Compare commits

..

3 Commits

Author SHA1 Message Date
Mayte Ariza
9dd66dc82d Removing log files (#169) 2019-05-16 11:36:42 +02:00
Manuel J. Bernal
1884e1c8bf Merge pull request #171 from wazuh/3.10.0_7.0.0-fix-copyright
Updated copyright comments
2019-05-14 17:37:21 +02:00
manuasir
949b68d434 Fixed typo. 2019-05-14 16:34:20 +02:00
22 changed files with 57 additions and 75 deletions

View File

@@ -1,22 +1,6 @@
# Change Log # Change Log
All notable changes to this project will be documented in this file. All notable changes to this project will be documented in this file.
## Wazuh Docker v3.9.2_6.8.0
### Added
- Update to Wazuh version 3.9.2_6.8.0
## Wazuh Docker v3.9.1_6.8.0
### Added
- Update to Wazuh version 3.9.1_6.8.0 ([#181](https://github.com/wazuh/wazuh-docker/pull/181))
### Fixed
- Fixed `ELASTICSEARCH_KIBANA_IP` environment variable ([@manuasir](https://github.com/manuasir)) ([#181](https://github.com/wazuh/wazuh-docker/pull/181))
## Wazuh Docker v3.9.0_6.7.2 ## Wazuh Docker v3.9.0_6.7.2
### Changed ### Changed

View File

@@ -63,7 +63,7 @@ In addition, a docker-compose file is provided to launch the containers mentione
* `stable` branch on correspond to the latest Wazuh-Docker stable version. * `stable` branch on correspond to the latest Wazuh-Docker stable version.
* `master` branch contains the latest code, be aware of possible bugs on this branch. * `master` branch contains the latest code, be aware of possible bugs on this branch.
* `Wazuh.Version_ElasticStack.Version` (for example 3.9.2_6.8.0) branch. This branch contains the current release referenced in Docker Hub. The container images are installed under the current version of this branch. * `Wazuh.Version_ElasticStack.Version` (for example 3.9.0_6.7.2) branch. This branch contains the current release referenced in Docker Hub. The container images are installed under the current version of this branch.
## Credits and Thank you ## Credits and Thank you
@@ -76,7 +76,7 @@ We thank you them and everyone else who has contributed to this project.
## License and copyright ## License and copyright
Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
## Web references ## Web references

View File

@@ -1,2 +1,2 @@
WAZUH-DOCKER_VERSION="3.9.2_6.8.0" WAZUH-DOCKER_VERSION="3.9.0_6.7.2"
REVISION="3920" REVISION="3900"

View File

@@ -1,9 +1,9 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
version: '2' version: '2'
services: services:
wazuh: wazuh:
image: wazuh/wazuh:3.9.2_6.8.0 image: wazuh/wazuh:3.9.0_6.7.2
hostname: wazuh-manager hostname: wazuh-manager
restart: always restart: always
ports: ports:
@@ -14,7 +14,7 @@ services:
depends_on: depends_on:
- logstash - logstash
logstash: logstash:
image: wazuh/wazuh-logstash:3.9.2_6.8.0 image: wazuh/wazuh-logstash:3.9.0_6.7.2
hostname: logstash hostname: logstash
restart: always restart: always
links: links:
@@ -26,7 +26,7 @@ services:
environment: environment:
- LS_HEAP_SIZE=2048m - LS_HEAP_SIZE=2048m
elasticsearch: elasticsearch:
image: wazuh/wazuh-elasticsearch:3.9.2_6.8.0 image: wazuh/wazuh-elasticsearch:3.9.0_6.7.2
hostname: elasticsearch hostname: elasticsearch
restart: always restart: always
ports: ports:
@@ -43,7 +43,7 @@ services:
hard: -1 hard: -1
mem_limit: 2g mem_limit: 2g
kibana: kibana:
image: wazuh/wazuh-kibana:3.9.2_6.8.0 image: wazuh/wazuh-kibana:3.9.0_6.7.2
hostname: kibana hostname: kibana
restart: always restart: always
depends_on: depends_on:
@@ -52,7 +52,7 @@ services:
- elasticsearch:elasticsearch - elasticsearch:elasticsearch
- wazuh:wazuh - wazuh:wazuh
nginx: nginx:
image: wazuh/wazuh-nginx:3.9.2_6.8.0 image: wazuh/wazuh-nginx:3.9.0_6.7.2
hostname: nginx hostname: nginx
restart: always restart: always
environment: environment:

