1
0
mirror of https://github.com/Yubico/yubikey-val.git synced 2025-02-01 01:52:18 +01:00
yubikey-val/ykval-revoke.php

54 lines
1.4 KiB
PHP
Raw Normal View History

2010-02-22 13:28:01 +00:00
<?php
require_once 'ykval-common.php';
require_once 'ykval-config.php';
require_once 'ykval-db.php';
2012-06-14 16:16:29 +02:00
require_once 'ykval-log.php';
2010-02-22 13:28:01 +00:00
header("content-type: text/plain");
2012-06-14 16:16:29 +02:00
$myLog = new Log('ykval-revoke');
$myLog->addField('ip', $_SERVER['REMOTE_ADDR']);
if (!in_array ($_SERVER["REMOTE_ADDR"], $baseParams['__YKREV_IPS__'])) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Authorization failed (logged ". $_SERVER["REMOTE_ADDR"] .")");
2010-02-22 13:28:01 +00:00
}
# Parse input
$yk = $_REQUEST["yk"];
$do = $_REQUEST["do"];
if (!$yk || !$do) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Missing parameter");
2010-02-22 13:28:01 +00:00
}
if (!preg_match("/^([cbdefghijklnrtuv]{0,16})$/", $yk)) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Unknown yk value: $yk");
2010-02-22 13:28:01 +00:00
}
if ($do != "enable" && $do != "disable") {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Unknown do value: $do");
2010-02-22 13:28:01 +00:00
}
# Connect to db
2010-02-22 13:29:07 +00:00
$db = new Db($baseParams['__YKVAL_DB_DSN__'],
$baseParams['__YKVAL_DB_USER__'],
$baseParams['__YKVAL_DB_PW__'],
2012-05-29 11:07:19 +02:00
$baseParams['__YKVAL_DB_OPTIONS__'],
2010-02-22 13:28:01 +00:00
'ykval-revoke:db');
2010-02-22 13:30:00 +00:00
if (!$db->connect()) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Database connect error");
2010-02-22 13:30:00 +00:00
}
2010-02-22 13:28:01 +00:00
# Check if key exists
$r = $db->findBy('yubikeys', 'yk_publicname', $yk, 1);
2010-06-01 07:43:32 +00:00
if (!$r) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Unknown yubikey: $yk");
2010-02-22 13:28:01 +00:00
}
# Enable/Disable the yubikey
if (!$db->updateBy('yubikeys', 'yk_publicname', $yk,
array('active'=>($do == "enable" ? "1" : "0")))) {
2012-06-14 16:16:29 +02:00
logdie($myLog, "ERROR Could not $do for $yk (rows $rows)");
2010-02-22 13:28:01 +00:00
}
# We are done
2012-06-14 16:16:29 +02:00
logdie($myLog, "OK Processed $yk with $do");
2010-02-22 13:28:01 +00:00
?>