summaryrefslogtreecommitdiffstats
path: root/ipa-radius-admintools/ipa-findradiusclient
diff options
context:
space:
mode:
authorKarl MacMillan <kmacmill@redhat.com>2007-12-18 17:24:37 -0500
committerKarl MacMillan <kmacmill@redhat.com>2007-12-18 17:24:37 -0500
commita6d852392138d2911cdaf98f8df22bc140b00888 (patch)
treea7da9fae8ac21945656096a24fdd559a52d5be09 /ipa-radius-admintools/ipa-findradiusclient
parent6575aa606f18f8d998dcad5552e4f770e9addcdf (diff)
downloadfreeipa-a6d852392138d2911cdaf98f8df22bc140b00888.tar.gz
freeipa-a6d852392138d2911cdaf98f8df22bc140b00888.tar.xz
freeipa-a6d852392138d2911cdaf98f8df22bc140b00888.zip
Create ipa-radius-admintools
Diffstat (limited to 'ipa-radius-admintools/ipa-findradiusclient')
-rw-r--r--ipa-radius-admintools/ipa-findradiusclient104
1 files changed, 104 insertions, 0 deletions
diff --git a/ipa-radius-admintools/ipa-findradiusclient b/ipa-radius-admintools/ipa-findradiusclient
new file mode 100644
index 000000000..ade4bd397
--- /dev/null
+++ b/ipa-radius-admintools/ipa-findradiusclient
@@ -0,0 +1,104 @@
+#! /usr/bin/python -E
+# Authors: John Dennis <jdennis@redhat.com>
+#
+# Copyright (C) 2007 Red Hat
+# see file 'COPYING' for use and warranty information
+#
+# This program is free software; you can redistribute it and/or
+# modify it under the terms of the GNU General Public License as
+# published by the Free Software Foundation; version 2 only
+#
+# This program is distributed in the hope that it will be useful,
+# but WITHOUT ANY WARRANTY; without even the implied warranty of
+# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
+# GNU General Public License for more details.
+#
+# You should have received a copy of the GNU General Public License
+# along with this program; if not, write to the Free Software
+# Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA 02111-1307 USA
+#
+
+import os
+import sys
+from optparse import OptionParser
+import ipa
+from ipa import radius_util
+import ipa.ipaclient as ipaclient
+import ipa.ipavalidate as ipavalidate
+import ipa.config
+import ipa.ipaerror
+import ipa.ipautil
+
+import xmlrpclib
+import kerberos
+import ldap
+
+#------------------------------------------------------------------------------
+
+attrs = radius_util.radius_client_ldap_attr_to_radius_attr.keys()
+
+#------------------------------------------------------------------------------
+
+def parse_options():
+ return options, args
+
+#------------------------------------------------------------------------------
+
+# FIXME
+def help_option_callback(option, opt_str, value, parser, *args, **kwargs):
+ parser.print_help()
+ print
+ print "Note: Client-IP-Address may contain wildcards, to get all clients use '*'"
+ sys.exit(0)
+
+def main():
+ opt_parser = OptionParser(add_help_option=False)
+ opt_parser.add_option("-h", "--help", action="callback", callback=help_option_callback,
+ help="detailed help information")
+
+ args = ipa.config.init_config(sys.argv)
+ options, args = opt_parser.parse_args(args)
+
+ opt_parser.set_usage("Usage: %s [options] Client-IP-Address [Client-IP-Address ...]" % (os.path.basename(sys.argv[0])))
+
+ if len(args) < 2:
+ opt_parser.error("missing Client-IP-Address(es)")
+
+ ip_addrs = args[1:]
+
+ try:
+ ipa_client = ipaclient.IPAClient()
+ radius_clients = ipa_client.find_radius_clients(ip_addrs, sattrs=attrs)
+ counter = radius_clients[0]
+ radius_clients = radius_clients[1:]
+
+ if counter == 0:
+ print "No entries found for", ip_addrs
+ return 2
+
+ for radius_client in radius_clients:
+ client_attrs = radius_client.attrList()
+ client_attrs.sort()
+
+ print "%s:" % radius_client.getValues(radius_util.radius_client_attr_to_ldap_attr['Client-IP-Address'])
+ for attr in client_attrs:
+ value = radius_client.getValues(attr)
+ print "\t%s = %s" % (radius_util.radius_client_ldap_attr_to_radius_attr[attr], value)
+
+ except xmlrpclib.Fault, f:
+ print f.faultString
+ return 1
+ except kerberos.GSSError, e:
+ print "Could not initialize GSSAPI: %s/%s" % (e[0][0][0], e[0][1][0])
+ return 1
+ except xmlrpclib.ProtocolError, e:
+ print "Unable to connect to IPA server: %s" % (e.errmsg)
+ return 1
+ except ipa.ipaerror.IPAError, e:
+ print "%s" % (e.message)
+ return 1
+
+ return 0
+
+if __name__ == "__main__":
+ sys.exit(main())