r2537 - also retrieve static MAC records for smaller Cisco switches
[racktables] / gateways / switchvlans / cisco.connector
1 #!/bin/sh
2
3 [ $# = 7 ] || exit 1
4
5 ENDPOINT=$1
6 HW=$2
7 SW=$3
8 COMMAND=$4
9 FILE1=$5
10 FILE2=$6
11 FILE3=$7
12 MYDIR=`dirname $0`
13 ostype=`uname -s`
14 case "$ostype" in
15 Linux)
16 SEDFLAG='-r'
17 ;;
18 FreeBSD)
19 SEDFLAG='-E'
20 ;;
21 *)
22 exit 7
23 esac
24
25
26 prepare_connect_commands()
27 {
28 [ $# = 1 ] || exit 2
29 local skip=yes cval found=no
30 while read line; do
31 if [ "$skip" = "yes" -a "$line" = "# S-T-A-R-T" ]; then
32 skip=no
33 continue
34 fi
35 if [ "$skip" = "no" -a "$line" = "# S-T-O-P" ]; then
36 skip=yes
37 continue
38 fi
39 [ "$skip" = "yes" ] && continue
40 # Allow comments.
41 [ -z "${line###*}" ] && continue
42
43 # First endpoint string/regexp match is sufficient for us.
44 cval=`echo $line | cut -s -d' ' -f1`
45 if [ -z "${1##$cval}" ]; then
46 found=yes
47 # Don't be too smart at the moment, just be able to handle
48 # the known-good case ;-)
49
50 username=`echo $line | cut -s -d' ' -f5`
51 [ "$username" != "-" ] && echo $username > $CMDS1
52 echo $line | cut -s -d' ' -f6 >> $CMDS1
53 echo en >> $CMDS1
54 echo $line | cut -s -d' ' -f7 >> $CMDS1
55 # same for ports
56 cat "$CMDS1" > "$CMDS2"
57 # ...and MAC addresses
58 cat "$CMDS1" > "$CMDS3"
59 break
60 fi
61 done < "$MYDIR/cisco.secrets.php"
62 [ "$found" = "yes" ] && return
63 echo "E!connector could not find credentials for $1" >> "$FILE2"
64 exit 3
65 }
66
67 prepare_fetch_commands()
68 {
69 printf 'term len 0\nshow vlan brief\nquit\n' >> $CMDS1
70 printf 'term len 0\nshow int status\nquit\n' >> $CMDS2
71 printf 'term len 0\nshow mac-address-table\nquit\n' >> $CMDS3
72 }
73
74 prepare_push_commands()
75 {
76 printf 'term len 0\nconf t\n' >> $CMDS1
77 while read portname vlanid; do
78 if [ -z "$portname" -o -z "$vlanid" ]; then
79 echo "E!could not parse input in connector" >> "$FILE2"
80 continue
81 fi
82 if [ "$vlanid" = "trunk" ]; then
83 echo "E!trunking is not allowed" >> "$FILE2"
84 continue
85 fi
86 printf "int $portname\n" >> $CMDS1
87 if [ $vlanid -lt 4096 ]; then
88 printf "no description\n" >> $CMDS1
89 else
90 printf "descr VLAN$vlanid\n" >> $CMDS1
91 fi
92 "$MYDIR/vlandecoder" $vlanid >> $CMDS1
93 printf "exit\n" >> $CMDS1
94 echo "C!64!$portname!$ENDPOINT!$vlanid" >> "$FILE2"
95 done < "$FILE1"
96 printf "end\nwri\nquit\n" >> $CMDS1
97 }
98
99 do_fetch()
100 {
101 local tmp_ifname tmp_ifdescr tmp_status tmp_vlanid
102 nc $ENDPOINT 23 < $CMDS1 > "$OUT1"
103 if fgrep -q '% Bad passwords' "$OUT1"; then
104 echo "E!password mismatch while trying to connect to $ENDPOINT" >> "$FILE2"
105 exit 4
106 fi
107 nc $ENDPOINT 23 < $CMDS2 > "$OUT2a"
108 nc $ENDPOINT 23 < $CMDS3 > "$OUT3"
109 cat "$OUT1" | fgrep ' active ' | sed $SEDFLAG 's/^([[:digit:]]+)[[:space:]]+(.+)[[:space:]]+active (.*)/\1=\2/;s/[[:space:]]+$//' > $FILE1
110 # Add trunk data, if appropriate.
111 [ -s "$MYDIR/vlantable" ] && cat "$MYDIR/vlantable" >> $FILE1
112
113 # First extract structured info about VLAN membership, then map
114 # special descriptions into VLAN IDs.
