summaryrefslogtreecommitdiff
path: root/security/prelude-manager
AgeCommit message (Collapse)AuthorFilesLines
2017-01-19Convert all occurrences (353 by my count) ofagc1-4/+4
MASTER_SITES= site1 \ site2 style continuation lines to be simple repeated MASTER_SITES+= site1 MASTER_SITES+= site2 lines. As previewed on tech-pkg. With thanks to rillig for fixing pkglint accordingly.
2016-09-19Recursive PKGREVISION bump for gnutls shlib major bump.wiz1-2/+2
2015-11-04Add SHA512 digests for distfiles for security categoryagc1-1/+2
Problems found locating distfiles: Package f-prot-antivirus6-fs-bin: missing distfile fp-NetBSD.x86.32-fs-6.2.3.tar.gz Package f-prot-antivirus6-ws-bin: missing distfile fp-NetBSD.x86.32-ws-6.2.3.tar.gz Package libidea: missing distfile libidea-0.8.2b.tar.gz Package openssh: missing distfile openssh-7.1p1-hpn-20150822.diff.bz2 Package uvscan: missing distfile vlp4510e.tar.Z Otherwise, existing SHA1 digests verified and found to be the same on the machine holding the existing distfiles (morden). All existing SHA1 digests retained for now as an audit trail.
2015-08-23Bump PKGREVISION for nettle shlib major bump.wiz1-2/+2
2014-03-11Remove example rc.d scripts from PLISTs.jperkin1-2/+1
These are now handled dynamically if INIT_SYSTEM is set to "rc.d", or ignored otherwise.
2014-01-01Recursive PKGREVISION bump for libgcrypt-1.6.0 shlib major bump.wiz1-2/+2
2013-07-12Bump PKGREVISION of all packages which create users, to pick up change ofjperkin1-2/+2
sysutils/user_* packages.
2013-02-01Reset MAINTAINER/OWNER (became observers)wiz1-2/+2
2012-10-23Drop superfluous PKG_DESTDIR_SUPPORT, "user-destdir" is default these days.asau1-3/+1
2012-07-05revursive revbump for gnutls updatedrochner1-2/+2
2012-06-14Recursive PKGREVISION bump for libxml2 buildlink addition.sbd1-2/+2
2011-10-07PR/29576 -- Use @RCD_SCRIPTS_SHELL@ in rc.d scripts, not /bin/shshattered1-2/+2
2011-04-22recursive bump from gettext-lib shlib bump.obache1-2/+2
2010-02-19Use plain CONF_FILES. Bump revision.joerg1-4/+3
2009-12-15Recursive bump for libltdljoerg1-2/+2
2009-10-02Fix PLIST and bump PKGREVISION.hasso2-2/+5
2009-08-24Update to 0.9.15. Upstream changes:hasso4-32/+39
- Make Prelude-Manager thread backend independant. - Add missing dlpreopening support for the SMTP plugin. - Win32 compilation fixes. - Various fixes and update. Also various pkgsrc related fixes including DESTDIR support.
2009-06-14Remove @dirrm entries from PLISTsjoerg1-6/+1
2008-10-19Bump the PKGREVISION for all packages which depend directly on perl,he1-1/+2
to trigger/signal a rebuild for the transition 5.8.8 -> 5.10.0. The list of packages is computed by finding all packages which end up having either of PERL5_USE_PACKLIST, BUILDLINK_API_DEPENDS.perl, or PERL5_PACKLIST defined in their make setup (tested via "make show-vars VARNAMES=...").
2008-10-18Prelude-manager now can send alerts via E-mail. Make start depend on mail.shannonjr1-2/+2
2008-08-26Update to 0.9.14.2. Changes: Various build fixes (#306)shannonjr2-7/+6
2008-08-08PLIST correction.shannonjr2-2/+7
2008-07-21Update to 0.9.14. Changes:shannonjr3-24/+24
- Improve thread safety when evicting events to disk. - Handle IDMEF message version tag, which will be used in upcoming libprelude version. - Add support for newer GnuTLS 2.2.0 session priority functions. When the option is available, the user might specify TLS settings through the "tls-options" configuration entry. - Fix a possible crash upon destruction of a bufpool that is writing to a failover. - Correct strtoul() error checking, when verifying scheduler options.
