AdGuardHome 14 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510
  1. #!/bin/sh /etc/rc.common
  2. USE_PROCD=1
  3. START=95
  4. STOP=01
  5. CONFIGURATION=AdGuardHome
  6. CRON_FILE=/etc/crontabs/root
  7. EXTRA_COMMANDS="do_redirect"
  8. EXTRA_HELP=" do_redirect 0 or 1"
  9. set_forward_dnsmasq()
  10. {
  11. local PORT="$1"
  12. addr="127.0.0.1#$PORT"
  13. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  14. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  15. if [ $? -eq 0 ]; then
  16. return
  17. fi
  18. uci delete dhcp.@dnsmasq[0].server 2>/dev/null
  19. uci add_list dhcp.@dnsmasq[0].server=$addr
  20. for server in $OLD_SERVER; do
  21. if [ "$server" = "$addr" ]; then
  22. continue
  23. fi
  24. uci add_list dhcp.@dnsmasq[0].server=$server
  25. done
  26. uci delete dhcp.@dnsmasq[0].resolvfile 2>/dev/null
  27. uci set dhcp.@dnsmasq[0].noresolv=1
  28. uci commit dhcp
  29. /etc/init.d/dnsmasq restart
  30. }
  31. stop_forward_dnsmasq()
  32. {
  33. local OLD_PORT="$1"
  34. addr="127.0.0.1#$OLD_PORT"
  35. OLD_SERVER="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  36. echo $OLD_SERVER | grep "^$addr" >/dev/null 2>&1
  37. if [ $? -ne 0 ]; then
  38. return
  39. fi
  40. uci del_list dhcp.@dnsmasq[0].server=$addr 2>/dev/null
  41. addrlist="`uci get dhcp.@dnsmasq[0].server 2>/dev/null`"
  42. if [ -z "$addrlist" ] ; then
  43. uci set dhcp.@dnsmasq[0].resolvfile=/tmp/resolv.conf.auto 2>/dev/null
  44. uci delete dhcp.@dnsmasq[0].noresolv 2>/dev/null
  45. fi
  46. uci commit dhcp
  47. /etc/init.d/dnsmasq restart
  48. }
  49. set_iptable()
  50. {
  51. local ipv6_server=$1
  52. local tcp_server=$2
  53. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  54. for IP in $IPS
  55. do
  56. if [ "$tcp_server" == "1" ]; then
  57. iptables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  58. fi
  59. iptables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  60. done
  61. if [ "$ipv6_server" == 0 ]; then
  62. return
  63. fi
  64. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  65. for IP in $IPS
  66. do
  67. if [ "$tcp_server" == "1" ]; then
  68. ip6tables -t nat -A PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  69. fi
  70. ip6tables -t nat -A PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $AdGuardHome_PORT >/dev/null 2>&1
  71. done
  72. }
  73. clear_iptable()
  74. {
  75. local OLD_PORT="$1"
  76. local ipv6_server=$2
  77. IPS="`ifconfig | grep "inet addr" | grep -v ":127" | grep "Bcast" | awk '{print $2}' | awk -F : '{print $2}'`"
  78. for IP in $IPS
  79. do
  80. iptables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  81. iptables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  82. done
  83. if [ "$ipv6_server" == 0 ]; then
  84. return
  85. fi
  86. echo "warn ip6tables nat mod is needed"
  87. IPS="`ifconfig | grep "inet6 addr" | grep -v " fe80::" | grep -v " ::1" | grep "Global" | awk '{print $3}'`"
  88. for IP in $IPS
  89. do
  90. ip6tables -t nat -D PREROUTING -p udp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  91. ip6tables -t nat -D PREROUTING -p tcp -d $IP --dport 53 -j REDIRECT --to-ports $OLD_PORT >/dev/null 2>&1
  92. done
  93. }
  94. service_triggers() {
