Code Notebooks

rssd-init

Boostrap SQL

Documentation
ConstructionSqlNotebook

v001_once_initialDDL

SQLite SQL Statements
ConstructionSqlNotebook

session_ephemeral_table

SQLite SQL Statements
ConstructionSqlNotebook

surveilr_table_size

SQLite SQL Statements
ConstructionSqlNotebook

v001_seedDML

SQLite SQL Statements
rssd-init

understand notebooks schema

Generative AI Large Language Model Prompt
rssd-init

understand service schema

Generative AI Large Language Model Prompt
rssd-init

surveilr-code-notebooks-erd.auto.puml

Text Asset (.puml)
rssd-init

surveilr-service-erd.auto.puml

Text Asset (.puml)
rssd-init

models_polygenix.rs

Text Asset (.rs)
osQuery Management Server (Prime)

System Information

System information for identification. SQLite SQL Statements
osQuery Management Server (Prime)

osquery-ms Boundary (Linux and Macos)

Get the boundary for a node. SQLite SQL Statements
osQuery Management Server (Prime)

osquery-ms Boundary (Windows)

Get the boundary for a node. SQLite SQL Statements
osQuery Management Server (Prime)

OS Version (Linux and Macos)

A single row containing the operating system name and version. SQLite SQL Statements
osQuery Management Server (Prime)

OS Version (Windows)

A single row containing the operating system name and version. SQLite SQL Statements
osQuery Management Server (Prime)

Users

Local user accounts (including domain accounts that have logged on locally (Windows)). SQLite SQL Statements
osQuery Management Server (Prime)

Network Interfaces (Windows)

Retrieves information about network interfaces on devices running windows. SQLite SQL Statements
osQuery Management Server (Prime)

Network Interfaces (Linux and Macos)

Retrieves information about network interfaces on macOS and Linux devices. SQLite SQL Statements
osQuery Management Server (Prime)

Listening Ports

Processes with listening (bound) network sockets/ports. SQLite SQL Statements
osQuery Management Server (Prime)

Server Uptime

Track time passed since last boot. Some systems track this as calendar time, some as runtime. SQLite SQL Statements
osQuery Management Server (Prime)

Available Disk Space (Windows)

Retrieves total amount of free disk space on a Windows host. SQLite SQL Statements
osQuery Management Server (Prime)

Available Disk Space (Linux and Macos)

Retrieves total amount of free disk space on a host. SQLite SQL Statements
osQuery Management Server (Prime)

Installed Linux software

Get all software installed on a Linux computer, including browser plugins and installed packages. Note that this does not include other running processes in the processes table. SQLite SQL Statements
osQuery Management Server (Prime)

Installed Windows software

Get all software installed on a Windows computer, including browser plugins and installed packages. Note that this does not include other running processes in the processes table. SQLite SQL Statements
osQuery Management Server (Prime)

Installed Macos software

Get all software installed on a Macos computer, including browser plugins and installed packages. Note that this does not include other running processes in the processes table. SQLite SQL Statements
osQuery Management Server (Policy)

SSH keys encrypted

Policy passes if all keys are encrypted, including if no keys are present. SQLite SQL Statements
osQuery Management Server (Policy)

Full disk encryption enabled (Linux)

Checks if the root drive is encrypted. SQLite SQL Statements
osQuery Management Server (Policy)

Full disk encryption enabled (Windows)

Checks if the root drive is encrypted. SQLite SQL Statements
osQuery Management Server (Policy)

Full disk encryption enabled (Macos)

Checks if the root drive is encrypted. SQLite SQL Statements
osQuery Management Server Default Filters (Prime)

osQuery Result Filters

Default filters for post-processing the results from osQuery. SQLite SQL Statements
Web UI

auto_generate_console_content_tabular_sqlpage_files

A series of idempotent INSERT statements which will auto-generate "default" content for all tables and views SQLite SQL Statements