Commit Graph

1162 Commits

Author SHA1 Message Date
Gonzalo Acuña
501bb9c13f
jvm options copy removed 2022-02-23 16:19:14 -03:00
Gonzalo Acuña
43e792754a
Custom user configuration updated 2022-02-22 14:25:58 -03:00
Gonzalo Acuña
1f8dcbd384
Comments removed 2022-02-21 14:40:06 -03:00
Gonzalo Acuña
f531fa2728
Update README and deployment playbooks 2022-02-21 09:41:22 -03:00
Gonzalo Acuña
78ff9920aa
Single node deployment update 2022-02-18 14:14:23 -03:00
Gonzalo Acuña
35a14f3569
Dashboard username and password removed from yml 2022-02-17 11:36:28 -03:00
Gonzalo Acuña
e51e893556
Indexer securityadmin task updated 2022-02-17 08:22:57 -03:00
Gonzalo Acuña
7a8ef4f293
Indexer and Dashboard comments removed 2022-02-16 14:52:02 -03:00
Gonzalo Acuña
5faa3effe0
add retry to securityadmin 2022-02-15 14:22:22 -03:00
Gonzalo Acuña
5c16fee920
update sleep before securityadmin 2022-02-15 12:38:11 -03:00
Gonzalo Acuña
4bccd0f970
Add sleep before securityadmin 2022-02-15 12:10:24 -03:00
Gonzalo Acuña
847de7c752
opensearch.password command updated 2022-02-15 09:26:56 -03:00
Gonzalo Acuña
330ba0c94f
Opensearch dashboard keystore task added 2022-02-14 15:35:22 -03:00
Gonzalo Acuña
2e17343c68
filebeat oss configuration updated 2022-02-11 12:04:05 -03:00
Gonzalo Acuña
a5441ddc8a
Indexer and dashboard variables names updated 2022-02-07 17:01:52 -03:00
Gonzalo Acuña
d67ae78712
Updates to Wazuh and Opensearch roles 2022-02-04 16:58:21 -03:00
Gonzalo Acuña
c722e5bc87
Wazuh dashboard role created 2022-02-02 17:27:05 -03:00
Gonzalo Acuña
93d6bdb32a
Indexer variables update 2022-02-02 13:17:37 -03:00
Gonzalo Acuña
9bd3e0f4e7
Initial indexer changes 2022-02-01 17:39:57 -03:00
c-bordon
e74d60d425
Fix agent sca template 2022-01-17 09:24:01 -03:00
c-bordon
386000a708
Fix sca template issue for day, wday and time parameters to 4.3 2021-12-30 16:17:52 -03:00
Gonzalo Acuña
c9dcd763e9
disabledlog4j.options permissions update 2021-12-15 11:47:47 -03:00
Gonzalo Acuña
12cd6288d2
Log4j fix removed from jvm.options 2021-12-15 09:26:13 -03:00
Gonzalo Acuña
9c5a4651bb
Log4j fix added 2021-12-15 09:25:02 -03:00
Gonzalo Acuña
c6be0b2dcd
Disable log4j java option added 2021-12-14 17:11:41 -03:00
Gonzalo Acuña
589fbebba6
Api configuration options updated 2021-12-03 15:38:04 -03:00
Gonzalo Acuña
64a621ccf4
Fixes to include 4.2 changes 2021-12-02 15:32:24 -03:00
Gonzalo Acuña
30743cc036
Expect tag deleted 2021-12-02 10:12:18 -03:00
Alberto Rodríguez
a38c64a7cd
Merge pull request #670 from Tinyblargon/master
Add missing dependancy (package) (user group)
2021-11-25 15:03:47 +01:00
Nicolas Lastra
f6b05e25da
fix var-ossec-etc-ossec-server.conf.j2, authd module and sub module force 2021-11-18 18:27:04 -03:00
tinyblargon
e5c4c4a8b6 Ensure group "wazuh" exists 2021-11-18 19:42:01 +01:00
tinyblargon
6358c4b8b6 Add gnupg to list of installed applications 2021-11-18 15:00:46 +01:00
Nicolas Lastra
2649a061c5
fix parameter value in Authd config 2021-11-17 15:34:43 -03:00
Nicolas Lastra
9534838714
authd-update-in-ossec-conf 2021-11-17 15:22:16 -03:00
Nicolas Lastra
bb95ea167c
merge 4.2.5 in master 2021-11-16 11:35:56 -03:00
Nicolas Lastra
a0116db707
bump 4.2.5 2021-11-15 11:26:56 -03:00
Gonzalo Acuña
