Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Hashr integration #25

Open
wajihyassine opened this issue Jul 14, 2023 · 1 comment
Open

Hashr integration #25

wajihyassine opened this issue Jul 14, 2023 · 1 comment
Assignees
Labels
enhancement New feature or request

Comments

@wajihyassine
Copy link
Member

Name and Version

charts/osdfir-infrastructure

What is the problem this feature will solve?

Adding Hashr functionality into OSDFIR Infrastructure to build hash sets off processed data

What is the feature you are proposing to solve the problem?

Integrating Hashr into OSDFIR Infrastructure. This can be either directly in the Timesketch chart then would need to update the Timesketch config or within the OSDFIR Infrastructure to use as standalone.

What alternatives have you considered?

No response

@wajihyassine wajihyassine added the enhancement New feature or request label Jul 14, 2023
@wajihyassine wajihyassine added the help wanted Extra attention is needed label Sep 20, 2023
@wajihyassine wajihyassine removed the help wanted Extra attention is needed label Oct 26, 2023
@jkppr jkppr mentioned this issue Apr 23, 2024
3 tasks
@jkppr
Copy link
Collaborator

jkppr commented Apr 24, 2024

PR #140 adds the HashR importers for GCP, targz, rpm, zip, iso9660, deb

The importers for GCR, AWS, Windows and WSUS are still missing. They need a bit different configuration and some testing before they can be added.

Next step:

  • Add missing importers
  • Add the OSDFIR / Timesketch integration
  • Consider using GCP workload identity which is the recommended method. That way no need to export keys and can use the init-gke.sh script to bootstrap the service account.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants