taurian007
04/12/2020, 9:38 PMwkleinhenz
04/13/2020, 8:21 PMErich Stoekl
04/14/2020, 6:52 PMLee Brotherston
04/14/2020, 6:58 PMJose
04/14/2020, 9:34 PMgrant seltzer
04/14/2020, 11:26 PMpoisonous97
04/16/2020, 11:09 AM{
"caller": "handler.go:26",
"err": "calling update: refreshing timestamp: signature validation failed for timestamp: signature threshold not met",
"msg": "tuf updater returned",
"severity": "info",
"target": "linux/launcher-stable.tar.gz",
"ts": "2020-04-16T11:08:24.056948287Z"
}
xiaoliuzi
04/16/2020, 1:55 PMErich Stoekl
04/16/2020, 6:15 PMpoisonous97
04/17/2020, 2:40 AMJose
04/19/2020, 4:16 PMpoisonous97
04/20/2020, 7:58 AM/v2/kolide/launcher/_trust/tuf/3.root.json
but `/v2/kolide/launcher/_trust/tuf/root.json`:
server_1 | {"go.version":"go1.14.1","http.request.host":"notary-server","http.request.id":"64bc02be-80b6-4135-991b-a3a21a8c7397","http.request.method":"GET","http.request.remoteaddr":"172.18.0.1:52594","http.request.uri":"/v2/kolide/launcher/_trust/tuf/3.root.json","http.request.useragent":"Go-http-client/1.1","http.response.contenttype":"application/json; charset=utf-8","http.response.duration":"4.580383ms","http.response.status":404,"http.response.written":116,"level":"info","msg":"response completed","time":"2020-04-20T14:33:36Z"}
nle
04/20/2020, 8:33 AMerror logging in: POST /api/v1/koilde/login: Post httpsL//<servername>/api/v1/kolide/login: dial tcp <ip>:443: connect: connection timed out
Has anyone come across this problem before?
By the way, the UI loads perfectly fine. I can login successfully through the UI, using the same credentials I tried with the fleetctl.
Thanks!Jose
04/21/2020, 4:59 PMErich Stoekl
04/21/2020, 5:17 PMfleet prepare db
every time I run fleet? If the db already exists and is prepared, it shouldn't overwrite any existing data, right?Tim
04/21/2020, 8:14 PMSK
04/22/2020, 8:31 AMpoisonous97
04/22/2020, 8:38 AM{
"caller": "handler.go:26",
"err": "calling update: refreshing timestamp: signature validation failed for timestamp: signature threshold not met",
"msg": "tuf updater returned",
"severity": "info",
"target": "linux/launcher-stable.tar.gz",
"ts": "2020-04-22T15:33:12.085130612Z"
}
log in notary:
server_1 | {"go.version":"go1.14.1","http.request.host":"notary-server","http.request.id":"8b4d82b5-2c71-4fbb-aa90-dcc9e17c1d49","http.request.method":"GET","http.request.remoteaddr":"172.18.0.1:50722","http.request.uri":"/v2/kolide/launcher/_trust/tuf/3.root.json","http.request.useragent":"Go-http-client/1.1","kolide/launcher":"gun","level":"info","msg":"404 GET root role","time":"2020-04-22T15:33:12Z"}
server_1 | {"go.version":"go1.14.1","http.request.host":"notary-server","http.request.id":"8b4d82b5-2c71-4fbb-aa90-dcc9e17c1d49","http.request.method":"GET","http.request.remoteaddr":"172.18.0.1:50722","http.request.uri":"/v2/kolide/launcher/_trust/tuf/3.root.json","http.request.useragent":"Go-http-client/1.1","level":"info","msg":"metadata not found: You have requested metadata that does not exist.: No record found","time":"2020-04-22T15:33:12Z"}
server_1 | {"go.version":"go1.14.1","http.request.host":"notary-server","http.request.id":"8b4d82b5-2c71-4fbb-aa90-dcc9e17c1d49","http.request.method":"GET","http.request.remoteaddr":"172.18.0.1:50722","http.request.uri":"/v2/kolide/launcher/_trust/tuf/3.root.json","http.request.useragent":"Go-http-client/1.1","http.response.contenttype":"application/json; charset=utf-8","http.response.duration":"551.28µs","http.response.status":404,"http.response.written":116,"level":"info","msg":"response completed","time":"2020-04-22T15:33:12Z"}
server_1 | {"go.version":"go1.14.1","http.request.host":"notary-server","http.request.id":"cdef1c1b-760d-4ead-8344-b81481b2ac16","http.request.method":"GET","http.request.remoteaddr":"172.18.0.1:50734","http.request.uri":"/v2/kolide/launcher/_trust/tuf/timestamp.json","http.request.useragent":"Go-http-client/1.1","http.response.duration":"847.722µs","http.response.status":200,"http.response.written":495,"level":"info","msg":"response completed","time":"2020-04-22T15:33:12Z"}
launcher v0.11.8 and notary guide setup is:
https://porter.io/github.com/kolide/updater
please support me, thank you allnle
04/22/2020, 2:40 PMerror logging in: POST /api/v1/kolide/login: Post https://<hostname>:443/api/v1/kolide/login: read tcp <src_ip>-><dst_ip>:443: read: connection reset by peer
Does anyone know why that happens?
