mirror of https://github.com/MISP/misp-modules
Modules for expansion services, import and export in MISP
http://misp.github.io/misp-modules
You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
793 lines
26 KiB
793 lines
26 KiB
|
|
|
|
|
|
|
|
<!doctype html> |
|
<html lang="en" class="no-js"> |
|
<head> |
|
|
|
<meta charset="utf-8"> |
|
<meta name="viewport" content="width=device-width,initial-scale=1"> |
|
<meta http-equiv="x-ua-compatible" content="ie=edge"> |
|
|
|
<meta name="description" content="MISP Modules Project"> |
|
|
|
|
|
<link rel="canonical" href="https://www.misp-project.org/install/"> |
|
|
|
|
|
<meta name="author" content="MISP Project"> |
|
|
|
|
|
<meta name="lang:clipboard.copy" content="Copy to clipboard"> |
|
|
|
<meta name="lang:clipboard.copied" content="Copied to clipboard"> |
|
|
|
<meta name="lang:search.language" content="en"> |
|
|
|
<meta name="lang:search.pipeline.stopwords" content="True"> |
|
|
|
<meta name="lang:search.pipeline.trimmer" content="True"> |
|
|
|
<meta name="lang:search.result.none" content="No matching documents"> |
|
|
|
<meta name="lang:search.result.one" content="1 matching document"> |
|
|
|
<meta name="lang:search.result.other" content="# matching documents"> |
|
|
|
<meta name="lang:search.tokenizer" content="[\s\-]+"> |
|
|
|
<link rel="shortcut icon" href="../img/favicon.ico"> |
|
<meta name="generator" content="mkdocs-1.0.4, mkdocs-material-4.4.0"> |
|
|
|
|
|
|
|
<title>Install Guides - MISP Modules Documentation</title> |
|
|
|
|
|
|
|
<link rel="stylesheet" href="../assets/stylesheets/application.0284f74d.css"> |
|
|
|
<link rel="stylesheet" href="../assets/stylesheets/application-palette.01803549.css"> |
|
|
|
|
|
|
|
|
|
<meta name="theme-color" content=""> |
|
|
|
|
|
|
|
<script src="../assets/javascripts/modernizr.74668098.js"></script> |
|
|
|
|
|
|
|
<link href="https://fonts.gstatic.com" rel="preconnect" crossorigin> |
|
<link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,400,400i,700|Roboto+Mono&display=fallback"> |
|
<style>body,input{font-family:"Roboto","Helvetica Neue",Helvetica,Arial,sans-serif}code,kbd,pre{font-family:"Roboto Mono","Courier New",Courier,monospace}</style> |
|
|
|
|
|
<link rel="stylesheet" href="../assets/fonts/material-icons.css"> |
|
|
|
|
|
|
|
|
|
|
|
|
|
</head> |
|
|
|
|
|
|
|
<body dir="ltr" data-md-color-primary="white" data-md-color-accent="blue"> |
|
|
|
<svg class="md-svg"> |
|
<defs> |
|
|
|
|
|
<svg xmlns="http://www.w3.org/2000/svg" width="416" height="448" viewBox="0 0 416 448" id="__github"><path fill="currentColor" d="M160 304q0 10-3.125 20.5t-10.75 19T128 352t-18.125-8.5-10.75-19T96 304t3.125-20.5 10.75-19T128 256t18.125 8.5 10.75 19T160 304zm160 0q0 10-3.125 20.5t-10.75 19T288 352t-18.125-8.5-10.75-19T256 304t3.125-20.5 10.75-19T288 256t18.125 8.5 10.75 19T320 304zm40 0q0-30-17.25-51T296 232q-10.25 0-48.75 5.25Q229.5 240 208 240t-39.25-2.75Q130.75 232 120 232q-29.5 0-46.75 21T56 304q0 22 8 38.375t20.25 25.75 30.5 15 35 7.375 37.25 1.75h42q20.5 0 37.25-1.75t35-7.375 30.5-15 20.25-25.75T360 304zm56-44q0 51.75-15.25 82.75-9.5 19.25-26.375 33.25t-35.25 21.5-42.5 11.875-42.875 5.5T212 416q-19.5 0-35.5-.75t-36.875-3.125-38.125-7.5-34.25-12.875T37 371.5t-21.5-28.75Q0 312 0 260q0-59.25 34-99-6.75-20.5-6.75-42.5 0-29 12.75-54.5 27 0 47.5 9.875t47.25 30.875Q171.5 96 212 96q37 0 70 8 26.25-20.5 46.75-30.25T376 64q12.75 25.5 12.75 54.5 0 21.75-6.75 42 34 40 34 99.5z"/></svg> |
|
|
|
</defs> |
|
</svg> |
|
<input class="md-toggle" data-md-toggle="drawer" type="checkbox" id="__drawer" autocomplete="off"> |
|
