mirror of
				https://github.com/wazuh/wazuh-docker.git
				synced 2025-11-04 05:53:16 +00:00 
			
		
		
		
	Compare commits
	
		
			24 Commits
		
	
	
		
			v3.13.0_7.
			...
			v3.13.5
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 
						 | 
					583ee1f43a | ||
| 
						 | 
					61df1a6248 | ||
| 
						 | 
					7cf777e9e1 | ||
| 
						 | 
					81c56fb6aa | ||
| 
						 | 
					98d6f63dbc | ||
| 
						 | 
					723383ab3c | ||
| 
						 | 
					88029a5a39 | ||
| 
						 | 
					c370ac2ca8 | ||
| 
						 | 
					925521d352 | ||
| 
						 | 
					2028d866a1 | ||
| 
						 | 
					4e098924e0 | ||
| 
						 | 
					7f98075326 | ||
| 
						 | 
					e9fec0e497 | ||
| 
						 | 
					7042854bfa | ||
| 
						 | 
					b63c294288 | ||
| 
						 | 
					9df61de961 | ||
| 
						 | 
					86ff04c0b3 | ||
| 
						 | 
					0992111200 | ||
| 
						 | 
					a1a27922de | ||
| 
						 | 
					eba6bc6752 | ||
| 
						 | 
					2df878f040 | ||
| 
						 | 
					4acc3b402b | ||
| 
						 | 
					eba4fdf8eb | ||
| 
						 | 
					1f825c13be | 
							
								
								
									
										32
									
								
								CHANGELOG.md
									
									
									
									
									
								
							
							
						
						
									
										32
									
								
								CHANGELOG.md
									
									
									
									
									
								
							@@ -1,6 +1,38 @@
 | 
				
			|||||||
# Change Log
 | 
					# Change Log
 | 
				
			||||||
All notable changes to this project will be documented in this file.
 | 
					All notable changes to this project will be documented in this file.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					## Wazuh Docker v3.13.4_7.9.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					### Added
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					- Update to Wazuh version 3.13.4_7.9.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					## Wazuh Docker v3.13.3_7.9.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					### Added
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					- Update to Wazuh version 3.13.3_7.9.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					## Wazuh Docker v3.13.2_7.9.1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					### Added
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					- Update to Wazuh version 3.13.2_7.9.1
 | 
				
			||||||
 | 
					- Add CLUSTER_NETWORK_HOST environment variable ([@jfut](https://github.com/jfut)) [#372](https://github.com/wazuh/wazuh-docker/pull/372)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					### Fixed
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					- Too many redirects when running on port 80 ([@chowmean](https://github.com/chowmean)) [#377](https://github.com/wazuh/wazuh-docker/pull/377)
 | 
				
			||||||
 | 
					- Move Filebeat installation to build stage ([@xr09](https://github.com/xr09)) [#378](https://github.com/wazuh/wazuh-docker/pull/378)
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					## Wazuh Docker v3.13.1_7.8.0
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					### Added
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					- Update to Wazuh version 3.13.1_7.8.0
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
## Wazuh Docker v3.13.0_7.7.1
 | 
					## Wazuh Docker v3.13.0_7.7.1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
### Added
 | 
					### Added
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -57,7 +57,7 @@ In addition, a docker-compose file is provided to launch the containers mentione
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
* `stable` branch on correspond to the latest Wazuh-Docker stable version.
 | 
					* `stable` branch on correspond to the latest Wazuh-Docker stable version.
 | 
				
			||||||
* `master` branch contains the latest code, be aware of possible bugs on this branch.
 | 
					* `master` branch contains the latest code, be aware of possible bugs on this branch.
 | 
				
			||||||
* `Wazuh.Version_ElasticStack.Version` (for example 3.10.2_7.5.0) branch. This branch contains the current release referenced in Docker Hub. The container images are installed under the current version of this branch.
 | 
					* `Wazuh.Version_ElasticStack.Version` (for example 3.13.1_7.8.0) branch. This branch contains the current release referenced in Docker Hub. The container images are installed under the current version of this branch.
 | 
				
			||||||
 | 
					
 | 
				
			||||||
## Credits and Thank you
 | 
					## Credits and Thank you
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 
 | 
				
			|||||||
							
								
								
									
										4
									
								
								VERSION
									
									
									
									
									
								
							
							
						
						
									
										4
									
								
								VERSION
									
									
									
									
									
