Skip to content

fix: secure lab deployment defaults - #3

Open
vtino17 wants to merge 1 commit into
mainfrom
agent/secure-lab-deployment
Open

fix: secure lab deployment defaults#3
vtino17 wants to merge 1 commit into
mainfrom
agent/secure-lab-deployment

Conversation

@vtino17

@vtino17 vtino17 commented Aug 7, 2026

Copy link
Copy Markdown
Owner

Summary

  • replace the Grafana changeme password with a Docker secret
  • bind the Wazuh indexer, Prometheus, and Grafana to loopback
  • detect Docker Compose v2 correctly
  • validate MikroTik targets, require an explicit password, upload configs before import, and use host-key trust-on-first-use
  • add deployment safety regression tests

Validation

  • bash -n scripts/deploy.sh tests/test_deploy_safety.sh
  • bash tests/test_deploy_safety.sh
  • git diff --check

Docker Compose is not installed in the local environment, so the composed stack remains to be validated in a Docker-enabled reviewer environment.

@vtino17
vtino17 marked this pull request as ready for review August 7, 2026 11:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant