Commit Graph

1070 Commits

Author SHA1 Message Date
Wes Lambert
124c552fca remove Cyberchef from top file since it is now in so-core 2019-12-20 15:49:22 +00:00
Mike Reeves
c2a4de3f70 Merge pull request #162 from Security-Onion-Solutions/feature/strelka
Strelka - initial config
2019-12-20 10:28:37 -05:00
Wes Lambert
eea08f3515 add back helix 2019-12-20 01:24:20 +00:00
weslambert
574ee6b97a Merge pull request #174 from Security-Onion-Solutions/quickfix/cyberchef-version
[BUG] Updated missed text in cyberchef init.sls
2019-12-19 18:12:11 -05:00
William Wernert
7653959d60 [BUG] Updated missed text in cyberchef init.sls
The docker pull command was updated but not the run instruction
2019-12-19 17:50:45 -05:00
weslambert
1876bc2b57 Merge pull request #173 from Security-Onion-Solutions/quickfix/cyberchef-version
Revert cyberchef version update
2019-12-19 17:08:13 -05:00
William Wernert
2b20d009e1 Fixed cyberchef container image version error.
Cyberchef container image v1.1.4 has not been built yet, revert to 1.1.3 for now
2019-12-19 17:04:23 -05:00
Josh Brower
0d541f4949 initial commit - so-component-restart scripts 2019-12-19 10:49:23 -05:00
weslambert
839f710f61 Merge pull request #166 from Security-Onion-Solutions/feature/fix_hive
fix ssl verify hive_init.sh
2019-12-18 14:20:43 -05:00
m0duspwnens
2888dce48f fix ssl verify hive_init.sh 2019-12-18 14:11:26 -05:00
Wes Lambert
c597dd2fb4 Strelka - Filebeat config 2019-12-18 03:22:30 +00:00
Wes Lambert
88f142664f Strelka - intial config 2019-12-18 03:13:14 +00:00
Josh Brower
2319f503f8 Initial commit - so-common 2019-12-17 16:24:26 -05:00
Josh Brower
82076b1988 Initial commit - so-restart 2019-12-17 16:23:59 -05:00
Mike Reeves
b0584f2178 Merge pull request #160 from Security-Onion-Solutions/mastersearch
Mastersearch Menu Option
2019-12-17 16:18:20 -05:00
Mike Reeves
5ead3a26b6 Rename Storage to Search Nodes 2019-12-17 15:32:43 -05:00
Mike Reeves
efd641f0df Rename Storage to Search Nodes 2019-12-17 13:43:37 -05:00
Mike Reeves
ef030c6a14 Merge pull request #155 from Security-Onion-Solutions/hive_init
Wait for TheHive before attempting to configure
2019-12-17 13:29:24 -05:00
Doug Burks
d668bc3511 Merge pull request #151 from Security-Onion-Solutions/cyberchef_static
update Cyberchef to serve static files vs self-hosted
2019-12-17 13:20:45 -05:00
Wes Lambert
4a34ac7c05 wait for TheHive before attempting to configure 2019-12-17 13:34:01 +00:00
Wes Lambert
56d354b256 update Cyberchef to serve static files vs self-hosted 2019-12-16 21:22:00 +00:00
Wes Lambert
d66eca1db4 add Bro extracted directory 2019-12-16 20:45:14 +00:00
Mike Reeves
e49de63460 Helix - Final Parser Fixes 2019-12-13 13:59:29 -05:00
Mike Reeves
fdbb223155 Helix - Add geo 2019-12-13 11:52:43 -05:00
Mike Reeves
e263d72813 Setup - Add sensor pillar to Helix 2019-12-13 11:46:30 -05:00
Mike Reeves
4c89cb50bb Setup - update Helix Script 2019-12-12 23:12:08 -05:00
Mike Reeves
d8d94b7dc5 Helix - Add API Key Option 2019-12-12 20:46:30 -05:00
Mike Reeves
b04da4562c Merge pull request #163 from m0duspwnens/master
reverting for Security-Onion-Solutions#111
2019-12-12 16:54:36 -05:00
m0duspwnens
349d8f4bd7 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:40:24 -05:00
m0duspwnens
cc7de9aee2 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:36:22 -05:00
m0duspwnens
481d52a5a8 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:21:57 -05:00
Mike Reeves
79d48f9e77 Logstash - Fix helix output typeo 2019-12-12 15:17:19 -05:00
Mike Reeves
70acb23976 Merge pull request #161 from weslambert/tcpreplay
add initial tcpreplay state
2019-12-12 15:10:51 -05:00
Mike Reeves
bd9b1957ba Logstash - Fix helix output 2019-12-12 14:12:51 -05:00
Wes Lambert
c47d163a32 add initial tcpreplay state 2019-12-11 19:39:03 +00:00
Mike Reeves
989641eb5a Setup - Fix prompts and disable onion user if iso 2019-12-11 13:44:40 -05:00
Mike Reeves
96bf8f66ff SSL - Fix helix mode ssl certs 2019-12-10 17:04:18 -05:00
Mike Reeves
72b481855f Setup - add jq and fix eval calculation of failure 2019-12-10 16:50:23 -05:00
Mike Reeves
c83decc0a0 Helix - add firewall for mode helix 2019-12-10 14:44:10 -05:00
Mike Reeves
7386d800ae Helix - add filebeat config for helix 2019-12-10 14:06:20 -05:00
Mike Reeves
e134071295 Helix - Change Parsers for Helix 2019-12-10 13:50:27 -05:00
Mike Reeves
c46c539277 Helix - fix suricata.yml 2019-12-10 11:24:56 -05:00
Mike Reeves
fe042ed2bb Filebeat State - Fix watch statement to only change on yml 2019-12-10 10:59:35 -05:00
Mike Reeves
ce517dfebc Helix Mode - Fix SSL so Filebeat works properly 2019-12-10 10:40:28 -05:00
Mike Reeves
ae3c428941 Helix Logstash Changes 2019-12-10 10:02:41 -05:00
Mike Reeves
54fd5254c0 Merge pull request #158 from m0duspwnens/master
changes for FireEye Helix integration
2019-12-09 17:22:34 -05:00
m0duspwnens
4874e540da changes for FireEye Helix integration 2019-12-09 17:18:12 -05:00
Mike Reeves
4c4cdb7189 Helix changes and Wazuh 2019-12-09 16:27:03 -05:00
Mike Reeves
3904c19333 Change Variables to UperCase 2019-12-09 10:04:14 -05:00
m0duspwnens
599341483e adding api key for Helix 2019-12-09 09:59:28 -05:00