部署容器

service docker start
cp hw-sw.yml /opt/

docker load -i tsgz_prom_gost.tar.gz
docker load -i tsgz_prom_nginx_v5.tar.gz
docker load -i tsgz_prom_node_exporter_x86.tar.gz
docker load -i tsgz_prom_process_exporter_x86_v1.tar.gz
docker load -i tsgz_prom_snmp_exporter_x86_v1.tar.gz

cat /etc/sysconfig/iptables

service iptables restart
service docker restart
docker ps -a
docker run -d --restart always \
-p 9256:9256 \
--name tsgz_process_exporter \
--privileged \
-e group_name="YP" \
-v /proc:/host/proc \
tsgz/process-exporter:v1.0
docker run -it --restart unless-stopped \
--name node-exporter \
-p 9100:9100 \
--pid=host \
-d prom/node-exporter:latest
docker run -d --restart unless-stopped \
--name snmp-exporter-sw \
--net=host \
-p 9116:9116 \
-v /opt/hw-sw.yml:/etc/snmp/exporter/hw-sw.yml \
prom/snmp-exporter \
--config.file=/etc/snmp/exporter/hw-sw.yml \
--web.listen-address=":9116"
docker run -d --restart unless-stopped \
--name tsgz_nginx_1.17 \
--net=host \
--privileged \
-p 55550:55550 \
tsgz/nginx-1.17.0:v5
docker run -d --restart unless-stopped \
--name tsgz_prom_gost \
--net=host \
--privileged \
-p 8902:8902 \
tsgz/prom-gost:v1.0
docker ps -a
docker images

曳光

docker load -i tsgz_nmap_app_2.0.2_x86_64.tar.gz
docker run -itd --restart unless-stopped \
--net=host \
--privileged \
--name IMOT-SYY-v2.0.2 \
-d -p 127.0.0.1:9905:9905 \
tsgz/nmap-app:2.0.2
docker load -i tsgz_container_manage_v1.0_X86.tar.gz
docker run -itd --restart unless-stopped \
--net=host \
--privileged \
--name IMOT-SYY-v1.0-1 \
-d tsgz/container-manage:v1.0 \
app.server.port=8901
docker load -i tsgz_channel_docker_2.2.2_x86_64.tar.gz

抓特务

docker load -i arpalert-deb-v7-libpcap.tar.gz
ifconfig
docker run -d \
--name arpalert-v7-1 \
--restart=always \
--net=host \
-e TZ='Asia/Shanghai' \
-e TimeOut=1 \
-e ETH=eth0,eth1,eth1.10,eth1.20,eth1.30,eth1.40,eth2 \
--privileged \
arpalert-deb:v7-1

注:装置已接线网口。根据现场实际情况进行配置
ETH=eth0,eth1,eth1.10,eth1.20,eth1.30,eth1.40,eth2


监听端口

tcpdump -i eth0 host XX and port 514

查询日志

cat /nspt-app/logs/app/syslog.log | grep -a "XX" | grep -a "333"

关闭防火墙

service iptables stop

刷新设备

snmpwalk -v 2c -OnUte -c tsgz2019 XX

查看授权

cat /nspt-app/.uuid

3大重启命令

systemctl restart dcd-core
systemctl restart dcd-cli-api-server
systemctl restart dcd-plugin-server

查看发送的数据

cat /nspt-app/logs/app/upstream.log

命令汇总(含原始注释)

部署容器

service docker start
cp hw-sw.yml /opt/

docker load -i tsgz_prom_gost.tar.gz
docker load -i tsgz_prom_nginx_v5.tar.gz
docker load -i tsgz_prom_node_exporter_x86.tar.gz
docker load -i tsgz_prom_process_exporter_x86_v1.tar.gz
docker load -i tsgz_prom_snmp_exporter_x86_v1.tar.gz
cat /etc/sysconfig/iptables

service iptables restart
service docker restart
docker ps -a

docker run -d --restart always -p 9256:9256 --name tsgz_process_exporter --privileged -e group_name="YP" -v /proc:/host/proc tsgz/process-exporter:v1.0
docker run -it --restart unless-stopped --name node-exporter -p 9100:9100 --pid=host -d prom/node-exporter:latest
docker run -d --restart unless-stopped --name snmp-exporter-sw --net=host -p 9116:9116 -v /opt/hw-sw.yml:/etc/snmp/exporter/hw-sw.yml prom/snmp-exporter --config.file=/etc/snmp/exporter/hw-sw.yml --web.listen-address=":9116"
docker run -d --restart unless-stopped --name tsgz_nginx_1.17 --net=host --privileged -p 55550:55550 tsgz/nginx-1.17.0:v5
docker run -d --restart unless-stopped --name tsgz_prom_gost --net=host --privileged -p 8902:8902 tsgz/prom-gost:v1.0

docker ps -a
docker images


曳光

docker load -i tsgz_nmap_app_2.0.2_x86_64.tar.gz
docker run -itd --restart unless-stopped --net=host --privileged --name IMOT-SYY-v2.0.2 -d -p 127.0.0.1:9905:9905 tsgz/nmap-app:2.0.2

docker load -i tsgz_container_manage_v1.0_X86.tar.gz
docker run -itd --restart unless-stopped --net=host --privileged --name IMOT-SYY-v1.0-1 -d tsgz/container-manage:v1.0 app.server.port=8901

docker load -i tsgz_channel_docker_2.2.2_x86_64.tar.gz


抓特务

docker load -i arpalert-deb-v7-libpcap.tar.gz
ifconfig

docker run -d --name arpalert-v7-1 --restart=always --net=host -e TZ='Asia/Shanghai' -e TimeOut=1 -e ETH=eth0,eth1,eth1.10,eth1.20,eth1.30,eth1.40,eth2 --privileged arpalert-deb:v7-1

注:装置已接线网口。根据现场实际情况进行配置
ETH=eth0,eth1,eth1.10,eth1.20,eth1.30,eth1.40,eth2


监听端口

tcpdump -i eth0 host XX and port 514


查询日志

cat /nspt-app/logs/app/syslog.log | grep -a "XX" | grep -a "333"


关闭防火墙

service iptables stop


刷新设备

snmpwalk -v 2c -OnUte -c tsgz2019 XX


查看授权

cat /nspt-app/.uuid


3大重启命令

systemctl restart dcd-core
systemctl restart dcd-cli-api-server
systemctl restart dcd-plugin-server


查看发送的数据

cat /nspt-app/logs/app/upstream.log