View File

@@ -1,5 +1,5 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
FROM docker.elastic.co/elasticsearch/elasticsearch:6.8.0 FROM docker.elastic.co/elasticsearch/elasticsearch:6.7.2
ENV ELASTICSEARCH_URL="http://elasticsearch:9200" ENV ELASTICSEARCH_URL="http://elasticsearch:9200"
@@ -13,7 +13,7 @@ ENV XPACK_ML="true"
ENV ENABLE_CONFIGURE_S3="false" ENV ENABLE_CONFIGURE_S3="false"
ENV TEMPLATE_VERSION=v3.9.2 ENV TEMPLATE_VERSION=v3.9.0
# Elasticearch cluster configuration environment variables # Elasticearch cluster configuration environment variables
# If ELASTIC_CLUSTER is set to "true" the following variables will be added to the Elasticsearch configuration # If ELASTIC_CLUSTER is set to "true" the following variables will be added to the Elasticsearch configuration
@@ -29,7 +29,7 @@ ENV ELASTIC_CLUSTER="false" \
CLUSTER_MAX_NODES="1" \ CLUSTER_MAX_NODES="1" \
CLUSTER_DELAYED_TIMEOUT="1m" CLUSTER_DELAYED_TIMEOUT="1m"
ADD https://raw.githubusercontent.com/wazuh/wazuh/$TEMPLATE_VERSION/extensions/elasticsearch/6.x/wazuh-template.json /usr/share/elasticsearch/config ADD https://raw.githubusercontent.com/wazuh/wazuh/$TEMPLATE_VERSION/extensions/elasticsearch/wazuh-elastic6-template-alerts.json /usr/share/elasticsearch/config
COPY config/entrypoint.sh /entrypoint.sh COPY config/entrypoint.sh /entrypoint.sh
@@ -39,7 +39,7 @@ COPY --chown=elasticsearch:elasticsearch ./config/load_settings.sh ./
RUN chmod +x ./load_settings.sh RUN chmod +x ./load_settings.sh
RUN bin/elasticsearch-plugin install --batch https://artifacts.elastic.co/downloads/elasticsearch-plugins/repository-s3/repository-s3-6.8.0.zip RUN bin/elasticsearch-plugin install --batch https://artifacts.elastic.co/downloads/elasticsearch-plugins/repository-s3/repository-s3-6.7.2.zip
COPY config/configure_s3.sh ./config/configure_s3.sh COPY config/configure_s3.sh ./config/configure_s3.sh
RUN chmod 755 ./config/configure_s3.sh RUN chmod 755 ./config/configure_s3.sh

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
elastic_config_file="/usr/share/elasticsearch/config/elasticsearch.yml" elastic_config_file="/usr/share/elasticsearch/config/elasticsearch.yml"

View File

@@ -1,7 +1,7 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# For more information https://github.com/elastic/elasticsearch-docker/blob/6.8.0/build/elasticsearch/bin/docker-entrypoint.sh # For more information https://github.com/elastic/elasticsearch-docker/blob/6.5.4/build/elasticsearch/bin/docker-entrypoint.sh
set -e set -e

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
set -e set -e
@@ -11,7 +11,7 @@ else
wazuh_url="${WAZUH_API_URL}" wazuh_url="${WAZUH_API_URL}"
fi fi
if [[ ${ENABLED_XPACK} != "true" || "x${ELASTICSEARCH_USERNAME}" = "x" || "x${ELASTICSEARCH_PASSWORD}" = "x" ]]; then if [ ${ENABLED_XPACK} != "true" || "x${ELASTICSEARCH_USERNAME}" = "x" || "x${ELASTICSEARCH_PASSWORD}" = "x" ]; then
auth="" auth=""
else else
auth="--user ${ELASTICSEARCH_USERNAME}:${ELASTICSEARCH_PASSWORD}" auth="--user ${ELASTICSEARCH_USERNAME}:${ELASTICSEARCH_PASSWORD}"
@@ -45,9 +45,9 @@ fi
#Insert default templates #Insert default templates
sed -i 's| "index.refresh_interval": "5s"| "index.refresh_interval": "5s", "number_of_shards" : '"${ALERTS_SHARDS}"', "number_of_replicas" : '"${ALERTS_REPLICAS}"'|' /usr/share/elasticsearch/config/wazuh-template.json sed -i 's| "index.refresh_interval": "5s"| "index.refresh_interval": "5s", "number_of_shards" : '"${ALERTS_SHARDS}"', "number_of_replicas" : '"${ALERTS_REPLICAS}"'|' /usr/share/elasticsearch/config/wazuh-elastic6-template-alerts.json
cat /usr/share/elasticsearch/config/wazuh-template.json | curl -XPUT "$el_url/_template/wazuh" ${auth} -H 'Content-Type: application/json' -d @- cat /usr/share/elasticsearch/config/wazuh-elastic6-template-alerts.json | curl -XPUT "$el_url/_template/wazuh" ${auth} -H 'Content-Type: application/json' -d @-
sleep 5 sleep 5

