Bugfixes for NetEye 4.27, 4.26, 4.25: Elasticsearch License Renewal
The current Elasticsearch license bundled with NetEye will expire this January 31st. To continue enjoying all the SIEM functionalities you must update to the new license. An automatic update has been released for the most recent NetEye version. Older NetEye releases however, can be updated manually.
In the case the health-check light/01004_elastic_license_check.sh is preventing you from updating your NetEye Installation you can run the following command: neteye update --skip-tags check_health. All other health-check must be successful to ensure a safe update.
For NetEye 4.27, NetEye 4.26 and NetEye 4.25 we updated the following packages:
elasticsearch, elasticsearch-autosetup, elasticsearch-neteye-config, filebeat, filebeat-autosetup, filebeat-neteye-config, apm-server, apm-server-autosetup, apm-server-neteye-config, kibana, kibana-autosetup, kibana-neteye-config, logstash, logstash-autosetup, logstash-neteye-config to version 7.17.5_neteye3.44.1-1
For NetEye 4.24 and older you can update your license manually via Kibana: Stack Management \ License Management \ Update License and upload the new license.
Another option is to update the license via command line:
Download the new license in a file, for example: /neteye/local/elasticsearch/license/elastic-license-2023.json
Load the new license: /usr/share/neteye/elasticsearch/scripts/es_curl.sh -X PUT https://elasticsearch.neteyelocal:9200/_license -d @/neteye/local/elasticsearch/license/elastic-license-2023.json -H "Content-Type: application/json"
Important: GeoMap update Type/Severity NetEye Product Security has rated this update as having a High security impact. Topic An update for the package icingaweb2-module-geomap is now available for NetEye 4. Security Fix for NetEye 4.40 1.22.4 - 1 CVSSv3.1: 7.3(High) - CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N For Read More
Important: Elastic Stack security update (installed with SIEM) Type/Severity NetEye Product Security has rated this update as having a Critical security impact. Topic An update for the package kibana is now available for NetEye 4. Security Fix for NetEye 4.40 8.17.3_neteye3.72.11-1 CVSSv3.1: 9.9(Critical) Read More
Fix for icinga2 satellites zone validation Fixed an issue with the icinga2 satellites zone validation that caused the neteye satellite config create to fail if one of the icinga2-zone is a sub-string of the others List of updated packages To Read More
Remove "Drop non-existing group during Sync" on LDAP user federations Remove flag “Drop non-existing group during Sync” on LDAP user federations List of updated packages To solve the issue, the following packages have been updated: keycloak, keycloak-autosetup, keycloak-configurator, keycloak-python, to Read More
Important: IcingWeb2 Module Analytics security update Type/Severity NetEye Product Security has rated this update as having a Medium security impact. Topic An update for the package icingaweb2-module-analytics is now available for NetEye 4. Security Fix for NetEye 4.40 1.60.3-1 CVSS: 6.3 (medium): CVSS3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:L/A:N Read More