  95. procd_add_reload_trigger firewall
  96. procd_add_reload_trigger "$CONFIGURATION"
  97. }
  98. get_tz()
  99. {
  100. SET_TZ=""
  101. if [ -e "/etc/localtime" ]; then
  102. return
  103. fi
  104. for tzfile in /etc/TZ /var/etc/TZ
  105. do
  106. if [ ! -e "$tzfile" ]; then
  107. continue
  108. fi
  109. tz="`cat $tzfile 2>/dev/null`"
  110. done
  111. if [ -z "$tz" ]; then
  112. return
  113. fi
  114. SET_TZ=$tz
  115. }
  116. rm_port53()
  117. {
  118. local AdGuardHome_PORT=$(config_editor "dns.port" "" "$configpath" "1")
  119. dnsmasq_port=$(uci get dhcp.@dnsmasq[0].port 2>/dev/null)
  120. if [ -z "$dnsmasq_port" ]; then
  121. dnsmasq_port="53"
  122. fi
  123. if [ "$dnsmasq_port" == "$AdGuardHome_PORT" ]; then
  124. if [ "$dnsmasq_port" == "53" ]; then
  125. dnsmasq_port="1745"
  126. fi
  127. elif [ "$dnsmasq_port" == "53" ]; then
  128. return
  129. fi
  130. config_editor "dns.port" "$dnsmasq_port" "$configpath"
  131. uci set dhcp.@dnsmasq[0].port="53"
  132. uci commit dhcp
  133. /etc/init.d/dnsmasq reload
  134. }
  135. use_port53()
  136. {
  137. local AdGuardHome_PORT=$(config_editor "dns.port" "" "$configpath" "1")
  138. dnsmasq_port=$(uci get dhcp.@dnsmasq[0].port 2>/dev/null)
  139. if [ -z "$dnsmasq_port" ]; then
  140. dnsmasq_port="53"
  141. fi
  142. if [ "$dnsmasq_port" == "$AdGuardHome_PORT" ]; then
  143. if [ "$dnsmasq_port" == "53" ]; then
  144. AdGuardHome_PORT="1745"
  145. fi
  146. elif [ "$AdGuardHome_PORT" == "53" ]; then
  147. return
  148. fi
  149. config_editor "dns.port" "53" "$configpath"
  150. uci set dhcp.@dnsmasq[0].port="$AdGuardHome_PORT"
  151. uci commit dhcp
  152. /etc/init.d/dnsmasq reload
  153. }
  154. do_redirect()
  155. {
  156. config_load "${CONFIGURATION}"
  157. local section="$CONFIGURATION"
  158. args=""
  159. ipv6_server=1
  160. tcp_server=0
  161. enabled=$1
  162. if [ "$enabled" == "1" ]; then
  163. echo -n "1">/var/run/AdGredir
  164. else
  165. echo -n "0">/var/run/AdGredir
  166. fi
  167. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  168. AdGuardHome_PORT=$(config_editor "dns.port" "" "$configpath" "1")
  169. if [ -z "$AdGuardHome_PORT" ]; then
  170. AdGuardHome_PORT="0"
  171. fi
  172. config_get "redirect" "$section" "redirect" "none"
  173. config_get "old_redirect" "$section" "old_redirect" "none"
  174. config_get "old_port" "$section" "old_port" "0"
  175. config_get "old_enabled" "$section" "old_enabled" "0"
  176. if [ "$old_enabled" = "1" -a "$old_redirect" == "exchange" ]; then
  177. AdGuardHome_PORT=$(uci get dhcp.@dnsmasq[0].port 2>/dev/null)
  178. fi
  179. if [ "$old_redirect" != "$redirect" ] || [ "$old_port" != "$AdGuardHome_PORT" ] || [ "$old_enabled" = "1" -a "$enabled" = "0" ]; then
  180. if [ "$old_redirect" != "none" ]; then
  181. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  182. clear_iptable "$old_port" "$ipv6_server"
  183. elif [ "$old_redirect" == "dnsmasq-upstream" ]; then
  184. stop_forward_dnsmasq "$old_port"
  185. elif [ "$old_redirect" == "exchange" ]; then
  186. rm_port53
  187. fi
  188. fi
  189. elif [ "$old_enabled" = "1" -a "$enabled" = "1" ]; then
  190. if [ "$old_redirect" == "redirect" -a "$old_port" != "0" ]; then
