m0duspwnens
|
0c6aba16ec
|
fix redis input
|
2021-12-14 23:42:37 -05:00 |
|
m0duspwnens
|
15b8d80b71
|
fix host for input_redis
|
2021-12-14 18:51:43 -05:00 |
|
m0duspwnens
|
55b74abcc5
|
extra_hosts and redis_input for logstash
|
2021-12-14 18:49:30 -05:00 |
|
m0duspwnens
|
4da017d61c
|
change extra_hosts for docker container
|
2021-12-14 17:05:30 -05:00 |
|
m0duspwnens
|
a31d61e151
|
handle ca for redis
|
2021-12-14 16:43:04 -05:00 |
|
m0duspwnens
|
841b91e052
|
exclude elasticsearch and managerssl keys and certs from receiver
|
2021-12-14 16:05:47 -05:00 |
|
m0duspwnens
|
d0b6d5bba6
|
remove so-eval from lists since it doesnt run logstash
|
2021-12-14 15:33:06 -05:00 |
|
m0duspwnens
|
a31f034f2e
|
remove receiver add node for cacerts and tls-ca-bundle for logstash bind
|
2021-12-14 15:02:59 -05:00 |
|
m0duspwnens
|
6962e3f9b3
|
fix logstash certs mapped into container
|
2021-12-14 14:52:15 -05:00 |
|
m0duspwnens
|
c490a3be36
|
move node_data pillar to logstash:nodes, set extra hosts for filebeat docker
|
2021-12-14 13:32:42 -05:00 |
|
m0duspwnens
|
6518691c55
|
sort the items
|
2021-12-13 18:16:25 -05:00 |
|
m0duspwnens
|
067e79894f
|
fix loop for node_data
|
2021-12-13 16:26:38 -05:00 |
|
m0duspwnens
|
6de2f5bd03
|
fix node_data
|
2021-12-13 15:55:09 -05:00 |
|
m0duspwnens
|
8d0872bce5
|
create node_data pillar from mine data, use node_data pillar for filebeat config
|
2021-12-13 15:48:30 -05:00 |
|
m0duspwnens
|
86f67198bf
|
loadbalance filebeat if across managers and receivers
|
2021-12-10 17:43:06 -05:00 |
|
m0duspwnens
|
fe7247f876
|
update fw for receiver and add mine_functions for ip_addr
|
2021-12-10 15:28:40 -05:00 |
|
m0duspwnens
|
d94496bb90
|
remove minio_key and add missing endif
|
2021-12-09 13:24:20 -05:00 |
|
m0duspwnens
|
c2a952796c
|
Merge remote-tracking branch 'remotes/origin/sans' into issue/6469
|
2021-12-09 13:13:18 -05:00 |
|
Mike Reeves
|
b92cbb01b3
|
SSL modifications
|
2021-12-09 13:13:01 -05:00 |
|
m0duspwnens
|
5b70d5510f
|
Merge remote-tracking branch 'remotes/origin/sans' into issue/6469
|
2021-12-09 13:12:00 -05:00 |
|
Mike Reeves
|
a7f0d81555
|
SSL modifications
|
2021-12-09 13:07:00 -05:00 |
|
m0duspwnens
|
ecc8594d44
|
prevent so-receiver from getting extra keys/certs
|
2021-12-08 13:32:56 -05:00 |
|
m0duspwnens
|
59464af10c
|
filebeat certs for logstash on so-receiver
|
2021-12-08 09:41:17 -05:00 |
|
m0duspwnens
|
1ef63f3a23
|
ssl things for so-receiver
|
2021-12-08 09:08:46 -05:00 |
|
m0duspwnens
|
8c95d0f36b
|
set ip for wazuh-register-agent and dont apply nginx in setup for receiver
|
2021-12-07 16:50:41 -05:00 |
|
m0duspwnens
|
429b9cab2f
|
set ip for ossec.conf
|
