mirror of
				https://github.com/wazuh/wazuh-docker.git
				synced 2025-10-30 19:43:39 +00:00 
			
		
		
		
	Compare commits
	
		
			131 Commits
		
	
	
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
|  | 0f15acb783 | ||
|  | 118c7805e3 | ||
|  | 7245dfb0ef | ||
|  | b82b0efdd8 | ||
|  | 8e78fdfeec | ||
|  | 3fe18c0f53 | ||
|  | 34de7307f6 | ||
|  | cea3caee44 | ||
|  | 1e28240ceb | ||
|  | c17b22c13b | ||
|  | 1da9ce981c | ||
|  | 938a3df846 | ||
|  | 3672c99a31 | ||
|  | 4a9f83ddee | ||
|  | 65b0d659d0 | ||
|  | 34b3c00596 | ||
|  | c1fd8e2380 | ||
|  | d306f942f7 | ||
|  | abde776e1b | ||
|  | b6f628f3c1 | ||
|  | 06a5ba5297 | ||
|  | 85992aea95 | ||
|  | 5057d0f083 | ||
|  | 562eb60e0f | ||
|  | 58d6ec2953 | ||
|  | 300c1bbcdd | ||
|  | 1fe7647b47 | ||
|  | bd5e95a2b8 | ||
|  | f002f7e7b0 | ||
|  | 72c0b196d0 | ||
|  | ce53f0f05e | ||
|  | aa69278c44 | ||
|  | 546f3cef9b | ||
|  | 754c4b331e | ||
|  | 4433476038 | ||
|  | e60c07a18f | ||
|  | fe0f76bd7b | ||
|  | e4fec103ca | ||
|  | 28acd68e6e | ||
|  | fc8a8d6869 | ||
|  | 288630a722 | ||
|  | 5c1d43c702 | ||
|  | ff7c511f3b | ||
|  | 5f689b8802 | ||
|  | f73a819ee4 | ||
|  | ebf8379373 | ||
|  | d024c37fc5 | ||
|  | 87f3dccb0f | ||
|  | 29e679363d | ||
|  | 6195484a82 | ||
|  | 3d9981d9fa | ||
|  | 06821f172f | ||
|  | 660e472b7c | ||
|  | af33c2dd7c | ||
|  | 331fb1969e | ||
|  | b88d852b9f | ||
|  | 281cde7292 | ||
|  | c9bbf912b0 | ||
|  | 7a189605eb | ||
|  | ae32e0111d | ||
|  | e29dd1195b | ||
|  | dafe93039f | ||
|  | 0adf702f70 | ||
|  | 7be457e3ff | ||
|  | 6e432a133d | ||
|  | f49bba385c | ||
|  | a7bb241f8a | ||
|  | 6e0311a330 | ||
|  | bc6ab77773 | ||
|  | e4f782f55d | ||
|  | b29bd6b936 | ||
|  | 2bed6e2d95 | ||
|  | 73253898a2 | ||
|  | 2b30318a08 | ||
|  | 49fb35633c | ||
|  | 052bce7ae1 | ||
|  | 5fb9a0b6b1 | ||
|  | 34d25df8ad | ||
|  | c4bef8df3e | ||
|  | 31440d4a54 | ||
|  | 06e259714c | ||
|  | d2bb16a493 | ||
|  | a0c1fd8bf5 | ||
|  | c548f3e096 | ||
|  | 69b4169fd5 | ||
|  | 1ee604e4b1 | ||
|  | 5b3f46142e | ||
|  | 845f7e59ec | ||
|  | 633c50bce6 | ||
|  | 347187c411 | ||
|  | af11b8cbbb | ||
|  | 77ef56ada7 | ||
|  | 081436be42 | ||
|  | a7cc8ef16e | ||
|  | 79ead0cf55 | ||
|  | 7b415dc700 | ||
|  | f2a5901fd6 | ||
|  | 90f1d446c1 | ||
|  | 23848dc8bf | ||
|  | 9e6defa9d1 | ||
|  | 6a3b470f3c | ||
|  | 91295a4b39 | ||
|  | 8885425b7f | ||
|  | 2060e2103b | ||
|  | 39768a397a | ||
|  | 66a1533425 | ||
|  | 1f7eae1247 | ||
|  | 2c2388ce4a | ||
|  | be82d2c41d | ||
|  | ff54368593 | ||
|  | 7cfda0550d | ||
|  | 77e548485a | ||
|  | 79ad691772 | ||
|  | 0980cf0257 | ||
|  | d9a2ebf090 | ||
|  | 240f22b19c | ||
|  | a13406a029 | ||
|  | b9a52df0ff | ||
|  | 5252ce6c53 | ||
|  | 5ef484647a | ||
|  | 22f34ccb40 | ||
|  | 369560f59f | ||
|  | f809a1ebbb | ||
|  | a5c313843e | ||
|  | ea0e679c27 | ||
|  | 7ca14b9fc8 | ||
|  | 42977e3131 | ||
|  | 447c0bdaf8 | ||
|  | e6c5e82a32 | ||
|  | 46d6dc8fe5 | ||
|  | 08ba82d16d | 
							
