This repository has been archived by the owner on Jun 8, 2023. It is now read-only.
-
Notifications
You must be signed in to change notification settings - Fork 9
/
Copy pathssh-log.sh
33 lines (30 loc) · 1.83 KB
/
ssh-log.sh
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
#!/bin/bash
# @author : Rafsanzani Suhada
# @community : Zerobyte.ID | Bash.ID
#### Setting TelegramBot ####
apikey="" # Api key telegram
chatid="" # Chat id telegram
#############################
DATE_LOG=$(date "+%d %b %Y %H:%M")
LOG="/tmp/log-ssh.txt"
if [ -n "$SSH_CLIENT" ]; then
IP=$(echo $SSH_CLIENT | awk '{ print $1}')
PORT=$(echo $SSH_CLIENT | awk '{ print $3}')
GETINFO=$(curl -Ls "https://whatismyipaddress.com/ip/${IP}" -A "Mozilla/5.0 buntu; Linux x86_64; rv:70.0) Gecko/20100101 Firefox/70.0")
GETIP=$(echo $GETINFO | grep -Po '(?<=IP:</th><td>)[^<]*')
if [ -z "$GETIP" ]; then
# Login SSH menggunakan IP Lokal
curl -s "https://api.telegram.org/bot${apikey}/sendMessage?chat_id=${chatid}&parse_mode=Markdown&text=^^^ NOTIFIKASI LOGIN SSH ^^^%0d%0aUser : *${USER}*%0d%0aDate : *${DATE_LOG}*.%0d%0aIP : ${IP}%0d%0aPORT : ${PORT}" > /dev/null
echo "${IP} : ${PORT}" >> $LOG
else
# Login SSH menggunakan IP Publik
CITY=$(echo $GETINFO | grep -Po '(?<=City:</th><td>)[^<]*')
STATE=$(echo $GETINFO | grep -Po '(?<=State/Region:</th><td>)[^<]*')
COUNTRY=$(echo $GETINFO | grep -Po '(?<=Country:</th><td>)[^<]*')
ISP=$(echo $GETINFO | grep -Po '(?<=ISP:</th><td>)[^<]*')
LATITUDE=$(echo $GETINFO | grep -Po '(?<=Latitude:</th><td>)[^&]*')
LONGITUDE=$(echo $GETINFO | grep -Po '(?<=Longitude:</th><td>)[^&]*')
curl -s "https://api.telegram.org/bot${apikey}/sendMessage?chat_id=${chatid}&parse_mode=Markdown&text=^^^ NOTIFIKASI LOGIN SSH ^^^%0d%0aUser : *${USER}*%0d%0aDate : *${DATE_LOG}*%0d%0aIP : ${IP}%0d%0aPORT : ${PORT}%0d%0aCity : *${CITY}*%0d%0aState : *${STATE}*%0d%0aCountry : *${COUNTRY}*%0d%0aISP : *${ISP}*%0d%0aLatitude : *${LATITUDE}*%0d%0aLongitude : *${LONGITUDE}*%0d%0aRead more : https://whatismyipaddress.com/ip/${IP}" > /dev/null
echo "${IP} : ${PORT} | ${COUNTRY}" >> $LOG
fi
fi