Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Spike] OS Query Manager and OSqueryd FIPS compliance #41339

Open
qcorporation opened this issue Oct 21, 2024 · 1 comment
Open

[Spike] OS Query Manager and OSqueryd FIPS compliance #41339

qcorporation opened this issue Oct 21, 2024 · 1 comment
Labels
Team:Security-Deployment and Devices Deployment and Devices Team in Security Solution

Comments

@qcorporation
Copy link

Parent Ticket:

https://github.com/elastic/ingest-dev/issues/4046

Description

Due to the initiative: Elastic Agent and Beats FIPS Compliance, one of the responsibilities of the Deployment and Devices team is to investigate the required development for OSQueryManager and OSQueryd to be inline with the Elastic requirement.

Note: Early understanding is that osqueryd binary is not controlled by Elastic. OSQueryManager pulls the most recent release and incorporates that within its release CI pipeline when packaging the final binary

Spike:

  1. Investigate if osqueryd does have FIPS binary support
  2. Work with the team managing the requirement to see what exceptions are needed if we can not control osqueryd binary
  3. Investigate alternatives, including upstreaming changes, packaging osqueryd separately or any other way to get FIPS compliance
@qcorporation qcorporation added the Team:Security-Deployment and Devices Deployment and Devices Team in Security Solution label Oct 21, 2024
@elasticmachine
Copy link
Collaborator

Pinging @elastic/sec-deployment-and-devices (Team:Security-Deployment and Devices)

@qcorporation qcorporation changed the title [Spike] OS Query Manager and OSqueryd FIPS comliance [Spike] OS Query Manager and OSqueryd FIPS compliance Oct 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Team:Security-Deployment and Devices Deployment and Devices Team in Security Solution
Projects
None yet
Development

No branches or pull requests

2 participants