  191. clear_iptable "$old_port" "$ipv6_server"
  192. fi
  193. fi
  194. uci delete AdGuardHome.@AdGuardHome[0].old_redirect 2>/dev/null
  195. uci delete AdGuardHome.@AdGuardHome[0].old_port 2>/dev/null
  196. uci delete AdGuardHome.@AdGuardHome[0].old_enabled 2>/dev/null
  197. uci add_list AdGuardHome.@AdGuardHome[0].old_redirect="$redirect" 2>/dev/null
  198. uci add_list AdGuardHome.@AdGuardHome[0].old_port="$AdGuardHome_PORT" 2>/dev/null
  199. uci add_list AdGuardHome.@AdGuardHome[0].old_enabled="$enabled" 2>/dev/null
  200. uci commit AdGuardHome
  201. [ "$enabled" -gt 0 ] || return 1
  202. if [ "$AdGuardHome_PORT" == "0" ]; then
  203. return 1
  204. fi
  205. if [ "$redirect" = "redirect" ]; then
  206. set_iptable $ipv6_server $tcp_server
  207. elif [ "$redirect" = "dnsmasq-upstream" ]; then
  208. set_forward_dnsmasq "$AdGuardHome_PORT"
  209. elif [ "$redirect" == "exchange" -a "$(uci get dhcp.@dnsmasq[0].port 2>/dev/null)" == "53" ]; then
  210. use_port53
  211. fi
  212. }
  213. get_filesystem()
  214. {
  215. # print out path filesystem
  216. echo $1 | awk '
  217. BEGIN{
  218. while (("mount"| getline ret) > 0)
  219. {
  220. split(ret,d);
  221. fs[d[3]]=d[5];
  222. m=index(d[1],":")
  223. if (m==0)
  224. {
  225. pt[d[3]]=d[1]
  226. }else{
  227. pt[d[3]]=substr(d[1],m+1)
  228. }}}{
  229. split($0,d,"/");
  230. if ("/" in fs)
  231. {
  232. result1=fs["/"];
  233. }
  234. if ("/" in pt)
  235. {
  236. result2=pt["/"];
  237. }
  238. for (i=2;i<=length(d);i++)
  239. {
  240. p[i]=p[i-1]"/"d[i];
  241. if (p[i] in fs)
  242. {
  243. result1=fs[p[i]];
  244. result2=pt[p[i]];
  245. }
  246. }
  247. if (result2 in fs){
  248. result=fs[result2]}
  249. else{
  250. result=result1}
  251. print(result);}'
  252. }
  253. config_editor()
  254. {
  255. awk -v yaml="$1" -v value="$2" -v file="$3" -v ro="$4" '
  256. BEGIN{split(yaml,part,"\.");s="";i=1;l=length(part);}
  257. {
  258. if (match($0,s""part[i]":"))
  259. {
  260. if (i==l)
  261. {
  262. split($0,t,": ");
  263. if (ro==""){
  264. system("sed -i '\''"FNR"c \\"t[1]": "value"'\'' "file);
  265. }else{
  266. print(t[2]);
  267. }
  268. exit;
  269. }
  270. s=s"[- ]{2}";
  271. i++;
  272. }
  273. }' $3
  274. }
  275. boot_service() {
  276. config_load "${CONFIGURATION}"
  277. config_get waitonboot $CONFIGURATION waitonboot "0"
  278. config_get_bool enabled $CONFIGURATION enabled 0
  279. if [ "$enabled" == "1" ]; then
  280. if [ "$waitonboot" == "1" ]; then
  281. do_redirect 0
  282. procd_open_instance "waitnet"
  283. procd_set_param command "/usr/share/AdGuardHome/waitnet.sh"
  284. procd_close_instance
  285. echo "no net start pinging"
  286. else
  287. start_service
  288. fi
  289. fi
  290. }
  291. start_service() {
  292. # Reading config
  293. config_load "${CONFIGURATION}"
  294. config_get hashpass $CONFIGURATION hashpass ""
  295. if [ -n "$hashpass" ]; then
  296. config_editor "users.password" "$hashpass" "$configpath"
  297. uci set $CONFIGURATION.$CONFIGURATION.hashpass=""
  298. fi
  299. local enabled
  300. config_get_bool enabled $CONFIGURATION enabled 0
  301. if [ "$enabled" == "1" ]; then
  302. local ADDITIONAL_ARGS=""
