Mike Reeves
|
52998d7340
|
Merge branch 'master' of https://github.com/TOoSmOotH/securityonion-saltstack
|
2018-12-13 14:24:47 -05:00 |
|
Mike Reeves
|
7ff47faa3d
|
Common Module - Update core docker version
|
2018-12-13 14:24:40 -05:00 |
|
Mike Reeves
|
fdd6bcdd6b
|
Merge pull request #56 from dlee35/master
add firewall rule option for osquery
|
2018-12-13 13:42:13 -05:00 |
|
Wes Lambert
|
bd04dc45a3
|
Wazuh - Fix Jinja
|
2018-12-13 18:30:04 +00:00 |
|
dlee35
|
fe56e171d4
|
add firewall rule option for osquery
|
2018-12-13 13:28:37 -05:00 |
|
Wes Lambert
|
75ed258d19
|
Firewall - Fix Wazuh IP logic for sensors
|
2018-12-13 17:57:22 +00:00 |
|
Wes Lambert
|
4db52ec865
|
Wazuh - Add logic for sensors
|
2018-12-13 17:56:51 +00:00 |
|
Wes Lambert
|
5e23859557
|
Salt - Add Wazuh to other roles
|
2018-12-13 17:34:19 +00:00 |
|
Wes Lambert
|
62067f37cf
|
Wazuh - Fix agent ip for storage nodes
|
2018-12-13 17:33:12 +00:00 |
|
Wes Lambert
|
d13e7559fe
|
Filebeat - Enabled for master and only enable Bro/Suri inputs when needed
|
2018-12-13 17:32:03 +00:00 |
|
Mike Reeves
|
8163beadb0
|
Merge pull request #54 from dlee35/master
Updated Fleet init.sls and nginx confs for fleet
|
2018-12-12 16:34:35 -05:00 |
|
dlee35
|
5c737e9fda
|
Updated Fleet init.sls and nginx confs for fleet
|
2018-12-12 16:19:35 -05:00 |
|
Wes Lambert
|
41e9c4c7e0
|
Logstash - Alter input for Wazuh logs
|
2018-12-12 20:52:18 +00:00 |
|
Wes Lambert
|
54c35cdc0d
|
Filebeat - Add Wazuh archive logs
|
2018-12-12 20:51:41 +00:00 |
|
Wes Lambert
|
8496834f8b
|
Wazuh - Re-order top.sls so Filebeat does not overrite Wazuh logs
|
2018-12-12 15:48:59 +00:00 |
|
Wes Lambert
|
9d86744e07
|
Filebeat - Fix Wazuh alerts path
|
2018-12-12 15:19:51 +00:00 |
|
Wes Lambert
|
e20ab3b407
|
Filebeat - Config for Wazuh alerts
|
2018-12-12 14:48:17 +00:00 |
|
Wes Lambert
|
5822842d2e
|
Wazuh - Add sleep to wait for API
|
2018-12-12 13:36:13 +00:00 |
|
Wes Lambert
|
8404897fe3
|
Wazuh - Move agent config to init.sls
|
2018-12-12 06:05:13 +00:00 |
|
Wes Lambert
|
823a589fae
|
Wazuh - Set mode for agent registration script
|
2018-12-12 04:01:13 +00:00 |
|
Wes Lambert
|
1a4a7382e2
|
Wazuh - Fix Wazuh agent registration script name
|
2018-12-12 03:18:55 +00:00 |
|
Wes Lambert
|
113f030873
|
Wazuh - Add agent register script to init.sls
|
2018-12-12 02:26:38 +00:00 |
|
Wes Lambert
|
9a021164ac
|
Wazuh - Fix port, add agent conf, and agent registration script
|
2018-12-12 01:42:05 +00:00 |
|
Wes Lambert
|
223237f8c2
|
Wazuh - Expose both UDP and TCP ports
|
2018-12-11 19:45:56 +00:00 |
