r3036 - reloadDictionary(): act off target release name (or nothing)
[racktables] / upgrade.php
CommitLineData
6dc745d2 1<?php
fbbb74fb 2
90b96ff6
DO
3$relnotes = array
4(
2c9fde3a
DO
5 '0.17.0' => "LDAP options have been moved to LDAP_options array. This means, that if you were<br>" .
6 "using LDAP authentication for users in version 0.16.x, it will break right after<br>" .
aca5a846 7 "upgrade to 0.17.0. To get things working again, adjust existing secret.php file<br>" .
2c9fde3a 8 "according to secret-sample.php file provided with 0.17.0 release.<br><br>" .
204284ba 9 "Another change is the addition of support for file uploads. Files are stored<br>" .
90b96ff6 10 "in the database. There are several settings in php.ini which you may need to modify:<br>" .
4114697d
DO
11 "<ul><li>file_uploads - needs to be On</li>" .
12 "<li>upload_max_filesize - max size for uploaded files</li>" .
a476909e 13 "<li>post_max_size - max size of all form data submitted via POST (including files)</li></ul><br>" .
b82cce3f 14 "Local user accounts used to have 'enabled' flag, which allowed individual blocking and<br>" .
a476909e
DO
15 "unblocking of each. This flag was dropped in favor of existing mean of access<br>" .
16 "setup (RackCode). An unconditional denying rule is automatically added into RackCode<br>" .
17 "for such blocked account, so the effective security policy remains the same.<br>",
90b96ff6
DO
18);
19
fbbb74fb
DO
20// At the moment we assume, that for any two releases we can
21// sequentally execute all batches, that separate them, and
22// nothing will break. If this changes one day, the function
23// below will have to generate smarter upgrade paths, while
24// the upper layer will remain the same.
25// Returning an empty array means that no upgrade is necessary.
4114697d 26// Returning NULL indicates an error.
fbbb74fb
DO
27function getDBUpgradePath ($v1, $v2)
28{
a6f83a72
DO
29 $versionhistory = array
30 (
b3f866fc 31 '0.16.4',
64347dcf 32 '0.16.5',
90b96ff6 33 '0.16.6',
30d0a2a3 34 '0.17.0',
4563cecb 35 '0.17.1',
7b1a3a72 36 '0.17.2',
9e51318b 37 '0.17.3',
a6f83a72 38 );
120e9ddd
DO
39 if (!in_array ($v1, $versionhistory) or !in_array ($v2, $versionhistory))
40 return NULL;
fbbb74fb 41 $skip = TRUE;
4114697d 42 $path = NULL;
fbbb74fb
DO
43 // Now collect all versions > $v1 and <= $v2
44 foreach ($versionhistory as $v)
45 {
4114697d 46 if ($skip and $v == $v1)
fbbb74fb
DO
47 {
48 $skip = FALSE;
4114697d 49 $path = array();
fbbb74fb
DO
50 continue;
51 }
52 if ($skip)
53 continue;
54 $path[] = $v;
55 if ($v == $v2)
56 break;
57 }
58 return $path;
59}
60
90b96ff6
DO
61// Upgrade batches are named exactly as the release where they first appear.
62// That is simple, but seems sufficient for beginning.
