add travis script
[GitHub/Stricted/speedport-hybrid-php-api.git] / speedport.class.php
index 692b7c31647a148f0489ddf6ea6ea3cb9fdfa17e..bbfe6fa1f84e12d82b7c40dfaaa522b4e488a7b2 100644 (file)
@@ -11,6 +11,12 @@ class speedport {
         */
        private $challenge = '';
        
+       /**
+        * csrf_token
+        * @var string
+        */
+       private $token = '';
+       
        /**
         * hashed password
         * @var string
@@ -29,6 +35,12 @@ class speedport {
         */
        private $url = '';
        
+       /**
+        * derivedk cookie
+        * @var string
+        */
+       private $derivedk = '';
+       
        public function __construct ($password, $url = 'http://speedport.ip/') {
                $this->url = $url;
                $this->getChallenge();
@@ -52,7 +64,9 @@ class speedport {
                $fields = array('csrf_token' => 'nulltoken', 'showpw' => 0, 'challengev' => 'null');
                $data = $this->sentRequest($path, $fields);
                $data = json_decode($data['body'], true);
-               if ($data[1]['varid'] == 'challengev') {
+               $data = $this->getValues($data);
+               
+               if (isset($data['challengev']) && !empty($data['challengev'])) {
                        $this->challenge = $data[1]['varvalue'];
                }
        }
@@ -69,7 +83,8 @@ class speedport {
                $fields = array('csrf_token' => 'nulltoken', 'showpw' => 0, 'password' => $this->hash);
                $data = $this->sentRequest($path, $fields);
                $json = json_decode($data['body'], true);
-               if ($json[15]['varid'] == 'login' && $json[15]['varvalue'] == 'success') {
+               $json = $this->getValues($json);
+               if (isset($json['login']) && $json['login'] == 'success') {
                        if (isset($data['header']['Set-Cookie']) && !empty($data['header']['Set-Cookie'])) {
                                preg_match('/^.*(SessionID_R3=[a-z0-9]*).*/i', $data['header']['Set-Cookie'], $match);
                                if (isset($match[1]) && !empty($match[1])) {
@@ -79,6 +94,12 @@ class speedport {
                                        throw new Exception('unable to get the session cookie from the router');
                                }
                                
+                               // calculate derivedk
+                               $this->derivedk = hash_pbkdf2('sha1', hash('sha256', $password), substr($this->challenge, 0, 16), 1000, 32);
+                               
+                               // get the csrf_token
+                               $this->token = $this->getToken();
+                               
                                return true;
                        }
                }
@@ -98,6 +119,7 @@ class speedport {
                // reset challenge and session
                $this->challenge = '';
                $this->session = '';
+               $this->token = "";
                
                $json = json_decode($data['body'], true);
                
@@ -114,6 +136,7 @@ class speedport {
                $fields = array('csrf_token' => 'nulltoken', 'showpw' => 0, 'password' => $this->hash, 'reboot_device' => 'true');
                $cookie = 'challengev='.$this->challenge.'; '.$this->session;
                $data = $this->sentRequest($path, $fields, $cookie);
+               
                $json = json_decode($data['body'], true);
                
                return $json;
@@ -130,7 +153,11 @@ class speedport {
                if ($status == 'online' || $status == 'offline') {
                        $fields = array('csrf_token' => 'nulltoken', 'showpw' => 0, 'password' => $this->hash, 'req_connect' => $status);
                        $cookie = 'challengev='.$this->challenge.'; '.$this->session;
-                       $this->sentRequest($path, $fields, $cookie);
+                       $data = $this->sentRequest($path, $fields, $cookie);
+                       
+                       $json = json_decode($this->decrypt($data['body']), true);
+                       
+                       return $json;
                }
                else {
                        throw new Exception();
@@ -140,31 +167,6 @@ class speedport {
        /**
         * return the given json as array
         * 
-        * the following paths are known to be valid:
-        * /data/dsl.json
-        * /data/interfaces.json
-        * /data/arp.json
-        * /data/session.json
-        * /data/dhcp_client.json
-        * /data/dhcp_server.json
-        * /data/ipv6.json
-        * /data/dns.json
-        * /data/routing.json
-        * /data/igmp_proxy.json
-        * /data/igmp_snooping.json
-        * /data/wlan.json
-        * /data/module.json
-        * /data/memory.json
-        * /data/speed.json
-        * /data/webdav.json
-        * /data/bonding_client.json
-        * /data/bonding_tunnel.json
-        * /data/filterlist.json
-        * /data/bonding_tr181.json
-        * /data/letinfo.json
-        * 
-        * /data/Status.json (No login needed)
-        * 
         * @param       string  $file
         * @return      array
         */
@@ -255,22 +257,143 @@ class speedport {
                return explode("\n", $data['body']);
        }
        