|
Wes Lambert
|
6cdf1ef857
|
Firewall - Add rules for Wazuh Manager
|
2018-12-11 19:44:32 +00:00 |
|
Mike Reeves
|
dd15a6e31a
|
SSL Module - Fixed it so certs do not keep renewing
|
2018-12-11 12:27:57 -05:00 |
|
Mike Reeves
|
a54a5ede8c
|
MySQL Module - fix password designation
|
2018-12-11 11:32:37 -05:00 |
|
Mike Reeves
|
8c1a7b3e0c
|
Setup - Change so passwords survive re-install
|
2018-12-11 11:19:54 -05:00 |
|
Wes Lambert
|
0f5fbadaf5
|
Filebeat - Switch negation to equals
|
2018-12-10 20:17:41 +00:00 |
|
Wes Lambert
|
2544984433
|
Wazuh - add to top.sls for Eval Mode
|
2018-12-10 19:51:57 +00:00 |
|
Wes Lambert
|
e70db05a0f
|
Filebeat - Modify config for Wazuh alerts
|
2018-12-10 19:50:55 +00:00 |
|
Wes Lambert
|
cb68f502ee
|
Wazuh - Changes to init.sls
|
2018-12-10 19:49:14 +00:00 |
|
Wes Lambert
|
e6469d505a
|
Wazuh - initial init.sls
|
2018-12-07 18:13:42 +00:00 |
|
Mike Reeves
|
cdc8b577bd
|
Redis Module - Update REDIS version to address vuln
|
2018-12-07 10:28:43 -05:00 |
|
Wes Lambert
|
6a9a537cf8
|
Wazuh - Remove filebeat.yml
|
2018-12-07 13:39:10 +00:00 |
|
Wes Lambert
|
e355503324
|
Filebeat - Update for Wazuh logs
|
2018-12-07 13:38:31 +00:00 |
|
Wes Lambert
|
e11aadf730
|
Wazuh - agent install for CentOS
|
2018-12-07 13:36:11 +00:00 |
|
Mike Reeves
|
f5d16181d4
|
Common Module - Add Fleet to nginx
|
2018-12-06 14:40:44 -05:00 |
|
Mike Reeves
|
7d7cd313fa
|
Fleet Module - Use the SO docker
|
2018-12-06 14:25:31 -05:00 |
|
Mike Reeves
|
8315f9279e
|
Fleet Module - Fix order
|
2018-12-06 14:10:28 -05:00 |
|
Mike Reeves
|
bcd7773ace
|
Fleet Module - fix assignment of MYSQLPASS
|
2018-12-06 11:19:44 -05:00 |
|
Mike Reeves
|
4e28feb084
|
Mysql Module - fix nameing
|
2018-12-06 11:18:13 -05:00 |
|
Mike Reeves
|
43d75ba07d
|
Fleet Module - Move database stuff to the fleet module
|
2018-12-06 11:17:04 -05:00 |
|
Mike Reeves
|
5a830b4ff4
|
Fleet Module - Move database stuff to the fleet module
|
2018-12-06 11:12:56 -05:00 |
|
Mike Reeves
|
46ef0280cd
|
Fleet Module - Move database stuff to the fleet module
|
2018-12-06 11:11:25 -05:00 |
|
Wes Lambert
|
e335be7476
|
Elastalert - Remove config from ES Module
|
2018-12-06 05:44:09 +00:00 |
|
Wes Lambert
|
d310f163e8
|
Elastalert - Enable for Master/Eval
|
2018-12-06 05:43:15 +00:00 |
|
Wes Lambert
|
fe1c771f21
|
Elastalert - Initial Config
|
2018-12-06 05:42:30 +00:00 |
|
Wes Lambert
|
52dfe2500a
|
Cleanup - Remove pulledpork module
|
2018-12-06 03:14:03 +00:00 |
|
Wes Lambert
|
e7be61bd28
|
Cleanup - Remove somaster module
|
2018-12-06 03:13:39 +00:00 |
|