mirror of
https://github.com/Security-Onion-Solutions/securityonion.git
synced 2025-12-07 01:32:47 +01:00
add suricata to socore group
This commit is contained in:
@@ -26,13 +26,10 @@
|
|||||||
|
|
||||||
{% if ENGINE == "SURICATA" %}
|
{% if ENGINE == "SURICATA" %}
|
||||||
{% set filecheck_runas = 'suricata' %}
|
{% set filecheck_runas = 'suricata' %}
|
||||||
{% set filecheck_groupid = 940 %}
|
|
||||||
{% else %}
|
{% else %}
|
||||||
{% set filecheck_runas = 'socore' %}
|
{% set filecheck_runas = 'socore' %}
|
||||||
{% set filecheck_groupid = 939 %}
|
|
||||||
{% endif %}
|
{% endif %}
|
||||||
|
|
||||||
|
|
||||||
{% if grains['os'] != 'CentOS' %}
|
{% if grains['os'] != 'CentOS' %}
|
||||||
strelkapkgs:
|
strelkapkgs:
|
||||||
pkg.installed:
|
pkg.installed:
|
||||||
@@ -133,7 +130,7 @@ strelkaunprocessed:
|
|||||||
file.directory:
|
file.directory:
|
||||||
- name: /nsm/strelka/unprocessed
|
- name: /nsm/strelka/unprocessed
|
||||||
- user: 939
|
- user: 939
|
||||||
- group: {{ filecheck_groupid }}
|
- group: 939
|
||||||
- mode: 775
|
- mode: 775
|
||||||
- makedirs: True
|
- makedirs: True
|
||||||
|
|
||||||
@@ -147,14 +144,16 @@ filecheck_logdir:
|
|||||||
file.directory:
|
file.directory:
|
||||||
- name: /opt/so/log/strelka
|
- name: /opt/so/log/strelka
|
||||||
- user: 939
|
- user: 939
|
||||||
- group: {{ filecheck_groupid }}
|
- group: 939
|
||||||
|
- mode: 775
|
||||||
- makedirs: True
|
- makedirs: True
|
||||||
|
|
||||||
filecheck_history:
|
filecheck_history:
|
||||||
file.directory:
|
file.directory:
|
||||||
- name: /nsm/strelka/history
|
- name: /nsm/strelka/history
|
||||||
- user: 939
|
- user: 939
|
||||||
- group: {{ filecheck_groupid }}
|
- group: 939
|
||||||
|
- mode: 775
|
||||||
- makedirs: True
|
- makedirs: True
|
||||||
|
|
||||||
filecheck_conf:
|
filecheck_conf:
|
||||||
@@ -165,10 +164,10 @@ filecheck_conf:
|
|||||||
|
|
||||||
filecheck_script:
|
filecheck_script:
|
||||||
file.managed:
|
file.managed:
|
||||||
- name: /opt/so/conf/strelka/filecheck
|
- name: /usr/sbin/filecheck
|
||||||
- source: salt://strelka/filecheck/filecheck
|
- source: salt://strelka/filecheck/filecheck
|
||||||
- user: 939
|
- user: 939
|
||||||
- group: {{ filecheck_groupid }}
|
- group: 939
|
||||||
- mode: 755
|
- mode: 755
|
||||||
|
|
||||||
filecheck_run:
|
filecheck_run:
|
||||||
|
|||||||
@@ -44,6 +44,12 @@ suricata:
|
|||||||
- home: /nsm/suricata
|
- home: /nsm/suricata
|
||||||
- createhome: False
|
- createhome: False
|
||||||
|
|
||||||
|
suricatasocoregroup:
|
||||||
|
group.present:
|
||||||
|
- gid: 939
|
||||||
|
- addusers:
|
||||||
|
- suricata
|
||||||
|
|
||||||
suridir:
|
suridir:
|
||||||
file.directory:
|
file.directory:
|
||||||
- name: /opt/so/conf/suricata
|
- name: /opt/so/conf/suricata
|
||||||
|
|||||||
Reference in New Issue
Block a user