Thanks!Jose
04/22/2020, 4:07 PMBharadwaj Thirumal
04/23/2020, 2:17 PMErich Stoekl
04/23/2020, 9:20 PMravindrags24
04/24/2020, 9:50 AMsudo /usr/bin/osqueryd Ā --enroll_secret_path=/var/osquery/enroll_secret Ā --tls_server_certs=/var/osquery/kolide.pem Ā --tls_hostname=<http://kolide-test.abc.com|kolide-test.abc.com> Ā --host_identifier=hostname Ā --enroll_tls_endpoint=/api/v1/osquery/enroll Ā --config_plugin=tls Ā --config_tls_endpoint=/api/v1/osquery/config Ā --config_refresh=10 Ā --disable_distributed=false Ā --distributed_plugin=tls Ā --distributed_interval=3 Ā --distributed_tls_max_attempts=3 Ā --distributed_tls_read_endpoint=/api/v1/osquery/distributed/read Ā --distributed_tls_write_endpoint=/api/v1/osquery/distributed/write Ā --logger_plugin=tls Ā --logger_tls_endpoint=/api/v1/osquery/log Ā --logger_tls_period=10
Windows commands.
PS C:\Program Files\osquery> .\manage-osqueryd.ps1 -install --enroll_secret_path=C:\Program Files\osquery\secret.txt --tls_hostname=<http://kolide-test.abc.com|kolide-test.abc.com> --tls_server_certs=\Program Files\osquery\certs\kolide.pem --enroll_tls_endpoint=/api/v1/osquery/enroll --config_plugin=tls --config_tls_endpoint=/api/v1/osquery/config --config_refresh=10 --disable_distributed=false --distributed_plugin=tls --distributed_interval=3 --distributed_tls_max_attempts=3 --distributed_tls_read_endpoint=/api/v1/osquery/distributed/read --distributed_tls_write_endpoint=/api/v1/osquery/distributed/write --logger_plugin=tls --logger_tls_endpoint=/api/v1/osquery/log --logger_tls_period=10
Can some help on this.SeƔn O'Halloran
04/24/2020, 3:25 PMSELECT path FROM mounts LEFT JOIN block_devices ON mounts.device = block_devices.name WHERE block_devices.type="USB"
It correctly added my machine to the label, but after removing the USB it hasnāt updated.
The wording on your website implies that you can use labels to dynamically detect which machines are running vulnerable software:KryptoNyte
04/24/2020, 4:31 PMmyhost:8000/api/v1/kolide/hosts
for exampleKryptoNyte
04/24/2020, 6:36 PMseph
dover:launcher seph$ ./build/package-builder make --hostname=localhost --enroll_secret=secret --insecure --insecure_transport --targets linux-systemd-deb --package_version 1
Built packages in /tmp/launcher-package071939396
dover:launcher seph$ /usr/local/Cellar/binutils/2.33.1/bin/ar -p /tmp/launcher-package071939396/launcher.linux-systemd-deb.deb data.tar.gz | tar tzf - | grep osq
./usr/local/launcher/bin/osqueryd
./usr/local/launcher/bin/osquery-extension.ext
Mojed
04/27/2020, 10:11 AMKryptoNyte
04/27/2020, 2:35 PMKryptoNyte
04/27/2020, 6:25 PM