								
							@@ -1,2 +1,2 @@
 | 
				
			|||||||
WAZUH-DOCKER_VERSION="3.13.0_7.7.1"
 | 
					WAZUH-DOCKER_VERSION="3.13.5_7.9.2"
 | 
				
			||||||
REVISION="31300"
 | 
					REVISION="31313"
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -3,7 +3,7 @@ version: '2'
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
services:
 | 
					services:
 | 
				
			||||||
  wazuh:
 | 
					  wazuh:
 | 
				
			||||||
    image: wazuh/wazuh:3.13.0_7.7.1
 | 
					    image: wazuh/wazuh:3.13.5_7.9.2
 | 
				
			||||||
    hostname: wazuh-manager
 | 
					    hostname: wazuh-manager
 | 
				
			||||||
    restart: always
 | 
					    restart: always
 | 
				
			||||||
    ports:
 | 
					    ports:
 | 
				
			||||||
@@ -13,7 +13,7 @@ services:
 | 
				
			|||||||
      - "55000:55000"
 | 
					      - "55000:55000"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  elasticsearch:
 | 
					  elasticsearch:
 | 
				
			||||||
    image: wazuh/wazuh-elasticsearch:3.13.0_7.7.1
 | 
					    image: wazuh/wazuh-elasticsearch:3.13.5_7.9.2
 | 
				
			||||||
    hostname: elasticsearch
 | 
					    hostname: elasticsearch
 | 
				
			||||||
    restart: always
 | 
					    restart: always
 | 
				
			||||||
    ports:
 | 
					    ports:
 | 
				
			||||||
@@ -30,7 +30,7 @@ services:
 | 
				
			|||||||
    mem_limit: 2g
 | 
					    mem_limit: 2g
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  kibana:
 | 
					  kibana:
 | 
				
			||||||
    image: wazuh/wazuh-kibana:3.13.0_7.7.1
 | 
					    image: wazuh/wazuh-kibana:3.13.5_7.9.2
 | 
				
			||||||
    hostname: kibana
 | 
					    hostname: kibana
 | 
				
			||||||
    restart: always
 | 
					    restart: always
 | 
				
			||||||
    depends_on:
 | 
					    depends_on:
 | 
				
			||||||
@@ -40,7 +40,7 @@ services:
 | 
				
			|||||||
      - wazuh:wazuh
 | 
					      - wazuh:wazuh
 | 
				
			||||||
 | 
					
 | 
				
			||||||
  nginx:
 | 
					  nginx:
 | 
				
			||||||
    image: wazuh/wazuh-nginx:3.13.0_7.7.1
 | 
					    image: wazuh/wazuh-nginx:3.13.5_7.9.2
 | 
				
			||||||
    hostname: nginx
 | 
					    hostname: nginx
 | 
				
			||||||
    restart: always
 | 
					    restart: always
 | 
				
			||||||
    environment:
 | 
					    environment:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -1,5 +1,5 @@
 | 
				
			|||||||
# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
					# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
				
			||||||
ARG ELASTIC_VERSION=7.7.1
 | 
					ARG ELASTIC_VERSION=7.9.2
 | 
				
			||||||
FROM docker.elastic.co/elasticsearch/elasticsearch:${ELASTIC_VERSION}
 | 
					FROM docker.elastic.co/elasticsearch/elasticsearch:${ELASTIC_VERSION}
 | 
				
			||||||
ARG ELASTIC_VERSION
 | 
					ARG ELASTIC_VERSION
 | 
				
			||||||
ARG S3_PLUGIN_URL="https://artifacts.elastic.co/downloads/elasticsearch-plugins/repository-s3/repository-s3-${ELASTIC_VERSION}.zip"
 | 
					ARG S3_PLUGIN_URL="https://artifacts.elastic.co/downloads/elasticsearch-plugins/repository-s3/repository-s3-${ELASTIC_VERSION}.zip"
 | 
				
			||||||
@@ -16,13 +16,14 @@ ENV XPACK_ML="true"
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
ENV ENABLE_CONFIGURE_S3="false"
 | 
					ENV ENABLE_CONFIGURE_S3="false"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
ARG TEMPLATE_VERSION=v3.13.0
 | 
					ARG TEMPLATE_VERSION=v3.13.5
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# Elasticearch cluster configuration environment variables
 | 
					# Elasticearch cluster configuration environment variables
 | 
				
