mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 09:12:45 +01:00
Merge remote-tracking branch 'origin/2.4/dev' into vlb2
This commit is contained in:
@@ -262,6 +262,7 @@ base:
|
|||||||
- minions.adv_{{ grains.id }}
|
- minions.adv_{{ grains.id }}
|
||||||
- kafka.nodes
|
- kafka.nodes
|
||||||
- kafka.soc_kafka
|
- kafka.soc_kafka
|
||||||
|
- stig.soc_stig
|
||||||
|
|
||||||
'*_import':
|
'*_import':
|
||||||
- node_data.ips
|
- node_data.ips
|
||||||
@@ -319,10 +320,12 @@ base:
|
|||||||
- elasticfleet.adv_elasticfleet
|
- elasticfleet.adv_elasticfleet
|
||||||
- minions.{{ grains.id }}
|
- minions.{{ grains.id }}
|
||||||
- minions.adv_{{ grains.id }}
|
- minions.adv_{{ grains.id }}
|
||||||
|
- stig.soc_stig
|
||||||
|
|
||||||
'*_hypervisor':
|
'*_hypervisor':
|
||||||
- minions.{{ grains.id }}
|
- minions.{{ grains.id }}
|
||||||
- minions.adv_{{ grains.id }}
|
- minions.adv_{{ grains.id }}
|
||||||
|
- stig.soc_stig
|
||||||
|
|
||||||
'*_desktop':
|
'*_desktop':
|
||||||
- minions.{{ grains.id }}
|
- minions.{{ grains.id }}
|
||||||
|
|||||||
@@ -143,6 +143,7 @@
|
|||||||
),
|
),
|
||||||
'so-fleet': (
|
'so-fleet': (
|
||||||
ssl_states +
|
ssl_states +
|
||||||
|
stig_states +
|
||||||
['logstash', 'nginx', 'healthcheck', 'elasticfleet']
|
['logstash', 'nginx', 'healthcheck', 'elasticfleet']
|
||||||
),
|
),
|
||||||
'so-receiver': (
|
'so-receiver': (
|
||||||
|
|||||||
@@ -43,5 +43,5 @@ combine_bond_script:
|
|||||||
execute_combine_bond:
|
execute_combine_bond:
|
||||||
cmd.run:
|
cmd.run:
|
||||||
- name: /usr/sbin/so-combine-bond
|
- name: /usr/sbin/so-combine-bond
|
||||||
- onchanges:
|
- onlyif:
|
||||||
- file: combine_bond_script
|
- ip link show bond0
|
||||||
|
|||||||
@@ -18,7 +18,7 @@ fi
|
|||||||
|
|
||||||
# Check if bond0 exists
|
# Check if bond0 exists
|
||||||
if ! ip link show bond0 &>/dev/null; then
|
if ! ip link show bond0 &>/dev/null; then
|
||||||
exit 1
|
exit 0
|
||||||
fi
|
fi
|
||||||
|
|
||||||
# Function to get slave interfaces - works across distributions
|
# Function to get slave interfaces - works across distributions
|
||||||
@@ -48,7 +48,7 @@ get_bond_slaves() {
|
|||||||
SLAVES=$(get_bond_slaves bond0)
|
SLAVES=$(get_bond_slaves bond0)
|
||||||
|
|
||||||
if [ -z "$SLAVES" ]; then
|
if [ -z "$SLAVES" ]; then
|
||||||
exit 1
|
exit 0
|
||||||
fi
|
fi
|
||||||
|
|
||||||
# Process each slave interface
|
# Process each slave interface
|
||||||
|
|||||||
@@ -47,6 +47,7 @@ update_stig_profile:
|
|||||||
- name: /opt/so/conf/stig/sos-oscap.xml
|
- name: /opt/so/conf/stig/sos-oscap.xml
|
||||||
- source: salt://stig/files/sos-oscap.xml
|
- source: salt://stig/files/sos-oscap.xml
|
||||||
- user: socore
|
- user: socore
|
||||||
|
- show_changes: False
|
||||||
- group: socore
|
- group: socore
|
||||||
- mode: 0644
|
- mode: 0644
|
||||||
|
|
||||||
|
|||||||
@@ -299,6 +299,7 @@ base:
|
|||||||
- elasticfleet
|
- elasticfleet
|
||||||
- elasticfleet.install_agent_grid
|
- elasticfleet.install_agent_grid
|
||||||
- schedule
|
- schedule
|
||||||
|
- stig
|
||||||
|
|
||||||
'*_hypervisor and I@features:vrt and G@saltversion:{{saltversion}}':
|
'*_hypervisor and I@features:vrt and G@saltversion:{{saltversion}}':
|
||||||
- match: compound
|
- match: compound
|
||||||
|
|||||||
Reference in New Issue
Block a user