begin with hardening, tweaking

This commit is contained in:
Marco Ochse
2018-05-28 16:36:02 +00:00
parent 88e252fbfb
commit 4bbc63fd02
9 changed files with 33 additions and 118 deletions

View File

@ -1,30 +1,20 @@
FROM alpine
# Include dist
#ADD dist/ /root/dist/
# Setup apt
RUN apk -U --no-cache add \
build-base \
git \
libcap \
linux-headers \
python3 \
python3-dev && \
# Setup ConPot
git clone https://github.com/mushorg/snare /opt/snare && \
# Setup Snare
git clone --depth=1 https://github.com/mushorg/snare /opt/snare && \
cd /opt/snare/ && \
pip3 install --no-cache-dir --upgrade pip setuptools && \
pip3 install --no-cache-dir -r requirements.txt && \
python3.6 clone.py --target http://example.com && \
cd / && \
#setcap cap_net_bind_service=+ep /usr/bin/python3.6 && \
# Get wireshark manuf db for scapy, setup configs, user, groups
addgroup -g 2000 snare && \
adduser -S -s /bin/ash -u 2000 -D -g 2000 snare && \
# Clean up
apk del --purge \
build-base \

View File

@ -1,19 +0,0 @@
version: '2.3'
networks:
snare_local:
services:
# Snare service
snare:
build: .
container_name: snare
restart: always
stop_signal: SIGKILL
tty: true
networks:
- snare_local
ports:
- "80:80"
image: "dtagdevsec/snare:1804"