mirror of
				https://github.com/wazuh/wazuh-docker.git
				synced 2025-11-04 05:53:16 +00:00 
			
		
		
		
	Compare commits
	
		
			28 Commits
		
	
	
		
	
	| Author | SHA1 | Date | |
|---|---|---|---|
| 
						 | 
					a4be008028 | ||
| 
						 | 
					85e62cfd0e | ||
| 
						 | 
					5cabaa4700 | ||
| 
						 | 
					603e48237b | ||
| 
						 | 
					71628e1575 | ||
| 
						 | 
					a5d13c9fc6 | ||
| 
						 | 
					a9442d7345 | ||
| 
						 | 
					f02697786c | ||
| 
						 | 
					d530faa8f3 | ||
| 
						 | 
					898f699d85 | ||
| 
						 | 
					4ebeaba873 | ||
| 
						 | 
					aa59a302c3 | ||
| 
						 | 
					67d92fc992 | ||
| 
						 | 
					fbe7a0a571 | ||
| 
						 | 
					ffffe5539a | ||
| 
						 | 
					d46ce7aee3 | ||
| 
						 | 
					4d0b06b91e | ||
| 
						 | 
					391b5d237c | ||
| 
						 | 
					e99ba259e0 | ||
| 
						 | 
					f00245007d | ||
| 
						 | 
					084407f9c9 | ||
| 
						 | 
					f0ebabad89 | ||
| 
						 | 
					afd70ff5f9 | ||
| 
						 | 
					61f3e080a3 | ||
| 
						 | 
					2dd9fdfa99 | ||
| 
						 | 
					daaac09c9c | ||
| 
						 | 
					8d0dd5baeb | ||
| 
						 | 
					9e9de07322 | 
@@ -56,7 +56,7 @@ package:
 | 
			
		||||
  wazuh-manager:
 | 
			
		||||
    installed: true
 | 
			
		||||
    versions:
 | 
			
		||||
    - 4.2.0
 | 
			
		||||
    - 4.2.6
 | 
			
		||||
port:
 | 
			
		||||
  tcp:1514:
 | 
			
		||||
    listening: true
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										31
									
								
								CHANGELOG.md
									
									
									
									
									
								
							
							
						
						
									
										31
									
								
								CHANGELOG.md
									
									
									
									
									
								
							@@ -1,6 +1,37 @@
 | 
			
		||||
# Change Log
 | 
			
		||||
All notable changes to this project will be documented in this file.
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.6
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.6](https://github.com/wazuh/wazuh/blob/v4.2.6/CHANGELOG.md#v426)
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.5
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.5](https://github.com/wazuh/wazuh/blob/v4.2.5/CHANGELOG.md#v425)
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.4
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.4](https://github.com/wazuh/wazuh/blob/v4.2.4/CHANGELOG.md#v424)
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.3
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.3](https://github.com/wazuh/wazuh/blob/v4.2.3/CHANGELOG.md#v423)
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.2
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.2](https://github.com/wazuh/wazuh/blob/v4.2.2/CHANGELOG.md#v422)
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.1
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
- Update Wazuh to version [4.2.1](https://github.com/wazuh/wazuh/blob/v4.2.1/CHANGELOG.md#v421)
 | 
			
		||||
 | 
			
		||||
## Wazuh Docker v4.2.0
 | 
			
		||||
### Added
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
@@ -154,6 +154,12 @@ ADMIN_PRIVILEGES=true               # App privileges
 | 
			
		||||
 | 
			
		||||
| Wazuh version | ODFE    | XPACK  |
 | 
			
		||||
|---------------|---------|--------|
 | 
			
		||||
| v4.2.6        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.5        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.4        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.3        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.2        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.1        | 1.13.2  | 7.11.2 |
 | 
			
		||||
| v4.2.0        | 1.13.2  | 7.10.2 |
 | 
			
		||||
| v4.1.5        | 1.13.2  | 7.10.2 |
 | 
			
		||||
| v4.1.4        | 1.12.0  | 7.10.2 |
 | 
			
		||||
 
 | 
			
		||||
							
								
								
									
										4
									
								
								VERSION
									
									
									
