mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-11 11:42:50 +01:00
Add logging for strelka configuration during setup
This commit is contained in:
@@ -407,7 +407,10 @@ if [[ $is_manager && ! $is_eval ]]; then
|
|||||||
fi
|
fi
|
||||||
|
|
||||||
if [[ "$STRELKA" = 1 ]]; then
|
if [[ "$STRELKA" = 1 ]]; then
|
||||||
|
info "Enabling Strelka rules"
|
||||||
STRELKARULES=1
|
STRELKARULES=1
|
||||||
|
else
|
||||||
|
info "Disabling Strelka rules: STRELKA='$STRELKA'"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
if [ "$MANAGERADV" = 'ADVANCED' ] && [ "$ZEEKVERSION" != 'SURICATA' ]; then
|
if [ "$MANAGERADV" = 'ADVANCED' ] && [ "$ZEEKVERSION" != 'SURICATA' ]; then
|
||||||
@@ -783,7 +786,9 @@ set_redirect >> $setup_log 2>&1
|
|||||||
salt-call state.apply -l info strelka >> $setup_log 2>&1
|
salt-call state.apply -l info strelka >> $setup_log 2>&1
|
||||||
fi
|
fi
|
||||||
if [[ "$STRELKARULES" = 1 ]]; then
|
if [[ "$STRELKARULES" = 1 ]]; then
|
||||||
/usr/sbin/so-yara-update >> $setup_log 2>&1
|
logCmd /usr/sbin/so-yara-update
|
||||||
|
else
|
||||||
|
info "Skipping running yara update: STRELKARULES='$STRELKARULES'"
|
||||||
fi
|
fi
|
||||||
fi
|
fi
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user