  303. config_get configpath $CONFIGURATION configpath "/etc/AdGuardHome.yaml"
  304. config_get binpath $CONFIGURATION binpath "/usr/bin/AdGuardHome/AdGuardHome"
  305. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  306. mkdir -p ${binpath%/*}
  307. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -c $configpath"
  308. config_get httpport $CONFIGURATION httpport 3000
  309. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -p $httpport"
  310. config_get workdir $CONFIGURATION workdir "/usr/bin/AdGuardHome"
  311. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -w $workdir"
  312. config_get backupwd $CONFIGURATION backupwd "0"
  313. if [ "$backupwd" == "1" ] && [ ! -d "$workdir/data" ]; then
  314. config_get backupwdpath $CONFIGURATION backupwdpath "/usr/bin/AdGuardHome"
  315. cp -r -f $backupwdpath/data $workdir/data
  316. fi
  317. mkdir -p $workdir/data
  318. echo -e "$configpath\n$binpath">/lib/upgrade/keep.d/luci-app-adguardhome
  319. # hack to save config file when upgrade system
  320. config_get keepdb $CONFIGURATION keepdb 0
  321. if [ "$keepdb" -eq 1 ]; then
  322. echo -e "$workdir/data/sessions.db\n$workdir/data/stats.db\n$workdir/data/querylog.json">>/lib/upgrade/keep.d/luci-app-adguardhome
  323. fi
  324. config_get logfile $CONFIGURATION logfile ""
  325. if [ -n "$logfile" ]; then
  326. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -l $logfile"
  327. fi
  328. if [ ! -f "$binpath" ]; then
  329. do_redirect 0
  330. rm /var/run/update_core_error 2>/dev/null
  331. touch /var/run/update_core
  332. sh /usr/share/AdGuardHome/update_core.sh 2>&1 >/tmp/AdGuardHome_update.log || touch /var/run/update_core_error
  333. rm /var/run/update_core
  334. exit 0
  335. fi
  336. config_get_bool verbose $CONFIGURATION verbose 0
  337. if [ "$verbose" -eq 1 ]; then
  338. ADDITIONAL_ARGS="$ADDITIONAL_ARGS -v"
  339. fi
  340. # for overlay data-stk-oo not suppport
  341. local cwdfs=$(get_filesystem $workdir)
  342. echo "workdir is a $cwdfs filesystem"
  343. if [ "$cwdfs" == "jffs2" ]; then
  344. echo "fs error ln db to tmp $workdir $cwdfs"
  345. logger "AdGuardHome" "warning db redirect to tmp"
  346. touch $workdir/data/stats.db
  347. if [ ! -L $workdir/data/stats.db ]; then
  348. mv -f $workdir/data/stats.db /tmp/stats.db 2>/dev/null
  349. ln -s /tmp/stats.db $workdir/data/stats.db 2>/dev/null
  350. fi
  351. touch $workdir/data/sessions.db
  352. if [ ! -L $workdir/data/sessions.db ]; then
  353. mv -f $workdir/data/sessions.db /tmp/sessions.db 2>/dev/null
  354. ln -s /tmp/sessions.db $workdir/data/sessions.db 2>/dev/null
  355. fi
  356. fi
  357. procd_open_instance
  358. get_tz
  359. if [ -n "$SET_TZ" ]; then
  360. procd_set_param env TZ="$SET_TZ"
  361. fi
  362. procd_set_param respawn ${respawn_threshold:-3600} ${respawn_timeout:-5} ${respawn_retry:-5}
  363. procd_set_param limits core="unlimited"
  364. procd_set_param stderr 1
  365. # pass config to script on start
  366. procd_set_param command $binpath $ADDITIONAL_ARGS
  367. procd_set_param file "$configpath"
  368. procd_set_param file "/etc/config/AdGuardHome"
  369. procd_close_instance
  370. if [ -f "$configpath" ]; then
  371. do_redirect 1
  372. else