								
								
									
										6
									
								
								.env
									
									
									
									
									
								
							
							
						
						
									
										6
									
								
								.env
									
									
									
									
									
								
							| @@ -1,6 +1,6 @@ | ||||
| WAZUH_VERSION=4.10.0 | ||||
| WAZUH_IMAGE_VERSION=4.10.0 | ||||
| WAZUH_VERSION=4.12.0 | ||||
| WAZUH_IMAGE_VERSION=4.12.0 | ||||
| WAZUH_TAG_REVISION=1 | ||||
| FILEBEAT_TEMPLATE_BRANCH=4.10.0 | ||||
| FILEBEAT_TEMPLATE_BRANCH=4.12.0 | ||||
| WAZUH_FILEBEAT_MODULE=wazuh-filebeat-0.4.tar.gz | ||||
| WAZUH_UI_REVISION=1 | ||||
|   | ||||
							
								
								
									
										2
									
								
								.github/.goss.yaml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										2
									
								
								.github/.goss.yaml
									
									
									
									
										vendored
									
									
								
							| @@ -56,7 +56,7 @@ package: | ||||
|   wazuh-manager: | ||||
|     installed: true | ||||
|     versions: | ||||
|     - 4.10.0-1 | ||||
|     - 4.12.0 | ||||
| port: | ||||
|   tcp:1514: | ||||
|     listening: true | ||||
|   | ||||
							
								
								
									
										245
									
								
								.github/free-disk-space/action.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							
							
						
						
									
										245
									
								
								.github/free-disk-space/action.yml
									
									
									
