Where communities thrive


  • Join over 1.5M+ people
  • Join over 100K+ communities
  • Free without limits
  • Create your own community
People
Activity
  • 13:05
    stale[bot] closed #147
  • May 19 21:52
    stale[bot] labeled #146
  • May 19 21:52
    stale[bot] commented #146
  • May 19 21:52
    stale[bot] labeled #148
  • May 19 21:52
    stale[bot] commented #148
  • May 18 12:00
    stale[bot] labeled #147
  • May 18 12:00
    stale[bot] commented #147
  • May 17 02:50
    stale[bot] closed #143
  • May 16 23:13

    github-actions[bot] on master

    Increment version to 0.9.85 (compare)

  • May 16 23:12

    santiagolizardo on master

    Use null as client id default i… Merge branch 'master' of github… Update deps (compare)

  • May 16 22:53
    stale[bot] closed #144
  • May 13 23:21

    santiagolizardo on master

    Upgrade monolog library (compare)

  • May 13 22:59

    github-actions[bot] on master

    Increment version to 0.9.84 (compare)

  • May 13 22:58

    santiagolizardo on master

    Upgrade to chakra v2 Merge branch 'master' of github… (compare)

  • May 11 22:59
    stale[bot] labeled #143
  • May 11 22:59
    stale[bot] commented #143
  • May 11 22:04
    stale[bot] labeled #144
  • May 11 22:03
    stale[bot] commented #144
  • May 09 07:57

    santiagolizardo on master

    Fix container related tests (compare)

  • May 08 00:30

    github-actions[bot] on master

    Increment version to 0.9.83 (compare)

czhb3bstrobf3k
@czhb3bstrobf3k:matrix.org
[m]
I have my cors origin set to "*" . I can log in as admin from localhost,
when I try to log in from a different device (not localhost), I can get to the login page, but when i enter the credentials it just says "failed to fetch"
PORT STATE SERVICE
3306/tcp open mysql
5500/tcp open hotline
5510/tcp open secureidprop
5520/tcp open sdlog
5530/tcp filtered sdserv
6379/tcp open redis
I jsut git cloned the repo about 20 minutes ago
czhb3bstrobf3k
@czhb3bstrobf3k:matrix.org
[m]
environment.js and docker-compose.yml
modify and change the IPs there to whatever interface you want to access it from
czhb3bstrobf3k
@czhb3bstrobf3k:matrix.org
[m]
Is there any way to not use certbot + letsencrypt
Guil Noc
@GuilNoc_gitlab
@czhb3bstrobf3k:matrix.org dis you get it to work outside localhost?
@santiagolizardo whats recommended os to run Reconmap?
Guil Noc
@GuilNoc_gitlab
It only works localhost, where is the plavlce to allow other origins? At the host or at the cobtainer itself? Which container if so.
Cross-origin request blocked: The same origin policy prevents reading the remote resource at http://localhost:5510/users/login (reason: CORS request failed). Status code: (null).
czhb3bstrobf3k
@czhb3bstrobf3k:matrix.org
[m]
Yes I got to work outside localhost
You've got to search the otehr config files
modify everything from localhost to whatever IP you want it to listen on
Guil Noc
@GuilNoc_gitlab
@czhb3bstrobf3k:matrix.org you mean before building the container? Like environment.js config.js and docker-compose.yml?
Guil Noc
@GuilNoc_gitlab
I got it to work with errors, i am able to login feom outside localhost now, unfortunately more errors appears, i have kept localhost at valid origins at docker-compose.yml, i have changed environment.js and reppaced localhost with LAN ip and i uave changed config.json and placed * to allowedOrigins.
Now i have errors like uncaught syntax error while logged in: function statements require function name
Guil Noc
@GuilNoc_gitlab
Errors above have been fixed
Now error is the connection to ws://ip:5520/notifications was interrupted whie the page was loading
Websocket error, then websocket connextion died (code=1006 reason=)
@santiagolizardo please have a look above!
Guil Noc
@GuilNoc_gitlab
At install and configure Letsencrypt, what would be an alternative for LAN?
Santiago
@santiagolizardo
Hi everyone! :wave:
Answering some of the previous questions:
  • OS: I recommend any recent version of a major Linux distribution. I work on Debian and that's what I use for testing, but any OS with docker support, a good package manager, etc would work.
  • Certbot and letsencrypt are completely optional. I use Letsencrypt because it gives me free SSL certificates. But you can run Reconmap without SSL (on plain http) on trusted environments (eg a well configured LAN) or you can buy SSL certificates from many vendors
Santiago
@santiagolizardo
  • Websocket connection issues: I am working on an improvement to this. Should be ready in a few days time
Roogle
@r0ogle:matrix.org
[m]

