Subversion Repositories ALCASAR

Rev

Rev 3310 | Show entire file | Ignore whitespace | Details | Blame | Last modification | View Log

Rev 3310 Rev 3326
Line 1... Line 1...
1
#!/bin/bash
1
#!/bin/bash
2
#  $Id: alcasar.sh 3310 2026-01-06 12:48:09Z rexy $
2
#  $Id: alcasar.sh 3326 2026-03-01 22:35:33Z rexy $
3
 
3
 
4
# ALCASAR is a Free and open source NAC (Network Access Controler) created by Franck BOUIJOUX (3abtux), Pascal LEVANT and Richard REY (Rexy)
4
# ALCASAR is a Free and open source NAC (Network Access Controler) created by Franck BOUIJOUX (3abtux), Pascal LEVANT and Richard REY (Rexy)
5
# ALCASAR is based on a stripped Mageia (LSB) with the following open source softwares Coovachilli, freeradius, mariaDB, apache, php, netfilter, e2guardian, ntpd, openssl, unbound, gammu, Ulog, fail2ban, vnstat, wkhtml2pdf, ipt_NETFLOW, NFsen and NFdump
5
# ALCASAR is based on a stripped Mageia (LSB) with the following open source softwares Coovachilli, freeradius, mariaDB, apache, php, netfilter, e2guardian, ntpd, openssl, unbound, gammu, Ulog, fail2ban, vnstat, wkhtml2pdf, ipt_NETFLOW, NFsen and NFdump
6
# contact : info@alcasar.net
6
# contact : info@alcasar.net
7
 
7
 
Line 2282... Line 2282...
2282
# sshd authorized certificate for root login
2282
# sshd authorized certificate for root login
2283
	$SED "s?^PermitRootLogin.*?PermitRootLogin without-password?g" /etc/ssh/sshd_config
2283
	$SED "s?^PermitRootLogin.*?PermitRootLogin without-password?g" /etc/ssh/sshd_config
2284
	$SED "s?^X11Forwarding.*?#X11Forwarding yes?g" /etc/ssh/sshd_config
2284
	$SED "s?^X11Forwarding.*?#X11Forwarding yes?g" /etc/ssh/sshd_config
2285
# ALCASAR conf file
2285
# ALCASAR conf file
2286
	echo "HTTPS_LOGIN=off" >> $CONF_FILE
2286
	echo "HTTPS_LOGIN=off" >> $CONF_FILE
2287
	echo "HTTPS_CHILLI=off" >> $CONF_FILE
-
 
2288
	echo "SSH_LAN=22" >> $CONF_FILE
2287
	echo "SSH_LAN=22" >> $CONF_FILE
2289
	echo "SSH_WAN=0" >> $CONF_FILE
2288
	echo "SSH_WAN=0" >> $CONF_FILE
2290
	echo "SSH_ADMIN_FROM=0.0.0.0/0.0.0.0" >> $CONF_FILE
2289
	echo "SSH_ADMIN_FROM=0.0.0.0/0.0.0.0" >> $CONF_FILE
2291
	echo "INTERLAN=off" >> $CONF_FILE
2290
	echo "INTERLAN=off" >> $CONF_FILE
2292
	echo "LDAP=off" >> $CONF_FILE
2291
	echo "LDAP=off" >> $CONF_FILE