Mike Reeves
|
1bdd79c578
|
Suricata Airgap
|
2023-05-24 15:05:40 -04:00 |
|
Mike Reeves
|
c199acc64e
|
Suricata Airgap
|
2023-05-24 14:58:11 -04:00 |
|
Mike Reeves
|
d6f1bcfdf0
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 11:42:44 -04:00 |
|
Mike Reeves
|
86803f1fb5
|
Add Suricata
|
2023-05-24 10:48:01 -04:00 |
|
Jason Ertel
|
aad08a830b
|
Merge pull request #10425 from Security-Onion-Solutions/kilo
fix malformed alert templates
|
2023-05-24 10:21:21 -04:00 |
|
Mike Reeves
|
c9db6c0f18
|
Add Suricata
|
2023-05-24 10:18:58 -04:00 |
|
Jason Ertel
|
d9a9c8738c
|
fix malformed alert templates
|
2023-05-24 10:17:59 -04:00 |
|
Mike Reeves
|
cb0ed9ae6d
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 10:04:15 -04:00 |
|
Josh Patterson
|
1dc426b8ce
|
Merge pull request #10422 from Security-Onion-Solutions/issue/10229
fix suricata sostatus
|
2023-05-24 09:54:14 -04:00 |
|
m0duspwnens
|
8995012c80
|
fix suricata sostatus
|
2023-05-24 09:52:07 -04:00 |
|
Mike Reeves
|
2c4ba2e8b2
|
Add Suricata
|
2023-05-24 09:35:50 -04:00 |
|
Mike Reeves
|
c42959d040
|
soup skeleton
|
2023-05-24 09:29:50 -04:00 |
|
Mike Reeves
|
fa6dcd7f83
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 09:04:04 -04:00 |
|
Josh Patterson
|
6e4c4febfb
|
Merge pull request #10421 from Security-Onion-Solutions/issue/10229
rename state to resolve conflicting / duplicate state ids
|
2023-05-24 09:02:47 -04:00 |
|
m0duspwnens
|
732d2aadf8
|
rename state to resolve conflicting / duplicate state ids
|
2023-05-24 08:58:43 -04:00 |
|
Mike Reeves
|
cace817c79
|
Merge branch '2.4/dev' of https://github.com/Security-Onion-Solutions/securityonion into airgaps
|
2023-05-24 08:43:03 -04:00 |
|
bryant-treacle
|
57f5a22f0f
|
Merge pull request #10396 from Security-Onion-Solutions/2.4/Influxdb_alerts
2.4/influxdb alerts
|
2023-05-23 14:14:48 -04:00 |
|
Josh Patterson
|
4b18a0e758
|
Merge pull request #10417 from Security-Onion-Solutions/issue/10229
Issue/10229
|
2023-05-23 13:47:48 -04:00 |
|
Josh Brower
|
f6a9a764de
|
Merge pull request #10416 from Security-Onion-Solutions/2.4/smallfixes
2.4/EQL
|
2023-05-23 13:28:11 -04:00 |
|
m0duspwnens
|
e65214b097
|
Merge remote-tracking branch 'origin/2.4/dev' into issue/10229
|
2023-05-23 12:10:29 -04:00 |
|
m0duspwnens
|
cc47f9a595
|
fix suricata thresholding
|
2023-05-23 11:16:32 -04:00 |
|
m0duspwnens
|
eb633be437
|
enable/disable suricata in ui. assign threads properly
|
2023-05-22 17:48:22 -04:00 |
|
Josh Brower
|
df0dc2e4d1
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into 2.4/smallfixes
|
2023-05-22 16:02:30 -04:00 |
|
Josh Brower
|
766f4dd661
|
Add Elastic Defend Integration
|
2023-05-22 16:02:08 -04:00 |
|
Jason Ertel
|
f53fb69ffb
|
Merge pull request #10407 from Security-Onion-Solutions/kilo
Ignore Synchronize button clicks when an active salt job is running and another is already in queue
|
2023-05-22 14:59:42 -04:00 |
|
Jason Ertel
|
ba0ec18a33
|
Ignore Synchronize button clicks when an active salt job is running and another is already in queue
|
2023-05-22 14:52:07 -04:00 |
|
weslambert
|
79182cecfd
|
