Commit Graph

  • dc03dbee18 fix(build): draios debug flags before checking build type Leonardo Di Donato 2019-07-23 01:04:03 +00:00
  • 8156c9214c fix(docker/tester): regression tests' scripts need xargs (findutils) Leonardo Di Donato 2019-07-19 10:12:34 +00:00
  • d11ad9a005 fix(docker/tester): switch to fedora 28 and avocado 69 Leonardo Di Donato 2019-07-19 09:20:54 +00:00
  • c71703b566 update(test): better handling of build type Leonardo Di Donato 2019-07-18 15:26:04 +00:00
  • 8400066ac8 update(test): ignore for generated traces Leonardo Di Donato 2019-07-18 15:17:18 +00:00
  • f18fc46a1c build: update cpack variables Leonardo Di Donato 2019-07-18 15:16:37 +00:00
  • e598606505 build: force falco version to always start with a digit Leonardo Di Donato 2019-07-18 11:02:35 +00:00
  • 7b2b0b14a5 chore(docker): falco-builder docker image refinements Leonardo Di Donato 2019-07-18 10:47:39 +00:00
  • e422337ed7 fix(hack): strip ^M from current falco version and call test command of falco-tester Leonardo Di Donato 2019-07-18 10:47:09 +00:00
  • c4cd9e326a docs(docker): usage and labels for falco-tester docker image Leonardo Di Donato 2019-07-18 10:46:24 +00:00
  • 533e8247fd fix(docker/local): make falco version build argument mandatory Leonardo Di Donato 2019-07-18 10:24:44 +00:00
  • 736aa92b5e chore: remove travis notifications Leonardo Di Donato 2019-07-18 10:23:56 +00:00
  • 3e1ab78536 build: set sysdig directory to its realpath Leonardo Di Donato 2019-07-17 18:12:34 +00:00
  • 38cf3c6f29 fix(docker): falco builder does not need docker Leonardo Di Donato 2019-07-17 17:04:01 +00:00
  • 50f04897e5 update(docker): falco tester image Leonardo Di Donato 2019-07-17 17:02:13 +00:00
  • 62be14dde6 new(docker): default usage command for falco tester image Leonardo Di Donato 2019-07-17 17:01:42 +00:00
  • c5e296576d update(docker): falco tester entrypoint performs checks in order to be more robust Leonardo Di Donato 2019-07-17 17:00:42 +00:00
  • a5b063f5fa update: detect current falco version during travis testing Leonardo Di Donato 2019-07-17 16:59:44 +00:00
  • c61c0e7020 build: always check the BUILD_TYPE within the entrypoint Leonardo Di Donato 2019-07-17 15:33:36 +02:00
  • ebcb133f00 build: docker builder's BUILD_TYPE variable is "release" by default, otherwise it can only be "debug" Leonardo Di Donato 2019-07-17 15:19:33 +02:00
  • 88503a1ea9 build: CMAKE_BUILD_TYPE is "release" by default, otherwise it can only be "debug" Leonardo Di Donato 2019-07-17 15:19:08 +02:00
  • e1c2cac9c9 fix(travis): source directory Leonardo Di Donato 2019-07-17 15:17:57 +02:00
  • 44f0633f47 update: falco builder image has FALCO_VERSION build arg and env var again Leonardo Di Donato 2019-07-16 16:58:23 +02:00
  • 9d4ed8e33e build: falco version from git when cmake variable exists but empty Leonardo Di Donato 2019-07-16 16:57:43 +02:00
  • 0d4fc4bdad update: falco version from cmake variable Leonardo Di Donato 2019-07-16 16:13:22 +02:00
  • 85a94d67d3 build: falco version from git index when not defined Leonardo Di Donato 2019-07-16 16:12:58 +02:00
  • f3c3cda879 new: cmake modules for git revision description Leonardo Di Donato 2019-07-16 16:12:16 +02:00
  • e02318db7c update: centos 7 falco builder Leonardo Di Donato 2019-07-15 21:35:38 +02:00
  • 9f7e3bdfcd update: usage examples for falco builder Leonardo Di Donato 2019-07-15 21:35:10 +02:00
  • 2cda10caeb new: default (usage) command for falco builder image Leonardo Di Donato 2019-07-15 20:54:41 +02:00
  • 7efec602e8 new: script to enable toolset 7 in falco builder containers Leonardo Di Donato 2019-07-15 20:54:23 +02:00
  • 8fb4c7f2f6 update: entrypoint checks for sysdig and falco dirs Leonardo Di Donato 2019-07-15 20:53:58 +02:00
  • 6e313742e7 build: attempt to be consistent when downloading things Leonardo Di Donato 2019-07-15 19:46:22 +02:00
  • e92a721521 build: install cmake at docker build phase rather than at runtime Leonardo Di Donato 2019-07-11 10:44:33 +02:00
  • d5aae4aff5 update: make travis use the hack script Leonardo Di Donato 2019-07-11 10:43:07 +02:00
  • 2aff2d00a3 update: move build and test commands into a separate script Leonardo Di Donato 2019-07-11 10:35:47 +02:00
  • d7956a2a09 add docker.io/prom/node-exporter to falco_sensitive_mount_images ntimo 2019-07-23 20:17:49 +02:00
  • 9308c1ee55 add docker.io/google/cadvisor to falco_sensitive_mount_images ntimo 2019-07-23 20:16:22 +02:00
  • 40e3e21391 Allow all lowercase priorities Mark Stemm 2019-07-23 18:40:11 -07:00
  • d6c089c917 add netdata/netdata to falco_sensitive_mount_images kaizhe 2019-07-22 17:35:02 -07:00
  • 9ab718c100 rules update: kaizhe 2019-07-22 16:19:18 -07:00
  • 4b2ea32eac fix: do the inspector after forking for daemon mode Lorenzo Fontana 2019-07-18 22:43:17 +00:00
  • 5acdb16e89 Fix shell_procs macro Spencer Krum 2019-07-17 19:16:40 -05:00
  • 670736d87e Merge remote-tracking branch 'origin/dev' 0.16.0 backup-master Leonardo Di Donato 2019-07-16 16:20:08 +00:00
  • a084f8c4ed CHANGELOG/README changes for 0.16.0 Mark Stemm 2019-07-12 10:41:37 -07:00
  • 126085dc4f Test for escaping regex chars in rule names Mark Stemm 2019-07-09 12:47:31 -07:00
  • f0299065d8 Escape regex chars in rule names Mark Stemm 2019-07-09 12:44:10 -07:00
  • 01f65e3bae Add new tests for validating rules files Mark Stemm 2019-07-05 15:42:52 -07:00
  • 1711ed0a2e Pass back explicit errors in load_rules() Mark Stemm 2019-07-05 15:42:03 -07:00
  • 839d76a760 Send validate output to stdout Mark Stemm 2019-07-05 15:37:22 -07:00
  • dc7bff127f New flags to compare stdout/stderr, validate rules Mark Stemm 2019-07-05 15:33:56 -07:00
  • e80ff6296a new: luacheck basic config Leonardo Di Donato 2019-07-10 14:08:39 +00:00
  • 231f881c5a update: ignore luacheck cache Leonardo Di Donato 2019-07-10 14:08:26 +00:00
  • cb5a3a14e6 new: k8s.gcr.io/kube-proxy addition to falco trusted images Leonardo Di Donato 2019-07-10 13:40:47 +00:00
  • 4c68da0dcc new: YAML lint configuration Leonardo Di Donato 2019-07-09 13:25:29 +00:00
  • a32870ae1d Add runc to the list of possible container entrypoint parents Docker versions >= 18.09 removed the "docker-" prefix, so include runc in the list. Mattia Pagnozzi 2019-07-09 10:59:59 +02:00
  • fdbd520cce fix: bump falco engine version Leonardo Di Donato 2019-07-08 16:57:10 +00:00
  • f20a5a04bf new: cmake format file Leonardo Di Donato 2019-07-03 13:34:01 +00:00
  • affb1086a3 update: fields checksum while adding ka.useragent Lorenzo Fontana 2019-07-08 13:05:52 +00:00
  • 8155d467ab update: ka.useragent in k8s audit fields Lorenzo Fontana 2019-07-08 12:52:57 +00:00
  • bf19d8c881 chore: format json_evt in preparation to add fields Lorenzo Fontana 2019-07-08 12:52:36 +00:00
  • ff75db9477 Get all tests working add-context-to-rules-errors Mark Stemm 2019-07-05 12:11:00 -07:00
  • 3b49a0a85f Get rid of error()s when compiling filters Mark Stemm 2019-07-03 17:37:46 -07:00
