mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 09:12:45 +01:00
ensure zeekctl is run as user zeek https://github.com/Security-Onion-Solutions/securityonion/issues/3130
This commit is contained in:
@@ -24,11 +24,11 @@ show_stats() {
|
|||||||
echo
|
echo
|
||||||
echo "Average throughput:"
|
echo "Average throughput:"
|
||||||
echo
|
echo
|
||||||
docker exec -it so-zeek /opt/zeek/bin/zeekctl capstats
|
docker exec -it so-zeek "runuser -l zeek '/opt/zeek/bin/zeekctl capstats'"
|
||||||
echo
|
echo
|
||||||
echo "Average packet loss:"
|
echo "Average packet loss:"
|
||||||
echo
|
echo
|
||||||
docker exec -it so-zeek /opt/zeek/bin/zeekctl netstats
|
docker exec -it so-zeek "runuser -l zeek '/opt/zeek/bin/zeekctl netstats'"
|
||||||
echo
|
echo
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -1,2 +1,2 @@
|
|||||||
#!/bin/bash
|
#!/bin/bash
|
||||||
/usr/bin/docker exec so-zeek /opt/zeek/bin/zeekctl netstats | awk '{print $(NF-2),$(NF-1),$NF}' | awk -F '[ =]' '{RCVD += $2;DRP += $4;TTL += $6} END { print "rcvd: " RCVD, "dropped: " DRP, "total: " TTL}' >> /nsm/zeek/logs/packetloss.log 2>&1
|
/usr/bin/docker exec so-zeek "runuser -l zeek '/opt/zeek/bin/zeekctl netstats'" | awk '{print $(NF-2),$(NF-1),$NF}' | awk -F '[ =]' '{RCVD += $2;DRP += $4;TTL += $6} END { print "rcvd: " RCVD, "dropped: " DRP, "total: " TTL}' >> /nsm/zeek/logs/packetloss.log 2>&1
|
||||||
|
|||||||
Reference in New Issue
Block a user