Commit Graph

6443 Commits

Author SHA1 Message Date
Peter Di Giorgio 4b39ccec6d Update zeek.bacnet_property 2022-11-03 15:30:20 -07:00
Mike Reeves c5bfe6ffdb Update init.sls 2022-11-02 12:59:46 -04:00
Mike Reeves 4ac365e670 Update init.sls 2022-11-02 12:59:17 -04:00
Mike Reeves ff1a903895 Update init.sls 2022-11-02 12:58:31 -04:00
Mike Reeves 388486ec08 Update init.sls 2022-11-02 10:06:13 -04:00
Mike Reeves f74aee6a03 Update init.sls 2022-11-01 13:21:12 -04:00
Mike Reeves 16d8e9e5a0 Fix soup and perms updates 2022-11-01 09:05:26 -04:00
Mike Reeves ee1f55361e Add soup and perms updates 2022-10-31 16:33:38 -04:00
Mike Reeves cb33464668 Merge pull request #9033 from Security-Onion-Solutions/strelkafix
Add Filechecks
2022-10-31 15:49:40 -04:00
Mike Reeves 06ddae13b5 Update filecheck 2022-10-31 15:41:57 -04:00
Mike Reeves 16d3dead04 Update sensor-rotate.conf 2022-10-31 15:33:10 -04:00
Mike Reeves f7043f3f62 Update init.sls 2022-10-31 15:25:38 -04:00
Mike Reeves bf41f2984a Update init.sls 2022-10-31 14:58:55 -04:00
Mike Reeves 86ca3602f3 Update init.sls 2022-10-31 14:44:01 -04:00
Mike Reeves 416c28fded Update init.sls 2022-10-31 14:42:23 -04:00
Mike Reeves 297373877a Update init.sls 2022-10-31 14:36:40 -04:00
Mike Reeves db9b93a96c Update init.sls 2022-10-31 14:35:02 -04:00
Mike Reeves 5635375d8d Update init.sls 2022-10-31 14:30:11 -04:00
Mike Reeves 07e72e4013 Update filecheck 2022-10-31 13:47:49 -04:00
Mike Reeves 518d2aaa9c Update filecheck.yaml 2022-10-31 13:45:00 -04:00
Mike Reeves e93e2995b7 Update filecheck 2022-10-31 13:42:18 -04:00
Mike Reeves d2eb61a830 Update filecheck.yaml 2022-10-31 13:41:45 -04:00
Mike Reeves 4c5a2c0610 Update filecheck 2022-10-31 13:36:42 -04:00
Mike Reeves e9e7362005 Add Filechecks 2022-10-31 12:57:08 -04:00
Peter Di Giorgio b97c822800 Add zeek.bacnet_discovery and zeek.bacnet_property 2022-10-27 15:40:52 -07:00
Peter Di Giorgio 71e3b2d1fb Create zeek.bacnet 2022-10-27 15:40:07 -07:00
Peter Di Giorgio c524442172 Merge pull request #9008 from Security-Onion-Solutions/master
Synch Foxtrot with 2.3.181 Release
2022-10-26 13:10:01 -07:00
weslambert a170c194c8 Remove JA3er references 2022-10-26 10:18:10 -04:00
Peter Di Giorgio 2b51d72585 Rename zeek.read_write_multiple_registers to zeek.modbus_read_write_multiple_registers 2022-10-25 17:20:01 -07:00
Wes a91e3b601c Remove JA3er since it is no longer a valid service 2022-10-25 18:48:37 +00:00
Wes 4940421297 Add PyYAML .whl files back since they were 'deleted' in the previous commit 2022-10-25 18:47:51 +00:00
Wes 58b4a8fbab Change PyYAML .whl file name to comply with Joliet's 240-character limit 2022-10-25 18:47:02 +00:00
Mike Reeves bd7e12f682 Merge pull request #8952 from Njinx/dev
FEATURE: so-pcap-export can run without needing to be attached to a TTY
2022-10-25 14:38:48 -04:00
weslambert 0087768946 Revert "Change PyYAML .whl file name to comply with Joliet's 240-character limit/threshold" 2022-10-24 16:47:30 -04:00
Wes 1caac3f0b0 Add PyYAML .whl files back since they were 'deleted' in the previous commit. 2022-10-24 18:06:19 +00:00
Wes 54a5dd6cbd Change name of PyYAML .whl file to remain under Joliet's 240-character limit/threshold 2022-10-24 18:05:15 +00:00
Peter Di Giorgio 7a60d0987c Update zeek.conn to include client.oui 2022-10-21 13:02:01 -07:00
Peter Di Giorgio 9ac06057c1 Create zeek.read_write_multiple_registers 2022-10-21 13:00:12 -07:00
Peter Di Giorgio e5c69c3236 Create zeek.modbus_mask_write_register 2022-10-21 12:58:36 -07:00
Peter Di Giorgio 39f050c6e4 Rename modbus_detailed to zeek.modbus_detailed 2022-10-21 12:56:59 -07:00
Peter Di Giorgio 4ee083759c Rename dnp3_objects to zeek.dnp3_objects 2022-10-21 12:56:35 -07:00
Peter Di Giorgio 072bfd87b7 Create Ingest for Modbus Detailed 2022-10-21 12:53:30 -07:00
Peter Di Giorgio b7aaaa80bb Create Ingest for DNP3 Objects extension 2022-10-21 12:51:13 -07:00
Jason Ertel 05e271af47 update soup for 2.3.181 2022-10-21 11:52:54 -04:00
Ben Allen f13f05eb94 Run without needing to be attached to a TTY 2022-10-19 14:11:11 -04:00
Doug Burks f4042263a3 Remove destination_geo.organization_name from Sysmon Network sankey diagram 2022-10-13 08:59:10 -04:00
Doug Burks 7401008523 Update soup for 2.3.180 2022-10-11 12:58:37 -04:00
doug 454a7a4799 FEATURE: Add new Sysmon dashboards #8870 2022-10-07 11:52:49 -04:00
Doug Burks ab17cbee31 Update Elastic to 8.4.3 2022-10-07 07:03:10 -04:00
Doug Burks 9991f0cf95 update Elastic to 8.4.3 2022-10-07 07:02:24 -04:00