X-Git-Url: https://git.netwichtig.de/gitweb/?a=blobdiff_plain;f=src%2Fmodules%2Fm_connflood.cpp;h=1f8286e77a8a21cf31a48d8a6b246094fd85cc0a;hb=e2b0f3dc9ef4d56c71d7abda13e6139ca092e387;hp=47b19fdf4e7920636236c8199056ee51010ed3e4;hpb=f2acdbc3820f0f4f5ef76a0a64e73d2a320df91f;p=user%2Fhenk%2Fcode%2Finspircd.git diff --git a/src/modules/m_connflood.cpp b/src/modules/m_connflood.cpp index 47b19fdf4..1f8286e77 100644 --- a/src/modules/m_connflood.cpp +++ b/src/modules/m_connflood.cpp @@ -1,105 +1,117 @@ -/* +------------------------------------+ - * | Inspire Internet Relay Chat Daemon | - * +------------------------------------+ +/* + * InspIRCd -- Internet Relay Chat Daemon * - * InspIRCd: (C) 2002-2007 InspIRCd Development Team - * See: http://www.inspircd.org/wiki/index.php/Credits + * Copyright (C) 2013, 2018-2021 Sadie Powell + * Copyright (C) 2012-2013 Attila Molnar + * Copyright (C) 2012 Robby + * Copyright (C) 2009 Daniel De Graaf + * Copyright (C) 2008 Robin Burchell + * Copyright (C) 2007 Dennis Friis + * Copyright (C) 2006-2007, 2010 Craig Edwards * - * This program is free but copyrighted software; see - * the file COPYING for details. + * This file is part of InspIRCd. InspIRCd is free software: you can + * redistribute it and/or modify it under the terms of the GNU General Public + * License as published by the Free Software Foundation, version 2. * - * --------------------------------------------------- + * This program is distributed in the hope that it will be useful, but WITHOUT + * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS + * FOR A PARTICULAR PURPOSE. See the GNU General Public License for more + * details. + * + * You should have received a copy of the GNU General Public License + * along with this program. If not, see . */ -#include "inspircd.h" -#include "users.h" -#include "modules.h" - -/* $ModDesc: Connection throttle */ -int conns = 0, throttled = 0; +#include "inspircd.h" class ModuleConnFlood : public Module { -private: - int seconds, maxconns, timeout, boot_wait; + private: + unsigned int seconds; + unsigned int timeout; + unsigned int boot_wait; + unsigned int conns; + unsigned int maxconns; + bool throttled; time_t first; std::string quitmsg; - ConfigReader* conf; - - -public: - ModuleConnFlood(InspIRCd* Me) : Module(Me) + static bool IsExempt(LocalUser* user) { - - InitConf(); - } + // E-lined and already banned users shouldn't be hit. + if (user->exempt || user->quitting) + return true; - virtual ~ModuleConnFlood() - { + // Users in an exempt class shouldn't be hit. + return user->GetClass() && !user->GetClass()->config->getBool("useconnflood", true); } - virtual Version GetVersion() +public: + ModuleConnFlood() + : conns(0), throttled(false) { - return Version(1,1,0,0,VF_VENDOR,API_VERSION); } - void Implements(char* List) + Version GetVersion() CXX11_OVERRIDE { - List[I_OnRehash] = List[I_OnUserRegister] = 1; + return Version("Throttles excessive connections to the server.", VF_VENDOR); } - - void InitConf() + + void ReadConfig(ConfigStatus& status) CXX11_OVERRIDE { /* read configuration variables */ - conf = new ConfigReader(ServerInstance); + ConfigTag* tag = ServerInstance->Config->ConfValue("connflood"); /* throttle configuration */ - seconds = conf->ReadInteger("connflood", "seconds", 0, true); - maxconns = conf->ReadInteger("connflood", "maxconns", 0, true); - timeout = conf->ReadInteger("connflood", "timeout", 0, true); - quitmsg = conf->ReadValue("connflood", "quitmsg", 0); + seconds = tag->getDuration("period", tag->getDuration("seconds", 30)); + maxconns = tag->getUInt("maxconns", 3); + timeout = tag->getDuration("timeout", 30); + quitmsg = tag->getString("quitmsg"); /* seconds to wait when the server just booted */ - boot_wait = conf->ReadInteger("connflood", "bootwait", 0, true); + boot_wait = tag->getDuration("bootwait", 60*2); first = ServerInstance->Time(); } - - virtual int OnUserRegister(userrec* user) + + ModResult OnUserRegister(LocalUser* user) CXX11_OVERRIDE { + if (IsExempt(user)) + return MOD_RES_PASSTHRU; + time_t next = ServerInstance->Time(); - + if ((ServerInstance->startup_time + boot_wait) > next) - return 0; - + return MOD_RES_PASSTHRU; + /* time difference between first and latest connection */ time_t tdiff = next - first; /* increase connection count */ conns++; - if (throttled == 1) + if (throttled) { if (tdiff > seconds + timeout) { /* expire throttle */ - throttled = 0; - ServerInstance->WriteOpers("*** Connection throttle deactivated"); - return 0; + throttled = false; + ServerInstance->SNO->WriteGlobalSno('a', "Connection throttle deactivated"); + return MOD_RES_PASSTHRU; } - userrec::QuitUser(ServerInstance, user, quitmsg); - return 1; + + ServerInstance->Users->QuitUser(user, quitmsg); + return MOD_RES_DENY; } if (tdiff <= seconds) { if (conns >= maxconns) { - throttled = 1; - ServerInstance->WriteOpers("*** Connection throttle activated"); - userrec::QuitUser(ServerInstance, user, quitmsg); - return 1; + throttled = true; + ServerInstance->SNO->WriteGlobalSno('a', "Connection throttle activated"); + ServerInstance->Users->QuitUser(user, quitmsg); + return MOD_RES_DENY; } } else @@ -107,14 +119,8 @@ public: conns = 1; first = next; } - return 0; + return MOD_RES_PASSTHRU; } - - virtual void OnRehash(userrec* user, const std::string ¶meter) - { - InitConf(); - } - }; MODULE_INIT(ModuleConnFlood)