Josh Brower
|
189d0f5f36
|
Merge branch 'dev' of https://github.com/Security-Onion-Solutions/securityonion-saltstack into dev
|
2020-06-08 13:28:46 -04:00 |
|
Josh Brower
|
913c1a89bf
|
Fleet setup fixes
|
2020-06-08 13:28:27 -04:00 |
|
William Wernert
|
941ad5acf6
|
Merge branch 'dev' of github.com:Security-Onion-Solutions/securityonion-saltstack into dev
|
2020-06-08 12:12:29 -04:00 |
|
William Wernert
|
e2c3fe3342
|
[fix] Add X-Forwarded-Proto to nginx configs
|
2020-06-08 12:12:25 -04:00 |
|
Josh Brower
|
51f97f5ae5
|
Fleet setup - final fixes
|
2020-06-08 08:47:06 -04:00 |
|
Josh Brower
|
3f3990ac83
|
Merge remote-tracking branch 'remotes/origin/dev' into feature/fleet-setup
|
2020-06-08 08:30:37 -04:00 |
|
Josh Brower
|
33f21c05f7
|
Fleet standaline custom fqdn fixes
|
2020-06-06 10:03:25 -04:00 |
|
Josh Brower
|
88219c4827
|
Merge pull request #827 from Security-Onion-Solutions/feature/wlb5
Initial support - external beats
|
2020-06-05 10:47:56 -04:00 |
|
Josh Brower
|
4e4eeedb41
|
Initial support - external beats
|
2020-06-04 22:41:35 -04:00 |
|
Jason Ertel
|
7edf9a67c3
|
Ensure standalone mode supports the settings flow
|
2020-06-04 10:46:27 -04:00 |
|
Mike Reeves
|
f3fabcd93c
|
Enable git
|
2020-06-03 16:21:45 -04:00 |
|
Josh Brower
|
3d92145bb9
|
Fleet standalone - custom hostnames
|
2020-06-03 15:52:18 -04:00 |
|
Jason Ertel
|
970368c74e
|
Avoid logs leaking to stdout/stderr during cron jobs
|
2020-06-03 09:42:44 -04:00 |
|
Josh Brower
|
eaacb7b71e
|
Fleet cleanup
|
2020-06-03 05:54:35 -04:00 |
|
Jason Ertel
|
e6fcf75181
|
Re-ordered wazuh setup to avoid agent-service failures due to missing client.keys file; Prepare for user profile settings screen support in reverse proxy
|
2020-06-02 17:31:51 -04:00 |
|
weslambert
|
c91bc0e681
|
Clean up some stuff
|
2020-06-02 15:31:48 -04:00 |
|
Wes Lambert
|
8cac30728b
|
update Logstash config
|
2020-06-02 17:36:36 +00:00 |
|
Wes Lambert
|
91673a5d70
|
Update FB config
|
2020-06-02 17:33:42 +00:00 |
|
Josh Brower
|
b5cc653179
|
Fleet standalone fixes - mainip
|
2020-06-02 09:39:42 -04:00 |
|
Jason Ertel
|
42683ddb67
|
always restart acng and registry containers when docker restarts
|
2020-06-02 09:12:25 -04:00 |
|
Jason Ertel
|
07c0075fc0
|
Upgrade containerd.io and docker-ce to match ISO rpms
|
2020-06-02 08:43:06 -04:00 |
|
Josh Brower
|
b695b7f245
|
Fleet standalone fixes - firewall
|
2020-06-02 08:05:48 -04:00 |
|
Jason Ertel
|
9d5f4049b5
|
Avoid filtering NIC when it's an empty string
|
2020-06-02 05:52:03 -04:00 |
|
Mike Reeves
|
307cbe4b77
|
Couple of QOL scripts
|
2020-06-01 20:48:25 -04:00 |
|
Josh Brower
|
4b14ecf1d9
|
Fleet standalone fixes
|
2020-06-01 16:36:32 -04:00 |
|
m0duspwnens
|
1737b46abb
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-06-01 12:15:00 -04:00 |
|
Doug Burks
|
80d1814f10
|
remove event.module:zeek to make queries more generic
|
2020-06-01 12:00:33 -04:00 |
|
Mike Reeves
|
03f34404b1
|
Suricata 5 Meta Data
|
2020-06-01 11:03:43 -04:00 |
|
Wes Lambert
|
51f5d64ef6
|
Rename tunnel_parents
|
2020-06-01 13:51:32 +00:00 |
|
Wes Lambert
|
d7ce3d4719
|
fix naming of uid field for tunnel
|
2020-06-01 12:52:57 +00:00 |
|
Doug Burks
|
f559621f00
|
add x509 issuer and subject groupby queries
|
2020-06-01 07:48:50 -04:00 |
|
Doug Burks
|
46dc5f42e9
|
combine two http queries into one with multiple groupby
|
2020-06-01 07:30:08 -04:00 |
|
m0duspwnens
|
5ddfb7ccce
|
fix merge conflicts
|
2020-05-29 17:31:07 -04:00 |
|
m0duspwnens
|
4dfb58a98c
|
change how whitelist script determines if wazuh is enabled
|
2020-05-29 17:22:39 -04:00 |
|
m0duspwnens
|
17879ad88c
|
add nginx state to searchnode in salt/top
|
2020-05-29 17:01:43 -04:00 |
|
m0duspwnens
|
15fc97e516
|
adding suricata.master state to mastersearch - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/749
|
2020-05-29 13:11:55 -04:00 |
|
m0duspwnens
|
6db8470de7
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/749
|
2020-05-29 13:09:49 -04:00 |
|
m0duspwnens
|
3143643692
|
add navigator to master if enabled
|
2020-05-29 13:05:26 -04:00 |
|
m0duspwnens
|
2db2054cce
|
update instructions in logstash customer pipelines and templates - https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/749
|
2020-05-29 10:58:53 -04:00 |
|
Wes Lambert
|
4059121dd6
|
fix framed_addr field
|
2020-05-29 11:55:18 +00:00 |
|
m0duspwnens
|
40fa5293bf
|
move fileserve update to suricata.master
|
2020-05-28 15:54:11 -04:00 |
|
Wes Lambert
|
7f75050682
|
Add basic Zeek stats script
|
2020-05-28 17:54:15 +00:00 |
|
Josh Brower
|
aeb71bb8f0
|
Simplified setup script
|
2020-05-28 13:21:25 -04:00 |
|
weslambert
|
b835c2e27e
|
Update for exact match (ex. thehive, thehive-es, thehive-cortex)
|
2020-05-28 13:17:31 -04:00 |
|
weslambert
|
12f426d4f4
|
Move eve.json to /nsm
|
2020-05-28 12:59:41 -04:00 |
|
Wes Lambert
|
869bfb947d
|
add master to SOCtopus hosts file
|
2020-05-28 16:45:48 +00:00 |
|
weslambert
|
d2263db0ff
|
Update init.sls
|
2020-05-28 12:11:08 -04:00 |
|
m0duspwnens
|
4f15de8b77
|
refresh salt fileserver if suricata rule symlink is created
|
2020-05-28 12:00:22 -04:00 |
|
Josh Brower
|
e53e891bd6
|
Fleet reactor - Typo fix
|
2020-05-28 11:36:38 -04:00 |
|
Wes Lambert
|
b7d7747f65
|
allow syslog
|
2020-05-28 13:56:02 +00:00 |
|