diff --git a/salt/common/tools/sbin/so-allow b/salt/common/tools/sbin/so-allow index 6e0cd1763..61df47fd0 100755 --- a/salt/common/tools/sbin/so-allow +++ b/salt/common/tools/sbin/so-allow @@ -86,14 +86,14 @@ echo "Adding $IP to the $FULLROLE role. This can take a few seconds" if grep -q -R "wazuh: 1" /opt/so/saltstack/pillar/*; then # If analyst, add to Wazuh AR whitelist if [ "$FULLROLE" == "analyst" ]; then - WAZUH_MGR_CFG="/opt/so/conf/wazuh/etc/ossec.conf" + WAZUH_MGR_CFG="/opt/so/wazuh/etc/ossec.conf" if ! grep -q "$IP" $WAZUH_MGR_CFG ; then DATE=`date` sed -i 's/<\/ossec_config>//' $WAZUH_MGR_CFG sed -i '/^$/N;/^\n$/D' $WAZUH_MGR_CFG echo -e "\n \n $IP\n \n" >> $WAZUH_MGR_CFG echo "Added whitelist entry for $IP in $WAZUH_MGR_CFG." - echo + echo echo "Restarting OSSEC Server..." /usr/sbin/so-wazuh-restart fi diff --git a/salt/wazuh/files/wazuh-manager-whitelist b/salt/wazuh/files/wazuh-manager-whitelist index ac804e447..ab4b15fd0 100755 --- a/salt/wazuh/files/wazuh-manager-whitelist +++ b/salt/wazuh/files/wazuh-manager-whitelist @@ -18,7 +18,7 @@ # Check if Wazuh enabled if grep -q -R "wazuh: 1" /opt/so/saltstack/pillar/*; then - WAZUH_MGR_CFG="/opt/so/conf/wazuh/etc/ossec.conf" + WAZUH_MGR_CFG="/opt/so/wazuh/etc/ossec.conf" if ! grep -q "{{ MASTERIP }}" $WAZUH_MGR_CFG ; then DATE=`date` sed -i 's/<\/ossec_config>//' $WAZUH_MGR_CFG