Commit Graph

5667 Commits

Author SHA1 Message Date
Martin Angers
db24cf32fa
Add new low_disk_space URL parameter to the GET /hosts endpoint (and GET /hosts/count) (#7853) 2022-09-21 15:16:31 -04:00
Guillaume Ross
9db772d931
7848 table yum_sources and intel me info show as Mac compatible in fleet but are not according to osquery (#7881)
* Removing darwin from two tables

According to the osquery schema these two tables (secureboot and intel_me_info) do not support macOS.

* Removing darwin from yum_sources

This table is not compatible with macOS. Removing Darwin from the list of platforms.
2022-09-22 00:36:12 +05:30
Zach Wasserman
bdad9ac1d3
Use Group SID on fleetctl on Windows (#7854)
This is intended to allow packages to be built on localizations other than English.

See #5065.

Co-authored-by: Lucas Rodriguez <lucas@fleetdm.com>
2022-09-21 11:39:26 -07:00
KanchiMoe
cde973293b
server_side_encryption_configuration attribute is deprecated (#7866) 2022-09-21 14:25:08 -04:00
Benjamin Edwards
5920df3f5d
update k8s deployment spec to include vuln database path (#7229) 2022-09-21 14:15:13 -04:00
Zachary Winnerman
989db6bd25
Add fluentbit logging to sandbox EKS (#7880) 2022-09-21 13:44:49 -04:00
Guillaume Ross
5fefe61728
Removing deprecated table (#7877)
This table has been deprecated for a few months and we shouldn't show it in Fleet anymore
2022-09-21 12:41:47 -05:00
RachelElysia
2668182bda
Fleet UI: Hitting enter saves new pack and saves editing a pack (#7789) 2022-09-21 13:06:29 -04:00
Michal Nicpon
2a93329227
Add policy automation permissions to docs (#7841)
- format markdown tables
2022-09-21 10:27:50 -06:00
Gabriel Hernandez
517d79e5a5
add fleet UI testing docs (#7687)
* add fleet UI testing docs

* revisions to FE testing document

* add meta tag and change page title

* more revisions to fleet UI docs
2022-09-21 16:56:13 +01:00
RachelElysia
2cdcd47952
Fleet UI: App settings clears validation errors on change (#7870) 2022-09-21 11:26:37 -04:00
Guillaume Ross
e111bc6772
Removing darwin from two tables (#7849)
According to the osquery schema these two tables (secureboot and intel_me_info) do not support macOS.
2022-09-21 11:17:45 -04:00
Mike Thomas
7015df9d67
update to article submission guide (#7868)
* update to article submission guide

I made the following changes:

- I updated the guide to make it clear that submitting drafts as a Google Doc is the official article submission process.
- I did some housekeeping for improved clarity.

* Update handbook/digital-experience/how-to-submit-and-publish-an-article.md
2022-09-21 18:48:37 +09:00
Mike Thomas
0ce15eb4d6
Update Digital Experience README.md (#7867)
I added a section for website estimation sessions and did some housekeeping for the Fleet website section while I was in there.
2022-09-21 16:56:17 +09:00
Charlie Chance
1a781fca6f
Charlie company handbook patch (#7791)
* Create why-this-way.md

Moved "Why this way" to it's own page within Company handbook.

* Create development-groups.md

Added new page development-groups.md to Company handbook.

* Update README.md

Added space for Charlie to write summary for our new sections and add links to the nested pages.

* Update development-groups.md

Added meta tags to the page.

* Update why-this-way.md

* Update why-this-way.md

Changed head hierarchy to populate sub nav.

* preamble and links to sub pages

Co-authored-by: Mike Thomas <78363703+mike-j-thomas@users.noreply.github.com>
2022-09-20 18:47:25 -05:00
Mike McNeil
ba339a2a0a
Website: Remove stray console.log() (#7863) 2022-09-20 18:11:50 -05:00
Shawn Maddock
8e9396c65c
fixes #7856 (#7858) 2022-09-20 19:41:22 -03:00
Zachary Winnerman
3525c3f897
Fix applies for rds terraform (#7862)
* Fix applies for rds terraform

* fixup
2022-09-20 17:09:24 -04:00
Nabil Schear
cbe2d252df
Discover Python Packages from Running Python Interpreters query (#7857)
* Discover Python Packages from Running Python Interpreters documentation