									
										vendored
									
									
										Normal file
									
								
							| @@ -0,0 +1,245 @@ | ||||
| name: "Free Disk Space (Ubuntu)" | ||||
| description: "A configurable GitHub Action to free up disk space on an Ubuntu GitHub Actions runner." | ||||
|  | ||||
| # Thanks @jlumbroso for the action code https://github.com/jlumbroso/free-disk-space/ | ||||
| # See: https://docs.github.com/en/actions/creating-actions/metadata-syntax-for-github-actions#branding | ||||
|  | ||||
| inputs: | ||||
|   android: | ||||
|     description: "Remove Android runtime" | ||||
|     required: false | ||||
|     default: "true" | ||||
|   dotnet: | ||||
|     description: "Remove .NET runtime" | ||||
|     required: false | ||||
|     default: "true" | ||||
|   haskell: | ||||
|     description: "Remove Haskell runtime" | ||||
|     required: false | ||||
|     default: "true" | ||||
|  | ||||
|   # option inspired by: | ||||
|   # https://github.com/apache/flink/blob/master/tools/azure-pipelines/free_disk_space.sh | ||||
|   large-packages: | ||||
|     description: "Remove large packages" | ||||
|     required: false | ||||
|     default: "true" | ||||
|  | ||||
|   docker-images: | ||||
|     description: "Remove Docker images" | ||||
|     required: false | ||||
|     default: "true" | ||||
|  | ||||
|   # option inspired by: | ||||
|   # https://github.com/actions/virtual-environments/issues/2875#issuecomment-1163392159 | ||||
|   tool-cache: | ||||
|     description: "Remove image tool cache" | ||||
|     required: false | ||||
|     default: "false" | ||||
|  | ||||
|   swap-storage: | ||||
|     description: "Remove swap storage" | ||||
|     required: false | ||||
|     default: "true" | ||||
|  | ||||
| runs: | ||||
|   using: "composite" | ||||
|   steps: | ||||
|     - shell: bash | ||||
|       run: | | ||||
|  | ||||
|         # ====== | ||||
|         # MACROS | ||||
|         # ====== | ||||
|  | ||||
|         # macro to print a line of equals | ||||
|         # (silly but works) | ||||
|         printSeparationLine() { | ||||
|           str=${1:=} | ||||
|           num=${2:-80} | ||||
|           counter=1 | ||||
|           output="" | ||||
|           while [ $counter -le $num ] | ||||
|           do | ||||
|              output="${output}${str}" | ||||
|              counter=$((counter+1)) | ||||
|           done | ||||
|           echo "${output}" | ||||
|         } | ||||
|  | ||||
|         # macro to compute available space | ||||
|         # REF: https://unix.stackexchange.com/a/42049/60849 | ||||
|         # REF: https://stackoverflow.com/a/450821/408734 | ||||
|         getAvailableSpace() { echo $(df -a $1 | awk 'NR > 1 {avail+=$4} END {print avail}'); } | ||||
|  | ||||
|         # macro to make Kb human readable (assume the input is Kb) | ||||
|         # REF: https://unix.stackexchange.com/a/44087/60849 | ||||
|         formatByteCount() { echo $(numfmt --to=iec-i --suffix=B --padding=7 $1'000'); } | ||||
|  | ||||
|         # macro to output saved space | ||||
|         printSavedSpace() { | ||||
|           saved=${1} | ||||
|           title=${2:-} | ||||
|  | ||||
|           echo "" | ||||
|           printSeparationLine '*' 80 | ||||
|           if [ ! -z "${title}" ]; then | ||||
|             echo "=> ${title}: Saved $(formatByteCount $saved)" | ||||
|           else | ||||
|             echo "=> Saved $(formatByteCount $saved)" | ||||
|           fi | ||||
|           printSeparationLine '*' 80 | ||||
|           echo "" | ||||
|         } | ||||
|  | ||||
|         # macro to print output of dh with caption | ||||
|         printDH() { | ||||
|           caption=${1:-} | ||||
|  | ||||
|           printSeparationLine '=' 80 | ||||
|           echo "${caption}" | ||||
|           echo "" | ||||
|           echo "$ dh -h /" | ||||
|           echo "" | ||||
|           df -h / | ||||
|           echo "$ dh -a /" | ||||
|           echo "" | ||||
|           df -a / | ||||
|           echo "$ dh -a" | ||||
|           echo "" | ||||
|           df -a | ||||
|           printSeparationLine '=' 80 | ||||
|         } | ||||
|  | ||||
|  | ||||
|  | ||||
|         # ====== | ||||
|         # SCRIPT | ||||
|         # ====== | ||||
|  | ||||
|         # Display initial disk space stats | ||||
|  | ||||
|         AVAILABLE_INITIAL=$(getAvailableSpace) | ||||
|         AVAILABLE_ROOT_INITIAL=$(getAvailableSpace '/') | ||||
|  | ||||
|         printDH "BEFORE CLEAN-UP:" | ||||
|         echo "" | ||||
|  | ||||
|  | ||||
|         # Option: Remove Android library | ||||
|  | ||||
|         if [[ ${{ inputs.android }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|            | ||||
|           sudo rm -rf /usr/local/lib/android || true | ||||
|  | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Android library" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove .NET runtime | ||||
|  | ||||
|         if [[ ${{ inputs.dotnet }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|  | ||||
|           # https://github.community/t/bigger-github-hosted-runners-disk-space/17267/11 | ||||
|           sudo rm -rf /usr/share/dotnet || true | ||||
|            | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED ".NET runtime" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove Haskell runtime | ||||
|  | ||||
|         if [[ ${{ inputs.haskell }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|  | ||||
|           sudo rm -rf /opt/ghc || true | ||||
|           sudo rm -rf /usr/local/.ghcup || true | ||||
|            | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Haskell runtime" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove large packages | ||||
|         # REF: https://github.com/apache/flink/blob/master/tools/azure-pipelines/free_disk_space.sh | ||||
|  | ||||
|         if [[ ${{ inputs.large-packages }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|            | ||||
|           sudo apt-get remove -y '^aspnetcore-.*' || echo "::warning::The command [sudo apt-get remove -y '^aspnetcore-.*'] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y '^dotnet-.*' --fix-missing || echo "::warning::The command [sudo apt-get remove -y '^dotnet-.*' --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y '^llvm-.*' --fix-missing || echo "::warning::The command [sudo apt-get remove -y '^llvm-.*' --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y 'php.*' --fix-missing || echo "::warning::The command [sudo apt-get remove -y 'php.*' --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y '^mongodb-.*' --fix-missing || echo "::warning::The command [sudo apt-get remove -y '^mongodb-.*' --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y '^mysql-.*' --fix-missing || echo "::warning::The command [sudo apt-get remove -y '^mysql-.*' --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y azure-cli google-chrome-stable firefox powershell mono-devel libgl1-mesa-dri --fix-missing || echo "::warning::The command [sudo apt-get remove -y azure-cli google-chrome-stable firefox powershell mono-devel libgl1-mesa-dri --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y google-cloud-sdk --fix-missing || echo "::debug::The command [sudo apt-get remove -y google-cloud-sdk --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get remove -y google-cloud-cli --fix-missing || echo "::debug::The command [sudo apt-get remove -y google-cloud-cli --fix-missing] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get autoremove -y || echo "::warning::The command [sudo apt-get autoremove -y] failed to complete successfully. Proceeding..." | ||||
|           sudo apt-get clean || echo "::warning::The command [sudo apt-get clean] failed to complete successfully. Proceeding..." | ||||
|  | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Large misc. packages" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove Docker images | ||||
|  | ||||
|         if [[ ${{ inputs.docker-images }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|  | ||||
|           sudo docker image prune --all --force || true | ||||
|  | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Docker images" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove tool cache | ||||
|         # REF: https://github.com/actions/virtual-environments/issues/2875#issuecomment-1163392159 | ||||
|  | ||||
|         if [[ ${{ inputs.tool-cache }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|  | ||||
|           sudo rm -rf "$AGENT_TOOLSDIRECTORY" || true | ||||
|            | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Tool cache" | ||||
|         fi | ||||
|  | ||||
|         # Option: Remove Swap storage | ||||
|  | ||||
|         if [[ ${{ inputs.swap-storage }} == 'true' ]]; then | ||||
|           BEFORE=$(getAvailableSpace) | ||||
|  | ||||
|           sudo swapoff -a || true | ||||
|           sudo rm -f /mnt/swapfile || true | ||||
|           free -h | ||||
|            | ||||
|           AFTER=$(getAvailableSpace) | ||||
|           SAVED=$((AFTER-BEFORE)) | ||||
|           printSavedSpace $SAVED "Swap storage" | ||||
|         fi | ||||
|  | ||||
|  | ||||
|  | ||||
|         # Output saved space statistic | ||||
|  | ||||
|         AVAILABLE_END=$(getAvailableSpace) | ||||
|         AVAILABLE_ROOT_END=$(getAvailableSpace '/') | ||||
|  | ||||
|         echo "" | ||||
|         printDH "AFTER CLEAN-UP:" | ||||
|  | ||||
|         echo "" | ||||
|         echo "" | ||||
|  | ||||
|         echo "/dev/root:" | ||||
|         printSavedSpace $((AVAILABLE_ROOT_END - AVAILABLE_ROOT_INITIAL)) | ||||
|         echo "overall:" | ||||
|         printSavedSpace $((AVAILABLE_END - AVAILABLE_INITIAL)) | ||||
| @@ -6,12 +6,12 @@ on: | ||||
|     inputs: | ||||
|       image_tag: | ||||
|         description: 'Docker image tag' | ||||
|         default: '4.10.0' | ||||
|         default: '4.12.0' | ||||
|         required: true | ||||
|       docker_reference: | ||||
|         description: 'wazuh-docker reference' | ||||
|         default: 'v4.10.0' | ||||
|         required: false | ||||
|         default: 'v4.12.0' | ||||
|         required: true | ||||
|       products: | ||||
|         description: 'Comma-separated list of the image names to build and push' | ||||
|         default: 'wazuh-manager,wazuh-dashboard,wazuh-indexer' | ||||
| @@ -42,12 +42,12 @@ on: | ||||
|     inputs: | ||||
|       image_tag: | ||||
|         description: 'Docker image tag' | ||||
|         default: '4.10.0' | ||||
|         default: '4.12.0' | ||||
|         required: true | ||||
|         type: string | ||||
|       docker_reference: | ||||
|         description: 'wazuh-docker reference' | ||||
|         default: 'v4.10.0' | ||||
|         default: 'v4.12.0' | ||||
|         required: false | ||||
|         type: string | ||||
|       products: | ||||
| @@ -82,7 +82,7 @@ on: | ||||
|  | ||||
| jobs: | ||||
|   build-and-push: | ||||
|     runs-on: ubuntu-latest | ||||
|     runs-on: ubuntu-22.04 | ||||
|  | ||||
|     steps: | ||||
|     - name: Print inputs | ||||
|   | ||||
							