2021-12-07 16:22:07 -05:00 |
|
m0duspwnens
|
f8da5c7fe9
|
start of fw rules for receiver
|
2021-12-07 15:59:11 -05:00 |
|
m0duspwnens
|
06010bd157
|
add so-receiver to allowed_states
|
2021-12-07 13:34:06 -05:00 |
|
m0duspwnens
|
7549e34881
|
Merge remote-tracking branch 'remotes/origin/dev' into issue/6469
|
2021-12-07 10:57:12 -05:00 |
|
Jason Ertel
|
702d95c63a
|
Merge branch 'master' into merge-202112071527
|
2021-12-07 10:28:00 -05:00 |
|
m0duspwnens
|
96666ab307
|
add receiver node
|
2021-12-07 10:19:32 -05:00 |
|
Wes Lambert
|
0571612ea1
|
Add initial EG dashes
|
2021-12-03 22:38:30 +00:00 |
|
Mike Reeves
|
f82d204c0e
|
Update soup
|
2021-12-03 15:20:33 -05:00 |
|
Mike Reeves
|
780daf8aa7
|
Apply hotfix to all 2.3.90 installs
|
2021-12-03 15:15:45 -05:00 |
|
m0duspwnens
|
c6773a0bbc
|
move "Preparing soup" to main so shows in soup.log
|
2021-12-03 10:26:22 -05:00 |
|
m0duspwnens
|
ff2d2c7c04
|
export LC_CTYPE="en_US.UTF-8" - https://github.com/Security-Onion-Solutions/securityonion/discussions/6431
|
2021-12-02 16:39:32 -05:00 |
|
Mike Reeves
|
f5761c73a5
|
Fix for the clustername used in wrong context
|
2021-12-02 15:30:35 -05:00 |
|
m0duspwnens
|
8d667795a7
|
only add soc:es_index_patterns to pillar if not already present
|
2021-12-02 10:28:17 -05:00 |
|
m0duspwnens
|
7a664ab8f7
|
more error proof up_to_2.3.90 function
|
2021-12-02 10:02:26 -05:00 |
|
Jason Ertel
|
e549cfdf82
|
Reign in the Wazuh port check to only complain if a non-Docker process is listening on 55000.
|
2021-12-02 09:35:13 -05:00 |
|
Josh Brower
|
97cd679d74
|
Fix FleetDM nginx errors
|
2021-12-02 08:17:01 -05:00 |
|
William Wernert
|
6e7188b4d8
|
Merge branch 'hotfix/2.3.90' into hotfix-merge
# Conflicts:
# HOTFIX
|
2021-12-01 14:40:34 -05:00 |
|
m0duspwnens
|
5e0ac89841
|
merge with master
|
2021-12-01 14:27:58 -05:00 |
|
m0duspwnens
|
c571b2c499
|
handle redirect if more than 1 match from compgen
|
2021-12-01 13:17:14 -05:00 |
|
Josh Patterson
|
63cb486698
|
remove redirect to /dev/null for compgen
|
2021-12-01 10:16:04 -05:00 |
|
Dustin Lee
|
8a394380cb
|
add subjectAltName to filebeat.crt
IP SAN is required for Endgame integration w/Logstash when DNS resolution is unavailable
|
2021-11-30 16:24:08 -05:00 |
|
William Wernert
|
8d87fae6a8
|
Remove airgap repo file if it shouldn't exist
|
2021-11-30 15:46:22 -05:00 |
|
Jason Ertel
|
4f283c2d86
|
Suppres grep output
|
2021-11-23 14:52:40 -05:00 |
|
Jason Ertel
|
801d42ed20
|
Correct if check to inline the command instead of checking for emptiness of a variable
|
2021-11-23 14:51:06 -05:00 |
|
Jason Ertel
|
59fc122eec
|
Force restart of wazuh since conf file is changing
|
2021-11-23 13:29:04 -05:00 |
|