
installer v13.30.0
리눅스, macOS 및 Windows용 cnquery & cnspec 설치 스크립트
개요
상태
설치
mql과 cnspec을 설치하는 가장 쉬운 방법은 설치 스크립트를 사용하는 것입니다.
Shell 스크립트를 통한 설치 (Linux 및 macOS)
https://install.mondoo.com/sh```bash
bash -c "$(curl -sSL https://install.mondoo.com/sh)"
### PowerShell (Windows) 사용
[`https://install.mondoo.com/ps1`](https://install.mondoo.com/ps1)```powershell
Set-ExecutionPolicy Unrestricted -Scope Process -Force;
[System.Net.ServicePointManager]::SecurityProtocol = [System.Net.ServicePointManager]::SecurityProtocol -bor 3072;
iex ((New-Object System.Net.WebClient).DownloadString('https://install.mondoo.com/ps1'));
Install-Mondoo;
HTTP 프록시 뒤에서
프록시를 설치 스크립트에 -x(Linux 및 macOS) 또는 -Proxy(Windows)로 전달하세요. 스크립트는 자체 다운로드, 패키지 설치, cnspec login 및 자동 업데이터를 이 프록시를 통해 라우팅합니다. 스크립트의 최초 다운로드는 플래그를 읽기 전에 발생하므로, 해당 다운로드도 프록시를 가리키도록 설정하세요:```bash
export https_proxy='http://proxy.example.com:3128'
curl -sSL --proxy "$https_proxy" https://install.mondoo.com/sh | bash -s -- -x "$https_proxy"
| **Crate** | **Description** | **Version** |
|-----------|-----------------|-------------|
| [**stun**](https://crates.io/crates/stun) | STUN protocol implementation | 0.6.0 |
| [**stun_codec**](https://crates.io/crates/stun_codec) | STUN message encoding/decoding | 0.4.0 |
| [**webrtc**](https://crates.io/crates/webrtc) | WebRTC implementation | 0.11.0 |
| [**ice**](https://crates.io/crates/ice) | ICE protocol implementation | 0.15.0 |
| [**turn**](https://crates.io/crates/turn) | TURN protocol implementation | 0.11.0 |
| [**sdp**](https://crates.io/crates/sdp) | SDP protocol implementation | 0.7.0 |
| [**rtp**](https://crates.io/crates/rtp) | RTP protocol implementation | 0.11.0 |
| [**rtcp**](https://crates.io/crates/rtcp) | RTCP protocol implementation | 0.11.0 |
| [**srtp**](https://crates.io/crates/srtp) | SRTP protocol implementation | 0.11.0 |
| [**dtls**](https://crates.io/crates/dtls) | DTLS protocol implementation | 0.11.0 |
| [**sctp**](https://crates.io/crates/sctp) | SCTP protocol implementation | 0.11.0 |
| [**data**](https://crates.io/crates/data) | Data channel implementation | 0.11.0 |
| [**media**](https://crates.io/crates/media) | Media handling | 0.11.0 |
| [**peer_connection**](https://crates.io/crates/peer_connection) | Peer connection implementation | 0.11.0 |
| [**ice**](https://crates.io/crates/ice) | ICE protocol implementation | 0.15.0 |
| [**turn**](https://crates.io/crates/turn) | TURN protocol implementation | 0.11.0 |
| [**sdp**](https://crates.io/crates/sdp) | SDP protocol implementation | 0.7.0 |
| [**rtp**](https://crates.io/crates/rtp) | RTP protocol implementation | 0.11.0 |
| [**rtcp**](https://crates.io/crates/rtcp) | RTCP protocol implementation | 0.11.0 |
| [**srtp**](https://crates.io/crates/srtp) | SRTP protocol implementation | 0.11.0 |
| [**dtls**](https://crates.io/crates/dtls) | DTLS protocol implementation | 0.11.0 |
| [**sctp**](https://crates.io/crates/sctp) | SCTP protocol implementation | 0.11.0 |
| [**data**](https://crates.io/crates/data) | Data channel implementation | 0.11.0 |
| [**media**](https://crates.io/crates/media) | Media handling | 0.11.0 |
| [**peer_connection**](https://crates.io/crates/peer_connection) | Peer connection implementation | 0.11.0 |```powershell
Set-ExecutionPolicy Unrestricted -Scope Process -Force;
[System.Net.ServicePointManager]::SecurityProtocol = [System.Net.ServicePointManager]::SecurityProtocol -bor 3072;
$wc = New-Object System.Net.WebClient;
$wc.Proxy = New-Object System.Net.WebProxy('http://proxy.example.com:3128');
iex ($wc.DownloadString('https://install.mondoo.com/ps1'));
Install-Mondoo -Proxy 'http://proxy.example.com:3128';
Linux와 macOS에서는 -x가 주어지지 않았을 때 상속된 https_proxy 또는 http_proxy가 자동으로 사용됩니다. 어느 쪽이든 두 형식 모두 내보내지므로, 배포판 자체의 저장소 — Debian과 Ubuntu에서는 일반 HTTP입니다 — 도 프록시를 통해 접근됩니다. 설정한 no_proxy는 sudo를 거치는 경우를 포함하여 변경 없이 그대로 전달됩니다.
프록시 URL은 일반 URL이어야 합니다. 자격 증명이 포함된 경우 퍼센트 인코딩하십시오 (!는 %21 등으로). 이 값은 자동 업데이터의 예약 작업에 기록되므로, 그곳에서 인용이 필요한 문자는 이스케이프되지 않고 거부됩니다.
대상 플랫폼 스캔
대상 플랫폼을 스캔하십시오:```bash
query system information with incident and inventory query pack
mql scan aws
scan the platform for security vulnerabilities
cnspec scan aws
Mondoo 계정에 가입하면 더 많은 정책에 접근하고 보고서를 저장할 수 있습니다. 자세한 내용은 [문의하기](https://mondoo.com/contact)를 참조하세요.```bash
cnspec login -t 'eyJh...llZ4BW'
mql 및 cnspec은 서버(Linux, Windows, macOS), 클라우드(AWS, Azure, Google, VMware), Kubernetes(EKS, GKE, AKS, 자체 관리형), 컨테이너, 컨테이너 레지스트리, SaaS 제품(Google Workspace, M365, GitHub, GitLab) 등을 포함한 로컬 및 원격 대상을 지원합니다.
스캔 실행:```bash
scan your local host
cnspec scan local
scan a cloud environment
cnspec scan aws cnspec scan gcp cnspec scan azure
scan a kubernetes cluster
cnspec scan k8s
scan a docker image from a remote registry
cnspec scan docker image debian:12
scan a docker container (get ids from docker ps)
cnspec scan docker container 00fa961d6b6a
scan a system over ssh
cnspec scan ssh [email protected]
## 패키지 정보
`https://install.mondoo.com/package/cnspec/{platform}/{arch}/{filetype}/{version}/{method}`
인수는 다음 값을 지원합니다:
| 인수 | 값 |
| ---------- | ---------------------------------------------------- |
| `platform` | `linux`, `windows`, `darwin` |
| `arch` | `amd64`, `arm64`, `armv7`, `armv6`, `386`, `ppc64le` |
| `filetype` | `tar.gz`, `deb`, `rpm`, `zip`, `pkg`, `msi` |
| `version` | `latest` 또는 특정 번호 |
| `method` | `download`, `filename`, `version`, `sha256` |```bash
# Download the latest version
https://install.mondoo.com/package/cnspec/linux/arm64/rpm/latest/download