								
								
									
										31
									
								
								.github/workflows/push.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										31
									
								
								.github/workflows/push.yml
									
									
									
									
										vendored
									
									
								
							| @@ -4,7 +4,7 @@ on: [pull_request] | ||||
|  | ||||
| jobs: | ||||
|   build-docker-images: | ||||
|     runs-on: ubuntu-latest | ||||
|     runs-on: ubuntu-22.04 | ||||
|     steps: | ||||
|  | ||||
|     - name: Check out code | ||||
| @@ -29,21 +29,21 @@ jobs: | ||||
|         docker save wazuh/wazuh-dashboard:${{env.WAZUH_IMAGE_VERSION}} -o /home/runner/work/wazuh-docker/wazuh-docker/docker-images/wazuh-dashboard.tar | ||||
|  | ||||
|     - name: Temporarily save Wazuh manager Docker image | ||||
|       uses: actions/upload-artifact@v3 | ||||
|       uses: actions/upload-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-manager | ||||
|         path: /home/runner/work/wazuh-docker/wazuh-docker/docker-images/wazuh-manager.tar | ||||
|         retention-days: 1 | ||||
|  | ||||
|     - name: Temporarily save Wazuh indexer Docker image | ||||
|       uses: actions/upload-artifact@v3 | ||||
|       uses: actions/upload-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-indexer | ||||
|         path: /home/runner/work/wazuh-docker/wazuh-docker/docker-images/wazuh-indexer.tar | ||||
|         retention-days: 1 | ||||
|  | ||||
|     - name: Temporarily save Wazuh dashboard Docker image | ||||
|       uses: actions/upload-artifact@v3 | ||||
|       uses: actions/upload-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-dashboard | ||||
|         path: /home/runner/work/wazuh-docker/wazuh-docker/docker-images/wazuh-dashboard.tar | ||||
| @@ -61,7 +61,7 @@ jobs: | ||||
|         GOSS_FILE: .github/.goss.yaml | ||||
|  | ||||
|   check-single-node: | ||||
|     runs-on: ubuntu-latest | ||||
|     runs-on: ubuntu-22.04 | ||||
|     needs: build-docker-images | ||||
|     steps: | ||||
|  | ||||
| @@ -77,17 +77,17 @@ jobs: | ||||
|       run: cat .env > $GITHUB_ENV | ||||
|  | ||||
|     - name: Retrieve saved Wazuh indexer Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-indexer | ||||
|  | ||||
|     - name: Retrieve saved Wazuh manager Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-manager | ||||
|  | ||||
|     - name: Retrieve saved Wazuh dashboard Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-dashboard | ||||
|  | ||||
| @@ -189,7 +189,7 @@ jobs: | ||||
|       run: ./.github/single-node-log-check.sh | ||||
|  | ||||
|   check-multi-node: | ||||
|     runs-on: ubuntu-latest | ||||
|     runs-on: ubuntu-22.04 | ||||
|     needs: build-docker-images | ||||
|     steps: | ||||
|  | ||||
| @@ -205,25 +205,20 @@ jobs: | ||||
|       run: cat .env > $GITHUB_ENV | ||||
|  | ||||
|     - name: free disk space | ||||
|       run: | | ||||
|         sudo swapoff -a | ||||
|         sudo rm -f /swapfile | ||||
|         sudo apt clean | ||||
|         docker rmi $(docker image ls -aq) | ||||
|         df -h | ||||
|       uses: ./.github/free-disk-space | ||||
|  | ||||
|     - name: Retrieve saved Wazuh dashboard Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-dashboard | ||||
|  | ||||
|     - name: Retrieve saved Wazuh manager Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-manager | ||||
|  | ||||
|     - name: Retrieve saved Wazuh indexer Docker image | ||||
|       uses: actions/download-artifact@v3 | ||||
|       uses: actions/download-artifact@v4 | ||||
|       with: | ||||
|         name: docker-artifact-indexer | ||||
|  | ||||
|   | ||||
							