fbbb74fb
DO
63function executeUpgradeBatch ($batchid)
64{
65 $query = array();
ca3d68bd 66 global $dbxlink;
fbbb74fb
DO
67 switch ($batchid)
68 {
64347dcf
DO
69 case '0.16.5':
70 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('IPV4_TREE_SHOW_USAGE','yes','string','no','no','Show address usage in IPv4 tree')";
71 $query[] = "update Config set varvalue = '0.16.5' where varname = 'DB_VERSION'";
72 break;
90b96ff6
DO
73 case '0.16.6':
74 $query[] = "update Config set varvalue = '0.16.6' where varname = 'DB_VERSION'";
75 break;
30d0a2a3 76 case '0.17.0':
e1ae3fb4
AD
77 // create tables for storing files (requires InnoDB support)
78 if (!isInnoDBSupported ())
79 {
5d168fde 80 showFailure ("Cannot upgrade because InnoDB tables are not supported by your MySQL server. See the README for details.", __FILE__);
f3c50166 81 die;
e1ae3fb4 82 }
f76c4197
DY
83
84 $query[] = "alter table Chapter change chapter_no id int(10) unsigned NOT NULL auto_increment";
85 $query[] = "alter table Chapter change chapter_name name char(128) NOT NULL";
86 $query[] = "alter table Chapter drop key chapter_name";
87 $query[] = "alter table Chapter add UNIQUE KEY name (name)";
88 $query[] = "alter table Attribute change attr_id id int(10) unsigned NOT NULL auto_increment";
89 $query[] = "alter table Attribute change attr_type type enum('string','uint','float','dict') default NULL";
90 $query[] = "alter table Attribute change attr_name name char(64) default NULL";
91 $query[] = "alter table Attribute drop key attr_name";
92 $query[] = "alter table Attribute add UNIQUE KEY name (name)";
93 $query[] = "alter table AttributeMap change chapter_no chapter_id int(10) unsigned NOT NULL";
94 $query[] = "alter table Dictionary change chapter_no chapter_id int(10) unsigned NOT NULL";
3fb336f6 95 // Only after the above call it is Ok to use reloadDictionary()
ca3d68bd 96 $query = array_merge ($query, reloadDictionary ($batchid));
f3c50166 97 // schema changes for file management
e1ae3fb4
AD
98 $query[] = "
99CREATE TABLE `File` (
100 `id` int(10) unsigned NOT NULL auto_increment,
101 `name` char(255) NOT NULL,
102 `type` char(255) NOT NULL,
103 `size` int(10) unsigned NOT NULL,
104 `ctime` datetime NOT NULL,
105 `mtime` datetime NOT NULL,
106 `atime` datetime NOT NULL,
107 `contents` longblob NOT NULL,
108 `comment` text,
13edfa1c
AD
109 PRIMARY KEY (`id`),
110 UNIQUE KEY `name` (`name`)
e1ae3fb4
AD
111) ENGINE=InnoDB";
112 $query[] = "
113CREATE TABLE `FileLink` (
114 `id` int(10) unsigned NOT NULL auto_increment,
115 `file_id` int(10) unsigned NOT NULL,
116 `entity_type` enum('ipv4net','ipv4rspool','ipv4vs','object','rack','user') NOT NULL default 'object',
117 `entity_id` int(10) NOT NULL,
118 PRIMARY KEY (`id`),
af721881 119 UNIQUE KEY `FileLink-unique` (`file_id`,`entity_type`,`entity_id`),
e1ae3fb4
AD
120 KEY `FileLink-file_id` (`file_id`),
121 CONSTRAINT `FileLink-File_fkey` FOREIGN KEY (`file_id`) REFERENCES `File` (`id`) ON DELETE CASCADE ON UPDATE CASCADE
122) ENGINE=InnoDB";
123 $query[] = "ALTER TABLE TagStorage MODIFY COLUMN target_realm enum('file','ipv4net','ipv4rspool','ipv4vs','object','rack','user') NOT NULL default 'object'";
f3c50166 124
f76c4197 125 $query[] = "INSERT INTO `Chapter` (`id`, `sticky`, `name`) VALUES (24,'no','network security models')";
9730d09f 126 $query[] = "INSERT INTO `Chapter` (`id`, `sticky`, `name`) VALUES (25,'no','wireless models')";
f76c4197
DY
127 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,1,0)";
128 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,2,24)";
129 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,3,0)";
130 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,5,0)";
131 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,14,0)";
132 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,16,0)";
133 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,17,0)";
134 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,18,0)";
135 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,20,0)";