View File

@@ -1,16 +1,16 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
FROM docker.elastic.co/kibana/kibana:6.8.0 FROM docker.elastic.co/kibana/kibana:6.7.2
ARG WAZUH_APP_VERSION=3.9.2_6.8.0 ARG WAZUH_APP_VERSION=3.9.0_6.7.2
USER root USER root
ADD https://packages-dev.wazuh.com/pre-release/app/kibana/wazuhapp-${WAZUH_APP_VERSION}.zip /tmp ADD https://packages.wazuh.com/wazuhapp/wazuhapp-${WAZUH_APP_VERSION}.zip /tmp
RUN NODE_OPTIONS="--max-old-space-size=3072" /usr/share/kibana/bin/kibana-plugin install file:///tmp/wazuhapp-${WAZUH_APP_VERSION}.zip &&\ RUN NODE_OPTIONS="--max-old-space-size=3072" /usr/share/kibana/bin/kibana-plugin install file:///tmp/wazuhapp-${WAZUH_APP_VERSION}.zip &&\
chown -R kibana:kibana /usr/share/kibana &&\ chown -R kibana:kibana /usr/share/kibana &&\
rm -rf /tmp/* rm -rf /tmp/*
COPY config/entrypoint.sh ./entrypoint.sh COPY config/entrypoint.sh /entrypoint.sh
RUN chmod 755 ./entrypoint.sh RUN chmod 755 /entrypoint.sh
USER kibana USER kibana
@@ -41,15 +41,15 @@ ENV PATTERN="" \
WAZUH_MONITORING_REPLICAS="" \ WAZUH_MONITORING_REPLICAS="" \
ADMIN_PRIVILEGES="" ADMIN_PRIVILEGES=""
ARG XPACK_CANVAS="false" ARG XPACK_CANVAS="true"
ARG XPACK_LOGS="false" ARG XPACK_LOGS="true"
ARG XPACK_INFRA="false" ARG XPACK_INFRA="true"
ARG XPACK_ML="false" ARG XPACK_ML="true"
ARG XPACK_DEVTOOLS="false" ARG XPACK_DEVTOOLS="true"
ARG XPACK_MONITORING="false" ARG XPACK_MONITORING="true"
ARG XPACK_APM="false" ARG XPACK_APM="true"
ARG CHANGE_WELCOME="true" ARG CHANGE_WELCOME="false"
COPY --chown=kibana:kibana ./config/wazuh_app_config.sh ./ COPY --chown=kibana:kibana ./config/wazuh_app_config.sh ./
@@ -73,4 +73,4 @@ RUN ./welcome_wazuh.sh
RUN /usr/local/bin/kibana-docker --optimize RUN /usr/local/bin/kibana-docker --optimize
ENTRYPOINT ./entrypoint.sh ENTRYPOINT /entrypoint.sh

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
set -e set -e
@@ -13,7 +13,7 @@ else
el_url="${ELASTICSEARCH_URL}" el_url="${ELASTICSEARCH_URL}"
fi fi
if [[ ${ENABLED_XPACK} != "true" || "x${ELASTICSEARCH_USERNAME}" = "x" || "x${ELASTICSEARCH_PASSWORD}" = "x" ]]; then if [ ${ENABLED_XPACK} != "true" || "x${ELASTICSEARCH_USERNAME}" = "x" || "x${ELASTICSEARCH_PASSWORD}" = "x" ]; then
auth="" auth=""
else else
auth="--user ${ELASTICSEARCH_USERNAME}:${ELASTICSEARCH_PASSWORD}" auth="--user ${ELASTICSEARCH_USERNAME}:${ELASTICSEARCH_PASSWORD}"

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
WAZUH_MAJOR=3 WAZUH_MAJOR=3
@@ -19,8 +19,7 @@ WAZUH_MAJOR=3
# Customize elasticsearch ip # Customize elasticsearch ip
############################################################################## ##############################################################################
if [ "$ELASTICSEARCH_KIBANA_IP" != "" ]; then if [ "$ELASTICSEARCH_KIBANA_IP" != "" ]; then
sed -i 's|http://elasticsearch:9200|'$ELASTICSEARCH_KIBANA_IP'|g' /usr/share/kibana/config/kibana.yml sed -i "s/elasticsearch:9200/$ELASTICSEARCH_KIBANA_IP:9200/" /usr/share/kibana/config/kibana.yml
fi fi
if [ "$KIBANA_IP" != "" ]; then if [ "$KIBANA_IP" != "" ]; then

