mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-07 01:32:47 +01:00
Merge pull request #3448 from Security-Onion-Solutions/kilo
Allow for moving Strelka files to processed directory after scanning
This commit is contained in:
@@ -19,7 +19,8 @@ files:
|
|||||||
- '/nsm/strelka/unprocessed/*'
|
- '/nsm/strelka/unprocessed/*'
|
||||||
delete: false
|
delete: false
|
||||||
gatekeeper: true
|
gatekeeper: true
|
||||||
|
processed: '/nsm/strelka/processed'
|
||||||
response:
|
response:
|
||||||
report: 5s
|
report: 5s
|
||||||
delta: 5s
|
delta: 5s
|
||||||
staging: '/nsm/strelka/processed'
|
staging: '/nsm/strelka/staging'
|
||||||
|
|||||||
@@ -86,6 +86,13 @@ strelkaprocessed:
|
|||||||
- group: 939
|
- group: 939
|
||||||
- makedirs: True
|
- makedirs: True
|
||||||
|
|
||||||
|
strelkastaging:
|
||||||
|
file.directory:
|
||||||
|
- name: /nsm/strelka/staging
|
||||||
|
- user: 939
|
||||||
|
- group: 939
|
||||||
|
- makedirs: True
|
||||||
|
|
||||||
strelkaunprocessed:
|
strelkaunprocessed:
|
||||||
file.directory:
|
file.directory:
|
||||||
- name: /nsm/strelka/unprocessed
|
- name: /nsm/strelka/unprocessed
|
||||||
|
|||||||
Reference in New Issue
Block a user