  • fc5858a3d6 Really fix expected output Mark Stemm 2019-07-03 17:36:31 -07:00
  • 23e28e32c2 Don't add newline to error Mark Stemm 2019-07-03 17:14:36 -07:00
  • 2fef3f3dd5 Fix test expected output Mark Stemm 2019-07-03 17:14:15 -07:00
  • 4a0bb56586 Fix final error direct from load_rules Mark Stemm 2019-07-03 15:15:49 -07:00
  • b710217181 More invalid rules tests Mark Stemm 2019-07-03 13:59:58 -07:00
  • 01b3a0aa95 Only print a single context line Mark Stemm 2019-07-03 13:53:45 -07:00
  • eb7433f838 Add additional invalid rules tests Mark Stemm 2019-07-03 13:52:56 -07:00
  • ffc9ac56d4 New tests for error context Mark Stemm 2019-07-02 17:38:03 -07:00
  • 74e2833cd7 WIP on better error contexts Mark Stemm 2019-07-02 17:32:54 -07:00
  • d1a6666742 New flags to compare stdout/stderr, validate rules Mark Stemm 2019-07-02 17:44:34 -07:00
  • 4830f6991c Add context to yaml parse errors Mark Stemm 2019-06-14 14:34:50 -07:00
  • 7501c3cb5d Expand lists without using regsub Mark Stemm 2019-06-28 17:11:39 -07:00
  • 52a44c171c Look up priorities using a table Mark Stemm 2019-06-28 17:10:42 -07:00
  • 0e4f2ec17c Skip unnecessary string cleanups Mark Stemm 2019-06-27 16:59:16 -07:00
  • 047f12d0f6 More efficient searches for defined filters Mark Stemm 2019-06-27 16:38:09 -07:00
  • c1035ce4de Make field index information public Mark Stemm 2019-06-27 16:18:51 -07:00
  • 19c12042f4 update: sysdig dir gate in subdirectories Lorenzo Fontana 2019-07-03 10:05:45 +00:00
  • e688ab7d0a chore: remove find catch from cmake files Lorenzo Fontana 2019-07-02 16:19:22 +00:00
  • b2ef08fd30 chore: clang format following the current style Lorenzo Fontana 2019-07-02 16:36:20 +00:00
  • 5fdf658d0e fix(userspace): correct include directories Leonardo Di Donato 2019-07-02 11:34:26 +00:00
  • 08454dfa53 new: test token bucket declaration triggers the default init Leonardo Di Donato 2019-07-02 11:32:58 +00:00
  • 9bc28951ad update: revert formatting Lorenzo Fontana 2019-07-01 10:11:27 +00:00
  • 583be9ce22 udpate: catch2 tests config Leonardo Di Donato 2019-06-27 10:55:50 +00:00
  • 71b2fe6e14 update: token bucket tests Leonardo Di Donato 2019-06-27 10:35:17 +00:00
  • a09f71b457 new: dependency inject the timer for token bucket Leonardo Di Donato 2019-06-27 10:34:47 +00:00
  • 1a0cf69b03 chore: cmakes formatting Leonardo Di Donato 2019-06-27 10:33:50 +00:00
  • 3a1c0ea916 build: download fakeit mocking library (cmake) Leonardo Di Donato 2019-06-27 10:33:15 +00:00
  • fcc587e806 new: cmake format config file Leonardo Di Donato 2019-06-27 10:32:22 +00:00
  • 815f5d8714 new: test token bucket Leonardo Di Donato 2019-06-26 12:52:31 +00:00
  • 11838548df build: includes for tests Leonardo Di Donato 2019-06-25 16:17:56 +00:00
  • 8a745b73a3 build: use sysdig directory variable for userspace engine build Leonardo Di Donato 2019-06-25 16:16:52 +00:00
  • fade424120 update(.github): PR template Leo Di Donato 2019-07-01 12:37:03 +02:00
  • 48f2b1d08a fix(.github): kind/rule-* rather thant kind/rule/* Leo Di Donato 2019-07-01 12:10:24 +02:00
  • 16bd8919ab rule update: fix syntax error kaizhe 2019-06-29 06:55:17 +08:00
  • 6ce17d6fcb add rfc_1918_address macro kaizhe 2019-06-21 15:49:02 -07:00
  • c12052e03d add openshift image to whitelist kaizhe 2019-06-21 10:41:56 -07:00
  • 8ed33a04fd rule update: add placeholder for rules write below root/etc kaizhe 2019-06-21 10:34:51 -07:00