2008-06-16Add missing directory.joerg1-1/+3
2008-03-06Recursive PKGREVISION bump for gnutls-2.2.2 update with shlib major bump.wiz1-1/+2
2008-03-03Update to 0.9.11. Changes:shannonjr2-6/+6
- In case a lot of message were being processed, the heartbeat timer could be delayed for a long period of time. - The old scheduler algorithm could be unfair when certain message priority were not available for processing. We now appropriatly handle repartition to others priority messages. - Message of the same priority could be processed in the wrong order when on-disk buffers were used. - No integrity check were performed on orphan on-disk buffer in case of an operating system crash. By using the prelude-failover API, we can now detect possibly corrupted disk buffer, or resume at the time we stopped recovering them. - New sched-priority and sched-buffer-size configuration options. - Fix a bug where several relaying plugin instance would only forward their message to a single Manager.
2007-10-29Update to 0.9.10. Changes:shannonjr2-6/+6
- Make threshold act like a real threshold: pass every Nth events in the defined amount of seconds. - Allow mixing Limit and Threshold. - Do not share the tresholding hash accross thresholding plugin instance: previously, the shared hash would result in strange thresholding plugin behavior if you had several instance of thresholding loaded. - Various bug fixes concerning plugin instance un-subscribtion (unsubscribtion of certain plugin was not triggered).
2007-09-05Update to 0.9.9.1. Changes:shannonjr2-7/+8
- Fix for new libprelude (0.9.15) runtime warning. - Add documentation for SQLite3 in the template configuration file (Sébastien Tricaud <toady at gscore.org>).
2007-08-04Update to 0.9.9. Changes:shannonjr3-8/+8
- Update configuration template, add documentation for Prelude generic TCP options. - Implement modified patch from Pierre Chifflier <chifflier@inl.fr> to fix the example log path (fix #224). - Move IDMEF message normalization in the scheduler, rather than doing it upon reception. This remove some load from the server and allow Prelude-Manager own IDMEF messages to go through the normalizer path. - Implement heartbeat->analyzer normalization. - Improve IPv4 / IPv6 address normalization. IPv4 mapped IPv6 addresses are now mapped back to IPv4. Additionally, the Normalize plugin now provide two additionals option: ipv6-only: Map any incoming IPv4 address to IPv6. keep-ipv4-mapped-ipv6: do not map IPv4 mapped IPv6 addresses back to IPv4. - Make a difference between exceptional report plugin failure (example: a single message couldn't be processed) and "global" plugin failure (example: database server is down). We use a different failover for 'exceptional' failure, so that we don't try to reinsert a bogus message (fix #247). - Start of a Prelude-Manager manpages (#236). - Various bug fixes.
2007-07-04Make it easier to build and install packages "unprivileged", wherejlam1-1/+4
the owner of all installed files is a non-root user. This change affects most packages that require special users or groups by making them use the specified unprivileged user and group instead. (1) Add two new variables PKG_GROUPS_VARS and PKG_USERS_VARS to unprivileged.mk. These two variables are lists of other bmake variables that define package-specific users and groups. Packages that have user-settable variables for users and groups, e.g. apache and APACHE_{USER,GROUP}, courier-mta and COURIER_{USER,GROUP}, etc., should list these variables in PKG_USERS_VARS and PKG_GROUPS_VARS so that unprivileged.mk can know to set them to ${UNPRIVILEGED_USER} and ${UNPRIVILEGED_GROUP}. (2) Modify packages to use PKG_GROUPS_VARS and PKG_USERS_VARS.
2007-06-05opencdk shlib major changed; bump ABI depends and PKGREVISIONs ofwiz1-1/+2
affected packages.
2007-05-12Update to 0.9.8. Changes:shannonjr3-7/+10
- Initial implementation of the 'thresholding' plugin, allowing you to suppress events after a certain limit/threshold. - Filters hooking to a reporting plugin are now OR'ed instead of being AND'ed. AND is already possible by hooking filtering plugin one with another. - Improved error reporting. - Minor bug fixes.
2007-04-09Update to 0.9.7.2. Changes:shannonjr2-6/+6
- Allow filtering plugins to hook others filters plugins. - Update reporting code to latest specification for the SNMPService class. - Warn about Un-handled command line arguments. - Properly dump IDMEF-XML output (fix #186). - Various bug fixes.