8f6e102324
lineinfile module corrected 2021-10-28 15:01:49 -03:00
Gonzalo Acuña
04f3ec1aab
elasticsearch_start_timeout parameter added for OD installation 2021-10-28 14:36:40 -03:00
Gonzalo Acuña
60cc77f497
ES start timeout parameterized 2021-10-28 11:55:05 -03:00
Nicolas Lastra
f4ee80f10f
resolve merge conflicts 2021-10-21 10:36:00 -03:00
Nicolas Lastra
0d2d63271a
645-tag4.2.4-to-master 2021-10-20 18:02:37 -03:00
Nicolas Lastra
4fa9a2de01
fix improve error handling in task 2021-10-19 12:14:50 -03:00
Nicolas Lastra
af69658821
fix Opendistro task for Debian 2021-10-19 12:13:20 -03:00
Nicolas Lastra
37b57b8088
fix url and task 2021-10-15 13:42:03 -03:00
Nicolas Lastra
1a2199779c
fix Debian apt-get update 2021-10-14 21:26:34 -03:00
Nicolas Lastra
3afe577d91
bump 4.2.4 2021-10-14 18:08:02 -03:00
José Fernández Aguilera
3d23a5e67b
Merge pull request #640 from wazuh/638-opendistro-documentation
Fix Opendistro deployment issues
2021-10-14 17:43:14 +02:00
Nicolas Lastra
ccc3aaca0e
routine optimization 2021-10-14 12:24:19 -03:00
Nicolas Lastra
d656c1d82f
routine optimization 2021-10-14 12:23:31 -03:00
Nicolas Lastra
e1bc568a55
routine optimization 2021-10-14 12:22:50 -03:00
Nicolas Lastra
a12908b667
fix task name 2021-10-13 15:08:06 -03:00
Nicolas Lastra
bef955f837
638-opendistro-documentation-from4.2 2021-10-13 15:02:06 -03:00
Nicolas Lastra
3f29fa40cc
openjdk for Debian 9 2021-10-12 19:27:02 -03:00
Nicolas Lastra
b0864ea377
Check elasticsearch-plugin performance-analyzer is install 2021-10-12 18:42:06 -03:00
Nicolas Lastra
c829d67136
636-bump-4.2.3-t0-4.2 2021-10-06 12:28:45 -03:00
Nicolas Lastra
4b774dfeb3
merge de 4.2 a master 2021-10-01 12:24:53 -03:00
Nicolas Lastra
f55390c527
4.2.2 tag update 2021-09-14 15:56:49 -03:00
Nicolas Lastra
29e84158a9
4.2.1 tag update 2021-09-09 15:13:25 -03:00
dfolcha
0c665f5536
Use root to install agent and fix problem with kibana user 2021-08-26 14:12:09 +02:00
dfolcha
5f238f4185
Update manager conf 2021-08-26 10:50:30 +02:00
José Fernández
f424be98e1
Changed APT repository removal variable 2021-08-06 13:29:46 +02:00
José Fernández Aguilera
8582b0954e
Improved removal of performance-analyzer plugin 2021-07-29 14:14:41 +02:00
hagassaan
79fbb2a457 adding acl to debian/ubuntu installation 2021-07-15 14:29:46 +07:00
José Fernández
5215a429ae
Fix multi-tenant and performance analyzer 2021-06-23 11:10:25 +02:00
José Fernández
4ffb2e0790
Fixed multi tenant and performance analyzer 2021-06-22 17:48:46 +02:00
dfolcha
1195f1e442
Fix compatibility matrix 2021-05-24 16:39:50 +02:00
dfolcha
6e38123d15
Change OD version 2021-05-24 15:49:37 +02:00
dfolcha
0094d56919
Change OD version to 1.13.2 2021-05-24 15:46:59 +02:00
VictorMorenoJimenez
656c963438
Use localhost for elasticsearch and filebeat on single node setup 2021-04-27 11:23:39 +02:00
Alberto Rodríguez
dfa2aa4ed7
Merge branch 'master' into master 2021-04-27 11:18:46 +02:00
VictorMorenoJimenez
3232b6802b
Change win_template to template, due to permission WinRMError 2021-04-22 16:55:41 +02:00
VictorMorenoJimenez
a8b4136387
#514. Remove conditional from task certs were not copied to kibana folder 2021-04-22 13:05:01 +02:00
VictorMorenoJimenez
1b447e1bff
