86 lines
2.1 KiB
YAML
86 lines
2.1 KiB
YAML
---
|
|
dependency:
|
|
name: galaxy
|
|
driver:
|
|
name: docker
|
|
|
|
ansible:
|
|
group_vars:
|
|
ossec:
|
|
ossec_server_config:
|
|
mail_to:
|
|
- me@example.com
|
|
mail_smtp_server: localhost
|
|
mail_from: ossec@example.com
|
|
frequency_check: 72000
|
|
ignore_files:
|
|
- /etc/mtab
|
|
- /etc/mnttab
|
|
- /etc/hosts.deny
|
|
directories:
|
|
- check_all: 'yes'
|
|
dirs: /etc,/usr/bin,/usr/sbin
|
|
- check_all: 'yes'
|
|
dirs: /bin,/sbin
|
|
localfiles:
|
|
- format: 'syslog'
|
|
location: '/var/log/messages'
|
|
- format: 'syslog'
|
|
location: '/var/log/secure'
|
|
globals:
|
|
- '127.0.0.1'
|
|
- '192.168.2.1'
|
|
connection: 'secure'
|
|
log_level: 1
|
|
email_level: 7
|
|
commands:
|
|
- name: 'host-deny'
|
|
executable: 'host-deny.sh'
|
|
expect: 'srcip'
|
|
timeout_allowed: 'yes'
|
|
active_responses:
|
|
- command: 'host-deny'
|
|
location: 'local'
|
|
level: 6
|
|
timeout: 600
|
|
localfiles:
|
|
- format: 'syslog'
|
|
location: '/var/log/messages'
|
|
ossec_agent_configs:
|
|
- type: os
|
|
type_value: linux
|
|
frequency_check: 79200
|
|
ignore_files:
|
|
- /etc/mtab
|
|
- /etc/mnttab
|
|
localfiles:
|
|
- format: 'syslog'
|
|
location: '/var/log/messages'
|
|
directories:
|
|
- check_all: yes
|
|
dirs: /etc,/usr/bin,/usr/sbin
|
|
|
|
docker:
|
|
containers:
|
|
- name: ansible-ossec-server-centos
|
|
ansible_groups:
|
|
- ossec
|
|
image: milcom/centos7-systemd
|
|
image_version: latest
|
|
privileged: True
|
|
- name: ansible-ossec-server-debian
|
|
ansible_groups:
|
|
- ossec
|
|
image: maint/debian-systemd
|
|
image_version: latest
|
|
privileged: True
|
|
# - name: ansible-ossec-server-ubuntu
|
|
# ansible_groups:
|
|
# - ossec
|
|
# image: rastasheep/ubuntu-sshd
|
|
# image_version: 16.04
|
|
# privileged: True
|
|
|
|
verifier:
|
|
name: testinfra
|