Skip to content
Projects
Groups
Snippets
Help
Loading...
Sign in
Toggle navigation
J
jumpserver
Project
Project
Details
Activity
Cycle Analytics
Repository
Repository
Files
Commits
Branches
Tags
Contributors
Graph
Compare
Charts
Issues
0
Issues
0
List
Board
Labels
Milestones
Merge Requests
0
Merge Requests
0
CI / CD
CI / CD
Pipelines
Jobs
Schedules
Charts
Wiki
Wiki
Snippets
Snippets
Members
Members
Collapse sidebar
Close sidebar
Activity
Graph
Charts
Create a new issue
Jobs
Commits
Issue Boards
Open sidebar
ops
jumpserver
Commits
6c2b7829
Commit
6c2b7829
authored
Dec 29, 2014
by
ibuler
Browse files
Options
Browse Files
Download
Email Patches
Plain Diff
支持ssh-key
parent
cefc1757
Show whitespace changes
Inline
Side-by-side
Showing
2 changed files
with
17 additions
and
5 deletions
+17
-5
connect.py
connect.py
+16
-5
models.py
jasset/models.py
+1
-0
No files found.
connect.py
View file @
6c2b7829
...
@@ -36,6 +36,8 @@ CURRENT_DIR = os.path.abspath('.')
...
@@ -36,6 +36,8 @@ CURRENT_DIR = os.path.abspath('.')
CONF
=
ConfigParser
()
CONF
=
ConfigParser
()
CONF
.
read
(
os
.
path
.
join
(
CURRENT_DIR
,
'jumpserver.conf'
))
CONF
.
read
(
os
.
path
.
join
(
CURRENT_DIR
,
'jumpserver.conf'
))
LOG_DIR
=
os
.
path
.
join
(
CURRENT_DIR
,
'logs'
)
LOG_DIR
=
os
.
path
.
join
(
CURRENT_DIR
,
'logs'
)
SSH_KEY_DIR
=
os
.
path
.
join
(
CURRENT_DIR
,
'keys'
)
SERVER_KEY_DIR
=
os
.
path
.
join
(
SSH_KEY_DIR
,
'server'
)
KEY
=
CONF
.
get
(
'web'
,
'key'
)
KEY
=
CONF
.
get
(
'web'
,
'key'
)
LOGIN_NAME
=
getpass
.
getuser
()
LOGIN_NAME
=
getpass
.
getuser
()
#LOGIN_NAME = os.getlogin()
#LOGIN_NAME = os.getlogin()
...
@@ -195,10 +197,13 @@ def get_connect_item(username, ip):
...
@@ -195,10 +197,13 @@ def get_connect_item(username, ip):
red_print
(
"Host
%
s isn't exist."
%
ip
)
red_print
(
"Host
%
s isn't exist."
%
ip
)
return
return
if
asset
.
ldap_enable
:
user
=
User
.
objects
.
get
(
username
=
username
)
user
=
User
.
objects
.
get
(
username
=
username
)
if
asset
.
ldap_enable
:
ldap_pwd
=
cryptor
.
decrypt
(
user
.
ldap_pwd
)
ldap_pwd
=
cryptor
.
decrypt
(
user
.
ldap_pwd
)
return
username
,
ldap_pwd
,
ip
,
port
return
username
,
ldap_pwd
,
ip
,
port
elif
asset
.
ssh_key_enable
:
ssh_key_pwd
=
cryptor
.
decrypt
(
user
.
ssh_key_pwd
)
return
username
,
ssh_key_pwd
,
ip
,
port
else
:
else
:
perms
=
asset
.
permission_set
.
all
()
perms
=
asset
.
permission_set
.
all
()
perm
=
perms
[
0
]
perm
=
perms
[
0
]
...
@@ -229,7 +234,7 @@ def verify_connect(username, part_ip):
...
@@ -229,7 +234,7 @@ def verify_connect(username, part_ip):
red_print
(
'No Permission or No host.'
)
red_print
(
'No Permission or No host.'
)
else
:
else
:
try
:
try
:
username
,
password
,
host
,
port
=
get_connect_item
(
username
,
ip_matched
[
0
])
username
,
password
,
host
,
port
,
key_filename
=
get_connect_item
(
username
,
ip_matched
[
0
])
except
(
ObjectDoesNotExist
,
IndexError
):
except
(
ObjectDoesNotExist
,
IndexError
):
red_print
(
'Get get_connect_item Error.'
)
red_print
(
'Get get_connect_item Error.'
