Skip to content

Commit efa8f52

Browse files
authored
Merge pull request #54 from olhado/image_cmd_cleanup
Removing disable of auditd, as we have read-only volume access now.
2 parents cbe5a9e + a170b3f commit efa8f52

File tree

1 file changed

+15
-15
lines changed

1 file changed

+15
-15
lines changed

values.yaml

Lines changed: 15 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -38,11 +38,11 @@ gkeContainerOsCmd:
3838
- >-
3939
chroot /threatstackfs /bin/bash -c 'systemctl stop systemd-journald-audit.socket;
4040
systemctl mask systemd-journald-audit.socket;
41-
systemctl restart systemd-journald; auditctl --backlog_wait_time 0' &&
42-
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS &&
43-
eval tsagent config --set $THREATSTACK_CONFIG_ARGS &&
44-
sleep 5 &&
45-
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS &&
41+
systemctl restart systemd-journald; auditctl --backlog_wait_time 0' ;
42+
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS;
43+
eval tsagent config --set $THREATSTACK_CONFIG_ARGS;
44+
sleep 5;
45+
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS;
4646
exec /opt/threatstack/sbin/tsagentd -logstdout=1
4747
4848
# Using Ubuntu nodes
@@ -52,11 +52,11 @@ gkeUbuntuCmd:
5252
args:
5353
- -c
5454
- >-
55-
chroot /threatstackfs /bin/bash -c 'systemctl stop auditd; systemctl disable auditd' &&
56-
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS &&
57-
eval tsagent config --set $THREATSTACK_CONFIG_ARGS &&
58-
sleep 5 &&
59-
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS &&
55+
chroot /threatstackfs /bin/bash -c 'systemctl stop auditd';
56+
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS;
57+
eval tsagent config --set $THREATSTACK_CONFIG_ARGS;
58+
sleep 5;
59+
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS;
6060
exec /opt/threatstack/sbin/tsagentd -logstdout=1
6161
6262
# Using EKS Amazon Linux 2 nodes
@@ -66,11 +66,11 @@ eksAmazon2Cmd:
6666
args:
6767
- -c
6868
- >-
69-
chroot /threatstackfs /bin/bash -c 'service auditd stop; systemctl disable auditd' &&
70-
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS &&
71-
eval tsagent config --set $THREATSTACK_CONFIG_ARGS &&
72-
sleep 5 &&
73-
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS &&
69+
chroot /threatstackfs /bin/bash -c 'service auditd stop';
70+
eval tsagent setup --deploy-key $THREATSTACK_SETUP_DEPLOY_KEY $THREATSTACK_SETUP_ARGS;
71+
eval tsagent config --set $THREATSTACK_CONFIG_ARGS;
72+
sleep 5;
73+
unset THREATSTACK_SETUP_DEPLOY_KEY THREATSTACK_SETUP_ARGS THREATSTACK_CONFIG_ARGS;
7474
exec /opt/threatstack/sbin/tsagentd -logstdout=1
7575
7676
# Uncomment the command and args sub-attributes, and define them as desired to run custom commands in the Daemonset.

0 commit comments

Comments
 (0)