enable/disable each strelka container in ui

This commit is contained in:
m0duspwnens
2023-05-10 15:50:07 -04:00
parent 02e1a29f0c
commit 54c9a3ec71
43 changed files with 1119 additions and 368 deletions

View File

@@ -5,10 +5,11 @@
{% from 'allowed_states.map.jinja' import allowed_states %}
{% if sls in allowed_states %}
{% from 'vars/globals.map.jinja' import GLOBALS %}
{% from 'strelka/map.jinja' import STRELKAMERGED %}
{% import_yaml 'manager/defaults.yaml' as MANAGERDEFAULTS %}
{% set MANAGERMERGED = salt['pillar.get']('manager', MANAGERDEFAULTS.manager, merge=true) %}
{% from 'vars/globals.map.jinja' import GLOBALS %}
{% from 'strelka/map.jinja' import STRELKAMERGED %}
{% import_yaml 'manager/defaults.yaml' as MANAGERDEFAULTS %}
{% set MANAGERMERGED = salt['pillar.get']('manager', MANAGERDEFAULTS.manager, merge=true) %}
{% from 'strelka/map.jinja' import STRELKAMERGED %}
include:
- salt.minion
@@ -81,6 +82,16 @@ socore_own_saltstack:
- user
- group
{% if STRELKAMERGED.rules.enabled %}
strelkarepos:
file.managed:
- name: /opt/so/conf/strelka/repos.txt
- source: salt://strelka/rules/repos.txt.jinja
- template: jinja
- defaults:
STRELKAREPOS: {{ STRELKAMERGED.rules.repos }}
{% endif %}
yara_update_script:
file.managed:
- name: /usr/sbin/so-yara-update

View File

@@ -249,6 +249,54 @@ function add_redis_to_minion() {
" " >> $PILLARFILE
}
function add_strelka_backend_to_minion() {
printf '%s\n'\
"strelka:"\
" backend:"\
" enabled: True"\
" " >> $PILLARFILE
}
function add_strelka_filestream_to_minion() {
printf '%s\n'\
"strelka:"\
" filestream:"\
" enabled: True"\
" " >> $PILLARFILE
}
function add_strelka_frontend_to_minion() {
printf '%s\n'\
"strelka:"\
" frontend:"\
" enabled: True"\
" " >> $PILLARFILE
}
function add_strelka_manager_to_minion() {
printf '%s\n'\
"strelka:"\
" manager:"\
" enabled: True"\
" " >> $PILLARFILE
}
function add_strelka_coordinator_to_minion() {
printf '%s\n'\
"strelka:"\
" coordinator:"\
" enabled: True"\
" " >> $PILLARFILE
}
function add_strelka_gatekeeper_to_minion() {
printf '%s\n'\
"strelka:"\
" gatekeeper:"\
" enabled: True"\
" " >> $PILLARFILE
}
function create_fleet_policy() {
JSON_STRING=$( jq -n \
@@ -295,6 +343,12 @@ function apply_ES_state() {
function createEVAL() {
add_elasticsearch_to_minion
add_sensor_to_minion
add_strelka_backend_to_minion
add_strelka_filestream_to_minion
add_strelka_frontend_to_minion
add_strelka_manager_to_minion
add_strelka_coordinator_to_minion
add_strelka_gatekeeper_to_minion
add_elastalert_to_minion
add_kibana_to_minion
}
@@ -303,6 +357,12 @@ function createSTANDALONE() {
add_elasticsearch_to_minion
add_logstash_to_minion
add_sensor_to_minion
add_strelka_backend_to_minion
add_strelka_filestream_to_minion
add_strelka_frontend_to_minion
add_strelka_manager_to_minion
add_strelka_coordinator_to_minion
add_strelka_gatekeeper_to_minion
add_playbook_to_minion
add_elastalert_to_minion
add_kibana_to_minion
@@ -349,11 +409,23 @@ function createHEAVYNODE() {
add_elasticsearch_to_minion
add_logstash_to_minion
add_sensor_to_minion
add_strelka_backend_to_minion
add_strelka_filestream_to_minion
add_strelka_frontend_to_minion
add_strelka_manager_to_minion
add_strelka_coordinator_to_minion
add_strelka_gatekeeper_to_minion
add_redis_to_minion
}
function createSENSOR() {
add_sensor_to_minion
add_strelka_backend_to_minion
add_strelka_filestream_to_minion
add_strelka_frontend_to_minion
add_strelka_manager_to_minion
add_strelka_coordinator_to_minion
add_strelka_gatekeeper_to_minion
}
function createSEARCHNODE() {