			||||||
# If ELASTIC_CLUSTER is set to "true" the following variables will be added to the Elasticsearch configuration
 | 
					# If ELASTIC_CLUSTER is set to "true" the following variables will be added to the Elasticsearch configuration
 | 
				
			||||||
# CLUSTER_INITIAL_MASTER_NODES set to own node by default.
 | 
					# CLUSTER_INITIAL_MASTER_NODES set to own node by default.
 | 
				
			||||||
ENV ELASTIC_CLUSTER="false" \
 | 
					ENV ELASTIC_CLUSTER="false" \
 | 
				
			||||||
    CLUSTER_NAME="wazuh" \
 | 
					    CLUSTER_NAME="wazuh" \
 | 
				
			||||||
 | 
					    CLUSTER_NETWORK_HOST="0.0.0.0" \
 | 
				
			||||||
    CLUSTER_NODE_MASTER="false" \
 | 
					    CLUSTER_NODE_MASTER="false" \
 | 
				
			||||||
    CLUSTER_NODE_DATA="true" \
 | 
					    CLUSTER_NODE_DATA="true" \
 | 
				
			||||||
    CLUSTER_NODE_INGEST="true" \
 | 
					    CLUSTER_NODE_INGEST="true" \
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -24,7 +24,7 @@ if [[ $CLUSTER_NODE_MASTER == "true" ]]; then
 | 
				
			|||||||
# cluster.initial_master_nodes for bootstrap the cluster
 | 
					# cluster.initial_master_nodes for bootstrap the cluster
 | 
				
			||||||
cat > $elastic_config_file << EOF
 | 
					cat > $elastic_config_file << EOF
 | 
				
			||||||
# cluster node
 | 
					# cluster node
 | 
				
			||||||
network.host: 0.0.0.0
 | 
					network.host: $CLUSTER_NETWORK_HOST
 | 
				
			||||||
node.name: $CLUSTER_MASTER_NODE_NAME
 | 
					node.name: $CLUSTER_MASTER_NODE_NAME
 | 
				
			||||||
node.master: $CLUSTER_NODE_MASTER
 | 
					node.master: $CLUSTER_NODE_MASTER
 | 
				
			||||||
cluster.initial_master_nodes:
 | 
					cluster.initial_master_nodes:
 | 
				
			||||||
@@ -39,7 +39,7 @@ remove_cluster_config $elastic_config_file
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
cat > $elastic_config_file << EOF
 | 
					cat > $elastic_config_file << EOF
 | 
				
			||||||
# cluster node
 | 
					# cluster node
 | 
				
			||||||
network.host: 0.0.0.0
 | 
					network.host: $CLUSTER_NETWORK_HOST
 | 
				
			||||||
node.name: $CLUSTER_NODE_NAME
 | 
					node.name: $CLUSTER_NODE_NAME
 | 
				
			||||||
node.master: false
 | 
					node.master: false
 | 
				
			||||||
discovery.seed_hosts:
 | 
					discovery.seed_hosts:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -1,8 +1,8 @@
 | 
				
			|||||||
# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
					# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
				
			||||||
FROM docker.elastic.co/kibana/kibana:7.7.1
 | 
					FROM docker.elastic.co/kibana/kibana:7.9.2
 | 
				
			||||||
USER kibana
 | 
					USER kibana
 | 
				
			||||||
ARG ELASTIC_VERSION=7.7.1
 | 
					ARG ELASTIC_VERSION=7.9.2
 | 
				
			||||||
ARG WAZUH_VERSION=3.13.0
 | 
					ARG WAZUH_VERSION=3.13.5
 | 
				
			||||||
ARG WAZUH_APP_VERSION="${WAZUH_VERSION}_${ELASTIC_VERSION}"
 | 
					ARG WAZUH_APP_VERSION="${WAZUH_VERSION}_${ELASTIC_VERSION}"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
WORKDIR /usr/share/kibana
 | 
					WORKDIR /usr/share/kibana
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -11,7 +11,7 @@ then
 | 
				
			|||||||
    [xpack.ml.enabled]=$XPACK_ML
 | 
					    [xpack.ml.enabled]=$XPACK_ML
 | 
				
			||||||
    [xpack.canvas.enabled]=$XPACK_CANVAS
 | 
					    [xpack.canvas.enabled]=$XPACK_CANVAS
 | 
				
