diff options
Diffstat (limited to 'src/usr/local/www/diag_resetstate.php')
-rw-r--r-- | src/usr/local/www/diag_resetstate.php | 143 |
1 files changed, 143 insertions, 0 deletions
diff --git a/src/usr/local/www/diag_resetstate.php b/src/usr/local/www/diag_resetstate.php new file mode 100644 index 0000000..07d3575 --- /dev/null +++ b/src/usr/local/www/diag_resetstate.php @@ -0,0 +1,143 @@ +<?php +/* $Id$ */ +/* + diag_resetstate.php + Copyright (C) 2013-2015 Electric Sheep Fencing, LP + Copyright (C) 2004-2009 Scott Ullrich + All rights reserved. + + originally part of m0n0wall (http://m0n0.ch/wall) + Copyright (C) 2003-2004 Manuel Kasper <mk@neon1.net>. + All rights reserved. + + Redistribution and use in source and binary forms, with or without + modification, are permitted provided that the following conditions are met: + + 1. Redistributions of source code must retain the above copyright notice, + this list of conditions and the following disclaimer. + + 2. Redistributions in binary form must reproduce the above copyright + notice, this list of conditions and the following disclaimer in the + documentation and/or other materials provided with the distribution. + + THIS SOFTWARE IS PROVIDED ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, + INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY + AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE + AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, + OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF + SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS + INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN + CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) + ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE + POSSIBILITY OF SUCH DAMAGE. +*/ + +/* + pfSense_MODULE: filter +*/ + +##|+PRIV +##|*IDENT=page-diagnostics-resetstate +##|*NAME=Diagnostics: Reset state page +##|*DESCR=Allow access to the 'Diagnostics: Reset state' page. +##|*MATCH=diag_resetstate.php* +##|-PRIV + +require("guiconfig.inc"); +require_once("filter.inc"); + +if ($_POST) { + $savemsg = ""; + if ($_POST['statetable']) { + filter_flush_state_table(); + if ($savemsg) { + $savemsg .= " "; + } + $savemsg .= gettext("The state table has been flushed successfully."); + } + if ($_POST['sourcetracking']) { + mwexec("/sbin/pfctl -F Sources"); + if ($savemsg) { + $savemsg .= " <br />"; + } + $savemsg .= gettext("The source tracking table has been flushed successfully."); + } +} + +$pgtitle = array(gettext("Diagnostics"), gettext("Reset state")); +include("head.inc"); + +?> +<body link="#0000CC" vlink="#0000CC" alink="#0000CC"> +<?php include("fbegin.inc"); ?> +<?php if ($input_errors) print_input_errors($input_errors); ?> +<?php if ($savemsg) print_info_box($savemsg); ?> +<form action="diag_resetstate.php" method="post" name="iform" id="iform"> +<table width="100%" border="0" cellpadding="0" cellspacing="0" summary="reset states"> + <tr> + <td> + <?php + $tab_array = array(); + $tab_array[] = array(gettext("States"), false, "diag_dump_states.php"); + if (isset($config['system']['lb_use_sticky'])) { + $tab_array[] = array(gettext("Source Tracking"), false, "diag_dump_states_sources.php"); + } + $tab_array[] = array(gettext("Reset States"), true, "diag_resetstate.php"); + display_top_tabs($tab_array); + ?> + </td> + </tr> + <tr> + <td class="tabcont"> + <table width="100%" border="0" cellpadding="6" cellspacing="0" summary="main area"> + <tr> + <td width="22%" valign="top" class="vtable"> </td> + <td width="78%" class="vtable"> <p> + <input name="statetable" type="checkbox" id="statetable" value="yes" checked="checked" /> + <strong><?= gettext("Firewall state table"); ?></strong><br /> + <span class="vexpl"><br /> + <?=gettext("Resetting the state tables will remove all entries from " . + "the corresponding tables. This means that all open connections " . + "will be broken and will have to be re-established. This " . + "may be necessary after making substantial changes to the " . + "firewall and/or NAT rules, especially if there are IP protocol " . + "mappings (e.g. for PPTP or IPv6) with open connections."); ?><br /> + <br /> + </span><span class="vexpl"><?=gettext("The firewall will normally leave " . + "the state tables intact when changing rules."); ?><br /> + <br /> + <?=gettext("NOTE: If you reset the firewall state table, the browser " . + "session may appear to be hung after clicking "Reset". " . + "Simply refresh the page to continue."); ?></span></p> + </td> + </tr> + <?php if (isset($config['system']['lb_use_sticky'])): ?> + <tr> + <td width="22%" valign="top" class="vtable"> </td> + <td width="78%" class="vtable"><p> + <input name="sourcetracking" type="checkbox" id="sourcetracking" value="yes" checked="checked" /> + <strong><?= gettext("Firewall Source Tracking"); ?></strong><br /> + <span class="vexpl"><br /> + <?=gettext("Resetting the source tracking table will remove all source/destination associations. " . + "This means that the \"sticky\" source/destination association " . + "will be cleared for all clients."); ?><br /> + <br /> + </span><span class="vexpl"><?=gettext("This does not clear active connection states, only source tracking."); ?><br /> + </p> + </td> + </tr> + <?php endif; ?> + <tr> + <td width="22%" valign="top"> </td> + <td width="78%"> + <input name="Submit" type="submit" class="formbtn" value="<?=gettext("Reset"); ?>" /> + </td> + </tr> + </table> + </td> + </tr> +</table> +</form> +<?php include("fend.inc"); ?> +</body> +</html> |