V4.1.0 version updates#2205
Conversation
Add formating to catch program name under protocol 23
Removed extra spaces.
Add log cleanup and parsing for syslog protocol 23 logging format
updating files and spec Signed-off-by: Scott R. Shinn <[email protected]>
There was a problem hiding this comment.
Pull request overview
Note
Copilot was unable to run its full agentic suite in this review.
Updates OSSEC Debian packaging and bundled contrib/docs to reflect a 4.1.0 release, adding additional build tooling, translations, and logtest fixtures.
Changes:
- Bump Debian packaging build script version to
4.1.0 - Add/update Debian packaging metadata (control/rules/scripts/patches) and pbuilder build documentation
- Add a large set of bundled upstream docs, contrib utilities, active-response scripts, and logtest fixtures under the
ossec-hids-agent-4.0.0contrib tree
Reviewed changes
Copilot reviewed 296 out of 6237 changed files in this pull request and generated 16 comments.
Show a summary per file
| File | Description |
|---|---|
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/pl/logs.txt | Add Polish logging documentation |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/pl/active-response.txt | Add Polish active-response doc link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/pl/active-response-internal.txt | Add Polish internal active-response description |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/pl/TRANSLATION | Add Polish translation credits |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/pl/README.config | Add Polish config doc link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/nmap.txt | Add nmap correlation documentation |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/manager.txt | Add manager/agent management documentation |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/manage_agents.txt | Add manage_agents non-interactive usage doc |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/logs.txt | Add English logging documentation |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/rule_ids.txt | Add Brazilian Portuguese rule id ranges |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/manager.txt | Add Brazilian Portuguese manager doc |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/logs.txt | Add Brazilian Portuguese logging doc |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/active-response.txt | Add Brazilian Portuguese active-response doc link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/active-response-internal.txt | Add Brazilian Portuguese internal active-response doc |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/TRANSLATION | Add Brazilian Portuguese translation credits |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/br/README.config | Add Brazilian Portuguese config doc link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/active-response.txt | Add active-response doc link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/active-response-internal.txt | Add internal active-response description |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/doc/README.config | Add config documentation link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/templates | Add debconf template for agent server-ip |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/source/format | Add Debian source format |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/rules | Add debhelper rules |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/preinst | Add preinst backup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/postrm | Add postrm cleanup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/patches/series | Add quilt patch series |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/patches/02_ossec-agent.conf.patch | Add agent conf patch (log paths/rootcheck) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/ossec-hids-agent.lintian-overrides | Add lintian overrides |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/copyright | Add Debian copyright metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/control | Add Debian control metadata (3.6.0) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/conffiles | Add conffiles list |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/compat | Add debhelper compat level |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian_files/3.6.0/ossec-hids-agent/debian/changelog | Add Debian changelog (3.6.0-1) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/templates | Add debconf template for agent server-ip |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/source/format | Add Debian source format |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/rules | Add debhelper rules |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/preinst | Add preinst backup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/postrm | Add postrm cleanup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/patches/series | Add quilt patch series |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/patches/02_ossec-agent.conf.patch | Add agent conf patch (log paths/rootcheck) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/ossec-hids-agent.lintian-overrides | Add lintian overrides |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/copyright | Add Debian copyright metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/control | Add Debian control metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/conffiles | Add conffiles list |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/compat | Add debhelper compat level |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/debian/changelog | Add Debian changelog (3.5.0-1) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/zeromq_pubsub.py | Add ZeroMQ subscriber example |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/version_bump.sh | Add version bump helper script |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/specs/remove_ossec | Add RPM removal helper |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/specs/getattr.pl | Add RPM spec attr helper |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/selinux/ossec_agent/ossec_agent.if | Add SELinux interface stub |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/selinux/ossec_agent/ossec_agent.fc | Add SELinux file contexts |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/selinux/README.md | Add SELinux module README |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/renumber_agent.sh | Add agent renumber helper |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/rename_agent.sh | Add agent rename helper |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec_rules_list.py | Add rule summary listing script |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec_report.txt | Add report tool documentation |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec2mysql.conf | Add ossec2mysql config sample |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/vsftpd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/unbound.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/systemd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/syslog.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/sudo.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/su.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/samba.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/rsh.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/proftpd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/postfix.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/pam.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/ossec.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/opensmtpd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/openbsd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/openbsd-httpd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/openbsd-dhcpd.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/netscreen.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/named.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/mailscanner.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/firewalld.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/exim.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/dropbear.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/dpkg.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/doas.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/dnsmasq.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/cpanel.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/cisco_ios.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/cimserver.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/asterisk.