Linux巡检脚本,兼容Redhat、Cantos、suse

PADDR=$(ip addr show|grep ‘inet’|awk -F ‘[ :]’ ‘{print $13}’)
#环境变量PATH没设好,在cron里执行时有很多命令会找不到
export PATH=/usr/local/sbin:/usr/local/bin:/sbin:/bin:/usr/sbin:/usr/bin:/root/bin
source /etc/profile
 
[ KaTeX parse error: Expected 'EOF', got '&' at position 17: …id -u) -gt 0 ] &̲& echo "请用root用…(awk ‘{print $(NF-1)}’ /etc/-release)
VERSION=“2017.08.22”
 
#日志相关
PROGPATH=echo $0 | sed -e 's,[\\/][^\\/][^\\/]*$,,'
[ -f KaTeX parse error: Expected 'EOF', got '&' at position 12: PROGPATH ] &̲& PROGPATH="." …PROGPATH/log"
[ -e $LOGPATH ] || mkdir L O G P A T H R E S U L T F I L E = " LOGPATH RESULTFILE=" LOGPATHRESULTFILE="LOGPATH/HostDailyCheck-$IPADDR-date +%Y%m%d.txt"
 
 
#定义报表的全局变量
report_DateTime=""    #日期 ok
report_Hostname=""    #主机名 ok
report_OSRelease=""    #发行版本 ok
report_Kernel=""    #内核 ok
report_Language=""    #语言/编码 ok
report_LastReboot=""    #最近启动时间 ok
report_Uptime=""    #运行时间(天) ok
report_CPUs=""    #CPU数量 ok
report_CPUType=""    #CPU类型 ok
report_Arch=""    #CPU架构 ok
report_MemTotal=""    #内存总容量(MB) ok
report_MemFree=""    #内存剩余(MB) ok
report_MemUsedPercent=""    #内存使用率% ok
report_DiskTotal=""    #硬盘总容量(GB) ok
report_DiskFree=""    #硬盘剩余(GB) ok
report_DiskUsedPercent=""    #硬盘使用率% ok
report_InodeTotal=""    #Inode总量 ok
report_InodeFree=""    #Inode剩余 ok
report_InodeUsedPercent=""    #Inode使用率 ok
report_IP=""    #IP地址 ok
report_MAC=""    #MAC地址 ok
report_Gateway=""    #默认网关 ok
report_DNS=""    #DNS ok
report_Listen=""    #监听 ok
report_Selinux=""    #Selinux ok
report_Firewall=""    #防火墙 ok
report_USERs=""    #用户 ok
report_USEREmptyPassword=""   #空密码用户 ok
report_USERTheSameUID=""      #相同ID的用户 ok
report_PasswordExpiry=""    #密码过期(天) ok
report_RootUser=""    #root用户 ok
report_Sudoers=""    #sudo授权  ok
report_SSHAuthorized=""    #SSH信任主机 ok
report_SSHDProtocolVersion=""    #SSH协议版本 ok
report_SSHDPermitRootLogin=""    #允许root远程登录 ok
report_DefunctProsess=""    #僵尸进程数量 ok
report_SelfInitiatedService=""    #自启动服务数量 ok
report_SelfInitiatedProgram=""    #自启动程序数量 ok
report_RuningService=""           #运行中服务数  ok
report_Crontab=""    #计划任务数 ok
report_Syslog=""    #日志服务 ok
report_SNMP=""    #SNMP  OK
report_NTP=""    #NTP ok
report_JDK=""    #JDK版本 ok
function version(){
    echo “”
    echo “”
    echo "系统巡检脚本:Version KaTeX parse error: Expected 'EOF', got '}' at position 10: VERSION" }̲   function get…(grep “physical id” /proc/cpuinfo| sort | uniq | wc -l)
    Virt_CPUs= ( g r e p " p r o c e s s o r " / p r o c / c p u i n f o ∣ w c − l )       C P U K e r n e l s = (grep "processor" /proc/cpuinfo | wc -l)     CPU_Kernels= (grep"processor"/proc/cpuinfowcl)   CPUKernels=(grep “cores” /proc/cpuinfo|uniq| awk -F ': ’ '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲')     CPU_Type…(grep “model name” /proc/cpuinfo | awk -F ': ’ '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲' | sort | uniq…(uname -m)
    echo “物理CPU个数: P h y s i c a l C P U s "       e c h o " 逻 辑 C P U 个 数 : Physical_CPUs"     echo "逻辑CPU个数: PhysicalCPUs"   echo"CPU:Virt_CPUs”
    echo “每CPU核心数: C P U K e r n e l s "       e c h o "       C P U 型 号 : CPU_Kernels"     echo "    CPU型号: CPUKernels"   echo"   CPU:CPU_Type”
    echo "    CPU架构:KaTeX parse error: Expected 'EOF', got '#' at position 15: CPU_Arch"     #̲报表信息     report…Virt_CPUs    #CPU数量
    report_CPUType=KaTeX parse error: Expected 'EOF', got '#' at position 11: CPU_Type  #̲CPU类型     repor…CPU_Arch     #CPU架构
}
 
