The main Bubble source repository. Contains the Bubble API server, the web UI, documentation and utilities. https://getbubblenow.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 

81 lines
3.5 KiB

  1. #!/bin/bash
  2. #
  3. # Copyright (c) 2020 Bubble, Inc. All rights reserved. For personal (non-commercial) use, see license: https://getbubblenow.com/bubble-license/
  4. #
  5. LOG=/tmp/bubble.mitmdump_monitor.log
  6. function die {
  7. echo 1>&2 "${1}"
  8. log "${1}"
  9. exit 1
  10. }
  11. function log {
  12. echo "$(date): ${1}" >> ${LOG}
  13. }
  14. BUBBLE_MITM_MARKER=/home/bubble/.mitmdump_monitor
  15. ROOT_KEY_MARKER=/usr/share/bubble/mitmdump_monitor
  16. MITMDUMP_PID_FILE=/home/mitmproxy/mitmdump.pid
  17. MAX_MITM_PCT_MEM=18
  18. # Start with MITM proxy turned off
  19. if [[ ! -f ${BUBBLE_MITM_MARKER} ]] ; then
  20. echo -n off > ${BUBBLE_MITM_MARKER} && chown bubble ${BUBBLE_MITM_MARKER} || log "Error writing 'off' to ${ROOT_KEY_MARKER}"
  21. fi
  22. if [[ ! -f ${ROOT_KEY_MARKER} ]] ; then
  23. sleep 1s
  24. mkdir -p "$(dirname ${ROOT_KEY_MARKER})" && chmod 755 "$(dirname ${ROOT_KEY_MARKER})" || log "Error creating or setting permissions on ${ROOT_KEY_MARKER}"
  25. echo -n on > ${ROOT_KEY_MARKER} && touch ${ROOT_KEY_MARKER} && chmod 644 ${ROOT_KEY_MARKER} || log "Error writing 'on' to ${ROOT_KEY_MARKER}"
  26. fi
  27. function ensureMitmOn {
  28. log "Flushing PREROUTING before enabling MITM services"
  29. iptables -F PREROUTING -t nat || log "Error flushing port forwarding when enabling MITM services"
  30. log "Enabling MITM port forwarding on TCP port 80 -> 8888"
  31. iptables -I PREROUTING 1 -t nat -p tcp --dport 80 -j REDIRECT --to-ports 8888 || log "Error enabling MITM port forwarding 80 -> 8888"
  32. log "Enabling MITM port forwarding on TCP port 443 -> 8888"
  33. iptables -I PREROUTING 1 -t nat -p tcp --dport 443 -j REDIRECT --to-ports 8888 || log "Error enabling MITM port forwarding 443 -> 8888"
  34. echo -n on > ${ROOT_KEY_MARKER}
  35. }
  36. function ensureMitmOff {
  37. log "Flushing PREROUTING to disable MITM services"
  38. iptables -F PREROUTING -t nat || log "Error flushing port forwarding when disabling MITM services"
  39. echo -n off > ${ROOT_KEY_MARKER} || log "Error writing 'off' to ${ROOT_KEY_MARKER}"
  40. }
  41. log "Watching marker file ${BUBBLE_MITM_MARKER} ..."
  42. sleep 2s && touch ${BUBBLE_MITM_MARKER} || log "Error touching ${BUBBLE_MITM_MARKER}" # first time through, always check and set on/off state
  43. while : ; do
  44. if [[ $(stat -c %Y ${BUBBLE_MITM_MARKER}) -gt $(stat -c %Y ${ROOT_KEY_MARKER}) ]] ; then
  45. if [[ ! -z "$(cmp -b ${ROOT_KEY_MARKER} ${BUBBLE_MITM_MARKER})" ]] ; then
  46. if [[ "$(cat ${BUBBLE_MITM_MARKER} | tr -d [[:space:]])" == "on" ]] ; then
  47. ensureMitmOn
  48. elif [[ "$(cat ${BUBBLE_MITM_MARKER} | tr -d [[:space:]])" == "off" ]] ; then
  49. ensureMitmOff
  50. else
  51. log "Error: marker file ${BUBBLE_MITM_MARKER} contained invalid value: $(cat ${BUBBLE_MITM_MARKER} | head -c 5)"
  52. fi
  53. fi
  54. fi
  55. # Check process memory usage, restart mitmdump if memory goes above max % allowed
  56. if [[ -f ${MITMDUMP_PID_FILE} && -s ${MITMDUMP_PID_FILE} ]] ; then
  57. MITM_PID="$(cat ${MITMDUMP_PID_FILE})"
  58. PCT_MEM="$(ps q ${MITM_PID} -o %mem --no-headers | tr -d [[:space:]] | cut -f1 -d. | sed 's/[^0-9]*//g')"
  59. # log "Info: mitmdump pid ${MITM_PID} using ${PCT_MEM}% of memory"
  60. if [[ ! -z "${PCT_MEM}" ]] ; then
  61. if [[ ${PCT_MEM} -ge ${MAX_MITM_PCT_MEM} ]] ; then
  62. log "Warn: mitmdump: pid=$(cat ${MITMDUMP_PID_FILE}) memory used > max, restarting: ${PCT_MEM}% >= ${MAX_MITM_PCT_MEM}%"
  63. supervisorctl restart mitmdump
  64. fi
  65. else
  66. log "Error: could not determine mitmdump % memory, maybe PID file ${MITMDUMP_PID_FILE} is out of date? pid found was ${MITM_PID}"
  67. fi
  68. else
  69. log "Error: mitmdump PID file ${MITMDUMP_PID_FILE} not found or empty"
  70. fi
  71. sleep 5s
  72. done