Blog Entries

02. 04. 2021 Alessandro Valentini NetEye

RPM Package Verification

Why it’s important to use signed packages RPM signing is an often underestimated feature: you use official repositories, why shouldn’t you trust them? Those repositories are also probably protected with TLS encryption, so you feel safe against man-in-the-middle attacks. But you may not be as safe as you think you are. Have you heard about that time when the repository…

Read More
25. 02. 2021 Alessandro Valentini NetEye

How I Became an Elastic Certified Professional, Part II

This post follows the one written some time ago by my colleague Mirko Bez. We became Elasticsearch Certified Professionals after passing both the Engineer exam and Analyst exam. In this post I’d like to tell you about my experience with the Analyst certification. This exam focuses mainly on Kibana, and 99% of the task can be done…

Read More
03. 02. 2021 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.16

We improved the documentation about Icinga2 agent installation including detailed information about supported operating systems and versions. For NetEye 4.16 we updated to version 1.80.3-1 following packages: icingaweb2-module-neteye icingaweb2-module-neteye-autosetup

Read More
22. 10. 2020 Alessandro Valentini NetEye, Unified Monitoring

Kentix MultiSensor-LAN: Integration with NetEye4

Kentix MultiSensor is a device which includes many sensors for use in monitoring server and IT rooms. The sensor only needs to be connected to your network (PoE is required) and to have SNMP configured through its web interface. The LAN version we used in this test monitors: Temperature Humidity Dewpoint Fire (carbon monoxide) Motion…

Read More
05. 10. 2020 Alessandro Valentini Bug Fixes, NetEye

Bugfix for NetEye 4.14

We fixed an issue related to the execution of GLPI automatic actions. For NetEye 4.14 we updated: glpi, glpi-neteye-config and glpi-autosetup to the version 9.5.1_neteye1.9.2-1

Read More
08. 09. 2020 Alessandro Valentini Log-SIEM, NetEye

Sigma Rules in NetEye SIEM

In order to protect your business against cyber attacks you need to both harden your systems and promptly detect suspicious activities in your infrastructure. Sigma is an open source project which defines specifications for a standard signature format that allows you to describe relevant log events for security purposes. The Sigma rules language is intended…

Read More
07. 09. 2020 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.13

With this bugfix release, we fixed a an issue causing tornado to crash when opening more than 1024 files . For NetEye 4.13 we updated: tornado, tornado-autosetup, tornado-common, tornado-neteye-config, tornado-rsyslog-collector-logmanager to version 0.39.6-1

Read More
01. 09. 2020 Alessandro Valentini Icinga Web 2, NetEye

NetPye: how to use a RaspberryPi as NetEye Satellite

This article explains how to set up a NetEye4 satellite using a Raspberry Pi. This is not an official guide and this solution is not officially supported. As test-bed I used a Raspberry Pi 4B with 4GB of ram, 32GB microSD card and NetEye 4.12 single-node installation as master. Master Configuration Add a new zone…

Read More
25. 06. 2020 Alessandro Valentini NetEye

Configuring Fencing on Dell Servers

As a NetEye User I want to handle node failures when they happen in my cluster. When a node becomes unresponsive, it might still be accessing your data: the only way to ensure that a node is truly offline is to shut it down. This procedure is called fencing. NetEye 4 relies on Corosync/Pacemaker, also…

Read More
29. 05. 2020 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.11

We fixed a bug which prevents DRBD and Tornado health checks to run successfully on elasticsearch-only nodes. For NetEye 4.11 we updated: neteye-setup to version 1.45.3-1 tornado and tornado-autosetup to version 0.30.2-1

Read More
26. 05. 2020 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.11

We fixed errors which prevents correct execution of neteye_secure_install during first installation of a NetEye cluster. For NetEye 4.11 we updated: httpd-neteye-config httpd-neteye-config-autosetup to version 1.6.2-1

Read More
16. 04. 2020 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.11

We fixed errors which prevents moving httpd certificates to cluster resource caused by unexpected options in httpd ssl configuration. For NetEye 4.11 we updated: httpd-neteye-config httpd-neteye-config-autosetup httpd-neteye-config-devel to version 1.6.1-1 icingacli icingaweb2-selinux icingaweb2-vendor-Parsedown icingaweb2 icingaweb2-vendor-dompdf icingaweb2-vendor-zf1 icingaweb2-autosetup icingaweb2-vendor-HTMLPurifier php-Icinga icingaweb2-common icingaweb2-vendor-JShrink icingaweb2-devel icingaweb2-vendor-lessphp to version 2.7.3_neteye1.65.1-1 icingaweb2-module-assetmanagement icingaweb2-module-assetmanagement-autosetup to version 1.15.1-1

Read More
26. 03. 2020 Alessandro Valentini NetEye

NetEye Voting-only Node

A common issue in cluster environment is the split brain condition. A split brain occurs when some nodes of the cluster are not able to communicate properly, but instead continue to work like two separate, distinct clusters leading to data or service inconsistency. To prevent this situation a common solution is to introduce the concept…

Read More
20. 03. 2020 Alessandro Valentini Bug Fixes, NetEye

Bug Fixes for NetEye 4.10

Fixed a bug which overrides logstash certificates when neteye_secure_install is executed preventing external beats to connect to logstash. For NetEye 4.10 we updated: elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, elasticsearch-xpack, elasticsearch-xpack-autosetup, kibana, kibana-autosetup, kibana-neteye-config, kibana-xpack, kibana-xpack-autosetup, logstash, logstash-neteye-config, logstash-neteye-config-autosetup, logstash-xpack, logstash-xpack-autosetup to version 7.4.0_neteye2.7.2-1

Read More
14. 01. 2020 Alessandro Valentini Bug Fixes

Bug Fixes for NetEye 4.9

Fixes NetEye deep check error on passive nodes when module logmanagement is installed. For NetEye 4.9 we updated: searchguard-plugin-common, searchguard-plugin-common-autosetup, elasticsearch-plugin-searchguard, elasticsearch-plugin-searchguard-autosetup, kibana-plugin-searchguard,kibana-plugin-searchguard-autosetup to versions 8.4.2-1 icingaweb2-module-logmanager, icingaweb2-module-logmanager-autosetup to version 0.29.1-1

Read More

Archive