Werner Dijkerman
8291e4ab9f
Added a successful installation on provided Docker containers with Molecule
2019-04-15 21:52:08 +02:00
Manuel J. Bernal
1c4b87b60e
Merge branch '3.9' into add-molecule-tests
2019-04-15 11:05:27 +02:00
Manuel J. Bernal
96012df2fc
Merge branch '3.9' into active_response
2019-04-04 10:45:17 +02:00
l
ce4665ef3e
Fixing default active response
2019-04-04 10:22:33 +02:00
Manuel J. Bernal
deaffd9c8e
Merge pull request #159 from kravietz/email_fix
...
Email fix
2019-04-03 15:02:31 +02:00
l
29301b0044
Adding alias to agent config file template
2019-04-03 12:20:59 +02:00
Manuel J. Bernal
07dacae92d
Merge pull request #110 from wazuh/3.7-concurrent-packages
...
Installing concurrent apt packages
2019-04-01 17:30:30 +02:00
l
a9344cf181
Using list instead of iterating over one to install packages
2019-04-01 12:23:48 +02:00
Manuel J. Bernal
968e7f8206
Merge pull request #146 from perryk/fix_couple_warning_pk1
...
Fix a couple of minor warnings from default 3.8 manager role
2019-03-28 18:08:10 +01:00
Pawel Krawczyk
7381dc8b2b
Fix wazuh_manager_config.email_notification
...
There's no need for a complicated if..then condition here since the
value is expected to be yes/no only
2019-03-22 00:03:42 +00:00
Pawel Krawczyk
f96ab0a317
Add flag to accept remote commands from manager
...
Without this flag the agent will not accept any system check
commands (`command` and `full_command`) configured in the Wazuh
Manager settings to cascade down to agents.
2019-02-20 13:31:24 +00:00
Pawel Krawczyk
bcd327280e
Do not report virtual filesystems in df
...
Tell `df` not to report on virtual filesystems such as `squashfs` (used
by `snapd` and always at 100%), `tmpfs` (memory-only) and `devtmpfs`
(used by `udev`)
2019-02-18 13:01:42 +00:00
Pawel Krawczyk
81058daf1b
Replace netstat with ss
...
The `ss` program is now the official replacement for `netstat` which
is deprecated in most Linux distributions. Also replace the messy sed
rules which do not work on all versions with a clean command-line that
just displays the key information that does **not** change on every
command run (e.g. PID) resulting in false positives.
2019-02-18 12:59:48 +00:00
Pawel Krawczyk
68cd434466
do no include syscheck section if not defined
2019-02-17 20:03:40 +00:00
Pawel Krawczyk
a94038201a
typo
2019-02-17 20:03:30 +00:00
Pawel Krawczyk
58a76a8c08
Enable active-response section
...
As of now the whole active-response section was commented out and
inactive
2019-02-17 00:16:31 +00:00
jjediny
e1aeff0fd6
adding back .yamllint pretask and results
2019-02-11 23:31:38 -05:00
AlfonsoRBJ
2030751eac
Update to Wazuh version v3.8.2
2019-01-30 17:02:33 +01:00
AlfonsoRBJ
a0b3fae9d2
Update to Wazuh version 3.8.1 ( #148 )
2019-01-24 15:09:45 +01:00
Perry Kollmorgen
1b51b2dc11
Fix warning from vul_detector config for Redhat Feed Name #145
...
The value for the Redhat Feed Name in the ossec.conf template no longer
requires a version. i.e the value should be "redhat" rather "redhat-7"
or similar.
https://documentation.wazuh.com/current/user-manual/reference/ossec-conf/wodle-vuln-detector.html#feed
https://github.com/wazuh/wazuh/pull/2137
2019-01-21 09:12:35 +10:00
Perry Kollmorgen
72b0f672d6
Fix warning from cluster interval option in defaults #145
...
