Skip to content

Commit

Permalink
Release 2.0.1 (#48)
Browse files Browse the repository at this point in the history
* Update Jenkinsfile

* Alpine & Python version update

* Update tips
  • Loading branch information
ytsek authored Jul 13, 2021
1 parent a9c64f0 commit 463d851
Show file tree
Hide file tree
Showing 9 changed files with 30 additions and 32 deletions.
6 changes: 4 additions & 2 deletions Dockerfile
Original file line number Diff line number Diff line change
@@ -1,8 +1,10 @@
FROM alpine:3.13
FROM alpine:3.14
LABEL maintainer="Ian Redden <iaredden@cisco.com>"

# install packages we need
RUN apk update && apk add --no-cache musl-dev openssl-dev gcc python3 py3-configobj python3-dev supervisor git libffi-dev uwsgi-python3 uwsgi-http jq nano syslog-ng uwsgi-syslog py3-pip
RUN apk update && apk add --no-cache musl-dev openssl-dev gcc py3-configobj \
supervisor git libffi-dev uwsgi-python3 uwsgi-http jq syslog-ng uwsgi-syslog \
py3-pip python3-dev

# do the Python dependencies
ADD code /app
Expand Down
16 changes: 3 additions & 13 deletions Jenkinsfile
Original file line number Diff line number Diff line change
@@ -1,13 +1,3 @@
pipeline {
agent any
stages {
stage('build&test') {
steps {
sh 'docker build -t tr-05-spycloud-employee-ato-prevention .'
sh 'docker run -d -p 9090:9090 --name tr-05-spycloud-employee-ato-prevention tr-05-spycloud-employee-ato-prevention'
sh 'while true; do if docker logs tr-05-spycloud-employee-ato-prevention | grep "entered RUNNING state"; then break; else sleep 1; fi done'
sh 'curl -X POST -sSLi http://localhost:9090 | grep "200 OK"'
}
}
}
}
@Library('softserve-jenkins-library@main') _

startPipeline()
2 changes: 2 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -73,6 +73,8 @@ curl http://localhost:9090

## Implementation Details

This application was developed and tested under Python version 3.9.

### Implemented Relay Endpoints

- `POST /health`
Expand Down
4 changes: 3 additions & 1 deletion code/api/utils.py
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,7 @@
import time
import requests

from json.decoder import JSONDecodeError
from typing import Optional
from http import HTTPStatus
from flask import request, current_app, jsonify, g
Expand Down Expand Up @@ -56,6 +57,7 @@ def get_public_key(jwks_host, token):
expected_errors = {
ConnectionError: WRONG_JWKS_HOST,
InvalidURL: WRONG_JWKS_HOST,
JSONDecodeError: WRONG_JWKS_HOST,
}
try:
response = requests.get(f"https://{jwks_host}/.well-known/jwks")
Expand Down Expand Up @@ -224,7 +226,7 @@ def wraps(*args, **kwargs):
start = time.time()
result = func(*args, **kwargs)
pause_time = current_app.config['SPYCLOUD_REQUEST_DURATION'] - (
time.time() - start)
time.time() - start)
if pause_time > 0:
time.sleep(pause_time)
return result
Expand Down
5 changes: 4 additions & 1 deletion code/container_settings.json
Original file line number Diff line number Diff line change
@@ -1 +1,4 @@
{"VERSION": "2.0.0","NAME": "Spycloud Employee Ato Prevention Relay"}
{
"VERSION": "2.0.1",
"NAME": "Spycloud Employee Ato Prevention Relay"
}
12 changes: 6 additions & 6 deletions code/requirements.txt
Original file line number Diff line number Diff line change
@@ -1,8 +1,8 @@
Flask==1.1.2
marshmallow==3.11.1
Flask==2.0.1
marshmallow==3.12.1
requests==2.25.1
cryptography==3.3.2
pyjwt[crypto]==2.0.1
flake8==3.9.0
coverage==5.2.1
pytest==6.2.2
pyjwt[crypto]==2.1.0
flake8==3.9.2
coverage==5.5
pytest==6.2.4
2 changes: 1 addition & 1 deletion code/tests/functional/tests/constants.py
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
MODULE_NAME = 'SpyCloud Account Takeover Prevention [Conf]'
MODULE_NAME = 'SpyCloud Account Takeover Prevention'
SPYCLOUD_URL = 'https://portal.spycloud.com/breach/catalog/'
CONFIDENCE = SEVERITY = ('High', 'Medium', 'Low')
CTR_ENTITIES_LIMIT = 100
Expand Down
5 changes: 4 additions & 1 deletion code/tests/functional/tests/test_sigthing.py
Original file line number Diff line number Diff line change
Expand Up @@ -68,7 +68,10 @@ def test_positive_sighting_email_observable(module_headers):
{'name': 'cc_last_four', 'type': 'string'},
{'name': 'address_1', 'type': 'string'},
{'name': 'homepage', 'type': 'string'},
{'name': 'company_name', 'type': 'string'}
{'name': 'company_name', 'type': 'string'},
{'name': 'user_sys_registered_owner', 'type': 'string'},
{'name': 'user_os', 'type': 'string'},
{'name': 'user_hostname', 'type': 'string'}
]
assert len(sightings['docs']) > 0

