Commit Graph

  • f4fea8441c new: initial clang format file Leonardo Di Donato 2019-06-25 14:53:15 +00:00
  • 93537ccaea update: test files should use the naming convention Lorenzo Fontana 2019-06-25 13:41:12 +00:00
  • 4174822617 fix: remove example file from cmake tests Lorenzo Fontana 2019-06-25 12:58:38 +00:00
  • c2ac1d3622 chore: remove typo Lorenzo Fontana 2019-06-25 11:10:31 +00:00
  • adabae4f63 update: build unit tests in travis Lorenzo Fontana 2019-06-25 11:07:04 +00:00
  • 6e92988425 docs: licensing info in test files Lorenzo Fontana 2019-06-25 10:55:21 +00:00
  • 026f6866e3 new: attach tests to main cmake and base test Lorenzo Fontana 2019-06-25 10:34:34 +00:00
  • 18b66330ec new: tests cmake setup Lorenzo Fontana 2019-06-25 10:33:38 +00:00
  • acae9dd9f1 new: cmake modules for catch2 Lorenzo Fontana 2019-06-25 10:32:24 +00:00
  • 68340944b1 new: use sysdig modules to build libscap Lorenzo Fontana 2019-06-21 14:02:55 +00:00
  • 02d5c167ce build: lyaml paths from vars Lorenzo Fontana 2019-06-19 15:44:46 +00:00
  • 29251f2078 build: disable brotli for curl Lorenzo Fontana 2019-06-18 12:46:33 +00:00
  • e1655be243 build: refine cmake rule for grpc and curl Leonardo Di Donato 2019-06-17 14:11:56 +00:00
  • 03310800ed update: ignore lyaml Leonardo Di Donato 2019-06-17 14:10:19 +00:00
  • d158d99800 rule update: add exception for rule change thread namespace kaizhe 2019-06-19 14:43:07 -07:00
  • 1d7c6c3356 update: fields checksum Lorenzo Fontana 2019-06-20 12:04:59 +00:00
  • 147ec6073c fix: SYSDIG_DIR not as an option but as a set Lorenzo Fontana 2019-06-20 06:36:28 +00:00
  • 3f200c52b0 new: SYSDIG_DIR can be passed as cmake option Lorenzo Fontana 2019-06-19 15:47:56 +00:00
  • 88ed98ce81 update to macro kaizhe 2019-06-17 12:35:28 -07:00
  • 18960b01b0 more comment kaizhe 2019-06-17 12:30:26 -07:00
  • 5beddf5320 rule update: add back trusted_containers list for backport compatibility kaizhe 2019-06-17 12:12:09 -07:00
  • 2198147c35 docs: remove extra words Naoki Oketani 2019-06-15 00:04:32 +09:00
  • cfaa52f522 rule update: Kaizhe Huang 2019-06-12 11:04:13 -07:00
  • 75b816d806 Merge remote-tracking branch 'origin/dev' 0.15.3 Mark Stemm 2019-06-12 13:37:56 -07:00
  • 4561c8b22e Prepare for 0.15.3 Mark Stemm 2019-06-12 13:29:56 -07:00
  • 194a017d8f Merge remote-tracking branch 'origin/dev' 0.15.2 Mark Stemm 2019-06-12 09:14:36 -07:00
  • 62f5bf26d6 Prepare for 0.15.2 Mark Stemm 2019-06-12 08:58:39 -07:00
  • 4b126fbc4d new: improve docs for new contributors Lorenzo Fontana 2019-06-11 23:22:21 +00:00
  • cbe296cd75 docs: more on labels Leonardo Di Donato 2019-06-11 15:32:07 -07:00
  • cf1484c14d docs: explaining issue triaging Leonardo Di Donato 2019-06-11 15:12:22 -07:00
  • 56324d094c Update tests for new granular image lists Mark Stemm 2019-06-06 16:52:11 -07:00
  • 097e3b4769 Start using falco_ prefix for default lists/macros Mark Stemm 2019-06-10 16:20:15 -07:00
  • 5d0bccbbfb Define always_true/never_true macros for k8s evts Mark Stemm 2019-04-10 19:07:04 -07:00
  • e8c08b9a77 Clean up privileged/sens mount container rules Mark Stemm 2019-04-10 14:16:56 -07:00
  • be9c6b4ccc new: initial owners files for Falco Lorenzo Fontana 2019-06-11 01:36:31 +00:00
