#!/bin/bash <. LICENSE PAM_DIR="$(cd $(dirname $0) && pwd)" PAM_CRON="/etc/cron.d/pamela" PAM_SCRIPT="$PAM_DIR/$(basename $0)" PAM_LOG="$PAM_DIR/pamela.log" REGISTER= IF='eth0' OUT='http://yourserver.com/pamela/upload.php' USER='' PASSWORD='' function usage { echo "Usage: pamela-scanner [OPTIONS] -i INTERFACE Interface to arp-scan. Defaults to [$IF]. -o URL The url of the pamela upload script (including /upload.php). Defaults to [$OUT]. -r Register the script in cron every 2 minutes -q Unregister the script from cron -u Http-auth user. Defaults to [$USER]. -p Http-auth password. Defaults to [$PASSWORD]. -h Shows help This pamela scanner is an arp-scanner that uploads mac addresses in your local lan on a webserver where you get a visual representation of those mac addresses present. Multiple people on multiple lans can run this or any other scanner together against the same web server, where all results will be agregated." } function check_if_root { if [ "$(id -ru)" != "0" ] then echo "Must be root to run pamela-scanner" exit 1 fi } function check_if_arpscan_installed { if [ -z "$(which arp-scan)" ] then echo "ENOARPSCAN: Could not find arp-scan, please install it" fi } function register { check_if_root check_if_arpscan_installed echo "Registering pamela in cron: $PAM_CRON" echo "*/2 * * * * root [ -x \"$PAM_SCRIPT\" ] && \"$PAM_SCRIPT\" -i \"$IF\" -o \"$OUT\" -u \"$USER\" -p \"$PASSWORD\" >> \"$PAM_LOG\"" > "$PAM_CRON" } function unregister { check_if_root echo "Unregistering pamela in cron: $PAM_CRON" rm "$PAM_CRON" } function parse_params { TEMP=$(getopt -o 'hrqi:o:s:u:p:-n' "pamela arp scanner" -- "$@") if [ $? != 0 ] ; then echo "Could not parse parameters..." >&2 ; exit 1 ; fi eval set "$TEMP" while true do shift; [ -z "$1" ] && break; case "$1" in -i) IF="$2"; shift;; -o) OUT="$2"; shift;; -s) SLEEP="$2"; shift;; -u) USER="$2"; shift;; -p) PASSWORD="$2"; shift;; -r) REGISTER='r';; -q) unregister; exit 0;; -h|'-?') usage; exit 1;; *) echo "Unknown param: [$1]"; usage; exit 1;; esac done # Register only after parsing all args if [ -n "$REGISTER" ]; then register exit 0 fi } function scan_and_upload { echo $(date)" scanning..." DATA="" NUM_DATA=0 for M in $(arp-scan -R -i 10 --interface "$IF" --localnet | awk '{ print $2 }' | grep :.*: | sort | uniq) do [ -n "$DATA" ] && DATA="$DATA,$M" || DATA="$M"; let "NUM_DATA=NUM_DATA+1" done POST="data=$DATA" echo wget "$OUT" -O - --quiet --post-data "$POST" --user "$USER" --password "$PASSWORD" || echo "wget error: $?" RESULT=$(wget "$OUT" -O - --post-data "$POST" --user "$USER" --password "$PASSWORD") if [ -n "$RESULT" ] then echo Error uploading results: echo "$RESULT" fi echo $(date)" Uploaded $NUM_DATA mac addresses..." } parse_params $@ check_if_root check_if_arpscan_installed scan_and_upload