diff --git a/installer/upstart/dionaea.conf b/installer/upstart/dionaea.conf index f63cfc97..5fde143e 100644 --- a/installer/upstart/dionaea.conf +++ b/installer/upstart/dionaea.conf @@ -2,7 +2,7 @@ # T-Pot # # Dionaea upstart script # # # -# v16.03.2 by mo, DTAG, 2015-12-14 # +# v16.03.3 by mo, DTAG, 2016-01-27 # ######################################################## description "Dionaea" @@ -23,7 +23,7 @@ pre-start script chown tpot:tpot /data/dionaea -R end script script - /usr/bin/docker run --name dionaea --cap-add=NET_BIND_SERVICE --rm=true -p 21:21 -p 42:42 -p 8080:80 -p 135:135 -p 443:443 -p 445:445 -p 1433:1433 -p 3306:3306 -p 5061:5061 -p 5060:5060 -p 69:69/udp -p 5060:5060/udp -v /data/dionaea:/data/dionaea -v /data/ews:/data/ews dtagdevsec/dionaea:latest1603 + /usr/bin/docker run --name dionaea --cap-add=NET_BIND_SERVICE --rm=true -p 21:21 -p 42:42 -p 8081:80 -p 135:135 -p 443:443 -p 445:445 -p 1433:1433 -p 3306:3306 -p 5061:5061 -p 5060:5060 -p 69:69/udp -p 5060:5060/udp -v /data/dionaea:/data/dionaea -v /data/ews:/data/ews dtagdevsec/dionaea:latest1603 end script post-start script # Delay next start to avoid rapid respawning diff --git a/installer/upstart/honeytrap.conf b/installer/upstart/honeytrap.conf index 07c4a174..bea2408d 100644 --- a/installer/upstart/honeytrap.conf +++ b/installer/upstart/honeytrap.conf @@ -2,7 +2,7 @@ # T-Pot # # Honeytrap upstart script # # # -# v16.03.3 by mo, DTAG, 2016-01-15 # +# v16.03.4 by mo, DTAG, 2016-01-27 # ######################################################## description "Honeytrap" @@ -21,7 +21,7 @@ pre-start script mkdir -p /data/honeytrap/log/ /data/honeytrap/attacks/ /data/honeytrap/downloads/ chmod 760 /data/honeytrap/ -R chown tpot:tpot /data/honeytrap/ -R - /sbin/iptables -w -A INPUT -p tcp --syn -m state --state NEW -m multiport ! --dports 21,22,42,80,135,443,445,1433,3306,5060,5061,9200,64295,64296 -j NFQUEUE + /sbin/iptables -w -A INPUT -p tcp --syn -m state --state NEW -m multiport ! --dports 21,22,42,80,135,443,445,1433,3306,5060,5061,8081,9200,64295,64296 -j NFQUEUE end script script /usr/bin/docker run --name honeytrap --cap-add=NET_ADMIN --net=host --rm=true -v /data/honeytrap:/data/honeytrap -v /data/ews:/data/ews dtagdevsec/honeytrap:latest1603 @@ -31,5 +31,5 @@ post-start script sleep $(((RANDOM % 5)+5)) end script post-stop script - /sbin/iptables -w -D INPUT -p tcp --syn -m state --state NEW -m multiport ! --dports 21,22,42,80,135,443,445,1433,3306,5060,5061,9200,64295,64296 -j NFQUEUE + /sbin/iptables -w -D INPUT -p tcp --syn -m state --state NEW -m multiport ! --dports 21,22,42,80,135,443,445,1433,3306,5060,5061,8081,9200,64295,64296 -j NFQUEUE end script