136 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,21,0)";
137 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,22,0)";
138 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (798,24,0)";
9730d09f
DO
139 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (965,1,0)";
140 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (965,3,0)";
141 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (965,2,25)";
706ce117
DO
142 $query[] = 'alter table IPBonds rename to IPv4Allocation';
143 $query[] = 'alter table PortForwarding rename to IPv4NAT';
144 $query[] = 'alter table IPRanges rename to IPv4Network';
145 $query[] = 'alter table IPAddress rename to IPv4Address';
146 $query[] = 'alter table IPLoadBalancer rename to IPv4LB';
4114697d 147 $query[] = 'alter table IPRSPool rename to IPv4RSPool';
706ce117 148 $query[] = 'alter table IPRealServer rename to IPv4RS';
4114697d 149 $query[] = 'alter table IPVirtualService rename to IPv4VS';
120e9ddd
DO
150 $query[] = "alter table TagStorage change column target_realm entity_realm enum('file','ipv4net','ipv4vs','ipv4rspool','object','rack','user') NOT NULL default 'object'";
151 $query[] = 'alter table TagStorage change column target_id entity_id int(10) unsigned NOT NULL';
152 $query[] = 'alter table TagStorage drop key entity_tag';
153 $query[] = 'alter table TagStorage drop key target_id';
154 $query[] = 'alter table TagStorage add UNIQUE KEY `entity_tag` (`entity_realm`,`entity_id`,`tag_id`)';
155 $query[] = 'alter table TagStorage add KEY `entity_id` (`entity_id`)';
37e59768
DO
156 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('PREVIEW_TEXT_MAXCHARS','10240','uint','yes','no','Max chars for text file preview')";
157 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('PREVIEW_TEXT_ROWS','25','uint','yes','no','Rows for text file preview')";
158 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('PREVIEW_TEXT_COLS','80','uint','yes','no','Columns for text file preview')";
159 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('PREVIEW_IMAGE_MAXPXS','320','uint','yes','no','Max pixels per axis for image file preview')";
f3d274bf 160 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('VENDOR_SIEVE','','string','yes','no','Vendor sieve configuration')";
073ed463
DO
161 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('IPV4LB_LISTSRC','{\$typeid_4}','string','yes','no','List source: IPv4 load balancers')";
162 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('IPV4OBJ_LISTSRC','{\$typeid_4} or {\$typeid_7} or {\$typeid_8} or {\$typeid_12} or {\$typeid_445} or {\$typeid_447}','string','yes','no','List source: IPv4-enabled objects')";
163 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('IPV4NAT_LISTSRC','{\$typeid_4} or {\$typeid_7} or {\$typeid_8}','string','yes','no','List source: IPv4 NAT performers')";
164 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('ASSETWARN_LISTSRC','{\$typeid_4} or {\$typeid_7} or {\$typeid_8}','string','yes','no','List source: object, for which asset tag should be set')";
165 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('NAMEWARN_LISTSRC','{\$typeid_4} or {\$typeid_7} or {\$typeid_8}','string','yes','no','List source: object, for which common name should be set')";
f5883ec1 166 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('RACKS_PER_ROW','12','unit','yes','no','Racks per row')";
590e1281 167 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_PREDICATE_SIEVE','','string','yes','no','Predicate sieve regex(7)')";
5496c89f
DO
168 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_DEFAULT_ANDOR','or','string','no','no','Default list filter boolean operation (or/and)')";
169 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_SUGGEST_ANDOR','yes','string','no','no','Suggest and/or selector in list filter')";
170 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_SUGGEST_TAGS','yes','string','no','no','Suggest tags in list filter')";