			||||||
    [xpack.infra.enabled]=$XPACK_INFRA
 | 
					    [xpack.infra.enabled]=$XPACK_INFRA
 | 
				
			||||||
    [xpack.monitoring.enabled]=$XPACK_MONITORING
 | 
					    [monitoring.enabled]=$XPACK_MONITORING
 | 
				
			||||||
    [console.enabled]=$XPACK_DEVTOOLS
 | 
					    [console.enabled]=$XPACK_DEVTOOLS
 | 
				
			||||||
  )
 | 
					  )
 | 
				
			||||||
  for i in "${!CONFIG_MAP[@]}"
 | 
					  for i in "${!CONFIG_MAP[@]}"
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -52,11 +52,14 @@ if [ "x${KIBANA_HOST}" = "x" ]; then
 | 
				
			|||||||
fi
 | 
					fi
 | 
				
			||||||
 | 
					
 | 
				
			||||||
echo "Configuring NGINX"
 | 
					echo "Configuring NGINX"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					if [ "${NGINX_PORT}" = "443" ]; then
 | 
				
			||||||
cat > /etc/nginx/conf.d/default.conf <<EOF
 | 
					cat > /etc/nginx/conf.d/default.conf <<EOF
 | 
				
			||||||
server {
 | 
					server {
 | 
				
			||||||
    listen 80;
 | 
					    listen 80;
 | 
				
			||||||
    listen [::]:80;
 | 
					    listen [::]:80;
 | 
				
			||||||
    return 301 https://\$host:${NGINX_PORT}\$request_uri;
 | 
					    return 301 https://\$host\$request_uri;
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
 | 
					
 | 
				
			||||||
server {
 | 
					server {
 | 
				
			||||||
@@ -74,5 +77,21 @@ server {
 | 
				
			|||||||
    }
 | 
					    }
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
EOF
 | 
					EOF
 | 
				
			||||||
 | 
					else
 | 
				
			||||||
 | 
					cat > /etc/nginx/conf.d/default.conf <<EOF
 | 
				
			||||||
 | 
					server {
 | 
				
			||||||
 | 
					    listen ${NGINX_PORT};
 | 
				
			||||||
 | 
					    listen [::]:${NGINX_PORT};
 | 
				
			||||||
 | 
					    location / {
 | 
				
			||||||
 | 
					        auth_basic "Restricted";
 | 
				
			||||||
 | 
					        auth_basic_user_file /etc/nginx/conf.d/kibana.htpasswd;
 | 
				
			||||||
 | 
					        proxy_pass http://${KIBANA_HOST}/;
 | 
				
			||||||
 | 
					        proxy_buffer_size          128k;
 | 
				
			||||||
 | 
					        proxy_buffers              4 256k;
 | 
				
			||||||
 | 
					        proxy_busy_buffers_size    256k;
 | 
				
			||||||
 | 
					    }
 | 
				
			||||||
 | 
					}
 | 
				
			||||||
 | 
					EOF
 | 
				
			||||||
 | 
					fi
 | 
				
			||||||
 | 
					
 | 
				
			||||||
exec nginx -g 'daemon off;'
 | 
					exec nginx -g 'daemon off;'
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -1,14 +1,14 @@
 | 
				
			|||||||
# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
					# Wazuh Docker Copyright (C) 2020 Wazuh Inc. (License GPLv2)
 | 
				
			||||||
FROM phusion/baseimage:latest
 | 
					FROM phusion/baseimage:0.10.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
ARG FILEBEAT_VERSION=7.7.1
 | 
					ARG FILEBEAT_VERSION=7.9.2
 | 
				
			||||||
 | 
					
 | 
				
			||||||
ARG WAZUH_VERSION=3.13.0-1
 | 
					ARG WAZUH_VERSION=3.13.5-1
 | 
				
			||||||
 | 
					
 | 
				
			||||||
ENV API_USER="foo" \
 | 
					ENV API_USER="foo" \
 | 
				
			||||||
   API_PASS="bar"
 | 
					   API_PASS="bar"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
ARG TEMPLATE_VERSION="v3.13.0"
 | 
					ARG TEMPLATE_VERSION="v3.13.5"
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# Set repositories.
 | 
					# Set repositories.
 | 
				
			||||||
RUN set -x && echo "deb https://packages.wazuh.com/3.x/apt/ stable main" | tee /etc/apt/sources.list.d/wazuh.list && \
 | 
					RUN set -x && echo "deb https://packages.wazuh.com/3.x/apt/ stable main" | tee /etc/apt/sources.list.d/wazuh.list && \
 | 
				