								
								
									
										2
									
								
								.github/workflows/trivy-dashboard.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										2
									
								
								.github/workflows/trivy-dashboard.yml
									
									
									
									
										vendored
									
									
								
							| @@ -27,7 +27,7 @@ jobs: | ||||
|       security-events: write # for github/codeql-action/upload-sarif to upload SARIF results | ||||
|  | ||||
|     name: Build images and upload Trivy results | ||||
|     runs-on: "ubuntu-latest" | ||||
|     runs-on: "ubuntu-22.04" | ||||
|     steps: | ||||
|       - name: Checkout code | ||||
|         uses: actions/checkout@v3 | ||||
|   | ||||
							
								
								
									
										2
									
								
								.github/workflows/trivy-indexer.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										2
									
								
								.github/workflows/trivy-indexer.yml
									
									
									
									
										vendored
									
									
								
							| @@ -27,7 +27,7 @@ jobs: | ||||
|       security-events: write # for github/codeql-action/upload-sarif to upload SARIF results | ||||
|  | ||||
|     name: Build images and upload Trivy results | ||||
|     runs-on: "ubuntu-latest" | ||||
|     runs-on: "ubuntu-22.04" | ||||
|     steps: | ||||
|       - name: Checkout code | ||||
|         uses: actions/checkout@v3 | ||||
|   | ||||
							
								
								
									
										2
									
								
								.github/workflows/trivy-manager.yml
									
									
									
									
										vendored
									
									
								
							
							
						
						
									
										2
									
								
								.github/workflows/trivy-manager.yml
									
									
									
									
										vendored
									
									
								
							| @@ -27,7 +27,7 @@ jobs: | ||||
|       security-events: write # for github/codeql-action/upload-sarif to upload SARIF results | ||||
|  | ||||
|     name: Build images and upload Trivy results | ||||
|     runs-on: "ubuntu-latest" | ||||
|     runs-on: "ubuntu-22.04" | ||||
|     steps: | ||||
|       - name: Checkout code | ||||
|         uses: actions/checkout@v3 | ||||
|   | ||||
							
								
								
									
										91
									
								
								CHANGELOG.md
									
									
									
									
									
								
							
							
						
						
									
										91
									
								
								CHANGELOG.md
									
									
									
									
									
