m0duspwnens
|
609a2bf32e
|
only import ZEEKMERGED if a sensor type node
|
2023-08-08 09:27:03 -04:00 |
|
Josh Brower
|
8611d1848c
|
Set as default
|
2023-08-07 15:55:53 -04:00 |
|
m0duspwnens
|
5278601e5d
|
manage telegraf scripts with a defaults file assigned per node type
|
2023-08-07 11:18:35 -04:00 |
|
Doug Burks
|
90102b1148
|
Finish reverting yesterday's change to zeekcaptureloss.sh
|
2023-08-05 09:23:27 -04:00 |
|
Doug Burks
|
ec81cbd70d
|
Revert yesterday's change to zeekcaptureloss.sh
|
2023-08-05 09:11:58 -04:00 |
|
Josh Patterson
|
59c0109c91
|
Merge pull request #10961 from Security-Onion-Solutions/fix/tgrafzeekcloss
fix count of WORKERS for zeekcaptureloss script for telegraf
|
2023-08-04 16:39:26 -04:00 |
|
m0duspwnens
|
9af2a731ca
|
fix count of WORKERS for zeekcaptureloss script for telegraf
|
2023-08-04 16:29:30 -04:00 |
|
Josh Brower
|
9b656ebbc0
|
Merge pull request #10960 from Security-Onion-Solutions/2.4/fleetcustomfqdn
Refactor to remove new line
|
2023-08-04 16:16:43 -04:00 |
|
Josh Brower
|
9d3744aa25
|
Refactor to remove new line
|
2023-08-04 16:05:28 -04:00 |
|
Josh Patterson
|
9fddd56c96
|
Merge pull request #10959 from Security-Onion-Solutions/desktopyummv
Desktopyummv
|
2023-08-04 16:03:20 -04:00 |
|
m0duspwnens
|
89c4f58296
|
fix indents
|
2023-08-04 15:41:10 -04:00 |
|
m0duspwnens
|
0ba1e7521a
|
set default session for preexisting users
|
2023-08-04 15:36:44 -04:00 |
|
m0duspwnens
|
36747cf940
|
add networkminer to desktop.packages
|
2023-08-04 13:52:01 -04:00 |
|
Doug Burks
|
63373710b4
|
Update soup to rotate log file
|
2023-08-04 12:26:36 -04:00 |
|
Doug Burks
|
209da766ba
|
Update soup to rotate log file
|
2023-08-04 12:16:14 -04:00 |
|
m0duspwnens
|
433cde0f9e
|
Merge remote-tracking branch 'origin/2.4/dev' into desktopyummv
|
2023-08-04 11:25:06 -04:00 |
|
m0duspwnens
|
014aeffb2a
|
add analyst back
|
2023-08-04 09:56:33 -04:00 |
|
m0duspwnens
|
3b86b60207
|
Merge remote-tracking branch 'origin/2.4/dev' into fix/idhfirewall
|
2023-08-04 09:40:01 -04:00 |
|
m0duspwnens
|
0f52530d07
|
soc_firewall.yaml update adding idh and rename analyst to workstation
|
2023-08-04 09:37:58 -04:00 |
|
m0duspwnens
|
726ec72350
|
allow idh to connect to salt_manager ports on managres
|
2023-08-04 09:22:59 -04:00 |
|
m0duspwnens
|
a51acfc314
|
rename analyst to workstation for fw rules. allow workstation to connect to salt_manager port on managers
|
2023-08-04 09:17:22 -04:00 |
|
Josh Brower
|
dd1fa51eb5
|
Generate community_id for defend endpoint logs
|
2023-08-04 09:03:17 -04:00 |
|
m0duspwnens
|
682289ef23
|
add sensoroni ports where missing
|
2023-08-04 09:01:09 -04:00 |
|
m0duspwnens
|
593cdbd060
|
add rules for idh to connect to managers, change idh from sensor to idh in so-firewall-minion
|
2023-08-04 08:50:06 -04:00 |
|
Josh Brower
|
2472d6a727
|
