Logging.php 2.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109
  1. <?php
  2. /**
  3. * Logging functionality for webserver.
  4. *
  5. * This includes web server specific code to log some information.
  6. */
  7. declare(strict_types=1);
  8. namespace PhpMyAdmin;
  9. use const LOG_AUTHPRIV;
  10. use const LOG_NDELAY;
  11. use const LOG_PID;
  12. use const LOG_WARNING;
  13. use function closelog;
  14. use function date;
  15. use function error_log;
  16. use function function_exists;
  17. use function openlog;
  18. use function syslog;
  19. /**
  20. * Misc logging functions
  21. */
  22. class Logging
  23. {
  24. /**
  25. * Get authentication logging destination
  26. *
  27. * @return string
  28. */
  29. public static function getLogDestination()
  30. {
  31. $log_file = $GLOBALS['PMA_Config']->get('AuthLog');
  32. /* Autodetect */
  33. if ($log_file === 'auto') {
  34. if (function_exists('syslog')) {
  35. $log_file = 'syslog';
  36. } elseif (function_exists('error_log')) {
  37. $log_file = 'php';
  38. } else {
  39. $log_file = '';
  40. }
  41. }
  42. return $log_file;
  43. }
  44. /**
  45. * Generate log message for authentication logging
  46. *
  47. * @param string $user user name
  48. * @param string $status status message
  49. *
  50. * @return string
  51. */
  52. public static function getLogMessage($user, $status)
  53. {
  54. if ($status === 'ok') {
  55. return 'user authenticated: ' . $user . ' from ' . Core::getIp();
  56. }
  57. return 'user denied: ' . $user . ' (' . $status . ') from ' . Core::getIp();
  58. }
  59. /**
  60. * Logs user information to webserver logs.
  61. *
  62. * @param string $user user name
  63. * @param string $status status message
  64. *
  65. * @return void
  66. */
  67. public static function logUser($user, $status = 'ok')
  68. {
  69. if (function_exists('apache_note')) {
  70. apache_note('userID', $user);
  71. apache_note('userStatus', $status);
  72. }
  73. /* Do not log successful authentications */
  74. if (! $GLOBALS['PMA_Config']->get('AuthLogSuccess') && $status === 'ok') {
  75. return;
  76. }
  77. $log_file = self::getLogDestination();
  78. if (empty($log_file)) {
  79. return;
  80. }
  81. $message = self::getLogMessage($user, $status);
  82. if ($log_file === 'syslog') {
  83. if (function_exists('syslog')) {
  84. @openlog('phpMyAdmin', LOG_NDELAY | LOG_PID, LOG_AUTHPRIV);
  85. @syslog(LOG_WARNING, $message);
  86. closelog();
  87. }
  88. } elseif ($log_file === 'php') {
  89. @error_log($message);
  90. } elseif ($log_file === 'sapi') {
  91. @error_log($message, 4);
  92. } else {
  93. @error_log(
  94. date('M d H:i:s') . ' phpmyadmin: ' . $message . "\n",
  95. 3,
  96. $log_file
  97. );
  98. }
  99. }
  100. }