-
Notifications
You must be signed in to change notification settings - Fork 685
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Suppress OSSEC alerts asking SecureDrop administrators to upgrade to Xenial #3205
Comments
I can confirm that these alerts are still being sent to at least a couple admins. One such admin received this within the past 24 hours:
|
I confirm receipt of this alert as well |
We've agreed to tackle this as a stretch goal for the 0.8.0 release (i.e. ensuring a robust release is the top priority, but if early QA results are positive, we may attempt a fix). If it doesn't make it, we'll include a note in the release announcement warning admins to ignore this alert. |
In prod/staging VMs one won't get this alert by default. Note that I did see it on hardware - every week. To enable it on VMs in For testing one can just temporarily run the (previously weekly) cronjob more often to get the alert every e.g. 5 minutes:
But since the message in question here isn't being parsed by OSSEC, I don't think adding a local rule will suppress it - instead, the simplest resolution is probably just to take the same approach as in our vagrant VMs: in |
Per the original report in #1530, administrators may under some circumstances receive OSSEC alerts asking them to upgrade their SecureDrop servers to Ubuntu Xenial. Doing so would be a very bad idea as Ubuntu Xenial is not in fact supported yet (see #3204). We should therefore investigate whether administrators are still receiving such alerts under any circumstances.
Tasks:
The text was updated successfully, but these errors were encountered: