Docker container for McAfee OpenDXL Web API
390
This container will run a Web API connected to the McAfee OpenDXL allowing devices like FireEye to send notifications of convictions to McAfee TIE "Threat Intelligence Exchange".
For more information on the Web API and how to use it take a look at the GitHub project. https://github.com/scottbrumley/opendxl_web_api
For Automated Deployment there is an automated Build repo also.
https://hub.docker.com/r/sbrumley/opendxl_web_api/
Docker Deployment Documentation (https://github.com/scottbrumley/opendxl_web_api/blob/master/docs/dockerdeploy.md)
Use This to create the certs and config. (https://github.com/scottbrumley/opendxl_web_api/blob/master/docs/cert_setup.md)
This is the Authentication Token. Change or use Vault ENV FLASK_TOKEN="27612211994137900087"
sudo docker build -t mcafee/opendxl-webapi:0.2.0 -f Dockerfile.run .
sudo docker service create --name opendxl-webapi --replicas 3 --publish 5000:5000 mcafee/opendxl-webapi:0.2.0
sudo docker node ls
ID HOSTNAME STATUS AVAILABILITY MANAGER STATUS
9ks2mx1nsx8814cg3gejbqqxy Swarm03 Ready Active
bw844ev94o386isigtgzh3yw6 * MAAS Ready Active Leader
c2uqme1aedjawp0xqri6g4fnf Swarm01 Ready Active
x4hksv6vqz38aoyfjknx76a4v Swarm02 Ready Active
sudo docker node ps
ID NAME IMAGE NODE DESIRED STATE CURRENT STATE ERROR PORTS
c3i6j3b9y310 opendxl-webapi.2 mcafee/opendxl-webapi:0.1.1 MAAS Shutdown Complete 3 seconds ago
jspqx1rho14x \_ opendxl-webapi.2 mcafee/opendxl-webapi:0.1.1 MAAS Shutdown Complete 17 seconds ago
2ua7z7lflzdf \_ opendxl-webapi.2 mcafee/opendxl-webapi:0.1.1 MAAS Shutdown Complete 31 seconds ago
iic9mlcgpgj6 \_ opendxl-webapi.2 mcafee/opendxl-webapi:0.1.1 MAAS Shutdown Complete 47 seconds ago
9wmcyo1yqmx1 opendxl-webapi.3 mcafee/opendxl-webapi:0.1.1 MAAS Ready Ready 2 seconds ago
sudo docker service rm opendxl-webapi
Content type
Image
Digest
Size
71.7 MB
Last updated
about 9 years ago
docker pull sbrumley/opendxl-webapi:0.2.1