115 cat "$OUT2a" | egrep '^(Et|Fa|Gi|Te)' | sed $SEDFLAG 's/^([A-Za-z/0-9]+) +(.*) +(connected|notconnect|disabled|err-disabled|monitoring|suspended) +/\1~\2%\3%/;s/%(trunk|routed|([0-9]+)) .*$/%\1/;s/%(monitoring|suspended)%/%connected%/;s/%(err-disabled)%/%disabled%/;s/ +%/%/;s/~/%/' > $OUT2b
116 while read line; do
117 tmp_ifname=`echo $line | cut -d% -f1`
118 tmp_ifdescr=`echo $line | cut -d% -f2`
119 tmp_status=`echo $line | cut -d% -f3`
120 tmp_vlanid=`echo $line | cut -d% -f4`
121 # If the port has a description pretending to be a martian VLAN, map it onto the VLAN ID.
122 if [ -n "$tmp_ifdescr" -a -z "${tmp_ifdescr##VLAN*}" ]; then
123 tmp_vlanid=${tmp_ifdescr##VLAN}
124 fi
125 echo "$tmp_ifname=$tmp_status,$tmp_vlanid" >> $FILE2
126 done < $OUT2b
127 # FIXME
128 # Here we need to distinguish between different platforms and IOS version,
129 # cause they produce output in different formats.
130 if [ "$SW" = "Cisco+IOS+12.0" ]; then
131 cat "$OUT3" | tr -d '\r' | fgrep Dynamic | sed $SEDFLAG 's/ +Dynamic +([0-9]+) +(.+)/=\1@\2/;s/FastEthernet/Fa/;s/GigabitEthernet/Gi/' > "$FILE3"
132 elif [ "$SW" = "Cisco+IOS+12.2" -o "$SW" = "Cisco+IOS+12.1" ]; then
133 case "$HW" in
134 Cisco+Catalyst+35*|Cisco+Catalyst+37*|Cisco+Catalyst+29*)
135 cat "$OUT3" | tr -d '\r' | egrep 'STATIC|DYNAMIC' | \
136 sed $SEDFLAG 's/ +([0-9]+|All) +(.+) (DYNAMIC|STATIC) +(.+)/\2=\1@\4/;s/FastEthernet/Fa/;s/GigabitEthernet/Gi/' > "$FILE3"
137 ;;
138 Cisco+Catalyst+49*)
139 cat "$OUT3" | tr -d '\r' | fgrep dynamic | \
140 sed $SEDFLAG 's/ +([0-9]+) +([0-9a-f\.]+) dynamic ip +([a-zA-Z/0-9]+) */\2=\1@\3/;s/FastEthernet/Fa/;s/GigabitEthernet/Gi/;s/TenGi/Te/' > "$FILE3"
141 ;;
142 esac
143 fi
144 }
145
146 do_push()
147 {
148 nc $ENDPOINT 23 < $CMDS1 >/dev/null
149 }
150
151 remove_tempfiles()
152 {
153 [ -f "$CMDS1" ] && rm -f "$CMDS1"
154 [ -f "$CMDS2" ] && rm -f "$CMDS2"
155 [ -f "$CMDS3" ] && rm -f "$CMDS3"
156 [ -f "$OUT1" ] && rm -f "$OUT1"
157 [ -f "$OUT2a" ] && rm -f "$OUT2a"
158 [ -f "$OUT2b" ] && rm -f "$OUT2b"
159 [ -f "$OUT3" ] && rm -f "$OUT3"
160 }
161
162 create_tempfiles()
163 {
164 # This one is for VLAN list.
165 CMDS1=`mktemp /tmp/cisco.connector.XXXX`
166 # And this one holds ports list...
167 CMDS2=`mktemp /tmp/cisco.connector.XXXX`
168 # ...and one more for MAC address table
169 CMDS3=`mktemp /tmp/cisco.connector.XXXX`
170 # The following are buffers to hold the whole switch output
171 # before filtering.
172 OUT1=`mktemp /tmp/cisco.connector.XXXX`
173 OUT2a=`mktemp /tmp/cisco.connector.XXXX`
174 OUT2b=`mktemp /tmp/cisco.connector.XXXX`
175 OUT3=`mktemp /tmp/cisco.connector.XXXX`
176 [ -f "$CMDS1" -a -f "$CMDS2" -a -f "$CMDS3" -a -f "$OUT1" -a -f "$OUT2a" -a -f "$OUT2b" -a -f "$OUT3" ] && return
177 echo "E!connector cannot create tempfiles" >> "$FILE2"
178 remove_tempfiles
179 exit 5
180 }
181
182 case $COMMAND in
183 fetch)
184 create_tempfiles
185 prepare_connect_commands $ENDPOINT
186 prepare_fetch_commands
187 do_fetch
188 remove_tempfiles
189 ;;
190 push)
191 create_tempfiles
192 prepare_connect_commands $ENDPOINT
193 prepare_push_commands
194 do_push
195 remove_tempfiles
196 ;;
197 *)
198 echo "E!unknown command for connector" >> "$FILE2"
199 exit 6
200 ;;
201 esac
202
203 exit 0