diff --git a/docker/conpot/Dockerfile b/docker/conpot/Dockerfile index a6f96008..f537fba8 100644 --- a/docker/conpot/Dockerfile +++ b/docker/conpot/Dockerfile @@ -1,4 +1,4 @@ -FROM alpine:edge +FROM alpine:3.14 # # Include dist ADD dist/ /root/dist/ @@ -28,7 +28,6 @@ RUN apk -U add \ # Setup ConPot git clone https://github.com/mushorg/conpot /opt/conpot && \ cd /opt/conpot/ && \ -# git checkout ff09e009d10d953aa7dcff2c06b7c890e6ffd4b7 && \ git checkout 804fd65aa3b7ffa31c07fd4e863d4a5500414cf3 && \ # Change template default ports if <1024 sed -i 's/port="2121"/port="21"/' /opt/conpot/conpot/templates/default/ftp/ftp.xml && \ @@ -45,13 +44,13 @@ RUN apk -U add \ pip3 install --no-cache-dir pysnmp-mibs && \ cd / && \ rm -rf /opt/conpot /tmp/* /var/tmp/* && \ - setcap cap_net_bind_service=+ep /usr/bin/python3.8 && \ + setcap cap_net_bind_service=+ep /usr/bin/python3.9 && \ # # Get wireshark manuf db for scapy, setup configs, user, groups mkdir -p /etc/conpot /var/log/conpot /usr/share/wireshark && \ wget https://github.com/wireshark/wireshark/raw/master/manuf -o /usr/share/wireshark/manuf && \ cp /root/dist/conpot.cfg /etc/conpot/conpot.cfg && \ - cp -R /root/dist/templates /usr/lib/python3.8/site-packages/conpot/ && \ + cp -R /root/dist/templates /usr/lib/python3.9/site-packages/conpot/ && \ addgroup -g 2000 conpot && \ adduser -S -s /bin/ash -u 2000 -D -g 2000 conpot && \ # diff --git a/docker/conpot/dist/conpot.cfg b/docker/conpot/dist/conpot.cfg index 3b1a0d3b..1dddaf41 100644 --- a/docker/conpot/dist/conpot.cfg +++ b/docker/conpot/dist/conpot.cfg @@ -3,7 +3,7 @@ sensorid = conpot [virtual_file_system] data_fs_url = %(CONPOT_TMP)s -fs_url = tar:///usr/lib/python3.8/site-packages/conpot/data.tar +fs_url = tar:///usr/lib/python3.9/site-packages/conpot/data.tar [session] timeout = 30 diff --git a/docker/conpot/docker-compose.yml b/docker/conpot/docker-compose.yml index 60b9b519..297488c0 100644 --- a/docker/conpot/docker-compose.yml +++ b/docker/conpot/docker-compose.yml @@ -35,7 +35,7 @@ services: - "2121:21" - "44818:44818" - "47808:47808/udp" - image: "ghcr.io/telekom-security/conpot:2006" + image: "dtagdevsec/conpot:2006" read_only: true volumes: - /data/conpot/log:/var/log/conpot @@ -58,7 +58,7 @@ services: ports: # - "161:161/udp" - "2404:2404" - image: "ghcr.io/telekom-security/conpot:2006" + image: "dtagdevsec/conpot:2006" read_only: true volumes: - /data/conpot/log:/var/log/conpot @@ -80,7 +80,7 @@ services: - conpot_local_guardian_ast ports: - "10001:10001" - image: "ghcr.io/telekom-security/conpot:2006" + image: "dtagdevsec/conpot:2006" read_only: true volumes: - /data/conpot/log:/var/log/conpot @@ -102,7 +102,7 @@ services: - conpot_local_ipmi ports: - "623:623/udp" - image: "ghcr.io/telekom-security/conpot:2006" + image: "dtagdevsec/conpot:2006" read_only: true volumes: - /data/conpot/log:/var/log/conpot @@ -125,7 +125,7 @@ services: ports: - "1025:1025" - "50100:50100" - image: "ghcr.io/telekom-security/conpot:2006" + image: "dtagdevsec/conpot:2006" read_only: true volumes: - /data/conpot/log:/var/log/conpot