									
									
								
							
							
						
						
									
										4
									
								
								VERSION
									
									
									
									
									
								
							@@ -1,2 +1,2 @@
 | 
			
		||||
WAZUH-DOCKER_VERSION="4.2.0"
 | 
			
		||||
REVISION="40212"
 | 
			
		||||
WAZUH-DOCKER_VERSION="4.2.6"
 | 
			
		||||
REVISION="40221"
 | 
			
		||||
 
 | 
			
		||||
@@ -3,7 +3,7 @@ version: '3.7'
 | 
			
		||||
 | 
			
		||||
services:
 | 
			
		||||
  wazuh:
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.6
 | 
			
		||||
    hostname: wazuh-manager
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
@@ -50,7 +50,7 @@ services:
 | 
			
		||||
        hard: 65536
 | 
			
		||||
 | 
			
		||||
  kibana:
 | 
			
		||||
    image: wazuh/wazuh-kibana-odfe:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-kibana-odfe:4.2.6
 | 
			
		||||
    hostname: kibana
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
 
 | 
			
		||||
@@ -10,7 +10,7 @@ services:
 | 
			
		||||
          bin/elasticsearch-certutil cert --silent --pem --in config/certificates/instances.yml -out config/certificates/bundle.zip;
 | 
			
		||||
          unzip config/certificates/bundle.zip -d config/certificates/;
 | 
			
		||||
        fi;
 | 
			
		||||
        chown -R 1000:0 /certs
 | 
			
		||||
        chown -R 1000:0 config/certificates
 | 
			
		||||
      '
 | 
			
		||||
    user: "0"
 | 
			
		||||
    working_dir: /usr/share/elasticsearch
 | 
			
		||||
 
 | 
			
		||||
@@ -2,7 +2,7 @@
 | 
			
		||||
FROM amazon/opendistro-for-elasticsearch-kibana:1.13.2
 | 
			
		||||
USER kibana
 | 
			
		||||
ARG ELASTIC_VERSION=7.10.2
 | 
			
		||||
ARG WAZUH_VERSION=4.2.0
 | 
			
		||||
ARG WAZUH_VERSION=4.2.6
 | 
			
		||||
ARG WAZUH_APP_VERSION="${WAZUH_VERSION}_${ELASTIC_VERSION}"
 | 
			
		||||
 | 
			
		||||
WORKDIR /usr/share/kibana
 | 
			
		||||
 
 | 
			
		||||
@@ -2,7 +2,7 @@
 | 
			
		||||
FROM docker.elastic.co/kibana/kibana:7.10.2
 | 
			
		||||
USER kibana
 | 
			
		||||
ARG ELASTIC_VERSION=7.10.2
 | 
			
		||||
ARG WAZUH_VERSION=4.2.0
 | 
			
		||||
ARG WAZUH_VERSION=4.2.6
 | 
			
		||||
ARG WAZUH_APP_VERSION="${WAZUH_VERSION}_${ELASTIC_VERSION}"
 | 
			
		||||
 | 
			
		||||
WORKDIR /usr/share/kibana
 | 
			
		||||
 
 | 
			
		||||
@@ -3,7 +3,7 @@ version: '3.7'
 | 
			
		||||
 | 
			
		||||
services:
 | 
			
		||||
  wazuh-master:
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.6
 | 
			
		||||
    hostname: wazuh-master
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
@@ -38,7 +38,7 @@ services:
 | 
			
		||||
      - ./production_cluster/wazuh_cluster/wazuh_manager.conf:/wazuh-config-mount/etc/ossec.conf
 | 
			
		||||
 | 
			
		||||
  wazuh-worker:
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-odfe:4.2.6
 | 
			
		||||
    hostname: wazuh-worker
 | 
			
		||||
    restart: always
 | 
			
		||||
    environment:
 | 
			
		||||
@@ -134,7 +134,7 @@ services:
 | 
			
		||||
      - ./production_cluster/elastic_opendistro/internal_users.yml:/usr/share/elasticsearch/plugins/opendistro_security/securityconfig/internal_users.yml
 | 
			
