From 7b4fe1cff6ac06d959ee4f357f2cf41e04e405d8 Mon Sep 17 00:00:00 2001 From: garnier-quentin Date: Thu, 8 Aug 2019 10:21:10 +0200 Subject: [PATCH] add wazuh rest api plugin (#839) --- apps/wazuh/restapi/custom/api.pm | 12 ++ apps/wazuh/restapi/mode/agents.pm | 4 +- apps/wazuh/restapi/mode/manager.pm | 211 +++++++++++++++++++++++++++++ apps/wazuh/restapi/plugin.pm | 3 +- 4 files changed, 226 insertions(+), 4 deletions(-) create mode 100644 apps/wazuh/restapi/mode/manager.pm diff --git a/apps/wazuh/restapi/custom/api.pm b/apps/wazuh/restapi/custom/api.pm index 0dd2f5045..4beea025a 100644 --- a/apps/wazuh/restapi/custom/api.pm +++ b/apps/wazuh/restapi/custom/api.pm @@ -103,6 +103,18 @@ sub check_options { return 1; } +sub get_hostname { + my ($self, %options) = @_; + + return $self->{hostname}; +} + +sub get_port { + my ($self, %options) = @_; + + return $self->{port}; +} + sub build_options_for_httplib { my ($self, %options) = @_; diff --git a/apps/wazuh/restapi/mode/agents.pm b/apps/wazuh/restapi/mode/agents.pm index 51fa60c5f..6e27c6bbe 100644 --- a/apps/wazuh/restapi/mode/agents.pm +++ b/apps/wazuh/restapi/mode/agents.pm @@ -115,7 +115,6 @@ sub manage_selection { next; } - my $status = lc($_->{status}); $self->{agent}->{$_->{id}} = { display => $_->{name}, @@ -140,7 +139,7 @@ Check wazuh agents. =item B<--filter-counters> Only display some counters (regexp can be used). -Example: --filter-counters='^iops$' +Example: --filter-counters='^status$' =item B<--filter-name> @@ -156,7 +155,6 @@ Can used special variables like: %{status}, %{node_name}, %{display} Set critical threshold for status (Default: ''). Can used special variables like: %{status}, %{node_name}, %{display} - =item B<--warning-*> B<--critical-*> Thresholds. diff --git a/apps/wazuh/restapi/mode/manager.pm b/apps/wazuh/restapi/mode/manager.pm new file mode 100644 index 000000000..1eb68fa75 --- /dev/null +++ b/apps/wazuh/restapi/mode/manager.pm @@ -0,0 +1,211 @@ +# +# Copyright 2019 Centreon (http://www.centreon.com/) +# +# Centreon is a full-fledged industry-strength solution that meets +# the needs in IT infrastructure and application monitoring for +# service performance. +# +# Licensed under the Apache License, Version 2.0 (the "License"); +# you may not use this file except in compliance with the License. +# You may obtain a copy of the License at +# +# http://www.apache.org/licenses/LICENSE-2.0 +# +# Unless required by applicable law or agreed to in writing, software +# distributed under the License is distributed on an "AS IS" BASIS, +# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. +# See the License for the specific language governing permissions and +# limitations under the License. +# + +package apps::wazuh::restapi::mode::manager; + +use base qw(centreon::plugins::templates::counter); + +use strict; +use warnings; +use Digest::MD5 qw(md5_hex); +use centreon::plugins::templates::catalog_functions qw(catalog_status_threshold catalog_status_calc); + +sub custom_status_output { + my ($self, %options) = @_; + + my $msg = sprintf('status: %s', + $self->{result_values}->{status}, + ); + return $msg; +} + +sub set_counters { + my ($self, %options) = @_; + + $self->{maps_counters_type} = [ + { name => 'global', type => 0, cb_prefix_output => 'prefix_global_output' }, + { name => 'process', type => 1, cb_prefix_output => 'prefix_process_output', message_multiple => 'All manager processes are ok' }, + { name => 'log', type => 1, cb_prefix_output => 'prefix_log_output', message_multiple => 'All manager logs are ok' } + ]; + + $self->{maps_counters}->{global} = []; + foreach ('stopped', 'running') { + push @{$self->{maps_counters}->{global}}, { + label => 'processes-' . $_, nlabel => 'manager.processes.' . $_ . '.count', display_ok => 0, set => { + key_values => [ { name => $_ } ], + output_template => $_ . ': %s', + perfdatas => [ + { value => $_ . '_absolute', template => '%s', min => 0 }, + ], + } + }; + } + + $self->{maps_counters}->{process} = [ + { label => 'status', threshold => 0, set => { + key_values => [ { name => 'status' }, { name => 'display' } ], + closure_custom_calc => \&catalog_status_calc, + closure_custom_output => $self->can('custom_status_output'), + closure_custom_perfdata => sub { return 0; }, + closure_custom_threshold_check => \&catalog_status_threshold, + } + }, + ]; + + $self->{maps_counters}->{log} = []; + foreach ('error', 'critical', 'warning') { + push @{$self->{maps_counters}->{log}}, { + label => 'log-' . $_, nlabel => 'manager.log.' . $_ . '.count', set => { + key_values => [ { name => $_, diff => 1 } ], + output_template => $_ . ': %s', + perfdatas => [ + { value => $_ . '_absolute', template => '%s', min => 0 }, + ], + } + }; + } +} + +sub new { + my ($class, %options) = @_; + my $self = $class->SUPER::new(package => __PACKAGE__, %options, , statefile => 1, force_new_perfdata => 1); + bless $self, $class; + + $options{options}->add_options(arguments => { + 'filter-process:s' => { name => 'filter_process' }, + 'filter-log:s' => { name => 'filter_log' }, + 'warning-status:s' => { name => 'warning_status', default => '' }, + 'critical-status:s' => { name => 'critical_status', default => '' }, + }); + + return $self; +} + +sub check_options { + my ($self, %options) = @_; + $self->SUPER::check_options(%options); + + $self->change_macros(macros => ['warning_status', 'critical_status']); +} + +sub prefix_global_output { + my ($self, %options) = @_; + + return "Total processes "; +} + +sub prefix_process_output { + my ($self, %options) = @_; + + return "Process '" . $options{instance_value}->{display} . "' "; +} + +sub prefix_log_output { + my ($self, %options) = @_; + + return "Log '" . $options{instance_value}->{display} . "' "; +} + +sub manage_selection { + my ($self, %options) = @_; + + $self->{global} = { running => 0, stopped => 0 }; + $self->{process} = {}; + my $result = $options{custom}->request(path => '/manager/status'); + foreach (keys %{$result->{data}}) { + if (defined($self->{option_results}->{filter_process}) && $self->{option_results}->{filter_process} ne '' && + $_ !~ /$self->{option_results}->{filter_process}/) { + $self->{output}->output_add(long_msg => "skipping process '" . $_ . "': no matching filter.", debug => 1); + next; + } + + my $status = lc($result->{data}->{$_}); + $self->{process}->{$_} = { + display => $_, + status => $status, + }; + + $self->{global}->{$status}++; + } + + $self->{log} = {}; + $result = $options{custom}->request(path => '/manager/logs/summary?'); + foreach (keys %{$result->{data}}) { + if (defined($self->{option_results}->{filter_log}) && $self->{option_results}->{filter_log} ne '' && + $_ !~ /$self->{option_results}->{filter_log}/) { + $self->{output}->output_add(long_msg => "skipping log '" . $_ . "': no matching filter.", debug => 1); + next; + } + + $self->{log}->{$_} = { + display => $_, + error => $result->{data}->{$_}->{error}, + warning => $result->{data}->{$_}->{warning}, + critical => $result->{data}->{$_}->{critical}, + }; + } + + $self->{cache_name} = 'wazuh_' . $options{custom}->get_hostname() . '_' . $options{custom}->get_port() . '_' . $self->{mode} . '_' . + (defined($self->{option_results}->{filter_counters}) ? md5_hex($self->{option_results}->{filter_counters}) : md5_hex('all')) . '_' . + (defined($self->{option_results}->{filter_log}) ? md5_hex($self->{option_results}->{filter_log}) : md5_hex('all')); +} + +1; + +__END__ + +=head1 MODE + +Check wazuh manager processes and logs. + +=over 8 + +=item B<--filter-counters> + +Only display some counters (regexp can be used). +Example: --filter-counters='^status$' + +=item B<--filter-process> + +Filter process name (can be a regexp). + +=item B<--filter-log> + +Filter log name (can be a regexp). + +=item B<--warning-status> + +Set warning threshold for status (Default: ''). +Can used special variables like: %{status}, %{display} + +=item B<--critical-status> + +Set critical threshold for status (Default: ''). +Can used special variables like: %{status}, %{display} + +=item B<--warning-*> B<--critical-*> + +Thresholds. +Can be: 'processes-running', 'processes-stopped', +'log-error', 'log-critical', 'log-warning'. + +=back + +=cut diff --git a/apps/wazuh/restapi/plugin.pm b/apps/wazuh/restapi/plugin.pm index 2768df25c..a3c5228c6 100644 --- a/apps/wazuh/restapi/plugin.pm +++ b/apps/wazuh/restapi/plugin.pm @@ -31,7 +31,8 @@ sub new { $self->{version} = '1.0'; %{$self->{modes}} = ( - 'agents' => 'apps::wazuh::restapi::mode::agents', + 'agents' => 'apps::wazuh::restapi::mode::agents', + 'manager' => 'apps::wazuh::restapi::mode::manager', ); $self->{custom_modes}{api} = 'apps::wazuh::restapi::custom::api';