diff options
author | Benjamin Smee <strerror@gentoo.org> | 2005-12-24 23:28:04 +0000 |
---|---|---|
committer | Benjamin Smee <strerror@gentoo.org> | 2005-12-24 23:28:04 +0000 |
commit | 1a254be9063d3260cdf64f1431ba8b1323e8d2ea (patch) | |
tree | 5204ea639fa498d804f2bbfa134803e0fa459655 /net-analyzer/sguil-sensor | |
parent | Version bump (diff) | |
download | historical-1a254be9063d3260cdf64f1431ba8b1323e8d2ea.tar.gz historical-1a254be9063d3260cdf64f1431ba8b1323e8d2ea.tar.bz2 historical-1a254be9063d3260cdf64f1431ba8b1323e8d2ea.zip |
Version bump
Package-Manager: portage-2.0.53
Diffstat (limited to 'net-analyzer/sguil-sensor')
-rw-r--r-- | net-analyzer/sguil-sensor/ChangeLog | 8 | ||||
-rw-r--r-- | net-analyzer/sguil-sensor/Manifest | 10 | ||||
-rw-r--r-- | net-analyzer/sguil-sensor/files/digest-sguil-sensor-0.6.0_p1 | 1 | ||||
-rw-r--r-- | net-analyzer/sguil-sensor/sguil-sensor-0.6.0_p1.ebuild | 93 |
4 files changed, 107 insertions, 5 deletions
diff --git a/net-analyzer/sguil-sensor/ChangeLog b/net-analyzer/sguil-sensor/ChangeLog index 99b9ae135488..0d7b3debebd9 100644 --- a/net-analyzer/sguil-sensor/ChangeLog +++ b/net-analyzer/sguil-sensor/ChangeLog @@ -1,6 +1,12 @@ # ChangeLog for net-analyzer/sguil-sensor # Copyright 1999-2005 Gentoo Foundation; Distributed under the GPL v2 -# $Header: /var/cvsroot/gentoo-x86/net-analyzer/sguil-sensor/ChangeLog,v 1.7 2005/10/10 23:40:52 strerror Exp $ +# $Header: /var/cvsroot/gentoo-x86/net-analyzer/sguil-sensor/ChangeLog,v 1.8 2005/12/24 23:24:32 strerror Exp $ + +*sguil-sensor-0.6.0_p1 (24 Dec 2005) + + 24 Dec 2005; Benjamin Smee <strerror@gentoo.org> + +sguil-sensor-0.6.0_p1.ebuild: + Version bump 10 Oct 2005; Benjamin Smee <strerror@gentoo.org> -files/digest-sguil-sensor-0.5.3: diff --git a/net-analyzer/sguil-sensor/Manifest b/net-analyzer/sguil-sensor/Manifest index 6ae370cf3c82..22a1a807f1c8 100644 --- a/net-analyzer/sguil-sensor/Manifest +++ b/net-analyzer/sguil-sensor/Manifest @@ -1,7 +1,9 @@ -MD5 2e2cd8bb5e2d134cfafb10559453d43f sguil-sensor-0.5.3-r2.ebuild 2721 -MD5 19db0449d3971c277eb608f321cebb81 ChangeLog 1287 -MD5 5355b4f79a0130d075711f0a54840239 metadata.xml 223 +MD5 e51e044878c3f2b88a4964910236bdfa ChangeLog 1425 +MD5 7dea1d8d6ed9dadaa3768e6ba138fe76 files/digest-sguil-sensor-0.5.3-r2 69 +MD5 21efd06f535dcc5b39027550e66c2b4e files/digest-sguil-sensor-0.6.0_p1 72 MD5 b00be8c2354effc6b8d51da0ca0a02da files/log_packets.confd 553 MD5 0982853c1c4d9ed283f9faac1a1f89a5 files/log_packets.initd 2255 MD5 87465a7b8792682b4dae8e2e46eed0bb files/sensor_agent.initd 757 -MD5 7dea1d8d6ed9dadaa3768e6ba138fe76 files/digest-sguil-sensor-0.5.3-r2 69 +MD5 5355b4f79a0130d075711f0a54840239 metadata.xml 223 +MD5 2e2cd8bb5e2d134cfafb10559453d43f sguil-sensor-0.5.3-r2.ebuild 2721 +MD5 26bcebb7120ebc99f942c15d0f02a806 sguil-sensor-0.6.0_p1.ebuild 2748 diff --git a/net-analyzer/sguil-sensor/files/digest-sguil-sensor-0.6.0_p1 b/net-analyzer/sguil-sensor/files/digest-sguil-sensor-0.6.0_p1 new file mode 100644 index 000000000000..d54cce98536d --- /dev/null +++ b/net-analyzer/sguil-sensor/files/digest-sguil-sensor-0.6.0_p1 @@ -0,0 +1 @@ +MD5 2404fa1c7c574a680005fe93988d47c1 