diff --git a/accuknox-files/v0.2.13/opt/accuknox-feeder-service/conf/app.yaml b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/conf/app.yaml new file mode 100644 index 0000000..d4150c4 --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/conf/app.yaml @@ -0,0 +1,11 @@ +config: + application: + name: accuknox-feeder-service + + logging: + level: INFO + + data-protection: + publisher: + socket-type: tcp + address: localhost:5555 diff --git a/accuknox-files/v0.2.13/opt/accuknox-feeder-service/feeder b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/feeder new file mode 100755 index 0000000..5226480 Binary files /dev/null and b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/feeder differ diff --git a/accuknox-files/v0.2.13/opt/accuknox-feeder-service/kmux-config.yaml b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/kmux-config.yaml new file mode 100644 index 0000000..a6e7cfb --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-feeder-service/kmux-config.yaml @@ -0,0 +1,6 @@ +kmux: + sink: + stream: knox-gateway + +knox-gateway: + server: "knox-gw.dev.accuknox.com:3000" diff --git a/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/conf/application.yaml b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/conf/application.yaml new file mode 100644 index 0000000..3ff27d5 --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/conf/application.yaml @@ -0,0 +1,41 @@ +# Server configurations +server: + port: :6060 + basepath: /pea + +# Application specific configurations +application: + name: policy-enf-agent + +spire: + enable: true + #agent: agents-operator.accuknox-agent.svc.cluster.local:9091 + agent: "unix:///var/run/spire/agent.sock" + +#this endpoint is to call fetch policy API +endpoint: + urlendpoint: /pps/api/v1/policy-provider/fetch-policy + #baseurlendpoint: https://localhost:2882 + baseurlendpoint: https://pps.stage.accuknox.com + #urllocal: /pps/api/v1/policy-provider/fetch-policy + #baselocal: https://localhost:2882 + +#this endpoint is to call change status API +statusendpoint: + #endpoint: https://localhost:2882/pps/api/v1/policy-provider/change-status-policy + endpoint: https://pps.stage.accuknox.com/pps/api/v1/policy-provider/change-status-policy + +#sync time for gocron +syncuptime: + t: 5 + +#annotations endpoint +annotation: + statusendpoint: /pps/api/v1/policy-provider/update-annotation-status + annotationendpoint: /pps/api/v1/policy-provider/fetch-annotations + #basepath: https://localhost:2882 + basepath: https://pps.stage.accuknox.com + +non-k8s: + enable: true + policy-server-port: 32770 diff --git a/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/kmux-config.yaml b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/kmux-config.yaml new file mode 100644 index 0000000..e611166 --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/kmux-config.yaml @@ -0,0 +1,7 @@ +kmux: + sink: + stream: knox-gateway + +knox-gateway: + # dev + server: "knox-gw.stage.accuknox.com:3000" diff --git a/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/pea b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/pea new file mode 100755 index 0000000..e290fed Binary files /dev/null and b/accuknox-files/v0.2.13/opt/accuknox-policy-enforcement-agent/pea differ diff --git a/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/conf/app.yaml b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/conf/app.yaml new file mode 100644 index 0000000..628b82b --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/conf/app.yaml @@ -0,0 +1,28 @@ +sis: +# node-details-endpoint: http://localhost:8080/sis/api/v1/sis/node-details + +# pod-details-endpoint: http://localhost:8080/sis/api/v1/sis/pod-details + +# namespace-details-endpoint: http://localhost:8080/sis/api/v1/sis/namespace-details + + entity-endpoint: https://api.stage.accuknox.com/sis/api/v1/sis/entity + local-endpoint: http://localhost:8080/sis/api/v1/sis/entity + +cms: + cms-endpoint: /cm/api/v1/cluster-management/retrieve-pods-and-its-nodes + base-url: https://api-stage.accuknox.com + cms-endpoint2: /cm/api/v1/cluster-management/retrieve-node-list + +kmux-topic: shared-event +kmux-topic-prefix: persistent://accuknox/cluster-entity/ +heartbeat: + interval: 5m +spire: + enable: false + agent: spire-agent.spire.svc.cluster.local:9091 +k8s: + enable: false + +psa: + violation-topic: persistent://accuknox/datapipeline/admissionevents + audit-webhook-port: 8080 diff --git a/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/kmux-config.yaml b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/kmux-config.yaml new file mode 100644 index 0000000..e611166 --- /dev/null +++ b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/kmux-config.yaml @@ -0,0 +1,7 @@ +kmux: + sink: + stream: knox-gateway + +knox-gateway: + # dev + server: "knox-gw.stage.accuknox.com:3000" diff --git a/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/sia b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/sia new file mode 100755 index 0000000..8a5d1e4 Binary files /dev/null and b/accuknox-files/v0.2.13/opt/accuknox-shared-informer-agent/sia differ diff --git a/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-policy-enforcement-agent.service b/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-policy-enforcement-agent.service new file mode 100644 index 0000000..838ad67 --- /dev/null +++ b/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-policy-enforcement-agent.service @@ -0,0 +1,11 @@ +[Unit] +Description=Policy-Enforcement-Agent + +[Service] +User=root +KillMode=process +WorkingDirectory=/opt/accuknox-policy-enforcement-agent/ +ExecStart=/opt/accuknox-policy-enforcement-agent/pea + +[Install] +WantedBy=multi-user.target diff --git a/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-shared-informer-agent.service b/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-shared-informer-agent.service new file mode 100644 index 0000000..da22794 --- /dev/null +++ b/accuknox-files/v0.2.13/usr/lib/systemd/system/accuknox-shared-informer-agent.service @@ -0,0 +1,11 @@ +[Unit] +Description=Shared-Informer + +[Service] +User=root +KillMode=process +WorkingDirectory=/opt/accuknox-shared-informer-agent/ +ExecStart=/opt/accuknox-shared-informer-agent/sia + +[Install] +WantedBy=multi-user.target diff --git a/accuknox-files/v0.2.13/usr/usr/lib/systemd/system/accuknox-feeder-service.service b/accuknox-files/v0.2.13/usr/usr/lib/systemd/system/accuknox-feeder-service.service new file mode 100644 index 0000000..c1c5b4d --- /dev/null +++ b/accuknox-files/v0.2.13/usr/usr/lib/systemd/system/accuknox-feeder-service.service @@ -0,0 +1,12 @@ +[Unit] +Description=Shared-Informer + +[Service] +User=root +KillMode=process +WorkingDirectory=/opt/feeder/ +Environment=ENABLE_VM=true KUBEARMOR_ENABLED=true KMUX_ENABLED=true +ExecStart=/opt/feeder/feeder + +[Install] +WantedBy=multi-user.target diff --git a/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-amd64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-amd64.tar.gz new file mode 100644 index 0000000..75cad3b Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-amd64.tar.gz differ diff --git a/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-arm64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-arm64.tar.gz new file mode 100644 index 0000000..4eb24e2 Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-feeder-service_0.2.0-SNAPSHOT-d5a5497_linux-arm64.tar.gz differ diff --git a/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-amd64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-amd64.tar.gz new file mode 100644 index 0000000..89d0d07 Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-amd64.tar.gz differ diff --git a/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-arm64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-arm64.tar.gz new file mode 100644 index 0000000..bd7b3df Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-policy-enforcement-agent_0.2.0-SNAPSHOT-cb0f6ca_linux-arm64.tar.gz differ diff --git a/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-amd64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-amd64.tar.gz new file mode 100644 index 0000000..7985970 Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-amd64.tar.gz differ diff --git a/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-arm64.tar.gz b/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-arm64.tar.gz new file mode 100644 index 0000000..7970e0f Binary files /dev/null and b/accuknox-package-tar/v0.2.13/accuknox-shared-informer-agent_0.2.0-SNAPSHOT-3c87bcb_linux-arm64.tar.gz differ