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
kibana_config_file="/usr/share/kibana/plugins/wazuh/config.yml" kibana_config_file="/usr/share/kibana/plugins/wazuh/config.yml"

View File

@@ -1,5 +1,5 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
FROM docker.elastic.co/logstash/logstash:6.8.0 FROM docker.elastic.co/logstash/logstash:6.7.2
COPY --chown=logstash:logstash config/entrypoint.sh /entrypoint.sh COPY --chown=logstash:logstash config/entrypoint.sh /entrypoint.sh

View File

@@ -1,4 +1,4 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# Wazuh - Logstash configuration file # Wazuh - Logstash configuration file
## Remote Wazuh Manager - Filebeat input ## Remote Wazuh Manager - Filebeat input
input { input {

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# #
# OSSEC container bootstrap. See the README for information of the environment # OSSEC container bootstrap. See the README for information of the environment
# variables expected by this script. # variables expected by this script.

View File

@@ -1,4 +1,4 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
FROM nginx:latest FROM nginx:latest
ENV DEBIAN_FRONTEND noninteractive ENV DEBIAN_FRONTEND noninteractive

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
set -e set -e

View File

@@ -1,7 +1,7 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
FROM phusion/baseimage:latest FROM phusion/baseimage:latest
ARG FILEBEAT_VERSION=6.8.0 ARG FILEBEAT_VERSION=6.7.2
ARG WAZUH_VERSION=3.9.2-1 ARG WAZUH_VERSION=3.9.0-1
ENV API_USER="foo" \ ENV API_USER="foo" \
API_PASS="bar" API_PASS="bar"
@@ -18,9 +18,8 @@ RUN add-apt-repository universe && apt-get update && apt-get upgrade -y -o Dpkg:
apt-get --no-install-recommends --no-install-suggests -y install openssl postfix bsd-mailx python-boto python-pip \ apt-get --no-install-recommends --no-install-suggests -y install openssl postfix bsd-mailx python-boto python-pip \
apt-transport-https vim expect nodejs python-cryptography mailutils libsasl2-modules wazuh-manager=${WAZUH_VERSION} \ apt-transport-https vim expect nodejs python-cryptography mailutils libsasl2-modules wazuh-manager=${WAZUH_VERSION} \
wazuh-api=${WAZUH_VERSION} && apt-get clean && rm -rf /var/lib/apt/lists/* /tmp/* /var/tmp/* && rm -f \ wazuh-api=${WAZUH_VERSION} && apt-get clean && rm -rf /var/lib/apt/lists/* /tmp/* /var/tmp/* && rm -f \
/var/ossec/logs/alerts/*/*/*.log && rm -f /var/ossec/logs/alerts/*/*/*.json && rm -f \ /var/ossec/logs/alerts/*/*/* && rm -f /var/ossec/logs/archives/*/*/* && rm -f /var/ossec/logs/firewall/*/*/* && rm -f \
/var/ossec/logs/archives/*/*/*.log && rm -f /var/ossec/logs/archives/*/*/*.json && rm -f \ /var/ossec/logs/api/*/*/* && rm -f /var/ossec/logs/cluster/*/*/* && rm -f /var/ossec/logs/ossec/*/*/*
/var/ossec/logs/firewall/*/*/*.log && rm -f /var/ossec/logs/firewall/*/*/*.json
# Adding first run script and entrypoint # Adding first run script and entrypoint
COPY config/data_dirs.env /data_dirs.env COPY config/data_dirs.env /data_dirs.env

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# #
# OSSEC container bootstrap. See the README for information of the environment # OSSEC container bootstrap. See the README for information of the environment

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# It will run every .sh script located in entrypoint-scripts folder in lexicographical order # It will run every .sh script located in entrypoint-scripts folder in lexicographical order
for script in `ls /entrypoint-scripts/*.sh | sort -n`; do for script in `ls /entrypoint-scripts/*.sh | sort -n`; do

View File

@@ -1,4 +1,4 @@
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
filebeat: filebeat:
prospectors: prospectors:
- type: log - type: log

View File

@@ -1,5 +1,5 @@
#!/bin/bash #!/bin/bash
# Wazuh App Copyright (C) 2019 Wazuh Inc. (License GPLv2) # Wazuh Docker Copyright (C) 2019 Wazuh Inc. (License GPLv2)
# #
# Initialize the custom data directory layout # Initialize the custom data directory layout