<input class="md-toggle" data-md-toggle="search" type="checkbox" id="__search" autocomplete="off"> |
|
<label class="md-overlay" data-md-component="overlay" for="__drawer"></label> |
|
|
|
<a href="#how-to-install-and-start-misp-modules-in-a-python-virtualenv" tabindex="1" class="md-skip"> |
|
Skip to content |
|
</a> |
|
|
|
|
|
<header class="md-header" data-md-component="header"> |
|
<nav class="md-header-nav md-grid"> |
|
<div class="md-flex"> |
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
<a href="https://www.misp-project.org/" title="MISP Modules Documentation" class="md-header-nav__button md-logo"> |
|
|
|
<img src="../img/misp.png" width="24" height="24"> |
|
|
|
</a> |
|
</div> |
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
<label class="md-icon md-icon--menu md-header-nav__button" for="__drawer"></label> |
|
</div> |
|
<div class="md-flex__cell md-flex__cell--stretch"> |
|
<div class="md-flex__ellipsis md-header-nav__title" data-md-component="title"> |
|
|
|
<span class="md-header-nav__topic"> |
|
MISP Modules Documentation |
|
</span> |
|
<span class="md-header-nav__topic"> |
|
|
|
Install Guides |
|
|
|
</span> |
|
|
|
</div> |
|
</div> |
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
|
|
<label class="md-icon md-icon--search md-header-nav__button" for="__search"></label> |
|
|
|
<div class="md-search" data-md-component="search" role="dialog"> |
|
<label class="md-search__overlay" for="__search"></label> |
|
<div class="md-search__inner" role="search"> |
|
<form class="md-search__form" name="search"> |
|
<input type="text" class="md-search__input" name="query" placeholder="Search" autocapitalize="off" autocorrect="off" autocomplete="off" spellcheck="false" data-md-component="query" data-md-state="active"> |
|
<label class="md-icon md-search__icon" for="__search"></label> |
|
<button type="reset" class="md-icon md-search__icon" data-md-component="reset" tabindex="-1"> |
|
 |
|
</button> |
|
</form> |
|
<div class="md-search__output"> |
|
<div class="md-search__scrollwrap" data-md-scrollfix> |
|
<div class="md-search-result" data-md-component="result"> |
|
<div class="md-search-result__meta"> |
|
Type to start searching |
|
</div> |
|
<ol class="md-search-result__list"></ol> |
|
</div> |
|
</div> |
|
</div> |
|
</div> |
|
</div> |
|
|
|
</div> |
|
|
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
<div class="md-header-nav__source"> |
|
|
|
|
|
|
|
|
|
|
|
<a href="https://github.com/MISP/misp-modules/" title="Go to repository" class="md-source" data-md-source="github"> |
|
|
|
<div class="md-source__icon"> |
|
<svg viewBox="0 0 24 24" width="24" height="24"> |
|
<use xlink:href="#__github" width="24" height="24"></use> |
|
</svg> |
|
</div> |
|
|
|
<div class="md-source__repository"> |
|
MISP/misp-modules |
|
</div> |
|
</a> |
|
</div> |
|
</div> |
|
|
|
</div> |
|
</nav> |
|
</header> |
|
|
|
<div class="md-container"> |
|
|
|
|
|
|
|
|
|
<main class="md-main"> |
|
<div class="md-main__inner md-grid" data-md-component="container"> |
|
|
|
|
|
<div class="md-sidebar md-sidebar--primary" data-md-component="navigation"> |
|
<div class="md-sidebar__scrollwrap"> |
|
<div class="md-sidebar__inner"> |
|
<nav class="md-nav md-nav--primary" data-md-level="0"> |
|
<label class="md-nav__title md-nav__title--site" for="__drawer"> |
|
<a href="https://www.misp-project.org/" title="MISP Modules Documentation" class="md-nav__button md-logo"> |
|
|
|
<img src="../img/misp.png" width="48" height="48"> |
|
|
|
</a> |
|
MISP Modules Documentation |
|
</label> |
|
|
|
<div class="md-nav__source"> |
|
|
|
|
|
|
|
|
|
|
|
<a href="https://github.com/MISP/misp-modules/" title="Go to repository" class="md-source" data-md-source="github"> |