Expand Down
10 changes: 3 additions & 7 deletions module_type.json.sample
Original file line number Diff line number Diff line change
Expand Up @@ -3,12 +3,8 @@
"default_name": "SpyCloud ATP",
"short_description": "SpyCloud helps enterprises prevent corporate account takeover by detecting stolen passwords early, before criminals have a chance to use them.",
"description": "It's human nature: people reuse passwords. Unfortunately, your employees' bad password hygiene may put your enterprise at risk of a data breach. According to the 2020 Verizon Data Breach Investigations Report, stolen credentials have been the top hacking technique for four years in a row. Criminals count on employees' password reuse, testing stolen credentials against a variety of other sites - including corporate login portals - to take over accounts and access sensitive customer data, financial information, and intellectual property.\n\n SpyCloud helps enterprises prevent corporate account takeover by detecting exposed credentials quickly, before criminals have a chance to use them against your enterprise. SpyCloud provides fast, high-volume access to stolen data circulating within criminal communities, drawing on a collection and curation platform that has operationalized over 100 billion recovered breach assets for security teams. By checking your employee logins against the largest repository of recovered stolen credentials in the world, you can reset compromised passwords swiftly and safeguard your sensitive corporate assets.",
"tips": "When configuring this integration, you must first gather some information from your SpyCloud account, and then add the SpyCloud Module\n\n1. Log into SpyCloud, click on your **email address** in the top right corner, choose **API Keys**\n2. Click on the **eye icon** next to the Employee ATO Protection **API Key** \n3. Copy the **API Key** into a file, or leave the tab open\n4. Complete the **Add New SpyCloud Module** form:\n - **Module Name** - Leave the default name or enter a name that is meaningful to you\n - Enter the **API Key**\n5. Click **Save** to complete the SpyCloud module configuration",
"tips": "When configuring SpyCloud Account Takeover Prevention integration, you must generate the API key from your SpyCloud account and then add the SpyCloud Account Takeover Prevention integration module in SecureX.\n\n1. Log in to SpyCloud, click your **email address** in the top right corner and choose **API Keys**.\n\n2. Click on the eye icon next to the Employee ATO Protection **API Key** and copy the API key into a file, or leave the tab open.\n4. In SecureX, complete the **Add New SpyCloud Account Takeover Prevention Integration Module** form:\n - **Integration Module Name** - Leave the default name or enter a name that is meaningful to you.\n - **API Key** - Paste your copied API key from SpyCloud into this field.\n - **Entities Limit** - Specify the maximum number of sightings in a single response, per requested observable (must be a positive value). We recommend that you enter a limit in the range of 50 to 1000. The default is 100 entities.\n \n5. Click **Save** to complete the SpyCloud Account Takeover Prevention integration module configuration.",
"external_references": [
{
"label": "Free Trial",
"link": "https://spycloud.com/request-a-demo/?utm_campaign=cisco&utm_source=cisco"
},
{
"label": "Case Study",
"link": "https://spycloud.com/resource/global-networking-company/?utm_campaign=cisco&utm_source=cisco"
Expand All @@ -34,7 +30,7 @@
"key": "custom_CTR_ENTITIES_LIMIT",
"type": "integer",
"label": "Entities Limit",
"tooltip": "Restricts the maximum number of `Sightings`",
"tooltip": "Restricts the maximum number of `Sightings`. Please note that the number over 100 might lead to data inconsistency.",
"required": false
}
],
Expand All @@ -59,4 +55,4 @@
"url": "https://ciscohosted.url"
},
"logo": ""
}
}

0 comments on commit 463d851

Please sign in to comment.