Commit Graph

2249 Commits

Author SHA1 Message Date
weslambert e91aa751a7 Change verbiage 2020-07-17 09:38:43 -04:00
William Wernert 958d614bef [fix] Only show motd ip message on manager node 2020-07-17 09:21:47 -04:00
Josh Brower 32a6f825c2 Kibana dashboard updates 2020-07-17 08:14:37 -04:00
m0duspwnens cc77a50d8d change from manager to master for salt config.get 2020-07-16 21:05:44 -04:00
Mike Reeves 2d68d5419b fix adtotab perms 2020-07-16 19:47:15 -04:00
Mike Reeves 258d9d3bfc change salt perms 2020-07-16 17:07:04 -04:00
Mike Reeves 03ff592aa4 Merge pull request #1022 from Security-Onion-Solutions/fix/telegrafperms
Fix salt refresh script
2020-07-16 16:38:40 -04:00
Mike Reeves 21f09a9cd5 Fix salt refresh script 2020-07-16 16:37:48 -04:00
Josh Brower 4fd1daeca1 Merge pull request #1021 from Security-Onion-Solutions/bugfix/fleet-packages-urlbase
Osquery packages hostname fix
2020-07-16 16:36:30 -04:00
Josh Brower 51beb52bb8 Osquery packages hostname fix 2020-07-16 16:35:51 -04:00
Mike Reeves d31ce4aa48 Fix soup issues 2020-07-16 16:32:38 -04:00
Mike Reeves 07626905c5 Fix telegraf script perms 2020-07-16 15:20:11 -04:00
Josh Patterson 5634446fcb Merge pull request #1019 from Security-Onion-Solutions/quickfix/lstoes
fix the container watch for logstash container state
2020-07-16 15:06:29 -04:00
m0duspwnens c61a52cc5e fix the container watch for logstash container state 2020-07-16 15:05:54 -04:00
Josh Patterson f1d8548913 Merge pull request #1017 from Security-Onion-Solutions/quickfix/lstoes
dont run templates script if there arent templates
2020-07-16 13:37:15 -04:00
m0duspwnens 9606d86e84 dont run templates script if there arent templates 2020-07-16 13:36:44 -04:00
Josh Patterson 582edd7aac Merge pull request #1016 from Security-Onion-Solutions/quickfix/lstoes
including elasticsearch in logstash state
2020-07-16 10:13:18 -04:00
m0duspwnens f10f47ad4e including elasticsearch in logstash state 2020-07-16 10:12:10 -04:00
Wes Lambert 8275f458a1 Fix module eval 2020-07-16 13:30:38 +00:00
Mike Reeves 473606371a Fix Features Download 2020-07-15 17:49:13 -04:00
Mike Reeves d71dc89b13 New SOUP 2020-07-15 17:46:33 -04:00
Jason Ertel 9781d8d0e7 Ensure permissions are consistently applied to all imported PCAP files 2020-07-15 13:53:28 -04:00
Jason Ertel 0a976861f3 Dynamically set sensor checkin interval; allow overrides if var is preset 2020-07-15 13:22:14 -04:00
Josh Brower d11ef08961 Playbook anonymous perms fix 2020-07-15 12:37:04 -04:00
Jason Ertel 9dc1151347 Imported logs are sent to so-import index on eval installations 2020-07-14 22:59:42 -04:00
Josh Patterson 549916306c Merge pull request #1008 from Security-Onion-Solutions/quickfix/lstoes
Quickfix/lstoes
2020-07-14 17:37:19 -04:00
m0duspwnens 5cf71596b2 add curlys 2020-07-14 17:36:52 -04:00
Jason Ertel acb800d1c9 Using static UID for Grafana overview dashboard to allow SOC to directly link to those dashboards 2020-07-14 17:36:30 -04:00
Jason Ertel 9bbbaa485c Switch PM to AM since we want to span midnight to midnight 2020-07-14 17:36:30 -04:00
m0duspwnens acaec6c125 remove recurse causing issues 2020-07-14 17:12:29 -04:00
Josh Brower e7e1982862 Merge pull request #1007 from Security-Onion-Solutions/bugfix/ingest-parsing
Parsing & Hunt query updates
2020-07-14 17:00:04 -04:00
Josh Brower 8647944ae6 Parsing & Hunt query updates 2020-07-14 16:59:06 -04:00
Mike Reeves 55056f3193 Merge pull request #1006 from Security-Onion-Solutions/fix/perms
Change opt/so perms
2020-07-14 16:19:02 -04:00
m0duspwnens 57bf23d83c move templates from logstash to elasticsearch 2020-07-14 16:07:46 -04:00
Doug Burks a1e6a85a68 explicitly set Suricata timestamp timezone to UTC 2020-07-14 15:49:46 -04:00
Wes Lambert f9df39977b Add observer name for Strelka events 2020-07-14 17:38:43 +00:00
weslambert 7ed902c0ae Merge pull request #1001 from Security-Onion-Solutions/fix/suricata_timestamp
Convert message timestamp to @timestamp
2020-07-14 13:34:58 -04:00
Josh Brower ba8395fc11 Fleet reactor fix 2020-07-14 13:04:29 -04:00
William Wernert 3df5904269 Merge pull request #979 from Security-Onion-Solutions/feature/setup
Feature/setup
2020-07-14 11:17:03 -04:00
William Wernert ad3c4c4950 [fix] master -> manager 2020-07-14 11:09:12 -04:00
Mike Reeves 57cd2cdbeb Change opt/so perms 2020-07-14 10:37:49 -04:00
Mike Reeves f2d9abf1a5 Merge pull request #996 from Security-Onion-Solutions/fix/curator
Add all actions to cron
2020-07-14 10:05:27 -04:00
Mike Reeves e404a41d8a Add all actions to cron 2020-07-14 10:04:15 -04:00
Mike Reeves 15be31af6d Merge pull request #995 from Security-Onion-Solutions/fix/curator
Fix spelling error in actions
2020-07-14 09:43:41 -04:00
Jason Ertel 67f2edce28 Resolve merge conflict that reverted import URL back to Kibana 2020-07-14 09:40:16 -04:00
Mike Reeves d4e6189f6e Fix spelling error in actions 2020-07-14 09:39:56 -04:00
Wes Lambert d6afde90b0 Convert message timestamp to @timestamp 2020-07-14 13:37:00 +00:00
Josh Brower 2c72940010 Playbook db init fix 2020-07-14 09:09:55 -04:00
Josh Brower b884e09e7a Playbook db init fix 2020-07-14 09:09:47 -04:00
Jason Ertel 09c460dbe9 Switch to final image repository prefix 'securityonion' for RC1 2020-07-14 00:45:20 -04:00