171 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_SUGGEST_PREDICATES','yes','string','no','no','Suggest predicates in list filter')";
172 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('FILTER_SUGGEST_EXTRA','no','string','no','no','Suggest extra expression in list filter')";
529eac25
DO
173 $query[] = "delete from Config where varname = 'USER_AUTH_SRC'";
174 $query[] = "delete from Config where varname = 'COOKIE_TTL'";
175 $query[] = "delete from Config where varname = 'rtwidth_0'";
176 $query[] = "delete from Config where varname = 'rtwidth_1'";
177 $query[] = "delete from Config where varname = 'rtwidth_2'";
c6bc0ac5
DO
178 $query[] = "delete from Config where varname = 'NAMEFUL_OBJTYPES'";
179 $query[] = "delete from Config where varname = 'REQUIRE_ASSET_TAG_FOR'";
180 $query[] = "delete from Config where varname = 'IPV4_PERFORMERS'";
181 $query[] = "delete from Config where varname = 'NATV4_PERFORMERS'";
dbb33805 182 $query[] = "alter table TagTree add column valid_realm set('file','ipv4net','ipv4vs','ipv4rspool','object','rack','user') not null default 'file,ipv4net,ipv4vs,ipv4rspool,object,rack,user' after parent_id";
a476909e
DO
183 $result = $dbxlink->query ("select user_id, user_name, user_realname from UserAccount where user_enabled = 'no'");
184 while ($row = $result->fetch (PDO::FETCH_ASSOC))
185 $query[] = "update Script set script_text = concat('deny {\$userid_${row['user_id']}} # ${row['user_name']} (${row['user_realname']})\n', script_text) where script_name = 'RackCode'";
186 $query[] = "update Script set script_text = NULL where script_name = 'RackCodeCache'";
187 unset ($result);
79b8ad1e 188 $query[] = "alter table UserAccount drop column user_enabled";
f76c4197 189
10bac82a
DY
190 $query[] = "CREATE TABLE RackRow ( id int(10) unsigned NOT NULL auto_increment, name char(255) NOT NULL, PRIMARY KEY (`id`) ) ENGINE=MyISAM";
191
9f14a7ef
DY
192 $result = $dbxlink->query ("select dict_key, dict_value from Dictionary where chapter_no = 3");
193 while($row = $result->fetch(PDO::FETCH_NUM))
10bac82a 194 $query[] = "insert into RackRow set id=${row[0]}, name='${row[1]}'";
ee286837 195 unset ($result);
f76c4197 196 $query[] = "delete from Dictionary where chapter_id = 3";
c4d0dc30 197 $query[] = "delete from Chapter where id = 3";
9133d2c5
DO
198 $query[] = "
199CREATE TABLE `LDAPCache` (
200 `presented_username` char(64) NOT NULL,
201 `successful_hash` char(40) NOT NULL,
202 `first_success` timestamp NOT NULL default CURRENT_TIMESTAMP,
203 `last_retry` timestamp NOT NULL default '0000-00-00 00:00:00',
204 `displayed_name` char(128) default NULL,
205 `memberof` text,
206 UNIQUE KEY `presented_username` (`presented_username`),
207 KEY `scanidx` (`presented_username`,`successful_hash`)
208) ENGINE=InnoDB;";
3827da34 209 $query[] = "alter table UserAccount modify column user_password_hash char(40) NULL";
aa9a0fb4
DO
210 $query[] = 'ALTER TABLE Rack DROP COLUMN deleted';
211 $query[] = 'ALTER TABLE RackHistory DROP COLUMN deleted';
212 $query[] = 'ALTER TABLE RackObject DROP COLUMN deleted';
213 $query[] = 'ALTER TABLE RackObjectHistory DROP COLUMN deleted';
2fb9d280
DO
214 // Can't be added straight due to many duplicates, even in "dictbase" data.
215 $result = $dbxlink->query ('SELECT type1, type2, count(*) - 1 as excess FROM PortCompat GROUP BY type1, type2 HAVING excess > 0');
216 while ($row = $result->fetch (PDO::FETCH_ASSOC))
217 $query[] = "DELETE FROM PortCompat WHERE type1 = ${row['type1']} AND type2 = ${row['type2']} limit ${row['excess']}";
218 unset ($result);
219 $query[] = 'ALTER TABLE PortCompat DROP KEY type1';
67d8a969 220 $query[] = 'ALTER TABLE PortCompat ADD UNIQUE `type1_2` (type1, type2)';
f76c4197
DY
221 $query[] = "UPDATE Config SET varvalue = '0.17.0' WHERE varname = 'DB_VERSION'";
222
b3f866fc 223 break;
4563cecb 224 case '0.17.1':
8b200a9c 225 $query[] = "ALTER TABLE Dictionary DROP KEY `chap_to_key`";
ca3d68bd 226 $query = array_merge ($query, reloadDictionary ($batchid));
4563cecb
DO
227 // Token set has changed, so the cache isn't valid any more.
228 $query[] = "UPDATE Script SET script_text = NULL WHERE script_name = 'RackCodeCache'";
229 $query[] = "UPDATE Config SET varvalue = '0.17.1' WHERE varname = 'DB_VERSION'";
7d4ea62b 230 break;
7b1a3a72 231 case '0.17.2':
7b1a3a72 232 $query[] = "INSERT INTO `Chapter` (`id`, `sticky`, `name`) VALUES (26,'no','fibre channel switch models')";
ca3d68bd 233 $query = array_merge ($query, reloadDictionary ($batchid));
7c537f33 234 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (1055,2,26)";
49b605d9 235 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('DEFAULT_SNMP_COMMUNITY','public','string','no','no','Default SNMP Community string')";
29c3a4d8
DO
236 // wipe irrelevant records (ticket:250)
237 $query[] = "DELETE FROM TagStorage WHERE entity_realm = 'file' AND entity_id NOT IN (SELECT id FROM File)";
f06fe423 238 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('IPV4_ENABLE_KNIGHT','yes','string','no','no','Enable IPv4 knight feature')";
99ab184f 239 $query[] = "ALTER TABLE IPv4Network ADD COLUMN comment text AFTER name";
5163cd3a 240 $query[] = "ALTER TABLE Port ADD INDEX comment (reservation_comment)";
029a14bc
DO
241 $query[] = "ALTER TABLE Port DROP KEY l2address"; // UNIQUE
242 $query[] = "ALTER TABLE Port ADD KEY (l2address)"; // not UNIQUE
948666cc
DO
243 $query[] = "ALTER TABLE Port DROP KEY object_id";
244 $query[] = "ALTER TABLE Port ADD UNIQUE KEY per_object (object_id, name, type)";
74aee2dc
DO
245 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (20,1083)";
246 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (21,1083)";
247 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (1077,1077)";
248 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (1083,20)";
249 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (1083,21)";
250 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (1083,1083)";
1c4830dc 251 $query[] = "INSERT INTO PortCompat (type1, type2) VALUES (1087,1087)";
50e02490
DO
252 $query[] = "INSERT INTO `Chapter` (`id`, `sticky`, `name`) VALUES (27,'no','PDU models')";
253 $query[] = "INSERT INTO `AttributeMap` (`objtype_id`, `attr_id`, `chapter_id`) VALUES (2,2,27)";
7b1a3a72
AD
254 $query[] = "UPDATE Config SET varvalue = '0.17.2' WHERE varname = 'DB_VERSION'";
255 break;
9e51318b
DO
256 case '0.17.3':
257 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('TAGS_TOPLIST_SIZE','50','uint','yes','no','Tags top list size')";
258 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('TAGS_QUICKLIST_SIZE','20','uint','no','no','Tags quick list size')";
259 $query[] = "INSERT INTO `Config` (varname, varvalue, vartype, emptyok, is_hidden, description) VALUES ('TAGS_QUICKLIST_THRESHOLD','50','uint','yes','no','Tags quick list threshold')";
7028a42c
DO
260 $query[] = "ALTER TABLE AttributeMap MODIFY COLUMN chapter_id int(10) unsigned NULL'";
261 $query[] = "UPDATE AttributeMap SET chapter_id = NULL WHERE attr_id IN (SELECT id FROM Attribute WHERE type != 'dict')";
a013838b
DO
262 // ticket:239
263 $query[] = 'UPDATE AttributeValue SET uint_value = 1018 WHERE uint_value = 731 AND attr_id IN (SELECT attr_id FROM AttributeMap WHERE chapter_id = 12)';
264 $query[] = 'DELETE FROM Dictionary WHERE dict_key = 731';
