From c64180d00d07383b0c7fb6e6e5d120668d7a9915 Mon Sep 17 00:00:00 2001 From: Alexander Withers <alexw1@illinois.edu> Date: Thu, 21 Sep 2017 13:41:01 -0500 Subject: [PATCH] tweaks to honeypot firewall rules --- roles/honeynet/tasks/firewall.yml | 2 +- roles/ids/defaults/main.yml | 3 ++- site.yml | 2 +- 3 files changed, 4 insertions(+), 3 deletions(-) diff --git a/roles/honeynet/tasks/firewall.yml b/roles/honeynet/tasks/firewall.yml index 97a1213..c412b80 100644 --- a/roles/honeynet/tasks/firewall.yml +++ b/roles/honeynet/tasks/firewall.yml @@ -17,7 +17,7 @@ - firewalld: port="{{ sshd_alt_port }}/tcp" permanent=true state=enabled immediate=yes when: (ansible_distribution == "CentOS") -- command: /usr/bin/firewall-cmd reload +- command: /usr/bin/firewall-cmd --reload when: (ansible_distribution == "CentOS") - command: /usr/sbin/semanage port -a -t ssh_port_t -p tcp "{{ sshd_alt_port }}" diff --git a/roles/ids/defaults/main.yml b/roles/ids/defaults/main.yml index 49b76bd..29aebb8 100644 --- a/roles/ids/defaults/main.yml +++ b/roles/ids/defaults/main.yml @@ -6,7 +6,8 @@ app_user: prism app_group: "{{ app_user }}" app_user_home: "/home/{{ app_user }}" -bro_interface: "ens3" +#bro_interface: "ens3" +bro_interface: "eth0" bro_ver: 2.4.1 diff --git a/site.yml b/site.yml index 8b96159..90aa80d 100644 --- a/site.yml +++ b/site.yml @@ -6,4 +6,4 @@ - honeynet - cif - ids - - clickhouse +# - clickhouse -- GitLab