-
Notifications
You must be signed in to change notification settings - Fork 32
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Release 4.3.7 - Release Candidate 1 - E2E UX tests - Wazuh Dashboard #3176
Comments
Wazuh Dashboard Package Specs 🟢DetailsDEB Packagedpkg --info ./wazuh-dashboard_4.3.7-1_amd64.deb
new Debian package, version 2.0.
size 130607532 bytes: control archive=968048 bytes.
190 bytes, 5 lines conffiles
826 bytes, 10 lines control
6424096 bytes, 52848 lines md5sums
1992 bytes, 55 lines * postinst #!/bin/sh
1848 bytes, 87 lines * postrm #!/bin/sh
2308 bytes, 76 lines * preinst #!/bin/sh
2114 bytes, 83 lines * prerm #!/bin/sh
Package: wazuh-dashboard
Version: 4.3.7-1
Architecture: amd64
Maintainer: Wazuh, Inc <info@wazuh.com>
Installed-Size: 622586
Depends: debconf, adduser, curl, tar, libcap2-bin
Section: admin
Priority: extra
Homepage: https://www.wazuh.com
Description: Wazuh dashboard is a user interface and visualization tool for security-related data. This Wazuh central component enables exploring, visualizing, and analyzing the stored security alerts generated by the Wazuh server. Wazuh dashboard enables inspecting the status and managing the configurations of the Wazuh cluster and agents as well as creating and managing users and roles. In addition, it allows testing the ruleset and making calls to the Wazuh API. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html
RPM Packagerpm -qi ./wazuh-dashboard-4.3.7-1.x86_64.rpm
warning: ./wazuh-dashboard-4.3.7-1.x86_64.rpm: Header V3 RSA/SHA256 Signature, key ID 29111145: NOKEY
Name : wazuh-dashboard
Version : 4.3.7
Release : 1
Architecture: x86_64
Install Date: (not installed)
Group : System Environment/Daemons
Size : 617499926
License : GPL
Signature : RSA/SHA256, Tue 16 Aug 2022 02:56:41 PM UTC, Key ID 96b3ee5f29111145
Source RPM : wazuh-dashboard-4.3.7-1.src.rpm
Build Date : Tue 16 Aug 2022 02:49:58 PM UTC
Build Host : ip-172-31-48-105.ec2.internal
Relocations : (not relocatable)
Packager : Wazuh, Inc <info@wazuh.com>
Vendor : Wazuh, Inc <info@wazuh.com>
URL : https://www.wazuh.com/
Summary : Wazuh dashboard is a user interface and visualization tool for security-related data. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html
Description :
Wazuh dashboard is a user interface and visualization tool for security-related data. This Wazuh central component enables exploring, visualizing, and analyzing the stored security alerts generated by the Wazuh server. Wazuh dashboard enables inspecting the status and managing the configurations of the Wazuh cluster and agents as well as creating and managing users and roles. In addition, it allows testing the ruleset and making calls to the Wazuh API. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html
|
Dashboard Package Size 🟢Details
raw data from logsWazuh 4.3.7 Packages
Wazuh 4.3.6 Packages
|
Dashboard Package Metadata 🟢DetailsDEB Package Package: wazuh-dashboard
Version: 4.3.7-1
Architecture: amd64
Maintainer: Wazuh, Inc <info@wazuh.com>
Installed-Size: 622586
Depends: debconf, adduser, curl, tar, libcap2-bin
Section: admin
Priority: extra
Homepage: https://www.wazuh.com
Description: Wazuh dashboard is a user interface and visualization tool for security-related data. This Wazuh central component enables exploring, visualizing, and analyzing the stored security alerts generated by the Wazuh server. Wazuh dashboard enables inspecting the status and managing the configurations of the Wazuh cluster and agents as well as creating and managing users and roles. In addition, it allows testing the ruleset and making calls to the Wazuh API. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html RPM PackageName : wazuh-dashboard
Version : 4.3.7
Release : 1
Architecture: x86_64
Install Date: (not installed)
Group : System Environment/Daemons
Size : 617499926
License : GPL
Signature : RSA/SHA256, Tue 16 Aug 2022 02:56:41 PM UTC, Key ID 96b3ee5f29111145
Source RPM : wazuh-dashboard-4.3.7-1.src.rpm
Build Date : Tue 16 Aug 2022 02:49:58 PM UTC
Build Host : ip-172-31-48-105.ec2.internal
Relocations : (not relocatable)
Packager : Wazuh, Inc <info@wazuh.com>
Vendor : Wazuh, Inc <info@wazuh.com>
URL : https://www.wazuh.com/
Summary : Wazuh dashboard is a user interface and visualization tool for security-related data. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html
Description :
Wazuh dashboard is a user interface and visualization tool for security-related data. This Wazuh central component enables exploring, visualizing, and analyzing the stored security alerts generated by the Wazuh server. Wazuh dashboard enables inspecting the status and managing the configurations of the Wazuh cluster and agents as well as creating and managing users and roles. In addition, it allows testing the ruleset and making calls to the Wazuh API. Documentation can be found at https://documentation.wazuh.com/current/getting-started/components/wazuh-dashboard.html |
Dashboard Package Digital Signature 🟢DetailsRPM Packagerpm -qi $(rpm -qa | awk '/dashboard/ {print$0}') | awk '/Name|Install|Signature/ {print $0}'
Name : wazuh-dashboard
Install Date: Fri 19 Aug 2022 03:59:53 PM UTC
Signature : RSA/SHA256, Tue 16 Aug 2022 02:56:41 PM UTC, Key ID 96b3ee5f29111145
DEB PackageIn Ubuntu only the repo is Signed not the package dpkg-sig --verify ./wazuh-dashboard_4.3.7-1_amd64.deb
Processing ./wazuh-dashboard_4.3.7-1_amd64.deb...
