mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-06 17:22:49 +01:00
Suricata Salt Module - Light the Suricata fires
This commit is contained in:
@@ -27,6 +27,12 @@ suriruledir:
|
|||||||
- group: 940
|
- group: 940
|
||||||
- makedirs: True
|
- makedirs: True
|
||||||
|
|
||||||
|
surilogdir:
|
||||||
|
file.directory:
|
||||||
|
- name: /opt/so/log/suricata
|
||||||
|
- user: 940
|
||||||
|
- group: 939
|
||||||
|
|
||||||
surirulesync:
|
surirulesync:
|
||||||
file.recurse:
|
file.recurse:
|
||||||
- name: /opt/so/conf/suricata/rules
|
- name: /opt/so/conf/suricata/rules
|
||||||
@@ -49,5 +55,5 @@ so-suricata:
|
|||||||
- priviledged: True
|
- priviledged: True
|
||||||
- binds:
|
- binds:
|
||||||
- /opt/so/suricata/conf/rules:/usr/local/etc/suricata/rules:ro
|
- /opt/so/suricata/conf/rules:/usr/local/etc/suricata/rules:ro
|
||||||
- /opt/so/rules/nids:/opt/so/rules/nids:rw
|
- /opt/so/log/suricata:/usr/local/var/log/suricata/:rw
|
||||||
- network_mode: host
|
- network_mode: host
|
||||||
|
|||||||
@@ -2,6 +2,7 @@ base:
|
|||||||
'G@role:so-sensor':
|
'G@role:so-sensor':
|
||||||
- common
|
- common
|
||||||
- pcap
|
- pcap
|
||||||
|
- suricata
|
||||||
|
|
||||||
'G@role:eval':
|
'G@role:eval':
|
||||||
- common
|
- common
|
||||||
|
|||||||
Reference in New Issue
Block a user