weslambert
|
deb140e38e
|
Exclude detections from template name matching
|
2024-05-21 13:38:52 -04:00 |
|
Doug Burks
|
26cb8d43e1
|
FIX: so-index-list typo #12988
|
2024-05-10 08:01:56 -04:00 |
|
Doug Burks
|
a1291e43c3
|
FIX: so-index-list typo #12988
|
2024-05-10 07:58:13 -04:00 |
|
weslambert
|
b424426298
|
Exclude suricata
|
2024-04-25 09:14:18 -04:00 |
|
weslambert
|
44afa55274
|
Fix comments about deletion
|
2024-04-24 17:41:37 -04:00 |
|
weslambert
|
ab832e4bb2
|
Include logstash-prefixed indices
|
2024-04-24 17:17:53 -04:00 |
|
weslambert
|
59a02635ed
|
Change index sorting
|
2024-04-24 15:18:49 -04:00 |
|
Doug Burks
|
406dda6051
|
Update so-elasticsearch-cluster-space-used
|
2024-04-18 11:48:15 -04:00 |
|
Doug Burks
|
229a989914
|
Update so-elasticsearch-cluster-space-total
|
2024-04-18 11:47:01 -04:00 |
|
Wes
|
4baf4657f6
|
Curator cleanup
|
2023-12-20 19:10:22 +00:00 |
|
Doug Burks
|
d49d13289e
|
Update so-elastic-clear
|
2023-12-12 16:37:06 -05:00 |
|
Wes
|
54c3167b10
|
Delete data streams when necessary
|
2023-12-12 05:25:50 +00:00 |
|
Wes
|
d203aec44a
|
Remove Curator
|
2023-12-08 19:37:06 +00:00 |
|
weslambert
|
02baa18502
|
Add metrics
|
2023-11-08 22:41:24 -05:00 |
|
weslambert
|
e39edab00d
|
Exclude osquery and display failed name
|
2023-11-08 20:55:08 -05:00 |
|
weslambert
|
acb6e84248
|
Don't load index template if component template doesn't exist
|
2023-11-08 20:34:08 -05:00 |
|
Jason Ertel
|
d256be3eb3
|
allow template loads to partially succeed only on the initial attempt
|
2023-11-08 10:32:11 -05:00 |
|
Wes
|
653fda124f
|
Check expected with retry
|
2023-11-08 13:02:17 +00:00 |
|
Wes
|
b46e86c39b
|
Extend index template loading to 60 attempts and a total of ~5 minutes
|
2023-11-08 02:29:09 +00:00 |
|
Wes
|
de9f9549af
|
Extend template loading to 24 attempts and a total of ~2 minutes
|
2023-11-07 23:55:03 +00:00 |
|
weslambert
|
749e22e4b9
|
Fix if statement
|
2023-11-07 17:29:38 -05:00 |
|
weslambert
|
69ec1987af
|
Fix if statement
|
2023-11-07 17:28:37 -05:00 |
|
Wes
|
570624da7e
|
Remove RETURN_CODE
|
2023-11-07 21:09:29 +00:00 |
|
Wes
|
7772657b4b
|
Remove RETURN_CODE
|
2023-11-07 21:06:35 +00:00 |
|
Wes
|
1676c84f9c
|
Use the retry function so-elasticsearch-query
|
2023-11-07 19:56:50 +00:00 |
|
Wes
|
0b4a246ddb
|
State file changes and retry logic
|
2023-11-07 16:44:42 +00:00 |
|
Wes
|
c30a0d5b5b
|
Better error handling and state file management
|
2023-11-06 14:29:01 +00:00 |
|
Wes
|
74eda68d84
|
Exit if unable to communicate with Elasticsearch
|
2023-11-06 13:16:35 +00:00 |
|
weslambert
|
51e7861757
|
Don't source so-elastic-fleet-common if not there
|
2023-11-02 16:41:34 -04:00 |
|
m0duspwnens
|
4d497022db
|
replace . with _x_ for soc ui compat
|
2023-08-10 09:52:18 -04:00 |
|
Wes
|
6a8737e9a2
|
Set delete for interactive
|
2023-07-19 12:21:47 +00:00 |
|
Wes
|
8a76975d8c
|
Use new agent scripts
|
2023-07-18 18:43:57 +00:00 |
|
Wes
|
0b5ee49873
|
Fix inverted logic for component template
|
2023-07-06 20:46:35 +00:00 |
|
Wes
|
910125f13a
|
Restructure logic
|
2023-07-06 17:49:06 +00:00 |
|
Wes
|
d551faeb16
|
Heavy node template considerations
|
2023-07-06 17:19:28 +00:00 |
|
weslambert
|
c2efd7ef64
|
Merge pull request #10655 from Security-Onion-Solutions/feature/supported_integrations
Restructure Elasticsearch templates for supported integrations
|
2023-06-26 09:43:10 -04:00 |
|
weslambert
|
e2ff48164b
|
Only load if so-elastic-fleet-common exists
|
2023-06-23 16:03:58 -04:00 |
|
Wes
|
d8700137d2
|
Add updated so-elasticsearch-templates-load
|
2023-06-23 13:23:29 +00:00 |
|
Wes
|
2c42d4b19e
|
Add package check to so-elasticsearch-templates-load
|
2023-06-23 13:22:51 +00:00 |
|
m0duspwnens
|
19469205e1
|
include eval and import in so-elasticsearch-cluster-settings
|
2023-06-22 13:12:47 -04:00 |
|
m0duspwnens
|
6c4c815683
|
change so-elasticsearch-cluster settings to include heavynode, and only run on managers
|
2023-06-22 13:04:20 -04:00 |
|
Wes
|
73812b11a3
|
Allow ingest node pipelines that start with a period
|
2023-06-13 13:37:56 +00:00 |
|
Wes
|
4469a93a75
|
Fix typo
|
2023-05-30 18:24:30 +00:00 |
|
Wes
|
b441fe662f
|
Change 1024 to 1000 for gigabytes
|
2023-05-30 17:28:59 +00:00 |
|
Wes
|
ce114a2601
|
Fix total space logic and rename TOTAL_AVAILABLE_SPACE to TOTAL_USED_SPACE
|
2023-05-26 13:19:45 +00:00 |
|
Wes
|
a308a39bbe
|
Use disk space taken up by indices if the script is not running on a manager
|
2023-05-24 16:48:45 +00:00 |
|
m0duspwnens
|
c49b134122
|
move so-catrust
|
2023-05-15 16:43:47 -04:00 |
|
m0duspwnens
|
6320528263
|
move so-catrust
|
2023-05-15 14:08:30 -04:00 |
|
m0duspwnens
|
2a979197a0
|
enabled/disable elasticsearch in ui
|
2023-05-09 09:33:37 -04:00 |
|
m0duspwnens
|
ddb776c80e
|
add redis pillars to searchnode. move redis scripts with jinja to sbin_jinja
|
2023-05-04 17:26:18 -04:00 |
|