...
Now I want to run those commands quickly and easily on 50 Linux servers and I want to make sure that no one installs the software again later. A new command set was needed which I called "Linux_ActiveState", I created a new command set file for this and similar things called "Linux_Software_Installed.nmis".
Apache Log4J
In the case of Apache Log4J Vulnerability CVE-2021-45105, you would follow the instructions below and include command sets to look for files beginning with "log4j" in the /usr and /opt directories. For example
Code Block |
---|
sudo find /opt -name "log4j*"
sudo find /usr -name "log4j*" |
Linux_Software_Installed Command Set
...