From 0dd2e51e83a8911fc3a15401a97c2e1c17f7ff90 Mon Sep 17 00:00:00 2001 From: Jason Ertel Date: Tue, 6 Dec 2022 11:39:58 -0500 Subject: [PATCH 1/2] Ensure Suricata move events get picked up --- salt/strelka/filecheck/filecheck | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/salt/strelka/filecheck/filecheck b/salt/strelka/filecheck/filecheck index 146625552..cd72eaffa 100644 --- a/salt/strelka/filecheck/filecheck +++ b/salt/strelka/filecheck/filecheck @@ -74,17 +74,21 @@ def process(filename, hizash): class CreatedEventHandler(FileSystemEventHandler): def on_created(self, event): + logging.info("File create detected: " + event.src_path) checksum(event.src_path) + def on_moved(self, event): + logging.info("File move detected: " + event.src_path + " -> " + event.dest_path) + checksum(event.dest_path) + if __name__ == "__main__": logging.info("Starting filecheck") - checkexisting() - event_handler =CreatedEventHandler() shutdown = False while not shutdown: + checkexisting() logging.info("Scheduling observer") observer = Observer() observer.schedule(event_handler, extract_path, recursive=True) From 819b39c0bb6638aede955192f427abfb39692d89 Mon Sep 17 00:00:00 2001 From: Jason Ertel Date: Tue, 6 Dec 2022 11:41:00 -0500 Subject: [PATCH 2/2] Update hotfix --- HOTFIX | 1 + 1 file changed, 1 insertion(+) diff --git a/HOTFIX b/HOTFIX index e69de29bb..b55757e17 100644 --- a/HOTFIX +++ b/HOTFIX @@ -0,0 +1 @@ +20221206