HEX
Server: LiteSpeed
System: Linux houston.panomity.com 6.8.0-100-generic #100-Ubuntu SMP PREEMPT_DYNAMIC Tue Jan 13 16:40:06 UTC 2026 x86_64
User: nudepix (1011)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: //opt/librepanel/customer_extras.php
<?php

/**
 * This file is part of the LibrePanel project.
 * Copyright (c) 2010 the LibrePanel Team (see authors).
 *
 * This program is free software; you can redistribute it and/or
 * modify it under the terms of the GNU General Public License
 * as published by the Free Software Foundation; either version 2
 * of the License, or (at your option) any later version.
 *
 * This program is distributed in the hope that it will be useful,
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
 * GNU General Public License for more details.
 *
 * You should have received a copy of the GNU General Public License
 * along with this program; if not, you can also view it online at
 * https://files.librepanel.org/misc/COPYING.txt
 *
 * @copyright  the authors
 * @author     LibrePanel team <team@librepanel.org>
 * @license    https://files.librepanel.org/misc/COPYING.txt GPLv2
 */

const AREA = 'customer';
require __DIR__ . '/lib/init.php';

use LibrePanel\Api\Commands\DataDump as DataDump;
use LibrePanel\Api\Commands\DirOptions as DirOptions;
use LibrePanel\Api\Commands\DirProtections as DirProtections;
use LibrePanel\Customer\Customer;
use LibrePanel\FileDir;
use LibrePanel\LibrePanelLogger;
use LibrePanel\PhpHelper;
use LibrePanel\Settings;
use LibrePanel\UI\Collection;
use LibrePanel\UI\HTML;
use LibrePanel\UI\Listing;
use LibrePanel\UI\Panel\UI;
use LibrePanel\UI\Request;
use LibrePanel\UI\Response;

// redirect if this customer page is hidden via settings
if (Settings::IsInList('panel.customer_hide_options', 'extras')) {
	Response::redirectTo('customer_index.php');
}

$id = (int)Request::any('id');

if ($page == 'overview' || $page == 'htpasswds') {
	// redirect if this customer sub-page is hidden via settings
	if (Settings::IsInList('panel.customer_hide_options', 'extras.directoryprotection')) {
		Response::redirectTo('customer_index.php');
	}

	if ($action == '') {
		$log->logAction(LibrePanelLogger::USR_ACTION, LOG_NOTICE, "viewed customer_extras::htpasswds");
		$fields = [
			'username' => lng('login.username'),
			'path' => lng('panel.path')
		];
		try {
			$htpasswd_list_data = include_once dirname(__FILE__) . '/lib/tablelisting/customer/tablelisting.htpasswd.php';
			$collection = (new Collection(DirProtections::class, $userinfo))
				->withPagination($htpasswd_list_data['htpasswd_list']['columns'], $htpasswd_list_data['htpasswd_list']['default_sorting']);
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}

		$actions_links = [];
		$actions_links[] = [
			'href' => $linker->getLink(['section' => 'extras', 'page' => 'htpasswds', 'action' => 'add']),
			'label' => lng('extras.directoryprotection_add')
		];

		$actions_links[] = [
			'href' => \LibrePanel\LibrePanel::getDocsUrl() . 'user-guide/extras/',
			'target' => '_blank',
			'icon' => 'fa-solid fa-circle-info',
			'class' => 'btn-outline-secondary'
		];

		UI::view('user/table.html.twig', [
			'listing' => Listing::format($collection, $htpasswd_list_data, 'htpasswd_list'),
			'actions_links' => $actions_links,
			'entity_info' => lng('extras.description')
		]);
	} elseif ($action == 'delete' && $id != 0) {
		try {
			$json_result = DirProtections::getLocal($userinfo, [
				'id' => $id
			])->get();
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}
		$result = json_decode($json_result, true)['data'];

		if (isset($result['username']) && $result['username'] != '') {
			if (Request::post('send') == 'send') {
				try {
					DirProtections::getLocal($userinfo, Request::postAll())->delete();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::redirectTo($filename, [
					'page' => $page
				]);
			} else {
				if (strpos($result['path'], $userinfo['documentroot']) === 0) {
					$result['path'] = str_replace($userinfo['documentroot'], "/", $result['path']);
				}

				HTML::askYesNo('extras_reallydelete', $filename, [
					'id' => $id,
					'page' => $page,
					'action' => $action
				], $result['username'] . ' (' . $result['path'] . ')');
			}
		}
	} elseif ($action == 'add') {
		if (Request::post('send') == 'send') {
			try {
				DirProtections::getLocal($userinfo, Request::postAll())->add();
			} catch (Exception $e) {
				Response::dynamicError($e->getMessage());
			}
			Response::redirectTo($filename, [
				'page' => $page
			]);
		} else {
			$pathSelect = FileDir::makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid']);

			$htpasswd_add_data = include_once dirname(__FILE__) . '/lib/formfields/customer/extras/formfield.htpasswd_add.php';

			UI::view('user/form.html.twig', [
				'formaction' => $linker->getLink(['section' => 'extras']),
				'formdata' => $htpasswd_add_data['htpasswd_add']
			]);
		}
	} elseif ($action == 'edit' && $id != 0) {
		try {
			$json_result = DirProtections::getLocal($userinfo, [
				'id' => $id
			])->get();
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}
		$result = json_decode($json_result, true)['data'];

		if (isset($result['username']) && $result['username'] != '') {
			if (Request::post('send') == 'send') {
				try {
					DirProtections::getLocal($userinfo, Request::postAll())->update();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::redirectTo($filename, [
					'page' => $page
				]);
			} else {
				if (strpos($result['path'], $userinfo['documentroot']) === 0) {
					$result['path'] = str_replace($userinfo['documentroot'], "/", $result['path']);
				}
				$result = PhpHelper::htmlentitiesArray($result);

				$htpasswd_edit_data = include_once dirname(__FILE__) . '/lib/formfields/customer/extras/formfield.htpasswd_edit.php';

				UI::view('user/form.html.twig', [
					'formaction' => $linker->getLink(['section' => 'extras', 'id' => $id]),
					'formdata' => $htpasswd_edit_data['htpasswd_edit'],
					'editid' => $id
				]);
			}
		}
	}
} elseif ($page == 'htaccess') {
	// redirect if this customer sub-page is hidden via settings
	if (Settings::IsInList('panel.customer_hide_options', 'extras.pathoptions')) {
		Response::redirectTo('customer_index.php');
	}

	if ($action == '') {
		$log->logAction(LibrePanelLogger::USR_ACTION, LOG_NOTICE, "viewed customer_extras::htaccess");

		$cperlenabled = Customer::customerHasPerlEnabled($userinfo['customerid']);

		try {
			$htaccess_list_data = include_once dirname(__FILE__) . '/lib/tablelisting/customer/tablelisting.htaccess.php';
			$collection = (new Collection(DirOptions::class, $userinfo))
				->withPagination($htaccess_list_data['htaccess_list']['columns'], $htaccess_list_data['htaccess_list']['default_sorting']);
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}

		$actions_links = [];
		$actions_links[] = [
			'href' => $linker->getLink(['section' => 'extras', 'page' => 'htaccess', 'action' => 'add']),
			'label' => lng('extras.pathoptions_add')
		];

		$actions_links[] = [
			'href' => \LibrePanel\LibrePanel::getDocsUrl() . 'user-guide/extras/',
			'target' => '_blank',
			'icon' => 'fa-solid fa-circle-info',
			'class' => 'btn-outline-secondary'
		];

		UI::view('user/table.html.twig', [
			'listing' => Listing::format($collection, $htaccess_list_data, 'htaccess_list'),
			'actions_links' => $actions_links,
			'entity_info' => lng('extras.description')
		]);
	} elseif ($action == 'delete' && $id != 0) {
		try {
			$json_result = DirOptions::getLocal($userinfo, [
				'id' => $id
			])->get();
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}
		$result = json_decode($json_result, true)['data'];

		if (isset($result['customerid']) && $result['customerid'] != '' && $result['customerid'] == $userinfo['customerid']) {
			if (Request::post('send') == 'send') {
				try {
					DirOptions::getLocal($userinfo, Request::postAll())->delete();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::redirectTo($filename, [
					'page' => $page
				]);
			} else {
				HTML::askYesNo('extras_reallydelete_pathoptions', $filename, [
					'id' => $id,
					'page' => $page,
					'action' => $action
				], str_replace($userinfo['documentroot'], '/', $result['path']));
			}
		}
	} elseif ($action == 'add') {
		if (Request::post('send') == 'send') {
			try {
				DirOptions::getLocal($userinfo, Request::postAll())->add();
			} catch (Exception $e) {
				Response::dynamicError($e->getMessage());
			}
			Response::redirectTo($filename, [
				'page' => $page
			]);
		} else {
			$pathSelect = FileDir::makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid']);
			$cperlenabled = Customer::customerHasPerlEnabled($userinfo['customerid']);