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-testing/tests/apparmor.ini | Add decoder/rule test fixture |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/ossec-eps.sh | Add events-per-second helper script |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/dotests.sh | Add logtesting runner script |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/44/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/44/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/43/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/43/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/42/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/42/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/41/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/41/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/40/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/40/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/39/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/39/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/38/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/38/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/37/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/37/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/36/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/36/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/35/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/35/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/34/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/34/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/33/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/33/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/32/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/32/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/31/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/31/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/30/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/30/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/29/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/29/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/28/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/28/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/27/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/27/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/26/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/26/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/25/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/25/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/24/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/24/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/23/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/23/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/22/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/22/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/21/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/21/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/20/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/20/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/19/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/19/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/18/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/18/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/17/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/17/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/16/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/16/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/15/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/15/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/14/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/14/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/13/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/13/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/12/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/12/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/11/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/11/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/10/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/10/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/9/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/9/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/8/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/8/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/7/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/7/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/6/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/6/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/5/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/5/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/4/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/4/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/3/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/3/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/2/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/2/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/1/res | Add logtest expected output |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/logtesting/1/log | Add logtest input |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/templates | Add server package debconf templates |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/source/format | Add Debian source format |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/rules | Add debhelper rules |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/preinst | Add preinst backup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/postrm | Add postrm cleanup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/patches/series | Add quilt patch series |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/ossec-hids.lintian-overrides | Add lintian overrides |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/copyright | Add Debian copyright metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/control | Add Debian control metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/conffiles | Add conffiles list |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/compat | Add debhelper compat level |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids/debian/changelog | Add Debian changelog |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/templates | Add agent package debconf templates |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/source/format | Add Debian source format |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/rules | Add debhelper rules |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/preinst | Add preinst backup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/postrm | Add postrm cleanup logic |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/patches/series | Add quilt patch series |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/patches/02_ossec-agent.conf.patch | Add agent conf patch (log paths/rootcheck) |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/ossec-hids-agent.lintian-overrides | Add lintian overrides |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/copyright | Add Debian copyright metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/control | Add Debian control metadata |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/conffiles | Add conffiles list |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/compat | Add debhelper compat level |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/ossec-hids-agent/debian/changelog | Add Debian changelog |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/debian-packages/Readme.txt | Add Debian packaging readme |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/contrib/add_localfile.sh | Add helper to append localfile config |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/build.sh | Add build wrapper script |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/win/route-null.cmd | Add Windows null-route active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/win/restart-ossec.cmd | Add Windows restart active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/win/netsh.cmd | Add Windows netsh active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/win/firewall-drop.cmd | Add Windows firewall-drop active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/route-null.sh | Add Unix null-route active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/restart-ossec.sh | Add Unix restart active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/ossec-tweeter.sh | Add Twitter notification active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/ossec-pagerduty.sh | Add PagerDuty notification active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/ip-customblock.sh | Add example custom IP block active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/firewalls/npf.sh | Add NPF firewall active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/active-response/firewalls/ipfw.sh | Add IPFW firewall active response |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/SUPPORT.md | Add support link |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/SECURITY.md | Add security policy |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/README.md | Add bundled OSSEC README |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/INSTALL | Add bundled INSTALL instructions |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/Dockerfile | Add Ubuntu build container |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/CONFIG | Add bundled CONFIG doc |
| contrib/debian-packages/ossec-hids-agent/ossec-hids-agent-4.0.0/BUGS | Add bundled BUGS doc |
| contrib/debian-packages/generate_ossec.sh | Bump ossec_version to 4.1.0 |
| contrib/debian-packages/PBUILDER.md | Add pbuilder build documentation |
| README.md | Bump displayed OSSEC version to 4.1.0 |
| ISSUES.txt | Add issue tracking notes file |
| INSTALL | Bump displayed OSSEC version to 4.1.0 |
| CONTRIBUTORS | Update version header and add contributors |
| CONFIG | Bump displayed OSSEC version to 4.1.0 |
| BUGS | Bump displayed OSSEC version to 4.1.0 |
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
| if [ "X${OLDVERSION}" == "X" ]; then | ||
| echo "You must provide the version numbers" | ||
| echo "version_bump.sh x.0.0 x.1.0" | ||
| exit 1 | ||
| fi | ||
|
|
||
| if [ "X${NEWVERSION}" == "X" ]; then |
There was a problem hiding this comment.
version_bump.sh is declared as /bin/sh but uses == in test, which is not POSIX and will fail on shells like dash. Use = for string comparison (or change the shebang to /bin/bash if bashisms are intended)."
| if [ "X${OLDVERSION}" == "X" ]; then | |
| echo "You must provide the version numbers" | |
| echo "version_bump.sh x.0.0 x.1.0" | |
| exit 1 | |
| fi | |
| if [ "X${NEWVERSION}" == "X" ]; then | |
| if [ "X${OLDVERSION}" = "X" ]; then | |
| echo "You must provide the version numbers" | |
| echo "version_bump.sh x.0.0 x.1.0" | |
| exit 1 | |
| fi | |
| if [ "X${NEWVERSION}" = "X" ]; then |
| if [ "X${OLDVERSION}" == "X" ]; then | ||
| echo "You must provide the version numbers" | ||
| echo "version_bump.sh x.0.0 x.1.0" | ||
| exit 1 | ||
| fi | ||
|
|
||
| if [ "X${NEWVERSION}" == "X" ]; then |
There was a problem hiding this comment.
