Browse Source

suricata first

135-suricata
Steven Foerster 5 years ago
parent
commit
f35dc04942
  1. 2
      scripts/install.sh
  2. 6
      scripts/subinstallers/suricata.sh

2
scripts/install.sh

@ -102,10 +102,10 @@ source ./scripts/subinstallers/platform.sh
echo "Setting up firewall (iptables)" echo "Setting up firewall (iptables)"
if [ ! -f "/etc/iptables/rules.v4" ]; then if [ ! -f "/etc/iptables/rules.v4" ]; then
echo "Setting iptables rules..." echo "Setting iptables rules..."
./scripts/subinstallers/suricata.sh
./scripts/subinstallers/iptables.sh ./scripts/subinstallers/iptables.sh
./scripts/subinstallers/ip6tables.sh ./scripts/subinstallers/ip6tables.sh
./scripts/subinstallers/iptables_docker.sh ./scripts/subinstallers/iptables_docker.sh
./scripts/subinstallers/suricata.sh
./scripts/subinstallers/iptables_cleanup.sh ./scripts/subinstallers/iptables_cleanup.sh
else else
echo "iptables rules exist. Leaving alone." echo "iptables rules exist. Leaving alone."

6
scripts/subinstallers/suricata.sh

@ -1,5 +1,7 @@
#!/bin/bash #!/bin/bash
set -e
# minimal dependencies # minimal dependencies
sudo -E apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev build-essential libpcap-dev \ sudo -E apt-get -y install libpcre3 libpcre3-dbg libpcre3-dev build-essential libpcap-dev \
libyaml-0-2 libyaml-dev pkg-config zlib1g zlib1g-dev \ libyaml-0-2 libyaml-dev pkg-config zlib1g zlib1g-dev \
@ -34,6 +36,6 @@ else
fi fi
# iptables # iptables
sudo iptables -A INPUT -j NFQUEUE #sudo iptables -A INPUT -j NFQUEUE
sudo iptables -I FORWARD -j NFQUEUE #sudo iptables -I FORWARD -j NFQUEUE
#sudo iptables -I OUTPUT -j NFQUEUE #sudo iptables -I OUTPUT -j NFQUEUE

Loading…
Cancel
Save