* add hunting tag

Co-authored-by: Guillaume Ross <guillaume@binaryfactory.ca>

* Removed extra quote

Co-authored-by: Guillaume Ross <guillaume@binaryfactory.ca>
Co-authored-by: Guillaume Ross <guillaume@fleetdm.com>
2022-09-20 16:10:25 -04:00
gillespi314
34688f531a
Refactor webhooks cron to new schedule package (#7840) 2022-09-20 14:26:36 -05:00
Mo Zhu
325adad941
query for discovering TLS certs (#7797)
* query for discovering TLS certs

* Update standard-query-library.yml

* Use Nabil as the contributor

Co-authored-by: Zach Wasserman <zach@fleetdm.com>

* More accurate description of query purpose

Co-authored-by: Zach Wasserman <zach@fleetdm.com>

Co-authored-by: Zach Wasserman <zach@fleetdm.com>
2022-09-20 11:16:59 -07:00
Juan Fernandez
f78dc8febd
Use directories to organize msrc assets (#7851)
Use directories to organize MSRC assets
2022-09-20 14:12:19 -04:00
Mo Zhu
3742289fb0
Guide for osquery event tables (#7734)
* Guide for osquery event tables

* add list for how you can tell a table is evented

* Update osquery-evented-tables-overview.md

* Update osquery-evented-tables-overview.md

* Update osquery-evented-tables-overview.md

* Update osquery-evented-tables-overview.md

* Update osquery-evented-tables-overview.md

* Include new information about the other tables

* Clarify how audit works w/r/t data storage

* macOS and Linux

* specify flags for user_interaction_events table

* remove screenshot image

* remove subbullets in TOC

* redefine utility

* memtion openbsm is deprecated

* fix TOC links

* add meta tags
2022-09-20 09:37:50 -07:00
Mike McNeil
a9e75691b5
Article: Typo fix (#7750) 2022-09-20 11:20:47 -05:00
RachelElysia
6c6636cc1b
Frontend: Updates to unit test (#7850) 2022-09-20 12:09:37 -04:00
Luke Heath
e516c5d450
Remove unnecessary JSON.stringify from axios requests (#7705) 2022-09-20 08:57:25 -05:00
RachelElysia
eacc75b585
Fleet UI: Add es_process_file_events, password_policy, windows_update_history to osquery tables (#7831)
* Add es_process_file_events to osquery tables

* Correct change file

* Add password_policy and windows_update_history to fleet/frontend/osquery_tables

* Update changelog
2022-09-20 08:52:53 -04:00
Mike McNeil
718b01a4c4
Handbook: Update customers page (#7847)
* Handbook: Update customers page

* Update custom.js

* Update README.md

* Update rituals table
2022-09-19 23:13:30 -05:00
Charlie Chance
5693571b78
Code owners offboarding (#7773)
Co-authored-by: Mike McNeil <mikermcneil@users.noreply.github.com>
2022-09-19 22:23:53 -05:00
Charlie Chance
d7d306f7ef
Auto-approval bot: repo DRI offboarding (#7774)
* repo DRI offboarding

* Update custom.js

Co-authored-by: Mike McNeil <mikermcneil@users.noreply.github.com>
2022-09-19 22:22:14 -05:00
Charlie Chance
68dd58bdfa
maintainers offboarding (#7775) 2022-09-19 21:15:36 -06:00
Mike McNeil
e5ab039e2b
GitHub bot: Separate bots and humans for clarity, remove old bot username, etc (#7846) 2022-09-19 22:09:02 -05:00
Eric
c2cba7af7c
upgrade @sailshq/connect-redis to 6.1.3 (#7842) 2022-09-19 18:00:05 -05:00
Roberto Dip
be998e078b
add proposal for token rotation (#7737) 2022-09-19 19:55:08 -03:00
Marcos Oviedo
dd50d0c889
Add myself as maintainer in receive-from-github.js webhook (#7824) 2022-09-19 19:13:10 -03:00
RachelElysia
299a4e54fc
Fleet UI: Dashboard summary tiles clickable with new component (#7826) 2022-09-19 16:47:43 -04:00
RachelElysia
f98e9885ef
Fix side panel scroll issue (#7829) 2022-09-19 15:30:03 -04:00
Reed Haynes
8607a5d394
Update smoke-tests.md (#7827)
Add "migration tests" step to QA template.
2022-09-19 14:23:02 -04:00
Martin Angers
478b4d3f69
Validate team and appconfig payloads, with dry-run and force modes (#7731) 2022-09-19 13:53:44 -04:00
KanchiMoe
fc3f980cff
server_side_encryption_configuration argument is deprecated (#7577)
https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/s3_bucket#enable-default-server-side-encryption
2022-09-19 13:04:52 -04:00
Roberto Dip
15c93f02ea
add retry logic for native notarization and codesigning (#7806)
Related to #7130, this adds logic to retry native notarization up to three times if it fails for some reason.

Since we're adding retries in various places, I added a new package under pkg for this purpose.
2022-09-19 13:08:39 -03:00
Marcos Oviedo
d5a37dfd1a
Bug 6479: Storing proxy certificate in a secure location to avoid unexpected deletion. (#7811)
This prevents proxy certificate used by --insecure mode from being deleted when stored in a user-writable location.
2022-09-19 09:42:53 -03:00
Robert Fairburn
897b750b55
Add how to obtain email addresses from a sandbox (#7821) 2022-09-17 13:17:44 -05:00
Mike McNeil
3c75b8ad39
Mo == DRI of status of features table on pricing page (#7820)
* Mo == DRI of status of features table on pricing page

- CEO is DRI of pricing
- Mo is DRI of features table correctness

Input of many other contributors is important to both.

* Update CODEOWNERS

* Update CODEOWNERS

* Update custom.js
2022-09-17 01:44:31 -05:00
Chris McGillicuddy
7949a0aece
Article: Osquery as a threat hunting platform (#7626)
* Article: Osquery as a threat hunting platform

* Add .md to title

We need to define the file type in the title. These articles are structured in markdown, so we add ".md" to the title.

* Add metadata

Reminder to change publishing date and article image once we have it.

* Making copy less formal

Simplified language and provided more context for osquery being a lightweight agent.

* Add images and meta tags

I made the following updates to this article:
- Added images.
- Updated category to "Security".

* Osquery threat hunting article revisions.md

Revised copy for simplicity and flow. Added a link to the first podcast episode. Followed @mike-j-thomas's suggestion to mention value of osquery managers.

Co-authored-by: Andrew Baker <89049099+DrewBakerfdm@users.noreply.github.com>
Co-authored-by: Mike Thomas <mthomas@fleetdm.com>
2022-09-16 17:06:23 -05:00
Zachary Winnerman
eeba487ea4
Add changes to clear activities table in sandbox (#7723)
* Add changes to clear activities table in sandbox

* fixup

* fixup

* fixup

* Finished testing in dev

* fixup

* fixup
2022-09-16 15:59:57 -04:00
Lucas Manuel Rodriguez
ca159e14d5
Add documentation for online vs offline hosts (#7706)
Adding documentation as part of oncall contribution (see Improve Documentation).
2022-09-16 15:32:36 -04:00
Zach Wasserman
2b3e9e963c
Add go1.19.1 update to 4.20.1 changelog (#7799) 2022-09-16 10:48:55 -07:00
Mo Zhu
aa7aaaaa19
Clarify vulnerability limitation for non-ascii characters (#7738)
* Clarify vulnerability limitation for non-ascii characters

* Update Vulnerability-Processing.md

* copy edits

Co-authored-by: Chris McGillicuddy <108031970+chris-mcgillicuddy@users.noreply.github.com>

* Lowercase “Non”

Co-authored-by: Chris McGillicuddy <108031970+chris-mcgillicuddy@users.noreply.github.com>

Co-authored-by: Chris McGillicuddy <108031970+chris-mcgillicuddy@users.noreply.github.com>
2022-09-16 09:51:33 -07:00
Noah Talerman
5c0d7ec815
Update and clean up configuration files doc (#7669)
- Clean up the top section
- Clean up queries section
- Update naming for the sub-sections in the "Organization settings" section 
- Remove `single-file-configuration.yml` and files under `multi-file-configuration/`
- Remove testing section from product handbook
2022-09-16 11:47:39 -05:00