function getMemStatus(){
    echo “”
    echo “”
    echo “############################ 内存检查 ############################”
    if [[ KaTeX parse error: Expected 'EOF', got '#' at position 80: … -h     fi     #̲报表信息     MemTot…(grep MemTotal /proc/meminfo| awk '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲')  #KB     Mem…(grep MemFree /proc/meminfo| awk '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲')    #KB     l…(awk "BEGIN {if(KaTeX parse error: Can't use function '\"' in math mode at position 37: …00}else{printf \̲"̲%.2f\",MemUsed
100/KaTeX parse error: Expected 'EOF', got '}' at position 9: MemTotal}̲}")     report_…((MemTotal/1024))"“MB”        #内存总容量(MB)
    report_MemFree="KaTeX parse error: Expected 'EOF', got '#' at position 32: …""MB"          #̲内存剩余(MB)     re…(awk “BEGIN {if(KaTeX parse error: Can't use function '\"' in math mode at position 37: …00}else{printf \̲"̲%.2f\",MemUsed100/$MemTotal}}")""%"   #内存使用率%
}
 
function getDiskStatus(){
    echo “”
    echo “”
    echo “############################ 磁盘检查 ############################”
    df -hiP | sed ‘s/Mounted on/Mounted/’> /tmp/inode
    df -hTP | sed ‘s/Mounted on/Mounted/’> /tmp/disk
    join /tmp/disk /tmp/inode | awk '{print $1,$2,"|",$3,$4,$5,$6,"|",$8,$9,$10,$11,"|",KaTeX parse error: Expected 'EOF', got '}' at position 3: 12}̲'| column -t   …(df -TP | sed ‘1d’ | awk 'KaTeX parse error: Expected 'EOF', got '#' at position 21: …mpfs"{print}') #̲KB     disktota…(echo “$diskdata” | awk '{total+=KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲END{print total…(echo “$diskdata” | awk '{total+=KaTeX parse error: Expected 'EOF', got '}' at position 2: 4}̲END{print total…((disktotal-diskused)) #KB
    diskusedpercent=$(echo $disktotal $diskused | awk '{if($1==0){printf 100}else{printf “%.2f”,$2
100/KaTeX parse error: Expected 'EOF', got '}' at position 2: 1}̲}')     inoded…(df -iTP | sed ‘1d’ | awk ' 2 ! = " t m p f s " p r i n t ′ )       i n o d e t o t a l = 2!="tmpfs"{print}')     inodetotal= 2!="tmpfs"print)   inodetotal=(echo “$inodedata” | awk '{total+=KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲END{print total…(echo “$inodedata” | awk '{total+=KaTeX parse error: Expected 'EOF', got '}' at position 2: 4}̲END{print total…((inodetotal-inodeused))
    inodeusedpercent=$(echo $inodetotal $inodeused | awk '{if($10){printf 100}else{printf “%.2f”,$2100/KaTeX parse error: Expected 'EOF', got '}' at position 2: 1}̲}')     report_…((disktotal/1024/1024))“GB”   #硬盘总容量(GB)
    report_DiskFree=KaTeX parse error: Expected 'EOF', got '#' at position 32: …1024))"GB"     #̲硬盘剩余(GB)     re…diskusedpercent""%"    #硬盘使用率%
    report_InodeTotal=KaTeX parse error: Expected 'EOF', got '#' at position 30: …000))"K"       #̲Inode总量     rep…((inodefree/1000))“K”         #Inode剩余
    report_InodeUsedPercent="KaTeX parse error: Expected 'EOF', got '}' at position 36: …  #Inode使用率%   }̲   function get…(grep “LANG=” /etc/sysconfig/i18n | grep -v “^#” | awk -F ‘"’ '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲')"     else   …LANG
    fi
    export LANG=“en_US.UTF-8”
    Release= ( c a t / e t c / r e d h a t − r e l e a s e 2 > / d e v / n u l l )       K e r n e l = (cat /etc/redhat-release 2>/dev/null)     Kernel= (cat/etc/redhatrelease2>/dev/null)   Kernel=(uname -r)
    OS= ( u n a m e − o )       H o s t n a m e = (uname -o)     Hostname= (unameo)   Hostname=(uname -n)
    LastReboot=$(who -b | awk '{print $3,KaTeX parse error: Expected 'EOF', got '}' at position 2: 4}̲')     uptime=(uptime | sed 's/.up ([^,]), .
/\1/’)
    echo "     系统: O S "       e c h o " 发 行 版 本 : OS"     echo " 发行版本: OS"   echo"Release"
    echo "     内核: K e r n e l "       e c h o "     主 机 名 : Kernel"     echo "   主机名: Kernel"   echo"  Hostname"
    echo "  SELinux: S E L i n u x "       e c h o " 语 言 / 编 码 : SELinux"     echo "语言/编码: SELinux"   echo"/default_LANG"
    echo " 当前时间: ( d a t e + ′       e c h o " 最 后 启 动 : (date +'%F %T')"     echo " 最后启动: (date+   echo"LastReboot"
    echo " 运行时间:KaTeX parse error: Expected 'EOF', got '#' at position 13: uptime"     #̲报表信息     report…(date +"%F %T")  #日期
    report_Hostname=“KaTeX parse error: Expected 'EOF', got '#' at position 17: …ostname"       #̲主机名     report_…Release”       #发行版本
    report_Kernel=“KaTeX parse error: Expected 'EOF', got '#' at position 19: …nel"           #̲内核     report_L…default_LANG”   #语言/编码
    report_LastReboot=“KaTeX parse error: Expected 'EOF', got '#' at position 15: LastReboot"   #̲最近启动时间     repo…uptime”           #运行时间(天)
    report_Selinux=“ S E L i n u x "       e x p o r t L A N G = " SELinux"     export LANG=" SELinux"   exportLANG="default_LANG”
 