On a Raspberry Pi the reconmap docker compose gives the following error in several containers: standard_init_linux.go:228: exec user process caused: exec format error

This error is present on the following containers:
MySQL
Agent
Web-Client
Api

but43r
@but43r
Hi @santiagolizardo
One flaw was found in reconmap, if I create 20 projects, then 21 projects are not displayed in reconmap, but it is created in the database. Can you fix it?
Santiago
@santiagolizardo
Hey @but43r ; Sure. It should have a pretty straightforward fix.
but43r
@but43r
Hi @santiagolizardo I found another flaw, if there are more than 20 projects in reconmap, then when vulnerability is added via vulnerability template, only 20 projects are displayed in the relations block, the rest are not displayed.
Santiago
@santiagolizardo
Noted @but43r :+1: I'll resolve this in the next few days
Gabe Juarez
@empire1138
Hello, I'm trying to load a local instance of reconmap on my linux machine to learn. I've seemed to have some type of error. "Firefox can’t establish a connection to the server at ws://localhost:5520/term?token=" If someone could point me in the right direction that would be greatly appreciated . Thanks
Santiago
@santiagolizardo
Hi @empire1138 ; I think you might be missing this line on the docker-compose file: https://github.com/reconmap/reconmap/blob/master/docker-compose.yml#L59
Gabe Juarez
@empire1138
@santiagolizardo: Thank you so much for getting back to me. That got rid of the websocket error. I have one more question. The browser terminal says connected. But the terminal area is just a black area with a blinking white square up in the top left corner. Console info: "fork/exec /bin/bash: no such file or directory CommandTerminal.js:61:28".
schniggie
@schniggie:matrix.org
[m]
Good Morning guys, first of all thanks for the cool looking project.
schniggie
@schniggie:matrix.org
[m]
Maybe I am blind but I cannot see howto create first user(s) after starting docker-compose.
Santiago
@santiagolizardo
Hi @schniggie:matrix.org ; There is a default user created by default with credentials admin/admin123
That will give you access to the dashboard where you can reset that password and/or create more users
but43r
@but43r
Hi @santiagolizardo I found another flaw, if there are more than 20 projects in reconmap, then when vulnerability is added via vulnerability template, only 20 projects are displayed in the relations block, the rest are not displayed.
Santiago
@santiagolizardo
Hi @but43r , Thanks for reporting this issue. It has now been resolved
but43r
@but43r
Hi @santiagolizardo, I did a reconmap update, after which projects stopped loading, also when creating a new project, categories are not displayed, which is why it is not possible to create a new project.
John Nevarez
@nevsec
is reconmap no longer free?
Santiago
@santiagolizardo
Hi @but43r ; That's because the new version moved from hardcoded project categories to dynamic ones from the db.
You probably need the db migration to run. This happens automatically every midnight (00:00) but you can run it manually with docker-compose exec api /usr/bin/php /var/www/webapp/src/Cli/app.php database:migrate-schema
@nevsec still free like the first day! :)
but43r
@but43r
@santiagolizardo, I did a database migration, the projects appeared, but when adding a new project I get an error in the browser - "There was a problem when creating the project. Please check the form and try again", at the same moment in the docker rest-api container in the logs I see this error - "[2022-05-11T11:18:01.078577+00:00] http.mistake: Unable to add or update child row: foreign key constraint failed (reconmap.project, project_fk_client_id CONSTRAINT FOREIGN KEY (client_id) REFERS TO client (id) WHEN DELETING, THE NULL VALUE IS SET) [] []"
John Nevarez
@nevsec
@santiagolizardo https://reconmap.com/pricing
Santiago
@santiagolizardo
That's just the SaaS offering @nevsec . The open source version is free (not only as in free beer, also as in free speech) to download, modify, use, etc