acme.sh/dnsapi/dns_infoblox.sh

103 lines
3.3 KiB
Bash
Raw Permalink Normal View History

2017-06-08 11:35:27 +00:00
#!/usr/bin/env sh
2017-03-23 19:16:31 +00:00
2017-03-24 01:20:04 +00:00
## Infoblox API integration by Jason Keller and Elijah Tenai
##
## Report any bugs via https://github.com/jasonkeller/acme.sh
2017-03-23 19:16:31 +00:00
dns_infoblox_add() {
## Nothing to see here, just some housekeeping
fulldomain=$1
txtvalue=$2
baseurlnObject="https://$Infoblox_Server/wapi/v2.2.2/record:txt?name=$fulldomain&text=$txtvalue&view=$Infoblox_View"
2017-03-23 19:16:31 +00:00
_info "Using Infoblox API"
_debug fulldomain "$fulldomain"
_debug txtvalue "$txtvalue"
## Check for the credentials
if [ -z "$Infoblox_Creds" ] || [ -z "$Infoblox_Server" ]; then
Infoblox_Creds=""
Infoblox_Server=""
_err "You didn't specify the credentials, server or infoblox view yet (Infoblox_Creds, Infoblox_Server and Infoblox_View)."
_err "Please set them via EXPORT ([username:password], [ip or hostname]) and try again."
2017-03-23 19:16:31 +00:00
return 1
fi
if [ -z "$Infoblox_View" ]; then
Infoblox_View="default"
fi
2017-03-23 19:16:31 +00:00
## Save the credentials to the account file
_saveaccountconf Infoblox_Creds "$Infoblox_Creds"
_saveaccountconf Infoblox_Server "$Infoblox_Server"
2017-06-14 21:52:48 +00:00
_saveaccountconf Infoblox_View "$Infoblox_View"
2017-03-23 19:16:31 +00:00
## Base64 encode the credentials
2017-03-23 20:06:37 +00:00
Infoblox_CredsEncoded=$(printf "%b" "$Infoblox_Creds" | _base64)
2017-03-23 19:16:31 +00:00
## Construct the HTTP Authorization header
export _H1="Accept-Language:en-US"
export _H2="Authorization: Basic $Infoblox_CredsEncoded"
## Add the challenge record to the Infoblox grid member
2017-07-08 06:12:31 +00:00
result="$(_post "" "$baseurlnObject" "" "POST")"
2017-03-23 19:16:31 +00:00
## Let's see if we get something intelligible back from the unit
2017-07-08 06:12:31 +00:00
if [ "$(echo "$result" | _egrep_o "record:txt/.*:.*/$Infoblox_View")" ]; then
2017-03-23 19:16:31 +00:00
_info "Successfully created the txt record"
return 0
else
_err "Error encountered during record addition"
_err "$result"
return 1
fi
}
dns_infoblox_rm() {
## Nothing to see here, just some housekeeping
fulldomain=$1
txtvalue=$2
_info "Using Infoblox API"
_debug fulldomain "$fulldomain"
_debug txtvalue "$txtvalue"
## Base64 encode the credentials
2017-07-08 06:12:31 +00:00
Infoblox_CredsEncoded="$(printf "%b" "$Infoblox_Creds" | _base64)"
2017-03-23 19:16:31 +00:00
## Construct the HTTP Authorization header
export _H1="Accept-Language:en-US"
export _H2="Authorization: Basic $Infoblox_CredsEncoded"
## Does the record exist? Let's check.
baseurlnObject="https://$Infoblox_Server/wapi/v2.2.2/record:txt?name=$fulldomain&text=$txtvalue&view=$Infoblox_View&_return_type=xml-pretty"
2017-07-08 06:12:31 +00:00
result="$(_get "$baseurlnObject")"
2017-03-23 19:16:31 +00:00
## Let's see if we get something intelligible back from the grid
2017-07-08 06:12:31 +00:00
if [ "$(echo "$result" | _egrep_o "record:txt/.*:.*/$Infoblox_View")" ]; then
2017-03-23 19:16:31 +00:00
## Extract the object reference
2017-07-08 06:12:31 +00:00
objRef="$(printf "%b" "$result" | _egrep_o "record:txt/.*:.*/$Infoblox_View")"
2017-03-23 19:16:31 +00:00
objRmUrl="https://$Infoblox_Server/wapi/v2.2.2/$objRef"
## Delete them! All the stale records!
2017-07-08 06:12:31 +00:00
rmResult="$(_post "" "$objRmUrl" "" "DELETE")"
2017-03-23 19:16:31 +00:00
## Let's see if that worked
2017-07-08 06:12:31 +00:00
if [ "$(echo "$rmResult" | _egrep_o "record:txt/.*:.*/$Infoblox_View")" ]; then
2017-03-23 19:16:31 +00:00
_info "Successfully deleted $objRef"
return 0
else
_err "Error occurred during txt record delete"
_err "$rmResult"
return 1
fi
else
_err "Record to delete didn't match an existing record"
_err "$result"
return 1
fi
}
2017-06-17 09:28:49 +00:00
#################### Private functions below ##################################