mirror of
https://github.com/acmesh-official/acme.sh.git
synced 2026-08-13 12:33:30 +02:00
Solaris /usr/bin/grep has no -A ("illegal option -- A"), so _getAKI
printed an error to stderr on every cron renewal and returned empty.
The empty AKI silently corrupts the RFC 9773 ARI certID, so ARI is
never available and renewal falls back to the fixed schedule.
Split the pipeline into a testable stdin filter _extractAKI and select
the value line with a portable sed range instead.
Same fix for the two hooks that still used grep -A: dns_world4you.sh
(also replaces the GNU-only "\s" in the same expression) and
deploy/keyhelp.sh (the -A 2 window could truncate the div range that
follows it, so it is just dropped).
https://github.com/acmesh-official/acme.sh/issues/7159
239 lines
7.5 KiB
Bash
239 lines
7.5 KiB
Bash
#!/usr/bin/env sh
|
|
# shellcheck disable=SC2034
|
|
dns_world4you_info='World4You.com
|
|
Site: World4You.com
|
|
Docs: github.com/acmesh-official/acme.sh/wiki/dnsapi#dns_world4you
|
|
Options:
|
|
WORLD4YOU_USERNAME Username
|
|
WORLD4YOU_PASSWORD Password
|
|
Issues: github.com/acmesh-official/acme.sh/issues/3269
|
|
Author: Lorenz Stechauner <@NerLOR>
|
|
'
|
|
|
|
WORLD4YOU_API="https://my.world4you.com/en"
|
|
PAKETNR=''
|
|
TLD=''
|
|
RECORD=''
|
|
|
|
################ Public functions ################
|
|
|
|
# Usage: dns_world4you_add <fqdn> <value>
|
|
dns_world4you_add() {
|
|
fqdn=$(echo "$1" | _lower_case)
|
|
value="$2"
|
|
_info "Using world4you to add record"
|
|
_debug fulldomain "$fqdn"
|
|
_debug txtvalue "$value"
|
|
|
|
_login
|
|
if [ "$?" != 0 ]; then
|
|
return 1
|
|
fi
|
|
|
|
export _H1="Cookie: W4YSESSID=$sessid"
|
|
form=$(_get "$WORLD4YOU_API/")
|
|
_get_paketnr "$fqdn" "$form"
|
|
paketnr="$PAKETNR"
|
|
if [ -z "$paketnr" ]; then
|
|
_err "Unable to parse paketnr"
|
|
return 3
|
|
fi
|
|
_debug paketnr "$paketnr"
|
|
|
|
export _H1="Cookie: W4YSESSID=$sessid"
|
|
form=$(_get "$WORLD4YOU_API/$paketnr/dns")
|
|
formiddp=$(echo "$form" | grep 'AddDnsRecordForm\[uniqueFormIdDP\]' | sed 's/^.*name="AddDnsRecordForm\[uniqueFormIdDP\]" value="\([^"]*\)".*$/\1/')
|
|
form_token=$(echo "$form" | grep 'AddDnsRecordForm\[_token\]' | sed 's/^.*name="AddDnsRecordForm\[_token\]" value="\([^"]*\)".*$/\1/')
|
|
if [ -z "$formiddp" ]; then
|
|
_err "Unable to parse form"
|
|
return 3
|
|
fi
|
|
|
|
_resethttp
|
|
export ACME_HTTP_NO_REDIRECTS=1
|
|
body="AddDnsRecordForm[name]=$RECORD&AddDnsRecordForm[dnsType][type]=TXT&AddDnsRecordForm[value]=$value&AddDnsRecordForm[uniqueFormIdDP]=$formiddp&AddDnsRecordForm[_token]=$form_token"
|
|
_info "Adding record..."
