Commit Graph

2469 Commits

Author SHA1 Message Date
Jose Luis
c3a22b6551 Merge pull request #13 from wazuh/fixes
Fixes
2017-09-12 09:44:46 -04:00
Miguelangel Freitas
b141dd4113 More options on client registration 2017-09-05 12:43:39 -05:00
Miguelangel Freitas
ff6ea6230a Add support to generate CDB lists 2017-08-30 15:52:56 -05:00
Jose Luis
b616e7def2 Merge pull request #12 from wazuh/authd_service
Disable and removes old authd services
2017-08-30 10:10:40 -04:00
Miguelangel Freitas
fe07c66d24 Add Windows registry keys to syscheck
* Changing agent restart rules id.
* Restart Windows agents after receiving agent.conf
2017-08-29 21:03:32 -05:00
Miguelangel Freitas
cab4302c4e Using version and revision fields on Windows agent role. 2017-08-29 21:03:09 -05:00
Miguelangel Freitas
3ec7f354f4 Adding windows support. 2017-08-23 15:49:35 -04:00
Miguelangel Freitas
106c206087 Changes to syscheck options and centralized configuration
* Perform more checks before enable agentlessd, authd a csyslog output.
* Add a rule and active-respose action to restart agents after
successfully retrieve agent.conf file from the Wazuh manager.
2017-08-23 10:32:04 -04:00
Miguelangel Freitas
c50184edbd Add granular Active Response settings 2017-08-22 18:48:08 -04:00
Miguelangel Freitas
6fde2836c7 Check if the Wazuh template exits 2017-08-22 18:21:16 -04:00
Miguelangel Freitas
cfbbf49855 Ensure latest Wazuh version is installed. 2017-08-22 15:54:48 -04:00
Miguelangel Freitas
66ca4e3fd0 Inject Wazuh template and sample alert. 2017-08-21 23:31:39 -04:00
Miguelangel Freitas
90dacea946 Verify agent registration when is need it. 2017-08-21 19:41:55 -04:00
Miguelangel Freitas
d6f865a296 Check if wazuh-manager is installed on file input. 2017-08-21 19:41:44 -04:00
Miguelangel Freitas
7dce48315b Use the authd service only when the agent is not registered. 2017-08-21 19:41:37 -04:00
Miguelangel Freitas
f072a35f26 Updated Elastic Stack to v5.5.2 2017-08-21 19:41:28 -04:00
Miguelangel Freitas
20feac0e6c Install Wazuh APP 2.1 2017-08-21 19:41:11 -04:00
Miguelangel Freitas
dadd726b67 Modifying the agents.conf template. 2017-08-21 19:40:59 -04:00
Miguelangel Freitas
83e3d5ac64 Validating null variables 2017-08-21 19:39:35 -04:00
Miguelangel Freitas
c1dc137adc Adding null variables for visibility (wazuh-manager) 2017-08-21 19:39:06 -04:00
Miguelangel Freitas
9fec1d16bd Check for wazuh-manager when file input is used in Logstash. 2017-08-21 19:38:51 -04:00
Miguelangel Freitas
0f388781ba Add variables for visibility (wazuh-agent role). 2017-08-21 19:38:04 -04:00
Miguelangel Freitas
fe2f1d94eb Set shards and replicas for wazuh template. 2017-08-21 19:37:55 -04:00
Miguelangel Freitas
2ba65efae7 Check if elasticsearch_jvm_xms is not null. 2017-08-21 19:37:38 -04:00
Miguelangel Freitas
ff978fb89c Set elasticsearch_jvm_xms to null
* Intended to calculate the optimal amount of memory for JVM
automatically.
2017-08-21 19:35:51 -04:00
Miguelangel Freitas
27319c5904 Disable and removes old authd services 2017-08-18 20:15:33 -04:00
Jose Luis
e75d3acf4e Merge pull request #10 from wazuh/elasticsearch_jvm
Until 32000m for JVM memory, thanks @jlruizmlg
2017-08-18 13:13:10 -07:00
Pedro Sanchez
278336cbf2 Updating the manager role with the new Wazuh version 2.1 2017-08-18 13:12:57 -07:00
Miguelangel Freitas
a263a27e0c Updating the manager role with Wazuh 2.1
* ossec-authd now could be configured from ossec.conf.
* Switching from generating the SSL certs and using a CA.
* Adding authd password template (intended to be used with vault).
2017-08-18 16:04:28 -04:00
Miguelangel Freitas
82623da8af Until 32000m for JVM memory, thanks @jlruizmlg 2017-08-15 09:09:39 -04:00
Pedro Sanchez
5e3055a730 Wazuh agent - Improvements 2017-08-02 07:58:52 -07:00
Miguelangel Freitas
a19d3d99f6 Wazuh agent: disable or not the openscap install & scan 2017-08-01 15:50:31 -04:00
Miguelangel Freitas
0f72f5f606 Wazuh agent: including more client options.
Added the ability to change protocol, port, notify_time and
time-reconnect
2017-07-30 17:43:22 -04:00
Miguelangel Freitas
7e2cd943bd Adding some changes from Wazuh manager 2017-07-28 13:40:32 -04:00
Pedro Sanchez
731e902c46 Wazuh manager role improvements 2017-07-25 20:54:14 -07:00
Miguelangel Freitas
d392eb786e Rename wazuh-elk.yml to wazuh-elastic_stack.yml 2017-07-25 23:44:43 -04:00
Miguelangel Freitas
972ffee9a9 Wazuh manager: check openscap version. 2017-07-25 20:04:45 -04:00
Miguelangel Freitas
263ceebded Wazuh manager: switch between log output types. 2017-07-25 00:56:51 -04:00
Miguelangel Freitas
d5eb54a01b Wazuh manager: adding the ability to configure daily reports. 2017-07-25 00:33:41 -04:00
Miguelangel Freitas
63f3eb3c24 Wazuh manager: Enable or not ossec-authd (default: disabled) 2017-07-25 00:04:15 -04:00
Miguelangel Freitas
aaca36420d Wazuh manager: OpenSCAP
Install libopenscap8 in Debian/Ubuntu
Set wodle values like: timeout, interval and scan-on-start
Refactoring ossec.conf template
2017-07-24 23:52:34 -04:00
Miguelangel Freitas
c1156bb757 Wazuh manager: define rootcheck frequency. 2017-07-24 23:26:07 -04:00
Miguelangel Freitas
3ef34f1c28 Wazuh manager: control more syscheck options. 2017-07-24 23:23:39 -04:00
Jose Luis Ruiz
9bdf32ba2a re-factoring 2017-07-21 18:40:22 +02:00
Jose Luis
4cd581fc14 Merge pull request #6 from wazuh/logstash-with-fileinput
Add logstash user to ossec group
2017-07-21 17:21:49 +02:00
Miguelangel Freitas
f47e205e45 Add logstash user to ossec group 2017-07-20 13:32:18 -04:00
Alberto Gonzalez
f3e499c933 Replacing ELK with elasticsearch 2017-07-19 17:47:19 -07:00
Alberto Gonzalez
fb4e16591b Replacing ELK with elastic 2017-07-19 17:37:27 -07:00
Alberto Gonzalez
583258bdeb Replacing ELK with Elastic 2017-07-19 17:36:49 -07:00
Alberto Gonzalez
83215be72b Replacing ELK with elastic 2017-07-19 17:36:15 -07:00