Jason Ertel
|
30487a54c1
|
skip continue prompt if user cannot actually contine
|
2025-12-03 11:52:10 -05:00 |
|
Josh Patterson
|
55e3a2c6b6
|
Merge pull request #15277 from Security-Onion-Solutions/soyamllistremove
need additional line bw class
|
2025-12-02 15:09:47 -05:00 |
|
Josh Patterson
|
ef092e2893
|
rename to removelistitem
|
2025-12-02 15:01:32 -05:00 |
|
Josh Patterson
|
89eb95c077
|
add removefromlist
|
2025-12-02 14:46:24 -05:00 |
|
Josh Patterson
|
e871ec358e
|
need additional line bw class
|
2025-12-02 14:43:33 -05:00 |
|
Josh Patterson
|
271a2f74ad
|
Merge pull request #15275 from Security-Onion-Solutions/soyamllistremove
add new so-yaml_test for removefromlist
|
2025-12-02 14:34:09 -05:00 |
|
Josh Patterson
|
d6bd951c37
|
add new so-yaml_test for removefromlist
|
2025-12-02 14:31:57 -05:00 |
|
Jorge Reyes
|
6fbed2dd9f
|
Merge pull request #15264 from Security-Onion-Solutions/reyesj2-patch-2
add force & certs flag to update fleet certs as needed
|
2025-12-01 11:11:25 -06:00 |
|
Mike Reeves
|
875de88cb4
|
Merge pull request #15271 from Security-Onion-Solutions/TOoSmOotH-patch-2
Add JA4D option to config.zeek.ja4
|
2025-12-01 10:03:12 -05:00 |
|
Mike Reeves
|
63bb44886e
|
Add JA4D option to config.zeek.ja4
|
2025-12-01 10:00:42 -05:00 |
|
reyesj2
|
edf3c9464f
|
add --certs flag to update certs. Used with --force, to ensure certs are updated even if hosts update isn't needed
|
2025-11-25 16:16:19 -06:00 |
|
Josh Patterson
|
9c06713f32
|
Merge pull request #15251 from Security-Onion-Solutions/bravo
use timestamp in volume path to prevent duplicates
|
2025-11-21 14:54:30 -05:00 |
|
Josh Patterson
|
23da0d4ba0
|
use timestamp in filename to prevent duplicates
|
2025-11-21 14:49:03 -05:00 |
|
Josh Patterson
|
d5f2cfb354
|
Merge pull request #15248 from Security-Onion-Solutions/bravo
clarify hypervisor annotation
|
2025-11-20 17:28:32 -05:00 |
|
Josh Patterson
|
fb5ad4193d
|
indicate base image download start
|
2025-11-20 17:13:36 -05:00 |
|
Josh Patterson
|
1f5f283c06
|
update hypervisor annotaion. preinit instead of initialized
|
2025-11-20 16:53:55 -05:00 |
|
Josh Patterson
|
cf048030c4
|
Merge pull request #15247 from Security-Onion-Solutions/bravo
Notify user of hypervisor environment setup failures
|
2025-11-20 16:04:49 -05:00 |
|
Josh Patterson
|
2d716b44a8
|
update comment
|
2025-11-20 15:52:21 -05:00 |
|
Jorge Reyes
|
d70d652310
|
Merge pull request #15244 from Security-Onion-Solutions/reyesj2/suricapfile
suricata capture file
|
2025-11-20 14:31:43 -06:00 |
|
reyesj2
|
c5db7c8752
|
suricata.capture_file keyword
|
2025-11-20 14:26:12 -06:00 |
|
reyesj2
|
6f42ff3442
|
suricata capture_file
|
2025-11-20 14:16:49 -06:00 |
|
reyesj2
|
433dab7376
|
format json
|
2025-11-20 14:16:10 -06:00 |
|
Josh Patterson
|
97c1a46013
|
update annotation for general failure
|
2025-11-20 15:08:04 -05:00 |
|
Josh Patterson
|
fbe97221bb
|
set initialized status
|
2025-11-20 14:43:09 -05:00 |
|
Josh Patterson
|
841ce6b6ec