}
 
function getServiceStatus(){
    echo “”
    echo “”
    echo “############################ 服务检查 ############################”
    echo “”
    if [[ c e n t o s V e r s i o n > 7 ] ] ; t h e n               c o n f = centosVersion > 7 ]];then         conf= centosVersion>7]];then       conf=(systemctl list-unit-files --type=service --state=enabled --no-pager | grep “enabled”)
        process=KaTeX parse error: Expected 'EOF', got '#' at position 92: …vice")         #̲报表信息         re…(echo “KaTeX parse error: Expected 'EOF', got '#' at position 23: … wc -l)"       #̲自启动服务数量        …(echo “KaTeX parse error: Expected 'EOF', got '#' at position 30: …-l)"           #̲运行中服务数量     els…(/sbin/chkconfig | grep -E “:on|:启用”)
        process=KaTeX parse error: Expected 'EOF', got '#' at position 78: …正在运行")         #̲报表信息         re…(echo “KaTeX parse error: Expected 'EOF', got '#' at position 23: … wc -l)"       #̲自启动服务数量        …(echo “KaTeX parse error: Expected 'EOF', got '#' at position 30: …-l)"           #̲运行中服务数量     fi …conf”  | column -t
    echo “”
    echo “正在运行的服务”
    echo “--------------”
    echo “KaTeX parse error: Expected 'EOF', got '}' at position 12: process"   }̲     function g…(grep -v “^#” /etc/init.d/boot.local| sed '/^KaTeX parse error: Expected 'EOF', got '#' at position 6: /d') #̲   echo "conf”
    #报表信息
    report_SelfInitiatedProgram=”$(echo $conf | wc -l)”    #自启动程序数量
}
 
function getLoginStatus(){
    echo “”
    echo “”
    echo “############################ 登录检查 ############################”
    last | head
}
 
function getNetworkStatus(){
    echo “”
    echo “”
    echo “############################ 网络检查 ############################”
    if [[ $centosVersion < 7 ]];then
        /sbin/ifconfig -a | grep -v packets | grep -v collisions | grep -v inet6
    else
        #ip a
        for i in $(ip link | grep BROADCAST | awk -F: ‘{print $2}’);do ip add show $i | grep -E “BROADCAST|global”| awk '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲' | tr '\n' ' '…(ip route | grep default | awk '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲')     DNS=(grep nameserver /etc/resolv.conf| grep -v “#” | awk ‘{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲' | tr '\n' ','…//’)
    echo “”
    echo “网关: G A T E W A Y "       e c h o " D N S : GATEWAY "     echo " DNS: GATEWAY"   echo"DNSDNS”
    #报表信息
    IP=$(ip -f inet addr | grep -v 127.0.0.1 |  grep inet | awk ‘{print $NF,KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲' | tr '\n' ','…//’)
    MAC=$(ip link | grep -v “LOOPBACK|loopback” | awk ‘{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲' | sed 'N;s/\n…//’)
    report_IP=“KaTeX parse error: Expected 'EOF', got '#' at position 16: IP"            #̲IP地址     report…MAC            #MAC地址
    report_Gateway=“KaTeX parse error: Expected 'EOF', got '#' at position 11: GATEWAY"  #̲默认网关     report…DNS”          #DNS
}
 
