#{{PERL-EXEC}} # # BEGIN COPYRIGHT BLOCK # This Program is free software; you can redistribute it and/or modify it under # the terms of the GNU General Public License as published by the Free Software # Foundation; version 2 of the License. # # This Program is distributed in the hope that it will be useful, but WITHOUT # ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS # FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. # # You should have received a copy of the GNU General Public License along with # this Program; if not, write to the Free Software Foundation, Inc., 59 Temple # Place, Suite 330, Boston, MA 02111-1307 USA. # # In addition, as a special exception, Red Hat, Inc. gives You the additional # right to link the code of this Program with code not covered under the GNU # General Public License ("Non-GPL Code") and to distribute linked combinations # including the two, subject to the limitations in this paragraph. Non-GPL Code # permitted under this exception must only link to the code of this Program # through those well defined interfaces identified in the file named EXCEPTION # found in the source code files (the "Approved Interfaces"). The files of # Non-GPL Code may instantiate templates or use macros or inline functions from # the Approved Interfaces without causing the resulting work to be covered by # the GNU General Public License. Only Red Hat, Inc. may make changes or # additions to the list of Approved Interfaces. You must obey the GNU General # Public License in all respects for all of the Program code and other code used # in conjunction with the Program except the Non-GPL Code covered by this # exception. If you modify this file, you may extend this exception to your # version of the file, but you are not obligated to do so. If you do not wish to # provide this exception without modification, you must delete this exception # statement from your version and license this file solely under the GPL without # exception. # # # Copyright (C) 2001 Sun Microsystems, Inc. Used by permission. # Copyright (C) 2005 Red Hat, Inc. # All rights reserved. # END COPYRIGHT BLOCK # sub usage { print(STDERR "Usage: $0 [-v] -D rootdn { -w password | -w - | -j filename } \n"); print(STDERR " {-n instance}* | {-s include}* [{-x exclude}*] \n"); print(STDERR " [-m] [-M] [-u] [-C] [-N] [-U] [-a filename]\n"); print(STDERR " Opts: -D rootdn - Directory Manager\n"); print(STDERR " : -w password - Directory Manager's password\n"); print(STDERR " : -w - - Prompt for Directory Manager's password\n"); print(STDERR " : -j filename - Read Directory Manager's password from file\n"); print(STDERR " : -n instance - instance to be exported\n"); print(STDERR " : -a filename - output ldif file\n"); print(STDERR " : -s include - included suffix(es)\n"); print(STDERR " : -x exclude - excluded suffix(es)\n"); print(STDERR " : -m - minimal base64 encoding\n"); print(STDERR " : -M - output ldif is stored in multiple files\n"); print(STDERR " these files are named : _\n"); print(STDERR " by default, all instances are stored in \n"); print(STDERR " : -r - export replica\n"); print(STDERR " : -u - do not export unique id\n"); print(STDERR " : -C - use main db file only\n"); print(STDERR " : -N - suppress printing sequential number\n"); print(STDERR " : -U - output ldif is not folded\n"); print(STDERR " : -E - Decrypt encrypted data when exporting\n"); print(STDERR " : -1 - do not print version line\n"); print(STDERR " : -v - verbose\n"); } @instances = ( "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "" ); @included = ( "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "" ); @excluded = ( "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "", "" ); $maxidx = 50; $nowrap = 0; $nobase64 = 0; $noversion = 0; $nouniqueid = 0; $useid2entry = 0; $onefile = 1; $printkey = 1; $taskname = ""; $ldiffile = ""; $doreplica = 0; $prefix = "{{DS-ROOT}}"; $ldifdir = "{{LDIF-DIR}}"; $servid = "{{SERV-ID}}"; $verbose = 0; $rootdn = ""; $passwd = ""; $passwdfile = ""; $i = 0; $insti = 0; $incli = 0; $excli = 0; $decrypt_on_export = 0; while ($i <= $#ARGV) { if ( "$ARGV[$i]" eq "-n" ) { # instances $i++; if ($insti < $maxidx) { $instances[$insti] = $ARGV[$i]; $insti++; } else { &usage; exit(1); } } elsif ("$ARGV[$i]" eq "-s") { # included suffix $i++; if ($incli < $maxidx) { $included[$incli] = $ARGV[$i]; $incli++; } else { &usage; exit(1); } } elsif ("$ARGV[$i]" eq "-x") { # excluded suffix $i++; if ($excli < $maxidx) { $excluded[$excli] = $ARGV[$i]; $excli++; } else { &usage; exit(1); } } elsif ("$ARGV[$i]" eq "-a") { # ldif file $i++; $ldiffile = $ARGV[$i]; } elsif ("$ARGV[$i]" eq "-D") { # Directory Manager $i++; $rootdn = $ARGV[$i]; } elsif ("$ARGV[$i]" eq "-w") { # Directory Manager's password $i++; $passwd = $ARGV[$i]; } elsif ("$ARGV[$i]" eq "-j") { # Read Directory Manager's password from a file $i++; $passwdfile = $ARGV[$i]; } elsif ("$ARGV[$i]" eq "-M") { # multiple ldif file $onefile = 0; } elsif ("$ARGV[$i]" eq "-o") { # one ldif file $onefile = 1; } elsif ("$ARGV[$i]" eq "-u") { # no dump unique id $nouniqueid = 1; } elsif ("$ARGV[$i]" eq "-C") { # use id2entry $useid2entry = 1; } elsif ("$ARGV[$i]" eq "-N") { # does not print key $printkey = 0; } elsif ("$ARGV[$i]" eq "-r") { # export replica $doreplica = 1; } elsif ("$ARGV[$i]" eq "-m") { # no base64 $nobase64 = 1; } elsif ("$ARGV[$i]" eq "-U") { # no wrap $nowrap = 1; } elsif ("$ARGV[$i]" eq "-1") { # no version line $noversion = 1; } elsif ("$ARGV[$i]" eq "-E") { # decrypt $decrypt_on_export = 1; } elsif ("$ARGV[$i]" eq "-v") { # verbose $verbose = 1; } else { &usage; exit(1); } $i++; } if ($passwdfile ne ""){ # Open file and get the password unless (open (RPASS, $passwdfile)) { die "Error, cannot open password file $passwdfile\n"; } $passwd = ; chomp($passwd); close(RPASS); } elsif ($passwd eq "-"){ # Read the password from terminal print "Bind Password: "; # Disable console echo system("stty -echo"); # read the answer $passwd = ; # Enable console echo system("stty echo"); print "\n"; chop($passwd); # trim trailing newline } if (($instances[0] eq "" && $included[0] eq "") || $rootdn eq "" || $passwd eq "") { &usage; exit(1); } ($s, $m, $h, $dy, $mn, $yr, $wdy, $ydy, $r) = localtime(time); $mn++; $yr += 1900; $taskname = "export_${yr}_${mn}_${dy}_${h}_${m}_${s}"; $dn = "dn: cn=$taskname, cn=export, cn=tasks, cn=config\n"; $misc = "changetype: add\nobjectclass: top\nobjectclass: extensibleObject\n"; $cn = "cn: $taskname\n"; $i = 0; $be = ""; $nsinstance = ""; while ("" ne "$instances[$i]") { $nsinstance = "${nsinstance}nsInstance: $instances[$i]\n"; if ( "" eq "$be" ) { $be = "$instances[$i]"; } else { $be = "${be}-$instances[$i]"; } $i++; } $i = 0; $nsincluded = ""; while ("" ne "$included[$i]") { $nsincluded = "${nsincluded}nsIncludeSuffix: $included[$i]\n"; my ($rdn, $rest) = split(/,/, $included[$i]); my ($rest, $tmpbe) = split(/=/, $rdn); if ( "" eq "$be" ) { $be = "$tmpbe"; } else { $be = "${be}-$tmpbe"; } $i++; } $i = 0; $nsexcluded = ""; while ("" ne "$excluded[$i]") { $nsexcluded = "${nsexcluded}nsExcludeSuffix: $excluded[$i]\n"; $i++; } if ($ldiffile eq "") { if ($onefile == 0) { $ldiffile = "${ldifdir}{{SEP}}${servid}-${yr}_${mn}_${dy}_${h}_${m}_${s}.ldif"; } else { $ldiffile = "${ldifdir}{{SEP}}${servid}-${be}-${yr}_${mn}_${dy}_${h}_${m}_${s}.ldif"; } } $nsreplica = ""; if ($doreplica != 0) { $nsreplica = "nsExportReplica: true\n"; } $nsnobase64 = ""; if ($nobase64 != 0) { $nsnobase64 = "nsMinimalEncoding: true\n"; } $nsnowrap = ""; if ($nowrap != 0) { $nsnowrap = "nsNoWrap: true\n"; } $nsnoversion = ""; if ($noversion != 0) { $nsnoversion = "nsNoVersionLine: true\n"; } $nsnouniqueid = ""; if ($nouniqueid != 0) { $nsnouniqueid = "nsDumpUniqId: false\n"; } $nsuseid2entry = ""; if ($useid2entry != 0) { $nsuseid2entry = "nsUseId2Entry: true\n"; } $nsonefile = ""; if ($onefile != 0) { $nsonefile = "nsUseOneFile: true\n"; } if ($onefile == 0) { $nsonefile = "nsUseOneFile: false\n"; } $nsexportdecrypt = ""; if ($decrypt_on_export != 0) { $nsexportdecrypt = "nsExportDecrypt: true\n"; } $nsprintkey = ""; if ($printkey == 0) { $nsprintkey = "nsPrintKey: false\n"; } $nsldiffile = "nsFilename: ${ldiffile}\n"; $entry = "${dn}${misc}${cn}${nsinstance}${nsincluded}${nsexcluded}${nsreplica}${nsnobase64}${nsnowrap}${nsnoversion}${nsnouniqueid}${nsuseid2entry}${nsonefile}${nsexportdecrypt}${nsprintkey}${nsldiffile}"; $vstr = ""; if ($verbose != 0) { $vstr = "-v"; } $ENV{'PATH'} = "$prefix@ldaptool_bindir@:$prefix/usr/bin:@ldaptool_bindir@:/usr/bin"; $ENV{'LD_LIBRARY_PATH'} = "$prefix@nss_libdir@:$prefix/usr/lib:@nss_libdir@:/usr/lib"; $ENV{'SHLIB_PATH'} = "$prefix@nss_libdir@:$prefix/usr/lib:@nss_libdir@:/usr/lib"; print("Exporting to ldif file: ${ldiffile}\n"); open(FOO, "| ldapmodify @ldaptool_opts@ $vstr -h {{SERVER-NAME}} -p {{SERVER-PORT}} -D \"$rootdn\" -w \"$passwd\" -a" ); print(FOO "$entry"); close(FOO);