Wes
|
9035fa3037
|
Don't load Elasticsearch integration
|
2023-05-30 15:46:00 +00:00 |
|
Wes
|
b4b87e5620
|
Only provide JSON output
|
2023-05-30 15:43:31 +00:00 |
|
Wes
|
97c53d70a4
|
Remove integrations
|
2023-05-30 14:05:40 +00:00 |
|
Wes
|
53b4f7bd5c
|
Add spacing
|
2023-05-30 14:05:11 +00:00 |
|
Wes
|
79014a53ec
|
Remove extra lines
|
2023-05-30 12:35:32 +00:00 |
|
Wes
|
e910f04beb
|
Add default description and Zeek log exclusions for Elastic Fleet
|
2023-05-30 03:10:52 +00:00 |
|
Wes
|
ef5b63337b
|
Add check for integration existence and integration update functionality
|
2023-05-30 02:58:00 +00:00 |
|
Wes
|
799e92e595
|
Add files
|
2023-05-30 02:56:23 +00:00 |
|
Wes
|
c835c523a9
|
Elastic Fleet integration update improvements
|
2023-05-30 02:54:39 +00:00 |
|
Josh Brower
|
9ec1492fad
|
Change Fleet Host URL API Endpoint
|
2023-05-29 07:44:18 -04:00 |
|
Wes
|
5af1bfe142
|
Move alert generation outside of the inner loop
|
2023-05-27 21:15:45 +00:00 |
|
Mike Reeves
|
89f5d9f292
|
Rule Updates
|
2023-05-26 17:14:10 -04:00 |
|
Mike Reeves
|
5922fc0e45
|
Rule Updates
|
2023-05-26 16:29:13 -04:00 |
|
Mike Reeves
|
b48e259fee
|
Rule Updates
|
2023-05-26 16:27:29 -04:00 |
|
Mike Reeves
|
b4d85a7bf8
|
Rule Updates
|
2023-05-26 16:21:07 -04:00 |
|
Mike Reeves
|
38881231ac
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-26 15:16:38 -04:00 |
|
Mike Reeves
|
b2d2a9f0ed
|
Rule Updates
|
2023-05-26 15:16:14 -04:00 |
|
m0duspwnens
|
5b4ec70ca6
|
fix typo on suricata annotations. add to global annotations
|
2023-05-26 09:37:57 -04:00 |
|
Wes
|
ce114a2601
|
Fix total space logic and rename TOTAL_AVAILABLE_SPACE to TOTAL_USED_SPACE
|
2023-05-26 13:19:45 +00:00 |
|
Wes
|
5de59a879a
|
Break out of index deletion when unable to bring space below the disk space threshold
|
2023-05-26 13:15:27 +00:00 |
|
m0duspwnens
|
5c933910aa
|
simplify map for updating suricata config if md engine is suricata
|
2023-05-25 17:25:54 -04:00 |
|
m0duspwnens
|
a3c3f08511
|
convert list to dict to work better with ui. regex on suricata vars HOME_NET for soc
|
2023-05-25 17:00:48 -04:00 |
|
Mike Reeves
|
8ce0d76287
|
Zeek Annotations
|
2023-05-25 12:12:18 -04:00 |
|
Mike Reeves
|
3be3df00d1
|
Zeek Annotations
|
2023-05-25 12:10:15 -04:00 |
|
m0duspwnens
|
d99d4756c3
|
set defaults as example in soc ui for suricata cpu affinity
|
2023-05-25 11:11:53 -04:00 |
|
m0duspwnens
|
6505d3e2ce
|
update annotations for suricata
|
2023-05-25 11:03:37 -04:00 |
|
Mike Reeves
|
10f9d0f4bd
|
Suricata Airgap
|
2023-05-24 16:21:51 -04:00 |
|
Mike Reeves
|
edf531739c
|
Suricata Airgap
|
2023-05-24 15:47:07 -04:00 |
|
Mike Reeves
|
11d7e66ea0
|
Suricata Airgap
|
2023-05-24 15:30:52 -04:00 |
|
Mike Reeves
|
caaedee5a7
|
Suricata Airgap
|
2023-05-24 15:18:52 -04:00 |
|
Mike Reeves
|
1bdd79c578
|
Suricata Airgap
|
2023-05-24 15:05:40 -04:00 |
|
Mike Reeves
|
c199acc64e
|
Suricata Airgap
|
2023-05-24 14:58:11 -04:00 |
|
Wes
|
53f258b08f
|
Add eligible_indices to index deletion requirements
|
2023-05-24 17:02:11 +00:00 |
|
Wes
|
a308a39bbe
|
Use disk space taken up by indices if the script is not running on a manager
|
2023-05-24 16:48:45 +00:00 |
|
m0duspwnens
|
5c00655ad0
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-24 12:22:52 -04:00 |
|
m0duspwnens
|
67a608ea56
|
adjust suricata defaults
|
2023-05-24 12:22:42 -04:00 |
|
Mike Reeves
|
d6f1bcfdf0
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 11:42:44 -04:00 |
|
Josh Brower
|
f156573f8d
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 11:28:38 -04:00 |
|
Josh Brower
|
b3e0e68896
|
Change Fleet Host URL API
|
2023-05-24 11:27:41 -04:00 |
|
Mike Reeves
|
86803f1fb5
|
Add Suricata
|
2023-05-24 10:48:01 -04:00 |
|
Mike Reeves
|
c9db6c0f18
|
Add Suricata
|
2023-05-24 10:18:58 -04:00 |
|
Jason Ertel
|
d9a9c8738c
|
fix malformed alert templates
|
2023-05-24 10:17:59 -04:00 |
|
Mike Reeves
|
cb0ed9ae6d
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 10:04:15 -04:00 |
|
Josh Brower
|
4f72fca2d7
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 09:55:29 -04:00 |
|
Josh Patterson
|
1dc426b8ce
|
Merge pull request #10422 from Security-Onion-Solutions/issue/10229
fix suricata sostatus
|
2023-05-24 09:54:14 -04:00 |
|
m0duspwnens
|
8995012c80
|
fix suricata sostatus
|
2023-05-24 09:52:07 -04:00 |
|
Mike Reeves
|
2c4ba2e8b2
|
Add Suricata
|
2023-05-24 09:35:50 -04:00 |
|
Mike Reeves
|
c42959d040
|
soup skeleton
|
2023-05-24 09:29:50 -04:00 |
|
Mike Reeves
|
fa6dcd7f83
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 09:04:04 -04:00 |
|
Josh Brower
|
9c6365aa2f
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/fleet-punchlist
|
2023-05-24 09:03:57 -04:00 |
|