https://github.com/osquery/osquery logo
Title
j

jby

11/04/2021, 9:34 AM
Is go a run-time requirement for using orbit, or is it just a build-time requirement?
c

Chad

11/04/2021, 9:43 AM
Just a buildtime requirement
j

jby

11/04/2021, 9:43 AM
Ok, thanks
👍 1
j

Jason

11/04/2021, 9:44 AM
is Orbit now considered production-ready? Now that it's rolled into the fleetdm repo, I'm unclear on the status of this portion of the project
j

jby

11/04/2021, 9:45 AM
It seems to work as advertised so far
c

Chad

11/04/2021, 9:47 AM
I don't think it is production-ready yet. At least I haven't seen it announced, and I think there are still some issues with dir permissions while building thats causing it to fail for some people. But this is pure speculation and will need one of the fleet guys to answer
j

jby

11/04/2021, 12:17 PM
It would seem that there’s a problem with the rpm on Fedora 34 - and sadly no logs, just this:
Nov 04 13:16:53 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:16:54 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:16:54 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:16:55 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:16:55 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:16:57 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:16:57 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:16:58 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:16:58 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:16:59 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:16:59 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:17:00 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:17:00 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:17:02 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:17:02 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:17:03 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:17:03 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
Nov 04 13:17:04 LIN5W2V3Z2.trioptima.local systemd[1]: Stopped Orbit osquery.
Nov 04 13:17:04 LIN5W2V3Z2.trioptima.local systemd[1]: Started Orbit osquery.
But, as usual, it was SELinux…
😆 1