_ARGS
  331. procd_set_param file "$configpath"
  332. procd_set_param file "/etc/config/AdGuardHome"
  333. procd_close_instance
  334. if [ -f "$configpath" ]; then
  335. do_redirect 1
  336. else
  337. do_redirect 0
  338. config_get "redirect" "AdGuardHome" "redirect" "none"
  339. if [ "$redirect" != "none" ]; then
  340. procd_open_instance "waitconfig"
  341. procd_set_param command "/usr/share/AdGuardHome/watchconfig.sh"
  342. procd_close_instance
  343. fi
  344. fi
  345. echo "AdGuardHome turn on"
  346. (sleep 10 && [ -z "$(pgrep $binpath)" ] && do_redirect 0 )&
  347. fi
  348. }
  349. reload_service()
  350. {
  351. config_load "${CONFIGURATION}"
  352. echo "AdGuardHome reloading"
  353. config_get_bool enabled $CONFIGURATION enabled 0
  354. procd_send_signal $CONFIGURATION
  355. if [ "$enabled" == "0" ]; then
  356. do_redirect 0
  357. fi
  358. start
  359. echo "enabled=$enabled"
  360. }
  361. stop_service()
  362. {
  363. config_load "${CONFIGURATION}"
  364. do_redirect 0
  365. procd_send_signal $CONFIGURATION
  366. echo "AdGuardHome turn off"
  367. echo "enabled=$enabled"
  368. }