Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Compatibility with Splunk 9.x #1363

Closed
4 tasks done
gdiazlo opened this issue Sep 14, 2022 · 4 comments
Closed
4 tasks done

Compatibility with Splunk 9.x #1363

gdiazlo opened this issue Sep 14, 2022 · 4 comments
Assignees
Labels
type/enhancement Enhancement issue

Comments

@gdiazlo
Copy link
Member

gdiazlo commented Sep 14, 2022

Description

There is a new Splunk version released in the summer of 2022, Splunk 9. Currently, our application only supports 8.x versions. We will evaluate if we can support Splunk 9.x.

For that, we need to:

  • Review Splunk's latest stable changelog.
  • Identify improvements and potential impact on the UI.
  • Develop a testing environment to verify our components would work under this new build.
  • Execute a regression test to detect additional problems.

Splunk 9.0 Release Notes

Related issues:

Issues

@gdiazlo gdiazlo added the type/enhancement Enhancement issue label Sep 14, 2022
@AlexRuiz7 AlexRuiz7 changed the title Support splunk 9.X Support Splunk 9.x Sep 14, 2022
@yenienserrano yenienserrano self-assigned this Oct 26, 2022
@AlexRuiz7 AlexRuiz7 changed the title Support Splunk 9.x Compatibility with Splunk 9.x Oct 27, 2022
@yenienserrano
Copy link
Member

The tests with the installation of Wazuh 4.3.9, it can be said that the app works correctly, I found an error that happens in previous versions of Splunk but does not break the application.

@yenienserrano
Copy link
Member

I share evidence of wazuh working in Splunk 9.0.1:

Screenshots:

Overview

image

Security events

image

FIM

without information
image

with information
image

Vulnerabilities

image

HIPAA

image

Management

image

Rules

image

Agents

image

Overview agent

image

Dev tools

image

Security

image

configuration/API

image

@Mayons95
Copy link

I connected a new agent for ubuntu 22.04, and also I enabled all the modules on the ossec.config file to check if all the Wazuh modules are working as expected.

Screencast.from.31-10-22.14.47.40.webm
Screencast.from.31-10-22.14.48.26.webm
Screencast.from.31-10-22.14.50.40.webm
Screencast.from.31-10-22.14.51.58.webm
Screencast.from.31-10-22.14.53.48.webm

@AlexRuiz7
Copy link
Member

All checks have passed

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type/enhancement Enhancement issue
Projects
None yet
Development

No branches or pull requests

4 participants