Wazuh MCP gensecaihq v4.0.3
1.2K
Unofficial image of Gensecaihq Wazuh MCP (https://github.com/gensecaihq/Wazuh-MCP-Server/tree/main)
Image built with the following Dockerfile:
'''
ARG PYTHON_VERSION=3.13 ARG BUILD_DATE ARG VERSION=4.0.3
FROM python:${PYTHON_VERSION}-alpine AS builder
LABEL stage=builder
RUN apk update && apk upgrade && apk add --no-cache
# Core build tools
gcc
musl-dev
libffi-dev
openssl-dev
python3-dev
build-base
# Development tools
git
curl
wget
# Network and SSL libraries
ca-certificates
openssl
# Additional Python build dependencies
libxml2-dev
libxslt-dev
libc-dev
linux-headers
# Cleanup
&& rm -rf /var/cache/apk/* /tmp/* /var/tmp/*
WORKDIR /build
COPY requirements.txt .
RUN pip install --upgrade pip setuptools wheel &&
pip install --user --no-cache-dir --no-compile -r requirements.txt
FROM aquasec/trivy:latest AS scanner
LABEL stage=scanner COPY --from=builder /root/.local /scan
RUN trivy fs
--no-progress
--security-checks vuln,secret,config
--severity HIGH,CRITICAL
--format json
--output /scan-results.json
/scan || echo "Security scan completed with findings"
FROM python:${PYTHON_VERSION}-alpine AS production
LABEL stage=production
RUN apk update && apk upgrade && apk add --no-cache
# Process management
tini
su-exec
shadow
# Network tools
curl
wget
netcat-openbsd
# SSL/TLS support
ca-certificates
openssl
# System utilities
tzdata
bash
# JSON processing for health checks
jq
# Monitoring tools
procps
# Cleanup
&& rm -rf /var/cache/apk/* /tmp/* /var/tmp/*
# Update CA certificates
&& update-ca-certificates
RUN addgroup -g 1000 -S wazuh &&
adduser -u 1000 -S wazuh -G wazuh -s /bin/sh
WORKDIR /app
RUN mkdir -p /app/logs /app/data &&
chown -R wazuh:wazuh /app
COPY --from=builder --chown=wazuh:wazuh /root/.local /home/wazuh/.local
COPY --chown=wazuh:wazuh src/ ./src/ COPY --chown=wazuh:wazuh .env.example .env.example
RUN find /app -type d -exec chmod 755 {} ; &&
find /app -type f -exec chmod 644 {} ; &&
chmod 600 .env.example &&
chmod +x /app/src/wazuh_mcp_server/*.py
USER wazuh
ENV PATH="/home/wazuh/.local/bin:${PATH}"
PYTHONPATH="/app/src:${PYTHONPATH}"
PYTHONUNBUFFERED=1
PYTHONDONTWRITEBYTECODE=1
# Security: Don't leak Python errors
PYTHONFAULTHANDLER=1
# Default to production settings
MCP_HOST=0.0.0.0
MCP_PORT=3000
LOG_LEVEL=INFO
ENVIRONMENT=production
HEALTHCHECK --interval=15s --timeout=10s --start-period=45s --retries=5
CMD curl -f --max-time 5 --retry 2 --retry-delay 1
-H "Accept: application/json"
http://localhost:3000/health |
jq -e '.status == "healthy"' > /dev/null || exit 1
EXPOSE 3000
LABEL org.opencontainers.image.title="Wazuh MCP Remote Server"
org.opencontainers.image.description="MCP-compliant remote server for Wazuh SIEM integration with SSE transport (mcp-remote branch)"
org.opencontainers.image.version="${VERSION}"
org.opencontainers.image.created="${BUILD_DATE}"
org.opencontainers.image.source="https://github.com/gensecaihq/Wazuh-MCP-Server/tree/mcp-remote"
org.opencontainers.image.url="https://github.com/gensecaihq/Wazuh-MCP-Server/tree/mcp-remote"
org.opencontainers.image.documentation="https://github.com/gensecaihq/Wazuh-MCP-Server/blob/mcp-remote/README.md"
org.opencontainers.image.licenses="MIT"
org.opencontainers.image.vendor="GenSec AI"
org.opencontainers.image.authors="GenSec AI [email protected]"
org.opencontainers.image.ref.name="wazuh-mcp-remote-server"
org.opencontainers.image.base.name="python:3.13-alpine"
ENTRYPOINT ["tini", "--"]
CMD ["python", "-m", "wazuh_mcp_server"] '''
Content type
Image
Digest
sha256:2c50dece0…
Size
45.7 MB
Last updated
9 months ago
docker pull azinupoatemaine/wazuhmcp