function getListenStatus(){
    echo “”
    echo “”
    echo “############################ 监听检查 ############################”
    TCPListen= ( s s − n t u l ∣ c o l u m n − t )       e c h o " (ss -ntul | column -t)     echo " (ssntulcolumnt)   echo"TCPListen”
    #报表信息
    report_Listen=“ ( e c h o " (echo " (echo"TCPListen”| sed ‘1d’ | awk ‘/tcp/ {print $5}’ | awk -F: ‘{print $NF}’ | sort | uniq | wc -l)”
}
 
function getCronStatus(){
    echo “”
    echo “”
    echo “############################ 计划任务检查 ########################”
    Crontab=0
    for shell in $(grep -v “/sbin/nologin” /etc/shells);do
        for user in ( g r e p " (grep " (grep"shell" /etc/passwd| awk -F: ‘{print $1}’);do
            crontab -l -u KaTeX parse error: Expected 'EOF', got '&' at position 19: …r >/dev/null 2>&̲1             s…?
            if [ s t a t u s − e q 0 ] ; t h e n                               e c h o " status -eq 0 ];then                 echo " statuseq0];then               echo"user"
                echo “--------”
                crontab -l -u u s e r                               l e t C r o n t a b = C r o n t a b + user                 let Crontab=Crontab+ user               letCrontab=Crontab+(crontab -l -u KaTeX parse error: Expected 'EOF', got '#' at position 80: …e     done     #̲计划任务     find /…(find /etc/cron* -type f | wc -l)
    #报表信息
    report_Crontab="KaTeX parse error: Expected 'EOF', got '#' at position 13: Crontab"    #̲计划任务数 } functio…"
    [ -z “$datetime” ] && echo "错误的参数:getHowLongAgo() ∗ "       T i m e s t a m p = *"     Timestamp= "   Timestamp=(date +%s -d "KaTeX parse error: Expected 'EOF', got '#' at position 15: datetime")    #̲转化为时间戳     Now_…(date +%s)
    Difference_Timestamp= ( ( (( ((Now_Timestamp- T i m e s t a m p ) )       d a y s = 0 ; h o u r s = 0 ; m i n u t e s = 0 ;       s e c i n d a y = Timestamp))     days=0;hours=0;minutes=0;     sec_in_day= Timestamp))   days=0;hours=0;minutes=0;   secinday=((60
6024));
    sec_in_hour=$((60
60));
    sec_in_minute=60
    while (( ( ( (( ((Difference_Timestamp-$sec_in_day)) > 1 ))
    do
        let Difference_Timestamp=Difference_Timestamp-sec_in_day
        let days++
    done
    while (( ( ( (( ((Difference_Timestamp- s e c i n h o u r ) ) > 1 ) )       d o               l e t D i f f e r e n c e T i m e s t a m p = D i f f e r e n c e T i m e s t a m p − s e c i n h o u r               l e t h o u r s + +       d o n e       e c h o " sec_in_hour)) > 1 ))     do         let Difference_Timestamp=Difference_Timestamp-sec_in_hour         let hours++     done     echo " secinhour))>1))   do       letDifferenceTimestamp=DifferenceTimestampsecinhour       lethours++   done   echo"days 天 $hours 小时前"
}
 
