give_user_ban.py 7.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169
  1. from .tool.func import *
  2. def give_user_ban(name = None, ban_type = ''):
  3. with get_db_connect() as conn:
  4. curs = conn.cursor()
  5. ip = ip_check()
  6. if ban_check(ip = ip, tool = 'login')[0] == 1:
  7. if ip_or_user(ip) == 1 or acl_check(tool = 'all_admin_auth', ip = ip) != 0:
  8. return re_error(conn, 0)
  9. else:
  10. if acl_check(tool = 'ban_auth', ip = ip) == 1:
  11. return re_error(conn, 3)
  12. if flask.request.method == 'POST':
  13. end = '0'
  14. date_select = flask.request.form.get('date_type', 'days')
  15. if date_select == 'date':
  16. time_limit = flask.request.form.get('date', '')
  17. if re.search(r'^[0-9]{4}-[0-9]{2}-[0-9]{2}$', time_limit):
  18. end = time_limit + ' 00:00:00'
  19. else:
  20. time_limit = int(number_check(flask.request.form.get('date_days', '1')))
  21. time = datetime.datetime.now()
  22. plus = datetime.timedelta(days = time_limit)
  23. end = (time + plus).strftime("%Y-%m-%d %H:%M:%S")
  24. regex_get = flask.request.form.get('do_ban_type', '')
  25. why = flask.request.form.get('why', '')
  26. release = ''
  27. login = ''
  28. ban_option = flask.request.form.get('ban_option', '')
  29. if ban_option == 'login_able':
  30. login = 'O'
  31. elif ban_option == 'edit_request_able':
  32. login = 'E'
  33. elif ban_option == 'completely_ban':
  34. login = 'A'
  35. elif ban_option == 'dont_come_this_site':
  36. login = 'D'
  37. elif ban_option == 'release':
  38. release = '1'
  39. if ban_type == 'multiple':
  40. all_user = re.findall(r'([^\n]+)\n', flask.request.form.get('name', 'test').replace('\r', '') + '\n')
  41. else:
  42. if name:
  43. all_user = [name]
  44. else:
  45. all_user = [flask.request.form.get('name', 'test')]
  46. for name in all_user:
  47. if regex_get == 'regex':
  48. type_d = 'regex'
  49. try:
  50. re.compile(name)
  51. except:
  52. return re_error(conn, 23)
  53. elif regex_get == 'cidr':
  54. type_d = 'cidr'
  55. try:
  56. ipaddress.IPv4Network(name, False)
  57. except:
  58. try:
  59. ipaddress.IPv6Network(name, False)
  60. except:
  61. return re_error(conn, 45)
  62. else:
  63. type_d = None
  64. if name == ip:
  65. if acl_check(tool = 'all_admin_auth', memo = 'ban (' + name + ')') == 1:
  66. return re_error(conn, 3)
  67. else:
  68. if acl_check(tool = 'ban_auth', memo = 'ban (' + name + ')') == 1:
  69. return re_error(conn, 3)
  70. ban_insert(conn,
  71. name,
  72. end,
  73. why,
  74. login,
  75. ip_check(),
  76. type_d,
  77. 1 if release != '' else 0
  78. )
  79. return redirect(conn, '/recent_block')
  80. else:
  81. if ban_type == 'multiple':
  82. main_name = get_lang(conn, 'multiple_ban')
  83. n_name = '<textarea class="opennamu_textarea_500" placeholder="' + get_lang(conn, 'name_or_ip_or_regex_or_cidr_multiple') + '" name="name"></textarea><hr class="main_hr">'
  84. else:
  85. main_name = get_lang(conn, 'ban')
  86. n_name = '<input placeholder="' + get_lang(conn, 'name_or_ip_or_regex_or_cidr') + '" value="' + (name if name else '') + '" name="name"><hr class="main_hr">'
  87. now = 0
  88. if ban_type == 'multiple':
  89. action = 'action="/auth/ban/multiple"'
  90. else:
  91. action = 'action="/auth/ban"'
  92. date_value = ''
  93. info_data = ''
  94. if name:
  95. curs.execute(db_change("select end from rb where block = ? and ongoing = '1'"), [name])
  96. db_data = curs.fetchall()
  97. if db_data and db_data[0][0] != '':
  98. date_value = db_data[0][0].split()[0]
  99. if ban_type == '':
  100. info_data = '<div id="opennamu_get_user_info">' + html.escape(name) + '</div>'
  101. return easy_minify(conn, flask.render_template(skin_check(conn),
  102. imp = [main_name, wiki_set(conn), wiki_custom(conn), wiki_css([now, 0])],
  103. data = info_data + '''
  104. <form method="post" ''' + action + '''>
  105. <h2>''' + get_lang(conn, 'method') + '''</h2>
  106. ''' + n_name + '''
  107. <select name="do_ban_type">
  108. <option value="normal">''' + get_lang(conn, 'normal') + '''</option>
  109. <option value="regex" ''' + ('selected' if ban_type == 'regex' else '') + '>' + get_lang(conn, 'regex') + '''</option>
  110. <option value="cidr" ''' + ('selected' if ban_type == 'cidr' else '') + '>' + get_lang(conn, 'cidr') + '''</option>
  111. </select>
  112. <hr class="main_hr">
  113. <select name="ban_option">
  114. <option value="">''' + get_lang(conn, 'default') + '''</option>
  115. <option value="login_able">''' + get_lang(conn, 'login_able') + '''</option>
  116. <option value="edit_request_able">''' + get_lang(conn, 'edit_request_able') + '''</option>
  117. <option value="completely_ban">''' + get_lang(conn, 'completely_ban') + '''</option>
  118. <option value="dont_come_this_site">''' + get_lang(conn, 'dont_come_this_site') + '''</option>
  119. <option value="release">''' + get_lang(conn, 'release') + '''</option>
  120. </select>
  121. <h2>''' + get_lang(conn, 'date') + '''</h2>
  122. <select name="date_type">
  123. <option value="date">''' + get_lang(conn, 'date') + '''</option>
  124. <option value="days">''' + get_lang(conn, 'day') + '''</option>
  125. </select>
  126. <hr class="main_hr">
  127. <span>''' + get_lang(conn, 'day') + '''</span>
  128. <hr class="main_hr">
  129. <input name="date_days">
  130. <hr class="main_hr">
  131. <span>''' + get_lang(conn, 'date') + '''</span>
  132. <hr class="main_hr">
  133. <input type="date" value="''' + date_value + '''" name="date" pattern="\\d{4}-\\d{2}-\\d{2}">
  134. <h2>''' + get_lang(conn, 'other') + '''</h2>
  135. <input placeholder="''' + get_lang(conn, 'why') + '''" name="why" type="text">
  136. <hr class="main_hr">
  137. <button type="submit">''' + get_lang(conn, 'save') + '''</button>
  138. </form>
  139. ''',
  140. menu = [['manager', get_lang(conn, 'return')]]
  141. ))