Commit Graph

1061 Commits

Author SHA1 Message Date
William Wernert
2b20d009e1 Fixed cyberchef container image version error.
Cyberchef container image v1.1.4 has not been built yet, revert to 1.1.3 for now
2019-12-19 17:04:23 -05:00
weslambert
839f710f61 Merge pull request #166 from Security-Onion-Solutions/feature/fix_hive
fix ssl verify hive_init.sh
2019-12-18 14:20:43 -05:00
m0duspwnens
2888dce48f fix ssl verify hive_init.sh 2019-12-18 14:11:26 -05:00
Josh Brower
2319f503f8 Initial commit - so-common 2019-12-17 16:24:26 -05:00
Josh Brower
82076b1988 Initial commit - so-restart 2019-12-17 16:23:59 -05:00
Mike Reeves
b0584f2178 Merge pull request #160 from Security-Onion-Solutions/mastersearch
Mastersearch Menu Option
2019-12-17 16:18:20 -05:00
Mike Reeves
5ead3a26b6 Rename Storage to Search Nodes 2019-12-17 15:32:43 -05:00
Mike Reeves
efd641f0df Rename Storage to Search Nodes 2019-12-17 13:43:37 -05:00
Mike Reeves
ef030c6a14 Merge pull request #155 from Security-Onion-Solutions/hive_init
Wait for TheHive before attempting to configure
2019-12-17 13:29:24 -05:00
Doug Burks
d668bc3511 Merge pull request #151 from Security-Onion-Solutions/cyberchef_static
update Cyberchef to serve static files vs self-hosted
2019-12-17 13:20:45 -05:00
Wes Lambert
4a34ac7c05 wait for TheHive before attempting to configure 2019-12-17 13:34:01 +00:00
Wes Lambert
56d354b256 update Cyberchef to serve static files vs self-hosted 2019-12-16 21:22:00 +00:00
Wes Lambert
d66eca1db4 add Bro extracted directory 2019-12-16 20:45:14 +00:00
Mike Reeves
e49de63460 Helix - Final Parser Fixes 2019-12-13 13:59:29 -05:00
Mike Reeves
fdbb223155 Helix - Add geo 2019-12-13 11:52:43 -05:00
Mike Reeves
e263d72813 Setup - Add sensor pillar to Helix 2019-12-13 11:46:30 -05:00
Mike Reeves
4c89cb50bb Setup - update Helix Script 2019-12-12 23:12:08 -05:00
Mike Reeves
d8d94b7dc5 Helix - Add API Key Option 2019-12-12 20:46:30 -05:00
Mike Reeves
b04da4562c Merge pull request #163 from m0duspwnens/master
reverting for Security-Onion-Solutions#111
2019-12-12 16:54:36 -05:00
m0duspwnens
349d8f4bd7 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:40:24 -05:00
m0duspwnens
cc7de9aee2 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:36:22 -05:00
m0duspwnens
481d52a5a8 reverting for https://github.com/Security-Onion-Solutions/securityonion-saltstack/issues/111 2019-12-12 16:21:57 -05:00
Mike Reeves
79d48f9e77 Logstash - Fix helix output typeo 2019-12-12 15:17:19 -05:00
Mike Reeves
70acb23976 Merge pull request #161 from weslambert/tcpreplay
add initial tcpreplay state
2019-12-12 15:10:51 -05:00
Mike Reeves
bd9b1957ba Logstash - Fix helix output 2019-12-12 14:12:51 -05:00
Wes Lambert
c47d163a32 add initial tcpreplay state 2019-12-11 19:39:03 +00:00
Mike Reeves
989641eb5a Setup - Fix prompts and disable onion user if iso 2019-12-11 13:44:40 -05:00
Mike Reeves
96bf8f66ff SSL - Fix helix mode ssl certs 2019-12-10 17:04:18 -05:00
Mike Reeves
72b481855f Setup - add jq and fix eval calculation of failure 2019-12-10 16:50:23 -05:00
Mike Reeves
c83decc0a0 Helix - add firewall for mode helix 2019-12-10 14:44:10 -05:00
Mike Reeves
7386d800ae Helix - add filebeat config for helix 2019-12-10 14:06:20 -05:00
Mike Reeves
e134071295 Helix - Change Parsers for Helix 2019-12-10 13:50:27 -05:00
Mike Reeves
c46c539277 Helix - fix suricata.yml 2019-12-10 11:24:56 -05:00
Mike Reeves
fe042ed2bb Filebeat State - Fix watch statement to only change on yml 2019-12-10 10:59:35 -05:00
Mike Reeves
ce517dfebc Helix Mode - Fix SSL so Filebeat works properly 2019-12-10 10:40:28 -05:00
Mike Reeves
ae3c428941 Helix Logstash Changes 2019-12-10 10:02:41 -05:00
Mike Reeves
54fd5254c0 Merge pull request #158 from m0duspwnens/master
changes for FireEye Helix integration
2019-12-09 17:22:34 -05:00
m0duspwnens
4874e540da changes for FireEye Helix integration 2019-12-09 17:18:12 -05:00
Mike Reeves
4c4cdb7189 Helix changes and Wazuh 2019-12-09 16:27:03 -05:00
Mike Reeves
3904c19333 Change Variables to UperCase 2019-12-09 10:04:14 -05:00
m0duspwnens
599341483e adding api key for Helix 2019-12-09 09:59:28 -05:00
Mike Reeves
362cd0487f Additional Helix Support 2019-12-09 09:52:52 -05:00
Mike Reeves
897e009231 Salt Top file for helix sensor 2019-12-08 19:21:16 -05:00
Mike Reeves
d454216a4b Merge pull request #151 from m0duspwnens/master
update OS patch restart needed MOTD
2019-12-06 15:03:07 -05:00
Mike Reeves
100bcdd81d Merge pull request #152 from weslambert/master
Initial support for pre-loading custom fields in TheHive
2019-12-06 15:02:31 -05:00
Mike Reeves
880f57c424 Merge pull request #153 from defensivedepth/master
Playbook - scripts
2019-12-06 15:02:17 -05:00
Josh Brower
d27de7c8be Update init.sls 2019-12-05 16:54:33 -05:00
Josh Brower
65ddac4535 Playbook - add cron job for so-playbook-sync 2019-12-05 16:50:58 -05:00
Josh Brower
7721e913ec Create so-playbook-ruleupdate 2019-12-05 16:36:29 -05:00
Josh Brower
84485b7f79 Create so-playbook-sync 2019-12-05 16:34:30 -05:00