forked from wazuh/wazuh-docker
Compare commits
5
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
7da29fa6a9 | ||
|
|
ca1a1bd883 | ||
|
|
d8fe59901a | ||
|
|
3cae6fe61d | ||
|
|
a26f119c73 |
+10
-6
@@ -13,8 +13,8 @@ services:
|
|||||||
networks:
|
networks:
|
||||||
- docker_elk
|
- docker_elk
|
||||||
# volumes:
|
# volumes:
|
||||||
# - my-path:/var/ossec/data
|
# - my-path:/var/ossec/data:Z
|
||||||
# - my-path:/etc/postfix
|
# - my-path:/etc/postfix:Z
|
||||||
depends_on:
|
depends_on:
|
||||||
- elasticsearch
|
- elasticsearch
|
||||||
logstash:
|
logstash:
|
||||||
@@ -23,7 +23,7 @@ services:
|
|||||||
restart: always
|
restart: always
|
||||||
command: -f /etc/logstash/conf.d/
|
command: -f /etc/logstash/conf.d/
|
||||||
# volumes:
|
# volumes:
|
||||||
# - my-path:/etc/logstash/conf.d
|
# - my-path:/etc/logstash/conf.d:Z
|
||||||
links:
|
links:
|
||||||
- kibana
|
- kibana
|
||||||
- elasticsearch:elasticsearch
|
- elasticsearch:elasticsearch
|
||||||
@@ -37,7 +37,7 @@ services:
|
|||||||
- LS_HEAP_SIZE=2048m
|
- LS_HEAP_SIZE=2048m
|
||||||
- XPACK_MONITORING_ENABLED=false
|
- XPACK_MONITORING_ENABLED=false
|
||||||
elasticsearch:
|
elasticsearch:
|
||||||
image: docker.elastic.co/elasticsearch/elasticsearch:6.1.1
|
image: docker.elastic.co/elasticsearch/elasticsearch:6.1.2
|
||||||
hostname: elasticsearch
|
hostname: elasticsearch
|
||||||
restart: always
|
restart: always
|
||||||
ports:
|
ports:
|
||||||
@@ -60,7 +60,7 @@ services:
|
|||||||
hard: -1
|
hard: -1
|
||||||
mem_limit: 2g
|
mem_limit: 2g
|
||||||
# volumes:
|
# volumes:
|
||||||
# - my-path:/usr/share/elasticsearch/data
|
# - my-path:/usr/share/elasticsearch/data:Z
|
||||||
networks:
|
networks:
|
||||||
- docker_elk
|
- docker_elk
|
||||||
kibana:
|
kibana:
|
||||||
@@ -78,7 +78,9 @@ services:
|
|||||||
- wazuh
|
- wazuh
|
||||||
entrypoint: /wait-for-it.sh elasticsearch
|
entrypoint: /wait-for-it.sh elasticsearch
|
||||||
# environment:
|
# environment:
|
||||||
# - "WAZUH_KIBANA_PLUGIN_URL=http://your.repo/wazuhapp-3.1.0-6.1.0.zip"
|
# - http_proxy=yourproxy
|
||||||
|
# - https_proxy=yourproxy
|
||||||
|
# - "WAZUH_KIBANA_PLUGIN_URL=http://your.repo/wazuhapp-3.1.0-6.1.2.zip"
|
||||||
nginx:
|
nginx:
|
||||||
image: wazuh/wazuh-nginx
|
image: wazuh/wazuh-nginx
|
||||||
hostname: nginx
|
hostname: nginx
|
||||||
@@ -89,6 +91,8 @@ services:
|
|||||||
ports:
|
ports:
|
||||||
- "80:80"
|
- "80:80"
|
||||||
- "443:443"
|
- "443:443"
|
||||||
|
# volumes:
|
||||||
|
# - my-path:/etc/nginx/conf.d:Z
|
||||||
networks:
|
networks:
|
||||||
- docker_elk
|
- docker_elk
|
||||||
depends_on:
|
depends_on:
|
||||||
|
|||||||
+1
-1
@@ -1,4 +1,4 @@
|
|||||||
FROM docker.elastic.co/kibana/kibana:6.1.1
|
FROM docker.elastic.co/kibana/kibana:6.1.2
|
||||||
|
|
||||||
USER root
|
USER root
|
||||||
|
|
||||||
|
|||||||
@@ -5,7 +5,7 @@ set -e
|
|||||||
host="$1"
|
host="$1"
|
||||||
shift
|
shift
|
||||||
cmd="kibana"
|
cmd="kibana"
|
||||||
WAZUH_KIBANA_PLUGIN_URL=${WAZUH_KIBANA_PLUGIN_URL:-https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.1.zip}
|