								
							| @@ -1,6 +1,97 @@ | ||||
| # Change Log | ||||
| All notable changes to this project will be documented in this file. | ||||
|  | ||||
| ## [4.12.0] | ||||
|  | ||||
| ### Added | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Changed | ||||
|  | ||||
| - Change VERSION file format ([#1728](https://github.com/wazuh/wazuh-docker/pull/1728)) \- (VERSION file) | ||||
| - Change Ubuntu version used in workflows ([#1662](https://github.com/wazuh/wazuh-docker/pull/1662)) \- (Docker workflows) | ||||
|  | ||||
| ### Fixed | ||||
|  | ||||
| - Fix permanent data scripts ([#1603](https://github.com/wazuh/wazuh-docker/pull/1603)) | ||||
|  | ||||
| ### Deleted | ||||
|  | ||||
| - None | ||||
|  | ||||
| ## [4.11.2] | ||||
|  | ||||
| ### Added | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Changed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Fixed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Deleted | ||||
|  | ||||
| - None | ||||
|  | ||||
| ## [4.11.1] | ||||
|  | ||||
| ### Added | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Changed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Fixed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Deleted | ||||
|  | ||||
| - None | ||||
|  | ||||
| ## [4.11.0] | ||||
|  | ||||
| ### Added | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Changed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Fixed | ||||
|  | ||||
| - Change the cleaning disk step ([#1663](https://github.com/wazuh/wazuh-docker/pull/1663)) | ||||
|  | ||||
| ### Deleted | ||||
|  | ||||
| - None | ||||
|  | ||||
| ## [4.10.1] | ||||
|  | ||||
| ### Added | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Changed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Fixed | ||||
|  | ||||
| - None | ||||
|  | ||||
| ### Deleted | ||||
|  | ||||
| - None | ||||
|  | ||||
| ## [4.10.0] | ||||
|  | ||||
| ### Added | ||||
|   | ||||
| @@ -165,7 +165,7 @@ WAZUH_MONITORING_REPLICAS=0         ## | ||||
|     │   ├── docker-compose.yml | ||||
|     │   ├── generate-indexer-certs.yml | ||||
|     │   └── README.md | ||||
|     └── VERSION | ||||
|     └── VERSION.json | ||||
|  | ||||
|  | ||||
|  | ||||
| @@ -178,6 +178,11 @@ WAZUH_MONITORING_REPLICAS=0         ## | ||||
|  | ||||
| | Wazuh version | ODFE    | XPACK  | | ||||
| |---------------|---------|--------| | ||||
| | v4.12.0       |         |        | | ||||
| | v4.11.2       |         |        | | ||||
| | v4.11.1       |         |        | | ||||
| | v4.11.0       |         |        | | ||||
| | v4.10.1       |         |        | | ||||
| | v4.10.0       |         |        | | ||||
| | v4.9.2        |         |        | | ||||
| | v4.9.1        |         |        | | ||||
|   | ||||
							
								
								
									
										4
									
								
								VERSION.json
									
									
									
									
									
										Normal file
									
								
							
							
						
						
									
										4
									
								
								VERSION.json
									
									
									
									
									