|
|
|
<div class="md-source__icon"> |
|
<svg viewBox="0 0 24 24" width="24" height="24"> |
|
<use xlink:href="#__github" width="24" height="24"></use> |
|
</svg> |
|
</div> |
|
|
|
<div class="md-source__repository"> |
|
MISP/misp-modules |
|
</div> |
|
</a> |
|
</div> |
|
|
|
<ul class="md-nav__list" data-md-scrollfix> |
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href=".." title="Home" class="md-nav__link"> |
|
Home |
|
</a> |
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item md-nav__item--nested"> |
|
|
|
<input class="md-toggle md-nav__toggle" data-md-toggle="nav-2" type="checkbox" id="nav-2"> |
|
|
|
<label class="md-nav__link" for="nav-2"> |
|
Modules |
|
</label> |
|
<nav class="md-nav" data-md-component="collapsible" data-md-level="1"> |
|
<label class="md-nav__title" for="nav-2"> |
|
Modules |
|
</label> |
|
<ul class="md-nav__list" data-md-scrollfix> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href="../expansion/" title="Expansion Modules" class="md-nav__link"> |
|
Expansion Modules |
|
</a> |
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href="../export_mod/" title="Export Modules" class="md-nav__link"> |
|
Export Modules |
|
</a> |
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href="../import_mod/" title="Import Modules" class="md-nav__link"> |
|
Import Modules |
|
</a> |
|
</li> |
|
|
|
|
|
</ul> |
|
</nav> |
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item md-nav__item--active"> |
|
|
|
<input class="md-toggle md-nav__toggle" data-md-toggle="toc" type="checkbox" id="__toc"> |
|
|
|
|
|
<label class="md-nav__link md-nav__link--active" for="__toc"> |
|
Install Guides |
|
</label> |
|
|
|
<a href="./" title="Install Guides" class="md-nav__link md-nav__link--active"> |
|
Install Guides |
|
</a> |
|
|
|
|
|
<nav class="md-nav md-nav--secondary"> |
|
|
|
|
|
|
|
<label class="md-nav__title" for="__toc">Table of contents</label> |
|
<ul class="md-nav__list" data-md-scrollfix> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-install-and-start-misp-modules-in-a-python-virtualenv" title="How to install and start MISP modules (in a Python virtualenv)?" class="md-nav__link"> |
|
How to install and start MISP modules (in a Python virtualenv)? |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-install-and-start-misp-modules-on-rhel-based-distributions" title="How to install and start MISP modules on RHEL-based distributions ?" class="md-nav__link"> |
|
How to install and start MISP modules on RHEL-based distributions ? |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-use-an-misp-modules-docker-container" title="How to use an MISP modules Docker container" class="md-nav__link"> |
|
How to use an MISP modules Docker container |
|
</a> |
|
|
|
<nav class="md-nav"> |
|
<ul class="md-nav__list"> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-build" title="Docker build" class="md-nav__link"> |
|
Docker build |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-run" title="Docker run" class="md-nav__link"> |
|
Docker run |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-compose" title="Docker-compose" class="md-nav__link"> |
|
Docker-compose |
|
</a> |
|
|
|
</li> |
|
|
|
</ul> |
|
</nav> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#install-misp-module-on-an-offline-instance" title="Install misp-module on an offline instance." class="md-nav__link"> |
|
Install misp-module on an offline instance. |
|
</a> |
|
|
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
</ul> |
|
|
|
</nav> |
|
|