WAZUH_KIBANA_PLUGIN_URL=${WAZUH_KIBANA_PLUGIN_URL:-https://packages.wazuh.com/wazuhapp/wazuhapp-3.1.0_6.1.2.zip}
|
||||||
|
|
||||||
until curl -XGET $host:9200; do
|
until curl -XGET $host:9200; do
|
||||||
>&2 echo "Elastic is unavailable - sleeping"
|
>&2 echo "Elastic is unavailable - sleeping"
|
||||||
@@ -14,17 +14,17 @@ done
|
|||||||
|
|
||||||
>&2 echo "Elastic is up - executing command"
|
>&2 echo "Elastic is up - executing command"
|
||||||
|
|
||||||
#Insert default templates
|
|
||||||
curl https://raw.githubusercontent.com/wazuh/wazuh/3.0/extensions/elasticsearch/wazuh-elastic6-template-alerts.json | curl -XPUT 'http://elasticsearch:9200/_template/wazuh' -H 'Content-Type: application/json' -d @-
|
|
||||||
sleep 5
|
sleep 5
|
||||||
|
#Insert default templates
|
||||||
|
curl https://raw.githubusercontent.com/wazuh/wazuh/3.1/extensions/elasticsearch/wazuh-elastic6-template-alerts.json | curl -XPUT 'http://elasticsearch:9200/_template/wazuh' -H 'Content-Type: application/json' -d @-
|
||||||
|
|
||||||
curl https://raw.githubusercontent.com/wazuh/wazuh/3.0/extensions/elasticsearch/wazuh-elastic6-template-monitoring.json | curl -XPUT 'http://elasticsearch:9200/_template/wazuh-agent' -H 'Content-Type: application/json' -d @-
|
sleep 5
|
||||||
|
#Insert default templates
|
||||||
|
curl https://raw.githubusercontent.com/wazuh/wazuh/3.1/extensions/elasticsearch/wazuh-elastic6-template-monitoring.json | curl -XPUT 'http://elasticsearch:9200/_template/wazuh-agent' -H 'Content-Type: application/json' -d @-
|
||||||
|
|
||||||
#Insert sample alert:
|
#Insert sample alert:
|
||||||
sleep 5
|
sleep 5
|
||||||
curl https://raw.githubusercontent.com/wazuh/wazuh/3.0/extensions/elasticsearch/alert_sample.json | curl -XPUT "http://elasticsearch:9200/wazuh-alerts-3.x-"`date +%Y.%m.%d`"/wazuh/sample" -H 'Content-Type: application/json' -d @-
|
curl https://raw.githubusercontent.com/wazuh/wazuh/3.1/extensions/elasticsearch/alert_sample.json | curl -XPUT "http://elasticsearch:9200/wazuh-alerts-3.x-"`date +%Y.%m.%d`"/wazuh/sample" -H 'Content-Type: application/json' -d @-
|
||||||
sleep 5
|
|
||||||
|
|
||||||
|
|
||||||
if /usr/share/kibana/bin/kibana-plugin list | grep wazuh; then
|
if /usr/share/kibana/bin/kibana-plugin list | grep wazuh; then
|
||||||
echo "Wazuh APP already installed"
|
echo "Wazuh APP already installed"
|
||||||
|
|||||||
+1
-1
@@ -1,3 +1,3 @@
|
|||||||
FROM docker.elastic.co/logstash/logstash:6.1.1
|
FROM docker.elastic.co/logstash/logstash:6.1.2
|
||||||
|
|
||||||
COPY config/logstash.conf /etc/logstash/conf.d/logstash.conf
|
COPY config/logstash.conf /etc/logstash/conf.d/logstash.conf
|
||||||
|
|||||||
+1
-1
@@ -1,5 +1,5 @@
|
|||||||
FROM phusion/baseimage:latest
|
FROM phusion/baseimage:latest
|
||||||
ARG FILEBEAT_VERSION=6.1.0
|
ARG FILEBEAT_VERSION=6.1.2
|
||||||
|
|
||||||
RUN apt-get update; apt-get -y dist-upgrade
|
RUN apt-get update; apt-get -y dist-upgrade
|
||||||
RUN apt-get -y install openssl postfix bsd-mailx curl apt-transport-https lsb-release
|
RUN apt-get -y install openssl postfix bsd-mailx curl apt-transport-https lsb-release
|
||||||
|
|||||||
Reference in New Issue
Block a user