Commit Graph

58 Commits

Author SHA1 Message Date
Wes Lambert 358d2f74b2 update key name 2020-04-18 18:58:27 -04:00
Mike Reeves bd0aaab003 Fix Filebeat Yaml 2020-04-18 18:55:44 -04:00
Mike Reeves 2d086b7355 Disable Strelka for all things 2020-04-18 18:55:44 -04:00
Mike Reeves 093b6431f2 Fix Wazuh and Strelka 2020-04-18 18:55:43 -04:00
Wes Lambert ad5626f407 update variables 2020-04-06 13:09:52 +00:00
Wes Lambert eb0c23387b specify ES vs LS in FB config 2020-04-02 20:01:49 +00:00
Josh Brower 5ca9a643a8 Merge branch 'dev' into feature/osquery-ingest 2020-04-01 10:19:35 -04:00
Josh Brower 0e76447d11 osquery ingest - initial support 2020-04-01 10:17:36 -04:00
Wes Lambert 6cc757e1de add strelka index 2020-04-01 13:02:36 +00:00
Wes Lambert 70422809ec add category 2020-04-01 12:59:10 +00:00
Wes Lambert 9bbcc185aa change Strelka log location 2020-04-01 12:57:51 +00:00
Wes Lambert 68138e009a update FB config 2020-03-31 00:37:58 +00:00
Josh Brower 9bcba41882 Feature/Fleet-Standalone 2020-03-24 20:57:24 -04:00
Wes Lambert 150eaf59fd don't load FB template 2020-03-18 20:05:42 +00:00
Wes Lambert 8bea56eccf change prospectors to inputs 2020-03-17 15:17:52 +00:00
Wes Lambert 85c1873f4d switch logging to error 2020-03-14 12:10:06 +00:00
Wes Lambert d2016d3ff2 modify Filebeat config 2020-03-14 12:05:16 +00:00
Mike Reeves 048c77695d Fix Filebeat 2020-01-30 15:47:51 -05:00
m0duspwnens 306cc1127b heavynode 2020-01-29 12:56:25 -05:00
Mike Reeves bd395b8356 Update filebeat.yml 2020-01-28 22:20:21 -05:00
Wes Lambert eea08f3515 add back helix 2019-12-20 01:24:20 +00:00
Wes Lambert c597dd2fb4 Strelka - Filebeat config 2019-12-18 03:22:30 +00:00
Mike Reeves 7386d800ae Helix - add filebeat config for helix 2019-12-10 14:06:20 -05:00
Mike Reeves 776cc89520 Filebeat Module - Issue 61 2019-10-16 11:22:54 -04:00
Wes Lambert 5bd77a5177 update log path 2019-09-24 20:37:07 +00:00
Mike Reeves f1ae2617c2 Filebeat Module - Change log dir mapping 2019-08-14 08:44:54 -04:00
Mike Reeves a9f592a53b Filebeat Module - Move logging to the top 2019-08-13 09:37:41 -04:00
Mike Reeves e36b178e1c Filebeat Module - Change logging to error 2019-08-13 09:27:38 -04:00
Mike Reeves 0876566317 Filebeat Module - Change port for internal filebeat traffic 2019-06-10 18:27:03 -04:00
Mike Reeves 49357f4947 Filebeat Module - Make it log to a file 2019-01-23 13:38:59 -05:00
Josh Brower 44eed120cb add osquery logs if fleet is enabled 2018-12-28 13:49:53 -05:00
Wes Lambert d13e7559fe Filebeat - Enabled for master and only enable Bro/Suri inputs when needed 2018-12-13 17:32:03 +00:00
Wes Lambert 54c35cdc0d Filebeat - Add Wazuh archive logs 2018-12-12 20:51:41 +00:00
Wes Lambert 0f5fbadaf5 Filebeat - Switch negation to equals 2018-12-10 20:17:41 +00:00
Wes Lambert e70db05a0f Filebeat - Modify config for Wazuh alerts 2018-12-10 19:50:55 +00:00
Wes Lambert e355503324 Filebeat - Update for Wazuh logs 2018-12-07 13:38:31 +00:00
Wes Lambert 2695a8e1a7 Filebeat - Modify config for IDS type 2018-11-30 13:15:35 +00:00
Mike Reeves 0a3c20fccf Suricata Module - Fix Jinja 2018-11-13 14:10:21 -05:00
Mike Reeves a70b7ed3de Suricata Meta Data Option 2018-11-13 11:25:30 -05:00
Mike Reeves 90d55104c6 Filebeat Module - Fix bro logs to make them work 2018-10-25 22:43:19 -04:00
Mike Reeves fde7f4352a Filebeat Module - Fix master in yml 2018-10-18 23:25:32 -04:00
Mike Reeves 5374265a25 Filebeat Module - Fix master in yml 2018-10-18 22:43:09 -04:00
Mike Reeves 41e3b04b25 Logstash Module - Sensors now show up correclty 2018-10-16 21:00:04 -04:00
Mike Reeves 335ac02720 Logstash Module - Change it to arrays 2018-10-16 17:25:21 -04:00
Mike Reeves 57039d83c8 Logstash Module - Change some fields so dashboards load 2018-10-16 16:21:50 -04:00
Mike Reeves b0293c24b5 Logstash Module - Disable freq and modify some configs 2018-10-16 14:53:48 -04:00
Mike Reeves ff98cdb30b Filebeat Module - Change the filebeat.yml 2018-10-16 10:20:00 -04:00
Mike Reeves 66d2a7db94 Filebeat Module - Fix some spacing and syntax 2018-10-15 20:32:28 -04:00
Mike Reeves 4288f8ce62 FileBeat Module - Add new pillar for logtypes and walk it 2018-10-15 19:18:56 -04:00
Mike Reeves e89f58dff0 Filebeat Module - Change key to normal key 2018-10-09 12:41:51 -04:00