)
else
:
else
:
...
@@ -258,13 +263,19 @@ def connect(username, password, host, port, login_name):
...
@@ -258,13 +263,19 @@ def connect(username, password, host, port, login_name):
"""
"""
ps1
=
"PS1='[
\
u@
%
s
\
W]
\
$ '
\n
"
%
host
ps1
=
"PS1='[
\
u@
%
s
\
W]
\
$ '
\n
"
%
host
login_msg
=
"clear;echo -e '
\\
033[32mLogin
%
s done. Enjoy it.
\\
033[0m'
\n
"
%
host
login_msg
=
"clear;echo -e '
\\
033[32mLogin
%
s done. Enjoy it.
\\
033[0m'
\n
"
%
host
user_key_file
=
os
.
path
.
join
(
SERVER_KEY_DIR
,
username
)
if
os
.
path
.
isfile
(
user_key_file
):
key_filename
=
user_key_file
else
:
key_filename
=
None
# Make a ssh connection
# Make a ssh connection
ssh
=
paramiko
.
SSHClient
()
ssh
=
paramiko
.
SSHClient
()
ssh
.
load_system_host_keys
()
ssh
.
load_system_host_keys
()
ssh
.
set_missing_host_key_policy
(
paramiko
.
AutoAddPolicy
())
ssh
.
set_missing_host_key_policy
(
paramiko
.
AutoAddPolicy
())
try
:
try
:
ssh
.
connect
(
host
,
port
=
port
,
username
=
username
,
password
=
password
,
compress
=
True
)
ssh
.
connect
(
host
,
port
=
port
,
username
=
username
,
password
=
password
,
key_filename
=
key_filename
,
compress
=
True
)
except
paramiko
.
ssh_exception
.
AuthenticationException
:
except
paramiko
.
ssh_exception
.
AuthenticationException
:
alert_print
(
'Host Password Error, Please Correct it.'
)
alert_print
(
'Host Password Error, Please Correct it.'
)
except
socket
.
error
:
except
socket
.
error
:
...
@@ -272,9 +283,9 @@ def connect(username, password, host, port, login_name):
...
@@ -272,9 +283,9 @@ def connect(username, password, host, port, login_name):
# Make a channel and set windows size
# Make a channel and set windows size
global
channel
global
channel
channel
=
ssh
.
invoke_shell
()
win_size
=
get_win_size
()
win_size
=
get_win_size
()
channel
.
resize_pty
(
height
=
win_size
[
0
],
width
=
win_size
[
1
])
channel
=
ssh
.
invoke_shell
(
height
=
win_size
[
0
],
width
=
win_size
[
1
])
#channel.resize_pty(height=win_size[0], width=win_size[1])
try
:
try
:
signal
.
signal
(
signal
.
SIGWINCH
,
set_win_size
)
signal
.
signal
(
signal
.
SIGWINCH
,
set_win_size
)
except
:
except
:
...
...
jasset/models.py
View file @
6c2b7829
...
@@ -16,6 +16,7 @@ class Asset(models.Model):
...
@@ -16,6 +16,7 @@ class Asset(models.Model):
idc
=
models
.
ForeignKey
(
IDC
)
idc
=
models
.
ForeignKey
(
IDC
)
group
=
models
.
ManyToManyField
(
Group
)
group
=
models
.
ManyToManyField
(
Group
)
ldap_enable
=
models
.
BooleanField
(
default
=
True
)
ldap_enable
=
models
.
BooleanField
(
default
=
True
)
ssh_key_enable
=
models
.
BooleanField
(
default
=
False
)
username_common
=
models
.
CharField
(
max_length
=
80
,
blank
=
True
,
null
=
True
)
username_common
=
models
.
CharField
(
max_length
=
80
,
blank
=
True
,
null
=
True
)
password_common
=
models
.
CharField
(
max_length
=
160
,
blank
=
True
,
null
=
True
)
password_common
=
models
.
CharField
(
max_length
=
160
,
blank
=
True
,
null
=
True
)
username_super
=
models
.
CharField
(
max_length
=
80
,
blank
=
True
,
null
=
True
)
username_super
=
models
.
CharField
(
max_length
=
80
,
blank
=
True
,
null
=
True
)
...
...
Write
Preview
Markdown
is supported
0%
Try again
or
attach a new file
Attach a file
Cancel
You are about to add
0
people
to the discussion. Proceed with caution.
Finish editing this message first!
Cancel
Please
register
or
sign in
to comment