  373. do_redirect 0
  374. config_get "redirect" "AdGuardHome" "redirect" "none"
  375. if [ "$redirect" != "none" ]; then
  376. procd_open_instance "waitconfig"
  377. procd_set_param command "/usr/share/AdGuardHome/watchconfig.sh"
  378. procd_close_instance
  379. echo "no config start watching"
  380. fi
  381. fi
  382. do_crontab
  383. echo "AdGuardHome turn on"
  384. (sleep 10 && [ -z "$(pgrep $binpath)" ] && logger "AdGuardHome" "no process in 10s cancel redirect" && do_redirect 0 )&
  385. fi
  386. }
  387. reload_service()
  388. {
  389. config_load "${CONFIGURATION}"
  390. echo "AdGuardHome reloading"
  391. config_get_bool enabled $CONFIGURATION enabled 0
  392. if [ "$enabled" == "0" ]; then
  393. procd_kill $CONFIGURATION
  394. do_redirect 0
  395. do_crontab
  396. config_get hashpass $CONFIGURATION hashpass ""
  397. if [ -n "$hashpass" ]; then
  398. config_editor "users.password" "$hashpass" "$configpath"
  399. uci set $CONFIGURATION.$CONFIGURATION.hashpass=""
  400. fi
  401. else
  402. procd_send_signal $CONFIGURATION
  403. start
  404. fi
  405. echo "enabled=$enabled"
  406. }
  407. del_querylog(){
  408. local btarget=$(ls $backupwdpath/data | grep -F "querylog.json" | sort -r | head -n 1)
  409. local wtarget=$(ls $workdir/data | grep -F "querylog.json" | sort -r | head -n 1)
  410. if [ "$btarget"x == "$wtarget"x ]; then
  411. [ -z "$btarget" ] && return 1
  412. rm -f $workdir/data/$wtarget
  413. rm -f $backupwdpath/data/$btarget
  414. return 0
  415. fi
  416. if [ -n "$btarget" ]; then
  417. rm -f $backupwdpath/data/$btarget
  418. return 0
  419. fi
  420. if [ -n "$wtarget" ]; then
  421. rm -f $workdir/data/$wtarget
  422. return 0
  423. fi
  424. return 1
  425. }
  426. stop_service()
  427. {
  428. config_load "${CONFIGURATION}"
  429. do_redirect 0
  430. do_crontab
  431. config_get backupwd $CONFIGURATION backupwd "0"
  432. if [ "$backupwd" == "1" ]; then
  433. config_get backupwdpath $CONFIGURATION backupwdpath "/usr/bin/AdGuardHome"
  434. config_get workdir $CONFIGURATION workdir "/usr/bin/AdGuardHome"
  435. while :
  436. do
  437. cp -r -f $workdir/data $backupwdpath/data
  438. if [ "$?" == "39" ]; then
  439. echo "磁盘已满,删除log重试中"
  440. del_querylog && continue
  441. rm -f -r $backupwdpath/data/filters
  442. rm -f -r $workdir/data/filters && continue
  443. echo "backup failed"
  444. fi
  445. break
  446. done
  447. fi
  448. echo "AdGuardHome turn off"
  449. echo "enabled=$enabled"
  450. }
  451. boot() {
  452. rc_procd boot_service "$@"
  453. if eval "type service_started" 2>/dev/null >/dev/null; then
  454. service_started
  455. fi
  456. }
  457. do_crontab(){
  458. config_get autoupdate $CONFIGURATION autoupdate "0"
  459. grep "/usr/share/AdGuardHome/update_core.sh" $CRON_FILE
  460. if [ "$?" == "0" ]; then
  461. if [ $autoupdate -eq 1 ]; then
  462. return
  463. else
  464. sed -i '/\/usr\/share\/AdGuardHome\/update_core.sh/d' $CRON_FILE
  465. /etc/init.d/cron restart
  466. fi
  467. else
  468. if [ $autoupdate -eq 1 ]; then
  469. echo '30 3 * * * /usr/share/AdGuardHome/update_core.sh 2>&1' >> $CRON_FILE
  470. /etc/init.d/cron restart
  471. else
  472. return
  473. fi
  474. fi
  475. }