function getUserLastLogin(){
    # 获取用户最近一次登录的时间,含年份
    # 很遗憾last命令不支持显示年份,只有"last -t YYYYMMDDHHMMSS"表示某个时间之间的登录,我
    # 们只能用最笨的方法了,对比今天之前和今年元旦之前(或者去年之前和前年之前……)某个用户
    # 登录次数,如果登录统计次数有变化,则说明最近一次登录是今年。
    username=$1
    : u s e r n a m e : = " ‘ w h o a m i ‘ "       t h i s Y e a r = {username:="`whoami`"}     thisYear= username:="whoami"   thisYear=(date +%Y)
    oldesYear=$(last | tail -n1 | awk ‘{print $NF}’)
    while(( $thisYear >= o l d e s Y e a r ) ) ; d o               l o g i n B e f o r e T o d a y = oldesYear));do         loginBeforeToday= oldesYear));do       loginBeforeToday=(last $username | grep u s e r n a m e ∣ w c − l )               l o g i n B e f o r e N e w Y e a r s D a y O f T h i s Y e a r = username | wc -l)         loginBeforeNewYearsDayOfThisYear= usernamewcl)       loginBeforeNewYearsDayOfThisYear=(last $username -t $thisYear"0101000000" | grep $username | wc -l)
        if [ $loginBeforeToday -eq 0 ];then
            echo “从未登录过”
            break
        elif [ $loginBeforeToday -gt l o g i n B e f o r e N e w Y e a r s D a y O f T h i s Y e a r ] ; t h e n                       l a s t D a t e T i m e = loginBeforeNewYearsDayOfThisYear ];then             lastDateTime= loginBeforeNewYearsDayOfThisYear];then           lastDateTime=(last -i KaTeX parse error: Expected '}', got 'EOF' at end of input: …++)printf"%s ",i}’)" KaTeX parse error: Expected 'EOF', got '#' at position 11: thisYear" #̲格式如: Sat Nov 2 …(date “+%Y-%m-%d %H:%M:%S” -d “ l a s t D a t e T i m e " )                       e c h o " lastDateTime")             echo " lastDateTime")           echo"lastDateTime”
            break
        else
            thisYear=KaTeX parse error: Expected 'EOF', got '}' at position 38: … fi     done   }̲   function get…(cat /etc/passwd)"
    Modify=$(stat /etc/passwd | grep Modify | tr ‘.’ ’ ’ | awk '{print $2,KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲')       echo "…Modify ($(getHowLongAgo $Modify))"
    echo “”
    echo “特权用户”
    echo “--------”
    RootUser=""
    for user in ( e c h o " (echo " (echo"pwdfile" | awk -F: ‘{print $1}’);do
        if [ $(id -u u s e r ) − e q 0 ] ; t h e n                       e c h o " user) -eq 0 ];then             echo " user)eq0];then           echo"user"
            RootUser=“ R o o t U s e r , RootUser, RootUser,user”
        fi
    done
    echo “”
    echo “用户列表”
    echo “--------”
    USERs=0
    echo “$(
    echo “用户名 UID GID HOME SHELL 最后一次登录”
    for shell in $(grep -v “/sbin/nologin” /etc/shells);do
        for username in ( g r e p " (grep " (grep"shell” /etc/passwd| awk -F: '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 1}̲');do          …(getUserLastLogin u s e r n a m e ) "                       e c h o " username)"             echo " username)"           echo"pwdfile" | grep -w “ u s e r n a m e " ∣ g r e p − w " username" |grep -w " username"grepw"shell”| awk -F: -v lastlogin=“ ( e c h o " (echo " (echo"userLastLogin” | tr ’ ’ ‘_’)" '{print $1,$3,$4,$6,KaTeX parse error: Expected 'EOF', got '}' at position 12: 7,lastlogin}̲'         done …(echo “ p w d f i l e " ∣ g r e p " pwdfile" | grep " pwdfile"grep"shell”| wc -l)
    done
    )" | column -t
    echo “”
    echo “空密码用户”
    echo “----------”
    USEREmptyPassword=""
    for shell in $(grep -v “/sbin/nologin” /etc/shells);do
            for user in ( e c h o " (echo " (echo"pwdfile" | grep " s h e l l " ∣ c u t − d : − f 1 ) ; d o                       r = shell" | cut -d: -f1);do             r= shell"cutd:f1);do           r=(awk -F: '$2
”!!"{print $1}’ /etc/shadow | grep -w $user)
            if [ ! -z $r ];then
                echo r                               U S E R E m p t y P a s s w o r d = " r                 USEREmptyPassword=" r               USEREmptyPassword="USEREmptyPassword," r                       f i               d o n e             d o n e       e c h o " "       e c h o " 相 同 I D 的 用 户 "       e c h o " − − − − − − − − − − − − "       U S E R T h e S a m e U I D = " "       U I D s = r             fi         done        done     echo ""     echo "相同ID的用户"     echo "------------"     USERTheSameUID=""     UIDs= r           fi       done      done   echo""   echo"ID"   echo""   USERTheSameUID=""   UIDs=(cut -d: -f3 /etc/passwd | sort | uniq -c | awk ‘$1>1{print $2}’)
    for uid in U I D s ; d o               e c h o − n " UIDs;do         echo -n " UIDs;do       echon"uid";
        USERTheSameUID=" u i d "               r = uid"         r= uid"       r=(awk -F: ‘ORS=""; 3 = = ′ " 3=='" 3=="uid"’{print “:”,KaTeX parse error: Expected 'EOF', got '}' at position 2: 1}̲' /etc/passwd) …r"
        echo “”
        USERTheSameUID="$USERTheSameUID KaTeX parse error: Expected 'EOF', got '#' at position 18: …"     done     #̲报表信息     report…USERs"    #用户
    report_USEREmptyPassword=$(echo U S E R E m p t y P a s s w o r d ∣ s e d ′ s / , / / ′ )       r e p o r t U S E R T h e S a m e U I D = USEREmptyPassword | sed 's/^,//')     report_USERTheSameUID= USEREmptyPasswordseds/,//)   reportUSERTheSameUID=(echo U S E R T h e S a m e U I D ∣ s e d ′ s / , USERTheSameUID | sed 's/, USERTheSameUIDseds/,//’)
    report_RootUser=$(echo KaTeX parse error: Expected 'EOF', got '#' at position 29: …d 's/^,//')    #̲特权用户 }     func…(cat /etc/passwd)"
    echo “”
    echo “密码过期检查”
    echo “------------”
    result=""
    for shell in $(grep -v “/sbin/nologin” /etc/shells);do
        for user in ( e c h o " (echo " (echo"pwdfile" | grep “ s h e l l " ∣ c u t − d : − f 1 ) ; d o                       g e t e x p i r y d a t e = shell" | cut -d: -f1);do             get_expiry_date= shell"cutd:f1);do           getexpirydate=(/usr/bin/chage -l $user | grep ‘Password expires’ | cut -d: -f2)
            if [[ $get_expiry_date = ’ never’ || $get_expiry_date = ‘never’ ]];then
                printf “%-15s 永不过期\n” u s e r                               r e s u l t = " user                 result=" user               result="result, u s e r : n e v e r "                       e l s e                               p a s s w o r d e x p i r y d a t e = user:never"             else                 password_expiry_date= user:never"           else               passwordexpirydate=(date -d “ g e t e x p i r y d a t e " " +                               c u r r e n t d a t e = get_expiry_date" "+%s")                 current_date= getexpirydate""+               currentdate=(date “+%s”)
                diff= ( ( (( ((password_expiry_date- c u r r e n t d a t e ) )                               l e t D A Y S = current_date))                 let DAYS= currentdate))               letDAYS=(($diff/(606024)))
                printf “%-15s %s天后过期\n” $user D A Y S                               r e s u l t = " DAYS                 result=" DAYS               result="result, u s e r : user: user:DAYS days”
            fi
        done
    done
    report_PasswordExpiry=$(echo KaTeX parse error: Expected 'EOF', got '#' at position 93: …"     grep -v "#̲" /etc/login.de…(grep -v “^#” /etc/sudoers| grep -v “^Defaults” | sed '/^ / d ′ )       e c h o " /d')     echo " /d)   echo"conf”
    echo “”
    #报表信息
    report_Sudoers="$(echo $conf | wc -l)"
}
 
