Tâche #13277
Scénario #13198: Site interdit non vu comme interdit dans l'EAD
Corriger l'observatoire des navigations pour qu'il détecte les accès aux sites "interdits"
Status:
Fermé
Priority:
Normal
Assigned To:
Target version:
Remaining (hours):
0.0
Associated revisions
Détection des sites interdits dans l'observatoire des navigations
- backend/actions/lib/logparser/logparsing.py : utilisation de la recherche étendu
afin de rechercher le mot clé en anglais et en français
Ref: #13277 @2h
Nettoyage du code (pylint)
- backend/actions/lib/logparser/logparsing.py : mis à niveau des "raise"
Ref: #13277 @20m
changement dans la regexp de détection des fichiers de log *guardian (ref #13277 @1h)
History
#1 Updated by Scrum Master over 7 years ago
- Assigned To set to Joël Cuissinat
#2 Updated by Scrum Master over 7 years ago
- Status changed from Nouveau to En cours
#3 Updated by Joël Cuissinat over 7 years ago
=> AM-T03-012
#4 Updated by Joël Cuissinat over 7 years ago
root@amon:~# rgrep -B1 DENIED /usr/share/ead2/ /usr/share/ead2/backend/actions/lib/logparser/logparsing.py- if denied is not None: /usr/share/ead2/backend/actions/lib/logparser/logparsing.py: cmd += grep % 'DENIED' -- /usr/share/ead2/backend/actions/lib/logparser/logparsing.py- } /usr/share/ead2/backend/actions/lib/logparser/logparsing.py: if 'DENIED' in line:
- LOG constaté 2.5.1
2015-09-29T10:40:51.671765+02:00 amon.etb1.lan e2guardian0[26124]: "2015.9.29 10:40:51","prof.6a","10.1.1.1","http://antiproxy.org","*Accès interdit* Site interdit : antiproxy.org","GET","0","0","","1","403","-","","","","","-","-",""
- Ancien logs (ex antivirus)
Jan 27 15:33:15 amon dansguardian0[16831]: "2015.1.27 15:33:15","-","10.1.1.21","http://www.securite-informatique.info/virus/eicar/download/eicar_niveau30.rar","*INFECTED* *DENIED* Virus or bad content detected. Eicar-Test-Signature","GET","20169","0","Content scanning","1","403","text/plain","","","-"
#5 Updated by Joël Cuissinat over 7 years ago
- % Done changed from 0 to 100
- Remaining (hours) changed from 4.0 to 0.25
#6 Updated by Scrum Master over 7 years ago
- Status changed from En cours to Résolu
#7 Updated by Scrum Master over 7 years ago
- Status changed from Résolu to En cours
#8 Updated by Emmanuel GARETTE over 7 years ago
- Assigned To changed from Joël Cuissinat to Emmanuel GARETTE
- % Done changed from 100 to 80
- Remaining (hours) changed from 0.25 to 1.0
Certains fichiers de logs ne sont pas pris en compte.
#9 Updated by Emmanuel GARETTE over 7 years ago
- % Done changed from 80 to 100
- Remaining (hours) changed from 1.0 to 0.25
#10 Updated by Scrum Master over 7 years ago
- Status changed from En cours to Résolu
#11 Updated by Scrum Master over 7 years ago
- Status changed from Résolu to Fermé
- Remaining (hours) changed from 0.25 to 0.0