										Normal file
									
								
							| @@ -0,0 +1,4 @@ | ||||
| { | ||||
|     "version": "4.12.0", | ||||
|     "stage": "rc1" | ||||
| } | ||||
| @@ -13,7 +13,7 @@ This script initializes the environment variables needed to build each of the im | ||||
| The script allows you to build images from other versions of Wazuh, to do this you must use the -v or --version argument: | ||||
|  | ||||
| ``` | ||||
| $ build-docker-images/build-images.sh -v 4.10.0 | ||||
| $ build-docker-images/build-images.sh -v 4.12.0 | ||||
| ``` | ||||
|  | ||||
| To get all the available script options use the -h or --help option: | ||||
| @@ -26,7 +26,7 @@ Usage: build-docker-images/build-images.sh [OPTIONS] | ||||
|     -d, --dev <ref>              [Optional] Set the development stage you want to build, example rc1 or beta1, not used by default. | ||||
|     -f, --filebeat-module <ref>  [Optional] Set Filebeat module version. By default 0.4. | ||||
|     -r, --revision <rev>         [Optional] Package revision. By default 1 | ||||
|     -v, --version <ver>          [Optional] Set the Wazuh version should be builded. By default, 4.10.0. | ||||
|     -v, --version <ver>          [Optional] Set the Wazuh version should be builded. By default, 4.12.0. | ||||
|     -h, --help                   Show this help. | ||||
|  | ||||
| ``` | ||||
| @@ -1,4 +1,4 @@ | ||||
| WAZUH_IMAGE_VERSION=4.10.0 | ||||
| WAZUH_IMAGE_VERSION=4.12.0 | ||||
| WAZUH_VERSION=$(echo $WAZUH_IMAGE_VERSION | sed -e 's/\.//g') | ||||
| WAZUH_TAG_REVISION=1 | ||||
| WAZUH_CURRENT_VERSION=$(curl --silent https://api.github.com/repos/wazuh/wazuh/releases/latest | grep '["]tag_name["]:' | sed -E 's/.*\"([^\"]+)\".*/\1/' | cut -c 2- | sed -e 's/\.//g') | ||||
| @@ -12,7 +12,7 @@ IMAGE_VERSION=${WAZUH_IMAGE_VERSION} | ||||
| # License (version 2) as published by the FSF - Free Software | ||||
| # Foundation. | ||||
|  | ||||
| WAZUH_IMAGE_VERSION="4.10.0" | ||||
| WAZUH_IMAGE_VERSION="4.12.0" | ||||
| WAZUH_TAG_REVISION="1" | ||||
| WAZUH_DEV_STAGE="" | ||||
| FILEBEAT_MODULE_VERSION="0.4" | ||||
| @@ -52,16 +52,11 @@ build() { | ||||
|             FILEBEAT_TEMPLATE_BRANCH="v${FILEBEAT_TEMPLATE_BRANCH}" | ||||
|         elif curl --output /dev/null --silent --head --fail "https://github.com/wazuh/wazuh/tree/${FILEBEAT_TEMPLATE_BRANCH}"; then | ||||
|             FILEBEAT_TEMPLATE_BRANCH="${FILEBEAT_TEMPLATE_BRANCH}" | ||||
|         else | ||||
|             WAZUH_MASTER_VERSION="$(curl -s https://raw.githubusercontent.com/wazuh/wazuh/master/src/VERSION | sed -e 's/v//g')" | ||||
|             if [ "${FILEBEAT_TEMPLATE_BRANCH}" == "${WAZUH_MASTER_VERSION}" ]; then | ||||
|                 FILEBEAT_TEMPLATE_BRANCH="master" | ||||
|         else | ||||
|             echo "The indicated branch does not exist in the wazuh/wazuh repository: ${FILEBEAT_TEMPLATE_BRANCH}" | ||||
|             clean 1 | ||||
|         fi | ||||
|     fi | ||||
|     fi | ||||
|  | ||||
|     echo WAZUH_VERSION=$WAZUH_IMAGE_VERSION > .env | ||||
|     echo WAZUH_IMAGE_VERSION=$WAZUH_IMAGE_VERSION >> .env | ||||
|   | ||||
| @@ -9,8 +9,8 @@ export CONFIG_DIR=${INSTALLATION_DIR}/config | ||||
|  | ||||
| ## Variables | ||||
| CERT_TOOL=wazuh-certs-tool.sh | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.10/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.10/ | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.12/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.12/ | ||||
|  | ||||
| ## Check if the cert tool exists in S3 buckets | ||||
| CERT_TOOL_PACKAGES=$(curl --silent -I $PACKAGES_URL$CERT_TOOL | grep -E "^HTTP" | awk  '{print $2}') | ||||
|   | ||||
| @@ -22,8 +22,8 @@ export REPO_DIR=/unattended_installer | ||||
| ## Variables | ||||
| CERT_TOOL=wazuh-certs-tool.sh | ||||
| PASSWORD_TOOL=wazuh-passwords-tool.sh | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.10/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.10/ | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.12/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.12/ | ||||
|  | ||||
| ## Check if the cert tool exists in S3 buckets | ||||
| CERT_TOOL_PACKAGES=$(curl --silent -I $PACKAGES_URL$CERT_TOOL | grep -E "^HTTP" | awk  '{print $2}') | ||||
|   | ||||
| @@ -47,12 +47,8 @@ mount_permanent_data() { | ||||
|     if find ${permanent_dir} -mindepth 1 | read; then | ||||
|       print "The path ${permanent_dir} is already mounted" | ||||
|     else | ||||
|       if find ${data_tmp} -mindepth 1 | read; then | ||||
|         print "Installing ${permanent_dir}" | ||||
|         exec_cmd "cp -a ${data_tmp}. ${permanent_dir}" | ||||
|       else | ||||
|         print "The path ${permanent_dir} is empty, skipped" | ||||
|       fi | ||||
|         exec_cmd "cp -ar ${data_tmp}. ${permanent_dir}" | ||||
|     fi | ||||
|   done | ||||
| } | ||||
|   | ||||
| @@ -82,6 +82,11 @@ PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure-logs.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/db/orm.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/db/utils.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/db/__init__.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure_utils.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure_services/__init__.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure_services/analytics.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure_services/graph.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/azure/azure_services/storage.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/docker/DockerListener" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/docker/DockerListener.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/gcloud" | ||||