|
|
ret=$(_post "$body" "$WORLD4YOU_API/$paketnr/dns" '' POST 'application/x-www-form-urlencoded')
|
|
_resethttp
|
|
|
|
if _contains "$(_head_n 1 <"$HTTP_HEADER")" '302'; then
|
|
res=$(_get "$WORLD4YOU_API/$paketnr/dns")
|
|
if _contains "$res" "successfully"; then
|
|
return 0
|
|
else
|
|
msg=$(_w4y_alert_msg "$res")
|
|
if [ "$msg" = '' ]; then
|
|
_err "Unable to add record: Unknown error"
|
|
echo "$ret" >'error-01.html'
|
|
echo "$res" >'error-02.html'
|
|
_err "View error-01.html and error-02.html for debugging"
|
|
else
|
|
_err "Unable to add record: my.world4you.com: $msg"
|
|
fi
|
|
return 1
|
|
fi
|
|
else
|
|
msg=$(echo "$ret" | grep '"form-error-message"' | sed 's/^.*<div class="form-error-message">\([^<]*\)<\/div>.*$/\1/')
|
|
_err "Unable to add record: my.world4you.com: $msg"
|
|
return 1
|
|
fi
|
|
}
|
|
|
|
# Usage: dns_world4you_rm <fqdn> <value>
|
|
dns_world4you_rm() {
|
|
fqdn=$(echo "$1" | _lower_case)
|
|
value="$2"
|
|
_info "Using world4you to remove record"
|
|
_debug fulldomain "$fqdn"
|
|
_debug txtvalue "$value"
|
|
|
|
_login
|
|
if [ "$?" != 0 ]; then
|
|
return 1
|
|
fi
|
|
|
|
export _H1="Cookie: W4YSESSID=$sessid"
|
|
form=$(_get "$WORLD4YOU_API/")
|
|
_get_paketnr "$fqdn" "$form"
|
|
paketnr="$PAKETNR"
|
|
if [ -z "$paketnr" ]; then
|
|
_err "Unable to parse paketnr"
|
|
return 3
|
|
fi
|
|
_debug paketnr "$paketnr"
|
|
|
|
form=$(_get "$WORLD4YOU_API/$paketnr/dns")
|
|
formiddp=$(echo "$form" | grep 'DeleteDnsRecordForm\[uniqueFormIdDP\]' | sed 's/^.*name="DeleteDnsRecordForm\[uniqueFormIdDP\]" value="\([^"]*\)".*$/\1/')
|
|
form_token=$(echo "$form" | grep 'DeleteDnsRecordForm\[_token\]' | sed 's/^.*name="DeleteDnsRecordForm\[_token\]" value="\([^"]*\)".*$/\1/')
|
|
if [ -z "$formiddp" ]; then
|
|
_err "Unable to parse form"
|
|
return 3
|
|
fi
|
|
|
|
recordid=$(echo "$form" | grep 'data-records="' | sed 's/.*"\([^"]*\)".*/\1/;s/"/"/g;s/},{/}\n{/g' | grep '"type":"TXT"' | grep "\"name\":\"$fqdn\"" | grep "\"value\":\"$value\"" | sed 's/^.*"id":"\([^"]*\)".*$/\1/')
|
|
_debug recordid "$recordid"
|
|
|
|
_resethttp
|
|
export ACME_HTTP_NO_REDIRECTS=1
|
|
body="DeleteDnsRecordForm[id]=$recordid&DeleteDnsRecordForm[uniqueFormIdDP]=$formiddp&DeleteDnsRecordForm[_token]=$form_token"
|
|
_info "Removing record..."
|
|
ret=$(_post "$body" "$WORLD4YOU_API/$paketnr/dns/record/delete" '' POST 'application/x-www-form-urlencoded')
|
|
_resethttp
|
|
|
|
if _contains "$(_head_n 1 <"$HTTP_HEADER")" '302'; then
|
|
res=$(_get "$WORLD4YOU_API/$paketnr/dns")
|
|
if _contains "$res" "successfully"; then
|
|
return 0
|
|
else
|
|
msg=$(_w4y_alert_msg "$res")
|
|
if [ "$msg" = '' ]; then
|
|
_err "Unable to remove record: Unknown error"
|
|
echo "$ret" >'error-01.html'
|
|
echo "$res" >'error-02.html'
|
|
_err "View error-01.html and error-02.html for debugging"
|
|
else
|
|
_err "Unable to remove record: my.world4you.com: $msg"
|
|
fi
|
|
return 1
|
|
fi
|
|
else
|
|
msg=$(echo "$ret" | grep "form-error-message" | sed 's/^.*<div class="form-error-message">\([^<]*\)<\/div>.*$/\1/')
|
|
_err "Unable to remove record: my.world4you.com: $msg"