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href="../contribute/" title="Contribute" class="md-nav__link"> |
|
Contribute |
|
</a> |
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item md-nav__item--nested"> |
|
|
|
<input class="md-toggle md-nav__toggle" data-md-toggle="nav-5" type="checkbox" id="nav-5"> |
|
|
|
<label class="md-nav__link" for="nav-5"> |
|
About |
|
</label> |
|
<nav class="md-nav" data-md-component="collapsible" data-md-level="1"> |
|
<label class="md-nav__title" for="nav-5"> |
|
About |
|
</label> |
|
<ul class="md-nav__list" data-md-scrollfix> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
<li class="md-nav__item"> |
|
<a href="../license/" title="License" class="md-nav__link"> |
|
License |
|
</a> |
|
</li> |
|
|
|
|
|
</ul> |
|
</nav> |
|
</li> |
|
|
|
|
|
</ul> |
|
</nav> |
|
</div> |
|
</div> |
|
</div> |
|
|
|
|
|
<div class="md-sidebar md-sidebar--secondary" data-md-component="toc"> |
|
<div class="md-sidebar__scrollwrap"> |
|
<div class="md-sidebar__inner"> |
|
|
|
<nav class="md-nav md-nav--secondary"> |
|
|
|
|
|
|
|
<label class="md-nav__title" for="__toc">Table of contents</label> |
|
<ul class="md-nav__list" data-md-scrollfix> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-install-and-start-misp-modules-in-a-python-virtualenv" title="How to install and start MISP modules (in a Python virtualenv)?" class="md-nav__link"> |
|
How to install and start MISP modules (in a Python virtualenv)? |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-install-and-start-misp-modules-on-rhel-based-distributions" title="How to install and start MISP modules on RHEL-based distributions ?" class="md-nav__link"> |
|
How to install and start MISP modules on RHEL-based distributions ? |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#how-to-use-an-misp-modules-docker-container" title="How to use an MISP modules Docker container" class="md-nav__link"> |
|
How to use an MISP modules Docker container |
|
</a> |
|
|
|
<nav class="md-nav"> |
|
<ul class="md-nav__list"> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-build" title="Docker build" class="md-nav__link"> |
|
Docker build |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-run" title="Docker run" class="md-nav__link"> |
|
Docker run |
|
</a> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#docker-compose" title="Docker-compose" class="md-nav__link"> |
|
Docker-compose |
|
</a> |
|
|
|
</li> |
|
|
|
</ul> |
|
</nav> |
|
|
|
</li> |
|
|
|
<li class="md-nav__item"> |
|
<a href="#install-misp-module-on-an-offline-instance" title="Install misp-module on an offline instance." class="md-nav__link"> |
|
Install misp-module on an offline instance. |
|
</a> |
|
|
|
</li> |
|
|
|
|
|
|
|
|
|
|
|
</ul> |
|
|
|
</nav> |
|
</div> |
|
</div> |
|
</div> |
|
|
|
|
|
<div class="md-content"> |
|
<article class="md-content__inner md-typeset"> |
|
|
|
|
|
|
|
<h1>Install Guides</h1> |
|
|
|
<h2 id="how-to-install-and-start-misp-modules-in-a-python-virtualenv">How to install and start MISP modules (in a Python virtualenv)?<a class="headerlink" href="#how-to-install-and-start-misp-modules-in-a-python-virtualenv" title="Permanent link">¶</a></h2> |
|
<div class="codehilite"><pre><span></span><span class="nv">SUDO_WWW</span><span class="o">=</span><span class="s2">"sudo -u www-data"</span> |
|
|
|
sudo apt-get install -y <span class="se">\</span> |
|
git <span class="se">\</span> |
|
libpq5 <span class="se">\</span> |
|
libjpeg-dev <span class="se">\</span> |
|
tesseract-ocr <span class="se">\</span> |
|
libpoppler-cpp-dev <span class="se">\</span> |
|
imagemagick virtualenv <span class="se">\</span> |
|
libopencv-dev <span class="se">\</span> |
|
zbar-tools <span class="se">\</span> |
|
libzbar0 <span class="se">\</span> |
|
libzbar-dev <span class="se">\</span> |
|
libfuzzy-dev |
|
|
|
<span class="c1"># BEGIN with virtualenv: </span> |
|
<span class="nv">$SUDO_WWW</span> virtualenv -p python3 /var/www/MISP/venv |
|
<span class="c1"># END with virtualenv</span> |
|
|
|
<span class="nb">cd</span> /usr/local/src/ |
|
<span class="c1"># Ideally you add your user to the staff group and make /usr/local/src group writeable, below follows an example with user misp</span> |
|
sudo adduser misp staff |
|
sudo chmod <span class="m">2775</span> /usr/local/src |
|
sudo chown root:staff /usr/local/src |
|
git clone https://github.com/MISP/misp-modules.git |
|
git clone git://github.com/stricaud/faup.git faup |
|
git clone git://github.com/stricaud/gtcaca.git gtcaca |
|
|
|
<span class="c1"># Install gtcaca/faup</span> |
|
<span class="nb">cd</span> gtcaca |
|
mkdir -p build |
|
<span class="nb">cd</span> build |
|
cmake .. <span class="o">&&</span> make |
|
sudo make install |
|
<span class="nb">cd</span> ../../faup |
|
mkdir -p build |
|
<span class="nb">cd</span> build |
|
cmake .. <span class="o">&&</span> make |
|
sudo make install |
|
sudo ldconfig |
|
|
|
<span class="nb">cd</span> ../../misp-modules |
|
|
|
<span class="c1"># BEGIN with virtualenv: </span> |
|
<span class="nv">$SUDO_WWW</span> /var/www/MISP/venv/bin/pip install -I -r REQUIREMENTS |
|
<span class="nv">$SUDO_WWW</span> /var/www/MISP/venv/bin/pip install . |
|
<span class="c1"># END with virtualenv</span> |
|
|
|
<span class="c1"># BEGIN without virtualenv: </span> |
|
sudo pip install -I -r REQUIREMENTS |
|
sudo pip install . |
|
<span class="c1"># END without virtualenv</span> |
|
|
|
<span class="c1"># Start misp-modules as a service</span> |
|
sudo cp etc/systemd/system/misp-modules.service /etc/systemd/system/ |
|
sudo systemctl daemon-reload |
|
sudo systemctl <span class="nb">enable</span> --now misp-modules |
|
/var/www/MISP/venv/bin/misp-modules -l <span class="m">127</span>.0.0.1 -s <span class="p">&</span> <span class="c1">#to start the modules</span> |
|
</pre></div> |
|
|
|
<h2 id="how-to-install-and-start-misp-modules-on-rhel-based-distributions">How to install and start MISP modules on RHEL-based distributions ?<a class="headerlink" href="#how-to-install-and-start-misp-modules-on-rhel-based-distributions" title="Permanent link">¶</a></h2> |
|
<p>As of this writing, the official RHEL repositories only contain Ruby 2.0.0 and Ruby 2.1 or higher is required. As such, this guide installs Ruby 2.2 from the SCL repository.</p> |
|
<div class="codehilite"><pre><span></span><span class="nv">SUDO_WWW</span><span class="o">=</span><span class="s2">"sudo -u apache"</span> |
|
sudo yum install <span class="se">\</span> |
|
rh-ruby22 <span class="se">\</span> |
|
openjpeg-devel <span class="se">\</span> |
|
rubygem-rouge <span class="se">\</span> |
|
rubygem-asciidoctor <span class="se">\</span> |
|
zbar-devel <span class="se">\</span> |
|
opencv-devel <span class="se">\</span> |
|
gcc-c++ <span class="se">\</span> |
|
pkgconfig <span class="se">\</span> |
|
poppler-cpp-devel <span class="se">\</span> |
|
python-devel <span class="se">\</span> |
|
redhat-rpm-config |
|
<span class="nb">cd</span> /usr/local/src/ |
|
sudo git clone https://github.com/MISP/misp-modules.git |
|
<span class="nb">cd</span> misp-modules |
|
<span class="nv">$SUDO_WWW</span> /usr/bin/scl <span class="nb">enable</span> rh-python36 <span class="s2">"virtualenv -p python3 /var/www/MISP/venv"</span> |
|
<span class="nv">$SUDO_WWW</span> /var/www/MISP/venv/bin/pip install -U -I -r REQUIREMENTS |
|
<span class="nv">$SUDO_WWW</span> /var/www/MISP/venv/bin/pip install -U . |
|
</pre></div> |
|
|
|
<p>Create the service file /etc/systemd/system/misp-modules.service :</p> |
|
<div class="codehilite"><pre><span></span><span class="nb">echo</span> <span class="s2">"[Unit]</span> |
|
<span class="s2">Description=MISP's modules</span> |
|
<span class="s2">After=misp-workers.service</span> |
|
|
|
<span class="s2">[Service]</span> |
|
<span class="s2">Type=simple</span> |
|
<span class="s2">User=apache</span> |
|
<span class="s2">Group=apache</span> |
|
<span class="s2">ExecStart=/usr/bin/scl enable rh-python36 rh-ruby22 '/var/www/MISP/venv/bin/misp-modules –l 127.0.0.1 –s'</span> |
|
<span class="s2">Restart=always</span> |
|
<span class="s2">RestartSec=10</span> |
|
|
|
<span class="s2">[Install]</span> |
|
<span class="s2">WantedBy=multi-user.target"</span> <span class="p">|</span> sudo tee /etc/systemd/system/misp-modules.service |
|
</pre></div> |
|
|
|
<p>The After=misp-workers.service must be changed or removed if you have not created a misp-workers service. Then, enable the misp-modules service and start it:</p> |
|
<div class="codehilite"><pre><span></span>systemctl daemon-reload |
|
systemctl <span class="nb">enable</span> --now misp-modules |
|
</pre></div> |
|
|
|
<h2 id="how-to-use-an-misp-modules-docker-container">How to use an MISP modules Docker container<a class="headerlink" href="#how-to-use-an-misp-modules-docker-container" title="Permanent link">¶</a></h2> |
|
<h3 id="docker-build">Docker build<a class="headerlink" href="#docker-build" title="Permanent link">¶</a></h3> |
|
<div class="codehilite"><pre><span></span>docker build -t misp-modules <span class="se">\</span> |
|
--build-arg <span class="nv">BUILD_DATE</span><span class="o">=</span><span class="k">$(</span>date -u +<span class="s2">"%Y-%m-%d"</span><span class="k">)</span> <span class="se">\</span> |
|
docker/ |
|
</pre></div> |
|
|
|
<h3 id="docker-run">Docker run<a class="headerlink" href="#docker-run" title="Permanent link">¶</a></h3> |
|
<div class="codehilite"><pre><span></span><span class="c1"># Start Redis</span> |
|
docker run --rm -d --name<span class="o">=</span>misp-redis redis:alpine |
|
<span class="c1"># Start MISP-modules</span> |
|
docker run <span class="se">\</span> |
|
--rm -d --name<span class="o">=</span>misp-modules <span class="se">\</span> |
|
-e <span class="nv">REDIS_BACKEND</span><span class="o">=</span>misp-redis <span class="se">\</span> |
|
-e <span class="nv">REDIS_PORT</span><span class="o">=</span><span class="s2">"6379"</span> <span class="se">\</span> |
|
-e <span class="nv">REDIS_PW</span><span class="o">=</span><span class="s2">""</span> <span class="se">\</span> |
|
-e <span class="nv">REDIS_DATABASE</span><span class="o">=</span><span class="s2">"245"</span> <span class="se">\</span> |
|
-e <span class="nv">MISP_MODULES_DEBUG</span><span class="o">=</span><span class="s2">"false"</span> <span class="se">\</span> |
|
dcso/misp-dockerized-misp-modules |
|
</pre></div> |
|
|
|
<h3 id="docker-compose">Docker-compose<a class="headerlink" href="#docker-compose" title="Permanent link">¶</a></h3> |
|
<div class="codehilite"><pre><span></span>services: |
|
misp-modules: |
|
# https://hub.docker.com/r/dcso/misp-dockerized-misp-modules |
|
image: dcso/misp-dockerized-misp-modules:3 |
|
|
|
# Local image: |
|
#image: misp-modules |
|
#build: |
|
# context: docker/ |
|
|
|
environment: |
|
# Redis |
|
REDIS_BACKEND: misp-redis |
|
REDIS_PORT: "6379" |
|
REDIS_DATABASE: "245" |
|
# System PROXY (OPTIONAL) |
|
http_proxy: |