  • b608471e2b docs: improvements to the contributing guidelines Leo Di Donato 2019-06-07 01:31:29 +02:00
  • 22fa1265ac docs: pull request template improvements Leo Di Donato 2019-06-07 01:30:13 +02:00
  • 835b14e0c3 new: pull request template Lorenzo Fontana 2019-06-06 23:00:03 +00:00
  • 3e9fa3abb2 update: remove old cla templates Lorenzo Fontana 2019-06-06 22:59:54 +00:00
  • 187f46afff new: contributing template Lorenzo Fontana 2019-06-06 22:58:30 +00:00
  • 9956cb9762 new: add system info to the list of requirements Lorenzo Fontana 2019-06-06 22:14:08 +00:00
  • c329d5a514 docs: issue templates Lorenzo Fontana 2019-06-04 02:29:08 +00:00
  • ff376d312b Merge remote-tracking branch 'origin/dev' 0.15.1 Mark Stemm 2019-06-07 15:15:48 -07:00
  • 205ce3c517 Fix typo in changelog Mark Stemm 2019-06-07 15:12:17 -07:00
  • 807c00b827 Merge remote-tracking branch 'origin/dev' Mark Stemm 2019-06-07 15:09:50 -07:00
  • 1c95644d17 Update docs for 0.15.1 Mark Stemm 2019-06-07 15:03:57 -07:00
  • 780129fa1b add exception for coreos/pod-checkpointer Kaizhe Huang 2019-06-07 12:20:10 -07:00
  • 3026f3946e rule update: improve rancher macro Kaizhe Huang 2019-06-06 16:38:52 -07:00
  • cd32cceff8 rule update: update image check from rancher_write_conf macro (#648) Kaizhe Huang 2019-06-05 22:08:11 -07:00
  • 68211daffa Rule updates 2019 05.v3 (#637) Kaizhe Huang 2019-06-05 15:38:45 -07:00
  • 43bfaecff5 Better tracking of rule counts per ruleset (#645) Mark Stemm 2019-06-05 13:44:50 -07:00
  • de8b92fa05 Add rules for running with IBM Cloud Kubernetes Service (#634) Spencer Krum 2019-06-05 13:30:58 -05:00
  • 24b4d83eec Allow Ansible to run using Python 3 (#625) Chris Northwood 2019-06-05 19:28:49 +01:00
  • 7a56f1c2d9 fix egrep rule and ncat rule (#617) Dario Martins Silva 2019-06-05 14:26:22 -04:00
  • e91bc497ac Add Sematext Monitoring & Logging agents to trusted k8s containers (#594) Stefan Thies 2019-06-05 20:23:29 +02:00
  • ffc3da3873 Use driver includes from binary dir (#646) Mark Stemm 2019-06-05 10:53:51 -07:00
  • f23e956a8d docs: minor language edits Radhika Puthiyetath 2019-05-31 14:43:51 -07:00
  • 2c8c381dae update documentation link Matthew Farrellee 2019-05-16 06:34:28 -04:00
  • 969374fcc7 Handle rule patterns that are invalid regexes (#636) Mark Stemm 2019-05-31 13:30:55 -07:00
  • 732d530202 Markdown formatting Fred Moyer 2019-05-29 22:03:48 -07:00
  • 21ba0eeb11 Set dropping mode after open so it is effective (#635) Mark Stemm 2019-05-30 18:31:31 -07:00
  • 7a25405ed5 rules update: add create symlinks over sensitive file and directories Kaizhe Huang 2019-05-28 17:16:26 -07:00
  • ddd7e5b93f rule update: add exception for write below etc (etcd-manager updating dns) Kaizhe Huang 2019-05-17 17:45:00 -07:00
  • 45241e74c8 falco-CLA-1.0-signed-off-by: Nataly Sheinin <sheininn@gmail.com> (#593) Nataly 2019-05-30 00:17:14 +02:00
  • 12d0f4589e fix travis ci badges Carlos Panato 2019-05-22 14:52:12 +02:00
  • 8bd98c16e9 chore(examples/k8s_audit_config): shebang + prevent globbing and word splitting Leonardo Di Donato 2019-05-24 15:59:47 +02:00
  • 93d5164efe Update ToC for examples/k8s_audit_config/README.md toc-me[bot] 2019-05-24 13:56:07 +00:00
