(ids) work in progress query alert log configd action

This commit is contained in:
Ad Schellevis 2015-06-24 20:35:08 +00:00
parent e8da11e252
commit c63ef62075
2 changed files with 8 additions and 1 deletions

View File

@ -37,7 +37,7 @@ import ujson
from lib.log import reverse_log_reader
from lib.params import updateParams
suricata_log = '/tmp/eve.json'
suricata_log = '/var/log/suricata/eve.json'
# handle parameters
parameters = {'limit':'0','offset':'0', 'filter':''}

View File

@ -16,6 +16,12 @@ parameters:
type:script
message:install suricata rules
[query.alerts]
command:/usr/local/opnsense/scripts/suricata/queryAlertLog.py
parameters:/limit %s /offset %s /filter %s
type:script_output
message:query suricata alerts
[stop]
command:/usr/local/etc/rc.d/suricata stop
parameters:
@ -39,3 +45,4 @@ command:/usr/local/etc/rc.d/suricata status
parameters:
type:script_output
message:get suricata daemon status