Преглед на файлове

Merge branch 'stretch' of https://github.com/bashrc/freedombone

Bob Mottram преди 7 години
родител
ревизия
6fc1e1e967
променени са 1 файла, в които са добавени 8 реда и са изтрити 2 реда
  1. 8
    2
      src/freedombone-base-tripwire

+ 8
- 2
src/freedombone-base-tripwire Целия файл

75
     echo 'EMAILREPORTLEVEL =3' >> /etc/tripwire/twcfg.txt
75
     echo 'EMAILREPORTLEVEL =3' >> /etc/tripwire/twcfg.txt
76
     echo 'REPORTLEVEL   =3' >> /etc/tripwire/twcfg.txt
76
     echo 'REPORTLEVEL   =3' >> /etc/tripwire/twcfg.txt
77
     echo 'SYSLOGREPORTING =false' >> /etc/tripwire/twcfg.txt
77
     echo 'SYSLOGREPORTING =false' >> /etc/tripwire/twcfg.txt
78
-    echo 'MAILMETHOD    =SMTP' >> /etc/tripwire/twcfg.txt
78
+    echo 'MAILMETHOD    =SENDMAIL' >> /etc/tripwire/twcfg.txt
79
     echo 'SMTPHOST      =localhost' >> /etc/tripwire/twcfg.txt
79
     echo 'SMTPHOST      =localhost' >> /etc/tripwire/twcfg.txt
80
     echo 'SMTPPORT      =25' >> /etc/tripwire/twcfg.txt
80
     echo 'SMTPPORT      =25' >> /etc/tripwire/twcfg.txt
81
     echo 'TEMPDIRECTORY =/tmp' >> /etc/tripwire/twcfg.txt
81
     echo 'TEMPDIRECTORY =/tmp' >> /etc/tripwire/twcfg.txt
82
+    echo 'MAILFROMADDRESS =tripwire@$(HOSTNAME)' >> /etc/tripwire/twcfg.txt
82
 
83
 
83
     echo '
84
     echo '
84
 
85
 
90
 
91
 
91
     # make a script for easy resetting of the tripwire
92
     # make a script for easy resetting of the tripwire
92
     echo '#!/bin/sh' > /usr/bin/reset-tripwire
93
     echo '#!/bin/sh' > /usr/bin/reset-tripwire
93
-    echo 'tripwire --update-policy --secure-mode low /etc/tripwire/twpol.txt' >> /usr/bin/reset-tripwire
94
+    echo 'tripwire -m i' >> /usr/bin/reset-tripwire
94
     chmod +x /usr/bin/reset-tripwire
95
     chmod +x /usr/bin/reset-tripwire
95
 
96
 
96
     sed -i '/# These files change the behavior of the root account/,/}/ s/.*//g' /etc/tripwire/twpol.txt
97
     sed -i '/# These files change the behavior of the root account/,/}/ s/.*//g' /etc/tripwire/twpol.txt
117
     sed -i 's|$(TWETC)/tw.pol.*||g' /etc/tripwire/twpol.txt
118
     sed -i 's|$(TWETC)/tw.pol.*||g' /etc/tripwire/twpol.txt
118
     # site key name
119
     # site key name
119
     sed -i 's|$(TWETC)/site.key|$(TWETC)/$(HOSTNAME)-site.key|g' /etc/tripwire/twpol.txt
120
     sed -i 's|$(TWETC)/site.key|$(TWETC)/$(HOSTNAME)-site.key|g' /etc/tripwire/twpol.txt
121
+
120
     # create the policy
122
     # create the policy
121
     echo '
123
     echo '
122
 
124
 
137
 
139
 
138
        ' | reset-tripwire
140
        ' | reset-tripwire
139
 
141
 
142
+    TRIPWIRE_MIN=$((1 + RANDOM % 49))
143
+    TRIPWIRE_HOUR=$((1 + RANDOM % 6))
144
+    echo "${TRIPWIRE_MIN} ${TRIPWIRE_HOUR}              *   *   *   root /usr/sbin/tripwire -m c" /etc/crontab
145
+
140
     mark_completed $FUNCNAME
146
     mark_completed $FUNCNAME
141
 }
147
 }
142
 
148