Commit Graph

924 Commits

Author SHA1 Message Date
Mike Reeves
20c4f15bbb Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:51:32 -04:00
Mike Reeves
c064121f49 Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:47:21 -04:00
Mike Reeves
f6a8b192df Elastic Search State - Fix ingest to work with storage nodes 2019-10-24 18:45:33 -04:00
Mike Reeves
0f5c0373c5 SSL Issue 79 - Remove extensions from filebeat cert 2019-10-23 15:27:31 -04:00
Mike Reeves
3ecb6a7c3f SSL Issue 79 - Add extended type to all certs 2019-10-21 17:55:06 -04:00
Mike Reeves
06261b0b9a SSL Issue 79 - Add extended type to all certs 2019-10-21 17:54:09 -04:00
Mike Reeves
792cc7d4c4 SSL Issue 79 - Reduce valid time 2019-10-21 17:04:18 -04:00
Mike Reeves
776cc89520 Filebeat Module - Issue 61 2019-10-16 11:22:54 -04:00
Mike Reeves
ca4cd782a1 Docker URL Fix - Issue #68 2019-10-16 10:39:18 -04:00
Mike Reeves
ac9500c011 Merge pull request #113 from dlee35/master
beats template parity w/16.04.6.2 & rm fleet-launcher container fix
2019-10-11 08:56:36 -04:00
Dustin Lee
96ec2863dc fleet-launcher: rm container after run 2019-10-11 08:37:09 -04:00
Dustin Lee
699371a4d7 logstash: add beats template used in latest SO 2019-10-11 08:36:44 -04:00
Mike Reeves
e999a27d3e 1.1.2 2019-10-09 14:15:05 -04:00
Mike Reeves
32d1641b6e Firewall Module - Fix some docker iptables issues 2019-10-09 13:33:07 -04:00
Josh Brower
308041fad6 SOCtopus - Edit osquery playbook template
Fixes bug for when there is no [osquery][columns][address] field
2019-10-01 17:59:35 -04:00
Mike Reeves
176677add4 Common Module - Upgrade core version 2019-09-30 13:57:07 -04:00
Josh Brower
6486dbc0d8 Kibana - New docker HH1.1.1 2019-09-27 16:29:32 -04:00
Josh Brower
93c73b50ce Playbook - Move db outside of container 2019-09-27 15:21:02 -04:00
Mike Reeves
657ddc42a8 Playbook - Add flag for runtime 2019-09-27 10:40:28 -04:00
Josh Brower
4352b1ebf6 Updated Kibana NIDS SID Drilldown dashboard 2019-09-26 11:11:18 -04:00
Mike Reeves
1dd59e92e4 Common Module - Fix nginx for websockets 2019-09-25 16:58:15 -04:00
Mike Reeves
063f9012d1 PCAP Module - Fix sensoroni logging 2019-09-25 16:21:02 -04:00
Josh Brower
563378e2a4 Merge pull request #108 from defensivedepth/playbook
Playbook & SOCtopus init edits
2019-09-25 15:28:58 -04:00
Josh Brower
d9713cc14a Playbook & SOCtopus init edits 2019-09-25 15:18:18 -04:00
Mike Reeves
d979be82fb Hive Module - New Version 2019-09-25 13:16:49 -04:00
Josh Brower
f69a5212ff Merge pull request #106 from defensivedepth/playbook
Playbook and Navigator - initial salt config
2019-09-25 13:07:44 -04:00
Josh Brower
909e35ec3b Playbook and Navigator - initial salt config 2019-09-25 13:04:53 -04:00
Mike Reeves
58073cd04f Hive Module - Fix ES 2019-09-25 11:43:30 -04:00
Mike Reeves
db7920710b Hive Module - Temp remove init 2019-09-25 10:34:46 -04:00
Josh Brower
bc788a3d35 Playbook - initial commit 2019-09-24 20:09:20 -04:00
Wes Lambert
5bd77a5177 update log path 2019-09-24 20:37:07 +00:00
Wes Lambert
497edcbe45 update Filebeat log config 2019-09-24 19:38:06 +00:00
Mike Reeves
1fc4cca2ad Hive Module - update version 2019-09-24 15:23:12 -04:00
Mike Reeves
b0b76c1809 Filebeat - Roll back version 2019-09-24 14:15:00 -04:00
Mike Reeves
5e2cc08039 PCAP Module - Update steno image 2019-09-24 14:05:20 -04:00
doug
cb899943aa incoming bro_tunnel logs should go to bro_tunnels 2019-09-24 14:00:22 -04:00
Josh Brower
eb10914969 Update nids2hive.yaml 2019-09-24 12:32:59 -04:00
Mike Reeves
b1f582d218 Logstash Module - 1.1.1 2019-09-24 11:22:07 -04:00
Mike Reeves
e6ea6b4d73 Wazuh Module - Fix gid error 2019-09-24 11:07:38 -04:00
Mike Reeves
e080dcfe80 Filebeat Module - Update to 1.1.1 2019-09-24 11:03:48 -04:00
Mike Reeves
590827b08c Suricata Module - Suricata 4.1.5 2019-09-24 10:26:55 -04:00
Wes Lambert
2784542cdb update Elastalert config 2019-09-23 22:39:43 +00:00
doug
8472b24a67 parse Bro logs using Elasticsearch ingest node 2019-09-23 16:04:23 -04:00
Wes Lambert
965ee6f922 remove duplicate alerter 2019-09-23 14:43:54 +00:00
Wes Lambert
5419bd6f08 update config for Elastalert 2019-09-23 14:43:14 +00:00
Mike Reeves
6d14a94765 Logstash Module - Fix watch 2019-09-20 16:31:23 -04:00
Mike Reeves
50c074bb4e Logstash Module - Add more watches 2019-09-19 15:46:46 -04:00
Mike Reeves
06cc8e7236 OSSEC Module - Fix User Creation 2019-09-19 13:44:28 -04:00
Mike Reeves
b68391acd0 cmd.script - Fix location 2019-09-19 10:22:10 -04:00
Mike Reeves
9421e4d8e2 Merge pull request #97 from defensivedepth/nids
Add rule_signature mapping
2019-09-19 08:56:05 -04:00