The interval option in the cluster section in the defaults has been
depreciated and no longer requires to be set.
https://documentation.wazuh.com/current/user-manual/reference/ossec-conf/cluster.html#interval
2019-01-21 09:10:45 +10:00
AlfonsoRBJ
df95a75b6b
Merge pull request #143 from wazuh/PR-java-path
...
Fix oracle java cookies
2019-01-18 16:35:59 +01:00
cadoming
37bfa5be17
3.8 release
2019-01-18 15:11:40 +00:00
Carlos Dominguez
d4b2de38de
delete save file
2019-01-17 17:03:17 +01:00
cadoming
949aa7f043
adapt new version (3.8.0-6.5.4)
2019-01-17 15:42:11 +00:00
cadoming
61260986c0
fixed java path
2019-01-16 16:16:06 +00:00
Carlos Dominguez
236e76f73d
Fixes typos ( #130 )
2019-01-14 09:19:02 +01:00
Carlos Dominguez
e97a0ff7a3
Labels configuration ( #135 )
2019-01-14 09:12:09 +01:00
Carlos Dominguez
59008bda4d
delete useless files ( #137 )
2019-01-14 09:07:47 +01:00
Carlos Dominguez
492c25eeaf
Merge pull request #133 from singuliere/agent-cleanup
...
cleanup: move redundant tags to the outer block
2019-01-11 15:20:05 +01:00
Carlos Dominguez
21fbe85010
Merge pull request #132 from paulcalabro/master
...
wazuh_manager_fqdn is a scalar not a sequence
2019-01-11 15:16:52 +01:00
Carlos Dominguez
e644b1e231
Merge pull request #120 from saez0pub/3.7
...
FIX multiple remote connection
2019-01-10 13:18:17 +01:00
Carlos Dominguez
02736e1ab3
Merge branch '3.7' into Issue_78-windows_ossec_conf
2019-01-10 13:11:03 +01:00
Carlos Dominguez
c50d2b3828
Merge pull request #117 from wazuh/Issue_91-single_agent_name
...
Custom name for single agent registration
2019-01-10 12:09:46 +01:00
singuliere
d33b5c90c3
cleanup: move redundant tags to the outer block
2019-01-10 10:01:06 +01:00
Paul Calabro
0565486e6d
wazuh_manager_fqdn is a sequence not a scalar
...
Updated to `~` to reflect a null string, similar to [] for an empty sequence.
2019-01-09 20:51:48 -07:00
Jean Prat
1e2e1f1f30
FIX multiple remote connection
2019-01-04 16:26:26 +01:00
cadoming
620bf04835
ossec.conf for windows agents
2019-01-03 09:35:40 +00:00
Paul Calabro
204ad3c6ff
Fixed a couple linting issues with yamllint and ansible-review ( #111 )
...