		||||
 | 
			
		||||
  kibana:
 | 
			
		||||
    image: wazuh/wazuh-kibana-odfe:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-kibana-odfe:4.2.6
 | 
			
		||||
    hostname: kibana
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
 
 | 
			
		||||
@@ -9,4 +9,5 @@ then
 | 
			
		||||
    exit
 | 
			
		||||
else
 | 
			
		||||
    openssl req -x509 -batch -nodes -days 365 -newkey rsa:2048 -keyout key.pem -out cert.pem
 | 
			
		||||
    chown -R 1000:1000 *.pem
 | 
			
		||||
fi
 | 
			
		||||
 
 | 
			
		||||
@@ -200,8 +200,8 @@
 | 
			
		||||
  <global>
 | 
			
		||||
    <white_list>127.0.0.1</white_list>
 | 
			
		||||
    <white_list>^localhost.localdomain$</white_list>
 | 
			
		||||
    <white_list>4.2.2.1</white_list>
 | 
			
		||||
    <white_list>4.2.2.2</white_list>
 | 
			
		||||
    <white_list>4.2.6.1</white_list>
 | 
			
		||||
    <white_list>4.2.6.2</white_list>
 | 
			
		||||
    <white_list>208.67.220.220</white_list>
 | 
			
		||||
  </global>
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
@@ -200,8 +200,8 @@
 | 
			
		||||
  <global>
 | 
			
		||||
    <white_list>127.0.0.1</white_list>
 | 
			
		||||
    <white_list>^localhost.localdomain$</white_list>
 | 
			
		||||
    <white_list>4.2.2.1</white_list>
 | 
			
		||||
    <white_list>4.2.2.2</white_list>
 | 
			
		||||
    <white_list>4.2.6.1</white_list>
 | 
			
		||||
    <white_list>4.2.6.2</white_list>
 | 
			
		||||
    <white_list>208.67.220.220</white_list>
 | 
			
		||||
  </global>
 | 
			
		||||
 | 
			
		||||
 
 | 
			
		||||
@@ -3,7 +3,7 @@ FROM centos:7
 | 
			
		||||
 | 
			
		||||
ARG FILEBEAT_CHANNEL=filebeat-oss
 | 
			
		||||
ARG FILEBEAT_VERSION=7.10.2
 | 
			
		||||
ARG WAZUH_VERSION=4.2.0-1
 | 
			
		||||
ARG WAZUH_VERSION=4.2.6
 | 
			
		||||
ARG TEMPLATE_VERSION="master"
 | 
			
		||||
ARG WAZUH_FILEBEAT_MODULE="wazuh-filebeat-0.1.tar.gz"
 | 
			
		||||
 | 
			
		||||
@@ -13,6 +13,7 @@ RUN rpm --import https://packages.wazuh.com/key/GPG-KEY-WAZUH
 | 
			
		||||
COPY config/wazuh.repo /etc/yum.repos.d/wazuh.repo
 | 
			
		||||
 | 
			
		||||
RUN yum --enablerepo=updates clean metadata && \
 | 
			
		||||
  yum upgrade -y && \
 | 
			
		||||
  yum -y install openssl which expect openssh-clients && yum -y install wazuh-manager-${WAZUH_VERSION} -y && \
 | 
			
		||||
  sed -i "s/^enabled=1/enabled=0/" /etc/yum.repos.d/wazuh.repo && \
 | 
			
		||||
  yum clean all && rm -rf /var/cache/yum
 | 
			
		||||
 
 | 
			
		||||
@@ -4,13 +4,13 @@ PERMANENT_DATA[((i++))]="/var/ossec/api/configuration"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/etc"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/logs"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/queue"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/queue/logcollector"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/agentless"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/var/multigroups"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/integrations"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/active-response/bin"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/var/ossec/wodles"
 | 
			
		||||
PERMANENT_DATA[((i++))]="/etc/filebeat"
 | 
			
		||||
 | 
			
		||||
export PERMANENT_DATA
 | 
			
		||||
 | 
			
		||||
# Files mounted in a volume that should not be permanent
 | 
			
		||||
@@ -58,6 +58,7 @@ PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/gcloud"
 | 
			