9e51318b
DO
265 $query[] = "UPDATE Config SET varvalue = '0.17.3' WHERE varname = 'DB_VERSION'";
266 break;
fbbb74fb 267 default:
5d168fde 268 showFailure ("executeUpgradeBatch () failed, because batch '${batchid}' isn't defined", __FILE__);
fbbb74fb
DO
269 die;
270 break;
271 }
fbbb74fb 272 $failures = array();
4114697d 273 echo "<tr><th>Executing batch '${batchid}'</th><td>";
fbbb74fb
DO
274 foreach ($query as $q)
275 {
276 $result = $dbxlink->query ($q);
4114697d 277 if ($result == NULL)
758fe24c 278 {
758fe24c
DO
279 $errorInfo = $dbxlink->errorInfo();
280 $failures[] = array ($q, $errorInfo[2]);
281 }
fbbb74fb 282 }
fbbb74fb 283 if (!count ($failures))
4114697d 284 echo "<strong><font color=green>done</font></strong>";
fbbb74fb
DO
285 else
286 {
4114697d 287 echo "<strong><font color=red>The following queries failed:</font></strong><br><pre>";
fbbb74fb
DO
288 foreach ($failures as $f)
289 {
290 list ($q, $i) = $f;
4114697d 291 echo "${q} -- ${i}\n";
fbbb74fb 292 }
4114697d 293 echo "</pre>";
fbbb74fb 294 }
4114697d 295 echo '</td></tr>';
fbbb74fb
DO
296}
297
298// ******************************************************************
299//
300// Execution starts here
301//
302// ******************************************************************
303
fff18256
DO
304$root = (empty($_SERVER['HTTPS']) or $_SERVER['HTTPS'] == 'off') ? 'http://' : 'https://';
305$root .= isset ($_SERVER['HTTP_HOST']) ? $_SERVER['HTTP_HOST'] : ($_SERVER['SERVER_NAME'].($_SERVER['SERVER_PORT']=='80'?'':$_SERVER['SERVER_PORT']));
306$root .= strtr (dirname ($_SERVER['PHP_SELF']), '\\', '/');
54c2a7a8
DO
307if (substr ($root, -1) != '/')
308 $root .= '/';
fbbb74fb 309
5d168fde
DO
310// a clone of showError() to drop dependency on interface.php
311function showFailure ($info = '', $location = 'N/A')
312{
313 global $root;
314 if (preg_match ('/\.php$/', $location))
315 $location = basename ($location);
316 elseif ($location != 'N/A')
317 $location = $location . '()';
318 echo "<div class=msg_error>An error has occured in [${location}]. ";
319 if (empty ($info))
320 echo 'No additional information is available.';
321 else
322 echo "Additional information:<br><p>\n<pre>\n${info}\n</pre></p>";
323 echo "This failure is most probably fatal.<br></div>\n";
324}
325
326require_once 'inc/config.php'; // for CODE_VERSION
327require_once 'inc/database.php'; // for getDatabaseVersion()
3fb336f6 328require_once 'inc/dictionary.php';
5d168fde
DO
329// Enforce default value for now, releases prior to 0.17.0 didn't support 'httpd' auth source.
330$user_auth_src = 'database';
fbbb74fb 331
80138748
DO
332if (file_exists ('inc/secret.php'))
333 require_once 'inc/secret.php';
fbbb74fb 334else
80138748
DO
335 die ("Database connection parameters are read from inc/secret.php file, " .
336 "which cannot be found.\nCopy provided inc/secret-sample.php to " .
337 "inc/secret.php and modify to your setup.\n\nThen reload the page.");
fbbb74fb
DO
338
339try
340{
341 $dbxlink = new PDO ($pdo_dsn, $db_username, $db_password);
342}
343catch (PDOException $e)
344{
345 die ("Database connection failed:\n\n" . $e->getMessage());
346}
347
fbbb74fb
DO
348// Now we need to be sure that the current user is the administrator.