			$htaccess_add_data = include_once dirname(__FILE__) . '/lib/formfields/customer/extras/formfield.htaccess_add.php';

			UI::view('user/form.html.twig', [
				'formaction' => $linker->getLink(['section' => 'extras']),
				'formdata' => $htaccess_add_data['htaccess_add']
			]);
		}
	} elseif (($action == 'edit') && ($id != 0)) {
		try {
			$json_result = DirOptions::getLocal($userinfo, [
				'id' => $id
			])->get();
		} catch (Exception $e) {
			Response::dynamicError($e->getMessage());
		}
		$result = json_decode($json_result, true)['data'];

		if ((isset($result['customerid'])) && ($result['customerid'] != '') && ($result['customerid'] == $userinfo['customerid'])) {
			if (Request::post('send') == 'send') {
				try {
					DirOptions::getLocal($userinfo, Request::postAll())->update();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::redirectTo($filename, [
					'page' => $page
				]);
			} else {
				if (strpos($result['path'], $userinfo['documentroot']) === 0) {
					$result['path'] = str_replace($userinfo['documentroot'], "/", $result['path']);
				}
				$cperlenabled = Customer::customerHasPerlEnabled($userinfo['customerid']);

				$result = PhpHelper::htmlentitiesArray($result);

				$htaccess_edit_data = include_once dirname(__FILE__) . '/lib/formfields/customer/extras/formfield.htaccess_edit.php';

				UI::view('user/form.html.twig', [
					'formaction' => $linker->getLink(['section' => 'extras', 'id' => $id]),
					'formdata' => $htaccess_edit_data['htaccess_edit'],
					'editid' => $id
				]);
			}
		}
	}
} elseif ($page == 'export') {
	// redirect if this customer sub-page is hidden via settings
	if (Settings::IsInList('panel.customer_hide_options', 'extras.export')) {
		Response::redirectTo('customer_index.php');
	}

	if (Settings::Get('system.exportenabled') == 1) {
		if ($action == 'abort') {
			if (Request::post('send') == 'send') {
				$log->logAction(LibrePanelLogger::USR_ACTION, LOG_NOTICE, "customer_extras::export - aborted scheduled data export job");
				try {
					DataDump::getLocal($userinfo, Request::postAll())->delete();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::redirectTo($filename, [
					'page' => $page,
					'action' => ''
				]);
			} else {
				HTML::askYesNo('extras_reallydelete_export', $filename, [
					'job_entry' => $id,
					'section' => 'extras',
					'page' => $page,
					'action' => $action
				]);
			}
		} elseif ($action == '') {
			$log->logAction(LibrePanelLogger::USR_ACTION, LOG_INFO, "viewed customer_extras::export");

			// check whether there is a backup-job for this customer
			try {
				$export_list_data = include_once dirname(__FILE__) . '/lib/tablelisting/customer/tablelisting.export.php';
				$collection = (new Collection(DataDump::class, $userinfo));
			} catch (Exception $e) {
				Response::dynamicError($e->getMessage());
			}

			if (Request::post('send') == 'send') {
				try {
					DataDump::getLocal($userinfo, Request::postAll())->add();
				} catch (Exception $e) {
					Response::dynamicError($e->getMessage());
				}
				Response::standardSuccess('exportscheduled');
			} else {
				$pathSelect = FileDir::makePathfield($userinfo['documentroot'], $userinfo['guid'], $userinfo['guid']);
				$export_data = include_once dirname(__FILE__) . '/lib/formfields/customer/extras/formfield.export.php';

				$actions_links = [
					[
						'href' => \LibrePanel\LibrePanel::getDocsUrl() . 'user-guide/extras/',
						'target' => '_blank',
						'icon' => 'fa-solid fa-circle-info',
						'class' => 'btn-outline-secondary'
					]
				];

				UI::view('user/form-datatable.html.twig', [
					'formaction' => $linker->getLink(['section' => 'extras']),
					'formdata' => $export_data['export'],
					'actions_links' => $actions_links,
					'tabledata' => Listing::format($collection, $export_list_data, 'export_list'),
				]);
			}
		}
	} else {
		Response::standardError('exportfunctionnotenabled');
	}
}