function getInstalledStatus(){
    echo “”
    echo “”
    echo “############################ 软件检查 ############################”
    rpm -qa --last | head | column -t
}
 
function getProcessStatus(){
    echo “”
    echo “”
    echo “############################ 进程检查 ############################”
    if [ $(ps -ef | grep defunct | grep -v grep | wc -l) -ge 1 ];then
        echo “”
        echo “僵尸进程”;
        echo “--------”
        ps -ef | head -n1
        ps -ef | grep defunct | grep -v grep
    fi
    echo “”
    echo “内存占用TOP10”
    echo “-------------”
    echo -e “PID %MEM RSS COMMAND
    $(ps aux | awk '{print $2, $4, $6, KaTeX parse error: Expected 'EOF', got '}' at position 3: 11}̲' | sort -k3rn …(ps -ef | grep defunct | grep -v grep|wc -l)”
}
 
function getJDKStatus(){
    echo “”
    echo “”
    echo “############################ JDK检查 #############################”
    java -version 2>/dev/null
    if [ KaTeX parse error: Expected 'EOF', got '&' at position 40: …ava -version 2>&̲1     fi     ec…JAVA_HOME""
    #报表信息
    report_JDK="$(java -version 2>&1 | grep version | awk ‘{print $1,KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲' | tr -d '"')"…(getState rsyslog)"
    echo “”
    echo “/etc/rsyslog.conf”
    echo “-----------------”
    cat /etc/rsyslog.conf 2>/dev/null | grep -v “^#” | grep -v "^\KaTeX parse error: Expected group after '^' at position 11: " | sed '/^̲/d’  | column -t
    #报表信息
    report_Syslog="$(getState rsyslog)"
}
function getFirewallStatus(){
    echo “”
    echo “”
    echo “############################ 防火墙检查 ##########################”
    #防火墙状态,策略等
    if [[ KaTeX parse error: Expected 'EOF', got '&' at position 77: … >/dev/null  2>&̲1         statu…?
        if [ $status -eq 0 ];then
                s=“active”
        elif [ $status -eq 3 ];then
                s=“inactive”
        elif [ s t a t u s − e q 4 ] ; t h e n                               s = " p e r m i s s i o n d e n i e d "               e l s e                               s = " u n k n o w n "               f i       e l s e               s = " status -eq 4 ];then                 s="permission denied"         else                 s="unknown"         fi     else         s=" statuseq4];then               s="permissiondenied"       else               s="unknown"       fi   else       s="(getState iptables)"
    fi
    echo “iptables: KaTeX parse error: Expected 'EOF', got '#' at position 134: …>/dev/null     #̲报表信息     report…s”
}
 
