Search found 5321 matches

by benjaminsmith
Mon Dec 13, 2021 4:58 pm
Forum: Nagios XI
Topic: Nagios DB issue
Replies: 9
Views: 4848

Re: Nagios DB issue

HI Uday, Can you send me the current system profile after making those changes? I'd like to take a closer look at the system log files. Thanks, Benjamin To send us your system profile. Login to the Nagios XI GUI using a web browser. Click the "Admin" > "System Profile" Menu Click...
by benjaminsmith
Mon Dec 13, 2021 4:55 pm
Forum: Nagios XI
Topic: Log4j vulnerability in Nagios Product
Replies: 1
Views: 915

Re: Log4j vulnerability in Nagios Product

Hi, We have an update on our company website regarding the vulnerability. More information at: https://www.nagios.com/news/2021/12/update-on-apache-log4j-vulnerability/ While Nagios XI does not have this program by default, we recommend reviewing your systems for any java based integrations or other...
by benjaminsmith
Mon Dec 13, 2021 4:43 pm
Forum: Nagios XI
Topic: log4j and Nagios agents.
Replies: 1
Views: 819

Re: log4j and Nagios agents.

Hi, Can anyone from Nagios Support provide input as to whether any of the 'agents' are affected by the log4j vuln? (nrpe, nsca, nsclient, etc. etc.) We have updated our company blog with important information on this issue. https://www.nagios.com/news/2021/12/update-on-apache-log4j-vulnerability/ We...
by benjaminsmith
Mon Dec 13, 2021 4:34 pm
Forum: Nagios XI
Topic: Log4j Vulnerability Nagios
Replies: 1
Views: 801

Re: Log4j Vulnerability Nagios

HI nagios-retail , We have published information this morning on this vulnerability on our company blog: https://www.nagios.com/news/ While Nagios XI does not have this program by default, we recommend reviewing your systems for any java based integrations or other software that may utilize this pac...
by benjaminsmith
Mon Dec 13, 2021 4:15 pm
Forum: Nagios XI
Topic: Apache Log4J - CVE-2021-44228
Replies: 6
Views: 3709

Re: Apache Log4J - CVE-2021-44228

Hi, Log4j is a Java system and Nagios is based on PHP so from that I'm also assuming it is ok. It would be good to have official confirmation and we can all tick it off as one less thing to worry about. That is correct, it's java based and Nagios XI does not use Java by default. We recommend reviewi...
by benjaminsmith
Mon Dec 13, 2021 4:13 pm
Forum: Nagios XI
Topic: CVE-2021-44228 Log4j2 Vulnerability Impact on NagiosXI
Replies: 1
Views: 778

Re: CVE-2021-44228 Log4j2 Vulnerability Impact on NagiosXI

Hi, Thanks for reaching out on this issue. We have an update on our company website regarding the vulnerability. More information at: https://www.nagios.com/news/2021/12/update-on-apache-log4j-vulnerability/ While Nagios XI does not have this program by default, we recommend reviewing your systems f...
by benjaminsmith
Mon Dec 13, 2021 4:06 pm
Forum: Nagios XI
Topic: Nagios Product(s) Security Advisory Notifications
Replies: 3
Views: 1252

Re: Nagios Product(s) Security Advisory Notifications

Hi,

Your welcome. Did you have any other questions or may we mark this as resolved?

Let us know when you have a momoment.

--Benjamin
by benjaminsmith
Mon Dec 13, 2021 3:55 pm
Forum: Nagios XI
Topic: Nagios XI log4 native use?
Replies: 6
Views: 2005

Re: Nagios XI log4 native use?

Hi Joseph, Does the nagios XI product natively integrated with Log4 as there is an active exploit in the wild being used. I could not find any evidence that we had seen integration to this product but our security team would like confirmation from the Nagios team Thanks for reaching out on this issu...
by benjaminsmith
Mon Dec 13, 2021 3:32 pm
Forum: Nagios XI
Topic: Help! Getting too many pages....
Replies: 8
Views: 1713

Re: Help! Getting too many pages....

Hi, Thanks for contacting the Nagios Support Team and providing a detailed description of the issue here. It does look like there are multiple issues present. The employee left, so went into Nagios to remove him. Most checks went to "pending status" after did Apply Configuration Are you st...
by benjaminsmith
Mon Dec 13, 2021 3:02 pm
Forum: Nagios Log Server
Topic: CVE-2021-44228
Replies: 17
Views: 9708

Re: CVE-2021-44228

Hi, Thanks for reaching out on this important issue. Nagios Enterprises takes data security and information integrity very seriously. Currently, we are evaluating our use of Apache products and our exposure to the vulnerability described in CVE-2021-44228. We have updated our company blog with impor...