Skip to content

Commit 902c8db

Browse files
authored
add pillars for cve checks (#755)
1 parent e88f0e2 commit 902c8db

4 files changed

Lines changed: 92 additions & 0 deletions

File tree

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
cmd_check_alert:
2+
cve-kernel:
3+
cron:
4+
minute: '15'
5+
hour: '9'
6+
config:
7+
checks:
8+
cve-kernel:
9+
cmd: /opt/microdevops/pycve/local-agent/run-local-agent.sh --rules-base-url https://cve.microdevops.com/rules --kernel-only --fixed-only 2>/dev/null
10+
service: cve
11+
resource: __hostname__:cve-kernel
12+
severity_per_retcode:
13+
'1': major # return if agent has issues
14+
'2': major # return by packages
15+
'3': critical # return by kernel
16+
timeout: 600
17+
enabled: True
18+
limits:
19+
time: 600
20+
threads: 1
21+
22+
23+
Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
cmd_check_alert:
2+
cve-packages:
3+
cron:
4+
minute: '15'
5+
hour: '10'
6+
config:
7+
checks:
8+
cve-packages:
9+
cmd: /opt/microdevops/pycve/local-agent/run-local-agent.sh --rules-base-url https://cve.microdevops.com/rules --packages-only 2>/dev/null
10+
service: cve
11+
resource: __hostname__:cve-packages
12+
severity_per_retcode:
13+
'1': major # return if agent has issues
14+
'2': critical # return by packages
15+
'3': critical # return by kernel
16+
timeout: 600
17+
enabled: True
18+
limits:
19+
time: 600
20+
threads: 1
21+
22+
23+
Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
cmd_check_alert:
2+
cve-packages:
3+
cron:
4+
minute: '15'
5+
hour: '10'
6+
config:
7+
checks:
8+
cve-packages:
9+
cmd: /opt/microdevops/pycve/local-agent/run-local-agent.sh --rules-base-url https://cve.microdevops.com/rules --packages-only --fixed-only 2>/dev/null
10+
service: cve
11+
resource: __hostname__:cve-packages
12+
severity_per_retcode:
13+
'1': major # return if agent has issues
14+
'2': major # return by packages
15+
'3': critical # return by kernel
16+
timeout: 600
17+
enabled: True
18+
limits:
19+
time: 600
20+
threads: 1
21+
22+
23+
Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
cmd_check_alert:
2+
cve-packages:
3+
cron:
4+
minute: '15'
5+
hour: '10'
6+
config:
7+
checks:
8+
cve-packages:
9+
cmd: /opt/microdevops/pycve/local-agent/run-local-agent.sh --rules-base-url https://cve.microdevops.com/rules --packages-only --fixed-only 2>/dev/null
10+
service: cve
11+
resource: __hostname__:cve-packages
12+
severity_per_retcode:
13+
'1': major # return if agent has issues
14+
'2': critical # return by packages
15+
'3': critical # return by kernel
16+
timeout: 600
17+
enabled: True
18+
limits:
19+
time: 600
20+
threads: 1
21+
22+
23+

0 commit comments

Comments
 (0)