+       /**
+        * reconnect LTE
+        *
+        * @return      array
+        */
+       public function reconnectLte () {
+               $path = 'data/modules.json';
+               $fields = array('csrf_token' => $this->token, 'lte_reconn' => '1');
+               $fields = $this->encrypt($fields);
+               $cookie = 'challengev='.$this->challenge.'; '.$this->session;
+               $data = $this->sentRequest($path, $fields, $cookie, 2);
+               $json = json_decode($data['body'], true);
+               
+               return $json;
+       }
+       
+       /**
+        * reset the router to Factory Default
+        * not tested
+        *
+        * @return      array
+        */
+       public function resetToFactoryDefault () {
+               $path = 'data/resetAllSetting.json';
+               $fields = array('csrf_token' => 'nulltoken', 'showpw' => 0, 'password' => $this->hash, 'reset_all' => 'true');
+               $cookie = 'challengev='.$this->challenge.'; '.$this->session;
+               $data = $this->sentRequest($path, $fields, $cookie);
+               $json = json_decode($data['body'], true);
+               
+               return $json;
+       }
+       
+       
+       /**
+        * check if firmware is actual
+        * 
+        * @return      array
+        */
+       public function checkFirmware () {
+               $path = 'data/checkfirmware.json';
+               $fields = array('checkfirmware' => 'true');
+               $cookie = 'challengev='.$this->challenge.'; '.$this->session;
+               $data = $this->sentRequest($path, $fields, $cookie);
+               
+               if (empty($data['body'])) {
+                       throw new Exception('unable to get checkfirmware data');
+               }
+               
+               $json = json_decode($data['body'], true);
+               
+               return $json;
+       }
+       
+       /**
+        * decrypt data from router
+        * 
+        * @param       string  $data
+        * @return      array
+        */
+       private function decrypt ($data) {
+               require_once 'CryptLib/CryptLib.php';
+               $factory = new CryptLib\Cipher\Factory();
+               $aes = $factory->getBlockCipher('rijndael-128');
+               
+               $iv = hex2bin(substr($this->challenge, 16, 16));
+               $adata = hex2bin(substr($this->challenge, 32, 16));
+               $dkey = hex2bin($this->derivedk);
+               $enc = hex2bin($data);
+               
+               $aes->setKey($dkey);
+               $mode = $factory->getMode('ccm', $aes, $iv, [ 'adata' => $adata, 'lSize' => 7]);
+               
+               $mode->decrypt($enc);
+               
+               return $mode->finish();
+       }
+
+       /**
+        * decrypt data for the router
+        * 
+        * @param       array   $data
+        * @return      string
+        */
+       private function encrypt ($data) {
+               require_once 'CryptLib/CryptLib.php';
+               $factory = new CryptLib\Cipher\Factory();
+               $aes = $factory->getBlockCipher('rijndael-128');
+               
+               $iv = hex2bin(substr($this->challenge, 16, 16));
+               $adata = hex2bin(substr($this->challenge, 32, 16));
+               $dkey = hex2bin($this->derivedk);
+               
+               $aes->setKey($dkey);
+               $mode = $factory->getMode('ccm', $aes, $iv, [ 'adata' => $adata, 'lSize' => 7]);
+               $mode->encrypt(http_build_query($data));
+               
+               return bin2hex($mode->finish());
+       }
+       
+       /**
+        * get the values from array
+        * 
+        * @param       array   $array
+        * @return      array
+        */
+       private function getValues($array) {
+               $data = array();
+               foreach ($array as $item) {
+                       $data[$item['varid']] = $item['varvalue'];
+               }
+               
+               return $data;
+       }
+       
        /**
         * sends the request to router
         * 
         * @param       string  $path
-        * @param       array   $fields
+        * @param       mixed   $fields
         * @param       string  $cookie
+        * @param       integer $count
         * @return      array
         */
-       private function sentRequest ($path, $fields = array(), $cookie = '') {
+       private function sentRequest ($path, $fields, $cookie = '', $count = 0) {
                $url = $this->url.$path;
                $ch = curl_init();
                curl_setopt($ch, CURLOPT_URL, $url);
                
                if (!empty($fields)) {
-                       curl_setopt($ch, CURLOPT_POST, count($fields));
-                       curl_setopt($ch, CURLOPT_POSTFIELDS, http_build_query($fields));
+                       if (is_array($fields)) {
+                               curl_setopt($ch, CURLOPT_POST, count($fields));
+                               curl_setopt($ch, CURLOPT_POSTFIELDS, http_build_query($fields));
+                       }
+                       else {
+                               curl_setopt($ch, CURLOPT_POST, $count);
+                               curl_setopt($ch, CURLOPT_POSTFIELDS, $fields);
+                       }
                }
                
                if (!empty($cookie)) {
@@ -293,6 +416,7 @@ class speedport {
                curl_close($ch);
                
                // fix invalid json
+               
                $body = preg_replace("/(\r\n)|(\r)/", "\n", $body);
                $body = preg_replace('/\'/i', '"', $body);
                $body = preg_replace("/\[\s+\]/i", '[ {} ]', $body);
@@ -301,6 +425,32 @@ class speedport {
                return array('header' => $this->parse_headers($header), 'body' => $body);
        }
        
+       /**
+        * get the csrf_token
+        * 
+        * @return      string
+        */
+       private function getToken () {
+               $path = 'html/content/overview/index.html?lang=de';
+               $fields = array();
+               $cookie = 'challengev='.$this->challenge.'; '.$this->session;
+               $data = $this->sentRequest($path, $fields, $cookie);
+               
+               if (empty($data['body'])) {
+                       throw new Exception('unable to get csrf_token');
+               }
+               
+               $a = explode('csrf_token = "', $data['body']);
+               $a = explode('";', $a[1]);
+               
+               if (isset($a[0]) && !empty($a[0])) {
+                       return $a[0];
+               }
+               else {
+                       throw new Exception('unable to get csrf_token');
+               }
+       }
+       
        /**
         * parse the curl return header into an array
         * 
@@ -311,7 +461,8 @@ class speedport {
                $headers = array();
                $header_text = substr($response, 0, strpos($response, "\r\n\r\n"));
                
-               foreach (explode("\r\n", $header_text) as $i => $line) {
+               $header_text = explode("\r\n", $header_text);
+               foreach ($header_text as $i => $line) {
                        if ($i === 0) {
                                $headers['http_code'] = $line;
                        }
@@ -323,4 +474,4 @@ class speedport {
                
                return $headers;
        }
-}
\ No newline at end of file
+}