NOSIG
|
Installed files location, size and permissions 🟢Details
ll /usr/share/wazuh-dashboard/data/wazuh/config/wazuh.yml
File: /usr/share/wazuh-dashboard/data/wazuh/config/wazuh.yml
Size: 8214 Blocks: 24 IO Block: 4096 regular file
Device: fd00h/64768d Inode: 1065449 Links: 1
Access: (0600/-rw-------) Uid: ( 113/wazuh-dashboard) Gid: ( 117/wazuh-dashboard)
Access: 2022-08-17 11:17:38.949843396 +0000
Modify: 2022-08-17 11:17:32.498619721 +0000
Change: 2022-08-17 11:17:32.506623721 +0000
Birth: -
|
Installation footprint 🟢DetailsThe footprint was analyzed using the tool check_files
|
Installed Service 🟢Detailssystemctl status wazuh-dashboard
● wazuh-dashboard.service - wazuh-dashboard
Loaded: loaded (/etc/systemd/system/wazuh-dashboard.service; enabled; vendor preset: enabled)
Active: active (running) since Wed 2022-08-17 18:50:25 UTC; 12s ago
Main PID: 45851 (node)
Tasks: 11 (limit: 2274)
Memory: 162.9M
CGroup: /system.slice/wazuh-dashboard.service
└─45851 /usr/share/wazuh-dashboard/bin/../node/bin/node --no-warnings --max-http-header-size=65536 --unhandled-rejections=warn /usr/>
Aug 17 18:50:25 dashboard systemd[1]: wazuh-dashboard.service: Succeeded.
Aug 17 18:50:25 dashboard systemd[1]: Stopped wazuh-dashboard.
Aug 17 18:50:25 dashboard systemd[1]: Started wazuh-dashboard.
Aug 17 18:50:28 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:28Z","tags":["info","plugins-service"],"pid">
Aug 17 18:50:29 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:29Z","tags":["info","plugins-system"],"pid":>
Aug 17 18:50:29 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:29Z","tags":["info","savedobjects-service"],>
Aug 17 18:50:29 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:29Z","tags":["info","savedobjects-service"],>
Aug 17 18:50:29 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:29Z","tags":["info","plugins-system"],"pid":>
Aug 17 18:50:29 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:29Z","tags":["listening","info"],"pid":45851>
Aug 17 18:50:30 dashboard opensearch-dashboards[45851]: {"type":"log","@timestamp":"2022-08-17T18:50:30Z","tags":["info","http","server","OpenSea> |
Wazuh Dashboard logs when installed 🟢Details
|
Wazuh Dashboard configuration 🟢DetailsThe config file `wazuh.yml` has some changes compared to the 4.3.6 as expected (issue [#4402](https://github.com/wazuh/wazuh-dashboard-plugins/issues/4402)) a lot of those changes are improvements and fixes in the file documentation.
|
Wazuh Dashboard communication with Wazuh manager API and Wazuh indexer 🟢Details
|
Register Wazuh Agents 🟢DetailsInstalling agents by following the guide given by wazuh-dashboard Centos Agent installation
Centos Agent installation on group `testgroup`
Ubuntu Agent installation
Ubuntu Agent installation on group `testgroup`
Windows Agent installation
Windows Agent installation on group `testgroup`
|
Basic browsing through the WUI 🟢DetailsWazuh APP > Modules2022-08-18.18-45-03.mp4Wazuh APP > Management2022-08-18.18-54-23.mp4Wazuh APP > Agents2022-08-18.19-01-13.mp4Wazuh APP > Tools2022-08-18.19-07-45.mp4Wazuh APP > Settings and general test2022-08-18.19-12-48.mp4 |
Basic experience with WUI performance. 🟢Details
|
The following issue aims to run the specified test for the current release candidate, report the results, and open new issues for any encountered errors.
Modules tests information
Installation procedure
Test description
Best efford to test Wazuh dashboard package. Think critically and at least review/test:
Test report procedure
All test results must have one of the following statuses:
Any failing test must be properly addressed with a new issue, detailing the error and the possible cause.
An extended report of the test results can be attached as a ZIP or TXT file. Please attach any documents, screenshots, or tables to the issue update with the results. This report can be used by the auditors to dig deeper into any possible failures and details.
Conclusions
All tests have been executed and the results can be found in the issue updates.
Auditors validation
The definition of done for this one is the validation of the conclusions and the test results from all auditors.
All checks from below must be accepted in order to close this issue.
The text was updated successfully, but these errors were encountered: