Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Refactor FIM dashboard #6178

Closed
6 of 7 tasks
Tracked by #6133
chantal-kelm opened this issue Nov 29, 2023 · 3 comments
Closed
6 of 7 tasks
Tracked by #6133

Refactor FIM dashboard #6178

chantal-kelm opened this issue Nov 29, 2023 · 3 comments
Assignees
Labels
level/task Task issue type/enhancement Enhancement issue

Comments

@chantal-kelm
Copy link
Member

chantal-kelm commented Nov 29, 2023

Description

We want to refactor the FIM dashboard by removing all traces of angular, and implementing a new way of displaying dashboards using embeddable, which for the time being we only use in the new vulnerability dashboard.

Tasks

The steps that have to be complete to close the issue.

  • Researching the FIM module
  • Analysing, learning about and becoming familiar with embeddables
  • Implement logic with embeddables for the FIM dashboard
  • Apply logic to display the corresponding dashboard taking into account whether or not the user has a pinned agent
  • Developing logic for new index #6210
  • Analysing components to be adapted to be reusable for use in FIM
  • FIM module - Index not found message #6325

Additional information

Add here any additional information relevant to the issue or that will help to close it: chunks of code, logs, additional error messages, related issues and so on.

@chantal-kelm chantal-kelm added type/enhancement Enhancement issue level/task Task issue labels Nov 29, 2023
@chantal-kelm chantal-kelm self-assigned this Nov 29, 2023
@wazuhci wazuhci moved this to In progress in Release 4.9.0 Nov 29, 2023
@wazuhci wazuhci moved this from In progress to On hold in Release 4.9.0 Nov 30, 2023
@wazuhci wazuhci moved this from On hold to In progress in Release 4.9.0 Dec 1, 2023
@chantal-kelm chantal-kelm linked a pull request Dec 15, 2023 that will close this issue
6 tasks
@chantal-kelm
Copy link
Member Author

I am currently investigating the FIM module as agreed during the sync with @gdiazlo and @asteriscos in order to find out its use cases and improve its dashboards.

@chantal-kelm
Copy link
Member Author

chantal-kelm commented Dec 22, 2023

Use cases

The Wazuh FIM module monitors directories to detect file changes, additions and deletions. This module is useful for monitoring important files on endpoints. You can use the FIM module for several purposes such as change management processes, regulatory compliance, and detecting cyberattacks. Below are examples of some use cases of the Wazuh FIM module.

Detecting malware persistence technique
Detecting account manipulation
Monitoring files at specific intervals
Reporting file changes
Monitoring configuration changes

How to best use existing use cases to create user-friendly dashboards?

Research is ongoing

@wazuhci wazuhci moved this from In progress to On hold in Release 4.9.0 Feb 9, 2024
@asteriscos
Copy link
Member

This change has been postponed.

@asteriscos asteriscos closed this as not planned Won't fix, can't repro, duplicate, stale Apr 25, 2024
@wazuhci wazuhci moved this from On hold to Done in Release 4.9.0 Apr 25, 2024
@wazuhci wazuhci removed this from Release 4.9.0 Jul 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
level/task Task issue type/enhancement Enhancement issue
Projects
None yet
Development

No branches or pull requests

2 participants