function getSNMPStatus(){
    #SNMP服务状态,配置等
    echo “”
    echo “”
    echo “############################ SNMP检查 ############################”
    status=“ ( g e t S t a t e s n m p d ) "       e c h o " 服 务 状 态 : (getState snmpd)"     echo "服务状态: (getStatesnmpd)"   echo"status”
    echo “”
    if [ -e /etc/snmp/snmpd.conf ];then
        echo “/etc/snmp/snmpd.conf”
        echo “--------------------”
        cat /etc/snmp/snmpd.conf 2>/dev/null | grep -v “^#” | sed '/^KaTeX parse error: Expected 'EOF', got '#' at position 16: /d'     fi     #̲报表信息     report…(getState snmpd)"
}
 
 
 
function getState(){
    if [[ $centosVersion < 7 ]];then
        if [ -e “/etc/init.d/$1” ];then
            if [ /etc/init.d/$1 status 2>/dev/null | grep -E "is running|正在运行" | wc -l -ge 1 ];then
                r=“active”
            else
                r=“inactive”
            fi
        else
            r=“unknown”
        fi
    else
        #CentOS 7+
        r="$(systemctl is-active KaTeX parse error: Expected 'EOF', got '&' at position 5: 1 2>&̲1)"     fi     …r"
}
 
function getSSHStatus(){
    #SSHD服务状态,配置,受信任主机等
    echo “”
    echo “”
    echo “############################ SSH检查 #############################”
    #检查受信任主机
    pwdfile=" ( c a t / e t c / p a s s w d ) "       e c h o " 服 务 状 态 : (cat /etc/passwd)"     echo "服务状态: (cat/etc/passwd)"   echo"(getState sshd)"
    Protocol_Version=$(cat /etc/ssh/sshd_config | grep Protocol | awk '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 2}̲')     echo "SS…Protocol_Version"
    echo “”
    echo “信任主机”
    echo “--------”
    authorized=0
    for user in ( e c h o " (echo " (echo"pwdfile" | grep /bin/bash | awk -F: '{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 1}̲');do         a…(echo “$pwdfile” | grep -w $user | awk -F: '{printf KaTeX parse error: Expected 'EOF', got '}' at position 25: …uthorized_keys"}̲')         auth…(cat $authorize_file 2>/dev/null | awk ‘{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲' | tr '\n' ','…//’)
        if [ ! -z a u t h o r i z e d h o s t ] ; t h e n                       e c h o " authorized_host ];then             echo " authorizedhost];then           echo"user 授权 “KaTeX parse error: Can't use function '\"' in math mode at position 16: authorized_host\̲"̲ 无密码访问"        …(cat $authorize_file 2>/dev/null | awk ‘{print KaTeX parse error: Expected 'EOF', got '}' at position 2: 3}̲'|wc -l)     do…(cat /etc/ssh/sshd_config | grep PermitRootLogin)
    firstChar=${config:0:1}
    if [ KaTeX parse error: Expected 'EOF', got '#' at position 15: firstChar == "#̲" ];then       …(echo $config | awk ‘{print $2}’)
    fi
    echo "PermitRootLogin KaTeX parse error: Expected group after '^' at position 136: …fig | grep -v "^̲#" | sed '/^/d’
 
    #报表信息
    report_SSHAuthorized=“KaTeX parse error: Expected 'EOF', got '#' at position 16: authorized"    #̲SSH信任主机     rep…Protocol_Version”    #SSH协议版本
    report_SSHDPermitRootLogin=”KaTeX parse error: Expected 'EOF', got '#' at position 21: …tRootLogin"    #̲允许root远程登录 } fu…(getState ntpd)"
        echo “”
        echo “/etc/ntp.conf”
        echo “-------------”
        cat /etc/ntp.conf 2>/dev/null | grep -v “^#” | sed '/^KaTeX parse error: Expected 'EOF', got '#' at position 16: /d'     fi     #̲报表信息     report…(getState ntpd)"
}
 