|
update hypervisor annotation for image download or ssh key creation failure
|
2025-11-20 13:55:22 -05:00 |
|
Josh Patterson
|
dd0b4c3820
|
fix failed or hung qcow2 image download
|
2025-11-19 15:48:53 -05:00 |
|
Josh Patterson
|
b407c68d88
|
Merge remote-tracking branch 'origin/2.4/dev' into bravo
|
2025-11-19 10:23:11 -05:00 |
|
Josh Patterson
|
5b6a7035af
|
need python_shell for pipes
|
2025-11-19 10:22:58 -05:00 |
|
Jason Ertel
|
12d490ad4a
|
Merge pull request #15240 from Security-Onion-Solutions/jertel/wip
communicate to the viewer that OS patches may take some time
|
2025-11-19 10:01:03 -05:00 |
|
Jason Ertel
|
76cbd18d2c
|
communicate to the viewer that OS patches may take some time
|
2025-11-19 09:56:42 -05:00 |
|
Jorge Reyes
|
a7337c95e1
|
Merge pull request #15234 from Security-Onion-Solutions/reyesj2/pipeline-upd
update zeek pipelines
|
2025-11-17 10:36:10 -06:00 |
|
Josh Patterson
|
3f7c3326ea
|
Merge pull request #15237 from Security-Onion-Solutions/bravo
rm salt keyring and repo file for deb
|
2025-11-17 09:27:53 -05:00 |
|
Josh Patterson
|
bf41de8c14
|
rm salt keyring and repo file for deb
|
2025-11-17 08:56:02 -05:00 |
|
reyesj2
|
136a829509
|
detect-sqli deprecated in favor of detect-sql-injection
|
2025-11-14 16:51:00 -06:00 |
|
reyesj2
|
bcec999be4
|
zeek.dns reduce errors
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
7c73b4713f
|
update analyzer pipeline
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
45b4b1d963
|
ingest zeek analyzer.log + update dpd dashboard with analyzer tag
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
fcfd74ec1e
|
zeek.analyzer format json
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
68b0cd7549
|
rename zeek.dpd zeek.analyzer
|
2025-11-14 15:47:29 -06:00 |
|
reyesj2
|
715d801ce8
|
format json zeek.dns
|
2025-11-14 15:47:19 -06:00 |
|
Jorge Reyes
|
4a810696e7
|
Merge pull request #15231 from Security-Onion-Solutions/reyesj2/bond0
fix so-setup error duplicate bond0
|
2025-11-14 12:12:46 -06:00 |
|
reyesj2
|
6b525a2c21
|
fix so-setup error duplicate bond0
|
2025-11-14 11:19:32 -06:00 |
|
Jorge Reyes
|
a5d8385f07
|
Merge pull request #15230 from Security-Onion-Solutions/reyesj2/pipeline-upd
suricata pipeline updates
|
2025-11-14 10:43:33 -06:00 |
|
reyesj2
|
211bf7e77b
|
ignore errors on tld script
|
2025-11-14 09:25:19 -06:00 |
|
reyesj2
|
1542b74133
|
move dns tld fields to its own pipeline
|
2025-11-14 09:24:58 -06:00 |
|
reyesj2
|
4314c79f85
|
bump suricata dns logging version
|
2025-11-14 08:24:31 -06:00 |
|
reyesj2
|
da9717bc79
|
don't attempt rename if field doesn't exist -- reducing pipeline stat errors
|
2025-11-14 08:15:40 -06:00 |
|
Jason Ertel
|
045cf7866c
|
Merge pull request #15225 from Security-Onion-Solutions/jertel/wip
pcap annotations
|
2025-11-14 08:37:37 -05:00 |
|
reyesj2
|
431e0b0780
|
format suricata.alert json
|
2025-11-13 19:29:50 -06:00 |
|
reyesj2
|
e782266caa
|
suricata 8 dns v3
|
2025-11-13 19:21:31 -06:00 |
|