  • c844b5632f docs(examples/k8s_audit_config): toc Leonardo Di Donato 2019-05-24 15:55:48 +02:00
  • 537e4b7e8d chore(examples/k8s_audit_config): shebang + prevent globbing and word splitting Leonardo Di Donato 2019-05-24 12:46:32 +02:00
  • f3e4d7cce0 docs(examples): k8s audit config Leo Di Donato 2019-05-24 12:13:36 +02:00
  • f2adedec2f Also include ResponseStarted Mark Stemm 2019-05-21 12:03:37 +02:00
  • 35a8392e6f Fix typo. Mark Stemm 2019-05-21 12:03:29 +02:00
  • 78b9bd6e98 Also support a mix of dynamic + static log Mark Stemm 2019-05-15 14:48:50 -07:00
  • 6a6342adc6 Add instructions for k8s audit support in >= 1.13 Mark Stemm 2019-05-15 11:56:19 -07:00
  • bd0ca4f5a7 docs: add lorenzo and leonardo as maintainers Lorenzo Fontana 2019-05-24 14:45:37 +00:00
  • 3306941cce rule update: add launch remote file copy tool in container (#600) Kaizhe Huang 2019-05-15 16:53:10 -07:00
  • f561f41065 docs: changelog missing cri-o container metadata caching (#603) Leo Di Donato 2019-05-14 03:17:21 +02:00
  • db419459aa Merge remote-tracking branch 'origin/dev' 0.15.0 Mark Stemm 2019-05-13 13:45:34 -07:00
  • 50a19207ab Prepare CHANGELOG/README for 0.15.0 (#602) Mark Stemm 2019-05-13 13:44:06 -07:00
  • 36a095ccb3 Merge remote-tracking branch 'origin/dev' Mark Stemm 2019-05-13 13:43:10 -07:00
  • ff5d000736 CRI flag (#599) Leo Di Donato 2019-05-13 21:45:49 +02:00
  • 52329f83b2 Fix security issues reported by GitHub on Anchore integration (#592) Néstor Salceda 2019-05-13 19:59:26 +02:00
  • 5736ed6ba6 Add ash to the list of shell binaries (#597) Lorenzo Fontana 2019-05-12 23:45:38 +02:00
  • f365056b89 Add ash to the list of shell binaries Mehran Kholdi 2019-05-12 20:10:25 +04:30
  • 9a5efd6073 add cri to long_options, fix typo (#591) Michael Ducy 2019-05-01 16:59:34 -07:00
  • 010083538f Rule updates 2019 05.v1 (#590) Mark Stemm 2019-05-01 10:40:12 -07:00
  • 772d4f9515 Update engine fields checksum for fd.dev.* (#589) Mark Stemm 2019-04-30 12:46:25 -07:00
  • 0e1c436d14 Add jenkins checks (#584) Mark Stemm 2019-04-26 12:24:15 -07:00
  • 6572423544 Add containerd related flags (#585) Spencer Krum 2019-04-26 10:31:28 -05:00
  • 05bb4a84ca Fix errors when building via docker from MacOS (#582) Michael Ducy 2019-04-17 04:14:16 -07:00
  • acb582af15 fix regression that broke json output (#581) Michael Ducy 2019-04-16 13:26:21 -07:00
  • 0e31ae5bad Rules changes 2019 04.v6 (#580) Mark Stemm 2019-04-12 11:40:52 -07:00
  • 23d5e5a968 Rule updates 2019 04.v4 mitre persistence (#578) Kaizhe Huang 2019-04-11 22:22:34 -07:00
  • afa1e02c57 Rule updates 2019 04.v5 (#579) Mark Stemm 2019-04-11 21:00:55 -07:00
  • d83342aa2f rule update: add MITRE tags for rules (#575) Kaizhe Huang 2019-04-10 22:48:51 -07:00
  • e26a9505d6 Change log timestamp to ISO8601 w/ timezone (#518) Mark Stemm 2019-04-09 09:41:00 -07:00
  • da6b0f16f1 Rule updates 2019 04.v2 (#573) Mark Stemm 2019-04-05 11:27:37 -07:00
  • b81ded44f3 rule update: exclude openshift-sdn from thread namespace change rule (#572) Kaizhe Huang 2019-04-02 22:34:42 -07:00
  • e5a1ddb918 Include addl info to syscall event drop alerts (#571) Mark Stemm 2019-04-02 16:43:18 -07:00
  • 19327e0e85 Skip incomplete container info for container start (#570) Mark Stemm 2019-04-02 15:12:31 -07:00