Merge pull request #10397 from Security-Onion-Solutions/fix/elastic_exclude_zeek_reporter_log
Exclude Zeek's reporter.log from being picked up by Elastic Agent
|
2023-05-22 07:56:54 -04:00 |
|
weslambert
|
8cf82c4b6a
|
Merge pull request #10398 from Security-Onion-Solutions/fix/elasticsearch_ingest_dns_query
Check if 'dns.query' is null
|
2023-05-22 07:56:44 -04:00 |
|
weslambert
|
78d4586033
|
Merge pull request #10399 from Security-Onion-Solutions/fix/elastalert_playbook_alerter
Update 'url' to use 'es_hosts'
|
2023-05-22 07:56:31 -04:00 |
|
Jason Ertel
|
02cf1074f2
|
Merge pull request #10400 from Security-Onion-Solutions/kilo
use the same requests version that's already packaged with the analyzer
|
2023-05-20 08:45:21 -04:00 |
|
Jason Ertel
|
a881cab469
|
use the same requests version that's already packaged with the analyzer
|
2023-05-19 23:54:30 -04:00 |
|
weslambert
|
00bd93c026
|
Update 'url' to use 'es_hosts'
|
2023-05-19 17:14:13 -04:00 |
|
weslambert
|
2c10ad7eec
|
Check if 'dns.query' is null
|
2023-05-19 15:50:33 -04:00 |
|
weslambert
|
167051af28
|
Exclude Zeek's reporter.log from being picked up by Elastic Agent
|
2023-05-19 15:44:09 -04:00 |
|
weslambert
|
eb9c5e9af0
|
Merge pull request #10307 from Security-Onion-Solutions/fix/elastic_fleet_ignore_zeek_logs
Don't read from 'known_hosts.log', 'known_services.log', or 'ntp.log'
|
2023-05-19 15:09:15 -04:00 |
|
Jason Ertel
|
2f942a3e37
|
Merge pull request #10393 from Security-Onion-Solutions/kilo
fix lib dependency issue with whoisit
|
2023-05-19 14:34:42 -04:00 |
|
Jason Ertel
|
03f97b309a
|
fix lib dependency issue with whoisit
|
2023-05-19 14:18:19 -04:00 |
|
weslambert
|
c6a962a46b
|
Merge pull request #10392 from Security-Onion-Solutions/fix/elastalert_index
Change Elastalert writeback index name from 'elastalert_status' to 'elastalert'
|
2023-05-19 13:31:29 -04:00 |
|
weslambert
|
1ddf45bbbe
|
Change Elastalert writeback index name from 'elastalert_status' to 'elastalert'
|
2023-05-19 12:39:27 -04:00 |
|
Doug Burks
|
f0c4cebaca
|
Merge pull request #10391 from Security-Onion-Solutions/2.4/elastic-8.7.1
UPGRADE: Elastic 8.7.1 #10269
|
2023-05-19 12:29:01 -04:00 |
|
Doug Burks
|
87c42ece00
|
Update so-kibana-config-load
|
2023-05-19 12:21:09 -04:00 |
|
Doug Burks
|
4f8fcd3369
|
Update config_saved_objects.ndjson
|
2023-05-19 12:19:44 -04:00 |
|
bryant-treacle
|
5b2d91b5b5
|
Update alarm_zeek_packet_loss.json
|
2023-05-19 10:32:53 -04:00 |
|
bryant-treacle
|
a84322f9b7
|
Update alarm_suricata_packet_loss.json
|
2023-05-19 10:32:29 -04:00 |
|
bryant-treacle
|
2de95bcb63
|
Update alarm_steno_packet_loss.json
|
2023-05-19 10:32:13 -04:00 |
|
bryant-treacle
|
1e9e2facde
|
Update alarm_low_monitor_traffic.json
|
2023-05-19 10:29:53 -04:00 |
|
bryant-treacle
|
592c67d1f2
|
Update alarm_pcap_retention.json
|
2023-05-19 10:29:15 -04:00 |
|
bryant-treacle
|
e91dd29cb2
|
Update alarm_high_redis_memory_usage.json
|
2023-05-19 10:25:22 -04:00 |
|
bryant-treacle
|
13c9142814
|
Update alarm_low_monitor_traffic.json
|
2023-05-19 10:21:43 -04:00 |
|
bryant-treacle
|
ef4f2491f3
|
Update alarm_high_redis_memory_usage.json
|
2023-05-19 10:12:44 -04:00 |
|