		||||
PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/gcloud.py"
 | 
			
		||||
PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/integration.py"
 | 
			
		||||
PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/gcloud/tools.py"
 | 
			
		||||
PERMANENT_DATA_EXCP[((i++))]="/var/ossec/wodles/utils.py"
 | 
			
		||||
export PERMANENT_DATA_EXCP
 | 
			
		||||
 | 
			
		||||
# Files mounted in a volume that should be deleted
 | 
			
		||||
@@ -68,4 +69,4 @@ export PERMANENT_DATA_DEL
 | 
			
		||||
i=0
 | 
			
		||||
PERMANENT_DATA_MOVE[((i++))]="/var/ossec/logs/ossec /var/ossec/logs/wazuh"
 | 
			
		||||
PERMANENT_DATA_MOVE[((i++))]="/var/ossec/queue/ossec /var/ossec/queue/sockets"
 | 
			
		||||
export PERMANENT_DATA_MOVE
 | 
			
		||||
export PERMANENT_DATA_MOVE
 | 
			
		||||
 
 | 
			
		||||
@@ -3,7 +3,7 @@ version: '3.7'
 | 
			
		||||
 | 
			
		||||
services:
 | 
			
		||||
  wazuh:
 | 
			
		||||
    image: wazuh/wazuh:4.2.0
 | 
			
		||||
    image: wazuh/wazuh:4.2.6
 | 
			
		||||
    hostname: wazuh-manager
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
@@ -146,7 +146,7 @@ services:
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
  kibana:
 | 
			
		||||
    image: wazuh/wazuh-kibana:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-kibana:4.2.6
 | 
			
		||||
    hostname: kibana
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
 
 | 
			
		||||
@@ -7,8 +7,8 @@ services:
 | 
			
		||||
      context: wazuh-odfe/
 | 
			
		||||
      args:
 | 
			
		||||
        - FILEBEAT_CHANNEL=filebeat
 | 
			
		||||
        - FILEBEAT_VERSION=7.10.2
 | 
			
		||||
    image: wazuh/wazuh:4.2.0
 | 
			
		||||
        - FILEBEAT_VERSION=7.11.2
 | 
			
		||||
    image: wazuh/wazuh:4.2.6
 | 
			
		||||
    hostname: wazuh-manager
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
@@ -42,7 +42,7 @@ services:
 | 
			
		||||
 | 
			
		||||
 | 
			
		||||
  elasticsearch:
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.10.2
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.11.2
 | 
			
		||||
    hostname: elasticsearch
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
@@ -79,7 +79,7 @@ services:
 | 
			
		||||
      - ./xpack/elasticsearch/elasticsearch.crt:/usr/share/elasticsearch/config/elasticsearch.crt
 | 
			
		||||
 | 
			
		||||
  elasticsearch2:
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.10.2
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.11.2
 | 
			
		||||
    hostname: elasticsearch2
 | 
			
		||||
    restart: always
 | 
			
		||||
    environment:
 | 
			
		||||
@@ -114,7 +114,7 @@ services:
 | 
			
		||||
      - ./xpack/elasticsearch2/elasticsearch2.crt:/usr/share/elasticsearch/config/elasticsearch.crt
 | 
			
		||||
 | 
			
		||||
  elasticsearch3:
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.10.2
 | 
			
		||||
    image: docker.elastic.co/elasticsearch/elasticsearch:7.11.2
 | 
			
		||||
    hostname: elasticsearch3
 | 
			
		||||
    restart: always
 | 
			
		||||
    environment:
 | 
			
		||||
@@ -152,7 +152,7 @@ services:
 | 
			
		||||
 | 
			
		||||
  kibana:
 | 
			
		||||
    build: kibana/
 | 
			
		||||
    image: wazuh/wazuh-kibana:4.2.0
 | 
			
		||||
    image: wazuh/wazuh-kibana:4.2.6
 | 
			
		||||
    hostname: kibana
 | 
			
		||||
    restart: always
 | 
			
		||||
    ports:
 | 
			
		||||
 
 | 
			
		||||
		Reference in New Issue
	
	Block a user