m0duspwnens
|
50f0c43212
|
merge dev
|
2024-06-26 12:33:32 -04:00 |
|
m0duspwnens
|
81fcd68e9b
|
create and use redis:nodes and elasticsearch:nodes pillars
|
2024-06-20 16:42:11 -04:00 |
|
reyesj2
|
d9c58d9333
|
update receiver pillar access
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-06-04 08:33:45 -04:00 |
|
reyesj2
|
3efdb4e532
|
Reconfigure logstash Kafka input
- TODO: Configure what topics are pulled to searchnodes via the SOC UI
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-05-01 13:01:29 -04:00 |
|
m0duspwnens
|
d73ba7dd3e
|
order kafka pillar assignment
|
2024-04-12 11:55:26 -04:00 |
|
m0duspwnens
|
a54a72c269
|
move kafka_cluster_id to kafka:cluster_id
|
2024-04-12 11:19:20 -04:00 |
|
m0duspwnens
|
e25bc8efe4
|
Merge remote-tracking branch 'origin/reyesj2/kafka' into kaffytaffy
|
2024-04-02 13:36:47 -04:00 |
|
DefensiveDepth
|
d7ecad4333
|
Initial cut to remove Playbook and deps
|
2024-03-25 19:42:31 -04:00 |
|
reyesj2
|
446f1ffdf5
|
merge 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-03-25 13:55:48 -04:00 |
|
reyesj2
|
a73d78300a
|
Add initial stig state
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2024-01-15 21:17:17 -05:00 |
|
Wes
|
d203aec44a
|
Remove Curator
|
2023-12-08 19:37:06 +00:00 |
|
reyesj2
|
8cf29682bb
|
Update to merge in 2.4/dev
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2023-11-29 13:41:23 -05:00 |
|
reyesj2
|
86dc7cc804
|
Kafka init
Signed-off-by: reyesj2 <94730068+reyesj2@users.noreply.github.com>
|
2023-11-29 13:34:25 -05:00 |
|
m0duspwnens
|
b64fa51268
|
give desktop docker state and pillars
|
2023-09-01 09:16:24 -04:00 |
|
m0duspwnens
|
b010919099
|
add sensoroni, telegraf, common states to desktop. allow docker_registry connection to managers for desktop
|
2023-08-31 13:21:32 -04:00 |
|
m0duspwnens
|
a60c34d548
|
exclude unnecessary pillars from desktop nodes
|
2023-08-31 09:40:54 -04:00 |
|
Jason Ertel
|
5eca1acbeb
|
incorporate features pillar
|
2023-07-06 13:24:45 -04:00 |
|
Wes
|
ed560f19d3
|
Remove where not applicable
|
2023-05-31 14:28:43 +00:00 |
|
Wes
|
b3f6012856
|
Change ordering
|
2023-05-31 14:22:47 +00:00 |
|
Wes
|
9ae26ec866
|
Add Fleet to top file
|
2023-05-31 14:21:39 +00:00 |
|
m0duspwnens
|
f1c8467e9b
|
create and assign kibana.soc and kibana.adv
|
2023-05-15 13:13:38 -04:00 |
|
m0duspwnens
|
ddb776c80e
|
add redis pillars to searchnode. move redis scripts with jinja to sbin_jinja
|
2023-05-04 17:26:18 -04:00 |
|
m0duspwnens
|
71b6311edc
|
add logstash.nodes to pillar top
|
2023-05-04 13:05:16 -04:00 |
|
Mike Reeves
|
a38495ce39
|
Fix pillar top for firewall
|
2023-05-01 10:40:36 -04:00 |
|
Mike Reeves
|
e799edaf49
|
Fix globals order
|
2023-04-26 15:54:16 -04:00 |
|
Mike Reeves
|
868cb8183c
|
Fix the top file
|
2023-04-26 14:15:34 -04:00 |
|
Mike Reeves
|
b3f94961ea
|
Fix Kibana and friends
|
2023-04-26 13:30:23 -04:00 |
|
m0duspwnens
|
9f07388fa4
|
fix global location for fleet node
|
2023-04-19 10:47:08 -04:00 |
|
m0duspwnens
|
cd674947bb
|
Merge remote-tracking branch 'origin/2.4/dev' into ui/globals
|
2023-04-19 10:45:56 -04:00 |
|
m0duspwnens
|
976ad4152d
|
move soc_global and adv_global pillar file under pillar/global/
|
2023-04-19 10:44:02 -04:00 |
|
Josh Brower
|
af392681e3
|
Merge remote-tracking branch 'remotes/origin/2.4/dev' into fleet-sa
|
2023-04-03 07:27:04 -04:00 |
|
Josh Brower
|
d22a5b2eb3
|
Add annotations
|
2023-03-27 15:16:47 -04:00 |
|
m0duspwnens
|
903ad530fe
|
move zeek bpf from zeek pillar to bpf pillar
|
2023-03-20 15:28:33 -04:00 |
|
Mike Reeves
|
b56baf900c
|
Re-Work IDSTOOLS
|
2023-03-15 16:44:53 -04:00 |
|
m0duspwnens
|
b6d55bedc8
|
make influxdb token accessible to all nodes
|
2023-03-06 13:50:17 -05:00 |
|
m0duspwnens
|
e6167dc34a
|
heavynode changes
|
2023-03-02 15:09:59 -05:00 |
|
m0duspwnens
|
d502d95dba
|
changes for soc firewall
|
2023-02-24 15:24:02 -05:00 |
|
Josh Brower
|
18a54b86f4
|
More fixes
|
2023-01-31 14:57:39 -05:00 |
|
m0duspwnens
|
e09a86dc30
|
2.4 searchnode es config
|
2023-01-31 10:54:40 -05:00 |
|
Josh Brower
|
a71cbcfc9b
|
Pull in upstream changes
|
2023-01-27 07:53:53 -05:00 |
|
Josh Brower
|
29aa6dceed
|
Add logstash
|
2023-01-27 07:49:21 -05:00 |
|
m0duspwnens
|
d5b5a36f28
|
remove data.nodestab from searchnodes pillar
|
2023-01-26 16:17:33 -05:00 |
|
m0duspwnens
|
b7a5937dc1
|
add soc_logstash and adv_logstash to nodes in pillar/top
|
2023-01-25 14:04:36 -05:00 |
|
m0duspwnens
|
3f99e3402e
|
add elasticsearch pillar files to manager and adv_elasticsearch to those that had soc_elasticsearch
|
2023-01-25 10:53:58 -05:00 |
|
m0duspwnens
|
d1460ae01f
|
add node_data.ips pillar. grab influx host ip for soc extra_hosts
|
2023-01-24 17:05:40 -05:00 |
|
Josh Brower
|
81ee333b07
|
Initial support - Elastic Fleet Node
|
2023-01-24 13:36:30 -05:00 |
|
Mike Reeves
|
2e53476a06
|
Merge pull request #9516 from Security-Onion-Solutions/mkr24
Add PW auth for Redis
|
2023-01-04 14:50:27 -05:00 |
|
Mike Reeves
|
831300b540
|
Require password auth for redis access
|
2023-01-04 11:02:40 -05:00 |
|
Mike Reeves
|
ab9edd4e6b
|
Merge pull request #9421 from Security-Onion-Solutions/mkr24
Redis defaults.yaml
|
2022-12-21 09:15:49 -05:00 |
|
Mike Reeves
|
aa7690864a
|
Modify redis config defaults
|
2022-12-20 22:05:04 -05:00 |
|