mirror of
				https://github.com/librenms/librenms.git
				synced 2024-10-07 16:52:45 +00:00 
			
		
		
		
	* Security fix: unauthorized access Affects nginx users: Moved php files outside of public html directory (Apache was protected by .htaccess) Affects all users: Some files did not check for authentication and could disclose some info. Better checks before including files from user input * git mv html/includes/ includes/html git mv html/pages/ includes/html/
		
			
				
	
	
		
			29 lines
		
	
	
		
			940 B
		
	
	
	
		
			PHP
		
	
	
	
	
	
			
		
		
	
	
			29 lines
		
	
	
		
			940 B
		
	
	
	
		
			PHP
		
	
	
	
	
	
| <?php
 | |
| require 'includes/html/graphs/common.inc.php';
 | |
| $i             = 0;
 | |
| $scale_min     = 0;
 | |
| $nototal       = 1;
 | |
| $unit_text     = 'Per Sec.';
 | |
| $rrd_filename  = rrd_name($device['hostname'], array('app', 'freeradius-auth', $app['app_id']));
 | |
| $fr_auth_array = array(
 | |
|     'responses' => 'Responses',
 | |
|     'duplicate_requests' => 'Duplicate Requests',
 | |
|     'malformed_requests' => 'Malformed Requests',
 | |
|     'invalid_requests' => 'Invalid Requests',
 | |
|     'dropped_requests' => 'Dropped Requests',
 | |
|     'unknown_types' => 'Unknown Types'
 | |
| );
 | |
| $colours      = 'mixed';
 | |
| $rrd_list     = array();
 | |
| if (rrdtool_check_rrd_exists($rrd_filename)) {
 | |
|     foreach ($fr_auth_array as $ds => $descr) {
 | |
|         $rrd_list[$i]['filename'] = $rrd_filename;
 | |
|         $rrd_list[$i]['descr']    = $descr;
 | |
|         $rrd_list[$i]['ds']       = $ds;
 | |
|         $i++;
 | |
|     }
 | |
| } else {
 | |
|     echo "file missing: $rrd_filename";
 | |
| }
 | |
| require 'includes/html/graphs/generic_multi_line.inc.php';
 |