From f2aaa49465f1f0736e19cc72321ba45b6a0e29c4 Mon Sep 17 00:00:00 2001 From: Jose Luis Date: Wed, 5 Apr 2017 12:56:14 -0400 Subject: [PATCH] update RHEL repositories and add ansible-vault file for api user --- .../templates/var-ossec-etc-ossec-agent.conf.j2 | 1 + ansible-wazuh-server/README.md | 6 ++++++ ansible-wazuh-server/tasks/RedHat.yml | 3 --- ansible-wazuh-server/vars/main.yml | 4 ++-- passwd | 1 + user.yml | 6 ++++++ wazuh-agent.yml | 2 +- 7 files changed, 17 insertions(+), 6 deletions(-) create mode 100644 passwd create mode 100644 user.yml diff --git a/ansible-wazuh-agent/templates/var-ossec-etc-ossec-agent.conf.j2 b/ansible-wazuh-agent/templates/var-ossec-etc-ossec-agent.conf.j2 index f67e889b..876d539e 100644 --- a/ansible-wazuh-agent/templates/var-ossec-etc-ossec-agent.conf.j2 +++ b/ansible-wazuh-agent/templates/var-ossec-etc-ossec-agent.conf.j2 @@ -6,6 +6,7 @@ {% if ossec_profile is defined %} {{ ossec_profile }} {% endif %} + tcp {% if ansible_distribution == 'Ubuntu' and ansible_distribution_release == 'xenial' %} diff --git a/ansible-wazuh-server/README.md b/ansible-wazuh-server/README.md index 16f24516..b70b7c53 100644 --- a/ansible-wazuh-server/README.md +++ b/ansible-wazuh-server/README.md @@ -21,6 +21,12 @@ ossec_server_config: [] ossec_agent_configs: [] ``` + + +--- +user: "jose:$apr1$XSwG938n$tDxKvaCBx5C/kdU2xXP3K." + + ###Example setup Edit the vars file for the host which runs the ossec-server: diff --git a/ansible-wazuh-server/tasks/RedHat.yml b/ansible-wazuh-server/tasks/RedHat.yml index e56aa55c..8846929e 100644 --- a/ansible-wazuh-server/tasks/RedHat.yml +++ b/ansible-wazuh-server/tasks/RedHat.yml @@ -27,9 +27,6 @@ gpgcheck: yes when: ansible_distribution == 'RedHat' -- name: RedHat | Install epel repo - yum: name=https://dl.fedoraproject.org/pub/epel/epel-release-latest-{{ansible_distribution_major_version}}.noarch.rpm state=present - - name: RedHat | Install Wazuh Manager and Wazuh Api yum: pkg={{ item }} state=present diff --git a/ansible-wazuh-server/vars/main.yml b/ansible-wazuh-server/vars/main.yml index f7dbcd1d..de8f74b5 100644 --- a/ansible-wazuh-server/vars/main.yml +++ b/ansible-wazuh-server/vars/main.yml @@ -1,6 +1,6 @@ ossec_server_config: mail_to: - - jose@wazuh.com + - victor@wazuh.com mail_smtp_server: localhost mail_from: ossec@example.com frequency_check: 43200 @@ -46,7 +46,7 @@ ossec_server_config: connection: - type: 'secure' port: '1514' - protocol: 'udp' + protocol: 'tcp' log_level: 1 email_level: 12 commands: diff --git a/passwd b/passwd new file mode 100644 index 00000000..9daeafb9 --- /dev/null +++ b/passwd @@ -0,0 +1 @@ +test diff --git a/user.yml b/user.yml new file mode 100644 index 00000000..88f26781 --- /dev/null +++ b/user.yml @@ -0,0 +1,6 @@ +$ANSIBLE_VAULT;1.1;AES256 +66616434393463353338336137323935333863353166656135643764626431396331383331353339 +3637383166363739306238306465303232623239376263630a613838376432373733633838616632 +35636137636665663039336436363962356533353033386239336362343965656361393738316536 +3838303338383764610a376232313734643737623330396335383062653136656136633934336135 +3336 diff --git a/wazuh-agent.yml b/wazuh-agent.yml index da3fbd71..db13438f 100644 --- a/wazuh-agent.yml +++ b/wazuh-agent.yml @@ -1,3 +1,3 @@ - hosts: all:!wazuh-manager roles: - - { role: ansible-wazuh-agent, ossec_server_ip: 192.168.33.183 } + - { role: ansible-wazuh-agent, ossec_server_ip: 192.168.33.169 }