Skip to content

Version 2.1.7

Compare
Choose a tag to compare
@basepi basepi released this 07 Apr 17:20
· 3050 commits to master since this release

General

  • Force configfile and logfile to 600 permissions (to protect the splunk token)

Splunk Returners (Quasar)

  • More robust searching for dest_ip -- it will do its best to find an IP address without a 127. prefix. This was really only an issue on hosts with misconfigured FQDNs

Packaging

  • Peg to requests version 2.13.0
  • Peg to osquery version 2.3.2
  • Fixes to sysvinit script:
    • No sudo required
    • Proper LSB init info
  • Fix Debian 7 build
  • Fix python setup.py install installation method. (note: this breaks the bdist_rpm builds, but we're not really using those anymore)
  • Change the default config to put roots before git in fileserver backends, so local files can override.