SecAutoBan SDK
Project description
SecAutoBan Python SDK
安装
pip3 install SecAutoBan
样例
告警模块
from SecAutoBan import SecAutoBan
def alarm_analysis(ws_client):
ws_client.send_alarm("127.1.0.3", "127.0.0.1", "NMAP 扫描")
sec_auto_ban = SecAutoBan(
server_ip="127.0.0.1",
server_port=8000,
sk="sk-*****",
client_type="alarm",
alarm_analysis=alarm_analysis
)
sec_auto_ban.run()
封禁模块
from SecAutoBan import SecAutoBan
def block_ip(ip):
if check_exist_ip(ip):
return
pass
def unblock_ip(ip):
pass
def get_all_block_ip() -> list:
ip_list = []
return ip_list
def check_exist_ip(ip) -> bool:
return ip in get_all_block_ip()
sec_auto_ban = SecAutoBan(
server_ip="127.0.0.1",
server_port=8000,
sk="sk-*****",
client_type="block",
block_ip=block_ip,
unblock_ip=unblock_ip,
get_all_block_ip=get_all_block_ip,
enable_cidr=False
)
sec_auto_ban.run()
参数说明
| 参数 | 描述 | 是否需要填写 |
|---|---|---|
| server_ip | 核心模块回连IP | 需要 |
| server_port | 核心模块回连端口 | 需要 |
| sk | 设备页面生成的密钥 | 需要 |
| client_type | 模块类型(alarm/block) |
需要 |
| enable_cidr | 封禁模块是否开启 Cidr 封禁,若开启block_ip()和unblock_ip()参数将传入Cidr |
可选,默认为 False |
| alarm_analysis | 告警分析函数 | alarm模块必填 |
| block_ip | 封禁函数 | block模块必填 |
| unblock_ip | 解禁函数 | block模块必填 |
| get_all_block_ip | 获取设备中全部封禁IP函数 | block模块可选 |
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
secautoban-4.0.3.tar.gz
(4.1 kB
view details)
File details
Details for the file secautoban-4.0.3.tar.gz.
File metadata
- Download URL: secautoban-4.0.3.tar.gz
- Upload date:
- Size: 4.1 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/6.1.0 CPython/3.12.9
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
a6a2c5ee91ac4c1706b4508947b2c1e7ead1e0da2d2c7fa13ae8d80ed2414766
|
|
| MD5 |
a370d32a129f160f3c0e5ea7d15aaff6
|
|
| BLAKE2b-256 |
f5959272f05fa872223f6ef671f35f14c28daa2066a8ada632837f0e9f3945da
|
Provenance
The following attestation bundles were made for secautoban-4.0.3.tar.gz:
Publisher:
python_sdk.yml on SecAegis/SecAutoBan
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
secautoban-4.0.3.tar.gz -
Subject digest:
a6a2c5ee91ac4c1706b4508947b2c1e7ead1e0da2d2c7fa13ae8d80ed2414766 - Sigstore transparency entry: 314306123
- Sigstore integration time:
-
Permalink:
SecAegis/SecAutoBan@e99d6333afd2c51fbdff5abb44ac1c92dd801cbe -
Branch / Tag:
refs/tags/v4.0.3 - Owner: https://github.com/SecAegis
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
python_sdk.yml@e99d6333afd2c51fbdff5abb44ac1c92dd801cbe -
Trigger Event:
push
-
Statement type: