Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Repo info
Activity
  • 06:25
    r1ck73ar starred MISP/MISP
  • 03:42
    NailBash commented #8018
  • 03:42
    NailBash commented #8018
  • 03:39
    NailBash commented #8018
  • 03:39
    NailBash commented #8018
  • 01:41
    ichinose starred MISP/MISP
  • Dec 07 23:11
    SantiagoSerrao commented #7906
  • Dec 07 23:11
    SantiagoSerrao commented #7906
  • Dec 07 17:15

    iglocska on develop

    chg: use issue forms templates … chg: add dicussions link Merge pull request #8008 from r… and 2 more (compare)

  • Dec 07 17:15

    iglocska on develop

    chg: use issue forms templates … chg: add dicussions link Merge pull request #8008 from r… and 2 more (compare)

  • Dec 07 17:14

    iglocska on 2.4

    fix: [API] downloadAttachment A… (compare)

  • Dec 07 17:14

    iglocska on 2.4

    fix: [API] downloadAttachment A… (compare)

  • Dec 07 15:49
    acfisher44 commented #8013
  • Dec 07 15:49
    acfisher44 commented #8013
  • Dec 07 14:26

    adulau on main

    new: [temporal-event] temporal … (compare)

  • Dec 07 14:26

    adulau on main

    new: [temporal-event] temporal … (compare)

  • Dec 07 13:34
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
step 0. cake admin runUpdates
step 1. Optionally change the config for Security.advanced_authkeys via the CLI
step 2. Run userinit via the CLI, capture the API key
step 3. Do pymisp stuff
@paalbra: ^ i belive this the "automated" setup we ended up with on the channel some days ago
Maybe this should also be in the FAQ
andras
@andras:matrix.circl.lu
[m]
Yeah that looks correct indeed 😎
Paal Braathen
@paalbra
Ok, I guess I'm missing the runUpdates part then. Because I do userinit and it gives me a key I can't use
Any links to that "automated setup"? I believe I'm missed that
andras
@andras:matrix.circl.lu
[m]
How are you setting misp up?
Installed natively on a host?
VM?
Docker?
Paal Braathen
@paalbra
Hah. I added runUpdates and commented out all mye weird initial requests. It's working much better now :)
@andras:matrix.circl.lu It's the coolacid container
andras
@andras:matrix.circl.lu
[m]
Ahhhh ok
Paal Braathen
@paalbra
After user_init nothing worked through the API
I had to login though normal web. Then the API key suddenly works
But with runUpdates as well it looks much better :)
andras
@andras:matrix.circl.lu
[m]
Ah yeah ok i see. Indeed the db updates before user init will solve it
Paal Braathen
@paalbra
:+1: Yeah, I noticed DB schema changes upon that normal web login
So I guess runUpdates does that stuff
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
I wish (maybe it can) that UserInit could take the email to det for admin and a password or no-password
andras
@andras:matrix.circl.lu
[m]
It can’t but if i don’t forget it after tonight i could add an optional parameter for the email to use
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
Would it be a idea to have MISPnin something like Google Summer of Code?
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
:point_up: Edit: Would it be a idea to have MISP in something like Google Summer of Code?
Jason Kendall
@coolacid
As someone who was a mentor for the GSoC many many many years ago, and a friend of the person that started it - Yeah, GSoC would be a good suggestion.
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
How / what are the requirements ?
I would assume "a task specification" is a minimum
Jason Kendall
@coolacid
So, IIRC, You apply to become a mentoring organisation - You place some idea's on your organisation page - There isn't exactly a specification, that comes more after tasks are accepted between a contributor and the org. Contributors are not tied to a specific task at the start - they "apply" to the Org with what they want todo, and define the tasks/outcomes. If the Org accepts the Contributor/Task a mentor is assigned and more details are hammered out in the first weeks. https://developers.google.com/open-source/gsoc/timeline
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
aha
Jason Kendall
@coolacid
I was a GSoC Mentor for Joomla! a very long time ago, when GSoC first started.
Kevin Holvoet
@digihash
/open #for578-holvoet-204795-dec-06
/poll "How’s this lab going so far?" "I’m doing okay" "Struggling a bit but I’m okay on my own" "I could use some help, and I’ll type my question below” "I could use some help, please walk through the lab” anonymous limit 1
andras
@andras:matrix.circl.lu
[m]
O.o
Kevin Holvoet
@digihash
/open #for578-holvoet-204795-dec-06
/poll "How’s this lab going so far?" "I’m doing okay" "Struggling a bit but I’m okay on my own" "I could use some help, and I’ll type my question below” "I could use some help, please walk through the lab” anonymous limit 1
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
o.O
andras
@andras:matrix.circl.lu
[m]
So close with getting that matrix api query right 😂
Wrong chat, but close!
Robert Haist
@rhaist
Hej - does anyone use TOTP with MISP and has an easy, working implementation for that?
andras
@andras:matrix.circl.lu
[m]
didn't use it, but keycloak should be daoble
doable*
Anders Einar (Kagee)
@hildenae:matrix.org
[m]
Use, yes, easy, no.
Robert Haist
@rhaist
How do other people implement modern 2FA or similar for MISP atm.?
andras
@andras:matrix.circl.lu
[m]
OpenIDConnect -> keycloak
or if you don't want to use any external IAM, enable email OTP in MISP
Robert Haist
@rhaist
Thanks - thats helpful!
andras
@andras:matrix.circl.lu
[m]
no worries
Robert Haist
@rhaist
Will that be revamped in MISP with the great progress you have with the modern application base in cerebrate?
andras
@andras:matrix.circl.lu
[m]
yeah cerebrate has a deeper implementation with keycloak itself
the plan is to migrate misp to that codebase and just reuse those libraries as is
but ran some tests with the OIDC integration that MISP has against keycloak and apart from lacking user enrollment / having to manually (or via a script) enroll new users it works fine
Robert Haist
@rhaist
cerebrate looks great - can see how MISP UI/UX would benefit from the migration next to the underlying improvements and possibilities that come with the new CakePHP version
andras
@andras:matrix.circl.lu
[m]
Yeah indeed, should be a hefty improvement 😍