sguil-sensor-0.6.0p1.tar.gz 105374 diff --git a/net-analyzer/sguil-sensor/sguil-sensor-0.6.0_p1.ebuild b/net-analyzer/sguil-sensor/sguil-sensor-0.6.0_p1.ebuild new file mode 100644 index 000000000000..bee85e263319 --- /dev/null +++ b/net-analyzer/sguil-sensor/sguil-sensor-0.6.0_p1.ebuild @@ -0,0 +1,93 @@ +# Copyright 1999-2005 Gentoo Foundation +# Distributed under the terms of the GNU General Public License v2 +# $Header: /var/cvsroot/gentoo-x86/net-analyzer/sguil-sensor/sguil-sensor-0.6.0_p1.ebuild,v 1.1 2005/12/24 23:24:32 strerror Exp $ + +inherit eutils + +MY_PV="${PV/_p/p}" +DESCRIPTION="Sensor part of sguil Network Security Monitoring" +HOMEPAGE="http://sguil.sourceforge.net" +SRC_URI="mirror://sourceforge/sguil/sguil-sensor-${MY_PV}.tar.gz" + +LICENSE="QPL" +SLOT="0" +KEYWORDS="~x86" +IUSE="" + +DEPEND=">=dev-lang/tcl-8.3" +RDEPEND="${DEPEND} + >=dev-tcltk/tclx-8.3 + >=net-analyzer/snort-2.4.1-r1 + >=net-analyzer/barnyard-0.2.0-r1 + net-analyzer/sancp + dev-ml/pcre-ocaml" + +S="${WORKDIR}/sguil-${MY_PV}" + +pkg_setup() { + if built_with_use dev-lang/tcl threads ; then + eerror + eerror "Sguil does not run when tcl was built with threading enabled." + eerror "Please rebuild tcl without threads and reemerge this ebuild." + eerror + die + fi + + if ! built_with_use net-analyzer/snort sguil ; then + eerror + eerror "You need to emerge snort with 'sguil' USE flag to get" + eerror "the full sguil functionality" + eerror + die + fi + enewgroup sguil + enewuser sguil -1 -1 /var/lib/sguil sguil +} + +src_unpack() { + unpack ${A} + cd ${S}/sensor + sed -i -e 's:192.168.8.1:127.0.0.1:' -e "s:gateway:${HOSTNAME}:" \ + -e 's:/snort_data:/var/lib/sguil:' -e 's:DAEMON 0:DAEMON 1:' \ + -e 's:DEBUG 1:DEBUG 0:g' sensor_agent.conf || die "sed failed" + sed -i -e 's:/var/run/sensor_agent.pid:/var/run/sguil/sensor.pid:' \ + sensor_agent.tcl || die "sed failed" +} + +src_install() { + + dodoc doc/* + + dobin sensor/sensor_agent.tcl + + newinitd "${FILESDIR}/log_packets.initd" log_packets + newinitd "${FILESDIR}/sensor_agent.initd" sensor_agent + newconfd "${FILESDIR}/log_packets.confd" log_packets + insinto /etc/sguil + doins sensor/sensor_agent.conf + + # Create the directory structure + diropts -g sguil -o sguil + keepdir /var/lib/sguil /var/run/sguil /var/lib/sguil/archive \ + "/var/lib/sguil/${HOSTNAME}" \ + "/var/lib/sguil/${HOSTNAME}/portscans" \ + "/var/lib/sguil/${HOSTNAME}/ssn_logs" \ + "/var/lib/sguil/${HOSTNAME}/dailylogs" \ + "/var/lib/sguil/${HOSTNAME}/sancp" + +} + +pkg_postinst() { + einfo + einfo "You should check /etc/sguil/sensor_agent.conf and" + einfo "/etc/init.d/logpackets and ensure that they are accurate" + einfo "for your environment. They should work providing that you" + einfo "are running the sensor on the same machine as the server." + einfo "This ebuild assumes that you are running a single sensor" + einfo "environment, if this is not the case then you must make sure" + einfo "to modify /etc/sguil/sensor_agent.conf and change the HOSTNAME variable." + einfo "You should crontab the /etc/init.d/log_packets script to restart" + einfo "each hour." + einfo +} + |