From 353d56a455ae70aeefea6f49a085d4d380ac9c1a Mon Sep 17 00:00:00 2001 From: liuyang Date: Thu, 2 Aug 2018 14:33:18 +0800 Subject: [PATCH] =?UTF-8?q?20180802=201-MAAT=E6=8E=A5=E5=8F=A3=E8=AE=BE?= =?UTF-8?q?=E7=BD=AE=E6=94=AF=E6=8C=81redis=E8=AF=BB=E5=8F=96=E9=85=8D?= =?UTF-8?q?=E7=BD=AE=E6=96=87=E4=BB=B6?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- bin/kniconf/kni.conf | 17 +++++++++++----- kni.c | 46 ++++++++++++++++++++++++++++++++++---------- kni.h | 7 +++++++ 3 files changed, 55 insertions(+), 15 deletions(-) diff --git a/bin/kniconf/kni.conf b/bin/kniconf/kni.conf index 327b7fa..f18f81e 100644 --- a/bin/kniconf/kni.conf +++ b/bin/kniconf/kni.conf @@ -1,9 +1,16 @@ -[MOUDLE] +[Module] table_info_path=./kniconf/maat_table_info.conf -full_cfg_dir=/home/liuyang/run/sapp_run/config/index -inc_cfg_dir=/home/liuyang/run/sapp_run/config/inc/index +full_cfg_dir=/home/mesasoft/tango_rules/full/index +inc_cfg_dir=/home/mesasoft/tango_rules/inc/index logger_filepath=./log/kni.log -logger_level=10 +logger_level=30 -maat_json_switch=1 +default_work_mode=1 +#0:iris;1:json;2:redis +maat_readconf_mode=2 +redis_server=192.168.11.243 +redis_port=6379 +redis_db_index=4 +scandir_interval=1000 +effect_interval=60000 diff --git a/kni.c b/kni.c index 70b4bd5..432eab9 100644 --- a/kni.c +++ b/kni.c @@ -1218,13 +1218,13 @@ int kni_scan_whitelist_domain(char* domain,int domain_len,int thread_seq,scan_st struct Maat_rule_t maat_result[KNI_MAX_SAMENUM]; string_scan_num=Maat_full_scan_string(g_kni_maatinfo.maat_feather,g_kni_maatinfo.tableid_domain,CHARSET_GBK,domain,domain_len,maat_result,&found_pos,KNI_MAX_SAMENUM,&mid,thread_seq); -/* + if((g_kni_switch_info.maat_default_mode==KNI_DEFAULT_MODE_BYPASS)&&(string_scan_num==0)) { action=KNI_ACTION_WHITELIST; return action; } -*/ + for(i=0;i