 
function uploadHostDailyCheckReport(){
    json="{
        “DateTime”:“KaTeX parse error: Can't use function '\"' in math mode at position 16: report_DateTime\̲"̲,         \"Hos…report_Hostname”,
        “OSRelease”:“KaTeX parse error: Can't use function '\"' in math mode at position 17: …eport_OSRelease\̲"̲,         \"Ker…report_Kernel”,
        “Language”:“KaTeX parse error: Can't use function '\"' in math mode at position 16: report_Language\̲"̲,         \"Las…report_LastReboot”,
        “Uptime”:“KaTeX parse error: Can't use function '\"' in math mode at position 14: report_Uptime\̲"̲,         \"CPU…report_CPUs”,
        “CPUType”:“KaTeX parse error: Can't use function '\"' in math mode at position 15: report_CPUType\̲"̲,         \"Arc…report_Arch”,
        “MemTotal”:“KaTeX parse error: Can't use function '\"' in math mode at position 16: report_MemTotal\̲"̲,         \"Mem…report_MemFree”,
        “MemUsedPercent”:“KaTeX parse error: Can't use function '\"' in math mode at position 22: …_MemUsedPercent\̲"̲,         \"Dis…report_DiskTotal”,
        “DiskFree”:“KaTeX parse error: Can't use function '\"' in math mode at position 16: report_DiskFree\̲"̲,         \"Dis…report_DiskUsedPercent”,
        “InodeTotal”:“KaTeX parse error: Can't use function '\"' in math mode at position 18: …port_InodeTotal\̲"̲,         \"Ino…report_InodeFree”,
        “InodeUsedPercent”:“KaTeX parse error: Can't use function '\"' in math mode at position 24: …nodeUsedPercent\̲"̲,         \"IP\…report_IP”,
        “MAC”:“KaTeX parse error: Can't use function '\"' in math mode at position 11: report_MAC\̲"̲,         \"Gat…report_Gateway”,
        “DNS”:“KaTeX parse error: Can't use function '\"' in math mode at position 11: report_DNS\̲"̲,         \"Lis…report_Listen”,
        “Selinux”:“KaTeX parse error: Can't use function '\"' in math mode at position 15: report_Selinux\̲"̲,         \"Fir…report_Firewall”,
        “USERs”:“KaTeX parse error: Can't use function '\"' in math mode at position 13: report_USERs\̲"̲,         \"USE…report_USEREmptyPassword”,
        “USERTheSameUID”:“KaTeX parse error: Can't use function '\"' in math mode at position 22: …_USERTheSameUID\̲"̲,         \"Pas…report_PasswordExpiry”,
        “RootUser”:“KaTeX parse error: Can't use function '\"' in math mode at position 16: report_RootUser\̲"̲,         \"Sud…report_Sudoers”,
        “SSHAuthorized”:“KaTeX parse error: Can't use function '\"' in math mode at position 21: …t_SSHAuthorized\̲"̲,         \"SSH…report_SSHDProtocolVersion”,
        “SSHDPermitRootLogin”:“KaTeX parse error: Can't use function '\"' in math mode at position 27: …PermitRootLogin\̲"̲,         \"Def…report_DefunctProsess”,
        “SelfInitiatedService”:“KaTeX parse error: Can't use function '\"' in math mode at position 28: …nitiatedService\̲"̲,         \"Sel…report_SelfInitiatedProgram”,
        “RuningService”:“KaTeX parse error: Can't use function '\"' in math mode at position 21: …t_RuningService\̲"̲,         \"Cro…report_Crontab”,
        “Syslog”:“KaTeX parse error: Can't use function '\"' in math mode at position 14: report_Syslog\̲"̲,         \"SNM…report_SNMP”,
        “NTP”:“KaTeX parse error: Can't use function '\"' in math mode at position 11: report_NTP\̲"̲,         \"JDK…report_JDK”
    }"
    #echo “ j s o n "       c u r l − l − H " C o n t e n t − t y p e : a p p l i c a t i o n / j s o n " − X P O S T − d " json"     curl -l -H "Content-type: application/json" -X POST -d " json"   curllH"Contenttype:application/json"XPOSTd"json” “$uploadHostDailyCheckReportApi” 2>/dev/null
}
 
function check(){
    version
    getSystemStatus
    getCpuStatus
    getMemStatus
    getDiskStatus
    getNetworkStatus
    getListenStatus
    getProcessStatus
    getServiceStatus
    getAutoStartStatus
    getLoginStatus
    getCronStatus
    getUserStatus
    getPasswordStatus
    getSudoersStatus
    getJDKStatus
    getFirewallStatus
    getSSHStatus
    getSyslogStatus
    getSNMPStatus
    getNTPStatus
    getInstalledStatus
}
 
 
#执行检查并保存检查结果
check > R E S U L T F I L E   e c h o " 检 查 结 果 : RESULTFILE   echo "检查结果: RESULTFILE echo"RESULTFILE"

你可能感兴趣的:(自动化运维,Linux)