diff options
author | Mario Preksavec <mario@slackware.hr> | 2020-03-13 00:51:20 +0100 |
---|---|---|
committer | Willy Sudiarto Raharjo <willysr@slackbuilds.org> | 2020-03-14 08:46:19 +0700 |
commit | a4db5324e6e61e62e61a7ba414a4bee5865484d9 (patch) | |
tree | 0d9ed791628e7ded9a84239264c0155546b42907 | |
parent | 28f7561621fd746753ae4c457ce2f10885d74657 (diff) | |
download | slackbuilds-a4db5324e6e61e62e61a7ba414a4bee5865484d9.tar.gz |
system/ossec-agent: Updated for version 3.6.0.
Signed-off-by: Mario Preksavec <mario@slackware.hr>
-rw-r--r-- | system/ossec-agent/README | 9 | ||||
-rw-r--r-- | system/ossec-agent/ossec-agent.SlackBuild | 19 | ||||
-rw-r--r-- | system/ossec-agent/ossec-agent.info | 8 |
3 files changed, 28 insertions, 8 deletions
diff --git a/system/ossec-agent/README b/system/ossec-agent/README index f973332031..e16fad6ea6 100644 --- a/system/ossec-agent/README +++ b/system/ossec-agent/README @@ -2,4 +2,13 @@ OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response. +The following build options are available: + + GEOIP=yes Enable GeoIP support (requires GeoIP) + INOTIFY=yes Enable inotify for monitoring filesystem events + +Example of enabling the GeoIP and inotify support: + + GEOIP=yes INOTIFY=yes ./ossec-agent.SlackBuild + See README.SLACKWARE for installation instructions. diff --git a/system/ossec-agent/ossec-agent.SlackBuild b/system/ossec-agent/ossec-agent.SlackBuild index 630bddc0f7..fa24c687ef 100644 --- a/system/ossec-agent/ossec-agent.SlackBuild +++ b/system/ossec-agent/ossec-agent.SlackBuild @@ -23,7 +23,7 @@ # ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. PRGNAM=ossec-agent -VERSION=${VERSION:-2.9.1} +VERSION=${VERSION:-3.6.0} BUILD=${BUILD:-1} TAG=${TAG:-_SBo} @@ -61,6 +61,14 @@ USERID_MAIL=${USERID_MAIL:-334} USERID_REMOTE=${USERID_REMOTE:-335} GROUPID=${GROUPID:-333} +if [ "$GEOIP" != "yes" ]; then + GEOIP=no +fi + +if [ "$INOTIFY" != "yes" ]; then + INOTIFY=no +fi + if ! grep ^ossec: /etc/group 2>&1 > /dev/null \ || ! grep -E '^(ossec|ossecm|ossecr):' /etc/passwd 2>&1 > /dev/null; then echo -e "\n You must have ossec users and a group to run this script\n" @@ -113,8 +121,10 @@ sed -e 's|\(./init/adduser.sh.*\)|#\1|' \ # There is no configure script and install.sh is a bit limited ( cd src - make PREFIX=$PKG/var/ossec TARGET=agent build - make PREFIX=$PKG/var/ossec TARGET=agent install + make USE_GEOIP=$GEOIP USE_INOTIFY=$INOTIFY \ + PREFIX=$PKG/var/ossec TARGET=agent build + make USE_GEOIP=$GEOIP USE_INOTIFY=$INOTIFY \ + PREFIX=$PKG/var/ossec TARGET=agent install ) # Prepare system /etc @@ -141,7 +151,8 @@ find $PKG -print0 | xargs -0 file | grep -e "executable" -e "shared object" | gr | cut -f 1 -d : | xargs strip --strip-unneeded 2> /dev/null || true mkdir -p $PKG/usr/doc/$PRGNAM-$VERSION -cp -a BUGS CHANGELOG CONFIG CONTRIBUTORS LICENSE README.md doc/{*.txt,README.*} \ +cp -a BUGS CHANGELOG.md CONFIG CONTRIBUTORS INSTALL LICENSE README.md SUPPORT.md \ + doc/{*.txt,README.*} \ $CWD/README.SLACKWARE $PKG/usr/doc/$PRGNAM-$VERSION cat $CWD/$PRGNAM.SlackBuild > $PKG/usr/doc/$PRGNAM-$VERSION/$PRGNAM.SlackBuild diff --git a/system/ossec-agent/ossec-agent.info b/system/ossec-agent/ossec-agent.info index 7b29fcca51..10cce74f00 100644 --- a/system/ossec-agent/ossec-agent.info +++ b/system/ossec-agent/ossec-agent.info @@ -1,10 +1,10 @@ PRGNAM="ossec-agent" -VERSION="2.9.1" +VERSION="3.6.0" HOMEPAGE="https://ossec.github.io/" -DOWNLOAD="https://github.com/ossec/ossec-hids/archive/2.9.1/ossec-hids-2.9.1.tar.gz" -MD5SUM="51eb7958a752a8f1651395b1fe61e864" +DOWNLOAD="https://github.com/ossec/ossec-hids/archive/3.6.0/ossec-hids-3.6.0.tar.gz" +MD5SUM="03fe101f736e834b3804bac8bb4aa980" DOWNLOAD_x86_64="" MD5SUM_x86_64="" -REQUIRES="" +REQUIRES="pcre2" MAINTAINER="Mario Preksavec" EMAIL="mario at slackware dot hr" |