m0duspwnens
|
4dc24b22c7
|
accept icmp on input chain
|
2023-10-10 10:51:59 -04:00 |
|
Josh Patterson
|
651393988a
|
Merge pull request #11255 from Security-Onion-Solutions/issue/10975
Issue/10975
|
2023-09-05 11:57:58 -04:00 |
|
m0duspwnens
|
07ed93de19
|
add elastic agent to desktop
|
2023-09-01 14:33:32 -04:00 |
|
weslambert
|
765a22e6f0
|
Add so-elastic-agent
|
2023-09-01 11:31:23 -04:00 |
|
m0duspwnens
|
b010919099
|
add sensoroni, telegraf, common states to desktop. allow docker_registry connection to managers for desktop
|
2023-08-31 13:21:32 -04:00 |
|
Wes
|
60b0af5ab7
|
Allow external syslog
|
2023-08-30 13:05:30 +00:00 |
|
m0duspwnens
|
28dfdbf06d
|
securityonion_desktop is just desktop
|
2023-08-09 08:51:39 -04:00 |
|
m0duspwnens
|
00efc2f88f
|
rename workstation to desktop for firewall
|
2023-08-09 07:31:31 -04:00 |
|
m0duspwnens
|
014aeffb2a
|
add analyst back
|
2023-08-04 09:56:33 -04:00 |
|
m0duspwnens
|
0f52530d07
|
soc_firewall.yaml update adding idh and rename analyst to workstation
|
2023-08-04 09:37:58 -04:00 |
|
m0duspwnens
|
726ec72350
|
allow idh to connect to salt_manager ports on managres
|
2023-08-04 09:22:59 -04:00 |
|
m0duspwnens
|
a51acfc314
|
rename analyst to workstation for fw rules. allow workstation to connect to salt_manager port on managers
|
2023-08-04 09:17:22 -04:00 |
|
m0duspwnens
|
682289ef23
|
add sensoroni ports where missing
|
2023-08-04 09:01:09 -04:00 |
|
m0duspwnens
|
593cdbd060
|
add rules for idh to connect to managers, change idh from sensor to idh in so-firewall-minion
|
2023-08-04 08:50:06 -04:00 |
|
m0duspwnens
|
407cb2a537
|
force portgroups added to hostgroups in roles to be list of strings
|
2023-08-02 10:56:41 -04:00 |
|
weslambert
|
4adaddf13f
|
Move syslog to the INPUT chain where needed
|
2023-08-01 10:14:59 -04:00 |
|
m0duspwnens
|
57562ad5e3
|
add managersearch and standlone fw rules for searchnode
|
2023-07-31 13:34:08 -04:00 |
|
m0duspwnens
|
4c8373452d
|
change to iptables-nft-services
|
2023-07-28 11:35:34 -04:00 |
|
m0duspwnens
|
3a22ef8e86
|
change iptables package name for redhat fam
|
2023-07-28 08:40:32 -04:00 |
|
m0duspwnens
|
54080c42fe
|
enable, not enabled
|
2023-07-27 17:01:19 -04:00 |
|
m0duspwnens
|
3c16218c5a
|
map services,pkg,config for firewall state
|
2023-07-27 15:45:18 -04:00 |
|
m0duspwnens
|
bc182c1c43
|
only run firewalld states if os_family is RedHat
|
2023-07-27 09:24:41 -04:00 |
|
m0duspwnens
|
fe9b934af6
|
Merge remote-tracking branch 'origin/2.4/dev' into iptables
|
2023-07-26 16:32:03 -04:00 |
|
m0duspwnens
|
373298430b
|
only run iptables-restore if config file is valid
|
2023-07-26 16:31:22 -04:00 |
|
Josh Brower
|
f24a3a51ce
|
Heavy Node fixes
|
2023-07-25 18:28:41 -04:00 |
|
m0duspwnens
|
4c9d172721
|
sorange to range
|
2023-07-21 16:21:18 -04:00 |
|
Josh Brower
|
7805ca8beb
|
Add Failover Support
|
2023-07-10 10:38:14 -04:00 |
|
m0duspwnens
|
5de9e5baf4
|
allow sensor to logstash on receiver
|
2023-06-15 14:46:46 -04:00 |
|
m0duspwnens
|
469390696e
|
2.4 receiver changes
|
2023-06-15 11:04:16 -04:00 |
|
m0duspwnens
|
2db95fe1b4
|
fw rules for receiver to managers
|
2023-06-14 15:24:14 -04:00 |
|
m0duspwnens
|
934b0f45a1
|
allow receiver to connect to salt manager
|
2023-06-14 15:08:07 -04:00 |
|
Josh Brower
|
5536f5a8c2
|
Add Fleet node to other roles
|
2023-05-17 09:32:20 -04:00 |
|
Mike Reeves
|
fb298224fc
|
Update defaults.yaml
|
2023-05-16 08:17:50 -04:00 |
|
Mike Reeves
|
a4cd695cc8
|
Airgap Rules Fix
|
2023-05-11 16:00:07 -04:00 |
|
m0duspwnens
|
b0bd64bc10
|
define and assign elastic_agent_update port
|
2023-05-03 12:40:56 -04:00 |
|
m0duspwnens
|
767c922083
|
add idh to firewall annotation
|
2023-05-03 11:55:29 -04:00 |
|
m0duspwnens
|
8359f1983c
|
idh firewall
|
2023-05-03 10:53:13 -04:00 |
|
m0duspwnens
|
c597766390
|
assign firewall pillars to * in top
|
2023-05-03 10:17:45 -04:00 |
|
Josh Brower
|
544fa824ea
|
Initial cut for Artifact Registry
|
2023-05-02 14:17:59 -04:00 |
|
m0duspwnens
|
80b40503fb
|
no more plural roles, update so-firewall-minion
|
2023-05-01 17:28:16 -04:00 |
|
m0duspwnens
|
1f6463a9bb
|
rework so-firewall to work with pillar files
|
2023-05-01 16:49:06 -04:00 |
|
m0duspwnens
|
9a4ae2b832
|
start with customhostgroup0
|
2023-04-28 16:44:02 -04:00 |
|
m0duspwnens
|
725f5414ba
|
fw rework for ui, still need to add idh to map
|
2023-04-28 15:30:18 -04:00 |
|
Josh Brower
|
a7d282b412
|
Firewall fixup
|
2023-04-15 18:33:44 -04:00 |
|
Josh Brower
|
cda67b2894
|
Ded Fleet Node - checkpoint
|
2023-04-04 16:11:22 -04:00 |
|
Josh Brower
|
af392681e3
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into fleet-sa
|
2023-04-03 07:27:04 -04:00 |
|
m0duspwnens
|
627b243cac
|
Merge remote-tracking branch 'origin/2.4/dev' into guifixes
|
2023-03-24 13:52:38 -04:00 |
|
m0duspwnens
|
462b2b23b9
|
rework idh for web ui
|
2023-03-24 13:52:21 -04:00 |
|
Mike Reeves
|
007e2baf41
|
Change Elastic Logic
|
2023-03-21 17:46:52 -04:00 |
|
m0duspwnens
|
e3f9b5297a
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/heavynode
|
2023-03-02 16:58:56 -05:00 |
|