Commit Graph

656 Commits

Author SHA1 Message Date
Mike Reeves
52998d7340 Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack 2018-12-13 14:24:47 -05:00
Mike Reeves
7ff47faa3d Common Module - Update core docker version 2018-12-13 14:24:40 -05:00
Mike Reeves
fdd6bcdd6b Merge pull request #56 from dlee35/master
add firewall rule option for osquery
2018-12-13 13:42:13 -05:00
Wes Lambert
bd04dc45a3 Wazuh - Fix Jinja 2018-12-13 18:30:04 +00:00
dlee35
fe56e171d4 add firewall rule option for osquery 2018-12-13 13:28:37 -05:00
Wes Lambert
75ed258d19 Firewall - Fix Wazuh IP logic for sensors 2018-12-13 17:57:22 +00:00
Wes Lambert
4db52ec865 Wazuh - Add logic for sensors 2018-12-13 17:56:51 +00:00
Wes Lambert
5e23859557 Salt - Add Wazuh to other roles 2018-12-13 17:34:19 +00:00
Wes Lambert
62067f37cf Wazuh - Fix agent ip for storage nodes 2018-12-13 17:33:12 +00:00
Wes Lambert
d13e7559fe Filebeat - Enabled for master and only enable Bro/Suri inputs when needed 2018-12-13 17:32:03 +00:00
Mike Reeves
8163beadb0 Merge pull request #54 from dlee35/master
Updated Fleet init.sls and nginx confs for fleet
2018-12-12 16:34:35 -05:00
dlee35
5c737e9fda Updated Fleet init.sls and nginx confs for fleet 2018-12-12 16:19:35 -05:00
Wes Lambert
41e9c4c7e0 Logstash - Alter input for Wazuh logs 2018-12-12 20:52:18 +00:00
Wes Lambert
54c35cdc0d Filebeat - Add Wazuh archive logs 2018-12-12 20:51:41 +00:00
Wes Lambert
8496834f8b Wazuh - Re-order top.sls so Filebeat does not overrite Wazuh logs 2018-12-12 15:48:59 +00:00
Wes Lambert
9d86744e07 Filebeat - Fix Wazuh alerts path 2018-12-12 15:19:51 +00:00
Wes Lambert
e20ab3b407 Filebeat - Config for Wazuh alerts 2018-12-12 14:48:17 +00:00
Wes Lambert
5822842d2e Wazuh - Add sleep to wait for API 2018-12-12 13:36:13 +00:00
Wes Lambert
8404897fe3 Wazuh - Move agent config to init.sls 2018-12-12 06:05:13 +00:00
Wes Lambert
823a589fae Wazuh - Set mode for agent registration script 2018-12-12 04:01:13 +00:00
Wes Lambert
1a4a7382e2 Wazuh - Fix Wazuh agent registration script name 2018-12-12 03:18:55 +00:00
Wes Lambert
113f030873 Wazuh - Add agent register script to init.sls 2018-12-12 02:26:38 +00:00
Wes Lambert
9a021164ac Wazuh - Fix port, add agent conf, and agent registration script 2018-12-12 01:42:05 +00:00
Wes Lambert
223237f8c2 Wazuh - Expose both UDP and TCP ports 2018-12-11 19:45:56 +00:00
Wes Lambert
6cdf1ef857 Firewall - Add rules for Wazuh Manager 2018-12-11 19:44:32 +00:00
Mike Reeves
dd15a6e31a SSL Module - Fixed it so certs do not keep renewing 2018-12-11 12:27:57 -05:00
Mike Reeves
a54a5ede8c MySQL Module - fix password designation 2018-12-11 11:32:37 -05:00
Mike Reeves
8c1a7b3e0c Setup - Change so passwords survive re-install 2018-12-11 11:19:54 -05:00
Wes Lambert
0f5fbadaf5 Filebeat - Switch negation to equals 2018-12-10 20:17:41 +00:00
Wes Lambert
2544984433 Wazuh - add to top.sls for Eval Mode 2018-12-10 19:51:57 +00:00
Wes Lambert
e70db05a0f Filebeat - Modify config for Wazuh alerts 2018-12-10 19:50:55 +00:00
Wes Lambert
cb68f502ee Wazuh - Changes to init.sls 2018-12-10 19:49:14 +00:00
Wes Lambert
e6469d505a Wazuh - initial init.sls 2018-12-07 18:13:42 +00:00
Mike Reeves
cdc8b577bd Redis Module - Update REDIS version to address vuln 2018-12-07 10:28:43 -05:00
Wes Lambert
6a9a537cf8 Wazuh - Remove filebeat.yml 2018-12-07 13:39:10 +00:00
Wes Lambert
e355503324 Filebeat - Update for Wazuh logs 2018-12-07 13:38:31 +00:00
Wes Lambert
e11aadf730 Wazuh - agent install for CentOS 2018-12-07 13:36:11 +00:00
Mike Reeves
f5d16181d4 Common Module - Add Fleet to nginx 2018-12-06 14:40:44 -05:00
Mike Reeves
7d7cd313fa Fleet Module - Use the SO docker 2018-12-06 14:25:31 -05:00
Mike Reeves
8315f9279e Fleet Module - Fix order 2018-12-06 14:10:28 -05:00
Mike Reeves
bcd7773ace Fleet Module - fix assignment of MYSQLPASS 2018-12-06 11:19:44 -05:00
Mike Reeves
4e28feb084 Mysql Module - fix nameing 2018-12-06 11:18:13 -05:00
Mike Reeves
43d75ba07d Fleet Module - Move database stuff to the fleet module 2018-12-06 11:17:04 -05:00
Mike Reeves
5a830b4ff4 Fleet Module - Move database stuff to the fleet module 2018-12-06 11:12:56 -05:00
Mike Reeves
46ef0280cd Fleet Module - Move database stuff to the fleet module 2018-12-06 11:11:25 -05:00
Wes Lambert
e335be7476 Elastalert - Remove config from ES Module 2018-12-06 05:44:09 +00:00
Wes Lambert
d310f163e8 Elastalert - Enable for Master/Eval 2018-12-06 05:43:15 +00:00
Wes Lambert
fe1c771f21 Elastalert - Initial Config 2018-12-06 05:42:30 +00:00
Wes Lambert
52dfe2500a Cleanup - Remove pulledpork module 2018-12-06 03:14:03 +00:00
Wes Lambert
e7be61bd28 Cleanup - Remove somaster module 2018-12-06 03:13:39 +00:00