ban lists may now include subnets

This commit is contained in:
moneromooo-monero 2020-12-22 02:11:52 +00:00 committed by wowario
parent 295d46a1fc
commit 9e4e28b25c
No known key found for this signature in database
GPG Key ID: 24DCBE762DE9C111
2 changed files with 20 additions and 8 deletions

View File

@ -694,13 +694,19 @@ bool t_command_parser_executor::ban(const std::vector<std::string>& args)
std::ifstream ifs(ban_list_path.string());
for (std::string line; std::getline(ifs, line); )
{
const expect<epee::net_utils::network_address> parsed_addr = net::get_network_address(line, 0);
if (!parsed_addr)
auto subnet = net::get_ipv4_subnet_address(line);
if (subnet)
{
std::cout << "Invalid IP address: " << line << " - " << parsed_addr.error() << std::endl;
ret &= m_executor.ban(subnet->str(), seconds);
continue;
}
const expect<epee::net_utils::network_address> parsed_addr = net::get_network_address(line, 0);
if (parsed_addr)
{
ret &= m_executor.ban(parsed_addr->host_str(), seconds);
continue;
}
std::cout << "Invalid IP address or IPv4 subnet: " << line << std::endl;
}
return ret;
}

View File

@ -489,13 +489,19 @@ namespace nodetool
std::istringstream iss(banned_ips);
for (std::string line; std::getline(iss, line); )
{
const expect<epee::net_utils::network_address> parsed_addr = net::get_network_address(line, 0);
if (!parsed_addr)
auto subnet = net::get_ipv4_subnet_address(line);
if (subnet)
{
MERROR("Invalid IP address: " << line << " - " << parsed_addr.error());
block_subnet(*subnet, std::numeric_limits<time_t>::max());
continue;
}
const expect<epee::net_utils::network_address> parsed_addr = net::get_network_address(line, 0);
if (parsed_addr)
{
block_host(*parsed_addr, std::numeric_limits<time_t>::max());
continue;
}
MERROR("Invalid IP address or IPv4 subnet: " << line);
}
}