|
|
return 1
|
|
fi
|
|
}
|
|
|
|
################ Private functions ################
|
|
|
|
# Usage: _w4y_alert_msg <html>
|
|
# Extracts the error text out of the alert box of a DNS page.
|
|
# "grep -A" is not portable (Solaris /usr/bin/grep: "illegal option -- A"),
|
|
# so select from the alert to EOF and keep the same number of lines.
|
|
# "\s" is a GNU sed extension, use an explicit space/tab bracket instead.
|
|
_w4y_alert_msg() {
|
|
_w4y_tab=$(printf '\t')
|
|
echo "$1" | sed -n '/alert-notification/,$p' | _head_n 21 |
|
|
grep 'class="weak-title">[^<]' | sed "s/<[^>]*>//g;s/^[ $_w4y_tab]*//"
|
|
}
|
|
|
|
# Usage: _login
|
|
_login() {
|
|
WORLD4YOU_USERNAME="${WORLD4YOU_USERNAME:-$(_readaccountconf_mutable WORLD4YOU_USERNAME)}"
|
|
WORLD4YOU_PASSWORD="${WORLD4YOU_PASSWORD:-$(_readaccountconf_mutable WORLD4YOU_PASSWORD)}"
|
|
|
|
if [ -z "$WORLD4YOU_USERNAME" ] || [ -z "$WORLD4YOU_PASSWORD" ]; then
|
|
WORLD4YOU_USERNAME=""
|
|
WORLD4YOU_PASSWORD=""
|
|
_err "You didn't specify world4you username and password yet."
|
|
_err "Usage: export WORLD4YOU_USERNAME=<name>"
|
|
_err "Usage: export WORLD4YOU_PASSWORD=<password>"
|
|
return 1
|
|
fi
|
|
|
|
_saveaccountconf_mutable WORLD4YOU_USERNAME "$WORLD4YOU_USERNAME"
|
|
_saveaccountconf_mutable WORLD4YOU_PASSWORD "$WORLD4YOU_PASSWORD"
|
|
|
|
_resethttp
|
|
export ACME_HTTP_NO_REDIRECTS=1
|
|
page=$(_get "$WORLD4YOU_API/login")
|
|
_resethttp
|
|
|
|
if _contains "$(_head_n 1 <"$HTTP_HEADER")" '302'; then
|
|
_info "Already logged in"
|
|
_parse_sessid
|
|
return 0
|
|
fi
|
|
|
|
_info "Logging in..."
|
|
|
|
username="$WORLD4YOU_USERNAME"
|
|
password="$WORLD4YOU_PASSWORD"
|
|
csrf_token=$(echo "$page" | grep '_csrf_token' | sed 's/^.*<input[^>]*value=\"\([^"]*\)\".*$/\1/')
|
|
_parse_sessid
|
|
|
|
export _H1="Cookie: W4YSESSID=$sessid"
|
|
export _H2="X-Requested-With: XMLHttpRequest"
|
|
body="_username=$username&_password=$password&_csrf_token=$csrf_token"
|
|
ret=$(_post "$body" "$WORLD4YOU_API/login" '' POST 'application/x-www-form-urlencoded')
|
|
unset _H2
|
|
|
|
_debug ret "$ret"
|
|
if _contains "$ret" "\"success\":true"; then
|
|
_info "Successfully logged in"
|
|
_parse_sessid
|
|
else
|
|
msg=$(echo "$ret" | sed 's/^.*"message":"\([^\"]*\)".*$/\1/')
|
|
_err "Unable to log in: my.world4you.com: $msg"
|
|
return 1
|
|
fi
|
|
}
|
|
|
|
# Usage: _get_paketnr <fqdn> <form>
|
|
_get_paketnr() {
|
|
fqdn="$1"
|
|
form="$2"
|
|
|
|
domains=$(echo "$form" | grep 'paketListData' | grep -o '"fqdn":"[^"]*"' | sed 's/.*:"\(.*\)"/\1/')
|
|
_debug domains "$domains"
|
|
domain=''
|
|
for domain in $domains; do
|
|
if _contains "$fqdn" "$domain\$"; then
|
|
break
|
|
fi
|
|
domain=''
|
|
done
|
|
if [ -z "$domain" ]; then
|
|
return 1
|
|
fi
|
|
|
|
TLD="$domain"
|
|
_debug domain "$domain"
|
|
RECORD=$(echo "$fqdn" | cut -c"1-$((${#fqdn} - ${#TLD} - 1))")
|
|
PAKETNR=$(echo "$form" | grep -o "\"id\":[^{}]*\"fqdn\":\"$domain\"" | sed 's/"id":\([0-9]*\).*$/\1/')
|
|
return 0
|
|
}
|
|
|
|
# Usage: _parse_sessid
|
|
_parse_sessid() {
|
|
sessid=$(grep 'W4YSESSID' <"$HTTP_HEADER" | _tail_n 1 | sed 's/^.*W4YSESSID=\([^;]*\);.*$/\1/')
|
|
}
|