#514. Remove conditional from task, config file is not being removed 2021-04-22 10:28:53 +02:00
Víctor Moreno Jiménez
151d508671
Merge branch 'master' into 4.3 2021-04-21 08:17:44 +02:00
Víctor Moreno Jiménez
1216fc3e7b
Merge branch '4.1' into master 2021-04-21 08:15:24 +02:00
VictorMorenoJimenez
74e96ba8a9
#497. Change firewall-drop.sh according to new active-response changes. Now script is a C binary instead 2021-04-20 17:12:50 +02:00
VictorMorenoJimenez
ab3d36f5cd
#497. Change firewall-drop.sh according to new active-response changes. Now script is a C binary instead 2021-04-20 15:59:12 +02:00
VictorMorenoJimenez
7eff9179a2
#570. Rename Windows agent from OssecSvc to WazuhSvc 2021-04-19 09:43:15 +02:00
VictorMorenoJimenez
85682c5e73
#570. Rename Windows agent from OssecSvc to WazuhSvc 2021-04-19 09:42:09 +02:00
Victor Moreno Jimenez
f1f137a9d2
Working in #546. Rename users and group according to Wazuh standard 2021-04-14 08:10:15 +02:00
VictorMorenoJimenez
4b6105fd3d
Bump to v4.3.0 2021-04-14 08:04:11 +02:00
Alberto Rodríguez
e946b5635e
Merge pull request #562 from wazuh/4.2.0-sources
Install cmake in sources installation
2021-04-13 17:24:44 +02:00
VictorMorenoJimenez
38c4942ee8
Bump to v4.2.0 2021-04-13 16:21:17 +02:00
VictorMorenoJimenez
d753c0ddee
Remove conditional install.changed 2021-03-31 13:46:26 +02:00
VictorMorenoJimenez
a7991778d9
Debian support elastic/kibana 2021-03-31 12:59:57 +02:00
VictorMorenoJimenez
ee9a529f67
Add deb support to kibana task 2021-03-31 12:59:21 +02:00
VictorMorenoJimenez
31dc9952e8
Add apt repo to Kibana 2021-03-31 12:58:41 +02:00
VictorMorenoJimenez
e2ce83af3d
Move opendistro install to task specific OS 2021-03-31 12:58:01 +02:00
VictorMorenoJimenez
34f06a85ab
Add apt repo for opendistro and openjdk 2021-03-31 12:57:12 +02:00
VictorMorenoJimenez
292b4402b3
Remove deprecated pai.yaml from wazuh-manager installation 2021-03-31 10:52:57 +02:00
VictorMorenoJimenez
ef79065de6
Install cmake when installing from sources 2021-03-31 10:02:53 +02:00
VictorMorenoJimenez
823fd336d3
Add dependencies to install Wazuh manager from sources 2021-03-31 09:55:05 +02:00
Victor Moreno Jimenez
208edeaf7c
Fix typo in playbook 2021-03-31 09:41:00 +02:00
neonmei
325e18911d
roles: rename references of ossec-control to wazuh-control 2021-03-31 09:40:23 +02:00
d-malko
458219b149 Merge branch 'master' of github.com:d-malko/wazuh-ansible 2021-03-29 10:17:05 +03:00
d-malko
0741be36a6 Use localhost for elasticsearch and filebeat on single node setup. 2021-03-29 10:15:47 +03:00
Victor Moreno Jimenez
013e7ab4fa
Bump to v4.1.4 2021-03-26 08:33:58 +01:00
Victor Moreno Jimenez
bbaa898e90
Bump to 4.1.3 2021-03-23 16:19:46 +01:00
Alberto R
4f2f698bca
Updated disconnection time in template 2021-03-08 19:02:09 +01:00
Alberto R
82547c0c86
4.1.2 Bump 2021-03-08 17:14:56 +01:00
Sergio García
e66d9033b8 jvm.options: update to default values in 1.12.0 version 2021-03-03 19:29:51 +01:00
Sergio García
8449eaf8ed main.yml: fix some typo 2021-03-03 19:29:07 +01:00
Sergio García
8fab5ecbd1 Change opendistro package url and gpg key 2021-03-03 19:28:49 +01:00
Sergio García
56bbd22f65 Apply Wazuh v4.1.1 changes 2021-03-02 19:55:22 +01:00
zenidd
ed60aad31c
