DefensiveDepth
1284150382
Move to manager init
2025-11-27 08:39:19 -05:00
DefensiveDepth
ced3af818c
Refactor for Airgap
2025-11-25 13:51:50 -05:00
reyesj2
348f9dcaec
prevent multiple script instances using file lock
2025-09-05 10:01:24 -05:00
reyesj2
e26310d172
elastic agent offline alerter
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2025-09-02 17:00:03 -05:00
Josh Brower
b428573a0a
Airgap tweaks
2025-06-06 17:48:49 -04:00
Josh Patterson
19514a969b
use file.directory
2025-04-23 08:41:53 -04:00
Josh Patterson
77f88371b8
manage default and local in separate states
2025-04-23 08:30:37 -04:00
Jason Ertel
0047246cf2
reduce stdout verbosity
2025-03-04 10:55:12 -05:00
reyesj2
a373d96c3c
run managed_soc_annotations.sls from manager state
2025-01-27 13:45:03 -06:00
Josh Patterson
b3ce624fff
Merge pull request #13921 from Security-Onion-Solutions/reposynccron
...
only enable repo sync cron if OEL
2024-11-08 16:16:48 -05:00
m0duspwnens
ee4405e75e
only enable repo sync cron if OEL
2024-11-08 16:13:44 -05:00
defensivedepth
c509dab5f1
Use socore user
2024-10-30 11:03:14 -04:00
defensivedepth
5406a263d5
Add local custom template
2024-10-29 19:42:06 -04:00
m0duspwnens
7a0f6d5e93
fix pkg name
2024-10-22 16:42:01 -04:00
m0duspwnens
8d2ae23ae6
install createrepo on airgap and non airgap
2024-10-22 13:56:38 -04:00
reyesj2
680e84851b
Re-add manager sbin_jinja file recurse
...
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com >
2024-06-24 12:27:52 -04:00
weslambert
13062099b3
Remove YARA script update and reference to exclusions
2024-05-13 18:04:16 -04:00
Mike Reeves
283939b18a
Gather metrics from elastic agent to influx
2024-04-02 15:36:01 -04:00
weslambert
f431e9ae08
Remove Strelka config
2024-03-21 10:06:25 -04:00
weslambert
34d5954e16
Fix indent
2024-03-11 09:12:05 -04:00
Josh Brower
4a9e8265ce
Merge remote-tracking branch 'origin/2.4/dev' into kilo
2024-03-08 14:48:04 -05:00
Wes
4e32935991
Add Strelka config back
2024-03-08 16:24:37 +00:00
Mike Reeves
1fe8f3d9e4
Merge pull request #12405 from Security-Onion-Solutions/repochange
...
Manage the repo files
2024-02-29 14:01:48 -05:00
Mike Reeves
9ca0f586ae
Manage the repos
2024-02-21 11:45:02 -05:00
Corey Ogburn
858166bcae
WIP: Detections Changes
...
Removed some strelka/yara rules from salt.
Removed yara scripts for downloading and updating rules. This will be managed by SOC.
Added a new compile_yara.py script.
Added the strelka repos folder.
2024-01-30 15:43:51 -07:00
Jason Ertel
9231c8d2f2
replace reset sed with new script
2023-11-08 19:17:32 -05:00
defensivedepth
310a6b4f27
Add kibana curl config
2023-10-24 14:21:01 -04:00
Mike Reeves
95d32cb076
Fix manager cron logic
2023-09-28 12:49:46 -04:00
Mike Reeves
5040df7551
Fix manager cron logic
2023-09-28 12:32:40 -04:00
Mike Reeves
7a21b7903d
Fix manager cron logic
2023-09-28 11:46:43 -04:00
Mike Reeves
a77a53f20b
Update init.sls
2023-09-28 11:10:17 -04:00
m0duspwnens
da27fce95f
run so-yara-download/update if scripts change
2023-07-11 13:48:26 -04:00
m0duspwnens
f8ed2e6e8e
make parent dirs
2023-07-10 16:11:45 -04:00
m0duspwnens
1ac72e5b24
ensure /nsm/rules/yara directory exists
2023-07-10 11:10:37 -04:00
m0duspwnens
fa933d3f53
use file_mode
2023-07-10 10:26:30 -04:00
m0duspwnens
f4dc73a206
yara download and update
2023-07-10 09:42:37 -04:00
m0duspwnens
8be5082b60
yara scripts
2023-07-07 16:43:26 -04:00
m0duspwnens
5b06aa518e
makedirs if needed
2023-05-10 15:55:21 -04:00
m0duspwnens
54c9a3ec71
enable/disable each strelka container in ui
2023-05-10 15:50:07 -04:00
Mike Reeves
d7972032e4
Update init.sls
2023-05-05 10:33:11 -04:00
Mike Reeves
cbd1c05929
Sbin Changes
2023-05-04 10:36:03 -04:00
m0duspwnens
1047462898
add identifiers for all cron.present
2023-04-13 16:25:47 -04:00
Mike Reeves
0a096712cb
Fix cache location
2023-03-23 12:39:31 -04:00
Mike Reeves
c977f38a58
Change repo conf permissions
2023-03-23 11:56:40 -04:00
Mike Reeves
8f4076ccd6
Change repo conf permissions
2023-03-23 11:46:32 -04:00
Mike Reeves
02aa8662f7
Saltify it up
2023-03-23 10:52:05 -04:00
Mike Reeves
f8d5acd37d
Saltify it up
2023-03-23 10:43:47 -04:00
m0duspwnens
9d4e1cc149
jinja for strelka
2023-03-13 16:48:21 -04:00
m0duspwnens
58343e39fa
2.4 strelka
2023-03-10 17:32:14 -05:00
Mike Reeves
2bd9dd80e2
Move In Day
2022-09-07 09:06:25 -04:00