Strelkas Rules Update

This commit is contained in:
Mike Reeves
2020-09-11 18:24:56 -04:00
parent 6e0cdf7be4
commit 48d1d0c168
6 changed files with 92 additions and 16 deletions

View File

@@ -50,6 +50,14 @@ airgap_rules() {
# Copy the rules for suricata if using Airgap
mkdir -p /nsm/repo/rules
cp -v /root/SecurityOnion/agrules/emerging-all.rules /nsm/repo/rules/
# Copy over sigma rules
cp -Rv /root/SecurityOnion/agrules/sigma /nsm/repo/rules/
# Don't leave Strelka out
cp -v /root/SecurityOnion/agrules/strelka /nsm/repo/rules/
}
analyze_system() {