roles/wazuh/ansible-wazuh-agent/defaults/main.yml: replace outdated MD5 2021-02-04 18:05:03 +01:00
Sergio García
0d778f7885 main.yml: mantain user_dir for soruce installation 2021-01-22 12:34:01 +01:00
Sergio García
f54c0268c7 Change /var/ossec references to wazuh_dir var 2021-01-21 14:46:34 +01:00
Sergio García
d9c8bf9d76 RedHat.yml: remove quote 2021-01-20 11:27:11 +01:00
Sergio García
3aa90efed4 Change /var/ossec to user_dir var 2021-01-20 11:09:58 +01:00
zenidd
29331df00e
roles/wazuh-manager/templates/api.yaml: fix missing whitespace before variables 2021-01-15 11:19:29 +01:00
zenidd
9d83afc8f0
roles/wazuh-manager/templates/api.yaml: add new vars supporting new Wazuh API settings. Update related templates 2021-01-15 11:10:46 +01:00
neonmei
c921753f35
Merge branch 'master' into release-4.0.4
Brings in PR#540 which adds a missing role default
2021-01-12 16:21:19 -03:00
neonmei
084cc8f36d
roles/opendistro-elasticsearch: add missing role defaults elasticsearch_network_host 2021-01-12 16:03:02 -03:00
neonmei
539d87d3db
release: update copyright notice 2021-01-11 10:49:11 -03:00
neonmei
13465cf06d
roles/wazuh-manager: update versions for v4.0.4 release 2021-01-11 10:49:10 -03:00
neonmei
0351d0121e
roles/wazuh-agent: update versions for v4.0.4 release 2021-01-11 10:49:10 -03:00
neonmei
2e6a7668d3
roles/filebeat-oss: update versions for v4.0.4 release 2021-01-11 10:49:10 -03:00
neonmei
9ffe0526d6
roles/filebeat: update versions for v4.0.4 release 2021-01-11 10:49:10 -03:00
neonmei
6b3804a6a2
roles/opendistro-kibana: update versions for v4.0.4 release 2021-01-11 10:49:10 -03:00
neonmei
3594d21b6b
roles/elasticsearch-kibana: update versions for v4.0.4 release 2021-01-11 10:49:09 -03:00
neonmei
7026cf8921
Merge branch 'fix-opendistro-security-actions' 2021-01-08 14:09:04 -03:00
neonmei
f1cb1f7b20
roles/opendistro: add missing variable elasticsearch_node_master in role defaults 2021-01-07 15:15:38 -03:00
neonmei
56311f7a22
roles/opendistro-elasticsearch: replace od/kibana/filebeat node_name variables to role default elasticsearch_node_name to avoid confusion and potential bugs 2021-01-07 10:16:25 -03:00
zenidd
59b829dae9 roles/opendistro-kibana: use admininstead of kibanaserver as opendistro kibana user 2020-12-23 15:25:16 +01:00
Paweł Krawczyk
a395841104
Fix invalid Jinja2 syntax 2020-12-17 20:58:59 +00:00
Peter Dragos
df46716a9b
add localfile labels to agent ossec.conf template
This change enables generating a stanza such as

```
<localfile>
  <location>/var/log/myapp/log.json</location>
  <log_format>json</log_format>
  <label key="@source">myapp</label>
  <label key="agent.type">webserver</label>
</localfile>
```

from the `wazuh_agent_config` snippet:

```
                - format: json
                  location: /var/log/myapp/log.json
                  label:
                    - key: "@source"
                      value: "myapp"    
                    - key: "agent.type"
                      value: "webserver"
```
2020-12-14 18:05:36 -05:00
singuliere
0440e5dce9
randomly generated passwords must obey some constraints
The password constraints of security.py require at least one digit,
one lower case, one upper case and one special character.

