Jason Ertel
|
7451aa990b
|
Improve formatting of changes list
|
2021-02-27 08:14:44 -05:00 |
|
Jason Ertel
|
9631327c71
|
Add changes.json for 2.3.30
|
2021-02-26 18:11:13 -05:00 |
|
Doug Burks
|
c18c865764
|
Improve Hunt queries for ssh and tunnel #3128
|
2021-02-25 09:23:19 -05:00 |
|
Doug Burks
|
ef1e296415
|
Improve Hunt queries for ssh and tunnel #3128
|
2021-02-25 08:52:34 -05:00 |
|
doug
|
fabe3c87f2
|
Hunt: improve Wazuh queries #2383
|
2021-02-16 11:56:14 -05:00 |
|
Jason Ertel
|
71e0014115
|
Wrap parenthesis around correlation filter to allow additional filtering
|
2021-01-19 17:51:23 -05:00 |
|
Jason Ertel
|
2006677a22
|
Add default customization file (Blank)
|
2021-01-15 20:08:27 -05:00 |
|
Jason Ertel
|
370a2cdb81
|
Update change.json for 2.3.20
|
2020-12-17 15:49:09 -05:00 |
|
Jason Ertel
|
5d955bcdb7
|
Enable new SoStatus module in SOC for managing grid status
|
2020-12-08 09:22:18 -05:00 |
|
Jason Ertel
|
b7bc8db3b2
|
Modify PCAP quick action to work off of network community ID; Add new Correlate quick action
|
2020-12-01 17:37:44 -05:00 |
|
Jason Ertel
|
81b86bf7f2
|
Switch PCAP quick actions to support alternative lookup link when a single event ID is not available
|
2020-12-01 16:04:50 -05:00 |
|
m0duspwnens
|
2a3951ab36
|
change typo on minon to minion
|
2020-11-19 15:08:08 -05:00 |
|
m0duspwnens
|
d68726f6ef
|
upgrade from salt 3002.1 to salt 3002.2
|
2020-11-18 18:25:02 -05:00 |
|
Jason Ertel
|
1170b04a87
|
Update changes for 2.3.10
|
2020-11-18 16:18:00 -05:00 |
|
Jason Ertel
|
1ec8b52353
|
Replace scan.exiftool.* fields due to reduction in strelka field counts
|
2020-11-17 15:12:06 -05:00 |
|
Jason Ertel
|
210a7bc65b
|
Merge curator closed-delete-delete changes from the abandoned 2.3.3 release
|
2020-11-13 10:05:23 -05:00 |
|
Josh Patterson
|
fea6e6f4f9
|
Merge branch 'dev' into patch_2.3.3
|
2020-11-05 09:58:43 -05:00 |
|
Mike Reeves
|
3825becd1b
|
Update changes.json
|
2020-11-04 13:44:52 -05:00 |
|
Jason Ertel
|
aa9aa59213
|
Correct cheatsheetUrl for airgap installs
|
2020-11-03 12:27:55 -05:00 |
|
Jason Ertel
|
82a7b7e02d
|
Upgrade to Kratos 0.5.3-alpha1
|
2020-11-03 11:50:25 -05:00 |
|
Mike Reeves
|
97207bd006
|
Merge pull request #1702 from Security-Onion-Solutions/dockernet
Custom Docker IP Range
|
2020-10-28 10:48:56 -04:00 |
|
Mike Reeves
|
697bc53aec
|
Dockernet Modifications
|
2020-10-27 15:08:34 -04:00 |
|
Jason Ertel
|
5a705fc0f2
|
Add Hunt quick action for hunted events, grouping by dataset and module
|
2020-10-27 12:30:33 -04:00 |
|
Jason Ertel
|
474c4e54b4
|
Ensure labels and icons are associated with all quick actions
|
2020-10-27 12:04:57 -04:00 |
|
Mike Reeves
|
0ad65c8cd4
|
Merge pull request #1568 from jtgreen-cse/patch-1
fix for rendering error >1 search node
|
2020-10-26 16:57:17 -04:00 |
|
Jason Ertel
|
3809573963
|
Correct cheatsheet URL for airgap installs
|
2020-10-26 12:16:55 -04:00 |
|
Mike Reeves
|
b6f1cfada6
|
Update changes.json
|
2020-10-23 16:44:02 -04:00 |
|
Jason Ertel
|
85e0b2cab3
|
Add cheatsheet URL to soc.json
|
2020-10-23 16:35:35 -04:00 |
|
Mike Reeves
|
460a391460
|
Update changes.json
|
2020-10-22 10:00:20 -04:00 |
|
Jason Ertel
|
d37ddf584a
|
Correct quick action defaults
|
2020-10-20 14:12:23 -04:00 |
|
jtgreen-cse
|
eaa41266a2
|
fix for rendering error >1 search node
Fails rendering if you have more than one search node.
|
2020-10-20 13:24:53 -04:00 |
|
Mike Reeves
|
4a9fcfb8cf
|
Fix missing quote
|
2020-10-20 13:17:40 -04:00 |
|
Mike Reeves
|
a119d8f27d
|
Fix config for airgap installs
|
2020-10-20 11:28:49 -04:00 |
|
Jason Ertel
|
2326701cc0
|
Moved known issues underneath new changes
|
2020-10-15 19:29:33 -04:00 |
|
Jason Ertel
|
6ee37977c3
|
Fixed quotes and href targets
|
2020-10-15 19:25:26 -04:00 |
|
Mike Reeves
|
1ae35a39c3
|
Update changes.json
|
2020-10-15 19:11:55 -04:00 |
|
Mike Reeves
|
943aa82ce4
|
Update changes.json
|
2020-10-15 19:09:46 -04:00 |
|
Mike Reeves
|
131e105106
|
Update changes.json
|
2020-10-15 19:07:37 -04:00 |
|
Mike Reeves
|
cc56dc5a7f
|
Update changes.json
|
2020-10-15 19:05:47 -04:00 |
|
Jason Ertel
|
2ad6ab7dfc
|
Dynamically alter docs URL based on airgap setting
|
2020-10-13 12:29:59 -04:00 |
|
Mike Reeves
|
c388966e7e
|
Add airgap config
|
2020-10-13 12:05:19 -04:00 |
|
Mike Reeves
|
29c3948f95
|
Fix soc.json
|
2020-10-11 14:09:14 -04:00 |
|
Mike Reeves
|
31e0b5c81c
|
Add nodes to soc.json
|
2020-10-11 11:28:49 -04:00 |
|
Doug Burks
|
3cfee82b59
|
Update Hunt fields for firewall #1500
|
2020-10-10 08:18:00 -04:00 |
|
Doug Burks
|
5f15320b9d
|
Update Hunt fields for firewall #1500
|
2020-10-10 07:54:48 -04:00 |
|
Doug Burks
|
8cfabf101c
|
Update Hunt query for firewall #1499
|
2020-10-10 07:17:49 -04:00 |
|
Doug Burks
|
2489ca608a
|
Improve Hunt FTP queries #1479
|
2020-10-08 05:30:17 -04:00 |
|
Doug Burks
|
a686704d37
|
remove rule.uuid now that underlying issue has been resolved
|
2020-10-06 09:39:57 -04:00 |
|
Doug Burks
|
a45aa43f41
|
Add trailing comma to "thehive" stanza
|
2020-10-05 12:35:33 -04:00 |
|
Jason Ertel
|
1ebe970876
|
Disable escalate button if thehive is not enabled
|
2020-10-05 09:54:18 -04:00 |
|