Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Host hash sensor #484

Merged
merged 77 commits into from
Feb 20, 2025
Merged

Host hash sensor #484

merged 77 commits into from
Feb 20, 2025

Conversation

slashben
Copy link
Contributor

This pull request includes several changes to the configuration, Kubernetes deployment, and main application logic to support new features and improve the codebase. The key changes include enabling new sensors, updating the Kubernetes deployment configuration, and modifying the main application logic to handle different modes of operation.

Configuration Updates:

  • Added new configuration options for enabling full path tracing, runtime detection, and host malware sensor in configuration/node-hash-sensor/config.json.
  • Updated go.mod to include new dependencies and update existing ones. [1] [2] [3]

Kubernetes Deployment Updates:

  • Added a new label and changed the service type to LoadBalancer in demo/general_attack/webapp/ping-app.yaml. [1] [2]
  • Restricted the role permissions to only allow get on pods in demo/general_attack/webapp/ping-app.yaml.

Main Application Logic Updates:

  • Modified main.go to load configuration from an environment variable and handle Kubernetes and non-Kubernetes modes. [1] [2] [3] [4] [5] [6] [7] [8] [9]
  • Updated pkg/config/config.go to include new configuration fields for host malware sensor and Kubernetes mode. [1] [2] [3]

Container Watcher Updates:

  • Added support for reporting events to the host hash sensor and included the host as a container in pkg/containerwatcher/v1/container_watcher.go. [1] [2] [3] [4] [5] [6] [7]

slashben and others added 10 commits February 16, 2025 10:14
Signed-off-by: Ben <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

afek854 and others added 2 commits February 16, 2025 20:43
* Added host agent rules

Signed-off-by: Afek Berger <[email protected]>

* fixed tests & naming

Signed-off-by: Afek Berger <[email protected]>

---------

Signed-off-by: Afek Berger <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

@matthyx matthyx marked this pull request as ready for review February 18, 2025 07:37
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Ben <[email protected]>
amitschendel and others added 8 commits February 18, 2025 15:44
* Adding host network watcher

Signed-off-by: Amit Schendel <[email protected]>

* Fixing process tree

Signed-off-by: Amit Schendel <[email protected]>

* adding a goreleaser config

Signed-off-by: Matthias Bertschy <[email protected]>

---------

Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Matthias Bertschy <[email protected]>
Co-authored-by: Matthias Bertschy <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Ben <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

Signed-off-by: Amit Schendel <[email protected]>
Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: failure

@matthyx matthyx changed the title WIP Host hash sensor Host hash sensor Feb 20, 2025
Copy link
Contributor

@matthyx matthyx left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

let's fix these nits before merging

Signed-off-by: Matthias Bertschy <[email protected]>
@matthyx matthyx added the release Create release label Feb 20, 2025
@@ -264,7 +264,6 @@ func main() {
apc := &objectcache.ApplicationProfileCacheMock{}
nnc := &objectcache.NetworkNeighborhoodCacheMock{}
dc := &objectcache.DnsCacheMock{}
processManager = processmanager.CreateProcessManagerMock()
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Why you removed it?

Copy link
Contributor

@matthyx matthyx Feb 20, 2025

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

duplicated line with 269

Copy link

Summary:

  • License scan: failure
  • Credentials scan: failure
  • Vulnerabilities scan: failure
  • Unit test: success
  • Go linting: success

@matthyx matthyx merged commit 963c7ef into main Feb 20, 2025
19 checks passed
@matthyx matthyx deleted the feature/host-agent branch February 20, 2025 09:16
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
release Create release
Projects
Status: To Archive
Development

Successfully merging this pull request may close these issues.

4 participants