349// The rest doesn't matter within this context.
fbbb74fb 350
120e9ddd 351function authenticate_admin ($username, $password)
a1f3710a 352{
43c7895d 353 global $dbxlink;
93bdb7ba 354 $hash = sha1 ($password);
120e9ddd 355 $query = "select count(*) from UserAccount where user_id = 1 and user_name = '${username}' and user_password_hash = '${hash}'";
a1f3710a
DO
356 if (($result = $dbxlink->query ($query)) == NULL)
357 die ('SQL query failed in ' . __FUNCTION__);
120e9ddd 358 $rows = $result->fetchAll (PDO::FETCH_NUM);
43c7895d 359 return $rows[0][0] == 1;
a1f3710a
DO
360}
361
204284ba 362switch ($user_auth_src)
99ee5479 363{
120e9ddd
DO
364 case 'database':
365 case 'ldap': // authenticate against DB as well
366 if
367 (
368 !isset ($_SERVER['PHP_AUTH_USER']) or
369 !strlen ($_SERVER['PHP_AUTH_USER']) or
370 !isset ($_SERVER['PHP_AUTH_PW']) or
371 !strlen ($_SERVER['PHP_AUTH_PW']) or
372 !authenticate_admin (escapeString ($_SERVER['PHP_AUTH_USER']), escapeString ($_SERVER['PHP_AUTH_PW']))
373 )
374 {
375 header ('WWW-Authenticate: Basic realm="RackTables upgrade"');
376 header ('HTTP/1.0 401 Unauthorized');
33bbd712 377 showFailure ('You must be authenticated as an administrator to complete the upgrade.', __FILE__);
120e9ddd
DO
378 die;
379 }
380 break; // cleared
381 case 'httpd':
382 if
383 (
384 !isset ($_SERVER['REMOTE_USER']) or
385 !strlen ($_SERVER['REMOTE_USER'])
386 )
387 {
33bbd712 388 showFailure ('System misconfiguration. The web-server didn\'t authenticate the user, although ought to do.');
120e9ddd
DO
389 die;
390 }
391 break; // cleared
392 default:
33bbd712 393 showFailure ('authentication source misconfiguration', __FILE__);
120e9ddd 394 die;
99ee5479 395}
fbbb74fb
DO
396
397$dbver = getDatabaseVersion();
4114697d
DO
398echo '<table border=1>';
399echo "<tr><th>Current status</th><td>Data version: ${dbver}<br>Code version: " . CODE_VERSION . "</td></tr>\n";
400
401$path = getDBUpgradePath ($dbver, CODE_VERSION);
402if ($path === NULL)
758fe24c 403{
4114697d 404 echo "<tr><th>Upgrade path</th><td><font color=red>not found</font></td></tr>\n";
d74ae24c
DO
405 echo "<tr><th>Summary</th><td>Check README for more information. RackTables releases prior to 0.16.4 ";
406 echo "must be upgraded to 0.16.4 first.</td></tr>\n";
758fe24c 407}
4114697d 408else
5f4027b8 409{
4114697d
DO
410 if (!count ($path))
411 echo "<tr><th>Summary</th><td>Come back later.</td></tr>\n";
412 else
413 {
414 echo "<tr><th>Upgrade path</th><td>${dbver} &rarr; " . implode (' &rarr; ', $path) . "</td></tr>\n";
415 foreach ($path as $batchid)
416 {
417 executeUpgradeBatch ($batchid);
418 if (isset ($relnotes[$batchid]))
419 echo "<tr><th>Release notes for ${batchid}</th><td>" . $relnotes[$batchid] . "</td></tr>\n";
420 }
421 echo "<tr><th>Summary</th><td>Upgrade complete, it is Ok to <a href='${root}'>enter</a> the system.</td></tr>\n";
422 }
5f4027b8 423}
4114697d 424echo '</table>';
fbbb74fb
DO
425
426?>