From d0436a02be997ba25e0da802fc88db2de5adfb57 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Beno=C3=AEt=20S=C3=89RIE?= Date: Tue, 7 Oct 2014 17:11:38 +0200 Subject: [PATCH] Add a check for minifirewall. #729 --- evocheck.sh | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/evocheck.sh b/evocheck.sh index d5bce4f..41b5cef 100755 --- a/evocheck.sh +++ b/evocheck.sh @@ -31,6 +31,7 @@ IS_SSHALLOWUSERS=1 IS_TMOUTPROFILE=1 IS_ALERT5BOOT=1 IS_ALERT5MINIFW=1 +IS_MINIFW=1 IS_NRPEPERMS=1 IS_MINIFWPERMS=1 IS_NRPEDISKS=0 @@ -209,6 +210,10 @@ if [ -e /etc/debian_version ]; then if [ "$IS_ALERT5MINIFW" = 1 ]; then grep -q ^/etc/init.d/minifirewall /etc/rc2.d/S*alert5 || echo 'IS_ALERT5MINIFW FAILED!' fi + + if [ "$IS_ALERT5MINIFW" = 1 ] && [ "$IS_MINIFW" = 1 ]; then + /sbin/iptables -L | grep -q -E "^ACCEPT\s*all\s*--\s*monitoring\.evolix\.net\s*anywhere\s*$" || echo 'IS_MINIFW FAILED!' + fi if [ "$IS_NRPEPERMS" = 1 ]; then ls -ld /etc/nagios | grep -q drwxr-x--- || echo 'IS_NRPEPERMS FAILED!'