diff --git a/src/freedombone b/src/freedombone index 6a514171..a3483b5e 100755 --- a/src/freedombone +++ b/src/freedombone @@ -8045,6 +8045,12 @@ function intrusion_detection { sed -i 's|/proc.*||g' /etc/tripwire/twpol.txt # Don't report log changes sed -i 's|/var/log.*||g' /etc/tripwire/twpol.txt + # Ignore /etc/tripwire + if ! grep -q "!/etc/tripwire" /etc/tripwire/twpol.txt; then + sed -i '\|/etc\t\t->.*|a\ !/etc/tripwire;' /etc/tripwire/twpol.txt + fi + # Avoid logging the changed database + sed -i 's|$(TWETC)/tw.pol.*||g' /etc/tripwire/twpol.txt reset-tripwire echo 'intrusion_detection' >> $COMPLETION_FILE