version_bump.sh is declared as /bin/sh but uses == in test, which is not POSIX and will fail on shells like dash. Use = for string comparison (or change the shebang to /bin/bash if bashisms are intended)."
| if [ "X${OLDVERSION}" == "X" ]; then | |
| echo "You must provide the version numbers" | |
| echo "version_bump.sh x.0.0 x.1.0" | |
| exit 1 | |
| fi | |
| if [ "X${NEWVERSION}" == "X" ]; then | |
| if [ "X${OLDVERSION}" = "X" ]; then | |
| echo "You must provide the version numbers" | |
| echo "version_bump.sh x.0.0 x.1.0" | |
| exit 1 | |
| fi | |
| if [ "X${NEWVERSION}" = "X" ]; then |
| print ("Error: OSSEC rules directory does not appear to exist") | ||
|
|
||
| if __name__ == "__main__": | ||
| print ("Reading rules from directory %s") % (rules_directory) |
There was a problem hiding this comment.
This print (...) % (...) expression is invalid and will raise a TypeError (it applies % to the result of print). Format the message before printing (or use an f-string if targeting Python 3) so the script actually runs.
| print ("Reading rules from directory %s") % (rules_directory) | |
| print ("Reading rules from directory %s" % (rules_directory)) |
| s.setsockopt(zmq.SUBSCRIBE, "") | ||
| while 1: | ||
| d = s.recv() | ||
| print d |
There was a problem hiding this comment.
This example is written in Python 2 style (print d) and also passes a string to zmq.SUBSCRIBE (pyzmq generally expects bytes in Python 3). If this repo targets Python 3, update to print(d) and subscribe with a bytes prefix (e.g., b\"\") to avoid runtime errors.
| s.setsockopt(zmq.SUBSCRIBE, "") | |
| while 1: | |
| d = s.recv() | |
| print d | |
| s.setsockopt(zmq.SUBSCRIBE, b"") | |
| while 1: | |
| d = s.recv() | |
| print(d) |
| fi | ||
|
|
||
| exit 1; |
There was a problem hiding this comment.
This script exits with status 1 unconditionally, even after a successful add or delete. Return 0 on successful actions and reserve non-zero exits for errors so OSSEC can correctly treat the response as successful.
| fi | |
| exit 1; | |
| exit 1; | |
| fi | |
| exit 0; |
| @@ -0,0 +1,18 @@ | |||
| ossec-hids-agent (3.5.0-1) unstable; urgency=medium | |||
There was a problem hiding this comment.
The Debian changelog here declares 3.5.0-1, but the adjacent debian_files/3.6.0/.../debian/changelog in this PR declares 3.6.0-1. If both are meant to describe the same package version lineage, this inconsistency will confuse builds/release automation. Align the changelog versioning (or clearly separate which packaging tree is authoritative).
| ossec-hids-agent (3.5.0-1) unstable; urgency=medium | |
| ossec-hids-agent (3.6.0-1) unstable; urgency=medium |
| | 4.7.x | :white_check_mark: | | ||
| | 3.7.x | :white_check_mark: | | ||
| | < 3.7.0 | :x: | |
There was a problem hiding this comment.
The table is not valid Markdown (it uses || instead of |), so it likely won't render as intended. Also, the 'Supported Versions' list mentions 4.7.x/3.7.x, which is inconsistent with this PR’s 4.1.0 version bump; update the table formatting and the supported-version ranges to match the project’s actual policy.
| | 4.7.x | :white_check_mark: | | |
| | 3.7.x | :white_check_mark: | | |
| | < 3.7.0 | :x: | | |
| | 4.1.x | :white_check_mark: | | |
| | < 4.1.0 | :x: | |
| == Logowanie zdarzeń == | ||
|
|
||
| W domyślnym katalogu logów OSSEC (/var/ossec/logs) jeden jest | ||
| przezaczony na archiwa (/var/ossec/logs/archives). W tym |
There was a problem hiding this comment.
Correct typos in Polish documentation: przezaczony -> przeznaczony, and katalogo -> katalog.
|
|
||
| == Logowanie alarmów == | ||
|
|
||
| W domyślnym katalogu logów OSSEC jest katalogo alarmów |
There was a problem hiding this comment.
Correct typos in Polish documentation: przezaczony -> przeznaczony, and katalogo -> katalog.
|
|
||
| Jak działa aktywa ochrona (od środka): | ||
|
|
||
| - Przeczytaj active-respose-doc.txt aby dowiedzieć się więcej |
There was a problem hiding this comment.
The referenced filename has a typo: active-respose-doc.txt should be active-response-doc.txt.
| - Przeczytaj active-respose-doc.txt aby dowiedzieć się więcej | |
| - Przeczytaj active-response-doc.txt aby dowiedzieć się więcej |
No description provided.