mozdef-installer (安装脚本)
2016-02-20 00:00
295 查看
mozdef-installer
https://github.com/526avijitgupta/mozdef-installer.git
Steps
make init
source install_req.sh
make start
# Rabbit MQ
sudo apt-get install -q -y rabbitmq-server
rabbitmq-plugins enable rabbitmq_management
# MongoDB
sudo apt-get install -q -y mongodb
# Nodejs and NPM
sudo apt-get install -q -y nodejs npm
# Nginx
sudo apt-get install -q -y nginx-full
## Copy nginx.conf file
# MozDef
sudo apt-get install -q -y python2.7-dev python-pip curl supervisor wget libmysqlclient-dev
sudo pip install -U pip
# Clone repo into /opt/MozDef
# pip install -r requirements (of Mozdef) into virtualenv
# pip install uwsgi celery
# Use sudo here
mkdir /var/log/mozdef \
mkdir -p /run/uwsgi/apps/ \
touch /run/uwsgi/apps/loginput.socket && chmod 666 /run/uwsgi/apps/loginput.socket \
touch /run/uwsgi/apps/rest.socket && chmod 666 /run/uwsgi/apps/rest.socket \
# Rewrite the below line, special care to be taken
mkdir -p /home/mozdef/envs/mozdef/bot/ && cd /home/mozdef/envs/mozdef/bot/
# Where to put it ? What does it do ?
wget http://geolite.maxmind.com/download/geoip/database/GeoLiteCity.dat.gz && gzip -d GeoLiteCity.dat.gz
##
## Copy various conf files
##
# Install elasticsearch
# Copy elasticsearch.yml from conf
# Install Kibana
# Copy JS files as given in dockerfile
# For Meteor, try to avoid symlink
curl -L https://install.meteor.com/ | /bin/sh
npm install -g meteorite
ln -s /usr/bin/nodejs /usr/bin/node
cd /opt/MozDef/meteor
#
# For Starting the services
#
# RabbitMQ
sudo /etc/init.d/rabbitmq-server start
# Elasticsearch
sudo service elasticsearch start
# Nginx
sudo service nginx start
# Loginput
cd /opt/MozDef/loginput
sudo /usr/local/bin/uwsgi --socket /run/uwsgi/apps/loginput.socket --wsgi-file index.py --buffer-size 32768 --master --listen 100 --uid root --pp /opt/MozDef/loginput --chmod-socket --logto /var/log/mozdef/uwsgi.loginput.log
# Rest
cd /opt/MozDef/rest
sudo /usr/local/bin/uwsgi --socket /run/uwsgi/apps/rest.socket --wsgi-file index.py --buffer-size 32768 --master --listen 100 --uid root --pp /opt/MozDef/rest --chmod-socket --logto /var/log/mozdef/uwsgi.rest.log
# ES Worker
cd /opt/MozDef/mq
sudo /usr/local/bin/uwsgi --socket /run/uwsgi/apps/esworker.socket --mule=esworker.py --mule=esworker.py --buffer-size 32768 --master --listen 100 --uid root --pp /opt/MozDef/mq --stats 127.0.0.1:9192 --logto /var/log/mozdef/uwsgi.esworker.log --master-fifo /run/uwsgi/apps/esworker.fifo
# Meteor
cd /opt/MozDef/meteor
meteor
# Alerts
cd /opt/MozDef/alerts
sudo celery -A celeryconfig worker --loglevel=info --beat
# Injecting sample data
cd /op
3ff0
t/MozDef/examples/es-docs/
python inject.py
# Helper Jobs
# Health/status
## Do look at the source code #TODO
sh /opt/MozDef/examples/demo/healthjobs.sh
# Real Time Events
## Do look at the source code #TODO
sh /opt/MozDef/examples/demo/sampleevents.sh
# Real Time Alerts
## Do look at the source code #TODO
sh /opt/MozDef/examples/demo/syncalerts.sh
相关文章推荐
- ThinkPHP的URL重写时遇到No input file specified的解决方法
- Centos7安装rabbitmq server 3.6.0
- Centos7 安装 memcached 1.4.25
- git初基本用法总结
- JSP中四种属性范围(pageContext,request)
- JSP中四种属性范围(session,application)
- iOS-使用代码CGImage调节tabBar上按钮图片的大小
- IOS APP发布被拒原因解析1
- virtualBox(Genymotion)中不能启动虚拟机可能与oleaut32.dll有关
- 解决TableView与状态栏重叠的办法
- TableView实现基本的edit insert delete reorder功能
- 理解Cell的注册与重用机制
- 4个理由告诉你Java为何排行第一
- Python中的数据结构和面向对象设计模式的算法
- python 读书笔记(1)
- wiki
- 【前端开发者福利】html5移动端常见问题集锦
- cobar 之外的选择 ReplicationDriver
- RabbitMQ的几种典型使用场景
- Java 正则表达式