You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@metron.apache.org by ce...@apache.org on 2016/06/23 13:56:06 UTC
incubator-metron git commit: METRON-247 Deployment fails on hosts
with no 'eth0' network interface (nickwallen via cestella) closes
apache/incubator-metron#166
Repository: incubator-metron
Updated Branches:
refs/heads/master a35894e9d -> 8fc29c3cf
METRON-247 Deployment fails on hosts with no 'eth0' network interface (nickwallen via cestella) closes apache/incubator-metron#166
Project: http://git-wip-us.apache.org/repos/asf/incubator-metron/repo
Commit: http://git-wip-us.apache.org/repos/asf/incubator-metron/commit/8fc29c3c
Tree: http://git-wip-us.apache.org/repos/asf/incubator-metron/tree/8fc29c3c
Diff: http://git-wip-us.apache.org/repos/asf/incubator-metron/diff/8fc29c3c
Branch: refs/heads/master
Commit: 8fc29c3cf4462de28d665e04d09103f297f689ea
Parents: a35894e
Author: nickwallen <ni...@nickallen.org>
Authored: Thu Jun 23 09:55:39 2016 -0400
Committer: cstella <ce...@gmail.com>
Committed: Thu Jun 23 09:55:39 2016 -0400
----------------------------------------------------------------------
metron-deployment/roles/sensor-test-mode/tasks/snort.yml | 6 ++++++
metron-deployment/roles/snort/defaults/main.yml | 3 ++-
metron-deployment/roles/snort/tasks/snort.yml | 4 ++--
3 files changed, 10 insertions(+), 3 deletions(-)
----------------------------------------------------------------------
http://git-wip-us.apache.org/repos/asf/incubator-metron/blob/8fc29c3c/metron-deployment/roles/sensor-test-mode/tasks/snort.yml
----------------------------------------------------------------------
diff --git a/metron-deployment/roles/sensor-test-mode/tasks/snort.yml b/metron-deployment/roles/sensor-test-mode/tasks/snort.yml
index 4deae23..a9785c0 100644
--- a/metron-deployment/roles/sensor-test-mode/tasks/snort.yml
+++ b/metron-deployment/roles/sensor-test-mode/tasks/snort.yml
@@ -30,3 +30,9 @@
dest: /etc/snort/rules/test.rules
line: "alert tcp any any -> any any (msg:'snort test alert'; sid:999158; )"
create: yes
+
+- name: Configure home network
+ lineinfile:
+ dest: /etc/snort/snort.conf
+ regexp: "^ipvar HOME_NET.*$"
+ line: "ipvar HOME_NET any"
http://git-wip-us.apache.org/repos/asf/incubator-metron/blob/8fc29c3c/metron-deployment/roles/snort/defaults/main.yml
----------------------------------------------------------------------
diff --git a/metron-deployment/roles/snort/defaults/main.yml b/metron-deployment/roles/snort/defaults/main.yml
index 6c6c0ea..17e94b0 100644
--- a/metron-deployment/roles/snort/defaults/main.yml
+++ b/metron-deployment/roles/snort/defaults/main.yml
@@ -22,4 +22,5 @@ snort_alert_csv_path: /var/log/snort/alert.csv
snort_src_url: "https://snort.org/downloads/archive/snort/snort-{{ snort_version }}.src.rpm"
snort_community_rules_url: "https://www.snort.org/downloads/community/community-rules.tar.gz"
dag_src_url: "https://snort.org/downloads/snort/daq-{{ daq_version }}.src.rpm"
-
+sniff_interface: eth0
+snort_home_net: "{{ hostvars[inventory_hostname]['ansible_' + sniff_interface]['ipv4']['address'] }}"
http://git-wip-us.apache.org/repos/asf/incubator-metron/blob/8fc29c3c/metron-deployment/roles/snort/tasks/snort.yml
----------------------------------------------------------------------
diff --git a/metron-deployment/roles/snort/tasks/snort.yml b/metron-deployment/roles/snort/tasks/snort.yml
index 6bfecc2..de26936 100644
--- a/metron-deployment/roles/snort/tasks/snort.yml
+++ b/metron-deployment/roles/snort/tasks/snort.yml
@@ -63,11 +63,11 @@
- name: Download snort configuration
copy: src=snort.conf dest=/etc/snort/snort.conf
-- name: Configure network
+- name: Configure home network
lineinfile:
dest: /etc/snort/snort.conf
regexp: "^ipvar HOME_NET.*$"
- line: "ipvar HOME_NET {{ ansible_eth0.ipv4.address }}"
+ line: "ipvar HOME_NET {{ snort_home_net }}"
- name: Configure alerting
lineinfile: