build-cloudmounter-rules.ts 913 B

1234567891011121314151617181920212223242526
  1. import { DOMAINS, PROCESS_NAMES } from '../Source/non_ip/cloudmounter';
  2. import { SHARED_DESCRIPTION } from './constants/description';
  3. import { task } from './trace';
  4. import { RulesetOutput } from './lib/rules/ruleset';
  5. export const buildCloudMounterRules = task(require.main === module, __filename)(async (span) => {
  6. // AND,((SRC-IP,192.168.1.110), (DOMAIN, example.com))
  7. const results = DOMAINS.flatMap(domain => PROCESS_NAMES.flatMap(process => [
  8. `AND,((${domain}),(PROCESS-NAME,${process}))`,
  9. ...[
  10. '10.0.0.0/8',
  11. // '127.0.0.0/8',
  12. '172.16.0.0/12',
  13. '192.168.0.0/16'
  14. ].map(cidr => `AND,((${domain}),(SRC-IP,${cidr}))`)
  15. ]));
  16. const description = SHARED_DESCRIPTION;
  17. return new RulesetOutput(span, 'cloudmounter', 'non_ip')
  18. .withTitle('Sukka\'s Ruleset - CloudMounter / RaiDrive')
  19. .withDescription(description)
  20. .addFromRuleset(results)
  21. .write();
  22. });