https://github.com/wazuh/wazuh/blob/master/framework/wazuh/security.py#L22

Fixes: https://github.com/wazuh/wazuh-ansible/issues/518
2020-12-11 13:26:20 +01:00
neonmei
b084e33bd6
release: update wazuh-agent windows installer md5 2020-11-30 14:00:58 -03:00
neonmei
4547cde8f8
release: update wazuh-agent url for windows installer 2020-11-30 14:00:47 -03:00
neonmei
ea12701d6b
release: bump Wazuh version across roles to 4.0.3 2020-11-30 12:58:32 -03:00
neonmei
559be15986
role/agent: update default for variable wazuh_api_reachable_from_agent 2020-11-26 19:33:59 -03:00
neonmei
22bc08e190
roles/wazuh-agent: change all delegate_to REST conditionals to be uniform 2020-11-26 16:35:41 -03:00
neonmei
4d2e493cef
roles/wazuh-agent: fix erroneous usage of ansible_host instead of inventory_hostname 2020-11-26 16:34:25 -03:00
neonmei
333816831a
release: bump Wazuh version to 4.0.2 2020-11-23 17:17:04 -03:00
neonmei
30cc6875d6
Merge branch 'master' into feature-role-agent-registration 2020-11-23 14:42:57 -03:00
zenidd
ec831975bb roles/wazuh-agent: remove default agent_name 2020-11-23 17:44:59 +01:00
neonmei
58167dbd1f
roles/wazuh-agent: add message explaining when auto-enrollment registration path is fired or not 2020-11-23 12:18:56 -03:00
neonmei
f7ed5f1f7f
roles/agent: update ossec.conf template to check against explicit yes instead of length 2020-11-23 11:43:59 -03:00
neonmei
5170c206e0
roles/agent: use auto-enrollment by default 2020-11-23 11:41:45 -03:00
neonmei
35c9df9c7e
roles/agent: add comments on role defaults and group registration related tasks 2020-11-23 11:41:17 -03:00
neonmei
7e445c7f55
roles/agent: add wazuh_agent_api_validate to optionally skip agent registry validation task 2020-11-23 11:39:27 -03:00
neonmei
1df3ef8699
roles/agent: for registration rename check_keys->client_keys_file for more clarity, update conditionals length checks to explicit "yes" check 2020-11-23 11:38:07 -03:00
neonmei
a28837a74d
roles/agent: in rest registration method, update manage_agents task 2020-11-23 11:32:01 -03:00
neonmei
a4c4b6cd32
roles/agent: refresh agent validation in rest registration method 2020-11-23 11:29:34 -03:00
neonmei
d4092bf686
roles/agent: update agent registry task with token, nolog and remove when, as it is checked on every task, shuld be applied to block 2020-11-23 11:28:37 -03:00
neonmei
535add6f4c
roles/agent: add nolog variable for registration tasks with credentials output 2020-11-23 11:26:39 -03:00
neonmei
5f6973d8d2
roles/agent: add task for fetching jwt token 2020-11-23 11:25:31 -03:00
neonmei
332ee7ae8b
roles/agent: add task for determining which wazuh_managers to use through register: yes instead of just grabbing the first one on the list, otherwise fallback to first in the list 2020-11-23 11:24:43 -03:00
zenidd
ee1124b7dd Merge master changes 2020-11-23 14:28:59 +01:00
neonmei
1dfe0fdb67
roles/wazuh-agent: fix duplicate variable 2020-11-20 16:16:54 -03:00