|
https_proxy: |
|
no_proxy: 0.0.0.0 |
|
# Timezone (OPTIONAL) |
|
TZ: Europe/Berlin |
|
# MISP-Modules (OPTIONAL) |
|
MISP_MODULES_DEBUG: "false" |
|
# Logging options (OPTIONAL) |
|
LOG_SYSLOG_ENABLED: "no" |
|
misp-redis: |
|
# https://hub.docker.com/_/redis or alternative https://hub.docker.com/r/dcso/misp-dockerized-redis/ |
|
image: redis:alpine |
|
</pre></div> |
|
|
|
<h2 id="install-misp-module-on-an-offline-instance">Install misp-module on an offline instance.<a class="headerlink" href="#install-misp-module-on-an-offline-instance" title="Permanent link">¶</a></h2> |
|
<p>First, you need to grab all necessary packages for example like this :</p> |
|
<p>Use pip wheel to create an archive |
|
<div class="codehilite"><pre><span></span>mkdir misp-modules-offline |
|
pip3 wheel -r REQUIREMENTS shodan --wheel-dir=./misp-modules-offline |
|
tar -cjvf misp-module-bundeled.tar.bz2 ./misp-modules-offline/* |
|
</pre></div> |
|
On offline machine : |
|
<div class="codehilite"><pre><span></span>mkdir misp-modules-bundle |
|
tar xvf misp-module-bundeled.tar.bz2 -C misp-modules-bundle |
|
cd misp-modules-bundle |
|
ls -1|while read line; do sudo pip3 install --force-reinstall --ignore-installed --upgrade --no-index --no-deps ${line};done |
|
</pre></div> |
|
Next you can follow standard install procedure.</p> |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
</article> |
|
</div> |
|
</div> |
|
</main> |
|
|
|
|
|
<footer class="md-footer"> |
|
|
|
<div class="md-footer-nav"> |
|
<nav class="md-footer-nav__inner md-grid"> |
|
|
|
<a href="../import_mod/" title="Import Modules" class="md-flex md-footer-nav__link md-footer-nav__link--prev" rel="prev"> |
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
<i class="md-icon md-icon--arrow-back md-footer-nav__button"></i> |
|
</div> |
|
<div class="md-flex__cell md-flex__cell--stretch md-footer-nav__title"> |
|
<span class="md-flex__ellipsis"> |
|
<span class="md-footer-nav__direction"> |
|
Previous |
|
</span> |
|
Import Modules |
|
</span> |
|
</div> |
|
</a> |
|
|
|
|
|
<a href="../contribute/" title="Contribute" class="md-flex md-footer-nav__link md-footer-nav__link--next" rel="next"> |
|
<div class="md-flex__cell md-flex__cell--stretch md-footer-nav__title"> |
|
<span class="md-flex__ellipsis"> |
|
<span class="md-footer-nav__direction"> |
|
Next |
|
</span> |
|
Contribute |
|
</span> |
|
</div> |
|
<div class="md-flex__cell md-flex__cell--shrink"> |
|
<i class="md-icon md-icon--arrow-forward md-footer-nav__button"></i> |
|
</div> |
|
</a> |
|
|
|
</nav> |
|
</div> |
|
|
|
<div class="md-footer-meta md-typeset"> |
|
<div class="md-footer-meta__inner md-grid"> |
|
<div class="md-footer-copyright"> |
|
|
|
<div class="md-footer-copyright__highlight"> |
|
Copyright © 2019-2021 MISP Project |
|
</div> |
|
|
|
powered by |
|
<a href="https://www.mkdocs.org">MkDocs</a> |
|
and |
|
<a href="https://squidfunk.github.io/mkdocs-material/"> |
|
Material for MkDocs</a> |
|
</div> |
|
|
|
<div class="md-footer-social"> |
|
<link rel="stylesheet" href="../assets/fonts/font-awesome.css"> |
|
|
|
<a href="https://www.misp-project.org/" class="md-footer-social__link fa fa-globe"></a> |
|
|
|
<a href="https://github.com/MISP" class="md-footer-social__link fa fa-github-alt"></a> |
|
|
|
<a href="https://twitter.com/MISPProject" class="md-footer-social__link fa fa-twitter"></a> |
|
|
|
</div> |
|
|
|
</div> |
|
</div> |
|
</footer> |
|
|
|
</div> |
|
|
|
<script src="../assets/javascripts/application.245445c6.js"></script> |
|
|
|
<script>app.initialize({version:"1.0.4",url:{base:".."}})</script> |
|
|
|
|
|
</body> |
|
</html> |