Don't watch certs on search nodes
|
2023-08-03 18:52:29 -04:00 |
|
Mike Reeves
|
18e31a4490
|
Merge pull request #10944 from Security-Onion-Solutions/raid
Raid refactor + yara and rule proxy
|
2023-08-03 17:18:19 -04:00 |
|
Mike Reeves
|
2caca92082
|
Raid refactor + yara and rule proxy
|
2023-08-03 17:11:43 -04:00 |
|
weslambert
|
abf74e0ae4
|
Merge pull request #10940 from Security-Onion-Solutions/foxtrot
Add time shift for so-import-evtx
|
2023-08-03 16:56:40 -04:00 |
|
Josh Brower
|
6b5343f582
|
Update for 8.8.2
|
2023-08-03 16:25:02 -04:00 |
|
weslambert
|
3e4136e641
|
Update help text
|
2023-08-03 15:56:05 -04:00 |
|
m0duspwnens
|
15b8e1a753
|
add convert-gnome-classic.sh
|
2023-08-03 15:37:26 -04:00 |
|
Doug Burks
|
b7197bbd16
|
Merge pull request #10939 from Security-Onion-Solutions/dougburks-patch-1
Update soup for airgap
|
2023-08-03 15:28:28 -04:00 |
|
Josh Brower
|
8966617508
|
Merge pull request #10926 from Security-Onion-Solutions/2.4/FleetEnhancments
2.4/fleet-Enhancements
|
2023-08-03 15:28:03 -04:00 |
|
Doug Burks
|
9319c3f2e1
|
Update soup for airgap
|
2023-08-03 15:27:24 -04:00 |
|
m0duspwnens
|
d4fbf7d6a6
|
convert to gnome classic
|
2023-08-03 15:26:43 -04:00 |
|
Josh Brower
|
e78fcbc6cb
|
Refactor for Jinja instead
|
2023-08-03 15:25:11 -04:00 |
|
Josh Brower
|
27b70cbf68
|
Use jinja instead
|
2023-08-03 15:21:20 -04:00 |
|
Doug Burks
|
80598d7f8d
|
Update soup for airgap
|
2023-08-03 14:36:47 -04:00 |
|
Josh Patterson
|
13c3e7f5ff
|
Merge pull request #10934 from Security-Onion-Solutions/fix/soupairgap
ensure AIRGAP is lowercase and check for true
|
2023-08-03 12:00:06 -04:00 |
|
m0duspwnens
|
d4389d5057
|
ensure AIRGAP is lowercase and check for true
|
2023-08-03 11:56:48 -04:00 |
|
weslambert
|
cf2233bbb6
|
Add help information for time shift
|
2023-08-03 08:54:54 -04:00 |
|
weslambert
|
3847863b3d
|
Add time shift
|
2023-08-03 08:51:23 -04:00 |
|
Josh Brower
|
1bc7bbc76e
|
Refactor custom_fqdn
|
2023-08-02 20:02:37 -04:00 |
|
Jason Ertel
|
e108bb9bcd
|
Merge pull request #10932 from Security-Onion-Solutions/jertel/agentcommon
remove unused vars
|
2023-08-02 19:29:03 -04:00 |
|
Jason Ertel
|
5414b0756c
|
remove unused vars
|
2023-08-02 19:25:07 -04:00 |
|
Jason Ertel
|
11c827927c
|
Merge pull request #10931 from Security-Onion-Solutions/jertel/agentcommon
refactor elastic-agent download for soup ctrl+c anomalies
|
2023-08-02 19:20:45 -04:00 |
|
Jason Ertel
|
3054b8dcb9
|
refactor elastic-agent download for soup ctrl+c anomalies
|
2023-08-02 18:57:46 -04:00 |
|
Josh Brower
|
399758cd5f
|
Merge remote-tracking branch 'origin/2.4/dev' into 2.4/FleetEnhancments
|
2023-08-02 17:58:48 -04:00 |
|
Josh Brower
|
1c8a8c460c
|
Restart logstash when certs change
|
2023-08-02 17:53:29 -04:00 |
|
Josh Brower
|
ab28cee7cf
|
Allow multiple Custom Fleet FQDN
|
2023-08-02 17:45:37 -04:00 |
|