Wes
|
b5bccc5e05
|
Use module in dataset name and add dataset tag
|
2023-06-15 13:06:57 +00:00 |
|
Josh Brower
|
8b35002169
|
EQL Refactor
|
2023-06-07 13:44:37 -04:00 |
|
Josh Brower
|
766f4dd661
|
Add Elastic Defend Integration
|
2023-05-22 16:02:08 -04:00 |
|
m0duspwnens
|
b526532ab6
|
use global vars in states
|
2022-10-11 11:57:15 -04:00 |
|
Jason Ertel
|
afe7ddb480
|
Remove passwords from soctopus templates since these are the basis for elastalert rules, which will use the user/pass at the elastalert global config level
|
2021-06-17 15:51:53 -04:00 |
|
Jason Ertel
|
2d34208269
|
Elastic auth: Fun with Salt
|
2021-06-16 17:52:22 -04:00 |
|
Jason Ertel
|
09fbb045a1
|
If ES auth disabled ensure user/pass are blank
|
2021-06-16 09:59:57 -04:00 |
|
Jason Ertel
|
62187807f0
|
Specify elastic creds for playbook alert templates
|
2021-06-14 14:08:14 -04:00 |
|
Josh Brower
|
8a78485906
|
Config Playbook SOC Alerts
|
2020-10-04 21:35:42 -04:00 |
|
Jason Ertel
|
1454201505
|
Disable thehivealerter
|
2020-09-30 15:26:29 -04:00 |
|
m0duspwnens
|
e6da423dc3
|
change reference from manager:url_base to global:url_base - https://github.com/Security-Onion-Solutions/securityonion/issues/1039
|
2020-08-14 17:55:30 -04:00 |
|
Josh Brower
|
b724d40376
|
Playbook Stability Fixes
|
2020-08-11 15:07:16 -04:00 |
|
Josh Brower
|
a8b980b6a7
|
More Playbook Fixes - Issue #1064
|
2020-08-07 13:35:43 -04:00 |
|
Mike Reeves
|
24ed92c9dc
|
minio and change to global
|
2020-08-04 15:54:03 -04:00 |
|
m0duspwnens
|
0a1b5f29eb
|
merge with dev and resolv conflicts
|
2020-07-10 10:48:49 -04:00 |
|
m0duspwnens
|
1f48dc765e
|
merge with dev and resolv conflicts
|
2020-07-10 10:36:48 -04:00 |
|
Josh Brower
|
52f7111e1d
|
Feature - low level alerts
|
2020-07-09 13:53:55 -04:00 |
|
m0duspwnens
|
3cf31e2460
|
https://github.com/Security-Onion-Solutions/securityonion/issues/404
|
2020-07-09 11:27:06 -04:00 |
|
Josh Brower
|
8a68e6adb3
|
Playbook hivealert fixes
|
2020-05-13 19:27:14 -04:00 |
|
Josh Brower
|
240620caa3
|
Playbook - create play API
|
2020-02-14 16:38:02 -05:00 |
|
Josh Brower
|
ed9c52925a
|
Playbook - thehive alert tweak
|
2019-11-23 14:09:41 -05:00 |
|
Josh Brower
|
7259a5346b
|
Update osquery.template
|
2019-11-13 13:49:34 -05:00 |
|
Josh Brower
|
3fc43fa2da
|
Update osquery.template
|
2019-11-13 09:52:07 -05:00 |
|
Josh Brower
|
977f39cea7
|
Update generic.template
|
2019-11-13 09:47:04 -05:00 |
|
Josh Brower
|
94e15ed502
|
Tweaked for sigmac backend change
|
2019-10-27 14:36:52 -04:00 |
|
Josh Brower
|
308041fad6
|
SOCtopus - Edit osquery playbook template
Fixes bug for when there is no [osquery][columns][address] field
|
2019-10-01 17:59:35 -04:00 |
|
Josh Brower
|
bc788a3d35
|
Playbook - initial commit
|
2019-09-24 20:09:20 -04:00 |
|