X-Git-Url: http://ftp.carnet.hr/carnet-debian/scm?a=blobdiff_plain;ds=sidebyside;f=debian%2Fossec-hids%2Fusr%2Fshare%2Fdoc%2Fossec-hids%2Fcontrib%2Fdebian-packages%2Fossec-hids%2Fdebian%2Fpatches%2F02_ossec-server.conf.patch;fp=debian%2Fossec-hids%2Fusr%2Fshare%2Fdoc%2Fossec-hids%2Fcontrib%2Fdebian-packages%2Fossec-hids%2Fdebian%2Fpatches%2F02_ossec-server.conf.patch;h=668575622754b8501c5ab99cc008d9eca9232ce7;hb=3f728675941dc69d4e544d3a880a56240a6e394a;hp=0000000000000000000000000000000000000000;hpb=927951d1c1ad45ba9e7325f07d996154a91c911b;p=ossec-hids.git diff --git a/debian/ossec-hids/usr/share/doc/ossec-hids/contrib/debian-packages/ossec-hids/debian/patches/02_ossec-server.conf.patch b/debian/ossec-hids/usr/share/doc/ossec-hids/contrib/debian-packages/ossec-hids/debian/patches/02_ossec-server.conf.patch new file mode 100644 index 0000000..6685756 --- /dev/null +++ b/debian/ossec-hids/usr/share/doc/ossec-hids/contrib/debian-packages/ossec-hids/debian/patches/02_ossec-server.conf.patch @@ -0,0 +1,100 @@ +Index: ossec-hids-2.8.2/etc/ossec-server.conf +=================================================================== +--- ossec-hids-2.8.2.orig/etc/ossec-server.conf 2015-06-10 15:38:32.000000000 +0000 ++++ ossec-hids-2.8.2/etc/ossec-server.conf 2015-07-12 18:46:24.995134760 +0000 +@@ -2,10 +2,10 @@ + + + +- yes +- daniel.cid@example.com +- smtp.example.com. +- ossecm@ossec.example.com. ++ no ++ your_email_address@example.com ++ smtp.your_domain.com. ++ ossecm@ossec.your_domain.com. + + + +@@ -90,14 +90,11 @@ + + /var/ossec/etc/shared/rootkit_files.txt + /var/ossec/etc/shared/rootkit_trojans.txt ++ /var/ossec/etc/shared/system_audit_rcl.txt + + + + 127.0.0.1 +- 192.168.2.1 +- 192.168.2.190 +- 192.168.2.32 +- 192.168.2.10 + + + +@@ -138,6 +135,7 @@ + - level (severity) >= 6. + - The IP is going to be blocked for 600 seconds. + --> ++ yes + host-deny + local + 6 +@@ -149,6 +147,7 @@ + - 600 seconds on the firewall (iptables, + - ipfilter, etc). + --> ++ yes + firewall-drop + local + 6 +@@ -159,36 +158,41 @@ + + + syslog +- /var/log/messages ++ /var/log/syslog + + + + syslog +- /var/log/authlog ++ /var/log/auth.log + + + + syslog +- /var/log/secure ++ /var/log/dpkg.log + + + + syslog +- /var/log/xferlog ++ /var/log/kern.log + + ++ ++ +