[rancid] post-processing the diff listing before mailing?

john heasley heas at shrubbery.net
Tue Oct 12 05:36:25 UTC 2010


Tue, Oct 12, 2010 at 05:22:42AM +0000, john heasley:
> Wed, Sep 22, 2010 at 01:04:16PM -0400, Lee:
> > Anyone like the idea of processing the diff listing before mailing it out?
> > 
> > I'd rather have rancid collect the configs and not mess with them -
> > ie: rancid.conf has
> >   FILTER_PWDS=NO
> >   NOCOMMSTR=NO
> >   ACLSORT=NO
> > but I don't want things like SNMP community strings or
> > encrypted/obfuscated passwords being mailed out..  So my idea is
> > post-processing the diff listing before emailing it out.  Which would
> > also let me know which configs changed so I could check the new
> > configs & mail out a 'local config standards violations' email :)
> > 
> > The code is really ugly, but as a proof of concept..
> 
> why not do this outside of rancid; mail it to a script that processes
> it's input, such as you've done here, and emails the result to your
> diff-receivers list.  everyone can have their own flavor of diff
> post-processing.

btw, also see rancid-<vers>/share/rtrfilter.


More information about the Rancid-discuss mailing list