You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
The MALCOLM_NETWORK_INDEX_SUFFIX and MALCOLM_OTHER_INDEX_SUFFIX variables in ./config/opensearch.env now also support expanding dot-delimited field names in {{ }} (e.g., {{event.provider}}%{%y%m%d}).
MALCOLM_CONTAINER_RUNTIME has been added to ./config/process.env to indicate docker, podman, or kubernetes. This value only currently used in the install, configuration, and control scripts, not inside the containers themselves.
ZEEK_DISABLE_ICS_HART_IP has been added to ./config/zeek.env and can be set to true to disable the new HART-IP protocol parser.
Hedgehog Linux
ZEEK_DISABLE_ICS_HART_IP has been added to control_vars.conf and can be set to true to disable the new HART-IP protocol parser.
Official ISO installer images for Malcolm and Hedgehog Linux can be downloaded from Malcolm's releases page on GitHub. Due to limits on individual files in GitHub releases, these ISO files have been split into 2GB chunks and can be reassembled with scripts provided for both Bash (release_cleaver.sh) and PowerShell (release_cleaver.ps1). See Downloading Malcolm - Installer ISOs for instructions.
releaseRelated to creation/packaging of Malcolm releases
1 participant
Heading
Bold
Italic
Quote
Code
Link
Numbered list
Unordered list
Task list
Attach files
Mention
Reference
Menu
reacted with thumbs up emoji reacted with thumbs down emoji reacted with laugh emoji reacted with hooray emoji reacted with confused emoji reacted with heart emoji reacted with rocket emoji reacted with eyes emoji
-
Malcolm v24.09.0 contains new features and enhancements, component version updates, and bug fixes.
v24.08.0...v24.09.0
opensearch-remote
andelasticsearch-remote
database modes (allow total index size-based pruning for opensearch-remote and elasticsearch-remote database modes idaholab/Malcolm#446)install.py
for Linux performance tweaks (improvements to documentation and install.py for Linux performance tweaks idaholab/Malcolm#495)install.py
installation and configuration script (No option to go backwards in Malcolm install tool idaholab/Malcolm#487)ARKIME_NODE_HOST
incorrectly (Hedgehog with OOB/VPN connection sets ARKIME_NODE_HOST incorrectly idaholab/Malcolm#560 and Set ARKIME_NODE_HOST from OS_HOST interface rather than default route idaholab/Malcolm#559, thanks @divinehawk)suricata
Docker container does not initializesuricata.yml
config file (offline suricata Docker container does not initialize suricata config file idaholab/Malcolm#564)./config/
) for Malcolm and incontrol_vars.conf
for Hedgehog LinuxMALCOLM_NETWORK_INDEX_SUFFIX
andMALCOLM_OTHER_INDEX_SUFFIX
variables in./config/opensearch.env
now also support expanding dot-delimited field names in{{ }}
(e.g.,{{event.provider}}%{%y%m%d}
).MALCOLM_CONTAINER_RUNTIME
has been added to./config/process.env
to indicatedocker
,podman
, orkubernetes
. This value only currently used in the install, configuration, and control scripts, not inside the containers themselves.ZEEK_DISABLE_ICS_HART_IP
has been added to./config/zeek.env
and can be set totrue
to disable the new HART-IP protocol parser.ZEEK_DISABLE_ICS_HART_IP
has been added tocontrol_vars.conf
and can be set totrue
to disable the new HART-IP protocol parser.Official ISO installer images for Malcolm and Hedgehog Linux can be downloaded from Malcolm's releases page on GitHub. Due to limits on individual files in GitHub releases, these ISO files have been split into 2GB chunks and can be reassembled with scripts provided for both Bash (
release_cleaver.sh
) and PowerShell (release_cleaver.ps1
). See Downloading Malcolm - Installer ISOs for instructions.This discussion was created from the release Malcolm v24.09.0.
Beta Was this translation helpful? Give feedback.
All reactions