2007-02-23Update to 0.9.7.1. Changes:shannonjr2-6/+6
- Fix a startup problem on system with different address of different family mapping to the same IP. - Fix for system using the GnuLib poll replacement modules. The module was broken when used in conjunction with server socket. - Various portability fixes
2007-02-22Whitespace cleanup, courtesy of pkglint.wiz1-11/+11
Patch provided by Sergey Svishchev in private mail.
2006-08-24Update to 0.9.6. Changes:shannonjr2-7/+6
- In case an IDMEF-Service object contain neither name or port attribute, set name to "unknown" in order to avoid IDMEF DTD validation issue. - Normalize analyzer(*).node.
2006-08-23Add master site entry for times when pkgsrc doesn't have the completelywiz1-2/+3
latest version.
2006-08-23Change CONF_FILES_PERMS from 0600 to 0644 because conf file must beshannonjr1-3/+3
accessible to prelude-manager running as non-root user. Bumped PKGREVISION.
2006-08-23prelude-manager references two configuration directories relative toshannonjr1-5/+4
PKG_SYSCONFDIR: 1) prelude-manager and 2) prelude (install by libprelude). Consequently, PKG_SYSCONFSUBDIR can't be set to prelude-manager. Corrected and PKGREVISION bumped.
2006-07-01Forgotten patchsum update.joerg1-2/+2
2006-06-28Use config file framework. Keep the permission of the original codejoerg4-4/+39
for the installed version of the configuration file, but not the example. Bump revision.
2006-06-16Update to 0.9.5. Changes:shannonjr3-8/+9
- Store Prelude-Manager FIFO into the profile backup directory so that FIFO are per profile. Fix #151. - Update libwrap check, don't statically link libwrap. Cleanup. Fix #144. - XMLmod: Implement CorrelationAlert processing. - XMLmod: No ntpstamp attribute in File/Inode element datetime fields. - XMLmod: permission -> Permission, as per IDMEF DTD requirements. - XMLmod: Process the Checksum IDMEF element. - XMLmod: Make AdditionalData validation pass (IDMEF v15 -> v16 change). - XMLmod: disable-buffering option argument is optional. - XMLmod: Correct DTD loading error. - XMLmod: Avoid NULL libxml warning.
2006-05-26Added additional environment cleanup before exec'ing prelude-manager.shannonjr2-1/+23
2006-04-24Update to 0.9.4.1. Changes:shannonjr2-7/+6
- Enable write notification on queued write (Fix reverse relaying). - Fix IDMEF message scheduler warning when plugin failover is enabled. - Fix reverse relaying on some architecture due to thread safety issue. - Server scalability improvement in case of message burst. - Start work on a normalization plugin. Very simple for now, mostly sanitize IDMEF Address and IDMEF Service classes. - When an analyzer have read and write permission to prelude-manager, avoid acting as an echo server, don't send received message from this analyzer to itself. - When no listen address is specified, try to bind all system address (both ipv4/ipv6). - Send an alert to the peer on handshake failure, so that the peer have some information on what happened. - Consistency work accross all plugin logfile option. - Various bug fixes and improvements.
2006-04-23Modify packages that set PKG_USERS and PKG_GROUPS to follow the newjlam1-2/+7
syntax as specified in pkgsrc/mk/install/bsd.pkginstall.mk:1.47.
2006-03-06Belatedly bump PKGREVISION for all libtasn1 dependencies, sincewiz1-1/+2
libtasn1 had a shlib major bump. Also update dependencies in bl3.mk files. Addresses PR 32998 by Robert Elz.
2006-02-16Include sys/time.h before sys/resource.h to fix build on DragonFly.joerg2-1/+14
2006-02-09Update to 0.9.3. Changes:shannonjr3-9/+9
- Only send TLS alert if there is one queued, fix a possible crash. - Emit warning if prelude-failover problem arise. - Improve error handling. - Improve db plugin log option, "-" now mean stdout. - Various bug fixes.
2006-02-05Recursive revision bump / recommended bump for gettext ABI change.joerg1-1/+2
2006-01-31Update to 0.9.2. Changes:shannonjr5-62/+13
- prelude-manager has been updated to check the loaded revocation list, if available. This was needed since the recent prelude-adduser addition allowing to create analyzer revocation list. - Remove line size limitation on specified IDMEF-criteria. - Remove all ancillary groups as well as setgid-ing. - Fix idmef-criteria-filter option conflict. - Fix a possible crash if no listen address is specified, but a reverse relay is used. - Much better error reporting. Prelude-Manager is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, logfile, mail, etc).