From 2b34da0fee25440eaf29fd41e2c7a47af9c513ca Mon Sep 17 00:00:00 2001 From: Mike Reeves Date: Mon, 30 Aug 2021 12:32:44 -0400 Subject: [PATCH 1/5] Update HOTFIX --- HOTFIX | 1 - 1 file changed, 1 deletion(-) diff --git a/HOTFIX b/HOTFIX index 100732042..c9e34953f 100644 --- a/HOTFIX +++ b/HOTFIX @@ -1,2 +1 @@ - CURATOR GRAFANA_DASH_ALLOW From bfd632e20a6a8b5ea26caff27db08d9a61f1b49a Mon Sep 17 00:00:00 2001 From: William Wernert Date: Mon, 30 Aug 2021 14:21:13 -0400 Subject: [PATCH 2/5] Add wazuh to exclude arg when running yum update --- setup/so-functions | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/setup/so-functions b/setup/so-functions index 7bbaa1fda..9a64a561e 100755 --- a/setup/so-functions +++ b/setup/so-functions @@ -2795,7 +2795,7 @@ update_sudoers() { update_packages() { if [ "$OS" = 'centos' ]; then yum repolist >> /dev/null - yum -y update --exclude=salt* >> "$setup_log" + yum -y update --exclude=salt*,wazuh* >> "$setup_log" else retry 50 10 "apt-get -y update" >> "$setup_log" 2>&1 || exit 1 retry 50 10 "apt-get -y upgrade" >> "$setup_log" 2>&1 || exit 1 From 92858cd13ab7d2e404ea45b37f67566ddd3259c2 Mon Sep 17 00:00:00 2001 From: Mike Reeves Date: Mon, 30 Aug 2021 17:38:29 -0400 Subject: [PATCH 3/5] Update HOTFIX --- HOTFIX | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/HOTFIX b/HOTFIX index c9e34953f..e87aa6dbd 100644 --- a/HOTFIX +++ b/HOTFIX @@ -1 +1 @@ -CURATOR GRAFANA_DASH_ALLOW +CURATOR GRAFANA_DASH_ALLOW WAZUH From 4fe0a1d7b436d7393bfdac13e9251cb7002f3357 Mon Sep 17 00:00:00 2001 From: Mike Reeves Date: Tue, 31 Aug 2021 08:39:37 -0400 Subject: [PATCH 4/5] 2.3.70 WAZUH Hotfix sigs --- VERIFY_ISO.md | 22 +++++++++++----------- sigs/securityonion-2.3.70-WAZUH.iso.sig | Bin 0 -> 543 bytes 2 files changed, 11 insertions(+), 11 deletions(-) create mode 100644 sigs/securityonion-2.3.70-WAZUH.iso.sig diff --git a/VERIFY_ISO.md b/VERIFY_ISO.md index 2be975430..660f1ef08 100644 --- a/VERIFY_ISO.md +++ b/VERIFY_ISO.md @@ -1,18 +1,18 @@ -### 2.3.70-GRAFANA ISO image built on 2021/08/23 +### 2.3.70-WAZUH ISO image built on 2021/08/23 ### Download and Verify -2.3.70-GRAFANA ISO image: -https://download.securityonion.net/file/securityonion/securityonion-2.3.70-GRAFANA.iso +2.3.70-WAZUH ISO image: +https://download.securityonion.net/file/securityonion/securityonion-2.3.70-WAZUH.iso -MD5: A16683FC8F2151C290E359FC6066B1F2 -SHA1: A93329C103CCCE665968F246163FBE5D41EF0510 -SHA256: 3ED0177CADF203324363916AA240A10C58DC3E9044A9ADE173A80674701A50A3 +MD5: CEDEF3C38089896C252F9E3C75F7CB15 +SHA1: FB420115C72DABDEB87C8B27F26E862C94628057 +SHA256: CC3E75A97163E9CD255DA0D9C3EB11922FA045651827F291025398943C1BC230 Signature for ISO image: -https://github.com/Security-Onion-Solutions/securityonion/raw/master/sigs/securityonion-2.3.70-GRAFANA.iso.sig +https://github.com/Security-Onion-Solutions/securityonion/raw/master/sigs/securityonion-2.3.70-WAZUH.iso.sig Signing key: https://raw.githubusercontent.com/Security-Onion-Solutions/securityonion/master/KEYS @@ -26,22 +26,22 @@ wget https://raw.githubusercontent.com/Security-Onion-Solutions/securityonion/ma Download the signature file for the ISO: ``` -wget https://github.com/Security-Onion-Solutions/securityonion/raw/master/sigs/securityonion-2.3.70-GRAFANA.iso.sig +wget https://github.com/Security-Onion-Solutions/securityonion/raw/master/sigs/securityonion-2.3.70-WAZUH.iso.sig ``` Download the ISO image: ``` -wget https://download.securityonion.net/file/securityonion/securityonion-2.3.70-GRAFANA.iso +wget https://download.securityonion.net/file/securityonion/securityonion-2.3.70-WAZUH.iso ``` Verify the downloaded ISO image using the signature file: ``` -gpg --verify securityonion-2.3.70-GRAFANA.iso.sig securityonion-2.3.70-GRAFANA.iso +gpg --verify securityonion-2.3.70-WAZUH.iso.sig securityonion-2.3.70-WAZUH.iso ``` The output should show "Good signature" and the Primary key fingerprint should match what's shown below: ``` -gpg: Signature made Mon 23 Aug 2021 01:43:00 PM EDT using RSA key ID FE507013 +gpg: Signature made Mon 30 Aug 2021 06:13:14 PM EDT using RSA key ID FE507013 gpg: Good signature from "Security Onion Solutions, LLC " gpg: WARNING: This key is not certified with a trusted signature! gpg: There is no indication that the signature belongs to the owner. diff --git a/sigs/securityonion-2.3.70-WAZUH.iso.sig b/sigs/securityonion-2.3.70-WAZUH.iso.sig new file mode 100644 index 0000000000000000000000000000000000000000..43ce74d15f27fd7404032466521b8f41493d216f GIT binary patch literal 543 zcmV+)0^t3L0vrSY0RjL91p;9$SNZ@72@re`V7LBIa1&ji5CFP43k_8LGaz5WZEq#U zjfxe1>pW9wHJSpK$w&`hIs|gd_hGkOa0Qcjg9u49g;ggxVp>DrKLfl{0N)Lu)vqNUO&}dp0)O@i(&g%Yp!t-=1v7XcqA8m- zNuGLYl+9n8BB~E5{WOI<&Yh%{#!Ri4Is5Sa+c2_#?^po`n{RAG zE>jx($L2Aywe2R-8tb>tYi`!r+iI*8O;Y#iy2!*FFHMy}aL_jo$chB>b^nUi7#~Of zXuk6R{56wMf=YM-PurQnsc0}3gEvnRvtd!qz?St+wh;T9d4Zc%9JTO{#9`lNm*1?WLA7L9 hGjwSAR+NL){>p*2%?PW}Wj1OMZdTyolF!u`t>a4(0qXz& literal 0 HcmV?d00001 From 77b82bf2c09aa6bd8bba765b552f3ce6a03a7cff Mon Sep 17 00:00:00 2001 From: Mike Reeves Date: Tue, 31 Aug 2021 10:01:32 -0400 Subject: [PATCH 5/5] Update VERIFY_ISO.md --- VERIFY_ISO.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/VERIFY_ISO.md b/VERIFY_ISO.md index 660f1ef08..f6cc31508 100644 --- a/VERIFY_ISO.md +++ b/VERIFY_ISO.md @@ -1,4 +1,4 @@ -### 2.3.70-WAZUH ISO image built on 2021/08/23 +### 2.3.70-WAZUH ISO image built on 2021/08/30