| @@ -89,6 +94,9 @@ PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/gcloud.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/integration.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/tools.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/exceptions.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/buckets/bucket.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/buckets/access_logs.py" | ||||
| PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/pubsub/subscriber.py" | ||||
| export PERMANENT_DATA_EXCP | ||||
|  | ||||
| # Files mounted in a volume that should be deleted | ||||
|   | ||||
| @@ -30,11 +30,7 @@ mkdir ${PERMANENT_PATH} | ||||
| for permanent_dir in "${PERMANENT_DATA[@]}"; do | ||||
|   # Create the directory for the permanent file if it does not exist | ||||
|   DIR=$(dirname "${permanent_dir}") | ||||
|   if [ ! -e ${PERMANENT_PATH}${DIR}  ] | ||||
|   then | ||||
|   mkdir -p ${PERMANENT_PATH}${DIR} | ||||
|   fi | ||||
|    | ||||
|   mv ${permanent_dir} ${PERMANENT_PATH}${permanent_dir} | ||||
|   cp -ar ${permanent_dir} ${PERMANENT_PATH}${DIR} | ||||
|  | ||||
| done | ||||
|   | ||||
| @@ -8,8 +8,8 @@ | ||||
| ## Variables | ||||
| CERT_TOOL=wazuh-certs-tool.sh | ||||
| PASSWORD_TOOL=wazuh-passwords-tool.sh | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.10/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.10/ | ||||
| PACKAGES_URL=https://packages.wazuh.com/4.12/ | ||||
| PACKAGES_DEV_URL=https://packages-dev.wazuh.com/4.12/ | ||||
|  | ||||
| ## Check if the cert tool exists in S3 buckets | ||||
| CERT_TOOL_PACKAGES=$(curl --silent -I $PACKAGES_URL$CERT_TOOL | grep -E "^HTTP" | awk  '{print $2}') | ||||
|   | ||||
| @@ -3,7 +3,7 @@ version: '3.7' | ||||
|  | ||||
| services: | ||||
|   wazuh.master: | ||||
|     image: wazuh/wazuh-manager:4.10.0 | ||||
|     image: wazuh/wazuh-manager:4.12.0 | ||||
|     hostname: wazuh.master | ||||
|     restart: always | ||||
|     ulimits: | ||||
| @@ -45,7 +45,7 @@ services: | ||||
|       - ./config/wazuh_cluster/wazuh_manager.conf:/wazuh-config-mount/etc/ossec.conf | ||||
|  | ||||
|   wazuh.worker: | ||||
|     image: wazuh/wazuh-manager:4.10.0 | ||||
|     image: wazuh/wazuh-manager:4.12.0 | ||||
|     hostname: wazuh.worker | ||||
|     restart: always | ||||
|     ulimits: | ||||
| @@ -81,7 +81,7 @@ services: | ||||
|       - ./config/wazuh_cluster/wazuh_worker.conf:/wazuh-config-mount/etc/ossec.conf | ||||
|  | ||||
|   wazuh1.indexer: | ||||
|     image: wazuh/wazuh-indexer:4.10.0 | ||||
|     image: wazuh/wazuh-indexer:4.12.0 | ||||
|     hostname: wazuh1.indexer | ||||
|     restart: always | ||||
|     ports: | ||||
| @@ -107,7 +107,7 @@ services: | ||||
|       - ./config/wazuh_indexer/internal_users.yml:/usr/share/wazuh-indexer/opensearch-security/internal_users.yml | ||||
|  | ||||
|   wazuh2.indexer: | ||||
|     image: wazuh/wazuh-indexer:4.10.0 | ||||
|     image: wazuh/wazuh-indexer:4.12.0 | ||||
|     hostname: wazuh2.indexer | ||||
|     restart: always | ||||
|     environment: | ||||
| @@ -129,7 +129,7 @@ services: | ||||
|       - ./config/wazuh_indexer/internal_users.yml:/usr/share/wazuh-indexer/opensearch-security/internal_users.yml | ||||
|  | ||||
|   wazuh3.indexer: | ||||
|     image: wazuh/wazuh-indexer:4.10.0 | ||||
|     image: wazuh/wazuh-indexer:4.12.0 | ||||
|     hostname: wazuh3.indexer | ||||
|     restart: always | ||||
|     environment: | ||||
| @@ -151,7 +151,7 @@ services: | ||||
|       - ./config/wazuh_indexer/internal_users.yml:/usr/share/wazuh-indexer/opensearch-security/internal_users.yml | ||||
|  | ||||
|   wazuh.dashboard: | ||||
|     image: wazuh/wazuh-dashboard:4.10.0 | ||||
|     image: wazuh/wazuh-dashboard:4.12.0 | ||||
|     hostname: wazuh.dashboard | ||||
|     restart: always | ||||
|     ports: | ||||
|   | ||||
| @@ -3,7 +3,7 @@ version: '3.7' | ||||
|  | ||||
| services: | ||||
|   wazuh.manager: | ||||
|     image: wazuh/wazuh-manager:4.10.0 | ||||
|     image: wazuh/wazuh-manager:4.12.0 | ||||
|     hostname: wazuh.manager | ||||
|     restart: always | ||||
|     ulimits: | ||||
| @@ -46,7 +46,7 @@ services: | ||||
|       - ./config/wazuh_cluster/wazuh_manager.conf:/wazuh-config-mount/etc/ossec.conf | ||||
|  | ||||
|   wazuh.indexer: | ||||
|     image: wazuh/wazuh-indexer:4.10.0 | ||||
|     image: wazuh/wazuh-indexer:4.12.0 | ||||
|     hostname: wazuh.indexer | ||||
|     restart: always | ||||
|     ports: | ||||
| @@ -71,7 +71,7 @@ services: | ||||
|       - ./config/wazuh_indexer/internal_users.yml:/usr/share/wazuh-indexer/opensearch-security/internal_users.yml | ||||
|  | ||||
|   wazuh.dashboard: | ||||
|     image: wazuh/wazuh-dashboard:4.10.0 | ||||
|     image: wazuh/wazuh-dashboard:4.12.0 | ||||
|     hostname: wazuh.dashboard | ||||
|     restart: always | ||||
|     ports: | ||||
|   | ||||
		Reference in New Issue
	
	Block a user