			||||||
@@ -76,5 +76,8 @@ RUN chmod +x /etc/service/wazuh-api/run && \
 | 
				
			|||||||
ADD https://raw.githubusercontent.com/wazuh/wazuh/$TEMPLATE_VERSION/extensions/elasticsearch/7.x/wazuh-template.json /etc/filebeat
 | 
					ADD https://raw.githubusercontent.com/wazuh/wazuh/$TEMPLATE_VERSION/extensions/elasticsearch/7.x/wazuh-template.json /etc/filebeat
 | 
				
			||||||
RUN chmod go-w /etc/filebeat/wazuh-template.json
 | 
					RUN chmod go-w /etc/filebeat/wazuh-template.json
 | 
				
			||||||
 | 
					
 | 
				
			||||||
 | 
					ARG WAZUH_FILEBEAT_MODULE="wazuh-filebeat-0.1.tar.gz"
 | 
				
			||||||
 | 
					RUN curl -s https://packages.wazuh.com/3.x/filebeat/${WAZUH_FILEBEAT_MODULE} | tar -xvz -C /usr/share/filebeat/module
 | 
				
			||||||
 | 
					
 | 
				
			||||||
# Run all services
 | 
					# Run all services
 | 
				
			||||||
ENTRYPOINT ["/entrypoint.sh"]
 | 
					ENTRYPOINT ["/entrypoint.sh"]
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -50,7 +50,6 @@ if [  -e ${WAZUH_INSTALL_PATH}/etc-template  ]
 | 
				
			|||||||
then
 | 
					then
 | 
				
			||||||
    cp -p /var/ossec/etc-template/internal_options.conf /var/ossec/etc/internal_options.conf
 | 
					    cp -p /var/ossec/etc-template/internal_options.conf /var/ossec/etc/internal_options.conf
 | 
				
			||||||
fi
 | 
					fi
 | 
				
			||||||
rm /var/ossec/queue/db/.template.db
 | 
					 | 
				
			||||||
 | 
					
 | 
				
			||||||
# copy missing files from queue-template (in case this is an upgrade from previous versions)
 | 
					# copy missing files from queue-template (in case this is an upgrade from previous versions)
 | 
				
			||||||
for filename in /var/ossec/queue-template/*; do
 | 
					for filename in /var/ossec/queue-template/*; do
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -3,16 +3,8 @@
 | 
				
			|||||||
 | 
					
 | 
				
			||||||
set -e
 | 
					set -e
 | 
				
			||||||
 | 
					
 | 
				
			||||||
WAZUH_FILEBEAT_MODULE=wazuh-filebeat-0.1.tar.gz
 | 
					 | 
				
			||||||
 | 
					 | 
				
			||||||
# Modify the output to Elasticsearch if th ELASTICSEARCH_URL is set
 | 
					# Modify the output to Elasticsearch if th ELASTICSEARCH_URL is set
 | 
				
			||||||
if [ "$ELASTICSEARCH_URL" != "" ]; then
 | 
					if [ "$ELASTICSEARCH_URL" != "" ]; then
 | 
				
			||||||
  >&2 echo "Customize Elasticsearch ouput IP."
 | 
					  >&2 echo "Customize Elasticsearch ouput IP."
 | 
				
			||||||
  sed -i 's|http://elasticsearch:9200|'$ELASTICSEARCH_URL'|g' /etc/filebeat/filebeat.yml
 | 
					  sed -i 's|http://elasticsearch:9200|'$ELASTICSEARCH_URL'|g' /etc/filebeat/filebeat.yml
 | 
				
			||||||
fi
 | 
					fi
 | 
				
			||||||
 | 
					 | 
				
			||||||
# Install Wazuh Filebeat Module
 | 
					 | 
				
			||||||
 | 
					 | 
				
			||||||
curl -s "https://packages.wazuh.com/3.x/filebeat/${WAZUH_FILEBEAT_MODULE}" | tar -xvz -C /usr/share/filebeat/module
 | 
					 | 
				
			||||||
mkdir -p /usr/share/filebeat/module/wazuh
 | 
					 | 
				
			||||||
chmod 755 -R /usr/share/filebeat/module/wazuh
 | 
					 | 
				
			||||||
 
 | 
				
			|||||||
		Reference in New Issue
	
	Block a user