- yamllint: "truthy value should be true or false"
(Docs: https://github.com/adrienverge/yamllint/blob/master/yamllint/rules/truthy.py )
- ansible-review: "WARN: Best practice "Use YAML format for tasks and handlers rather than key=value" not met:"
(Docs: 2aacd7462f/lib/ansiblereview/tasks.py )
2018-12-27 12:57:24 +01:00
Carlos Dominguez
e94a0cf473
change installation directory ( #116 )
2018-12-27 12:52:27 +01:00
cadoming
b5dd470c2c
custom name for single agent registration
2018-12-27 10:49:34 +00:00
AlfonsoRBJ
2d8283d560
Merge branch '3.7' into Issue_95-default_configuration
2018-12-20 18:20:43 +01:00
Carlos Dominguez
e6ba94d4b9
exception reload systemd task ( #114 )
2018-12-20 17:58:55 +01:00
manuasir
96390a2d46
Installing apt packages concurrently, related #109
2018-12-19 10:22:40 +01:00
cadoming
1cc33d7266
cdb_lists.yml update
2018-12-14 10:54:59 +00:00
root
852d5909eb
os_family localfiles
2018-12-13 13:42:15 +00:00
root
23aeeffff2
default configuration update v1
2018-12-13 10:59:13 +00:00
Luis Gil Guijarro
139b1988fe
Add authlog fix to localfile ( #99 )
2018-12-10 18:39:23 +01:00
cadoming
794beeae15
custom_ruleset relative path
2018-12-10 11:02:37 +00:00
cadoming
50b5e774de
fix defaults/main.yml
2018-12-05 12:56:15 +00:00
cadoming
c226c6f44d
Moved custom_ruleset files
2018-12-05 12:01:36 +00:00
AlfonsoRBJ
28d6ecae5d
Merge branch '3.7' into Issue-77_conflict_configurations
2018-11-16 12:30:00 +01:00
AlfonsoRBJ
1369b3df41
Merge branch '3.7' into Issue-34_local_internal_options
2018-11-16 12:20:42 +01:00
AlfonsoRBJ
99a6a3d6b0
Merge branch '3.7' into Issue-88_version_windows_installer
2018-11-16 11:38:34 +01:00
cadoming
bdf913453e
Added windows task
2018-11-16 10:34:41 +00:00
cadoming
f2b3ac68bb
agent configuration and monitoring
2018-11-15 12:16:05 +00:00
cadoming
6fe87697f1
Changed windows agent version
2018-11-15 10:40:57 +00:00
cadoming
8ef5e65eb7
include template local_internal_options.conf
2018-11-14 12:13:58 +00:00
cadoming
5c1f2ed783
clean old code for windows agent
2018-11-14 10:39:25 +00:00
AlfonsoRBJ
62938ff894
Merge pull request #71 from wazuh/Amazon-Linux-support
...
Support for Amazon Linux added
2018-11-12 16:41:29 +01:00
AlfonsoRBJ
d36fdb8f4f
Merge pull request #84 from wazuh/ISSUE_83
...
include logall_json label
2018-11-12 16:11:24 +01:00
AlfonsoRBJ
fcf7bf4b00
Merge pull request #79 from wazuh/PR-54_new_structure
...
client.keys registration triggers
2018-11-12 14:13:04 +01:00
root
4f2a080eb3
include logall_json label
2018-11-12 11:05:49 +00:00
AlfonsoRBJ
cf11aea81a
Merge pull request #81 from wazuh/PR-62_add_local_rules
...
adding custom rules/decoders files
2018-11-09 16:29:03 +01:00
root
87cd7c214f
adding custom rules/decoders files
2018-11-09 10:35:52 +00:00
root
1007255e4a
change syntax erros
2018-11-07 12:17:28 +00:00
root
ea7b685633
new changes
2018-11-07 12:11:44 +00:00
root
5c3b767f34
API configuration
2018-11-07 11:34:02 +00:00
root
5298084a62
client.keys registration triggers
2018-11-06 10:48:02 +00:00
AlfonsoRBJ
52084d66d5
Merge pull request #76 from wazuh/PR-55_new_structure
...
validate agent.conf in manager
2018-11-02 17:42:19 +01:00
AlfonsoRBJ
3d4e3ff67b
Merge pull request #75 from wazuh/PR-52_new_structure
...
active_response_disable configuration
2018-11-02 17:19:49 +01:00
root
539f94d9c1
validate agent.conf in manager
2018-11-02 10:31:00 +00:00
root
33e9150dcd
active_response_disable configuration
2018-10-31 11:50:37 +00:00
root
dcd7b1a6fd
agent and manager grouping task
2018-10-31 10:49:45 +00:00
AlfonsoRBJ
2c4c6fc59c
Support for Amazon Linux added
...
Logstash bug fixed for single server installation on Amazon Linux
2018-10-19 16:40:13 +02:00
Jesús Linares
1bd21e381b
Restructure repository ( #66 )
2018-10-04 12:40:10 +02:00