/CHANGELOG |
---|
3,18 → 3,15 |
********** ALCASAR CHANGELOG ********** |
-------------------- 3.3.3 -------------------- |
NEWS |
- Linux Kernel 4.14.89 |
- Add Qwant in safesearch option for whitelist and blacklist |
- Improve install on a server with more than 2 network card (add internal interface selector instead of choosing the first one). |
- Improve install on a server with multiple network card (add internal interface selector instead of choosing the first one). |
- Use a custom blacklist & whitelist description file instead of the default one |
- Updating blacklist & "TOR nodes" custom list |
- Updating the WebSVN server to V2.5-dev with Tom patches (https://github.com/websvnphp/websvn/commits/master) |
- Write a new script to create the ISO file (mageiar) using docker |
BUGS |
- Keep custom blacklists when upgrading from dansguardian to e2guardian |
- Automatically launch database migration scripts after import user database. |
- Improve firewall rules for whitelist users (anti-bypass) |
- Improve firewall rules for whitelist users |
-------------------- 3.3.2 -------------------- |
NEWS |
/scripts/alcasar-rpm-download.sh |
---|
11,7 → 11,7 |
VERSION="6" |
ARCH="x86_64" |
# The kernel version we compile netflow for |
KERNEL="kernel-server-4.14.89-1.mga6-1-1.mga6" |
KERNEL="kernel-server-4.14.78-1.mga6-1-1.mga6" |
# ****** Alcasar needed RPMS - paquetages nécessaires au fonctionnement d'Alcasar ****** |
PACKAGES="arp-scan vim-enhanced freeradius freeradius-mysql freeradius-ldap lighttpd lighttpd-mod_auth php-fpm e2guardian postfix mariadb ntp bind-utils openssh-server php-xml php-ldap php-mysqli php-mbstring php-sockets php-cli php-curl php-pdo_sqlite php-json rng-utils rsync clamav perl-rrdtool perl-MailTools perl-Socket6 fail2ban gnupg ulogd pm-fallback-policy ipset cronie-anacron usbutils locales-en usb_modeswitch tinyproxy vnstat php-gd sudo iftop man dos2unix p7zip bc msec kernel-userspace-headers dnsmasq netcat-traditional" |
/scripts/alcasar-urpmi.sh |
---|
12,7 → 12,7 |
VERSION="6" |
ARCH="x86_64" |
# The kernel version we compile netflow for |
KERNEL="kernel-server-4.14.89-1.mga6-1-1.mga6" |
KERNEL="kernel-server-4.14.78-1.mga6-1-1.mga6" |
# ****** Alcasar needed RPMS - paquetages nécessaires au fonctionnement d'Alcasar ****** |
PACKAGES="arp-scan vim-enhanced freeradius freeradius-mysql freeradius-ldap lighttpd lighttpd-mod_auth php-fpm e2guardian postfix mariadb ntp bind-utils openssh-server php-xml php-ldap php-mysqli php-mbstring php-sockets php-cli php-curl php-pdo_sqlite php-json rng-utils rsync clamav perl-rrdtool perl-MailTools perl-Socket6 fail2ban gnupg ulogd pm-fallback-policy ipset cronie-anacron usbutils locales-en usb_modeswitch tinyproxy vnstat php-gd sudo iftop man dos2unix p7zip bc msec kernel-userspace-headers dnsmasq netcat-traditional" |
/iso/old/config/isolinux-x86_64.cfg |
---|
File deleted |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/auto_inst-x86_64-en.cfg.pl |
---|
File deleted |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/auto_inst-x86_64.cfg.pl |
---|
File deleted |
\ No newline at end of file |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/media-x86_64.cfg |
---|
File deleted |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/auto_inst-x86_64-fr.cfg.pl |
---|
File deleted |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/first_login |
---|
File deleted |
\ No newline at end of file |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/iso/old/config/compssUsers.pl |
---|
File deleted |
Property changes: |
Deleted: svn:executable |
-* |
\ No newline at end of property |
/readme.txt |
---|
1,22 → 1,20 |
$Id: readme-2.0.txt 581 2011-04-21 16:59:59Z richard $ |
Alcasar-3.3.3 |
Alcasar-3.3.2 |
*********** English ********** |
- New installation : Need the DVD of Linux Mageia6 (Mageia-6-x86_64-DVD.iso) or the ISO file of ALCASAR (Mageiar). |
- New installation : Need the DVD of Linux Mageia6 (Mageia-6-x86_64-DVD.iso). |
--> Follow ALCASAR installation documentation. |
- Update a 3.2 or higher |
--> On your running ALCASAR, retrieve the last version of ALCASAR archive file (lftp http://ftp.alcasar.net) |
--> Run the installation of the new version & choose "update" |
- Update a 3.2 and higher |
--> On your running ALCASAR, run the installation of the new version & choose "update" |
- Update an older version |
--> Write network parameters of your running ALCASAR. Save the users database |
--> Install the new version & import the old users database |
*********** Français ******** |
- Nouvelle installation : elle s'effectue sur la base du DVD de Linux Mageia6 (Mageia-6-x86_64-DVD.iso) ou de l'image ISO d'ALCASAR (Mageiar). |
- Nouvelle installation : elle s'effectue sur la base du DVD de Linux Mageia6 (Mageia-6-x86_64-DVD.iso). |
--> Suivez la procédure d'installation d'ALCASAR. |
- Mise à jour d'une version 3.2 ou supérieure |
--> Sur votre ALCASAR en fonctionnement, récupérez la dernière version du fichier archive d'ALCASAR (lftp http://ftp.alcasar.net) |
--> Lancez l'installation de la nouvelle version et choisissez "mise à jour" |
- Mise à jour d'une version 3.2 et supérieure |
--> Sur votre ALCASAR en fonctionnement, lancez l'installation de la nouvelle version et choisissez "mise à jour" |
- Mise à jour d'une version plus ancienne |
--> Notez les paramètres réseau de votre ALCASAR en fonctionnement. Sauvegardez la base des utilisateurs |
--> Installez la nouvelle version et importez l'ancienne base des utilisateurs |
/VERSION |
---|
1,0 → 0,0 |
3.3.3 |
3.3.2 |
/rpms/ipt-netflow-2.3.spec |
---|
1,6 → 1,6 |
Name: ipt-netflow |
Version: 2.3 |
Release: %mkrel 6 |
Release: %mkrel 5 |
Summary: Netflow iptables module for Linux kernel |
License: GPLv2 |
Packager: Richard REY (Rexy) |
8,7 → 8,7 |
URL: https://github.com/aabc/ipt-netflow |
BuildRequires: iptables-devel |
Source0: %name-%version.tgz |
%define kversion 4.14.89-server-1.mga6 |
%define kversion 4.14.78-server-1.mga6 |
%description |
High performance NetFlow v5, v9, IPFIX flow data export module for Linux kernel. |
44,8 → 44,6 |
/lib/modules/%kversion/extra/ipt_NETFLOW.ko |
%changelog |
* Wed Jan 02 2019 Richard REY <Rexy> |
- Version 2.3 for the kernel 4.14.89 (ALCASAR 3.3.3) |
* Sun Nov 04 2018 Richard REY <Rexy> |
- Version 2.3 for the kernel 4.14.74 (ALCASAR 3.3.2) |
* Sun Aug 19 2018 Richard REY <Rexy> |
/rpms/rpm-build-howto |
---|
39,8 → 39,8 |
- Must be complied on a system which runs the target kernel. So install manually the targeted kernel and reboot (ipt_NETFLOW will not load during this reboot) |
- install the RPMs "kernel-server-devel" (choose the targeted kernel), "lib64iptables-devel (or libiptables-devel in 32b arch)" |
- download, uncompress and test the compilation of the last version of ipt-netflow (./configure, make all install). The module is compiled in the same directory. The libs are copied in the /lib64/iptables (libip6t_NETFLOW.so & libipt_NETFLOW.so) |
- test the module : go to the directory of sources and try to load it (depmod + modprobe ipt_NETFLOW), run "lsmod|grep ipt_NETFLOW" to verify if it's loaded. Run "alcasar-iptables.sh" to reload netfilter rules (no errors should appear) |
- if all is ok, copy the tarball in rpmbuild/SOURCES. Copy and adapt the .spec in rpmbuild/SPECS (change the versions of kernel and rpm). |
- test the module : go to the directory of source and try to load it (depmod + modprobe ipt_NETFLOW), "lsmod|grep ipt_NETFLOW" to verify that it's loaded, "alcasar-iptables.sh" to to reload netfilter rules (no errors should appear) |
- if all is ok, copy the tarball in rpmbuild/SOURCES. Copy the .spec in rpmbuild/SPECS. In this file, adapt the kernel number and the version. |
- change to the directory ~/pmbuild/SPEC and run "rpmbuild -bb ****.spec" |
- install the fresh rpm (urpmi) and load ALCASAR iptables rules (alcasar-iptables.sh). Great job ;-) |
/rpms/x86_64/ipt-netflow-2.3-6.mga6.x86_64.rpm |
---|
Cannot display: file marked as a binary type. |
svn:mime-type = application/octet-stream |
Property changes: |
Deleted: svn:mime-type |
-application/octet-stream |
\ No newline at end of property |
/rpms/x86_64/ipt-netflow-2.3-5.mga6.x86_64.rpm |
---|
Cannot display: file marked as a binary type. |
svn:mime-type = application/octet-stream |
Property changes: |
Added: svn:mime-type |
+application/octet-stream |
\ No newline at end of property |