m0duspwnens
|
903ad530fe
|
move zeek bpf from zeek pillar to bpf pillar
|
2023-03-20 15:28:33 -04:00 |
|
Mike Reeves
|
b56baf900c
|
Re-Work IDSTOOLS
|
2023-03-15 16:44:53 -04:00 |
|
m0duspwnens
|
b6d55bedc8
|
make influxdb token accessible to all nodes
|
2023-03-06 13:50:17 -05:00 |
|
m0duspwnens
|
e6167dc34a
|
heavynode changes
|
2023-03-02 15:09:59 -05:00 |
|
m0duspwnens
|
d502d95dba
|
changes for soc firewall
|
2023-02-24 15:24:02 -05:00 |
|
Jason Ertel
|
ea0c3db8e1
|
upgrade influxdb
|
2023-02-08 13:23:45 -05:00 |
|
m0duspwnens
|
e09a86dc30
|
2.4 searchnode es config
|
2023-01-31 10:54:40 -05:00 |
|
m0duspwnens
|
d5b5a36f28
|
remove data.nodestab from searchnodes pillar
|
2023-01-26 16:17:33 -05:00 |
|
Wes
|
b3123f7895
|
Remove unnecessary Logstash pipelines from the pillar
|
2023-01-26 17:57:07 +00:00 |
|
m0duspwnens
|
b7a5937dc1
|
add soc_logstash and adv_logstash to nodes in pillar/top
|
2023-01-25 14:04:36 -05:00 |
|
m0duspwnens
|
3f99e3402e
|
add elasticsearch pillar files to manager and adv_elasticsearch to those that had soc_elasticsearch
|
2023-01-25 10:53:58 -05:00 |
|
m0duspwnens
|
d1460ae01f
|
add node_data.ips pillar. grab influx host ip for soc extra_hosts
|
2023-01-24 17:05:40 -05:00 |
|
Mike Reeves
|
2e53476a06
|
Merge pull request #9516 from Security-Onion-Solutions/mkr24
Add PW auth for Redis
|
2023-01-04 14:50:27 -05:00 |
|
Mike Reeves
|
831300b540
|
Require password auth for redis access
|
2023-01-04 11:02:40 -05:00 |
|
Mike Reeves
|
ab9edd4e6b
|
Merge pull request #9421 from Security-Onion-Solutions/mkr24
Redis defaults.yaml
|
2022-12-21 09:15:49 -05:00 |
|
Mike Reeves
|
aa7690864a
|
Modify redis config defaults
|
2022-12-20 22:05:04 -05:00 |
|
Mike Reeves
|
9428949c79
|
Fix Kratos top
|
2022-12-20 20:56:06 -05:00 |
|
Mike Reeves
|
90061e2683
|
Fix Kratos top
|
2022-12-20 20:54:43 -05:00 |
|
Mike Reeves
|
c3917a373c
|
Fix Kratos top
|
2022-12-20 20:52:01 -05:00 |
|
doug
|
9d8951ceb8
|
fix import
|
2022-12-19 16:55:16 -05:00 |
|
Mike Reeves
|
149038d08e
|
pillar tops
|
2022-12-19 12:06:45 -05:00 |
|
doug
|
b9e51fc7cf
|
first round of fixes for eval mode
|
2022-12-16 13:24:02 -05:00 |
|
Mike Reeves
|
6b3149f4e9
|
Fix the pillar top
|
2022-12-15 14:03:21 -05:00 |
|
m0duspwnens
|
6a17f201a2
|
changes for backup state
|
2022-10-12 11:31:42 -04:00 |
|
Josh Patterson
|
f0ddfecd42
|
Merge pull request #8784 from Security-Onion-Solutions/2.4/zeek
2.4/zeek
|
2022-09-20 16:28:40 -04:00 |
|
m0duspwnens
|
75aa121b2d
|
fix some things
|
2022-09-20 13:19:15 -04:00 |
|
m0duspwnens
|
d1ee3a7d04
|
zeek 2.4
|
2022-09-20 11:11:29 -04:00 |
|
Mike Reeves
|
17cbe38c25
|
Add NTP
|
2022-09-19 14:32:29 -04:00 |
|
Mike Reeves
|
74ccf333e0
|
Add NTP
|
2022-09-19 14:30:23 -04:00 |
|
Mike Reeves
|
a168aa8b81
|
Add more logging to setup process
|
2022-09-12 14:53:34 -04:00 |
|
Mike Reeves
|
2bd9dd80e2
|
Move In Day
|
2022-09-07 09:06:25 -04:00 |
|
Wes Lambert
|
5c90fce3a1
|
Add Kratos Logstash output to search pipeline for Logstash
|
2022-07-08 15:58:00 +00:00 |
|
m0duspwnens
|
d8abc0a195
|
if in dmz_nodes dont add to filebeta
|
2022-05-11 11:51:18 -04:00 |
|
m0duspwnens
|
a641346c02
|
prevent nodes with logstash:dmz:true from being added to logstash:nodes pillar
|
2022-05-10 17:28:19 -04:00 |
|
Josh Patterson
|
f5095b273d
|
Merge pull request #7665 from Security-Onion-Solutions/workstation_state
Workstation state
|
2022-03-29 10:27:07 -04:00 |
|
m0duspwnens
|
0ddfaf8d74
|
changes for workstation
|
2022-03-28 15:34:15 -04:00 |
|
Wes Lambert
|
f613d8ad86
|
Add RITA Logstash config
|
2022-03-22 17:36:18 +00:00 |
|
Wes Lambert
|
ba24f75893
|
Fix index typo
|
2022-03-11 18:11:16 +00:00 |
|
Wes Lambert
|
70ed20f691
|
Add new sls file for custom ES index templates
|
2022-03-11 18:07:23 +00:00 |
|
Josh Brower
|
3610b0cd30
|
merge in dev
|
2022-02-21 16:52:53 -05:00 |
|
Wes Lambert
|
de731fc05d
|
Remove default templates from ES template pillar since they are now managed in the defaults file.
|
2022-02-15 17:04:57 +00:00 |
|
Josh Brower
|
37b17b8821
|
Initial support - IDH Node
|
2022-02-07 19:27:51 -05:00 |
|
m0duspwnens
|
797d769661
|
use actual hostname in logstash:nodes pillar
|
2022-02-03 10:36:18 -05:00 |
|
Jason Ertel
|
1d885a5419
|
Add case template to eval installs
|
2021-12-29 11:38:38 -05:00 |
|
Jason Ertel
|
e87cbc37a4
|
Add case template
|
2021-12-28 19:17:15 -05:00 |
|
m0duspwnens
|
759bf9837e
|
pillar top clean up for receiver and logstash.nodes
|
2021-12-15 09:31:03 -05:00 |
|
m0duspwnens
|
d9a384cc29
|
remove global:pipeline pillar call from logstash pipeline pillars
|
2021-12-15 09:30:15 -05:00 |
|
m0duspwnens
|
c490a3be36
|
move node_data pillar to logstash:nodes, set extra hosts for filebeat docker
|
2021-12-14 13:32:42 -05:00 |
|
m0duspwnens
|
8d0872bce5
|
create node_data pillar from mine data, use node_data pillar for filebeat config
|
2021-12-13 15:48:30 -05:00 |
|
m0duspwnens
|
f3ec5df447
|
add receiver node
|
2021-12-07 11:13:51 -05:00 |
|