Doug Burks
|
09e005127e
|
Update soc_zeek.yaml
|
2023-06-02 07:41:55 -04:00 |
|
Wes
|
2bb77251b0
|
Move Elastic Fleet logging exclusions to the Fleet pillar
|
2023-05-31 13:38:58 +00:00 |
|
weslambert
|
36791665f3
|
Merge pull request #10462 from Security-Onion-Solutions/feature/elastic_agent_zeek_logging
Dynamic integration configuration and Zeek log exclusions for Elastic Agent
|
2023-05-30 19:27:13 -04:00 |
|
Wes
|
e5117a343d
|
Change description
|
2023-05-30 17:10:17 +00:00 |
|
Wes
|
e910f04beb
|
Add default description and Zeek log exclusions for Elastic Fleet
|
2023-05-30 03:10:52 +00:00 |
|
Mike Reeves
|
8ce0d76287
|
Zeek Annotations
|
2023-05-25 12:12:18 -04:00 |
|
Mike Reeves
|
3be3df00d1
|
Zeek Annotations
|
2023-05-25 12:10:15 -04:00 |
|
Mike Reeves
|
bf4ac0c2dd
|
Allow additional docker parameters
|
2023-05-18 17:08:39 -04:00 |
|
Mike Reeves
|
5315c51197
|
Allow additional docker parameters
|
2023-05-18 16:52:38 -04:00 |
|
Mike Reeves
|
0fd9fb9294
|
Allow additional docker parameters
|
2023-05-18 15:19:09 -04:00 |
|
m0duspwnens
|
63cea88c1d
|
enable/disable influxdb in ui
|
2023-05-11 12:43:06 -04:00 |
|
m0duspwnens
|
9049f9cf03
|
enabled/disable elastalert via web ui
|
2023-05-08 15:56:26 -04:00 |
|
m0duspwnens
|
d5c7eec4ef
|
enabled false by default, enabled via pillar in so-minion
|
2023-05-08 13:43:53 -04:00 |
|
m0duspwnens
|
5d50dbb69e
|
enabled/disable zeek
|
2023-05-08 10:12:32 -04:00 |
|
m0duspwnens
|
743bbfea35
|
add zeek.enabled to zeek annotation file
|
2023-05-05 17:09:01 -04:00 |
|
m0duspwnens
|
e8a5a5bffb
|
import GLOBALS
|
2023-05-05 16:44:46 -04:00 |
|
m0duspwnens
|
a97fa9675b
|
enable/disable zeek in ui
|
2023-05-05 16:33:59 -04:00 |
|
Mike Reeves
|
cbd1c05929
|
Sbin Changes
|
2023-05-04 10:36:03 -04:00 |
|
Mike Reeves
|
d5c4a2887e
|
Fix annotations and defaults for logstash
|
2023-05-03 13:37:06 -04:00 |
|
bryant-treacle
|
57d90a62f7
|
Update soc_zeek.yaml
|
2023-04-27 16:21:41 -04:00 |
|
Mike Reeves
|
3d7f2bc691
|
Fix annotations and file locations
|
2023-04-27 13:23:53 -04:00 |
|
bryant-treacle
|
e93e58fedb
|
Update node.cfg.jinja
|
2023-04-26 08:28:40 -04:00 |
|
m0duspwnens
|
b0f9585da1
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10050
|
2023-04-18 11:31:00 -04:00 |
|
m0duspwnens
|
7c8ba04820
|
set file limit for zeek container
|
2023-04-18 11:30:39 -04:00 |
|
Mike Reeves
|
04eb73ac27
|
Update defaults.yaml
|
2023-04-12 10:06:23 -04:00 |
|
m0duspwnens
|
2589670755
|
set forceType
|
2023-04-06 15:16:04 -04:00 |
|
m0duspwnens
|
df4bf95b93
|
sort local.zeek so redef is last
|
2023-04-06 09:54:59 -04:00 |
|
m0duspwnens
|
1be86cdf8e
|
issue 10050 and issue 10062
|
2023-03-29 17:21:40 -04:00 |
|
m0duspwnens
|
903ad530fe
|
move zeek bpf from zeek pillar to bpf pillar
|
2023-03-20 15:28:33 -04:00 |
|
Doug Burks
|
4a2e75dd8c
|
fix formatting
|
2023-03-03 17:16:45 -05:00 |
|
Doug Burks
|
adb925b4d6
|
enable zeek vlan script
|
2023-03-03 12:48:42 -05:00 |
|
Doug Burks
|
c15db73561
|
Avoid unnecessary Zeek processes in Import Mode
|
2023-01-10 16:48:47 -05:00 |
|
Wes
|
c741fe6b4d
|
Ensure ICS/SCADA plugins/scripts are enabled
|
2022-12-06 16:23:26 +00:00 |
|
Doug Burks
|
40f5bb25ef
|
FIX: Avoid deprecation warning in Zeek file extraction script #9123
|
2022-11-11 16:28:23 -05:00 |
|
Mike Reeves
|
bf5df1ac51
|
Add Strelka Filecheck
|
2022-11-02 09:57:07 -04:00 |
|
m0duspwnens
|
b526532ab6
|
use global vars in states
|
2022-10-11 11:57:15 -04:00 |
|
doug
|
fee5a7bea9
|
initial quick OCD pass
|
2022-09-23 16:29:55 -04:00 |
|
m0duspwnens
|
e1ea3c2031
|
soc for zeek
|
2022-09-20 16:22:54 -04:00 |
|
m0duspwnens
|
1685e0e6db
|
few more
|
2022-09-20 15:25:50 -04:00 |
|
m0duspwnens
|
75aa121b2d
|
fix some things
|
2022-09-20 13:19:15 -04:00 |
|
m0duspwnens
|
29285b8fb1
|
fix conflixt in zeek/init.sls
|
2022-09-20 11:12:44 -04:00 |
|
m0duspwnens
|
d1ee3a7d04
|
zeek 2.4
|
2022-09-20 11:11:29 -04:00 |
|
m0duspwnens
|
79785fc053
|
zeek jinja
|
2022-09-19 15:26:32 -04:00 |
|
Mike Reeves
|
958d2494a8
|
Zeek Test
|
2022-09-16 10:27:42 -04:00 |
|
Mike Reeves
|
2a51ecb1ac
|
Zeek Test
|
2022-09-16 09:10:09 -04:00 |
|
Mike Reeves
|
f02db7a815
|
Zeek Test
|
2022-09-16 09:05:16 -04:00 |
|
Mike Reeves
|
9a6fe3e8de
|
Add BPF
|
2022-09-16 08:36:44 -04:00 |
|
Mike Reeves
|
a4dc63f3a4
|
Change how zeek and suri are populated in the minion file
|
2022-09-14 09:53:57 -04:00 |
|
Mike Reeves
|
9ca2e6e871
|
Add more logging to setup process
|
2022-09-12 14:20:59 -04:00 |
|
Mike Reeves
|
2254512a2a
|
Add more logging to setup process
|
2022-09-12 12:48:02 -04:00 |
|